Received: by 2002:a05:6358:d09b:b0:dc:cd0c:909e with SMTP id jc27csp4922388rwb; Mon, 21 Nov 2022 13:56:39 -0800 (PST) X-Google-Smtp-Source: AA0mqf5o5Tq7IbLdno854HME4O9CSd31xunUKYt91nMuIjAVrS3AF8gGLhyv6ljUJMZTu9JImniF X-Received: by 2002:a05:6402:3ce:b0:469:40c:ecfb with SMTP id t14-20020a05640203ce00b00469040cecfbmr15417664edw.164.1669067799417; Mon, 21 Nov 2022 13:56:39 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1669067799; cv=none; d=google.com; s=arc-20160816; b=G6MIMGGHjBNi1JM8p9VRCZcmmUEKhLm+ftC0zvwl4axng/fqYdwJ4cX9EicMsXTxaT OGsCGzdeJhOHmKA4gVhgUyu8mFd9TCQPwfITJRminx5sth5f7n+st9Vk1E0ukqr7rq7b pnXwq6r6e7664JDUZanm8A9iZLx/UCykNIlbvW2prLbfflhjRX4xGaYDaHmX9cQmiA3I AQUEIqEbmVkxCOcPNEKDVUbSeJ/WLyx9/f9C7+zbRYGTrS2E9qVDMfzXlnMx7bCI/x5q vC6fExG9vUuR04VcxHKNluo0L5jgkab/w3J12EVA5miI1EOWFBXkQN5TA+rahT1GKAfc gloA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:in-reply-to:content-disposition:mime-version :references:message-id:subject:cc:to:from:date; bh=M5hgpeEcnAslKFa6C92+jTvBZTB3IuK5O3Rcjydw3Ww=; b=ww/Qiom41iIshDF3inJf6eaw4Wi9WJ1EyX0tv3mMupoSyOSympH72GZQ4aCXKUCTYN VeN8k6vZlfM+y9a6bHWlCtD67E/nh7wzzHPEpeZS0r+S2MN8YQq8RZAHFftMjzo3M7Ys 3SksqLR3kFssgQ0BKZLqrD1HTtlt/W86a5uEP4gkPpzWysyWJb5YgIcAEHTa+WadgKB9 9KvcAwXuOsHfT8qr0/3K7rqqWB9h5PWthm64O6e6ySm3GQWKYGKFFgO+fezxdYHpnqg5 CM0TWrvZS7YOaNMYpPq1bJsAEEWhnjeA+z9A9kR+3NFoGX3ciPzN1rmSciJLfRnXKZbd aM4g== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id v12-20020a056402348c00b0045c2e7e5532si11437237edc.585.2022.11.21.13.56.12; Mon, 21 Nov 2022 13:56:39 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S231699AbiKUVoh (ORCPT + 92 others); Mon, 21 Nov 2022 16:44:37 -0500 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:59228 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S231408AbiKUVoO (ORCPT ); Mon, 21 Nov 2022 16:44:14 -0500 Received: from us-smtp-delivery-44.mimecast.com (us-smtp-delivery-44.mimecast.com [205.139.111.44]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 92C6D2675 for ; Mon, 21 Nov 2022 13:44:13 -0800 (PST) Received: from mimecast-mx02.redhat.com (mimecast-mx02.redhat.com [66.187.233.88]) by relay.mimecast.com with ESMTP with STARTTLS (version=TLSv1.2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id us-mta-183-7uzm-LpVPkW4jNd1cgtn2g-1; Mon, 21 Nov 2022 16:42:50 -0500 X-MC-Unique: 7uzm-LpVPkW4jNd1cgtn2g-1 Received: from smtp.corp.redhat.com (int-mx10.intmail.prod.int.rdu2.redhat.com [10.11.54.10]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by mimecast-mx02.redhat.com (Postfix) with ESMTPS id 445C3811E84; Mon, 21 Nov 2022 21:42:49 +0000 (UTC) Received: from hog (unknown [10.39.192.162]) by smtp.corp.redhat.com (Postfix) with ESMTPS id 8047E492B16; Mon, 21 Nov 2022 21:42:47 +0000 (UTC) Date: Mon, 21 Nov 2022 22:41:57 +0100 From: Sabrina Dubroca To: Steffen Klassert Cc: syzbot , davem@davemloft.net, edumazet@google.com, herbert@gondor.apana.org.au, kuba@kernel.org, linux-kernel@vger.kernel.org, linux-next@vger.kernel.org, netdev@vger.kernel.org, pabeni@redhat.com, sfr@canb.auug.org.au, syzkaller-bugs@googlegroups.com Subject: Re: [syzbot] linux-next test error: general protection fault in xfrm_policy_lookup_bytype Message-ID: References: <000000000000706e6f05edfb4ce0@google.com> <20221121171513.GB704954@gauss3.secunet.de> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline In-Reply-To: <20221121171513.GB704954@gauss3.secunet.de> X-Scanned-By: MIMEDefang 3.1 on 10.11.54.10 X-Spam-Status: No, score=-2.6 required=5.0 tests=BAYES_00,RCVD_IN_DNSWL_LOW, SPF_HELO_NONE,SPF_NONE autolearn=ham autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org 2022-11-21, 18:15:13 +0100, Steffen Klassert wrote: > On Mon, Nov 21, 2022 at 04:07:26PM +0100, Sabrina Dubroca wrote: > > 2022-11-21, 05:47:38 -0800, syzbot wrote: > > > Hello, > > > > > > syzbot found the following issue on: > > > > > > HEAD commit: e4cd8d3ff7f9 Add linux-next specific files for 20221121 > > > git tree: linux-next > > > console output: https://syzkaller.appspot.com/x/log.txt?x=1472370d880000 > > > kernel config: https://syzkaller.appspot.com/x/.config?x=a0ebedc6917bacc1 > > > dashboard link: https://syzkaller.appspot.com/bug?extid=bfb2bee01b9c01fff864 > > > compiler: gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2 > > > > > > Downloadable assets: > > > disk image: https://storage.googleapis.com/syzbot-assets/b59eb967701d/disk-e4cd8d3f.raw.xz > > > vmlinux: https://storage.googleapis.com/syzbot-assets/37a7b43e6e84/vmlinux-e4cd8d3f.xz > > > kernel image: https://storage.googleapis.com/syzbot-assets/ebfb0438e6a2/bzImage-e4cd8d3f.xz > > > > > > IMPORTANT: if you fix the issue, please add the following tag to the commit: > > > Reported-by: syzbot+bfb2bee01b9c01fff864@syzkaller.appspotmail.com > > > > > > general protection fault, probably for non-canonical address 0xdffffc0000000019: 0000 [#1] PREEMPT SMP KASAN > > > KASAN: null-ptr-deref in range [0x00000000000000c8-0x00000000000000cf] > > > CPU: 0 PID: 5295 Comm: kworker/0:3 Not tainted 6.1.0-rc5-next-20221121-syzkaller #0 > > > Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 10/26/2022 > > > Workqueue: ipv6_addrconf addrconf_dad_work > > > RIP: 0010:xfrm_policy_lookup_bytype.cold+0x1c/0x54 net/xfrm/xfrm_policy.c:2139 > > > > That's the printk at the end of the function, when > > xfrm_policy_lookup_bytype returns NULL. It seems to have snuck into > > commit c39f95aaf6d1 ("xfrm: Fix oops in __xfrm_state_delete()"), we > > can just remove it: > > > > diff --git a/net/xfrm/xfrm_policy.c b/net/xfrm/xfrm_policy.c > > index 3a203c59a11b..e392d8d05e0c 100644 > > --- a/net/xfrm/xfrm_policy.c > > +++ b/net/xfrm/xfrm_policy.c > > @@ -2135,9 +2135,6 @@ static struct xfrm_policy *xfrm_policy_lookup_bytype(struct net *net, u8 type, > > fail: > > rcu_read_unlock(); > > > > - if (!IS_ERR(ret)) > > - printk("xfrm_policy_lookup_bytype: policy if_id %d, wanted if_id %d\n", ret->if_id, if_id); > > - > > return ret; > > Hm, this was not in the original patch. Maybe my tree was not > clean when I applied it. Do you want to send a patch, or should > I just remove it? Go ahead, I guess it's more convenient for you. -- Sabrina