Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2022-24810

Published: August 31, 2023Last modified: August 31, 2023

Description

A malformed OID in a SET to the nsVacmAccessTable can cause a NULL pointer dereference.

Severity score breakdown

ParameterValue
Base score6.5
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredLOW
User interactionNONE
ScopeUNCHANGED
ConfidentialityNONE
Integrity impactHIGH
Availability impactNONE
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Notes

https://fossies.org/linux/net-snmp/CHANGES https://github.com/net-snmp/net-snmp/commit/67ebb43e9038b2dae6e74ae8838b36fcc10fc937 https://github.com/net-snmp/net-snmp/commit/9a0cd7c00947d5e1c6ceb54558d454f87c3b8341

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSnet-snmpNot affected (5.9.3-r2)
Streamnet-snmpNot affected (5.9.4-r0)

References

ON THIS PAGE