avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
No history.
Information
Published : 2011-02-22 19:00
Updated : 2023-12-22 18:19
NVD link : CVE-2011-1002
Mitre link : CVE-2011-1002
CVE.ORG link : CVE-2011-1002
JSON object : View
Products Affected
avahi
- avahi
canonical
- ubuntu_linux
fedoraproject
- fedora
redhat
- enterprise_linux
debian
- debian_linux
CWE
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')