Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-7260

Опубликовано: 26 сент. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-7260: net-snmp security update (MODERATE)

[5.9.1-13.0.1]

  • fix error index value when snmpget is used a proxy pass [Orabug: 35010262]

[1:5.9.1-13.3]

  • fix CVE-2022-24805, CVE-2022-24806, CVE-2022-24807, CVE-2022-24808, CVE-2022-24809 and CVE-2022-24810 (RHEL-32062)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

net-snmp

5.9.1-13.0.1.el9_4.3

net-snmp-agent-libs

5.9.1-13.0.1.el9_4.3

net-snmp-devel

5.9.1-13.0.1.el9_4.3

net-snmp-libs

5.9.1-13.0.1.el9_4.3

net-snmp-perl

5.9.1-13.0.1.el9_4.3

net-snmp-utils

5.9.1-13.0.1.el9_4.3

python3-net-snmp

5.9.1-13.0.1.el9_4.3

Oracle Linux x86_64

net-snmp

5.9.1-13.0.1.el9_4.3

net-snmp-agent-libs

5.9.1-13.0.1.el9_4.3

net-snmp-devel

5.9.1-13.0.1.el9_4.3

net-snmp-libs

5.9.1-13.0.1.el9_4.3

net-snmp-perl

5.9.1-13.0.1.el9_4.3

net-snmp-utils

5.9.1-13.0.1.el9_4.3

python3-net-snmp

5.9.1-13.0.1.el9_4.3

Связанные уязвимости

suse-cvrf
больше 2 лет назад

Security update for net-snmp

suse-cvrf
больше 1 года назад

Recommended update for net-snmp

rocky
10 месяцев назад

Moderate: net-snmp security update

CVSS3: 9.1
redos
12 месяцев назад

Множественные уязвимости net-snmp

CVSS3: 6.5
ubuntu
больше 1 года назад

net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer overflow in the handling of the `INDEX` of `NET-SNMP-VACM-MIB` can cause an out-of-bounds memory access. A user with read-only credentials can exploit the issue. Version 5.9.2 contains a patch. Users should use strong SNMPv3 credentials and avoid sharing the credentials. Those who must use SNMPv1 or SNMPv2c should use a complex community string and enhance the protection by restricting access to a given IP address range.