The snmppduparse function in snmpapi.c in net-snmp 5.7.2 and earlier does not remove the varBind variable in a netsnmpvariable_list item when parsing of the SNMP PDU fails, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet.
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "5.7.2~dfsg-8.1ubuntu3.1",
"binary_name": "libsnmp-base"
},
{
"binary_version": "5.7.2~dfsg-8.1ubuntu3.1",
"binary_name": "libsnmp-dev"
},
{
"binary_version": "5.7.2~dfsg-8.1ubuntu3.1",
"binary_name": "libsnmp-perl"
},
{
"binary_version": "5.7.2~dfsg-8.1ubuntu3.1",
"binary_name": "libsnmp30"
},
{
"binary_version": "5.7.2~dfsg-8.1ubuntu3.1",
"binary_name": "python-netsnmp"
},
{
"binary_version": "5.7.2~dfsg-8.1ubuntu3.1",
"binary_name": "snmp"
},
{
"binary_version": "5.7.2~dfsg-8.1ubuntu3.1",
"binary_name": "snmpd"
},
{
"binary_version": "5.7.2~dfsg-8.1ubuntu3.1",
"binary_name": "tkmib"
}
]
}