Net-SNMP 5.7.1 and earlier, when AgentX is registering to handle a MIB and processing GETNEXT requests, allows remote attackers to cause a denial of service (crash or infinite loop, CPU consumption, and hang) by causing the AgentX subagent to timeout.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade net-snmp | Aug 30, 2017 | Dec 13, 2013 |
| Apple Osx Accelerateframework | — | Upgrade macOS to the latest versionApply OS X security update 2015-007 | Oct 22, 2015 | Dec 13, 2013 |
| Apple Osx Netsnmp | — | Upgrade macOS to the latest version | Mar 29, 2016 | Dec 13, 2013 |
| Centos_linux | — | Upgrade net-snmp-utilsUpgrade net-snmpUpgrade net-snmp-perlUpgrade net-snmp-develUpgrade net-snmp-libs | Dec 1, 2016 | Dec 13, 2013 |
| Debian | — | Upgrade net-snmp | Jul 30, 2024 | Dec 13, 2013 |
| F5 Big Ip | — | Update F5 BIG-IP to the latest version | Jun 17, 2026 | Jul 24, 2015 |
| Gentoo Linux | — | Upgrade net-analyzer/net-snmp. | Oct 30, 2017 | Dec 13, 2013 |
| Oracle Solaris | — | Upgrade library/python-2/net-snmp-26 to version 5.4.1-0.175.2.3.0.4.0 on Solaris 11.2Upgrade runtime/python-27 to version 2.7.3-0.175.2.3.0.4.0 on Solaris 11.2Upgrade system/management/snmp/net-snmp to version 5.4.1-0.175.2.3.0.4.0 on Solaris 11.2Upgrade library/python-2/net-snmp-27 to version 5.4.1-0.175.2.3.0.4.0 on Solaris 11.2Upgrade runtime/python-26 to version 2.6.8-0.175.2.3.0.4.0 on Solaris 11.2 | May 29, 2017 | Dec 13, 2013 |
| Oracle_linux | — | Upgrade net-snmp-utilsUpgrade net-snmpUpgrade net-snmp-libsUpgrade net-snmp-perlUpgrade net-snmp-devel | Oct 16, 2024 | Dec 13, 2013 |
| Suse | — | Upgrade perl-SNMPUpgrade net-snmpUpgrade libsnmp15Upgrade snmp-mibsUpgrade SLES-for-VMware-releaseUpgrade libsnmp15-32bitUpgrade libsnmp15-x86 | Feb 28, 2014 | Dec 13, 2013 |
| Ubuntu | — | Upgrade libsnmp30Upgrade libsnmp15 | Nov 8, 2024 | Dec 13, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub