Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Fri, 7 Mar 2014 20:39:34 -0500 (EST)
From: cve-assign@...re.org
To: geissert@...ian.org
Cc: cve-assign@...re.org, oss-security@...ts.openwall.com
Subject: Re: CVE request: net-snmp agentx incorrect handling of multi-object requests DoS

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

> It was found that the AgentX subagent of net-snmp can be stalled when
> a manager sends a multi-object request with a different number of
> subids.
> 
> http://sourceforge.net/p/net-snmp/patches/1113/
> 
> https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=684388

> it's not the 2411 bug upstream, it's a different bug.

Use CVE-2014-2310.

- -- 
CVE assignment team, MITRE CVE Numbering Authority
M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (SunOS)

iQEcBAEBAgAGBQJTGnHWAAoJEKllVAevmvmsQggIAIzJogDVt6+QWRItKFP7XrwN
C2lR6kW0dfzYS0Ya/1UkdMFaBf452O7eSbpzUqDQFcM1HPocIFrQ5NVPdnVukYdZ
9CgbWieyUUby+HJ2FIqtcDLvOGs7paH9JTc49Z07AWj739XMNh34m+rST9hOn59+
YlW2ZloHB7eXoSBxjjJB5uPMvezTVJKuurUkthkLsct1HkMSCaWrLeKF9upXqQV+
SpEnWsc7kmtIORBN+dgxFzDPxcuMFBAjkZcFnHanVaY0IF6QXtVvbH+tLjfm8oux
Kq/rj9Ca+dW1xpft3INfJojL1wk9xLIf4ShTZP840d46lcHJPZ7kTeHw3C7qhYI=
=sMhG
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.