CVE-2022-4743

Name
CVE-2022-4743
Description
A potential memory leak issue was discovered in SDL2 in GLES_CreateTexture() function in SDL_render_gles.c. The vulnerability allows an attacker to cause a denial of service attack. The vulnerability affects SDL2 v2.0.4 and above. SDL-1.x are not affected.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://github.com/libsdl-org/SDL/pull/6269
MISC https://github.com/libsdl-org/SDL/commit/00b67f55727bc0944c3266e2b875440da132ce4b
MISC https://access.redhat.com/security/cve/CVE-2022-4743
MISC https://bugzilla.redhat.com/show_bug.cgi?id=2156290
mailing-list https://lists.debian.org/debian-lts-announce/2023/02/msg00008.html
vendor-advisory https://security.gentoo.org/glsa/202305-18
af854a3a-2127-422b-91ae-364da2661108 https://lists.debian.org/debian-lts-announce/2025/11/msg00024.html

Match rules

CPE URI Source package Min version Max version
sdl2 == Affects SDL2 v2.0.4 and above, Fixed-in sdl-2.26.0, sdl-prerelease-2.25.1 == None

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
sdl2 edge-community 2.32.10-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.32.8-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.32.6-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.32.4-r1 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.32.4-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.32.2-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.32.0-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.30.11-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.30.10-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.30.9-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 edge-community 2.0.18-r0 August Klein <amatcoder@gmail.com> possibly vulnerable
sdl2 edge-community 2.0.10-r0 None possibly vulnerable
sdl2 3.23-community 2.32.10-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 3.22-community 2.32.8-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 3.22-community 2.30.9-r0 Simon Zeni <simon@bl4ckb0ne.ca> possibly vulnerable
sdl2 3.22-community 2.0.18-r0 None possibly vulnerable
sdl2 3.22-community 2.0.10-r0 None possibly vulnerable