Your submission was sent successfully! Close

You have successfully unsubscribed! Close

CVE-2014-2284

Published: 24 March 2014

The Linux implementation of the ICMP-MIB in Net-SNMP 5.5 before 5.5.2.1, 5.6.x before 5.6.2.1, and 5.7.x before 5.7.2.1 does not properly validate input, which allows remote attackers to cause a denial of service via unspecified vectors.

Notes

AuthorNote
mdeslaur
5.4 is not affected

Priority

Medium

Status

Package Release Status
net-snmp
Launchpad, Ubuntu, Debian
lucid Not vulnerable
(5.4.2.1~dfsg0ubuntu1-0ubuntu2.2)
precise Not vulnerable
(5.4.3~dfsg-2.4ubuntu1.1)
quantal Not vulnerable
(5.4.3~dfsg-2.5ubuntu1)
saucy
Released (5.7.2~dfsg-8ubuntu1.1)
upstream Needed

Patches:
upstream: http://sourceforge.net/p/net-snmp/code/ci/a1fd64716f6794c55c34d77e618210238a73bfa1/