VDB

DEBIAN-CVE-2021-3468

DEBIAN-CVE-2021-3468 PUBLISHED CVSS 5.5 MEDIUM

A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loop. The highest threat from this vulnerability is to the availability of the avahi service, which becomes unresponsive after this flaw is triggered.

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
Debian:13avahi0, 0, 0
Debian:12avahi0, 0, 0
Debian:11avahi0.8-5, 0.8-5, 0.8-5+deb11u1
Debian:14avahi0, 0, 0

Exploit Intelligence

Timeline

  • Jun 2, 2021 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›