Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.9 CVE-2026-48850 PuTTY 0.72 before 0.84 has a double free in RSA KEX. Putty 0.84+ Fix from $1,6002026-05-25 HIGH 8.1 CVE-2021-36367 PuTTY through 0.75 proceeds with establishing an SSH session even if it has never sent a substantive authentication response. This makes it easier fo… Putty after 0.75 Fix from $1,9502021-07-09 HIGH 7.5 CVE-2021-33500 PuTTY before 0.75 on Windows allows remote servers to cause a denial of service (Windows GUI hang) by telling the PuTTY window to change its title re… Putty 0.75+ Fix from $1,9502021-05-21 CRITICAL 9.8 CVE-2019-17067 PuTTY before 0.73 on Windows improperly opens port-forwarding listening sockets, which allows attackers to listen on the same port to steal an incomi… Putty 0.73+ Fix from $2,3002019-10-01 HIGH 7.5 CVE-2019-17068 PuTTY before 0.73 mishandles the "bracketed paste mode" protection mechanism, which may allow a session to be affected by malicious clipboard content. Putty 0.73+ Fix from $1,9502019-10-01 HIGH 7.5 CVE-2019-17069 PuTTY before 0.73 might allow remote SSH-1 servers to cause a denial of service by accessing freed memory locations via an SSH1_MSG_DISCONNECT messag… Putty 0.73+ Fix from $1,9502019-10-01 HIGH 7.8 CVE-2019-9896 In PuTTY versions before 0.71 on Windows, local attackers could hijack the application by putting a malicious help file in the same directory as the … Putty 0.71+ Fix from $1,9502019-03-21 CRITICAL 9.8 CVE-2017-6542EPSS 22% The ssh_agent_channel_data function in PuTTY before 0.68 allows remote attackers to have unspecified impact via a large length value in an agent prot… Putty after 0.67 Fix from $2,3002017-03-27 HIGH 7.8 CVE-2016-6167 Multiple untrusted search path vulnerabilities in Putty beta 0.67 allow local users to execute arbitrary code and conduct DLL hijacking attacks via a… Putty No fix yet Fix from $1,9502017-01-30 MEDIUM 6.8 CVE-2013-4206 Heap-based buffer underflow in the modmul function in sshbn.c in PuTTY before 0.63 allows remote SSH servers to cause a denial of service (crash) and… Putty after 0.62 Fix from $1,6002013-08-19 HIGH 7.5 CVE-2005-0467 Multiple integer overflows in the (1) sftp_pkt_getstring and (2) fxp_readdir_recv functions in the PSFTP and PSCP clients for PuTTY 0.56, and possibl… Putty after 0.56 Fix from $1,9502005-02-21 HIGH 10.0 CVE-2004-1008EPSS 7% Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows remote attackers to execute arbitrary code via a SSH2_MSG_DEBUG packe… Putty Patch available Fix from $1,9502005-01-10 HIGH 7.5 CVE-2004-1440 Multiple heap-based buffer overflows in the modpow function in PuTTY before 0.55 allow (1) remote attackers to execute arbitrary code via an SSH2 pac… Putty Patch available Fix from $1,9502004-12-31 HIGH 7.5 CVE-2003-0069 The PuTTY terminal emulator 0.53 allows attackers to modify the window title via a certain character escape sequence and then insert it back to the c… Putty Mitigation only Fix from $1,9502003-03-18