CVE-2023-38469: Reachable assertion in avahi_dns_packet_append_record
A reachable assertion was found in avahidnspacketappendrecord.
References:
https://github.com/lathiat/avahi/issues/455
Other sources
A vulnerability was found in Avahi, where a reachable assertion exists in avahidnspacketappendrecord.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-38469?
The severity of CVE-2023-38469 is medium with a CVSS score of 6.2.
What is the affected software for CVE-2023-38469?
The affected software includes Avahi version up to exclusive 0.9, Redhat Enterprise Linux 8.0, and Redhat Enterprise Linux 9.0.
How can I fix CVE-2023-38469?
To fix CVE-2023-38469, update Avahi to a version that is not vulnerable or apply the necessary patches provided by the vendor.
Where can I find more information about CVE-2023-38469?
You can find more information about CVE-2023-38469 in the following references: [Red Hat Security Advisory](https://access.redhat.com/security/cve/CVE-2023-38469), [Bugzilla Report](https://bugzilla.redhat.com/show_bug.cgi?id=2191687), and [GitHub Issue](https://github.com/lathiat/avahi/issues/455).