Bugtraq mailing list archives
Re: Putty (beta 0.67) DLL Hijacking Vulnerability
From: wsachin092 () gmail com
Date: Wed, 6 Jul 2016 11:50:42 GMT
Can you please assign the CVE for http://seclists.org/bugtraq/2016/Jul/26 1. Create malicious dll file and save it as UxTheme.dll or ntmarta.dll in your "Downloads" directory. 2. Download https://the.earth.li/~sgtatham/putty/latest/x86/putty.exe and save it in your "Downloads" directory. 3. Execute putty.exe from your "Downloads" directory. 4. Malicious dll file gets executed. Use CVE-2016-6167. - -- CVE Assignment Team M/S M300, 202 Burlington Road, Bedford, MA 01730 USA [ A PGP key is available for encrypted communications at http://cve.mitre.org/cve/request_id.html ]
Current thread:
- Putty (beta 0.67) DLL Hijacking Vulnerability wsachin092 (Jul 05)
- <Possible follow-ups>
- Re: Putty (beta 0.67) DLL Hijacking Vulnerability wsachin092 (Jul 06)