Date
June 17, 2025, 3:40 p.m.
Environment | |
---|---|
qemu-arm64 | |
qemu-x86_64 |
[ 55.511005] ================================================================== [ 55.511130] BUG: KFENCE: use-after-free read in test_krealloc+0x51c/0x830 [ 55.511130] [ 55.511245] Use-after-free read at 0x000000009f91b9fb (in kfence-#197): [ 55.511313] test_krealloc+0x51c/0x830 [ 55.511368] kunit_try_run_case+0x170/0x3f0 [ 55.511422] kunit_generic_run_threadfn_adapter+0x88/0x100 [ 55.511473] kthread+0x328/0x630 [ 55.511523] ret_from_fork+0x10/0x20 [ 55.511569] [ 55.511598] kfence-#197: 0x000000009f91b9fb-0x0000000015e61ba0, size=32, cache=kmalloc-32 [ 55.511598] [ 55.511662] allocated by task 339 on cpu 0 at 55.510062s (0.001595s ago): [ 55.511757] test_alloc+0x29c/0x628 [ 55.511808] test_krealloc+0xc0/0x830 [ 55.511852] kunit_try_run_case+0x170/0x3f0 [ 55.511897] kunit_generic_run_threadfn_adapter+0x88/0x100 [ 55.511946] kthread+0x328/0x630 [ 55.511989] ret_from_fork+0x10/0x20 [ 55.512031] [ 55.512057] freed by task 339 on cpu 0 at 55.510411s (0.001642s ago): [ 55.512142] krealloc_noprof+0x148/0x360 [ 55.512188] test_krealloc+0x1dc/0x830 [ 55.512232] kunit_try_run_case+0x170/0x3f0 [ 55.512275] kunit_generic_run_threadfn_adapter+0x88/0x100 [ 55.512324] kthread+0x328/0x630 [ 55.512368] ret_from_fork+0x10/0x20 [ 55.512412] [ 55.512469] CPU: 0 UID: 0 PID: 339 Comm: kunit_try_catch Tainted: G B N 6.15.3-rc1 #1 PREEMPT [ 55.512563] Tainted: [B]=BAD_PAGE, [N]=TEST [ 55.512598] Hardware name: linux,dummy-virt (DT) [ 55.512639] ==================================================================
[ 58.468796] ================================================================== [ 58.469438] BUG: KFENCE: use-after-free read in test_krealloc+0x6fc/0xbe0 [ 58.469438] [ 58.470153] Use-after-free read at 0x(____ptrval____) (in kfence-#178): [ 58.470756] test_krealloc+0x6fc/0xbe0 [ 58.471115] kunit_try_run_case+0x1a5/0x480 [ 58.471770] kunit_generic_run_threadfn_adapter+0x85/0xf0 [ 58.472794] kthread+0x337/0x6f0 [ 58.473472] ret_from_fork+0x41/0x80 [ 58.473794] ret_from_fork_asm+0x1a/0x30 [ 58.474293] [ 58.474565] kfence-#178: 0x(____ptrval____)-0x(____ptrval____), size=32, cache=kmalloc-32 [ 58.474565] [ 58.475467] allocated by task 357 on cpu 0 at 58.467777s (0.007684s ago): [ 58.476187] test_alloc+0x364/0x10f0 [ 58.476606] test_krealloc+0xad/0xbe0 [ 58.477104] kunit_try_run_case+0x1a5/0x480 [ 58.477492] kunit_generic_run_threadfn_adapter+0x85/0xf0 [ 58.478121] kthread+0x337/0x6f0 [ 58.478529] ret_from_fork+0x41/0x80 [ 58.478969] ret_from_fork_asm+0x1a/0x30 [ 58.479469] [ 58.479662] freed by task 357 on cpu 0 at 58.468343s (0.011314s ago): [ 58.480325] krealloc_noprof+0x108/0x340 [ 58.480796] test_krealloc+0x226/0xbe0 [ 58.481286] kunit_try_run_case+0x1a5/0x480 [ 58.481725] kunit_generic_run_threadfn_adapter+0x85/0xf0 [ 58.482339] kthread+0x337/0x6f0 [ 58.482746] ret_from_fork+0x41/0x80 [ 58.483176] ret_from_fork_asm+0x1a/0x30 [ 58.483636] [ 58.483973] CPU: 0 UID: 0 PID: 357 Comm: kunit_try_catch Tainted: G B N 6.15.3-rc1 #1 PREEMPT(voluntary) [ 58.484898] Tainted: [B]=BAD_PAGE, [N]=TEST [ 58.485413] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014 [ 58.486169] ==================================================================