Oval Definition:oval:org.opensuse.security:def:96208
Revision Date:2022-01-12Version:1
Title:Security update for SDL2 (Important) (in QA)
Description:

This update for SDL2 fixes the following issues:

- CVE-2020-14409: Fixed Integer Overflow resulting in heap corruption in SDL_BlitCopy in video/SDL_blit_copy.c via a crafted .BMP (bsc#1181202). - CVE-2020-14410: Fixed heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP (bsc#1181201).

This patch is currently in QA and not yet available for download.
Family:unixClass:patch
Status:Reference(s):1181201
1181202
CVE-2020-14409
CVE-2020-14410
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS is installed
  • AND Package Information
  • libSDL2-2_0-0-2.0.8-11.3.1 is installed
  • OR libSDL2-devel-2.0.8-11.3.1 is installed
  • BACK