First published: Tue Nov 06 2007(Updated: )
The SNMP agent (snmp_agent.c) in net-snmp before 5.4.1 allows remote attackers to cause a denial of service (CPU and memory consumption) via a GETBULK request with a large max-repeaters value.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
CentOS Net-SNMP Agent Libraries | <=5.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5846 has a severity that can lead to denial of service due to excessive CPU and memory consumption.
To fix CVE-2007-5846, upgrade to Net-SNMP version 5.4.1 or later.
CVE-2007-5846 can be exploited via a remote attack using a GETBULK request with a large max-repeaters value.
Net-SNMP versions prior to 5.4.1 are affected by CVE-2007-5846.
CVE-2007-5846 can result in denial of service, causing systems to consume excessive CPU and memory resources.