The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.
A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Ncurses | Invisible-island | * | 6.4 (including) |
| Ncurses | Invisible-island | 6.5-20240427 (including) | 6.5-20240427 (including) |
| Ncurses | Invisible-island | 6.5-20240504 (including) | 6.5-20240504 (including) |
| Ncurses | Invisible-island | 6.5-20240511 (including) | 6.5-20240511 (including) |
| Ncurses | Invisible-island | 6.5-20240518 (including) | 6.5-20240518 (including) |
| Ncurses | Invisible-island | 6.5-20240519 (including) | 6.5-20240519 (including) |
| Ncurses | Invisible-island | 6.5-20240525 (including) | 6.5-20240525 (including) |
| Ncurses | Invisible-island | 6.5-20240601 (including) | 6.5-20240601 (including) |
| Ncurses | Invisible-island | 6.5-20240608 (including) | 6.5-20240608 (including) |
| Ncurses | Invisible-island | 6.5-20240615 (including) | 6.5-20240615 (including) |
| Ncurses | Invisible-island | 6.5-20240622 (including) | 6.5-20240622 (including) |
| Ncurses | Invisible-island | 6.5-20240629 (including) | 6.5-20240629 (including) |
| Ncurses | Invisible-island | 6.5-20240706 (including) | 6.5-20240706 (including) |
| Ncurses | Invisible-island | 6.5-20240713 (including) | 6.5-20240713 (including) |
| Ncurses | Invisible-island | 6.5-20240720 (including) | 6.5-20240720 (including) |
| Ncurses | Invisible-island | 6.5-20240727 (including) | 6.5-20240727 (including) |
| Ncurses | Invisible-island | 6.5-20240810 (including) | 6.5-20240810 (including) |
| Ncurses | Invisible-island | 6.5-20240817 (including) | 6.5-20240817 (including) |
| Ncurses | Invisible-island | 6.5-20240824 (including) | 6.5-20240824 (including) |
| Ncurses | Invisible-island | 6.5-20240831 (including) | 6.5-20240831 (including) |
| Ncurses | Invisible-island | 6.5-20240914 (including) | 6.5-20240914 (including) |
| Ncurses | Invisible-island | 6.5-20240922 (including) | 6.5-20240922 (including) |
| Ncurses | Invisible-island | 6.5-20240928 (including) | 6.5-20240928 (including) |
| Ncurses | Invisible-island | 6.5-20241006 (including) | 6.5-20241006 (including) |
| Ncurses | Invisible-island | 6.5-20241019 (including) | 6.5-20241019 (including) |
| Ncurses | Invisible-island | 6.5-20241026 (including) | 6.5-20241026 (including) |
| Ncurses | Invisible-island | 6.5-20241102 (including) | 6.5-20241102 (including) |
| Ncurses | Invisible-island | 6.5-20241109 (including) | 6.5-20241109 (including) |
| Ncurses | Invisible-island | 6.5-20241123 (including) | 6.5-20241123 (including) |
| Ncurses | Invisible-island | 6.5-20241130 (including) | 6.5-20241130 (including) |
| Ncurses | Invisible-island | 6.5-20241207 (including) | 6.5-20241207 (including) |
| Ncurses | Invisible-island | 6.5-20241214 (including) | 6.5-20241214 (including) |
| Ncurses | Invisible-island | 6.5-20241221 (including) | 6.5-20241221 (including) |
| Ncurses | Invisible-island | 6.5-20241228 (including) | 6.5-20241228 (including) |
| Ncurses | Invisible-island | 6.5-20250104 (including) | 6.5-20250104 (including) |
| Ncurses | Invisible-island | 6.5-20250111 (including) | 6.5-20250111 (including) |
| Ncurses | Invisible-island | 6.5-20250118 (including) | 6.5-20250118 (including) |
| Ncurses | Invisible-island | 6.5-20250125 (including) | 6.5-20250125 (including) |
| Ncurses | Invisible-island | 6.5-20250201 (including) | 6.5-20250201 (including) |
| Ncurses | Invisible-island | 6.5-20250208 (including) | 6.5-20250208 (including) |
| Ncurses | Invisible-island | 6.5-20250215 (including) | 6.5-20250215 (including) |
| Ncurses | Invisible-island | 6.5-20250216 (including) | 6.5-20250216 (including) |
| Ncurses | Invisible-island | 6.5-20250222 (including) | 6.5-20250222 (including) |
| Ncurses | Invisible-island | 6.5-20250301 (including) | 6.5-20250301 (including) |
| Ncurses | Invisible-island | 6.5-20250308 (including) | 6.5-20250308 (including) |
| Ncurses | Invisible-island | 6.5-20250315 (including) | 6.5-20250315 (including) |
| Ncurses | Invisible-island | 6.5-20250322 (including) | 6.5-20250322 (including) |
| Ncurses | Invisible-island | 6.5-20250329 (including) | 6.5-20250329 (including) |
| Ncurses | Invisible-island | 6.5-20250405 (including) | 6.5-20250405 (including) |
| Ncurses | Invisible-island | 6.5-20250412 (including) | 6.5-20250412 (including) |
| Ncurses | Invisible-island | 6.5-20250419 (including) | 6.5-20250419 (including) |
| Ncurses | Invisible-island | 6.5-20250426 (including) | 6.5-20250426 (including) |
| Ncurses | Invisible-island | 6.5-20250503 (including) | 6.5-20250503 (including) |
| Ncurses | Invisible-island | 6.5-20250510 (including) | 6.5-20250510 (including) |
| Ncurses | Invisible-island | 6.5-20250517 (including) | 6.5-20250517 (including) |
| Ncurses | Invisible-island | 6.5-20250524 (including) | 6.5-20250524 (including) |
| Ncurses | Invisible-island | 6.5-20250531 (including) | 6.5-20250531 (including) |
| Ncurses | Invisible-island | 6.5-20250614 (including) | 6.5-20250614 (including) |
| Ncurses | Invisible-island | 6.5-20250621 (including) | 6.5-20250621 (including) |
| Ncurses | Invisible-island | 6.5-20250628 (including) | 6.5-20250628 (including) |
| Ncurses | Invisible-island | 6.5-20250705 (including) | 6.5-20250705 (including) |
| Ncurses | Invisible-island | 6.5-20250712 (including) | 6.5-20250712 (including) |
| Ncurses | Invisible-island | 6.5-20250720 (including) | 6.5-20250720 (including) |
| Ncurses | Invisible-island | 6.5-20250726 (including) | 6.5-20250726 (including) |
| Ncurses | Invisible-island | 6.5-20250802 (including) | 6.5-20250802 (including) |
| Ncurses | Invisible-island | 6.5-20250809 (including) | 6.5-20250809 (including) |
| Ncurses | Invisible-island | 6.5-20250816 (including) | 6.5-20250816 (including) |
| Ncurses | Invisible-island | 6.5-20250823 (including) | 6.5-20250823 (including) |
| Ncurses | Invisible-island | 6.5-20250830 (including) | 6.5-20250830 (including) |
| Ncurses | Invisible-island | 6.5-20250913 (including) | 6.5-20250913 (including) |
| Ncurses | Invisible-island | 6.5-20250920 (including) | 6.5-20250920 (including) |
| Ncurses | Invisible-island | 6.5-20250927 (including) | 6.5-20250927 (including) |
| Ncurses | Invisible-island | 6.5-20251004 (including) | 6.5-20251004 (including) |
| Ncurses | Invisible-island | 6.5-20251010 (including) | 6.5-20251010 (including) |
| Ncurses | Invisible-island | 6.5-20251018 (including) | 6.5-20251018 (including) |
| Ncurses | Invisible-island | 6.5-20251025 (including) | 6.5-20251025 (including) |
| Ncurses | Invisible-island | 6.5-20251101 (including) | 6.5-20251101 (including) |
| Ncurses | Invisible-island | 6.5-20251115 (including) | 6.5-20251115 (including) |
| Ncurses | Invisible-island | 6.5-20251122 (including) | 6.5-20251122 (including) |
| Ncurses | Invisible-island | 6.5-20251123 (including) | 6.5-20251123 (including) |
| Ncurses | Invisible-island | 6.5-20251129 (including) | 6.5-20251129 (including) |
| Ncurses | Invisible-island | 6.5-20251206 (including) | 6.5-20251206 (including) |
| Red Hat Enterprise Linux 10 | RedHat | ncurses-0:6.4-15.20240127.el10_1 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | ncurses-0:6.4-14.20240127.el10_0.1 | * |
| Red Hat Hardened Images | RedHat | ncurses-main-6.6-1.1.hum1 | * |
| Ncurses | Ubuntu | esm-infra/xenial | * |
| Ncurses | Ubuntu | upstream | * |