CVE-2020-14409
19.01.2021, 20:15
SDL (Simple DirectMedia Layer) through 2.0.12 has an Integer Overflow (and resultant SDL_memcpy heap corruption) in SDL_BlitCopy in video/SDL_blit_copy.c via a crafted .BMP file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| libsdl | simple_directmedia_layer | 2.0.12 ≤ 𝑥 ≤ 2.0.20 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libsdl1.2 |
| ||||||||||||||||||||||||
| libsdl2 |
|
References