- Issued:
- 2008-05-21
- Updated:
- 2008-05-21
RHBA-2008:0376 - Bug Fix Advisory
Synopsis
net-snmp bug fix update
Type/Severity
Bug Fix Advisory
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
Updated net-snmp packages that fix various bugs are now available.
Description
The Simple Network Management Protocol (SNMP) is a protocol used for
network management. The net-snmp packages include various SNMP tools: an
extensible agent, an SNMP library, tools for requesting or setting
information from SNMP agents, tools for generating and handling SNMP traps,
a version of the netstat command which uses SNMP, and a Tk/Perl MIB browser.
A security flaw has been fixed so that the snmpd daemon no longer crashes
when receiving certain get requests (CVE-2007-5846)
In addition, these updated net-snmp packages provide fixes for the
following bugs:
- The snmpd daemon no longer crashes when reading process information from
the /proc filesystem.
- The snmpd daemon no longer enters an infinite loop when running with a
kernel without the IPv6 kernel module loaded.
- The snmpd daemon no longer crashes when receiving certain SMUX packets.
- The snmptrapd daemon nows passes the correct host name to trap handlers
and to syslog.
- All daemons now use the /var/run/snmp directory for temporary files,
which is more secure and does not produce SELinux alerts.
- The snmpd daemon correctly supports TCP for SNMP communication.
- the 'iquerysecname' and 'agentsecname' snmpd parameters are now read the
snmpd configuration file in the appropriate order.
- when the icmpStatsTable was queried by snmpwalk, the value of the
statistics were different from the values in /proc/net/snmp6.
- on rare occasions, the process counts for various processes would return
an incorrect number.
In addition, various Management Information Bases (MIBs) have been fixed
and updated.
- TCP-MIB has been fixed so that it includes all scalars in the tree walk.
- IP-MIB: a regression in icmpStatsTable has been fixed to conform to RFC 4293.
- IP-MIB: ipSystemStatsTable and ipAddressTable were enhanced to conform to
RFC 4293.
- IP-MIB: ipIfStatsTable and icmpMsgStatsTable were implemented.
- TCP-MIB: the RFC-defined tcpConnectionProcess table column has been added
to tcpConnectionTable.
- UDP-MIB: the RFC-defined udpEndpointProcess table columns has been added
to udpEndpointTable.
- HOST-RESOURCES-MIB: hrDeviceTable has been fixed so that it includes all
known OIDs in the tree walk.
- UCD-SNMP-MIB: dskTable now supports mount points containing spaces in
their paths.
This update also fixes syslog messages produced by snmp under the following
conditions:
- when an interface name exceeds 8 characters in length.
- when an interface does not have an IPv4 address but its alias does have
an IPv4 address.
- when the number of bytes read from or written to a physical disc
overflows 32 bits on certain systems.
- when an interface changes its name.
- when an interface changes its ifIndex.
- when an interface has multiple IPv6 addresses.
Users are advised to upgrade to these updated net-snmp packages, which
resolve these issues.
Solution
Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.
This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/FAQ_58_10188
Affected Products
- Red Hat Enterprise Linux Server 5 x86_64
- Red Hat Enterprise Linux Server 5 ia64
- Red Hat Enterprise Linux Server 5 i386
- Red Hat Enterprise Linux Workstation 5 x86_64
- Red Hat Enterprise Linux Workstation 5 i386
- Red Hat Enterprise Linux Desktop 5 x86_64
- Red Hat Enterprise Linux Desktop 5 i386
- Red Hat Enterprise Linux for IBM z Systems 5 s390x
- Red Hat Enterprise Linux for Power, big endian 5 ppc
- Red Hat Enterprise Linux Server from RHUI 5 x86_64
- Red Hat Enterprise Linux Server from RHUI 5 i386
Fixes
- BZ - 248342 - snmpwalk does not read TCP scalars
- BZ - 251332 - net-snmp-5.3.1-local-addr-v2.patch breaks TCP
- BZ - 270941 - snmptrapd passes traphandler incorrect hostname
- BZ - 338981 - net-snmp iquerysecname and agentsecname not read early enough in config
- BZ - 348681 - snmpwalk of UCD-SNMP-MIB dskEntry causes bad data if "disks" mount point contain spaces
- BZ - 357121 - snmpd filling /var/log/messages with errors
- BZ - 396141 - snmpd spams syslog with _access_interface_entry_save_name and _check_interface_entry_for_updates
- BZ - 401211 - snmptrapd when using traphandlers defaults to /tmp for temp files, breaks selinux rules
- BZ - 419511 - snmpwalk does not return value for all OIDs
- BZ - 433446 - ipv6ScopeZoneTable produces errors to log
CVEs
(none)
References
(none)
Red Hat Enterprise Linux Server 5
SRPM | |
---|---|
net-snmp-5.3.1-24.el5.src.rpm | SHA-256: 4cea09eb36c01a8c5fd27b70a5a287f842f5ad37e43f2ec28f180bfef892b7fe |
x86_64 | |
net-snmp-5.3.1-24.el5.x86_64.rpm | SHA-256: ab51857aa3d368dba0b64cc37c07774e73eaf61847253587d6d18048554f7a40 |
net-snmp-devel-5.3.1-24.el5.i386.rpm | SHA-256: 2fc124259de5e6d6bc0a366e6a1038286b5fb9984e659850a57b12cef243e8e3 |
net-snmp-devel-5.3.1-24.el5.x86_64.rpm | SHA-256: e460b81854aa56a8f3982913ee21d6cdab9321c373aa9118e683f1abc74f9e8f |
net-snmp-libs-5.3.1-24.el5.i386.rpm | SHA-256: a63c73f10ecedb1777a0c096a4b77ce803d4a6cecb5019329e97a0e3ec0844cc |
net-snmp-libs-5.3.1-24.el5.x86_64.rpm | SHA-256: d0acb4e8c7b4f047bde295c8081df16e34657ffc276a8d54aa7771fea828686a |
net-snmp-perl-5.3.1-24.el5.x86_64.rpm | SHA-256: 569c2a1e7a346ac981dc1cbbd57450513b5a41fa7248bfd4822a5ecec2bc70e9 |
net-snmp-utils-5.3.1-24.el5.x86_64.rpm | SHA-256: d7b69ec27de78ae327d703232abe9a6b7e3becf198fcbaaed288f315e3e78c3d |
ia64 | |
net-snmp-5.3.1-24.el5.ia64.rpm | SHA-256: 42f0d8d0b7826c5d2032cbdc5c7dd4bc85f8397d635f526f9d1262f4472faad2 |
net-snmp-devel-5.3.1-24.el5.ia64.rpm | SHA-256: ed1a44893673f3ee3ef8928e633e45241d1ec5de371cc1cf650408b382c3ebc7 |
net-snmp-libs-5.3.1-24.el5.ia64.rpm | SHA-256: 044a48eeac5f3b74a29e2ac9e71058322bb4934a0bd1d55cd3eb1b7e7485066c |
net-snmp-perl-5.3.1-24.el5.ia64.rpm | SHA-256: 81773c4e1216b7f45845d5b9098c784450e84d0c5e3f775ad9f9d8fceabd5889 |
net-snmp-utils-5.3.1-24.el5.ia64.rpm | SHA-256: c2578e849361031ea90f91e6240b78d5a9968d1c7ef5f57c7ec66413dbbfe929 |
i386 | |
net-snmp-5.3.1-24.el5.i386.rpm | SHA-256: 25ee77652104208b8369600738f4517fa356d3df880aaf095535b5916f560125 |
net-snmp-devel-5.3.1-24.el5.i386.rpm | SHA-256: 2fc124259de5e6d6bc0a366e6a1038286b5fb9984e659850a57b12cef243e8e3 |
net-snmp-libs-5.3.1-24.el5.i386.rpm | SHA-256: a63c73f10ecedb1777a0c096a4b77ce803d4a6cecb5019329e97a0e3ec0844cc |
net-snmp-perl-5.3.1-24.el5.i386.rpm | SHA-256: bf3ace69cb97ab745891a490501ebc96b4771a657be4bec18f22887b9b69bb0f |
net-snmp-utils-5.3.1-24.el5.i386.rpm | SHA-256: 8db49ebc8f8a082b4208476b21e85298719ae661fb97e1348fb8956902ecf43a |
Red Hat Enterprise Linux Workstation 5
SRPM | |
---|---|
net-snmp-5.3.1-24.el5.src.rpm | SHA-256: 4cea09eb36c01a8c5fd27b70a5a287f842f5ad37e43f2ec28f180bfef892b7fe |
x86_64 | |
net-snmp-5.3.1-24.el5.x86_64.rpm | SHA-256: ab51857aa3d368dba0b64cc37c07774e73eaf61847253587d6d18048554f7a40 |
net-snmp-devel-5.3.1-24.el5.i386.rpm | SHA-256: 2fc124259de5e6d6bc0a366e6a1038286b5fb9984e659850a57b12cef243e8e3 |
net-snmp-devel-5.3.1-24.el5.x86_64.rpm | SHA-256: e460b81854aa56a8f3982913ee21d6cdab9321c373aa9118e683f1abc74f9e8f |
net-snmp-libs-5.3.1-24.el5.i386.rpm | SHA-256: a63c73f10ecedb1777a0c096a4b77ce803d4a6cecb5019329e97a0e3ec0844cc |
net-snmp-libs-5.3.1-24.el5.x86_64.rpm | SHA-256: d0acb4e8c7b4f047bde295c8081df16e34657ffc276a8d54aa7771fea828686a |
net-snmp-perl-5.3.1-24.el5.x86_64.rpm | SHA-256: 569c2a1e7a346ac981dc1cbbd57450513b5a41fa7248bfd4822a5ecec2bc70e9 |
net-snmp-utils-5.3.1-24.el5.x86_64.rpm | SHA-256: d7b69ec27de78ae327d703232abe9a6b7e3becf198fcbaaed288f315e3e78c3d |
i386 | |
net-snmp-5.3.1-24.el5.i386.rpm | SHA-256: 25ee77652104208b8369600738f4517fa356d3df880aaf095535b5916f560125 |
net-snmp-devel-5.3.1-24.el5.i386.rpm | SHA-256: 2fc124259de5e6d6bc0a366e6a1038286b5fb9984e659850a57b12cef243e8e3 |
net-snmp-libs-5.3.1-24.el5.i386.rpm | SHA-256: a63c73f10ecedb1777a0c096a4b77ce803d4a6cecb5019329e97a0e3ec0844cc |
net-snmp-perl-5.3.1-24.el5.i386.rpm | SHA-256: bf3ace69cb97ab745891a490501ebc96b4771a657be4bec18f22887b9b69bb0f |
net-snmp-utils-5.3.1-24.el5.i386.rpm | SHA-256: 8db49ebc8f8a082b4208476b21e85298719ae661fb97e1348fb8956902ecf43a |
Red Hat Enterprise Linux Desktop 5
SRPM | |
---|---|
net-snmp-5.3.1-24.el5.src.rpm | SHA-256: 4cea09eb36c01a8c5fd27b70a5a287f842f5ad37e43f2ec28f180bfef892b7fe |
x86_64 | |
net-snmp-5.3.1-24.el5.x86_64.rpm | SHA-256: ab51857aa3d368dba0b64cc37c07774e73eaf61847253587d6d18048554f7a40 |
net-snmp-libs-5.3.1-24.el5.i386.rpm | SHA-256: a63c73f10ecedb1777a0c096a4b77ce803d4a6cecb5019329e97a0e3ec0844cc |
net-snmp-libs-5.3.1-24.el5.x86_64.rpm | SHA-256: d0acb4e8c7b4f047bde295c8081df16e34657ffc276a8d54aa7771fea828686a |
net-snmp-perl-5.3.1-24.el5.x86_64.rpm | SHA-256: 569c2a1e7a346ac981dc1cbbd57450513b5a41fa7248bfd4822a5ecec2bc70e9 |
net-snmp-utils-5.3.1-24.el5.x86_64.rpm | SHA-256: d7b69ec27de78ae327d703232abe9a6b7e3becf198fcbaaed288f315e3e78c3d |
i386 | |
net-snmp-5.3.1-24.el5.i386.rpm | SHA-256: 25ee77652104208b8369600738f4517fa356d3df880aaf095535b5916f560125 |
net-snmp-libs-5.3.1-24.el5.i386.rpm | SHA-256: a63c73f10ecedb1777a0c096a4b77ce803d4a6cecb5019329e97a0e3ec0844cc |
net-snmp-perl-5.3.1-24.el5.i386.rpm | SHA-256: bf3ace69cb97ab745891a490501ebc96b4771a657be4bec18f22887b9b69bb0f |
net-snmp-utils-5.3.1-24.el5.i386.rpm | SHA-256: 8db49ebc8f8a082b4208476b21e85298719ae661fb97e1348fb8956902ecf43a |
Red Hat Enterprise Linux for IBM z Systems 5
SRPM | |
---|---|
net-snmp-5.3.1-24.el5.src.rpm | SHA-256: 4cea09eb36c01a8c5fd27b70a5a287f842f5ad37e43f2ec28f180bfef892b7fe |
s390x | |
net-snmp-5.3.1-24.el5.s390x.rpm | SHA-256: 615cb468f5df1120a7d104362dc8027b151cf4bb38a3bc16fb9363456a9aebc1 |
net-snmp-devel-5.3.1-24.el5.s390.rpm | SHA-256: 7377d3ecc19dc49a460a2a343f35f18ed03d673963f5415ffbe0f4688a2095d7 |
net-snmp-devel-5.3.1-24.el5.s390x.rpm | SHA-256: ca4b4fae6ced5dd592f0b9a00662051d28181d3e42a4c545ee068f2f2c239d7f |
net-snmp-libs-5.3.1-24.el5.s390.rpm | SHA-256: 32fc4b24de1cb68192aacfb8b6a1f5318ee00359ac4bfcf26d342f96cec14025 |
net-snmp-libs-5.3.1-24.el5.s390x.rpm | SHA-256: 842e4760cc29a5612c704df9e954411faeb215e2437c55d5d612d3a2b511068b |
net-snmp-perl-5.3.1-24.el5.s390x.rpm | SHA-256: b2a27d51d46408e3abeaed7ae8d5ab37373d89f6ec26fe6c34c79d2ef71ee93e |
net-snmp-utils-5.3.1-24.el5.s390x.rpm | SHA-256: b1718b72e3a2abb7ffb82dcdbe67de20e411a4491d4f0558dc367f8f83512be0 |
Red Hat Enterprise Linux for Power, big endian 5
SRPM | |
---|---|
net-snmp-5.3.1-24.el5.src.rpm | SHA-256: 4cea09eb36c01a8c5fd27b70a5a287f842f5ad37e43f2ec28f180bfef892b7fe |
ppc | |
net-snmp-5.3.1-24.el5.ppc.rpm | SHA-256: 2d8a29a73825207eedc4b52bfad05d692695e3a0ee1dc2722be28cba07e6abb8 |
net-snmp-devel-5.3.1-24.el5.ppc.rpm | SHA-256: bb1d73bf2a249d408f18b2426d1a20e79f4b8f1795050fc06d677c694c222875 |
net-snmp-devel-5.3.1-24.el5.ppc64.rpm | SHA-256: 6dacd42f9d8a2ca0b504c74155e562578862ca92b5afaf1a7915f25bee2bf9f5 |
net-snmp-libs-5.3.1-24.el5.ppc.rpm | SHA-256: 54ac877d1f8ad2fbcb57420e2e12cd328d83d2da7b2347b2486de511f42271b6 |
net-snmp-libs-5.3.1-24.el5.ppc64.rpm | SHA-256: 34a4be93de0044373b4cc85b5006a9e850c41301d2726271141fbdc15f599ceb |
net-snmp-perl-5.3.1-24.el5.ppc.rpm | SHA-256: 55a462742e80023e4989091cd193bfb33e1e1aaf0d6c6b4a3aa6547388138791 |
net-snmp-utils-5.3.1-24.el5.ppc.rpm | SHA-256: 15cf70a7cd4999e3e7be27f3dc7db4fe9b7b78b9dd190196989db0f13c90be5d |
Red Hat Enterprise Linux Server from RHUI 5
SRPM | |
---|---|
net-snmp-5.3.1-24.el5.src.rpm | SHA-256: 4cea09eb36c01a8c5fd27b70a5a287f842f5ad37e43f2ec28f180bfef892b7fe |
x86_64 | |
net-snmp-5.3.1-24.el5.x86_64.rpm | SHA-256: ab51857aa3d368dba0b64cc37c07774e73eaf61847253587d6d18048554f7a40 |
net-snmp-devel-5.3.1-24.el5.i386.rpm | SHA-256: 2fc124259de5e6d6bc0a366e6a1038286b5fb9984e659850a57b12cef243e8e3 |
net-snmp-devel-5.3.1-24.el5.x86_64.rpm | SHA-256: e460b81854aa56a8f3982913ee21d6cdab9321c373aa9118e683f1abc74f9e8f |
net-snmp-libs-5.3.1-24.el5.i386.rpm | SHA-256: a63c73f10ecedb1777a0c096a4b77ce803d4a6cecb5019329e97a0e3ec0844cc |
net-snmp-libs-5.3.1-24.el5.x86_64.rpm | SHA-256: d0acb4e8c7b4f047bde295c8081df16e34657ffc276a8d54aa7771fea828686a |
net-snmp-perl-5.3.1-24.el5.x86_64.rpm | SHA-256: 569c2a1e7a346ac981dc1cbbd57450513b5a41fa7248bfd4822a5ecec2bc70e9 |
net-snmp-utils-5.3.1-24.el5.x86_64.rpm | SHA-256: d7b69ec27de78ae327d703232abe9a6b7e3becf198fcbaaed288f315e3e78c3d |
i386 | |
net-snmp-5.3.1-24.el5.i386.rpm | SHA-256: 25ee77652104208b8369600738f4517fa356d3df880aaf095535b5916f560125 |
net-snmp-devel-5.3.1-24.el5.i386.rpm | SHA-256: 2fc124259de5e6d6bc0a366e6a1038286b5fb9984e659850a57b12cef243e8e3 |
net-snmp-libs-5.3.1-24.el5.i386.rpm | SHA-256: a63c73f10ecedb1777a0c096a4b77ce803d4a6cecb5019329e97a0e3ec0844cc |
net-snmp-perl-5.3.1-24.el5.i386.rpm | SHA-256: bf3ace69cb97ab745891a490501ebc96b4771a657be4bec18f22887b9b69bb0f |
net-snmp-utils-5.3.1-24.el5.i386.rpm | SHA-256: 8db49ebc8f8a082b4208476b21e85298719ae661fb97e1348fb8956902ecf43a |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.