Related Vulnerabilities: CVE-2021-3468  

A security issue was found in avahi. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function. Denial of service can be triggered by writing long lines to /run/avahi-daemon/socket resulting in an unresponsive busy-loop of the daemon.

Severity Low

Remote No

Type Denial of service

Description

A security issue was found in avahi. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function. Denial of service can be triggered by writing long lines to /run/avahi-daemon/socket resulting in an unresponsive busy-loop of the daemon.

AVG-1742 avahi 0.8+15+ge8a3dd0-3 Low Vulnerable

https://bugzilla.redhat.com/show_bug.cgi?id=1939614
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=984938
https://github.com/lathiat/avahi/pull/330