Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Sun, 27 May 2012 22:38:41 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1853517557&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F0808-advisories%2FSUSE-SA-2008-039.txt%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1853517557.1338158321.1338158321.1338158321.1%3B%2B__utmz%3D32867617.1338158321.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) SUSE-SA-2008-039.txt http://packetstormsecurity.org/files/68741/SUSE-SA-2008-039.txt http://packetstormsecurity.org/files/68741/SUSE-SA-2008-039.txt http://packetstormsecurity.org/files/68741/SUSE-SA-2008-039.txt.html Fri, 01 Aug 2008 20:22:12 GMT SUSE Security Announcement - The net-snmp daemon implements the "simple network management protocol". The version 3 of SNMP as implemented in net-snmp uses the length of the HMAC in a packet to verify against a local HMAC for authentication. An attacker can therefore send a SNMPv3 packet with a one byte HMAC and guess the correct first byte of the local HMAC with 256 packets (max).