pkg:Debian/avahi
35 total CVEsCRITICAL1HIGH2MEDIUM19
✅ Check your installed version
All known vulnerabilities
- CRITICAL9.1CVE-2017-6519avahi-daemon in Avahi through 0.6.32 and 0.7 inadvertently responds to IPv6 unicast queries with source addresses that are not on-link, whi…from 0, < 0.7-5
- from 0, < 0.6.32-2+deb9u1
- from 0, < 0.8-4
- MEDIUM6.5CVE-2026-24401Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite.from 0
- MEDIUM6.5CVE-2025-68471Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite.from 0
- MEDIUM6.5CVE-2025-68468Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite.from 0
- MEDIUM5.5CVE-2026-34933Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite.from 0
- MEDIUM5.5CVE-2025-68276Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite.from 0
- MEDIUM5.5CVE-2025-59529Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite.from 0
- from 0, < 0.8-5+deb11u3
- from 0, < 0.8-5+deb11u3
- from 0, < 0.8-5+deb11u3
- from 0, < 0.8-5+deb11u3
- MEDIUM5.5CVE-2023-38469A vulnerability was found in Avahi, where a reachable assertion exists in avahi_dns_packet_append_record.from 0, < 0.8-5+deb11u3
- from 0, < 0.8-5+deb11u3
- from 0, < 0.7-4+deb10u2
- from 0, < 0.8-5+deb11u3
- from 0, < 0.8-5+deb11u2
- from 0, < 0.7-4+deb10u3
- from 0, < 0.8-5+deb11u1
- MEDIUM5.3CVE-2024-52616A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentiall…from 0
- MEDIUM5.3CVE-2024-52615A flaw was found in Avahi-daemon, which relies on fixed source ports for wide-area DNS queries.from 0
- from 0, < 0.6.23-3lenny3
- from 0, < 0.6.28-4
- —CVE-2010-2244The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6.16 and 0.6.25 allows remote attackers to cause a denial of…from 0, < 0.6.26-1
- from 0, < 0.6.23-3lenny2
- from 0, < 0.6.24-3
- from 0, < 0.6.22-3+lenny1
- from 0, < 0.6.23-3
- from 0, < 0.6.20-2
- from 0, < 0.6.16-3etch2
- —CVE-2006-6870The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of service (infinite loop)…from 0, < 0.6.16-1
- —CVE-2006-5461Avahi before 0.6.15 does not verify the sender identity of netlink messages to ensure that they come from the kernel instead of another pro…from 0, < 0.6.15-1
- —CVE-2006-2289Buffer overflow in avahi-core in Avahi before 0.6.10 allows local users to execute arbitrary code via unknown vectors.from 0, < 0.6.10-1
- —CVE-2006-2288Avahi before 0.6.10 allows local users to cause a denial of service (mDNS/DNS-SD service disconnect) via unspecified mDNS name conflicts.from 0, < 0.6.10-1