Search CVE reports


Toggle filters

1 – 10 of 23 results


CVE-2024-52616

Low priority
Vulnerable

A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. This predictable behavior facilitates DNS spoofing attacks,...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-52615

Low priority
Vulnerable

A flaw was found in Avahi-daemon, which relies on fixed source ports for wide-area DNS queries. This issue simplifies attacks where malicious DNS responses are injected.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-38473

Medium priority

Some fixes available 7 of 8

A vulnerability was found in Avahi. A reachable assertion exists in the avahi_alternative_host_name() function.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages

CVE-2023-38472

Medium priority

Some fixes available 7 of 8

A vulnerability was found in Avahi. A reachable assertion exists in the avahi_rdata_parse() function.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages

CVE-2023-38471

Medium priority

Some fixes available 7 of 8

A vulnerability was found in Avahi. A reachable assertion exists in the dbus_set_host_name function.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages

CVE-2023-38470

Medium priority

Some fixes available 7 of 8

A vulnerability was found in Avahi. A reachable assertion exists in the avahi_escape_label() function.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages

CVE-2023-38469

Medium priority

Some fixes available 7 of 8

A vulnerability was found in Avahi, where a reachable assertion exists in avahi_dns_packet_append_record.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages

CVE-2023-1981

Medium priority
Fixed

A vulnerability was found in the avahi library. This flaw allows an unprivileged user to make a dbus call, causing the avahi daemon to crash.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages

CVE-2021-36217

Low priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-3502. Reason: This candidate is a duplicate of CVE-2021-3502. Notes: All CVE users should reference CVE-2021-3502 instead of this candidate. All references...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Not affected Not affected
Show less packages

CVE-2021-3502

Medium priority
Fixed

A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Not affected Not affected
Show less packages