Received: by 2002:a05:6358:1087:b0:cb:c9d3:cd90 with SMTP id j7csp4090021rwi; Wed, 12 Oct 2022 10:25:35 -0700 (PDT) X-Google-Smtp-Source: AMsMyM5t81WEBaDYdpZafVhE8XoP3aG8q4NgMIk5RVd4eA+tFerCZlsy7N307Pr2oULZB5UTQxN9 X-Received: by 2002:a05:6402:f94:b0:459:42d7:ea9a with SMTP id eh20-20020a0564020f9400b0045942d7ea9amr27826640edb.392.1665595534922; Wed, 12 Oct 2022 10:25:34 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1665595534; cv=none; d=google.com; s=arc-20160816; b=uyD1r88pRwGKrUlfNefuUEAJ41ARKrUB2jcEvS02crqeJEqW235n+2GRpuu9UVahWS N84Vcm+TG6r5QzYw8CF4zQicfrCij+2+0x76umz2SHXqKGUu/g/gtelwvR87JgJn+s4J X6h8a4FURvR9RhpbT5FSXAoh5grx5K+fpgZPDStnmkApY6xUr1eyTmz0NzYgOilzNHDh yT4jsZEgp/wgToM6rUqAwdobwSUlELfI+rCZ8kMwNvsvZx5x5UnhqQ8/7QpxMn6MFGxf KW+MGesk6m/AG1bJnWpYmDBb6eDlrvbyo7nZlp4RQZsE76tQixvpKLc0GHByFKcCgHoV kGRA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:to:from:subject:message-id:date:mime-version; bh=DG+q6lBCzxknCYMN263PUD2mf8mHv3zagp6YGd7y5JI=; b=stY01fsD9gyJyGCynf9sIHZYaIydRWoGgEirC+8OGxNmQ3nUWTGKhBv4GlAnosz+So 1gE6Ntl7fAFeTlCfWQlO/Nm647F5rV9Ni5n12jZ/0xb2XV5KF0h0xg5j5MycuzI30Qpl MR+LRg8feXqkQqnJ41Hbe2uQL7aC0xHpvPOHL1WjOzOrrRG0tOGkwFevbnsu4xlw3vPo vqo4KZu4FapZ/ZUyWpf/GtcgiM9wDumP00A+Ze76nHZLpSot1NXUY76TMuU6wPIv2c5t hXj9Td5JrPOKXYoH7u5ixcaaXrFZWFsvhjrpbRJ/01QSk8gN8yZuPJQ9v9UhUNFFRRxO rZdA== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id a18-20020a17090682d200b0078d4b88f122si14859038ejy.950.2022.10.12.10.25.08; Wed, 12 Oct 2022 10:25:34 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S230123AbiJLRAX (ORCPT + 99 others); Wed, 12 Oct 2022 13:00:23 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:43546 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S230079AbiJLRAB (ORCPT ); Wed, 12 Oct 2022 13:00:01 -0400 Received: from mail-il1-f197.google.com (mail-il1-f197.google.com [209.85.166.197]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 51C9813DFA for ; Wed, 12 Oct 2022 09:59:53 -0700 (PDT) Received: by mail-il1-f197.google.com with SMTP id n14-20020a056e02100e00b002f9e283e850so13822923ilj.9 for ; Wed, 12 Oct 2022 09:59:53 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=to:from:subject:message-id:date:mime-version:x-gm-message-state :from:to:cc:subject:date:message-id:reply-to; bh=DG+q6lBCzxknCYMN263PUD2mf8mHv3zagp6YGd7y5JI=; b=kjRVYFRC08uX5A7/SZMqxg8yt8CaI6jpsAVbgP68LfUe2sJdWuIu3kw31FDIXwxm80 EEdMHsHOhwC9O9FoN9v2GFXENB/NPPD+ycOdyg9GjRN5Q0K3rGM4a7XMLu5QnmZgEsxH hyJjnkTx1KvDrdRLNKspV6WtDdsBss5Yb4Bdwlk+83xRdeKFl8NCsBsgohI2wMuv+t8f J6vBqOaqNteEfRSSgVB//IMGjjYczHn772C10x7ObZhSfHsB08qxINP28lc9WynAhnPj vfdPyY+suIjGccbYWtr4F+Tm+dNTUuk8iCLTlvyB9v8SfCjw0/vKu6/SCMghk/mMtk1T dQ3Q== X-Gm-Message-State: ACrzQf3jJQC/vhD43A1Xxcx2cJzn0d/DaCWX5Rh0F9dX2RKLpyVhLGDS 4yumxim9lLX0kW/V45Blw/WSxVXN/2bVP1tGEYFq6HtcidHj MIME-Version: 1.0 X-Received: by 2002:a92:c265:0:b0:2f9:ec63:2e3e with SMTP id h5-20020a92c265000000b002f9ec632e3emr15316744ild.275.1665593992556; Wed, 12 Oct 2022 09:59:52 -0700 (PDT) Date: Wed, 12 Oct 2022 09:59:52 -0700 X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <0000000000004438f605ead95255@google.com> Subject: [syzbot] KMSAN: uninit-value in erspan_build_header From: syzbot To: davem@davemloft.net, dsahern@kernel.org, edumazet@google.com, glider@google.com, kuba@kernel.org, linux-kernel@vger.kernel.org, netdev@vger.kernel.org, pabeni@redhat.com, syzkaller-bugs@googlegroups.com, yoshfuji@linux-ipv6.org Content-Type: text/plain; charset="UTF-8" X-Spam-Status: No, score=0.9 required=5.0 tests=BAYES_00,FROM_LOCAL_HEX, HEADER_FROM_DIFFERENT_DOMAINS,RCVD_IN_DNSWL_NONE,RCVD_IN_MSPIKE_H2, SORTED_RECIPS,SPF_HELO_NONE,SPF_PASS autolearn=no autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Hello, syzbot found the following issue on: HEAD commit: 968c2729e576 x86: kmsan: fix comment in kmsan_shadow.c git tree: https://github.com/google/kmsan.git master console output: https://syzkaller.appspot.com/x/log.txt?x=100cd00c880000 kernel config: https://syzkaller.appspot.com/x/.config?x=131312b26465c190 dashboard link: https://syzkaller.appspot.com/bug?extid=d551178aab6a783dc249 compiler: clang version 15.0.0 (https://github.com/llvm/llvm-project.git 610139d2d9ce6746b3c617fb3e2f7886272d26ff), GNU ld (GNU Binutils for Debian) 2.35.2 userspace arch: i386 Unfortunately, I don't have any reproducer for this issue yet. Downloadable assets: disk image: https://storage.googleapis.com/syzbot-assets/c78ce21b953f/disk-968c2729.raw.xz vmlinux: https://storage.googleapis.com/syzbot-assets/22868d826804/vmlinux-968c2729.xz IMPORTANT: if you fix the issue, please add the following tag to the commit: Reported-by: syzbot+d551178aab6a783dc249@syzkaller.appspotmail.com ===================================================== BUG: KMSAN: uninit-value in erspan_build_header+0x16d/0x330 include/net/erspan.h:197 erspan_build_header+0x16d/0x330 include/net/erspan.h:197 erspan_xmit+0x11a2/0x1f00 net/ipv4/ip_gre.c:701 __netdev_start_xmit include/linux/netdevice.h:4819 [inline] netdev_start_xmit include/linux/netdevice.h:4833 [inline] xmit_one+0x14e/0x5f0 net/core/dev.c:3590 dev_hard_start_xmit+0xe5/0x370 net/core/dev.c:3606 sch_direct_xmit+0x3f1/0xdb0 net/sched/sch_generic.c:342 __dev_xmit_skb+0xc22/0x1a30 net/core/dev.c:3817 __dev_queue_xmit+0x12cb/0x31f0 net/core/dev.c:4222 dev_queue_xmit include/linux/netdevice.h:3008 [inline] __bpf_tx_skb net/core/filter.c:2115 [inline] __bpf_redirect_common net/core/filter.c:2154 [inline] __bpf_redirect+0x1293/0x13b0 net/core/filter.c:2161 ____bpf_clone_redirect net/core/filter.c:2430 [inline] bpf_clone_redirect+0x324/0x470 net/core/filter.c:2402 ___bpf_prog_run+0x7ed/0xaee0 kernel/bpf/core.c:1813 __bpf_prog_run512+0xc2/0x110 kernel/bpf/core.c:2038 bpf_dispatcher_nop_func include/linux/bpf.h:903 [inline] __bpf_prog_run include/linux/filter.h:594 [inline] bpf_prog_run include/linux/filter.h:601 [inline] bpf_test_run+0x592/0xd20 net/bpf/test_run.c:402 bpf_prog_test_run_skb+0x1625/0x20b0 net/bpf/test_run.c:1141 bpf_prog_test_run+0x6a0/0x730 kernel/bpf/syscall.c:3620 __sys_bpf+0x88d/0xe70 kernel/bpf/syscall.c:4971 __do_sys_bpf kernel/bpf/syscall.c:5057 [inline] __se_sys_bpf kernel/bpf/syscall.c:5055 [inline] __ia32_sys_bpf+0x9c/0xe0 kernel/bpf/syscall.c:5055 do_syscall_32_irqs_on arch/x86/entry/common.c:112 [inline] __do_fast_syscall_32+0xa2/0x100 arch/x86/entry/common.c:178 do_fast_syscall_32+0x33/0x70 arch/x86/entry/common.c:203 do_SYSENTER_32+0x1b/0x20 arch/x86/entry/common.c:246 entry_SYSENTER_compat_after_hwframe+0x70/0x82 Uninit was created at: slab_post_alloc_hook mm/slab.h:732 [inline] slab_alloc_node mm/slub.c:3258 [inline] __kmalloc_node_track_caller+0x814/0x1250 mm/slub.c:4970 kmalloc_reserve net/core/skbuff.c:362 [inline] pskb_expand_head+0x24a/0x1a80 net/core/skbuff.c:1729 __skb_cow include/linux/skbuff.h:3529 [inline] skb_cow_head include/linux/skbuff.h:3563 [inline] erspan_xmit+0xad2/0x1f00 net/ipv4/ip_gre.c:688 __netdev_start_xmit include/linux/netdevice.h:4819 [inline] netdev_start_xmit include/linux/netdevice.h:4833 [inline] xmit_one+0x14e/0x5f0 net/core/dev.c:3590 dev_hard_start_xmit+0xe5/0x370 net/core/dev.c:3606 sch_direct_xmit+0x3f1/0xdb0 net/sched/sch_generic.c:342 __dev_xmit_skb+0xc22/0x1a30 net/core/dev.c:3817 __dev_queue_xmit+0x12cb/0x31f0 net/core/dev.c:4222 dev_queue_xmit include/linux/netdevice.h:3008 [inline] __bpf_tx_skb net/core/filter.c:2115 [inline] __bpf_redirect_common net/core/filter.c:2154 [inline] __bpf_redirect+0x1293/0x13b0 net/core/filter.c:2161 ____bpf_clone_redirect net/core/filter.c:2430 [inline] bpf_clone_redirect+0x324/0x470 net/core/filter.c:2402 ___bpf_prog_run+0x7ed/0xaee0 kernel/bpf/core.c:1813 __bpf_prog_run512+0xc2/0x110 kernel/bpf/core.c:2038 bpf_dispatcher_nop_func include/linux/bpf.h:903 [inline] __bpf_prog_run include/linux/filter.h:594 [inline] bpf_prog_run include/linux/filter.h:601 [inline] bpf_test_run+0x592/0xd20 net/bpf/test_run.c:402 bpf_prog_test_run_skb+0x1625/0x20b0 net/bpf/test_run.c:1141 bpf_prog_test_run+0x6a0/0x730 kernel/bpf/syscall.c:3620 __sys_bpf+0x88d/0xe70 kernel/bpf/syscall.c:4971 __do_sys_bpf kernel/bpf/syscall.c:5057 [inline] __se_sys_bpf kernel/bpf/syscall.c:5055 [inline] __ia32_sys_bpf+0x9c/0xe0 kernel/bpf/syscall.c:5055 do_syscall_32_irqs_on arch/x86/entry/common.c:112 [inline] __do_fast_syscall_32+0xa2/0x100 arch/x86/entry/common.c:178 do_fast_syscall_32+0x33/0x70 arch/x86/entry/common.c:203 do_SYSENTER_32+0x1b/0x20 arch/x86/entry/common.c:246 entry_SYSENTER_compat_after_hwframe+0x70/0x82 CPU: 0 PID: 12499 Comm: syz-executor.1 Not tainted 6.0.0-rc5-syzkaller-48543-g968c2729e576 #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 09/22/2022 ===================================================== --- This report is generated by a bot. It may contain errors. See https://goo.gl/tpsmEJ for more information about syzbot. syzbot engineers can be reached at syzkaller@googlegroups.com. syzbot will keep track of this issue. See: https://goo.gl/tpsmEJ#status for how to communicate with syzbot.