[CLSA-2026:1777558572] ncurses: Fix of CVE-2025-69720
Type:
security
Severity:
Important
Release date:
2026-04-30 14:16:17 UTC
Description:
- CVE-2025-69720: add limit-check in infocmp -i to prevent buffer overflow in analyze_string() when a sibling string capability exceeds MAX_TERMINFO_LENGTH
Updated packages:
  • ncurses-6.0-8.20170212.amzn2.1.8.tuxcare.els1.x86_64.rpm
    sha:75cc94a1d852ec020a411c2c07e46c399185c2f31e527f416febf3f9eacaf6d7
  • ncurses-base-6.0-8.20170212.amzn2.1.8.tuxcare.els1.noarch.rpm
    sha:ad41f6cde409d1b1443a56497bb5e2ccb592fc7fb04beb05369a87af2aa7407c
  • ncurses-c++-libs-6.0-8.20170212.amzn2.1.8.tuxcare.els1.i686.rpm
    sha:bd266616cf55f268009bc067cb9425a7ebe4f3ecfbdf65d732e2bd5da02fdee6
  • ncurses-c++-libs-6.0-8.20170212.amzn2.1.8.tuxcare.els1.x86_64.rpm
    sha:dab80b4016acf242d1eb4ad0a61ef1005e96894073e5e628a7678eb3100f6768
  • ncurses-compat-libs-6.0-8.20170212.amzn2.1.8.tuxcare.els1.i686.rpm
    sha:19c44e5c7879814e07d0cdea6618e77fff4a3685bf6aed3fa8c365be5d739e8d
  • ncurses-compat-libs-6.0-8.20170212.amzn2.1.8.tuxcare.els1.x86_64.rpm
    sha:e70a7af892cec0eadeef3ecd309c8f4de82a38779ad7a3dced720ef6efef7972
  • ncurses-devel-6.0-8.20170212.amzn2.1.8.tuxcare.els1.x86_64.rpm
    sha:7e51b2b6c45e10df9c4db815f50d2fd97b3398e4fca4a42e2d2ca05aa2e6740b
  • ncurses-libs-6.0-8.20170212.amzn2.1.8.tuxcare.els1.i686.rpm
    sha:d1906881262521b5623699740b61ca23686a517bcc57da38cb77c320e88276f3
  • ncurses-libs-6.0-8.20170212.amzn2.1.8.tuxcare.els1.x86_64.rpm
    sha:ab49838d011de4d659ef67f3446967fe8d31d0286d515fb70de8177fb5d3fe62
  • ncurses-static-6.0-8.20170212.amzn2.1.8.tuxcare.els1.x86_64.rpm
    sha:1d436808e7408300678b40e2e1934f15a5860ee52ce9b5e15b0616c9c2f1217e
  • ncurses-term-6.0-8.20170212.amzn2.1.8.tuxcare.els1.noarch.rpm
    sha:c1f86cdc06bd5f8659f783e8b6eb07e3245a48f68aaea15915acc434d0c9b9ac
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.