In ncurses, possibly a 6.x version, there is a NULL pointer dereference at the function _nc_name_match that will lead to a denial of service attack. NOTE: the original report stated version 6.1, but the issue did not reproduce for that version according to the maintainer or a reliable third-party
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ncurses | Gnu | 6.1 (including) | 6.1 (including) |
Ncurses | Ubuntu | esm-infra/xenial | * |
Ncurses | Ubuntu | precise/esm | * |
Ncurses | Ubuntu | trusty | * |
Ncurses | Ubuntu | trusty/esm | * |
Ncurses | Ubuntu | upstream | * |
Ncurses | Ubuntu | xenial | * |