Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-0467
Description:Multiple integer overflows in the (1) sftp_pkt_getstring and (2) fxp_readdir_recv functions in the PSFTP and PSCP clients for PuTTY 0.56, and possibly earlier versions, allow remote malicious web sites to execute arbitrary code via SFTP responses that corrupt the heap after insufficient memory has been allocated.
Test IDs: 1.3.6.1.4.1.25623.1.0.54860   1.3.6.1.4.1.25623.1.0.52179  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-0467
http://www.gentoo.org/security/en/glsa/glsa-200502-28.xml
http://www.idefense.com/application/poi/display?id=201&type=vulnerabilities
http://secunia.com/advisories/14333
http://secunia.com/advisories/17214
XForce ISS Database: putty-sftppktgetstring-bo(19403)
https://exchange.xforce.ibmcloud.com/vulnerabilities/19403




© 1998-2025 E-Soft Inc. All rights reserved.