5
CVSSv2

CVE-2014-2310

Published: 17/04/2014 Updated: 18/04/2014
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The AgentX subagent in Net-SNMP prior to 5.4.4 allows remote malicious users to cause a denial of service (hang) by sending a multi-object request with an Object ID (OID) containing more subids than previous requests, a different vulnerability than CVE-2012-6151.

Vulnerable Product Search on Vulmon Subscribe to Product

net-snmp net-snmp

Vendor Advisories

Debian Bug report logs - #684388 agentx: CVE-2014-2310: Oversized Object ID Package: libsnmp15; Maintainer for libsnmp15 is (unknown); Reported by: Vincent Bernat <bernat@debianorg> Date: Thu, 9 Aug 2012 11:33:04 UTC Severity: important Tags: patch, security, upstream Found in version net-snmp/543~dfsg-25 Fixed in ve ...
Net-SNMP could be made to crash if it received specially crafted network traffic ...
The AgentX subagent in Net-SNMP before 544 allows remote attackers to cause a denial of service (hang) by sending a multi-object request with an Object ID (OID) containing more subids than previous requests, a different vulnerability than CVE-2012-6151 ...