Oval Definition:oval:org.opensuse.security:def:1252
Revision Date:2022-11-23Version:1
Title:Security update for net-snmp (Moderate)
Description:

This update for net-snmp fixes the following issues:

Updated to version 5.9.3 (bsc#1201103, jsc#SLE-11203):

- CVE-2022-24805: Fixed a buffer overflow in the handling of the INDEX of NET-SNMP-VACM-MIB that can cause an out-of-bounds memory access. - CVE-2022-24809: Fixed a malformed OID in a GET-NEXT to the nsVacmAccessTable that can cause a NULL pointer dereference. - CVE-2022-24806: Fixed an improper Input Validation when SETing malformed OIDs in master agent and subagent simultaneously. - CVE-2022-24807: Fixed a malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access. - CVE-2022-24808: Fixed a malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference. - CVE-2022-24810: Fixed a malformed OID in a SET to the nsVacmAccessTable can cause a NULL pointer dereference.
Family:unixClass:patch
Status:Reference(s):1105012
1201103
CVE-2010-2891
CVE-2017-5715
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-3639
CVE-2018-3640
CVE-2019-11091
CVE-2019-11135
CVE-2019-11139
CVE-2020-0543
CVE-2020-0548
CVE-2020-0549
CVE-2020-8695
CVE-2020-8696
CVE-2020-8698
CVE-2022-24805
CVE-2022-24806
CVE-2022-24807
CVE-2022-24808
CVE-2022-24809
CVE-2022-24810
SUSE-SU-2018:3290-1
SUSE-SU-2022:4205-1
Platform(s):openSUSE Leap 15.5
SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 15 SP3
SUSE Linux Enterprise High Availability 15
SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise Module for Basesystem 15
SUSE Linux Enterprise Module for Basesystem 15 SP3
SUSE Linux Enterprise Module for Desktop Applications 15 SP2
SUSE Linux Enterprise Module for Legacy Software 15
SUSE Linux Enterprise Module for Legacy Software 15 SP1
SUSE Linux Enterprise Module for Live Patching 15
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP3
SUSE Linux Enterprise Software Development Kit 11 SP2
SUSE Linux Enterprise Software Development Kit 11 SP3
SUSE Linux Enterprise Software Development Kit 12 SP1
SUSE Linux Enterprise Software Development Kit 12 SP2
SUSE Linux Enterprise Workstation Extension 12
SUSE Linux Enterprise Workstation Extension 12 SP1
SUSE Linux Enterprise Workstation Extension 15
SUSE Manager Proxy 4.2
SUSE Manager Server 4.2
SUSE Package Hub for SUSE Linux Enterprise 12
SUSE Package Hub for SUSE Linux Enterprise 12 SP1
SUSE Package Hub for SUSE Linux Enterprise 15
Product(s):
Definition Synopsis
  • openSUSE Leap 15.5 is installed
  • AND Package Information
  • net-snmp-5.9.3-150300.15.3.1 is installed
  • OR net-snmp-devel-5.9.3-150300.15.3.1 is installed
  • OR net-snmp-devel-32bit-5.9.3-150300.15.3.1 is installed
  • OR perl-SNMP-5.9.3-150300.15.3.1 is installed
  • OR python3-net-snmp-5.9.3-150300.15.3.1 is installed
  • OR snmp-mibs-5.9.3-150300.15.3.1 is installed
  • Definition Synopsis
  • SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5 is installed
  • AND haproxy-1.5.4-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND bogofilter-1.2.4-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • ImageMagick-6.8.8.1-8 is installed
  • OR libMagick++-6_Q16-3-6.8.8.1-8 is installed
  • OR libMagickCore-6_Q16-1-6.8.8.1-8 is installed
  • OR libMagickCore-6_Q16-1-32bit-6.8.8.1-8 is installed
  • OR libMagickWand-6_Q16-1-6.8.8.1-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • DirectFB-1.7.1-6 is installed
  • OR lib++dfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-32bit-1.7.1-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP3 is installed
  • AND ucode-intel-20210216-2.19.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 15 is installed
  • AND Package Information
  • cluster-md-kmp-default-4.12.14-25.25 is installed
  • OR dlm-kmp-default-4.12.14-25.25 is installed
  • OR gfs2-kmp-default-4.12.14-25.25 is installed
  • OR kernel-default-4.12.14-25.25 is installed
  • OR ocfs2-kmp-default-4.12.14-25.25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 is installed
  • AND Package Information
  • pam_pkcs11-0.6.9-3.3 is installed
  • OR pam_pkcs11-32bit-0.6.9-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP2 is installed
  • AND libsmi-devel-0.4.8-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 is installed
  • AND Package Information
  • kernel-default-4.12.14-150.32 is installed
  • OR reiserfs-kmp-default-4.12.14-150.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 SP1 is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr5.40-3.24 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr5.40-3.24 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr5.40-3.24 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr5.40-3.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-25_6-default-2-2 is installed
  • OR kernel-livepatch-SLE15_Update_2-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 is installed
  • AND Package Information
  • jakarta-commons-fileupload-1.1.1-120 is installed
  • OR jakarta-commons-fileupload-javadoc-1.1.1-120 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND patch-2.7.5-7.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND Package Information
  • kernel-default-4.12.14-25.6 is installed
  • OR kernel-default-extra-4.12.14-25.6 is installed
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 12 is installed
  • AND Package Information
  • chromedriver-54.0.2840.59-109 is installed
  • OR chromium-54.0.2840.59-109 is installed
  • OR chromium-ffmpegsumo-54.0.2840.59-109 is installed
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 12 SP1 is installed
  • AND Package Information
  • kinit-5.20.0-5 is installed
  • OR kinit-devel-5.20.0-5 is installed
  • OR kinit-lang-5.20.0-5 is installed
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 15 is installed
  • AND Package Information
  • GraphicsMagick-1.3.29-bp150.2.18 is installed
  • OR GraphicsMagick-devel-1.3.29-bp150.2.18 is installed
  • OR libGraphicsMagick++-Q16-12-1.3.29-bp150.2.18 is installed
  • OR libGraphicsMagick++-devel-1.3.29-bp150.2.18 is installed
  • OR libGraphicsMagick-Q16-3-1.3.29-bp150.2.18 is installed
  • OR libGraphicsMagick3-config-1.3.29-bp150.2.18 is installed
  • OR libGraphicsMagickWand-Q16-2-1.3.29-bp150.2.18 is installed
  • OR perl-GraphicsMagick-1.3.29-bp150.2.18 is installed
  • BACK