Comment 3 for bug 1993419

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package net-snmp - 5.9.3+dfsg-2ubuntu1

---------------
net-snmp (5.9.3+dfsg-2ubuntu1) lunar; urgency=medium

  * Merge with Debian unstable (LP: #1993419). Remaining changes:
    - Add apport hook:
      + d/control: add dh-apport to Build-Depends
      + d/rules: install the apport hook via debhelper
      + d/source.apport: apport hook
    - d/p/restore-support-for-long-dns-names.patch: Fix snmp requests
      for domains longer than 63 characters (LP #1998461)
  * Drop changes:
    - SECURITY UPDATE: DoS via null pointer exception issues
      + debian/patches/CVE-2022-4479x-1.patch: disallow SET with NULL varbind
        in agent/snmp_agent.c.
      + debian/patches/CVE-2022-4479x-2.patch: allow SET with NULL varbind
        for testing in apps/snmpset.c.
      + debian/patches/CVE-2022-4479x-3.patch: add test for NULL varbind set
        in testing/fulltests/default/T0142snmpv2csetnull_simple.
      + CVE-2022-44792
      + CVE-2022-44793
      [ Incorporated by Debian. ]

 -- Sergio Durigan Junior <email address hidden> Tue, 10 Jan 2023 22:54:16 -0500