UbuntuUpdates.org

Package "libsdl2"

Name: libsdl2

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • Simple DirectMedia Layer
  • Simple DirectMedia Layer development files
  • Reference manual for libsdl2

Latest version: 2.0.8+dfsg1-1ubuntu1.18.04.4
Release: bionic (18.04)
Level: security
Repository: universe

Links



Other versions of "libsdl2" in Bionic

Repository Area Version
base universe 2.0.8+dfsg1-1ubuntu1
updates universe 2.0.8+dfsg1-1ubuntu1.18.04.4

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2.0.8+dfsg1-1ubuntu1.18.04.4 2019-09-30 15:07:04 UTC

  libsdl2 (2.0.8+dfsg1-1ubuntu1.18.04.4) bionic-security; urgency=medium

  * SECURITY UPDATE: heap-based buffer over-read in Blit1to4
    - debian/patches/CVE-2019-7635.diff: add error checking to SDL_LoadBMP_RW
    - CVE-2019-7635
  * SECURITY UPDATE: heap-based buffer over-read in Map1toN and
     SDL_GetRGB
    - debian/patches/CVE-2019-7636_CVE-2019-7638.patch: add error checking to
      SDL_LoadBMP_RW
    - CVE-2019-7636
    - CVE-2019-7638

 -- Avital Ostromich <email address hidden> Wed, 28 Aug 2019 13:59:20 -0400

CVE-2019-7635 SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Blit1to4 in video/SDL_blit_1.c.
CVE-2019-7636 SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in SDL_GetRGB in video/SDL_pixels.c.
CVE-2019-7638 SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Map1toN in video/SDL_pixels.c.



About   -   Send Feedback to @ubuntu_updates