CNNVD-202601-1830 Information

CNNVD ID

CNNVD-202601-1830

CVE-2025-68468

  • CNNVD Published: 2026-01-12

Description (Chinese)

Avahi是Avahi开源的一套用于Linux的本地服务发现工具。 Avahi 0.9-rc2及之前版本存在安全漏洞,该漏洞源于发送包含指向短TTL资源记录的CNAME资源记录的未经请求公告,可能导致avahi-daemon崩溃。

Description (English)

Avahi is an open source set of local service discovery tools for Linux. The security gap in Avahi 0.9-rc2 and earlier versions stems from the sending of unrequested notices containing records of the CNAME resources that point to the short TTL resource records, which could lead to the collapse of awahi-daemon.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Avahi

Published

2026-01-12

Last Modified

2026-02-24

References

https://github.com/avahi/avahi/commit/f66be13d7f31a3ef806d226bf8b67240179d309a https://github.com/avahi/avahi/issues/683 https://github.com/avahi/avahi/security/advisories/GHSA-cp79-r4x9-vf52

Share on: