avahi avahi-compat avahi-glib avahi-gtk2 avahi-python avahi-qt3 avahi-sharp

Page content
  • Author: voroskoi
  • Vulnerable: 0.6.13-2siwenna1
  • Unaffected: 0.6.13-3siwenna1

A vulnerability has been reported in Avahi, which can be exploited by malicious people to cause a DoS (Denial of Service). The vulnerability is caused due to an error within the “consume_labels()” function in avahi-core/dns.c when handling compressed packets. This can be exploited to cause an endless loop by sending specially crafted packets with compression labels that refer each other.

CVEs: