Home    |    View Topics    |    Search    |    Contact Us    |   



Category:   Application (Generic)  >   Net-snmp Vendors:
(Oracle Issues Fix for Oracle Linux) Net-snmp SNMP Trap Processing Flaw Lets Remote Users Crash snmptrapd
SecurityTracker Alert ID:  1033117
SecurityTracker URL:
CVE Reference:   CVE-2014-3565   (Links to External Site)
Date:  Jul 29 2015
Impact:   Denial of service via network
Fix Available:  Yes  Vendor Confirmed:  Yes  

Description:   A vulnerability was reported in Net-snmp. A remote user can cause denial of service conditions.

On systems where snmptrapd is started with the '-OQ' option, a remote user can send a specially crafted SNMP trap where the specified object type does not match the type defined in the MIB to cause the target snmptrapd service to crash.

Impact:   A remote user can cause the target snmptrapd to crash.
Solution:   Oracle has issued a fix.

The Oracle advisory is available at:

Vendor URL: (Links to External Site)
Cause:   Access control error
Underlying OS:  Linux (Oracle)
Underlying OS Comments:  6

Message History:   This archive entry is a follow-up to the message listed below.
Sep 2 2014 Net-snmp SNMP Trap Processing Flaw Lets Remote Users Crash snmptrapd

 Source Message Contents

Subject:  [El-errata] ELSA-2015-1385 Moderate: Oracle Linux 6 net-snmp security and bug fix update

Oracle Linux Security Advisory ELSA-2015-1385

The following updated rpms for Oracle Linux 6 have been uploaded to the 
Unbreakable Linux Network:




Description of changes:

- Add Oracle ACFS to hrStorage (John Haxby) [orabug 18510373]

- Quicker loading of IP-MIB::ipAddrTable (#1191393)

- Quicker loading of IP-MIB::ipAddressTable (#1191393)

- Fixed snmptrapd crash when '-OQ' parameter is used and invalid trap is
   received (#CVE-2014-3565)

- added faster caching into IP-MIB::ipNetToMediaTable (#789500)
- fixed compilation with "-Werror=format-security" (#1181994)
- added clear error message when port specified in 'clientaddrr' config
   option cannot be bound (#886468)
- fixed error check in IP-MIB::ipAddressTable (#1012430)
- fixed agentx client crash on failed response (#1023570)
- fixed dashes in net-snmp-config.h (#1034441)
- fixed crash on monitor trigger (#1050970)
- fixed 'netsnmp_assert 1 == new_val->high failed' message in system log
- fixed parsing of 64bit counters from SMUX subagents (#1069046)
- Fixed HOST-RESOURCES-MIB::hrProcessorTable on machines with >100 CPUs
- fixed net-snmp-create-v3-user to have the same content on 32 and 64bit
   installations (#1073544)
- fixed IPADDRESS value length in Python bindings (#1100099)
- fixed hrStorageTable to contain 31 bits integers (#1104293)
- fixed links to developer man pages (#1119567)
- fixed storageUseNFS functionality in hrStorageTable (#1125793)
- fixed netsnmp_set Python bindings call truncating at the first '\000'
   character (#1126914)
- fixed log level of SMUX messages (#1140234)
- use python/README to net-snmp-python subpackage (#1157373)
- fixed forwarding of traps with RequestID=0 in snmptrapd (#1146948)
- fixed typos in NET-SNMP-PASS-MIB and SMUX-MIB (#1162040)
- fixed close() overhead of extend commands (#1188295)
- fixed lmSensorsTable not reporting sensors with duplicate names (#967871)
- fixed hrDeviceTable with interfaces with large ifIndex (#1195547)

El-errata mailing list

Go to the Top of This SecurityTracker Archive Page

Home   |    View Topics   |    Search   |    Contact Us

This web site uses cookies for web analytics. Learn More

Copyright 2021, LLC