Skip to main content

CVE-2023-38562

8.7
HIGHCVSS v3.1 Base Score
0.27%
LOW RiskEPSS (50th percentile)

A double-free vulnerability exists in the IP header loopback parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted set of network packets can lead to memory corruption, potentially resulting in code execution. An attacker can send a sequence of unauthenticated packets to trigger this vulnerability.

Published: 2/20/2024
Modified: 11/4/2025
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8.7HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:H

EPSS Score (Exploitation Probability)

0.27%LOW Exploitation Risk
50th percentile

This vulnerability has a 0.27% probability of being exploited in the next 30 days, ranking higher than 50% of all scored CVEs.

Related Vulnerabilities