PT-2005-5576 · Net Snmp+1 · Net-Snmp+1

Published

1970-01-01

·

Updated

2018-10-19

·

CVE-2005-2177

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Net-SNMP versions 5.0.x through 5.0.10.1 Net-SNMP versions 5.2.x through 5.2.1.1 Net-SNMP version 5.1.3
Description The issue allows remote attackers to cause a denial of service, resulting in daemon hang and CPU consumption. This can be triggered via a TCP packet of length 1, which causes an infinite loop. The vulnerability can be exploited remotely, potentially leading to disruption of protected information.
Recommendations For Net-SNMP versions 5.0.x through 5.0.10.1, update to version 5.0.10.2 or later. For Net-SNMP versions 5.2.x through 5.2.1.1, update to version 5.2.1.2 or later. For Net-SNMP version 5.1.3, consider upgrading to a newer version, such as 5.0.10.2 or 5.2.1.2, to resolve the issue.

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-02659
BDU:2015-02660
CVE-2005-2177
DSA-873-1
RHSA-2005:373
RHSA-2005:395
RHSA-2005_373
RHSA-2005_395

Affected Products

Net-Snmp
Red Hat