RHSA-2008:0971: Important: net-snmp security update
The Simple Network Management Protocol (SNMP) is a protocol used fornetwork management.A denial-of-service flaw was found in the way Net-SNMP processes SNMPGETBULK requests. A remote attacker who issued a specially-crafted requestcould cause the snmpd server to crash. (CVE-2008-4309)Note: An attacker must have read access to the SNMP server in order toexploit this flaw. In the default configuration, the community name"public" grants read-only access. In production deployments, it isrecommended to change this default community name.All users of net-snmp should upgrade to these updated packages, whichcontain a backported patch to resolve this issue.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2008:0971?
The severity of RHSA-2008:0971 is classified as important.
How do I fix RHSA-2008:0971?
To fix RHSA-2008:0971, upgrade the affected net-snmp packages to version 5.3.1-24.el5_2.2 or later.
What vulnerabilities are addressed by RHSA-2008:0971?
RHSA-2008:0971 addresses a denial-of-service vulnerability in the handling of SNMP GETBULK requests.
Which versions of net-snmp are affected by RHSA-2008:0971?
The affected versions of net-snmp are those before 5.3.1-24.el5_2.2.
Can RHSA-2008:0971 be exploited remotely?
Yes, a remote attacker can exploit the vulnerability in RHSA-2008:0971 by sending specially-crafted SNMP GETBULK requests.