4.3
CVSSv2

CVE-2019-12221

Published: 20/05/2019 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

An issue exists in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There is a SEGV in the SDL function SDL_free_REAL at stdlib/SDL_malloc.c.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

libsdl simple directmedia layer 2.0.9

libsdl sdl2 image 2.0.4

fedoraproject fedora 29

fedoraproject fedora 31

canonical ubuntu linux 18.04

canonical ubuntu linux 16.04

opensuse leap 15.0

opensuse leap 15.1

opensuse backports sle 15.0

debian debian linux 8.0

Vendor Advisories

Debian Bug report logs - #932754 libsdl2-image: multiple security issues Package: src:libsdl2-image; Maintainer for src:libsdl2-image is Debian SDL packages maintainers <pkg-sdl-maintainers@listsaliothdebianorg>; Reported by: Hugo Lefeuvre <hle@debianorg> Date: Mon, 22 Jul 2019 18:45:01 UTC Severity: important Ta ...
Several security issues were fixed in SDL_image ...