CVE-2020-14410 - log back

CVE-2020-14410 edited at 19 Jan 2021 20:55:53
Severity
- Unknown
+ Low
Remote
- Unknown
+ Local
Type
- Unknown
+ Denial of service
Description
+ SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP file.
References
+ https://bugzilla.libsdl.org/show_bug.cgi?id=5200
+ https://hg.libsdl.org/SDL/rev/3f9b4e92c1d9
Notes
CVE-2020-14410 created at 19 Jan 2021 20:52:03