Security Advisory

CVE-2024-52616

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-11-21 20:41:11
Last updated 2026-03-24 16:54:31
Assigner redhat
State PUBLISHED

Description

A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. This predictable behavior facilitates DNS spoofing attacks, allowing attackers to guess transaction IDs.