Integer Overflow Vulnerability in Net-SNMP by Net-SNMP
CVE-2008-4309

Currently unrated

Key Information:

Vendor

Net-snmp

Status
Vendor
CVE Published:
31 October 2008

What is CVE-2008-4309?

An integer overflow in the netsnmp_create_subtree_cache function within the SNMP agent of Net-SNMP prior to specific versions allows attackers to cause a denial of service. This vulnerability can be exploited through specially crafted SNMP GETBULK requests, resulting in a heap-based buffer overflow that may crash the affected service, compromising system stability.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.