Allocation of Resources Without Limits or Throttling in PUPnP - #VU151940
Published: September 24, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to allocation of resources without limits in the HTTP header parser when processing unbounded HTTP header blocks. A remote attacker can send a crafted HTTP request or response with an excessive number or size of headers to cause a denial of service.