Re: KASAN: slab-out-of-bounds Read in vc_do_resize

From: syzbot
Date: Sun Jan 26 2020 - 06:26:04 EST


syzbot has bisected this bug to:

commit 9e1467002630065ed86c65ea28bfc9194fff6f0e
Author: Daniel Vetter <daniel.vetter@xxxxxxxx>
Date: Tue May 28 09:02:59 2019 +0000

fbcon: replace FB_EVENT_MODE_CHANGE/_ALL with direct calls

bisection log: https://syzkaller.appspot.com/x/bisect.txt?x=135a779ee00000
start commit: d96d875e Merge tag 'fixes_for_v5.5-rc8' of git://git.kerne..
git tree: upstream
final crash: https://syzkaller.appspot.com/x/report.txt?x=10da779ee00000
console output: https://syzkaller.appspot.com/x/log.txt?x=175a779ee00000
kernel config: https://syzkaller.appspot.com/x/.config?x=83c00afca9cf5153
dashboard link: https://syzkaller.appspot.com/bug?extid=c37a14770d51a085a520
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=1659a721e00000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=16aa59c9e00000

Reported-by: syzbot+c37a14770d51a085a520@xxxxxxxxxxxxxxxxxxxxxxxxx
Fixes: 9e1467002630 ("fbcon: replace FB_EVENT_MODE_CHANGE/_ALL with direct calls")

For information about bisection process see: https://goo.gl/tpsmEJ#bisection