VulnerabilityModified
CVE-2011-1002
avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353.
MEDIUM 5.0EPSS 29.4%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 29.4%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 29.36% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-835
- Affected
- avahi/avahi · fedoraproject/fedora · redhat/enterprise linux · canonical/ubuntu linux · debian/debian linux
- Source
- secalert@redhat.com
References
- http://avahi.org/ticket/325Broken Link
- http://git.0pointer.de/?p=avahi.git%3Ba=commit%3Bh=46109dfec75534fe270c0ab902576f685d5ab3a6Broken Link
- http://lists.fedoraproject.org/pipermail/package-announce/2011-March/055858.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2011-04/msg00000.htmlThird Party Advisory
- http://openwall.com/lists/oss-security/2011/02/18/1Mailing List, Third Party Advisory
- http://openwall.com/lists/oss-security/2011/02/18/4Mailing List, Third Party Advisory
- http://osvdb.org/70948Broken Link
- http://secunia.com/advisories/43361Broken Link, Vendor Advisory
- http://secunia.com/advisories/43465Broken Link
- http://secunia.com/advisories/43605Broken Link
- http://secunia.com/advisories/43673Broken Link
- http://secunia.com/advisories/44131Broken Link
- http://ubuntu.com/usn/usn-1084-1Third Party Advisory
- http://www.debian.org/security/2011/dsa-2174Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:037Broken Link
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:040Broken Link
- http://www.openwall.com/lists/oss-security/2011/02/22/9Mailing List, Third Party Advisory
- http://www.redhat.com/support/errata/RHSA-2011-0436.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2011-0779.htmlBroken Link
- http://www.securityfocus.com/bid/46446Broken Link, Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2011/0448Broken Link, Vendor Advisory
- http://www.vupen.com/english/advisories/2011/0499Broken Link, Vendor Advisory
- http://www.vupen.com/english/advisories/2011/0511Broken Link
- http://www.vupen.com/english/advisories/2011/0565Broken Link
- http://www.vupen.com/english/advisories/2011/0601Broken Link
- http://www.vupen.com/english/advisories/2011/0670Broken Link
- http://www.vupen.com/english/advisories/2011/0969Broken Link
- http://xorl.wordpress.com/2011/02/20/cve-2011-1002-avahi-daemon-remote-denial-of-service/Exploit, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=667187Issue Tracking, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65524Not Applicable
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.