Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2024-31497

Quick assessment

Affected
n/a n/a
Exploitation
Public or AI PoC available; prioritize validation
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

PuTTY是Simon Tatham个人开发者的一套免费的Telnet、Rlogin和SSH客户端软件。该软件主要用于对Linux系统进行远程管理。 PuTTY 0.68版本至0.80版本存在安全漏洞,该漏洞源于存在有偏差的随机数生成,允许攻击者通过快速攻击来恢复用户的NIST P-521密钥。

AI Predicted 9.1 Difficulty: Easy EPSS 5.77% · P93
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2024-31497

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
In PuTTY 0.68 through 0.80 before 0.81, biased ECDSA nonce generation allows an attacker to recover a user's NIST P-521 secret key via a quick attack in approximately 60 signatures. This is especially important in a scenario where an adversary is able to read messages signed by PuTTY or Pageant. The required set of signed messages may be publicly readable because they are stored in a public Git service that supports use of SSH for commit signing, and the signatures were made by Pageant through an agent-forwarding mechanism. In other words, an adversary may already have enough signature information to compromise a victim's private key, even if there is no further use of vulnerable PuTTY versions. After a key compromise, an adversary may be able to conduct supply-chain attacks on software maintained in Git. A second, independent scenario is that the adversary is an operator of an SSH server to which the victim authenticates (for remote login or file copy), even though this server is not fully trusted by the victim, and the victim uses the same private key for SSH connections to other services operated by other entities. Here, the rogue server operator (who would otherwise have no way to determine the victim's private key) can derive the victim's private key, and then use it for unauthorized access to those other services. If the other services include Git services, then again it may be possible to conduct supply-chain attacks on software maintained in Git. This also affects, for example, FileZilla before 3.67.0, WinSCP before 6.3.3, TortoiseGit before 2.15.0.1, and TortoiseSVN through 1.14.6.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
PuTTY 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
PuTTY是Simon Tatham个人开发者的一套免费的Telnet、Rlogin和SSH客户端软件。该软件主要用于对Linux系统进行远程管理。 PuTTY 0.68版本至0.80版本存在安全漏洞,该漏洞源于存在有偏差的随机数生成,允许攻击者通过快速攻击来恢复用户的NIST P-521密钥。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2024-31497

# POC Description Source Link Shenlong Link
1 A script designed to uncover vulnerabilities in Putty by exploiting CVE-2024-31497. https://github.com/sh1k4ku/CVE-2024-31497 POC Details
2 None https://github.com/edutko/cve-2024-31497 POC Details
3 Proof Of Concept that exploits PuTTy CVE-2024-31497. https://github.com/HugoBond/CVE-2024-31497-POC POC Details
4 None https://github.com/LukaWynants/Onderzoek_CVE-2024-31497-POC POC Details
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-31497

登录查看更多情报信息。

Vendor Advisories for CVE-2024-31497 (3)

Mailing List Discussions for CVE-2024-31497 (8)

News Coverage for CVE-2024-31497 (2)

Vendor Pages for CVE-2024-31497 (2)

Other References for CVE-2024-31497 (11)

Same Patch Batch · n/a · 2024-04-15 · 23 CVEs total

CVE-2024-30840 Tenda AC15 安全漏洞
CVE-2024-30567 JNT Telecom JNT Liftcom UMS 安全漏洞
CVE-2023-33806 Hikvision Interactive Tablet DS-D5B86RB/B 安全漏洞
CVE-2020-22540 Codoforum 安全漏洞
CVE-2020-22539 Codoforum 安全漏洞
CVE-2024-31651 Cosmetics and Beauty Product Online Store 安全漏洞
CVE-2024-30656 Fireboltt Dream Wristphone 安全漏洞
CVE-2024-31652 Cosmetics and Beauty Product Online Store 安全漏洞
CVE-2024-31650 Cosmetics and Beauty Product Online Store 安全漏洞
CVE-2024-31649 Cosmetics and Beauty Product Online Store 安全漏洞
CVE-2024-31648 Insurance Management System 安全漏洞
CVE-2024-32488 Foxit PDF Reader 安全漏洞
CVE-2023-45503 Macrob7 Macs Framework Cms 安全漏洞
CVE-2024-28557 SourceCodester Task Management System 安全漏洞
CVE-2024-28556 SourceCodester Task Management System 安全漏洞
CVE-2024-28558 Petrol Pump Management Software 安全漏洞
CVE-2024-24487 Silex Technology DS-600 安全漏洞
CVE-2024-24486 Silex Technology DS-600 安全漏洞
CVE-2024-24485 Silex Technology DS-600 安全漏洞
CVE-2024-28056 Amazon AWS Amplify 安全漏洞

Showing top 20 of 23 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2024-31497

No comments yet


Leave a comment