SecurityTracker.com
    Home    |    View Topics    |    Search    |    Contact Us    |   

SecurityTracker
Archives


 


Category:   Application (Generic)  >   Net-snmp Vendors:   net-snmp.sourceforge.net
(Oracle Issues Fix for Oracle Linux) Net-snmp SNMP Trap Processing Flaw Lets Remote Users Crash snmptrapd
SecurityTracker Alert ID:  1033117
SecurityTracker URL:  http://securitytracker.com/id/1033117
CVE Reference:   CVE-2014-3565   (Links to External Site)
Date:  Jul 29 2015
Impact:   Denial of service via network
Fix Available:  Yes  Vendor Confirmed:  Yes  

Description:   A vulnerability was reported in Net-snmp. A remote user can cause denial of service conditions.

On systems where snmptrapd is started with the '-OQ' option, a remote user can send a specially crafted SNMP trap where the specified object type does not match the type defined in the MIB to cause the target snmptrapd service to crash.

Impact:   A remote user can cause the target snmptrapd to crash.
Solution:   Oracle has issued a fix.

The Oracle advisory is available at:

http://linux.oracle.com/errata/ELSA-2015-1385.html

Vendor URL:  linux.oracle.com/errata/ELSA-2015-1385.html (Links to External Site)
Cause:   Access control error
Underlying OS:  Linux (Oracle)
Underlying OS Comments:  6

Message History:   This archive entry is a follow-up to the message listed below.
Sep 2 2014 Net-snmp SNMP Trap Processing Flaw Lets Remote Users Crash snmptrapd



 Source Message Contents

Subject:  [El-errata] ELSA-2015-1385 Moderate: Oracle Linux 6 net-snmp security and bug fix update

Oracle Linux Security Advisory ELSA-2015-1385

http://linux.oracle.com/errata/ELSA-2015-1385.html

The following updated rpms for Oracle Linux 6 have been uploaded to the 
Unbreakable Linux Network:

i386:
net-snmp-5.5-54.0.1.el6.i686.rpm
net-snmp-devel-5.5-54.0.1.el6.i686.rpm
net-snmp-libs-5.5-54.0.1.el6.i686.rpm
net-snmp-perl-5.5-54.0.1.el6.i686.rpm
net-snmp-python-5.5-54.0.1.el6.i686.rpm
net-snmp-utils-5.5-54.0.1.el6.i686.rpm

x86_64:
net-snmp-5.5-54.0.1.el6.x86_64.rpm
net-snmp-devel-5.5-54.0.1.el6.i686.rpm
net-snmp-devel-5.5-54.0.1.el6.x86_64.rpm
net-snmp-libs-5.5-54.0.1.el6.i686.rpm
net-snmp-libs-5.5-54.0.1.el6.x86_64.rpm
net-snmp-perl-5.5-54.0.1.el6.x86_64.rpm
net-snmp-python-5.5-54.0.1.el6.x86_64.rpm
net-snmp-utils-5.5-54.0.1.el6.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/net-snmp-5.5-54.0.1.el6.src.rpm



Description of changes:

[1:5.5-54.0.1]
- Add Oracle ACFS to hrStorage (John Haxby) [orabug 18510373]

[1:5.5-54]
- Quicker loading of IP-MIB::ipAddrTable (#1191393)

[1:5.5-53]
- Quicker loading of IP-MIB::ipAddressTable (#1191393)

[1:5.5-52]
- Fixed snmptrapd crash when '-OQ' parameter is used and invalid trap is
   received (#CVE-2014-3565)

[1:5.5-51]
- added faster caching into IP-MIB::ipNetToMediaTable (#789500)
- fixed compilation with "-Werror=format-security" (#1181994)
- added clear error message when port specified in 'clientaddrr' config
   option cannot be bound (#886468)
- fixed error check in IP-MIB::ipAddressTable (#1012430)
- fixed agentx client crash on failed response (#1023570)
- fixed dashes in net-snmp-config.h (#1034441)
- fixed crash on monitor trigger (#1050970)
- fixed 'netsnmp_assert 1 == new_val->high failed' message in system log
   (#1065210)
- fixed parsing of 64bit counters from SMUX subagents (#1069046)
- Fixed HOST-RESOURCES-MIB::hrProcessorTable on machines with >100 CPUs
   (#1070075)
- fixed net-snmp-create-v3-user to have the same content on 32 and 64bit
   installations (#1073544)
- fixed IPADDRESS value length in Python bindings (#1100099)
- fixed hrStorageTable to contain 31 bits integers (#1104293)
- fixed links to developer man pages (#1119567)
- fixed storageUseNFS functionality in hrStorageTable (#1125793)
- fixed netsnmp_set Python bindings call truncating at the first '\000'
   character (#1126914)
- fixed log level of SMUX messages (#1140234)
- use python/README to net-snmp-python subpackage (#1157373)
- fixed forwarding of traps with RequestID=0 in snmptrapd (#1146948)
- fixed typos in NET-SNMP-PASS-MIB and SMUX-MIB (#1162040)
- fixed close() overhead of extend commands (#1188295)
- fixed lmSensorsTable not reporting sensors with duplicate names (#967871)
- fixed hrDeviceTable with interfaces with large ifIndex (#1195547)


_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata
 
 


Go to the Top of This SecurityTracker Archive Page





Home   |    View Topics   |    Search   |    Contact Us

This web site uses cookies for web analytics. Learn More

Copyright 2019, SecurityGlobal.net LLC