Description
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (inside the wNumCoef loop).
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1713-1 | libsdl1.2 security update |
Debian DLA |
DLA-1713-2 | libsdl1.2 regression update |
Debian DLA |
DLA-1714-1 | libsdl2 security update |
Debian DLA |
DLA-1714-2 | libsdl2 regression update |
Debian DLA |
DLA-2804-1 | libsdl1.2 security update |
Debian DLA |
DLA-3314-1 | libsdl2 security update |
EUVD |
EUVD-2019-17111 | SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (inside the wNumCoef loop). |
Ubuntu USN |
USN-4156-1 | SDL vulnerabilities |
Ubuntu USN |
USN-4156-2 | SDL vulnerabilities |
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T20:54:28.338Z
Reserved: 2019-02-07T00:00:00.000Z
Link: CVE-2019-7573
No data.
Status : Modified
Published: 2019-02-07T07:29:00.753
Modified: 2024-11-21T04:48:20.950
Link: CVE-2019-7573
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN