Back

CVE-2005-4837

snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in master agentx mode, allows remote attackers to cause a denial of service (crash) by causing a particular TCP disconnect, which triggers a free of an incorrect variable, a different vulnerability than CVE-2005-2177.

Published: Dec 31, 2005 Modified: Jun 16, 2026
CWE-16 CWE-189

CVSS Metrics

Affected Products (14)

Vendor Product Version
net-snmp net-snmp 5.0
net-snmp net-snmp 5.0.1
net-snmp net-snmp 5.0.2
net-snmp net-snmp 5.0.3
net-snmp net-snmp 5.0.4_pre2
net-snmp net-snmp 5.0.5
net-snmp net-snmp 5.0.6
net-snmp net-snmp 5.0.7
net-snmp net-snmp 5.0.8
net-snmp net-snmp 5.0.9
net-snmp net-snmp 5.0.10
sourceforge net-snmp *
sourceforge net-snmp *
sourceforge net-snmp *

GitHub Security Advisory GHSA-m3xm-f262-69qm

snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2...

Risk Scores

CVSS Score 10.0 / 10
EPSS Score 9.74%

Top 5% most likely to be exploited

Threat Score 42.9 / 100

Data Sources

NVD EPSS GitHub