10

CVE-2005-4837

Exploit

snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in master agentx mode, allows remote attackers to cause a denial of service (crash) by causing a particular TCP disconnect, which triggers a free of an incorrect variable, a different vulnerability than CVE-2005-2177.

Data is provided by the National Vulnerability Database (NVD)
Net-snmpNet-snmp Version5.0
Net-snmpNet-snmp Version5.0.1
Net-snmpNet-snmp Version5.0.2
Net-snmpNet-snmp Version5.0.3
Net-snmpNet-snmp Version5.0.4_pre2
Net-snmpNet-snmp Version5.0.5
Net-snmpNet-snmp Version5.0.6
Net-snmpNet-snmp Version5.0.7
Net-snmpNet-snmp Version5.0.8
Net-snmpNet-snmp Version5.0.9
Net-snmpNet-snmp Version5.0.10
SourceforgeNet-snmp Version <= 5.0.9
SourceforgeNet-snmp Version <= 5.1.2
SourceforgeNet-snmp Version <= 5.2.1.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 8.18% 0.918
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C