PT-2026-4557 · Avahi+3 · Avahi+3

Evverx

·

Published

2026-01-24

·

Updated

2026-05-12

·

CVE-2026-24401

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Avahi versions 0.9rc2 and below
Description Avahi, a system for service discovery on a local network using mDNS/DNS-SD, is susceptible to a denial-of-service condition. Sending a crafted mDNS response with a recursive CNAME record, where the alias and canonical name are identical (e.g., "h.local" as a CNAME for "h.local"), can cause avahi-daemon to crash due to a segmentation fault. This occurs because of unbounded recursion within the lookup handle cname function, leading to stack exhaustion. The issue specifically impacts record browsers where AVAHI LOOKUP USE MULTICAST is explicitly enabled, including those used by nss-mdns.
Recommendations Versions prior to 0.9rc2 should be updated to a version with the fix included in commit 78eab31128479f06e30beb8c1cbf99dd921e2524.

Exploit

Fix

Uncontrolled Recursion

Weakness Enumeration

Related Identifiers

AZL-75204
AZL-75207
BDU:2026-05066
CVE-2026-24401
ECHO-E408-9130-B921
GHSA-H4VP-5M8J-F6W3
OESA-2026-1450
OPENSUSE-SU-2026:10701-1
RHSA-2026:11316
SUSE-SU-2026:1191-1
SUSE-SU-2026:1441-1
SUSE-SU-2026:1442-1
SUSE-SU-2026:21117-1
SUSE-SU-2026:21127-1
USN-8269-1

Affected Products

Avahi
Linuxmint
Ubuntu
Nss-Mdns