A heap-based buffer overflow vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability.
2023-11-14T10:15:27.113
2024-11-21T07:53:37.790
Modified
CVSSv3.1: 9.0 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | silabs | gecko_software_development_kit | 4.3.1 | Yes |
Application | weston-embedded | cesium_net | 3.07.01 | Yes |
Application | weston-embedded | uc-http | 3.01.01 | Yes |