Avahi has Uncontrolled Recursion in lookup_handle_cname function
Description
Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In versions 0.9rc2 and below, avahi-daemon can be crashed via a segmentation fault by sending an unsolicited mDNS response containing a recursive CNAME record, where the alias and canonical name point to the same domain (e.g., "h.local" as a CNAME for "h.local"). This causes unbounded recursion in the lookup_handle_cname function, leading to stack exhaustion. The vulnerability affects record browsers where AVAHI_LOOKUP_USE_MULTICAST is set explicitly, which includes record browsers created by resolvers used by nss-mdns. This issue is patched in commit 78eab31128479f06e30beb8c1cbf99dd921e2524.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
19- Range: <= 0.9rc2
- osv-coords18 versionspkg:apk/chainguard/avahipkg:apk/wolfi/avahipkg:rpm/opensuse/avahi&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/avahi&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/avahi-glib2&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/avahi-qt5&distro=openSUSE%20Leap%2015.6pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Enterprise%20Micro%205.3pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Enterprise%20Micro%205.4pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Enterprise%20Micro%205.5pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP7pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP7pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Enterprise%20Server%20LTSS%20Extended%20Security%2012%20SP5pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Micro%206.0pkg:rpm/suse/avahi&distro=SUSE%20Linux%20Micro%206.1pkg:rpm/suse/avahi-glib2&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7pkg:rpm/suse/avahi-glib2&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP7
< 0.9_rc3-r0+ 17 more
- (no CPE)range: < 0.9_rc3-r0
- (no CPE)range: < 0.9_rc3-r0
- (no CPE)range: < 0.8-150600.15.15.1
- (no CPE)range: < 0.8-44.1
- (no CPE)range: < 0.8-150600.15.15.1
- (no CPE)range: < 0.8-150600.15.15.1
- (no CPE)range: < 0.7-150100.3.49.1
- (no CPE)range: < 0.8-150400.7.31.2
- (no CPE)range: < 0.8-150400.7.31.2
- (no CPE)range: < 0.8-150400.7.31.2
- (no CPE)range: < 0.8-150600.15.15.1
- (no CPE)range: < 0.8-150600.15.15.1
- (no CPE)range: < 0.8-150600.15.15.1
- (no CPE)range: < 0.6.32-32.39.1
- (no CPE)range: < 0.8-8.1
- (no CPE)range: < 0.8-slfo.1.1_5.1
- (no CPE)range: < 0.8-150600.15.15.1
- (no CPE)range: < 0.8-150600.15.15.1
Patches
Vulnerability mechanics
References
3- github.com/avahi/avahi/commit/78eab31128479f06e30beb8c1cbf99dd921e2524mitrex_refsource_MISC
- github.com/avahi/avahi/issues/501mitrex_refsource_MISC
- github.com/avahi/avahi/security/advisories/GHSA-h4vp-5m8j-f6w3mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.