CVE-2023-45230

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
16/01/2024
Last modified:
04/11/2025

Description

EDK2&amp;#39;s Network Package is susceptible to a buffer overflow vulnerability via a long server ID option in DHCPv6 client. This<br /> vulnerability can be exploited by an attacker to gain unauthorized <br /> access and potentially lead to a loss of Confidentiality, Integrity and/or Availability.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tianocore:edk2:*:*:*:*:*:*:*:* 202311 (including)