Received: by 2002:a05:7412:8d10:b0:f3:1519:9f41 with SMTP id bj16csp3213319rdb; Sat, 9 Dec 2023 17:19:20 -0800 (PST) X-Google-Smtp-Source: AGHT+IGEkX3OAWG3PkbhvORjv86ADB7STS59xrJL3bEVa/kjf4bcUjBm0T24igQxi25IC/0iOaG9 X-Received: by 2002:a05:6a20:9147:b0:190:2036:fc54 with SMTP id x7-20020a056a20914700b001902036fc54mr1230977pzc.79.1702171160269; Sat, 09 Dec 2023 17:19:20 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1702171160; cv=none; d=google.com; s=arc-20160816; b=tmrx6XV8tHstlunT8AWMmMzy6+5wCFWRbYl7G+3mmov7zeDdJJaO8hy+g0Ee6YUNIM ZRrv7Cc4tqfrNze+ATMS2N8U4S0DCfEJOejG6nqdREs3Yrcv/u6TW5kyvCZa9jMHoQHS 51quIVYiec8/T9NERAQUZsdFrI4o4+ksHMttSpGhWB/0VPAxa5VEtcoQg5eEild4hQIb H5Zk9h5zUSEhocK5H7VWZLLTJYaa7B5zcl2yXwHRASbuWfNmnAagUy+KDqN0+jbmulww F8IFJsP8ZojK7TVjm1Z7p20tvJnlGSUIGNbNyHbxCwBdHO5rY//jvtrjniMArwmIzW5t /R5g== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:to:from:subject:message-id:in-reply-to:date :mime-version; bh=Dfn9yVkErGqxJURzCKeWuJP/+pYLPK6gaMsnRxOTFZE=; fh=ASkzh1hihoqljkDw3HfUYnTGfH8gTlTbXU5VCwnW0rg=; b=gDz/XVa2G2NwsgZni+UyDpqlGtnH9X+pA5C1Nu5Ea8I6NlwUiHWMFMIhfa3NVDW0ET 2LzFAJUMs8Ck/dsgBJxW3GL4G8Adn9YKObVPFM9ANeZCyUlX+ZohOpzu4KZG6LbqWhrM bDNpMmbfBPxEv0k4BTFil1fbihiH5KMe+Ld4Y1OiVXVvSlXIKq5XWLLZF2NK4B9+X0T6 kudPqhpuj/okH9fOZ3/hlUyqogUJiXAiBxx6MVxCIq+FVrmrwU+KBokwdTHi4BeNY2qT CFhai/O4DoKZNFUGpfa+NESBA6Yv0Ul2yM0s+Ne+Y03DIvSOkca2vTr3D9yHZCpwDaos 4jUw== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.31 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Return-Path: Received: from morse.vger.email (morse.vger.email. [23.128.96.31]) by mx.google.com with ESMTPS id x24-20020a17090abc9800b0028a0244d5d9si3898198pjr.164.2023.12.09.17.19.19 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Sat, 09 Dec 2023 17:19:20 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.31 as permitted sender) client-ip=23.128.96.31; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.31 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Received: from out1.vger.email (depot.vger.email [IPv6:2620:137:e000::3:0]) by morse.vger.email (Postfix) with ESMTP id 7880B8066972; Sat, 9 Dec 2023 17:19:17 -0800 (PST) X-Virus-Status: Clean X-Virus-Scanned: clamav-milter 0.103.11 at morse.vger.email Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S229925AbjLJBTB (ORCPT + 99 others); Sat, 9 Dec 2023 20:19:01 -0500 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:37722 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S229518AbjLJBTA (ORCPT ); Sat, 9 Dec 2023 20:19:00 -0500 Received: from mail-oo1-f71.google.com (mail-oo1-f71.google.com [209.85.161.71]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 2009F114 for ; Sat, 9 Dec 2023 17:19:06 -0800 (PST) Received: by mail-oo1-f71.google.com with SMTP id 006d021491bc7-58d5604c050so3447223eaf.2 for ; Sat, 09 Dec 2023 17:19:06 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1702171145; x=1702775945; h=to:from:subject:message-id:in-reply-to:date:mime-version :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=Dfn9yVkErGqxJURzCKeWuJP/+pYLPK6gaMsnRxOTFZE=; b=PL+7w7SVqfUbSwUrMo72fDqFMG6gdSyG6YsEnDinXWaMeydvnS+RHod/cwuQ3pJHwo zWzxz4K5dR7i9mZZVwYyCsvK3dWL1PewxN9JZQvey2HXMsiQSE4ptr8iQ6oYfltwfrtO Ohs50NLCaDTtkMfC5i9UxFyYyxyzczx7E7UbwbVUXpVHam6fjNZ05XqkOe3xwxkaHYis BjKGMk+XzR2lRnSpiOuxj8GcxLsfCpUa+FCbdJXcFE/qDh2wjEJsV27htFT+g8FqTyUw Lb0aBBRtypBx+7r06mLASJLxWXa/ttS5CpxwAy3P12CEc5wuY+FkvYdsyOGD1DU73IlC QDQQ== X-Gm-Message-State: AOJu0YxWYXVX9tTnaJZRXpTtobCXDHSbdEDUzuKrDZMnVoYulGrln5Uk Vg6CujBJVSpIH0VU4TCfi3z+p+WTFHgRmYS/YMsdcFCFl9bl MIME-Version: 1.0 X-Received: by 2002:a05:6870:e305:b0:1fa:16c4:8954 with SMTP id z5-20020a056870e30500b001fa16c48954mr2752521oad.0.1702171145510; Sat, 09 Dec 2023 17:19:05 -0800 (PST) Date: Sat, 09 Dec 2023 17:19:05 -0800 In-Reply-To: X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <00000000000079a7f0060c1d9aa6@google.com> Subject: Re: [syzbot] [arm-msm?] [net?] memory leak in radix_tree_insert (2) From: syzbot To: eadavis@qq.com, linux-kernel@vger.kernel.org, syzkaller-bugs@googlegroups.com Content-Type: text/plain; charset="UTF-8" X-Spam-Status: No, score=-0.4 required=5.0 tests=FROM_LOCAL_HEX, HEADER_FROM_DIFFERENT_DOMAINS,MAILING_LIST_MULTI,SPF_HELO_NONE, SPF_PASS,T_SCC_BODY_TEXT_LINE autolearn=unavailable autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on morse.vger.email Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org X-Greylist: Sender passed SPF test, not delayed by milter-greylist-4.6.4 (morse.vger.email [0.0.0.0]); Sat, 09 Dec 2023 17:19:17 -0800 (PST) Hello, syzbot has tested the proposed patch but the reproducer is still triggering an issue: memory leak in radix_tree_insert BUG: memory leak unreferenced object 0xffff88810e5afda8 (size 576): comm "syz-executor.0", pid 5489, jiffies 4294944355 (age 12.710s) hex dump (first 32 bytes): 3c 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 <............... 70 ee 73 1b 81 88 ff ff c0 fd 5a 0e 81 88 ff ff p.s.......Z..... backtrace: [] kmemleak_alloc_recursive include/linux/kmemleak.h:42 [inline] [] slab_post_alloc_hook mm/slab.h:766 [inline] [] slab_alloc_node mm/slub.c:3478 [inline] [] slab_alloc mm/slub.c:3486 [inline] [] __kmem_cache_alloc_lru mm/slub.c:3493 [inline] [] kmem_cache_alloc+0x298/0x430 mm/slub.c:3502 [] radix_tree_node_alloc.constprop.0+0x7c/0x1a0 lib/radix-tree.c:276 [] __radix_tree_create lib/radix-tree.c:624 [inline] [] radix_tree_insert+0x14f/0x360 lib/radix-tree.c:712 [] qrtr_tx_wait net/qrtr/af_qrtr.c:277 [inline] [] qrtr_node_enqueue+0x58c/0x660 net/qrtr/af_qrtr.c:354 [] qrtr_bcast_enqueue+0x66/0xd0 net/qrtr/af_qrtr.c:897 [] qrtr_sendmsg+0x232/0x450 net/qrtr/af_qrtr.c:998 [] sock_sendmsg_nosec net/socket.c:730 [inline] [] __sock_sendmsg+0x52/0xa0 net/socket.c:745 [] sock_write_iter+0xfb/0x180 net/socket.c:1158 [] call_write_iter include/linux/fs.h:2020 [inline] [] new_sync_write fs/read_write.c:491 [inline] [] vfs_write+0x327/0x590 fs/read_write.c:584 [] ksys_write+0x13b/0x170 fs/read_write.c:637 [] do_syscall_x64 arch/x86/entry/common.c:51 [inline] [] do_syscall_64+0x3f/0x110 arch/x86/entry/common.c:82 [] entry_SYSCALL_64_after_hwframe+0x63/0x6b BUG: memory leak unreferenced object 0xffff88810e5ec248 (size 576): comm "syz-executor.0", pid 5489, jiffies 4294944355 (age 12.710s) hex dump (first 32 bytes): 36 0f 01 00 00 00 00 00 a8 fd 5a 0e 81 88 ff ff 6.........Z..... 70 ee 73 1b 81 88 ff ff 60 c2 5e 0e 81 88 ff ff p.s.....`.^..... backtrace: [] kmemleak_alloc_recursive include/linux/kmemleak.h:42 [inline] [] slab_post_alloc_hook mm/slab.h:766 [inline] [] slab_alloc_node mm/slub.c:3478 [inline] [] slab_alloc mm/slub.c:3486 [inline] [] __kmem_cache_alloc_lru mm/slub.c:3493 [inline] [] kmem_cache_alloc+0x298/0x430 mm/slub.c:3502 [] radix_tree_node_alloc.constprop.0+0x7c/0x1a0 lib/radix-tree.c:276 [] __radix_tree_create lib/radix-tree.c:624 [inline] [] radix_tree_insert+0x14f/0x360 lib/radix-tree.c:712 [] qrtr_tx_wait net/qrtr/af_qrtr.c:277 [inline] [] qrtr_node_enqueue+0x58c/0x660 net/qrtr/af_qrtr.c:354 [] qrtr_bcast_enqueue+0x66/0xd0 net/qrtr/af_qrtr.c:897 [] qrtr_sendmsg+0x232/0x450 net/qrtr/af_qrtr.c:998 [] sock_sendmsg_nosec net/socket.c:730 [inline] [] __sock_sendmsg+0x52/0xa0 net/socket.c:745 [] sock_write_iter+0xfb/0x180 net/socket.c:1158 [] call_write_iter include/linux/fs.h:2020 [inline] [] new_sync_write fs/read_write.c:491 [inline] [] vfs_write+0x327/0x590 fs/read_write.c:584 [] ksys_write+0x13b/0x170 fs/read_write.c:637 [] do_syscall_x64 arch/x86/entry/common.c:51 [inline] [] do_syscall_64+0x3f/0x110 arch/x86/entry/common.c:82 [] entry_SYSCALL_64_after_hwframe+0x63/0x6b BUG: memory leak unreferenced object 0xffff88810e635488 (size 576): comm "syz-executor.0", pid 5489, jiffies 4294944355 (age 12.710s) hex dump (first 32 bytes): 30 3f 01 00 00 00 00 00 48 c2 5e 0e 81 88 ff ff 0?......H.^..... 70 ee 73 1b 81 88 ff ff a0 54 63 0e 81 88 ff ff p.s......Tc..... backtrace: [] kmemleak_alloc_recursive include/linux/kmemleak.h:42 [inline] [] slab_post_alloc_hook mm/slab.h:766 [inline] [] slab_alloc_node mm/slub.c:3478 [inline] [] slab_alloc mm/slub.c:3486 [inline] [] __kmem_cache_alloc_lru mm/slub.c:3493 [inline] [] kmem_cache_alloc+0x298/0x430 mm/slub.c:3502 [] radix_tree_node_alloc.constprop.0+0x7c/0x1a0 lib/radix-tree.c:276 [] __radix_tree_create lib/radix-tree.c:624 [inline] [] radix_tree_insert+0x14f/0x360 lib/radix-tree.c:712 [] qrtr_tx_wait net/qrtr/af_qrtr.c:277 [inline] [] qrtr_node_enqueue+0x58c/0x660 net/qrtr/af_qrtr.c:354 [] qrtr_bcast_enqueue+0x66/0xd0 net/qrtr/af_qrtr.c:897 [] qrtr_sendmsg+0x232/0x450 net/qrtr/af_qrtr.c:998 [] sock_sendmsg_nosec net/socket.c:730 [inline] [] __sock_sendmsg+0x52/0xa0 net/socket.c:745 [] sock_write_iter+0xfb/0x180 net/socket.c:1158 [] call_write_iter include/linux/fs.h:2020 [inline] [] new_sync_write fs/read_write.c:491 [inline] [] vfs_write+0x327/0x590 fs/read_write.c:584 [] ksys_write+0x13b/0x170 fs/read_write.c:637 [] do_syscall_x64 arch/x86/entry/common.c:51 [inline] [] do_syscall_64+0x3f/0x110 arch/x86/entry/common.c:82 [] entry_SYSCALL_64_after_hwframe+0x63/0x6b BUG: memory leak unreferenced object 0xffff88810e4fa000 (size 576): comm "syz-executor.0", pid 5489, jiffies 4294944355 (age 12.710s) hex dump (first 32 bytes): 2a 3f 00 00 00 00 00 00 88 54 63 0e 81 88 ff ff *?.......Tc..... 70 ee 73 1b 81 88 ff ff 18 a0 4f 0e 81 88 ff ff p.s.......O..... backtrace: [] kmemleak_alloc_recursive include/linux/kmemleak.h:42 [inline] [] slab_post_alloc_hook mm/slab.h:766 [inline] [] slab_alloc_node mm/slub.c:3478 [inline] [] slab_alloc mm/slub.c:3486 [inline] [] __kmem_cache_alloc_lru mm/slub.c:3493 [inline] [] kmem_cache_alloc+0x298/0x430 mm/slub.c:3502 [] radix_tree_node_alloc.constprop.0+0x7c/0x1a0 lib/radix-tree.c:276 [] __radix_tree_create lib/radix-tree.c:624 [inline] [] radix_tree_insert+0x14f/0x360 lib/radix-tree.c:712 [] qrtr_tx_wait net/qrtr/af_qrtr.c:277 [inline] [] qrtr_node_enqueue+0x58c/0x660 net/qrtr/af_qrtr.c:354 [] qrtr_bcast_enqueue+0x66/0xd0 net/qrtr/af_qrtr.c:897 [] qrtr_sendmsg+0x232/0x450 net/qrtr/af_qrtr.c:998 [] sock_sendmsg_nosec net/socket.c:730 [inline] [] __sock_sendmsg+0x52/0xa0 net/socket.c:745 [] sock_write_iter+0xfb/0x180 net/socket.c:1158 [] call_write_iter include/linux/fs.h:2020 [inline] [] new_sync_write fs/read_write.c:491 [inline] [] vfs_write+0x327/0x590 fs/read_write.c:584 [] ksys_write+0x13b/0x170 fs/read_write.c:637 [] do_syscall_x64 arch/x86/entry/common.c:51 [inline] [] do_syscall_64+0x3f/0x110 arch/x86/entry/common.c:82 [] entry_SYSCALL_64_after_hwframe+0x63/0x6b Tested on: commit: 33cc938e Linux 6.7-rc4 git tree: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git console output: https://syzkaller.appspot.com/x/log.txt?x=15858332e80000 kernel config: https://syzkaller.appspot.com/x/.config?x=37d1b8bb20150e6 dashboard link: https://syzkaller.appspot.com/bug?extid=006987d1be3586e13555 compiler: gcc (Debian 12.2.0-14) 12.2.0, GNU ld (GNU Binutils for Debian) 2.40 patch: https://syzkaller.appspot.com/x/patch.diff?x=15b888b6e80000