https://seclists.org/oss-sec/2025/q4/288: Avahi simple protocol server accepts unlimited connections [CVE-2025-59529]
Published Dec 19, 2025
·Updated
Affected Software
1 affected component
Avahi Avahi
Frequently Asked Questions
1
What is the severity of CVE-2025-59529?
CVE-2025-59529 is classified as a medium severity vulnerability due to its potential to cause a local denial of service.
2
How can I fix CVE-2025-59529?
To fix CVE-2025-59529, update to the latest version of Avahi where the connection limit handling has been properly implemented.
3
What kind of attack does CVE-2025-59529 enable?
CVE-2025-59529 allows for easy local denial of service (DoS) by accepting unlimited connections.
4
Which software is affected by CVE-2025-59529?
CVE-2025-59529 affects Avahi, specifically its simple protocol server component.
5
When was CVE-2025-59529 published?
CVE-2025-59529 was published on December 19, 2025.