Release Info

Advisory: CLSA-2024:1716272110

OS: CentOS 7 ELS

Public date: 2024-05-21 02:15:12

Project: ncurses

Version: 5.9-14.20130511.el7_4.tuxcare.els2

Errata link: https://errata.tuxcare.com/els_os/centos7els/CLSA-2024-1716272110.html

Changelog

- CVE-2023-50495: check return value of _nc_save_str() (from upstream patch 20230424), add validity checks in _nc_parse_entry() (from upstream patch 20170826)

Update

Update command: yum update ncurses*

Packages list

ncurses-5.9-14.20130511.el7_4.tuxcare.els2.x86_64.rpm ncurses-base-5.9-14.20130511.el7_4.tuxcare.els2.noarch.rpm ncurses-devel-5.9-14.20130511.el7_4.tuxcare.els2.i686.rpm ncurses-devel-5.9-14.20130511.el7_4.tuxcare.els2.x86_64.rpm ncurses-libs-5.9-14.20130511.el7_4.tuxcare.els2.i686.rpm ncurses-libs-5.9-14.20130511.el7_4.tuxcare.els2.x86_64.rpm ncurses-static-5.9-14.20130511.el7_4.tuxcare.els2.i686.rpm ncurses-static-5.9-14.20130511.el7_4.tuxcare.els2.x86_64.rpm ncurses-term-5.9-14.20130511.el7_4.tuxcare.els2.noarch.rpm

CVEs

CVE-2023-50495