ZeroHour

CVE-2018-18066

PoC
CVSS 3.1
7.5 high
EPSS
4%p89
Published
()
Modified
Description

snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an unauthenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.

Vendors
net-snmpnetapp
Products
net-snmp, cloud backup, hyper converged infrastructure, storagegrid webscale, data ontap, e-series santricity os controller, solidfire element os
Weakness
CWE-476
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.