
CVE-2020-19189 – Ubuntu Security Notice USN-6451-1
https://notcve.org/view.php?id=CVE-2020-19189
22 Aug 2023 — Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command. Vulnerabilidad de Buffer Overflow en la función "postprocess_terminfo" en tinfo/parse_entry.c:997 en ncurses v6.1 que permite a atacantes remotos causar una denegación de servicios a través de un comando manipulado. It was discovered that ncurses could be made to read out of bounds. An attacker could possibly use this issue to caus... • http://seclists.org/fulldisclosure/2023/Dec/10 • CWE-787: Out-of-bounds Write •

CVE-2020-19190 – Apple Security Advisory 12-11-2023-6
https://notcve.org/view.php?id=CVE-2020-19190
22 Aug 2023 — Buffer Overflow vulnerability in _nc_find_entry in tinfo/comp_hash.c:70 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command. La vulnerabilidad de desbordamiento de búfer en "_nc_find_entry" en "tinfo/comp_hash.c" en ncurses 6.1 permite a atacantes remotos causar una denegación de servicio a través de un comando manipulado. macOS Sonoma 14.2 addresses code execution, out of bounds read, and spoofing vulnerabilities. • http://seclists.org/fulldisclosure/2023/Dec/10 • CWE-787: Out-of-bounds Write •

CVE-2020-19724 – Ubuntu Security Notice USN-6381-1
https://notcve.org/view.php?id=CVE-2020-19724
22 Aug 2023 — A memory consumption issue in get_data function in binutils/nm.c in GNU nm before 2.34 allows attackers to cause a denial of service via crafted command. Un problema de consumo de memoria en la función get_data en binutils/nm.c en GNU nm antes de la versión 2.34 permite a los atacantes causar una denegación de servicio a través de un comando manipulado. It was discovered that a memory leak existed in certain GNU binutils modules. An attacker could possibly use this issue to cause a denial of service. It was... • https://sourceware.org/bugzilla/show_bug.cgi?id=25362 • CWE-401: Missing Release of Memory after Effective Lifetime •

CVE-2020-19726 – Ubuntu Security Notice USN-6544-1
https://notcve.org/view.php?id=CVE-2020-19726
22 Aug 2023 — An issue was discovered in binutils libbfd.c 2.36 relating to the auxiliary symbol data allows attackers to read or write to system memory or cause a denial of service. Se ha descubierto un problema en binutils libbfd.c 2.36 relacionado con los datos de símbolos auxiliares que permite a los atacantes leer o escribir en la memoria del sistema o provocar una denegación de servicio. It was discovered that GNU binutils incorrectly handled certain COFF files. An attacker could possibly use this issue to cause a ... • https://sourceware.org/bugzilla/show_bug.cgi?id=26240 • CWE-400: Uncontrolled Resource Consumption •

CVE-2020-21490
https://notcve.org/view.php?id=CVE-2020-21490
22 Aug 2023 — An issue was discovered in GNU Binutils 2.34. It is a memory leak when process microblaze-dis.c. This one will consume memory on each insn disassembled. • https://security.netapp.com/advisory/ntap-20230929-0007 • CWE-401: Missing Release of Memory after Effective Lifetime •

CVE-2023-40303 – Ubuntu Security Notice USN-6304-1
https://notcve.org/view.php?id=CVE-2023-40303
14 Aug 2023 — GNU inetutils before 2.5 may allow privilege escalation because of unchecked return values of set*id() family functions in ftpd, rcp, rlogin, rsh, rshd, and uucpd. This is, for example, relevant if the setuid system call fails when a process is trying to drop privileges before letting an ordinary user control the activities of the process. It was discovered that telnetd in GNU Inetutils incorrectly handled certain inputs. An attacker could possibly use this issue to cause a crash. This issue only affected U... • http://www.openwall.com/lists/oss-security/2023/12/30/4 • CWE-252: Unchecked Return Value •

CVE-2023-40305 – Ubuntu Security Notice USN-6389-1
https://notcve.org/view.php?id=CVE-2023-40305
14 Aug 2023 — GNU indent 2.2.13 has a heap-based buffer overflow in search_brace in indent.c via a crafted file. GNU indent 2.2.13 tiene un desbordamiento de búfer en search_brace en indent.c a través de un archivo manipulado. It was discovered that Indent incorrectly handled parsing certain source files. If a user or automated system were tricked into processing a specially crafted source file, a remote attacker could use this issue to cause Indent to crash, resulting in a denial of service, or possibly execute arbitrar... • https://ftp.gnu.org/gnu/indent • CWE-787: Out-of-bounds Write •

CVE-2023-39128 – Ubuntu Security Notice USN-6842-1
https://notcve.org/view.php?id=CVE-2023-39128
25 Jul 2023 — GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a stack overflow via the function ada_decode at /gdb/ada-lang.c. It was discovered that gdb incorrectly handled certain memory operations when parsing an ELF file. An attacker could possibly use this issue to cause a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599. This issue only affected Ubuntu 22.04 LTS. • https://sourceware.org/bugzilla/show_bug.cgi?id=30639 • CWE-787: Out-of-bounds Write •

CVE-2023-39129 – Ubuntu Security Notice USN-6842-1
https://notcve.org/view.php?id=CVE-2023-39129
25 Jul 2023 — GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap use after free via the function add_pe_exported_sym() at /gdb/coff-pe-read.c. It was discovered that gdb incorrectly handled certain memory operations when parsing an ELF file. An attacker could possibly use this issue to cause a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599. This issue only affected Ubuntu 22.04 LTS. • https://sourceware.org/bugzilla/show_bug.cgi?id=30640 • CWE-416: Use After Free •

CVE-2023-39130 – Ubuntu Security Notice USN-6842-1
https://notcve.org/view.php?id=CVE-2023-39130
25 Jul 2023 — GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap buffer overflow via the function pe_as16() at /gdb/coff-pe-read.c. It was discovered that gdb incorrectly handled certain memory operations when parsing an ELF file. An attacker could possibly use this issue to cause a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599. This issue only affected Ubuntu 22.04 LTS. • https://sourceware.org/bugzilla/show_bug.cgi?id=30641 • CWE-787: Out-of-bounds Write •