CVE-2017-12130: Tinysvcmdns Project Tinysvcmdns
High severity, CVSS 7.5. EPSS: 2.4% chance of exploitation in the next 30 days.
An exploitable NULL pointer dereference vulnerability exists in the tinysvcmdns library version 2017-11-05. A specially crafted packet can make the library dereference a NULL pointer leading to a server crash and denial of service. An attacker needs to send a DNS query to trigger this vulnerability.
Affected products
- Tinysvcmdns Project Tinysvcmdns: version 2017-11-05 only
Published 2018-01-20. Last modified 2026-06-17.