Infinite loop in PUPnP - #VU151943
Published: September 24, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to an infinite loop in gena_subscribe() when processing a granted TIMEOUT: Second-0 subscription response. A remote attacker can operate a rogue UPnP device that grants a zero-second subscription timeout to cause a denial of service.
Exploitation requires the application to discover the attacker's device on the local network.