USN-4156-1: SDL vulnerabilities
libsdl1.2 vulnerabilities
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 18.04 LTS
- Ubuntu 16.04 LTS
Summary
Several security issues were fixed in SDL.
Software Description
- libsdl1.2 – Simple DirectMedia Layer
Details
It was discovered that SDL incorrectly handled certain images. If a user
were tricked into opening a crafted image file, a remote attacker could
use this issue to cause SDL to crash, resulting in a denial of service, or
possibly execute arbitary code.
Update instructions
The problem can be corrected by updating your system to the following package versions:
- Ubuntu 18.04 LTS
- libsdl1.2debian – 1.2.15+dfsg2-0.1ubuntu0.1
- Ubuntu 16.04 LTS
- libsdl1.2debian – 1.2.15+dfsg1-3ubuntu0.1
To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.
In general, a standard system update will make all the necessary changes.
References
- CVE-2019-13616
- CVE-2019-7572
- CVE-2019-7573
- CVE-2019-7574
- CVE-2019-7575
- CVE-2019-7576
- CVE-2019-7577
- CVE-2019-7578
- CVE-2019-7635
- CVE-2019-7636
- CVE-2019-7637
- CVE-2019-7638
Source: USN-4156-1: SDL vulnerabilities