Hay
Date
Feb. 5, 2025, 2:09 p.m.

Environment
qemu-arm64

[  181.223793] ==================================================================
[  181.225892] BUG: KASAN: alloca-out-of-bounds in kasan_alloca_oob_left+0x108/0x1f0
[  181.227611] Read of size 1 at addr ffff8000807d7c1f by task kunit_try_catch/186
[  181.229224] 
[  181.229890] CPU: 1 PID: 186 Comm: kunit_try_catch Tainted: G    B            N 6.6.76-rc1 #1
[  181.231772] Hardware name: linux,dummy-virt (DT)
[  181.232897] Call trace:
[  181.233605]  dump_backtrace+0x9c/0x128
[  181.234707]  show_stack+0x20/0x38
[  181.235697]  dump_stack_lvl+0x60/0xb0
[  181.236887]  print_report+0x314/0x5d8
[  181.238046]  kasan_report+0xc8/0x118
[  181.239179]  __asan_load1+0x60/0x70
[  181.240296]  kasan_alloca_oob_left+0x108/0x1f0
[  181.241528]  kunit_try_run_case+0xf8/0x260
[  181.242769]  kunit_generic_run_threadfn_adapter+0x38/0x60
[  181.244207]  kthread+0x18c/0x1a8
[  181.245162]  ret_from_fork+0x10/0x20
[  181.246270] 
[  181.246848] The buggy address belongs to stack of task kunit_try_catch/186
[  181.248329] 
[  181.248869] The buggy address belongs to the virtual mapping at
[  181.248869]  [ffff8000807d0000, ffff8000807d9000) created by:
[  181.248869]  kernel_clone+0xf8/0x540
[  181.251980] 
[  181.252531] The buggy address belongs to the physical page:
[  181.253908] page:00000000a8163904 refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x105ec0
[  181.255844] flags: 0xbfffc0000000000(node=0|zone=2|lastcpupid=0xffff)
[  181.257310] page_type: 0xffffffff()
[  181.258386] raw: 0bfffc0000000000 0000000000000000 dead000000000122 0000000000000000
[  181.260096] raw: 0000000000000000 0000000000000000 00000001ffffffff 0000000000000000
[  181.261814] page dumped because: kasan: bad access detected
[  181.263071] 
[  181.263566] Memory state around the buggy address:
[  181.264793]  ffff8000807d7b00: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[  181.266387]  ffff8000807d7b80: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[  181.267902] >ffff8000807d7c00: ca ca ca ca 00 02 cb cb cb cb cb cb 00 00 f1 f1
[  181.269474]                             ^
[  181.270531]  ffff8000807d7c80: f1 f1 01 f2 04 f2 00 f2 f2 f2 00 00 f3 f3 00 00
[  181.272156]  ffff8000807d7d00: 00 00 00 00 00 00 00 00 00 00 00 00 f1 f1 f1 f1
[  181.273688] ==================================================================