PuTTY Multiple Vulnerabilities
RISK: Medium Risk
TYPE: Clients - Productivity Products
Vulnerabilities has been identified in PuTTY, which can be exploited by malicious people to potentially compromise a user's system.
The vulnerabilities are caused due to some integer overflow errors when handling the SSH handshake and can be exploited to cause heap-based buffer overflows via a negative handshake message length.
Successful exploitation of may allow execution of arbitrary code, but requires tricking the user into connecting to a malicious server
Impact
- Remote Code Execution
System / Technologies affected
- PuTTY version 0.62. Prior versions may also be affected.
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Fixed in the source code repository.
Vulnerability Identifier
- No CVE information is available
Source
Related Link
Share with