From: Mattijs Korpershoek <mkorpershoek@kernel.org>
To: Arthur Chan <arthur.chan@adalogics.com>, u-boot@lists.u-boot-project.org
Cc: David Korczynski <david@adalogics.com>,
Adam Korczynski <adam@adalogics.com>,
"security-cvd@anthropic.com" <security-cvd@anthropic.com>,
mkorpershoek@kernel.org, jerome.forissier@arm.com,
trini@konsulko.com
Subject: Re: [security] Report of possible global heap overflow in U-Boot's fastboot-over-TCP server by authenticated peer (ANT-2026-5D7F7SAQ)
Date: Tue, 11 Aug 2026 14:42:32 +0200 [thread overview]
Message-ID: <87y0ec25hj.fsf@kernel.org> (raw)
In-Reply-To: <acd869c3-d3c4-4ef3-9c06-4be29481f957@adalogics.com>
Hi Arthur,
Thank you for the report.
On Thu, Aug 06, 2026 at 14:40, Arthur Chan <arthur.chan@adalogics.com> wrote:
> Hello U-Boot maintainers,
>
> I'd like to report a High-severity security issue in U-Boot (https://github.com/u-boot/u-boot / https://git.u-boot-project.org/u-boot/u-boot) related to possible global heap overflow in U-Boot's fastboot-over-TCP server by authenticated peer.
>
> I have attached 3 files with this email as described below.
> 1) report.md: A full description of the vulnerability and how to reproduce it, together with suggested fix of the issue.
> 2) Dockerfile: A Dockerfile for demonstrating the issue.
> 3) driver.c: Work with the Dockerfile to demonstrate the issue.
>
> Attribution
> -----------
> Please attribute Claude and Ada Logics. This issue was found by Anthropic from using agents to study security of open source projects, and I am from Ada Logics helping validate the found issues and creating the report manually and notify the maintainers.
>
> Disclosure
> ----------
> This report follows a 90-day coordinated disclosure deadline. I'm happy to coordinate on the exact timing and to provide any further detail you need.
If you wish to help the U-Boot community, please consider contributing a
patch to fix this.
See
https://docs.u-boot-project.org/en/latest/develop/sending_patches.html#sending-patches
Thanks
Mattijs
prev parent reply other threads:[~2026-08-11 12:42 UTC|newest]
Thread overview: 2+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-08-06 13:40 [security] Report of possible global heap overflow in U-Boot's fastboot-over-TCP server by authenticated peer (ANT-2026-5D7F7SAQ) Arthur Chan
2026-08-11 12:42 ` Mattijs Korpershoek [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=87y0ec25hj.fsf@kernel.org \
--to=mkorpershoek@kernel.org \
--cc=adam@adalogics.com \
--cc=arthur.chan@adalogics.com \
--cc=david@adalogics.com \
--cc=jerome.forissier@arm.com \
--cc=security-cvd@anthropic.com \
--cc=trini@konsulko.com \
--cc=u-boot@lists.u-boot-project.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox