Oval Definition:oval:org.opensuse.security:def:20134852
Revision Date:2022-06-30Version:1
Title:CVE-2013-4852
Description:

Integer overflow in PuTTY 0.62 and earlier, WinSCP before 5.1.6, and other products that use PuTTY allows remote SSH servers to cause a denial of service (crash) and possibly execute arbitrary code in certain applications that use PuTTY via a negative size value in an RSA key signature during the SSH handshake, which triggers a heap-based buffer overflow.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2013-4852
Mitre CVE-2013-4852
SUSE CVE-2013-4852
openSUSE-SU-2013:1347-1
openSUSE-SU-2013:1355-1
Platform(s):openSUSE 12.2 Update
openSUSE 12.3 Update
openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • filezilla-3.7.3-5.4.1 is installed
  • OR filezilla-lang-3.7.3-5.4.1 is installed
  • OR putty-0.63-2.4.1 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • filezilla-3.23.0.2-1.1 is installed
  • OR filezilla-lang-3.23.0.2-1.1 is installed
  • OR putty-0.67-1.5 is installed
  • BACK