Re: BUG: bad usercopy in hidraw_ioctl

2019-08-21 Thread Andrey Konovalov
On Wed, Aug 7, 2019 at 9:28 PM syzbot wrote: > > Hello, > > syzbot found the following crash on: > > HEAD commit:e96407b4 usb-fuzzer: main usb gadget fuzzer driver > git tree: https://github.com/google/kasan.git usb-fuzzer > console output: https://syzkaller.appspot.com/x/log.txt?x=151b2

Re: BUG: bad usercopy in hidraw_ioctl

2019-08-08 Thread Kees Cook
On Thu, Aug 08, 2019 at 02:49:25AM +0100, Al Viro wrote: > On Wed, Aug 07, 2019 at 12:58:21PM -0700, Matthew Wilcox wrote: > > On Wed, Aug 07, 2019 at 12:28:06PM -0700, syzbot wrote: > > > usercopy: Kernel memory exposure attempt detected from wrapped address > > > (offset 0, size 0)! > > > ---

Re: BUG: bad usercopy in hidraw_ioctl

2019-08-08 Thread Kees Cook
On Wed, Aug 07, 2019 at 12:58:21PM -0700, Matthew Wilcox wrote: > On Wed, Aug 07, 2019 at 12:28:06PM -0700, syzbot wrote: > > usercopy: Kernel memory exposure attempt detected from wrapped address > > (offset 0, size 0)! > > [ cut here ] > > kernel BUG at mm/usercopy.c:98! >

Re: BUG: bad usercopy in hidraw_ioctl

2019-08-07 Thread Al Viro
On Wed, Aug 07, 2019 at 12:58:21PM -0700, Matthew Wilcox wrote: > On Wed, Aug 07, 2019 at 12:28:06PM -0700, syzbot wrote: > > usercopy: Kernel memory exposure attempt detected from wrapped address > > (offset 0, size 0)! > > [ cut here ] > > kernel BUG at mm/usercopy.c:98! >

Re: BUG: bad usercopy in hidraw_ioctl

2019-08-07 Thread Matthew Wilcox
On Wed, Aug 07, 2019 at 12:28:06PM -0700, syzbot wrote: > usercopy: Kernel memory exposure attempt detected from wrapped address > (offset 0, size 0)! > [ cut here ] > kernel BUG at mm/usercopy.c:98! This report is confusing because the arguments to usercopy_abort() are wro

BUG: bad usercopy in hidraw_ioctl

2019-08-07 Thread syzbot
Hello, syzbot found the following crash on: HEAD commit:e96407b4 usb-fuzzer: main usb gadget fuzzer driver git tree: https://github.com/google/kasan.git usb-fuzzer console output: https://syzkaller.appspot.com/x/log.txt?x=151b292660 kernel config: https://syzkaller.appspot.com/x/.