Oval Definition:oval:org.opensuse.security:def:124974
Revision Date:2019-11-28Version:1
Title:Security update for ncurses (Moderate)
Description:

This update for ncurses fixes the following issues:

Security issue fixed:

- CVE-2018-10754: Fixed a denial of service caused by a NULL Pointer Dereference in the _nc_parse_entry() (bsc#1131830). - CVE-2019-17594: Fixed a heap-based buffer over-read in _nc_find_entry function in tinfo/comp_hash.c (bsc#1154036). - CVE-2019-17595: Fixed a heap-based buffer over-read in fmt_entry function in tinfo/comp_hash.c (bsc#1154037).

Bug fixes:

- Fixed ppc64le build configuration (bsc#1134550).
Family:unixClass:patch
Status:Reference(s):1131830
1134550
1154036
1154037
CVE-2018-10754
CVE-2019-17594
CVE-2019-17595
SUSE-SU-2019:3094-1
Platform(s):SUSE Linux Enterprise Desktop 12 SP4
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • libncurses5-5.9-69.1 is installed
  • OR libncurses5-32bit-5.9-69.1 is installed
  • OR libncurses6-5.9-69.1 is installed
  • OR libncurses6-32bit-5.9-69.1 is installed
  • OR ncurses-devel-5.9-69.1 is installed
  • OR ncurses-utils-5.9-69.1 is installed
  • OR tack-5.9-69.1 is installed
  • OR terminfo-5.9-69.1 is installed
  • OR terminfo-base-5.9-69.1 is installed
  • BACK