PT-2026-30270 · Avahi+2 · Avahi+2

Certocd

·

Published

2026-04-03

·

Updated

2026-05-12

·

CVE-2026-34933

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Avahi versions prior to 0.9-rc4
Description Avahi, a system for local network service discovery using mDNS/DNS-SD, is susceptible to a denial-of-service condition. An unprivileged local user can terminate the avahi-daemon process by sending a crafted D-Bus method call with conflicting publish flags to the transport flags from domain() function.
Recommendations Update to version 0.9-rc4 or later.

Exploit

Fix

Assertion Failure

Weakness Enumeration

Related Identifiers

CVE-2026-34933
ECHO-A71E-9FDF-9B3D
OESA-2026-1854
OESA-2026-1982
OESA-2026-1983
OESA-2026-1984
OESA-2026-1985
OESA-2026-1986
OPENSUSE-SU-2026:10670-1
RHSA-2026:11316
USN-8269-1

Affected Products

Avahi
Linuxmint
Ubuntu