Secunia Logo  
 
CVE Reference: CVE-2008-2292
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-2292

Description:
Buffer overflow in the __snprint_value function in snmp_get in Net-SNMP 5.1.4, 5.2.4, and 5.4.1, as used in SNMP.xs for Perl, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large OCTETSTRING in an attribute value pair (AVP).

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/42430

SUSE
  http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00000.html

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-239785-1

SAID
  Secunia Advisory: SA31568
  Secunia Advisory: SA31467
  Secunia Advisory: SA30187
  Secunia Advisory: SA30647
  Secunia Advisory: SA31351
  Secunia Advisory: SA31334
  Secunia Advisory: SA31155
  Secunia Advisory: SA30615
  Secunia Advisory: SA32664

REDHAT
  http://www.redhat.com/support/errata/RHSA-2008-0529.html

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:118

GENTOO
  http://security.gentoo.org/glsa/glsa-200808-02.xml

FEDORA

DEBIAN
  http://www.debian.org/security/2008/dsa-1663

CONFIRM
  http://www.vmware.com/security/advisories/VMSA-2008-0013.html
  http://support.avaya.com/elmodocs2/security/ASA-2008-282.htm
  http://sourceforge.net/tracker/index.php?func=detail&aid=1826174&group_id=12694&atid=112694

BID
  29212


Return to the previous page.