Количество 21
Количество 21
ELSA-2019-4024
ELSA-2019-4024: SDL security update (IMPORTANT)
CVE-2019-14906
A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.
CVE-2019-14906
A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.
CVE-2019-13616
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.
CVE-2019-13616
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.
CVE-2019-13616
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.
CVE-2019-13616
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 ha ...
GHSA-2w82-mm6w-3vc9
A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.
openSUSE-SU-2020:1990-1
Security update for SDL
openSUSE-SU-2020:1916-1
Security update for SDL
SUSE-SU-2020:3261-1
Security update for SDL
SUSE-SU-2020:3030-1
Security update for SDL
GHSA-v89f-grvw-gpv8
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.
ELSA-2019-3951
ELSA-2019-3951: SDL security update (IMPORTANT)
BDU:2021-03748
Уязвимость функция BlitNtoN (video/SDL_blit_N.c) мультимедийной библиотеки Simple DirectMedia Layer, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании
openSUSE-SU-2019:2226-1
Security update for SDL2
openSUSE-SU-2019:2224-1
Security update for SDL2
SUSE-SU-2019:2463-2
Security update for SDL2
SUSE-SU-2019:2463-1
Security update for SDL2
openSUSE-SU-2019:2071-1
Security update for SDL_image
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
ELSA-2019-4024 ELSA-2019-4024: SDL security update (IMPORTANT) | около 6 лет назад | |||
CVE-2019-14906 A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code. | CVSS3: 8.1 | 1% Низкий | около 6 лет назад | |
CVE-2019-14906 A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code. | CVSS3: 9.8 | 1% Низкий | около 6 лет назад | |
CVE-2019-13616 SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c. | CVSS3: 8.1 | 6% Низкий | больше 6 лет назад | |
CVE-2019-13616 SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c. | CVSS3: 8.1 | 6% Низкий | больше 6 лет назад | |
CVE-2019-13616 SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c. | CVSS3: 8.1 | 6% Низкий | больше 6 лет назад | |
CVE-2019-13616 SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 ha ... | CVSS3: 8.1 | 6% Низкий | больше 6 лет назад | |
GHSA-2w82-mm6w-3vc9 A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code. | CVSS3: 9.8 | 1% Низкий | больше 3 лет назад | |
openSUSE-SU-2020:1990-1 Security update for SDL | 6% Низкий | около 5 лет назад | ||
openSUSE-SU-2020:1916-1 Security update for SDL | 6% Низкий | около 5 лет назад | ||
SUSE-SU-2020:3261-1 Security update for SDL | 6% Низкий | около 5 лет назад | ||
SUSE-SU-2020:3030-1 Security update for SDL | 6% Низкий | больше 5 лет назад | ||
GHSA-v89f-grvw-gpv8 SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c. | CVSS3: 8.1 | 6% Низкий | больше 3 лет назад | |
ELSA-2019-3951 ELSA-2019-3951: SDL security update (IMPORTANT) | около 6 лет назад | |||
BDU:2021-03748 Уязвимость функция BlitNtoN (video/SDL_blit_N.c) мультимедийной библиотеки Simple DirectMedia Layer, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании | CVSS3: 8.1 | 6% Низкий | больше 6 лет назад | |
openSUSE-SU-2019:2226-1 Security update for SDL2 | больше 6 лет назад | |||
openSUSE-SU-2019:2224-1 Security update for SDL2 | больше 6 лет назад | |||
SUSE-SU-2019:2463-2 Security update for SDL2 | больше 5 лет назад | |||
SUSE-SU-2019:2463-1 Security update for SDL2 | больше 6 лет назад | |||
openSUSE-SU-2019:2071-1 Security update for SDL_image | больше 6 лет назад |
Уязвимостей на страницу