A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted set of network packets can lead to arbitrary code execution. An attacker can send a malicious packet to trigger this vulnerability.
2023-11-14T10:15:26.740
2024-11-21T07:49:15.940
Modified
CVSSv3.1: 9.0 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | silabs | gecko_software_development_kit | 4.3.1 | Yes |
Application | weston-embedded | cesium_net | 3.07.01 | Yes |
Application | weston-embedded | uc-http | 3.01.01 | Yes |