Description

A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. This predictable behavior facilitates DNS spoofing attacks, allowing attackers to guess transaction IDs.

INFO

Published Date :

2024-11-21T20:41:11.636Z

Last Modified :

2026-03-24T16:54:31.080Z

Source :

redhat
AFFECTED PRODUCTS

The following products are affected by CVE-2024-52616 vulnerability.

Vendors Products
Redhat
  • Enterprise Linux
  • Openshift

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact