Vulnerability Bulletins

DSA-4154 net-snmp - security update

   
Affected software Debian
 
A heap corruption vulnerability was discovered in net-snmp, a suite ofSimple Network Management Protocol applications, triggered when parsingthe PDU prior to the authentication process. A remote, unauthenticatedattacker can take advantage of this flaw to crash the snmpd process(causing a denial of service) or, potentially, execute arbitrary codewith the privileges of the user running snmpd.

More info:

https://www.debian.org/security/2018/dsa-4154