CVE-2017-13728: Invisible-Island Ncurses
High severity, CVSS 7.5. EPSS: 3.9% chance of exploitation in the next 30 days.
There is an infinite loop in the next_char function in comp_scan.c in ncurses 6.0, related to libtic. A crafted input will lead to a remote denial of service attack.
Affected products
- Invisible-Island Ncurses: version 6.0 only
Published 2017-08-29. Last modified 2026-07-23.