[ MDVSA-2014:184 ] net-snmp

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 _______________________________________________________________________

 Mandriva Linux Security Advisory                         MDVSA-2014:184
 http://www.mandriva.com/en/support/security/
 _______________________________________________________________________

 Package : net-snmp
 Date    : September 24, 2014
 Affected: Business Server 1.0
 _______________________________________________________________________

 Problem Description:

 Updated net-snmp packages fix security vulnerabilities:
 
 A remote denial-of-service flaw was found in the way snmptrapd handled
 certain SNMP traps when started with the -OQ option. If an attacker
 sent an SNMP trap containing a variable with a NULL type where an
 integer variable type was expected, it would cause snmptrapd to crash
 (CVE-2014-3565).
 _______________________________________________________________________

 References:

 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3565
 http://advisories.mageia.

Leave a Reply