Heap-based buffer underflow in the modmul function in sshbn.c in PuTTY before 0.63 allows remote SSH servers to cause a denial of service (crash) and possibly trigger memory corruption or code execution via a crafted DSA signature, which is not properly handled when performing certain bit-shifting operations during modular multiplication.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2013-08-19T23:00:00

Updated: 2024-08-06T16:38:01.677Z

Reserved: 2013-06-12T00:00:00

Link: CVE-2013-4206

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-08-19T23:55:08.723

Modified: 2021-08-06T16:58:10.337

Link: CVE-2013-4206

cve-icon Redhat

No data.