Ncurses · Ncurses · CVE-2021-39537
**Name of the Vulnerable Software and Affected Versions**
ncurses versions through v6.2-1
**Description**
An issue was discovered in the ncurses library, specifically in the ` nc captoinfo` function of the `captoinfo.c` component, which is related to a heap-based buffer overflow. This issue may allow a remote attacker to access confidential data, compromise its integrity, and cause a denial of service.
**Recommendations**
For ncurses versions through v6.2-1, as a temporary workaround, consider disabling the ` nc captoinfo` function until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.