[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 949-1] miniupnpc security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Package        : miniupnpc
Version        : 1.5-2+deb7u2
CVE ID         : CVE-2017-8798
Debian Bug     : #862273

It was discovered that there was a integer signedness error in the miniupnpc
UPnP client that could allow remote attackers to cause a denial of service
attack.

For Debian 7 "Wheezy", this issue has been fixed in miniupnpc version
1.5-2+deb7u2.

We recommend that you upgrade your miniupnpc packages.


Regards,

- -- 
      ,''`.
     : :'  :     Chris Lamb
     `. `'`      lamby@debian.org / chris-lamb.co.uk
       `-

-----BEGIN PGP SIGNATURE-----
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=Gznn
-----END PGP SIGNATURE-----


Reply to: