Avahi DOS attacks broadcast-avahi-dos
Avahi DOS attacks broadcast-avahi-dos
Avahi is a common DNS-like service under Linux. It can help hosts find devices and services based on DNS protocol in the local area network without Zeroconf services. The tool works on port UDP 5353. Prior to version 0.6.29, the service had a CVE-2011-1002 vulnerability. Nmap's broadcast-avahi-dos script looks for a DNS server on the local network and sends an empty UDP packet. If this vulnerability exists, it can cause the server to crash.