A critical flaw in PuTTY tracked as CVE-2024-31497 allowed recovery of NIST P-521 ECDSA private keys because the client generated biased nonces during signature creation. Public advisories and downstream vendor notices said the issue affected PuTTY-based signing operations and could let attackers derive a private key from a sufficient number of signatures, putting SSH authentication and related trust relationships at risk where vulnerable keys were used.
The vulnerability was disclosed through oss-security and subsequently addressed by multiple Linux vendors, including Red Hat, SUSE, and Debian LTS, while Citrix warned administrators to apply manual mitigations for affected environments. The broad guidance across advisories was to upgrade PuTTY to a fixed release, stop using impacted P-521 keys for signing, and rotate any potentially exposed private keys and dependent authorized keys or certificates to prevent continued compromise.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
5 events from the most recent confirmed update back to the earliest known activity.
Debian issued DLA-3839-1, providing a security update for PuTTY in Debian LTS in response to CVE-2024-31497. This marked an available downstream patch for affected Debian long-term support users.
SUSE published a bug tracker entry for CVE-2024-31497, describing the issue as exposure of NIST P-521 private keys through biased signature generation in PuTTY. The entry marked downstream vendor tracking and assessment of the vulnerability.
Citrix warned administrators about the PuTTY SSH client flaw and advised manual mitigation steps, indicating operational impact for environments relying on PuTTY-based workflows. This represented a vendor response translating the disclosure into deployment guidance.
Follow-on reporting explained that the flaw affects PuTTY clients using NIST P-521 ECDSA keys and warned that attackers could recover private keys from signatures generated by vulnerable versions. Coverage emphasized the severity of the issue and the need for users to rotate affected keys and update software.
A vulnerability affecting PuTTY's ECDSA signature generation was publicly disclosed, showing that biased nonces could allow recovery of NIST P-521 private keys. The issue was assigned CVE-2024-31497 and discussed on oss-security and downstream vendor trackers.
8 references tracked. Mallory keeps watching after this page renders.
lists.debian.org
Open sourcebugzilla.suse.com
Open sourcebleepingcomputer.com
Open sourcevicarius.io
Open sourcethehackernews.com
Open sourcebugzilla.redhat.com
Open sourcesecurityonline.info
Open sourceopenwall.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.