SecureCRT SSH1 Identifier String Buffer Overflow Vulnerability

The SecureCRT client is prone to a buffer-overflow condition when attempting to handle an overly long SSH1 protocol identifier string. Reportedly, an attacker can exploit this issue via a malicious server.

Exploiting this issue may allow an attacker to execute arbitrary code or may cause the client to crash.


 

Privacy Statement
Copyright 2010, SecurityFocus