<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 09:52:12 +0000</lastBuildDate>
    <item>
      <title>ALSA-2024:7260 — Moderate: net-snmp security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2024:7260</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: net-snmp, AlmaLinux:9: net-snmp-agent-libs, AlmaLinux:9: net-snmp-devel, AlmaLinux:9: net-snmp-libs, AlmaLinux:9: net-snmp-perl, AlmaLinux:9: net-snmp-utils, AlmaLinux:9: python3-net-snmp&lt;/p&gt;
&lt;p&gt;The net-snmp packages provide various libraries and tools for the Simple Network Management Protocol (SNMP), including an SNMP library, an extensible agent, tools for requesting or setting information from SNMP agents, tools for generating and handling SNMP traps, a version of the netstat command which uses SNMP, and a Tk/Perl Management Information Base (MIB) browser.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* net-snmp: A buffer overflow in the handling of the INDEX of             NET-SNMP-VACM-MIB can cause an out-of-bounds memory access. (CVE-2022-24805)
* : net-snmp: Improper Input Validation when SETing malformed OIDs in master agent and subagent simultaneously (CVE-2022-24806)
* net-snmp: A malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access (CVE-2022-24807)
* net-snmp: A malformed OID in a GET-NEXT to the nsVacmAccessTable can cause a NULL pointer dereference. (CVE-2022-24809)
* net-snmp: A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference (CVE-2022-24808)
* net-snmp: A malformed OID in a SET to the nsVacmAccessTable can cause a NULL pointer dereference. (CVE-2022-24810)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: net-snmp, AlmaLinux:9: net-snmp-agent-libs, AlmaLinux:9: net-snmp-devel, AlmaLinux:9: net-snmp-libs, AlmaLinux:9: net-snmp-perl, AlmaLinux:9: net-snmp-utils, AlmaLinux:9: python3-net-snmp&lt;/p&gt;
&lt;p&gt;The net-snmp packages provide various libraries and tools for the Simple Network Management Protocol (SNMP), including an SNMP library, an extensible agent, tools for requesting or setting information from SNMP agents, tools for generating and handling SNMP traps, a version of the netstat command which uses SNMP, and a Tk/Perl Management Information Base (MIB) browser.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* net-snmp: A buffer overflow in the handling of the INDEX of             NET-SNMP-VACM-MIB can cause an out-of-bounds memory access. (CVE-2022-24805)
* : net-snmp: Improper Input Validation when SETing malformed OIDs in master agent and subagent simultaneously (CVE-2022-24806)
* net-snmp: A malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access (CVE-2022-24807)
* net-snmp: A malformed OID in a GET-NEXT to the nsVacmAccessTable can cause a NULL pointer dereference. (CVE-2022-24809)
* net-snmp: A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference (CVE-2022-24808)
* net-snmp: A malformed OID in a SET to the nsVacmAccessTable can cause a NULL pointer dereference. (CVE-2022-24810)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2024:7260</guid>
    </item>
    <item>
      <title>bdu:2024-06509</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-06509</link>
      <description>bdu:2024-06509</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-06509</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2022-24805 — CVE-2022-24805 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2022-24805</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2022-24805</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0318 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;VMware&lt;/span&gt;. Elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0318</link>
      <description>certfr-2023-avi-0318</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0318</guid>
    </item>
    <item>
      <title>EUVD-2026-14277</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-14277</link>
      <description>EUVD-2026-14277</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-14277</guid>
    </item>
    <item>
      <title>fkie_cve-2022-24805</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-24805</link>
      <description>&lt;p&gt;net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer overflow in the handling of the `INDEX` of             `NET-SNMP-VACM-MIB` can cause an out-of-bounds memory access. A user with read-only credentials can exploit the issue. Version 5.9.2 contains a patch. Users should use strong SNMPv3 credentials and avoid sharing the credentials. Those who must use SNMPv1 or SNMPv2c should use a complex community string and enhance the protection by restricting access to a given IP address range.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer overflow in the handling of the `INDEX` of             `NET-SNMP-VACM-MIB` can cause an out-of-bounds memory access. A user with read-only credentials can exploit the issue. Version 5.9.2 contains a patch. Users should use strong SNMPv3 credentials and avoid sharing the credentials. Those who must use SNMPv1 or SNMPv2c should use a complex community string and enhance the protection by restricting access to a given IP address range.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-24805</guid>
    </item>
    <item>
      <title>gsd-2022-24805</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-24805</link>
      <description>gsd-2022-24805</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-24805</guid>
    </item>
    <item>
      <title>OESA-2022-1888 — net-snmp security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2022-1888</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: net-snmp, openEuler:20.03-LTS-SP3: net-snmp, openEuler:22.03-LTS: net-snmp&lt;/p&gt;
&lt;p&gt;Net-SNMP is a suite of applications used to implement SNMP v1, SNMP v2c and SNMP v3 using both IPv4 and IPv6. The suite includes:&lt;/p&gt;
&lt;p&gt;+		- An extensible agent for responding to SNMP queries including built-in
+		support for a wide range of MIB information modules
+		- Command-line applications to retrieve and manipulate information from
+		SNMP-capable devices
+		- A daemon application for receiving SNMP notifications
+		- A library for developing new SNMP applications, with C and Perl APIs
+		- A graphical MIB browser.&#13;
&#13;
Security Fix(es):&#13;
&#13;
https://github.com/net-snmp/net-snmp/blob/v5.9.2/CHANGES
CVE-2022-24809 A malformed OID in a GET-NEXT to the nsVacmAccessTable can cause a NULL pointer dereference.(CVE-2022-24809)&#13;
&#13;
CVE-2022-24807 A malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access.
https://github.com/net-snmp/net-snmp/blob/v5.9.2/CHANGES(CVE-2022-24807)&#13;
&#13;
https://github.com/net-snmp/net-snmp/blob/v5.9.2/CHANGES&#13;
&#13;
CVE-2022-24808 A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference(CVE-2022-24808)&#13;
&#13;
+*5.9.2*:
+    security:
+      - These two CVEs can be exploited by a user with read-only credentials:
+          - CVE-2022-24805 A buffer overflow in the handling of the INDEX of
+            NET-SNMP-VACM-MIB can cause an out-of-bounds memory access.
+          - CVE-2022-24809 A malformed OID in a GET-NEXT to the nsVacmAccessTable
+            can cause…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: net-snmp, openEuler:20.03-LTS-SP3: net-snmp, openEuler:22.03-LTS: net-snmp&lt;/p&gt;
&lt;p&gt;Net-SNMP is a suite of applications used to implement SNMP v1, SNMP v2c and SNMP v3 using both IPv4 and IPv6. The suite includes:&lt;/p&gt;
&lt;p&gt;+		- An extensible agent for responding to SNMP queries including built-in
+		support for a wide range of MIB information modules
+		- Command-line applications to retrieve and manipulate information from
+		SNMP-capable devices
+		- A daemon application for receiving SNMP notifications
+		- A library for developing new SNMP applications, with C and Perl APIs
+		- A graphical MIB browser.&#13;
&#13;
Security Fix(es):&#13;
&#13;
https://github.com/net-snmp/net-snmp/blob/v5.9.2/CHANGES
CVE-2022-24809 A malformed OID in a GET-NEXT to the nsVacmAccessTable can cause a NULL pointer dereference.(CVE-2022-24809)&#13;
&#13;
CVE-2022-24807 A malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access.
https://github.com/net-snmp/net-snmp/blob/v5.9.2/CHANGES(CVE-2022-24807)&#13;
&#13;
https://github.com/net-snmp/net-snmp/blob/v5.9.2/CHANGES&#13;
&#13;
CVE-2022-24808 A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference(CVE-2022-24808)&#13;
&#13;
+*5.9.2*:
+    security:
+      - These two CVEs can be exploited by a user with read-only credentials:
+          - CVE-2022-24805 A buffer overflow in the handling of the INDEX of
+            NET-SNMP-VACM-MIB can cause an out-of-bounds memory access.
+          - CVE-2022-24809 A malformed OID in a GET-NEXT to the nsVacmAccessTable
+            can cause…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2022-1888</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:12174-1 — libsnmp40-32bit-5.9.2-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12174-1</link>
      <description>&lt;p&gt;libsnmp40-32bit-5.9.2-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libsnmp40-32bit-5.9.2-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:12174-1</guid>
    </item>
    <item>
      <title>RHSA-2024:7875 — Red Hat Security Advisory: net-snmp security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:7875</link>
      <description>&lt;p&gt;net-snmp: A buffer overflow in the handling of the INDEX of             NET-SNMP-VACM-MIB can cause an out-of-bounds memory access. net-snmp: Improper Input Validation when SETing malformed OIDs in master agent and subagent simultaneously net-snmp: A malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access net-snmp: A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference net-snmp: A malformed OID in a GET-NEXT to the nsVacmAccessTable can cause a NULL pointer dereference. net-snmp: A malformed OID in a SET to the nsVacmAccessTable can cause a NULL pointer dereference.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;net-snmp: A buffer overflow in the handling of the INDEX of             NET-SNMP-VACM-MIB can cause an out-of-bounds memory access. net-snmp: Improper Input Validation when SETing malformed OIDs in master agent and subagent simultaneously net-snmp: A malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access net-snmp: A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference net-snmp: A malformed OID in a GET-NEXT to the nsVacmAccessTable can cause a NULL pointer dereference. net-snmp: A malformed OID in a SET to the nsVacmAccessTable can cause a NULL pointer dereference.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:7875</guid>
    </item>
    <item>
      <title>SUSE-RU-2024:0029-1 — Recommended update for net-snmp</title>
      <link>https://cve.radiocsirt.org/vuln/suse-ru-2024:0029-1</link>
      <description>&lt;p&gt;Recommended update for net-snmp&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Recommended update for net-snmp&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-ru-2024:0029-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-24805</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-24805</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: net-snmp, Ubuntu:Pro:16.04:LTS: net-snmp, Ubuntu:18.04:LTS: net-snmp, Ubuntu:20.04:LTS: net-snmp, Ubuntu:22.04:LTS: net-snmp&lt;/p&gt;
&lt;p&gt;net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer overflow in the handling of the `INDEX` of             `NET-SNMP-VACM-MIB` can cause an out-of-bounds memory access. A user with read-only credentials can exploit the issue. Version 5.9.2 contains a patch. Users should use strong SNMPv3 credentials and avoid sharing the credentials. Those who must use SNMPv1 or SNMPv2c should use a complex community string and enhance the protection by restricting access to a given IP address range.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: net-snmp, Ubuntu:Pro:16.04:LTS: net-snmp, Ubuntu:18.04:LTS: net-snmp, Ubuntu:20.04:LTS: net-snmp, Ubuntu:22.04:LTS: net-snmp&lt;/p&gt;
&lt;p&gt;net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer overflow in the handling of the `INDEX` of             `NET-SNMP-VACM-MIB` can cause an out-of-bounds memory access. A user with read-only credentials can exploit the issue. Version 5.9.2 contains a patch. Users should use strong SNMPv3 credentials and avoid sharing the credentials. Those who must use SNMPv1 or SNMPv2c should use a complex community string and enhance the protection by restricting access to a given IP address range.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-24805</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1022 — Juniper Patchday April 2026: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1022</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Juniper Apstra, Junos OS, Junos OS Evolved und Junos Space ausnutzen, um erweiterte Berechtigungen – sogar Root-Rechte – zu erlangen, beliebigen Code auszuführen – auch mit erweiterten Berechtigungen –, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Cross-Site-Scripting-Angriffe durchzuführen oder Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Juniper Apstra, Junos OS, Junos OS Evolved und Junos Space ausnutzen, um erweiterte Berechtigungen – sogar Root-Rechte – zu erlangen, beliebigen Code auszuführen – auch mit erweiterten Berechtigungen –, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Cross-Site-Scripting-Angriffe durchzuführen oder Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1022</guid>
    </item>
  </channel>
</rss>
