PuTTY 0.53b and earlier does not clear logon credentials from memory, including plaintext passwords, which could allow attackers with access to memory to steal the SSH credentials.
| Software | From | Fixed in |
|---|---|---|
| putty / putty | 0.53 | 0.53.x |
| putty / putty | 0.49 | 0.49.x |
| putty / putty | 0.53b | 0.53b.x |
| putty / putty | 0.48 | 0.48.x |