Hay
Date
June 7, 2025, 10:40 a.m.

Environment
qemu-arm64
qemu-x86_64

[   25.633945] ==================================================================
[   25.638315] BUG: KASAN: global-out-of-bounds in kasan_global_oob_right+0x230/0x270
[   25.638934] Read of size 1 at addr ffffadfe26a780cd by task kunit_try_catch/234
[   25.639484] 
[   25.639758] CPU: 1 UID: 0 PID: 234 Comm: kunit_try_catch Tainted: G    B            N 6.14.11-rc1 #1
[   25.642589] Tainted: [B]=BAD_PAGE, [N]=TEST
[   25.642670] Hardware name: linux,dummy-virt (DT)
[   25.642754] Call trace:
[   25.642821]  show_stack+0x20/0x38 (C)
[   25.642977]  dump_stack_lvl+0x8c/0xd0
[   25.643091]  print_report+0x310/0x608
[   25.643208]  kasan_report+0xdc/0x128
[   25.643316]  __asan_report_load1_noabort+0x20/0x30
[   25.643435]  kasan_global_oob_right+0x230/0x270
[   25.643546]  kunit_try_run_case+0x170/0x3f0
[   25.643664]  kunit_generic_run_threadfn_adapter+0x88/0x100
[   25.643789]  kthread+0x318/0x620
[   25.646152]  ret_from_fork+0x10/0x20
[   25.646321] 
[   25.661905] The buggy address belongs to the variable:
[   25.662370]  global_array+0xd/0x40
[   25.662770] 
[   25.663357] The buggy address belongs to the virtual mapping at
[   25.663357]  [ffffadfe24d00000, ffffadfe26b31000) created by:
[   25.663357]  paging_init+0x66c/0x7d0
[   25.668818] 
[   25.671783] The buggy address belongs to the physical page:
[   25.672739] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x47a78
[   25.676100] flags: 0x3fffe0000002000(reserved|node=0|zone=0|lastcpupid=0x1ffff)
[   25.676715] raw: 03fffe0000002000 ffffc1ffc01e9e08 ffffc1ffc01e9e08 0000000000000000
[   25.677304] raw: 0000000000000000 0000000000000000 00000001ffffffff 0000000000000000
[   25.677846] page dumped because: kasan: bad access detected
[   25.679866] 
[   25.681192] Memory state around the buggy address:
[   25.684089]  ffffadfe26a77f80: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[   25.685253]  ffffadfe26a78000: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[   25.686441] >ffffadfe26a78080: 02 f9 f9 f9 f9 f9 f9 f9 00 02 f9 f9 f9 f9 f9 f9
[   25.689338]                                               ^
[   25.689794]  ffffadfe26a78100: 04 f9 f9 f9 f9 f9 f9 f9 00 f9 f9 f9 f9 f9 f9 f9
[   25.690383]  ffffadfe26a78180: 01 f9 f9 f9 f9 f9 f9 f9 00 00 00 00 00 00 00 00
[   25.692937] ==================================================================

[   19.987936] ==================================================================
[   19.988826] BUG: KASAN: global-out-of-bounds in kasan_global_oob_right+0x288/0x2d0
[   19.989847] Read of size 1 at addr ffffffffb6619d0d by task kunit_try_catch/253
[   19.990895] 
[   19.991312] CPU: 1 UID: 0 PID: 253 Comm: kunit_try_catch Tainted: G    B            N 6.14.11-rc1 #1
[   19.991573] Tainted: [B]=BAD_PAGE, [N]=TEST
[   19.991594] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014
[   19.991622] Call Trace:
[   19.991643]  <TASK>
[   19.991665]  dump_stack_lvl+0x73/0xb0
[   19.991719]  print_report+0xd1/0x650
[   19.991748]  ? __virt_addr_valid+0x1db/0x2d0
[   19.991779]  ? kasan_global_oob_right+0x288/0x2d0
[   19.991806]  ? kasan_addr_to_slab+0x11/0xa0
[   19.991830]  ? kasan_global_oob_right+0x288/0x2d0
[   19.991878]  kasan_report+0x140/0x180
[   19.991907]  ? kasan_global_oob_right+0x288/0x2d0
[   19.991940]  __asan_report_load1_noabort+0x18/0x20
[   19.991970]  kasan_global_oob_right+0x288/0x2d0
[   19.991997]  ? __pfx_kasan_global_oob_right+0x10/0x10
[   19.992027]  ? __schedule+0xce8/0x2840
[   19.992058]  ? __pfx_read_tsc+0x10/0x10
[   19.992085]  ? ktime_get_ts64+0x86/0x230
[   19.992118]  kunit_try_run_case+0x1a6/0x480
[   19.992147]  ? __pfx_kunit_try_run_case+0x10/0x10
[   19.992174]  ? _raw_spin_lock_irqsave+0xa2/0x110
[   19.992202]  ? _raw_spin_unlock_irqrestore+0x5f/0x90
[   19.992232]  ? __kthread_parkme+0x82/0x160
[   19.992260]  ? preempt_count_sub+0x50/0x80
[   19.992290]  ? __pfx_kunit_try_run_case+0x10/0x10
[   19.992319]  kunit_generic_run_threadfn_adapter+0x85/0xf0
[   19.992350]  ? __pfx_kunit_generic_run_threadfn_adapter+0x10/0x10
[   19.992389]  kthread+0x324/0x6e0
[   19.992428]  ? trace_preempt_on+0x20/0xc0
[   19.992481]  ? __pfx_kthread+0x10/0x10
[   19.992528]  ? _raw_spin_unlock_irq+0x47/0x80
[   19.992559]  ? calculate_sigpending+0x7b/0xa0
[   19.992589]  ? __pfx_kthread+0x10/0x10
[   19.992619]  ret_from_fork+0x41/0x80
[   19.992644]  ? __pfx_kthread+0x10/0x10
[   19.992673]  ret_from_fork_asm+0x1a/0x30
[   19.992713]  </TASK>
[   19.992727] 
[   20.006966] The buggy address belongs to the variable:
[   20.007603]  global_array+0xd/0x40
[   20.008106] 
[   20.008417] The buggy address belongs to the physical page:
[   20.008975] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x46019
[   20.009899] flags: 0x100000000002000(reserved|node=0|zone=1)
[   20.010480] raw: 0100000000002000 ffffea0001180648 ffffea0001180648 0000000000000000
[   20.011055] raw: 0000000000000000 0000000000000000 00000001ffffffff 0000000000000000
[   20.011877] page dumped because: kasan: bad access detected
[   20.012402] 
[   20.012765] Memory state around the buggy address:
[   20.013150]  ffffffffb6619c00: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[   20.013969]  ffffffffb6619c80: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[   20.014443] >ffffffffb6619d00: 00 02 f9 f9 f9 f9 f9 f9 00 f9 f9 f9 f9 f9 f9 f9
[   20.015060]                       ^
[   20.015793]  ffffffffb6619d80: 04 f9 f9 f9 f9 f9 f9 f9 02 f9 f9 f9 f9 f9 f9 f9
[   20.016244]  ffffffffb6619e00: 01 f9 f9 f9 f9 f9 f9 f9 00 00 00 00 00 00 00 00
[   20.017125] ==================================================================