CVE-2008-5081
avahi - denial of service
EPSS 59.2%
描述
The originates_from_local_legacy_unicast_socket function (avahi-core/server.c) in avahi-daemon in Avahi before 0.6.24 allows remote attackers to cause a denial of service (crash) via a crafted mDNS packet with a source port of 0, which triggers an assertion failure.
如何修補 CVE-2008-5081
要修補 CVE-2008-5081,請將受影響套件升級到下列已修補版本。
- Debian/avahi—升級至 0.6.23-3 或更新版本
- Debian/avahi—升級至 0.6.22-3+lenny1 或更新版本
CVE-2008-5081 正在被利用嗎?
可能 — EPSS 為 59.2%,屬於高被利用機率區間,建議優先修補。
受影響套件(2)
- from 0, < 0.6.23-3
- from 0, < 0.6.22-3+lenny1