Logo
componentnet-snmp
Name
net-snmp
Version
5.9.3
Type
library
Description
Various tools relating to the Simple Network Management Protocol
Licenses
BSD-3-Clause & MIT
PURL
-
CPE
cpe:2.3:*:net-snmp:net-snmp:5.9.3:*:*:*:*:*:*:*

Other Versions#


Project
Branch
Version
master
5.9.5.2
scarthgap
5.9.4

Patches#


#
Title
Author
Resolve
1
configure: fix incorrect variable
Wenlin Kang <wenlin.kang@windriver.com>
2
ac_add_search_path.m4: keep consistent between 32bit and
Mingli Yu <mingli.yu@windriver.com>
3
net-snmp: fix "libtool --finish"
"Roy.Li" <rongqing.li@windriver.com>
4
snmptrapd: Fix out-of-bounds trapOid[] accesses
Bart Van Assche <bvanassche@acm.org>
CVE-2025-68615
5
snmplib/keytools.c: Don't check for return from
Khem Raj <raj.khem@gmail.com>
6
testing: add the output format for ptest
Jackie Huang <jackie.huang@windriver.com>
7
snmp_agent: disallow SET with NULL varbind
Bill Fenner <fenner@gmail.com>
CVE-2022-44792
CVE-2022-44793
8
net snmp: fix engineBoots value on SIGHUP
Zheng Ruoqin <zhengrq.fnst@fujitsu.com>
9
unload_all_mibs: fix memory leak by freeing tclist
Jinfeng Wang <jinfeng.wang.cn@windriver.com>
10
net-snmp: fix for --disable-des
Jackie Huang <jackie.huang@windriver.com>
11
config_os_headers: Error Fix
Li xin <lixin.fnst@cn.fujitsu.com>
12
net-snmp: Reproducibility: Don't check build host for
"douglas.royds" <douglas.royds@taitradio.com>
13
get_pid_from_inode: Include limit.h
Khem Raj <raj.khem@gmail.com>
14
net-snmp: add knob whether nlist.h are checked
Chong Lu <Chong.Lu@windriver.com>

Vulnerabilities#


Name
Analysis
Description
Patched
net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue has been patched in versions 5.9.5 and 5.10.pre2.
Patched
handle_ipv6IpForwarding in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.4.3 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote attacker to cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.
Patched
handle_ipDefaultTTL in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.8 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote attacker (who has write access) to cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.