<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T03:39:23.923176+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2023:6707</id>
    <title>ALSA-2023:6707 — Moderate: avahi security update</title>
    <updated>2026-10-03T03:39:24.229896+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:9: avahi, AlmaLinux:9: avahi-compat-howl, AlmaLinux:9: avahi-compat-howl-devel, AlmaLinux:9: avahi-compat-libdns_sd, AlmaLinux:9: avahi-compat-libdns_sd-devel, AlmaLinux:9: avahi-devel, AlmaLinux:9: avahi-glib, AlmaLinux:9: avahi-glib-devel, AlmaLinux:9: avahi-libs, AlmaLinux:9: avahi-tools</p>
<p>Avahi is an implementation of the DNS Service Discovery and Multicast DNS specifications for Zero Configuration Networking. It facilitates service discovery on a local network. Avahi and Avahi-aware applications allow you to plug your computer into a network and, with no configuration, view other people to chat with, view printers to print with, and find shared files on other computers.</p>
<p>Security Fix(es):</p>
<p>* avahi: Local DoS by event-busy-loop from writing long lines to /run/avahi-daemon/socket (CVE-2021-3468)
* avahi: reachable assertion in avahi_s_host_name_resolver_start when trying to resolve badly-formatted hostnames (CVE-2021-3502)
* avahi: avahi-daemon can be crashed via DBus (CVE-2023-1981)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Additional Changes:</p>
<p>For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2023:6707"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-05709</id>
    <title>bdu:2022-05709</title>
    <updated>2026-10-03T03:39:24.229983+00:00</updated>
    <content>bdu:2022-05709</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-05709"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2021-3468</id>
    <title>Withdrawn: BELL-CVE-2021-3468 — CVE-2021-3468 does not affect BellSoft software</title>
    <updated>2026-10-03T03:39:24.230001+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2021-3468"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</id>
    <title>certfr-2025-avi-0969 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
    <updated>2026-10-03T03:39:24.230018+00:00</updated>
    <content>certfr-2025-avi-0969</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-71874</id>
    <title>cnvd-2021-71874</title>
    <updated>2026-10-03T03:39:24.230033+00:00</updated>
    <content>cnvd-2021-71874</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-71874"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-215972</id>
    <title>EUVD-2026-215972</title>
    <updated>2026-10-03T03:39:24.230045+00:00</updated>
    <content>EUVD-2026-215972</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-215972"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-3468</id>
    <title>fkie_cve-2021-3468</title>
    <updated>2026-10-03T03:39:24.230055+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loop. The highest threat from this vulnerability is to the availability of the avahi service, which becomes unresponsive after this flaw is triggered.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-3468"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-43rm-fv4g-cmj8</id>
    <title>GHSA-43rm-fv4g-cmj8</title>
    <updated>2026-10-03T03:39:24.230078+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loop. The highest threat from this vulnerability is to the availability of the avahi service, which becomes unresponsive after this flaw is triggered.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-43rm-fv4g-cmj8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-3468</id>
    <title>gsd-2021-3468</title>
    <updated>2026-10-03T03:39:24.230093+00:00</updated>
    <content>gsd-2021-3468</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-3468"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2021-3468</id>
    <title>msrc_CVE-2021-3468 — A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection…</title>
    <updated>2026-10-03T03:39:24.230103+00:00</updated>
    <content>msrc_CVE-2021-3468</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2021-3468"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1232</id>
    <title>OESA-2021-1232 — avahi security update</title>
    <updated>2026-10-03T03:39:24.230121+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: avahi</p>
<p>Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. This enables you to plug your laptop or computer into a network and instantly be able to view other people who you can chat with, find printers to print to or find files being shared.

Security Fix(es):

A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loop. The highest threat from this vulnerability is to the availability of the avahi service, which becomes unresponsive after this flaw is triggered.(CVE-2021-3468)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1232"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0694-1</id>
    <title>openSUSE-SU-2021:0694-1 — Security update for avahi</title>
    <updated>2026-10-03T03:39:24.230144+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for avahi</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:0694-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2024:0418</id>
    <title>RHSA-2024:0418 — Red Hat Security Advisory: avahi security update</title>
    <updated>2026-10-03T03:39:24.230160+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>avahi: Local DoS by event-busy-loop from writing long lines to /run/avahi-daemon/socket avahi: Reachable assertion in avahi_dns_packet_append_record avahi: Reachable assertion in avahi_escape_label avahi: Reachable assertion in dbus_set_host_name avahi: Reachable assertion in avahi_rdata_parse avahi: Reachable assertion in avahi_alternative_host_name</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2024:0418"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:1493-1</id>
    <title>SUSE-SU-2021:1493-1 — Security update for avahi</title>
    <updated>2026-10-03T03:39:24.230183+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for avahi</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:1493-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3468</id>
    <title>UBUNTU-CVE-2021-3468</title>
    <updated>2026-10-03T03:39:24.230197+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: avahi, Ubuntu:Pro:16.04:LTS: avahi, Ubuntu:18.04:LTS: avahi, Ubuntu:20.04:LTS: avahi</p>
<p>A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loop. The highest threat from this vulnerability is to the availability of the avahi service, which becomes unresponsive after this flaw is triggered.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3468"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0143</id>
    <title>WID-SEC-W-2022-0143 — avahi: Schwachstelle ermöglicht Denial of Service</title>
    <updated>2026-10-03T03:39:24.230221+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in avahi ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0143"/>
  </entry>
</feed>
