Net-SNMP through 5.8 has Improper Privilege Management because SNMP WRITE access to the EXTEND MIB provides the ability to run arbitrary commands as root.
{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_name": "libsnmp-base",
"binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2"
},
{
"binary_name": "libsnmp-dev",
"binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2"
},
{
"binary_name": "libsnmp-perl",
"binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2"
},
{
"binary_name": "libsnmp30",
"binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2"
},
{
"binary_name": "python-netsnmp",
"binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2"
},
{
"binary_name": "snmp",
"binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2"
},
{
"binary_name": "snmpd",
"binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2"
},
{
"binary_name": "tkmib",
"binary_version": "5.7.2~dfsg-8.1ubuntu3.3+esm2"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libsnmp-base",
"binary_version": "5.7.3+dfsg-1ubuntu4.6"
},
{
"binary_name": "libsnmp-dev",
"binary_version": "5.7.3+dfsg-1ubuntu4.6"
},
{
"binary_name": "libsnmp-perl",
"binary_version": "5.7.3+dfsg-1ubuntu4.6"
},
{
"binary_name": "libsnmp30",
"binary_version": "5.7.3+dfsg-1ubuntu4.6"
},
{
"binary_name": "python-netsnmp",
"binary_version": "5.7.3+dfsg-1ubuntu4.6"
},
{
"binary_name": "snmp",
"binary_version": "5.7.3+dfsg-1ubuntu4.6"
},
{
"binary_name": "snmpd",
"binary_version": "5.7.3+dfsg-1ubuntu4.6"
},
{
"binary_name": "snmptrapd",
"binary_version": "5.7.3+dfsg-1ubuntu4.6"
},
{
"binary_name": "tkmib",
"binary_version": "5.7.3+dfsg-1ubuntu4.6"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libsnmp-base",
"binary_version": "5.7.3+dfsg-1.8ubuntu3.6"
},
{
"binary_name": "libsnmp-dev",
"binary_version": "5.7.3+dfsg-1.8ubuntu3.6"
},
{
"binary_name": "libsnmp-perl",
"binary_version": "5.7.3+dfsg-1.8ubuntu3.6"
},
{
"binary_name": "libsnmp30",
"binary_version": "5.7.3+dfsg-1.8ubuntu3.6"
},
{
"binary_name": "python-netsnmp",
"binary_version": "5.7.3+dfsg-1.8ubuntu3.6"
},
{
"binary_name": "snmp",
"binary_version": "5.7.3+dfsg-1.8ubuntu3.6"
},
{
"binary_name": "snmpd",
"binary_version": "5.7.3+dfsg-1.8ubuntu3.6"
},
{
"binary_name": "snmptrapd",
"binary_version": "5.7.3+dfsg-1.8ubuntu3.6"
},
{
"binary_name": "tkmib",
"binary_version": "5.7.3+dfsg-1.8ubuntu3.6"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libsnmp-base",
"binary_version": "5.8+dfsg-2ubuntu2.3"
},
{
"binary_name": "libsnmp-dev",
"binary_version": "5.8+dfsg-2ubuntu2.3"
},
{
"binary_name": "libsnmp-perl",
"binary_version": "5.8+dfsg-2ubuntu2.3"
},
{
"binary_name": "libsnmp35",
"binary_version": "5.8+dfsg-2ubuntu2.3"
},
{
"binary_name": "snmp",
"binary_version": "5.8+dfsg-2ubuntu2.3"
},
{
"binary_name": "snmpd",
"binary_version": "5.8+dfsg-2ubuntu2.3"
},
{
"binary_name": "snmptrapd",
"binary_version": "5.8+dfsg-2ubuntu2.3"
},
{
"binary_name": "tkmib",
"binary_version": "5.8+dfsg-2ubuntu2.3"
}
]
}