Date
July 9, 2025, 12:11 a.m.
Environment | |
---|---|
qemu-arm64 | |
qemu-x86_64 |
[ 51.617164] ================================================================== [ 51.617228] BUG: KFENCE: use-after-free read in test_krealloc+0x51c/0x830 [ 51.617228] [ 51.617319] Use-after-free read at 0x00000000b4879c15 (in kfence-#150): [ 51.617374] test_krealloc+0x51c/0x830 [ 51.617434] kunit_try_run_case+0x170/0x3f0 [ 51.617482] kunit_generic_run_threadfn_adapter+0x88/0x100 [ 51.617529] kthread+0x328/0x630 [ 51.617570] ret_from_fork+0x10/0x20 [ 51.617611] [ 51.617637] kfence-#150: 0x00000000b4879c15-0x000000009df091f5, size=32, cache=kmalloc-32 [ 51.617637] [ 51.617692] allocated by task 338 on cpu 1 at 51.616468s (0.001220s ago): [ 51.617763] test_alloc+0x29c/0x628 [ 51.617808] test_krealloc+0xc0/0x830 [ 51.617850] kunit_try_run_case+0x170/0x3f0 [ 51.617889] kunit_generic_run_threadfn_adapter+0x88/0x100 [ 51.617932] kthread+0x328/0x630 [ 51.617970] ret_from_fork+0x10/0x20 [ 51.618008] [ 51.618034] freed by task 338 on cpu 1 at 51.616782s (0.001248s ago): [ 51.618098] krealloc_noprof+0x148/0x360 [ 51.618138] test_krealloc+0x1dc/0x830 [ 51.618178] kunit_try_run_case+0x170/0x3f0 [ 51.618217] kunit_generic_run_threadfn_adapter+0x88/0x100 [ 51.618262] kthread+0x328/0x630 [ 51.618299] ret_from_fork+0x10/0x20 [ 51.618339] [ 51.618384] CPU: 1 UID: 0 PID: 338 Comm: kunit_try_catch Tainted: G B N 6.16.0-rc5 #1 PREEMPT [ 51.618475] Tainted: [B]=BAD_PAGE, [N]=TEST [ 51.618505] Hardware name: linux,dummy-virt (DT) [ 51.618540] ==================================================================
[ 48.731017] ================================================================== [ 48.731966] BUG: KFENCE: use-after-free read in test_krealloc+0x6fc/0xbe0 [ 48.731966] [ 48.732749] Use-after-free read at 0x(____ptrval____) (in kfence-#132): [ 48.732974] test_krealloc+0x6fc/0xbe0 [ 48.733342] kunit_try_run_case+0x1a5/0x480 [ 48.733725] kunit_generic_run_threadfn_adapter+0x85/0xf0 [ 48.734176] kthread+0x337/0x6f0 [ 48.734302] ret_from_fork+0x116/0x1d0 [ 48.734435] ret_from_fork_asm+0x1a/0x30 [ 48.734596] [ 48.734671] kfence-#132: 0x(____ptrval____)-0x(____ptrval____), size=32, cache=kmalloc-32 [ 48.734671] [ 48.734963] allocated by task 354 on cpu 0 at 48.730358s (0.004603s ago): [ 48.735203] test_alloc+0x364/0x10f0 [ 48.735400] test_krealloc+0xad/0xbe0 [ 48.735572] kunit_try_run_case+0x1a5/0x480 [ 48.735753] kunit_generic_run_threadfn_adapter+0x85/0xf0 [ 48.735970] kthread+0x337/0x6f0 [ 48.736161] ret_from_fork+0x116/0x1d0 [ 48.736318] ret_from_fork_asm+0x1a/0x30 [ 48.736517] [ 48.736609] freed by task 354 on cpu 0 at 48.730628s (0.005979s ago): [ 48.736928] krealloc_noprof+0x108/0x340 [ 48.737111] test_krealloc+0x226/0xbe0 [ 48.737246] kunit_try_run_case+0x1a5/0x480 [ 48.737392] kunit_generic_run_threadfn_adapter+0x85/0xf0 [ 48.737646] kthread+0x337/0x6f0 [ 48.737882] ret_from_fork+0x116/0x1d0 [ 48.738055] ret_from_fork_asm+0x1a/0x30 [ 48.738246] [ 48.738377] CPU: 0 UID: 0 PID: 354 Comm: kunit_try_catch Tainted: G B N 6.16.0-rc5 #1 PREEMPT(voluntary) [ 48.738792] Tainted: [B]=BAD_PAGE, [N]=TEST [ 48.738930] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014 [ 48.739336] ==================================================================