Bug 1908718 - [Patch] SIGSEGV: crash when certificate contains extension longer than 512 bytes
Summary: [Patch] SIGSEGV: crash when certificate contains extension longer than 512 bytes
Alias: None
Product: Red Hat Enterprise Linux 8
Classification: Red Hat
Component: net-snmp
Version: 8.5
Hardware: Unspecified
OS: Unspecified
Target Milestone: rc
: 8.0
Assignee: Josef Ridky
QA Contact: Evgeny Fedin
Depends On:
TreeView+ depends on / blocked
Reported: 2020-12-17 12:22 UTC by Graham Leggett
Modified: 2021-11-10 09:17 UTC (History)
0 users

Fixed In Version: net-snmp-5.8-21.el8
Doc Type: No Doc Update
Doc Text:
Clone Of:
Last Closed: 2021-11-09 19:48:29 UTC
Type: Bug
Target Upstream Version:

Attachments (Terms of Use)

System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHEA-2021:4439 0 None None None 2021-11-09 19:48:35 UTC

Description Graham Leggett 2020-12-17 12:22:54 UTC
Description of problem:

When net-snmp is given a certificate with an extension that is longer than 512 characters, snmp crashes on startup.

Version-Release number of selected component (if applicable):


How reproducible:


Steps to Reproduce:
1. Configure net-snmp using an EV certificate from a CA (in this case Globalsign).
2. Start snmpd.

Actual results:

[root@localhost tls]# systemctl status snmpd.service
● snmpd.service - Simple Network Management Protocol (SNMP) Daemon.
   Loaded: loaded (/usr/lib/systemd/system/snmpd.service; disabled; vendor preset: disabled)
   Active: failed (Result: core-dump) since Wed 2020-12-16 21:21:59 SAST; 16min ago
  Process: 53269 ExecStart=/usr/sbin/snmpd $OPTIONS -f (code=dumped, signal=SEGV)
 Main PID: 53269 (code=dumped, signal=SEGV)

Dec 16 21:21:57 localhost systemd[1]: Starting Simple Network Management Protocol (SNMP) Daemon....
Dec 16 21:21:58 localhost snmpd[53269]: refusing to read world readable or writable key /etc/snmp/tls/certs/snmpd.crt
Dec 16 21:21:58 localhost snmpd[53269]: not enough space or error in allocation for extenstion
Dec 16 21:21:59 localhost systemd[1]: snmpd.service: Main process exited, code=dumped, status=11/SEGV
Dec 16 21:21:59 localhost systemd[1]: snmpd.service: Failed with result 'core-dump'.
Dec 16 21:21:59 localhost systemd[1]: Failed to start Simple Network Management Protocol (SNMP) Daemon..

Expected results:

Deamon starts without a crash.

Additional info:

Fix available here:


Comment 1 Graham Leggett 2020-12-17 12:29:35 UTC
Backport to v5.9:


Comment 3 Josef Ridky 2021-01-28 13:25:33 UTC
Moving to RHEL-8.5

Comment 5 Graham Leggett 2021-05-24 08:39:14 UTC
Quick ping on this one - fix has been released here:


Comment 12 errata-xmlrpc 2021-11-09 19:48:29 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (net-snmp bug fix and enhancement update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.


Note You need to log in before you can comment on or make changes to this bug.