Date
May 29, 2025, 7:10 a.m.
Environment | |
---|---|
qemu-arm64 |
[ 25.818260] ================================================================== [ 25.818385] BUG: KASAN: vmalloc-out-of-bounds in vmalloc_oob+0x578/0x5d0 [ 25.819055] Read of size 1 at addr ffff8000800fe7f3 by task kunit_try_catch/269 [ 25.819224] [ 25.819287] CPU: 1 UID: 0 PID: 269 Comm: kunit_try_catch Tainted: G B N 6.15.0-next-20250529 #1 PREEMPT [ 25.819412] Tainted: [B]=BAD_PAGE, [N]=TEST [ 25.819453] Hardware name: linux,dummy-virt (DT) [ 25.819531] Call trace: [ 25.819587] show_stack+0x20/0x38 (C) [ 25.819674] dump_stack_lvl+0x8c/0xd0 [ 25.819900] print_report+0x310/0x608 [ 25.819990] kasan_report+0xdc/0x128 [ 25.820058] __asan_report_load1_noabort+0x20/0x30 [ 25.820265] vmalloc_oob+0x578/0x5d0 [ 25.820490] kunit_try_run_case+0x170/0x3f0 [ 25.820566] kunit_generic_run_threadfn_adapter+0x88/0x100 [ 25.820632] kthread+0x328/0x630 [ 25.820850] ret_from_fork+0x10/0x20 [ 25.821056] [ 25.821238] The buggy address belongs to the virtual mapping at [ 25.821238] [ffff8000800fe000, ffff800080100000) created by: [ 25.821238] vmalloc_oob+0x98/0x5d0 [ 25.821382] [ 25.821427] The buggy address belongs to the physical page: [ 25.821475] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1063c9 [ 25.821658] flags: 0xbfffe0000000000(node=0|zone=2|lastcpupid=0x1ffff) [ 25.821772] raw: 0bfffe0000000000 0000000000000000 dead000000000122 0000000000000000 [ 25.821895] raw: 0000000000000000 0000000000000000 00000001ffffffff 0000000000000000 [ 25.821953] page dumped because: kasan: bad access detected [ 25.822111] [ 25.822334] Memory state around the buggy address: [ 25.822479] ffff8000800fe680: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [ 25.822550] ffff8000800fe700: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [ 25.822606] >ffff8000800fe780: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 03 f8 [ 25.822696] ^ [ 25.822784] ffff8000800fe800: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 [ 25.823083] ffff8000800fe880: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 [ 25.823186] ================================================================== [ 25.827263] ================================================================== [ 25.827356] BUG: KASAN: vmalloc-out-of-bounds in vmalloc_oob+0x51c/0x5d0 [ 25.827459] Read of size 1 at addr ffff8000800fe7f8 by task kunit_try_catch/269 [ 25.827524] [ 25.827575] CPU: 1 UID: 0 PID: 269 Comm: kunit_try_catch Tainted: G B N 6.15.0-next-20250529 #1 PREEMPT [ 25.827680] Tainted: [B]=BAD_PAGE, [N]=TEST [ 25.827715] Hardware name: linux,dummy-virt (DT) [ 25.827759] Call trace: [ 25.827793] show_stack+0x20/0x38 (C) [ 25.827860] dump_stack_lvl+0x8c/0xd0 [ 25.827926] print_report+0x310/0x608 [ 25.827988] kasan_report+0xdc/0x128 [ 25.828045] __asan_report_load1_noabort+0x20/0x30 [ 25.828282] vmalloc_oob+0x51c/0x5d0 [ 25.828384] kunit_try_run_case+0x170/0x3f0 [ 25.828519] kunit_generic_run_threadfn_adapter+0x88/0x100 [ 25.828689] kthread+0x328/0x630 [ 25.828823] ret_from_fork+0x10/0x20 [ 25.828981] [ 25.829030] The buggy address belongs to the virtual mapping at [ 25.829030] [ffff8000800fe000, ffff800080100000) created by: [ 25.829030] vmalloc_oob+0x98/0x5d0 [ 25.829135] [ 25.829177] The buggy address belongs to the physical page: [ 25.829229] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1063c9 [ 25.829299] flags: 0xbfffe0000000000(node=0|zone=2|lastcpupid=0x1ffff) [ 25.829381] raw: 0bfffe0000000000 0000000000000000 dead000000000122 0000000000000000 [ 25.829457] raw: 0000000000000000 0000000000000000 00000001ffffffff 0000000000000000 [ 25.829511] page dumped because: kasan: bad access detected [ 25.829554] [ 25.829860] Memory state around the buggy address: [ 25.829938] ffff8000800fe680: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [ 25.830053] ffff8000800fe700: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [ 25.830121] >ffff8000800fe780: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 03 f8 [ 25.830219] ^ [ 25.830286] ffff8000800fe800: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 [ 25.830388] ffff8000800fe880: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 [ 25.830508] ==================================================================