The processRequest function in minissdpd.c in MiniSSDPd 1.2.20130907-3 allows local users to cause a denial of service (invalid free and daemon crash) via vectors related to error handling.
[
{
"signature_type": "Function",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "minissdpd/minissdpd.c",
"function": "processRequest"
},
"source": "https://github.com/miniupnp/miniupnp/commit/140ee8d2204b383279f854802b27bdb41c1d5d1a",
"digest": {
"length": 6410.0,
"function_hash": "280849302937709343331782401120873436996"
},
"id": "CVE-2016-3179-41031e13"
},
{
"signature_type": "Line",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "minissdpd/minissdpd.c"
},
"source": "https://github.com/miniupnp/miniupnp/commit/140ee8d2204b383279f854802b27bdb41c1d5d1a",
"digest": {
"line_hashes": [
"284477738497108832489885571171141272603",
"188957999920346507259335434804644068556",
"261154494126613759024777110465717834085",
"252512141321272516127642335031974319249"
],
"threshold": 0.9
},
"id": "CVE-2016-3179-8ef5ca45"
}
]