Wind River Support Network

HomeDefectsLIN9-7952
Fixed

LIN9-7952 : Security Advisory - avahi - CVE-2018-1000845

Created: Jan 1, 2019    Updated: Feb 25, 2019
Resolved Date: Feb 20, 2019
Found In Version: 9.0.0.19
Fix Version: 9.0.0.20
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

Avahi version 0.7 contains a Incorrect Access Control vulnerability in avahi-daemon that can result in Traffic reflection and amplification for DDoS attacks.. This attack appear to be exploitable via unicast IP network packet with spoofed source address.

https://nvd.nist.gov/vuln/detail/CVE-2018-1000845

CVEs


Live chat
Online