Skip to content

Conversation

@dandurisrihari
Copy link
Contributor

CVE-2023-45229: Integer underflow when processing IA_NA/IA_TA options in a DHCPv6 Advertise message

https://blog.quarkslab.com/pixiefail-nine-vulnerabilities-in-tianocores-edk-ii-ipv6-network-stack.html

@dandurisrihari dandurisrihari changed the title Added harness to cover Added harness to cover CVE-2023-45229: Integer underflow when processing IA_NA/IA_TA options in a DHCPv6 Advertise message Nov 5, 2025
@dandurisrihari
Copy link
Contributor Author

@el-tipton, could you please review. This is my first time adding a harness to HBFA, so I’d really appreciate your feedback. Please let me know if there’s anything I should adjust or improve — I can apply the same changes to the other CVEs afterward.

CVE-2023-45229: Integer underflow when processing IA_NA/IA_TA options in a DHCPv6 Advertise message

https://blog.quarkslab.com/pixiefail-nine-vulnerabilities-in-tianocores-edk-ii-ipv6-network-stack.html
CVE-2023-45229: Integer underflow when processing IA_NA/IA_TA options in a DHCPv6 Advertise message
@el-tipton el-tipton self-assigned this Nov 9, 2025
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Can you verify the source for these files (e.g. was this source from the EDKII repository)?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants