CVE-2017-13734 PUBLISHED

There is an illegal address access in the _nc_safe_strcat function in strings.c in ncurses 6.0 that will lead to a remote denial of service attack.

EPSS 0.29% · 52.2th percentile

Risk Scores

EPSS Score
0.29%
52.2th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSncurses0, 5.9+20130608-1ubuntu1, 5.9+20131221-1ubuntu1
Ubuntu:Pro:16.04:LTSncurses0, 5.9+20150516-2ubuntu1, 6.0+20151024-2ubuntu1

Timeline

References

Open in Interactive Console →