In the Linux kernel before 4.20.12, net/ipv4/netfilter/nfnatsnmpbasicmain.c in the SNMP NAT module has insufficient ASN.1 length checks (aka an array index error), making out-of-bounds read and write operations possible, leading to an OOPS or local privilege escalation. This affects snmpversion and snmphelper.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-9162.json"
[
{
"digest": {
"function_hash": "152253017969138450315395819107625842077",
"length": 180.0
},
"signature_version": "v1",
"target": {
"file": "net/ipv4/netfilter/nf_nat_snmp_basic_main.c",
"function": "snmp_version"
},
"signature_type": "Function",
"id": "CVE-2019-9162-8fb84e15",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@c4c07b4d6fa1f11880eab8e076d3d060ef3f55fc",
"deprecated": false
},
{
"digest": {
"line_hashes": [
"169894922374657372711680706323689920385",
"1338274829581608058921585810433987161",
"331575861917582265722699853069070586710",
"190840951982560532945701835571675600456",
"316516645850736368424188762819969944860",
"267283819143434761007723411889399216553",
"196394613675263208553352838663672471273",
"315437218449960503659526736288591223864"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "net/ipv4/netfilter/nf_nat_snmp_basic_main.c"
},
"signature_type": "Line",
"id": "CVE-2019-9162-a5b5a13a",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@c4c07b4d6fa1f11880eab8e076d3d060ef3f55fc",
"deprecated": false
},
{
"digest": {
"function_hash": "219267795174619906965106943911093776550",
"length": 426.0
},
"signature_version": "v1",
"target": {
"file": "net/ipv4/netfilter/nf_nat_snmp_basic_main.c",
"function": "snmp_helper"
},
"signature_type": "Function",
"id": "CVE-2019-9162-e5b50761",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@c4c07b4d6fa1f11880eab8e076d3d060ef3f55fc",
"deprecated": false
}
]