Lucene search

K
cve[email protected]CVE-2014-1452
HistoryJan 21, 2014 - 3:17 p.m.

CVE-2014-1452

2014-01-2115:17:12
CWE-119
web.nvd.nist.gov
48
cve-2014-1452
buffer overflow
freebsd
snmp
denial of service
remote code execution

5.8 Medium

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:A/AC:L/Au:N/C:P/I:P/A:P

8 High

AI Score

Confidence

High

0.332 Low

EPSS

Percentile

97.1%

Stack-based buffer overflow in lib/snmpagent.c in bsnmpd, as used in FreeBSD 8.3 through 10.0, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a crafted GETBULK PDU request.

Affected configurations

NVD
Node
freebsdfreebsdMatch8.3
OR
freebsdfreebsdMatch8.4
OR
freebsdfreebsdMatch9.0
OR
freebsdfreebsdMatch9.1
OR
freebsdfreebsdMatch9.1p4
OR
freebsdfreebsdMatch9.1p5
OR
freebsdfreebsdMatch9.2
OR
freebsdfreebsdMatch9.2prerelease
OR
freebsdfreebsdMatch9.2rc1
OR
freebsdfreebsdMatch9.2rc2
OR
freebsdfreebsdMatch10.0

5.8 Medium

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:A/AC:L/Au:N/C:P/I:P/A:P

8 High

AI Score

Confidence

High

0.332 Low

EPSS

Percentile

97.1%