[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-Id: <161775180876.15996.5049343066547076569.git-patchwork-notify@kernel.org>
Date: Tue, 06 Apr 2021 23:30:08 +0000
From: patchwork-bot+netdevbpf@...nel.org
To: Xin Long <lucien.xin@...il.com>
Cc: netdev@...r.kernel.org, tipc-discussion@...ts.sourceforge.net,
davem@...emloft.net, kuba@...nel.org, jmaloy@...hat.com,
ying.xue@...driver.com, tuong.t.lien@...tech.com.au
Subject: Re: [PATCH net] tipc: increment the tmp aead refcnt before attaching it
Hello:
This patch was applied to netdev/net.git (refs/heads/master):
On Tue, 6 Apr 2021 10:45:23 +0800 you wrote:
> Li Shuang found a NULL pointer dereference crash in her testing:
>
> [] BUG: unable to handle kernel NULL pointer dereference at 0000000000000020
> [] RIP: 0010:tipc_crypto_rcv_complete+0xc8/0x7e0 [tipc]
> [] Call Trace:
> [] <IRQ>
> [] tipc_crypto_rcv+0x2d9/0x8f0 [tipc]
> [] tipc_rcv+0x2fc/0x1120 [tipc]
> [] tipc_udp_recv+0xc6/0x1e0 [tipc]
> [] udpv6_queue_rcv_one_skb+0x16a/0x460
> [] udp6_unicast_rcv_skb.isra.35+0x41/0xa0
> [] ip6_protocol_deliver_rcu+0x23b/0x4c0
> [] ip6_input+0x3d/0xb0
> [] ipv6_rcv+0x395/0x510
> [] __netif_receive_skb_core+0x5fc/0xc40
>
> [...]
Here is the summary with links:
- [net] tipc: increment the tmp aead refcnt before attaching it
https://git.kernel.org/netdev/net/c/2a2403ca3add
You are awesome, thank you!
--
Deet-doot-dot, I am a bot.
https://korg.docs.kernel.org/patchwork/pwbot.html
Powered by blists - more mailing lists