There is an infinite loop in the nextchar function in compscan.c in ncurses 6.0, related to libtic. A crafted input will lead to a remote denial of service attack.
{
"binaries": [
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "lib32ncurses5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "lib32ncurses5-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "lib32ncursesw5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "lib32ncursesw5-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "lib32tinfo-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "lib32tinfo5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "lib64ncurses5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "lib64ncurses5-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "lib64tinfo5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libncurses5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libncurses5-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libncursesw5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libncursesw5-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libtinfo-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libtinfo5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libx32ncurses5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libx32ncurses5-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libx32ncursesw5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libx32ncursesw5-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libx32tinfo-dev"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "libx32tinfo5"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "ncurses-base"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "ncurses-bin"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "ncurses-examples"
},
{
"binary_version": "5.9+20140118-1ubuntu1+esm1",
"binary_name": "ncurses-term"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}
{
"binaries": [
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "lib32ncurses5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "lib32ncurses5-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "lib32ncursesw5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "lib32ncursesw5-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "lib32tinfo-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "lib32tinfo5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "lib64ncurses5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "lib64ncurses5-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "lib64tinfo5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libncurses5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libncurses5-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libncursesw5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libncursesw5-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libtinfo-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libtinfo5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libx32ncurses5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libx32ncurses5-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libx32ncursesw5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libx32ncursesw5-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libx32tinfo-dev"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "libx32tinfo5"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "ncurses-base"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "ncurses-bin"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "ncurses-examples"
},
{
"binary_version": "6.0+20160213-1ubuntu1+esm1",
"binary_name": "ncurses-term"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}