2020年7月6日 星期一

[USN-4410-1] Net-SNMP vulnerability

---------- Forwarded message ---------
From: Paulo Flabiano Smorigo <pfsmorigo@canonical.com>
Date: Jul 3, 2020 7:00AM

A double-free bug was discovered in snmpd server. An authenticated user could
potentially cause a DoS by sending a crafted request to the server.
(CVE-2019-20892)

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 20.04 LTS:
  libsnmp-base                    5.8+dfsg-2ubuntu2.1
  libsnmp-perl                    5.8+dfsg-2ubuntu2.1
  libsnmp35                       5.8+dfsg-2ubuntu2.1
  snmpd                           5.8+dfsg-2ubuntu2.1

After a standard system update you need to restart snmpd to make
all the necessary changes.

References:
  https://usn.ubuntu.com/4410-1
  CVE-2019-20892

沒有留言:

張貼留言