This update for ncurses fixes the following issues:
Security issues fixed: - CVE-2017-10684: Possible RCE via stack-based buffer overflow in the fmtentry function. (bsc#1046858) - CVE-2017-10685: Possible RCE with format string vulnerability in the fmtentry function. (bsc#1046853)
Bugfixes: - Drop patch ncurses-5.9-environment.dif as YaST2 ncurses GUI does not need it anymore and as well as it causes bug bsc#1000662
{
"binaries": [
{
"terminfo-base": "5.9-44.1",
"ncurses-utils": "5.9-44.1",
"ncurses-devel": "5.9-44.1",
"libncurses5-32bit": "5.9-44.1",
"libncurses6": "5.9-44.1",
"libncurses6-32bit": "5.9-44.1",
"terminfo": "5.9-44.1",
"libncurses5": "5.9-44.1",
"tack": "5.9-44.1",
"ncurses-devel-32bit": "5.9-44.1"
}
]
}{
"binaries": [
{
"terminfo-base": "5.9-44.1",
"ncurses-utils": "5.9-44.1",
"ncurses-devel": "5.9-44.1",
"libncurses5-32bit": "5.9-44.1",
"libncurses6": "5.9-44.1",
"libncurses6-32bit": "5.9-44.1",
"terminfo": "5.9-44.1",
"libncurses5": "5.9-44.1",
"tack": "5.9-44.1",
"ncurses-devel-32bit": "5.9-44.1"
}
]
}