CVE-2014-3676

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
22/10/2014
Last modified:
12/04/2025

Description

Heap-based buffer overflow in Shim allows remote attackers to execute arbitrary code via a crafted IPv6 address, related to the "tftp:// DHCPv6 boot option."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:redhat:shim:*:*:*:*:*:*:*:* 0.3 (including) 0.8 (excluding)