Security Advisory

CVE-2023-45229

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-01-16 16:07:31
Last updated 2025-11-04 18:17:32
Assigner TianoCore
CVSS score 6.5
State PUBLISHED

Description

EDK2's Network Package is susceptible to an out-of-bounds read vulnerability when processing the IA_NA or IA_TA option in a DHCPv6 Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.