Lucene search

K
osvGoogleOSV:USN-5008-1
HistoryJul 07, 2021 - 5:19 p.m.

avahi vulnerabilities

2021-07-0717:19:33
Google
osv.dev
10
avahi
ubuntu
denial of service
vulnerabilities
cve-2021-3468
cve-2021-3502

AI Score

5.5

Confidence

High

EPSS

0

Percentile

5.1%

Thomas Kremer discovered that Avahi incorrectly handled termination signals
on the Unix socket. A local attacker could possibly use this issue to cause
Avahi to hang, resulting in a denial of service. This issue only affected
Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, and Ubuntu 20.10. (CVE-2021-3468)

It was discovered that Avahi incorrectly handled certain hostnames. A local
attacker could possibly use this issue to cause Avahi to crash, resulting
in a denial of service. This issue only affected Ubuntu 20.10 and Ubuntu
21.04. (CVE-2021-3502)