File _patchinfo of Package patchinfo.6136
<patchinfo incident="6136">
<issue id="1056136" tracker="bnc">VUL-0: CVE-2017-13728: ncurses: infinite loop in the next_char function in comp_scan.c</issue>
<issue id="1056131" tracker="bnc">VUL-0: CVE-2017-13730: ncurses: illegal address access in the function _nc_read_entry_source()</issue>
<issue id="1056127" tracker="bnc">VUL-0: CVE-2017-13733: ncurses: illegal address access in the fmt_entry function</issue>
<issue id="1056132" tracker="bnc">VUL-0: CVE-2017-13729: ncurses: illegal address access in the _nc_save_str</issue>
<issue id="1056128" tracker="bnc">VUL-0: CVE-2017-13732: ncurses: illegal address access in the function dump_uses()</issue>
<issue id="1056129" tracker="bnc">VUL-0: CVE-2017-13731: ncurses: illegal address access in the function postprocess_termcap()</issue>
<issue id="2017-13728" tracker="cve" />
<issue id="2017-13729" tracker="cve" />
<issue id="2017-13731" tracker="cve" />
<issue id="2017-13730" tracker="cve" />
<issue id="2017-13733" tracker="cve" />
<issue id="2017-13732" tracker="cve" />
<category>security</category>
<rating>moderate</rating>
<packager>WernerFink</packager>
<description>This update for ncurses fixes the following issues:
Security issues fixed:
- CVE-2017-13728: Fix infinite loop in the next_char function in comp_scan.c (bsc#1056136).
- CVE-2017-13730: Fix illegal address access in the function _nc_read_entry_source() (bsc#1056131).
- CVE-2017-13733: Fix illegal address access in the fmt_entry function (bsc#1056127).
- CVE-2017-13729: Fix illegal address access in the _nc_save_str (bsc#1056132).
- CVE-2017-13732: Fix illegal address access in the function dump_uses() (bsc#1056128).
- CVE-2017-13731: Fix illegal address access in the function postprocess_termcap() (bsc#1056129).
</description>
<summary>Security update for ncurses</summary>
</patchinfo>