Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-8863
Description:Heap-based buffer overflow in the create_url_list function in gena/gena_device.c in Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a valid URI followed by an invalid one in the CALLBACK header of an SUBSCRIBE request.
Test IDs: 1.3.6.1.4.1.25623.1.0.703736   1.3.6.1.4.1.25623.1.1.1.2.2016.748   1.3.6.1.4.1.25623.1.0.106377   1.3.6.1.4.1.25623.1.1.1.2.2016.747   1.3.6.1.4.1.25623.1.1.10.2017.0002  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-8863
BugTraq ID: 92849
http://www.securityfocus.com/bid/92849
Debian Security Information: DSA-3736 (Google Search)
https://www.debian.org/security/2016/dsa-3736
https://security.gentoo.org/glsa/201701-52
https://www.tenable.com/security/research/tra-2017-10




© 1998-2025 E-Soft Inc. All rights reserved.