Advisories ยป MGASA-2022-0326

Updated sdl2 packages fix security vulnerability

Publication date: 16 Sep 2022
Modification date: 16 Sep 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2021-33657

Description

There is a heap overflow problem in video/SDL_pixels.c in SDL (Simple
DirectMedia Layer) 2.x to 2.0.18 versions. By crafting a malicious .BMP
file, an attacker can cause the application using this library to crash,
for denial of service, or for Code execution. (CVE-2021-33657)
                

References

SRPMS

8/core