Search CVE reports


Toggle filters

21 – 25 of 25 results


CVE-2018-3838

Medium priority

Some fixes available 4 of 6

An exploitable information vulnerability exists in the XCF image rendering functionality of Simple DirectMedia Layer SDL2_image-2.0.2. A specially crafted XCF image can cause an out-of-bounds read on the heap, resulting...

2 affected packages

libsdl2-image, sdl-image1.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libsdl2-image Not affected Fixed
sdl-image1.2 Not affected Fixed
Show less packages

CVE-2018-3837

Medium priority

Some fixes available 4 of 6

An exploitable information disclosure vulnerability exists in the PCX image rendering functionality of Simple DirectMedia Layer SDL2_image-2.0.2. A specially crafted PCX image can cause an out-of-bounds read on the heap, resulting...

2 affected packages

libsdl2-image, sdl-image1.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libsdl2-image Not affected Fixed
sdl-image1.2 Not affected Fixed
Show less packages

CVE-2017-2887

Medium priority

Some fixes available 4 of 8

An exploitable buffer overflow vulnerability exists in the XCF property handling functionality of SDL_image 2.0.1. A specially crafted xcf file can cause a stack-based buffer overflow resulting in potential code execution. An...

2 affected packages

libsdl2-image, sdl-image1.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libsdl2-image Not affected Fixed
sdl-image1.2 Not affected Fixed
Show less packages

CVE-2008-0544

Medium priority
Fixed

Heap-based buffer overflow in the IMG_LoadLBM_RW function in IMG_lbm.c in SDL_image before 1.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted IFF ILBM...

1 affected package

sdl-image1.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sdl-image1.2
Show less packages

CVE-2007-6697

Medium priority

Some fixes available 5 of 20

Buffer overflow in the LWZReadByte function in IMG_gif.c in SDL_image before 1.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted GIF file, a similar issue...

2 affected packages

sdl-image1.2, swi-prolog

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sdl-image1.2 Not affected Not affected
swi-prolog Not affected Not affected
Show less packages