// For flags

CVE-2011-1002

avahi: daemon infinite loop triggered by an empty UDP packet (CVE-2010-2244 fix regression)

Severity Score

5.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.

avahi-core/socket.c en avahi-daemon en Avahi antes de v0.6.29 permite a atacantes remotos provocar una denegación de servicio (bucle infinito) a través de un paquete UDP (1) IPv4 o (2) IPv6 vacíos al puerto 5353. NOTA: esta vulnerabilidad existe debido a una corrección incorrecta del CVE-2010-2244.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
Attack Vector
Adjacent
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2011-02-14 CVE Reserved
  • 2011-02-22 CVE Published
  • 2023-12-23 EPSS Updated
  • 2024-08-06 CVE Updated
  • 2024-08-06 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop')
CAPEC
References (32)
URL Date SRC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
<= 0.6.28
Search vendor "Avahi" for product "Avahi" and version " <= 0.6.28"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.1
Search vendor "Avahi" for product "Avahi" and version "0.1"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.2
Search vendor "Avahi" for product "Avahi" and version "0.2"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.3
Search vendor "Avahi" for product "Avahi" and version "0.3"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.4
Search vendor "Avahi" for product "Avahi" and version "0.4"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.5
Search vendor "Avahi" for product "Avahi" and version "0.5"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.5.1
Search vendor "Avahi" for product "Avahi" and version "0.5.1"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.5.2
Search vendor "Avahi" for product "Avahi" and version "0.5.2"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.1
Search vendor "Avahi" for product "Avahi" and version "0.6.1"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.2
Search vendor "Avahi" for product "Avahi" and version "0.6.2"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.3
Search vendor "Avahi" for product "Avahi" and version "0.6.3"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.4
Search vendor "Avahi" for product "Avahi" and version "0.6.4"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.5
Search vendor "Avahi" for product "Avahi" and version "0.6.5"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.6
Search vendor "Avahi" for product "Avahi" and version "0.6.6"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.7
Search vendor "Avahi" for product "Avahi" and version "0.6.7"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.8
Search vendor "Avahi" for product "Avahi" and version "0.6.8"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.9
Search vendor "Avahi" for product "Avahi" and version "0.6.9"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.10
Search vendor "Avahi" for product "Avahi" and version "0.6.10"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.11
Search vendor "Avahi" for product "Avahi" and version "0.6.11"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.12
Search vendor "Avahi" for product "Avahi" and version "0.6.12"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.13
Search vendor "Avahi" for product "Avahi" and version "0.6.13"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.14
Search vendor "Avahi" for product "Avahi" and version "0.6.14"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.15
Search vendor "Avahi" for product "Avahi" and version "0.6.15"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.16
Search vendor "Avahi" for product "Avahi" and version "0.6.16"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.17
Search vendor "Avahi" for product "Avahi" and version "0.6.17"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.18
Search vendor "Avahi" for product "Avahi" and version "0.6.18"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.19
Search vendor "Avahi" for product "Avahi" and version "0.6.19"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.20
Search vendor "Avahi" for product "Avahi" and version "0.6.20"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.21
Search vendor "Avahi" for product "Avahi" and version "0.6.21"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.22
Search vendor "Avahi" for product "Avahi" and version "0.6.22"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.23
Search vendor "Avahi" for product "Avahi" and version "0.6.23"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.24
Search vendor "Avahi" for product "Avahi" and version "0.6.24"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.25
Search vendor "Avahi" for product "Avahi" and version "0.6.25"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.26
Search vendor "Avahi" for product "Avahi" and version "0.6.26"
-
Affected
Avahi
Search vendor "Avahi"
Avahi
Search vendor "Avahi" for product "Avahi"
0.6.27
Search vendor "Avahi" for product "Avahi" and version "0.6.27"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
Fedora
Search vendor "Fedoraproject" for product "Fedora"
15
Search vendor "Fedoraproject" for product "Fedora" and version "15"
-
Affected
Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
5.0
Search vendor "Redhat" for product "Enterprise Linux" and version "5.0"
-
Affected
Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
6.0
Search vendor "Redhat" for product "Enterprise Linux" and version "6.0"
-
Affected
Canonical
Search vendor "Canonical"
Ubuntu Linux
Search vendor "Canonical" for product "Ubuntu Linux"
8.04
Search vendor "Canonical" for product "Ubuntu Linux" and version "8.04"
lts
Affected
Canonical
Search vendor "Canonical"
Ubuntu Linux
Search vendor "Canonical" for product "Ubuntu Linux"
9.10
Search vendor "Canonical" for product "Ubuntu Linux" and version "9.10"
-
Affected
Canonical
Search vendor "Canonical"
Ubuntu Linux
Search vendor "Canonical" for product "Ubuntu Linux"
10.04
Search vendor "Canonical" for product "Ubuntu Linux" and version "10.04"
lts
Affected
Canonical
Search vendor "Canonical"
Ubuntu Linux
Search vendor "Canonical" for product "Ubuntu Linux"
10.10
Search vendor "Canonical" for product "Ubuntu Linux" and version "10.10"
-
Affected
Debian
Search vendor "Debian"
Debian Linux
Search vendor "Debian" for product "Debian Linux"
5.0
Search vendor "Debian" for product "Debian Linux" and version "5.0"
-
Affected
Debian
Search vendor "Debian"
Debian Linux
Search vendor "Debian" for product "Debian Linux"
6.0
Search vendor "Debian" for product "Debian Linux" and version "6.0"
-
Affected
Debian
Search vendor "Debian"
Debian Linux
Search vendor "Debian" for product "Debian Linux"
7.0
Search vendor "Debian" for product "Debian Linux" and version "7.0"
-
Affected