CVE-2022-44793: Null Pointer Dereference
Published Nov 7, 2022
·Updated
handleipv6IpForwarding in agent/mibgroup/ip-mib/ipscalars.c in Net-SNMP 5.4.3 through 5.9.3 has a NULL Pointer Exception bug that can be used by a remote attacker to cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.
Affected Software
18 affected components
Net-SNMP Net-SNMP>=5.4.3<=5.9.3
Debian Debian Linux=10.0
NetApp H300s Firmware
NetApp H300s
NetApp H500s Firmware
NetApp H500s
NetApp H700s Firmware
NetApp H700s
NetApp H410s Firmware
NetApp H410s
All of the following
NetApp H300s Firmware
NetApp H300s
All of the following
NetApp H500s Firmware
NetApp H500s
All of the following
NetApp H700s Firmware
NetApp H700s
All of the following
NetApp H410s Firmware
NetApp H410s
Event History
Nov 7, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-44793?
CVE-2022-44793 is a vulnerability in Net-SNMP versions 5.4.3 through 5.9.3 that allows a remote attacker to cause a crash via a crafted UDP packet, resulting in denial of service.
2
How does CVE-2022-44793 affect Net-SNMP?
CVE-2022-44793 affects Net-SNMP versions 5.4.3 through 5.9.3.
3
How severe is CVE-2022-44793?
CVE-2022-44793 has a severity rating of 6.5 (medium).
4
How can I fix CVE-2022-44793?
To fix CVE-2022-44793, upgrade Net-SNMP to version 5.9.4 or later.
5
Where can I find more information about CVE-2022-44793?
You can find more information about CVE-2022-44793 at the following references: [1] [2] [3].