REDHAT-BUG-2191687: Medium severity avahi autoip daemon vulnerability
Published Apr 28, 2023
·Updated
A reachable assertion was found in avahidnspacketappendrecord.
References:
https://github.com/lathiat/avahi/issues/455
Affected Software
1 affected component
Avahi Avahi
Event History
Apr 28, 2023
Data Sourced
via Red Hat·07:47 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2191687?
The severity of REDHAT-BUG-2191687 is classified as important due to the reachable assertion in avahi_dns_packet_append_record.
2
How do I fix REDHAT-BUG-2191687?
To fix REDHAT-BUG-2191687, update to the latest patched version of Avahi that resolves this assertion issue.
3
What software is affected by REDHAT-BUG-2191687?
Avahi, specifically the libavahi-client component, is affected by REDHAT-BUG-2191687.
4
How can REDHAT-BUG-2191687 impact my system?
If exploited, REDHAT-BUG-2191687 could cause application crashes affecting the availability of services that rely on Avahi.
5
Is there a workaround for REDHAT-BUG-2191687?
Currently, the recommended approach is to apply the security update rather than seeking a workaround for REDHAT-BUG-2191687.