CRITICAL
In PuTTY versions before 0.71 on Unix, a remotely triggerable buffer overflow exists in any kind of server-to-client forwarding
Published Mar 21, 2019
9.8
CRITICALCVSS 3.0
EPSS 2.57%
Description
In PuTTY versions before 0.71 on Unix, a remotely triggerable buffer overflow exists in any kind of server-to-client forwarding.
Affected products
No data.
Configuration 2
OR
- 28
- 29
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (8)
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00004.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00020.html vendor-advisoryx_refsource_SUSE
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36LWQ3NPFIV7DC7TC4KFPRYRH2OR7SZ2/ vendor-advisoryx_refsource_FEDORA
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LDO3F267P347E6U2IILFCYW7JPTLCCES/ vendor-advisoryx_refsource_FEDORA
- https://seclists.org/bugtraq/2019/Apr/6 mailing-listx_refsource_BUGTRAQ
- https://security.netapp.com/advisory/ntap-20190404-0001/ x_refsource_CONFIRM
- https://www.chiark.greenend.org.uk/~sgtatham/putty/changes.html x_refsource_MISCThird Party Advisory
- https://www.debian.org/security/2019/dsa-4423 vendor-advisoryx_refsource_DEBIAN
| Link | Providers | Tags |
|---|---|---|
| http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00004.html | vendor-advisoryx_refsource_SUSE | |
| http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00020.html | vendor-advisoryx_refsource_SUSE | |
| https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36LWQ3NPFIV7DC7TC4KFPRYRH2OR7SZ2/ | vendor-advisoryx_refsource_FEDORA | |
| https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LDO3F267P347E6U2IILFCYW7JPTLCCES/ | vendor-advisoryx_refsource_FEDORA | |
| https://seclists.org/bugtraq/2019/Apr/6 | mailing-listx_refsource_BUGTRAQ | |
| https://security.netapp.com/advisory/ntap-20190404-0001/ | x_refsource_CONFIRM | |
| https://www.chiark.greenend.org.uk/~sgtatham/putty/changes.html | x_refsource_MISCThird Party Advisory | |
| https://www.debian.org/security/2019/dsa-4423 | vendor-advisoryx_refsource_DEBIAN |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 21, 2019
Updated Aug 4, 2024
Reserved Mar 20, 2019
Link CVE-2019-9895
CISA Vulnrichment
Updated n/a