Vulnerabilities > Miniupnp Project > Miniupnpc > 1.8

DATE CVE VULNERABILITY TITLE RISK
2015-11-02 CVE-2015-6031 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Buffer overflow in the IGDstartelt function in igd_desc_parse.c in the MiniUPnP client (aka MiniUPnPc) before 1.9.20150917 allows remote UPNP servers to cause a denial of service (application crash) and possibly execute arbitrary code via an "oversized" XML element name.
6.8