Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-52616

Опубликовано: 21 нояб. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.3

Описание

A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. This predictable behavior facilitates DNS spoofing attacks, allowing attackers to guess transaction IDs.

РелизСтатусПримечание
devel

deferred

2025-05-26
esm-infra-legacy/trusty

needs-triage

esm-infra/bionic

deferred

2025-05-26
esm-infra/focal

deferred

2025-05-26
esm-infra/xenial

deferred

2025-05-26
focal

ignored

end of standard support, was deferred [2025-05-26]
jammy

deferred

2025-05-26
noble

deferred

2025-05-26
oracular

deferred

2025-05-26
plucky

deferred

2025-05-26

Показывать по

EPSS

Процентиль: 28%
0.00095
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
redhat
7 месяцев назад

A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. This predictable behavior facilitates DNS spoofing attacks, allowing attackers to guess transaction IDs.

CVSS3: 5.3
nvd
7 месяцев назад

A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. This predictable behavior facilitates DNS spoofing attacks, allowing attackers to guess transaction IDs.

CVSS3: 5.3
msrc
4 месяца назад

Описание отсутствует

CVSS3: 5.3
debian
7 месяцев назад

A flaw was found in the Avahi-daemon, where it initializes DNS transac ...

suse-cvrf
6 месяцев назад

Security update for avahi

EPSS

Процентиль: 28%
0.00095
Низкий

5.3 Medium

CVSS3

Уязвимость CVE-2024-52616