CVE-2026-8836

EUVD-2026-30793
A vulnerability was found in lwIP up to 2.2.1. Affected is the function snmp_parse_inbound_frame of the file src/apps/snmp/snmp_msg.c of the component snmpv3 USM Handler. Performing a manipulation of the argument msgAuthenticationParameters results in stack-based buffer overflow. The attack may be initiated remotely. The patch is named 0c957ec03054eb6c8205e9c9d1d05d90ada3898c. It is suggested to install a patch to address this issue.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 60.41%
Debian logo
Debian Releases
Debian Product
Codename
lwip
bookworm
no-dsa
bullseye
postponed
forky
2.2.1+dfsg1-7
fixed
sid
2.2.1+dfsg1-7
fixed
trixie
no-dsa
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
lwip
focal
Fixed 2.1.2+dfsg1-4ubuntu0.1~esm1
released
jammy
Fixed 2.1.3+dfsg1-1ubuntu0.1~esm1
released
noble
Fixed 2.2.0+dfsg1-6.1ubuntu0.1~esm1
released
questing
ignored
resolute
Fixed 2.2.1+dfsg1-4ubuntu0.1~esm1
released