CVE Published: 24/04/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2017 Source: talos |
Vendor: Sam Lantinga and Mattias Engdegård |
Product: Simple DirectMedia Layer Status : PUBLISHED
CVE-2017-14442 Description
An exploitable code execution vulnerability exists in the BMP image rendering functionality of SDL2_image-2.0.2. A specially crafted BMP image can cause a stack overflow resulting in code execution. An attacker can display a specially crafted image to trigger this vulnerability.