First published: Tue Jan 16 2024(Updated: )
<a href="https://blog.quarkslab.com/pixiefail-nine-vulnerabilities-in-tianocores-edk-ii-ipv6-network-stack.html">https://blog.quarkslab.com/pixiefail-nine-vulnerabilities-in-tianocores-edk-ii-ipv6-network-stack.html</a> <a href="https://github.com/tianocore/edk2/security/advisories/GHSA-hc6x-cw6p-gj7h">https://github.com/tianocore/edk2/security/advisories/GHSA-hc6x-cw6p-gj7h</a>
Credit: infosec@edk2.groups.io
Affected Software | Affected Version | How to fix |
---|---|---|
Tianocore EDK II | <=202311 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-45229 is considered a high severity vulnerability affecting the Tianocore EDK II IPv6 network stack.
CVE-2023-45229 affects Tianocore EDK II versions up to and including 202311.
To mitigate CVE-2023-45229, update to the latest patched version of Tianocore EDK II that addresses this vulnerability.
CVE-2023-45229 could allow unauthorized access and potential exploitation of the IPv6 network stack.
More details regarding CVE-2023-45229 can be found in security advisories released by Tianocore.