A Denial Of Service vulnerability in MiniUPnP MiniUPnPd through 2.1 exists due to a NULL pointer dereference in copyIPv6IfDifferent in pcpserver.c.
[
{
"id": "CVE-2019-12111-212ad06f",
"target": {
"file": "miniupnpd/pcpserver.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"107839460429687708715952341264957931301",
"303013143768086468867966637049142757548",
"206733185662940348058775997407128719315",
"112246521631798828958974842935225456498"
]
},
"deprecated": false,
"signature_type": "Line",
"source": "https://github.com/miniupnp/miniupnp/commit/cb8a02af7a5677cf608e86d57ab04241cf34e24f",
"signature_version": "v1"
},
{
"id": "CVE-2019-12111-e37ce8b5",
"target": {
"file": "miniupnpd/pcpserver.c",
"function": "copyIPv6IfDifferent"
},
"digest": {
"function_hash": "42810451274363019698341505679653458935",
"length": 139.0
},
"deprecated": false,
"signature_type": "Function",
"source": "https://github.com/miniupnp/miniupnp/commit/cb8a02af7a5677cf608e86d57ab04241cf34e24f",
"signature_version": "v1"
}
]