| Summary: | invalid free error in function SDL_SetError_REAL | ||
|---|---|---|---|
| Product: | SDL_image | Reporter: | pwd <teamseri0us360> |
| Component: | misc | Assignee: | Sam Lantinga <slouken> |
| Status: | RESOLVED FIXED | QA Contact: | Sam Lantinga <slouken> |
| Severity: | normal | ||
| Priority: | P2 | CC: | hle |
| Version: | 2.0.4 | ||
| Hardware: | x86_64 | ||
| OS: | Linux | ||
| Attachments: | poc | ||
|
Description
pwd
2019-05-09 06:39:31 UTC
This issue was assigned CVE-2019-12219. I can also confirm that the bug is located in SDL_image. This issue is very similar to #4621 (CVE-2019-12222) and is fixed by the same patch ([PATCH] pcx: cast size and check calloc return value). Please see https://bugzilla.libsdl.org/show_bug.cgi?id=4621. This is fixed, thanks! |