Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gpf3-9fhm-cfpr

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The rsa_verify function in PuTTY before 0.63 (1) does not clear sensitive process memory after use and (2) does not free certain structures containing sensitive process memory, which might allow local users to discover private RSA and DSA keys.

The rsa_verify function in PuTTY before 0.63 (1) does not clear sensitive process memory after use and (2) does not free certain structures containing sensitive process memory, which might allow local users to discover private RSA and DSA keys.

EPSS

Процентиль: 20%
0.00063
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 12 лет назад

The rsa_verify function in PuTTY before 0.63 (1) does not clear sensitive process memory after use and (2) does not free certain structures containing sensitive process memory, which might allow local users to discover private RSA and DSA keys.

nvd
больше 12 лет назад

The rsa_verify function in PuTTY before 0.63 (1) does not clear sensitive process memory after use and (2) does not free certain structures containing sensitive process memory, which might allow local users to discover private RSA and DSA keys.

debian
больше 12 лет назад

The rsa_verify function in PuTTY before 0.63 (1) does not clear sensit ...

EPSS

Процентиль: 20%
0.00063
Низкий

Дефекты

CWE-200