ELA-668-1 net-snmp security update

denial of service or code execution

2022-08-30
Packagenet-snmp
Version5.7.2.1+dfsg-1+deb8u5 (jessie), 5.7.3+dfsg-1.7+deb9u4 (stretch)
Related CVEs CVE-2022-24805 CVE-2022-24806 CVE-2022-24807 CVE-2022-24808 CVE-2022-24809 CVE-2022-24810


Yu Zhang and Nanyu Zhong discovered several vulnerabilities in net-snmp, a suite of Simple Network Management Protocol applications, which could result in denial of service or the execution of arbitrary code



For Debian 8 jessie, these problems have been fixed in version 5.7.2.1+dfsg-1+deb8u5.

For Debian 9 stretch, these problems have been fixed in version 5.7.3+dfsg-1.7+deb9u4.

We recommend that you upgrade your net-snmp packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.