CVE-2004-1008
published 2005-01-10CVE-2004-1008: Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows remote attackers to execute arbitrary code via a SSH2_MSG_DEBUG packet with a…
PriorityP340critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
7.36%
93.7th percentile
Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows remote attackers to execute arbitrary code via a SSH2_MSG_DEBUG packet with a modified stringlen parameter, which leads to a buffer overflow.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | putty | < putty 0.56-1 (bookworm) | putty 0.56-1 (bookworm) |
| putty | putty | — | — |
| putty | putty | — | — |
| putty | putty | — | — |
| putty | putty | — | — |
| putty | putty | — | — |
| putty | putty | — | — |
| putty | putty | — | — |
| putty | putty | — | — |
| putty | putty | — | — |
| putty | putty | >= 0 < 0.56-1 | 0.56-1 |
| putty | putty | >= 0 < 0.56-1 | 0.56-1 |
| putty | putty | >= 0 < 0.56-1 | 0.56-1 |
| putty | putty | >= 0 < 0.56-1 | 0.56-1 |
| tortoisecvs | tortoisecvs | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vendor_debian10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2rqg-r6g4-rvxh: Integer signedness error in the ssh2_rdpkt function in PuTTY before 0
ghsa_unreviewed·2022-04-29
CVE-2004-1008 [HIGH] GHSA-2rqg-r6g4-rvxh: Integer signedness error in the ssh2_rdpkt function in PuTTY before 0
Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows remote attackers to execute arbitrary code via a SSH2_MSG_DEBUG packet with a modified stringlen parameter, which leads to a buffer overflow.
OSV
CVE-2004-1008: Integer signedness error in the ssh2_rdpkt function in PuTTY before 0
osv·2005-01-10·CVSS 10.0
CVE-2004-1008 [CRITICAL] CVE-2004-1008: Integer signedness error in the ssh2_rdpkt function in PuTTY before 0
Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows remote attackers to execute arbitrary code via a SSH2_MSG_DEBUG packet with a modified stringlen parameter, which leads to a buffer overflow.
Debian
CVE-2004-1008: putty - Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows ...
vendor_debian·2004·CVSS 10.0
CVE-2004-1008 [CRITICAL] CVE-2004-1008: putty - Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows ...
Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows remote attackers to execute arbitrary code via a SSH2_MSG_DEBUG packet with a modified stringlen parameter, which leads to a buffer overflow.
Scope: local
bookworm: resolved (fixed in 0.56-1)
bullseye: resolved (fixed in 0.56-1)
forky: resolved (fixed in 0.56-1)
sid: resolved (fixed in 0.56-1)
trixie: resolved (fixed in 0.56-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://marc.info/?l=bugtraq&m=109889312917613&w=2http://secunia.com/advisories/12987/http://secunia.com/advisories/13012/http://secunia.com/advisories/17214http://www-1.ibm.com/support/docview.wss?uid=ssg1S1002414http://www-1.ibm.com/support/docview.wss?uid=ssg1S1002416http://www.chiark.greenend.org.uk/~sgtatham/putty/http://www.gentoo.org/security/en/glsa/glsa-200410-29.xmlhttp://www.idefense.com/application/poi/display?id=155&type=vulnerabilities&flashstatus=truehttp://www.securityfocus.com/bid/11549https://exchange.xforce.ibmcloud.com/vulnerabilities/17886http://marc.info/?l=bugtraq&m=109889312917613&w=2http://secunia.com/advisories/12987/http://secunia.com/advisories/13012/http://secunia.com/advisories/17214http://www-1.ibm.com/support/docview.wss?uid=ssg1S1002414http://www-1.ibm.com/support/docview.wss?uid=ssg1S1002416http://www.chiark.greenend.org.uk/~sgtatham/putty/http://www.gentoo.org/security/en/glsa/glsa-200410-29.xmlhttp://www.idefense.com/application/poi/display?id=155&type=vulnerabilities&flashstatus=truehttp://www.securityfocus.com/bid/11549https://exchange.xforce.ibmcloud.com/vulnerabilities/17886
2005-01-10
Published