Skip to content. | Skip to navigation

Sections
Personal tools
You are here: Home News Net-snmp security upgrade
 

Net-snmp security upgrade

— filed under:

New net-snmp package is available for VL 5.9 to fix security issues.

More details about this issue may be found in the Common Vulnerabilities and Exposures (CVE) database:

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0960
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2292

Quote from: http://www.slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.388995 A vulnerability was discovered where an attacked could spoof an authenticated SNMPv3 packet due to incorrect HMAC checking. Also, a buffer overflow was found that could be exploited if an application using the net-snmp perl modules connects to a malicious server. For more information, see: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0960 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2292
net-snmp (Simple Network Management Protocol tools) Various tools relating to the Simple Network Management Protocol: An extensible agent An SNMP library Tools to request or set information from SNMP agents Tools to generate and handle SNMP traps A version of the unix 'netstat' command using SNMP A graphical Perl/Tk/SNMP based mib browser
Document Actions