*Security fixes found by the EU-funded bug bounty: ** two separate vulnerabilities affecting the obsolete SSH-1 protocol, both available before host key checking ** a vulnerability in all the SSH client tools (PuTTY, Plink, PSFTP and PSCP) if a malicious program can impersonate Pageant Reference: https://www.chiark.greenend.org.uk/~sgtatham/putty/changes.html
Created putty tracking bugs for this issue: Affects: epel-6 [bug 1767986] Affects: epel-7 [bug 1767987] Affects: fedora-29 [bug 1767985]