Search CVE reports


Toggle filters

1 – 10 of 27 results


CVE-2025-68471

Medium priority

Some fixes available 7 of 8

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, avahi-daemon can be crashed by sending 2 unsolicited announcements with CNAME resource records 2...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed Fixed
Show less packages

CVE-2025-68468

Medium priority

Some fixes available 7 of 8

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, avahi-daemon can be crashed by sending unsolicited announcements containing CNAME resource...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed Fixed
Show less packages

CVE-2025-68276

Medium priority

Some fixes available 7 of 8

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, an unprivileged local users can crash avahi-daemon (with wide-area disabled) by creating record...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed Fixed
Show less packages

CVE-2025-59529

Medium priority
Vulnerable

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In versions up to and including 0.9-rc2, the simple protocol server ignores the documented client limit and accepts...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-52616

Low priority
Vulnerable

A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. This predictable behavior facilitates DNS spoofing attacks,...

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-52615

Low priority
Vulnerable

A flaw was found in Avahi-daemon, which relies on fixed source ports for wide-area DNS queries. This issue simplifies attacks where malicious DNS responses are injected.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-38473

Medium priority

Some fixes available 7 of 8

A vulnerability was found in Avahi. A reachable assertion exists in the avahi_alternative_host_name() function.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages

CVE-2023-38472

Medium priority

Some fixes available 7 of 8

A vulnerability was found in Avahi. A reachable assertion exists in the avahi_rdata_parse() function.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages

CVE-2023-38471

Medium priority

Some fixes available 7 of 8

A vulnerability was found in Avahi. A reachable assertion exists in the dbus_set_host_name function.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages

CVE-2023-38470

Medium priority

Some fixes available 7 of 8

A vulnerability was found in Avahi. A reachable assertion exists in the avahi_escape_label() function.

1 affected package

avahi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
avahi Fixed Fixed Fixed
Show less packages