From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-7.4 required=3.0 tests=DKIM_SIGNED,DKIM_VALID, DKIM_VALID_AU,HEADER_FROM_DIFFERENT_DOMAINS,MAILING_LIST_MULTI, MENTIONS_GIT_HOSTING,SPF_HELO_NONE,SPF_PASS,USER_AGENT_SANE_1 autolearn=ham autolearn_force=no version=3.4.0 Received: from mail.kernel.org (mail.kernel.org [198.145.29.99]) by smtp.lore.kernel.org (Postfix) with ESMTP id CEE97C10F25 for ; Mon, 9 Mar 2020 23:03:50 +0000 (UTC) Received: from vger.kernel.org (vger.kernel.org [209.132.180.67]) by mail.kernel.org (Postfix) with ESMTP id A03C020727 for ; Mon, 9 Mar 2020 23:03:50 +0000 (UTC) Authentication-Results: mail.kernel.org; dkim=pass (2048-bit key) header.d=ziepe.ca header.i=@ziepe.ca header.b="gyPUS950" Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1727125AbgCIXDu (ORCPT ); Mon, 9 Mar 2020 19:03:50 -0400 Received: from mail-qk1-f195.google.com ([209.85.222.195]:40870 "EHLO mail-qk1-f195.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726937AbgCIXDt (ORCPT ); Mon, 9 Mar 2020 19:03:49 -0400 Received: by mail-qk1-f195.google.com with SMTP id m2so11005519qka.7 for ; Mon, 09 Mar 2020 16:03:49 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ziepe.ca; s=google; h=date:from:to:cc:subject:message-id:references:mime-version :content-disposition:in-reply-to:user-agent; bh=DG5Pmu1RlQqHBWl+2qUX5CoGznFuBPO5I6Xwyxwb+Cs=; b=gyPUS950qwVdh0+braV/e3jgiwyl9rKeMblixJMxHnbVM14lXi0z+IVb1BLL5qohGB Oj1x2W/5X1R4dMQUKlvVgKlRrgpGVWXRJjsDvt3nI/eDWNEzJI1ZBLb/1mFdGII05Qoa N6kOMSXBHafiqYJKag3k4o3UIJsI6B4CPraCKX7ZqIN4Wz3SC4XboMQKljz2gZmSWZ/h Va11KdhuaGezvM3vV1fmFfxIL4z+Y+2FMtXNgTHiMocYpIZ8u2JaFHLbKqSh/gMI0CS2 oLVN2kEAVhszQoBMkC693ll3B6py0pMcBDAOepqOVTDEEhPXsNbxXH6mBTI4ddpE5gAP LnvA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:date:from:to:cc:subject:message-id:references :mime-version:content-disposition:in-reply-to:user-agent; bh=DG5Pmu1RlQqHBWl+2qUX5CoGznFuBPO5I6Xwyxwb+Cs=; b=LMcPU0JIFEKYrqa/4KeuFClhSqY8cRDXmGNnAPTLcWGHYy6uNdYV0Ut05zTGnvbBGU DYvxB9gfM6m8zgTKV/ltO1OWe01d+4HawS52iICUjDG8CwShw8RDtatexaYCx3AoAbjq vl9lRaQo15eo5CgH2oSj2d4SYTN0Caw0azDaR/iITK4ThQoUhDPKrEC3wKiXeU6QyymJ CtpDgLXzx19tEwUr3yJWzPIXvm94c6ZBPyp/x1X9alIObzELdY94VkzKa4qooEd/WhpS SfQytjq6LPk70FqpZvk4e02AI4HlWe4KJEsenkvvh1vLk3PphBXS4txj9fKKvbPZeD9B u8ww== X-Gm-Message-State: ANhLgQ2We7b7rHoQ+pzsDm4p1djHR++5fyLm59CIl8eEPIJqqWqfBZ3d MtLKzY52UaXgY61y+zr/NGz9Qw== X-Google-Smtp-Source: ADFU+vsVuThcYSPMT2Kil8KJF1J3XD2L42eeVKLwA6rk3nlN3INK1pTC1Eso1Jbfa3D4sIWSdor1Jg== X-Received: by 2002:a37:664d:: with SMTP id a74mr16712041qkc.256.1583795028784; Mon, 09 Mar 2020 16:03:48 -0700 (PDT) Received: from ziepe.ca (hlfxns017vw-142-68-57-212.dhcp-dynamic.fibreop.ns.bellaliant.net. [142.68.57.212]) by smtp.gmail.com with ESMTPSA id q142sm3151748qke.45.2020.03.09.16.03.47 (version=TLS1_2 cipher=ECDHE-RSA-CHACHA20-POLY1305 bits=256/256); Mon, 09 Mar 2020 16:03:48 -0700 (PDT) Received: from jgg by mlx.ziepe.ca with local (Exim 4.90_1) (envelope-from ) id 1jBRR5-0004ho-F5; Mon, 09 Mar 2020 20:03:47 -0300 Date: Mon, 9 Mar 2020 20:03:47 -0300 From: Jason Gunthorpe To: syzbot Cc: chuck.lever@oracle.com, dledford@redhat.com, leon@kernel.org, linux-kernel@vger.kernel.org, linux-rdma@vger.kernel.org, parav@mellanox.com, syzkaller-bugs@googlegroups.com, willy@infradead.org Subject: Re: BUG: corrupted list in _cma_attach_to_dev Message-ID: <20200309230347.GY31668@ziepe.ca> References: <20200309172430.GV31668@ziepe.ca> <0000000000007dfeb705a071ba51@google.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <0000000000007dfeb705a071ba51@google.com> User-Agent: Mutt/1.9.4 (2018-02-28) Sender: linux-rdma-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-rdma@vger.kernel.org On Mon, Mar 09, 2020 at 01:20:04PM -0700, syzbot wrote: > Hello, > > syzbot has tested the proposed patch and the reproducer did not trigger crash: > > Reported-and-tested-by: syzbot+06b50ee4a9bd73e8b89f@syzkaller.appspotmail.com > > Tested on: > > commit: 0aeb3622 RDMA/hns: fix spelling mistake "attatch" -> "atta.. > git tree: git://git.kernel.org/pub/scm/linux/kernel/git/rdma/rdma.git for-next > kernel config: https://syzkaller.appspot.com/x/.config?x=b58f96e9824c82cb > dashboard link: https://syzkaller.appspot.com/bug?extid=06b50ee4a9bd73e8b89f > compiler: gcc (GCC) 9.0.0 20181231 (experimental) > > Note: testing is done by a robot and is best-effort only. #syz dup: KASAN: use-after-free Read in rdma_listen (2)