Candidate: CVE-2013-4206 PublicDate: 2013-08-19 23:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4206 http://www.chiark.greenend.org.uk/~sgtatham/putty/wishlist/vuln-modmul.html Description: Heap-based buffer underflow in the modmul function in sshbn.c in PuTTY before 0.63 allows remote SSH servers to cause a denial of service (crash) and possibly trigger memory corruption or code execution via a crafted DSA signature, which is not properly handled when performing certain bit-shifting operations during modular multiplication. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_putty: upstream_putty: released (0.63) lucid_putty: ignored (reached end-of-life) precise_putty: released (0.62-6ubuntu0.1) quantal_putty: released (0.62-9ubuntu0.1) raring_putty: released (0.62-10ubuntu0.1) devel_putty: released (0.63-1)