LOW
PuTTY 0.59 through 0.61 does not clear sensitive process memory when managing user replies that occur during keyboard-interactive authentication, which might allow local users to read login passwords by obtaining access to the process' memory
Published Aug 23, 2013
2.1
LOWCVSS 2.0
EPSS 0.41%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.