[Secure-testing-team] Bug#534594: CVE-2009-2174: denial of service (crash) via an empty (1) subscription or (2) control message

Giuseppe Iuculano giuseppe at iuculano.it
Thu Jun 25 16:44:42 UTC 2009


Package: gupnp
Severity: important
Tags: security


Hi,
the following CVE (Common Vulnerabilities & Exposures) id was
published for gupnp.

CVE-2009-2174[0]:
| GUPnP 0.12.7 allows remote attackers to cause a denial of service
| (crash) via an empty (1) subscription or (2) control message.

If you fix the vulnerability please also make sure to include the
CVE id in your changelog entry.

For further information see:

[0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2174
    http://security-tracker.debian.net/tracker/CVE-2009-2174

Cheers,
Giuseppe.





More information about the Secure-testing-team mailing list