Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnmp_variable_list item when parsing of the SNMP PDU fails, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Net-SNMP‘snmp_api.c’远程拒绝服务漏洞
Vulnerability Description
Net-SNMP是一套开源的简单网络管理协议(Simple Network Management Protocol)软件。该软件用于监控网络设备、电脑设备、UPS设备等。 Net-SNMP 5.7.2及之前版本的snmp_api.c文件中的‘snmp_pdu_parse’函数存在安全漏洞,该漏洞源于程序解析SNMP PDU文件时,没有删除netsnmp_variable_list项中的‘varBind’变量。远程攻击者可通过发送特制的数据包利用该漏洞造成拒绝服务(崩溃),并执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A