From 6f11a21be5dd9051547319eaad9759f38c26fae7 Mon Sep 17 00:00:00 2001 From: zi Date: Fri, 27 Apr 2012 02:45:24 +0000 Subject: - Document vulnerability in net-mgmt/net-snmp (CVE-2012-2141) --- security/vuxml/vuln.xml | 33 +++++++++++++++++++++++++++++++++ 1 file changed, 33 insertions(+) diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 86311041772b..ea348837e1b9 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -52,6 +52,39 @@ Note: Please add new entries to the beginning of this file. --> + + net-snmp -- Remote DoS + + + net-snmp + 5.7.1_7 + + + + +

The Red Hat Security Response Team reports:

+
+

An array index error, leading to out-of heap-based buffer read flaw was + found in the way the net-snmp agent performed lookups in the + extension table. When certain MIB subtrees were handled by the + extend directive, a remote attacker (having read privileges to the + subntree) could use this flaw to cause a denial of service condition + via an SNMP GET request involving a non-existent extension table + entry.

+
+ +
+ + CVE-2012-2141 + https://bugzilla.redhat.com/show_bug.cgi?id=815813 + http://www.openwall.com/lists/oss-security/2012/04/26/2 + + + 2012-04-26 + 2012-04-27 + +
+ mozilla -- multiple vulnerabilities -- cgit