lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite for Android: free password hash cracker in your pocket
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <000000000000eb77510568bd6247@google.com>
Date:   Sat, 31 Mar 2018 16:05:01 -0700
From:   syzbot <syzbot+730517f1d3fbe54a17c7@...kaller.appspotmail.com>
To:     linux-ext4@...r.kernel.org, syzkaller-bugs@...glegroups.com,
        tytso@....edu
Subject: Re: KASAN: slab-out-of-bounds Read in __ext4_check_dir_entry

Hello,

syzbot has tested the proposed patch and the reproducer did not trigger  
crash:

Reported-and-tested-by:  
syzbot+730517f1d3fbe54a17c7@...kaller.appspotmail.com

Note: the tag will also help syzbot to understand when the bug is fixed.

Tested on git://git.kernel.org/pub/scm/linux/kernel/git/tytso/ext4.git/dev  
commit
efeeadec84052f77731c1a438a0c53e8323a2931 (Sat Mar 31 00:04:11 2018 +0000)
ext4: add extra checks to ext4_xattr_block_get()

compiler: gcc (GCC) 7.1.1 20170620
Patch: https://syzkaller.appspot.com/x/patch.diff?id=6191315272335360
Kernel config:  
https://syzkaller.appspot.com/x/.config?id=-8698589779649233149


---
There is no WARRANTY for the result, to the extent permitted by applicable  
law.
Except when otherwise stated in writing syzbot provides the result "AS IS"
without warranty of any kind, either expressed or implied, but not limited  
to,
the implied warranties of merchantability and fittness for a particular  
purpose.
The entire risk as to the quality of the result is with you. Should the  
result
prove defective, you assume the cost of all necessary servicing, repair or
correction.

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ