SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in SDLFillRect in video/SDLsurface.c.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "binary_name": "libsdl1.2-dbg", "binary_version": "1.2.15-8ubuntu1.1+esm1" }, { "binary_name": "libsdl1.2-dev", "binary_version": "1.2.15-8ubuntu1.1+esm1" }, { "binary_name": "libsdl1.2-dev-dbgsym", "binary_version": "1.2.15-8ubuntu1.1+esm1" }, { "binary_name": "libsdl1.2debian", "binary_version": "1.2.15-8ubuntu1.1+esm1" }, { "binary_name": "libsdl1.2debian-dbgsym", "binary_version": "1.2.15-8ubuntu1.1+esm1" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_name": "libsdl1.2-dev", "binary_version": "1.2.15+dfsg1-3ubuntu0.1" }, { "binary_name": "libsdl1.2debian", "binary_version": "1.2.15+dfsg1-3ubuntu0.1" }, { "binary_name": "libsdl1.2debian-dbgsym", "binary_version": "1.2.15+dfsg1-3ubuntu0.1" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_name": "libsdl2-2.0-0", "binary_version": "2.0.4+dfsg1-2ubuntu2.16.04.2" }, { "binary_name": "libsdl2-2.0-0-dbgsym", "binary_version": "2.0.4+dfsg1-2ubuntu2.16.04.2" }, { "binary_name": "libsdl2-dbg", "binary_version": "2.0.4+dfsg1-2ubuntu2.16.04.2" }, { "binary_name": "libsdl2-dev", "binary_version": "2.0.4+dfsg1-2ubuntu2.16.04.2" }, { "binary_name": "libsdl2-dev-dbgsym", "binary_version": "2.0.4+dfsg1-2ubuntu2.16.04.2" }, { "binary_name": "libsdl2-doc", "binary_version": "2.0.4+dfsg1-2ubuntu2.16.04.2" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_name": "libsdl1.2-dev", "binary_version": "1.2.15+dfsg2-0.1ubuntu0.1" }, { "binary_name": "libsdl1.2debian", "binary_version": "1.2.15+dfsg2-0.1ubuntu0.1" }, { "binary_name": "libsdl1.2debian-dbgsym", "binary_version": "1.2.15+dfsg2-0.1ubuntu0.1" } ] }