CyberSec.Space Logo
Back to CVE Browser

CVE-2017-14441

HIGH
8.8
CVSS Severity Score
EPSS Score0.0780%
EPSS Percentile43.02th
PublishedApr 24, 2018
Last ModifiedNov 21, 2024

Vulnerability Description

An exploitable code execution vulnerability exists in the ICO image rendering functionality of SDL2_image-2.0.2. A specially crafted ICO image can cause an integer overflow, cascading to a heap overflow resulting in code execution. An attacker can display a specially crafted image to trigger this vulnerability.

Affected Platforms (CPE)

πŸ“¦
Libsdl

Sdl Image

= 2.0.2
πŸ’»
Debian

Debian Linux

= 7.0
πŸ’»
Debian

Debian Linux

= 8.0
πŸ’»
Debian

Debian Linux

= 9.0

References & Advisories

Related Vulnerabilities