Heap-based buffer overflow in snmpnetstat for ucd-snmp 4.2.3 and earlier, and net-snmp, allows remote attackers to execute arbitrary code via multiple getnextrequest PDU messages with conflicting ifindex variables, which cause snmpnetstat to write variable data past the end of an array.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/248141 | mailing list exploit patch vendor advisory |
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000696 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7776 | vdb entry |
http://www.securityfocus.com/bid/3780 | exploit vdb entry patch vendor advisory |