CVE-2016-3178: Miniupnp Project Minissdpd

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

The processRequest function in minissdpd.c in MiniSSDPd 1.2.20130907-3 allows local users to cause a denial of service (out-of-bounds memory access and daemon crash) via vectors involving a negative length value.

Affected products

Published 2017-03-24. Last modified 2026-06-17.