Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2020-14409
SDL (Simple DirectMedia Layer) through 2.0.12 has an Integer Overflow (and resultant SDL_memcpy heap corruption) in SDL_BlitCopy in video/SDL_blit_copy.c via a crafted .BMP file.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.001
EPSS Ranking
32.0%
CVSS Severity
CVSS v3 Score
7.8
CVSS v2 Score
6.8
References
https://bugzilla.libsdl.org/show_bug.cgi?id=5200
https://hg.libsdl.org/SDL/rev/3f9b4e92c1d9
https://lists.debian.org/debian-lts-announce/2021/01/msg00024.html
https://lists.debian.org/debian-lts-announce/2023/02/msg00008.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5FS32YCEJLQ2FYUWSWYI2ZMQWQEAWJNR/
https://security.gentoo.org/glsa/202107-55
https://www.starwindsoftware.com/security/sw-20210325-0001/
https://bugzilla.libsdl.org/show_bug.cgi?id=5200
https://hg.libsdl.org/SDL/rev/3f9b4e92c1d9
https://lists.debian.org/debian-lts-announce/2021/01/msg00024.html
https://lists.debian.org/debian-lts-announce/2023/02/msg00008.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5FS32YCEJLQ2FYUWSWYI2ZMQWQEAWJNR/
https://security.gentoo.org/glsa/202107-55
https://www.starwindsoftware.com/security/sw-20210325-0001/
Products affected by CVE-2020-14409
Libsdl
»
Simple Directmedia Layer
»
Version:
2.0.12
cpe:2.3:a:libsdl:simple_directmedia_layer:2.0.12
Libsdl
»
Simple Directmedia Layer
»
Version:
2.0.14
cpe:2.3:a:libsdl:simple_directmedia_layer:2.0.14
Libsdl
»
Simple Directmedia Layer
»
Version:
2.0.16
cpe:2.3:a:libsdl:simple_directmedia_layer:2.0.16
Libsdl
»
Simple Directmedia Layer
»
Version:
2.0.18
cpe:2.3:a:libsdl:simple_directmedia_layer:2.0.18
Libsdl
»
Simple Directmedia Layer
»
Version:
2.0.20
cpe:2.3:a:libsdl:simple_directmedia_layer:2.0.20
Starwindsoftware
»
Starwind Virtual San
»
Version:
v8
cpe:2.3:a:starwindsoftware:starwind_virtual_san:v8
Debian
»
Debian Linux
»
Version:
9.0
cpe:2.3:o:debian:debian_linux:9.0
Fedoraproject
»
Fedora
»
Version:
33
cpe:2.3:o:fedoraproject:fedora:33
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved