[Pkg-utopia-maintainers] Bug#984938: avahi-daemon: local DoS by event-busy-loop from writing long lines to /run/avahi-daemon/socket

Riccardo Schirone rschiron at redhat.com
Fri Mar 26 11:22:29 GMT 2021


I have requested a CVE through Red Hat.

I'm proposing a patch upstream[1].
Additional details about the flaw at [2].

[1] https://github.com/lathiat/avahi/pull/330
[2] https://bugzilla.redhat.com/show_bug.cgi?id=1939614#c3

Thanks,
-- 
Riccardo Schirone
Red Hat -- Product Security
Email: rschiron at redhat.com
PGP-Key ID: CF96E110
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-utopia-maintainers/attachments/20210326/fc65f684/attachment.sig>


More information about the Pkg-utopia-maintainers mailing list