Re: [syzbot] KASAN: use-after-free Read in __cpuhp_state_remove_instance

From: Jens Axboe
Date: Mon Apr 19 2021 - 13:51:10 EST


On 4/19/21 8:41 AM, syzbot wrote:
> syzbot suspects this issue was fixed by commit:
>
> commit 470ec4ed8c91b4db398ad607c700e9ce88365202
> Author: Jens Axboe <axboe@xxxxxxxxx>
> Date: Fri Feb 26 17:20:34 2021 +0000
>
> io-wq: fix double put of 'wq' in error path
>
> bisection log: https://syzkaller.appspot.com/x/bisect.txt?x=11e89cc5d00000
> start commit: cee407c5 Merge tag 'for-linus' of git://git.kernel.org/pub..
> git tree: upstream
> kernel config: https://syzkaller.appspot.com/x/.config?x=8f67201de02a572b
> dashboard link: https://syzkaller.appspot.com/bug?extid=38769495e847cea2dcca
> syz repro: https://syzkaller.appspot.com/x/repro.syz?x=154e360ad00000
>
> If the result looks correct, please mark the issue as fixed by replying with:

#syz fix: io-wq: fix double put of 'wq' in error path


--
Jens Axboe