Hay
Date
May 15, 2025, 10:38 a.m.

Environment
e850-96

[   63.702306] ==================================================================
[   63.716700] BUG: KASAN: vmalloc-out-of-bounds in vmalloc_oob+0x578/0x5d0
[   63.723382] Read of size 1 at addr ffff800087c7d7f3 by task kunit_try_catch/314
[   63.730673] 
[   63.732157] CPU: 0 UID: 0 PID: 314 Comm: kunit_try_catch Tainted: G    B            N  6.15.0-rc6-next-20250515 #1 PREEMPT 
[   63.732216] Tainted: [B]=BAD_PAGE, [N]=TEST
[   63.732235] Hardware name: WinLink E850-96 board (DT)
[   63.732257] Call trace:
[   63.732275]  show_stack+0x20/0x38 (C)
[   63.732313]  dump_stack_lvl+0x8c/0xd0
[   63.732347]  print_report+0x310/0x608
[   63.732382]  kasan_report+0xdc/0x128
[   63.732416]  __asan_report_load1_noabort+0x20/0x30
[   63.732456]  vmalloc_oob+0x578/0x5d0
[   63.732484]  kunit_try_run_case+0x170/0x3f0
[   63.732519]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   63.732557]  kthread+0x328/0x630
[   63.732592]  ret_from_fork+0x10/0x20
[   63.732627] 
[   63.795608] The buggy address belongs to the virtual mapping at
[   63.795608]  [ffff800087c7d000, ffff800087c7f000) created by:
[   63.795608]  vmalloc_oob+0x98/0x5d0
[   63.810705] 
[   63.812185] The buggy address belongs to the physical page:
[   63.817739] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x886979
[   63.825725] flags: 0xbfffe0000000000(node=0|zone=2|lastcpupid=0x1ffff)
[   63.832247] raw: 0bfffe0000000000 0000000000000000 dead000000000122 0000000000000000
[   63.839965] raw: 0000000000000000 0000000000000000 00000001ffffffff 0000000000000000
[   63.847684] page dumped because: kasan: bad access detected
[   63.853239] 
[   63.854715] Memory state around the buggy address:
[   63.859496]  ffff800087c7d680: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[   63.866698]  ffff800087c7d700: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[   63.873904] >ffff800087c7d780: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 03 f8
[   63.881104]                                                              ^
[   63.887966]  ffff800087c7d800: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8
[   63.895170]  ffff800087c7d880: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8
[   63.902374] ==================================================================
[   63.909876] ==================================================================
[   63.916785] BUG: KASAN: vmalloc-out-of-bounds in vmalloc_oob+0x51c/0x5d0
[   63.923464] Read of size 1 at addr ffff800087c7d7f8 by task kunit_try_catch/314
[   63.930756] 
[   63.932241] CPU: 0 UID: 0 PID: 314 Comm: kunit_try_catch Tainted: G    B            N  6.15.0-rc6-next-20250515 #1 PREEMPT 
[   63.932298] Tainted: [B]=BAD_PAGE, [N]=TEST
[   63.932313] Hardware name: WinLink E850-96 board (DT)
[   63.932334] Call trace:
[   63.932348]  show_stack+0x20/0x38 (C)
[   63.932388]  dump_stack_lvl+0x8c/0xd0
[   63.932423]  print_report+0x310/0x608
[   63.932456]  kasan_report+0xdc/0x128
[   63.932485]  __asan_report_load1_noabort+0x20/0x30
[   63.932522]  vmalloc_oob+0x51c/0x5d0
[   63.932549]  kunit_try_run_case+0x170/0x3f0
[   63.932583]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   63.932620]  kthread+0x328/0x630
[   63.932654]  ret_from_fork+0x10/0x20
[   63.932689] 
[   63.995690] The buggy address belongs to the virtual mapping at
[   63.995690]  [ffff800087c7d000, ffff800087c7f000) created by:
[   63.995690]  vmalloc_oob+0x98/0x5d0
[   64.010789] 
[   64.012269] The buggy address belongs to the physical page:
[   64.017824] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x886979
[   64.025808] flags: 0xbfffe0000000000(node=0|zone=2|lastcpupid=0x1ffff)
[   64.032326] raw: 0bfffe0000000000 0000000000000000 dead000000000122 0000000000000000
[   64.040048] raw: 0000000000000000 0000000000000000 00000001ffffffff 0000000000000000
[   64.047767] page dumped because: kasan: bad access detected
[   64.053323] 
[   64.054799] Memory state around the buggy address:
[   64.059578]  ffff800087c7d680: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[   64.066782]  ffff800087c7d700: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[   64.073988] >ffff800087c7d780: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 03 f8
[   64.081187]                                                                 ^
[   64.088310]  ffff800087c7d800: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8
[   64.095514]  ffff800087c7d880: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8
[   64.102716] ==================================================================