Bug 971041
Summary: | snmptrapd crash "buffer overflow detected" at fortify_fail.c | ||
---|---|---|---|
Product: | Red Hat Enterprise Linux 6 | Reporter: | Jan Kurik <jkurik> |
Component: | net-snmp | Assignee: | Jan Safranek <jsafrane> |
Status: | CLOSED ERRATA | QA Contact: | Dalibor Pospíšil <dapospis> |
Severity: | high | Docs Contact: | |
Priority: | urgent | ||
Version: | 6.4 | CC: | dapospis, jsafrane, ksrot, mkolaja, mschuppe, pm-eus |
Target Milestone: | rc | Keywords: | ZStream |
Target Release: | --- | ||
Hardware: | x86_64 | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | net-snmp-5.5-44.el6_4.2 | Doc Type: | Bug Fix |
Doc Text: |
Cause:
Net-SNMP did not check that incoming SNMP messages are encoded properly and may have read past the receiving buffer size when parsing a message with invalid size of integer filed in the message.
Consequence:
snmptrapd, the SNMP trap processing daemon, crashed on incoming malformed message.
Fix:
We enhanced the checks of incoming messages.
Result:
snmptrapd no longer crashes when parsing incoming message with invalid integer sizes.
|
Story Points: | --- |
Clone Of: | Environment: | ||
Last Closed: | 2013-06-25 14:29:43 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 953926 | ||
Bug Blocks: |
Description
Jan Kurik
2013-06-05 14:10:37 UTC
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. http://rhn.redhat.com/errata/RHBA-2013-0978.html |