Skip to content

When will gitextensions get the CVE-2024-31497-fixing update of the bundled PuTTY tools? #11701

Answered by pmiossec
ultrags asked this question in General
Discussion options

You must be logged in to vote

The newest available gitextensions release still bundles version older than 0.81 PuTTY tools.

Could you confirm that?
I think that since #9386 include in v4.0.0, GitExtensions doesn't bundle PuTTY anymore and user has to take care of updating it himself.
A quick check on the portable version and the msi seems to confirm that it is not bundled.

So maybe you have to clean putty binaries from an old version of GitExtensions installed and install a not vulnerable version yourself.

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@ultrags
Comment options

Answer selected by ultrags
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants