Critical Vulnerabilities in ncurses and Tenda Firmware Expose Systems to Remote Code Execution

Critical Vulnerabilities in ncurses and Tenda Firmware Expose Systems to Remote Code Execution

First seen 24 Jul 2026, 16:19 UTC Lyrie.Ainvd.nist.govcveawg.mitre.org 84% similarity 74.0

Article Content

Browse articles
ThreatCluster

Two critical vulnerabilities have been identified: CVE-2017-10684 in ncurses 6.0 and CVE-2024-51311 in Tenda TX9 firmware. CVE-2017-10684 involves a stack-based buffer overflow in the fmt_entry function, allowing remote arbitrary code execution. CVE-2024-51311 also features a stack overflow vulnerability in the sub_4418CC function of Tenda's firmware. Both vulnerabilities have a CVSS score of 9.8, indicating their severity. The vulnerabilities were validated by Lyrie's Threat Intelligence Pipeline with confirmations from three independent sources. No active exploitation has been reported yet, but the potential for remote code execution poses significant risks. Organizations using affected systems are advised to monitor for updates and apply patches as they become available. Continuous autonomous monitoring is recommended to mitigate risks associated with these vulnerabilities.

Key Points: • CVE-2017-10684 in ncurses allows remote code execution via a stack-based buffer overflow. • CVE-2024-51311 affects Tenda TX9 firmware, also enabling remote code execution through a stack overflow. • Both vulnerabilities have a CVSS score of 9.8, indicating critical severity.

ThreatCluster AI

Timeline

2017-06-29
CVE-2017-10684 published
A stack-based buffer overflow vulnerability in ncurses 6.0 was disclosed, allowing remote code execution.
Lyrie.Ai
2024-07-20
CVE-2024-51311 published
A stack overflow vulnerability in Tenda TX9 firmware was disclosed, enabling remote code execution.
Lyrie.Ai
2026-07-22
CVE-2024-51311 advisory published
Lyrie confirmed the Tenda firmware vulnerability with three independent sources before publication.
Lyrie.Ai
2026-07-24
CVE-2017-10684 advisory published
Lyrie confirmed the ncurses vulnerability with three independent sources before publication.
Lyrie.Ai

Community

Browse all →