[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[cobalt-users] Vulnerabilities reported in PuTTY and SecureCRT SSH Clients
- Subject: [cobalt-users] Vulnerabilities reported in PuTTY and SecureCRT SSH Clients
- From: aljuhani <aljuhani@xxxxxxxxx>
- Date: Mon Feb 3 03:14:01 2003
- List-id: Mailing list for users to share thoughts on Sun Cobalt products. <cobalt-users.list.cobalt.com>
1. PuTTY:
Vendor: Tatham, Simon
A vulnerability was reported in the PuTTY SSH2 client software.
A local user may be able to obtain the target user's password from
memory. Other vendor implementations are also affected.
Impact: Disclosure of authentication information
Alert: http://securitytracker.com/alerts/2003/Jan/1006014.html
2. SecureCRT:
Vendor: Van Dyke Technologies
A vulnerability was reported in VanDyke's SecureCRT SSH2 client
software. A local user may be able to obtain the target user's
password from memory. Other vendor implementations are also affected.
Impact: Disclosure of authentication information
Alert: http://securitytracker.com/alerts/2003/Jan/1006010.html
Al-Juhani
aljuhani@xxxxxxxxx