CRITICAL9.8CVE-2019-9898Potential recycling of random numbers used in cryptography exists within PuTTY before 0.71. from 0, < 0.71-r0
CRITICAL9.8CVE-2019-9895In PuTTY versions before 0.71 on Unix, a remotely triggerable buffer overflow exists in any kind of server-to-client forwarding. from 0, < 0.71-r0
CRITICAL9.8CVE-2017-6542The ssh_agent_channel_data function in PuTTY before 0.68 allows remote attackers to have unspecified impact via a large length value in an… from 0, < 0.68-r0
HIGH8.1PuTTY through 0.75 proceeds with establishing an SSH session even if it has never sent a substantive authentication response.
from 0, < 0.76-r0
HIGH7.5putty - security update
from 0, < 0.73-r0
HIGH7.5PuTTY before 0.73 mishandles the "bracketed paste mode" protection mechanism, which may allow a session to be affected by malicious clipboa…
from 0, < 0.73-r0
HIGH7.5Multiple denial-of-service attacks that can be triggered by writing to the terminal exist in PuTTY versions before 0.71.
from 0, < 0.71-r0
HIGH7.5putty - security update
from 0, < 0.71-r0
MEDIUM5.9putty - security update
from 0, < 0.81-r0
MEDIUM5.9erlang - security update
from 0, < 0.80-r0
MEDIUM5.9PuTTY 0.68 through 0.73 has an Observable Discrepancy leading to an information leak in the algorithm negotiation.
from 0, < 0.74-r0