VYPR
Medium severity6.5OSV Advisory· Published Nov 12, 2018· Updated Jul 23, 2026

CVE-2018-19217

CVE-2018-19217

Description

In ncurses, possibly a 6.x version, there is a NULL pointer dereference at the function _nc_name_match that will lead to a denial of service attack. NOTE: the original report stated version 6.1, but the issue did not reproduce for that version according to the maintainer or a reliable third-party

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Busybox/NcursesOSV2 versions
    v4.1, v4.2, v5.0, …+ 1 more
    • (no CPE)range: v4.1, v4.2, v5.0, …
    • (no CPE)range: 6.x
  • cpe:2.3:a:invisible-island:ncurses:6.1:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.