CVE-2019-15547: High severity gnu ncurses vulnerability
Published Aug 26, 2019
·Updated
An issue was discovered in the ncurses crate through 5.99.0 for Rust. There are format string issues in printw functions because C format arguments are mishandled.
Affected Software
1 affected component
Ncurses Project Ncurses<=5.99.0
Event History
Aug 26, 2019
CVE Published
via MITRE·05:05 PM
Data Sourced
via MITRE·05:05 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-15547?
CVE-2019-15547 is assigned a moderate severity due to potential format string vulnerabilities.
2
How do I fix CVE-2019-15547?
To fix CVE-2019-15547, update the ncurses crate to version 6.0.0 or later.
3
What software is affected by CVE-2019-15547?
CVE-2019-15547 affects all versions of the ncurses crate up to and including 5.99.0.
4
What types of vulnerabilities are involved in CVE-2019-15547?
CVE-2019-15547 involves format string vulnerabilities in the printw functions.
5
Can CVE-2019-15547 be exploited remotely?
CVE-2019-15547 may be exploited locally but does not typically facilitate remote execution.