Action not permitted
Modal body text goes here.
Modal Title
Modal Body
CVE-2025-69720 (GCVE-0-2025-69720)
Vulnerability from cvelistv5 – Published: 2026-03-19 00:00 – Updated: 2026-06-02 13:00| Vendor | Product | Version | |
|---|---|---|---|
| GNU | ncurses |
Affected:
0 , < 6.5-20251213
(custom)
cpe:2.3:a:gnu:ncurses:*:*:*:*:*:*:*:* |
|
| Siemens | RUGGEDCOM RST2428P |
Affected:
0 , < V4.0
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 9.8,
"baseSeverity": "CRITICAL",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2025-69720",
"options": [
{
"Exploitation": "poc"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-03-24T01:05:11.996191Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-120",
"description": "CWE-120 Buffer Copy without Checking Size of Input (\u0027Classic Buffer Overflow\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-04-23T15:32:18.095Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
},
{
"affected": [
{
"defaultStatus": "unknown",
"product": "RUGGEDCOM RST2428P",
"vendor": "Siemens",
"versions": [
{
"lessThan": "V4.0",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-06-02T13:00:33.095Z",
"orgId": "0b142b55-0307-4c5a-b3c9-f314f3fb7c5e",
"shortName": "siemens-SADP"
},
"references": [
{
"url": "https://cert-portal.siemens.com/productcert/html/ssa-253495.html"
}
],
"x_adpType": "supplier"
}
],
"cna": {
"affected": [
{
"defaultStatus": "unaffected",
"product": "ncurses",
"vendor": "GNU",
"versions": [
{
"lessThan": "6.5-20251213",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:gnu:ncurses:*:*:*:*:*:*:*:*",
"versionEndExcluding": "6.5-20251213",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 7.3,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L",
"version": "3.1"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-121",
"description": "CWE-121 Stack-based Buffer Overflow",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-03-26T15:08:06.834Z",
"orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
"shortName": "mitre"
},
"references": [
{
"url": "https://marc.info/?l=ncurses-bug\u0026m=176539968328570\u0026w=2"
},
{
"url": "https://marc.info/?l=ncurses-bug\u0026m=176540731801330\u0026w=2"
},
{
"url": "https://marc.info/?l=ncurses-bug\u0026m=176545557728083\u0026w=2"
},
{
"url": "https://github.com/Cao-Wuhui/CVE-2025-69720"
},
{
"url": "https://invisible-island.net/archives/ncurses/6.5/"
},
{
"url": "https://invisible-island.net/ncurses/"
}
],
"x_generator": {
"engine": "enrichogram 0.0.1"
}
}
},
"cveMetadata": {
"assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
"assignerShortName": "mitre",
"cveId": "CVE-2025-69720",
"datePublished": "2026-03-19T00:00:00.000Z",
"dateReserved": "2026-01-09T00:00:00.000Z",
"dateUpdated": "2026-06-02T13:00:33.095Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2",
"vulnerability-lookup:meta": {
"epss": {
"cve": "CVE-2025-69720",
"date": "2026-10-03",
"epss": "0.00447",
"percentile": "0.36674"
},
"vulnrichment": {
"containers": {
"adp": [
{
"affected": [
{
"defaultStatus": "unknown",
"product": "RUGGEDCOM RST2428P",
"vendor": "Siemens",
"versions": [
{
"lessThan": "V4.0",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-06-02T13:00:33.095Z",
"orgId": "0b142b55-0307-4c5a-b3c9-f314f3fb7c5e",
"shortName": "siemens-SADP"
},
"references": [
{
"url": "https://cert-portal.siemens.com/productcert/html/ssa-253495.html"
}
],
"x_adpType": "supplier"
},
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 9.8,
"baseSeverity": "CRITICAL",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2025-69720",
"options": [
{
"Exploitation": "poc"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-03-24T01:05:11.996191Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-120",
"description": "CWE-120 Buffer Copy without Checking Size of Input (\u0027Classic Buffer Overflow\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-03-24T01:06:48.727Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"defaultStatus": "unaffected",
"product": "ncurses",
"vendor": "GNU",
"versions": [
{
"lessThan": "6.5-20251213",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:gnu:ncurses:*:*:*:*:*:*:*:*",
"versionEndExcluding": "6.5-20251213",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c."
}
],
"metrics": [
{
"cvssV3_1": {
"baseScore": 7.3,
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L",
"version": "3.1"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-121",
"description": "CWE-121 Stack-based Buffer Overflow",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-03-26T15:08:06.834Z",
"orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
"shortName": "mitre"
},
"references": [
{
"url": "https://marc.info/?l=ncurses-bug\u0026m=176539968328570\u0026w=2"
},
{
"url": "https://marc.info/?l=ncurses-bug\u0026m=176540731801330\u0026w=2"
},
{
"url": "https://marc.info/?l=ncurses-bug\u0026m=176545557728083\u0026w=2"
},
{
"url": "https://github.com/Cao-Wuhui/CVE-2025-69720"
},
{
"url": "https://invisible-island.net/archives/ncurses/6.5/"
},
{
"url": "https://invisible-island.net/ncurses/"
}
],
"x_generator": {
"engine": "enrichogram 0.0.1"
}
}
},
"cveMetadata": {
"assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
"assignerShortName": "mitre",
"cveId": "CVE-2025-69720",
"datePublished": "2026-03-19T00:00:00.000Z",
"dateReserved": "2026-01-09T00:00:00.000Z",
"dateUpdated": "2026-06-02T13:00:33.095Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
}
}
ALSA-2026:5913
Vulnerability from osv_almalinux – Published: 2026-03-26 00:00 – Updated: 2026-03-27 10:30 – Source websiteThe ncurses (new curses) library routines are a terminal-independent method of updating character screens with reasonable optimization. The ncurses packages contain support utilities including a terminfo compiler tic, a decompiler infocmp, clear, tput, tset, and a termcap conversion tool captoinfo.
Security Fix(es):
- ncurses: ncurses: Buffer overflow vulnerability may lead to arbitrary code execution. (CVE-2025-69720)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
{
"affected": [
{
"package": {
"ecosystem": "AlmaLinux:10",
"name": "ncurses-base"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "6.4-15.20240127.el10_1"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "AlmaLinux:10",
"name": "ncurses-term"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "6.4-15.20240127.el10_1"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"details": "The ncurses (new curses) library routines are a terminal-independent method of updating character screens with reasonable optimization. The ncurses packages contain support utilities including a terminfo compiler tic, a decompiler infocmp, clear, tput, tset, and a termcap conversion tool captoinfo. \n\nSecurity Fix(es): \n\n * ncurses: ncurses: Buffer overflow vulnerability may lead to arbitrary code execution. (CVE-2025-69720)\n\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n",
"id": "ALSA-2026:5913",
"modified": "2026-03-27T10:30:58Z",
"published": "2026-03-26T00:00:00Z",
"references": [
{
"type": "ADVISORY",
"url": "https://access.redhat.com/errata/RHSA-2026:5913"
},
{
"type": "REPORT",
"url": "https://access.redhat.com/security/cve/CVE-2025-69720"
},
{
"type": "REPORT",
"url": "https://bugzilla.redhat.com/2449037"
},
{
"type": "ADVISORY",
"url": "https://errata.almalinux.org/10/ALSA-2026-5913.html"
}
],
"related": [
"CVE-2025-69720"
],
"summary": "Moderate: ncurses security update"
}
BDU:2026-12826 (CVE-2025-69720)
Vulnerability from fstec – Published: 2026-08-28 – Updated: 2026-09-17 – View on bdu.fstec.ru Exploit exists Fixed- CWE-121 - Переполнение буфера в стеке
{
"CVSS 2.0": "AV:L/AC:L/Au:N/C:C/I:C/A:P",
"CVSS 3.0": "AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L",
"CVSS 4.0": null,
"remediation_\u0418\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0440": null,
"remediation_\u041d\u0430\u0438\u043c\u0435\u043d\u043e\u0432\u0430\u043d\u0438\u0435": null,
"\u0412\u0435\u043d\u0434\u043e\u0440 \u041f\u041e": "Canonical Ltd., \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f, \u041e\u041e\u041e \u00ab\u0420\u0443\u0441\u0411\u0418\u0422\u0435\u0445-\u0410\u0441\u0442\u0440\u0430\u00bb, Red Hat, Inc.",
"\u0412\u0435\u0440\u0441\u0438\u044f \u041f\u041e": "14.04 LTS (Ubuntu), 16.04 LTS (Ubuntu), 9 (Debian GNU/Linux), 18.04 LTS (Ubuntu), 10 (Debian GNU/Linux), 20.04 LTS (Ubuntu), 11 (Debian GNU/Linux), 12 (Debian GNU/Linux), 1.7 (Astra Linux Special Edition), 22.04 LTS (Ubuntu), 4.7 (Astra Linux Special Edition), 24.04 LTS (Ubuntu), 10 (Red Hat Enterprise Linux), 13 (Debian GNU/Linux), 25.10 (Ubuntu), 10.0 Extended Update Support (Red Hat Enterprise Linux), \u0434\u043e 6.5-20251213 (ncurses)",
"\u0412\u043e\u0437\u043c\u043e\u0436\u043d\u044b\u0435 \u043c\u0435\u0440\u044b \u043f\u043e \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u044e": "\u0412 \u0443\u0441\u043b\u043e\u0432\u0438\u044f\u0445 \u043e\u0442\u0441\u0443\u0442\u0441\u0442\u0432\u0438\u044f \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u0439 \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u043e\u0442 \u043f\u0440\u043e\u0438\u0437\u0432\u043e\u0434\u0438\u0442\u0435\u043b\u044f \u0440\u0435\u043a\u043e\u043c\u0435\u043d\u0434\u0443\u0435\u0442\u0441\u044f \u043f\u0440\u0438\u0434\u0435\u0440\u0436\u0438\u0432\u0430\u0442\u044c\u0441\u044f \"\u0420\u0435\u043a\u043e\u043c\u0435\u043d\u0434\u0430\u0446\u0438\u0439 \u043f\u043e \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0439 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 \u043e\u043f\u0435\u0440\u0430\u0446\u0438\u043e\u043d\u043d\u044b\u0445 \u0441\u0438\u0441\u0442\u0435\u043c LINUX\", \u0438\u0437\u043b\u043e\u0436\u0435\u043d\u043d\u044b\u0445 \u0432 \u043c\u0435\u0442\u043e\u0434\u0438\u0447\u0435\u0441\u043a\u043e\u043c \u0434\u043e\u043a\u0443\u043c\u0435\u043d\u0442\u0435 \u0424\u0421\u0422\u042d\u041a \u0420\u043e\u0441\u0441\u0438\u0438, \u0443\u0442\u0432\u0435\u0440\u0436\u0434\u0451\u043d\u043d\u043e\u043c 25 \u0434\u0435\u043a\u0430\u0431\u0440\u044f 2022 \u0433\u043e\u0434\u0430.\n\n\u0418\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0438\u0435 \u0440\u0435\u043a\u043e\u043c\u0435\u043d\u0434\u0430\u0446\u0438\u0439:\n\u0414\u043b\u044f Ncurses:\nhttps://github.com/Cao-Wuhui/CVE-2025-69720\n\n\u0414\u043b\u044f Debian GNU/Linux:\nhttps://security-tracker.debian.org/tracker/CVE-2025-69720\nhttps://deb.freexian.com/extended-lts/tracker/CVE-2025-69720\n\n\u0414\u043b\u044f \u041e\u0421 Astra Linux:\n\u043e\u0431\u043d\u043e\u0432\u0438\u0442\u044c \u043f\u0430\u043a\u0435\u0442 ncurses \u0434\u043e 6.1+20181013-2+deb10u5.astra1 \u0438\u043b\u0438 \u0431\u043e\u043b\u0435\u0435 \u0432\u044b\u0441\u043e\u043a\u043e\u0439 \u0432\u0435\u0440\u0441\u0438\u0438: https://wiki.astralinux.ru/astra-linux-se17-bulletin-2026-0820SE17\n\n\u0414\u043b\u044f Ubuntu:\nhttps://ubuntu.com/security/CVE-2025-69720\n\n\u0414\u043b\u044f \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u044b\u0445 \u043f\u0440\u043e\u0434\u0443\u043a\u0442\u043e\u0432 Red Hat, Inc.:\nhttps://access.redhat.com/security/cve/CVE-2025-69720\n\n\u0414\u043b\u044f \u041e\u0421 Astra Linux:\n\u043e\u0431\u043d\u043e\u0432\u0438\u0442\u044c \u043f\u0430\u043a\u0435\u0442 ncurses \u0434\u043e 6.1+20181013-2+deb10u5.astra1 \u0438\u043b\u0438 \u0431\u043e\u043b\u0435\u0435 \u0432\u044b\u0441\u043e\u043a\u043e\u0439 \u0432\u0435\u0440\u0441\u0438\u0438, \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u044f \u0440\u0435\u043a\u043e\u043c\u0435\u043d\u0434\u0430\u0446\u0438\u0438 \u043f\u0440\u043e\u0438\u0437\u0432\u043e\u0434\u0438\u0442\u0435\u043b\u044f: https://wiki.astralinux.ru/astra-linux-se47-bulletin-2026-0907SE47",
"\u0414\u0430\u0442\u0430 \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u0438\u044f": "19.03.2026",
"\u0414\u0430\u0442\u0430 \u043f\u043e\u0441\u043b\u0435\u0434\u043d\u0435\u0433\u043e \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f": "17.09.2026",
"\u0414\u0430\u0442\u0430 \u043f\u0443\u0431\u043b\u0438\u043a\u0430\u0446\u0438\u0438": "28.08.2026",
"\u0418\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0440": "BDU:2026-12826",
"\u0418\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0440\u044b \u0434\u0440\u0443\u0433\u0438\u0445 \u0441\u0438\u0441\u0442\u0435\u043c \u043e\u043f\u0438\u0441\u0430\u043d\u0438\u0439 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "CVE-2025-69720",
"\u0418\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044f \u043e\u0431 \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u0438": "\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0430",
"\u041a\u043b\u0430\u0441\u0441 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u043a\u043e\u0434\u0430",
"\u041d\u0430\u0437\u0432\u0430\u043d\u0438\u0435 \u041f\u041e": "Ubuntu, Debian GNU/Linux, Astra Linux Special Edition (\u0437\u0430\u043f\u0438\u0441\u044c \u0432 \u0435\u0434\u0438\u043d\u043e\u043c \u0440\u0435\u0435\u0441\u0442\u0440\u0435 \u0440\u043e\u0441\u0441\u0438\u0439\u0441\u043a\u0438\u0445 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c \u2116369), Red Hat Enterprise Linux, ncurses",
"\u041d\u0430\u0438\u043c\u0435\u043d\u043e\u0432\u0430\u043d\u0438\u0435 \u041e\u0421 \u0438 \u0442\u0438\u043f \u0430\u043f\u043f\u0430\u0440\u0430\u0442\u043d\u043e\u0439 \u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c\u044b": "Canonical Ltd. Ubuntu 14.04 LTS , Canonical Ltd. Ubuntu 16.04 LTS , \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Debian GNU/Linux 9 , Canonical Ltd. Ubuntu 18.04 LTS , \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Debian GNU/Linux 10 , Canonical Ltd. Ubuntu 20.04 LTS , \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Debian GNU/Linux 11 , \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Debian GNU/Linux 12 , \u041e\u041e\u041e \u00ab\u0420\u0443\u0441\u0411\u0418\u0422\u0435\u0445-\u0410\u0441\u0442\u0440\u0430\u00bb Astra Linux Special Edition 1.7 (\u0437\u0430\u043f\u0438\u0441\u044c \u0432 \u0435\u0434\u0438\u043d\u043e\u043c \u0440\u0435\u0435\u0441\u0442\u0440\u0435 \u0440\u043e\u0441\u0441\u0438\u0439\u0441\u043a\u0438\u0445 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c \u2116369), Canonical Ltd. Ubuntu 22.04 LTS , \u041e\u041e\u041e \u00ab\u0420\u0443\u0441\u0411\u0418\u0422\u0435\u0445-\u0410\u0441\u0442\u0440\u0430\u00bb Astra Linux Special Edition 4.7 ARM (\u0437\u0430\u043f\u0438\u0441\u044c \u0432 \u0435\u0434\u0438\u043d\u043e\u043c \u0440\u0435\u0435\u0441\u0442\u0440\u0435 \u0440\u043e\u0441\u0441\u0438\u0439\u0441\u043a\u0438\u0445 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c \u2116369), Canonical Ltd. Ubuntu 24.04 LTS , Red Hat, Inc. Red Hat Enterprise Linux 10 , \u0421\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e \u0441\u0432\u043e\u0431\u043e\u0434\u043d\u043e\u0433\u043e \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f Debian GNU/Linux 13 , Canonical Ltd. Ubuntu 25.10 , Red Hat, Inc. Red Hat Enterprise Linux 10.0 Extended Update Support ",
"\u041d\u0430\u0438\u043c\u0435\u043d\u043e\u0432\u0430\u043d\u0438\u0435 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u043a\u043e\u043c\u043f\u043e\u043d\u0435\u043d\u0442\u0430 progs/infocmp.c \u0431\u0438\u0431\u043b\u0438\u043e\u0442\u0435\u043a\u0438 \u0443\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u044f \u0432\u0432\u043e\u0434\u043e\u043c-\u0432\u044b\u0432\u043e\u0434\u043e\u043c \u043d\u0430 \u0442\u0435\u0440\u043c\u0438\u043d\u0430\u043b Ncurses, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043d\u0430\u0440\u0443\u0448\u0438\u0442\u0435\u043b\u044e \u0432\u044b\u0437\u0432\u0430\u0442\u044c \u043e\u0442\u043a\u0430\u0437 \u0432 \u043e\u0431\u0441\u043b\u0443\u0436\u0438\u0432\u0430\u043d\u0438\u0438",
"\u041d\u0430\u043b\u0438\u0447\u0438\u0435 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u0430": "\u0421\u0443\u0449\u0435\u0441\u0442\u0432\u0443\u0435\u0442",
"\u041e\u043f\u0438\u0441\u0430\u043d\u0438\u0435 \u043e\u0448\u0438\u0431\u043a\u0438 CWE": "\u041f\u0435\u0440\u0435\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u0435 \u0431\u0443\u0444\u0435\u0440\u0430 \u0432 \u0441\u0442\u0435\u043a\u0435 (CWE-121)",
"\u041e\u043f\u0438\u0441\u0430\u043d\u0438\u0435 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u043a\u043e\u043c\u043f\u043e\u043d\u0435\u043d\u0442\u0430 progs/infocmp.c \u0431\u0438\u0431\u043b\u0438\u043e\u0442\u0435\u043a\u0438 \u0443\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u044f \u0432\u0432\u043e\u0434\u043e\u043c-\u0432\u044b\u0432\u043e\u0434\u043e\u043c \u043d\u0430 \u0442\u0435\u0440\u043c\u0438\u043d\u0430\u043b Ncurses \u0441\u0432\u044f\u0437\u0430\u043d\u0430 \u0441 \u043f\u0435\u0440\u0435\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u0435\u043c \u0431\u0443\u0444\u0435\u0440\u0430 \u043d\u0430 \u0441\u0442\u0435\u043a\u0435. \u042d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u044f \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u043c\u043e\u0436\u0435\u0442 \u043f\u043e\u0437\u0432\u043e\u043b\u0438\u0442\u044c \u043d\u0430\u0440\u0443\u0448\u0438\u0442\u0435\u043b\u044e \u0432\u044b\u0437\u0432\u0430\u0442\u044c \u043e\u0442\u043a\u0430\u0437 \u0432 \u043e\u0431\u0441\u043b\u0443\u0436\u0438\u0432\u0430\u043d\u0438\u0438",
"\u041f\u043e\u0441\u043b\u0435\u0434\u0441\u0442\u0432\u0438\u044f \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": null,
"\u041f\u0440\u043e\u0447\u0430\u044f \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u044f": null,
"\u0421\u0432\u044f\u0437\u044c \u0441 \u0438\u043d\u0446\u0438\u0434\u0435\u043d\u0442\u0430\u043c\u0438 \u0418\u0411": "\u0414\u0430\u043d\u043d\u044b\u0435 \u0443\u0442\u043e\u0447\u043d\u044f\u044e\u0442\u0441\u044f",
"\u0421\u043e\u0441\u0442\u043e\u044f\u043d\u0438\u0435 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u041e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d\u0430",
"\u0421\u043f\u043e\u0441\u043e\u0431 \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0438\u044f": "\u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u0435 \u043f\u0440\u043e\u0433\u0440\u0430\u043c\u043c\u043d\u043e\u0433\u043e \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0435\u043d\u0438\u044f",
"\u0421\u043f\u043e\u0441\u043e\u0431 \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438": "\u041c\u0430\u043d\u0438\u043f\u0443\u043b\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u0435 \u0441\u0442\u0440\u0443\u043a\u0442\u0443\u0440\u0430\u043c\u0438 \u0434\u0430\u043d\u043d\u044b\u0445",
"\u0421\u0441\u044b\u043b\u043a\u0438 \u043d\u0430 \u0438\u0441\u0442\u043e\u0447\u043d\u0438\u043a\u0438": "https://nvd.nist.gov/vuln/detail/CVE-2025-69720\nhttps://security-tracker.debian.org/tracker/CVE-2025-69720\nhttps://github.com/Cao-Wuhui/CVE-2025-69720\nhttps://invisible-island.net/archives/ncurses/6.5/\nhttps://marc.info/?l=ncurses-bug\u0026m=176539968328570\u0026w=2\nhttps://marc.info/?l=ncurses-bug\u0026m=176540731801330\u0026w=2\nhttps://marc.info/?l=ncurses-bug\u0026m=176545557728083\u0026w=2\nhttps://wiki.astralinux.ru/astra-linux-se17-bulletin-2026-0820SE17\nhttps://deb.freexian.com/extended-lts/tracker/CVE-2025-69720\nhttps://ubuntu.com/security/CVE-2025-69720\nhttps://access.redhat.com/security/cve/CVE-2025-69720\nhttps://wiki.astralinux.ru/astra-linux-se47-bulletin-2026-0907SE47",
"\u0421\u0442\u0430\u0442\u0443\u0441 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u041f\u043e\u0434\u0442\u0432\u0435\u0440\u0436\u0434\u0435\u043d\u0430 \u043f\u0440\u043e\u0438\u0437\u0432\u043e\u0434\u0438\u0442\u0435\u043b\u0435\u043c",
"\u0422\u0438\u043f \u041f\u041e": "\u041e\u043f\u0435\u0440\u0430\u0446\u0438\u043e\u043d\u043d\u0430\u044f \u0441\u0438\u0441\u0442\u0435\u043c\u0430, \u041f\u0440\u0438\u043a\u043b\u0430\u0434\u043d\u043e\u0435 \u041f\u041e \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u043e\u043d\u043d\u044b\u0445 \u0441\u0438\u0441\u0442\u0435\u043c",
"\u0422\u0438\u043f \u043e\u0448\u0438\u0431\u043a\u0438 CWE": "CWE-121",
"\u0423\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438": "\u0421\u0440\u0435\u0434\u043d\u0438\u0439 \u0443\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 (\u0431\u0430\u0437\u043e\u0432\u0430\u044f \u043e\u0446\u0435\u043d\u043a\u0430 CVSS 2.0 \u0441\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u0435\u0442 6,8)\n\u0412\u044b\u0441\u043e\u043a\u0438\u0439 \u0443\u0440\u043e\u0432\u0435\u043d\u044c \u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 (\u0431\u0430\u0437\u043e\u0432\u0430\u044f \u043e\u0446\u0435\u043d\u043a\u0430 CVSS 3.1 \u0441\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u0435\u0442 7,3)"
}
BELL-CVE-2025-69720 (CVE-2025-69720)
Vulnerability from osv_bellsoft – Published: 2026-03-21 06:35 – Updated: 2026-03-24 06:07 – Source website| URL | Type | |
|---|---|---|
{
"affected": [
{
"package": {
"ecosystem": "Alpaquita:23",
"name": "ncurses",
"purl": "pkg:apk/alpaquita/ncurses?arch=source\u0026distro=23"
},
"ranges": [
{
"events": [
{
"introduced": "6.3_p20221119-r0"
},
{
"fixed": "6.3_p20221119-r3"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "Alpaquita:25",
"name": "ncurses",
"purl": "pkg:apk/alpaquita/ncurses?arch=source\u0026distro=25"
},
"ranges": [
{
"events": [
{
"introduced": "6.5_p20250503-r0"
},
{
"fixed": "6.5_p20250503-r1"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "Alpaquita:stream",
"name": "ncurses",
"purl": "pkg:apk/alpaquita/ncurses?arch=source\u0026distro=stream"
},
"ranges": [
{
"events": [
{
"introduced": "6.4_p20230603-r0"
},
{
"fixed": "6.6_p20251231-r0"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "BellSoft Hardened Containers:23",
"name": "ncurses",
"purl": "pkg:apk/bellsoft-hardened-containers/ncurses?arch=source\u0026distro=23"
},
"ranges": [
{
"events": [
{
"introduced": "6.3_p20221119-r0"
},
{
"fixed": "6.3_p20221119-r3"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "BellSoft Hardened Containers:25",
"name": "ncurses",
"purl": "pkg:apk/bellsoft-hardened-containers/ncurses?arch=source\u0026distro=25"
},
"ranges": [
{
"events": [
{
"introduced": "6.5_p20250503-r0"
},
{
"fixed": "6.5_p20250503-r1"
}
],
"type": "ECOSYSTEM"
}
]
},
{
"package": {
"ecosystem": "BellSoft Hardened Containers:stream",
"name": "ncurses",
"purl": "pkg:apk/bellsoft-hardened-containers/ncurses?arch=source\u0026distro=stream"
},
"ranges": [
{
"events": [
{
"introduced": "6.4_p20230603-r0"
},
{
"fixed": "6.6_p20251231-r0"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"id": "BELL-CVE-2025-69720",
"modified": "2026-03-24T06:07:44.932363Z",
"published": "2026-03-21T06:35:28.646338Z",
"references": [
{
"type": "ADVISORY",
"url": "https://docs.bell-sw.com/security/cves/CVE-2025-69720"
}
],
"schema_version": "1.7.4",
"severity": [
{
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"type": "CVSS_V3"
}
],
"upstream": [
"CVE-2025-69720"
]
}
CERTFR-2026-AVI-0376
Vulnerability from certfr_avis - Published: 2026-03-30 - Updated: 2026-03-30
De multiples vulnérabilités ont été découvertes dans les produits Microsoft. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
| Vendor | Product | Description | ||
|---|---|---|---|---|
| Microsoft | CBL Mariner | cbl2 telegraf 1.29.4-21 versions antérieures à 1.29.4-22 | ||
| Microsoft | Azure Linux | azl3 glibc 2.38-18 versions antérieures à 2.38-19 | ||
| Microsoft | Azure Linux | azl3 squid 6.13-3 versions antérieures à 6.13-4 | ||
| Microsoft | Azure Linux | azl3 python-pyasn1 0.4.8-1 versions antérieures à 0.4.8-2 | ||
| Microsoft | Azure Linux | azl3 nginx 1.28.2-1 versions antérieures à 1.28.3-1 | ||
| Microsoft | CBL Mariner | cbl2 ncurses 6.4-3 versions antérieures à 6.4-4 | ||
| Microsoft | Azure Linux | azl3 kernel 6.6.126.1-1 versions antérieures à 6.6.130.1-1 | ||
| Microsoft | Azure Linux | azl3 ncurses 6.4-2 versions antérieures à 6.4-3 | ||
| Microsoft | CBL Mariner | cbl2 terraform 1.3.2-29 versions antérieures à 1.3.2-30 | ||
| Microsoft | Azure Linux | azl3 libsoup 3.4.4-12 versions antérieures à 3.4.4-14 | ||
| Microsoft | Azure Linux | azl3 etcd 3.5.21-1 versions antérieures à 3.5.28-1 |
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "cbl2 telegraf 1.29.4-21 versions ant\u00e9rieures \u00e0 1.29.4-22",
"product": {
"name": "CBL Mariner",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "azl3 glibc 2.38-18 versions ant\u00e9rieures \u00e0 2.38-19",
"product": {
"name": "Azure Linux",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "azl3 squid 6.13-3 versions ant\u00e9rieures \u00e0 6.13-4",
"product": {
"name": "Azure Linux",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "azl3 python-pyasn1 0.4.8-1 versions ant\u00e9rieures \u00e0 0.4.8-2",
"product": {
"name": "Azure Linux",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "azl3 nginx 1.28.2-1 versions ant\u00e9rieures \u00e0 1.28.3-1",
"product": {
"name": "Azure Linux",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "cbl2 ncurses 6.4-3 versions ant\u00e9rieures \u00e0 6.4-4",
"product": {
"name": "CBL Mariner",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "azl3 kernel 6.6.126.1-1 versions ant\u00e9rieures \u00e0 6.6.130.1-1",
"product": {
"name": "Azure Linux",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "azl3 ncurses 6.4-2 versions ant\u00e9rieures \u00e0 6.4-3",
"product": {
"name": "Azure Linux",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "cbl2 terraform 1.3.2-29 versions ant\u00e9rieures \u00e0 1.3.2-30",
"product": {
"name": "CBL Mariner",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "azl3 libsoup 3.4.4-12 versions ant\u00e9rieures \u00e0 3.4.4-14",
"product": {
"name": "Azure Linux",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
},
{
"description": "azl3 etcd 3.5.21-1 versions ant\u00e9rieures \u00e0 3.5.28-1",
"product": {
"name": "Azure Linux",
"vendor": {
"name": "Microsoft",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2026-23318",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23318"
},
{
"name": "CVE-2026-23368",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23368"
},
{
"name": "CVE-2026-23281",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23281"
},
{
"name": "CVE-2026-32647",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-32647"
},
{
"name": "CVE-2026-23269",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23269"
},
{
"name": "CVE-2026-23293",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23293"
},
{
"name": "CVE-2026-23290",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23290"
},
{
"name": "CVE-2026-27651",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-27651"
},
{
"name": "CVE-2026-23303",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23303"
},
{
"name": "CVE-2026-27654",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-27654"
},
{
"name": "CVE-2026-23340",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23340"
},
{
"name": "CVE-2026-23253",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23253"
},
{
"name": "CVE-2026-33343",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-33343"
},
{
"name": "CVE-2026-23271",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23271"
},
{
"name": "CVE-2026-23268",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23268"
},
{
"name": "CVE-2026-23285",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23285"
},
{
"name": "CVE-2026-23304",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23304"
},
{
"name": "CVE-2026-23357",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23357"
},
{
"name": "CVE-2026-4645",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-4645"
},
{
"name": "CVE-2026-23324",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23324"
},
{
"name": "CVE-2026-23347",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23347"
},
{
"name": "CVE-2026-28755",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28755"
},
{
"name": "CVE-2026-23317",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23317"
},
{
"name": "CVE-2026-23334",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23334"
},
{
"name": "CVE-2026-23391",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23391"
},
{
"name": "CVE-2026-23319",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23319"
},
{
"name": "CVE-2026-23279",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23279"
},
{
"name": "CVE-2026-23244",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23244"
},
{
"name": "CVE-2026-23246",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23246"
},
{
"name": "CVE-2026-30922",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-30922"
},
{
"name": "CVE-2026-23286",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23286"
},
{
"name": "CVE-2026-23359",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23359"
},
{
"name": "CVE-2026-23298",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23298"
},
{
"name": "CVE-2026-23296",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23296"
},
{
"name": "CVE-2026-23396",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23396"
},
{
"name": "CVE-2026-23370",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23370"
},
{
"name": "CVE-2026-23315",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23315"
},
{
"name": "CVE-2026-23352",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23352"
},
{
"name": "CVE-2026-23367",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23367"
},
{
"name": "CVE-2026-32748",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-32748"
},
{
"name": "CVE-2026-23300",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23300"
},
{
"name": "CVE-2026-23379",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23379"
},
{
"name": "CVE-2026-23381",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23381"
},
{
"name": "CVE-2026-23392",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23392"
},
{
"name": "CVE-2026-23245",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23245"
},
{
"name": "CVE-2026-4438",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-4438"
},
{
"name": "CVE-2026-23364",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23364"
},
{
"name": "CVE-2026-23274",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23274"
},
{
"name": "CVE-2026-23284",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23284"
},
{
"name": "CVE-2026-23397",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23397"
},
{
"name": "CVE-2026-23343",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23343"
},
{
"name": "CVE-2026-23336",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23336"
},
{
"name": "CVE-2025-69720",
"url": "https://www.cve.org/CVERecord?id=CVE-2025-69720"
},
{
"name": "CVE-2026-23289",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23289"
},
{
"name": "CVE-2026-23292",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23292"
},
{
"name": "CVE-2026-23277",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23277"
},
{
"name": "CVE-2026-4437",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-4437"
},
{
"name": "CVE-2026-27784",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-27784"
},
{
"name": "CVE-2026-23388",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23388"
},
{
"name": "CVE-2026-28753",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28753"
},
{
"name": "CVE-2026-33526",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-33526"
},
{
"name": "CVE-2026-23310",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23310"
},
{
"name": "CVE-2026-2369",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-2369"
},
{
"name": "CVE-2026-33515",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-33515"
},
{
"name": "CVE-2026-23395",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23395"
},
{
"name": "CVE-2026-23100",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23100"
},
{
"name": "CVE-2026-23306",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23306"
},
{
"name": "CVE-2026-33413",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-33413"
},
{
"name": "CVE-2026-23291",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23291"
},
{
"name": "CVE-2026-23382",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23382"
},
{
"name": "CVE-2026-23312",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23312"
},
{
"name": "CVE-2026-23365",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23365"
},
{
"name": "CVE-2026-23356",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23356"
},
{
"name": "CVE-2026-23307",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23307"
},
{
"name": "CVE-2026-23398",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23398"
},
{
"name": "CVE-2026-23351",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23351"
},
{
"name": "CVE-2026-23390",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-23390"
}
],
"initial_release_date": "2026-03-30T00:00:00",
"last_revision_date": "2026-03-30T00:00:00",
"links": [],
"reference": "CERTFR-2026-AVI-0376",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2026-03-30T00:00:00.000000"
}
],
"risks": [
{
"description": "Non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Microsoft. Elles permettent \u00e0 un attaquant de provoquer un probl\u00e8me de s\u00e9curit\u00e9 non sp\u00e9cifi\u00e9 par l\u0027\u00e9diteur.",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Microsoft",
"vendor_advisories": [
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-32748",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32748"
},
{
"published_at": "2026-03-22",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-4438",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4438"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23347",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23347"
},
{
"published_at": "2026-03-20",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23268",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23268"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23392",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23392"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23319",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23319"
},
{
"published_at": "2026-03-20",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23253",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23253"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23296",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23296"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23364",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23364"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23368",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23368"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-27654",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-27654"
},
{
"published_at": "2026-03-21",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-30922",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-30922"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23286",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23286"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23396",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23396"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23340",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23340"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23324",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23324"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-33515",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-33515"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23318",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23318"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23379",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23379"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23317",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23317"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-27784",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-27784"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23359",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23359"
},
{
"published_at": "2026-03-19",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23245",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23245"
},
{
"published_at": "2026-03-20",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23269",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23269"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23298",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23298"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23304",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23304"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23370",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23370"
},
{
"published_at": "2026-03-22",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23100",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23100"
},
{
"published_at": "2026-03-21",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23271",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23271"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23352",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23352"
},
{
"published_at": "2026-03-28",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-33343",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-33343"
},
{
"published_at": "2026-03-22",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-4437",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4437"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23343",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23343"
},
{
"published_at": "2026-03-28",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-33413",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-33413"
},
{
"published_at": "2026-03-19",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23246",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23246"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23279",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23279"
},
{
"published_at": "2026-03-19",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23244",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23244"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23367",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23367"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23307",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23307"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23398",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23398"
},
{
"published_at": "2026-03-25",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2025-69720",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-69720"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-28755",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-28755"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23300",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23300"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23381",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23381"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23356",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23356"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23351",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23351"
},
{
"published_at": "2026-03-21",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23277",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23277"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23315",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23315"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-4645",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4645"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-33526",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-33526"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23382",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23382"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23310",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23310"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23306",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23306"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23336",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23336"
},
{
"published_at": "2026-03-25",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-2369",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-2369"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23391",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23391"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23290",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23290"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23312",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23312"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23388",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23388"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23390",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23390"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23303",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23303"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23289",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23289"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23293",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23293"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-27651",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-27651"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23291",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23291"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-28753",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-28753"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23334",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23334"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-32647",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32647"
},
{
"published_at": "2026-03-27",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23397",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23397"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23281",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23281"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23365",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23365"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23285",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23285"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23292",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23292"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23284",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23284"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23395",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23395"
},
{
"published_at": "2026-03-21",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23274",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23274"
},
{
"published_at": "2026-03-26",
"title": "Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2026-23357",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23357"
}
]
}
FKIE_CVE-2025-69720
Vulnerability from fkie_nvd - Published: 2026-03-19 15:16 - Updated: 2026-06-17 10:007.8 (High) - CVSS:3.1/
9.8 (Critical) - CVSS:3.1/
| URL | Tags | ||
|---|---|---|---|
| cve@mitre.org | https://github.com/Cao-Wuhui/CVE-2025-69720 | Exploit, Third Party Advisory | |
| cve@mitre.org | https://invisible-island.net/archives/ncurses/6.5/ | Release Notes | |
| cve@mitre.org | https://invisible-island.net/ncurses/ | Product | |
| cve@mitre.org | https://marc.info/?l=ncurses-bug&m=176539968328570&w=2 | Issue Tracking, Mailing List, Vendor Advisory | |
| cve@mitre.org | https://marc.info/?l=ncurses-bug&m=176540731801330&w=2 | Issue Tracking, Mailing List, Vendor Advisory | |
| cve@mitre.org | https://marc.info/?l=ncurses-bug&m=176545557728083&w=2 | Issue Tracking, Mailing List, Vendor Advisory | |
| 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e | https://cert-portal.siemens.com/productcert/html/ssa-253495.html |
| Vendor | Product | Version | |
|---|---|---|---|
| invisible-island | ncurses | * | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 | |
| invisible-island | ncurses | 6.5 |
{
"affected": [
{
"affectedData": [
{
"defaultStatus": "unaffected",
"product": "ncurses",
"vendor": "GNU",
"versions": [
{
"lessThan": "6.5-20251213",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"source": "cve@mitre.org"
},
{
"affectedData": [
{
"defaultStatus": "unknown",
"product": "RUGGEDCOM RST2428P",
"vendor": "Siemens",
"versions": [
{
"lessThan": "V4.0",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"source": "0b142b55-0307-4c5a-b3c9-f314f3fb7c5e"
}
],
"configurations": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:*:*:*:*:*:*:*:*",
"matchCriteriaId": "4F833BCF-B5C0-4AD1-8D3D-F32F39D63ABA",
"versionEndIncluding": "6.4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240427:*:*:*:*:*:*",
"matchCriteriaId": "01C6DAFD-5194-497F-A396-306919613DA5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240504:*:*:*:*:*:*",
"matchCriteriaId": "2B59129C-B8AE-4043-9E9A-3340AE9FDE0D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240511:*:*:*:*:*:*",
"matchCriteriaId": "0CB16CE1-D8ED-40D2-917C-3E23769D11A9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240518:*:*:*:*:*:*",
"matchCriteriaId": "81784D7B-85D5-4570-A2FA-12A6EA2ED29D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240519:*:*:*:*:*:*",
"matchCriteriaId": "30DDED53-9D63-441D-B85A-A5FBAC8F8F0C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240525:*:*:*:*:*:*",
"matchCriteriaId": "8D6CF1A5-BCC5-4452-ABE3-6AEB2A5C19E9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240601:*:*:*:*:*:*",
"matchCriteriaId": "95423C26-3583-450A-BDAF-2A3C76959920",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240608:*:*:*:*:*:*",
"matchCriteriaId": "E59E117A-7813-4686-8A52-B2A99A45D6F9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240615:*:*:*:*:*:*",
"matchCriteriaId": "F6B1487C-518E-425D-A89E-32CDF754CD3A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240622:*:*:*:*:*:*",
"matchCriteriaId": "B0343D0B-8D98-4F15-8166-68012A62CBC0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240629:*:*:*:*:*:*",
"matchCriteriaId": "FFC1BE47-198C-4B29-938A-D33127B7A758",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240706:*:*:*:*:*:*",
"matchCriteriaId": "373EB650-F970-40A5-BD32-09BEE34F48B8",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240713:*:*:*:*:*:*",
"matchCriteriaId": "FCB11782-AE68-4784-BCCC-05817C4D2AE3",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240720:*:*:*:*:*:*",
"matchCriteriaId": "8FFED224-2F31-4877-B469-B8ED88186D4E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240727:*:*:*:*:*:*",
"matchCriteriaId": "9052908B-E79B-4758-8BB8-D716751B674E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240810:*:*:*:*:*:*",
"matchCriteriaId": "94B0EC59-5F4C-4835-B6D3-6646873D9EEC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240817:*:*:*:*:*:*",
"matchCriteriaId": "568EF5E6-F534-4A64-A17E-0E1C8B58EB3A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240824:*:*:*:*:*:*",
"matchCriteriaId": "803C48AD-237B-4BF8-8424-BB4ACFCCF001",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240831:*:*:*:*:*:*",
"matchCriteriaId": "0D22BA4A-0C03-4679-ABB4-54DCA427E105",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240914:*:*:*:*:*:*",
"matchCriteriaId": "D0361067-595F-43B2-AFD8-9BEF6C37785F",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240922:*:*:*:*:*:*",
"matchCriteriaId": "62EAEBD3-870E-477C-B9D3-8ED0E7BAF974",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20240928:*:*:*:*:*:*",
"matchCriteriaId": "5C173F79-8726-4EE6-8C63-E0756C9AC993",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241006:*:*:*:*:*:*",
"matchCriteriaId": "FDCA5EFB-7D8F-4448-8C48-D04C4E5A8D0B",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241019:*:*:*:*:*:*",
"matchCriteriaId": "F724BD25-215C-4774-A564-6D41C89B8F6A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241026:*:*:*:*:*:*",
"matchCriteriaId": "C35CD022-20E1-417D-871A-552570D470C2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241102:*:*:*:*:*:*",
"matchCriteriaId": "1ACD19D6-1CDC-4C7A-9DBB-A9C441850BEA",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241109:*:*:*:*:*:*",
"matchCriteriaId": "431FBF60-D9BF-434A-B103-CEE445D08F28",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241123:*:*:*:*:*:*",
"matchCriteriaId": "7E07FBF9-2D38-4A5E-92E9-6374E1024297",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241130:*:*:*:*:*:*",
"matchCriteriaId": "CA0F9B1C-DCB2-473D-8086-D1F35BEDB9C5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241207:*:*:*:*:*:*",
"matchCriteriaId": "FC35855B-F702-48E9-AD8E-DBE542B29CD1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241214:*:*:*:*:*:*",
"matchCriteriaId": "920C5FD1-3614-4252-9F19-089CF2FDAF96",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241221:*:*:*:*:*:*",
"matchCriteriaId": "C134C17C-AB7D-4182-9D2F-98DE5615ACAC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20241228:*:*:*:*:*:*",
"matchCriteriaId": "6AAE6560-8BB3-4761-AFA3-6FF4CF3931C2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250104:*:*:*:*:*:*",
"matchCriteriaId": "786764EE-4C0A-4801-BA0A-6751350E574D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250111:*:*:*:*:*:*",
"matchCriteriaId": "488796C4-88A8-4F62-A9C0-E96DF926C59B",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250118:*:*:*:*:*:*",
"matchCriteriaId": "5F8EAFB1-DB1C-4107-987C-12C803F98C9B",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250125:*:*:*:*:*:*",
"matchCriteriaId": "CF4738B1-966C-4999-8DEC-6E3317957664",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250201:*:*:*:*:*:*",
"matchCriteriaId": "C2F1AACB-C3DF-4511-A261-B5BA24013645",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250208:*:*:*:*:*:*",
"matchCriteriaId": "B9B386A4-D643-4B27-83F2-57ADC2F190C2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250215:*:*:*:*:*:*",
"matchCriteriaId": "60E7F820-9A4D-48D1-A817-A582CEC9CD54",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250216:*:*:*:*:*:*",
"matchCriteriaId": "3D2291EE-1EA4-48E0-9CA6-2A6DD644F4F4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250222:*:*:*:*:*:*",
"matchCriteriaId": "2E4353C2-22B4-44DB-817F-4BDB385B6DC2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250301:*:*:*:*:*:*",
"matchCriteriaId": "2CFFF73B-C236-424D-B3A8-B03DE0A3D608",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250308:*:*:*:*:*:*",
"matchCriteriaId": "F077FBC1-03F0-48EC-8D1A-91A0D34A526F",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250315:*:*:*:*:*:*",
"matchCriteriaId": "BF4DF4F2-C8DC-43E1-A38D-D13C402BAB7E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250322:*:*:*:*:*:*",
"matchCriteriaId": "D9198719-6C21-4C72-ADAA-C34D47FBCCA4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250329:*:*:*:*:*:*",
"matchCriteriaId": "17C22701-BFF0-4A09-B8B8-2851D34B5DA0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250405:*:*:*:*:*:*",
"matchCriteriaId": "74FB0A6F-C157-429A-A769-6B5ED94296C2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250412:*:*:*:*:*:*",
"matchCriteriaId": "70B219DA-5D24-4AA2-9EBA-EDEAE59BBFE8",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250419:*:*:*:*:*:*",
"matchCriteriaId": "A6443172-FB7F-408B-A104-86B98F4FEEE3",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250426:*:*:*:*:*:*",
"matchCriteriaId": "DCE6DEF3-9792-4BF7-AF16-B59DA2CB066A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250503:*:*:*:*:*:*",
"matchCriteriaId": "EB98C70C-02EA-4A97-A475-BC30170C90A0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250510:*:*:*:*:*:*",
"matchCriteriaId": "166696C0-BC8E-47E5-814B-B8D8AF0F9DBF",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250517:*:*:*:*:*:*",
"matchCriteriaId": "49C22417-14A4-4CFB-BAF0-B53F9EA19E8D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250524:*:*:*:*:*:*",
"matchCriteriaId": "B7642084-2D96-4604-A43B-43C777B243A2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250531:*:*:*:*:*:*",
"matchCriteriaId": "D80D2BF8-0795-4CA5-B33F-14024FEB9C7C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250614:*:*:*:*:*:*",
"matchCriteriaId": "2F73803B-F963-4AE5-8A45-01FCFC991D15",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250621:*:*:*:*:*:*",
"matchCriteriaId": "CDA61BDD-96FF-42D6-8145-5B4F2D27EB81",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250628:*:*:*:*:*:*",
"matchCriteriaId": "4E855110-A534-4035-A52D-AEA00FB46F7E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250705:*:*:*:*:*:*",
"matchCriteriaId": "BF1013BF-649F-402F-A746-08F51D243384",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250712:*:*:*:*:*:*",
"matchCriteriaId": "2DA2CC90-D9C7-47E1-A0CC-C9C8B5692297",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250720:*:*:*:*:*:*",
"matchCriteriaId": "F50B46A2-2730-416B-91F9-003A8F31A34E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250726:*:*:*:*:*:*",
"matchCriteriaId": "BC9CBD76-49EB-4F2F-B423-C29295383692",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250802:*:*:*:*:*:*",
"matchCriteriaId": "A4620E27-7771-4D47-99DD-317CD5051469",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250809:*:*:*:*:*:*",
"matchCriteriaId": "1DF12182-D312-4118-8708-38C990D22542",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250816:*:*:*:*:*:*",
"matchCriteriaId": "AF1E3C6A-F963-4B32-A7AA-DFB7D60775DC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250823:*:*:*:*:*:*",
"matchCriteriaId": "5152E3B8-6B07-455A-9A1F-ED564EF41C66",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250830:*:*:*:*:*:*",
"matchCriteriaId": "CC15F32E-9F0B-4268-B487-621249016034",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250913:*:*:*:*:*:*",
"matchCriteriaId": "7E4F453B-6948-4E87-AEA6-19AC85DEF3DF",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250920:*:*:*:*:*:*",
"matchCriteriaId": "47A4E2C3-38DF-4E0C-9C99-F27258D5F46D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20250927:*:*:*:*:*:*",
"matchCriteriaId": "47BECB6C-23E4-41B1-889A-FDEEB36A658E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251004:*:*:*:*:*:*",
"matchCriteriaId": "F686C3CA-4EEA-412A-BC2D-C491FE5C3216",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251010:*:*:*:*:*:*",
"matchCriteriaId": "EFC895B9-95C1-4DBF-9FAF-46DB073D1D84",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251018:*:*:*:*:*:*",
"matchCriteriaId": "FD76C797-9CCD-4435-BD0B-4BDC635D18F2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251025:*:*:*:*:*:*",
"matchCriteriaId": "8FBA0671-FCA3-4EBC-BF88-6EEDF94A55B4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251101:*:*:*:*:*:*",
"matchCriteriaId": "924191D6-7FC1-49FB-BE3C-C788B7EFD031",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251115:*:*:*:*:*:*",
"matchCriteriaId": "F6CF94C0-97BF-4370-AF63-2673C99F9835",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251122:*:*:*:*:*:*",
"matchCriteriaId": "9DE8A0A0-74CF-4850-9974-681BC8EAF606",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251123:*:*:*:*:*:*",
"matchCriteriaId": "9D5CA575-EDE5-4E42-B465-284C4B9BD822",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251129:*:*:*:*:*:*",
"matchCriteriaId": "ACA7CB1C-8F84-497E-A48E-E975D625CD43",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:invisible-island:ncurses:6.5:20251206:*:*:*:*:*:*",
"matchCriteriaId": "46993193-F710-4CBF-AA5A-3218E2A53BC6",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c."
},
{
"lang": "es",
"value": "ncurses v6.5 y v6.4 son vulnerables a desbordamiento de b\u00fafer en progs/infocmp.c, funci\u00f3n analyze_string()."
}
],
"id": "CVE-2025-69720",
"lastModified": "2026-06-17T10:00:50.423",
"metrics": {
"cvssMetricV31": [
{
"cvssData": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "LOW",
"baseScore": 7.3,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L",
"version": "3.1"
},
"exploitabilityScore": 1.8,
"impactScore": 5.5,
"source": "cve@mitre.org",
"type": "Secondary"
},
{
"cvssData": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "HIGH",
"baseScore": 7.8,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"version": "3.1"
},
"exploitabilityScore": 1.8,
"impactScore": 5.9,
"source": "nvd@nist.gov",
"type": "Primary"
},
{
"cvssData": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 9.8,
"baseSeverity": "CRITICAL",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
},
"exploitabilityScore": 3.9,
"impactScore": 5.9,
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"type": "Secondary"
}
],
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2025-69720",
"options": [
{
"exploitation": "poc"
},
{
"automatable": "yes"
},
{
"technicalImpact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-03-24T01:05:11.996191Z",
"version": "2.0.3"
}
}
]
},
"published": "2026-03-19T15:16:21.293",
"references": [
{
"source": "cve@mitre.org",
"tags": [
"Exploit",
"Third Party Advisory"
],
"url": "https://github.com/Cao-Wuhui/CVE-2025-69720"
},
{
"source": "cve@mitre.org",
"tags": [
"Release Notes"
],
"url": "https://invisible-island.net/archives/ncurses/6.5/"
},
{
"source": "cve@mitre.org",
"tags": [
"Product"
],
"url": "https://invisible-island.net/ncurses/"
},
{
"source": "cve@mitre.org",
"tags": [
"Issue Tracking",
"Mailing List",
"Vendor Advisory"
],
"url": "https://marc.info/?l=ncurses-bug\u0026m=176539968328570\u0026w=2"
},
{
"source": "cve@mitre.org",
"tags": [
"Issue Tracking",
"Mailing List",
"Vendor Advisory"
],
"url": "https://marc.info/?l=ncurses-bug\u0026m=176540731801330\u0026w=2"
},
{
"source": "cve@mitre.org",
"tags": [
"Issue Tracking",
"Mailing List",
"Vendor Advisory"
],
"url": "https://marc.info/?l=ncurses-bug\u0026m=176545557728083\u0026w=2"
},
{
"source": "0b142b55-0307-4c5a-b3c9-f314f3fb7c5e",
"url": "https://cert-portal.siemens.com/productcert/html/ssa-253495.html"
}
],
"sourceIdentifier": "cve@mitre.org",
"vulnStatus": "Modified",
"weaknesses": [
{
"description": [
{
"lang": "en",
"value": "CWE-121"
}
],
"source": "cve@mitre.org",
"type": "Secondary"
},
{
"description": [
{
"lang": "en",
"value": "CWE-120"
}
],
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"type": "Secondary"
}
]
}
GHSA-9952-MRQJ-H4JH
Vulnerability from github – Published: 2026-03-19 15:31 – Updated: 2026-06-02 15:31ncurses v6.5 and v6.4 are vulnerable to Buffer Overflow in progs/infocmp.c, function analyze_string().
{
"affected": [],
"aliases": [
"CVE-2025-69720"
],
"database_specific": {
"cwe_ids": [
"CWE-120",
"CWE-121"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2026-03-19T15:16:21Z",
"severity": "CRITICAL"
},
"details": "ncurses v6.5 and v6.4 are vulnerable to Buffer Overflow in progs/infocmp.c, function analyze_string().",
"id": "GHSA-9952-mrqj-h4jh",
"modified": "2026-06-02T15:31:54Z",
"published": "2026-03-19T15:31:21Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-69720"
},
{
"type": "WEB",
"url": "https://cert-portal.siemens.com/productcert/html/ssa-253495.html"
},
{
"type": "WEB",
"url": "https://github.com/Cao-Wuhui/CVE-2025-69720"
},
{
"type": "WEB",
"url": "https://invisible-island.net/archives/ncurses/6.5"
},
{
"type": "WEB",
"url": "https://invisible-island.net/ncurses"
},
{
"type": "WEB",
"url": "https://marc.info/?l=ncurses-bug\u0026m=176539968328570\u0026w=2"
},
{
"type": "WEB",
"url": "https://marc.info/?l=ncurses-bug\u0026m=176540731801330\u0026w=2"
},
{
"type": "WEB",
"url": "https://marc.info/?l=ncurses-bug\u0026m=176545557728083\u0026w=2"
}
],
"schema_version": "1.4.0",
"severity": [
{
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"type": "CVSS_V3"
}
]
}
ICSA-26-188-05
Vulnerability from csaf_cisa - Published: 2026-06-02 00:00 - Updated: 2026-07-07 06:00MSRC_CVE-2025-69720
Vulnerability from csaf_microsoft - Published: 2026-03-25 01:04 - Updated: 2026-03-31 15:18OESA-2026-1807 (CVE-2025-69720)
Vulnerability from osv_openeuler – Published: 2026-04-03 11:10 – Updated: 2026-08-06 11:10 – Source websiteThe ncurses (new curses) library is a free software emulation of curses in System V Release 4.0 (SVr4), and more. It uses terminfo format, supports pads and color and multiple highlights and forms characters and function-key mapping, and has all the other SVr4-curses enhancements over BSD curses. SVr4 curses became the basis of X/Open Curses.
Security Fix(es):
The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.(CVE-2025-69720)
| URL | Type | |
|---|---|---|
{
"affected": [
{
"ecosystem_specific": {
"aarch64": [
"ncurses-6.2-8.oe2003sp4.aarch64.rpm",
"ncurses-debuginfo-6.2-8.oe2003sp4.aarch64.rpm",
"ncurses-debugsource-6.2-8.oe2003sp4.aarch64.rpm",
"ncurses-devel-6.2-8.oe2003sp4.aarch64.rpm",
"ncurses-help-6.2-8.oe2003sp4.aarch64.rpm",
"ncurses-libs-6.2-8.oe2003sp4.aarch64.rpm"
],
"noarch": [
"ncurses-base-6.2-8.oe2003sp4.noarch.rpm"
],
"src": [
"ncurses-6.2-8.oe2003sp4.src.rpm"
],
"x86_64": [
"ncurses-6.2-8.oe2003sp4.x86_64.rpm",
"ncurses-debuginfo-6.2-8.oe2003sp4.x86_64.rpm",
"ncurses-debugsource-6.2-8.oe2003sp4.x86_64.rpm",
"ncurses-devel-6.2-8.oe2003sp4.x86_64.rpm",
"ncurses-help-6.2-8.oe2003sp4.x86_64.rpm",
"ncurses-libs-6.2-8.oe2003sp4.x86_64.rpm"
]
},
"package": {
"ecosystem": "openEuler:20.03-LTS-SP4",
"name": "ncurses",
"purl": "pkg:rpm/openEuler/ncurses\u0026distro=openEuler-20.03-LTS-SP4"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "6.2-8.oe2003sp4"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"database_specific": {
"severity": "High"
},
"details": "The ncurses (new curses) library is a free software emulation of curses in System V Release 4.0 (SVr4), and more. It uses terminfo format, supports pads and color and multiple highlights and forms characters and function-key mapping, and has all the other SVr4-curses enhancements over BSD curses. SVr4 curses became the basis of X/Open Curses.\r\n\r\nSecurity Fix(es):\n\nThe infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.(CVE-2025-69720)",
"id": "OESA-2026-1807",
"modified": "2026-08-06T11:10:49Z",
"published": "2026-04-03T11:10:49Z",
"references": [
{
"type": "ADVISORY",
"url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-1807"
},
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-69720"
}
],
"schema_version": "1.7.2",
"severity": [
{
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"type": "CVSS_V3"
}
],
"summary": "ncurses security update",
"upstream": [
"CVE-2025-69720"
]
}
OESA-2026-1808 (CVE-2025-69720)
Vulnerability from osv_openeuler – Published: 2026-04-03 11:10 – Updated: 2026-08-06 11:10 – Source websiteThe ncurses (new curses) library is a free software emulation of curses in System V Release 4.0 (SVr4), and more. It uses terminfo format, supports pads and color and multiple highlights and forms characters and function-key mapping, and has all the other SVr4-curses enhancements over BSD curses. SVr4 curses became the basis of X/Open Curses.
Security Fix(es):
The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.(CVE-2025-69720)
| URL | Type | |
|---|---|---|
{
"affected": [
{
"ecosystem_specific": {
"aarch64": [
"ncurses-6.3-17.oe2203sp4.aarch64.rpm",
"ncurses-compat-libs-6.3-17.oe2203sp4.aarch64.rpm",
"ncurses-debuginfo-6.3-17.oe2203sp4.aarch64.rpm",
"ncurses-debugsource-6.3-17.oe2203sp4.aarch64.rpm",
"ncurses-devel-6.3-17.oe2203sp4.aarch64.rpm",
"ncurses-help-6.3-17.oe2203sp4.aarch64.rpm",
"ncurses-libs-6.3-17.oe2203sp4.aarch64.rpm",
"ncurses-static-6.3-17.oe2203sp4.aarch64.rpm"
],
"noarch": [
"ncurses-base-6.3-17.oe2203sp4.noarch.rpm"
],
"src": [
"ncurses-6.3-17.oe2203sp4.src.rpm"
],
"x86_64": [
"ncurses-6.3-17.oe2203sp4.x86_64.rpm",
"ncurses-compat-libs-6.3-17.oe2203sp4.x86_64.rpm",
"ncurses-debuginfo-6.3-17.oe2203sp4.x86_64.rpm",
"ncurses-debugsource-6.3-17.oe2203sp4.x86_64.rpm",
"ncurses-devel-6.3-17.oe2203sp4.x86_64.rpm",
"ncurses-help-6.3-17.oe2203sp4.x86_64.rpm",
"ncurses-libs-6.3-17.oe2203sp4.x86_64.rpm",
"ncurses-static-6.3-17.oe2203sp4.x86_64.rpm"
]
},
"package": {
"ecosystem": "openEuler:22.03-LTS-SP4",
"name": "ncurses",
"purl": "pkg:rpm/openEuler/ncurses\u0026distro=openEuler-22.03-LTS-SP4"
},
"ranges": [
{
"events": [
{
"introduced": "0"
},
{
"fixed": "6.3-17.oe2203sp4"
}
],
"type": "ECOSYSTEM"
}
]
}
],
"database_specific": {
"severity": "High"
},
"details": "The ncurses (new curses) library is a free software emulation of curses in System V Release 4.0 (SVr4), and more. It uses terminfo format, supports pads and color and multiple highlights and forms characters and function-key mapping, and has all the other SVr4-curses enhancements over BSD curses. SVr4 curses became the basis of X/Open Curses.\r\n\r\nSecurity Fix(es):\n\nThe infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.(CVE-2025-69720)",
"id": "OESA-2026-1808",
"modified": "2026-08-06T11:10:49Z",
"published": "2026-04-03T11:10:49Z",
"references": [
{
"type": "ADVISORY",
"url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-1808"
},
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-69720"
}
],
"schema_version": "1.7.2",
"severity": [
{
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"type": "CVSS_V3"
}
],
"summary": "ncurses security update",
"upstream": [
"CVE-2025-69720"
]
}
Sightings
| Author | Source | Type | Date | Other |
|---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or observed by the user.
- Confirmed: The vulnerability has been validated from an analyst's perspective.
- Published Proof of Concept: A public proof of concept is available for this vulnerability.
- Exploited: The vulnerability was observed as exploited by the user who reported the sighting.
- Patched: The vulnerability was observed as successfully patched by the user who reported the sighting.
- Not exploited: The vulnerability was not observed as exploited by the user who reported the sighting.
- Not confirmed: The user expressed doubt about the validity of the vulnerability.
- Not patched: The vulnerability was not observed as successfully patched by the user who reported the sighting.
The approach is described in our paper Mapping CVEs to MITRE ATT&CK Techniques: A Curated Gold-Set Classifier and the Limits of LLM-Assisted Label Expansion.
Browse all ATT&CK techniques and the vulnerabilities related to each.
Related by attack behaviour
Vulnerabilities whose description is nearest to this one in the vector space of the CIRCL/vulnerability-attack-technique-biencoder model. This is a similarity search over the bi-encoder space (plain cosine), not a classification, and it has no measured accuracy.