Security Advisory

CVE-2023-45237

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-01-16 16:11:11
Last updated 2025-11-04 18:17:42
Assigner TianoCore
CVSS score 5.3
State PUBLISHED

Description

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.