CVE-2005-2811: Medium severity net-snmp net-snmp vulnerability
Published Sep 7, 2005
·Updated
Untrusted search path vulnerability in Net-SNMP 5.2.1.2 and earlier, on Gentoo Linux, installs certain Perl modules with an insecure DTRPATH, which could allow local users to gain privileges.
Affected Software
16 affected components
Net-SNMP Net-SNMP<=5.2.1.2_r1
Net-SNMP Net-SNMP=5.0
Net-SNMP Net-SNMP=5.0.1
Net-SNMP Net-SNMP=5.0.2
Net-SNMP Net-SNMP=5.0.3
Net-SNMP Net-SNMP=5.0.4_pre2
Net-SNMP Net-SNMP=5.0.5
Net-SNMP Net-SNMP=5.0.6
Net-SNMP Net-SNMP=5.0.7
Net-SNMP Net-SNMP=5.0.8
Net-SNMP Net-SNMP=5.0.9
Net-SNMP Net-SNMP=5.0.10
Net-SNMP Net-SNMP=5.1.2
Net-SNMP Net-SNMP=5.1.3
Net-SNMP Net-SNMP=5.2
Net-SNMP Net-SNMP=5.2.1
Event History
Sep 7, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2811?
CVE-2005-2811 is considered a moderate severity vulnerability.
2
How do I fix CVE-2005-2811?
To fix CVE-2005-2811, upgrade Net-SNMP to version 5.2.1.3 or later.
3
Who is affected by CVE-2005-2811?
CVE-2005-2811 affects users of Net-SNMP 5.2.1.2 and earlier on Gentoo Linux.
4
What kind of attack does CVE-2005-2811 allow?
CVE-2005-2811 allows local users to gain elevated privileges through an untrusted search path.
5
What systems are impacted by CVE-2005-2811?
CVE-2005-2811 impacts systems running vulnerable versions of Net-SNMP, specifically on Gentoo Linux.