Nixpkgs Security Tracker

Login with GitHub

Details of issue NIXPKGS-2026-0241

NIXPKGS-2026-0241
published on 15 Feb 2026
updated 3 weeks ago by @LeSuisse Activity log
  • Created automatic suggestion
  • @LeSuisse removed
    4 packages
    • perlPackages.NetSNMP
    • perl538Packages.NetSNMP
    • perl540Packages.NetSNMP
    • tests.pkg-config.defaultPkgConfigPackages.netsnmp
  • @LeSuisse accepted
  • @LeSuisse published on GitHub
Net-SNMP snmptrapd crash

net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue has been patched in versions 5.9.5 and 5.10.pre2.

Affected products

net-snmp
  • ==< 5.9.5
  • ==>= 5.10.pre1, < 5.10.pre2

Matching in nixpkgs

Upstream advisory: https://github.com/net-snmp/net-snmp/security/advisories/GHSA-4389-rwqf-q9gq