Bug#878264: marked as done (libsdl2: CVE-2017-2888: Integer overflow while creating a new RGB surface)

Salvatore Bonaccorso carnil at debian.org
Thu Oct 12 21:07:37 UTC 2017


Hi Felix,

On Thu, Oct 12, 2017 at 07:38:16PM +0200, Felix Geyer wrote:
> Control: reopen -1
> 
> On 12.10.2017 19:36, Debian Bug Tracking System wrote:
> > Upstream patch seem to be [1], but please note that this might not be
> > enough, cf. https://bugzilla.redhat.com/show_bug.cgi?id=1500623#c2 .
> 
> Sorry I missed this, reopening the bug.

No problem! Thanks for looking at the issue.

Would the _builtin_mul_overflow approach work for us?

Regards,
Salvatore



More information about the Pkg-sdl-maintainers mailing list