MidnightBSD

Advisories for avahi

CVE-2006-2288 LOW

Avahi before 0.6.10 allows local users to cause a denial of service (mDNS/DNS-SD service disconnect) via unspecified mDNS name conflicts.

CVSS 2.0

Severity: LOW

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avahi avahi 0.6.9
avahi avahi 0.6.8
avahi avahi 0.6.7
CVE-2006-2289 LOW

Buffer overflow in avahi-core in Avahi before 0.6.10 allows local users to execute arbitrary code via unknown vectors.

CVSS 2.0

Severity: LOW

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avahi avahi 0.6.9
avahi avahi 0.6.8
avahi avahi 0.6.7
CVE-2006-5461 LOW

Avahi before 0.6.15 does not verify the sender identity of netlink messages to ensure that they come from the kernel instead of another process, which allows local users to spoof network changes to Avahi.

CVSS 2.0

Severity: LOW

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avahi avahi *
CVE-2006-6870 MEDIUM

The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of service (infinite loop) via a crafted compressed DNS response with a label that points to itself.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avahi avahi 0.6.9
avahi avahi 0.6.14
avahi avahi 0.6.8
avahi avahi 0.6.15
avahi avahi 0.6.10
avahi avahi 0.6.11
avahi avahi 0.6.13
avahi avahi 0.6.12
avahi avahi 0.6.7
CVE-2007-3372 LOW

The Avahi daemon in Avahi before 0.6.20 allows attackers to cause a denial of service (exit) via empty TXT data over D-Bus, which triggers an assert error.

CVSS 2.0

Severity: LOW

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avahi avahi *
CVE-2008-5081 MEDIUM

The originates_from_local_legacy_unicast_socket function (avahi-core/server.c) in avahi-daemon in Avahi before 0.6.24 allows remote attackers to cause a denial of service (crash) via a crafted mDNS packet with a source port of 0, which triggers an assertion failure.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-399,

Products Affected

Vendor Product Version
avahi avahi 0.6.20
avahi avahi 0.6.22
avahi avahi 0.6.2
avahi avahi 0.6.9
avahi avahi 0.6.1
avahi avahi 0.6.10
avahi avahi *
avahi avahi 0.6.13
avahi avahi 0.3
avahi avahi 0.6.18
avahi avahi 0.6.12
avahi avahi 0.6.14
avahi avahi 0.6.19
avahi avahi 0.1
avahi avahi 0.6.7
avahi avahi 0.6.3
avahi avahi 0.6.4
avahi avahi 0.6.6
avahi avahi 0.2
avahi avahi 0.6.21
avahi avahi 0.4
avahi avahi 0.6.8
avahi avahi 0.6.15
avahi avahi 0.6.11
avahi avahi 0.6.5
avahi avahi 0.5.1
avahi avahi 0.6.17
avahi avahi 0.6.16
avahi avahi 0.5.2
avahi avahi 0.5
CVE-2009-0758 HIGH

The originates_from_local_legacy_unicast_socket function in avahi-core/server.c in avahi-daemon 0.6.23 does not account for the network byte order of a port number when processing incoming multicast packets, which allows remote attackers to cause a denial of service (network bandwidth and CPU consumption) via a crafted legacy unicast mDNS query packet that triggers a multicast packet storm.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-399,

Products Affected

Vendor Product Version
avahi avahi-daemon 0.6.23
CVE-2010-2244 MEDIUM

The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6.16 and 0.6.25 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNS packet with an invalid checksum followed by a DNS packet with a valid checksum, a different vulnerability than CVE-2008-5081.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avahi avahi 0.6.16
avahi avahi 0.6.25
CVE-2011-1002 MEDIUM

avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-835,

Products Affected

Vendor Product Version
avahi avahi 0.6.20
avahi avahi 0.6.22
avahi avahi 0.6.2
avahi avahi 0.6.9
debian debian_linux 6.0
avahi avahi 0.6.1
avahi avahi 0.6.27
avahi avahi 0.6.25
canonical ubuntu_linux 8.04
debian debian_linux 7.0
avahi avahi 0.6.10
avahi avahi *
avahi avahi 0.6.13
avahi avahi 0.3
avahi avahi 0.6.18
avahi avahi 0.6.12
canonical ubuntu_linux 9.10
debian debian_linux 5.0
avahi avahi 0.6.14
avahi avahi 0.6.19
avahi avahi 0.1
redhat enterprise_linux 5.0
redhat enterprise_linux 6.0
avahi avahi 0.6.7
avahi avahi 0.6.3
avahi avahi 0.6.4
avahi avahi 0.6.6
avahi avahi 0.2
avahi avahi 0.6.21
avahi avahi 0.4
avahi avahi 0.6.24
avahi avahi 0.6.8
avahi avahi 0.6.15
avahi avahi 0.6.11
avahi avahi 0.6.5
avahi avahi 0.6.26
avahi avahi 0.5.1
canonical ubuntu_linux 10.10
avahi avahi 0.6.23
avahi avahi 0.6.17
canonical ubuntu_linux 10.04
avahi avahi 0.6.16
avahi avahi 0.5.2
fedoraproject fedora 15
avahi avahi 0.5
CVE-2017-6519 MEDIUM

avahi-daemon in Avahi through 0.6.32 and 0.7 inadvertently responds to IPv6 unicast queries with source addresses that are not on-link, which allows remote attackers to cause a denial of service (traffic amplification) and may cause information leakage by obtaining potentially sensitive information from the responding device via port-5353 UDP packets. NOTE: this may overlap CVE-2015-2809.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
134c704f-9b21-4f2e-91b3-4a467353bcc0 9.1 CRITICAL CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H 3.9 5.2

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-346,CWE-346,

Products Affected

Vendor Product Version
canonical ubuntu_linux 18.04
canonical ubuntu_linux 18.10
canonical ubuntu_linux 14.04
avahi avahi 0.7
canonical ubuntu_linux 12.04
canonical ubuntu_linux 16.04
avahi avahi *