CVE-2006-0250: Medium severity Carnegie Mellon University Snmptrapd vulnerability
Published Jan 18, 2006
·Updated
Format string vulnerability in the snmpinput function in snmptrapd in CMU SNMP utilities (cmu-snmp) allows remote attackers to execute arbitrary code by sending crafted SNMP messages to UDP port 162.
Affected Software
2 affected components
Carnegie Mellon University Snmptrapd=3.6
Carnegie Mellon University Snmptrapd=3.7
Event History
Jan 18, 2006
CVE Published
via NVD·01:51 AM
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-0250?
CVE-2006-0250 is classified as a high-severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2006-0250?
To fix CVE-2006-0250, upgrade to version 3.8 or later of the Carnegie Mellon University Snmptrapd.
3
What types of attacks can exploit CVE-2006-0250?
CVE-2006-0250 can be exploited by remote attackers through crafted SNMP messages sent to UDP port 162.
4
Which versions of snmptrapd are affected by CVE-2006-0250?
CVE-2006-0250 affects version 3.6 and 3.7 of Carnegie Mellon University Snmptrapd.
5
Is CVE-2006-0250 environment specific?
CVE-2006-0250 is not environment specific and can be exploited in any environment running the affected versions of snmptrapd.