Vulnerability Name:

CVE-2021-3468 (CCN-203013)

Assigned:2021-04-07
Published:2021-04-07
Updated:2023-06-22
Summary:
CVSS v3 Severity:5.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
4.9 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:U/RC:R)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
6.2 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
5.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:U/RC:R)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:2.1 Low (CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
4.9 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2021-3468

Source: CCN
Type: Red Hat Bugzilla – Bug 1939614
(CVE-2021-3468) - CVE-2021-3468 avahi: Local DoS by event-busy-loop from writing long lines to /run/avahi-daemon/socket

Source: secalert@redhat.com
Type: Issue Tracking
secalert@redhat.com

Source: XF
Type: UNKNOWN
avahi-cve20213468-dos(203013)

Source: CCN
Type: avahi GIT Repository
Avoid infinite-loop in avahi-daemon by handling HUP event in client_work #330

Source: secalert@redhat.com
Type: Mailing List, Third Party Advisory
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Vulnerable Configuration:Configuration CCN 1:
  • cpe:/a:avahi:avahi:0.6:*:*:*:*:*:*:*
  • OR cpe:/a:avahi:avahi:0.8:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:7444
    P
    avahi-0.8-150400.7.3.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7461
    P
    chrony-4.1-150400.19.4 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7873
    P
    avahi-autoipd-0.8-150400.7.3.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:692
    P
    Security update for the Linux Kernel (Important)
    2022-08-12
    oval:org.opensuse.security:def:95266
    P
    Recommended update for aws-efs-utils, python-ansi2html, python-py, python-pytest-html, python-pytest-metadata, python-pytest-rerunfailures, python-coverage, python-oniconfig, python-unittest-mixins (Moderate) (in QA)
    2022-07-12
    oval:org.opensuse.security:def:3257
    P
    libspice-client-glib-2_0-8-0.33-3.6.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3401
    P
    xen-4.12.1_06-1.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3593
    P
    libfreetype6-2.6.3-7.15.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:95225
    P
    typelib-1_0-GUPnP-1_0-1.4.3-150400.1.6 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94502
    P
    avahi-0.8-150400.5.73 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94887
    P
    avahi-autoipd-0.8-150400.5.73 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94513
    P
    bzip2-1.0.8-150400.1.122 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:2872
    P
    avahi-0.8-150400.5.73 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94769
    P
    pam_u2f-1.2.0-150400.2.4 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:6036
    P
    Security update for tiff (Important)
    2022-05-16
    oval:org.opensuse.security:def:101979
    P
    Security update for the Linux Kernel (Live Patch 3 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:6003
    P
    Security update for python (Moderate)
    2022-04-08
    oval:org.opensuse.security:def:111993
    P
    avahi-0.8-7.2 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:101938
    P
    Security update for the Linux Kernel (Live Patch 7 for SLE 15 SP3) (Important)
    2021-11-19
    oval:org.opensuse.security:def:105554
    P
    avahi-0.8-7.2 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:97025
    P
    memcached-1.5.6-2.10 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:101482
    P
    Security update for the Linux Kernel (Important)
    2021-08-14
    oval:org.opensuse.security:def:101226
    P
    newt-devel-0.52.20-5.35 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:111564
    P
    Security update for avahi (Important)
    2021-07-11
    oval:org.opensuse.security:def:99956
    P
    (Important)
    2021-06-08
    oval:org.opensuse.security:def:92300
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:99055
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:8944
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:93050
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:70390
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:92499
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:69640
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:99250
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:93203
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:91910
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:10250
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:92698
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:69839
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:99449
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:9500
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:92105
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:98860
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:8749
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:92897
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:99648
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:9699
    P
    Security update for avahi (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:32090
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:23897
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:69474
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:86554
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:5718
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:59469
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:82567
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:55183
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:30193
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:75875
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:10088
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:67125
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:89124
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:84595
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:57441
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:32914
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:9334
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:87378
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:125530
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:59727
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:83280
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:55896
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:31171
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:89382
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:8589
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:85635
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:57913
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:33646
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:51558
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:29360
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:108645
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:66807
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:88113
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:126700
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:83400
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:56016
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:31618
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:76193
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:23570
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:86082
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:58737
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:33904
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:51885
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:30073
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:70228
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:88425
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:127097
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:84138
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:56994
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:111374
    P
    Security update for avahi (Moderate)
    2021-05-09
    oval:org.opensuse.security:def:43154
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:73804
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:108148
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:65279
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:118305
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:96925
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:34426
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:99940
    P
    (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:38724
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:64490
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:5748
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:4124
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:44449
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:26044
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:74281
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:108604
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:66766
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:35248
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:100275
    P
    (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:76160
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:40019
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:68505
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:64682
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:117407
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:4190
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:1460
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:102554
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:74347
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:60249
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:100604
    P
    (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:73612
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:68550
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:107892
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:65213
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:117662
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:5677
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:95841
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:99633
    P
    (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:75834
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:109220
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:67092
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:7416
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:61071
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:5031
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:101694
    P
    Security update for avahi (Moderate)
    2021-05-04
    BACK
    avahi avahi 0.6
    avahi avahi 0.8