Denial of Service Vulnerability in Net-SNMP AgentX Subagent
CVE-2014-2310

Currently unrated

Key Information:

Vendor

Net-snmp

Status
Vendor
CVE Published:
17 April 2014

What is CVE-2014-2310?

The AgentX subagent in Net-SNMP versions prior to 5.4.4 is prone to a denial of service condition. Remote attackers can exploit this vulnerability by sending a multi-object request containing an Object ID (OID) with a greater number of sub-identifiers (subids) than those found in earlier requests. This exploitation leads to a service hang, impacting the availability of the affected implementation.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.