CVE-2014-2285
Publication date 5 March 2014
Last updated 24 July 2024
Ubuntu priority
The perl_trapd_handler function in perl/TrapReceiver/TrapReceiver.xs in Net-SNMP 5.7.3.pre3 and earlier, when using certain Perl versions, allows remote attackers to cause a denial of service (snmptrapd crash) via an empty community string in an SNMP trap, which triggers a NULL pointer dereference within the newSVpv function in Perl.
Status
Package | Ubuntu Release | Status |
---|---|---|
net-snmp | ||
Patch details
Package | Patch details |
---|---|
net-snmp |
References
Related Ubuntu Security Notices (USN)
- USN-2166-1
- Net-SNMP vulnerabilities
- 14 April 2014