SDL (Simple DirectMedia Layer) up to and including 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
libsdl simple directmedia layer |
||
debian debian linux 9.0 |
||
fedoraproject fedora 33 |