Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-12107

Опубликовано: 15 мая 2019
Источник: debian

Описание

The upnp_event_prepare function in upnpevents.c in MiniUPnP MiniUPnPd through 2.1 allows a remote attacker to leak information from the heap due to improper validation of an snprintf return value.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
miniupnpdfixed2.1-6package
miniupnpdfixed1.8.20140523-4.1+deb9u2stretchpackage

Примечания

  • https://github.com/miniupnp/miniupnp/commit/bec6ccec63cadc95655721bc0e1dd49dac759d94

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 6 лет назад

The upnp_event_prepare function in upnpevents.c in MiniUPnP MiniUPnPd through 2.1 allows a remote attacker to leak information from the heap due to improper validation of an snprintf return value.

CVSS3: 7.5
nvd
больше 6 лет назад

The upnp_event_prepare function in upnpevents.c in MiniUPnP MiniUPnPd through 2.1 allows a remote attacker to leak information from the heap due to improper validation of an snprintf return value.

github
больше 3 лет назад

The upnp_event_prepare function in upnpevents.c in MiniUPnP MiniUPnPd through 2.1 allows a remote attacker to leak information from the heap due to improper validation of an snprintf return value.