Security Advisory

CVE-2023-45234

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-01-16 16:14:28
Last updated 2025-11-04 18:17:38
Assigner TianoCore
CVSS score 8.3
State PUBLISHED

Description

EDK2's Network Package is susceptible to a buffer overflow vulnerability when processing DNS Servers option from a DHCPv6 Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity and/or Availability.