High severity7.4NVD Advisory· Published Mar 6, 2022· Updated Jun 17, 2026
CVE-2022-26505
CVE-2022-26505
Description
A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- ReadyMedia/ReadyMediadescription
- Range: <1.3.1
- Range: <1.3.1
- osv-coords3 versionspkg:rpm/opensuse/minidlna&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/minidlna&distro=openSUSE%20Tumbleweedpkg:rpm/suse/minidlna&distro=SUSE%20Package%20Hub%2015%20SP3
< 1.3.1-bp153.2.3.1+ 2 more
- (no CPE)range: < 1.3.1-bp153.2.3.1
- (no CPE)range: < 1.3.1-1.1
- (no CPE)range: < 1.3.1-bp153.2.3.1
Patches
Vulnerability mechanics
References
5- sourceforge.net/p/minidlna/git/ci/c21208508dbc131712281ec5340687e5ae89e940/nvdPatchThird Party Advisory
- www.openwall.com/lists/oss-security/2022/03/06/1nvdMailing ListThird Party Advisory
- lists.debian.org/debian-lts-announce/2022/04/msg00005.htmlnvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2022/03/03/1nvdMailing ListThird Party Advisory
- security.gentoo.org/glsa/202311-12nvd
News mentions
0No linked articles in our index yet.