Debian Security Advisory

DLA-1763-1 putty -- LTS security update

Date Reported:
24 Apr 2019
Affected Packages:
putty
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2019-9894, CVE-2019-9897, CVE-2019-9898.
More information:

Multiple vulnerabilities were found in the PuTTY SSH client, which could result in denial of service and potentially the execution of arbitrary code. In addition, in some situations random numbers could potentially be re-used.

For Debian 8 Jessie, these problems have been fixed in version 0.63-10+deb8u2.

We recommend that you upgrade your putty packages.

Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS