Heap-based buffer underflow in the modmul function in sshbn.c in PuTTY before 0.63 allows remote SSH servers to cause a denial of service (crash) and possibly trigger memory corruption or code execution via a crafted DSA signature, which is not properly handled when performing certain bit-shifting operations during modular multiplication.
References
Configurations
Configuration 1 (hide)
|
History
06 Aug 2021, 16:58
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:putty:putty:2010-06-01:r8967:*:*:development_snapshot:*:*:* |
Information
Published : 2013-08-19 23:55
Updated : 2024-02-04 18:16
NVD link : CVE-2013-4206
Mitre link : CVE-2013-4206
CVE.ORG link : CVE-2013-4206
JSON object : View
Products Affected
putty
- putty
simon_tatham
- putty
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer