[Pkg-net-snmp-devel] Bug#788964: net-snmp snmp_pdu_parse() DoS

Salvatore Bonaccorso carnil at debian.org
Tue Mar 22 19:37:06 UTC 2016


Hi Hideki,

On Tue, Jun 16, 2015 at 07:15:45PM +0200, Moritz Muehlenhoff wrote:
> Source: net-snmp
> Severity: important
> Tags: security
> 
> Hi,
> please see http://www.openwall.com/lists/oss-security/2015/04/13/1
> 
> Patch:
> https://sourceforge.net/p/net-snmp/code/ci/f23bcd3ac6ddee5d0a48f9703007ccc738914791/

Any news on this? (could you make sure to include the assigned CVE
identifier in changelog? CVE-2015-5621).

Can you then shedule a fix as well via jessie-pu? (the issue does no
warrant a DSA).

Regards,
Salvatore



More information about the Pkg-net-snmp-devel mailing list