Debian Ncurses vulnerabilities
28 known vulnerabilities affecting debian/ncurses.
Total CVEs
28
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH7MEDIUM15LOW4
Vulnerabilities
Page 2 of 2
CVE-2017-11112HIGHCVSS 7.5fixed in ncurses 6.0+20170701-1 (bookworm)2017
CVE-2017-11112 [HIGH] CVE-2017-11112: ncurses - In ncurses 6.0, there is an attempted 0xffffffffffffffff access in the append_ac...
In ncurses 6.0, there is an attempted 0xffffffffffffffff access in the append_acs function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data.
Scope: local
bookworm: resolved (fixed in 6.0+20170701-1)
bullseye: resolved (fixed in 6.0+20170701-1)
forky: resolved (fixed in
debian
CVE-2017-11113HIGHCVSS 7.5fixed in ncurses 6.0+20170701-1 (bookworm)2017
CVE-2017-11113 [HIGH] CVE-2017-11113: ncurses - In ncurses 6.0, there is a NULL Pointer Dereference in the _nc_parse_entry funct...
In ncurses 6.0, there is a NULL Pointer Dereference in the _nc_parse_entry function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data.
Scope: local
bookworm: resolved (fixed in 6.0+20170701-1)
bullseye: resolved (fixed in 6.0+20170701-1)
forky: resolved (fixed in 6.0+201
debian
CVE-2017-13730MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13730 [MEDIUM] CVE-2017-13730: ncurses - There is an illegal address access in the function _nc_read_entry_source() in pr...
There is an illegal address access in the function _nc_read_entry_source() in progs/tic.c in ncurses 6.0 that might lead to a remote denial of service attack.
Scope: local
bookworm: resolved (fixed in 6.0+20170827-1)
bullseye: resolved (fixed in 6.0+20170827-1)
forky: resolved (fixed in 6.0+20170827-1)
sid: resolved (fixed in 6.0+20170827-1)
trixie: resolved (fixe
debian
CVE-2017-13732MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13732 [MEDIUM] CVE-2017-13732: ncurses - There is an illegal address access in the function dump_uses() in progs/dump_ent...
There is an illegal address access in the function dump_uses() in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.
Scope: local
bookworm: resolved (fixed in 6.0+20170827-1)
bullseye: resolved (fixed in 6.0+20170827-1)
forky: resolved (fixed in 6.0+20170827-1)
sid: resolved (fixed in 6.0+20170827-1)
trixie: resolved (fixed in
debian
CVE-2017-13729MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13729 [MEDIUM] CVE-2017-13729: ncurses - There is an illegal address access in the _nc_save_str function in alloc_entry.c...
There is an illegal address access in the _nc_save_str function in alloc_entry.c in ncurses 6.0. It will lead to a remote denial of service attack.
Scope: local
bookworm: resolved (fixed in 6.0+20170827-1)
bullseye: resolved (fixed in 6.0+20170827-1)
forky: resolved (fixed in 6.0+20170827-1)
sid: resolved (fixed in 6.0+20170827-1)
trixie: resolved (fixed in 6.0+20
debian
CVE-2017-13731MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13731 [MEDIUM] CVE-2017-13731: ncurses - There is an illegal address access in the function postprocess_termcap() in pars...
There is an illegal address access in the function postprocess_termcap() in parse_entry.c in ncurses 6.0 that will lead to a remote denial of service attack.
Scope: local
bookworm: resolved (fixed in 6.0+20170827-1)
bullseye: resolved (fixed in 6.0+20170827-1)
forky: resolved (fixed in 6.0+20170827-1)
sid: resolved (fixed in 6.0+20170827-1)
trixie: resolved (fixed
debian
CVE-2017-13733MEDIUMCVSS 6.5fixed in ncurses 6.0+20170902-1 (bookworm)2017
CVE-2017-13733 [MEDIUM] CVE-2017-13733: ncurses - There is an illegal address access in the fmt_entry function in progs/dump_entry...
There is an illegal address access in the fmt_entry function in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.
Scope: local
bookworm: resolved (fixed in 6.0+20170902-1)
bullseye: resolved (fixed in 6.0+20170902-1)
forky: resolved (fixed in 6.0+20170902-1)
sid: resolved (fixed in 6.0+20170902-1)
trixie: resolved (fixed in 6.
debian
CVE-2017-13734MEDIUMCVSS 6.5fixed in ncurses 6.0+20170827-1 (bookworm)2017
CVE-2017-13734 [MEDIUM] CVE-2017-13734: ncurses - There is an illegal address access in the _nc_safe_strcat function in strings.c ...
There is an illegal address access in the _nc_safe_strcat function in strings.c in ncurses 6.0 that will lead to a remote denial of service attack.
Scope: local
bookworm: resolved (fixed in 6.0+20170827-1)
bullseye: resolved (fixed in 6.0+20170827-1)
forky: resolved (fixed in 6.0+20170827-1)
sid: resolved (fixed in 6.0+20170827-1)
trixie: resolved (fixed in 6.0+20
debian
← Previous2 / 2