Wind River Support Network

HomeDefectsLIN8-8943
Fixed

LIN8-8943 : Security Advisory - net-snmp - CVE-2012-6151

Created: Mar 27, 2018    Updated: Dec 9, 2019
Resolved Date: May 9, 2018
Found In Version: 8.0.0.25
Fix Version: 8.0.0.26
Severity: Standard
Applicable for: Wind River Linux 8
Component/s: Networking

Description

Net-SNMP 5.7.1 and earlier, when AgentX is registering to handle a MIB and processing GETNEXT requests, allows remote attackers to cause a denial of service (crash or infinite loop, CPU consumption, and hang) by causing the AgentX subagent to timeout.

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-6151

Workaround

https://github.com/Metaswitch/centos-clearwater-net-snmp/blob/master/SOURCES/net-snmp-5.7.2-agentx-disconnect-crash.patch

Other Downloads


Live chat
Online