Fixed by 2b605ef3b145ec136530f08ee7aa27382aa64b46
signature.asc
Description: This is a digitally signed message part
Upstream created and merged a probable patch:
https://github.com/pupnp/pupnp/pull/306
Reporter still needs to confirm if it fixes the issue.
signature.asc
Description: This is a digitally signed message part
I'm forwarding this to bug-guix@gnu.org so that it won't be forgotten.
Mark
Start of forwarded message
Subject: libupnp package vulnerable to CVE-2021-28302
From: Léo Le Bouter
To: guix-de...@gnu.org
Date: Sat, 13 Mar 2021 02:12:45 +0100
CVE-2021