Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-45232

Опубликовано: 16 янв. 2024
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:tianocore:edk2:*:*:*:*:*:*:*:*
Версия до 202311 (включая)

EPSS

Процентиль: 49%
0.00255
Низкий

7.5 High

CVSS3

Дефекты

CWE-835
CWE-835

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 1 года назад

EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.

CVSS3: 7.5
redhat
больше 1 года назад

EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.

CVSS3: 7.5
msrc
около 1 года назад

Описание отсутствует

CVSS3: 7.5
debian
больше 1 года назад

EDK2's Network Package is susceptible to an infinite loop vulnerabilit ...

CVSS3: 7.5
github
больше 1 года назад

EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.

EPSS

Процентиль: 49%
0.00255
Низкий

7.5 High

CVSS3

Дефекты

CWE-835
CWE-835