CVE-2009-1887: Divide by Zero

Published Jun 19, 2009
·
Updated

agent/snmpagent.c in snmpd in net-snmp 5.0.9 in Red Hat Enterprise Linux (RHEL) 3 allows remote attackers to cause a denial of service (daemon crash) via a crafted SNMP GETBULK request that triggers a divide-by-zero error. NOTE: this vulnerability exists because of an incorrect fix for CVE-2008-4309.

Other sources

It was discovered that remote attacker can cause net-snmp's snmpd to crash via specially crafted SNMP GetBulk requests, that triggers division by zero in the following code:

if (maxbulk <= 0 || maxbulk > maxresponses / r) maxbulk = maxresponses / r;

This code has been added as part of the fix for CVE-2008-4309 (bug #469349). This problem never affected upstream net-snmp versions, thanks to following upstream commit from 2004:

http://net-snmp.svn.sourceforge.net/viewvc/net-snmp/trunk/net-snmp/agent/snmpagent.c?r1=9583&r2=9695

This upstream change is part of net-snmp packages shipped in Red Hat Enterprise Linux 4 and later. Therefore this division by zero DoS only affects net-snmp in Red Hat Enterprise Linux 3.

Affected Software

2 affected components
Net-SNMP Net-SNMP=5.0.9
redhat Enterprise Linux=3.0

Event History

Jun 19, 2009
Data Sourced
via Red Hat·08:26 AM
DescriptionSeverityAffected Software
Jun 26, 2009
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
06:30 PM
DescriptionWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2009-1887?

CVE-2009-1887 has been classified as a high-severity vulnerability due to its potential to cause a denial of service.

2

How do I fix CVE-2009-1887?

To fix CVE-2009-1887, update the net-snmp package to a version that has patched this vulnerability.

3

What software is affected by CVE-2009-1887?

CVE-2009-1887 affects net-snmp version 5.0.9 on Red Hat Enterprise Linux 3.

4

What type of attack does CVE-2009-1887 exploit?

CVE-2009-1887 can be exploited via a crafted SNMP GETBULK request that leads to a daemon crash.

5

Is there an available workaround for CVE-2009-1887?

There is no official workaround for CVE-2009-1887; patching the software is the recommended solution.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203