File _patchinfo of Package patchinfo.12906

<patchinfo incident="12906">
  <issue tracker="cve" id="2019-17594"/>
  <issue tracker="cve" id="2019-17595"/>
  <issue tracker="bnc" id="1154037">VUL-0: CVE-2019-17595: ncurses: heap-based buffer over-read in fmt_entry function in tinfo/comp_hash.c</issue>
  <issue tracker="bnc" id="1103320">screen running with TERM=screen.xterm is broken</issue>
  <issue tracker="bnc" id="1154036">VUL-0: CVE-2019-17594: ncurses: heap-based buffer over-read in _nc_find_entry function in tinfo/comp_hash.c</issue>
  <packager>WernerFink</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for ncurses</summary>
  <description>This update for ncurses fixes the following issues:

Security issues fixed:

- CVE-2019-17594: Fixed a heap-based buffer over-read in the _nc_find_entry function (bsc#1154036).
- CVE-2019-17595: Fixed a heap-based buffer over-read in the fmt_entry function (bsc#1154037).

Non-security issue fixed:

- Removed screen.xterm from terminfo database (bsc#1103320).
</description>
</patchinfo>
openSUSE Build Service is sponsored by