CVE-2023-39541: Medium severity weston uc-tcp-ip vulnerability
A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted network packet can lead to an out-of-bounds read. An attacker can send a malicious packet to trigger this vulnerability.This vulnerability concerns a denial of service within the parsing an IPv6 ICMPv6 packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-39541?
CVE-2023-39541 has been categorized as a denial of service vulnerability, which can potentially disrupt service availability.
How do I fix CVE-2023-39541?
To mitigate CVE-2023-39541, update Weston Embedded uC-TCP-IP to the latest version that addresses this vulnerability.
What versions of Weston Embedded uC-TCP-IP are affected by CVE-2023-39541?
CVE-2023-39541 specifically affects Weston Embedded uC-TCP-IP version 3.06.01.
What type of attack does CVE-2023-39541 enable?
CVE-2023-39541 allows attackers to exploit the vulnerability by sending specially crafted network packets that can cause an out-of-bounds read.
Is there a known exploit for CVE-2023-39541?
Although details on active exploits are not specified, the vulnerability allows for potential exploitation through crafted packets.