Received: by 2002:a05:6358:489b:b0:bb:da1:e618 with SMTP id x27csp72269rwn; Fri, 16 Sep 2022 15:37:01 -0700 (PDT) X-Google-Smtp-Source: AMsMyM4URZY3L3V1CFUil4PslWyeOLdKEGmIa3Evn1A5pE8+ie9gfCQ6kk76hsYcbUmld6EClHMP X-Received: by 2002:a17:902:f683:b0:176:cc02:ce83 with SMTP id l3-20020a170902f68300b00176cc02ce83mr1936172plg.88.1663367820848; Fri, 16 Sep 2022 15:37:00 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1663367820; cv=none; d=google.com; s=arc-20160816; b=QWYuApyO8rQ2xejWOCQB30k+mPmdAl0ITPfZIBEnzHLM5ew4Qthh7y5382Vab+ssN8 QS7AJYfJ04zdkEc3NpCZ9JWynDO2hSxSH02Spd5kd/NcNR02rVnTvNmWOzmVWZovtYa6 IOLXQCzM8hm6jLvGzvqL7+y4Xm/ZIZthMeFneYEJUGNutIV6wK+OOD/hd8emMQReB0W8 m3bPjiYT2JwxdYamliAEDTnaqJPaDBh4rGIHjUtfI7IWfKD7t42XHvnXih5Ny0+6Gc46 3QYiDu/JYoS62p5ypLIS3G7cg75wrEz5qzbXq2AajIsVuCeY9odPSQF4Z5vBrcbSh5iH 8Sww== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:to:from:subject:message-id:in-reply-to:date :mime-version; bh=EqMgv96S6WOApHkV1NNQhBVATR9B3h0BGCpG14NXv7E=; b=fd1yUdh0F4wWmlocTFZ4/LygeQvBG7DTvUNTqZOfYKvaLiID1aFy3UmmDayJfte0FD /WpaKdZUezUh9GYzzAsGYIpKZLfSA74BoqJNmLInjTdStix1/9geSr1Y3410vFmaJrWo tzevclBQ8JMje5SR1YW+V+ssQs+4yGlbSYdZHt/zEzM9uRrJFcQNK9KLQAssuj4Rgjl+ ncL0PlJUdO5M4mvW4JOHDozMf7n6ya1REgKykbzwRye5EzDm1AV/Z9G+IiUnPB8Gf9My j5P93ZU2R0Yx997lMS53u+TlSqMX/fNZPWmgTYQY3ySlffWyPcjckWTgYxpQpxqV8/OB dgXA== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id c19-20020a056a00249300b0054246220a40si20927729pfv.158.2022.09.16.15.36.42; Fri, 16 Sep 2022 15:37:00 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S230077AbiIPWNk (ORCPT + 99 others); Fri, 16 Sep 2022 18:13:40 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:45768 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S230079AbiIPWNf (ORCPT ); Fri, 16 Sep 2022 18:13:35 -0400 Received: from mail-io1-f69.google.com (mail-io1-f69.google.com [209.85.166.69]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id D5EAABBA45 for ; Fri, 16 Sep 2022 15:13:34 -0700 (PDT) Received: by mail-io1-f69.google.com with SMTP id y10-20020a5d914a000000b00688fa7b2252so13074118ioq.0 for ; Fri, 16 Sep 2022 15:13:34 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=to:from:subject:message-id:in-reply-to:date:mime-version :x-gm-message-state:from:to:cc:subject:date; bh=EqMgv96S6WOApHkV1NNQhBVATR9B3h0BGCpG14NXv7E=; b=52+AEDUQuegbUgqx+oxZ293FY3IP9cge5rUKsTAx1EQefEtmMtMCYDs/YYpzuN9p7Z OXzvrNbHNpxbpKzMm420Jdx7XyOXBEC+y4fB/o3RTqnVF2eZLnBQrELqI0pVAgD+8kVe CoTT3yusTTnTXTDFVs9yMJUpf6XxZQPgHS7MJuLXWJhec6DFlnSf0kgSAz3nQoOTErkq B6iJLbYVEbLskK30DHSPx3ART0OAna7XlABqE/2A47BpiXQnBlPq0vLplVeZhjE9fyyu HB+jpDd1fyzgOvbFFHfm068MzD4z9P7kDLuBDGiBNFGobxIWRbuxfaZfg8qGeCKtOGXx oMYw== X-Gm-Message-State: ACrzQf30ExL0TjmCzQVAzptwNRYr4xEQ63RSnW1U8CHqpfpNzPe7M/f/ jMyl9vtizXCt1tlJbahz+EGCtEseKokoH/cKVO4NccMuMG0G MIME-Version: 1.0 X-Received: by 2002:a05:6e02:1748:b0:2eb:e656:8123 with SMTP id y8-20020a056e02174800b002ebe6568123mr3055166ill.15.1663366414212; Fri, 16 Sep 2022 15:13:34 -0700 (PDT) Date: Fri, 16 Sep 2022 15:13:34 -0700 In-Reply-To: <0000000000006b15c805c7fbd885@google.com> X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <0000000000004027ca05e8d2ac0a@google.com> Subject: Re: [syzbot] memory leak in mld_newpack From: syzbot To: davem@davemloft.net, dsahern@kernel.org, edumazet@google.com, kuba@kernel.org, linux-kernel@vger.kernel.org, netdev@vger.kernel.org, pabeni@redhat.com, phind.uet@gmail.com, syzkaller-bugs@googlegroups.com, yoshfuji@linux-ipv6.org Content-Type: text/plain; charset="UTF-8" X-Spam-Status: No, score=0.9 required=5.0 tests=BAYES_00,FROM_LOCAL_HEX, HEADER_FROM_DIFFERENT_DOMAINS,RCVD_IN_DNSWL_NONE,RCVD_IN_MSPIKE_H2, SORTED_RECIPS,SPF_HELO_NONE,SPF_PASS autolearn=no autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org syzbot has found a reproducer for the following issue on: HEAD commit: 6879c2d3b960 Merge tag 'pinctrl-v6.0-2' of git://git.kerne.. git tree: upstream console output: https://syzkaller.appspot.com/x/log.txt?x=1053435d080000 kernel config: https://syzkaller.appspot.com/x/.config?x=a4afe4efcad47dde dashboard link: https://syzkaller.appspot.com/bug?extid=dcd3e13cf4472f2e0ba1 compiler: gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2 syz repro: https://syzkaller.appspot.com/x/repro.syz?x=11842b37080000 C reproducer: https://syzkaller.appspot.com/x/repro.c?x=15078ed5080000 Downloadable assets: disk image: https://storage.googleapis.com/syzbot-assets/0e68bb9c6cf9/disk-6879c2d3.raw.xz vmlinux: https://storage.googleapis.com/syzbot-assets/bf179217db31/vmlinux-6879c2d3.xz IMPORTANT: if you fix the issue, please add the following tag to the commit: Reported-by: syzbot+dcd3e13cf4472f2e0ba1@syzkaller.appspotmail.com BUG: memory leak unreferenced object 0xffff88810bb0bb00 (size 240): comm "kworker/0:2", pid 143, jiffies 4294946271 (age 15.640s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 bb b0 0b 81 88 ff ff ................ 00 70 aa 11 81 88 ff ff 80 10 e9 44 81 88 ff ff .p.........D.... backtrace: [] __alloc_skb+0x1f9/0x270 net/core/skbuff.c:422 [] alloc_skb include/linux/skbuff.h:1257 [inline] [] alloc_skb_with_frags+0x6a/0x340 net/core/skbuff.c:6021 [] sock_alloc_send_pskb+0x39f/0x3d0 net/core/sock.c:2665 [] sock_alloc_send_skb include/net/sock.h:1866 [inline] [] mld_newpack.isra.0+0x81/0x200 net/ipv6/mcast.c:1748 [] add_grhead+0xa6/0xc0 net/ipv6/mcast.c:1851 [] add_grec+0x7bc/0x820 net/ipv6/mcast.c:1989 [] mld_send_cr net/ipv6/mcast.c:2115 [inline] [] mld_ifc_work+0x273/0x750 net/ipv6/mcast.c:2653 [] process_one_work+0x2ba/0x5f0 kernel/workqueue.c:2289 [] worker_thread+0x59/0x5b0 kernel/workqueue.c:2436 [] kthread+0x125/0x160 kernel/kthread.c:376 [] ret_from_fork+0x1f/0x30 arch/x86/entry/entry_64.S:306