CVE-2023-31247: Buffer Overflow
A memory corruption vulnerability exists in the HTTP Server Host header parsing functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-31247?
CVE-2023-31247 is a memory corruption vulnerability in the HTTP Server Host header parsing functionality of Weston Embedded uC-HTTP v3.01.01.
How does CVE-2023-31247 affect Silabs Gecko Software Development Kit?
CVE-2023-31247 affects Silabs Gecko Software Development Kit version 4.3.1.
How does CVE-2023-31247 affect Weston-embedded Cesium Net?
CVE-2023-31247 affects Weston-embedded Cesium Net version 3.07.01.
How does CVE-2023-31247 affect Weston-embedded Uc-http?
CVE-2023-31247 affects Weston-embedded Uc-http version 3.01.01.
What is the severity of CVE-2023-31247?
CVE-2023-31247 has a severity rating of critical.
What is the CWE of CVE-2023-31247?
CVE-2023-31247 has CWE vulnerabilities 119 and 787.
How can the CVE-2023-31247 vulnerability be exploited?
The CVE-2023-31247 vulnerability can be exploited by sending a specially crafted network packet to trigger code execution.
How do I fix the CVE-2023-31247 vulnerability in Silabs Gecko Software Development Kit?
To fix the CVE-2023-31247 vulnerability in Silabs Gecko Software Development Kit, update to version 4.3.2 or later.
How do I fix the CVE-2023-31247 vulnerability in Weston-embedded Cesium Net?
To fix the CVE-2023-31247 vulnerability in Weston-embedded Cesium Net, update to version 3.07.02 or later.
How do I fix the CVE-2023-31247 vulnerability in Weston-embedded Uc-http?
To fix the CVE-2023-31247 vulnerability in Weston-embedded Uc-http, update to version 3.01.02 or later.