Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2019-20892

23
FAUCET Score

CVE-2019-20892 describes a double free vulnerability in net-snmp versions prior to 5.8.1.pre1, specifically within the usm_free_usmStateReference function, triggered by a crafted SNMPv3 GetBulk request. This flaw primarily impacts net-snmp packages distributed by various Linux distributions, as well as Oracle net_snmp and ZFS Storage Appliance Kit. Rated with a CVSS v3.1 score of 6.5 (Medium), it presents a network-based attack vector with low attack complexity, requiring low privileges, and could lead to high availability impact (denial of service). There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
<= 5.8CPE matchmatch criteria
cpe:2.3:a:net-snmp:net-snmp:*:*:*:*:*:*:*:*
8.8CPE matchmatch criteria
cpe:2.3:a:oracle:zfs_storage_appliance_kit:8.8:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

6.5MEDIUM

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
2.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
2.31%
Probability of exploitation in next 30 days
EPSS Percentile
81.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0232 is in the 93rd percentile among its peer group of 21,974 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (7)

github_advisorypatch availablevia nvd_reference
View patch
microsoftpatch availablevia msrc
Product: cm1 net-snmp 5.9-3 on CBL Mariner 1.0Fixed in: 5.9-3
microsoftpatch availablevia msrc
Product: 16849-16820Fixed in: 5.9-3
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 x64Fixed in: 5.9-3
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 ARMFixed in: 5.9-3
oraclepatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: net-snmp-1:5.8-12.el8_1.1
View patch

Vendor Advisories (3)

microsoft2020-Aug/CVE-2019-20892

CVE-2019-20892

Aug 11, 2020
microsoft2020-Jun/CVE-2019-20892Moderate

net-snmp before 5.8.1.pre1 has a double free in usm_free_usmStateReference in snmplib/snmpusm.c via an SNMPv3 GetBulk request. NOTE: this affects net-snmp packages shipped to end users by multiple Linux distributions but might not affect an upstream release.

Jun 9, 2020
redhatCVE-2019-20892Moderate

net-snmp: double free in usm_free_usmStateReference function in snmplib/snmpusm.c via an SNMPv3 GetBulk request

Jan 2, 2020

References

bugs.launchpad.net / ubuntu/+source/net-snmp/+bug/1877027
ExploitIssue TrackingThird Party Advisory
bugzilla.redhat.com / show_bug.cgi
ExploitIssue TrackingThird Party Advisory
github.com / net-snmp/net-snmp/commit/5f881d3bf24599b90d67a45cae7a3eb099cd71c9
PatchThird Party Advisory
security.gentoo.org / glsa/202008-12
Third Party Advisory
sourceforge.net / p/net-snmp/bugs/2923
ExploitThird Party Advisory
usn.ubuntu.com / 4410-1
Third Party Advisory
oracle.com / security-alerts/cpujan2021.html
PatchThird Party Advisory
openwall.com / lists/oss-security/2020/06/25/4
ExploitMailing ListThird Party Advisory