Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:12876

Опубликовано: 04 окт. 2025
Источник: rocky
Оценка: Low

Описание

Low: ncurses security update

The ncurses (new curses) library routines are a terminal-independent method of updating character screens with reasonable optimization. The ncurses packages contain support utilities including a terminfo compiler tic, a decompiler infocmp, clear, tput, tset, and a termcap conversion tool captoinfo.

Security Fix(es):

  • ncurses: segfaulting OOB read (CVE-2022-29458)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
ncursesx86_6410.20210508.el9_6.2ncurses-6.2-10.20210508.el9_6.2.x86_64.rpm
ncurses-basenoarch10.20210508.el9_6.2ncurses-base-6.2-10.20210508.el9_6.2.noarch.rpm
ncurses-basenoarch10.20210508.el9_6.2ncurses-base-6.2-10.20210508.el9_6.2.noarch.rpm
ncurses-basenoarch10.20210508.el9_6.2ncurses-base-6.2-10.20210508.el9_6.2.noarch.rpm
ncurses-basenoarch10.20210508.el9_6.2ncurses-base-6.2-10.20210508.el9_6.2.noarch.rpm
ncurses-libsi68610.20210508.el9_6.2ncurses-libs-6.2-10.20210508.el9_6.2.i686.rpm
ncurses-libsx86_6410.20210508.el9_6.2ncurses-libs-6.2-10.20210508.el9_6.2.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 3 лет назад

ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library.

CVSS3: 6.1
redhat
больше 3 лет назад

ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library.

CVSS3: 7.1
nvd
больше 3 лет назад

ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library.

CVSS3: 7.1
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.1
debian
больше 3 лет назад

ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmen ...