HomeNet-SnmpCVE-2018-18066

CVE-2018-18066

HIGH
7.5CVSS
Published: 2018-10-08
Updated: 2025-05-06
AI Analysis

Description

snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an unauthenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.

CVSS Metrics

Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
network
Complexity
low
Privileges
none
User Action
none
Scope
unchanged
Confidentiality
none
Integrity
none
Availability
high
Weaknesses
CWE-476CWE-476

Metadata

Primary Vendor
NET-SNMP
Published
10/8/2018
Last Modified
5/6/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

net-snmp : net-snmpnetapp : cloud_backupnetapp : hyper_converged_infrastructurenetapp : storagegrid_webscalenetapp : data_ontapnetapp : e-series_santricity_os_controllernetapp : solidfire_element_os

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2018-18066 | HIGH Severity | CVEDatabase.com | CVEDatabase.com