There is a heap-based buffer over-read in the fmt_entry function in tinfo/comp_hash.c in the terminfo library in ncurses before 6.1-20191012. CREATE(Triage):(User=admin) [CVE-2019-17595|https://nvd.nist.gov/vuln/detail/CVE-2019-17595]