CVE-2017-8798: Buffer Overflow
Published May 11, 2017
·Updated
Integer signedness error in MiniUPnP MiniUPnPc v1.4.20101221 through v2.0 allows remote attackers to cause a denial of service or possibly have unspecified other impact.
Affected Software
6 affected components
Miniupnp Project Miniupnpd=1.4
Miniupnp Project Miniupnpd=1.5
Miniupnp Project Miniupnpd=1.7
Miniupnp Project Miniupnpd=1.8
Miniupnp Project Miniupnpd=1.9
Miniupnp Project Miniupnpd=2.0
Event History
May 11, 2017
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-8798?
CVE-2017-8798 has a high severity rating due to its potential to cause denial of service.
2
How do I fix CVE-2017-8798?
To fix CVE-2017-8798, upgrade to a patched version of MiniUPnP, ideally version 2.0 or later.
3
What versions of MiniUPnP are affected by CVE-2017-8798?
CVE-2017-8798 affects MiniUPnP versions 1.4 through 2.0 inclusive.
4
What impact can CVE-2017-8798 have on systems?
CVE-2017-8798 can lead to denial of service attacks, potentially disrupting network services.
5
Who is primarily at risk from CVE-2017-8798?
Remote attackers are the primary threat, as they can exploit this vulnerability to affect vulnerable systems.