In ncurses 6.0, there is a NULL Pointer Dereference in the _nc_parse_entry function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to …
High CVSS 7.5
Summary
In ncurses 6.0, there is a NULL Pointer Dereference in the _nc_parse_entry function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://bugzilla.redhat.com/show_bug.cgi?id=1464691 Exploit
- https://security.gentoo.org/glsa/201804-13 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1464691 Exploit
- https://security.gentoo.org/glsa/201804-13 Third Party Advisory
Timeline
- nvd_ingest NVD