CVE-2023-45229
16.01.2024, 16:15
EDK2's Network Package is susceptible to an out-of-bounds read vulnerability when processing the IA_NA or IA_TA option in a DHCPv6 Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.Enginsight
| Vendor | Product | Version |
|---|---|---|
| tianocore | edk2 | 𝑥 ≤ 202311 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References