Hay
Date
May 15, 2025, 10:38 a.m.

Environment
e850-96

[   33.375395] ==================================================================
[   33.384852] BUG: KASAN: slab-out-of-bounds in kmem_cache_oob+0x344/0x430
[   33.391533] Read of size 1 at addr ffff00080241a0c8 by task kunit_try_catch/252
[   33.398826] 
[   33.400311] CPU: 0 UID: 0 PID: 252 Comm: kunit_try_catch Tainted: G    B            N  6.15.0-rc6-next-20250515 #1 PREEMPT 
[   33.400374] Tainted: [B]=BAD_PAGE, [N]=TEST
[   33.400388] Hardware name: WinLink E850-96 board (DT)
[   33.400411] Call trace:
[   33.400426]  show_stack+0x20/0x38 (C)
[   33.400460]  dump_stack_lvl+0x8c/0xd0
[   33.400494]  print_report+0x118/0x608
[   33.400528]  kasan_report+0xdc/0x128
[   33.400560]  __asan_report_load1_noabort+0x20/0x30
[   33.400597]  kmem_cache_oob+0x344/0x430
[   33.400624]  kunit_try_run_case+0x170/0x3f0
[   33.400657]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   33.400692]  kthread+0x328/0x630
[   33.400726]  ret_from_fork+0x10/0x20
[   33.400761] 
[   33.464016] Allocated by task 252:
[   33.467403]  kasan_save_stack+0x3c/0x68
[   33.471219]  kasan_save_track+0x20/0x40
[   33.475038]  kasan_save_alloc_info+0x40/0x58
[   33.479292]  __kasan_slab_alloc+0xa8/0xb0
[   33.483286]  kmem_cache_alloc_noprof+0x10c/0x3a0
[   33.487885]  kmem_cache_oob+0x12c/0x430
[   33.491705]  kunit_try_run_case+0x170/0x3f0
[   33.495871]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   33.501341]  kthread+0x328/0x630
[   33.504552]  ret_from_fork+0x10/0x20
[   33.508111] 
[   33.509589] The buggy address belongs to the object at ffff00080241a000
[   33.509589]  which belongs to the cache test_cache of size 200
[   33.522002] The buggy address is located 0 bytes to the right of
[   33.522002]  allocated 200-byte region [ffff00080241a000, ffff00080241a0c8)
[   33.534934] 
[   33.536413] The buggy address belongs to the physical page:
[   33.541969] page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x88241a
[   33.549952] head: order:1 mapcount:0 entire_mapcount:0 nr_pages_mapped:0 pincount:0
[   33.557593] flags: 0xbfffe0000000040(head|node=0|zone=2|lastcpupid=0x1ffff)
[   33.564536] page_type: f5(slab)
[   33.567673] raw: 0bfffe0000000040 ffff000802403040 dead000000000122 0000000000000000
[   33.575391] raw: 0000000000000000 00000000801f001f 00000000f5000000 0000000000000000
[   33.583118] head: 0bfffe0000000040 ffff000802403040 dead000000000122 0000000000000000
[   33.590929] head: 0000000000000000 00000000801f001f 00000000f5000000 0000000000000000
[   33.598742] head: 0bfffe0000000001 fffffdffe0090681 00000000ffffffff 00000000ffffffff
[   33.606554] head: ffffffffffffffff 0000000000000000 00000000ffffffff 0000000000000002
[   33.614359] page dumped because: kasan: bad access detected
[   33.619915] 
[   33.621390] Memory state around the buggy address:
[   33.626171]  ffff000802419f80: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[   33.633373]  ffff00080241a000: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[   33.640580] >ffff00080241a080: 00 00 00 00 00 00 00 00 00 fc fc fc fc fc fc fc
[   33.647779]                                               ^
[   33.653338]  ffff00080241a100: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[   33.660543]  ffff00080241a180: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[   33.667746] ==================================================================