Net-SNMP snmptrapd Remote Denial of Service Vulnerability (CVE-2014-3565)
Release date:
Updated on: 2014-09-03
Affected Systems:
Net-SNMP net-snmp
Description:
--------------------------------------------------------------------------------
Bugtraq id: 69477
CVE (CAN) ID: CVE-2014-3565
Net-SNMP is a free, open-source SNMP implementation, formerly called UCD-SNMP.
Net-SNMP has a remote denial of service vulnerability when handling SNMP Traps (including ifMtu with NULL bytes). Remote attackers can exploit this vulnerability to cause snmptrapd to crash.
<* Source: vendor
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Net-SNMP
--------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://sourceforge.net/projects/net-snmp/
Net-SNMP details: click here
Net-SNMP: click here
Install Net-SNMP in RPM mode in Linux
Use of Net-SNMPv3 in openSUSE 11.2
Net-SNMP mib2c Configuration
Install Net-SNMP in Ubuntu
Ubuntu installation Net-SNMP-5.5.1 method summary
This article permanently updates the link address: