Date
May 15, 2025, 10:38 a.m.
Environment | |
---|---|
e850-96 |
[ 21.854485] ================================================================== [ 21.868842] BUG: KASAN: use-after-free in page_alloc_uaf+0x328/0x350 [ 21.875177] Read of size 1 at addr ffff0008067a0000 by task kunit_try_catch/199 [ 21.882469] [ 21.883952] CPU: 6 UID: 0 PID: 199 Comm: kunit_try_catch Tainted: G B N 6.15.0-rc6-next-20250515 #1 PREEMPT [ 21.884014] Tainted: [B]=BAD_PAGE, [N]=TEST [ 21.884030] Hardware name: WinLink E850-96 board (DT) [ 21.884048] Call trace: [ 21.884061] show_stack+0x20/0x38 (C) [ 21.884098] dump_stack_lvl+0x8c/0xd0 [ 21.884129] print_report+0x118/0x608 [ 21.884165] kasan_report+0xdc/0x128 [ 21.884196] __asan_report_load1_noabort+0x20/0x30 [ 21.884234] page_alloc_uaf+0x328/0x350 [ 21.884263] kunit_try_run_case+0x170/0x3f0 [ 21.884296] kunit_generic_run_threadfn_adapter+0x88/0x100 [ 21.884329] kthread+0x328/0x630 [ 21.884364] ret_from_fork+0x10/0x20 [ 21.884396] [ 21.947660] The buggy address belongs to the physical page: [ 21.953216] page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x8867a0 [ 21.961201] flags: 0xbfffe0000000000(node=0|zone=2|lastcpupid=0x1ffff) [ 21.967711] page_type: f0(buddy) [ 21.970935] raw: 0bfffe0000000000 ffff00087f61bcc8 ffff00087f61bcc8 0000000000000000 [ 21.978652] raw: 0000000000000000 0000000000000005 00000000f0000000 0000000000000000 [ 21.986372] page dumped because: kasan: bad access detected [ 21.991927] [ 21.993403] Memory state around the buggy address: [ 21.998186] ffff00080679ff00: ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff [ 22.005386] ffff00080679ff80: ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff [ 22.012590] >ffff0008067a0000: ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff [ 22.019791] ^ [ 22.023007] ffff0008067a0080: ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff [ 22.030211] ffff0008067a0100: ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff [ 22.037414] ==================================================================