REDHAT-BUG-1072778: Medium severity Net-SNMP snmptrapd vulnerability
A remote denial-of-Service flaw was found in the way snmptrapd handled trap requests with empty community string, when the perl handler was enabled. A remote attacker could use this flaw to cause snmp to crash.
More details about the flaw is available at: https://bugzilla.redhat.com/showbug.cgi?id=1072044
Proposed upstream patch: http://sourceforge.net/p/net-snmp/patches/1275/
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1072778?
The severity of REDHAT-BUG-1072778 is categorized as a remote denial-of-service vulnerability.
How do I fix REDHAT-BUG-1072778?
To fix REDHAT-BUG-1072778, disable the perl handler in snmptrapd or apply the appropriate patches provided by the vendor.
What systems are affected by REDHAT-BUG-1072778?
REDHAT-BUG-1072778 affects systems running the Net-SNMP snmptrapd service with the perl handler enabled.
Can REDHAT-BUG-1072778 be exploited remotely?
Yes, a remote attacker can exploit REDHAT-BUG-1072778 by sending trap requests with an empty community string.
What impact does REDHAT-BUG-1072778 have on system availability?
The impact of REDHAT-BUG-1072778 is that it can cause the snmptrapd service to crash, leading to potential service interruptions.