| Package: | net-snmp |
| Date: | 2008-06-10 |
| Vulnerable version: | 5.4.1-3 |
| Unaffected version: | 5.4.1-4kalgan1 |
| Bug tracker entry: | http://bugs.frugalware.org/task/3092 |
| CVEs: | http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2292 |
| Description: | A vulnerability has been reported in Net-snmp, which potentially can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to a boundary error within the "__snprint_value()" function in perl/SNMP/SNMP.xs. This can be exploited to cause a buffer overflow in an application using the Net-snmp Perl module by tricking the user into connecting to a malicious SNMP agent. |











