CVE-2025-68615

Published Dec 23, 2025

Last updated 4 days ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2025-68615 describes a buffer overflow vulnerability found in the `snmptrapd` daemon of Net-SNMP, a widely used SNMP application library, tools, and daemon. This flaw allows a remote attacker to trigger a buffer overflow by sending a specially crafted SNMP packet to a vulnerable `snmptrapd` instance. The improper handling of incoming packets can cause the daemon to crash, leading to a denial of service. The vulnerability affects Net-SNMP versions prior to 5.9.5 and 5.10.pre2. Exploitation of this issue does not require authentication or user interaction, as it can be triggered by a network-based attack. While primarily leading to a daemon crash, the nature of a buffer overflow also introduces the possibility of memory corruption and, in some scenarios, arbitrary code execution.

Description
net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue has been patched in versions 5.9.5 and 5.10.pre2.
Source
security-advisories@github.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

security-advisories@github.com
CWE-119

Social media

Hype score
Not currently trending
  1. Net-SNMPdという表記はあまり見ない気がしますが"Net-SNMPのsnmptrapd"では長すぎましたかね // Net-SNMPdのRCE脆弱性(Critical: CVE-2025-68615) - SIOS SECURITY BLOG https://t.co/huzVrepC7f

    @w4yh

    12 Jan 2026

    74 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  2. Summary of Recent Vulnerabilities in Net-SNMP, Focusing on the High-Severity CVE-2025-68615 https://t.co/ikeaEYMyIb #OpenSource #vulnerability #SNMP

    @blog_casting

    12 Jan 2026

    49 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  3. CVE-2025-68615: Net-SNMP snmptrapd: Buffer overflow https://t.co/7JlKpNqqWa listens on UDP port 162 by default ... lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer ... execute code in the context of the service

    @oss_security

    10 Jan 2026

    3010 Impressions

    9 Retweets

    43 Likes

    11 Bookmarks

    1 Reply

    0 Quotes

  4. Net-SNMP の脆弱性 CVE-2025-68615 が FIX:snmptrapd デーモンにクラッシュの可能性 https://t.co/Em1ZFUy1th ネットワーク管理に欠かせない Net-SNMP に、きわめて深刻な脆弱性が見つかりました。この問題の原因は、snmptrapd と

    @iototsecnews

    5 Jan 2026

    55 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. Made an exploit for Net-SNMP's snmptrapd buffer overflow (CVE-2025-68615) due to missing type and bound checks. Though not exploitable due to ASLR/stack canaries. Quite interesting! Blog: https://t.co/7XfPXAPtoR PoC: https://t.co/Vya5FaSccN Credit: buddurid (ZDI-25-1181) https://

    @D4mianWayne

    4 Jan 2026

    253 Impressions

    0 Retweets

    2 Likes

    1 Bookmark

    0 Replies

    0 Quotes

  6. just realised i got my first CVE assigned 2 weeks ago , CVE-2025-68615 . 9.8 doesn't seem like a bad start xd . (un)fortunately i couldn't get RCE using this bug alone . https://t.co/vPI14siGhd https://t.co/ak4SQjXYpY

    @buddurid

    3 Jan 2026

    88 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. ⚠️ Vulnerabilidad en SNMP ❗ CVE-2025-68615 ➡️ Más info: https://t.co/s1LobQQV8H https://t.co/7eUiL0NNF3

    @CERTpy

    2 Jan 2026

    149 Impressions

    1 Retweet

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  8. CVE-2025-68615

    @wajunkawai

    31 Dec 2025

    52 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. CVE-2025-68615 — The “Visibility Killer”: New Net-SNMP snmptrapd Vulnerability Exposed Read the full report on - https://t.co/UmCe40QmYI https://t.co/FevhCgb8HN

    @Iambivash007

    26 Dec 2025

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. Net-SNMPのCVE-2025-68615を見ていて、そういえばCVSS v4がまた書かれていないけど、今どれくらいの確立?頻度?でv4の値が掛かれてるんだろうか、などと思ってきた。 9割程度は書かれていないと、v3から移行する

    @hogehuga

    26 Dec 2025

    24 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. net-snmpの #snmptrapd に、大変な脆弱性(CVE-2025-68615)が、見つかったみたいです…。認証なしで、誰でも勝手にコード実行やクラッシュさせられちゃうらしくて…危険度(CVSS)9.8です…。v5.9.5 / v5.10.pre2 へ、大至急ア

    @CCE7

    26 Dec 2025

    129 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. CVE-2025-68615について今更認識した。今日は仕事納め。納めたいね。

    @ctake_shimez

    25 Dec 2025

    92 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. CVE-2025-68615 disclosed in Net-SNMP snmptrapd allows remote buffer overflow that can crash services or enable severe system compromise, exposing network infrastructure worldwide. #Vulnerability https://t.co/hHqFU0O1bw

    @threatcluster

    25 Dec 2025

    32 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. 【注意喚起】Net-SNMPに深刻な脆弱性(CVSS 9.8)が発見 ネットワーク機器の監視に広く利用されている「Net-SNMP」において、極めて危険度の高い脆弱性(CVE-2025-68615)が報告されました。 ■ 概要 ・脆弱性番号

    @cloudsec_news

    25 Dec 2025

    197 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  15. net-snmp is affected by a critical vulnerability, BELL-CVE-2025-68615. Assess your #SNMP deployments for potential #security risks. Further details and remediation guidance are pending. https://t.co/SmDguvyW7z

    @pulsepatchio

    25 Dec 2025

    4 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. 🚨 Critical Net-SNMP snmptrapd Bug (CVE-2025-68615) Lets Remote Attackers Crash Monitoring A critical buffer overflow in Net-SNMP’s snmptrapd can be triggered remotely and without authentication using crafted SNMP trap packets, causing the daemon to crash and halting trap-bas

    @ThreatSynop

    25 Dec 2025

    23 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  17. A critical buffer overflow (CVE-2025-68615) affects net-snmp `snmptrapd` daemon, leading to crashes. Update to patched versions 5.9.5, 5.10.pre2, or later. #netsnmp #security #CVE https://t.co/Oh41BnivrJ

    @pulsepatchio

    24 Dec 2025

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  18. CVE-2025-68615: Analyzing the Unauthenticated Buffer Overflow in Net-SNMP snmptrapd Read the full report on - https://t.co/p3m0I1wLFF https://t.co/GJQw4IU3lk

    @Iambivash007

    24 Dec 2025

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  19. 🚨 Net-SNMP snmptrapd Buffer Overflow (CVE-2025-68615) - CVSS 9.8 Single crafted packet crashes SNMP trap daemon. Network monitoring infrastructure across enterprises at immediate risk.

    @j0ltglacier

    23 Dec 2025

    63 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  20. 🚨 Net-SNMP snmptrapd Buffer Overflow (CVE-2025-68615) - CVSS 9.8 Single crafted packet causes daemon crash via buffer overflow. SNMP monitoring infrastructure at risk across enterprises.

    @j0ltglacier

    23 Dec 2025

    47 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  21. A new vulnerability with increased severity was disclosed for net-snmp (CVE-2025-68615) https://t.co/fxxpwj95SS

    @vuldb

    23 Dec 2025

    2 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  22. CVE-2025-68615 Buffer Overflow Vulnerability in net-snmp Daemon Versions Prior to 5.9.5 https://t.co/q9wXjYmdYN

    @VulmonFeeds

    23 Dec 2025

    148 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  23. CVE-2025-68615 net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause … https://t.co/O87MQ4ZHIh

    @CVEnew

    23 Dec 2025

    262 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  24. 🔴 CVE-2025-68615 - Critical net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and... https://t.co/w6TwDxrs7W https://t.co/OUfUfc5wON

    @TheHackerWire

    23 Dec 2025

    77 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  25. [CVE-2025-68615: CRITICAL] Critical vulnerability in net-snmp versions 5.9.5 and 5.10.pre2 allows buffer overflow, leading to crashes. Ensure updating to patched versions for cyber security.#cve,CVE-2025-68615,#cybersecurity https://t.co/uxEvPz3I7w https://t.co/h2sYJGq2DN

    @CveFindCom

    23 Dec 2025

    16 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes