Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Ubuntu 12.04 LTS USN-1450-1 Moderate: Net-SNMP Denial of Service

ubuntu
Calendar Grey May 23, 2012
Scroller Ubuntu
Debian Security Bulletin DSA-1234-1 alerts users to a vulnerability in the Apache HTTP Server that could lead to unauthorized access via crafted requests.
Net-SNMP could be made to crash if it received specially crafted network traffic.

Summary

Net-SNMP could be made to crash if it received specially crafted network

traffic.

Software Description:

- net-snmp: SNMP (Simple Network Management Protocol) server and applications

Details:

It was discovered that Net-SNMP incorrectly performed entry lookups in the

extension table. A remote attacker could send a specially crafted request

and cause the SNMP server to crash, leading to a denial of service.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 12.04 LTS:
  libsnmp15                       5.4.3~dfsg-2.4ubuntu1.1

Ubuntu 11.10:
  libsnmp15                       5.4.3~dfsg-2.2ubuntu1.1

Ubuntu 11.04:
  libsnmp15                       5.4.3~dfsg-2ubuntu1.1

Ubuntu 10.04 LTS:
  libsnmp15                       5.4.2.1~dfsg0ubuntu1-0ubuntu2.2

Ubuntu 8.04 LTS:
  libsnmp15                       5.4.1~dfsg-4ubuntu4.4

In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-1450-1

CVE-2012-2141

Severity
important
Lowest
Low
Medium
High
Critical

May 23, 2012

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.