vulnerability

Amazon Linux 2023: CVE-2024-52615: Medium priority package update for avahi

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
Nov 15, 2024
Added
Feb 17, 2025
Modified
Jul 4, 2025

Description

A flaw was found in Avahi-daemon, which relies on fixed source ports for wide-area DNS queries. This issue simplifies attacks where malicious DNS responses are injected.

Solutions

amazon-linux-2023-upgrade-avahiamazon-linux-2023-upgrade-avahi-autoipdamazon-linux-2023-upgrade-avahi-autoipd-debuginfoamazon-linux-2023-upgrade-avahi-compat-howlamazon-linux-2023-upgrade-avahi-compat-howl-debuginfoamazon-linux-2023-upgrade-avahi-compat-howl-develamazon-linux-2023-upgrade-avahi-compat-libdns-sdamazon-linux-2023-upgrade-avahi-compat-libdns-sd-debuginfoamazon-linux-2023-upgrade-avahi-compat-libdns-sd-develamazon-linux-2023-upgrade-avahi-debuginfoamazon-linux-2023-upgrade-avahi-debugsourceamazon-linux-2023-upgrade-avahi-develamazon-linux-2023-upgrade-avahi-dnsconfdamazon-linux-2023-upgrade-avahi-dnsconfd-debuginfoamazon-linux-2023-upgrade-avahi-glibamazon-linux-2023-upgrade-avahi-glib-debuginfoamazon-linux-2023-upgrade-avahi-glib-develamazon-linux-2023-upgrade-avahi-gobjectamazon-linux-2023-upgrade-avahi-gobject-debuginfoamazon-linux-2023-upgrade-avahi-gobject-develamazon-linux-2023-upgrade-avahi-libsamazon-linux-2023-upgrade-avahi-libs-debuginfoamazon-linux-2023-upgrade-avahi-toolsamazon-linux-2023-upgrade-avahi-tools-debuginfoamazon-linux-2023-upgrade-avahi-ui-develamazon-linux-2023-upgrade-avahi-ui-gtk3amazon-linux-2023-upgrade-avahi-ui-gtk3-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.