SDL (Simple DirectMedia Layer) through 2.0.12 has an Integer Overflow (and resultant SDLmemcpy heap corruption) in SDLBlitCopy in video/SDLblitcopy.c via a crafted .BMP file.
{
"unresolved_ranges": [
{
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "v8-build12533"
}
],
"cpe": "cpe:2.3:a:starwindsoftware:starwind_virtual_san:v8:build12533:*:*:*:vsphere:*:*"
},
{
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "v8-build12658"
}
],
"cpe": "cpe:2.3:a:starwindsoftware:starwind_virtual_san:v8:build12658:*:*:*:vsphere:*:*"
},
{
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "v8-build12859"
}
],
"cpe": "cpe:2.3:a:starwindsoftware:starwind_virtual_san:v8:build12859:*:*:*:vsphere:*:*"
},
{
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "v8-build13170"
}
],
"cpe": "cpe:2.3:a:starwindsoftware:starwind_virtual_san:v8:build13170:*:*:*:vsphere:*:*"
},
{
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "v8-build13586"
}
],
"cpe": "cpe:2.3:a:starwindsoftware:starwind_virtual_san:v8:build13586:*:*:*:vsphere:*:*"
},
{
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "v8-build13861"
}
],
"cpe": "cpe:2.3:a:starwindsoftware:starwind_virtual_san:v8:build13861:*:*:*:vsphere:*:*"
},
{
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "9.0"
}
],
"cpe": "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
},
{
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "33"
}
],
"cpe": "cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*"
}
]
}