SNMP (Simple Network Management Protocol) is a protocol used for network
management.
A denial of service bug was found in the way net-snmp uses network stream
protocols. It is possible for a remote attacker to send a net-snmp agent a
specially crafted packet which will crash the agent. The Common
Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name
CAN-2005-2177 to this issue.
An insecure temporary file usage bug was found in net-snmp’s fixproc
command. It is possible for a local user to modify the content of temporary
files used by fixproc which can lead to arbitrary command execution. The
Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned
the name CAN-2005-1740 to this issue.
Additionally the following bugs have been fixed:
All users of net-snmp should upgrade to these updated packages, which
resolve these issues.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
RedHat | any | ia64 | net-snmp-utils | < 5.0.9-2.30E.19 | net-snmp-utils-5.0.9-2.30E.19.ia64.rpm |
RedHat | any | ia64 | net-snmp-libs | < 5.0.9-2.30E.19 | net-snmp-libs-5.0.9-2.30E.19.ia64.rpm |
RedHat | any | i386 | net-snmp-libs | < 5.0.9-2.30E.19 | net-snmp-libs-5.0.9-2.30E.19.i386.rpm |
RedHat | any | ia64 | net-snmp | < 5.0.9-2.30E.19 | net-snmp-5.0.9-2.30E.19.ia64.rpm |
RedHat | any | ia64 | net-snmp-perl | < 5.0.9-2.30E.19 | net-snmp-perl-5.0.9-2.30E.19.ia64.rpm |
RedHat | any | ia64 | net-snmp-devel | < 5.0.9-2.30E.19 | net-snmp-devel-5.0.9-2.30E.19.ia64.rpm |