** DISPUTED ** In ncurses, possibly a 6.x version, there is a NULL pointer dereference at the function _nc_name_match that will lead to a denial of service attack. NOTE: the original report stated version 6.1, but the issue did not reproduce for that version according to the maintainer or a reliable third-party.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1643753 | Exploit Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2018-11-12 11:29
Updated : 2019-04-18 09:29
NVD link : CVE-2018-19217
Mitre link : CVE-2018-19217
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
gnu
- ncurses