![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.122757 |
Category: | Oracle Linux Local Security Checks |
Title: | Oracle: Security Advisory (ELSA-2015-2345) |
Summary: | The remote host is missing an update for the 'net-snmp' package(s) announced via the ELSA-2015-2345 advisory. |
Description: | Summary: The remote host is missing an update for the 'net-snmp' package(s) announced via the ELSA-2015-2345 advisory. Vulnerability Insight: [1:5.7.2-24] - Fixed lmSensorsTable not reporting sensors with duplicate names (#1252053) - Fixed close() overhead of extend commands (#1252048) - Fixed out-of-bounds write in python code (#1252034) [1:5.7.2-23] - Fixed parsing of invalid variables in incoming packets (#1248414) - Fixed HOST-RESOURCES-MIB::hrFSAccess flag when read-only filesystem becomes writable (#1241897) [1:5.7.2-22] - Fixed IP-MIB::ipSystemStatsInOctets and similar counters for IPv4 (#1235697) [1:5.7.2-21] - Fixed crash on reloading 'exec' configuration options (#1228893) - Fixed CVE-2014-3565, snmptrapd died when parsing certain traps (#1209361) - Fixed storageUseNFS functionality in hrStorageTable (#1193006) - Fixed forwarding of traps with RequestID=0 in snmptrapd (#1192511) - Fixed hrStorageTable to contain 31 bits integers (#1192221) - Fixed 'clientaddr' option for UDPv6 client messages (#1190679) - Fixed log level of SMUX messages (#1189393) - Fixed UDP-MIB::udpTable index on big-endian platforms (#1184433) - Fixed client utilities reporting 'read_config_store open failure on /var/lib/net-snmp/snmpapp.conf' (#1151310) - Fixed snmpd crash when failed to parse SMUX message headers (#1140236) - Added 'diskio' option to snmpd.conf, it's possible to monitor only selected devices in diskIOTable (#1092308) Affected Software/OS: 'net-snmp' package(s) on Oracle Linux 7. Solution: Please install the updated package(s). CVSS Score: 5.0 CVSS Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2014-3565 69477 http://www.securityfocus.com/bid/69477 APPLE-SA-2015-10-21-4 http://lists.apple.com/archives/security-announce/2015/Oct/msg00005.html GLSA-201507-17 https://security.gentoo.org/glsa/201507-17 RHSA-2015:1385 http://rhn.redhat.com/errata/RHSA-2015-1385.html USN-2711-1 http://www.ubuntu.com/usn/USN-2711-1 http://sourceforge.net/p/net-snmp/code/ci/7f4a7b891332899cea26e95be0337aae01648742/ http://sourceforge.net/p/net-snmp/official-patches/48/ http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html https://bugzilla.redhat.com/show_bug.cgi?id=1125155 https://support.apple.com/HT205375 openSUSE-SU-2014:1108 http://lists.opensuse.org/opensuse-updates/2014-09/msg00013.html |
Copyright | Copyright (C) 2015 Greenbone AG |
This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |