Received: by 2002:a05:6358:3188:b0:123:57c1:9b43 with SMTP id q8csp1746591rwd; Mon, 15 May 2023 02:23:38 -0700 (PDT) X-Google-Smtp-Source: ACHHUZ5SFtxCf04Dnem22qRP3XtQfyJCrAQ+8Kol7rXXJyyh05pib7BLSOunCCp9znGQNx2hrHKu X-Received: by 2002:a17:902:f94b:b0:1a6:9d1b:e18f with SMTP id kx11-20020a170902f94b00b001a69d1be18fmr31116022plb.45.1684142617851; Mon, 15 May 2023 02:23:37 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1684142617; cv=none; d=google.com; s=arc-20160816; b=f8138uD1w16E6VIYlXekFtW4LIr634iPmRI19XUWqsWKP/BN5yrcBMEiHjhghWbpga OTDGZKMWOlHcTjg+dD0YRqiQDve+YNfcRATTkgfw8pwuU2AuDkCl9D91wrEhYsv1cmEg 63L7/1A36F4QA1EToJbzF8JJJDS4/ZMJcCo9P3INEEVRww7+PPUQNZW9mT5pEh7dPkc8 g5npLr7ofGYtaTZtgD5aWzBwrVdZBpQFNyAPA7sEgHgPU9OVHEvFBvgIoQkyVLQZB594 q4nGKBMmxVCSuqhmfZujAJbf0e2Vil73962tMQliTc8Rp6wt0VJob6YZuAiskMtZ96cl a3tw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-transfer-encoding:cc:to:subject :message-id:date:from:in-reply-to:references:mime-version :dkim-signature; bh=tgQznShlcEU/owRXS5pB/bMBA0shOHO8fmj2OZ6DolA=; b=ImggxGdcGWG3oxgtvxNgVxINk1uvNpv7lo1+8bLlwX491+Z1QA+b5p1j6+SvdW+1Su kagbHRXGVEErmVC7z25WIrYJQjkJl91aw/Fw7gPUbQurTBb1IDQyQEwA3sT2Zb9vKK5A kYrPOr1k8kywpP4vjfptCK/rfBclEWoDDiCgeqI1fGpsUh30LkK/VjR//LM/h6c+PFiz 8rzeTrf99EvQS6SliHUCEzNxM3WCw5TaAgPBokZEQ/8BBQfQEIObCEGdu6TpPmhv9TKH F5p8jj4ub9Bnugvr+r0owx7gwupTNym6htBLrdWEA072dWLdwiRd6OmzUJMCGnDNv3zc P6rg== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@google.com header.s=20221208 header.b=G1EFKyQh; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id i2-20020a170902c94200b001ac9d63028esi17109834pla.575.2023.05.15.02.23.24; Mon, 15 May 2023 02:23:37 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; dkim=pass header.i=@google.com header.s=20221208 header.b=G1EFKyQh; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S239522AbjEOJG2 (ORCPT + 99 others); Mon, 15 May 2023 05:06:28 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:46138 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S239134AbjEOJFe (ORCPT ); Mon, 15 May 2023 05:05:34 -0400 Received: from mail-wm1-x335.google.com (mail-wm1-x335.google.com [IPv6:2a00:1450:4864:20::335]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id CB5A3199B for ; Mon, 15 May 2023 02:05:23 -0700 (PDT) Received: by mail-wm1-x335.google.com with SMTP id 5b1f17b1804b1-3f423c17bafso343195e9.0 for ; Mon, 15 May 2023 02:05:23 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20221208; t=1684141522; x=1686733522; h=content-transfer-encoding:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:from:to:cc:subject:date :message-id:reply-to; bh=tgQznShlcEU/owRXS5pB/bMBA0shOHO8fmj2OZ6DolA=; b=G1EFKyQhvfOB1DU+z3A4aXg+42N7In3liWiZG/Jh9/5e9ZxgZPtgVhnS4LmfVsL3fW 3R6OLEaDm5y3mAW/Hc6e7Iau+vS5YtVdWZnAiBrIRNozqWeebVkcb9Bpj2PcmPicTuS5 TxOQO70y9WcMN0GQuuG2e6mq72dFlxVQQXORUiLvwI4t2Hkfsxl4E3+nD8J9EP1Zvnpn KMY+sGDUQD7q5dIM9OSAzU6/Sbxg4JdSbHNPckBtJXbJEryjMe0sUBRGwJW+oKeYfFIr lnL67gCkCwkfoOxHT8cIPJvO3szgUVGkdUHW6xe9iVUlG3kfFwgagmE49KY2CND+yuX7 yRhw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1684141522; x=1686733522; h=content-transfer-encoding:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:x-gm-message-state:from:to:cc :subject:date:message-id:reply-to; bh=tgQznShlcEU/owRXS5pB/bMBA0shOHO8fmj2OZ6DolA=; b=TicDWsoEyIKHBHrD1HhHE0Nkt41EXwMmkVElVvO3oBY0MZrHuYRNxAEofUl/Y3jqXs iSp/dLREV14gD8SAmvcS5FbdNEJH1lCkNbCjeer+EutTplnws0AiaF1ucMKMgNIFmylu JxsGr9rZXibiw6L0Jf0O+0WVWs/YMak7tYcCiAGnC6glDSmtfLemzAYfm1Iw+pKAagje KetFHV/h9aD8V6XaU6x5Kz8ccbwob70dF6bpzCEWaeI0azDnoP/NBl6CxcdvSTstB56N SBKPGNAnuhQ/cKHKCxDGZIgYdU7ebdHYXPnZTdBzaMyPMdy90MC7cEuuAhu1nEswUWp4 ON8Q== X-Gm-Message-State: AC+VfDxbxymNXaySiQIYs04Jou3pPnk/2BloIAKECGIggfd1PywId4qh NyAwi0cHdlIWcEE3aZx+STrEwKI+VUozdhSglT4BzA== X-Received: by 2002:a05:600c:354a:b0:3f5:f63:d490 with SMTP id i10-20020a05600c354a00b003f50f63d490mr40224wmq.5.1684141522281; Mon, 15 May 2023 02:05:22 -0700 (PDT) MIME-Version: 1.0 References: <0000000000001ca8c205f0f3ee00@google.com> <0000000000001f239205fb969174@google.com> In-Reply-To: <0000000000001f239205fb969174@google.com> From: Aleksandr Nogikh Date: Mon, 15 May 2023 11:05:10 +0200 Message-ID: Subject: Re: [syzbot] [xfs?] KASAN: use-after-free Read in xfs_btree_lookup_get_block To: syzbot Cc: david@fromorbit.com, dchinner@redhat.com, djwong@kernel.org, linux-fsdevel@vger.kernel.org, linux-kernel@vger.kernel.org, linux-xfs@vger.kernel.org, syzkaller-bugs@googlegroups.com Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Spam-Status: No, score=-15.1 required=5.0 tests=BAYES_00,DKIMWL_WL_MED, DKIM_SIGNED,DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF, ENV_AND_HDR_SPF_MATCH,RCVD_IN_DNSWL_NONE,SORTED_RECIPS,SPF_HELO_NONE, SPF_PASS,T_SCC_BODY_TEXT_LINE,USER_IN_DEF_DKIM_WL,USER_IN_DEF_SPF_WL autolearn=no autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Sat, May 13, 2023 at 7:29=E2=80=AFPM syzbot wrote: > > syzbot suspects this issue was fixed by commit: > > commit 22ed903eee23a5b174e240f1cdfa9acf393a5210 > Author: Darrick J. Wong > Date: Wed Apr 12 05:49:23 2023 +0000 > > xfs: verify buffer contents when we skip log replay > > bisection log: https://syzkaller.appspot.com/x/bisect.txt?x=3D12710f7a28= 0000 > start commit: 1b929c02afd3 Linux 6.2-rc1 > git tree: upstream > kernel config: https://syzkaller.appspot.com/x/.config?x=3D68e0be42c8ee4= bb4 > dashboard link: https://syzkaller.appspot.com/bug?extid=3D7e9494b8b399902= e994e > syz repro: https://syzkaller.appspot.com/x/repro.syz?x=3D172ff2e4480= 000 > C reproducer: https://syzkaller.appspot.com/x/repro.c?x=3D11715ea848000= 0 > > If the result looks correct, please mark the issue as fixed by replying w= ith: > > #syz fix: xfs: verify buffer contents when we skip log replay #syz fix: xfs: verify buffer contents when we skip log replay > > For information about bisection process see: https://goo.gl/tpsmEJ#bisect= ion >