The processRequest function in minissdpd.c in MiniSSDPd 1.2.20130907-3 allows local users to cause a denial of service (out-of-bounds memory access and daemon crash) via vectors involving a negative length value.
{ "binaries": [ { "binary_version": "1.1.20120121-1+deb7u1build0.14.04.1", "binary_name": "minissdpd" } ], "availability": "No subscription required" }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-3178.json"
{ "binaries": [ { "binary_version": "1.2.20130907-3+deb8u1build0.16.04.1", "binary_name": "minissdpd" } ], "availability": "No subscription required" }