Heap-based buffer overflow in snmpnetstat for ucd-snmp 4.2.3 and earlier, and net-snmp, allows remote attackers to execute arbitrary code via multiple getnextrequest PDU messages with conflicting ifindex variables, which cause snmpnetstat to write variable data past the end of an array.
References
| Link | Resource |
|---|---|
| http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000696 | |
| http://www.securityfocus.com/archive/1/248141 | Exploit Patch Vendor Advisory |
| http://www.securityfocus.com/bid/3780 | Exploit Patch Vendor Advisory |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/7776 | |
| http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000696 | |
| http://www.securityfocus.com/archive/1/248141 | Exploit Patch Vendor Advisory |
| http://www.securityfocus.com/bid/3780 | Exploit Patch Vendor Advisory |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/7776 |
Configurations
History
20 Nov 2024, 23:41
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000696 - | |
| References | () http://www.securityfocus.com/archive/1/248141 - Exploit, Patch, Vendor Advisory | |
| References | () http://www.securityfocus.com/bid/3780 - Exploit, Patch, Vendor Advisory | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/7776 - |
Information
Published : 2003-11-03 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2002-1570
Mitre link : CVE-2002-1570
CVE.ORG link : CVE-2002-1570
JSON object : View
Products Affected
ucd-snmp
- ucd-snmp
CWE
