CVE-2021-28302

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/03/2021
Last modified:
22/04/2022

Description

A stack overflow in pupnp before version 1.14.5 can cause the denial of service through the Parser_parseDocument() function. ixmlNode_free() will release a child node recursively, which will consume stack space and lead to a crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pupnp_project:pupnp:*:*:*:*:*:*:*:* 1.14.5 (excluding)