Description

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, an unprivileged local users can crash avahi-daemon (with wide-area disabled) by creating record browsers with the AVAHI_LOOKUP_USE_WIDE_AREA flag set via D-Bus. This can be done by either calling the RecordBrowserNew method directly or creating hostname/address/service resolvers/browsers that create those browsers internally themselves.

INFO

Published Date :

2026-01-12T17:31:49.652Z

Last Modified :

2026-01-12T18:41:22.098Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-68276 vulnerability.

Vendors Products
Avahi
  • Avahi
REFERENCES

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact