Hay
Date
July 25, 2025, 3:13 a.m.

Environment
qemu-arm64

[   32.349684] ==================================================================
[   32.350086] BUG: KFENCE: invalid free in krealloc_noprof+0x148/0x360
[   32.350086] 
[   32.350176] Invalid free of 0x00000000fc6b217a (in kfence-#96):
[   32.350220]  krealloc_noprof+0x148/0x360
[   32.350335]  krealloc_uaf+0x180/0x520
[   32.350378]  kunit_try_run_case+0x170/0x3f0
[   32.350416]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   32.351282]  kthread+0x328/0x630
[   32.351338]  ret_from_fork+0x10/0x20
[   32.351375] 
[   32.351393] kfence-#96: 0x00000000fc6b217a-0x000000007ad0ddf6, size=201, cache=kmalloc-256
[   32.351393] 
[   32.351447] allocated by task 196 on cpu 1 at 32.337151s (0.014293s ago):
[   32.351507]  krealloc_uaf+0xc8/0x520
[   32.351544]  kunit_try_run_case+0x170/0x3f0
[   32.351579]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   32.351620]  kthread+0x328/0x630
[   32.351664]  ret_from_fork+0x10/0x20
[   32.351698] 
[   32.351716] freed by task 196 on cpu 1 at 32.337250s (0.014463s ago):
[   32.351776]  krealloc_uaf+0x12c/0x520
[   32.351811]  kunit_try_run_case+0x170/0x3f0
[   32.351847]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   32.351887]  kthread+0x328/0x630
[   32.351917]  ret_from_fork+0x10/0x20
[   32.351951] 
[   32.351981] CPU: 1 UID: 0 PID: 196 Comm: kunit_try_catch Tainted: G    B   W        N  6.16.0-rc7-next-20250725 #1 PREEMPT 
[   32.352338] Tainted: [B]=BAD_PAGE, [W]=WARN, [N]=TEST
[   32.352403] Hardware name: linux,dummy-virt (DT)
[   32.352467] ==================================================================