← Vulnerability feed

Vulnerability record · CVE-2005-4837 · published 31 December 2005

CVE-2005-4837: Net-snmp vulnerability

Net Snmp · Net Snmp

snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in master agentx mode, allows remote attackers to cause a denial of service (crash) by causing a particular TCP disconnect, which triggers a free of an incorrect variable, a different vulnerability than CVE-2005-2177.

10.0 CVSS 2.0 High EPSS 9.7% · top 4.6% CWE-16 · CWE-16CWE-189 · CWE-189
10.0CVSS 2.0 base score
9.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
20References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in master agentx mode, allows remote attackers to cause a denial of service (crash) by causing a particular TCP disconnect, which triggers a free of an incorrect variable, a different vulnerability than CVE-2005-2177.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2005-4837 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2005-1740Net-snmp vulnerabilityfixproc in Net-snmp 5.x before 5.2.1-r1 creates temporary files insecurely, which allows local users to modify the contents of those files to execute…EPSS 8.6%9.8CVE-2025-68615Net-snmp memory buffer overflow vulnerabilitynet-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd …EPSS 42%9.8CVE-2018-1000116Net-snmp out-of-bounds write vulnerabilityNET-SNMP version 5.7.2 contains a heap corruption vulnerability in the UDP protocol handler that can result in command execution.EPSS 6.3%8.8CVE-2022-24810Net-snmp null pointer dereference vulnerabilitynet-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with read-write credentials can us…EPSS 1.1%8.8CVE-2022-24805Net-snmp classic buffer overflow vulnerabilitynet-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer overflow in the handling of the …EPSS 1.3%7.8CVE-2020-15861Net-snmp link following vulnerabilityNet-SNMP through 5.7.3 allows Escalation of Privileges because of UNIX symbolic link (symlink) following.EPSS 0.46%7.8CVE-2020-15862Net-snmp improper privilege management vulnerabilityNet-SNMP through 5.8 has Improper Privilege Management because SNMP WRITE access to the EXTEND MIB provides the ability to run arbitrary commands as …EPSS 0.38%7.8CVE-2007-5846Net-snmp vulnerabilityThe SNMP agent (snmp_agent.c) in net-snmp before 5.4.1 allows remote attackers to cause a denial of service (CPU and memory consumption) via a GETBUL…EPSS 29%

Source: NIST National Vulnerability Database (record CVE-2005-4837), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.