CVE-2007-5846: High severity Net-SNMP Net-SNMP vulnerability
Published Nov 6, 2007
·Updated
The SNMP agent (snmpagent.c) in net-snmp before 5.4.1 allows remote attackers to cause a denial of service (CPU and memory consumption) via a GETBULK request with a large max-repeaters value.
Affected Software
1 affected component
Net-SNMP Net-SNMP<=5.4.1
Remediation
Patch Available
Patch Available
Event History
Nov 6, 2007
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-5846?
CVE-2007-5846 has a severity that can lead to denial of service due to excessive CPU and memory consumption.
2
How do I fix CVE-2007-5846?
To fix CVE-2007-5846, upgrade to Net-SNMP version 5.4.1 or later.
3
What attack vector is associated with CVE-2007-5846?
CVE-2007-5846 can be exploited via a remote attack using a GETBULK request with a large max-repeaters value.
4
Which versions of Net-SNMP are affected by CVE-2007-5846?
Net-SNMP versions prior to 5.4.1 are affected by CVE-2007-5846.
5
What impact can CVE-2007-5846 have on systems?
CVE-2007-5846 can result in denial of service, causing systems to consume excessive CPU and memory resources.