Double Free Vulnerability in Net-SNMP Affecting Multiple Linux Distributions
CVE-2019-20892
6.5MEDIUM
What is CVE-2019-20892?
The vulnerability in Net-SNMP prior to version 5.8.1.pre1 arises from a double free issue within the usm_free_usmStateReference function during handling of SNMPv3 GetBulk requests. This flaw can lead to potential exploitation impacting the stability and functioning of the software across various Linux distributions utilizing the affected net-snmp packages. Users and system administrators are advised to upgrade their Net-SNMP installations to ensure that the software operates securely and effectively.
