CVE-2018-19217: Null Pointer Dereference
DISPUTED In ncurses, possibly a 6.x version, there is a NULL pointer dereference at the function ncnamematch that will lead to a denial of service attack. NOTE: the original report stated version 6.1, but the issue did not reproduce for that version according to the maintainer or a reliable third-party.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-19217?
CVE-2018-19217 is a vulnerability in ncurses that allows for a denial of service attack.
How severe is CVE-2018-19217?
CVE-2018-19217 has a severity rating of 6.5, making it a medium-level vulnerability.
Which versions of ncurses are affected by CVE-2018-19217?
Version 6.1 of ncurses is affected by CVE-2018-19217.
How can I fix CVE-2018-19217?
There is currently no fix available for CVE-2018-19217. It is recommended to follow any patches or updates provided by the vendor.
Where can I find more information about CVE-2018-19217?
You can find more information about CVE-2018-19217 at the following link: https://bugzilla.redhat.com/show_bug.cgi?id=1643753