Logo
vulnerabilityCVE-2019-7578
Name
CVE-2019-7578
Source
NVD ( link)Debian ( link)
Description
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitIMA_ADPCM in audio/SDL_wave.c.
Published Date
Updated Date
Workaround
-
Advisories
https://usn.ubuntu.com/4156-1/Third Party Advisory
https://usn.ubuntu.com/4156-2/Third Party Advisory
https://usn.ubuntu.com/4156-1/Third Party Advisory
https://usn.ubuntu.com/4156-2/Third Party Advisory

Analysis#


Affected Component
Analysis
sdl
Exploitable

Vulnerability Ratings#


8.1
CVSSv31
5.8
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
master
1.2.15
Exploitable
buildroot
master
2.32.10
Not Affected
yocto
kirkstone
2.0.20
Not Affected
yocto
master
2.32.10
Not Affected
yocto
scarthgap
2.30.1
Not Affected