Oval Definition:oval:org.opensuse.security:def:201716879
Revision Date:2022-05-22Version:1
Title:CVE-2017-16879
Description:

Stack-based buffer overflow in the _nc_write_entry function in tinfo/write_entry.c in ncurses 6.0 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted terminfo file, as demonstrated by tic.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-16879
SUSE-SU-2017:3183-1
Mitre CVE-2017-16879
SUSE CVE-2017-16879
SUSE-SU-2017:3183-1
Platform(s):SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 11 SP1-TERADATA
SUSE Linux Enterprise Server 11 SP3-TERADATA
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server for SAP Applications 11 SP1-TERADATA
SUSE Linux Enterprise Server for SAP Applications 11 SP3-TERADATA
SUSE Linux Enterprise Server for SAP Applications 11 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP2
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Linux Enterprise Software Development Kit 12 SP2
SUSE Linux Enterprise Software Development Kit 12 SP3
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • libncurses5-5.6-93.12 is installed
  • OR libncurses5-32bit-5.6-93.12 is installed
  • OR libncurses5-x86-5.6-93.12 is installed
  • OR libncurses6-5.6-93.12 is installed
  • OR libncurses6-32bit-5.6-93.12 is installed
  • OR libncurses6-x86-5.6-93.12 is installed
  • OR ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR ncurses-utils-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • OR terminfo-5.6-93.12 is installed
  • OR terminfo-base-5.6-93.12 is installed
  • OR Package Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND
  • ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND Package Information
  • libncurses5-5.6-93.12 is installed
  • OR libncurses5-32bit-5.6-93.12 is installed
  • OR libncurses5-x86-5.6-93.12 is installed
  • OR libncurses6-5.6-93.12 is installed
  • OR libncurses6-32bit-5.6-93.12 is installed
  • OR libncurses6-x86-5.6-93.12 is installed
  • OR ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR ncurses-utils-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • OR terminfo-5.6-93.12 is installed
  • OR terminfo-base-5.6-93.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND ncurses is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND
  • ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP4 is installed
  • AND
  • libncurses5-5.6-93.12 is installed
  • OR libncurses5-32bit-5.6-93.12 is installed
  • OR libncurses5-x86-5.6-93.12 is installed
  • OR libncurses6-5.6-93.12 is installed
  • OR libncurses6-32bit-5.6-93.12 is installed
  • OR libncurses6-x86-5.6-93.12 is installed
  • OR ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR ncurses-utils-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • OR terminfo-5.6-93.12 is installed
  • OR terminfo-base-5.6-93.12 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP4 is installed
  • AND Package Information
  • libncurses5-5.6-93.12 is installed
  • OR libncurses5-32bit-5.6-93.12 is installed
  • OR libncurses5-x86-5.6-93.12 is installed
  • OR libncurses6-5.6-93.12 is installed
  • OR libncurses6-32bit-5.6-93.12 is installed
  • OR libncurses6-x86-5.6-93.12 is installed
  • OR ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR ncurses-utils-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • OR terminfo-5.6-93.12 is installed
  • OR terminfo-base-5.6-93.12 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • OR SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND ncurses is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND
  • ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP4 is installed
  • AND
  • libncurses5-5.6-93.12 is installed
  • OR libncurses5-32bit-5.6-93.12 is installed
  • OR libncurses5-x86-5.6-93.12 is installed
  • OR libncurses6-5.6-93.12 is installed
  • OR libncurses6-32bit-5.6-93.12 is installed
  • OR libncurses6-x86-5.6-93.12 is installed
  • OR ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR ncurses-utils-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • OR terminfo-5.6-93.12 is installed
  • OR terminfo-base-5.6-93.12 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP1-TERADATA is installed
  • OR SUSE Linux Enterprise Server 11 SP3-TERADATA is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP1-TERADATA is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP3-TERADATA is installed
  • AND
  • libncurses5-5.6-93.12 is installed
  • OR libncurses5-32bit-5.6-93.12 is installed
  • OR libncurses6-5.6-93.12 is installed
  • OR libncurses6-32bit-5.6-93.12 is installed
  • OR ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR ncurses-utils-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • OR terminfo-5.6-93.12 is installed
  • OR terminfo-base-5.6-93.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3-TERADATA is installed
  • AND Package Information
  • libncurses5-5.6-93.12 is installed
  • OR libncurses5-32bit-5.6-93.12 is installed
  • OR libncurses6-5.6-93.12 is installed
  • OR libncurses6-32bit-5.6-93.12 is installed
  • OR ncurses-5.6-93.12 is installed
  • OR ncurses-devel-5.6-93.12 is installed
  • OR ncurses-devel-32bit-5.6-93.12 is installed
  • OR ncurses-utils-5.6-93.12 is installed
  • OR tack-5.6-93.12 is installed
  • OR terminfo-5.6-93.12 is installed
  • OR terminfo-base-5.6-93.12 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND
  • ncurses-devel-5.6-93.12.1 is installed
  • OR ncurses-devel-32bit-5.6-93.12.1 is installed
  • OR tack-5.6-93.12.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP1-TERADATA is installed
  • OR SUSE Linux Enterprise Server 11 SP3-TERADATA is installed
  • AND
  • libncurses5-5.6-93.12.1 is installed
  • OR libncurses5-32bit-5.6-93.12.1 is installed
  • OR libncurses6-5.6-93.12.1 is installed
  • OR libncurses6-32bit-5.6-93.12.1 is installed
  • OR ncurses-devel-5.6-93.12.1 is installed
  • OR ncurses-devel-32bit-5.6-93.12.1 is installed
  • OR ncurses-utils-5.6-93.12.1 is installed
  • OR tack-5.6-93.12.1 is installed
  • OR terminfo-5.6-93.12.1 is installed
  • OR terminfo-base-5.6-93.12.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP4 is installed
  • AND
  • libncurses5-5.6-93.12.1 is installed
  • OR libncurses5-32bit-5.6-93.12.1 is installed
  • OR libncurses5-x86-5.6-93.12.1 is installed
  • OR libncurses6-5.6-93.12.1 is installed
  • OR libncurses6-32bit-5.6-93.12.1 is installed
  • OR libncurses6-x86-5.6-93.12.1 is installed
  • OR ncurses-devel-5.6-93.12.1 is installed
  • OR ncurses-devel-32bit-5.6-93.12.1 is installed
  • OR ncurses-utils-5.6-93.12.1 is installed
  • OR tack-5.6-93.12.1 is installed
  • OR terminfo-5.6-93.12.1 is installed
  • OR terminfo-base-5.6-93.12.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • OR SUSE Linux Enterprise Desktop 12 SP3 is installed
  • OR SUSE Linux Enterprise Server 12 SP2 is installed
  • OR SUSE Linux Enterprise Server 12 SP3 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
  • AND ncurses is not affected
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 12 SP3 is installed
  • AND
  • libncurses5 is not affected
  • OR libncurses5-32bit is not affected
  • OR libncurses6 is not affected
  • OR libncurses6-32bit is not affected
  • OR ncurses-devel is not affected
  • OR ncurses-devel-32bit is not affected
  • OR ncurses-utils is not affected
  • OR tack is not affected
  • OR terminfo is not affected
  • OR terminfo-base is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP1-TERADATA is installed
  • OR SUSE Linux Enterprise Server 11 SP3-TERADATA is installed
  • AND
  • libncurses5-5.6-93.12.1 is installed
  • OR libncurses5-32bit-5.6-93.12.1 is installed
  • OR libncurses6-5.6-93.12.1 is installed
  • OR libncurses6-32bit-5.6-93.12.1 is installed
  • OR ncurses-devel-5.6-93.12.1 is installed
  • OR ncurses-devel-32bit-5.6-93.12.1 is installed
  • OR ncurses-utils-5.6-93.12.1 is installed
  • OR tack-5.6-93.12.1 is installed
  • OR terminfo-5.6-93.12.1 is installed
  • OR terminfo-base-5.6-93.12.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP4 is installed
  • AND
  • libncurses5-5.6-93.12.1 is installed
  • OR libncurses5-32bit-5.6-93.12.1 is installed
  • OR libncurses5-x86-5.6-93.12.1 is installed
  • OR libncurses6-5.6-93.12.1 is installed
  • OR libncurses6-32bit-5.6-93.12.1 is installed
  • OR libncurses6-x86-5.6-93.12.1 is installed
  • OR ncurses-devel-5.6-93.12.1 is installed
  • OR ncurses-devel-32bit-5.6-93.12.1 is installed
  • OR ncurses-utils-5.6-93.12.1 is installed
  • OR tack-5.6-93.12.1 is installed
  • OR terminfo-5.6-93.12.1 is installed
  • OR terminfo-base-5.6-93.12.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • OR SUSE Linux Enterprise Server 12 SP3 is installed
  • AND ncurses is not affected
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 12 SP3 is installed
  • AND
  • libncurses5 is not affected
  • OR libncurses5-32bit is not affected
  • OR libncurses6 is not affected
  • OR libncurses6-32bit is not affected
  • OR ncurses-devel is not affected
  • OR ncurses-devel-32bit is not affected
  • OR ncurses-utils is not affected
  • OR tack is not affected
  • OR terminfo is not affected
  • OR terminfo-base is not affected
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND ncurses is not affected
  • BACK