Re: [syzbot] [bpf?] [net?] KASAN: slab-use-after-free Read in xsk_diag_dump

From: Daniel Borkmann
Date: Tue Aug 29 2023 - 08:57:03 EST


Hi Magnus,

On 8/29/23 10:20 AM, syzbot wrote:
Hello,

syzbot found the following issue on:

HEAD commit: 5c905279a1b7 Merge branch 'pds_core-error-handling-fixes'
git tree: net
console+strace: https://syzkaller.appspot.com/x/log.txt?x=16080070680000
kernel config: https://syzkaller.appspot.com/x/.config?x=1e4a882f77ed77bd
dashboard link: https://syzkaller.appspot.com/bug?extid=822d1359297e2694f873
compiler: gcc (Debian 12.2.0-14) 12.2.0, GNU ld (GNU Binutils for Debian) 2.40
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=14ec63a7a80000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=109926eba80000

Downloadable assets:
disk image: https://storage.googleapis.com/syzbot-assets/98add120b6e5/disk-5c905279.raw.xz
vmlinux: https://storage.googleapis.com/syzbot-assets/c9e9009eadbd/vmlinux-5c905279.xz
kernel image: https://storage.googleapis.com/syzbot-assets/b840142cc0c1/bzImage-5c905279.xz

The issue was bisected to:

commit 18b1ab7aa76bde181bdb1ab19a87fa9523c32f21
Author: Magnus Karlsson <magnus.karlsson@xxxxxxxxx>
Date: Mon Feb 28 09:45:52 2022 +0000

xsk: Fix race at socket teardown

please take a look when you get a chance.

Thanks a lot,
Daniel