CVE-2021-33500
Summary
| CVE | CVE-2021-33500 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-05-21 20:15:00 UTC |
| Updated | 2021-05-27 21:30:00 UTC |
| Description | PuTTY before 0.75 on Windows allows remote servers to cause a denial of service (Windows GUI hang) by telling the PuTTY window to change its title repeatedly at high speed, which results in many SetWindowTextA or SetWindowTextW calls. NOTE: the same attack methodology may affect some OS-level GUIs on Linux or other platforms for similar reasons. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.chiark.greenend.org.uk/~sgtatham/putty/changes.html | MISC | www.chiark.greenend.org.uk | |
| SSH-MITM Docs - PuTTY < v0.75 DoS | MISC | docs.ssh-mitm.at | |
| ssh-mitm-plugins/putty_dos.py at main · ssh-mitm/ssh-mitm-plugins · GitHub | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 375629 Putty Denial of Service Vulnerability