NULL Pointer Dereference in ncurses 6.1
CVE-2018-19211
5.5MEDIUM
What is CVE-2018-19211?
In ncurses 6.1, a vulnerability exists where a NULL pointer dereference can occur within the function _nc_parse_entry in parse_entry.c. This situation arises when the software incorrectly processes a 'dubious character' in the name or alias field, leading to a denial of service attack. Malicious actors can exploit this flaw to disrupt service availability.