Net-SNMP through 5.8 has Improper Privilege Management because SNMP WRITE access to the EXTEND MIB provides the ability to run arbitrary commands as root.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_name": "libsnmp-base", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "libsnmp-dev", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "libsnmp-dev-dbgsym", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "libsnmp-perl", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "libsnmp-perl-dbgsym", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "libsnmp30", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "libsnmp30-dbg", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "libsnmp30-dbgsym", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "python-netsnmp", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "python-netsnmp-dbgsym", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "snmp", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "snmp-dbgsym", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "snmpd", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "snmpd-dbgsym", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" }, { "binary_name": "tkmib", "binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2" } ], "ubuntu_priority": "medium" }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libsnmp-base", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "libsnmp-dev", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "libsnmp-dev-dbgsym", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "libsnmp-perl", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "libsnmp-perl-dbgsym", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "libsnmp30", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "libsnmp30-dbg", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "libsnmp30-dbgsym", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "python-netsnmp", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "snmp", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "snmp-dbgsym", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "snmpd", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "snmpd-dbgsym", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "snmptrapd", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "snmptrapd-dbgsym", "binary_version": "5.7.3+dfsg-1ubuntu4.6" }, { "binary_name": "tkmib", "binary_version": "5.7.3+dfsg-1ubuntu4.6" } ], "ubuntu_priority": "medium" }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libsnmp-base", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "libsnmp-dev", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "libsnmp-perl", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "libsnmp-perl-dbgsym", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "libsnmp30", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "libsnmp30-dbg", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "python-netsnmp", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "python-netsnmp-dbgsym", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "snmp", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "snmp-dbgsym", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "snmpd", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "snmpd-dbgsym", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "snmptrapd", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "snmptrapd-dbgsym", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" }, { "binary_name": "tkmib", "binary_version": "5.7.3+dfsg-1.8ubuntu3.6" } ], "ubuntu_priority": "medium" }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libsnmp-base", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "libsnmp-dev", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "libsnmp-perl", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "libsnmp-perl-dbgsym", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "libsnmp35", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "libsnmp35-dbg", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "snmp", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "snmp-dbgsym", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "snmpd", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "snmpd-dbgsym", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "snmptrapd", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "snmptrapd-dbgsym", "binary_version": "5.8+dfsg-2ubuntu2.3" }, { "binary_name": "tkmib", "binary_version": "5.8+dfsg-2ubuntu2.3" } ], "ubuntu_priority": "medium" }