Re: [syzbot] KASAN: use-after-free Read in disk_part_iter_next (2)

From: Christoph Hellwig
Date: Wed Mar 24 2021 - 05:50:48 EST


#syz test: git://git.infradead.org/users/hch/block.git part-iter-fix


On Sun, Mar 21, 2021 at 05:40:05AM -0700, syzbot wrote:
> syzbot has bisected this issue to:
>
> commit a33df75c6328bf40078b35f2040d8e54d574c357
> Author: Christoph Hellwig <hch@xxxxxx>
> Date: Sun Jan 24 10:02:41 2021 +0000
>
> block: use an xarray for disk->part_tbl
>
> bisection log: https://syzkaller.appspot.com/x/bisect.txt?x=17989906d00000
> start commit: 1c273e10 Merge tag 'zonefs-5.12-rc4' of git://git.kernel.o..
> git tree: upstream
> final oops: https://syzkaller.appspot.com/x/report.txt?x=14589906d00000
> console output: https://syzkaller.appspot.com/x/log.txt?x=10589906d00000
> kernel config: https://syzkaller.appspot.com/x/.config?x=6abda3336c698a07
> dashboard link: https://syzkaller.appspot.com/bug?extid=8fede7e30c7cee0de139
> syz repro: https://syzkaller.appspot.com/x/repro.syz?x=13dfe8bed00000
> C reproducer: https://syzkaller.appspot.com/x/repro.c?x=155a117cd00000
>
> Reported-by: syzbot+8fede7e30c7cee0de139@xxxxxxxxxxxxxxxxxxxxxxxxx
> Fixes: a33df75c6328 ("block: use an xarray for disk->part_tbl")
>
> For information about bisection process see: https://goo.gl/tpsmEJ#bisection
---end quoted text---