Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-10685

Опубликовано: 29 июн. 2017
Источник: debian
EPSS Низкий

Описание

In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ncursesfixed6.0+20170701-1package
ncursesfixed6.0+20161126-1+deb9u1stretchpackage
ncursesfixed5.9+20140913-1+deb8u1jessiepackage
ncursesno-dsawheezypackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1464692

EPSS

Процентиль: 78%
0.01126
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.

redhat
больше 8 лет назад

In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.

CVSS3: 9.8
nvd
больше 8 лет назад

In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.

CVSS3: 9.8
github
больше 3 лет назад

In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.

suse-cvrf
больше 8 лет назад

Recommended update for ncurses

EPSS

Процентиль: 78%
0.01126
Низкий