EDK2's Network Package is susceptible to a buffer overflow vulnerability when processing DNS Servers option from a DHCPv6 Advertise message. This
 vulnerability can be exploited by an attacker to gain unauthorized 
access and potentially lead to a loss of Confidentiality, Integrity and/or Availability.
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 17 Jun 2025 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Thu, 13 Feb 2025 17:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | EDK2's Network Package is susceptible to a buffer overflow vulnerability when processing DNS Servers option from a DHCPv6 Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity and/or Availability. | EDK2's Network Package is susceptible to a buffer overflow vulnerability when processing DNS Servers option from a DHCPv6 Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity and/or Availability. | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: TianoCore
Published: 2024-01-16T16:14:28.209Z
Updated: 2025-06-17T20:09:38.945Z
Reserved: 2023-10-05T20:48:19.879Z
Link: CVE-2023-45234
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T20:14:19.990Z
 NVD
                        NVD
                    Status : Modified
Published: 2024-01-16T16:15:12.460
Modified: 2025-02-13T18:15:30.123
Link: CVE-2023-45234
 Redhat
                        Redhat