CVE-2022-44792
Summary
| CVE | CVE-2022-44792 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-11-07 03:15:00 UTC |
| Updated | 2023-03-28 17:16:00 UTC |
| Description | handle_ipDefaultTTL in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.8 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote attacker (who has write access) to cause the instance to crash via a crafted UDP packet, resulting in Denial of Service. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| snmp_ddos_ipttl.sh · GitHub |
MISC |
gist.github.com |
|
| [SECURITY] [DLA 3270-1] net-snmp security update |
MLIST |
lists.debian.org |
|
| NULL Pointer Exception when handling ipDefaultTTL · Issue #474 · net-snmp/net-snmp · GitHub |
MISC |
github.com |
|
| November 2022 Net-SNMP Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160593 Oracle Enterprise Linux Security Update for net-snmp (ELSA-2023-2444)
- 160690 Oracle Enterprise Linux Security Update for net-snmp (ELSA-2023-2969)
- 181477 Debian Security Update for net-snmp (DLA 3270-1)
- 199093 Ubuntu Security Notification for Net-SNMP Vulnerabilities (USN-5795-1)
- 199510 Ubuntu Security Notification for Net-SNMP Vulnerabilities (USN-5795-2)
- 241464 Red Hat Update for net-snmp (RHSA-2023:2444)
- 241494 Red Hat Update for net-snmp (RHSA-2023:2969)
- 296099 Oracle Solaris 11.4 Support Repository Update (SRU) 57.144.3 Missing (CPUAPR2023)
- 378650 Alibaba Cloud Linux Security Update for net-snmp (ALINUX3-SA-2023:0059)
- 502627 Alpine Linux Security Update for net-snmp
- 502746 Alpine Linux Security Update for net-snmp
- 672722 EulerOS Security Update for net-snmp (EulerOS-SA-2023-1478)
- 672734 EulerOS Security Update for net-snmp (EulerOS-SA-2023-1453)
- 672815 EulerOS Security Update for net-snmp (EulerOS-SA-2023-1558)
- 672825 EulerOS Security Update for net-snmp (EulerOS-SA-2023-1533)
- 672858 EulerOS Security Update for net-snmp (EulerOS-SA-2023-1616)
- 672893 EulerOS Security Update for net-snmp (EulerOS-SA-2023-1764)
- 672940 EulerOS Security Update for net-snmp (EulerOS-SA-2023-1786)
- 753495 SUSE Enterprise Linux Security Update for net-snmp (SUSE-SU-2023:0068-1)
- 753516 SUSE Enterprise Linux Security Update for net-snmp (SUSE-SU-2023:0075-1)
- 904430 Common Base Linux Mariner (CBL-Mariner) Security Update for net-snmp (11419)
- 904478 Common Base Linux Mariner (CBL-Mariner) Security Update for net-snmp (11385)
- 941024 AlmaLinux Security Update for net-snmp (ALSA-2023:2444)
- 941081 AlmaLinux Security Update for net-snmp (ALSA-2023:2969)