Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2019-15548

Disclosure Date: August 26, 2019 (last updated November 27, 2024)
An issue was discovered in the ncurses crate through 5.99.0 for Rust. There are instr and mvwinstr buffer overflows because interaction with C functions is mishandled.
0
Attacker Value
Unknown

CVE-2019-15546

Disclosure Date: August 26, 2019 (last updated November 27, 2024)
An issue was discovered in the pancurses crate through 0.16.1 for Rust. printw and mvprintw have format string vulnerabilities.
0
Attacker Value
Unknown

CVE-2019-15547

Disclosure Date: August 26, 2019 (last updated November 27, 2024)
An issue was discovered in the ncurses crate through 5.99.0 for Rust. There are format string issues in printw functions because C format arguments are mishandled.
0
Attacker Value
Unknown

CVE-2016-10615

Disclosure Date: June 01, 2018 (last updated November 26, 2024)
curses is bindings for the native curses library, a full featured console IO library. curses downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested binary with an attacker controlled binary if the attacker is on the network or positioned in between the user and the remote server.
0