{"id":"MGASA-2015-0187","summary":"Updated net-snmp packages fix security vulnerabilities","details":"Updated net-snmp packages fix security vulnerability:\n\nIt was discovered that the snmp_pdu_parse() function could leave incompletely\nparsed varBind variables in the list of variables. A remote, unauthenticated\nattacker could exploit this flaw to cause a crash or, potentially, execute\narbitrary code.\n","modified":"2026-04-16T04:28:40.580490Z","published":"2015-05-05T13:36:50Z","references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2015-0187.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=15712"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1212408"}],"affected":[{"package":{"name":"net-snmp","ecosystem":"Mageia:4","purl":"pkg:rpm/mageia/net-snmp?arch=source&distro=mageia-4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.7.2-13.3.mga4"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2015-0187.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}