VDB
CVE-2005-4837
CVE-2005-4837
PUBLISHED
CVSS 10 CRITICAL
snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in master agentx mode, allows remote attackers to cause a denial of service (crash) by causing a particular TCP disconnect, which triggers a free of an incorrect variable, a different vulnerability than CVE-2005-2177.
EPSS 9.74% · 95.4th percentile
Risk Scores
CVSS 2.0
10
EPSS Score
9.74%
95.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| sourceforge | net-snmp | 0, 0, 0 |
| net-snmp | net-snmp | 5.0.5, 5.0.6, 5.0.7 |
| n/a | n/a | n/a |
Timeline
- Dec 31, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Feb 10, 2023 EPSS Score
- Apr 4, 2023 EPSS Score
- Apr 16, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
- Sep 9, 2023 EPSS Score
- Dec 24, 2023 EPSS Score
References
- https://issues.rpath.com/browse/RPL-1334 url
- 25115 third-party-advisory
- 102929 vendor-advisory
- http://www.securityfocus.com/bid/23762 technical
- http://www.ubuntu.com/usn/USN-456-1 technical
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9442 technical
- http://sourceforge.net/tracker/index.php?func=detail&aid=1207023&group_id=12694&atid=112694 exploit
- http://www.vupen.com/english/advisories/2007/1944 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2005-4837 advisory
- http://secunia.com/advisories/25114 url
- http://secunia.com/advisories/25411 url