CVE-2006-6870
published 2006-12-31CVE-2006-6870: The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of service (infinite loop) via a crafted…
PriorityP419medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.30%
81.4th percentile
The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of service (infinite loop) via a crafted compressed DNS response with a label that points to itself.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | >= 0 < 0.6.16-1 | 0.6.16-1 |
| avahi | avahi | >= 0 < 0.6.16-1 | 0.6.16-1 |
| avahi | avahi | >= 0 < 0.6.16-1 | 0.6.16-1 |
| avahi | avahi | >= 0 < 0.6.16-1 | 0.6.16-1 |
| debian | avahi | < avahi 0.6.16-1 (bookworm) | avahi 0.6.16-1 (bookworm) |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Avahi vulnerability
vendor_ubuntu·2007-01-05
CVE-2006-6870 Avahi vulnerability
Title: Avahi vulnerability
Summary: Avahi vulnerability
A flaw was discovered in Avahi's handling of compressed DNS packets. If
a specially crafted reply were received over the network, the Avahi
daemon would go into an infinite loop, causing a denial of service.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Debian
CVE-2006-6870: avahi - The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows re...
vendor_debian·2006·CVSS 5.0
CVE-2006-6870 [MEDIUM] CVE-2006-6870: avahi - The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows re...
The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of service (infinite loop) via a crafted compressed DNS response with a label that points to itself.
Scope: local
bookworm: resolved (fixed in 0.6.16-1)
bullseye: resolved (fixed in 0.6.16-1)
forky: resolved (fixed in 0.6.16-1)
sid: resolved (fixed in 0.6.16-1)
trixie: resolved (fixed in 0.6.16-1)
GHSA
GHSA-mc78-8grw-5ghv: The consume_labels function in avahi-core/dns
ghsa_unreviewed·2022-05-01
CVE-2006-6870 [MEDIUM] GHSA-mc78-8grw-5ghv: The consume_labels function in avahi-core/dns
The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of service (infinite loop) via a crafted compressed DNS response with a label that points to itself.
OSV
CVE-2006-6870: The consume_labels function in avahi-core/dns
osv·2006-12-31·CVSS 5.0
CVE-2006-6870 [MEDIUM] CVE-2006-6870: The consume_labels function in avahi-core/dns
The consume_labels function in avahi-core/dns.c in Avahi before 0.6.16 allows remote attackers to cause a denial of service (infinite loop) via a crafted compressed DNS response with a label that points to itself.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
bugzilla·2007-01-07·CVSS 5.0
CVE-2006-6870 [MEDIUM] CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
+++ This bug was initially created as a clone of Bug #221440 +++
+++ This bug was initially created as a clone of Bug #221439 +++
Description of problem:
Malformed compressed packed can trigger an endless loop
consuming 100% of cpu time upon its reception.
Version-Release number of selected component (if applicable):
FC5 (0.6.11), FC6 (0.6.15), RHEL5 (0.6.15)
Steps to Reproduce:
No reproducer available.
-- Additional comment from [email protected] on 2007-01-04 12:39 EST --
Created an attachment (id=144823)
Upstram patch for avahi Ticket #84 bug
Discussion:
This issue should be resolved in RAWHIDE version (avahi-0.6.16-1.fc7)
Bugzilla
CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
bugzilla·2007-01-06·CVSS 5.0
CVE-2006-6870 [MEDIUM] CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
+++ This bug was initially created as a clone of Bug #221440 +++
+++ This bug was initially created as a clone of Bug #221439 +++
Description of problem:
Malformed compressed packed can trigger an endless loop
consuming 100% of cpu time upon its reception.
Version-Release number of selected component (if applicable):
FC5 (0.6.11), FC6 (0.6.15), RHEL5 (0.6.15)
Steps to Reproduce:
No reproducer available.
-- Additional comment from [email protected] on 2007-01-04 12:39 EST --
Created an attachment (id=144823)
Upstram patch for avahi Ticket #84 bug
Discussion:
Patch resolving this bug was applied in avahi-0.6.11-3.fc5.
Bugzilla
CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
bugzilla·2007-01-04·CVSS 5.0
CVE-2006-6870 [MEDIUM] CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
+++ This bug was initially created as a clone of Bug #221439 +++
Description of problem:
Malformed compressed packed can trigger an endless loop
consuming 100% of cpu time upon its reception.
Version-Release number of selected component (if applicable):
FC5 (0.6.11), FC6 (0.6.15), RHEL5 (0.6.15)
Steps to Reproduce:
No reproducer available.
-- Additional comment from [email protected] on 2007-01-04 12:39 EST --
Created an attachment (id=144823)
Upstram patch for avahi Ticket #84 bug
Discussion:
This bug should be fixed in avahi 0.6.16.
---
But the latest avahi in FC6 is still avahi-0.6.15-1.fc6.
---
Avahi 0.6.16 was in testing. Today it was pushed to Final.
Bugzilla
CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
bugzilla·2007-01-04·CVSS 5.0
CVE-2006-6870 [MEDIUM] CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
CVE-2006-6870 Maliciously crafted packed can DoS avahi daemon
Description of problem:
Malformed compressed packed can trigger an endless loop
consuming 100% of cpu time upon its reception.
Version-Release number of selected component (if applicable):
FC5 (0.6.11), FC6 (0.6.15), RHEL5 (0.6.15)
Steps to Reproduce:
No reproducer available.
Discussion:
Created attachment 144823
Upstram patch for avahi Ticket #84 bug
---
Martin suggests an update to 0.6.16, which incorporates this specific fix and a
number of others. Proposing an exception.
---
Avahi was upgraded to 0.6.16 which should resolve this issue.
---
in 20070112 tree
---
avahi-0.6.16-1.el5 included in 20071111.1 and 20071112.3 trees.
http://fedoranews.org/cms/node/2362http://fedoranews.org/cms/node/2408http://secunia.com/advisories/23628http://secunia.com/advisories/23644http://secunia.com/advisories/23660http://secunia.com/advisories/23673http://secunia.com/advisories/23782http://secunia.com/advisories/24995http://www.avahi.org/#December2006http://www.avahi.org/changeset/1340http://www.avahi.org/ticket/84http://www.mandriva.com/security/advisories?name=MDKSA-2007:003http://www.novell.com/linux/security/advisories/2007_007_suse.htmlhttp://www.securityfocus.com/bid/21881http://www.ubuntu.com/usn/usn-402-1http://www.vupen.com/english/advisories/2007/0071http://fedoranews.org/cms/node/2362http://fedoranews.org/cms/node/2408http://secunia.com/advisories/23628http://secunia.com/advisories/23644http://secunia.com/advisories/23660http://secunia.com/advisories/23673http://secunia.com/advisories/23782http://secunia.com/advisories/24995http://www.avahi.org/#December2006http://www.avahi.org/changeset/1340http://www.avahi.org/ticket/84http://www.mandriva.com/security/advisories?name=MDKSA-2007:003http://www.novell.com/linux/security/advisories/2007_007_suse.htmlhttp://www.securityfocus.com/bid/21881http://www.ubuntu.com/usn/usn-402-1http://www.vupen.com/english/advisories/2007/0071
2006-12-31
Published