grub-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[PATCH 0/6] Support fuzzing grub's image file parsers


From: Daniel Axtens
Subject: [PATCH 0/6] Support fuzzing grub's image file parsers
Date: Tue, 28 Mar 2023 01:04:53 +1100

This is a cleaned up version of the fuzzers that I used to find
CVE-2021-3695, CVE-2021-3696 and CVE-2021-3697.

We're releasing this now because the techniques are not novel, the
code is not hard to independently replicate, and it's hard to see what
is gained by not releasing them. (I should add that the grub security
working group has been supportive of this for some time - any and all
responsibility for the delay in getting this posted rests with me.)

Obivously the techniques here are extensible and I'd be very happy to
see people add more fuzzers to increase coverage based on this
infrastructure.

Kind regards,
Daniel



reply via email to

[Prev in Thread] Current Thread [Next in Thread]