vulnerability

Red Hat: CVE-2018-18066: Moderate: net-snmp security and bug fix update (Multiple Advisories)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Oct 8, 2018
Added
Apr 1, 2020
Modified
Jul 9, 2025

Description

snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an unauthenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.

Solutions

no-fix-redhat-rpm-packageredhat-upgrade-net-snmpredhat-upgrade-net-snmp-agent-libsredhat-upgrade-net-snmp-debuginforedhat-upgrade-net-snmp-develredhat-upgrade-net-snmp-guiredhat-upgrade-net-snmp-libsredhat-upgrade-net-snmp-perlredhat-upgrade-net-snmp-pythonredhat-upgrade-net-snmp-sysvinitredhat-upgrade-net-snmp-utils
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.