Re: [PATCH next] fs/9p: fix uaf in in v9fs_stat2inode_dotl

From: asmadeus
Date: Mon Mar 04 2024 - 08:03:02 EST


Lizhi Xu wrote on Fri, Feb 02, 2024 at 08:15:31PM +0800:
> The incorrect logical order of accessing the st object code in v9fs_fid_iget_dotl
> is causing this uaf.

Thanks for the fix!

Eric, this is also for your tree.

>
> Fixes: 724a08450f74 ("fs/9p: simplify iget to remove unnecessary paths")

(careful if you rebase your tree as this commit isn't merged yet)

> Reported-and-tested-by: syzbot+7a3d75905ea1a830dbe5@xxxxxxxxxxxxxxxxxxxxxxxxx
> Signed-off-by: Lizhi Xu <lizhi.xu@xxxxxxxxxxxxx>

Reviewed-by: Dominique Martinet <asmadeus@xxxxxxxxxxxxx>

--
Dominique Martinet | Asmadeus