Back

HIGH

Net-SNMP through 5.9.5.2 Denial of Service via Blocking Unauthenticated SMUX Read

Published Sep 11, 2026

Description

Net-SNMP through 5.9.5.2 contains a denial of service vulnerability in the SMUX module where smux_accept() performs an unauthenticated blocking read without timeout on newly accepted connections. An unauthenticated remote client can connect to the SMUX listener and send no data, causing the single-threaded snmpd main loop to block indefinitely and suspend all SNMP processing.

Affected products

Remediation

No remediation recorded yet.

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulnCheck
Published Sep 11, 2026
Updated Sep 24, 2026
Reserved Sep 11, 2026
CISA Vulnrichment
Updated Sep 15, 2026
NVD
Status Received
Modified Sep 15, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner VulnCheck
Published Sep 11, 2026
Updated Sep 24, 2026
Exploited since n/a
EUVD-2026-76036