UbuntuUpdates.org

Package "snmptrapd"

Name: snmptrapd

Description:

Net-SNMP notification receiver

Latest version: 5.9.1+dfsg-1ubuntu2.6
Release: jammy (22.04)
Level: updates
Repository: universe
Head package: net-snmp
Homepage: http://net-snmp.sourceforge.net/

Links


Download "snmptrapd"


Other versions of "snmptrapd" in Jammy

Repository Area Version
base universe 5.9.1+dfsg-1ubuntu2
security universe 5.9.1+dfsg-1ubuntu2.4
proposed universe 5.9.1+dfsg-1ubuntu2.7

Changelog

Version: 5.9.1+dfsg-1ubuntu2.6 2023-03-22 09:06:50 UTC

  net-snmp (5.9.1+dfsg-1ubuntu2.6) jammy; urgency=medium

  * Fix snmptrapd reconnection issue after hitting MySQL wait_timeout
    (LP: #1999711)
    - d/p/snmptrapd-mysql-reconnection-after-hitting-wait_timeout.patch
    - d/p/snmptrapd-mysql-fix-build-error.patch

 -- Chengen Du <email address hidden> Fri, 17 Feb 2023 03:25:16 +0000

Source diff to previous version
1999711 Snmptrapd cannot reconnect to MySQL server after hitting MySQL wait_timeout

Version: 5.9.1+dfsg-1ubuntu2.5 2023-03-01 09:06:57 UTC

  net-snmp (5.9.1+dfsg-1ubuntu2.5) jammy; urgency=medium

  * d/p/restore-support-for-long-dns-names.patch: Fix snmp requests for domains
    longer than 63 characters (LP: #1998461)

 -- Lena Voytek <email address hidden> Mon, 23 Jan 2023 11:33:32 -0700

Source diff to previous version
1998461 SNMP fails to resolve domains when DNS record is longer than 64 characters

Version: 5.9.1+dfsg-1ubuntu2.4 2023-01-09 16:06:49 UTC

  net-snmp (5.9.1+dfsg-1ubuntu2.4) jammy-security; urgency=medium

  * SECURITY UPDATE: DoS via null pointer exception issues
    - debian/patches/CVE-2022-4479x-1.patch: disallow SET with NULL varbind
      in agent/snmp_agent.c.
    - debian/patches/CVE-2022-4479x-2.patch: allow SET with NULL varbind
      for testing in apps/snmpset.c.
    - debian/patches/CVE-2022-4479x-3.patch: add test for NULL varbind set
      in testing/fulltests/default/T0142snmpv2csetnull_simple.
    - CVE-2022-44792
    - CVE-2022-44793
  * This package does _not_ contain the changes from 5.9.1+dfsg-1ubuntu2.3
    in jammy-proposed.

 -- Marc Deslauriers <email address hidden> Fri, 06 Jan 2023 11:02:17 -0500

Source diff to previous version
CVE-2022-4479 RESERVED
CVE-2022-44792 handle_ipDefaultTTL in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.8 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote
CVE-2022-44793 handle_ipv6IpForwarding in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.4.3 through 5.9.3 has a NULL Pointer Exception bug that can be used by a

Version: 5.9.1+dfsg-1ubuntu2.2 2022-08-01 17:07:46 UTC

  net-snmp (5.9.1+dfsg-1ubuntu2.2) jammy-security; urgency=medium

  * SECURITY UPDATE: Multiple security issus
    - debian/patches/CVE-2022-248xx-1.patch: fix bounds checking in
      NET-SNMP-AGENT-MIB, NET-SNMP-VACM-MIB, SNMP-VIEW-BASED-ACM-MIB,
      SNMP-USER-BASED-SM-MIB in agent/mibgroup/agent/nsLogging.c,
      agent/mibgroup/agent/nsVacmAccessTable.c,
      agent/mibgroup/mibII/vacm_vars.c, agent/mibgroup/snmpv3/usmUser.
    - debian/patches/CVE-2022-248xx-2.patch: recover SET status from
      delegated request in agent/snmp_agent.c.
    - CVE-2022-24805, CVE-2022-24806, CVE-2022-24807, CVE-2022-24808,
      CVE-2022-24809, CVE-2022-24810

 -- Marc Deslauriers <email address hidden> Mon, 25 Jul 2022 14:22:08 -0400

Source diff to previous version
CVE-2022-24805 A buffer overflow in the handling of the INDEX of NET-SNMP-VACM-MIB can cause an out-of-bounds memory access
CVE-2022-24806 Improper Input Validation when SETing malformed OIDs in master agent and subagent simultaneously
CVE-2022-24807 A malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access
CVE-2022-24808 A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference
CVE-2022-24809 A malformed OID in a GET-NEXT to the nsVacmAccessTable can cause a NULL pointer dereference
CVE-2022-24810 A malformed OID in a SET to the nsVacmAccessTable can cause a NULL pointer dereference

Version: 5.9.1+dfsg-1ubuntu2.1 2022-05-03 20:06:23 UTC

  net-snmp (5.9.1+dfsg-1ubuntu2.1) jammy; urgency=medium

  * d/p/lp1969623-net-snmp-create-v3-user-Fix-the-snmpd.conf-path.patch:
    Set ${datarootdir} value in net-snmp-create-v3-user and fix
    error when creating user. (LP: #1969623)

 -- Sergio Durigan Junior <email address hidden> Thu, 21 Apr 2022 16:14:05 -0400

1969623 Creation of SNMPv3 user broken (Jammy/22.04)



About   -   Send Feedback to @ubuntu_updates