Description
The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger issue.
Published: 2020-06-08
Score: 7.5 High
EPSS: 3.0% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-2315-1 gupnp security update
Debian DLA Debian DLA DLA-2318-1 wpa security update
Debian DLA Debian DLA DLA-2489-1 minidlna security update
Debian DSA Debian DSA DSA-4806-1 minidlna security update
Debian DSA Debian DSA DSA-4898-1 wpa security update
Ubuntu USN Ubuntu USN USN-4494-1 GUPnP vulnerability
Ubuntu USN Ubuntu USN USN-4722-1 ReadyMedia (MiniDLNA) vulnerabilities
Ubuntu USN Ubuntu USN USN-4734-1 wpa_supplicant and hostapd vulnerabilities
Ubuntu USN Ubuntu USN USN-4734-2 wpa_supplicant and hostapd vulnerabilities
History

No history.

Subscriptions

Asus Rt-n11
Broadcom Adsl
Canon Selphy Cp1200
Canonical Ubuntu Linux
Cisco Wap131 Wap150 Wap351
Debian Debian Linux
Dell B1165nfw
Dlink Dvg-n5412sp
Epson Ep-101 Ew-m970a3t M571t Xp-100 Xp-2101 Xp-2105 Xp-241 Xp-320 Xp-330 Xp-340 Xp-4100 Xp-4105 Xp-440 Xp-620 Xp-630 Xp-702 Xp-8500 Xp-8600 Xp-960 Xp-970
Fedoraproject Fedora
Hp 5020 Z4a69a 5030 M2u92b 5030 Z4a70a 5034 Z4a74a 5660 F8b04a Deskjet Ink Advantage 3456 A9t84c Deskjet Ink Advantage 3545 A9t81a Deskjet Ink Advantage 3545 A9t81c Deskjet Ink Advantage 3545 A9t83b Deskjet Ink Advantage 3546 A9t82a Deskjet Ink Advantage 3548 A9t81b Deskjet Ink Advantage 4515 Deskjet Ink Advantage 4518 Deskjet Ink Advantage 4535 F0v64a Deskjet Ink Advantage 4535 F0v64b Deskjet Ink Advantage 4535 F0v64c Deskjet Ink Advantage 4536 F0v65a Deskjet Ink Advantage 4538 F0v66b Deskjet Ink Advantage 4675 F1h97a Deskjet Ink Advantage 4675 F1h97b Deskjet Ink Advantage 4675 F1h97c Deskjet Ink Advantage 4676 F1h98a Deskjet Ink Advantage 4678 F1h99b Deskjet Ink Advantage 5575 G0v48b Deskjet Ink Advantage 5575 G0v48c Envy 100 Cn517a Envy 100 Cn517b Envy 100 Cn517c Envy 100 Cn518a Envy 100 Cn519a Envy 100 Cn519b Envy 110 Cq809a Envy 110 Cq809b Envy 110 Cq809c Envy 110 Cq809d Envy 110 Cq812c Envy 111 Cq810a Envy 114 Cq811a Envy 114 Cq811b Envy 114 Cq812a Envy 120 Cz022a Envy 120 Cz022b Envy 120 Cz022c Envy 4500 A9t80a Envy 4500 A9t80b Envy 4500 A9t89a Envy 4500 D3p93a Envy 4501 C8d05a Envy 4502 A9t85a Envy 4502 A9t87b Envy 4503 E6g71b Envy 4504 A9t88b Envy 4504 C8d04a Envy 4505 A9t86a Envy 4507 E6g70b Envy 4508 E6g72b Envy 4509 D3p94a Envy 4509 D3p94b Envy 4511 K9h50a Envy 4512 K9h49a Envy 4513 K9h51a Envy 4516 K9h52a Envy 4520 E6g67a Envy 4520 E6g67b Envy 4520 F0v63a Envy 4520 F0v63b Envy 4520 F0v69a Envy 4521 K9t10b Envy 4522 F0v67a Envy 4523 J6u60b Envy 4524 F0v71b Envy 4524 F0v72b Envy 4524 K9t01a Envy 4525 K9t09b Envy 4526 K9t05b Envy 4527 J6u61b Envy 4528 K9t08b Envy 5000 M2u85a Envy 5000 M2u85b Envy 5000 M2u91a Envy 5000 M2u94b Envy 5000 Z4a54a Envy 5000 Z4a74a Envy 5020 M2u91b Envy 5530 Envy 5531 Envy 5532 Envy 5534 Envy 5535 Envy 5536 Envy 5539 Envy 5540 F2e72a Envy 5540 G0v47a Envy 5540 G0v51a Envy 5540 G0v52a Envy 5540 G0v53a Envy 5540 K7c85a Envy 5541 K7g89a Envy 5542 K7c88a Envy 5543 N9u88a Envy 5544 K7c89a Envy 5544 K7c93a Envy 5545 G0v50a Envy 5546 K7c90a Envy 5547 J6u64a Envy 5548 K7g87a Envy 5640 B9s56a Envy 5640 B9s58a Envy 5642 B9s64a Envy 5643 B9s63a Envy 5644 B9s65a Envy 5646 F8b05a Envy 5664 F8b08a Envy 5665 F8b06a Envy 6020 5se16b Envy 6020 5se17a Envy 6020 6wd35a Envy 6020 7cz37a Envy 6052 5se18a Envy 6055 5se16a Envy 6540 B9s59a Envy 7640 Envy 7644 E4w46a Envy 7645 E4w44a Envy Photo 6200 K7g18a Envy Photo 6200 K7g26b Envy Photo 6200 K7s21b Envy Photo 6200 Y0k13d Envy Photo 6200 Y0k15a Envy Photo 6220 K7g20d Envy Photo 6220 K7g21b Envy Photo 6222 Y0k13d Envy Photo 6222 Y0k14d Envy Photo 6230 K7g25b Envy Photo 6232 K7g26b Envy Photo 6234 K7s21b Envy Photo 6252 K7g22a Envy Photo 7100 3xd89a Envy Photo 7100 K7g93a Envy Photo 7100 K7g99a Envy Photo 7100 Z3m37a Envy Photo 7100 Z3m52a Envy Photo 7120 Z3m41d Envy Photo 7155 Z3m52a Envy Photo 7164 K7g99a Envy Photo 7800 K7r96a Envy Photo 7800 K7s00a Envy Photo 7800 K7s10d Envy Photo 7800 Y0g42d Envy Photo 7800 Y0g52b Envy Photo 7822 Y0g42d Envy Photo 7822 Y0g43d Envy Photo 7830 Y0g50b Envy Pro 6420 5se45b Envy Pro 6420 5se46a Envy Pro 6420 6wd14a Envy Pro 6420 6wd16a Envy Pro 6452 5se47a Envy Pro 6455 5se45a Officejet 4650 E6g87a Officejet 4650 F1h96a Officejet 4650 F1h96b Officejet 4652 F1j02a Officejet 4652 F1j05b Officejet 4652 K9v84b Officejet 4654 F1j06b Officejet 4654 F1j07b Officejet 4655 F1j00a Officejet 4655 K9v79a Officejet 4655 K9v82b Officejet 4656 K9v81b Officejet 4657 V6d29b Officejet 4658 V6d30b
Huawei Hg255s Hg532e
Microsoft Windows 10 Xbox One
Nec Wr8165n
Netgear Wnhde111
Redhat Enterprise Linux
Ruckussecurity Zonedirector 1200
Tp-link Archer C50
Ui Unifi Controller
W1.fi Hostapd
Zte Zxv10 W300
Zyxel Amg1202-t10b Vmg8324-b10a
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T12:04:22.578Z

Reserved: 2020-05-07T00:00:00.000Z

Link: CVE-2020-12695

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-06-08T17:15:09.973

Modified: 2024-11-21T05:00:05.367

Link: CVE-2020-12695

cve-icon Redhat

Severity : Moderate

Publid Date: 2020-06-08T00:00:00Z

Links: CVE-2020-12695 - Bugzilla

cve-icon OpenCVE Enrichment

No data.