CVE-2006-7162
published 2007-03-07CVE-2006-7162: PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing private keys generated by puttygen and (2) session logs created by putty, which…
PriorityP45low1.9CVSS 2.0
AVLACMAuNCPINAN
EPSS
0.30%
22.0th percentile
PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing private keys generated by puttygen and (2) session logs created by putty, which allows local users to gain sensitive information by reading these files.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | putty | < putty 0.59-1 (bookworm) | putty 0.59-1 (bookworm) |
| putty | putty | <= 0.59 | — |
| putty | putty | >= 0 < 0.59-1 | 0.59-1 |
| putty | putty | >= 0 < 0.59-1 | 0.59-1 |
| putty | putty | >= 0 < 0.59-1 | 0.59-1 |
| putty | putty | >= 0 < 0.59-1 | 0.59-1 |
CVSS provenance
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv1.9LOW
vendor_debian1.9LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-72fv-g98m-465j: PuTTY 0
ghsa_unreviewed·2022-05-01
CVE-2006-7162 [LOW] GHSA-72fv-g98m-465j: PuTTY 0
PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing private keys generated by puttygen and (2) session logs created by putty, which allows local users to gain sensitive information by reading these files.
OSV
CVE-2006-7162: PuTTY 0
osv·2007-03-07·CVSS 1.9
CVE-2006-7162 [LOW] CVE-2006-7162: PuTTY 0
PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing private keys generated by puttygen and (2) session logs created by putty, which allows local users to gain sensitive information by reading these files.
Debian
CVE-2006-7162: putty - PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing p...
vendor_debian·2006·CVSS 1.9
CVE-2006-7162 [LOW] CVE-2006-7162: putty - PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing p...
PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing private keys generated by puttygen and (2) session logs created by putty, which allows local users to gain sensitive information by reading these files.
Scope: local
bookworm: resolved (fixed in 0.59-1)
bullseye: resolved (fixed in 0.59-1)
forky: resolved (fixed in 0.59-1)
sid: resolved (fixed in 0.59-1)
trixie: resolved (fixed in 0.59-1)
No detection rules found.
No public exploits indexed.
2007-03-07
Published