Skip to content

Commit a9cd332

Browse files
SoumyaWindhongxu-jia
authored andcommitted
ovmf: Fix CVE-2023-45236
EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality. References: https://nvd.nist.gov/vuln/detail/CVE-2023-45236 Upstream-patch: tianocore/edk2@1904a64 Signed-off-by: Soumya Sambu <[email protected]>
1 parent 6f8bdaa commit a9cd332

File tree

2 files changed

+830
-0
lines changed

2 files changed

+830
-0
lines changed

0 commit comments

Comments
 (0)