Received: by 2002:a25:8b91:0:0:0:0:0 with SMTP id j17csp772289ybl; Wed, 11 Dec 2019 07:17:49 -0800 (PST) X-Google-Smtp-Source: APXvYqzjAbfW8aCH+wov6pOODpBtfwd7nPp4MWaQExq/aQGV1oI6PWdM4l+gQw5CIL1HwDaedwBF X-Received: by 2002:a9d:4f0e:: with SMTP id d14mr2525431otl.90.1576077469100; Wed, 11 Dec 2019 07:17:49 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1576077469; cv=none; d=google.com; s=arc-20160816; b=a5ELv8P2eddbPhd4Hxmt6mxfjymYWQtxBIHFQZEBA6SDYgen3dglLDvbPXGjD90dAv 77pWVdtsd9GxqRp8qaYBWxFyvHAPHXx2KkfCsyniFKVxIflt9pvD10jSVl5+F/j08idO ugIK0Jmvbpq7Jum7JLlSmHZN186DK45QKD4bU8Lgfas4qfwxmfm/3R2XAgbYHf/aD6PQ 3enUh+Cz5OySLlXIjC/jNlW6WH029j2yd/3dj68KR5fsr3PQ5/YIs5uwIQ/aGcBkR6PL xobsfbSQLAqGcKSnH/XPZV+80E4QsN7mG/DJI+qvEg89yMQmRlxpEK6t73TkbAcoqdaS Aw0w== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:mime-version:message-id:in-reply-to :subject:cc:to:from:date; bh=oK58xfH1/C3E/Qi4zRFYwPANN57Q/8Ktf6CSqv2Hwy8=; b=lGPVHBUehDtPOk4KKyBQ18PT+T7q0Jc3N4fqiF3S3qnzbBgjm1G+3bd/FbBZv7ey6O PBd5YolGH14VAYUKrw2CKC4DDzS6PwltvMFCfdqrvbRp0X/ILG+A6/SbI5+sX08h02ta djLhcGyxUdz9R6ICNql8IzqPoFnqm+mzzNwKkhmAYjTrg9lMGxFSBFmK0Y+9y6oAO4gL w0XdKjCbabgkfzyulDOECjNH5TcbiPSaGSqQ41TpiX36jMGWKPFmnYKsBeodCgibaHm8 Pn/39Sg1G7c+ntXCPRNJVHDzx27IxC0OmBZgNoB4hme1sCETJRnv6TiCm2RSFNuYeU0o EPfw== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id l5si1510122otb.26.2019.12.11.07.17.35; Wed, 11 Dec 2019 07:17:49 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1731063AbfLKPPl (ORCPT + 99 others); Wed, 11 Dec 2019 10:15:41 -0500 Received: from iolanthe.rowland.org ([192.131.102.54]:55100 "HELO iolanthe.rowland.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with SMTP id S1731693AbfLKPO6 (ORCPT ); Wed, 11 Dec 2019 10:14:58 -0500 Received: (qmail 1776 invoked by uid 2102); 11 Dec 2019 10:14:57 -0500 Received: from localhost (sendmail-bs@127.0.0.1) by localhost with SMTP; 11 Dec 2019 10:14:57 -0500 Date: Wed, 11 Dec 2019 10:14:57 -0500 (EST) From: Alan Stern X-X-Sender: stern@iolanthe.rowland.org To: Andrey Konovalov cc: syzbot , Hans Verkuil , Souptick Joarder , Kernel development list , , USB list , Mauro Carvalho Chehab , Richard Fontana , syzkaller-bugs , Thomas Gleixner Subject: Re: Re: KASAN: use-after-free Read in usbvision_v4l2_open In-Reply-To: Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Wed, 11 Dec 2019, Andrey Konovalov wrote: > On Tue, Dec 10, 2019 at 9:17 PM Alan Stern wrote: > > > > On Tue, 10 Dec 2019, syzbot wrote: > > > > > > On Mon, 9 Dec 2019, syzbot wrote: > > > > > > >> Hello, > > > > > > >> syzbot found the following crash on: > > > > > > >> HEAD commit: 1f22d15c usb: gadget: add raw-gadget interface > > > >> git tree: https://github.com/google/kasan.git usb-fuzzer > > > >> console output: https://syzkaller.appspot.com/x/log.txt?x=1296f42ae00000 > > > >> kernel config: > > > >> https://syzkaller.appspot.com/x/.config?x=8ccee2968018adcb > > > >> dashboard link: > > > >> https://syzkaller.appspot.com/bug?extid=c7b0ec009a216143df30 > > > >> compiler: gcc (GCC) 9.0.0 20181231 (experimental) > > > > > > >> Unfortunately, I don't have any reproducer for this crash yet. > > > > > > >> IMPORTANT: if you fix the bug, please add the following tag to the > > > >> commit: > > > >> Reported-by: syzbot+c7b0ec009a216143df30@syzkaller.appspotmail.com > > > This crash does not have a reproducer. I cannot test it. > > > > Let's try the same patch with a different bug report -- one that has a > > reproducer. I assume that syzbot gets the bug identity from the > > email's From: line (which has been updated acoordingly) rather than the > > Subject: line. > > Did you get a response for this test? I see the test attempt on the > dashboard (the patch failed to build), but I didn't get an email with > the result. No response so far. On the other hand, syzbot has been a bit slow to respond to my tests recently (typical turnaround time is several hours). I don't know what's going on. Alan Stern