Buffer overflow in No-IP DUC 2.1.7 and earlier allows remote HTTP servers to execute arbitrary code via a crafted response to a DNS update request, related to a missing length check in the GetNextLine function.
- http://securityreason.com/securityalert/4672
- https://www.exploit-db.com/exploits/7151
No PoCs found on GitHub currently.