Portable.SDK.UPnP.SSDP.Buffer.Overflow

description-logoDescription

This indicates an attack attempt to exploit a Buffer Overflow vulnerability in libupnp.
This flaw is due to a stack-based buffer overflow in the UPnP (Universal Plug and Play) service when handling an malicious request. A remote attacker may be able to exploit this to execute arbitrary code within the context of the application, via a crafted request.

affected-products-logoAffected Products

libupnp versions prior to 1.6.18

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply patch available from the website.
http://sourceforge.net/projects/pupnp/files/

Coverage

IPS (Regular DB)
IPS (Extended DB)