Heap-based buffer underflow in the modmul function in sshbn.c in PuTTY before 0.63 allows remote SSH servers to cause a denial of service (crash) and possibly trigger memory corruption or code execution via a crafted DSA signature, which is not properly handled when performing certain bit-shifting operations during modular multiplication.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-08-19 16:55
Updated : 2021-08-06 09:58
NVD link : CVE-2013-4206
Mitre link : CVE-2013-4206
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
simon_tatham
- putty
putty
- putty