cbcvebase.
CVE-2017-6519
published 2017-05-01

CVE-2017-6519: avahi-daemon in Avahi through 0.6.32 and 0.7 inadvertently responds to IPv6 unicast queries with source addresses that are not on-link, which allows remote…

PriorityP344critical9.1CVSS 3.1
AVNACLPRNUINSUCHINAH
EPSS
3.08%
86.2th percentile
avahi-daemon in Avahi through 0.6.32 and 0.7 inadvertently responds to IPv6 unicast queries with source addresses that are not on-link, which allows remote attackers to cause a denial of service (traffic amplification) and may cause information leakage by obtaining potentially sensitive information from the responding device via port-5353 UDP packets. NOTE: this may overlap CVE-2015-2809.

Affected

18 ranges
VendorProductVersion rangeFixed in
avahiavahi<= 0.6.32
avahiavahi
avahiavahi>= 0 < 0.7-50.7-5
avahiavahi>= 0 < 0.7-50.7-5
avahiavahi>= 0 < 0.7-50.7-5
avahiavahi>= 0 < 0.7-50.7-5
avahiavahi>= 0 < 0.6.31-4ubuntu1.30.6.31-4ubuntu1.3
avahiavahi>= 0 < 0.6.32~rc+dfsg-1ubuntu2.30.6.32~rc+dfsg-1ubuntu2.3
avahiavahi>= 0 < 0.7-3.1ubuntu1.20.7-3.1ubuntu1.2
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debianavahi< avahi 0.7-5 (bookworm)avahi 0.7-5 (bookworm)
msrccbl2_avahi_0.8-1_on_cbl_mariner_2.0
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64

CVSS provenance

nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
nvdv3.09.1CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:P
osv9.1CRITICAL
vendor_msrc9.1CRITICAL
vendor_redhat9.1CRITICAL
vendor_ubuntu9.1CRITICAL
vendor_debian5.0LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.