Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Net Snmp MEDIUM 6.5
CVE-2019-20892

net-snmp before 5.8.1.pre1 has a double free in usm_free_usmStateReference in snmplib/snmpusm.c via an SNMPv3 GetBulk request. NOTE: this affects net…

Fix: after 5.8
Fix from $1,600 2020-06-25
Net Snmp HIGH 7.5
CVE-2018-18066

snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an unauthenticated attacker to rem…

Fix: 5.8+
Fix from $1,950 2018-10-08
Net Snmp HIGH 7.5
CVE-2015-5621EPSS 40%

The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnmp_variable_list item when par…

Fix: after 5.7.2
Fix from $1,950 2015-08-19
Net Snmp MEDIUM 5.0
CVE-2014-2310

The AgentX subagent in Net-SNMP before 5.4.4 allows remote attackers to cause a denial of service (hang) by sending a multi-object request with an Ob…

Fix: after 5.4
Fix from $1,600 2014-04-17
Net Snmp MEDIUM 5.0
CVE-2014-2284

The Linux implementation of the ICMP-MIB in Net-SNMP 5.5 before 5.5.2.1, 5.6.x before 5.6.2.1, and 5.7.x before 5.7.2.1 does not properly validate in…

Mitigation only
Fix from $1,600 2014-03-24
Net Snmp MEDIUM 5.0
CVE-2009-1887

agent/snmp_agent.c in snmpd in net-snmp 5.0.9 in Red Hat Enterprise Linux (RHEL) 3 allows remote attackers to cause a denial of service (daemon crash…

Patch available
Fix from $1,600 2009-06-26
Net Snmp HIGH 7.5
CVE-2008-4309

Integer overflow in the netsnmp_create_subtree_cache function in agent/snmp_agent.c in net-snmp 5.4 before 5.4.2.1, 5.3 before 5.3.2.3, and 5.2 befor…

Mitigation only
Fix from $1,950 2008-10-31
Net Snmp MEDIUM 6.8
CVE-2008-2292EPSS 8%

Buffer overflow in the __snprint_value function in snmp_get in Net-SNMP 5.1.4, 5.2.4, and 5.4.1, as used in SNMP.xs for Perl, allows remote attackers…

Mitigation only
Fix from $1,600 2008-05-18
Net Snmp HIGH 7.8
CVE-2007-5846EPSS 29%

The SNMP agent (snmp_agent.c) in net-snmp before 5.4.1 allows remote attackers to cause a denial of service (CPU and memory consumption) via a GETBUL…

Fix: after 5.4.1
Fix from $1,950 2007-11-06
Net Snmp HIGH 7.5
CVE-2006-6305

Unspecified vulnerability in Net-SNMP 5.3 before 5.3.0.1, when configured using the rocommunity or rouser snmpd.conf tokens, causes Net-SNMP to grant…

Patch available
Fix from $1,950 2006-12-06
Net Snmp HIGH 10.0
CVE-2005-4837EPSS 10%

snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in master agentx mode, allows remote …

Fix: after 5.2.1.2
Fix from $1,950 2005-12-31
Net Snmp MEDIUM 5.0
CVE-2005-2177

Net-SNMP 5.0.x before 5.0.10.2, 5.2.x before 5.2.1.2, and 5.1.3, when net-snmp is using stream sockets such as TCP, allows remote attackers to cause …

Patch available
Fix from $1,600 2005-07-11
Net Snmp HIGH 10.0
CVE-2005-1740EPSS 9%

fixproc in Net-snmp 5.x before 5.2.1-r1 creates temporary files insecurely, which allows local users to modify the contents of those files to execute…

Mitigation only
Fix from $1,950 2005-05-24
Net Snmp MEDIUM 6.4
CVE-2003-0935

Net-SNMP before 5.0.9 allows a user or community to access data in MIB objects, even if that data is not allowed to be viewed.

Patch available
Fix from $1,600 2003-12-01
Net Snmp MEDIUM 5.0
CVE-2002-1170

The handle_var_requests function in snmp_agent.c for the SNMP daemon in the Net-SNMP (formerly ucd-snmp) package 5.0.1 through 5.0.5 allows remote at…

Patch available
Fix from $1,600 2002-10-11