U-Boot TFTP OACK option parser reads past unterminated values

Josh Law josh2 at disroot.org
Thu May 28 16:46:51 CEST 2026


On May 27, 2026 7:55:58 PM GMT+01:00, "Lee, Brian J"
<hibrian827 at gatech.edu> wrote:
>Thank you for the acknowledgements! I apologize reproducing the PoC had
>difficulties due to poor quality. I will make sure to improve that. Thank
>you!
>
>Best regards,
>Brian

Hey Brian, sorry for the unexpected email


After playing with my server slightly, I got your script running :)

[run.sh] reusing existing
/home/josh/stuff/u-boot/INT-tftp-uboot-short-ack-oob/INT-tftp-uboot-short-ack-oob/poc/source
at
215496fec59b3fa09256b4fb62f92af46e2ec7f9
ERROR: AddressSanitizer: heap-buffer-overflow

I've CCed more people who can help you here.



[Snip!]

Thanks!


More information about the U-Boot mailing list