A flaw was found in Avahi-daemon, which relies on fixed source ports for wide-area DNS queries. This issue simplifies attacks where malicious DNS responses are injected.
No PoCs from references.
- https://github.com/adegoodyer/kubernetes-admin-toolkit