Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3r3p-444m-2g4p

Опубликовано: 16 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.

EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.

EPSS

Процентиль: 65%
0.00483
Низкий

7.5 High

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 2 лет назад

EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.

CVSS3: 7.5
redhat
около 2 лет назад

EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.

CVSS3: 7.5
nvd
около 2 лет назад

EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.

CVSS3: 7.5
msrc
почти 2 года назад

Описание отсутствует

CVSS3: 7.5
debian
около 2 лет назад

EDK2's Network Package is susceptible to an infinite loop vulnerabilit ...

EPSS

Процентиль: 65%
0.00483
Низкий

7.5 High

CVSS3

Дефекты

CWE-835