Search CVE reports


Toggle filters

11 – 20 of 23 results


CVE-2021-3502

Medium priority
Fixed

A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Not affected Not affected
Show less packages

CVE-2021-26720

Low priority
Vulnerable

avahi-daemon-check-dns.sh in the Debian avahi package through 0.8-4 is executed as root via /etc/network/if-up.d/avahi-daemon, and allows a local attacker to cause a denial of service or create arbitrary empty files via a symlink...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2018-1000845

Medium priority
Fixed

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID: CVE-2017-6519. Reason: This candidate is a duplicate of CVE-2017-6519. Notes: All CVE users should reference CVE-2017-6519 instead of this candidate. All references...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed
Show less packages

CVE-2017-6519

Low priority

Some fixes available 4 of 8

avahi-daemon in Avahi through 0.6.32 and 0.7 inadvertently responds to IPv6 unicast queries with source addresses that are not on-link, which allows remote attackers to cause a denial of service (traffic amplification) and may...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed
Show less packages

CVE-2011-1002

Medium priority

Some fixes available 4 of 5

avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi
Show less packages

CVE-2010-2244

Medium priority

Some fixes available 4 of 5

The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6.16 and 0.6.25 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNS packet with an invalid checksum...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi
Show less packages

CVE-2009-0758

Low priority

Some fixes available 2 of 5

The originates_from_local_legacy_unicast_socket function in avahi-core/server.c in avahi-daemon 0.6.23 does not account for the network byte order of a port number when processing incoming multicast packets, which allows remote...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi
Show less packages

CVE-2008-5081

Medium priority
Fixed

The originates_from_local_legacy_unicast_socket function (avahi-core/server.c) in avahi-daemon in Avahi before 0.6.24 allows remote attackers to cause a denial of service (crash) via a crafted mDNS packet with a source port of 0,...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi
Show less packages

CVE-2007-3372

Negligible priority

Some fixes available 4 of 6

The Avahi daemon in Avahi before 0.6.20 allows attackers to cause a denial of service (exit) via empty TXT data over D-Bus, which triggers an assert error.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi
Show less packages

CVE-2006-6870

Medium priority
Fixed

The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of service (infinite loop) via a crafted compressed DNS response with a label that points to itself.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi
Show less packages