snmplib/mib.c in net-snmp 5.7.0 and earlier, when the -OQ option is used, allows remote attackers to cause a denial of service (snmptrapd crash) via a crafted SNMP trap message, which triggers a conversion to the variable type designated in the MIB file, as demonstrated by a NULL type in an ifMtu trap message.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mac_os_x | Apple | 10.11.0 (including) | 10.11.0 (including) |
Ubuntu_linux | Canonical | 12.04 (including) | 12.04 (including) |
Ubuntu_linux | Canonical | 14.04 (including) | 14.04 (including) |
Ubuntu_linux | Canonical | 15.04 (including) | 15.04 (including) |
Red Hat Enterprise Linux 6 | RedHat | net-snmp-1:5.5-54.el6 | * |
Red Hat Enterprise Linux 7 | RedHat | net-snmp-1:5.7.2-24.el7 | * |
Net-snmp | Ubuntu | devel | * |
Net-snmp | Ubuntu | lucid | * |
Net-snmp | Ubuntu | precise | * |
Net-snmp | Ubuntu | trusty | * |
Net-snmp | Ubuntu | utopic | * |
Net-snmp | Ubuntu | vivid | * |