avahi avahi-compat avahi-glib avahi-gtk2 avahi-python avahi-qt3 avahi-sharp
Page content
- Author: voroskoi
- Vulnerable: 0.6.13-2siwenna1
- Unaffected: 0.6.13-3siwenna1
A vulnerability has been reported in Avahi, which can be exploited by malicious people to cause a DoS (Denial of Service). The vulnerability is caused due to an error within the “consume_labels()” function in avahi-core/dns.c when handling compressed packets. This can be exploited to cause an endless loop by sending specially crafted packets with compression labels that refer each other.
- Bug Tracker URL: http://bugs.frugalware.org/task/1607