CVE detail
CVE-2020-19188
Buffer Overflow vulnerability in fmt_entry function in progs/dump_entry.c:1116 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 22.0 · diversity 13.0 · KEV 0.0 · OTX 0.0 · PoC 4.5
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
8 source links · newest first
- https://support.apple.com/kb/HT214038support.apple.com
No excerpt available.
Vendor Advisorysupport.apple.comAug 22, 2023, 7:16 PM - https://support.apple.com/kb/HT214037support.apple.com
No excerpt available.
Vendor Advisorysupport.apple.comAug 22, 2023, 7:16 PM - https://support.apple.com/kb/HT214036support.apple.com
No excerpt available.
Vendor Advisorysupport.apple.comAug 22, 2023, 7:16 PM - https://security.netapp.com/advisory/ntap-20231006-0005/security.netapp.com
No excerpt available.
Vendor Advisorysecurity.netapp.comAug 22, 2023, 7:16 PM No excerpt available.
Exploitgithub.comAug 22, 2023, 7:16 PM- http://seclists.org/fulldisclosure/2023/Dec/9seclists.org
No excerpt available.
Exploitseclists.orgAug 22, 2023, 7:16 PM - http://seclists.org/fulldisclosure/2023/Dec/11seclists.org
No excerpt available.
Exploitseclists.orgAug 22, 2023, 7:16 PM - http://seclists.org/fulldisclosure/2023/Dec/10seclists.org
No excerpt available.
Exploitseclists.orgAug 22, 2023, 7:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
1 repository references · best confidence 0.90 · max 0 stars
- zjuchenyuan/fuzzpocHigh confidencegithubNVD Exploit reference0 starsDiscovered Jul 23, 2026, 9:11 PM
NVD labels the source link as Exploit; this is not independent verification of the repository's code.
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2020-19190CVSS 6.5 · Medium
Buffer Overflow vulnerability in _nc_find_entry in tinfo/comp_hash.c:70 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
- CVE-2020-19189CVSS 6.5 · Medium
Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
- CVE-2020-19187CVSS 6.5 · Medium
Buffer Overflow vulnerability in fmt_entry function in progs/dump_entry.c:1100 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
- CVE-2020-19186CVSS 6.5 · Medium
Buffer Overflow vulnerability in _nc_find_entry function in tinfo/comp_hash.c:66 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
- CVE-2020-19185CVSS 6.5 · Medium
Buffer Overflow vulnerability in one_one_mapping function in progs/dump_entry.c:1373 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
- CVE-2023-29491CVSS 7.8 · High
ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file th…