snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an unauthenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Net-snmp | Net-snmp | * | 5.8 (excluding) |
Red Hat Enterprise Linux 7 | RedHat | net-snmp-1:5.7.2-47.el7 | * |
Red Hat Enterprise Linux 7.7 Extended Update Support | RedHat | net-snmp-1:5.7.2-43.el7_7.6 | * |
Net-snmp | Ubuntu | upstream | * |