Received: by 2002:a25:8b91:0:0:0:0:0 with SMTP id j17csp1563791ybl; Thu, 5 Dec 2019 03:30:51 -0800 (PST) X-Google-Smtp-Source: APXvYqxXflDdSCkr6PIqf4XoWhWJPtD+bw6tNfqnCEx3qFSWBVhqoYya9lzMaOpqrerHzQr18Hdm X-Received: by 2002:aca:b986:: with SMTP id j128mr1066687oif.16.1575545451754; Thu, 05 Dec 2019 03:30:51 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1575545451; cv=none; d=google.com; s=arc-20160816; b=EWLGC7E9eyOUIyqK2AAh6H7WQlG9j62B7xrtHiF9SbdtypSmh+pfLt2U/ZMlb1tklt eLFKdV+V+wvIBgJbXayIwX+KF4CQA7YcFJDnTsovd+4dwMBKaCikbiSGWp1qQXX+xKMJ m1nTvlsDx+8F0RXazhAW7d3bykmFft8zZ07S9WiqmUwJSZzb4O9PohSTZpSnhd5fygct 8/OMrY3gc66GL19bIbqmeUIvllsiUD2/fHf1i42xexz0cNz8HC5dn8H8T7SJFnhI31Su C+95F3I3Kn/fUN1R9W9hFlutLd+TN5ge/5kxn67gYZcsMBaXcG04OhLuo4AfnVDAJlOi L/Kg== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding :content-language:in-reply-to:mime-version:user-agent:date :message-id:from:references:cc:to:subject:dkim-signature; bh=lbaSGfutZwhZA116gvr95IAUlIVoaJxPvvW+eFCW8zI=; b=rQt7x0hWToDlnQdf+Dfq74LfRBF3zTjzthoXnATxWi8sS+emj3De2TgaQFcG27N0Xn fZMXMsxgrzZ4boAY+XugrJmeLroZ2Vxs1JEJD8iP0Ll7F+hS/hL2i+Yqf3/AhKDN1wQV GawS/5nBhSrPyGhfOZitR8cNTvm0srVmxDrQ8pMKsL3Yj9zRUKwSmVh4Ni0De5z/n3kY DlGdgdWvO9v20sYHbcHEcc8sSbXeqC91tNmF6yFAPt7Rbthu7oIvIniv/L3QhaSBp/4P LnmFcvSV2zUl0ht84TR+JDpC6JIvxlLBJJaHMBI8u7HYX9QX0ZSf4mqPZTxxsy2wNzxR ghgQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@redhat.com header.s=mimecast20190719 header.b=Su291t1e; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=redhat.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id e23si4616069otj.239.2019.12.05.03.30.37; Thu, 05 Dec 2019 03:30:51 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@redhat.com header.s=mimecast20190719 header.b=Su291t1e; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=redhat.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1729344AbfLEL33 (ORCPT + 99 others); Thu, 5 Dec 2019 06:29:29 -0500 Received: from us-smtp-delivery-1.mimecast.com ([207.211.31.120]:20566 "EHLO us-smtp-1.mimecast.com" rhost-flags-OK-OK-OK-FAIL) by vger.kernel.org with ESMTP id S1729260AbfLEL32 (ORCPT ); Thu, 5 Dec 2019 06:29:28 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhat.com; s=mimecast20190719; t=1575545367; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=lbaSGfutZwhZA116gvr95IAUlIVoaJxPvvW+eFCW8zI=; b=Su291t1eGFT3SH7xXcP17RW8wQuyFCu4TV9qt0BLkuATFaEkUK5NsqLXAalYNDNodetJ/N PCq3U3g8ojkuFduB+z+iQQBX/xkJ44jerbjNnfJ6zMWm4xRTWZ97j117R8Eu9BNori8ELF 2xdEwKvQOywMDyuLc/XkD6LZgelWyxg= Received: from mail-wr1-f70.google.com (mail-wr1-f70.google.com [209.85.221.70]) (Using TLS) by relay.mimecast.com with ESMTP id us-mta-277-AOQQ6ZUNOFajVLI066qgGw-1; Thu, 05 Dec 2019 06:29:24 -0500 Received: by mail-wr1-f70.google.com with SMTP id j13so1389727wrr.20 for ; Thu, 05 Dec 2019 03:29:24 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:cc:references:from:message-id:date :user-agent:mime-version:in-reply-to:content-language :content-transfer-encoding; bh=lbaSGfutZwhZA116gvr95IAUlIVoaJxPvvW+eFCW8zI=; b=unWAFwfEoX/2zwvh0ortyAvHs+zVRvDoTQm1hOppSaoWABY5a7oRKM8l40OKFEdFAe /vX7OYTGNZY79DS6S6M6E0iQDbjOB6DaLynEEuQ/G2vJhGBiBeqq8anOMhIcwGA8p/1F bRxR1l5pXjyRGrwRt0rBGzZ1z66filynVtyoMjYhWpsvJUKQLM4EgE98xD2ij0+9pj4A b7xBkN3NbAePJRKxwGzkcwddnREGBk8hYiHjXkTMhQBLJNM/119a37UeQFtv6fErNw2x l/o1KacjefI1aRADcuQ2J+AdH49thEE1E5sKyB+0aFlTq5RxvgBKlIGtf0vIAfxHDL8P +NUQ== X-Gm-Message-State: APjAAAXWZO4xQMDpcspHZFf4jcABXWWWsusN69w0RVkvH9PQOCkBs1D7 vzGc5OuwhljJg/J2ss6GiuX0RaOwn9qHwJVXaHhSVkbLQWXWfokgSmnM20SbDj/BL60F07p/Vnw SerNAGB0uIaJbTPGZDHyGsQ+l X-Received: by 2002:a1c:1dc4:: with SMTP id d187mr4900398wmd.46.1575545363049; Thu, 05 Dec 2019 03:29:23 -0800 (PST) X-Received: by 2002:a1c:1dc4:: with SMTP id d187mr4900356wmd.46.1575545362806; Thu, 05 Dec 2019 03:29:22 -0800 (PST) Received: from ?IPv6:2001:b07:6468:f312:541f:a977:4b60:6802? ([2001:b07:6468:f312:541f:a977:4b60:6802]) by smtp.gmail.com with ESMTPSA id e18sm11632611wrr.95.2019.12.05.03.29.21 (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Thu, 05 Dec 2019 03:29:22 -0800 (PST) Subject: Re: KASAN: slab-out-of-bounds Read in fbcon_get_font To: Dmitry Vyukov Cc: syzbot , Andrey Ryabinin , Bartlomiej Zolnierkiewicz , Daniel Thompson , Daniel Vetter , DRI , ghalat@redhat.com, Gleb Natapov , gwshan@linux.vnet.ibm.com, "H. Peter Anvin" , James Morris , kasan-dev , KVM list , Linux Fbdev development list , LKML , linux-security-module , Maarten Lankhorst , Ingo Molnar , Michael Ellerman , Tetsuo Handa , Russell Currey , Sam Ravnborg , "Serge E. Hallyn" , stewart@linux.vnet.ibm.com, syzkaller-bugs , Kentaro Takeda , Thomas Gleixner , the arch/x86 maintainers References: <0000000000003e640e0598e7abc3@google.com> <41c082f5-5d22-d398-3bdd-3f4bf69d7ea3@redhat.com> From: Paolo Bonzini Message-ID: Date: Thu, 5 Dec 2019 12:29:20 +0100 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Thunderbird/68.1.1 MIME-Version: 1.0 In-Reply-To: Content-Language: en-US X-MC-Unique: AOQQ6ZUNOFajVLI066qgGw-1 X-Mimecast-Spam-Score: 0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On 05/12/19 12:27, Dmitry Vyukov wrote: > Oh, you mean the final bisection crash. Indeed it contains a kvm frame > and it turns out to be a bug in syzkaller code that indeed > misattributed it to kvm instead of netfilter. > Should be fixed now, you may read the commit message for details: > https://github.com/google/syzkaller/commit/4fb74474cf0af2126be3a8989d770c3947ae9478 > > Overall this "making sense out of kernel output" task is the ultimate > insanity, you may skim through this file to get a taste of amount of > hardcoding and special corner cases that need to be handled: > https://github.com/google/syzkaller/blob/master/pkg/report/linux.go > And this is never done, such "exception from exception corner case" > things pop up every week. There is always something to shuffle and > tune. It only keeps functioning due to 500+ test cases for all > possible insane kernel outputs: > https://github.com/google/syzkaller/tree/master/pkg/report/testdata/linux/report > https://github.com/google/syzkaller/tree/master/pkg/report/testdata/linux/guilty > > So thanks for persisting and questioning! We are getting better with > each new test. Thanks to you! I "complain" because I know you're so responsive. :) Paolo