CVE-2017-13729 PUBLISHED

There is an illegal address access in the _nc_save_str function in alloc_entry.c in ncurses 6.0. It will lead to a remote denial of service attack.

EPSS 0.48% · 64.9th percentile

Risk Scores

EPSS Score
0.48%
64.9th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSncurses0, 5.9+20130608-1ubuntu1, 5.9+20131221-1ubuntu1
Ubuntu:Pro:16.04:LTSncurses0, 5.9+20150516-2ubuntu1, 6.0+20151024-2ubuntu1

Timeline

References

Open in Interactive Console →