CVE-2019-17069: Netapp Oncommand Unified Manager Core Package

High severity, CVSS 7.5. EPSS: 2.2% chance of exploitation in the next 30 days.

PuTTY before 0.73 might allow remote SSH-1 servers to cause a denial of service by accessing freed memory locations via an SSH1_MSG_DISCONNECT message.

Affected products

  • Netapp Oncommand Unified Manager Core Package: affected versions not specified
  • Opensuse Leap: version 15.0 only; version 15.1 only
  • Putty Putty: before 0.73 (fixed in 0.73)

Published 2019-10-01. Last modified 2026-06-17.