mirror of
https://github.com/ipxe/ipxe
synced 2026-10-07 15:05:42 +03:00
5de611be4ae149c3d83c9633c7b5350c11d73a3d
EFI device paths generally have no externally defined length: the only way to calculate the length is to scan the device path itself (and therefore to implicitly assume that the path is valid). The EFI load option structure does have an externally defined length field, and we currently attempt to validate against this. The validation logic is missing a crucial step which renders it ineffective: the overall effect is essentially equivalent to trusting that the system's configured load option structures are well-formed. (This is a reasonable assumption: the length check exists primarily as a defence against external bugs, and an attacker with the ability to change the system load options has already compromised the system.) Fix by updating the remaining length correctly as we traverse the device path. Signed-off-by: Michael Brown <mcb30@ipxe.org>
iPXE network bootloader
iPXE is the leading open source network boot firmware. It provides a full PXE implementation enhanced with additional features such as:
-
boot from a web server via HTTP or HTTPS,
-
boot from an iSCSI, FCoE, or AoE SAN,
-
control the boot process with a script,
You can use iPXE to replace the existing PXE ROM on your network card, or you can chainload into iPXE to obtain the features of iPXE without the hassle of reflashing.
iPXE is free, open-source software licensed under the GNU GPL (with some portions under GPL-compatible licences).
You can download the rolling release binaries (built from the latest commit), or use the most recent stable release.
For full documentation, visit the iPXE website.
Languages
C
98.5%
Assembly
0.6%
Python
0.3%
Perl
0.3%
Makefile
0.2%