FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

libsmi -- Buffer overflow in the smiGetNode function in lib/smi

Affected packages
0.4.8 <= libsmi < 0.4.8_3

Details

VuXML ID 76b09b16-638b-11f1-8e16-901b0e13f1a0
Discovery 2010-10-27
Entry 2026-06-14

http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00003.html reports:

Buffer overflow in the smiGetNode function in lib/smi.c in libsmi 0.4.8 allows context-dependent attackers to execute arbitrary code via an Object Identifier (aka OID) represented as a numerical string containing many components separated by . (dot) characters.

References

CVE Name CVE-2010-2891
URL https://cveawg.mitre.org/api/cve/CVE-2010-2891