CNNVD-202601-1831 Information

CNNVD ID

CNNVD-202601-1831

CVE-2025-68276

  • CNNVD Published: 2026-01-12

Description (Chinese)

Avahi是Avahi开源的一套用于Linux的本地服务发现工具。 Avahi 0.9-rc2及之前版本存在安全漏洞,该漏洞源于未授权本地用户可通过D-Bus创建记录浏览器,可能导致avahi-daemon崩溃。

Description (English)

Avahi is an open source set of local service discovery tools for Linux. The security gap in Avahi 0.9-rc2 and previous versions stems from the fact that unauthorized local users can create record browsers through D-Bus, which could lead to the collapse of awahi-daemon.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Avahi

Published

2026-01-12

Last Modified

2026-02-24

References

https://github.com/avahi/avahi/pull/806 https://github.com/avahi/avahi/security/advisories/GHSA-mhf3-865v-g5rc https://github.com/avahi/avahi/commit/ede7048475c5d47d53890e3bc1350dda8e0b3688 https://vigilance.fr/vulnerability/Avahi-assertion-error-via-avahi-wide-area-scan-cache-49272

Share on: