CVE-2017-10684
published 2017-06-29CVE-2017-10684: In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
PriorityP351critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
4.88%
91.1th percentile
In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | ncurses | < ncurses 6.0+20170708-1 (bookworm) | ncurses 6.0+20170708-1 (bookworm) |
| gnu | ncurses | — | — |
| gnu | ncurses | >= 0 < 6.0+20170708-1 | 6.0+20170708-1 |
| gnu | ncurses | >= 0 < 6.0+20170708-1 | 6.0+20170708-1 |
| gnu | ncurses | >= 0 < 6.0+20170708-1 | 6.0+20170708-1 |
| gnu | ncurses | >= 0 < 6.0+20170708-1 | 6.0+20170708-1 |
| gnu | ncurses | >= 0 < 5.9+20140118-1ubuntu1+esm1 | 5.9+20140118-1ubuntu1+esm1 |
| gnu | ncurses | >= 0 < 6.0+20160213-1ubuntu1+esm1 | 6.0+20160213-1ubuntu1+esm1 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
vendor_ubuntu9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
ncurses vulnerabilities
vendor_ubuntu·2022-05-26·CVSS 9.8
CVE-2017-13729 [CRITICAL] ncurses vulnerabilities
Title: ncurses vulnerabilities
Summary: Several security issues were fixed in ncurses.
It was discovered that ncurses was not properly checking array bounds
when executing the fmt_entry function, which could result in an
out-of-bounds write. An attacker could possibly use this issue to
execute arbitrary code. (CVE-2017-10684)
It was discovered that ncurses was not properly checking user input,
which could result in it being treated as a format argument. An
attacker could possibly use this issue to expose sensitive
information or to execute arbitrary code. (CVE-2017-10685)
It was discovered that ncurses was incorrectly performing memory
management operations and was not blocking access attempts to
illegal memory locations. An attacker could possibly use this issue
to cause a denial of s
Red Hat
ncurses: Stack-based buffer overflow in fmt_entry function in dump_entry.c
vendor_redhat·2017-06-24·CVSS 9.8
CVE-2017-10684 [CRITICAL] CWE-121 ncurses: Stack-based buffer overflow in fmt_entry function in dump_entry.c
ncurses: Stack-based buffer overflow in fmt_entry function in dump_entry.c
In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
Statement: Red Hat Product Security has rated this issue as having Moderate security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: ncurses (Red Hat Enterprise Linux 5) - Not affected
Package: ncurses (Red Hat Enterprise Linux 6) - Not affected
Package: ncurses (Red Hat Enterprise Linux 7) - Will not fix
Red Hat
ncurses: Stack-based buffer overflow caused by format string vulnerability in fmt_entry function
vendor_redhat·2017-06-24·CVSS 9.8
CVE-2017-10685 [CRITICAL] ncurses: Stack-based buffer overflow caused by format string vulnerability in fmt_entry function
ncurses: Stack-based buffer overflow caused by format string vulnerability in fmt_entry function
In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
Statement: Red Hat considers this issue as a duplicate of CVE-2017-10684.
Package: ncurses (Red Hat Enterprise Linux 5) - Will not fix
Package: ncurses (Red Hat Enterprise Linux 6) - Will not fix
Package: ncurses (Red Hat Enterprise Linux 7) - Will not fix
Debian
CVE-2017-10684: ncurses - In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function...
vendor_debian·2017·CVSS 9.8
CVE-2017-10684 [CRITICAL] CVE-2017-10684: ncurses - In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function...
In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
Scope: local
bookworm: resolved (fixed in 6.0+20170708-1)
bullseye: resolved (fixed in 6.0+20170708-1)
forky: resolved (fixed in 6.0+20170708-1)
sid: resolved (fixed in 6.0+20170708-1)
trixie: resolved (fixed in 6.0+20170708-1)
OSV
ncurses vulnerabilities
osv·2022-05-26·CVSS 9.8
CVE-2017-10684 [CRITICAL] ncurses vulnerabilities
ncurses vulnerabilities
It was discovered that ncurses was not properly checking array bounds
when executing the fmt_entry function, which could result in an
out-of-bounds write. An attacker could possibly use this issue to
execute arbitrary code. (CVE-2017-10684)
It was discovered that ncurses was not properly checking user input,
which could result in it being treated as a format argument. An
attacker could possibly use this issue to expose sensitive
information or to execute arbitrary code. (CVE-2017-10685)
It was discovered that ncurses was incorrectly performing memory
management operations and was not blocking access attempts to
illegal memory locations. An attacker could possibly use this issue
to cause a denial of service. (CVE-2017-11112, CVE-2017-13729,
CVE-2017-13730, CVE-201
GHSA
GHSA-xm97-9w7x-8vx8: In ncurses 6
ghsa_unreviewed·2022-05-13
CVE-2017-10684 [CRITICAL] CWE-119 GHSA-xm97-9w7x-8vx8: In ncurses 6
In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
OSV
CVE-2017-10684: In ncurses 6
osv·2017-06-29·CVSS 9.8
CVE-2017-10684 [CRITICAL] CVE-2017-10684: In ncurses 6
In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-10685 ncurses: Stack-based buffer overflow caused by format string vulnerability in fmt_entry function
bugzilla·2017-07-20·CVSS 9.8
CVE-2017-10685 [CRITICAL] CVE-2017-10685 ncurses: Stack-based buffer overflow caused by format string vulnerability in fmt_entry function
CVE-2017-10685 ncurses: Stack-based buffer overflow caused by format string vulnerability in fmt_entry function
In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
Bug report:
https://bugzilla.redhat.com/show_bug.cgi?id=1464692
Upstream patch:
https://lists.gnu.org/archive/html/bug-ncurses/2017-07/msg00001.html
Discussion:
This issue is duplicate of CVE-2017-10684.
*** This bug has been marked as a duplicate of bug 1473302 ***
---
Statement:
Red Hat considers this issue as a duplicate of CVE-2017-10684.
Bugzilla
CVE-2017-10684 ncurses: Stack-based buffer overflow in fmt_entry function in dump_entry.c
bugzilla·2017-07-20·CVSS 9.8
CVE-2017-10684 [CRITICAL] CVE-2017-10684 ncurses: Stack-based buffer overflow in fmt_entry function in dump_entry.c
CVE-2017-10684 ncurses: Stack-based buffer overflow in fmt_entry function in dump_entry.c
A stack-based buffer overflow in the fmt_entry function in dump_entry.c was found.
Product bug:
https://bugzilla.redhat.com/show_bug.cgi?id=1464687
Upstream patch:
https://lists.gnu.org/archive/html/bug-ncurses/2017-07/msg00001.html
Discussion:
*** Bug 1473312 has been marked as a duplicate of this bug. ***
---
Mitigated by stack canaries/cookies.
---
Statement:
Red Hat Product Security has rated this issue as having Moderate security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
---
*** Bug 1464687 has been marked as a dupli
arXiv
Well Begun is Half Done: An Empirical Study of Exploitability & Impact of Base-Image Vulnerabilities
arxiv_fulltext·2021-12-21
Well Begun is Half Done: An Empirical Study of Exploitability & Impact of Base-Image Vulnerabilities
Well Begun is Half Done: An Empirical Study of Exploitability & Impact of Base-Image Vulnerabilities
Mubin Ul Haque2 and
M. Ali Babar 3
Centre for Research on Engineering Software Technologies (CREST)
School of Computer Science, and Engineering, The University of Adelaide, Adelaide, Australia
Cyber Security Cooperative Research Centre, Australia
[email protected], [email protected]
plain
plain
## Abstract
Container technology, (e.g., Docker) is being widely adopted for deploying software infrastructures or applications in the form of container images.
Security vulnerabilities in the container images are a primary concern for developing containerized software.
Exploitation of the vulnerabilities could result in disastrous impact, such as loss of confidentiality, in
https://bugzilla.redhat.com/show_bug.cgi?id=1464687https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3Ehttps://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3Ehttps://security.gentoo.org/glsa/201804-13https://bugzilla.redhat.com/show_bug.cgi?id=1464687https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3Ehttps://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3Ehttps://security.gentoo.org/glsa/201804-13
2017-06-29
Published