CVE-2008-2292
EPSS 15.2%net-snmp - buffer overflow
Published: 5/18/2008Modified: 4/28/2026
Description
Buffer overflow in the __snprint_value function in snmp_get in Net-SNMP 5.1.4, 5.2.4, and 5.4.1, as used in SNMP.xs for Perl, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large OCTETSTRING in an attribute value pair (AVP).
Affected packages (2)
- Debian/net-snmpfrom 0, < 5.4.1~dfsg-8
- Debian/net-snmpfrom 0, < 5.4.1~dfsg-7+lenny1