Net-SNMP 5.7.1 and earlier, when AgentX is registering to handle a MIB and processing GETNEXT requests, allows remote attackers to cause a denial of service (crash or infinite loop, CPU consumption, and hang) by causing the AgentX subagent to timeout.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mac_os_x | Apple | 10.11.0 (including) | 10.11.0 (including) |
Ubuntu_linux | Canonical | 10.04 (including) | 10.04 (including) |
Ubuntu_linux | Canonical | 12.04 (including) | 12.04 (including) |
Ubuntu_linux | Canonical | 12.10 (including) | 12.10 (including) |
Ubuntu_linux | Canonical | 13.10 (including) | 13.10 (including) |
Red Hat Enterprise Linux 5 | RedHat | net-snmp-1:5.3.2.2-22.el5_10.1 | * |
Red Hat Enterprise Linux 6 | RedHat | net-snmp-1:5.5-44.el6_4.4 | * |
Net-snmp | Ubuntu | devel | * |
Net-snmp | Ubuntu | lucid | * |
Net-snmp | Ubuntu | precise | * |
Net-snmp | Ubuntu | quantal | * |
Net-snmp | Ubuntu | raring | * |
Net-snmp | Ubuntu | saucy | * |
Net-snmp | Ubuntu | upstream | * |