LWN.net Logo

net-snmp: buffer overflow

Package(s):net-snmp CVE #(s):CVE-2008-2292
Created:June 11, 2008 Updated:December 4, 2008
Description: From the CVE entry: Buffer overflow in the __snprint_value function in snmp_get in Net-SNMP 5.1.4, 5.2.4, and 5.4.1, as used in SNMP.xs for Perl, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large OCTETSTRING in an attribute value pair (AVP).
Alerts:
Ubuntu USN-685-1 2008-12-03
Debian DSA-1663-1 2008-11-09
SuSE SUSE-SA:2008:039 2008-08-01
Gentoo 200808-02 2008-08-06
Slackware SSA:2008-210-07 2008-07-29
Mandriva MDVSA-2008:118 2007-06-19
Fedora FEDORA-2008-5224 2008-06-11
Fedora FEDORA-2008-5218 2008-06-11

(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds