Known vulnerabilities in putty (Alpine package)

Software CPE: cpe:2.3:o:alpine:putty_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 12
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting putty (Alpine package) putty (Alpine package) is affected by 12 known vulnerabilities: 3 high, 7 medium, 2 low Critical High Medium Low

Vulnerabilities (12)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU29487 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2020-14002
CWE-300 Medium
No
No
- 02.07.2020 SB2020070225
SB2020090318
SB2020063041
and 3 more
#VU21598 - Resource Management Errors
CVE-2019-17069
CWE-399 Low
No
No
0.73-r0 07.10.2019 SB2019100713
SB2019100714
SB2019100715
and 2 more
#VU21597 - Permissions, Privileges, and Access Controls
CVE-2019-17068
CWE-264 Medium
No
No
0.73-r0 07.10.2019 SB2019100713
SB2019100714
SB2019100715
and 2 more
#VU32029 - Memory corruption
CVE-2019-9895
CWE-119 High
No
No
0.71-r0 21.03.2019 SB2019032126
SB2019040832
SB2019031826
and 3 more
#VU31143 - Key Management Errors
CVE-2019-9894
CWE-320 Medium
No
No
0.71-r0 21.03.2019 SB2019032122
SB2019040831
SB2019031826
and 3 more
#VU31144 - Improper input validation
CVE-2019-9897
CWE-20 Medium
No
No
0.71-r0 21.03.2019 SB2019032122
SB2019040834
SB2019031826
and 3 more
#VU31145 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2019-9898
CWE-327 High
No
No
0.71-r0 21.03.2019 SB2019032122
SB2019040830
SB2019031826
and 3 more
#VU6919 - Heap-based Buffer Overflow
CVE-2017-6542
CWE-122 Medium
Available
No
0.68-r0 06.06.2017 SB2017060604
SB2017060615
SB2017031901
and 3 more
#VU32320 - Stack-based buffer overflow
CVE-2016-2563
CWE-121 High
Available
No
0.67-r0 08.04.2016 SB2016040808
SB2016031406
SB2016060505
and 2 more
#VU33817 - Improper input validation
CVE-2015-5309
CWE-20 Medium
No
No
0.66-r0 07.12.2015 SB2015120702
SB2015120318
SB2016060505
and 7 more
#VU32444 - Exposure of sensitive information to an unauthorized actor
CVE-2015-2157
CWE-200 Low
No
No
0.64-r0 27.03.2015 SB2015032701
SB2015031107
SB2015030302
and 3 more
#VU33086 - Memory corruption
CVE-2008-5514
CWE-119 Medium
No
No
0.64-r0 23.12.2008 SB2010082501
SB2011122903
SB2011122904