Heap-based buffer underflow in the modmul function in sshbn.c in PuTTY before 0.63 allows remote SSH servers to cause a denial of service (crash) and possibly trigger memory corruption or code execution via a crafted DSA signature, which is not properly handled when performing certain bit-shifting operations during modular multiplication.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2013-08-19 23:55
Updated : 2021-08-06 16:58
NVD link : CVE-2013-4206
Mitre link : CVE-2013-4206
CVE.ORG link : CVE-2013-4206
JSON object : View
Products Affected
simon_tatham
- putty
putty
- putty
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer