Mandriva Linux Security Advisory : net-snmp (MDVSA-2012:099)
Low Nessus Plugin ID 59653
SynopsisThe remote Mandriva Linux host is missing one or more security updates.
DescriptionA vulnerability has been discovered and corrected in net-snmp :
An array index error, leading to out-of heap-based buffer read flaw was found in the way net-snmp agent performed entries lookup in the extension table. When certain MIB subtree was handled by the extend directive, a remote attacker having read privilege to the subtree could use this flaw to cause a denial of service (snmpd crash) via SNMP GET request involving a non-existent extension table entry (CVE-2012-2141).
The updated packages have been patched to correct this issue.
SolutionUpdate the affected packages.