The csnmp_read_table function in snmp.c in the SNMP plugin in collectd before 5.6.3 is susceptible to a double free in a certain error case, which could lead to a crash (or potentially have other impact).
CVSS Details
- CVSS 3.0 Base Score: 9.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade collectd | Jan 15, 2018 | Nov 14, 2017 |
| Amazon_linux | — | Upgrade collectd | Jan 5, 2018 | Nov 14, 2017 |
| Debian | — | Upgrade collectd | Jul 30, 2024 | Nov 14, 2017 |
| Gentoo Linux | — | Upgrade app-admin/collectd. | Mar 22, 2018 | Nov 14, 2017 |
| Ubuntu | — | Upgrade collectd (Ubuntu Pro)Upgrade libcollectdclient1 (Ubuntu Pro)Upgrade collectd-core (Ubuntu Pro) | Mar 22, 2023 | Nov 14, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub