CVE-2010-2244
published 2010-07-08CVE-2010-2244: The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6.16 and 0.6.25 allows remote attackers to cause a denial of service (assertion…
PriorityP418medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
2.64%
83.8th percentile
The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6.16 and 0.6.25 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNS packet with an invalid checksum followed by a DNS packet with a valid checksum, a different vulnerability than CVE-2008-5081.
Affected
55 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| avahi | avahi | <= 0.6.28 | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
| avahi | avahi | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_ubuntu7.8HIGH
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mqr3-725g-5qgw: avahi-core/socket
ghsa_unreviewed·2022-05-17·CVSS 4.3
CVE-2011-1002 [MEDIUM] CWE-835 GHSA-mqr3-725g-5qgw: avahi-core/socket
avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.
GHSA
GHSA-vxxg-j26r-33g8: The AvahiDnsPacket function in avahi-core/socket
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2010-2244 [MEDIUM] GHSA-vxxg-j26r-33g8: The AvahiDnsPacket function in avahi-core/socket
The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6.16 and 0.6.25 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNS packet with an invalid checksum followed by a DNS packet with a valid checksum, a different vulnerability than CVE-2008-5081.
OSV
CVE-2011-1002: avahi-core/socket
osv·2011-02-22·CVSS 4.3
CVE-2011-1002 [MEDIUM] CVE-2011-1002: avahi-core/socket
avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.
OSV
CVE-2010-2244: The AvahiDnsPacket function in avahi-core/socket
osv·2010-07-08·CVSS 5.0
CVE-2010-2244 [MEDIUM] CVE-2010-2244: The AvahiDnsPacket function in avahi-core/socket
The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6.16 and 0.6.25 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNS packet with an invalid checksum followed by a DNS packet with a valid checksum, a different vulnerability than CVE-2008-5081.
Red Hat
avahi: daemon infinite loop triggered by an empty UDP packet (CVE-2010-2244 fix regression)
vendor_redhat·2011-01-04·CVSS 4.3
CVE-2011-1002 [MEDIUM] CWE-835 avahi: daemon infinite loop triggered by an empty UDP packet (CVE-2010-2244 fix regression)
avahi: daemon infinite loop triggered by an empty UDP packet (CVE-2010-2244 fix regression)
avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.
Red Hat
avahi: daemon infinite loop triggered by an empty UDP packet (CVE-2010-2244 fix regression)
vendor_redhat·2011-01-04·CVSS 4.3
CVE-2011-0634 [MEDIUM] CWE-835 avahi: daemon infinite loop triggered by an empty UDP packet (CVE-2010-2244 fix regression)
avahi: daemon infinite loop triggered by an empty UDP packet (CVE-2010-2244 fix regression)
No description is available for this CVE.
Package: avahi (Red Hat Enterprise Linux 5) - Affected
Package: avahi (Red Hat Enterprise Linux 6) - Affected
Debian
CVE-2011-1002: avahi - avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attacke...
vendor_debian·2011·CVSS 4.3
CVE-2011-1002 [MEDIUM] CVE-2011-1002: avahi - avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attacke...
avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.
Scope: local
bookworm: resolved (fixed in 0.6.28-4)
bullseye: resolved (fixed in 0.6.28-4)
forky: resolved (fixed in 0.6.28-4)
sid: resolved (fixed in 0.6.28-4)
trixie: resolved (fixed in 0.6.28-4)
Ubuntu
Avahi vulnerabilities
vendor_ubuntu·2010-09-29·CVSS 7.8
CVE-2009-0758 [HIGH] Avahi vulnerabilities
Title: Avahi vulnerabilities
It was discovered that Avahi incorrectly handled certain mDNS query packets
when the reflector feature is enabled, which is not the default
configuration on Ubuntu. A remote attacker could send crafted mDNS queries
and perform a denial of service on the server and on the network. This
issue only affected Ubuntu 8.04 LTS and 9.04. (CVE-2009-0758)
It was discovered that Avahi incorrectly handled mDNS packets with
corrupted checksums. A remote attacker could send crafted mDNS packets and
cause Avahi to crash, resulting in a denial of service. (CVE-2010-2244)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
avahi: assertion failure after receiving a packet with corrupted checksum
vendor_redhat·2010-06-23·CVSS 5.0
CVE-2010-2244 [MEDIUM] avahi: assertion failure after receiving a packet with corrupted checksum
avahi: assertion failure after receiving a packet with corrupted checksum
The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6.16 and 0.6.25 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNS packet with an invalid checksum followed by a DNS packet with a valid checksum, a different vulnerability than CVE-2008-5081.
Package: avahi (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2010-2244: avahi - The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6....
vendor_debian·2010·CVSS 5.0
CVE-2010-2244 [MEDIUM] CVE-2010-2244: avahi - The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6....
The AvahiDnsPacket function in avahi-core/socket.c in avahi-daemon in Avahi 0.6.16 and 0.6.25 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNS packet with an invalid checksum followed by a DNS packet with a valid checksum, a different vulnerability than CVE-2008-5081.
Scope: local
bookworm: resolved (fixed in 0.6.26-1)
bullseye: resolved (fixed in 0.6.26-1)
forky: resolved (fixed in 0.6.26-1)
sid: resolved (fixed in 0.6.26-1)
trixie: resolved (fixed in 0.6.26-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-1002 avahi: avahi daemon remote DoS by sending NULL UDP (due incorrect CVE-2010-2244 fix) [fedora-all]
bugzilla·2011-02-23·CVSS 4.3
CVE-2011-1002 [MEDIUM] CVE-2011-1002 avahi: avahi daemon remote DoS by sending NULL UDP (due incorrect CVE-2010-2244 fix) [fedora-all]
CVE-2011-1002 avahi: avahi daemon remote DoS by sending NULL UDP (due incorrect CVE-2010-2244 fix) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=667187
Ple
Bugzilla
CVE-2010-2244 avahi: assertion failure after receiving a packet with corrupted checksum
bugzilla·2010-06-23·CVSS 5.0
CVE-2010-2244 [MEDIUM] CVE-2010-2244 avahi: assertion failure after receiving a packet with corrupted checksum
CVE-2010-2244 avahi: assertion failure after receiving a packet with corrupted checksum
Ludwig Nussel reported:
[1] http://www.openwall.com/lists/oss-security/2010/06/23/4
a deficiency in the way avahi daemon processed packets with corrupted
checksum(s). A remote attacker on the same local are network (LAN)
could send a DNS packet with broken checksum, that would cause avahi-daemon
to exit unexpectedly due to a failed assertion check. Different vulnerability
than CVE-2008-5081.
Discussion:
Created attachment 426335
Proposed patch by Ludwig Nussel (from [1])
---
Created avahi tracking bugs for this issue
Affects: fedora-all [bug 607297]
---
This has been assigned CVE-2010-2244.
---
Lennart, have you had a chance to review the patch Ludwig provided to fix this yet?
---
This issu
http://lists.fedoraproject.org/pipermail/package-announce/2010-July/043800.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-July/043820.htmlhttp://marc.info/?l=oss-security&m=127748459505200&w=2http://www.debian.org/security/2010/dsa-2086http://www.mandriva.com/security/advisories?name=MDVSA-2010:204http://www.openwall.com/lists/oss-security/2010/06/23/4http://www.securitytracker.com/id?1024200https://bugzilla.redhat.com/show_bug.cgi?id=607293http://lists.fedoraproject.org/pipermail/package-announce/2010-July/043800.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-July/043820.htmlhttp://marc.info/?l=oss-security&m=127748459505200&w=2http://www.debian.org/security/2010/dsa-2086http://www.mandriva.com/security/advisories?name=MDVSA-2010:204http://www.openwall.com/lists/oss-security/2010/06/23/4http://www.securitytracker.com/id?1024200https://bugzilla.redhat.com/show_bug.cgi?id=607293
2010-07-08
Published