ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00014.html | mailing list vendor advisory exploit |
https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00016.html | mailing list vendor advisory |
https://support.apple.com/kb/HT213488 | third party advisory |
https://lists.debian.org/debian-lts-announce/2022/10/msg00037.html | mailing list third party advisory |
http://seclists.org/fulldisclosure/2022/Oct/41 | mailing list third party advisory |
http://seclists.org/fulldisclosure/2022/Oct/28 | mailing list |