CVE-2025-68615
Unknown
Unknown - Not Provided
Buffer Overflow in net-snmp snmptrapd Causes Daemon Crash
Publication date: 2025-12-23
Last updated on: 2026-02-19
Assigner: GitHub, Inc.
Description
Description
net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue has been patched in versions 5.9.5 and 5.10.pre2.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| net-snmp | net-snmp | to 5.9.5 (exc) |
| net-snmp | net-snmp | 5.10 |
| debian | debian_linux | 11.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-119 | The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data. |