Skip to main content

Vendor archive

libsdl CVEs

Beta · best-effort

47 CVEs tagged to vendor libsdl1 Critical, 36 High, 10 Medium, 0 Low, 0 Unrated.

CVE-2026-35444

Published Apr 6, 2026

SDL_image is a library to load images of various formats as SDL surfaces. In do_layer_surface() in src/IMG_xcf.c, pixel index values from decoded XCF tile data are used directly a…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-27470

Published May 4, 2022

SDL_ttf v2.0.18 and below was discovered to contain an arbitrary memory write via the function TTF_RenderText_Solid(). This vulnerability is triggered via a crafted TTF file.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-33657

Published Apr 1, 2022

There is a heap overflow problem in video/SDL_pixels.c in SDL (Simple DirectMedia Layer) 2.x to 2.0.18 versions. By crafting a malicious .BMP file, an attacker can cause the appli…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-12222

Published May 20, 2019

An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9. There is an out-of-bounds read in the function SDL_InvalidateMap at video/SDL_pixels.c.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 47 CVEsPage 1 of 2