{"id":"MGASA-2017-0093","summary":"Updated putty packages fix security vulnerability","details":"In PuTTY before 0.68, if SSH agent forwarding is enabled, local attackers\nthat are also able to connect to the UNIX domain socket could have\noverwritten heap data (CVE-2017-6542).\n","modified":"2026-04-16T06:24:32.962261677Z","published":"2017-03-27T21:27:33Z","upstream":["CVE-2017-6542"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2017-0093.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=20525"},{"type":"WEB","url":"http://www.chiark.greenend.org.uk/~sgtatham/putty/wishlist/vuln-agent-fwd-overflow.html"},{"type":"WEB","url":"http://www.chiark.greenend.org.uk/~sgtatham/putty/changes.html"}],"affected":[{"package":{"name":"putty","ecosystem":"Mageia:5","purl":"pkg:rpm/mageia/putty?arch=source&distro=mageia-5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.68-1.mga5"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2017-0093.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}