KASAN: use-after-free Read in ath9k_hif_usb_rx_cb (2) should share the same root cause with "KASAN: slab-out-of-bounds Read in ath9k_hif_usb_rx_cb (2)"

2021-01-13 Thread 慕冬亮
Dear kernel developers, I found that KASAN: use-after-free Read in ath9k_hif_usb_rx_cb (2) and "KASAN: slab-out-of-bounds Read in ath9k_hif_usb_rx_cb (2)" should share the same root cause. The reasons for my above statement, 1) the stack trace is the same; 2) we observed two crash

Re: KASAN: slab-out-of-bounds Read in ath9k_hif_usb_rx_cb (2)

2020-10-27 Thread syzbot
syzbot has found a reproducer for the following issue on: HEAD commit:3650b228 Linux 5.10-rc1 git tree: https://git.kernel.org/pub/scm/linux/kernel/git/gregkh/usb.git usb-testing console output: https://syzkaller.appspot.com/x/log.txt?x=14485e5050 kernel config: https://syzkaller.a

KASAN: slab-out-of-bounds Read in ath9k_hif_usb_rx_cb (2)

2020-07-30 Thread syzbot
Hello, syzbot found the following issue on: HEAD commit:ab4dc051 usb: mtu3: simplify mtu3_req_complete() git tree: https://git.kernel.org/pub/scm/linux/kernel/git/gregkh/usb.git usb-testing console output: https://syzkaller.appspot.com/x/log.txt?x=11c0666c90 kernel config: https:/

Re: KASAN: slab-out-of-bounds Read in ath9k_hif_usb_rx_cb

2020-06-12 Thread Andrey Konovalov
On Sun, May 17, 2020 at 5:32 PM syzbot wrote: > > Hello, > > syzbot found the following crash on: > > HEAD commit:806d8acc USB: dummy-hcd: use configurable endpoint naming .. > git tree: https://github.com/google/kasan.git usb-fuzzer > console output: https://syzkaller.appspot.com/x/log.

Re: KASAN: slab-out-of-bounds Read in ath9k_hif_usb_rx_cb

2020-05-22 Thread syzbot
syzbot has found a reproducer for the following crash on: HEAD commit:806d8acc USB: dummy-hcd: use configurable endpoint naming .. git tree: https://github.com/google/kasan.git usb-fuzzer console output: https://syzkaller.appspot.com/x/log.txt?x=113b269a10 kernel config: https://syz

KASAN: slab-out-of-bounds Read in ath9k_hif_usb_rx_cb

2020-05-17 Thread syzbot
Hello, syzbot found the following crash on: HEAD commit:806d8acc USB: dummy-hcd: use configurable endpoint naming .. git tree: https://github.com/google/kasan.git usb-fuzzer console output: https://syzkaller.appspot.com/x/log.txt?x=1147bce610 kernel config: https://syzkaller.appspo