SDL (Simple DirectMedia Layer) through 2.0.12 has an Integer Overflow (and resultant SDL_memcpy heap corruption) in SDL_BlitCopy in video/SDL_blit_copy.c via a crafted .BMP file.
https://www.starwindsoftware.com/security/sw-20210325-0001/
https://security.gentoo.org/glsa/202107-55
https://lists.debian.org/debian-lts-announce/2023/02/msg00008.html
https://lists.debian.org/debian-lts-announce/2021/01/msg00024.html