vulnerability when processing the IA_NA or IA_TA option in a DHCPv6 Advertise message. This
vulnerability can be exploited by an attacker to gain unauthorized
access and potentially lead to a loss of Confidentiality.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-4207-1 | edk2 security update |
Debian DSA |
DSA-5624-1 | edk2 security update |
EUVD |
EUVD-2023-49535 | EDK2's Network Package is susceptible to an out-of-bounds read vulnerability when processing the IA_NA or IA_TA option in a DHCPv6 Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality. |
Tue, 04 Nov 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 03 Nov 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 02 Jun 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: TianoCore
Published:
Updated: 2025-11-04T18:17:32.275Z
Reserved: 2023-10-05T20:48:19.877Z
Link: CVE-2023-45229
Updated: 2025-11-04T18:17:32.275Z
Status : Modified
Published: 2024-01-16T16:15:11.533
Modified: 2025-11-04T19:16:00.053
Link: CVE-2023-45229
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD