Integer signedness error in MiniUPnP MiniUPnPc v1.4.20101221 through v2.0 allows remote attackers to cause a denial of service or possibly have unspecified other impact.
CVSS Details
- CVSS 3.0 Base Score: 9.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade miniupnpc | Oct 18, 2017 | May 11, 2017 |
| Debian | — | Upgrade miniupnpc | May 22, 2017 | May 10, 2017 |
| Freebsd | — | Upgrade miniupnpc | May 23, 2017 | May 22, 2017 |
| Suse | — | Upgrade libminiupnpc16 | May 31, 2017 | May 10, 2017 |
| Ubuntu | — | Upgrade libminiupnpc8Upgrade libminiupnpc10 | May 25, 2017 | May 10, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub