<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:40:56 +0000</lastBuildDate>
    <item>
      <title>ALSA-2023:6707 — Moderate: avahi security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2023:6707</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: avahi, AlmaLinux:9: avahi-compat-howl, AlmaLinux:9: avahi-compat-howl-devel, AlmaLinux:9: avahi-compat-libdns_sd, AlmaLinux:9: avahi-compat-libdns_sd-devel, AlmaLinux:9: avahi-devel, AlmaLinux:9: avahi-glib, AlmaLinux:9: avahi-glib-devel, AlmaLinux:9: avahi-libs, AlmaLinux:9: avahi-tools&lt;/p&gt;
&lt;p&gt;Avahi is an implementation of the DNS Service Discovery and Multicast DNS specifications for Zero Configuration Networking. It facilitates service discovery on a local network. Avahi and Avahi-aware applications allow you to plug your computer into a network and, with no configuration, view other people to chat with, view printers to print with, and find shared files on other computers.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* avahi: Local DoS by event-busy-loop from writing long lines to /run/avahi-daemon/socket (CVE-2021-3468)
* avahi: reachable assertion in avahi_s_host_name_resolver_start when trying to resolve badly-formatted hostnames (CVE-2021-3502)
* avahi: avahi-daemon can be crashed via DBus (CVE-2023-1981)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: avahi, AlmaLinux:9: avahi-compat-howl, AlmaLinux:9: avahi-compat-howl-devel, AlmaLinux:9: avahi-compat-libdns_sd, AlmaLinux:9: avahi-compat-libdns_sd-devel, AlmaLinux:9: avahi-devel, AlmaLinux:9: avahi-glib, AlmaLinux:9: avahi-glib-devel, AlmaLinux:9: avahi-libs, AlmaLinux:9: avahi-tools&lt;/p&gt;
&lt;p&gt;Avahi is an implementation of the DNS Service Discovery and Multicast DNS specifications for Zero Configuration Networking. It facilitates service discovery on a local network. Avahi and Avahi-aware applications allow you to plug your computer into a network and, with no configuration, view other people to chat with, view printers to print with, and find shared files on other computers.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* avahi: Local DoS by event-busy-loop from writing long lines to /run/avahi-daemon/socket (CVE-2021-3468)
* avahi: reachable assertion in avahi_s_host_name_resolver_start when trying to resolve badly-formatted hostnames (CVE-2021-3502)
* avahi: avahi-daemon can be crashed via DBus (CVE-2023-1981)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2023:6707</guid>
    </item>
    <item>
      <title>bdu:2021-04611</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-04611</link>
      <description>bdu:2021-04611</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-04611</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2021-3502 — CVE-2021-3502 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2021-3502</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2021-3502</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0969 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</link>
      <description>certfr-2025-avi-0969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</guid>
    </item>
    <item>
      <title>EUVD-2026-20899</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-20899</link>
      <description>EUVD-2026-20899</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-20899</guid>
    </item>
    <item>
      <title>fkie_cve-2021-3502</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-3502</link>
      <description>&lt;p&gt;A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or dbus methods for invalid hostnames. The highest threat from this vulnerability is to the service availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or dbus methods for invalid hostnames. The highest threat from this vulnerability is to the service availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-3502</guid>
    </item>
    <item>
      <title>GHSA-mw7q-3wxj-rqfx</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mw7q-3wxj-rqfx</link>
      <description>&lt;p&gt;A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or dbus methods for invalid hostnames. The highest threat from this vulnerability is to the service availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or dbus methods for invalid hostnames. The highest threat from this vulnerability is to the service availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mw7q-3wxj-rqfx</guid>
    </item>
    <item>
      <title>gsd-2021-3502</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-3502</link>
      <description>gsd-2021-3502</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-3502</guid>
    </item>
    <item>
      <title>msrc_CVE-2021-3502 — A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2021-3502</link>
      <description>msrc_CVE-2021-3502</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2021-3502</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10643-1 — avahi-0.8-7.2 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10643-1</link>
      <description>&lt;p&gt;avahi-0.8-7.2 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;avahi-0.8-7.2 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10643-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-3502</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3502</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: avahi&lt;/p&gt;
&lt;p&gt;A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or dbus methods for invalid hostnames. The highest threat from this vulnerability is to the service availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: avahi&lt;/p&gt;
&lt;p&gt;A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or dbus methods for invalid hostnames. The highest threat from this vulnerability is to the service availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3502</guid>
    </item>
  </channel>
</rss>
