Search CVE reports
1 – 10 of 24 results
Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In versions up to and including 0.9-rc2, the simple protocol server ignores the documented client limit and accepts...
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. This predictable behavior facilitates DNS spoofing attacks,...
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
A flaw was found in Avahi-daemon, which relies on fixed source ports for wide-area DNS queries. This issue simplifies attacks where malicious DNS responses are injected.
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
Some fixes available 7 of 8
A vulnerability was found in Avahi. A reachable assertion exists in the avahi_alternative_host_name() function.
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | — | Fixed | Fixed | Fixed |
Some fixes available 7 of 8
A vulnerability was found in Avahi. A reachable assertion exists in the avahi_rdata_parse() function.
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | — | Fixed | Fixed | Fixed |
Some fixes available 7 of 8
A vulnerability was found in Avahi. A reachable assertion exists in the dbus_set_host_name function.
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | — | Fixed | Fixed | Fixed |
Some fixes available 7 of 8
A vulnerability was found in Avahi. A reachable assertion exists in the avahi_escape_label() function.
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | — | Fixed | Fixed | Fixed |
Some fixes available 7 of 8
A vulnerability was found in Avahi, where a reachable assertion exists in avahi_dns_packet_append_record.
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | — | Fixed | Fixed | Fixed |
A vulnerability was found in the avahi library. This flaw allows an unprivileged user to make a dbus call, causing the avahi daemon to crash.
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | — | Fixed | Fixed | Fixed |
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-3502. Reason: This candidate is a duplicate of CVE-2021-3502. Notes: All CVE users should reference CVE-2021-3502 instead of this candidate. All references...
1 affected package
avahi
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| avahi | — | — | Not affected | Not affected |