{ "CVE_data_meta": { "ASSIGNER": "cve@mitre.org", "ID": "CVE-2017-6519", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "avahi-daemon in Avahi through 0.6.32 and 0.7 inadvertently responds to IPv6 unicast queries with source addresses that are not on-link, which allows remote attackers to cause a denial of service (traffic amplification) and may cause information leakage by obtaining potentially sensitive information from the responding device via port-5353 UDP packets. NOTE: this may overlap CVE-2015-2809." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "https://github.com/lathiat/avahi/issues/203#issuecomment-449536790", "refsource": "MISC", "url": "https://github.com/lathiat/avahi/issues/203#issuecomment-449536790" }, { "name": "USN-3876-1", "refsource": "UBUNTU", "url": "https://usn.ubuntu.com/3876-1/" }, { "name": "https://github.com/lathiat/avahi/issues/203", "refsource": "MISC", "url": "https://github.com/lathiat/avahi/issues/203" }, { "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1426712", "refsource": "MISC", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1426712" }, { "name": "USN-3876-2", "refsource": "UBUNTU", "url": "https://usn.ubuntu.com/3876-2/" }, { "name": "https://www.secfu.net/advisories", "refsource": "MISC", "url": "https://www.secfu.net/advisories" }, { "refsource": "MLIST", "name": "[bookkeeper-issues] 20200729 [GitHub] [bookkeeper] padma81 opened a new issue #2387: Security vulnerabilities in the apache/bookkeeper-4.9.2 image", "url": "https://lists.apache.org/thread.html/r1b103833cb5bc8466e24ff0ecc5e75b45a705334ab6a444e64e840a0@%3Cissues.bookkeeper.apache.org%3E" } ] } }