cbcvebase.
CVE-2025-68276
published 2026-01-12

CVE-2025-68276: Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, an unprivileged local…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.14%
3.7th percentile
Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, an unprivileged local users can crash avahi-daemon (with wide-area disabled) by creating record browsers with the AVAHI_LOOKUP_USE_WIDE_AREA flag set via D-Bus. This can be done by either calling the RecordBrowserNew method directly or creating hostname/address/service resolvers/browsers that create those browsers internally themselves.

Affected

12 ranges
VendorProductVersion rangeFixed in
avahiavahi< 0.90.9
avahiavahi<= 0.9-rc2
avahiavahi
avahiavahi>= 0 < 0.8-180.8-18
avahiavahi>= 0 < 0.8-5ubuntu5.40.8-5ubuntu5.4
avahiavahi>= 0 < 0.8-13ubuntu6.10.8-13ubuntu6.1
avahiavahi>= 0 < 0.8-16ubuntu3.10.8-16ubuntu3.1
avahiavahi>= 0 < 0.6.31-4ubuntu1.3+esm40.6.31-4ubuntu1.3+esm4
avahiavahi>= 0 < 0.6.32~rc+dfsg-1ubuntu2.3+esm40.6.32~rc+dfsg-1ubuntu2.3+esm4
avahiavahi>= 0 < 0.7-3.1ubuntu1.3+esm30.7-3.1ubuntu1.3+esm3
avahiavahi>= 0 < 0.7-4ubuntu7.3+esm10.7-4ubuntu7.3+esm1
debianavahi< avahi 0.8-18 (forky)avahi 0.8-18 (forky)

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.