Re: [syzbot] [io-uring?] KMSAN: uninit-value in io_req_task_work_add_remote

From: Edward Adam Davis
Date: Wed Jul 24 2024 - 08:11:37 EST


when alloc buffer for req, init mem to 0

#syz test: upstream 2c9b3512402e

diff --git a/io_uring/io_uring.c b/io_uring/io_uring.c
index 8e6faa942a6f..acd2c5aac1ad 100644
--- a/io_uring/io_uring.c
+++ b/io_uring/io_uring.c
@@ -2177,6 +2177,7 @@ static inline int io_submit_sqe(struct io_ring_ctx *ctx, struct io_kiocb *req,
return 0;
}

+ atomic_set(&ctx->cq_wait_nr, IO_CQ_WAKE_INIT);
io_queue_sqe(req);
return 0;
}