CVE-2023-38562
20.02.2024, 15:15
A double-free vulnerability exists in the IP header loopback parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted set of network packets can lead to memory corruption, potentially resulting in code execution. An attacker can send a sequence of unauthenticated packets to trigger this vulnerability.Enginsight
Vendor | Product | Version |
---|---|---|
weston-embedded | uc-tcp-ip | 3.06.01 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration