[openSUSE-SU-2024:0005-1] Security update for putty

Severity Important
Affected Packages 10
CVEs 1

Security update for putty

This update for putty fixes the following issues:

putty was updated to to release 0.80:

  • Fix CVE-2023-48795 [boo#1218128]

  • Update to release 0.79

    • Terminal mouse tracking: support for mouse movements which are not drags, and support for horizontal scroll events (e.g. generated by trackpads).
    • Fixed: PuTTY could fail an assertion if a resize control sequence was sent by the server while the window was docked to one half of the screen in KDE.
    • Fixed: PuTTY could fail an assertion if you tried to change the font size while the window was maximised.
  • Update to release 0.78

    • Support for OpenSSH certificates, for both user authentication keys and host keys.
    • New SSH proxy modes, for running a custom shell command or subsystem on the proxy server instead of forwarding a port through it.
    • New plugin system to allow a helper program to provide responses in keyboard-interactive authentication, intended to automate one-time password systems.
    • Support for NTRU Prime post-quantum key exchange,
    • Support for AES-GCM (in the OpenSSH style rather than RFC 5647).
    • Support for more forms of Diffie-Hellman key exchange: new larger integer groups (such as group16 and group18), and support for using those and ECDH with GSSAPI.
    • Bug fix: server-controlled window title setting now works again even if the character set is ISO 8859 (or a few other
ID
openSUSE-SU-2024:0005-1
Severity
important
URL
https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/BVOEVD2B4CFVDJEJANZW6QGRI6FTWFJ3/
Published
2024-01-03T11:04:00
(8 months ago)
Modified
2024-01-03T11:04:00
(8 months ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/opensuse/putty?arch=x86_64&distro=opensuse-leap-15.4 opensuse putty < 0.80-bp154.2.3.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/opensuse/putty?arch=x86_64&distro=opensuse-15&repo=suse-package-hub opensuse putty < 0.80-bp154.2.3.1 opensuse-15 x86_64
Affected pkg:rpm/opensuse/putty?arch=s390x&distro=opensuse-leap-15.4 opensuse putty < 0.80-bp154.2.3.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/opensuse/putty?arch=s390x&distro=opensuse-15&repo=suse-package-hub opensuse putty < 0.80-bp154.2.3.1 opensuse-15 s390x
Affected pkg:rpm/opensuse/putty?arch=ppc64le&distro=opensuse-leap-15.4 opensuse putty < 0.80-bp154.2.3.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/opensuse/putty?arch=ppc64le&distro=opensuse-15&repo=suse-package-hub opensuse putty < 0.80-bp154.2.3.1 opensuse-15 ppc64le
Affected pkg:rpm/opensuse/putty?arch=i586&distro=opensuse-leap-15.4 opensuse putty < 0.80-bp154.2.3.1 opensuse-leap-15.4 i586
Affected pkg:rpm/opensuse/putty?arch=i586&distro=opensuse-15&repo=suse-package-hub opensuse putty < 0.80-bp154.2.3.1 opensuse-15 i586
Affected pkg:rpm/opensuse/putty?arch=aarch64&distro=opensuse-leap-15.4 opensuse putty < 0.80-bp154.2.3.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/opensuse/putty?arch=aarch64&distro=opensuse-15&repo=suse-package-hub opensuse putty < 0.80-bp154.2.3.1 opensuse-15 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...