CVE-2005-1740Net-snmp vulnerability

5 documents5 sources
Severity
10.0CRITICALNVD
EPSS
2.5%
top 14.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 24
Latest updateMay 1

Description

fixproc in Net-snmp 5.x before 5.2.1-r1 creates temporary files insecurely, which allows local users to modify the contents of those files to execute arbitrary commands, or overwrite arbitrary files via a symlink attack.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages2 packages

NVDnet-snmp/net-snmp9 versions+8

🔴Vulnerability Details

1
GHSA
GHSA-w3v6-wf2m-xghj: fixproc in Net-snmp 52022-05-01

📋Vendor Advisories

2
Red Hat
security flaw2005-05-18
Debian
CVE-2005-1740: net-snmp - fixproc in Net-snmp 5.x before 5.2.1-r1 creates temporary files insecurely, whic...2005

💬Community

1
Bugzilla
CVE-2005-1740 security flaw2018-08-16