First published: Mon Dec 26 2022(Updated: )
A memory leak issue was discovered in SDL2 version >= SDL2-2.0.8 See the link below for details: <a href="https://github.com/libsdl-org/SDL/pull/6269">https://github.com/libsdl-org/SDL/pull/6269</a> <a href="https://github.com/libsdl-org/SDL/commit/00b67f55727bc0944c3266e2b875440da132ce4b">https://github.com/libsdl-org/SDL/commit/00b67f55727bc0944c3266e2b875440da132ce4b</a>
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/sdl | <2.26.0 | 2.26.0 |
redhat/sdl-prerelease | <2.25.1 | 2.25.1 |
Libsdl Simple Directmedia Layer | >=2.0.4<2.26.0 | |
Red Hat Enterprise Linux | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-4743 is a potential memory leak issue in the SDL2 library in the GLES_CreateTexture() function in SDL_render_gles.c.
CVE-2022-4743 has a severity value of 7.5, which is considered high.
SDL2 versions 2.0.4 and above are affected by CVE-2022-4743. SDL-1.x versions are not affected.
An attacker can exploit CVE-2022-4743 to cause a denial of service attack.
Yes, SDL2 version 2.26.0 provides a fix for CVE-2022-4743.