Vulnerabilities > Miniupnp Project > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-08-11 CVE-2020-24221 Infinite Loop vulnerability in Miniupnp Project Ngiflib 0.4
An issue was discovered in GetByte function in miniupnp ngiflib version 0.4, allows local attackers to cause a denial of service (DoS) via crafted .gif file (infinite loop).
local
low complexity
miniupnp-project CWE-835
5.5
2023-08-02 CVE-2023-39113 Unspecified vulnerability in Miniupnp Project Ngiflib
ngiflib commit fb271 was discovered to contain a segmentation violation via the function "main" at gif2tag.c.
local
low complexity
miniupnp-project
5.5
2023-08-02 CVE-2023-39114 Unspecified vulnerability in Miniupnp Project Ngiflib 0.1/0.2/0.4
ngiflib commit 84a75 was discovered to contain a segmentation violation via the function SDL_LoadAnimatedGif at ngiflibSDL.c.
local
low complexity
miniupnp-project
5.5
2023-07-19 CVE-2023-37748 Infinite Loop vulnerability in Miniupnp Project Ngiflib
ngiflib commit 5e7292 was discovered to contain an infinite loop via the function DecodeGifImg at ngiflib.c.
local
low complexity
miniupnp-project CWE-835
5.5
2023-07-17 CVE-2022-30858 Resource Exhaustion vulnerability in Miniupnp Project Ngiflib 0.4
An issue was discovered in ngiflib 0.4.
network
low complexity
miniupnp-project CWE-400
6.5
2018-05-31 CVE-2018-11578 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Miniupnp Project Ngiflib 0.4
GifIndexToTrueColor in ngiflib.c in MiniUPnP ngiflib 0.4 has a Segmentation fault.
network
low complexity
miniupnp-project CWE-119
6.5
2017-03-24 CVE-2016-3179 Use After Free vulnerability in Miniupnp Project Minissdpd 1.2.201309073
The processRequest function in minissdpd.c in MiniSSDPd 1.2.20130907-3 allows local users to cause a denial of service (invalid free and daemon crash) via vectors related to error handling.
local
low complexity
miniupnp-project CWE-416
5.5
2017-03-24 CVE-2016-3178 Out-of-bounds Read vulnerability in Miniupnp Project Minissdpd 1.2.201309073
The processRequest function in minissdpd.c in MiniSSDPd 1.2.20130907-3 allows local users to cause a denial of service (out-of-bounds memory access and daemon crash) via vectors involving a negative length value.
local
low complexity
miniupnp-project CWE-125
5.5