Gentoo Linux Security Advisory GLSA 200808-02 – Wes Hardaker reported that the SNMPv3 HMAC verification relies on the client to specify the HMAC length (CVE-2008-0960). John Kortink reported a buffer overflow in the Perl bindings of Net-SNMP when processing the OCTETSTRING in an attribute value pair (AVP) received by an SNMP agent (CVE-2008-2292). Versions less than 5.4.1.1 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/68866/glsa-200808-02.txt
Source: https://packetstormsecurity.com/files/68866/Gentoo-Linux-Security-Advisory-200808-2.html