Schwachstelle in PuTTY, die den privaten Schlüssel des Nutzers wiederherstellt
In PuTTY, a popular SSH protocol client on the Windows platform, a serious vulnerability (CVE-2024-31497) has been identified, allowing the recreation of a user's private key generated using the ECDSA algorithm with the NIST P-521 elliptic curve (ecdsa-sha2-nistp521). To derive the private key, it is sufficient to analyze about 60 digital signatures formed by the problematic key. The vulnerability manifests from version PuTTY 0.68 and has also affected products, […]
