๐Ÿ” CVE Alert

CVE-2026-107159

MEDIUM 6.5

MiniUPnPd through 2.3.11 Divide-by-Zero DoS via SSDP M-SEARCH MX Header

CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th

MiniUPnPd through 2.3.11 built with --strict contains a divide-by-zero vulnerability in ProcessSSDPData() that allows unauthenticated local network attackers to crash the daemon. Attackers can send a single multicast M-SEARCH datagram with MX: 0 and a known ST to port 1900, triggering SIGFPE and denying UPnP IGD service.

CWE CWE-369
Vendor miniupnp project
Product miniupnpd
Published Oct 7, 2026
Stay Ahead of the Next One

Get instant alerts for miniupnp project miniupnpd

Be the first to know when new medium vulnerabilities affecting miniupnp project miniupnpd are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Adjacent
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

Affected Versions

miniupnp project / miniupnpd
0 โ‰ค 2.3.11

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/miniupnp/miniupnp/commit/8f13b7a5843f5270db684099c0a083f98869636a github.com: https://github.com/miniupnp/miniupnp github.com: https://github.com/miniupnp/miniupnp/blob/miniupnpd_2_3_11/miniupnpd/minissdp.c#L1143-L1158 github.com: https://github.com/miniupnp/miniupnp/blob/miniupnpd_2_3_11/miniupnpd/minissdp.c#L1281 vulncheck.com: https://www.vulncheck.com/advisories/miniupnpd-through-2.3.11-divide-by-zero-dos-via-ssdp-m-search-mx-header

Credits

azuk4r