CVE-2012-2141: Low severity Net-SNMP Net-SNMP vulnerability
Array index error in the handlensExtendOutput2Table function in agent/mibgroup/agent/extend.c in Net-SNMP 5.7.1 allows remote authenticated users to cause a denial of service (out-of-bounds read and snmpd crash) via an SNMP GET request for an entry not in the extension table.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2141?
CVE-2012-2141 is classified as a denial of service vulnerability.
How do I fix CVE-2012-2141?
To fix CVE-2012-2141, upgrade to a version of Net-SNMP later than 5.7.1 that addresses this vulnerability.
What type of attack can be executed using CVE-2012-2141?
An attacker can exploit CVE-2012-2141 to cause out-of-bounds reads and potentially crash the snmpd service.
Who is affected by CVE-2012-2141?
CVE-2012-2141 affects remote authenticated users of Net-SNMP version 5.7.1.
What component of Net-SNMP contains the vulnerability identified as CVE-2012-2141?
The vulnerability in CVE-2012-2141 is found in the handle_nsExtendOutput2Table function within the agent/mibgroup/agent/extend.c file.