From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by smtp.lore.kernel.org (Postfix) with ESMTP id A8141C48BC4 for ; Fri, 23 Feb 2024 05:30:06 +0000 (UTC) Received: by kanga.kvack.org (Postfix) id 2F8206B0082; Fri, 23 Feb 2024 00:30:06 -0500 (EST) Received: by kanga.kvack.org (Postfix, from userid 40) id 2A7F46B0085; Fri, 23 Feb 2024 00:30:06 -0500 (EST) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id 196A86B0087; Fri, 23 Feb 2024 00:30:06 -0500 (EST) X-Delivered-To: linux-mm@kvack.org Received: from relay.hostedemail.com (smtprelay0010.hostedemail.com [216.40.44.10]) by kanga.kvack.org (Postfix) with ESMTP id 099B36B0082 for ; Fri, 23 Feb 2024 00:30:06 -0500 (EST) Received: from smtpin09.hostedemail.com (a10.router.float.18 [10.200.18.1]) by unirelay08.hostedemail.com (Postfix) with ESMTP id 671AE140FF0 for ; Fri, 23 Feb 2024 05:30:05 +0000 (UTC) X-FDA: 81821942370.09.58A56D3 Received: from mail-oo1-f54.google.com (mail-oo1-f54.google.com [209.85.161.54]) by imf20.hostedemail.com (Postfix) with ESMTP id B31501C000D for ; Fri, 23 Feb 2024 05:30:03 +0000 (UTC) Authentication-Results: imf20.hostedemail.com; dkim=pass header.d=chromium.org header.s=google header.b=M0T5ZMSL; dmarc=pass (policy=none) header.from=chromium.org; spf=pass (imf20.hostedemail.com: domain of senozhatsky@chromium.org designates 209.85.161.54 as permitted sender) smtp.mailfrom=senozhatsky@chromium.org ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=hostedemail.com; s=arc-20220608; t=1708666203; h=from:from:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:cc:mime-version:mime-version: content-type:content-type:content-transfer-encoding: in-reply-to:in-reply-to:references:references:dkim-signature; bh=OsdzWswsD3UH85vvL5I9yCR2tJnnclrfiwawpB1DJ/U=; b=if6TrJZSNR3Lg7WaS6cHTsakhrmrWlbAKIIfQ+Akj2+z37l1fG1cdkqdtwkl8nschkyzFx vsEtzk/bP3xoXEIzQCkEhhbkCHnPPzmYim9JDdD53J4406Kl32DOtWzBZZX7qbbQbgGdYv vN0UHHqXDV36BRXZhbSyTPMGxwgONd8= ARC-Authentication-Results: i=1; imf20.hostedemail.com; dkim=pass header.d=chromium.org header.s=google header.b=M0T5ZMSL; dmarc=pass (policy=none) header.from=chromium.org; spf=pass (imf20.hostedemail.com: domain of senozhatsky@chromium.org designates 209.85.161.54 as permitted sender) smtp.mailfrom=senozhatsky@chromium.org ARC-Seal: i=1; s=arc-20220608; d=hostedemail.com; t=1708666203; a=rsa-sha256; cv=none; b=77Wdcp2rn1yDZxreeFdZA4r2ycqAxaVrZLGqk+PGIYnxQsC7THkYtVNTUWPTwf2XN+DkWF XPpzBe+/QxRfiFi9hqC9YdrzfX9Ivgvb7PnYxB9LO2MCLf1bHdAvQFHr68D5+l0k07m4vl UL1C0BmFF//jvzduCexGalooDJaBeIQ= Received: by mail-oo1-f54.google.com with SMTP id 006d021491bc7-5a03384d67aso290114eaf.1 for ; Thu, 22 Feb 2024 21:30:03 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=chromium.org; s=google; t=1708666203; x=1709271003; darn=kvack.org; h=in-reply-to:content-disposition:mime-version:references:message-id :subject:cc:to:from:date:from:to:cc:subject:date:message-id:reply-to; bh=OsdzWswsD3UH85vvL5I9yCR2tJnnclrfiwawpB1DJ/U=; b=M0T5ZMSLOmWxMC+L263GuarLcLgzuhgPaVme978oVPrvWXvaoBtQPK4m6w5dAbu1IN TaC1y6DL2pbA7kxaJN0VidUXUoqi6Xy9m2bmDTl98LKSHUFxYuRtt31ZZjgmgOCgpGEA RiQ6NfSukgOGhG0MLxR/MeU6/53uvcJdpiUwA= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1708666203; x=1709271003; h=in-reply-to:content-disposition:mime-version:references:message-id :subject:cc:to:from:date:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=OsdzWswsD3UH85vvL5I9yCR2tJnnclrfiwawpB1DJ/U=; b=kItWDGAHWFZ8Sb3aAilyrXEnnUQNzzuRwF8j5JKLOxz/hVkD2Z5+5KJ68pEqvIGa2/ o7ce3ri9BG7oOVC7egZRs6qa6k/e6si8G13hTET17p5OlhbA5A8M+bJNCGuwoy5/PHGO RSxUUYJty6LhPDuptzuzA7VdZrxuuUMc+ZIG1Of47x/NESmwCgM6u3A5z3aQRDhYCHBN +WkcU1U1+KezNffVpT47nYJlzgJXx1eX1tyOZ4wDckPKhiK23VzK/u6hQZRDxOlRfm0Z vugpjudbyRjnlnQZSsHbg6hATfb77gDLNW8B125dJcvBMtOrLlaGpAaechvyBslCyi83 lWAQ== X-Forwarded-Encrypted: i=1; AJvYcCU/k2tkULHBBnuVUKeGx9KDBxSfg9ek5R4abPUXYo6yBXRrQmBc1sb/7R7ETF2bAlAO07CeXobeqBsztkZafc90z1E= X-Gm-Message-State: AOJu0YzMab1NPToLvVX3GeC1d6NEMG3qjwV+cfnqj+/W7oP5pK8sRp04 BU2rkqwTVI85W2qfyzFR3MxC7meNEEJuPT2rIw2C4cXz/oA1Scd/VQdCd+xuhA== X-Google-Smtp-Source: AGHT+IEl6ZgkBlYyjxzez8vdkWjNTQumKoiuQlFbeMZZRfMYJbIAQxAMLw9a9Qb4MWM0V3w9wg2luw== X-Received: by 2002:a05:6358:78b:b0:17b:2d12:74d9 with SMTP id n11-20020a056358078b00b0017b2d1274d9mr793851rwj.27.1708666202590; Thu, 22 Feb 2024 21:30:02 -0800 (PST) Received: from google.com ([2401:fa00:8f:203:b194:4f71:568a:eeb0]) by smtp.gmail.com with ESMTPSA id eu16-20020a17090af95000b002997e87b390sm455783pjb.29.2024.02.22.21.30.00 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Thu, 22 Feb 2024 21:30:02 -0800 (PST) Date: Fri, 23 Feb 2024 14:29:58 +0900 From: Sergey Senozhatsky To: Chengming Zhou Cc: Tetsuo Handa , Sergey Senozhatsky , Yosry Ahmed , Johannes Weiner , Nhat Pham , Minchan Kim , linux-mm Subject: Re: [mm/page_alloc or mm/vmscan or mm/zswap] use-after-free in obj_malloc() Message-ID: <20240223052958.GP11472@google.com> References: <20240223044808.GK11472@google.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: X-Rspamd-Server: rspam09 X-Rspamd-Queue-Id: B31501C000D X-Stat-Signature: f9hs1snnpfj96fen39nwqwdt3ukz1iag X-Rspam-User: X-HE-Tag: 1708666203-858679 X-HE-Meta: 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 b7SiGsI/ p5uO1NTqSrJwQxAWTZq3MIaEYOg3iOFQ9g7rr5xQNrK3b0Mc9zZLxKTmoWy+pkD2mxGnGhwrV9ex7oY9yRnajnaqEuA== X-Bogosity: Ham, tests=bogofilter, spamicity=0.000042, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: List-Subscribe: List-Unsubscribe: On (24/02/23 13:23), Chengming Zhou wrote: > On 2024/2/23 12:48, Sergey Senozhatsky wrote: > > On (24/02/22 18:27), Yosry Ahmed wrote: > >> I also don't see any recent changes in mm/zsmalloc.c that modify this > >> code, so maybe it wasn't introduce in 6.7. I will defer to Minchan and > >> Sergey, I don't think zswap is an active actor in this bug report. > > > > Yeah. [1] are the only recent zsmalloc patches I can recall, and those > > patches touch zsmalloc locking (zspages migration/compaction). > > > > https://lore.kernel.org/lkml/20240219-b4-szmalloc-migrate-v1-0-34cd49c6545b@bytedance.com/ > > > > I think these patches can't go into 6.8.0-rc5, right? Only if 6.8-rc5 is linux-next. But the report is (that was not immediately apparent to me, somehow) for Linus's tree, so those zsmalloc patches are out of any suspicions.