Hay
Date
July 15, 2025, 2:10 p.m.

Environment
qemu-arm64
qemu-i386
qemu-x86_64

[  109.382310] ==================================================================
[  109.383115] BUG: KFENCE: use-after-free read in test_use_after_free_read+0x10c/0x1a0
[  109.383115] 
[  109.384038] Use-after-free read at 0x00000000abb0795d (in kfence-#144):
[  109.384713]  test_use_after_free_read+0x10c/0x1a0
[  109.385377]  kunit_try_run_case+0x8c/0x124
[  109.385908]  kunit_generic_run_threadfn_adapter+0x38/0x54
[  109.386528]  kthread+0x15c/0x170
[  109.386978]  ret_from_fork+0x10/0x20
[  109.387414] 
[  109.387640] kfence-#144: 0x00000000abb0795d-0x00000000339a965f, size=32, cache=kmalloc-128
[  109.387640] 
[  109.388455] allocated by task 263 on cpu 1 at 109.381175s:
[  109.389136]  test_alloc+0x1e8/0x3b4
[  109.389520]  test_use_after_free_read+0xdc/0x1a0
[  109.390029]  kunit_try_run_case+0x8c/0x124
[  109.390500]  kunit_generic_run_threadfn_adapter+0x38/0x54
[  109.391117]  kthread+0x15c/0x170
[  109.391544]  ret_from_fork+0x10/0x20
[  109.391963] 
[  109.392196] freed by task 263 on cpu 1 at 109.381704s:
[  109.392871]  test_use_after_free_read+0x104/0x1a0
[  109.393366]  kunit_try_run_case+0x8c/0x124
[  109.393853]  kunit_generic_run_threadfn_adapter+0x38/0x54
[  109.394434]  kthread+0x15c/0x170
[  109.394876]  ret_from_fork+0x10/0x20
[  109.395293] 
[  109.395531] CPU: 1 PID: 263 Comm: kunit_try_catch Tainted: G    B            N 6.1.146-rc1 #1
[  109.396285] Hardware name: linux,dummy-virt (DT)
[  109.396727] ==================================================================
[  109.486270] ==================================================================
[  109.487003] BUG: KFENCE: use-after-free read in test_use_after_free_read+0x10c/0x1a0
[  109.487003] 
[  109.487884] Use-after-free read at 0x000000008f8528c3 (in kfence-#145):
[  109.488558]  test_use_after_free_read+0x10c/0x1a0
[  109.489093]  kunit_try_run_case+0x8c/0x124
[  109.489583]  kunit_generic_run_threadfn_adapter+0x38/0x54
[  109.490186]  kthread+0x15c/0x170
[  109.490608]  ret_from_fork+0x10/0x20
[  109.491053] 
[  109.491270] kfence-#145: 0x000000008f8528c3-0x000000007223424f, size=32, cache=test
[  109.491270] 
[  109.492085] allocated by task 264 on cpu 1 at 109.485170s:
[  109.492715]  test_alloc+0x1d8/0x3b4
[  109.493160]  test_use_after_free_read+0xdc/0x1a0
[  109.493637]  kunit_try_run_case+0x8c/0x124
[  109.494124]  kunit_generic_run_threadfn_adapter+0x38/0x54
[  109.494703]  kthread+0x15c/0x170
[  109.495124]  ret_from_fork+0x10/0x20
[  109.495573] 
[  109.495802] freed by task 264 on cpu 1 at 109.485673s:
[  109.496493]  test_use_after_free_read+0xfc/0x1a0
[  109.497011]  kunit_try_run_case+0x8c/0x124
[  109.497473]  kunit_generic_run_threadfn_adapter+0x38/0x54
[  109.498075]  kthread+0x15c/0x170
[  109.498478]  ret_from_fork+0x10/0x20
[  109.498950] 
[  109.499193] CPU: 1 PID: 264 Comm: kunit_try_catch Tainted: G    B            N 6.1.146-rc1 #1
[  109.499941] Hardware name: linux,dummy-virt (DT)
[  109.500392] ==================================================================

[   15.651254] ==================================================================
[   15.651571] BUG: KFENCE: use-after-free read in test_use_after_free_read+0x75/0xc4
[   15.651571] 
[   15.651894] Use-after-free read at 0x(ptrval) (in kfence-#29):
[   15.652158]  test_use_after_free_read+0x75/0xc4
[   15.652794]  kunit_try_run_case+0x52/0x80
[   15.653044]  kunit_generic_run_threadfn_adapter+0x16/0x20
[   15.653226]  kthread+0xda/0x100
[   15.653586]  ret_from_fork+0x1c/0x28
[   15.653719] 
[   15.653769] kfence-#29: 0x(ptrval)-0x(ptrval), size=32, cache=kmalloc-32
[   15.653769] 
[   15.654272] allocated by task 203 on cpu 0 at 15.651109s:
[   15.654602]  test_alloc+0xc2/0x224
[   15.654800]  test_use_after_free_read+0x56/0xc4
[   15.654990]  kunit_try_run_case+0x52/0x80
[   15.655255]  kunit_generic_run_threadfn_adapter+0x16/0x20
[   15.655435]  kthread+0xda/0x100
[   15.655627]  ret_from_fork+0x1c/0x28
[   15.655816] 
[   15.655937] freed by task 203 on cpu 0 at 15.651149s:
[   15.656315]  test_use_after_free_read+0x75/0xc4
[   15.656492]  kunit_try_run_case+0x52/0x80
[   15.656750]  kunit_generic_run_threadfn_adapter+0x16/0x20
[   15.657019]  kthread+0xda/0x100
[   15.657135]  ret_from_fork+0x1c/0x28
[   15.657270] 
[   15.657450] CPU: 0 PID: 203 Comm: kunit_try_catch Tainted: G    B            N 6.1.146-rc1 #1
[   15.657905] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014
[   15.658290] ==================================================================
[   15.755243] ==================================================================
[   15.755540] BUG: KFENCE: use-after-free read in test_use_after_free_read+0x75/0xc4
[   15.755540] 
[   15.755820] Use-after-free read at 0x(ptrval) (in kfence-#30):
[   15.756369]  test_use_after_free_read+0x75/0xc4
[   15.756541]  kunit_try_run_case+0x52/0x80
[   15.756760]  kunit_generic_run_threadfn_adapter+0x16/0x20
[   15.756962]  kthread+0xda/0x100
[   15.757104]  ret_from_fork+0x1c/0x28
[   15.757249] 
[   15.757301] kfence-#30: 0x(ptrval)-0x(ptrval), size=32, cache=test
[   15.757301] 
[   15.757563] allocated by task 204 on cpu 0 at 15.755139s:
[   15.757805]  test_alloc+0xb7/0x224
[   15.758461]  test_use_after_free_read+0x56/0xc4
[   15.758627]  kunit_try_run_case+0x52/0x80
[   15.758782]  kunit_generic_run_threadfn_adapter+0x16/0x20
[   15.759041]  kthread+0xda/0x100
[   15.759278]  ret_from_fork+0x1c/0x28
[   15.759471] 
[   15.759604] freed by task 204 on cpu 0 at 15.755193s:
[   15.759893]  test_use_after_free_read+0x6c/0xc4
[   15.760055]  kunit_try_run_case+0x52/0x80
[   15.760304]  kunit_generic_run_threadfn_adapter+0x16/0x20
[   15.760560]  kthread+0xda/0x100
[   15.760684]  ret_from_fork+0x1c/0x28
[   15.760856] 
[   15.760996] CPU: 0 PID: 204 Comm: kunit_try_catch Tainted: G    B            N 6.1.146-rc1 #1
[   15.761365] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014
[   15.761687] ==================================================================

[   34.034197] ==================================================================
[   34.034717] BUG: KFENCE: use-after-free read in test_use_after_free_read+0xf8/0x174
[   34.034717] 
[   34.035238] Use-after-free read at 0x(____ptrval____) (in kfence-#90):
[   34.036050]  test_use_after_free_read+0xf8/0x174
[   34.036585]  kunit_try_run_case+0x8f/0xd0
[   34.036838]  kunit_generic_run_threadfn_adapter+0x2f/0x50
[   34.037128]  kthread+0x17b/0x1b0
[   34.037344]  ret_from_fork+0x22/0x30
[   34.037650] 
[   34.037784] kfence-#90: 0x(____ptrval____)-0x(____ptrval____), size=32, cache=kmalloc-32
[   34.037784] 
[   34.038236] allocated by task 283 on cpu 0 at 34.033796s:
[   34.038629]  test_alloc+0x21e/0x7f3
[   34.038875]  test_use_after_free_read+0xc7/0x174
[   34.039126]  kunit_try_run_case+0x8f/0xd0
[   34.039784]  kunit_generic_run_threadfn_adapter+0x2f/0x50
[   34.040039]  kthread+0x17b/0x1b0
[   34.040216]  ret_from_fork+0x22/0x30
[   34.040411] 
[   34.040555] freed by task 283 on cpu 0 at 34.033963s:
[   34.040872]  test_use_after_free_read+0xec/0x174
[   34.041094]  kunit_try_run_case+0x8f/0xd0
[   34.041424]  kunit_generic_run_threadfn_adapter+0x2f/0x50
[   34.041724]  kthread+0x17b/0x1b0
[   34.041940]  ret_from_fork+0x22/0x30
[   34.042195] 
[   34.042335] CPU: 0 PID: 283 Comm: kunit_try_catch Tainted: G    B            N 6.1.146-rc1 #1
[   34.043678] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014
[   34.044137] ==================================================================
[   34.138142] ==================================================================
[   34.138770] BUG: KFENCE: use-after-free read in test_use_after_free_read+0xf8/0x174
[   34.138770] 
[   34.139282] Use-after-free read at 0x(____ptrval____) (in kfence-#91):
[   34.139566]  test_use_after_free_read+0xf8/0x174
[   34.139869]  kunit_try_run_case+0x8f/0xd0
[   34.140112]  kunit_generic_run_threadfn_adapter+0x2f/0x50
[   34.140406]  kthread+0x17b/0x1b0
[   34.140692]  ret_from_fork+0x22/0x30
[   34.140898] 
[   34.141019] kfence-#91: 0x(____ptrval____)-0x(____ptrval____), size=32, cache=test
[   34.141019] 
[   34.141527] allocated by task 284 on cpu 1 at 34.137819s:
[   34.141793]  test_alloc+0x20d/0x7f3
[   34.142025]  test_use_after_free_read+0xc7/0x174
[   34.142302]  kunit_try_run_case+0x8f/0xd0
[   34.142553]  kunit_generic_run_threadfn_adapter+0x2f/0x50
[   34.142843]  kthread+0x17b/0x1b0
[   34.143012]  ret_from_fork+0x22/0x30
[   34.143236] 
[   34.143365] freed by task 284 on cpu 1 at 34.137963s:
[   34.143715]  test_use_after_free_read+0xe2/0x174
[   34.143929]  kunit_try_run_case+0x8f/0xd0
[   34.144130]  kunit_generic_run_threadfn_adapter+0x2f/0x50
[   34.144556]  kthread+0x17b/0x1b0
[   34.144768]  ret_from_fork+0x22/0x30
[   34.144968] 
[   34.145101] CPU: 1 PID: 284 Comm: kunit_try_catch Tainted: G    B            N 6.1.146-rc1 #1
[   34.145542] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014
[   34.145987] ==================================================================