Description
Heap-based buffer overflow in the create_url_list function in gena/gena_device.c in Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a valid URI followed by an invalid one in the CALLBACK header of an SUBSCRIBE request.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-747-1 | libupnp security update |
Debian DLA |
DLA-748-1 | libupnp4 security update |
Debian DSA |
DSA-3736-1 | libupnp security update |
Ubuntu USN |
USN-4794-1 | libupnp vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T02:35:01.248Z
Reserved: 2016-10-20T00:00:00.000Z
Link: CVE-2016-8863
No data.
Status : Deferred
Published: 2017-03-07T16:59:01.493
Modified: 2025-04-20T01:37:25.860
Link: CVE-2016-8863
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
Ubuntu USN