Security Advisory

CVE-2023-45236

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-01-16 16:10:38
Last updated 2025-11-04 18:17:41
Assigner TianoCore
CVSS score 5.8
State PUBLISHED

Description

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.