Re: general protection fault in __dev_printk

From: syzbot
Date: Mon Apr 22 2019 - 11:55:04 EST


Hello,

syzbot tried to test the proposed patch but build/boot failed:

ers/net/ethernet/sfc/ethtool.o
CC drivers/net/ethernet/sun/cassini.o
CC drivers/scsi/qla2xxx/tcm_qla2xxx.o
CC drivers/net/ethernet/ti/tlan.o
CC drivers/gpu/drm/nouveau/nvkm/engine/msppp/gt215.o
drivers/net/ethernet/tehuti/tehuti.c: In function âbdx_tx_map_skbâ:
drivers/net/ethernet/tehuti/tehuti.c:1492:20: warning: taking address of packed member of âstruct txd_descâ may result in an unaligned pointer value [-Waddress-of-packed-member]
1492 | struct pbl *pbl = &txdd->pbl[0];
| ^~~~~~~~~~~~~
CC drivers/net/ethernet/via/via-rhine.o
CC drivers/net/ethernet/via/via-velocity.o
CC drivers/scsi/qla4xxx/ql4_83xx.o
GEN drivers/scsi/scsi_devinfo_tbl.c
CC drivers/scsi/scsi_scan.o
CC drivers/gpu/drm/nouveau/nvkm/engine/msppp/gf100.o
CC drivers/scsi/scsi_devinfo.o
CC drivers/scsi/scsi_netlink.o
CC drivers/scsi/scsi_sysctl.o
CC drivers/net/ethernet/sfc/ptp.o
CC drivers/scsi/scsi_proc.o
CC drivers/video/fbdev/efifb.o
CC drivers/video/fbdev/vga16fb.o
CC drivers/video/fbdev/vfb.o
CC drivers/gpu/drm/nouveau/nvkm/engine/msvld/base.o
AR drivers/net/ethernet/qlogic/qed/built-in.a
CC drivers/scsi/scsi_debugfs.o
CC drivers/scsi/scsi_trace.o
CC drivers/scsi/scsi_logging.o
CC drivers/gpu/drm/nouveau/nvkm/engine/msvld/g98.o
CC drivers/gpu/drm/nouveau/nvkm/engine/msvld/gt215.o
CC drivers/gpu/drm/nouveau/nvkm/engine/msvld/mcp89.o
CC drivers/xen/xlate_mmu.o
AR drivers/net/ethernet/qlogic/qlcnic/built-in.a
AR drivers/net/ethernet/qlogic/built-in.a
CC drivers/gpu/drm/nouveau/nvkm/engine/msvld/gf100.o
CC drivers/gpu/drm/nouveau/nvkm/engine/nvdec/base.o
CC drivers/gpu/drm/nouveau/nvkm/engine/msvld/gk104.o
AR drivers/net/ethernet/wiznet/built-in.a
CC drivers/net/ethernet/sfc/tx_tso.o
CC drivers/scsi/scsi_pm.o
CC drivers/scsi/scsi_dh.o
CC drivers/net/ethernet/sun/niu.o
AR drivers/net/ethernet/tehuti/built-in.a
CC drivers/scsi/scsi_common.o
CC drivers/xen/xen-front-pgdir-shbuf.o
CC drivers/scsi/raid_class.o
CC drivers/net/ethernet/sfc/mcdi.o
CC drivers/net/ethernet/xircom/xirc2ps_cs.o
CC drivers/scsi/scsi_transport_spi.o
CC drivers/gpu/drm/nouveau/nvkm/engine/nvdec/gp102.o
CC drivers/scsi/scsi_transport_fc.o
CC drivers/net/ethernet/sfc/mcdi_port.o
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/base.o
CC drivers/scsi/scsi_transport_iscsi.o
CC drivers/net/ethernet/jme.o
CC drivers/net/ethernet/sfc/mcdi_mon.o
CC drivers/net/ethernet/sfc/sriov.o
CC drivers/net/ethernet/fealnx.o
CC drivers/scsi/scsi_transport_sas.o
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/nv50.o
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/nv40.o
AR drivers/scsi/qla4xxx/built-in.a
CC drivers/scsi/scsi_transport_srp.o
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/g84.o
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/gt200.o
AR drivers/video/fbdev/built-in.a
CC drivers/scsi/libiscsi.o
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/gt215.o
AR drivers/video/built-in.a
CC drivers/scsi/libiscsi_tcp.o
CC drivers/scsi/iscsi_tcp.o
AR drivers/net/ethernet/ti/built-in.a
CC drivers/scsi/iscsi_boot_sysfs.o
CC drivers/scsi/advansys.o
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/gf100.o
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/gf108.o
CC drivers/net/ethernet/sfc/siena_sriov.o
CC drivers/net/ethernet/sfc/ef10_sriov.o
CC drivers/scsi/BusLogic.o
AR drivers/xen/built-in.a
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/gf117.o
CC drivers/scsi/dpt_i2o.o
CC drivers/gpu/drm/nouveau/nvkm/engine/pm/gk104.o
CC drivers/gpu/drm/nouveau/nvkm/engine/sec/g98.o
CC drivers/gpu/drm/nouveau/nvkm/engine/sec2/base.o
CC drivers/gpu/drm/nouveau/nvkm/engine/sec2/gp102.o
CC drivers/gpu/drm/nouveau/nvkm/engine/sec2/tu102.o
AR drivers/net/ethernet/via/built-in.a
CC drivers/gpu/drm/nouveau/nvkm/engine/sw/base.o
AR drivers/net/ethernet/xircom/built-in.a
CC drivers/gpu/drm/nouveau/nvkm/engine/sw/nv10.o
CC drivers/gpu/drm/nouveau/nvkm/engine/sw/nv04.o
CC drivers/scsi/ips.o
CC drivers/scsi/qla1280.o
CC drivers/gpu/drm/nouveau/nvkm/engine/sw/nv50.o
CC drivers/gpu/drm/nouveau/nvkm/engine/sw/gf100.o
CC drivers/gpu/drm/nouveau/nvkm/engine/sw/chan.o
CC drivers/gpu/drm/nouveau/nvkm/engine/sw/nvsw.o
CC drivers/scsi/dmx3191d.o
CC drivers/gpu/drm/nouveau/nvkm/engine/vp/g84.o
CC drivers/scsi/hpsa.o
CC drivers/scsi/dc395x.o
CC drivers/gpu/drm/nouveau/nouveau_acpi.o
CC drivers/gpu/drm/nouveau/nouveau_debugfs.o
CC drivers/gpu/drm/nouveau/nouveau_drm.o
CC drivers/gpu/drm/nouveau/nouveau_hwmon.o
CC drivers/gpu/drm/nouveau/nouveau_ioc32.o
CC drivers/gpu/drm/nouveau/nouveau_led.o
CC drivers/gpu/drm/nouveau/nouveau_nvif.o
CC drivers/scsi/esp_scsi.o
CC drivers/scsi/am53c974.o
CC drivers/scsi/megaraid.o
CC drivers/gpu/drm/nouveau/nouveau_usif.o
CC drivers/gpu/drm/nouveau/nouveau_vga.o
CC drivers/scsi/atp870u.o
CC drivers/gpu/drm/nouveau/nouveau_bo.o
CC drivers/scsi/gdth.o
CC drivers/scsi/initio.o
drivers/scsi/megaraid.c: In function âmega_build_cmdâ:
drivers/scsi/megaraid.c:721:5: warning: taking address of packed member of âstruct <anonymous>â may result in an unaligned pointer value [-Waddress-of-packed-member]
721 | &pthru->dataxferaddr, &pthru->dataxferlen);
| ^~~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c:721:27: warning: taking address of packed member of âstruct <anonymous>â may result in an unaligned pointer value [-Waddress-of-packed-member]
721 | &pthru->dataxferaddr, &pthru->dataxferlen);
| ^~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c:856:6: warning: taking address of packed member of âstruct mbox_outâ may result in an unaligned pointer value [-Waddress-of-packed-member]
856 | (u32 *)&mbox->m_out.xferaddr, &seg);
| ^~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c: In function âmega_prepare_passthruâ:
drivers/scsi/megaraid.c:999:5: warning: taking address of packed member of âstruct <anonymous>â may result in an unaligned pointer value [-Waddress-of-packed-member]
999 | &pthru->dataxferaddr, &pthru->dataxferlen);
| ^~~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c:999:27: warning: taking address of packed member of âstruct <anonymous>â may result in an unaligned pointer value [-Waddress-of-packed-member]
999 | &pthru->dataxferaddr, &pthru->dataxferlen);
| ^~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c: In function âmega_prepare_extpassthruâ:
drivers/scsi/megaraid.c:1062:5: warning: taking address of packed member of âstruct <anonymous>â may result in an unaligned pointer value [-Waddress-of-packed-member]
1062 | &epthru->dataxferaddr, &epthru->dataxferlen);
| ^~~~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c:1062:28: warning: taking address of packed member of âstruct <anonymous>â may result in an unaligned pointer value [-Waddress-of-packed-member]
1062 | &epthru->dataxferaddr, &epthru->dataxferlen);
| ^~~~~~~~~~~~~~~~~~~~
CC drivers/scsi/a100u2w.o
CC drivers/scsi/3w-xxxx.o
CC drivers/gpu/drm/nouveau/nouveau_gem.o
CC drivers/scsi/3w-9xxx.o
CC drivers/gpu/drm/nouveau/nouveau_mem.o
CC drivers/scsi/3w-sas.o
AR drivers/net/ethernet/sfc/built-in.a
CC drivers/gpu/drm/nouveau/nouveau_prime.o
CC drivers/gpu/drm/nouveau/nouveau_sgdma.o
CC drivers/scsi/hptiop.o
CC drivers/scsi/ipr.o
CC drivers/scsi/stex.o
CC drivers/gpu/drm/nouveau/nouveau_ttm.o
CC drivers/scsi/mvumi.o
CC drivers/scsi/pmcraid.o
CC drivers/scsi/virtio_scsi.o
CC drivers/scsi/vmw_pvscsi.o
drivers/scsi/ipr.c: In function âipr_handle_config_changeâ:
drivers/scsi/ipr.c:1453:22: warning: taking address of packed member of âstruct ipr_hostrcb_cfg_ch_notâ may result in an unaligned pointer value [-Waddress-of-packed-member]
1453 | cfgtew.u.cfgte64 = &hostrcb->hcam.u.ccn.u.cfgte64;
| ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/ipr.c: In function âipr_log_sis64_fabric_errorâ:
drivers/scsi/ipr.c:2401:23: warning: taking address of packed member of âstruct ipr_hostrcb_type_30_errorâ may result in an unaligned pointer value [-Waddress-of-packed-member]
2401 | for (i = 0, fabric = error->desc; i < error->num_entries; i++) {
| ^~~~~
drivers/scsi/ipr.c: In function âipr_dump_ioa_type_dataâ:
drivers/scsi/ipr.c:3067:26: warning: taking address of packed member of âstruct ipr_driver_dumpâ may result in an unaligned pointer value [-Waddress-of-packed-member]
3067 | ipr_init_dump_entry_hdr(&driver_dump->ioa_type_entry.hdr);
| ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/ipr.c: In function âipr_dump_version_dataâ:
drivers/scsi/ipr.c:3091:26: warning: taking address of packed member of âstruct ipr_driver_dumpâ may result in an unaligned pointer value [-Waddress-of-packed-member]
3091 | ipr_init_dump_entry_hdr(&driver_dump->version_entry.hdr);
| ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/ipr.c: In function âipr_dump_trace_dataâ:
drivers/scsi/ipr.c:3112:26: warning: taking address of packed member of âstruct ipr_driver_dumpâ may result in an unaligned pointer value [-Waddress-of-packed-member]
3112 | ipr_init_dump_entry_hdr(&driver_dump->trace_entry.hdr);
| ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/ipr.c: In function âipr_dump_location_dataâ:
drivers/scsi/ipr.c:3133:26: warning: taking address of packed member of âstruct ipr_dump_location_entryâ may result in an unaligned pointer value [-Waddress-of-packed-member]
3133 | ipr_init_dump_entry_hdr(&driver_dump->location_entry.hdr);
| ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
AR drivers/scsi/qla2xxx/built-in.a
drivers/scsi/ipr.c: In function âipr_build_ioadlâ:
drivers/scsi/ipr.c:6017:11: warning: taking address of packed member of âstruct ipr_ioarcb_add_dataâ may result in an unaligned pointer value [-Waddress-of-packed-member]
6017 | ioadl = ioarcb->u.add_data.u.ioadl;
| ^~~~~~
CC drivers/gpu/drm/nouveau/nouveau_vmm.o
CC drivers/gpu/drm/nouveau/nouveau_backlight.o
drivers/scsi/ipr.c: In function âipr_check_term_powerâ:
drivers/scsi/ipr.c:7452:8: warning: taking address of packed member of âstruct ipr_mode_page28â may result in an unaligned pointer value [-Waddress-of-packed-member]
7452 | bus = mode_page->bus;
| ^~~~~~~~~
drivers/scsi/ipr.c: In function âipr_modify_ioafp_mode_page_28â:
drivers/scsi/ipr.c:7514:20: warning: taking address of packed member of âstruct ipr_mode_page28â may result in an unaligned pointer value [-Waddress-of-packed-member]
7514 | for (i = 0, bus = mode_page->bus;
| ^~~~~~~~~
CC drivers/gpu/drm/nouveau/nouveau_bios.o
CC drivers/scsi/xen-scsifront.o
CC drivers/gpu/drm/nouveau/nouveau_connector.o
CC drivers/gpu/drm/nouveau/nouveau_display.o
CC drivers/scsi/storvsc_drv.o
CC drivers/scsi/wd719x.o
drivers/scsi/storvsc_drv.c: In function âstorvsc_on_channel_callbackâ:
drivers/scsi/storvsc_drv.c:1182:24: warning: taking address of packed member of âstruct vmpacket_descriptorâ may result in an unaligned pointer value [-Waddress-of-packed-member]
1182 | ((unsigned long)desc->trans_id);
| ~~~~^~~~~~~~~~
CC drivers/scsi/st.o
CC drivers/gpu/drm/nouveau/nouveau_dp.o
CC drivers/scsi/osst.o
CC drivers/gpu/drm/nouveau/nouveau_fbcon.o
CC drivers/scsi/sd.o
CC drivers/gpu/drm/nouveau/nv04_fbcon.o
CC drivers/scsi/sd_dif.o
CC drivers/scsi/sd_zbc.o
CC drivers/gpu/drm/nouveau/nv50_fbcon.o
CC drivers/gpu/drm/nouveau/nvc0_fbcon.o
CC drivers/gpu/drm/nouveau/dispnv04/arb.o
CC drivers/gpu/drm/nouveau/dispnv04/crtc.o
CC drivers/gpu/drm/nouveau/dispnv04/cursor.o
CC drivers/gpu/drm/nouveau/dispnv04/dac.o
CC drivers/scsi/sr.o
CC drivers/gpu/drm/nouveau/dispnv04/dfp.o
CC drivers/scsi/sr_ioctl.o
CC drivers/gpu/drm/nouveau/dispnv04/disp.o
CC drivers/scsi/sr_vendor.o
CC drivers/gpu/drm/nouveau/dispnv04/hw.o
CC drivers/scsi/sg.o
CC drivers/gpu/drm/nouveau/dispnv04/overlay.o
CC drivers/scsi/ch.o
CC drivers/scsi/ses.o
CC drivers/gpu/drm/nouveau/dispnv04/tvmodesnv17.o
CC drivers/scsi/scsi_sysfs.o
CC drivers/gpu/drm/nouveau/dispnv04/tvnv04.o
CC drivers/gpu/drm/nouveau/dispnv04/tvnv17.o
CC drivers/gpu/drm/nouveau/dispnv50/disp.o
CC drivers/gpu/drm/nouveau/dispnv50/lut.o
CC drivers/gpu/drm/nouveau/dispnv50/core.o
CC drivers/gpu/drm/nouveau/dispnv50/core507d.o
CC drivers/gpu/drm/nouveau/dispnv50/core907d.o
CC drivers/gpu/drm/nouveau/dispnv50/core827d.o
CC drivers/gpu/drm/nouveau/dispnv50/core917d.o
CC drivers/gpu/drm/nouveau/dispnv50/corec37d.o
CC drivers/gpu/drm/nouveau/dispnv50/corec57d.o
CC drivers/gpu/drm/nouveau/dispnv50/dac907d.o
CC drivers/gpu/drm/nouveau/dispnv50/dac507d.o
CC drivers/gpu/drm/nouveau/dispnv50/pior507d.o
CC drivers/gpu/drm/nouveau/dispnv50/sor507d.o
CC drivers/gpu/drm/nouveau/dispnv50/sor907d.o
CC drivers/gpu/drm/nouveau/dispnv50/sorc37d.o
CC drivers/gpu/drm/nouveau/dispnv50/head.o
CC drivers/gpu/drm/nouveau/dispnv50/head507d.o
CC drivers/gpu/drm/nouveau/dispnv50/head827d.o
CC drivers/gpu/drm/nouveau/dispnv50/head907d.o
CC drivers/gpu/drm/nouveau/dispnv50/head917d.o
CC drivers/gpu/drm/nouveau/dispnv50/headc37d.o
CC drivers/gpu/drm/nouveau/dispnv50/headc57d.o
CC drivers/gpu/drm/nouveau/dispnv50/wimm.o
CC drivers/gpu/drm/nouveau/dispnv50/wimmc37b.o
CC drivers/gpu/drm/nouveau/dispnv50/wndw.o
CC drivers/gpu/drm/nouveau/dispnv50/wndwc37e.o
AR drivers/net/ethernet/sun/built-in.a
AR drivers/net/ethernet/built-in.a
CC drivers/gpu/drm/nouveau/dispnv50/base.o
CC drivers/gpu/drm/nouveau/dispnv50/wndwc57e.o
CC drivers/gpu/drm/nouveau/dispnv50/base507c.o
AR drivers/net/built-in.a
CC drivers/gpu/drm/nouveau/dispnv50/base827c.o
CC drivers/gpu/drm/nouveau/dispnv50/base907c.o
CC drivers/gpu/drm/nouveau/dispnv50/base917c.o
CC drivers/gpu/drm/nouveau/dispnv50/curs.o
CC drivers/gpu/drm/nouveau/dispnv50/curs507a.o
CC drivers/gpu/drm/nouveau/dispnv50/curs907a.o
CC drivers/gpu/drm/nouveau/dispnv50/cursc37a.o
CC drivers/gpu/drm/nouveau/dispnv50/oimm.o
CC drivers/gpu/drm/nouveau/dispnv50/oimm507b.o
CC drivers/gpu/drm/nouveau/dispnv50/ovly.o
CC drivers/gpu/drm/nouveau/dispnv50/ovly507e.o
CC drivers/gpu/drm/nouveau/dispnv50/ovly827e.o
CC drivers/gpu/drm/nouveau/dispnv50/ovly907e.o
CC drivers/gpu/drm/nouveau/nouveau_abi16.o
CC drivers/gpu/drm/nouveau/dispnv50/ovly917e.o
CC drivers/gpu/drm/nouveau/nouveau_chan.o
CC drivers/gpu/drm/nouveau/nouveau_fence.o
CC drivers/gpu/drm/nouveau/nouveau_dma.o
CC drivers/gpu/drm/nouveau/nv04_fence.o
CC drivers/gpu/drm/nouveau/nv10_fence.o
CC drivers/gpu/drm/nouveau/nv17_fence.o
CC drivers/gpu/drm/nouveau/nv50_fence.o
CC drivers/gpu/drm/nouveau/nv84_fence.o
CC drivers/gpu/drm/nouveau/nvc0_fence.o
AR drivers/gpu/drm/nouveau/built-in.a
AR drivers/gpu/drm/built-in.a
AR drivers/gpu/built-in.a
AR drivers/scsi/built-in.a
Makefile:1051: recipe for target 'drivers' failed
make: *** [drivers] Error 2


Error text is too large and was truncated, full error text is at:
https://syzkaller.appspot.com/x/error.txt?x=15ba68b0a00000


Tested on:

commit: d34f9519 usb-fuzzer: main usb gadget fuzzer driver
git tree: https://github.com/google/kasan/tree/usb-fuzzer
compiler: gcc (GCC) 9.0.0 20181231 (experimental)
patch: https://syzkaller.appspot.com/x/patch.diff?x=11daff08a00000