CVE-2023-45234

Summary

CVECVE-2023-45234
StateRESERVED
Assigner[email protected]
Source PriorityCVE Program / NVD first with legacy fallback
Published2024-01-16 16:15:00 UTC
Updated2024-03-13 02:15:00 UTC
Description** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.

Risk And Classification

Problem Types: CWE-119

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Application Tianocore Edk2 All All All All

References

ReferenceSourceLinkTags
PixieFail Proof Of Concepts ≈ Packet Storm packetstormsecurity.com Third Party Advisory, VDB Entry
Vulnerabilities in EDK2 NetworkPkg IP stack implementation · Advisory · tianocore/edk2 · GitHub github.com Vendor Advisory
oss-security - CVE-2023-45229 and others: Multiple vulnerabilities in EDK II UEFI stack (PixieFAIL) www.openwall.com Mailing List
lists.fedoraproject.org/archives/list/[email protected]/messag... lists.fedoraproject.org
security.netapp.com/advisory/ntap-20240307-0011 security.netapp.com
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

Legacy QID Mappings

  • 161395 Oracle Enterprise Linux Security Update for edk2 (ELSA-2024-1063)
  • 161409 Oracle Enterprise Linux Security Update for edk2 (ELSA-2024-1075)
  • 200115 Ubuntu Security Notification for EDK II Vulnerabilities (USN-6638-1)
  • 242998 Red Hat Update for edk2 (RHSA-2024:1063)
  • 243001 Red Hat Update for edk2 (RHSA-2024:1075)
  • 243003 Red Hat Update for edk2 (RHSA-2024:1076)
  • 243005 Red Hat Update for edk2 (RHSA-2024:1077)
  • 243061 Red Hat Update for edk2 (RHSA-2024:1305)
  • 243098 Red Hat Update for edk2 (RHSA-2024:1415)
  • 243183 Red Hat Update for edk2 (RHSA-2024:1722)
  • 285346 Fedora Security Update for edk2 (FEDORA-2024-a9dead34c5)
  • 357282 Amazon Linux Security Advisory for edk2 : ALAS2-2024-2483
  • 6000477 Debian Security Update for edk2 (DSA 5624-1)
  • 941605 AlmaLinux Security Update for edk2 (ALSA-2024:1063)
  • 941606 AlmaLinux Security Update for edk2 (ALSA-2024:1075)
  • 961128 Rocky Linux Security Update for edk2 (RLSA-2024:1063)
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report