CVE-2023-45318: Buffer Overflow
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP git commit 80d4004. A specially crafted network packet can lead to arbitrary code execution. An attacker can send a malicious packet to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45318?
CVE-2023-45318 is classified as a critical vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2023-45318?
To fix CVE-2023-45318, update your version of Weston Embedded uC-HTTP to include the latest patches that address this vulnerability.
What systems are affected by CVE-2023-45318?
CVE-2023-45318 affects Weston Embedded uC-HTTP and the Silicon Labs Gecko SDK version 4.3.2.0.
What type of vulnerability is CVE-2023-45318?
CVE-2023-45318 is a heap-based buffer overflow vulnerability found in the HTTP Server functionality.
Can CVE-2023-45318 be exploited remotely?
Yes, CVE-2023-45318 can be exploited remotely through specially crafted network packets.