It was discovered that miniupnpc contained a heap buffer overflow in parseelt (minixml.c - no CVE assigned).
It was discovered that miniupnpc also contained a memory corruption (invalid read, SIGSEGV) in NameValueParserEndElt (upnpreplyparse.c) while handling two consecutive malformed SOAP requests (CVE-2017-1000494).