Re: KASAN: use-after-free Write in __xfrm_policy_unlink

From: Florian Westphal
Date: Wed Dec 26 2018 - 05:42:34 EST

syzbot <syzbot+9d971dd21eb26567036b@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote:
> syzbot has found a reproducer for the following crash on:
> HEAD commit: ce28bb445388 Merge git://
> git tree: net-next
> console output:
> kernel config:
> dashboard link:
> compiler: gcc (GCC) 8.0.1 20180413 (experimental)
> syz repro:
> C reproducer:
> IMPORTANT: if you fix the bug, please add the following tag to the commit:
> Reported-by: syzbot+9d971dd21eb26567036b@xxxxxxxxxxxxxxxxxxxxxxxxx

I've fixed this one. Chances are that at least some of the other
reports are duplicates of this one.

I will continue to look at other reports over the next few days and plan
to send out fixes and test cases next week.