cbcvebase.

Libsdl Simple Directmedia Layer vulnerabilities

26 known vulnerabilities affecting libsdl/simple_directmedia_layer.

Total CVEs
26
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH18MEDIUM7

Vulnerabilities

Page 2 of 2
CVE-2019-12217P4MEDIUMCVSS 6.5v2.0.92019-05-20
CVE-2019-12217 [MEDIUM] CWE-476 CVE-2019-12217: An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunctio An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There is a NULL pointer dereference in the SDL stdio_read function in file/SDL_rwops.c.
nvd
CVE-2019-12221P4MEDIUMCVSS 6.5v2.0.92019-05-20
CVE-2019-12221 [MEDIUM] CWE-787 CVE-2019-12221: An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunctio An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There is a SEGV in the SDL function SDL_free_REAL at stdlib/SDL_malloc.c.
nvd
CVE-2019-12222P4MEDIUMCVSS 6.5v2.0.92019-05-20
CVE-2019-12222 [MEDIUM] CWE-125 CVE-2019-12222: An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9. There is an out-of-bou An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9. There is an out-of-bounds read in the function SDL_InvalidateMap at video/SDL_pixels.c.
nvd
CVE-2019-12220P4MEDIUMCVSS 6.5v2.0.92019-05-20
CVE-2019-12220 [MEDIUM] CWE-125 CVE-2019-12220: An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunctio An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There is an out-of-bounds read in the SDL function SDL_FreePalette_REAL at video/SDL_pixels.c.
nvd
CVE-2019-12218P4MEDIUMCVSS 6.5v2.0.92019-05-20
CVE-2019-12218 [MEDIUM] CWE-476 CVE-2019-12218: An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunctio An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There is a NULL pointer dereference in the SDL2_image function IMG_LoadPCX_RW at IMG_pcx.c.
nvd
CVE-2020-14410P4MEDIUMCVSS 5.4≥ 2.0.12, ≤ 2.0.202021-01-19
CVE-2020-14410 [MEDIUM] CWE-125 CVE-2020-14410: SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4 SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP file.
nvd
Libsdl Simple Directmedia Layer vulnerabilities | cvebase