PT-2017-13049 · Ncurses+2 · Ncurses+2

Publicado

2017-08-29

·

Atualizado

2022-05-26

·

CVE-2017-13728

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions ncurses version 6.0
Description The issue is related to an infinite loop in the next char function in comp scan.c, which is connected to libtic. A specially crafted input can cause a remote denial of service attack.
Recommendations For ncurses version 6.0, consider applying a patch to fix the infinite loop in the next char function to prevent remote denial of service attacks.

Exploit

Correção

DoS

Infinite Loop

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-13728
MGASA-2018-0002
SUSE-SU-2017:3183-1
SUSE-SU-2017_3183-1
SUSE-SU-2018:0120-1
SUSE-SU-2018:0284-1
SUSE-SU-2018_0120-1
SUSE-SU-2018_0284-1
USN-5448-1

Produtos afetados

Suse
Ubuntu
Ncurses