#VU84081 Out-of-bounds write in ncurses - CVE-2020-19190
Published: December 11, 2023
ncurses
Free Software Foundation
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a boundary error within the _nc_find_entry() function in tinfo/comp_hash.c. A remote attacker can send a specially crafted command to the application, trigger an out-of-bounds write and execute arbitrary code on the target system.