Net-SNMP 5.7.1 and earlier, when AgentX is registering to handle a MIB and processing GETNEXT requests, allows remote attackers to cause a denial of service (crash or infinite loop, CPU consumption, and hang) by causing the AgentX subagent to timeout.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade net-snmp | Aug 30, 2017 | Dec 13, 2013 |
| Apple Osx Accelerateframework | — | Apply OS X security update 2015-007Upgrade macOS to the latest version | Oct 22, 2015 | Dec 13, 2013 |
| Apple Osx Netsnmp | — | Upgrade macOS to the latest version | Mar 29, 2016 | Dec 13, 2013 |
| Centos_linux | — | Upgrade net-snmp-libsUpgrade net-snmp-develUpgrade net-snmp-perlUpgrade net-snmpUpgrade net-snmp-utils | Dec 1, 2016 | Dec 13, 2013 |
| Debian | — | Upgrade net-snmp | Jul 30, 2024 | Dec 13, 2013 |
| F5 Big Ip | — | Update F5 BIG-IP to the latest version | Jun 17, 2026 | Jul 24, 2015 |
| Gentoo Linux | — | Upgrade net-analyzer/net-snmp. | Oct 30, 2017 | Dec 13, 2013 |
| Oracle Solaris | — | Upgrade library/python-2/net-snmp-26 to version 5.4.1-0.175.2.3.0.4.0 on Solaris 11.2Upgrade runtime/python-27 to version 2.7.3-0.175.2.3.0.4.0 on Solaris 11.2Upgrade system/management/snmp/net-snmp to version 5.4.1-0.175.2.3.0.4.0 on Solaris 11.2Upgrade runtime/python-26 to version 2.6.8-0.175.2.3.0.4.0 on Solaris 11.2Upgrade library/python-2/net-snmp-27 to version 5.4.1-0.175.2.3.0.4.0 on Solaris 11.2 | May 29, 2017 | Dec 13, 2013 |
| Oracle_linux | — | Upgrade net-snmp-perlUpgrade net-snmp-libsUpgrade net-snmp-develUpgrade net-snmpUpgrade net-snmp-utils | Oct 16, 2024 | Dec 13, 2013 |
| Suse | — | Upgrade libsnmp15Upgrade libsnmp15-32bitUpgrade SLES-for-VMware-releaseUpgrade snmp-mibsUpgrade libsnmp15-x86Upgrade net-snmpUpgrade perl-SNMP | Feb 28, 2014 | Dec 13, 2013 |
| Ubuntu | — | Upgrade libsnmp30Upgrade libsnmp15 | Nov 8, 2024 | Dec 13, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub