Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-5461
Description:Avahi before 0.6.15 does not verify the sender identity of netlink messages to ensure that they come from the kernel instead of another process, which allows local users to spoof network changes to Avahi.
Test IDs: 1.3.6.1.4.1.25623.1.0.57926   1.3.6.1.4.1.25623.1.0.57649   1.3.6.1.4.1.25623.1.0.59438   1.3.6.1.4.1.25623.1.1.12.2006.380.1   1.3.6.1.4.1.25623.1.0.59413  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-5461
BugTraq ID: 21016
http://www.securityfocus.com/bid/21016
http://www.gentoo.org/security/en/glsa/glsa-200611-13.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2006:215
https://tango.0pointer.de/pipermail/avahi-tickets/2006-November/000320.html
http://securitytracker.com/id?1017257
http://secunia.com/advisories/22807
http://secunia.com/advisories/22852
http://secunia.com/advisories/22932
http://secunia.com/advisories/23020
http://secunia.com/advisories/23042
SuSE Security Announcement: SUSE-SR:2006:026 (Google Search)
http://www.novell.com/linux/security/advisories/2006_26_sr.html
https://usn.ubuntu.com/380-1/
http://www.vupen.com/english/advisories/2006/4474
XForce ISS Database: avahi-netlink-security-bypass(30207)
https://exchange.xforce.ibmcloud.com/vulnerabilities/30207




© 1998-2025 E-Soft Inc. All rights reserved.