Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Fedora 42 SDL2_image Major Information Disclosure Update 2026-8ac58f5cf3

fedora
Calendar Grey May 19, 2026
Dist Fedora Esm H88
Update to SDL2_image 2.8.12 on Fedora 42 addresses important information disclosure vulnerabilities like CVE-2026-35444.
Update to bugfix release 2.8.12.

Summary

Simple DirectMedia Layer (SDL) is a cross-platform multimedia library

designed to provide fast access to the graphics frame buffer and audio

device. This package contains a simple library for loading images of

various formats (BMP, PPM, PCX, GIF, JPEG, PNG) as SDL surfaces.

Update Information:

Update to bugfix release 2.8.12.

Change Log

* Sun May 10 2026 Simone Caronni - 2.8.12-1 - Update to 2.8.12 * Fri Jan 16 2026 Fedora Release Engineering - 2.8.8-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild * Fri Jan 16 2026 Fedora Release Engineering - 2.8.8-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild * Wed Jul 23 2025 Fedora Release Engineering - 2.8.8-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild

References


[ 1 ] Bug #2455888 - CVE-2026-35444 SDL2_image: SDL_image: Information disclosure via crafted XCF files [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2455888 [ 2 ] Bug #2455889 - CVE-2026-35444 SDL2_image: SDL_image: Information disclosure via crafted XCF files [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2455889 [ 3 ] Bug #2456290 - SDL2_image-2.8.12 is available https://bugzilla.redhat.com/show_bug.cgi?id=2456290

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-8ac58f5cf3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: SDL2_image
Product: Fedora 42
Version: 2.8.12
Release: 1.fc42
Summary: Image loading library for SDL

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here