Buffer Overflow Vulnerability in ncurses Versions 6.4 and 6.5 by GNU
CVE-2025-69720
7.3HIGH
What is CVE-2025-69720?
The buffer overflow vulnerability in ncurses versions 6.4 and 6.5 is identified in the analyze_string() function within the progs/infocmp.c file. This flaw occurs when handling certain inputs, potentially leading to memory corruption that can be exploited by an attacker. It is crucial for users of affected ncurses versions to apply the necessary patches to mitigate potential risks.
Affected Version(s)
ncurses 0 < 6.5-20251213