CVE-2023-45234
16.01.2024, 16:15
EDK2's Network Package is susceptible to a buffer overflow vulnerability when processing DNS Servers option from a DHCPv6 Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity and/or Availability.Enginsight
Vendor | Product | Version |
---|---|---|
tianocore | edk2 | 𝑥 ≤ 202311 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References