Nixpkgs Security Tracker

Login with GitHub

Suggestions search

With package: net-snmp

Found 1 matching suggestions

Published
updated 3 weeks ago by @LeSuisse Activity log
  • Created automatic suggestion
  • @LeSuisse removed
    4 packages
    • perlPackages.NetSNMP
    • perl538Packages.NetSNMP
    • perl540Packages.NetSNMP
    • tests.pkg-config.defaultPkgConfigPackages.netsnmp
  • @LeSuisse accepted
  • @LeSuisse published on GitHub
Net-SNMP snmptrapd crash

net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue has been patched in versions 5.9.5 and 5.10.pre2.

Affected products

net-snmp
  • ==< 5.9.5
  • ==>= 5.10.pre1, < 5.10.pre2

Matching in nixpkgs

Upstream advisory: https://github.com/net-snmp/net-snmp/security/advisories/GHSA-4389-rwqf-q9gq