Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2015-6031

Buffer overflow in the IGDstartelt function in igd_desc_parse.c in the MiniUPnP client (aka MiniUPnPc) before 1.9.20150917 allows remote UPNP servers to cause a denial of service (application crash) and possibly execute arbitrary code via an "oversized" XML element name.

  • Published: Nov 2, 2015
  • Updated: Apr 13, 2023
  • CVE: CVE-2015-6031
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
miniupnp_project / miniupnpc - 1.9.x
miniupnp_project / miniupnpc 1.9-2014-02-03 1.9-2014-02-03.x
miniupnp_project / miniupnpc 1.9-2014-02-05 1.9-2014-02-05.x
miniupnp_project / miniupnpc 1.9-2014-05-15 1.9-2014-05-15.x
miniupnp_project / miniupnpc 1.9-2014-06-10 1.9-2014-06-10.x
miniupnp_project / miniupnpc 1.9-2014-07-01 1.9-2014-07-01.x
miniupnp_project / miniupnpc 1.9-2014-09-06 1.9-2014-09-06.x
miniupnp_project / miniupnpc 1.9-2014-09-11 1.9-2014-09-11.x
miniupnp_project / miniupnpc 1.9-2014-11-05 1.9-2014-11-05.x
miniupnp_project / miniupnpc 1.9-2014-11-13 1.9-2014-11-13.x
miniupnp_project / miniupnpc 1.9-2014-11-17 1.9-2014-11-17.x
miniupnp_project / miniupnpc 1.9-2015-04-27 1.9-2015-04-27.x
miniupnp_project / miniupnpc 1.9-2015-04-30 1.9-2015-04-30.x
miniupnp_project / miniupnpc 1.9-2015-05-22 1.9-2015-05-22.x
miniupnp_project / miniupnpc 1.9-2015-06-16 1.9-2015-06-16.x
miniupnp_project / miniupnpc 1.9-2015-07-15 1.9-2015-07-15.x
miniupnp_project / miniupnpc 1.9-2015-07-22 1.9-2015-07-22.x
miniupnp_project / miniupnpc 1.9-2015-07-23 1.9-2015-07-23.x
miniupnp_project / miniupnpc 1.9-2015-08-16 1.9-2015-08-16.x
miniupnp_project / miniupnpc 1.9-2015-08-27 1.9-2015-08-27.x
miniupnp_project / miniupnpc 1.9-2015-08-28 1.9-2015-08-28.x
miniupnp_project / miniupnpc 1.9-2015-09-15 1.9-2015-09-15.x
debian / debian_linux 8.0 8.0.x
debian / debian_linux 7.0 7.0.x
canonical / ubuntu_linux 12.04 12.04.x
canonical / ubuntu_linux 14.04 14.04.x
canonical / ubuntu_linux 15.04 15.04.x
opensuse / leap 42.1 42.1.x
opensuse / opensuse 13.1 13.1.x
opensuse / opensuse 13.2 13.2.x