lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20250119001505.2004-1-hdanton@sina.com>
Date: Sun, 19 Jan 2025 08:14:59 +0800
From: Hillf Danton <hdanton@...a.com>
To: syzbot <syzbot+1eb177ecc3943b883f0a@...kaller.appspotmail.com>
Cc: linux-kernel@...r.kernel.org,
	syzkaller-bugs@...glegroups.com
Subject: Re: [syzbot] [media?] KASAN: slab-use-after-free Read in dvb_device_open

On Sat, 18 Jan 2025 11:50:29 -0800
> syzbot has found a reproducer for the following issue on:
> 
> HEAD commit:    595523945be0 Merge tag 'devicetree-fixes-for-6.13-2' of gi..
> git tree:       upstream
> C reproducer:   https://syzkaller.appspot.com/x/repro.c?x=12183fc4580000

#syz test

--- x/drivers/media/dvb-core/dvbdev.c
+++ y/drivers/media/dvb-core/dvbdev.c
@@ -109,8 +109,10 @@ static int dvb_device_open(struct inode
 			err = file->f_op->open(inode, file);
 		up_read(&minor_rwsem);
 		mutex_unlock(&dvbdev_mutex);
-		if (err)
+		if (err) {
+			WARN(1, "open %pS\n", file->f_op->open);
 			dvb_device_put(dvbdev);
+		}
 		return err;
 	}
 fail:
--

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ