Search CVE reports


Toggle filters

11 – 18 of 18 results


CVE-2019-7576

Low priority

Some fixes available 4 of 10

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (outside the wNumCoef loop).

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Not in release Not affected Not affected Fixed
libsdl2 Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2019-7575

Low priority

Some fixes available 4 of 10

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in MS_ADPCM_decode in audio/SDL_wave.c.

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Not in release Not affected Not affected Fixed
libsdl2 Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2019-7574

Low priority

Some fixes available 4 of 10

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in IMA_ADPCM_decode in audio/SDL_wave.c.

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Not in release Not affected Not affected Fixed
libsdl2 Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2019-7573

Low priority

Some fixes available 4 of 10

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (inside the wNumCoef loop).

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Not in release Not affected Not affected Fixed
libsdl2 Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2019-7572

Low priority

Some fixes available 4 of 10

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in IMA_ADPCM_nibble in audio/SDL_wave.c.

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Not in release Not affected Not affected Fixed
libsdl2 Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2019-13626

Medium priority
Vulnerable

SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow in IMA_ADPCM_decode() in audio/SDL_wave.c.

2 affected packages

libsdl2, libsdl1.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl2 Not affected Not affected Not affected Vulnerable
libsdl1.2 Not in release Not affected Not affected Not affected
Show less packages

CVE-2019-13616

Low priority

Some fixes available 6 of 17

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

4 affected packages

libsdl2, libsdl1.2, libsdl2-image, sdl-image1.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl2 Not affected Not affected Not affected Vulnerable
libsdl1.2 Not in release Not affected Not affected Fixed
libsdl2-image Not affected Not affected Not affected Vulnerable
sdl-image1.2 Not affected Not affected Not affected Fixed
Show less packages

CVE-2017-2888

Medium priority

Some fixes available 2 of 4

An exploitable integer overflow vulnerability exists when creating a new RGB Surface in SDL 2.0.5. A specially crafted file can cause an integer overflow resulting in too little memory being allocated which can lead to a buffer...

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Not affected
libsdl2 Not affected
Show less packages