REDHAT-BUG-1747237: High severity SDL Simple DirectMedia Layer vulnerability
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDLblitN.c when called from SDLSoftBlit in video/SDLblit.c.
Upstream bug:
https://bugzilla.libsdl.org/showbug.cgi?id=4538
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1747237?
REDHAT-BUG-1747237 is classified as a heap-based buffer over-read vulnerability affecting certain versions of SDL.
How do I fix REDHAT-BUG-1747237?
To fix REDHAT-BUG-1747237, update SDL to versions later than 1.2.15 and 2.0.9.
Which versions of SDL are affected by REDHAT-BUG-1747237?
REDHAT-BUG-1747237 affects SDL versions up to and including 1.2.15 and versions from 2.0.0 to 2.0.9.
What is the impact of REDHAT-BUG-1747237?
The impact of REDHAT-BUG-1747237 includes potential information disclosure due to a heap-based buffer over-read.
Where can I find more information about REDHAT-BUG-1747237?
More information about REDHAT-BUG-1747237 can be found in the associated bug reports on Red Hat's Bugzilla.