Received: by 2002:ad5:474a:0:0:0:0:0 with SMTP id i10csp645022imu; Fri, 4 Jan 2019 04:37:38 -0800 (PST) X-Google-Smtp-Source: ALg8bN5N5oQlSecXh9uKgQxI0Q0yWj1q88enpZ5N9xmwCcpSgDw3sGI9Mq+V44T4ychNCw6Osl4h X-Received: by 2002:a63:314d:: with SMTP id x74mr1514519pgx.10.1546605458901; Fri, 04 Jan 2019 04:37:38 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1546605458; cv=none; d=google.com; s=arc-20160816; b=W5xghRNiPLEH8ueWLY8kWYUa87+wQDmNWVf6HwCFhV9L0nbc4GOm3PRFGizEz/Kv2Q bxUZImN3xxGWZyakSAlb3deCYFWQfOhT+TDbpALDiLTAP+Oa/LqkxLCD+NoqiuXmIbf8 2HdwxqrM9Aew5wFjRgAqAjNJM14XqGRISUUVMqfqixRJ9KOF8B3P4IJXbCPTGl+yXXkf oqBIcNaWo7c4YXYx1BHbb+9gYYd/IW9iK6ZohR6he8pEkXkw41mA4w4eIOq3JrLHPjnD fv8U7vT+eIHRmrTD6/4tR3CKXNaAbwRxqTIrOCEIpc0c/+3PXBu4fAjV+7f2F9hOQoZS E6Tw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:dkim-signature; bh=kJ/yfDmBuHnO+ny/3gz+6yKNZoIKZ4geGslJZE7/HDc=; b=Hb9qkgcFl2wUc1GsTjNjg3RR8tbUcaw81UNcQWiXraNDfwaAWysqa1SgAe2Unf3p8C 4ZoiGZu8ixYUtzzr/slslwikbVU5yGGykWaxBGajGMOrOe50re0TjKn/ZsoeqB6ktf9Y ljkRAYEyvhr3ycgsobsVFgmSjwo8uHU+PPS+eUm8E9lOTM9NlI+XeeRVrLCQWIKggIm0 JpFG3mOvGnK2kVPEwgrorHx5tXtSl0SCT7GfIQ7xPex8c9TRTYIW8b3EKhqw6Ma6aVEO 7D7qfCqDdXm7UJXVEDYlMFv05Fjqr9I7y0labpU+EL1kRSVb+pn8g8rkLGfqviPaV+vy KxTA== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@google.com header.s=20161025 header.b=Hc81N4aP; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id z22si58652501pfd.197.2019.01.04.04.37.23; Fri, 04 Jan 2019 04:37:38 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@google.com header.s=20161025 header.b=Hc81N4aP; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1727278AbfADKcZ (ORCPT + 99 others); Fri, 4 Jan 2019 05:32:25 -0500 Received: from mail-it1-f177.google.com ([209.85.166.177]:35055 "EHLO mail-it1-f177.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1725913AbfADKcY (ORCPT ); Fri, 4 Jan 2019 05:32:24 -0500 Received: by mail-it1-f177.google.com with SMTP id p197so991104itp.0 for ; Fri, 04 Jan 2019 02:32:24 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=kJ/yfDmBuHnO+ny/3gz+6yKNZoIKZ4geGslJZE7/HDc=; b=Hc81N4aPRSL5BP2i73Q9Qh5rOpNKWvIbjC1eFxdqhb7CrT55gnMzZpVvA8nthiul+L 1OVZ31hY24eKNlOzzVYXGmnlZS++kuD0EabLf+ToSatKk2lbm46XLx+SC5CJIv2KmtA5 o0Qd0QzxQkvZGpaIeKTzFB3h1P51fEW8ogJiTNQFk5lggewM7gziRcBV1M3FuPZ3teSw UY4LXluTL+G2b++GXFqhPOTR8HL4OSjr+zT7jUYehjYZkkA3m6mmgdEouwIxVmqjghtI djnQn+8ur/12oHiR+gOJeoJDHQ7hoJXdvK10RMXqQP9W83InOSuCzkpUG5Pjrj9tO4ux Ig8g== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=kJ/yfDmBuHnO+ny/3gz+6yKNZoIKZ4geGslJZE7/HDc=; b=dKyUwrd44EOAcQiRHrNzoMtJAUSw1ZaPlVPnRvu328+eNT3Yij12nllLAVbBs+njs7 qvvPBOsRkYtCX3gabbwFRdt4UGYUic6CdlYwaJoUlKVp6E+IKw287a7GiNbjPi2EYTKm 8fxBKSaPNggh3m+PASrLkc+tvRm+qAPX8DXZasHz1vUNI2RbzBTib6Qrs8QwsQa9FA1m 4YqEhka/6sidfoB8Foc3eH6i9UZW+RNLT6Vou0cPMDAtmhMKUSo/JiIYxP/5upckYqZI bIOB1IrAYdSdKOSk0OlMrKlZaXpu3Gl34boXfvEZkyjYQ/cG1z3BPCxMF/BVkD3ikErA nGHA== X-Gm-Message-State: AA+aEWbplbwEN80sLa5VNecp5LcllyAlz3xuWTQE1W98c83l1AUsK14z hF6xfciZgg4tBv4Kvg91dklEnWuMidk0JtG8wofZ7w== X-Received: by 2002:a02:8904:: with SMTP id o4mr33246713jaj.35.1546597943666; Fri, 04 Jan 2019 02:32:23 -0800 (PST) MIME-Version: 1.0 References: <000000000000513fb7057e8d7013@google.com> <20190103210743.6518841e@redhat.com> <20190103225404.66b0ec9f@redhat.com> In-Reply-To: <20190103225404.66b0ec9f@redhat.com> From: Dmitry Vyukov Date: Fri, 4 Jan 2019 11:32:12 +0100 Message-ID: Subject: Re: kernel panic: stack is corrupted in udp4_lib_lookup2 To: Stefano Brivio Cc: Willem de Bruijn , Eric Dumazet , syzbot , David Miller , Alexey Kuznetsov , linux-kernel , Network Development , syzkaller-bugs , Hideaki YOSHIFUJI Content-Type: text/plain; charset="UTF-8" Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Thu, Jan 3, 2019 at 10:54 PM Stefano Brivio wrote: > > On Thu, 3 Jan 2019 15:15:06 -0600 > Willem de Bruijn wrote: > > > syzbot generated stack traces with > > > > [ 183.517380] udpv6_err+0x46/0x60 > > [ 183.520739] ? __udp6_lib_err+0x1890/0x1890 > > [ 183.525054] gue6_err_proto_handler+0x199/0x280 > > Where? I can't find that in any logs linked from the dashboard at > https://syzkaller.appspot.com/bug?extid=4ad25edc7a33e4ab91e0 :( Stefano, there are these 4 bugs reported that have similarly looking reproducers involving udp sockets and that crash modes that looks like stack corruption/overflow: https://syzkaller.appspot.com/bug?extid=14005fa30c9a07192934 https://syzkaller.appspot.com/bug?extid=d14090007dc9ba5fa9b7 https://syzkaller.appspot.com/bug?extid=137ed32ec9a6d5b0d5fe https://syzkaller.appspot.com/bug?id=d5bc3e0c66d200d72216ab343a67c4327e4a3452 Are these the same bug as this?