CVE-2023-28391: Silabs Gecko Software Development Kit

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

A memory corruption vulnerability exists in the HTTP Server header parsing functionality of Weston Embedded uC-HTTP v3.01.01. Specially crafted network packets can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability.

Affected products

Published 2023-11-14. Last modified 2026-06-17.