VDB

JLSEC-2026-363

JLSEC-2026-363 PUBLISHED CVSS 5.800000190734863 MEDIUM

SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in `Blit_3or4_to_3or4__inversed_rgb` in `video/SDL_blit_N.c` via a crafted .BMP file.

Risk Scores

CVSS 2.0
5.800000190734863

Affected Products

VendorProductVersions
JuliaSDL2_jll2.0.12+0
JuliaSDL2_jll2.0.12+0, 2.0.12+0

Timeline

  • Apr 30, 2026 CVE Published
  • Jul 25, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›