PuTTY 0.53b and earlier does not clear logon credentials from memory, including plaintext passwords, which could allow attackers with access to memory to steal the SSH credentials.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=104386492422014&w=2 - | |
References | () http://www.idefense.com/advisory/01.28.03.txt - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/6724 - | |
References | () http://www.securitytracker.com/id?1006014 - |
Information
Published : 2003-02-19 05:00
Updated : 2024-11-20 23:43
NVD link : CVE-2003-0048
Mitre link : CVE-2003-0048
CVE.ORG link : CVE-2003-0048
JSON object : View
Products Affected
putty
- putty
CWE