SDL (Simple DirectMedia Layer) through 2.0.12 has an Integer Overflow (and resultant SDL_memcpy heap corruption) in SDL_BlitCopy in video/SDL_blit_copy.c via a crafted .BMP file.
Software | From | Fixed in |
---|---|---|
debian / debian_linux | 9.0 | 9.0.x |
fedoraproject / fedora | 33 | 33.x |
libsdl / simple_directmedia_layer | 2.0.12 | 2.0.20.x |
starwindsoftware / starwind_virtual_san | 8-build12533 | 8-build12533.x |
starwindsoftware / starwind_virtual_san | 8-build12658 | 8-build12658.x |
starwindsoftware / starwind_virtual_san | 8-build12859 | 8-build12859.x |
starwindsoftware / starwind_virtual_san | 8-build13170 | 8-build13170.x |
starwindsoftware / starwind_virtual_san | 8-build13586 | 8-build13586.x |
starwindsoftware / starwind_virtual_san | 8-build13861 | 8-build13861.x |