CVE-2012-5960
35Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 33%
from disclosure to weapon5 days
Published on NVDJan 31
1st PoC+5d
exploitation probability
33%top 2% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK for UPnP devices) before 1.6.18 allows remote attackers to execute arbitrary code via a long UDN (aka upnp:rootdevice) field in a UDP packet.
Affected products
n/a · n/apublic PoCs found — 2✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/24455githubgithub.com/finn79426/CVE-2012-5960-PoC★ 0⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://lists.opensuse.org/opensuse-updates/2013-02/msg00013.htmlhttp://pupnp.sourceforge.net/ChangeLoghttps://community.rapid7.com/community/infosec/blog/2013/01/29/security-flaws-in-universal-plug-and-play-unplug-dont-playhttps://community.rapid7.com/servlet/JiveServlet/download/2150-1-16596/SecurityFlawsUPnP.pdfhttps://community.rapid7.com/servlet/servlet.FileDownload?file=00P1400000cCaFbhttps://wiki.mageia.org/en/Support/Advisories/MGASA-2013-0037https://www.tenable.com/security/research/tra-2017-10http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130129-upnphttp://www.debian.org/security/2013/dsa-2614http://www.debian.org/security/2013/dsa-2615http://www.kb.cert.org/vuls/id/922681http://www.mandriva.com/security/advisories?name=MDVSA-2013:098