{"id":"UBUNTU-CVE-2025-68615","details":"net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue has been patched in versions 5.9.5 and 5.10.pre2.","modified":"2026-04-22T16:12:53.149565Z","published":"2025-12-23T00:15:00Z","related":["USN-7944-1"],"upstream":["CVE-2025-68615"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-68615"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2025-68615"},{"type":"REPORT","url":"https://github.com/net-snmp/net-snmp/security/advisories/GHSA-4389-rwqf-q9gq"},{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-7944-1"}],"affected":[{"package":{"name":"net-snmp","ecosystem":"Ubuntu:Pro:14.04:LTS","purl":"pkg:deb/ubuntu/net-snmp@5.7.2~dfsg-8.1ubuntu3.3+esm4?arch=source&distro=esm-infra-legacy/trusty"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.7.2~dfsg-8.1ubuntu3.3+esm4"}]}],"versions":["5.7.2~dfsg-8ubuntu1","5.7.2~dfsg-8ubuntu2","5.7.2~dfsg-8.1ubuntu1","5.7.2~dfsg-8.1ubuntu2","5.7.2~dfsg-8.1ubuntu3","5.7.2~dfsg-8.1ubuntu3.1","5.7.2~dfsg-8.1ubuntu3.2","5.7.2~dfsg-8.1ubuntu3.3","5.7.2~dfsg-8.1ubuntu3.3+esm1","5.7.2~dfsg-8.1ubuntu3.3+esm2","5.7.2~dfsg-8.1ubuntu3.3+esm3"],"ecosystem_specific":{"binaries":[{"binary_version":"5.7.2~dfsg-8.1ubuntu3.3+esm4","binary_name":"libsnmp-base"},{"binary_version":"5.7.2~dfsg-8.1ubuntu3.3+esm4","binary_name":"libsnmp-perl"},{"binary_version":"5.7.2~dfsg-8.1ubuntu3.3+esm4","binary_name":"libsnmp30"},{"binary_version":"5.7.2~dfsg-8.1ubuntu3.3+esm4","binary_name":"python-netsnmp"},{"binary_version":"5.7.2~dfsg-8.1ubuntu3.3+esm4","binary_name":"snmp"},{"binary_version":"5.7.2~dfsg-8.1ubuntu3.3+esm4","binary_name":"snmpd"},{"binary_version":"5.7.2~dfsg-8.1ubuntu3.3+esm4","binary_name":"tkmib"}],"availability":"Available with Ubuntu Pro with Legacy support add-on: https://ubuntu.com/pro"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-68615.json"}},{"package":{"name":"net-snmp","ecosystem":"Ubuntu:Pro:16.04:LTS","purl":"pkg:deb/ubuntu/net-snmp@5.7.3+dfsg-1ubuntu4.6+esm2?arch=source&distro=esm-infra/xenial"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.7.3+dfsg-1ubuntu4.6+esm2"}]}],"versions":["5.7.3+dfsg-1ubuntu2","5.7.3+dfsg-1ubuntu3","5.7.3+dfsg-1ubuntu4","5.7.3+dfsg-1ubuntu4.1","5.7.3+dfsg-1ubuntu4.2","5.7.3+dfsg-1ubuntu4.3","5.7.3+dfsg-1ubuntu4.4","5.7.3+dfsg-1ubuntu4.5","5.7.3+dfsg-1ubuntu4.6","5.7.3+dfsg-1ubuntu4.6+esm1"],"ecosystem_specific":{"binaries":[{"binary_version":"5.7.3+dfsg-1ubuntu4.6+esm2","binary_name":"libsnmp-base"},{"binary_version":"5.7.3+dfsg-1ubuntu4.6+esm2","binary_name":"libsnmp-perl"},{"binary_version":"5.7.3+dfsg-1ubuntu4.6+esm2","binary_name":"libsnmp30"},{"binary_version":"5.7.3+dfsg-1ubuntu4.6+esm2","binary_name":"python-netsnmp"},{"binary_version":"5.7.3+dfsg-1ubuntu4.6+esm2","binary_name":"snmp"},{"binary_version":"5.7.3+dfsg-1ubuntu4.6+esm2","binary_name":"snmpd"},{"binary_version":"5.7.3+dfsg-1ubuntu4.6+esm2","binary_name":"snmptrapd"},{"binary_version":"5.7.3+dfsg-1ubuntu4.6+esm2","binary_name":"tkmib"}],"availability":"Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-68615.json"}},{"package":{"name":"net-snmp","ecosystem":"Ubuntu:Pro:18.04:LTS","purl":"pkg:deb/ubuntu/net-snmp@5.7.3+dfsg-1.8ubuntu3.8+esm1?arch=source&distro=esm-infra/bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.7.3+dfsg-1.8ubuntu3.8+esm1"}]}],"versions":["5.7.3+dfsg-1.7ubuntu1","5.7.3+dfsg-1.8ubuntu1","5.7.3+dfsg-1.8ubuntu2","5.7.3+dfsg-1.8ubuntu3","5.7.3+dfsg-1.8ubuntu3.1","5.7.3+dfsg-1.8ubuntu3.2","5.7.3+dfsg-1.8ubuntu3.3","5.7.3+dfsg-1.8ubuntu3.5","5.7.3+dfsg-1.8ubuntu3.6","5.7.3+dfsg-1.8ubuntu3.7","5.7.3+dfsg-1.8ubuntu3.8"],"ecosystem_specific":{"binaries":[{"binary_version":"5.7.3+dfsg-1.8ubuntu3.8+esm1","binary_name":"libsnmp-base"},{"binary_version":"5.7.3+dfsg-1.8ubuntu3.8+esm1","binary_name":"libsnmp-perl"},{"binary_version":"5.7.3+dfsg-1.8ubuntu3.8+esm1","binary_name":"libsnmp30"},{"binary_version":"5.7.3+dfsg-1.8ubuntu3.8+esm1","binary_name":"python-netsnmp"},{"binary_version":"5.7.3+dfsg-1.8ubuntu3.8+esm1","binary_name":"snmp"},{"binary_version":"5.7.3+dfsg-1.8ubuntu3.8+esm1","binary_name":"snmpd"},{"binary_version":"5.7.3+dfsg-1.8ubuntu3.8+esm1","binary_name":"snmptrapd"},{"binary_version":"5.7.3+dfsg-1.8ubuntu3.8+esm1","binary_name":"tkmib"}],"availability":"Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-68615.json"}},{"package":{"name":"net-snmp","ecosystem":"Ubuntu:Pro:20.04:LTS","purl":"pkg:deb/ubuntu/net-snmp@5.8+dfsg-2ubuntu2.9+esm2?arch=source&distro=esm-infra/focal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.8+dfsg-2ubuntu2.9+esm2"}]}],"versions":["5.7.3+dfsg-5ubuntu5","5.7.3+dfsg-5ubuntu6","5.8+dfsg-2ubuntu1","5.8+dfsg-2ubuntu2","5.8+dfsg-2ubuntu2.1","5.8+dfsg-2ubuntu2.2","5.8+dfsg-2ubuntu2.3","5.8+dfsg-2ubuntu2.4","5.8+dfsg-2ubuntu2.5","5.8+dfsg-2ubuntu2.6","5.8+dfsg-2ubuntu2.7","5.8+dfsg-2ubuntu2.9","5.8+dfsg-2ubuntu2.9+esm1"],"ecosystem_specific":{"binaries":[{"binary_version":"5.8+dfsg-2ubuntu2.9+esm2","binary_name":"libsnmp-base"},{"binary_version":"5.8+dfsg-2ubuntu2.9+esm2","binary_name":"libsnmp-perl"},{"binary_version":"5.8+dfsg-2ubuntu2.9+esm2","binary_name":"libsnmp35"},{"binary_version":"5.8+dfsg-2ubuntu2.9+esm2","binary_name":"snmp"},{"binary_version":"5.8+dfsg-2ubuntu2.9+esm2","binary_name":"snmpd"},{"binary_version":"5.8+dfsg-2ubuntu2.9+esm2","binary_name":"snmptrapd"},{"binary_version":"5.8+dfsg-2ubuntu2.9+esm2","binary_name":"tkmib"}],"availability":"Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-68615.json"}},{"package":{"name":"net-snmp","ecosystem":"Ubuntu:22.04:LTS","purl":"pkg:deb/ubuntu/net-snmp@5.9.1+dfsg-1ubuntu2.9?arch=source&distro=jammy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.9.1+dfsg-1ubuntu2.9"}]}],"versions":["5.9+dfsg-3ubuntu2","5.9+dfsg-3ubuntu3","5.9+dfsg-3ubuntu4","5.9.1+dfsg-1ubuntu1","5.9.1+dfsg-1ubuntu2","5.9.1+dfsg-1ubuntu2.1","5.9.1+dfsg-1ubuntu2.2","5.9.1+dfsg-1ubuntu2.4","5.9.1+dfsg-1ubuntu2.5","5.9.1+dfsg-1ubuntu2.6","5.9.1+dfsg-1ubuntu2.7","5.9.1+dfsg-1ubuntu2.8"],"ecosystem_specific":{"binaries":[{"binary_version":"5.9.1+dfsg-1ubuntu2.9","binary_name":"libnetsnmptrapd40"},{"binary_version":"5.9.1+dfsg-1ubuntu2.9","binary_name":"libsnmp-base"},{"binary_version":"5.9.1+dfsg-1ubuntu2.9","binary_name":"libsnmp-perl"},{"binary_version":"5.9.1+dfsg-1ubuntu2.9","binary_name":"libsnmp40"},{"binary_version":"5.9.1+dfsg-1ubuntu2.9","binary_name":"snmp"},{"binary_version":"5.9.1+dfsg-1ubuntu2.9","binary_name":"snmpd"},{"binary_version":"5.9.1+dfsg-1ubuntu2.9","binary_name":"snmptrapd"},{"binary_version":"5.9.1+dfsg-1ubuntu2.9","binary_name":"tkmib"}],"availability":"No subscription required"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-68615.json"}},{"package":{"name":"net-snmp","ecosystem":"Ubuntu:24.04:LTS","purl":"pkg:deb/ubuntu/net-snmp@5.9.4+dfsg-1.1ubuntu3.2?arch=source&distro=noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.9.4+dfsg-1.1ubuntu3.2"}]}],"versions":["5.9.3+dfsg-2ubuntu3","5.9.4+dfsg-1ubuntu1","5.9.4+dfsg-1ubuntu2","5.9.4+dfsg-1.1ubuntu2","5.9.4+dfsg-1.1ubuntu3","5.9.4+dfsg-1.1ubuntu3.1"],"ecosystem_specific":{"binaries":[{"binary_version":"5.9.4+dfsg-1.1ubuntu3.2","binary_name":"libnetsnmptrapd40t64"},{"binary_version":"5.9.4+dfsg-1.1ubuntu3.2","binary_name":"libsnmp-base"},{"binary_version":"5.9.4+dfsg-1.1ubuntu3.2","binary_name":"libsnmp-perl"},{"binary_version":"5.9.4+dfsg-1.1ubuntu3.2","binary_name":"libsnmp40t64"},{"binary_version":"5.9.4+dfsg-1.1ubuntu3.2","binary_name":"snmp"},{"binary_version":"5.9.4+dfsg-1.1ubuntu3.2","binary_name":"snmpd"},{"binary_version":"5.9.4+dfsg-1.1ubuntu3.2","binary_name":"snmptrapd"},{"binary_version":"5.9.4+dfsg-1.1ubuntu3.2","binary_name":"tkmib"}],"availability":"No subscription required"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-68615.json"}},{"package":{"name":"net-snmp","ecosystem":"Ubuntu:25.10","purl":"pkg:deb/ubuntu/net-snmp@5.9.4+dfsg-2ubuntu2.1?arch=source&distro=questing"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.9.4+dfsg-2ubuntu2.1"}]}],"versions":["5.9.4+dfsg-1.1ubuntu7","5.9.4+dfsg-2ubuntu1","5.9.4+dfsg-2ubuntu2"],"ecosystem_specific":{"binaries":[{"binary_version":"5.9.4+dfsg-2ubuntu2.1","binary_name":"libnetsnmptrapd40t64"},{"binary_version":"5.9.4+dfsg-2ubuntu2.1","binary_name":"libsnmp-base"},{"binary_version":"5.9.4+dfsg-2ubuntu2.1","binary_name":"libsnmp-perl"},{"binary_version":"5.9.4+dfsg-2ubuntu2.1","binary_name":"libsnmp40t64"},{"binary_version":"5.9.4+dfsg-2ubuntu2.1","binary_name":"snmp"},{"binary_version":"5.9.4+dfsg-2ubuntu2.1","binary_name":"snmpd"},{"binary_version":"5.9.4+dfsg-2ubuntu2.1","binary_name":"snmptrapd"},{"binary_version":"5.9.4+dfsg-2ubuntu2.1","binary_name":"tkmib"}],"availability":"No subscription required"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-68615.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}]}