2.1
CVSSv2

CVE-2016-3178

Published: 24/03/2017 Updated: 23/04/2021
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The processRequest function in minissdpd.c in MiniSSDPd 1.2.20130907-3 allows local users to cause a denial of service (out-of-bounds memory access and daemon crash) via vectors involving a negative length value.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

miniupnp project minissdpd 1.2.20130907-3

Vendor Advisories

Debian Bug report logs - #816759 minissdpd: CVE-2016-3178 CVE-2016-3179 Package: minissdpd; Maintainer for minissdpd is Thomas Goirand <zigo@debianorg>; Source for minissdpd is src:minissdpd (PTS, buildd, popcon) Reported by: Salva Peiró <speirofr@gmailcom> Date: Fri, 4 Mar 2016 22:24:01 UTC Severity: grave Tags ...