An AddPortMapping Denial Of Service vulnerability in MiniUPnP MiniUPnPd through 2.1 exists due to a NULL pointer dereference in upnpredirect.c.
[
{
"id": "CVE-2019-12110-918075a6",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"digest": {
"line_hashes": [
"302155318186530469715069976551157642770",
"156596148470563530952199704557659803274",
"187644024402815536344550685239428136088",
"6866803136802379690709100977440090350"
],
"threshold": 0.9
},
"target": {
"file": "miniupnpd/upnpredirect.c"
},
"source": "https://github.com/miniupnp/miniupnp/commit/f321c2066b96d18afa5158dfa2d2873a2957ef38"
},
{
"id": "CVE-2019-12110-ce1af364",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"digest": {
"function_hash": "233203870663409224735262353492765677469",
"length": 2141.0
},
"target": {
"file": "miniupnpd/upnpredirect.c",
"function": "upnp_redirect"
},
"source": "https://github.com/miniupnp/miniupnp/commit/f321c2066b96d18afa5158dfa2d2873a2957ef38"
}
]