Received: by 2002:a05:6a10:f347:0:0:0:0 with SMTP id d7csp4880967pxu; Thu, 10 Dec 2020 07:39:42 -0800 (PST) X-Google-Smtp-Source: ABdhPJx0AcjmzPwhLEk+mF3YcTtFcNJ1mcv+kC5tjS4vxi4k+eOPlrnEuYrZwRjvcpa27EPvBaEL X-Received: by 2002:a05:6402:1714:: with SMTP id y20mr7188675edu.360.1607614782386; Thu, 10 Dec 2020 07:39:42 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1607614782; cv=none; d=google.com; s=arc-20160816; b=n8lCB1sx4Dscqo3TlL1NrLxwxafNgZsfjoFICV3GWIskNTmiu+5yZOeh2Z4eSloOx3 hL5q/k3cceWbRHqQ10qCh71aPpidlsyeKr1F3zgMwiLQsgTZkynt+tTEQKbfnCVZ00yT Z4/XZuF81fo+n2pquIGzB0PhcXAUu02HK8LW8Fo4adLXsI7dzfATCaLljCMtbAcKr1ku X8FqBXIF+LwNlY8JaBNQllm8AxxV/JVKo9CdOTVzLaLtw2Nl0Yvx8pMN4eceGwrFYyJW yX3LsIjdd/hOqGTtuG70m4mD3mxq8ekkF+piKzGqEaIQOUPwtQzjMcM90Z8MjjlbwYlW 4yhA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:in-reply-to:content-disposition:mime-version :references:message-id:subject:cc:to:from:dkim-signature:date; bh=qKcMFKICBMsP5GLGLgWIIaAJQ35cFJ9L28ZuKE2RSVk=; b=t7/6Nw0l3HQHsNH8FdRlVfkGg0Z3FzdyYhpz9UD6/tX2R+STxOUu0kvfrDQbe0da8H k+Pzk7aE2sATL1UF0G4FkTvm+Uz+UU2cXbXDlJr4QPidQuyNR6eCNMuLbNPZDrqijFd8 c1GhRBmBIPnlPAlFprLYPyzxniu3BvxLfd8Z6VDZgObIRS2Yq5uMC9qlCpk/yfz/kZOG lPu0rk1vhDW4rTAbPxkxqMBEzy7cXCz+fUdgsKccUY2OCSC47UaT11b+HbiyulNs3fSc bnJO+7caIYjz75VACsjM19YUXA1HZmgz+gdgX8Do1hLSXQRMETOxXeZjBGbHK6vYIJ3d 6kmw== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@linuxfoundation.org header.s=korg header.b=Oyf4Lqt3; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=linuxfoundation.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id r9si2812247ejr.645.2020.12.10.07.39.19; Thu, 10 Dec 2020 07:39:42 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@linuxfoundation.org header.s=korg header.b=Oyf4Lqt3; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=linuxfoundation.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S2391646AbgLJPg1 (ORCPT + 99 others); Thu, 10 Dec 2020 10:36:27 -0500 Received: from mail.kernel.org ([198.145.29.99]:48408 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S2389899AbgLJPgK (ORCPT ); Thu, 10 Dec 2020 10:36:10 -0500 Date: Thu, 10 Dec 2020 16:36:43 +0100 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=linuxfoundation.org; s=korg; t=1607614529; bh=Xwyc46kb9Zf+lrvn7bafHBDuobBRZsoyjP/r5kwNAgY=; h=From:To:Cc:Subject:References:In-Reply-To:From; b=Oyf4Lqt33B34eWf4Bh3GYyr66HdcYWvukSqFS15oh20JhF1728JtyGmJs/Zj9VHaO hCHwKTWCO7/xmLs1VgGBVDmST8JZVjlqodUwY/d+3BdorPL5r5fYc9pi5om8uNUxDD Rnb6g9k/U2ZmctuY2T8PYN1egZiTSODSFgjWFy0c= From: Greg Kroah-Hartman To: Eric Dumazet Cc: LKML , stable@vger.kernel.org, syzbot , Jakub Kicinski Subject: Re: [PATCH 4.4 15/39] geneve: pull IP header before ECN decapsulation Message-ID: References: <20201210142600.887734129@linuxfoundation.org> <20201210142601.652963609@linuxfoundation.org> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Thu, Dec 10, 2020 at 03:53:09PM +0100, Eric Dumazet wrote: > On Thu, Dec 10, 2020 at 3:40 PM Greg Kroah-Hartman > wrote: > > > > On Thu, Dec 10, 2020 at 03:38:44PM +0100, Greg Kroah-Hartman wrote: > > > On Thu, Dec 10, 2020 at 03:32:12PM +0100, Eric Dumazet wrote: > > > > On Thu, Dec 10, 2020 at 3:26 PM Greg Kroah-Hartman > > > > wrote: > > > > > > > > > > From: Eric Dumazet > > > > > > > > > > IP_ECN_decapsulate() and IP6_ECN_decapsulate() assume > > > > > IP header is already pulled. > > > > > > > > > > geneve does not ensure this yet. > > > > > > > > > > Fixing this generically in IP_ECN_decapsulate() and > > > > > IP6_ECN_decapsulate() is not possible, since callers > > > > > pass a pointer that might be freed by pskb_may_pull() > > > > > > > > > > syzbot reported : > > > > > > > > > > > > > Note that we had to revert this patch, so you can either scratp this > > > > backport, or make sure to backport the revert. > > > > > > I'll drop it thanks. Odd I lost the upstream git id on this patch, let > > > me check what went wrong... > > > > What is the git id of the revert? This ended up already in 4.19.y, > > 5.4.y, and 5.9.y so needs to be reverted there. > > > > https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=c02bd115b1d25931159f89c7d9bf47a30f5d4b41 Thanks, I'll drop the patch from 4.4, 4.9, and 4.14, and queue up this revert for the other trees now. greg k-h