Univention Bugzilla – Bug 47988
net-snmp: Multiple issues (4.2)
Last modified: 2018-10-17 16:47:53 CEST
New Debian net-snmp 5.7.2.1+dfsg-1+deb8u2 fixes: This update addresses the following issue: * NULL pointer exception in _set_key in agent/helpers/table_container.c resulting in a denial of service (CVE-2018-18065)
--- mirror/ftp/4.2/unmaintained/4.2-4/source/net-snmp_5.7.2.1+dfsg-1+deb8u1.dsc +++ apt/ucs_4.2-0-errata4.2-5/source/net-snmp_5.7.2.1+dfsg-1+deb8u2.dsc @@ -1,3 +1,11 @@ +5.7.2.1+dfsg-1+deb8u2 [Tue, 09 Oct 2018 20:38:49 +0200] Markus Koschany <apo@debian.org>: + + * Non-maintainer upload by the LTS team. + * Fix CVE-2018-18065: + Magnus K. Stubman found that an authenticated remote attacker could crash + an instance of Net-SNMP by sending a specially crafted UDP packet resulting + in a denial-of-service. + 5.7.2.1+dfsg-1+deb8u1 [Sun, 25 Mar 2018 20:58:00 -0400] Chris Lamb <lamby@debian.org>: * CVE-2018-1000116: Correct a heap corruption vulnerability prior to the <http://10.200.17.11/4.2-5/#1162161206574723313>
OK: yaml OK: announce_errata OK: patch OK: piuparts [4.2-5] e8d1fc0ac2 Bug #47988: net-snmp 5.7.2.1+dfsg-1+deb8u2 doc/errata/staging/net-snmp.yaml | 13 +++++++++++++ 1 file changed, 13 insertions(+)
<http://errata.software-univention.de/ucs/4.2/531.html>