CVE-2017-12130: Tinysvcmdns Project Tinysvcmdns

High severity, CVSS 7.5. EPSS: 2.4% chance of exploitation in the next 30 days.

An exploitable NULL pointer dereference vulnerability exists in the tinysvcmdns library version 2017-11-05. A specially crafted packet can make the library dereference a NULL pointer leading to a server crash and denial of service. An attacker needs to send a DNS query to trigger this vulnerability.

Affected products

Published 2018-01-20. Last modified 2026-06-17.