CVE-2023-45235 is a high-severity buffer overflow vulnerability in EDK2's Network Package. An attacker can exploit this vulnerability to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity, and/or Availability. The vulnerability occurs when handling Server ID option from a DHCPv6 proxy Advertise message. This CVE was published on January 29, 2026, and modified on May 21, [truncated]
CVE-2023-45234 is a high-severity buffer overflow vulnerability in EDK2's Network Package. An attacker can exploit this vulnerability to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity, and/or Availability. The vulnerability occurs when processing DNS Servers option from a DHCPv6 Advertise message. This issue affects multiple ABB products, including APC4100, APC910, C [truncated]
CVE-2023-45231 is an out-of-bounds read vulnerability in EDK2's Network Package when processing Neighbor Discovery Redirect messages. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality. The vulnerability has a CVSS score of 6.5 and a severity of MEDIUM. The affected products include ABB APC4100, APC910, C80, MPC3100, PPC1200, PP [truncated]