The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.
References
| Link | Resource |
|---|---|
| https://github.com/Cao-Wuhui/CVE-2025-69720 | Exploit Third Party Advisory |
| https://invisible-island.net/archives/ncurses/6.5/ | Release Notes |
| https://invisible-island.net/ncurses/ | Product |
| https://marc.info/?l=ncurses-bug&m=176539968328570&w=2 | Issue Tracking Mailing List Vendor Advisory |
| https://marc.info/?l=ncurses-bug&m=176540731801330&w=2 | Issue Tracking Mailing List Vendor Advisory |
| https://marc.info/?l=ncurses-bug&m=176545557728083&w=2 | Issue Tracking Mailing List Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-03-19 15:16
Updated : 2026-03-26 19:35
NVD link : CVE-2025-69720
Mitre link : CVE-2025-69720
CVE.ORG link : CVE-2025-69720
JSON object : View
Products Affected
invisible-island
- ncurses
