CVE-2020-19189
Summary
| CVE | CVE-2020-19189 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-08-22 19:16:00 UTC |
| Updated | 2023-12-13 01:15:00 UTC |
| Description | Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| About the security content of macOS Ventura 13.6.3 - Apple Support |
|
support.apple.com |
|
| August 2023 GNU Ncurses Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| Full Disclosure: APPLE-SA-12-11-2023-6 macOS Monterey 12.7.2 |
|
seclists.org |
|
| About the security content of macOS Sonoma 14.2 - Apple Support |
|
support.apple.com |
|
| Full Disclosure: APPLE-SA-12-11-2023-5 macOS Ventura 13.6.3 |
|
seclists.org |
|
| heap-buffer-overflow, postprocess_terminfo, tinfo/parse_entry.c:997, ncurses 6.1 |
MISC |
github.com |
|
| About the security content of macOS Monterey 12.7.2 - Apple Support |
|
support.apple.com |
|
| Full Disclosure: APPLE-SA-12-11-2023-4 macOS Sonoma 14.2 |
|
seclists.org |
|
| [SECURITY] [DLA 3586-1] ncurses security update |
MLIST |
lists.debian.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 199863 Ubuntu Security Notification for ncurses Vulnerability (USN-6451-1)
- 379124 Apple macOS Ventura 13.6.3 Not Installed (HT214038)
- 379125 Apple macOS Sonoma 14.2 Not Installed (HT214036)
- 379126 Apple macOS Monterey 12.7.2 Not Installed (HT214037)
- 6000117 Debian Security Update for ncurses (DLA 3586-1)
- 674026 EulerOS Security Update for ncurses (EulerOS-SA-2024-1285)