VDB

JLSEC-2026-363

JLSEC-2026-363 PUBLISHED

SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP file.

Affected Products

VendorProductVersions
JuliaSDL2_jll2.0.12+0, 2.0.12+0

Timeline

  • Apr 30, 2026 CVE Published
  • Apr 30, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›