Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-38470
HistoryNov 02, 2023 - 12:00 a.m.

CVE-2023-38470

2023-11-0200:00:00
ubuntu.com
ubuntu.com
11
vulnerability
avahi
assertion
avahi_escape_label
unix

6.2 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

6.2 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%

A vulnerability was found in Avahi. A reachable assertion exists in the
avahi_escape_label() function.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchavahi< 0.7-3.1ubuntu1.3+esm2UNKNOWN
ubuntu20.04noarchavahi< 0.7-4ubuntu7.3UNKNOWN
ubuntu22.04noarchavahi< 0.8-5ubuntu5.2UNKNOWN
ubuntu23.04noarchavahi< 0.8-6ubuntu1.23.04.2UNKNOWN
ubuntu23.10noarchavahi< 0.8-10ubuntu1.1UNKNOWN
ubuntu14.04noarchavahi< 0.6.31-4ubuntu1.3+esm3UNKNOWN
ubuntu16.04noarchavahi< 0.6.32~rc+dfsg-1ubuntu2.3+esm3UNKNOWN

6.2 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

6.2 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%