CVE-2025-68615

net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue has been patched in versions 5.9.5 and 5.10.pre2.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:net-snmp:net-snmp:*:*:*:*:*:*:*:*
cpe:2.3:a:net-snmp:net-snmp:5.10:pre1:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

History

19 Feb 2026, 16:09

Type Values Removed Values Added
CPE cpe:2.3:a:net-snmp:net-snmp:5.10:pre1:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
cpe:2.3:a:net-snmp:net-snmp:*:*:*:*:*:*:*:*
References () https://github.com/net-snmp/net-snmp/security/advisories/GHSA-4389-rwqf-q9gq - () https://github.com/net-snmp/net-snmp/security/advisories/GHSA-4389-rwqf-q9gq - Vendor Advisory
References () http://www.openwall.com/lists/oss-security/2026/01/09/2 - () http://www.openwall.com/lists/oss-security/2026/01/09/2 - Mailing List, Third Party Advisory
References () https://lists.debian.org/debian-lts-announce/2026/01/msg00000.html - () https://lists.debian.org/debian-lts-announce/2026/01/msg00000.html - Vendor Advisory, Mailing List
References () https://www.vicarius.io/vsociety/posts/cve-2025-68615-detection-script-buffer-overflow-vulnerability-affecting-net-snmp - () https://www.vicarius.io/vsociety/posts/cve-2025-68615-detection-script-buffer-overflow-vulnerability-affecting-net-snmp - Mitigation, Third Party Advisory, Exploit
References () https://www.vicarius.io/vsociety/posts/cve-2025-68615-mitigation-script-buffer-overflow-vulnerability-affecting-net-snmp - () https://www.vicarius.io/vsociety/posts/cve-2025-68615-mitigation-script-buffer-overflow-vulnerability-affecting-net-snmp - Mitigation, Third Party Advisory
First Time Debian debian Linux
Net-snmp net-snmp
Net-snmp
Debian

10 Feb 2026, 18:16

Type Values Removed Values Added
References
  • () https://www.vicarius.io/vsociety/posts/cve-2025-68615-detection-script-buffer-overflow-vulnerability-affecting-net-snmp -
  • () https://www.vicarius.io/vsociety/posts/cve-2025-68615-mitigation-script-buffer-overflow-vulnerability-affecting-net-snmp -

09 Jan 2026, 23:15

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2026/01/09/2 -

01 Jan 2026, 15:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2026/01/msg00000.html -

23 Dec 2025, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-23 00:15

Updated : 2026-02-19 16:09


NVD link : CVE-2025-68615

Mitre link : CVE-2025-68615

CVE.ORG link : CVE-2025-68615


JSON object : View

Products Affected

net-snmp

  • net-snmp

debian

  • debian_linux
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer