Critical severity9.8NVD Advisory· Published Mar 21, 2019· Updated Jun 17, 2026
CVE-2019-9895
CVE-2019-9895
Description
In PuTTY versions before 0.71 on Unix, a remotely triggerable buffer overflow exists in any kind of server-to-client forwarding.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:o:fedoraproject:fedora:28:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:28:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*
- osv-coords2 versionspkg:rpm/opensuse/putty&distro=openSUSE%20Leap%2015.0pkg:rpm/suse/putty&distro=SUSE%20Package%20Hub%2015
< 0.71-lp150.9.1+ 1 more
- (no CPE)range: < 0.71-lp150.9.1
- (no CPE)range: < 0.71-bp150.4.3.1
Patches
Vulnerability mechanics
References
8- www.chiark.greenend.org.uk/~sgtatham/putty/changes.htmlnvdThird Party Advisory
- lists.opensuse.org/opensuse-security-announce/2019-04/msg00004.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2019-04/msg00020.htmlnvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36LWQ3NPFIV7DC7TC4KFPRYRH2OR7SZ2/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LDO3F267P347E6U2IILFCYW7JPTLCCES/nvd
- seclists.org/bugtraq/2019/Apr/6nvd
- security.netapp.com/advisory/ntap-20190404-0001/nvd
- www.debian.org/security/2019/dsa-4423nvd
News mentions
0No linked articles in our index yet.