3.5
CVSSv2

CVE-2012-2141

Published: 14/08/2012 Updated: 29/08/2017
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:N/A:P

Vulnerability Summary

Array index error in the handle_nsExtendOutput2Table function in agent/mibgroup/agent/extend.c in Net-SNMP 5.7.1 allows remote authenticated users to cause a denial of service (out-of-bounds read and snmpd crash) via an SNMP GET request for an entry not in the extension table.

Vulnerable Product Search on Vulmon Subscribe to Product

net-snmp net-snmp 5.7.1

Vendor Advisories

Net-SNMP could be made to crash if it received specially crafted network traffic ...
Synopsis Moderate: net-snmp security and bug fix update Type/Severity Security Advisory: Moderate Topic Updated net-snmp packages that fix one security issue and multiple bugs arenow available for Red Hat Enterprise Linux 5The Red Hat Security Response Team has rated this update as having moderatesecurity ...
Synopsis Moderate: net-snmp security and bug fix update Type/Severity Security Advisory: Moderate Topic Updated net-snmp packages that fix one security issue and multiple bugs arenow available for Red Hat Enterprise Linux 6The Red Hat Security Response Team has rated this update as having moderatesecurity ...
Debian Bug report logs - #672492 CVE-2012-2141 Package: net-snmp; Maintainer for net-snmp is Net-SNMP Packaging Team <pkg-net-snmp-devel@listsaliothdebianorg>; Reported by: Moritz Muehlenhoff <muehlenhoff@univentionde> Date: Fri, 11 May 2012 14:21:01 UTC Severity: grave Tags: security Found in version 543~dfsg ...
Debian Bug report logs - #684388 agentx: CVE-2014-2310: Oversized Object ID Package: libsnmp15; Maintainer for libsnmp15 is (unknown); Reported by: Vincent Bernat <bernat@debianorg> Date: Thu, 9 Aug 2012 11:33:04 UTC Severity: important Tags: patch, security, upstream Found in version net-snmp/543~dfsg-25 Fixed in ve ...
An array index error, leading to an out-of-bounds buffer read flaw, was found in the way the net-snmp agent looked up entries in the extension table A remote attacker with read privileges to a Management Information Base (MIB) subtree handled by the "extend" directive (in "/etc/snmp/snmpdconf") could use this flaw to crash snmpd via a crafted SNM ...
Description of Problem A number of security vulnerabilities have been identified in Citrix NetScaler Application Delivery Controller (ADC) These vulnerabilities have been assigned the following CVE numbers: • CVE-2013-6939: Denial of service vulnerability in Citrix NetScaler Application Delivery Controller RADIUS authentication • CVE-2012-21 ...