Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The snmp_trap_decode function in the SNMP NAT helper for Linux kernel before 2.6.16.18 allows remote attackers to cause a denial of service (crash) via unspecified remote attack vectors that cause failures in snmp_trap_decode that trigger (1) frees of random memory or (2) frees of previously-freed memory (double-free) by snmp_trap_decode as well as its calling function, as demonstrated via certain test cases of the PROTOS SNMP test suite.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux Kernel SNMP NAT Helper snmp_trap_decode()函数 远程拒绝服务漏洞
Vulnerability Description
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。NFSv4 implementation是其中的一个分布式文件系统协议。 Linux Kernel在处理SNMP报文时存在拒绝服务漏洞,远程攻击者可能利用此漏洞导致内核崩溃。 当Kernel加载ip_nat_snmp_basic模块时会对来自UDP 161/162端口上的报文做NAT,snmp_trap_decode()函数实现上的问题会导致多次释放同一内存,最终导致内存破坏从而内核崩溃。
CVSS Information
N/A
Vulnerability Type
N/A