Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Ubuntu Local Security Checks >> USN190-2 : ucd-snmp vulnerability


Vulnerability Assessment Details

USN190-2 : ucd-snmp vulnerability

Vulnerability Assessment Summary
ucd-snmp vulnerability

Detailed Explanation for this Vulnerability Assessment

Summary :

These remote packages are missing security patches :
- libsnmp4.2
- libsnmp4.2-dev


Description :

USN-190-1 fixed a vulnerability in the net-snmp library. It was
discovered that the same problem also affects the ucs-snmp
implementation (which is used by the Cyrus email server).

Original advisory:

A remote Denial of Service has been discovered in the SMNP (Simple
Network Management Protocol) library. If a SNMP agent uses TCP sockets
for communication, a malicious SNMP server could exploit this to crash
the agent. Please note that by default SNMP uses UDP sockets.

Solution :

Upgrade to :
- libsnmp4.2-4.2.5-5ubuntu0.1 (Ubuntu 5.10)
- libsnmp4.2-dev-4.2.5-5ubuntu0.1 (Ubuntu 5.10)



Network Security Threat Level: High


Networks Security ID:

Vulnerability Assessment Copyright: Ubuntu Security Notice (C) 2005 Canonical, Inc. / NASL script (C) 2005 Michel Arboi

Cables, Connectors

Lenovo Legion Y530 15.6" (1TB, Intel Core i7 8th Gen., 4.10 GHz, 8GB) Laptop...
$500.0
Lenovo Legion Y530 15.6Fast Lenovo X230 13" Windows 10 Home Laptop Quad Core i5 2.6GHz 4GB RAM 320GB HD
$219.95
Fast Lenovo X230 13Fast Windows 10 Lenovo Desktop Computer Tower Intel i5 3.2GHz PC 8GB 320GB WiFi
$169.95
Fast Windows 10 Lenovo Desktop Computer Tower Intel i5 3.2GHz PC 8GB 320GB WiFi picture


Discussions

No Discussions have been posted on this vulnerability.