Received: by 10.192.165.156 with SMTP id m28csp64147imm; Tue, 10 Apr 2018 16:29:27 -0700 (PDT) X-Google-Smtp-Source: AIpwx48cMrcAo5Rs0epTmNGwSshiTgDNRnFV2skGWBVOvwKe1yN53vKMhBfuyKqvUC+1JJbXjDMr X-Received: by 10.98.78.21 with SMTP id c21mr1973916pfb.107.1523402967834; Tue, 10 Apr 2018 16:29:27 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1523402967; cv=none; d=google.com; s=arc-20160816; b=s+kmZ9RYPUt5sZH5Ydtfz1eru1v0Z0DNJHyJIWvsogEs8Ay0A6awwhG6SITg380LED bRI3bCDGa+76znwaKtsNQebY/MYHjjE6B1RP37yGRYjGesi5G6uyCCT1CxXRcYvk9/8s MeeiWlFPUOR25cODea9nQc+p9Sux9eriBmtPMhGarT/H7MHGxc7gUYS+KmaQExj0pDPr uAeXo3mUb83yC061p9m76LRzACocPmP6l0ckoKAvDowFpDDNOlTV1kSyeV4y1Tm5CRYL q/HMRMWDoSAHxtTGUaBvs63bJ6Nc5ZDZv6VX+PjHhxeccZvkLKRo5bD7hM2Ay2pozOAp hx4Q== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:mime-version:user-agent:references :message-id:in-reply-to:subject:cc:to:from:date :arc-authentication-results; bh=aZYA6KvjOoAJov54c4Nf6bhZJzh+jWCQmDFC3rGlepU=; b=bjxrB9YBz9Hk0O8uKdtYb9lF5Q7k/bF1vmfZy7uBzrsHEmLewDOFyBmF7x+SbNVJBz A9iuT+ErbLsQvBe7OZk5OWWDQRFzl8ev79v5ogX7sPpyvl3VkR/vI1YWIBGi1Cvp1SkF TiPkom3P1GokKujTOkFj+Gto8fPocKtNc2l3nRDR0WOsLBfVzQD6RykDUhgOaIyt2xti vwdUwsobcfkAQIk+Lk0MhJM6KidHLjQr7dMkb8CVAs2IDq4TfmMIzS7rrBpBmZJB5LGK 8zFLcTc8QUJk7G2+BfNbmUlC9bsO1w6Oe5TO+NMQF81J206c9xF4ZoT1Nj1FdK0wxv22 8iKg== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id y19si2371688pgc.540.2018.04.10.16.28.51; Tue, 10 Apr 2018 16:29:27 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1755523AbeDJXUz (ORCPT + 99 others); Tue, 10 Apr 2018 19:20:55 -0400 Received: from namei.org ([65.99.196.166]:56476 "EHLO namei.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1754370AbeDJXUx (ORCPT ); Tue, 10 Apr 2018 19:20:53 -0400 Received: from localhost (localhost [127.0.0.1]) by namei.org (8.14.4/8.14.4) with ESMTP id w3ANKjrA011037; Tue, 10 Apr 2018 23:20:45 GMT Date: Wed, 11 Apr 2018 09:20:45 +1000 (AEST) From: James Morris To: "Eric W. Biederman" cc: Tetsuo Handa , syzbot , "Serge E. Hallyn" , linux-fsdevel@vger.kernel.org, linux-kernel@vger.kernel.org, syzkaller-bugs@googlegroups.com, viro@zeniv.linux.org.uk, linux-security-module@vger.kernel.org Subject: Re: KASAN: null-ptr-deref Read in xattr_getsecurity In-Reply-To: <87o9irw2ad.fsf@xmission.com> Message-ID: References: <0000000000008d2e0d05697a693d@google.com> <9d192497-8b1e-ca8d-0ed8-b3324ee1e361@I-love.SAKURA.ne.jp> <87o9irw2ad.fsf@xmission.com> User-Agent: Alpine 2.21 (LRH 202 2017-01-01) MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Tue, 10 Apr 2018, Eric W. Biederman wrote: > Tetsuo Handa writes: > > > From 904d07a6eb014f3df0c5a1ebfcfd4323276a9a76 Mon Sep 17 00:00:00 2001 > > From: Tetsuo Handa > > Date: Tue, 10 Apr 2018 15:15:16 +0900 > > Subject: [PATCH] commoncap: Handle memory allocation failure. > > > > syzbot is reporting NULL pointer dereference at xattr_getsecurity() [1], > > for cap_inode_getsecurity() is returning sizeof(struct vfs_cap_data) when > > memory allocation failed. Return -ENOMEM if memory allocation failed. > > > > [1] https://syzkaller.appspot.com/bug?id=a55ba438506fe68649a5f50d2d82d56b365e0107 > > Acked-by: "Eric W. Biederman" > > Tetsuo I can pick this up, or do you have preferred path for getting > this change merged? > It can go via my tree if needed, but otherwise: Acked-by: James Morris -- James Morris