lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date:   Mon, 22 Apr 2019 08:55:01 -0700
From:   syzbot <syzbot+2eb9121678bdb36e6d57@...kaller.appspotmail.com>
To:     andreyknvl@...gle.com, gregkh@...uxfoundation.org,
        linux-kernel@...r.kernel.org, linux-usb@...r.kernel.org,
        rafael@...nel.org, stern@...land.harvard.edu,
        syzkaller-bugs@...glegroups.com
Subject: Re: general protection fault in __dev_printk

Hello,

syzbot tried to test the proposed patch but build/boot failed:

ers/net/ethernet/sfc/ethtool.o
   CC      drivers/net/ethernet/sun/cassini.o
   CC      drivers/scsi/qla2xxx/tcm_qla2xxx.o
   CC      drivers/net/ethernet/ti/tlan.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/msppp/gt215.o
drivers/net/ethernet/tehuti/tehuti.c: In function ‘bdx_tx_map_skb’:
drivers/net/ethernet/tehuti/tehuti.c:1492:20: warning: taking address of  
packed member of ‘struct txd_desc’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  1492 |  struct pbl *pbl = &txdd->pbl[0];
       |                    ^~~~~~~~~~~~~
   CC      drivers/net/ethernet/via/via-rhine.o
   CC      drivers/net/ethernet/via/via-velocity.o
   CC      drivers/scsi/qla4xxx/ql4_83xx.o
   GEN     drivers/scsi/scsi_devinfo_tbl.c
   CC      drivers/scsi/scsi_scan.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/msppp/gf100.o
   CC      drivers/scsi/scsi_devinfo.o
   CC      drivers/scsi/scsi_netlink.o
   CC      drivers/scsi/scsi_sysctl.o
   CC      drivers/net/ethernet/sfc/ptp.o
   CC      drivers/scsi/scsi_proc.o
   CC      drivers/video/fbdev/efifb.o
   CC      drivers/video/fbdev/vga16fb.o
   CC      drivers/video/fbdev/vfb.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/msvld/base.o
   AR      drivers/net/ethernet/qlogic/qed/built-in.a
   CC      drivers/scsi/scsi_debugfs.o
   CC      drivers/scsi/scsi_trace.o
   CC      drivers/scsi/scsi_logging.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/msvld/g98.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/msvld/gt215.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/msvld/mcp89.o
   CC      drivers/xen/xlate_mmu.o
   AR      drivers/net/ethernet/qlogic/qlcnic/built-in.a
   AR      drivers/net/ethernet/qlogic/built-in.a
   CC      drivers/gpu/drm/nouveau/nvkm/engine/msvld/gf100.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/nvdec/base.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/msvld/gk104.o
   AR      drivers/net/ethernet/wiznet/built-in.a
   CC      drivers/net/ethernet/sfc/tx_tso.o
   CC      drivers/scsi/scsi_pm.o
   CC      drivers/scsi/scsi_dh.o
   CC      drivers/net/ethernet/sun/niu.o
   AR      drivers/net/ethernet/tehuti/built-in.a
   CC      drivers/scsi/scsi_common.o
   CC      drivers/xen/xen-front-pgdir-shbuf.o
   CC      drivers/scsi/raid_class.o
   CC      drivers/net/ethernet/sfc/mcdi.o
   CC      drivers/net/ethernet/xircom/xirc2ps_cs.o
   CC      drivers/scsi/scsi_transport_spi.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/nvdec/gp102.o
   CC      drivers/scsi/scsi_transport_fc.o
   CC      drivers/net/ethernet/sfc/mcdi_port.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/base.o
   CC      drivers/scsi/scsi_transport_iscsi.o
   CC      drivers/net/ethernet/jme.o
   CC      drivers/net/ethernet/sfc/mcdi_mon.o
   CC      drivers/net/ethernet/sfc/sriov.o
   CC      drivers/net/ethernet/fealnx.o
   CC      drivers/scsi/scsi_transport_sas.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/nv50.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/nv40.o
   AR      drivers/scsi/qla4xxx/built-in.a
   CC      drivers/scsi/scsi_transport_srp.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/g84.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/gt200.o
   AR      drivers/video/fbdev/built-in.a
   CC      drivers/scsi/libiscsi.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/gt215.o
   AR      drivers/video/built-in.a
   CC      drivers/scsi/libiscsi_tcp.o
   CC      drivers/scsi/iscsi_tcp.o
   AR      drivers/net/ethernet/ti/built-in.a
   CC      drivers/scsi/iscsi_boot_sysfs.o
   CC      drivers/scsi/advansys.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/gf100.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/gf108.o
   CC      drivers/net/ethernet/sfc/siena_sriov.o
   CC      drivers/net/ethernet/sfc/ef10_sriov.o
   CC      drivers/scsi/BusLogic.o
   AR      drivers/xen/built-in.a
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/gf117.o
   CC      drivers/scsi/dpt_i2o.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/pm/gk104.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sec/g98.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sec2/base.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sec2/gp102.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sec2/tu102.o
   AR      drivers/net/ethernet/via/built-in.a
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sw/base.o
   AR      drivers/net/ethernet/xircom/built-in.a
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sw/nv10.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sw/nv04.o
   CC      drivers/scsi/ips.o
   CC      drivers/scsi/qla1280.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sw/nv50.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sw/gf100.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sw/chan.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/sw/nvsw.o
   CC      drivers/scsi/dmx3191d.o
   CC      drivers/gpu/drm/nouveau/nvkm/engine/vp/g84.o
   CC      drivers/scsi/hpsa.o
   CC      drivers/scsi/dc395x.o
   CC      drivers/gpu/drm/nouveau/nouveau_acpi.o
   CC      drivers/gpu/drm/nouveau/nouveau_debugfs.o
   CC      drivers/gpu/drm/nouveau/nouveau_drm.o
   CC      drivers/gpu/drm/nouveau/nouveau_hwmon.o
   CC      drivers/gpu/drm/nouveau/nouveau_ioc32.o
   CC      drivers/gpu/drm/nouveau/nouveau_led.o
   CC      drivers/gpu/drm/nouveau/nouveau_nvif.o
   CC      drivers/scsi/esp_scsi.o
   CC      drivers/scsi/am53c974.o
   CC      drivers/scsi/megaraid.o
   CC      drivers/gpu/drm/nouveau/nouveau_usif.o
   CC      drivers/gpu/drm/nouveau/nouveau_vga.o
   CC      drivers/scsi/atp870u.o
   CC      drivers/gpu/drm/nouveau/nouveau_bo.o
   CC      drivers/scsi/gdth.o
   CC      drivers/scsi/initio.o
drivers/scsi/megaraid.c: In function ‘mega_build_cmd’:
drivers/scsi/megaraid.c:721:5: warning: taking address of packed member of  
‘struct <anonymous>’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
   721 |     &pthru->dataxferaddr, &pthru->dataxferlen);
       |     ^~~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c:721:27: warning: taking address of packed member of  
‘struct <anonymous>’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
   721 |     &pthru->dataxferaddr, &pthru->dataxferlen);
       |                           ^~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c:856:6: warning: taking address of packed member of  
‘struct mbox_out’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
   856 |      (u32 *)&mbox->m_out.xferaddr, &seg);
       |      ^~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c: In function ‘mega_prepare_passthru’:
drivers/scsi/megaraid.c:999:5: warning: taking address of packed member of  
‘struct <anonymous>’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
   999 |     &pthru->dataxferaddr, &pthru->dataxferlen);
       |     ^~~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c:999:27: warning: taking address of packed member of  
‘struct <anonymous>’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
   999 |     &pthru->dataxferaddr, &pthru->dataxferlen);
       |                           ^~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c: In function ‘mega_prepare_extpassthru’:
drivers/scsi/megaraid.c:1062:5: warning: taking address of packed member of  
‘struct <anonymous>’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  1062 |     &epthru->dataxferaddr, &epthru->dataxferlen);
       |     ^~~~~~~~~~~~~~~~~~~~~
drivers/scsi/megaraid.c:1062:28: warning: taking address of packed member  
of ‘struct <anonymous>’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  1062 |     &epthru->dataxferaddr, &epthru->dataxferlen);
       |                            ^~~~~~~~~~~~~~~~~~~~
   CC      drivers/scsi/a100u2w.o
   CC      drivers/scsi/3w-xxxx.o
   CC      drivers/gpu/drm/nouveau/nouveau_gem.o
   CC      drivers/scsi/3w-9xxx.o
   CC      drivers/gpu/drm/nouveau/nouveau_mem.o
   CC      drivers/scsi/3w-sas.o
   AR      drivers/net/ethernet/sfc/built-in.a
   CC      drivers/gpu/drm/nouveau/nouveau_prime.o
   CC      drivers/gpu/drm/nouveau/nouveau_sgdma.o
   CC      drivers/scsi/hptiop.o
   CC      drivers/scsi/ipr.o
   CC      drivers/scsi/stex.o
   CC      drivers/gpu/drm/nouveau/nouveau_ttm.o
   CC      drivers/scsi/mvumi.o
   CC      drivers/scsi/pmcraid.o
   CC      drivers/scsi/virtio_scsi.o
   CC      drivers/scsi/vmw_pvscsi.o
drivers/scsi/ipr.c: In function ‘ipr_handle_config_change’:
drivers/scsi/ipr.c:1453:22: warning: taking address of packed member of  
‘struct ipr_hostrcb_cfg_ch_not’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  1453 |   cfgtew.u.cfgte64 = &hostrcb->hcam.u.ccn.u.cfgte64;
       |                      ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/ipr.c: In function ‘ipr_log_sis64_fabric_error’:
drivers/scsi/ipr.c:2401:23: warning: taking address of packed member of  
‘struct ipr_hostrcb_type_30_error’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  2401 |  for (i = 0, fabric = error->desc; i < error->num_entries; i++) {
       |                       ^~~~~
drivers/scsi/ipr.c: In function ‘ipr_dump_ioa_type_data’:
drivers/scsi/ipr.c:3067:26: warning: taking address of packed member of  
‘struct ipr_driver_dump’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  3067 |  ipr_init_dump_entry_hdr(&driver_dump->ioa_type_entry.hdr);
       |                          ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/ipr.c: In function ‘ipr_dump_version_data’:
drivers/scsi/ipr.c:3091:26: warning: taking address of packed member of  
‘struct ipr_driver_dump’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  3091 |  ipr_init_dump_entry_hdr(&driver_dump->version_entry.hdr);
       |                          ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/ipr.c: In function ‘ipr_dump_trace_data’:
drivers/scsi/ipr.c:3112:26: warning: taking address of packed member of  
‘struct ipr_driver_dump’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  3112 |  ipr_init_dump_entry_hdr(&driver_dump->trace_entry.hdr);
       |                          ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~
drivers/scsi/ipr.c: In function ‘ipr_dump_location_data’:
drivers/scsi/ipr.c:3133:26: warning: taking address of packed member of  
‘struct ipr_dump_location_entry’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  3133 |  ipr_init_dump_entry_hdr(&driver_dump->location_entry.hdr);
       |                          ^~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
   AR      drivers/scsi/qla2xxx/built-in.a
drivers/scsi/ipr.c: In function ‘ipr_build_ioadl’:
drivers/scsi/ipr.c:6017:11: warning: taking address of packed member of  
‘struct ipr_ioarcb_add_data’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  6017 |   ioadl = ioarcb->u.add_data.u.ioadl;
       |           ^~~~~~
   CC      drivers/gpu/drm/nouveau/nouveau_vmm.o
   CC      drivers/gpu/drm/nouveau/nouveau_backlight.o
drivers/scsi/ipr.c: In function ‘ipr_check_term_power’:
drivers/scsi/ipr.c:7452:8: warning: taking address of packed member of  
‘struct ipr_mode_page28’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  7452 |  bus = mode_page->bus;
       |        ^~~~~~~~~
drivers/scsi/ipr.c: In function ‘ipr_modify_ioafp_mode_page_28’:
drivers/scsi/ipr.c:7514:20: warning: taking address of packed member of  
‘struct ipr_mode_page28’ may result in an unaligned pointer value  
[-Waddress-of-packed-member]
  7514 |  for (i = 0, bus = mode_page->bus;
       |                    ^~~~~~~~~
   CC      drivers/gpu/drm/nouveau/nouveau_bios.o
   CC      drivers/scsi/xen-scsifront.o
   CC      drivers/gpu/drm/nouveau/nouveau_connector.o
   CC      drivers/gpu/drm/nouveau/nouveau_display.o
   CC      drivers/scsi/storvsc_drv.o
   CC      drivers/scsi/wd719x.o
drivers/scsi/storvsc_drv.c: In function ‘storvsc_on_channel_callback’:
drivers/scsi/storvsc_drv.c:1182:24: warning: taking address of packed  
member of ‘struct vmpacket_descriptor’ may result in an unaligned pointer  
value [-Waddress-of-packed-member]
  1182 |    ((unsigned long)desc->trans_id);
       |                    ~~~~^~~~~~~~~~
   CC      drivers/scsi/st.o
   CC      drivers/gpu/drm/nouveau/nouveau_dp.o
   CC      drivers/scsi/osst.o
   CC      drivers/gpu/drm/nouveau/nouveau_fbcon.o
   CC      drivers/scsi/sd.o
   CC      drivers/gpu/drm/nouveau/nv04_fbcon.o
   CC      drivers/scsi/sd_dif.o
   CC      drivers/scsi/sd_zbc.o
   CC      drivers/gpu/drm/nouveau/nv50_fbcon.o
   CC      drivers/gpu/drm/nouveau/nvc0_fbcon.o
   CC      drivers/gpu/drm/nouveau/dispnv04/arb.o
   CC      drivers/gpu/drm/nouveau/dispnv04/crtc.o
   CC      drivers/gpu/drm/nouveau/dispnv04/cursor.o
   CC      drivers/gpu/drm/nouveau/dispnv04/dac.o
   CC      drivers/scsi/sr.o
   CC      drivers/gpu/drm/nouveau/dispnv04/dfp.o
   CC      drivers/scsi/sr_ioctl.o
   CC      drivers/gpu/drm/nouveau/dispnv04/disp.o
   CC      drivers/scsi/sr_vendor.o
   CC      drivers/gpu/drm/nouveau/dispnv04/hw.o
   CC      drivers/scsi/sg.o
   CC      drivers/gpu/drm/nouveau/dispnv04/overlay.o
   CC      drivers/scsi/ch.o
   CC      drivers/scsi/ses.o
   CC      drivers/gpu/drm/nouveau/dispnv04/tvmodesnv17.o
   CC      drivers/scsi/scsi_sysfs.o
   CC      drivers/gpu/drm/nouveau/dispnv04/tvnv04.o
   CC      drivers/gpu/drm/nouveau/dispnv04/tvnv17.o
   CC      drivers/gpu/drm/nouveau/dispnv50/disp.o
   CC      drivers/gpu/drm/nouveau/dispnv50/lut.o
   CC      drivers/gpu/drm/nouveau/dispnv50/core.o
   CC      drivers/gpu/drm/nouveau/dispnv50/core507d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/core907d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/core827d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/core917d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/corec37d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/corec57d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/dac907d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/dac507d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/pior507d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/sor507d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/sor907d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/sorc37d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/head.o
   CC      drivers/gpu/drm/nouveau/dispnv50/head507d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/head827d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/head907d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/head917d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/headc37d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/headc57d.o
   CC      drivers/gpu/drm/nouveau/dispnv50/wimm.o
   CC      drivers/gpu/drm/nouveau/dispnv50/wimmc37b.o
   CC      drivers/gpu/drm/nouveau/dispnv50/wndw.o
   CC      drivers/gpu/drm/nouveau/dispnv50/wndwc37e.o
   AR      drivers/net/ethernet/sun/built-in.a
   AR      drivers/net/ethernet/built-in.a
   CC      drivers/gpu/drm/nouveau/dispnv50/base.o
   CC      drivers/gpu/drm/nouveau/dispnv50/wndwc57e.o
   CC      drivers/gpu/drm/nouveau/dispnv50/base507c.o
   AR      drivers/net/built-in.a
   CC      drivers/gpu/drm/nouveau/dispnv50/base827c.o
   CC      drivers/gpu/drm/nouveau/dispnv50/base907c.o
   CC      drivers/gpu/drm/nouveau/dispnv50/base917c.o
   CC      drivers/gpu/drm/nouveau/dispnv50/curs.o
   CC      drivers/gpu/drm/nouveau/dispnv50/curs507a.o
   CC      drivers/gpu/drm/nouveau/dispnv50/curs907a.o
   CC      drivers/gpu/drm/nouveau/dispnv50/cursc37a.o
   CC      drivers/gpu/drm/nouveau/dispnv50/oimm.o
   CC      drivers/gpu/drm/nouveau/dispnv50/oimm507b.o
   CC      drivers/gpu/drm/nouveau/dispnv50/ovly.o
   CC      drivers/gpu/drm/nouveau/dispnv50/ovly507e.o
   CC      drivers/gpu/drm/nouveau/dispnv50/ovly827e.o
   CC      drivers/gpu/drm/nouveau/dispnv50/ovly907e.o
   CC      drivers/gpu/drm/nouveau/nouveau_abi16.o
   CC      drivers/gpu/drm/nouveau/dispnv50/ovly917e.o
   CC      drivers/gpu/drm/nouveau/nouveau_chan.o
   CC      drivers/gpu/drm/nouveau/nouveau_fence.o
   CC      drivers/gpu/drm/nouveau/nouveau_dma.o
   CC      drivers/gpu/drm/nouveau/nv04_fence.o
   CC      drivers/gpu/drm/nouveau/nv10_fence.o
   CC      drivers/gpu/drm/nouveau/nv17_fence.o
   CC      drivers/gpu/drm/nouveau/nv50_fence.o
   CC      drivers/gpu/drm/nouveau/nv84_fence.o
   CC      drivers/gpu/drm/nouveau/nvc0_fence.o
   AR      drivers/gpu/drm/nouveau/built-in.a
   AR      drivers/gpu/drm/built-in.a
   AR      drivers/gpu/built-in.a
   AR      drivers/scsi/built-in.a
Makefile:1051: recipe for target 'drivers' failed
make: *** [drivers] Error 2


Error text is too large and was truncated, full error text is at:
https://syzkaller.appspot.com/x/error.txt?x=15ba68b0a00000


Tested on:

commit:         d34f9519 usb-fuzzer: main usb gadget fuzzer driver
git tree:       https://github.com/google/kasan/tree/usb-fuzzer
compiler:       gcc (GCC) 9.0.0 20181231 (experimental)
patch:          https://syzkaller.appspot.com/x/patch.diff?x=11daff08a00000

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ