CVE-2017-10685
29.06.2017, 23:29
In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gnu | ncurses | 6.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ncurses |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libncurses5 |
| ||||||||||||
| libncurses5-32bit |
| ||||||||||||
| libncurses6 |
| ||||||||||||
| libncurses6-32bit |
| ||||||||||||
| ncurses-devel |
| ||||||||||||
| ncurses-devel-32bit |
| ||||||||||||
| ncurses-utils |
| ||||||||||||
| tack |
| ||||||||||||
| terminfo |
| ||||||||||||
| terminfo-base |
|
Common Weakness Enumeration