Vulnerability Bulletins

DSA-3379 miniupnpc - security update

   
Affected software Debian
 
Aleksandar Nikolic of Cisco Talos discovered a buffer overflowvulnerability in the XML parser functionality of miniupnpc, a UPnP IGDclient lightweight library. A remote attacker can take advantage of thisflaw to cause an application using the miniupnpc library to crash, orpotentially to execute arbitrary code with the privileges of the userrunning the application.

More info:

https://www.debian.org/security/2015/dsa-3379