5

CVE-2014-3565

Exploit

snmplib/mib.c in net-snmp 5.7.0 and earlier, when the -OQ option is used, allows remote attackers to cause a denial of service (snmptrapd crash) via a crafted SNMP trap message, which triggers a conversion to the variable type designated in the MIB file, as demonstrated by a NULL type in an ifMtu trap message.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ApplemacOS X Version10.11.0
CanonicalUbuntu Linux Version12.04 SwEditionlts
CanonicalUbuntu Linux Version14.04 SwEditionlts
CanonicalUbuntu Linux Version15.04
Net-snmpNet-snmp Version <= 5.7.0
Net-snmpNet-snmp Version5.0
Net-snmpNet-snmp Version5.0.1
Net-snmpNet-snmp Version5.0.2
Net-snmpNet-snmp Version5.0.3
Net-snmpNet-snmp Version5.0.4
Net-snmpNet-snmp Version5.0.5
Net-snmpNet-snmp Version5.0.6
Net-snmpNet-snmp Version5.0.7
Net-snmpNet-snmp Version5.0.8
Net-snmpNet-snmp Version5.0.9
Net-snmpNet-snmp Version5.1
Net-snmpNet-snmp Version5.1.2
Net-snmpNet-snmp Version5.2
Net-snmpNet-snmp Version5.3
Net-snmpNet-snmp Version5.3.0.1
Net-snmpNet-snmp Version5.4
Net-snmpNet-snmp Version5.5
Net-snmpNet-snmp Version5.6
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 12.65% 0.937
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P