Received: by 10.223.185.116 with SMTP id b49csp821860wrg; Wed, 14 Feb 2018 07:30:31 -0800 (PST) X-Google-Smtp-Source: AH8x2261PCxSTP+2POoFaq+gKYDoBEgQKsF3bS6YMq6XO4Dop/p2+3tX5kV5hUmdonkQCZuymLvz X-Received: by 2002:a17:902:c6b:: with SMTP id 98-v6mr4701078pls.267.1518622231080; Wed, 14 Feb 2018 07:30:31 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1518622231; cv=none; d=google.com; s=arc-20160816; b=JQ85g1YIFAJ5nRGXdJ9dR6UCWZBWtYtpC/VKzVHoVd/Z0e7+fyOGr+Eov38se270Xh to9DMspJb30SHhq8NdWuZ2DXTNAlwvFhhXGXc8bALYpBJTJ9KhHQrAAWINqL4pB/O4o4 Fwh5h1+I51MGghYZuPfL3ePAMOV8PIpGclxd8AQdATO7W9FGNeYns5brkOTaPtVs/k2S sGARWF/zm2RIn/05CK8mlQPQ2BlBABy+s1s2Gw9gOGmyUkZ0fXU7CZau6foj6E9QwqMD iptnhUMLNJNia7XsEWE2O6L4BYwK6ZxCLmjcDcPFcVOgN93hTuXq6x7U5993mjmhixZf A80g== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:cc:to:subject:message-id:date:from :references:in-reply-to:mime-version:dkim-signature :arc-authentication-results; bh=EG6IEzAUQIEsRnTTjNdYFgdYfXEu1QDTUPEmpHa26vA=; b=pMQO7ntF4ADj4NcDtFVmb36cBWw+5OgY/e1uHRJ5vL2U8ToIxOzUTF+VvWMluiTzZR fFuu/mAQL1JsV74Z4lgt0s+JOvA9wdaFgZWwxbK5yb9so3H/IAFx+iYn8ZQ0gjBkAfFa jTqZY/Y2f3/3ARBd6ifNlcGw3rbJv55aRfS8Nc/+vRVzOSlgiNtwjP7WKy9iEPBLJMry AV9ZqiDv+FSa6lyw2DmfyiiVyPL8w6lAH1V15siMZtYQ1ACfX/CMNoosv/hVmekZF50S cQqhqMk9xf07fMLbI5wuo46SA94Cq8aRRAgMN7ZfUMyre6ynoGhqDv33h+bbaUXtvFXa +lww== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@google.com header.s=20161025 header.b=evFIn8BX; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id b9-v6si3316695pli.407.2018.02.14.07.30.11; Wed, 14 Feb 2018 07:30:31 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@google.com header.s=20161025 header.b=evFIn8BX; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1031372AbeBNP2g (ORCPT + 99 others); Wed, 14 Feb 2018 10:28:36 -0500 Received: from mail-pl0-f49.google.com ([209.85.160.49]:46103 "EHLO mail-pl0-f49.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1031334AbeBNP2e (ORCPT ); Wed, 14 Feb 2018 10:28:34 -0500 Received: by mail-pl0-f49.google.com with SMTP id x19so36456plr.13 for ; Wed, 14 Feb 2018 07:28:34 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=EG6IEzAUQIEsRnTTjNdYFgdYfXEu1QDTUPEmpHa26vA=; b=evFIn8BX6oAq/FGQSehd82jaZ/nKyEVCD/DftpyB/nK4gClTpYepshUYEG0g2BL6P2 jHy968Ia1VBHZBPc0YPa8jWtwhV3nDqzYIG5qb75526k8LQlqlQceC91nZ+J5UnKi+jy RiaERre4+bJKSynEkdxo+gYTMSe4O11tjWJf2dGfHii53qsscwL0QjL6zpmVktb9RBIO lTuxFy1CHKHbxl7ZBDLV3RU6AzG7gfFIVs661tLPpJ74xOjCJ6xsIws4JaYAjESz9O2W gt80cEc1G0h0IaiiJLWKCHEZRFb48MmV1ikeZiRUuk93aLY5Hl18lyeS9rhPuGJdronp 03fw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=EG6IEzAUQIEsRnTTjNdYFgdYfXEu1QDTUPEmpHa26vA=; b=NK11MRcLdI83vE+BGTyICUcUBYU8jxCzkZzC5YHV1NIkMBdf8vqvvGTCjAy4ofXX7N ZYZdin248aJ8Yh5UuHw5N79yhigxMu7+R+RwGudtYPPdaPWKCD0T4w5+EO52rfMnhgDv cl7e4Z7oS6GGGtMwNujI0zudhaFA7Jso7GxX9BuUtsZbwvz3u46f0/U4dhGYv4jAny2B aA6HMq4K+oy2NYkSWwZt1HUxsqNM2aww5atnRnBr32MifmetlNSwFg4oAbwSPOjWGoxF pjDBuDax9LV9j1MUyi6iyonC/ri/q/VBqxUIpCCwhSWs1U8U9pZuzBBEK9JFF+uEASfo r5eA== X-Gm-Message-State: APf1xPB+yXj0Vs4Qzl/b/9WnXwFMVftqk0LKRjt5ma/b8mSt028B4bMz QAZWNCgtDcUIxfGmQ9/ZWsxf9U4a26DAuccc8FjLMg== X-Received: by 2002:a17:902:4283:: with SMTP id h3-v6mr4885793pld.175.1518622113917; Wed, 14 Feb 2018 07:28:33 -0800 (PST) MIME-Version: 1.0 Received: by 10.236.140.151 with HTTP; Wed, 14 Feb 2018 07:28:13 -0800 (PST) In-Reply-To: <20180214152109.GF11528@oracle.com> References: <001a1141a524c513ca05628d8ad4@google.com> <20180112183046.GA26098@oracle.com> <20180214152109.GF11528@oracle.com> From: Dmitry Vyukov Date: Wed, 14 Feb 2018 16:28:13 +0100 Message-ID: Subject: Re: KASAN: use-after-free Read in rds_tcp_tune To: Sowmini Varadhan Cc: syzbot , David Miller , LKML , linux-rdma@vger.kernel.org, netdev , rds-devel@oss.oracle.com, Santosh Shilimkar , syzkaller-bugs@googlegroups.com Content-Type: text/plain; charset="UTF-8" Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Wed, Feb 14, 2018 at 4:21 PM, Sowmini Varadhan wrote: > On (02/14/18 16:11), Dmitry Vyukov wrote: >> >> Hi Sowmini, >> >> Was this ever fixed? What's the fix? This still hangs as open. Please >> provide "syz fix" tag. > > Are you still seeing this problem? > > I had expected that the changes around rds_destroy_pending - see commit > ebeeb1ad9b8a - would have taken care of this (note that ebeeb1ad9b8a > refactors/updates 3db6e0d172c9) but those fixes were done by inspection > only. In other words, I was never able to reproduce this, so we may > still have missed some race condition. syzbot is probably not seeing this problem. However if you don't add the Reported-by tag to commit, nor provide syz fix tag, it will consider it as "open". One consequence of this is that it is still on our radars. Another consequence is that syzbot will never report bugs in rds_tcp_tune ever again as it thinks that it's the same known bug, so no point in bothering anybody.