Critical severity9.8NVD Advisory· Published May 11, 2017· Updated May 13, 2026
CVE-2017-8798
CVE-2017-8798
Description
Integer signedness error in MiniUPnP MiniUPnPc v1.4.20101221 through v2.0 allows remote attackers to cause a denial of service or possibly have unspecified other impact.
Affected products
6cpe:2.3:a:miniupnp_project:miniupnpd:1.4:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:miniupnp_project:miniupnpd:1.4:*:*:*:*:*:*:*
- cpe:2.3:a:miniupnp_project:miniupnpd:1.5:*:*:*:*:*:*:*
- cpe:2.3:a:miniupnp_project:miniupnpd:1.7:*:*:*:*:*:*:*
- cpe:2.3:a:miniupnp_project:miniupnpd:1.8:*:*:*:*:*:*:*
- cpe:2.3:a:miniupnp_project:miniupnpd:1.9:*:*:*:*:*:*:*
- cpe:2.3:a:miniupnp_project:miniupnpd:2.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- github.com/tintinweb/pub/tree/master/pocs/cve-2017-8798nvdExploitThird Party Advisory
- miniupnp.free.fr/files/changelog.phpnvdRelease NotesVendor Advisory
- lists.debian.org/debian-lts-announce/2020/04/msg00027.htmlnvd
News mentions
0No linked articles in our index yet.