[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-users] Vulnerabilities reported in PuTTY and SecureCRT SSH Clients



1. PuTTY:

Vendor: Tatham, Simon

A vulnerability was reported in the PuTTY SSH2 client software. 
A local user may be able to obtain the target user's password from 
memory.  Other vendor implementations are also affected.

Impact: Disclosure of authentication information

Alert: http://securitytracker.com/alerts/2003/Jan/1006014.html


2. SecureCRT:

Vendor: Van Dyke Technologies

A vulnerability was reported in VanDyke's SecureCRT SSH2 client 
software.  A local user may be able to obtain the target user's 
password from memory.  Other vendor implementations are also affected.

Impact: Disclosure of authentication information

Alert: http://securitytracker.com/alerts/2003/Jan/1006010.html


Al-Juhani
aljuhani@xxxxxxxxx