Re: KASAN: slab-out-of-bounds Read in skb_ensure_writable

From: Daniel Borkmann
Date: Fri Jun 08 2018 - 05:54:24 EST


On 06/04/2018 01:36 AM, syzbot wrote:
> Hello,
>
> syzbot found the following crash on:
>
> HEAD commit:ÂÂÂ 0512e0134582 Merge tag 'xfs-4.17-fixes-3' of git://git.ker..
> git tree:ÂÂÂÂÂÂ upstream
> console output: https://syzkaller.appspot.com/x/log.txt?x=14956af7800000
> kernel config:Â https://syzkaller.appspot.com/x/.config?x=968b0b23c7854c0b
> dashboard link: https://syzkaller.appspot.com/bug?extid=e5190cb881d8660fb1a3
> compiler:ÂÂÂÂÂÂ gcc (GCC) 8.0.1 20180413 (experimental)
> syzkaller repro:https://syzkaller.appspot.com/x/repro.syz?x=123d9d7b800000
> C reproducer:ÂÂ https://syzkaller.appspot.com/x/repro.c?x=100329d7800000

#syz fix: bpf: reject passing modified ctx to helper functions