Vulnerability CVE-2018-18065


Published: 2018-10-08

Description:
_set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an authenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.

Type:

CWE-476

(NULL Pointer Dereference)

Vendor: Debian
Product: Debian linux 
Version: 9.0;
Vendor: Paloaltonetworks
Product: Pan-os 
Version:
8.0.9
8.0.8
8.0.7
8.0.6
8.0.5
8.0.4
8.0.3
8.0.2
8.0.11
8.0.10
8.0.1
8.0.0
7.1.22
Vendor: Net-snmp
Product: Net-snmp 
Version:
5.7.3
5.7.2
5.7.1
5.7
5.6
5.5
5.4
5.3.0.1
5.3
5.2
5.1.2
5.1
5.0.9
5.0.8
5.0.7
5.0.6
5.0.5
5.0.4
5.0.3
5.0.2
5.0.1
5.0
Vendor: Canonical
Product: Ubuntu linux 
Version:
18.10
18.04
16.04
14.04
12.04
Vendor: Netapp
Product: Solidfire element os 
Product: Cloud backup 
Product: Storagegrid webscale 
Product: Data ontap 
Product: Hyper converged infrastructure 

CVSS2 => (AV:N/AC:L/Au:S/C:N/I:N/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
4/10
2.9/10
8/10
Exploit range
Attack complexity
Authentication
Remote
Low
Single time
Confidentiality impact
Integrity impact
Availability impact
None
None
Partial

 References:
http://www.securityfocus.com/bid/106265
https://dumpco.re/blog/net-snmp-5.7.3-remote-dos
https://security.netapp.com/advisory/ntap-20181107-0001/
https://securityadvisories.paloaltonetworks.com/Home/Detail/144
https://sourceforge.net/p/net-snmp/code/ci/7ffb8e25a0db851953155de91f0170e9bf8c457d/
https://usn.ubuntu.com/3792-1/
https://usn.ubuntu.com/3792-2/
https://usn.ubuntu.com/3792-3/
https://www.debian.org/security/2018/dsa-4314
https://www.exploit-db.com/exploits/45547/

Related CVE
CVE-2019-5497
NetApp AFF A700s Baseboard Management Controller (BMC) firmware versions 1.22 and higher were shipped with a default account enabled that could allow unauthorized arbitrary command execution.
CVE-2019-8936
NTP through 4.2.8p12 has a NULL Pointer Dereference.
CVE-2019-5492
Element Plug-in for vCenter Server versions prior to 4.2.3 may disclose sensitive account information to an unauthenticated attacker. NetApp HCI Compute Node versions prior to 1.4P2 bundle affected versions of Element Plug-in for vCenter Server.
CVE-2019-11035
When processing certain files, PHP EXIF extension in versions 7.1.x below 7.1.28, 7.2.x below 7.2.17 and 7.3.x below 7.3.4 can be caused to read past allocated buffer in exif_iif_add_value function. This may lead to information disclosure or crash.
CVE-2019-11034
When processing certain files, PHP EXIF extension in versions 7.1.x below 7.1.28, 7.2.x below 7.2.17 and 7.3.x below 7.3.4 can be caused to read past allocated buffer in exif_process_IFD_TAG function. This may lead to information disclosure or crash.
CVE-2018-20449
The hidma_chan_stats function in drivers/dma/qcom/hidma_dbg.c in the Linux kernel 4.14.90 allows local users to obtain sensitive address information by reading "callback=" lines in a debugfs file.
CVE-2019-9946
Cloud Native Computing Foundation (CNCF) CNI (Container Networking Interface) 0.7.4 has a network firewall misconfiguration which affects Kubernetes. The CNI 'portmap' plugin, used to setup HostPorts for CNI, inserts rules at the front of the iptable...
CVE-2019-0222
In Apache ActiveMQ 5.0.0 - 5.15.8, unmarshalling corrupt MQTT frame can lead to broker Out of Memory exception making it unresponsive.

Copyright 2019, cxsecurity.com

 

Back to Top