Libupnp is a compact, widely embedded UPnP protocol implementation library that, despite minimal reported vulnerability volume, occupies a prominent position in the software supply chain across networked devices, media servers, and IoT appliances. Its durable signal centers on memory-safety and access-control challenges inherent to the protocol parsing layer, with recurring weaknesses including buffer-boundary violations, improper access control, and null-pointer dereferences that are characteristic of low-level network protocol libraries.
The number and severity of CVEs published that impact products developed by Libupnp Project over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-5958HIGH Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK f | Jan 31, 2013 | 10.0 | 88 | NO | YES |
CVE-2012-5961HIGH Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK f | Jan 31, 2013 | 10.0 | 60 | NO | YES |
CVE-2016-6255HIGH Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to write to arbitrary files in the webroot via a POST request without a registered handler. | Mar 7, 2017 | 7.5 | 42 | NO | YES |
CVE-2016-8863CRITICAL Heap-based buffer overflow in the create_url_list function in gena/gena_device.c in Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to cause a denial of servi | Mar 7, 2017 | 9.8 | 33 | NO | NO |
CVE-2020-13848HIGH Portable UPnP SDK (aka libupnp) 1.12.1 and earlier allows remote attackers to cause a denial of service (crash) via a crafted SSDP message due to a NULL pointer dereference in the | Jun 4, 2020 | 7.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Libupnp Project.
Media articles that mention a CVE ID that affects a product developed by Libupnp Project — matched by CVE ID, not by vendor name.