Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-48851

Опубликовано: 25 мая 2026
Источник: debian

Описание

PuTTY 0.77 before 0.84 uses a copy of the PuTTY icon as a trust indication for TELNET data but the trust status is not cleared between proxy authentication and the main session.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
puttyfixed0.84-1package
puttyno-dsatrixiepackage
puttyno-dsabookwormpackage
puttypostponedbullseyepackage

Примечания

  • https://lists.tartarus.org/pipermail/putty-announce/2026/000042.html

  • https://www.chiark.greenend.org.uk/~sgtatham/putty/wishlist/telnet-trust-sigil.html

  • Fixed by: https://git.tartarus.org/?p=simon/putty.git;a=commitdiff;h=64712be3cbc4a02bda4a92ca97e8d4f294abbe9a (0.84)

Связанные уязвимости

CVSS3: 3.1
ubuntu
2 месяца назад

PuTTY 0.77 before 0.84 uses a copy of the PuTTY icon as a trust indication for TELNET data but the trust status is not cleared between proxy authentication and the main session.

CVSS3: 3.1
nvd
2 месяца назад

PuTTY 0.77 before 0.84 uses a copy of the PuTTY icon as a trust indication for TELNET data but the trust status is not cleared between proxy authentication and the main session.

CVSS3: 3.1
github
2 месяца назад

PuTTY 0.77 before 0.84 uses a copy of the PuTTY icon as a trust indication for TELNET data but the trust status is not cleared between proxy authentication and the main session.

CVSS3: 3.1
fstec
2 месяца назад

Уязвимость реализации протокола Telnet средства криптографической защиты PuTTY, позволяющая нарушителю проводить спуфинг-атаки