Skip to main content

CVE-2023-29491

CVE Details

Visit the official vulnerability details page for CVE-2023-29491 to learn more.

Initial Publication

11/13/2024

Last Update

11/13/2024

Third Party Dependency

libtinfo6

NIST CVE Summary

ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable.

CVE Severity

7.8

Our Official Summary

Investigation is ongoing to determine how this vulnerability affects our products.

Status

Ongoing

Affected Products & Versions

VersionPalette EnterprisePalette Enterprise AirgapVerteXVerteX Airgap
4.4.20ImpactedNo ImpactImpactedNo Impact

Revision History

DateRevision