Linux USB
 help / color / mirror / Atom feed
* Re: [syzbot] [usb?] [media?] KASAN: use-after-free Read in em28xx_init_extension (2)
       [not found] <000000000000453f3d05db72fc7e@google.com>
@ 2025-05-13 15:02 ` syzbot
  2025-05-13 15:11   ` Alan Stern
  0 siblings, 1 reply; 2+ messages in thread
From: syzbot @ 2025-05-13 15:02 UTC (permalink / raw)
  To: gregkh, hdanton, linux-kernel, linux-media, linux-usb, mchehab,
	paskripkin, stern, syzkaller-bugs

syzbot has bisected this issue to:

commit a368ecde8a5055b627749b09c6218ef793043e47
Author: Alan Stern <stern@rowland.harvard.edu>
Date:   Thu Jun 27 19:56:18 2024 +0000

    USB: core: Fix duplicate endpoint bug by clearing reserved bits in the descriptor

bisection log:  https://syzkaller.appspot.com/x/bisect.txt?x=12cf6cd4580000
start commit:   cd802e7e5f1e Merge tag 'for-linus' of git://git.kernel.org..
git tree:       upstream
final oops:     https://syzkaller.appspot.com/x/report.txt?x=11cf6cd4580000
console output: https://syzkaller.appspot.com/x/log.txt?x=16cf6cd4580000
kernel config:  https://syzkaller.appspot.com/x/.config?x=91c351a0f6229e67
dashboard link: https://syzkaller.appspot.com/bug?extid=99d6c66dbbc484f50e1c
syz repro:      https://syzkaller.appspot.com/x/repro.syz?x=143a7768580000

Reported-by: syzbot+99d6c66dbbc484f50e1c@syzkaller.appspotmail.com
Fixes: a368ecde8a50 ("USB: core: Fix duplicate endpoint bug by clearing reserved bits in the descriptor")

For information about bisection process see: https://goo.gl/tpsmEJ#bisection

^ permalink raw reply	[flat|nested] 2+ messages in thread

* Re: [syzbot] [usb?] [media?] KASAN: use-after-free Read in em28xx_init_extension (2)
  2025-05-13 15:02 ` [syzbot] [usb?] [media?] KASAN: use-after-free Read in em28xx_init_extension (2) syzbot
@ 2025-05-13 15:11   ` Alan Stern
  0 siblings, 0 replies; 2+ messages in thread
From: Alan Stern @ 2025-05-13 15:11 UTC (permalink / raw)
  To: syzbot
  Cc: gregkh, hdanton, linux-kernel, linux-media, linux-usb, mchehab,
	paskripkin, syzkaller-bugs

On Tue, May 13, 2025 at 08:02:01AM -0700, syzbot wrote:
> syzbot has bisected this issue to:
> 
> commit a368ecde8a5055b627749b09c6218ef793043e47
> Author: Alan Stern <stern@rowland.harvard.edu>
> Date:   Thu Jun 27 19:56:18 2024 +0000
> 
>     USB: core: Fix duplicate endpoint bug by clearing reserved bits in the descriptor
> 
> bisection log:  https://syzkaller.appspot.com/x/bisect.txt?x=12cf6cd4580000
> start commit:   cd802e7e5f1e Merge tag 'for-linus' of git://git.kernel.org..
> git tree:       upstream
> final oops:     https://syzkaller.appspot.com/x/report.txt?x=11cf6cd4580000
> console output: https://syzkaller.appspot.com/x/log.txt?x=16cf6cd4580000
> kernel config:  https://syzkaller.appspot.com/x/.config?x=91c351a0f6229e67
> dashboard link: https://syzkaller.appspot.com/bug?extid=99d6c66dbbc484f50e1c
> syz repro:      https://syzkaller.appspot.com/x/repro.syz?x=143a7768580000
> 
> Reported-by: syzbot+99d6c66dbbc484f50e1c@syzkaller.appspotmail.com
> Fixes: a368ecde8a50 ("USB: core: Fix duplicate endpoint bug by clearing reserved bits in the descriptor")
> 
> For information about bisection process see: https://goo.gl/tpsmEJ#bisection

Clearly a ridiculous claim.  Maybe the bug fixed by that commit covered 
up the actual cause of this problem.

Alan Stern

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2025-05-13 15:11 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
     [not found] <000000000000453f3d05db72fc7e@google.com>
2025-05-13 15:02 ` [syzbot] [usb?] [media?] KASAN: use-after-free Read in em28xx_init_extension (2) syzbot
2025-05-13 15:11   ` Alan Stern

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox