xfocus logo xfocus title
首页 焦点原创 安全文摘 安全工具 安全漏洞 焦点项目 焦点论坛 关于我们
English Version

多种系统平台SNMP请求处理存在漏洞


发布时间:2002-02-18
更新时间:2002-02-18
严重程度:
威胁程度:远程管理员权限
错误类型:设计错误
利用方式:服务器模式

BUGTRAQ ID:4089

受影响系统
3com Dual Speed Hub
3com PS Hub 40
3com PS Hub 50
3com Switch 1100
3com Switch 3300
3com Switch 4400
3com Switch 4900
3com WebCache 1000
3com WebCache 3000
AdventNet Agent Toolkit Java/JMX Edition
AdventNet Agent Toolkit - C Edition
AdventNet CLI API
AdventNet Configuration Management Toolkit
AdventNet Fault Management Toolkit
AdventNet Management Builder
AdventNet Mediation Server
AdventNet SNMP API
AdventNet SNMP Utilities
AdventNet Web NMS
AdventNet Web NMS MSP Edition
CacheFlow CacheOS 3.1
CacheFlow CacheOS 4.0
Caldera OpenServer 5.0
Caldera OpenUnix 8.0
Caldera UnixWare 7
Caldera UnixWare 7.1.0
Caldera UnixWare 7.1.1
Computer Associates Unicenter
Comtek Services NMServer 3.4
   - Compaq OpenVMS 6.2
   - Compaq OpenVMS 6.2 Alpha
   - Compaq OpenVMS 6.2 VAX
   - Compaq OpenVMS 7.1 VAX
   - Compaq OpenVMS 7.1-2 Alpha
   - Compaq OpenVMS 7.1Alpha
   - Compaq OpenVMS 7.2 VAX
   - Compaq OpenVMS 7.2-1H1 Alpha
   - Compaq OpenVMS 7.2-2 Alpha
   - Compaq OpenVMS 7.3 Alpha
   - Compaq OpenVMS 7.3 VAX
HP EMS A.03.20
HP EMS A.03.10
HP EMS A.03.00
   + HP HP-UX 10.0
   + HP HP-UX 10.01
   + HP HP-UX 10.8
   + HP HP-UX 10.9
   + HP HP-UX 10.10
   + HP HP-UX 10.16
   + HP HP-UX 10.20
   + HP HP-UX 10.26
   + HP HP-UX 10.30
   + HP HP-UX 10.34
   + HP HP-UX 11.0
   + HP HP-UX (VVOS) 10.24
HP HP-UX 10.0
HP HP-UX 10.10
HP HP-UX 10.20
HP HP-UX 11.0
HP HP-UX 11.11
HP HP-UX 11.20
HP HP-UX (VVOS) 10.24
HP HP-UX (VVOS) 11.04
HP JetDirect x.20.00
HP JetDirect x.08.00
HP MC/ServiceGuard
HP MPE/iX 4.0
HP MPE/iX 4.5
HP MPE/iX 5.0
HP MPE/iX 5.5
HP MPE/iX 6.0
HP MPE/iX 6.5
HP OpenView Emanate SNMP Agent 14.2 Solaris 2.X
HP OpenView Emanate SNMP Agent 14.2 HP-UX 11.X
HP OpenView Emanate SNMP Agent 14.2 HP-UX 10.20
HP OpenView Network Node Manager 4.11 Solaris
   - Sun Solaris 2.4
   - Sun Solaris 2.5
   - Sun Solaris 2.6
   - Sun Solaris 7.0
   - Sun Solaris 8.0
HP OpenView Network Node Manager 4.11 HP-UX
   - HP HP-UX 10.0
   - HP HP-UX 10.01
   - HP HP-UX 10.1
   - HP HP-UX 10.8
   - HP HP-UX 10.9
   - HP HP-UX 10.10
   - HP HP-UX 10.16
   - HP HP-UX 10.20
   - HP HP-UX 10.30
   - HP HP-UX 10.34
   - HP HP-UX (VVOS) 10.24
HP OpenView Network Node Manager 5.01 Solaris
   - Sun Solaris 2.4
   - Sun Solaris 2.5
   - Sun Solaris 2.6
   - Sun Solaris 7.0
   - Sun Solaris 8.0
HP OpenView Network Node Manager 5.01 HP-UX
   - HP HP-UX 10.0
   - HP HP-UX 10.01
   - HP HP-UX 10.1
   - HP HP-UX 10.8
   - HP HP-UX 10.9
   - HP HP-UX 10.10
   - HP HP-UX 10.16
   - HP HP-UX 10.20
   - HP HP-UX 10.30
   - HP HP-UX 10.34
   - HP HP-UX (VVOS) 10.24
HP OpenView Network Node Manager 5.01
   - HP HP-UX 10.20
   - HP HP-UX 11.0
   - Sun Solaris 2.6
   - Sun Solaris 7.0
   - Sun Solaris 8.0
HP OpenView Network Node Manager 6.1 Solaris
   - Sun Solaris 2.4
   - Sun Solaris 2.5
   - Sun Solaris 2.6
   - Sun Solaris 7.0
   - Sun Solaris 8.0
HP OpenView Network Node Manager 6.1 HP-UX 11.X
   - HP HP-UX 11.0
   - HP HP-UX 11.04
HP OpenView Network Node Manager 6.1 HP-UX 10.X
   - HP HP-UX 10.0
   - HP HP-UX 10.01
   - HP HP-UX 10.1
   - HP HP-UX 10.8
   - HP HP-UX 10.9
   - HP HP-UX 10.10
   - HP HP-UX 10.16
   - HP HP-UX 10.20
   - HP HP-UX 10.30
   - HP HP-UX 10.34
   - HP HP-UX (VVOS) 10.24
HP OpenView Network Node Manager 6.1
   - HP HP-UX 10.20
   - HP HP-UX 11.0
   - Microsoft Windows 2000 Advanced Server
   - Microsoft Windows 2000 Advanced Server SP1
   - Microsoft Windows 2000 Advanced Server SP2
   - Microsoft Windows 2000 Datacenter Server SP1
   - Microsoft Windows 2000 Datacenter Server SP2
   - Microsoft Windows 2000 Professional
   - Microsoft Windows 2000 Professional SP1
   - Microsoft Windows 2000 Professional SP2
   - Microsoft Windows 2000 Server
   - Microsoft Windows 2000 Server SP1
   - Microsoft Windows 2000 Server SP2
   - Microsoft Windows 2000 Workstation
   - Microsoft Windows 2000 Workstation SP1
   - Microsoft Windows 2000 Workstation SP2
   - Microsoft Windows 2000 Workstation SP3
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 4.0SP1
   - Microsoft Windows NT 4.0SP2
   - Microsoft Windows NT 4.0SP3
   - Microsoft Windows NT 4.0SP4
   - Microsoft Windows NT 4.0SP5
   - Microsoft Windows NT 4.0SP6
   - Microsoft Windows NT 4.0SP6a
   - Sun Solaris 2.6
   - Sun Solaris 7.0
   - Sun Solaris 8.0
HP OpenView Network Node Manager 6.2 Solaris
   - Sun Solaris 2.5.1
   - Sun Solaris 2.6
   - Sun Solaris 7.0
   - Sun Solaris 8.0
HP OpenView Network Node Manager 6.2 HP-UX 11.X
   - HP HP-UX 11.0
   - HP HP-UX 11.11
HP OpenView Network Node Manager 6.2 HP-UX 10.X
   - HP HP-UX 10.20
HP OpenView Network Node Manager 6.2
HP Procurve Switch 2512
HP Procurve Switch 2524
HP Procurve Switch 2525
HP Procurve Switch 4108GL
HP Procurve Switch 4108GL-bundle
Innerdive Solutions Router IP Console 3.3.0.406
Juniper Networks JUNOS 5.0
Juniper Networks JUNOS 5.1
Lantronix LRS
Lotus Domino SNMP Agents 5.0.1Solaris x86
   + Lotus Domino 5.0
   + Lotus Domino 5.0.1
   + Lotus Domino 5.0.2
   + Lotus Domino 5.0.3
   + Lotus Domino 5.0.4
   + Lotus Domino 5.0.5
   + Lotus Domino 5.0.6
   + Lotus Domino 5.0.7
   + Lotus Domino 5.0.7a
   + Lotus Domino 5.0.8
   + Lotus Domino 5.0.9
   + Lotus Domino 5.0.9a
Lotus Domino SNMP Agents 5.0.1Solaris SPARC
   + Lotus Domino 5.0
   + Lotus Domino 5.0.1
   + Lotus Domino 5.0.2
   + Lotus Domino 5.0.3
   + Lotus Domino 5.0.4
   + Lotus Domino 5.0.5
   + Lotus Domino 5.0.6
   + Lotus Domino 5.0.7
   + Lotus Domino 5.0.7a
   + Lotus Domino 5.0.8
   + Lotus Domino 5.0.9
   + Lotus Domino 5.0.9a
Lotus Domino SNMP Agents 5.0.1HP-UX
   + Lotus Domino 5.0
   + Lotus Domino 5.0.1
   + Lotus Domino 5.0.2
   + Lotus Domino 5.0.3
   + Lotus Domino 5.0.4
   + Lotus Domino 5.0.5
   + Lotus Domino 5.0.6
   + Lotus Domino 5.0.7
   + Lotus Domino 5.0.7a
   + Lotus Domino 5.0.8
   + Lotus Domino 5.0.9
   + Lotus Domino 5.0.9a
Microsoft Windows 2000 Advanced Server SP2
Microsoft Windows 2000 Advanced Server SP1
Microsoft Windows 2000 Advanced Server
Microsoft Windows 2000 Datacenter Server SP2
Microsoft Windows 2000 Datacenter Server SP1
Microsoft Windows 2000 Datacenter Server
Microsoft Windows 2000 Professional SP2
Microsoft Windows 2000 Professional SP1
Microsoft Windows 2000 Professional
Microsoft Windows 2000 Server SP2
Microsoft Windows 2000 Server SP1
Microsoft Windows 2000 Server
Microsoft Windows 2000 Terminal Services SP2
Microsoft Windows 2000 Terminal Services SP1
Microsoft Windows 2000 Terminal Services
Microsoft Windows 95
Microsoft Windows 98
Microsoft Windows 98SE
Microsoft Windows NT Enterprise Server 4.0SP6a
Microsoft Windows NT Enterprise Server 4.0SP6
Microsoft Windows NT Enterprise Server 4.0SP5
Microsoft Windows NT Enterprise Server 4.0SP4
Microsoft Windows NT Enterprise Server 4.0SP3
Microsoft Windows NT Enterprise Server 4.0SP2
Microsoft Windows NT Enterprise Server 4.0SP1
Microsoft Windows NT Enterprise Server 4.0
Microsoft Windows NT Server 4.0SP6a
Microsoft Windows NT Server 4.0SP6
Microsoft Windows NT Server 4.0SP5
Microsoft Windows NT Server 4.0SP4
Microsoft Windows NT Server 4.0SP3
Microsoft Windows NT Server 4.0SP2
Microsoft Windows NT Server 4.0SP1
Microsoft Windows NT Server 4.0
Microsoft Windows NT Terminal Server 4.0SP6a
Microsoft Windows NT Terminal Server 4.0SP6
Microsoft Windows NT Terminal Server 4.0SP5
Microsoft Windows NT Terminal Server 4.0SP4
Microsoft Windows NT Terminal Server 4.0SP3
Microsoft Windows NT Terminal Server 4.0SP2
Microsoft Windows NT Terminal Server 4.0SP1
Microsoft Windows NT Terminal Server 4.0
Microsoft Windows NT Workstation 4.0SP6a
Microsoft Windows NT Workstation 4.0SP6
Microsoft Windows NT Workstation 4.0SP5
Microsoft Windows NT Workstation 4.0SP4
Microsoft Windows NT Workstation 4.0SP3
Microsoft Windows NT Workstation 4.0SP2
Microsoft Windows NT Workstation 4.0SP1
Microsoft Windows NT Workstation 4.0
Microsoft Windows XP Home
Microsoft Windows XP Professional
Net-SNMP ucd-snmp 4.1.1
   + Debian Linux 2.2
Net-SNMP ucd-snmp 4.2.1
   + RedHat Linux 6.2 alpha
   + RedHat Linux 6.2 i386
   + RedHat Linux 6.2 sparc
   + RedHat Linux 7.0 alpha
   + RedHat Linux 7.0 i386
   + RedHat Linux 7.1 alpha
   + RedHat Linux 7.1 i386
   + RedHat Linux 7.1 ia64
   + RedHat Linux 7.2 i386
   + RedHat Linux 7.2 ia64
Nokia IPSO 3.1.3
   + Check Point Software Firewall-1 4.1
   + Check Point Software Firewall-1 4.1SP1
   + Check Point Software Firewall-1 4.1SP2
   + Check Point Software Firewall-1 4.1SP3
   + Check Point Software Firewall-1 4.1SP4
   + Check Point Software Firewall-1 4.1SP5
   + Check Point Software VPN-1 4.1
   + Check Point Software VPN-1 4.1SP1
   + Check Point Software VPN-1 4.1SP2
   + Check Point Software VPN-1 4.1SP3
   + Check Point Software VPN-1 4.1SP4
Nokia IPSO 3.3
   + Check Point Software Firewall-1 4.1
   + Check Point Software VPN-1 4.1
Nokia IPSO 3.3.1
   + Check Point Software Firewall-1 4.1
   + Check Point Software Firewall-1 4.1SP1
   + Check Point Software Firewall-1 4.1SP2
   + Check Point Software Firewall-1 4.1SP3
   + Check Point Software Firewall-1 4.1SP4
   + Check Point Software Firewall-1 4.1SP5
   + Check Point Software VPN-1 4.1
   + Check Point Software VPN-1 4.1SP1
   + Check Point Software VPN-1 4.1SP2
   + Check Point Software VPN-1 4.1SP3
   + Check Point Software VPN-1 4.1SP4
Nokia IPSO 3.4
   + Check Point Software Firewall-1 4.1
   + Check Point Software Firewall-1 4.1SP1
   + Check Point Software Firewall-1 4.1SP2
   + Check Point Software Firewall-1 4.1SP3
   + Check Point Software Firewall-1 4.1SP4
   + Check Point Software Firewall-1 4.1SP5
   + Check Point Software VPN-1 4.1
   + Check Point Software VPN-1 4.1SP1
   + Check Point Software VPN-1 4.1SP2
   + Check Point Software VPN-1 4.1SP3
   + Check Point Software VPN-1 4.1SP4
Nokia IPSO 3.4.1
   + Check Point Software Firewall-1 4.1
   + Check Point Software Firewall-1 4.1SP1
   + Check Point Software Firewall-1 4.1SP2
   + Check Point Software Firewall-1 4.1SP3
   + Check Point Software Firewall-1 4.1SP4
   + Check Point Software Firewall-1 4.1SP5
   + Check Point Software VPN-1 4.1
   + Check Point Software VPN-1 4.1SP1
   + Check Point Software VPN-1 4.1SP2
   + Check Point Software VPN-1 4.1SP3
   + Check Point Software VPN-1 4.1SP4
Novell Netware 4.0
Novell Netware 5.0
Novell Netware 5.1
Novell Netware 6.0
Process Software Multinet 4.4
Process Software TCPWare 5.5
RedBack Networks AOS
SNMP Research DR-Web Manager 15.3
SNMP Research Enterpol 15.3
SNMP Research Mid-Level Manager 15.3
详细描述
SNMP 请求是从管理者把信息发送到代理系统,它们一般轮询代理当前性能或者配置
信息,请求管理信息库(MIB)中的下一个SNMP对象或者修改代理中的配置设置。

在SNMP实现中存在多个漏洞,主要存在于解释和解码SNMP请求信息中。

这些漏洞可以造成拒绝服务攻击者或者破坏目标系统。

测试代码
尚无

解决方案
补丁信息如下:


Multiple Vendor SNMP Request Handling Vulnerabilities


Nokia fixes for affected versions are available for download directly from Nokia.

Microsoft is currently working on a patch to resolve this issue. Until a patch can be installed, it is suggested that the SNMP service be disabled if it is running.

Novell will address this issue in NetWare 6 Support Pack 1 and NetWare 5.1 Support Pack 6.

Multinet and TCPWare users should contact Process Software directly.

AdventNet will release a service pack for all users of their products around February 20, 2002.

Comtek products will be fixed with version 3.5 to be released some time in February 2002.

Lantronix will address this issue in LRS firmware version B1.3/611(020123).

Fixes are available for a number of systems:



3com PS Hub 40 :

3com Upgrade psh02_16.exe
ftp://ftp.3com.com/pub/superstack-ii/superstack-ii-ps-hub-40/psh02_16.exe

3com PS Hub 50 :

3com Upgrade psf02_16.exe
ftp://ftp.3com.com/pub/superstack-ii/superstack-ii-ps-hub-50/psf02_16.exe

3com Dual Speed Hub :

3com Upgrade dsh02_16.exe
ftp://ftp.3com.com/pub/superstack-ii/superstack-ii-hub-500/dsh02_16.exe

3com Switch 1100 :

3com Upgrade s2s02_68.exe
ftp://ftp.3com.com/pub/superstack-ii/superstack-ii-1100/s2s02_68.exe

3com Switch 4400 :

3com Upgrade s3m02_02.exe
ftp://ftp.3com.com/pub/superstack_3/switch_4400/s3m02_02.exe

3com Switch 4900 :

3com Upgrade s3g02_04.exe
http://www.3com.com/en_US/layer3/register.html

3com Switch 3300 :

3com Upgrade s2s02_68.exe
ftp://ftp.3com.com/pub/superstack-ii/superstack-ii-1100/s2s02_68.exe

3com WebCache 1000 :

3com Upgrade s3b_02_00.bin
ftp://ftp.3com.com/pub/webcache/agents/s3b_02_00.bin

3com WebCache 3000 :

3com Upgrade s3b_02_00.bin
ftp://ftp.3com.com/pub/webcache/agents/s3b_02_00.bin

AdventNet Web NMS :
AdventNet Web NMS MSP Edition :
AdventNet Management Builder :
AdventNet SNMP API :
AdventNet CLI API :
AdventNet Agent Toolkit Java/JMX Edition :
AdventNet Agent Toolkit - C Edition :
AdventNet SNMP Utilities :
AdventNet Mediation Server :
AdventNet Configuration Management Toolkit :
AdventNet Fault Management Toolkit :
CacheFlow CacheOS 3.1:
CacheFlow CacheOS 4.0:
Caldera UnixWare 7:
Caldera OpenServer 5.0:
Caldera UnixWare 7.1.0:

Caldera Patch erg711937c.Z
ftp://stage.caldera.com/pub/security/openunix/CSSA-2002-SCO.4/erg711937c.Z

Caldera UnixWare 7.1.1:

Caldera Patch erg711937b.Z
ftp://stage.caldera.com/pub/security/openunix/CSSA-2002-SCO.4/erg711937b.Z

Caldera OpenUnix 8.0:

Caldera Patch erg711937.Z
ftp://stage.caldera.com/pub/security/openunix/CSSA-2002-SCO.4/erg711937.Z

Computer Associates Unicenter :
Comtek Services NMServer 3.4:
HP JetDirect x.20.00:

HP Upgrade X.21.00

JetDirect firmware version X.21.00 is not vulnerable. JetDirect Product Numbers that can be freely upgraded to X.08.32 or X.21.00 or higher firmware: EIO (Peripherals Laserjet 4000, 5000, 8000, ...) J3110A 10T J3111A 10T/10B2/LocalTalk J3112A Token Ring (discontinued) J3113A 10/100 (discontinued) J4169A 10/100 J4167A Token Ring MIO (Peripherals LaserJet 4, 4si, 5si, etc...) J2550A/B 10T (discontinued) J2552A/B 10T/10Base2/LocalTalk (discontinued) J2555A/B Token Ring (discontinued) J4100A 10/100 J4105A Token Ring J4106A 10T External Print Servers J2591A EX+ (discontinued) J2593A EX+3 10T/10B2 (discontinued) J2594A EX+3 Token Ring (discontinued) J3263A 300X 10/100 J3264A 500X Token Ring J3265A 500X 10/100

HP JetDirect x.08.00:

HP Upgrade X.08.32

Jetdirect firmware version X.08.32 is not vulnerable. JetDirect Product Numbers that can be freely upgraded to X.08.32 or X.21.00 or higher firmware: EIO (Peripherals Laserjet 4000, 5000, 8000, ..) J3110A 10T J3111A 10T/10B2/LocalTalk J3112A Token Ring (discontinued) J3113A 10/100 (discontinued) J4169A 10/100 J4167A Token Ring MIO (Peripherals LaserJet 4, 4si, 5si, etc...) J2550A/B 10T (discontinued) J2552A/B 10T/10Base2/LocalTalk (discontinued) J2555A/B Token Ring (discontinued) J4100A 10/100 J4105A Token Ring J4106A 10T External Print Servers J2591A EX+ (discontinued) J2593A EX+3 10T/10B2 (discontinued) J2594A EX+3 Token Ring (discontinued) J3263A 300X 10/100 J3264A 500X Token Ring J3265A 500X 10/100

HP EMS A.03.20:
HP EMS A.03.10:
HP EMS A.03.00:
HP MC/ServiceGuard :
HP Procurve Switch 2525 :
HP Procurve Switch 2524 :

HP Upgrade F.04.08
http://www.hp.com/rnd/software/switches.htm
Fixed version of firmware for HP Procurve Switch 2524 (J4813A) and Procurve Switch 2512 (J4812A).

HP Procurve Switch 2512 :

HP Upgrade F.04.08
http://www.hp.com/rnd/software/switches.htm
Fixed version of firmware for HP Procurve Switch 2524 (J4813A) and Procurve Switch 2512 (J4812A).

HP Procurve Switch 4108GL :

HP Upgrade G.04.05
http://www.hp.com/rnd/software/switches.htm
Fixed version of firmware for HP Procurve Switch 4108GL (J4865A) and Procurve Switch 4108GL-bundle (J4861A).

HP Procurve Switch 4108GL-bundle :

HP Upgrade G.04.05
http://www.hp.com/rnd/software/switches.htm
Fixed version of firmware for HP Procurve Switch 4108GL (J4865A) and Procurve Switch 4108GL-bundle (J4861A).

HP MPE/iX 4.0:
HP OpenView Network Node Manager 4.11 Solaris:
HP OpenView Network Node Manager 4.11 HP-UX:
HP MPE/iX 4.5:
HP OpenView Network Node Manager 5.01 Solaris:
HP OpenView Network Node Manager 5.01 HP-UX:
HP OpenView Network Node Manager 5.01:
HP MPE/iX 5.0:
HP MPE/iX 5.5:
HP MPE/iX 6.0:
HP OpenView Network Node Manager 6.1 Solaris:
HP OpenView Network Node Manager 6.1 HP-UX 11.X:
HP OpenView Network Node Manager 6.1 HP-UX 10.X:
HP OpenView Network Node Manager 6.1:
HP OpenView Network Node Manager 6.2 Solaris:
HP OpenView Network Node Manager 6.2 HP-UX 11.X:
HP OpenView Network Node Manager 6.2 HP-UX 10.X:
HP OpenView Network Node Manager 6.2:
HP MPE/iX 6.5:
HP HP-UX 10.0:
HP HP-UX 10.10:
HP HP-UX 10.20:
HP HP-UX (VVOS) 10.24:
HP HP-UX (VVOS) 11.04:
HP HP-UX 11.0:
HP HP-UX 11.11:
HP HP-UX 11.20:
HP OpenView Emanate SNMP Agent 14.2 Solaris 2.X:

HP Patch PSOV_03087


HP OpenView Emanate SNMP Agent 14.2 HP-UX 11.X:

HP Patch PHSS_26138


HP OpenView Emanate SNMP Agent 14.2 HP-UX 10.20:

HP Patch PHSS_26137


Innerdive Solutions Router IP Console 3.3.0.406:

Innerdive Solutions Upgrade Router IP Console 3.3.0.407

Router IP Console 3.3.0.407 is available directly from Innerdive Solutions.

Juniper Networks JUNOS 5.0:

Juniper Networks Upgrade JUNOS 5.2

JUNOS 5.2 is available directly from Juniper Networks.

Juniper Networks JUNOS 5.1:

Juniper Networks Upgrade JUNOS 5.2

JUNOS 5.2 is available directly from Juniper Networks.

Lantronix LRS :
Lotus Domino SNMP Agents 5.0.1Solaris x86:

Lotus Patch SNMP Agent 5.0.1a Solaris x86
http://www-1.ibm.com/support/manager.wss?rt=4&org=sims&doc=A0199DEE50F6BEB085256B490083292E&aid=3

Lotus Domino SNMP Agents 5.0.1Solaris SPARC:

Lotus Patch SNMP Agent 5.0.1a Solaris SPARC
http://www-1.ibm.com/support/manager.wss?rt=4&org=sims&doc=ABCB071F81A83A5E85256B490082FAA4&aid=3

Lotus Domino SNMP Agents 5.0.1HP-UX:

Lotus Patch SNMP Agent 5.0.1a HP-UX
http://www-1.ibm.com/support/manager.wss?rt=4&org=sims&doc=202C7FF4693DB56585256B490080C619&aid=3

Microsoft Windows 2000 Server SP2:

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Datacenter Server SP2:

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Professional SP2:

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Advanced Server SP2:

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Terminal Services SP2:
Microsoft Windows 2000 Terminal Services SP1:
Microsoft Windows 2000 Datacenter Server SP1:

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Professional SP1:

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Advanced Server SP1:

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Server SP1:

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Terminal Services :
Microsoft Windows 2000 Professional :

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Server :

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows 2000 Advanced Server :

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows XP Professional :

Microsoft Patch Q314147
http://download.microsoft.com/download/whistler/Patch/Q314147/WXP/EN-US/Q314147_WXP_SP1_x86_ENU.exe

Microsoft Windows 2000 Datacenter Server :

Microsoft Patch Q314147
http://download.microsoft.com/download/win2000platform/Patch/Q314147/NT5/EN-US/Q314147_W2K_SP3_X86_EN.exe

Microsoft Windows XP Home :

Microsoft Patch Q314147
http://download.microsoft.com/download/whistler/Patch/Q314147/WXP/EN-US/Q314147_WXP_SP1_x86_ENU.exe

Microsoft Windows 98SE :
Microsoft Windows 95 :
Microsoft Windows 98 :
Microsoft Windows NT Enterprise Server 4.0SP6a:
Microsoft Windows NT Server 4.0SP6a:
Microsoft Windows NT Terminal Server 4.0SP6a:
Microsoft Windows NT Workstation 4.0SP6a:
Microsoft Windows NT Workstation 4.0SP6:
Microsoft Windows NT Server 4.0SP6:
Microsoft Windows NT Terminal Server 4.0SP6:
Microsoft Windows NT Enterprise Server 4.0SP6:
Microsoft Windows NT Enterprise Server 4.0SP5:
Microsoft Windows NT Terminal Server 4.0SP5:
Microsoft Windows NT Server 4.0SP5:
Microsoft Windows NT Workstation 4.0SP5:
Microsoft Windows NT Workstation 4.0SP4:
Microsoft Windows NT Terminal Server 4.0SP4:
Microsoft Windows NT Server 4.0SP4:
Microsoft Windows NT Enterprise Server 4.0SP4:
Microsoft Windows NT Server 4.0SP3:
Microsoft Windows NT Enterprise Server 4.0SP3:
Microsoft Windows NT Workstation 4.0SP3:
Microsoft Windows NT Terminal Server 4.0SP3:
Microsoft Windows NT Workstation 4.0SP2:
Microsoft Windows NT Terminal Server 4.0SP2:
Microsoft Windows NT Server 4.0SP2:
Microsoft Windows NT Enterprise Server 4.0SP2:
Microsoft Windows NT Enterprise Server 4.0SP1:
Microsoft Windows NT Server 4.0SP1:
Microsoft Windows NT Terminal Server 4.0SP1:
Microsoft Windows NT Workstation 4.0SP1:
Microsoft Windows NT Workstation 4.0:
Microsoft Windows NT Server 4.0:
Microsoft Windows NT Enterprise Server 4.0:
Microsoft Windows NT Terminal Server 4.0:
Net-SNMP ucd-snmp 4.1.1:

Debian Upgrade libsnmp4.1-dev_4.1.1-2.1_alpha.deb
http://security.debian.org/dists/stable/updates/main/binary-alpha/libsnmp4.1-dev_4.1.1-2.1_alpha.deb

Debian Upgrade libsnmp4.1_4.1.1-2.1_alpha.deb
http://security.debian.org/dists/stable/updates/main/binary-alpha/libsnmp4.1_4.1.1-2.1_alpha.deb

Debian Upgrade snmp_4.1.1-2.1_alpha.deb
http://security.debian.org/dists/stable/updates/main/binary-alpha/snmp_4.1.1-2.1_alpha.deb

Debian Upgrade snmpd_4.1.1-2.1_alpha.deb
http://security.debian.org/dists/stable/updates/main/binary-alpha/snmpd_4.1.1-2.1_alpha.deb

Debian Upgrade libsnmp4.1-dev_4.1.1-2.1_arm.deb
http://security.debian.org/dists/stable/updates/main/binary-arm/libsnmp4.1-dev_4.1.1-2.1_arm.deb

Debian Upgrade libsnmp4.1_4.1.1-2.1_arm.deb
http://security.debian.org/dists/stable/updates/main/binary-arm/libsnmp4.1_4.1.1-2.1_arm.deb

Debian Upgrade snmp_4.1.1-2.1_arm.deb
http://security.debian.org/dists/stable/updates/main/binary-arm/snmp_4.1.1-2.1_arm.deb

Debian Upgrade snmpd_4.1.1-2.1_arm.deb
http://security.debian.org/dists/stable/updates/main/binary-arm/snmpd_4.1.1-2.1_arm.deb

Debian Upgrade libsnmp4.1-dev_4.1.1-2.1_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/libsnmp4.1-dev_4.1.1-2.1_i386.deb

Debian Upgrade libsnmp4.1_4.1.1-2.1_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/libsnmp4.1_4.1.1-2.1_i386.deb

Debian Upgrade snmp_4.1.1-2.1_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/snmp_4.1.1-2.1_i386.deb

Debian Upgrade snmpd_4.1.1-2.1_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/snmpd_4.1.1-2.1_i386.deb

Debian Upgrade libsnmp4.1-dev_4.1.1-2.1_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/libsnmp4.1-dev_4.1.1-2.1_m68k.deb

Debian Upgrade libsnmp4.1_4.1.1-2.1_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/libsnmp4.1_4.1.1-2.1_m68k.deb

Debian Upgrade snmp_4.1.1-2.1_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/snmp_4.1.1-2.1_m68k.deb

Debian Upgrade snmpd_4.1.1-2.1_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/snmpd_4.1.1-2.1_m68k.deb

Debian Upgrade libsnmp4.1-dev_4.1.1-2.1_powerpc.deb
http://security.debian.org/dists/stable/updates/main/binary-powerpc/libsnmp4.1-dev_4.1.1-2.1_powerpc.deb

Debian Upgrade libsnmp4.1_4.1.1-2.1_powerpc.deb
http://security.debian.org/dists/stable/updates/main/binary-powerpc/libsnmp4.1_4.1.1-2.1_powerpc.deb

Debian Upgrade snmp_4.1.1-2.1_powerpc.deb
http://security.debian.org/dists/stable/updates/main/binary-powerpc/snmp_4.1.1-2.1_powerpc.deb

Debian Upgrade snmpd_4.1.1-2.1_powerpc.deb
http://security.debian.org/dists/stable/updates/main/binary-powerpc/snmpd_4.1.1-2.1_powerpc.deb

Debian Upgrade libsnmp4.1-dev_4.1.1-2.1_sparc.deb
http://security.debian.org/dists/stable/updates/main/binary-sparc/libsnmp4.1-dev_4.1.1-2.1_sparc.deb

Debian Upgrade libsnmp4.1_4.1.1-2.1_sparc.deb
http://security.debian.org/dists/stable/updates/main/binary-sparc/libsnmp4.1_4.1.1-2.1_sparc.deb

Debian Upgrade snmp_4.1.1-2.1_sparc.deb
http://security.debian.org/dists/stable/updates/main/binary-sparc/snmp_4.1.1-2.1_sparc.deb

Debian Upgrade snmpd_4.1.1-2.1_sparc.deb
http://security.debian.org/dists/stable/updates/main/binary-sparc/snmpd_4.1.1-2.1_sparc.deb

Net-SNMP ucd-snmp 4.2.1:

Red Hat Upgrade ucd-snmp-4.2.3-1.6.x.3.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/ucd-snmp-4.2.3-1.6.x.3.alpha.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.6.x.3.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/ucd-snmp-utils-4.2.3-1.6.x.3.alpha.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.6.x.3.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/ucd-snmp-devel-4.2.3-1.6.x.3.alpha.rpm

Red Hat Upgrade ucd-snmp-4.2.3-1.6.x.3.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/ucd-snmp-4.2.3-1.6.x.3.i386.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.6.x.3.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/ucd-snmp-utils-4.2.3-1.6.x.3.i386.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.6.x.3.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/ucd-snmp-devel-4.2.3-1.6.x.3.i386.rpm

Red Hat Upgrade ucd-snmp-4.2.3-1.6.x.3.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/ucd-snmp-4.2.3-1.6.x.3.sparc.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.6.x.3.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/ucd-snmp-utils-4.2.3-1.6.x.3.sparc.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.6.x.3.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/ucd-snmp-devel-4.2.3-1.6.x.3.sparc.rpm

Red Hat Upgrade ucd-snmp-4.2.3-1.7.0.3.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/ucd-snmp-4.2.3-1.7.0.3.alpha.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.7.0.3.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/ucd-snmp-utils-4.2.3-1.7.0.3.alpha.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.7.0.3.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/ucd-snmp-devel-4.2.3-1.7.0.3.alpha.rpm

Red Hat Upgrade ucd-snmp-4.2.3-1.7.0.3.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/ucd-snmp-4.2.3-1.7.0.3.i386.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.7.0.3.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/ucd-snmp-utils-4.2.3-1.7.0.3.i386.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.7.0.3.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/ucd-snmp-devel-4.2.3-1.7.0.3.i386.rpm

Red Hat Upgrade ucd-snmp-4.2.3-1.7.1.3.alpha.rpm
ftp://updates.redhat.com/7.1/en/os/alpha/ucd-snmp-4.2.3-1.7.1.3.alpha.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.7.1.3.alpha.rpm
ftp://updates.redhat.com/7.1/en/os/alpha/ucd-snmp-utils-4.2.3-1.7.1.3.alpha.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.7.1.3.alpha.rpm
ftp://updates.redhat.com/7.1/en/os/alpha/ucd-snmp-devel-4.2.3-1.7.1.3.alpha.rpm

Red Hat Upgrade ucd-snmp-4.2.3-1.7.1.3.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/ucd-snmp-4.2.3-1.7.1.3.i386.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.7.1.3.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/ucd-snmp-utils-4.2.3-1.7.1.3.i386.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.7.1.3.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/ucd-snmp-devel-4.2.3-1.7.1.3.i386.rpm

Red Hat Upgrade ucd-snmp-4.2.3-1.7.1.3.ia64.rpm
ftp://updates.redhat.com/7.1/en/os/ia64/ucd-snmp-4.2.3-1.7.1.3.ia64.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.7.1.3.ia64.rpm
ftp://updates.redhat.com/7.1/en/os/ia64/ucd-snmp-utils-4.2.3-1.7.1.3.ia64.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.7.1.3.ia64.rpm
ftp://updates.redhat.com/7.1/en/os/ia64/ucd-snmp-devel-4.2.3-1.7.1.3.ia64.rpm

Red Hat Upgrade ucd-snmp-4.2.3-1.7.2.3.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/ucd-snmp-4.2.3-1.7.2.3.i386.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.7.2.3.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/ucd-snmp-utils-4.2.3-1.7.2.3.i386.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.7.2.3.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/ucd-snmp-devel-4.2.3-1.7.2.3.i386.rpm

Red Hat Upgrade ethereal-0.8.18-10.7.2.1.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/ethereal-0.8.18-10.7.2.1.i386.rpm

Red Hat Upgrade ethereal-gnome-0.8.18-10.7.2.1.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/ethereal-gnome-0.8.18-10.7.2.1.i386.rpm

Red Hat Upgrade ucd-snmp-4.2.3-1.7.2.3.ia64.rpm
ftp://updates.redhat.com/7.2/en/os/ia64/ucd-snmp-4.2.3-1.7.2.3.ia64.rpm

Red Hat Upgrade ucd-snmp-utils-4.2.3-1.7.2.3.ia64.rpm
ftp://updates.redhat.com/7.2/en/os/ia64/ucd-snmp-utils-4.2.3-1.7.2.3.ia64.rpm

Red Hat Upgrade ucd-snmp-devel-4.2.3-1.7.2.3.ia64.rpm
ftp://updates.redhat.com/7.2/en/os/ia64/ucd-snmp-devel-4.2.3-1.7.2.3.ia64.rpm

Red Hat Upgrade ethereal-0.8.18-10.7.2.1.ia64.rpm
ftp://updates.redhat.com/7.2/en/os/ia64/ethereal-0.8.18-10.7.2.1.ia64.rpm

Red Hat Upgrade ethereal-gnome-0.8.18-10.7.2.1.ia64.rpm
ftp://updates.redhat.com/7.2/en/os/ia64/ethereal-gnome-0.8.18-10.7.2.1.ia64.rpm

Net-SNMP Upgrade ucd-snmp-4.2.3.tar.gz
http://prdownloads.sourceforge.net/net-snmp/ucd-snmp-4.2.3.tar.gz

FreeBSD Upgrade ucd-snmp-4.2.3.tgz
ftp://ftp.FreeBSD.org/pub/FreeBSD/ports/i386/packages-4-stable/net/ucd-snmp-4.2.3.tgz
Fixes package from the ports for FreeBSD 4-STABLE.

Nokia IPSO 3.1.3:
Nokia IPSO 3.3:
Nokia IPSO 3.3.1:
Nokia IPSO 3.4:
Nokia IPSO 3.4.1:
Novell Netware 4.0:
Novell Netware 5.0:
Novell Netware 5.1:
Novell Netware 6.0:
Process Software Multinet 4.4:
Process Software TCPWare 5.5:
RedBack Networks AOS :
SNMP Research Enterpol 15.3:

SNMP Research Upgrade Enterpol 15.3.1.7

Enterpol 15.3.1.7 is available directly from SNMP Research.

SNMP Research DR-Web Manager 15.3:

SNMP Research Upgrade DR-Web Manager 15.3.1.7

DR-Web Manager 15.3.1.7 is available directly from SNMP Research.

SNMP Research Mid-Level Manager 15.3:

SNMP Research Upgrade Mid-Level Manager 15.3.1.7

Mid-Level Manager 15.3.1.7 is available directly from SNMP Research.

相关信息
参考:http://www.securityfocus.com/advisories/3865
http://www.securityfocus.com/advisories/3873
http://www.securityfocus.com/advisories/3866
http://www.securityfocus.com/advisories/3869
http://www.securityfocus.com/advisories/3864
http://www.cert.org