CVE-2017-13733
Published: 29 August 2017
There is an illegal address access in the fmt_entry function in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.
Priority
CVSS 3 base score: 6.5
Status
Package | Release | Status |
---|---|---|
ncurses Launchpad, Ubuntu, Debian |
Upstream |
Released
(6.0+20170827-1)
|
Ubuntu 20.10 (Groovy Gorilla) |
Not vulnerable
(6.1-1ubuntu1)
|
|
Ubuntu 20.04 LTS (Focal Fossa) |
Not vulnerable
(6.1-1ubuntu1)
|
|
Ubuntu 18.04 LTS (Bionic Beaver) |
Not vulnerable
(6.1-1ubuntu1)
|
|
Ubuntu 16.04 LTS (Xenial Xerus) |
Needed
|
|
Ubuntu 14.04 ESM (Trusty Tahr) |
Needed
|
|
Patches: Other: ftp://ftp.invisible-island.net/ncurses/6.0/ncurses-6.0-20170826.patch.gz |