Denial of Service Vulnerability in PuTTY by VanDyke Software
CVE-2019-17069
7.5HIGH
What is CVE-2019-17069?
A vulnerability in PuTTY prior to version 0.73 allows remote SSH-1 servers to trigger a denial of service condition. This exploit is realized when a malicious SSH-1 server sends an SSH1_MSG_DISCONNECT message, which can cause PuTTY to access freed memory locations, potentially leading to application instability and crashes. Users of affected versions are advised to upgrade to safeguard against this risk.