From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-wm0-f69.google.com (mail-wm0-f69.google.com [74.125.82.69]) by kanga.kvack.org (Postfix) with ESMTP id 5C14F6B025F for ; Tue, 19 Dec 2017 16:49:03 -0500 (EST) Received: by mail-wm0-f69.google.com with SMTP id b82so1674084wmd.5 for ; Tue, 19 Dec 2017 13:49:03 -0800 (PST) Received: from ZenIV.linux.org.uk (zeniv.linux.org.uk. [195.92.253.2]) by mx.google.com with ESMTPS id i20si2087453wme.12.2017.12.19.13.49.02 for (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 19 Dec 2017 13:49:02 -0800 (PST) Date: Tue, 19 Dec 2017 21:48:49 +0000 From: Al Viro Subject: Re: BUG: bad usercopy in memdup_user Message-ID: <20171219214849.GU21978@ZenIV.linux.org.uk> References: <001a113e9ca8a3affd05609d7ccf@google.com> <6a50d160-56d0-29f9-cfed-6c9202140b43@I-love.SAKURA.ne.jp> <20171219083746.GR19604@eros> <20171219132246.GD13680@bombadil.infradead.org> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: Sender: owner-linux-mm@kvack.org List-ID: To: Linus Torvalds Cc: Matthew Wilcox , "Tobin C. Harding" , Dmitry Vyukov , Kees Cook , Tetsuo Handa , Linux-MM , syzbot , David Windsor , keun-o.park@darkmatter.ae, Laura Abbott , LKML , Mark Rutland , Ingo Molnar , syzkaller-bugs@googlegroups.com, Will Deacon On Tue, Dec 19, 2017 at 01:36:46PM -0800, Linus Torvalds wrote: > I suspect that an "offset and size within the kernel object" value > might make sense. But what does the _pointer_ tell you? Well, for example seeing a 0xfffffffffffffff4 where a pointer to object must have been is a pretty strong hint to start looking for a way for that ERR_PTR(-ENOMEM) having ended up there... Something like 0x6e69622f7273752f is almost certainly a misplaced "/usr/bin", i.e. a pathname overwriting whatever it ends up in, etc. And yes, I have run into both of those in real life. Debugging the situation when crap value has ended up in place of a pointer is certainly a case where you do want to see what exactly has ended up in there... -- To unsubscribe, send a message with 'unsubscribe linux-mm' in the body to majordomo@kvack.org. For more info on Linux MM, see: http://www.linux-mm.org/ . Don't email: email@kvack.org