OESA-2023-1793
Dashboard / Vulnerabilities / OESA-2023-1793
OESA-2023-1793
Summary: avahi security update
Details: Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. This enables you to plug your laptop or computer into a network and instantly be able to view other people who you can chat with, find printers to print to or find files being shared. Security Fix(es): A vulnerability was found in Avahi. A reachable assertion exists in the dbus_set_host_name function.(CVE-2023-38471) A vulnerability was found in Avahi. A reachable assertion exists in the avahi_rdata_parse() function.(CVE-2023-38472) A vulnerability was found in Avahi. A reachable assertion exists in the avahi_alternative_host_name() function.(CVE-2023-38473)
References: https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2023-1793, https://nvd.nist.gov/vuln/detail/CVE-2023-38471, https://nvd.nist.gov/vuln/detail/CVE-2023-38472, https://nvd.nist.gov/vuln/detail/CVE-2023-38473
Affected packages
Package
Name: avahi
Purl: pkg:rpm/openEuler/avahi&distro=openEuler-20.03-LTS-SP1
Affected ranges
Type: ECOSYSTEM
Events:
