SuSE 10 Security Update : net-snmp (ZYPP Patch Number 8153)
Low Nessus Plugin ID 60060
SynopsisThe remote SuSE 10 host is missing a security-related patch.
DescriptionThis update to net-snmp resolves the following issues :
- Specially crafted SNMP GET requests could cause a denial of service (application crash) via a heap-based out-out-bounds read flaw which could be exploited remotely. (CVE-2012-2141)
- After rotating the net-snmp log file, use 'try-restart' to restart the daemon. Reloading with a SIGHUP signal may trigger crashes when dynamic modules (dlmod) are in use. (bnc#762433)
SolutionApply ZYPP patch number 8153.