CVE-2025-68615

Name
CVE-2025-68615
Description
net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue has been patched in versions 5.9.5 and 5.10.pre2.
NVD Severity
high
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
CONFIRM https://github.com/net-snmp/net-snmp/security/advisories/GHSA-4389-rwqf-q9gq
af854a3a-2127-422b-91ae-364da2661108 https://lists.debian.org/debian-lts-announce/2026/01/msg00000.html
af854a3a-2127-422b-91ae-364da2661108 http://www.openwall.com/lists/oss-security/2026/01/09/2

Match rules

CPE URI Source package Min version Max version
net-snmp >= 0 < 5.9.5
net-snmp >= 5.10.pre1 < 5.10.pre2

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
net-snmp edge-main 5.9.4-r2 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp edge-main 5.9.4-r1 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp edge-main 5.9.3-r4 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp edge-main 5.9.3-r3 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp edge-main 5.9.3-r2 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp edge-main 5.9.3-r0 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp 3.23-main 5.9.4-r2 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp 3.22-main 5.9.4-r1 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp 3.22-main 5.9.3-r2 None possibly vulnerable
net-snmp 3.22-main 5.9.3-r0 None possibly vulnerable
net-snmp 3.21-main 5.9.4-r1 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp 3.21-main 5.9.3-r2 None possibly vulnerable
net-snmp 3.21-main 5.9.3-r0 None possibly vulnerable
net-snmp 3.20-main 5.9.4-r0 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp 3.20-main 5.9.3-r2 None possibly vulnerable
net-snmp 3.20-main 5.9.3-r0 None possibly vulnerable
net-snmp 3.19-main 5.9.4-r0 Carlo Landmeter <clandmeter@alpinelinux.org> possibly vulnerable
net-snmp 3.19-main 5.9.3-r2 None possibly vulnerable
net-snmp 3.19-main 5.9.3-r0 None possibly vulnerable