First published: Mon May 20 2019(Updated: )
An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9. There is an out-of-bounds read in the function SDL_InvalidateMap at video/SDL_pixels.c.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Libsdl Simple Directmedia Layer | =2.0.9 | |
debian/libsdl2-image | 2.0.5+dfsg1-2 2.6.3+dfsg-1 2.8.2+dfsg-1 | |
debian/sdl-image1.2 | 1.2.12-12 1.2.12-13 1.2.12-14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-12222 is a vulnerability in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 that allows for an out-of-bounds read.
CVE-2019-12222 has a severity rating of 6.5 (medium).
Libsdl Simple Directmedia Layer version 2.0.9 is affected by CVE-2019-12222.
For Debian, upgrade libsdl2-image to version 2.0.5+dfsg1-2 or higher.
For Ubuntu, upgrade libsdl2-image to version 2.0.0+dfsg-3+ or higher.