From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by smtp.lore.kernel.org (Postfix) with ESMTP id 93961EB64D9 for ; Thu, 29 Jun 2023 06:57:04 +0000 (UTC) Received: by kanga.kvack.org (Postfix) id 8DEB38D0002; Thu, 29 Jun 2023 02:57:03 -0400 (EDT) Received: by kanga.kvack.org (Postfix, from userid 40) id 88D938D0001; Thu, 29 Jun 2023 02:57:03 -0400 (EDT) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id 755C48D0002; Thu, 29 Jun 2023 02:57:03 -0400 (EDT) X-Delivered-To: linux-mm@kvack.org Received: from relay.hostedemail.com (smtprelay0012.hostedemail.com [216.40.44.12]) by kanga.kvack.org (Postfix) with ESMTP id 626728D0001 for ; Thu, 29 Jun 2023 02:57:03 -0400 (EDT) Received: from smtpin04.hostedemail.com (a10.router.float.18 [10.200.18.1]) by unirelay04.hostedemail.com (Postfix) with ESMTP id 29C4A1A0C33 for ; Thu, 29 Jun 2023 06:57:03 +0000 (UTC) X-FDA: 80954878326.04.5D1097B Received: from dfw.source.kernel.org (dfw.source.kernel.org [139.178.84.217]) by imf08.hostedemail.com (Postfix) with ESMTP id 5D92416001E for ; Thu, 29 Jun 2023 06:57:01 +0000 (UTC) Authentication-Results: imf08.hostedemail.com; dkim=pass header.d=linuxfoundation.org header.s=korg header.b=sAkj89fi; dmarc=pass (policy=none) header.from=linuxfoundation.org; spf=pass (imf08.hostedemail.com: domain of gregkh@linuxfoundation.org designates 139.178.84.217 as permitted sender) smtp.mailfrom=gregkh@linuxfoundation.org ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=hostedemail.com; s=arc-20220608; t=1688021821; h=from:from:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:cc:mime-version:mime-version: content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references:dkim-signature; bh=80x9r4LA4LA8BeaDnMdX/U9titGstiwY3o42Eq8vAJ4=; b=Pu5wtycH8TVa34DMIItwVUJoA4zDmJQIfQTwSon37DdY/sM24HQ7qsU66kdrg8dNFXAELD nTF4TuRKkyY01gtu2sg+Z1Bz+RgRwS9ZlxDsVv8ac+IGNtnG6tvBCktg82JHtVbBXViZNd IR+SiNj2UAUvElDARrMMApvYhDKruNc= ARC-Authentication-Results: i=1; imf08.hostedemail.com; dkim=pass header.d=linuxfoundation.org header.s=korg header.b=sAkj89fi; dmarc=pass (policy=none) header.from=linuxfoundation.org; spf=pass (imf08.hostedemail.com: domain of gregkh@linuxfoundation.org designates 139.178.84.217 as permitted sender) smtp.mailfrom=gregkh@linuxfoundation.org ARC-Seal: i=1; s=arc-20220608; d=hostedemail.com; t=1688021821; a=rsa-sha256; cv=none; b=je/9YHxxtXum6GjnfutX7iumpmsgQqFfA9k/eoDB5Bcyv/pHEL9kpoQf36eBldZ+LovoJI +xSPOn4eHYsN+yfuTeHH6RD/bQNux3zs5H4y/kfiXe9LDq1if78C4YaIwrelTeq6DOfeSy wgbSeDJbX0OnOZtgxIp6mLfiVdO1A8U= Received: from smtp.kernel.org (relay.kernel.org [52.25.139.140]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by dfw.source.kernel.org (Postfix) with ESMTPS id 656C8614AC; Thu, 29 Jun 2023 06:57:00 +0000 (UTC) Received: by smtp.kernel.org (Postfix) with ESMTPSA id 75660C433C0; Thu, 29 Jun 2023 06:56:59 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=linuxfoundation.org; s=korg; t=1688021819; bh=80x9r4LA4LA8BeaDnMdX/U9titGstiwY3o42Eq8vAJ4=; h=Date:From:To:Cc:Subject:References:In-Reply-To:From; b=sAkj89fiv0JOyNbijWqEAiU7v1mL0pOvHud315hdN241vw4P9f6eupO0S66jWQXa7 l698FZJlYwlLqG3KheHBQZp46gaAUmCQtAX+H3/iFM98oIJQbGLp6a2ORMtuNXvfOy AnF2JXdy60njlCN5CZ8QIaClf9LXSNzIoKHEJgPg= Date: Thu, 29 Jun 2023 08:56:57 +0200 From: Greg KH To: liujf628995 Cc: catalin.marinas@arm.com, akpm@linux-foundation.org, linux-mm@kvack.org, linux-kernel@vger.kernel.org, syzkaller@googlegroups.com, security@kernel.org, secalert@redhat.com Subject: Re: use-after-free in =?utf-8?Q?kmemleak?= =?utf-8?B?X3NjYW7vvJ8=?= Message-ID: <2023062958-twistable-rut-e684@gregkh> References: <59a9e693.270f.1890529db99.Coremail.liujf628995@126.com> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline Content-Transfer-Encoding: 8bit In-Reply-To: <59a9e693.270f.1890529db99.Coremail.liujf628995@126.com> X-Rspamd-Queue-Id: 5D92416001E X-Rspam-User: X-Rspamd-Server: rspam02 X-Stat-Signature: 66c8gj43m6e64xogpcofw1u7xgoprqgu X-HE-Tag: 1688021821-529324 X-HE-Meta: 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 adQeCGDd G6m+8UWTq5m5AheuvPoI9aIX8iNqhYPctdA62czIoz+nrrk/EznLkOoTKd2JGoRPS/M94WApZyoYXrmxcdXOQOcs3sBCaCJ6IEmn/3/6SwTb6UBIhFITI04OWrIXQXFkypi3m5uF+fDEQ1wI+TTiUbPKG+oQH5Olhm9fsn8E7LXoYUYRdepaqLuqcEpPhfjrJ6/VeEytiOyK8uDCug/CpDXCOFzq+4g+K7XQNZJpLEE2Qizu4UWxLz64b595uiFCkNzWedTPix2XRx/oDJwfQKq7f+wvXgMxKI5kdCntgGM7Tq7YVuInF+wgfVkU9qeAZgJEUBBspS0OifCnx5XUWnRWhtkLo9phCCjSbpAbHShYzyJcnq8xd7LGp+CLvB840xHDC X-Bogosity: Ham, tests=bogofilter, spamicity=0.000000, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: On Thu, Jun 29, 2023 at 11:19:36AM +0800, liujf628995 wrote: > hello,here is a crash from syzkaller,it looks like happened in kmemleak scan.It could not be reproduced by syzkaller because this should not have been caused by syscall fuzz.I don't know what rhe reason for this,please check it.My fuzzed linux kernel is linux-6.2(commit/c9c3395d5e3dcc6daee66c6908354d47bf98cb0c) If you have a reproducer or a patch, we will be glad to review it, otherwise just sending syzbot reports like this (especially in html format which is rejected by the mailing lists), will not go very far as we have loads of them already. thanks, greg k-h