CVE-2014-3565: Apple Mac OS X

Medium severity, CVSS 5.0. EPSS: 4.6% chance of exploitation in the next 30 days.

snmplib/mib.c in net-snmp 5.7.0 and earlier, when the -OQ option is used, allows remote attackers to cause a denial of service (snmptrapd crash) via a crafted SNMP trap message, which triggers a conversion to the variable type designated in the MIB file, as demonstrated by a NULL type in an ifMtu trap message.

Affected products

  • Apple Mac OS X: version 10.11.0 only
  • Canonical Ubuntu Linux: version 12.04 only; version 14.04 only; version 15.04 only
  • Net-SNMP Net-SNMP: up to and including 5.7.0; version 5.0 only; version 5.0.1 only; version 5.0.2 only; version 5.0.3 only; version 5.0.4 only; …

Published 2014-10-07. Last modified 2026-06-17.