From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by smtp.lore.kernel.org (Postfix) with ESMTP id 1451AECAAA1 for ; Mon, 31 Oct 2022 18:30:35 +0000 (UTC) Received: by kanga.kvack.org (Postfix) id 4E5B06B0073; Mon, 31 Oct 2022 14:30:35 -0400 (EDT) Received: by kanga.kvack.org (Postfix, from userid 40) id 495A680007; Mon, 31 Oct 2022 14:30:35 -0400 (EDT) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id 35D6A6B0075; Mon, 31 Oct 2022 14:30:35 -0400 (EDT) X-Delivered-To: linux-mm@kvack.org Received: from relay.hostedemail.com (smtprelay0012.hostedemail.com [216.40.44.12]) by kanga.kvack.org (Postfix) with ESMTP id 226F76B0073 for ; Mon, 31 Oct 2022 14:30:35 -0400 (EDT) Received: from smtpin07.hostedemail.com (a10.router.float.18 [10.200.18.1]) by unirelay09.hostedemail.com (Postfix) with ESMTP id F20FC80C99 for ; Mon, 31 Oct 2022 18:30:34 +0000 (UTC) X-FDA: 80082085188.07.599DDE4 Received: from ams.source.kernel.org (ams.source.kernel.org [145.40.68.75]) by imf22.hostedemail.com (Postfix) with ESMTP id 704C2C001E for ; Mon, 31 Oct 2022 18:30:34 +0000 (UTC) Received: from smtp.kernel.org (relay.kernel.org [52.25.139.140]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ams.source.kernel.org (Postfix) with ESMTPS id 0F9A1B819A9; Mon, 31 Oct 2022 18:30:33 +0000 (UTC) Received: by smtp.kernel.org (Postfix) with ESMTPSA id 2FDFFC433D6; Mon, 31 Oct 2022 18:30:32 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=k20201202; t=1667241032; bh=SJ1Z220OaKsIBgx1R0J98wMJy/gtWfntG2gf3M3ljf8=; h=From:To:Cc:Subject:Date:In-Reply-To:References:From; b=PfgjHGgCeq0tU3bP4CnPXKs0ndwNt3rpKv7/xhNwOjd8m+hihm7LI2pjFlmbflO/Q M9xeZ6+qyRAHq8F7SYnd3MhIlylR6dGnco4kIKSukxa6c7r8OSdVgpMhmLqeNo3/pK Z6Fr0mbG1CE4aFblkA31JVZ5ry6qqKGmLPX4j7IXmdnqrhMtkQ5teLKNjzigSN8gYo 2pflaB8u3Y1KQDbWhBffaZwoBjKUBr5/vIaIx5sR5YSJ1G3WaQ7UQ3Y1noqIS+LEwK XSbp12ldLLmwo677+VLdXGJQx4d7+xWJgNKQ/0pus0JL+dEKqWJiu2qW2WzZ6bDjK7 cwR9PboSQVq6g== From: SeongJae Park To: syzbot Cc: akpm@linux-foundation.org, damon@lists.linux.dev, linux-kernel@vger.kernel.org, linux-mm@kvack.org, sj@kernel.org, syzkaller-bugs@googlegroups.com Subject: Re: [syzbot] KASAN: slab-out-of-bounds Write in dbgfs_rm_context_write Date: Mon, 31 Oct 2022 18:30:30 +0000 Message-Id: <20221031183030.7961-1-sj@kernel.org> X-Mailer: git-send-email 2.25.1 In-Reply-To: <000000000000ede3ac05ec4abf8e@google.com> References: MIME-Version: 1.0 Content-Transfer-Encoding: 8bit ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=hostedemail.com; s=arc-20220608; t=1667241034; h=from:from:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:cc:mime-version:mime-version: content-type:content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references:dkim-signature; bh=rZ1DyvOBvFe2EGHf4TIc6vt72AjNza76Z3C9UswBVz4=; b=1N9zzFDaub1BdGH/lDPLYbqNmtoY714Jjm/TK7vkEshZJ9dmhvD6uw7dv4j778Uxej3d67 Uos2j7MmozeqV1D5rpaEO44MzOpEH3CpcotBF27xUl/alelUZfzYucXcUfrWDRzBpsVDgh bkLckOQaQZWwfrhWO0wXQN8QQO9leRA= ARC-Authentication-Results: i=1; imf22.hostedemail.com; dkim=pass header.d=kernel.org header.s=k20201202 header.b=PfgjHGgC; spf=pass (imf22.hostedemail.com: domain of sj@kernel.org designates 145.40.68.75 as permitted sender) smtp.mailfrom=sj@kernel.org; dmarc=pass (policy=none) header.from=kernel.org ARC-Seal: i=1; s=arc-20220608; d=hostedemail.com; t=1667241034; a=rsa-sha256; cv=none; b=Ci19m2QPt2oayd4MxQzgTsVyj7NLiqMTwoWmgfGeqMTiTUEGv6tUGzBv1BpP8qSn2hLdBs 97viOT8Fx85ZSinn7RNzeHge37Ms3cck4EL9YyWsPy+igbXpbrsHJA3mRXCGuFTFb5gnK5 HI7Nx2m7Hu487xjccNAA5R45vDTz73A= Authentication-Results: imf22.hostedemail.com; dkim=pass header.d=kernel.org header.s=k20201202 header.b=PfgjHGgC; spf=pass (imf22.hostedemail.com: domain of sj@kernel.org designates 145.40.68.75 as permitted sender) smtp.mailfrom=sj@kernel.org; dmarc=pass (policy=none) header.from=kernel.org X-Rspam-User: X-Rspamd-Queue-Id: 704C2C001E X-Rspamd-Server: rspam03 X-Stat-Signature: zsd9xtq6snjix7g65kdwpngei9fte4a8 X-HE-Tag: 1667241034-757779 X-Bogosity: Ham, tests=bogofilter, spamicity=0.000000, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: Hello, On Sun, 30 Oct 2022 18:44:35 -0700 syzbot wrote: > Hello, > > syzbot found the following issue on: > > HEAD commit: 98555239e4c3 Merge tag 'arc-6.1-fixes' of git://git.kernel.. > git tree: upstream > console+strace: https://syzkaller.appspot.com/x/log.txt?x=12508922880000 > kernel config: https://syzkaller.appspot.com/x/.config?x=a66c6c673fb555e8 > dashboard link: https://syzkaller.appspot.com/bug?extid=6087eafb76a94c4ac9eb > compiler: gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2 > syz repro: https://syzkaller.appspot.com/x/repro.syz?x=167e3f4a880000 > C reproducer: https://syzkaller.appspot.com/x/repro.c?x=1262cb86880000 > > Downloadable assets: > disk image: https://storage.googleapis.com/syzbot-assets/b9ab8f713204/disk-98555239.raw.xz > vmlinux: https://storage.googleapis.com/syzbot-assets/5efa1b178038/vmlinux-98555239.xz > kernel image: https://storage.googleapis.com/syzbot-assets/83329b87f1a8/bzImage-98555239.xz > > IMPORTANT: if you fix the issue, please add the following tag to the commit: > Reported-by: syzbot+6087eafb76a94c4ac9eb@syzkaller.appspotmail.com > > general protection fault, probably for non-canonical address 0xdffffc0000000002: 0000 [#1] PREEMPT SMP KASAN > KASAN: null-ptr-deref in range [0x0000000000000010-0x0000000000000017] > CPU: 1 PID: 3603 Comm: syz-executor414 Not tainted 6.1.0-rc2-syzkaller-00078-g98555239e4c3 #0 > Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 10/11/2022 > RIP: 0010:dbgfs_rm_context mm/damon/dbgfs.c:928 [inline] > RIP: 0010:dbgfs_rm_context_write+0x2e3/0x4d0 mm/damon/dbgfs.c:971 Thank you for this report. I just posted a patchset[1] for the fix and selftest repro of this bug. [1] https://lore.kernel.org/damon/20221031182554.7882-1-sj@kernel.org/ Thanks, SJ [...]