CVE-2026-48045

Name
CVE-2026-48045
Description
Zeroconf is a pure Python implementation of multicast DNS service discovery. Prior to 0.149.12, AsyncListener.handle_query_or_defer retained every truncated TC-bit incoming query, each up to _MAX_MSG_ABSOLUTE = 8966 bytes, in self._deferred[addr] and armed a per-address timer in self._timers[addr] without capping the per-address list or distinct addr keys, allowing unauthenticated hosts on the local link over UDP/5353 (224.0.0.251 / ff02::fb) to spoof sources, grow _deferred and _timers, and cause memory exhaustion and quadratic CPU burn. This issue is fixed in version 0.149.12.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
security-advisories@github.com https://github.com/python-zeroconf/python-zeroconf/commit/b22c8ff19c66c68907d220a4823c0950f4fa93f7
security-advisories@github.com https://github.com/python-zeroconf/python-zeroconf/pull/1751
security-advisories@github.com https://github.com/python-zeroconf/python-zeroconf/releases/tag/0.149.12
security-advisories@github.com https://github.com/python-zeroconf/python-zeroconf/security/advisories/GHSA-9663-mqmp-p9mm

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:paulsm:zeroconf:*:*:*:*:*:python:*:* py3-zeroconf >= None < 0.149.12

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
py3-zeroconf edge-community 0.147.2-r1 Achill Gilgenast <achill@achill.org> possibly vulnerable
py3-zeroconf edge-community 0.147.2-r0 Achill Gilgenast <achill@achill.org> possibly vulnerable
py3-zeroconf edge-community 0.147.0-r1 Achill Gilgenast <achill@achill.org> possibly vulnerable
py3-zeroconf edge-community 0.147.0-r0 fossdd <fossdd@pwned.life> possibly vulnerable
py3-zeroconf edge-community 0.146.5-r0 fossdd <fossdd@pwned.life> possibly vulnerable
py3-zeroconf edge-community 0.146.3-r0 fossdd <fossdd@pwned.life> possibly vulnerable
py3-zeroconf edge-community 0.144.1-r0 fossdd <fossdd@pwned.life> possibly vulnerable
py3-zeroconf edge-community 0.132.2-r0 Fabian Affolter <fabian@affolter-engineering.ch> possibly vulnerable
py3-zeroconf 3.24-community 0.147.2-r1 Achill Gilgenast <achill@achill.org> possibly vulnerable