CVE-2017-2887
11.10.2017, 18:29
An exploitable buffer overflow vulnerability exists in the XCF property handling functionality of SDL_image 2.0.1. A specially crafted xcf file can cause a stack-based buffer overflow resulting in potential code execution. An attacker can provide a specially crafted XCF file to trigger this vulnerability.Enginsight
| Vendor | Product | Version |
|---|---|---|
| libsdl | sdl_image | 2.0.1 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| libsdl2-image |
| ||||||||||
| sdl-image1.2 |
|
Common Weakness Enumeration
References