Re: KASAN: use-after-free Read in uif_close

From: syzbot
Date: Sun May 24 2020 - 02:09:43 EST


syzbot has bisected this bug to:

commit 32ec783ae19d48084b893cc54747fed37b07eb0c
Author: Arnd Bergmann <arnd@xxxxxxxx>
Date: Wed Apr 8 19:02:57 2020 +0000

firmware: imx: fix compile-testing

bisection log: https://syzkaller.appspot.com/x/bisect.txt?x=15b22972100000
start commit: c11d28ab Add linux-next specific files for 20200522
git tree: linux-next
final crash: https://syzkaller.appspot.com/x/report.txt?x=17b22972100000
console output: https://syzkaller.appspot.com/x/log.txt?x=13b22972100000
kernel config: https://syzkaller.appspot.com/x/.config?x=3f6dbdea4159fb66
dashboard link: https://syzkaller.appspot.com/bug?extid=0ce97ea45b008ba3b8bd
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=14b23f06100000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=111b0172100000

Reported-by: syzbot+0ce97ea45b008ba3b8bd@xxxxxxxxxxxxxxxxxxxxxxxxx
Fixes: 32ec783ae19d ("firmware: imx: fix compile-testing")

For information about bisection process see: https://goo.gl/tpsmEJ#bisection