The snmppduparse function in snmpapi.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnmpvariable_list item when parsing of the SNMP PDU fails, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "libsnmp-base" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "libsnmp-dev" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "libsnmp-dev-dbgsym" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "libsnmp-perl" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "libsnmp-perl-dbgsym" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "libsnmp30" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "libsnmp30-dbg" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "libsnmp30-dbgsym" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "python-netsnmp" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "python-netsnmp-dbgsym" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "snmp" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "snmp-dbgsym" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "snmpd" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "snmpd-dbgsym" }, { "binary_version": "5.7.2~dfsg-8.1ubuntu3.1", "binary_name": "tkmib" } ] }