CVE-2023-45231

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
16/01/2024
Last modified:
13/03/2024

Description

EDK2&amp;#39;s Network Package is susceptible to an out-of-bounds read<br /> vulnerability when processing  Neighbor Discovery Redirect message. This<br /> vulnerability can be exploited by an attacker to gain unauthorized <br /> access and potentially lead to a loss of Confidentiality.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tianocore:edk2:*:*:*:*:*:*:*:* 202311 (including)