Vulnerabilities > Libsdl > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-01-19 CVE-2020-14410 Out-of-bounds Read vulnerability in multiple products
SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP file.
network
low complexity
libsdl debian fedoraproject CWE-125
5.4
2019-07-31 CVE-2019-5060 Integer Overflow or Wraparound vulnerability in multiple products
An exploitable code execution vulnerability exists in the XPM image rendering function of SDL2_image 2.0.4.
6.8
2019-07-31 CVE-2019-5059 Integer Overflow or Wraparound vulnerability in multiple products
An exploitable code execution vulnerability exists in the XPM image rendering functionality of SDL2_image 2.0.4.
6.8
2019-07-31 CVE-2019-5058 Out-of-bounds Write vulnerability in multiple products
An exploitable code execution vulnerability exists in the XCF image rendering functionality of SDL2_image 2.0.4.
6.8
2019-07-31 CVE-2019-5057 Out-of-bounds Write vulnerability in multiple products
An exploitable code execution vulnerability exists in the PCX image-rendering functionality of SDL2_image 2.0.4.
6.8
2019-07-17 CVE-2019-13626 Out-of-bounds Read vulnerability in multiple products
SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow in IMA_ADPCM_decode() in audio/SDL_wave.c.
network
low complexity
libsdl fedoraproject debian opensuse CWE-125
6.5
2019-07-03 CVE-2019-5052 Integer Overflow or Wraparound vulnerability in multiple products
An exploitable integer overflow vulnerability exists when loading a PCX file in SDL2_image 2.0.4.
6.8
2019-07-03 CVE-2019-5051 Improper Handling of Exceptional Conditions vulnerability in multiple products
An exploitable heap-based buffer overflow vulnerability exists when loading a PCX file in SDL2_image, version 2.0.4.
6.8
2019-05-20 CVE-2019-12222 Out-of-bounds Read vulnerability in Libsdl Simple Directmedia Layer 2.0.9
An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9.
network
low complexity
libsdl CWE-125
6.5
2019-05-20 CVE-2019-12221 Out-of-bounds Write vulnerability in multiple products
An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4.
6.5