{"affected":[{"ecosystem_specific":{"binaries":[{"libsnmp30":"5.7.2.1-4.3.2","libsnmp30-32bit":"5.7.2.1-4.3.2","net-snmp":"5.7.2.1-4.3.2","perl-SNMP":"5.7.2.1-4.3.2","snmp-mibs":"5.7.2.1-4.3.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Desktop 12","name":"net-snmp","purl":"pkg:rpm/suse/net-snmp&distro=SUSE%20Linux%20Enterprise%20Desktop%2012"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.7.2.1-4.3.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"net-snmp-devel":"5.7.2.1-4.3.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Software Development Kit 12","name":"net-snmp","purl":"pkg:rpm/suse/net-snmp&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.7.2.1-4.3.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libsnmp30":"5.7.2.1-4.3.2","libsnmp30-32bit":"5.7.2.1-4.3.2","net-snmp":"5.7.2.1-4.3.2","perl-SNMP":"5.7.2.1-4.3.2","snmp-mibs":"5.7.2.1-4.3.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12","name":"net-snmp","purl":"pkg:rpm/suse/net-snmp&distro=SUSE%20Linux%20Enterprise%20Server%2012"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.7.2.1-4.3.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libsnmp30":"5.7.2.1-4.3.2","libsnmp30-32bit":"5.7.2.1-4.3.2","net-snmp":"5.7.2.1-4.3.2","perl-SNMP":"5.7.2.1-4.3.2","snmp-mibs":"5.7.2.1-4.3.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12","name":"net-snmp","purl":"pkg:rpm/suse/net-snmp&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.7.2.1-4.3.2"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"\nThe following issues have been fixed within this update:\n\n* fix btrfs output inside HOST-RESOURCES-MIB::hrStorageDescr.\n  (bsc#909479)\n* fix an incompletely initialized vulnerability within the\n  snmp_pdu_parse() function of snmp_api.c. (bsc#940188, CVE-2015-5621)\n* add build requirement 'procps' to fix a net-snmp-config error\n  (bsc#935863)\n* --disable-md5 to allow operation in FIPS mode and not use the\n  old algorithm (bsc#935876 bsc#940084)\n* also stop snmptrapd on removal\n\n","id":"SUSE-SU-2015:1556-1","modified":"2015-08-21T13:10:58Z","published":"2015-08-21T13:10:58Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2015/suse-su-20151556-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/909479"},{"type":"REPORT","url":"https://bugzilla.suse.com/935863"},{"type":"REPORT","url":"https://bugzilla.suse.com/935876"},{"type":"REPORT","url":"https://bugzilla.suse.com/940084"},{"type":"REPORT","url":"https://bugzilla.suse.com/940188"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2015-5621"}],"related":["CVE-2015-5621"],"summary":"Security update for net-snmp","upstream":["CVE-2015-5621"]}