CVE-2019-9898: Critical severity putty vulnerability
Published Mar 21, 2019
·Updated
Potential recycling of random numbers used in cryptography exists within PuTTY before 0.71.
Affected Software
8 affected componentsFixes available
debian/putty
0.70-60.74-10.78-20.79-1
Putty PuTTY<0.71
Fedoraproject Fedora=28
Fedoraproject Fedora=29
Debian Debian Linux=8.0
Debian Debian Linux=9.0
openSUSE Leap=15.0
NetApp OnCommand Unified Manager
Remediation
Patch Available
Event History
Mar 21, 2019
CVE Published
via MITRE·02:31 AM
Data Sourced
via MITRE·02:31 AM
Description
Data Sourced
via NVD·04:01 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2019-9898?
CVE-2019-9898 is a vulnerability that allows for potential recycling of random numbers used in cryptography within PuTTY before version 0.71.
2
How severe is CVE-2019-9898?
CVE-2019-9898 has a severity score of 9.8, which is considered critical.
3
Which software versions are affected by CVE-2019-9898?
PuTTY versions before 0.71 are affected by CVE-2019-9898.
4
How can I fix CVE-2019-9898?
To fix CVE-2019-9898, upgrade your PuTTY version to 0.71 or higher.
5
Where can I find more information about CVE-2019-9898?
You can find more information about CVE-2019-9898 at the following references: [reference URLs]