Уязвимость двойного освобождения памяти в функции "usm_free_usmStateReference" в net-snmp через запрос SNMPv3 GetBulk
Описание
В net-snmp обнаружена уязвимость двойного освобождения памяти в функции usm_free_usmStateReference внутри файла snmplib/snmpusm.c. Уязвимость эксплуатируется через запрос SNMPv3 GetBulk.
Затронутые версии ПО
- уязвимость присутствует в версиях net-snmp до 5.8.1.pre1. Она затрагивает пакеты net-snmp, поставляемые конечным пользователям различными дистрибутивами Linux, но может не затрагивать основной релиз.
Тип уязвимости
Двойное освобождение памяти (double free)
Ссылки
- ExploitMailing ListThird Party Advisory
- ExploitIssue TrackingThird Party Advisory
- ExploitIssue TrackingThird Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- ExploitMailing ListThird Party Advisory
- ExploitIssue TrackingThird Party Advisory
- ExploitIssue TrackingThird Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
Уязвимые конфигурации
EPSS
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
Связанные уязвимости
net-snmp before 5.8.1.pre1 has a double free in usm_free_usmStateReference in snmplib/snmpusm.c via an SNMPv3 GetBulk request. NOTE: this affects net-snmp packages shipped to end users by multiple Linux distributions, but might not affect an upstream release.
net-snmp before 5.8.1.pre1 has a double free in usm_free_usmStateReference in snmplib/snmpusm.c via an SNMPv3 GetBulk request. NOTE: this affects net-snmp packages shipped to end users by multiple Linux distributions, but might not affect an upstream release.
net-snmp before 5.8.1.pre1 has a double free in usm_free_usmStateReference in snmplib/snmpusm.c via an SNMPv3 GetBulk request. NOTE: this affects net-snmp packages shipped to end users by multiple Linux distributions but might not affect an upstream release.
net-snmp before 5.8.1.pre1 has a double free in usm_free_usmStateRefer ...
net-snmp before 5.8.1.pre1 has a double free in usm_free_usmStateReference in snmplib/snmpusm.c via an SNMPv3 GetBulk request. NOTE: this affects net-snmp packages shipped to end users by multiple Linux distributions, but might not affect an upstream release.
EPSS
6.5 Medium
CVSS3
4 Medium
CVSS2