cbcvebase.

Debian Ncurses vulnerabilities

28 known vulnerabilities affecting debian/ncurses.

Total CVEs
28
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH7MEDIUM15LOW4

Vulnerabilities

Page 2 of 2
CVE-2017-11112HIGHCVSS 7.5fixed in ncurses 6.0+20170701-1 (bookworm)2017
CVE-2017-11112 [HIGH] CVE-2017-11112: ncurses - In ncurses 6.0, there is an attempted 0xffffffffffffffff access in the append_ac... In ncurses 6.0, there is an attempted 0xffffffffffffffff access in the append_acs function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data. Scope: local bookworm: resolved (fixed in 6.0+20170701-1) bullseye: resolved (fixed in 6.0+20170701-1) forky: resolved (fixed in
debian
CVE-2017-11113HIGHCVSS 7.5fixed in ncurses 6.0+20170701-1 (bookworm)2017
CVE-2017-11113 [HIGH] CVE-2017-11113: ncurses - In ncurses 6.0, there is a NULL Pointer Dereference in the _nc_parse_entry funct... In ncurses 6.0, there is a NULL Pointer Dereference in the _nc_parse_entry function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data. Scope: local bookworm: resolved (fixed in 6.0+20170701-1) bullseye: resolved (fixed in 6.0+20170701-1) forky: resolved (fixed in 6.0+201
debian
CVE-2017-13730MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13730 [MEDIUM] CVE-2017-13730: ncurses - There is an illegal address access in the function _nc_read_entry_source() in pr... There is an illegal address access in the function _nc_read_entry_source() in progs/tic.c in ncurses 6.0 that might lead to a remote denial of service attack. Scope: local bookworm: resolved (fixed in 6.0+20170827-1) bullseye: resolved (fixed in 6.0+20170827-1) forky: resolved (fixed in 6.0+20170827-1) sid: resolved (fixed in 6.0+20170827-1) trixie: resolved (fixe
debian
CVE-2017-13732MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13732 [MEDIUM] CVE-2017-13732: ncurses - There is an illegal address access in the function dump_uses() in progs/dump_ent... There is an illegal address access in the function dump_uses() in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack. Scope: local bookworm: resolved (fixed in 6.0+20170827-1) bullseye: resolved (fixed in 6.0+20170827-1) forky: resolved (fixed in 6.0+20170827-1) sid: resolved (fixed in 6.0+20170827-1) trixie: resolved (fixed in
debian
CVE-2017-13729MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13729 [MEDIUM] CVE-2017-13729: ncurses - There is an illegal address access in the _nc_save_str function in alloc_entry.c... There is an illegal address access in the _nc_save_str function in alloc_entry.c in ncurses 6.0. It will lead to a remote denial of service attack. Scope: local bookworm: resolved (fixed in 6.0+20170827-1) bullseye: resolved (fixed in 6.0+20170827-1) forky: resolved (fixed in 6.0+20170827-1) sid: resolved (fixed in 6.0+20170827-1) trixie: resolved (fixed in 6.0+20
debian
CVE-2017-13731MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13731 [MEDIUM] CVE-2017-13731: ncurses - There is an illegal address access in the function postprocess_termcap() in pars... There is an illegal address access in the function postprocess_termcap() in parse_entry.c in ncurses 6.0 that will lead to a remote denial of service attack. Scope: local bookworm: resolved (fixed in 6.0+20170827-1) bullseye: resolved (fixed in 6.0+20170827-1) forky: resolved (fixed in 6.0+20170827-1) sid: resolved (fixed in 6.0+20170827-1) trixie: resolved (fixed
debian
CVE-2017-13733MEDIUMCVSS 6.5fixed in ncurses 6.0+20170902-1 (bookworm)2017
CVE-2017-13733 [MEDIUM] CVE-2017-13733: ncurses - There is an illegal address access in the fmt_entry function in progs/dump_entry... There is an illegal address access in the fmt_entry function in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack. Scope: local bookworm: resolved (fixed in 6.0+20170902-1) bullseye: resolved (fixed in 6.0+20170902-1) forky: resolved (fixed in 6.0+20170902-1) sid: resolved (fixed in 6.0+20170902-1) trixie: resolved (fixed in 6.
debian
CVE-2017-13734MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13734 [MEDIUM] CVE-2017-13734: ncurses - There is an illegal address access in the _nc_safe_strcat function in strings.c ... There is an illegal address access in the _nc_safe_strcat function in strings.c in ncurses 6.0 that will lead to a remote denial of service attack. Scope: local bookworm: resolved (fixed in 6.0+20170827-1) bullseye: resolved (fixed in 6.0+20170827-1) forky: resolved (fixed in 6.0+20170827-1) sid: resolved (fixed in 6.0+20170827-1) trixie: resolved (fixed in 6.0+20
debian