Received: by 10.223.185.116 with SMTP id b49csp765126wrg; Wed, 14 Feb 2018 06:42:35 -0800 (PST) X-Google-Smtp-Source: AH8x225o1ZXKkJCYWFgFuWiUFakPEmffhILX9wSwFbP51H9crpztTCKTcZzp+zIA1xczsofGKipu X-Received: by 10.98.215.12 with SMTP id b12mr4958046pfh.149.1518619355118; Wed, 14 Feb 2018 06:42:35 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1518619355; cv=none; d=google.com; s=arc-20160816; b=aPPYL4A6KI5x7hBtmTk1M/SYlQ6SSJX4brx3K412tPmadWh/1NUVBwTQbPPtRarIq5 vgqa0mbZXMtInRLXboIjVr7wJf3FSxwKOC0RrfY0+VVAhP+8pcQCFK+X+vGS+WzdYgTk +qn+H7DwkezwWJpmB8GXPe/Nyk1ZQy2aX65ucEI1ZNqWHucH0+n1AndLhGYoSwHcr6x8 pLSqiMIyVaKxdT+tj9x8g/rzgiVvYIxg35wAZZXVJNt1ggt9LMb/zRU9WrsuD4jD0siO 4qHV5zambY/elUAyMyhqG4iMPk6Knrbs1PeOjbwkxnPMqP2Dl5jcTPfp3Mfqq+biKyRu oq0w== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding :content-language:in-reply-to:mime-version:user-agent:date :message-id:references:to:from:subject:arc-authentication-results; bh=wOkHzvWaqXvYHZAfpGqQxFXgSwblYEDG9Twr94aupP0=; b=DE2BlBiSsO99Hr5wp4plafD49CCy1RfyF6S/LT0PIvVOvVWwuxrkhZstxZLRZcFMgp /Gx81cndfNdKf6qU5a0b95Hus5XikzZ2LKPJ9lniJEbOSq3YlkDDAAiJXM0WjZ9tsyc9 I9bcAJgpVxh5RZ7gSZo0YheyFIq2BC+nOYaVfQYnuxF1hzw7D0vTGsdUK8qHtgOd03dK MDOQ94xRwH9/F2XNXzyGY5nvS86VqaJj2yKGTRHAR1ssr35dWtYYWeXTGPpq4yE6ZHbQ lZt6OTxJw6ICHPcsnf4Py4vNJZEGZtDzax4FWgRKZNGghpIRmQG6QdVWTAXgjBqVxsug TrPA== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id b3-v6si188543pli.440.2018.02.14.06.42.20; Wed, 14 Feb 2018 06:42:35 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1030925AbeBNOkK (ORCPT + 99 others); Wed, 14 Feb 2018 09:40:10 -0500 Received: from www62.your-server.de ([213.133.104.62]:49483 "EHLO www62.your-server.de" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1030907AbeBNOkI (ORCPT ); Wed, 14 Feb 2018 09:40:08 -0500 Received: from [62.202.221.8] (helo=linux.home) by www62.your-server.de with esmtpsa (TLSv1.2:DHE-RSA-AES256-SHA:256) (Exim 4.85_2) (envelope-from ) id 1elyEA-00040w-OE; Wed, 14 Feb 2018 15:40:06 +0100 Subject: Re: WARNING: kmalloc bug in bpf_prog_array_copy_info From: Daniel Borkmann To: syzbot , ast@kernel.org, linux-kernel@vger.kernel.org, netdev@vger.kernel.org, syzkaller-bugs@googlegroups.com References: <001a11452e225976de056520c7b3@google.com> <1171a3b4-67b2-dc8b-af87-d9378d42ab4c@iogearbox.net> Message-ID: <146902fb-3f03-b8dd-1c3c-88fcdeb6e2af@iogearbox.net> Date: Wed, 14 Feb 2018 15:40:06 +0100 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.3.0 MIME-Version: 1.0 In-Reply-To: <1171a3b4-67b2-dc8b-af87-d9378d42ab4c@iogearbox.net> Content-Type: text/plain; charset=utf-8 Content-Language: en-US Content-Transfer-Encoding: 7bit X-Authenticated-Sender: daniel@iogearbox.net X-Virus-Scanned: Clear (ClamAV 0.99.3/24314/Wed Feb 14 10:21:29 2018) Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On 02/14/2018 01:36 PM, Daniel Borkmann wrote: > On 02/14/2018 12:59 AM, syzbot wrote: >> Hello, >> >> syzbot hit the following crash on bpf-next commit >> 7928b2cbe55b2a410a0f5c1f154610059c57b1b2 (Sun Feb 11 23:04:29 2018 +0000) >> Linux 4.16-rc1 >> >> So far this crash happened 362 times on bpf-next. >> C reproducer is attached. >> syzkaller reproducer is attached. >> Raw console output is attached. >> compiler: gcc (GCC) 7.1.1 20170620 >> .config is attached. > > Will send a fix for this in a bit. (http://patchwork.ozlabs.org/patch/873373/) #syz fix: bpf: fix bpf_prog_array_copy_to_user warning from perf event prog query