Hay
Date
May 15, 2025, 10:38 a.m.

Environment
e850-96

[   26.524626] ==================================================================
[   26.533617] BUG: KASAN: slab-out-of-bounds in kmalloc_oob_16+0x3a0/0x3f8
[   26.540298] Write of size 16 at addr ffff000800da9680 by task kunit_try_catch/211
[   26.547763] 
[   26.549248] CPU: 6 UID: 0 PID: 211 Comm: kunit_try_catch Tainted: G    B            N  6.15.0-rc6-next-20250515 #1 PREEMPT 
[   26.549303] Tainted: [B]=BAD_PAGE, [N]=TEST
[   26.549317] Hardware name: WinLink E850-96 board (DT)
[   26.549337] Call trace:
[   26.549349]  show_stack+0x20/0x38 (C)
[   26.549386]  dump_stack_lvl+0x8c/0xd0
[   26.549420]  print_report+0x118/0x608
[   26.549454]  kasan_report+0xdc/0x128
[   26.549484]  __asan_report_store16_noabort+0x20/0x30
[   26.549523]  kmalloc_oob_16+0x3a0/0x3f8
[   26.549551]  kunit_try_run_case+0x170/0x3f0
[   26.549585]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   26.549618]  kthread+0x328/0x630
[   26.549655]  ret_from_fork+0x10/0x20
[   26.549691] 
[   26.613125] Allocated by task 211:
[   26.616514]  kasan_save_stack+0x3c/0x68
[   26.620330]  kasan_save_track+0x20/0x40
[   26.624149]  kasan_save_alloc_info+0x40/0x58
[   26.628403]  __kasan_kmalloc+0xd4/0xd8
[   26.632135]  __kmalloc_cache_noprof+0x15c/0x3c0
[   26.636649]  kmalloc_oob_16+0xb4/0x3f8
[   26.640381]  kunit_try_run_case+0x170/0x3f0
[   26.644548]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   26.650017]  kthread+0x328/0x630
[   26.653229]  ret_from_fork+0x10/0x20
[   26.656787] 
[   26.658267] The buggy address belongs to the object at ffff000800da9680
[   26.658267]  which belongs to the cache kmalloc-16 of size 16
[   26.670592] The buggy address is located 0 bytes inside of
[   26.670592]  allocated 13-byte region [ffff000800da9680, ffff000800da968d)
[   26.682916] 
[   26.684395] The buggy address belongs to the physical page:
[   26.689951] page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x880da9
[   26.697936] flags: 0xbfffe0000000000(node=0|zone=2|lastcpupid=0x1ffff)
[   26.704444] page_type: f5(slab)
[   26.707583] raw: 0bfffe0000000000 ffff000800002640 dead000000000122 0000000000000000
[   26.715301] raw: 0000000000000000 0000000080800080 00000000f5000000 0000000000000000
[   26.723019] page dumped because: kasan: bad access detected
[   26.728575] 
[   26.730050] Memory state around the buggy address:
[   26.734834]  ffff000800da9580: fa fb fc fc fa fb fc fc fa fb fc fc fa fb fc fc
[   26.742035]  ffff000800da9600: fa fb fc fc fa fb fc fc fa fb fc fc fa fb fc fc
[   26.749238] >ffff000800da9680: 00 05 fc fc 00 00 fc fc fc fc fc fc fc fc fc fc
[   26.756439]                       ^
[   26.759915]  ffff000800da9700: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[   26.767120]  ffff000800da9780: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[   26.774322] ==================================================================