MiniUPnP MiniUPnPd HTTP Service SOAPAction Handler ExecuteSoapAction Function Integer Signedness Error Remote DoS Vulnerability
1 May. 2013
Summary
MiniUPnP miniUPnPd HTTP service SOAPaction handler executesoapaction function integer signedness error remote suffers from denial of service vulnerability
Credit:
The information has been provided by Rapid7 - Rapid7, LLC .
MiniUPnP contains an integer signedness error in the MiniUPnPd HTTP service that may allow a remote denial of service. The issue is triggered when handling a SOAPACtion header that doesn't contain a double quote character (") supplied via the ExecuteSoapAction function. With a specially crafted SOAPAction, a remote attacker can cause an incorrect memory copy, which will result in a loss of availability.