CVE-2025-69720

Severity CVSS v4.0:
Pending analysis
Type:
CWE-121 Stack-based Buffer Overflow
Publication date:
19/03/2026
Last modified:
26/03/2026

Description

The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:invisible-island:ncurses:*:*:*:*:*:*:*:* 6.4 (including)
cpe:2.3:a:invisible-island:ncurses:6.5:20240427:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240504:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240511:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240518:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240519:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240525:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240601:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240608:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240615:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240622:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240629:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240706:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240713:*:*:*:*:*:*
cpe:2.3:a:invisible-island:ncurses:6.5:20240720:*:*:*:*:*:*