CVE-2009-2174
EPSS 4.9%
Description
GUPnP 0.12.7 allows remote attackers to cause a denial of service (crash) via an empty (1) subscription or (2) control message.
How to fix CVE-2009-2174
To remediate CVE-2009-2174, upgrade the affected package to a fixed version below.
- Debian/gupnp—upgrade to 0.12.6-3.1 or later
Is CVE-2009-2174 being exploited?
Low — EPSS is 4.9%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- Debian/gupnpfrom 0, < 0.12.6-3.1