A stack buffer overflow vulnerability exists in the way MiniSNMPD version 1.4 handles multiple connections. A specially timed sequence of SNMP connections can trigger a stack overflow, resulting in a denial of service. To trigger this vulnerability, an attacker needs to simply initiate multiple connections to the server.
References
Link | Resource |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0977 | Exploit Third Party Advisory |
https://www.talosintelligence.com/vulnerability_reports/TALOS-2020-0977 | Exploit Third Party Advisory |
Configurations
Information
Published : 2020-02-04 12:15
Updated : 2022-06-07 09:51
NVD link : CVE-2020-6060
Mitre link : CVE-2020-6060
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
minisnmpd_project
- minisnmpd