Logo
vulnerabilityCVE-2022-34568
Name
CVE-2022-34568
Source
NVD ( link)Debian ( link)
Description
SDL v1.2 was discovered to contain a use-after-free via the XFree function at /src/video/x11/SDL_x11yuv.c.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
libsdl
Exploitable

Vulnerability Rating#


7.5
CVSSv31

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
1.2.15
Patched
buildroot
2025.02.x
2.30.12
Patched
buildroot
master
1.2.15
Patched
buildroot
master
2.32.10
Patched
yocto
kirkstone
1.2.15
Exploitable
yocto
kirkstone
2.0.20
Not Affected
yocto
scarthgap
1.2.15
Exploitable
yocto
scarthgap
2.30.1
Not Affected

Resolved with patches#


sdl (buildroot:2025.02.x)

#
Title
Author
Resolve
1
SDL_x11yuv.c: fix possible use-after-free
Ozkan Sezer <sezeroz@gmail.com>
CVE-2022-34568

sdl (buildroot:master)

#
Title
Author
Resolve
1
SDL_x11yuv.c: fix possible use-after-free
Ozkan Sezer <sezeroz@gmail.com>
CVE-2022-34568