[CLSA-2024:1716272110] ncurses: Fix of CVE-2023-50495
Type:
security
Severity:
Moderate
Release date:
2024-05-21 09:53:22 UTC
Description:
- CVE-2023-50495: check return value of _nc_save_str() (from upstream patch 20230424), add validity checks in _nc_parse_entry() (from upstream patch 20170826)
Updated packages:
  • ncurses-5.9-14.20130511.el7_4.tuxcare.els2.x86_64.rpm
    sha:62da4d76d3d0255f30a781e37211e347a3a6fe83
  • ncurses-base-5.9-14.20130511.el7_4.tuxcare.els2.noarch.rpm
    sha:f12427206b4b266c4803cccf782b94708484bafa
  • ncurses-devel-5.9-14.20130511.el7_4.tuxcare.els2.i686.rpm
    sha:047bf5e1b38b1d905c66332c1ccc8d73575181ed
  • ncurses-devel-5.9-14.20130511.el7_4.tuxcare.els2.x86_64.rpm
    sha:311398d91ca74bd0125c65954109859eda5f369b
  • ncurses-libs-5.9-14.20130511.el7_4.tuxcare.els2.i686.rpm
    sha:0274920e98a1a5a8d60f4cf6ce96ff6b49088fd6
  • ncurses-libs-5.9-14.20130511.el7_4.tuxcare.els2.x86_64.rpm
    sha:1fe84404373c7b74c08978a584387e55fa391ea0
  • ncurses-static-5.9-14.20130511.el7_4.tuxcare.els2.i686.rpm
    sha:70894de7987dc6f625bd26300d5a1ebcfec962a6
  • ncurses-static-5.9-14.20130511.el7_4.tuxcare.els2.x86_64.rpm
    sha:031d03f88166dce885c2e342085aa3402ee1b162
  • ncurses-term-5.9-14.20130511.el7_4.tuxcare.els2.noarch.rpm
    sha:48b0125355b2d8c5d69a3c8345c3295e908bf0b9
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.