CVE-2021-39537
HIGH severity · CVSS 8.8 · Out-of-bounds write
8.8CVSS HIGH
Summary
An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow.
Impact & exploitability
Attack vectorNetwork
Attack complexityLow
Privileges requiredNone
User interactionRequired
Confidentiality impactHigh
Integrity impactHigh
Availability impactHigh
Exploit probability (EPSS)3%
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Recommendation
Apply the vendor fix promptly. Open any affected product above for its exact safe version.
Official patch: http://cvsweb.netbsd.org/bsdweb.cgi/pkgsrc/devel/ncurses/patches/patch-ncurses_tinfo_captoinfo.c?rev=1.1&content-type=text/x-cvsweb-markup ↗
Additional information
- NVD record
- http://cvsweb.netbsd.org/bsdweb.cgi/pkgsrc/devel/ncurses/patches/patch-ncurses_tinfo_captoinfo.c?rev=1.1&content-type=text/x-cvsweb-markupPatch
- https://lists.gnu.org/archive/html/bug-ncurses/2020-08/msg00006.htmlAdvisory
- https://lists.gnu.org/archive/html/bug-ncurses/2021-10/msg00023.htmlAdvisory
- http://seclists.org/fulldisclosure/2022/Oct/28Advisory
- http://seclists.org/fulldisclosure/2022/Oct/41Advisory
- http://seclists.org/fulldisclosure/2022/Oct/43Advisory
- http://seclists.org/fulldisclosure/2022/Oct/45Advisory
- https://lists.debian.org/debian-lts-announce/2023/12/msg00004.html