Re: [syzbot] KASAN: use-after-free Read in io_poll_task_func

From: Jens Axboe
Date: Mon Jan 16 2023 - 08:44:03 EST


On 1/15/23 11:11 PM, syzbot wrote:
> Hello,
>
> syzbot found the following issue on:
>
> HEAD commit: 0a093b2893c7 Add linux-next specific files for 20230112
> git tree: linux-next
> console output: https://syzkaller.appspot.com/x/log.txt?x=12fcd936480000
> kernel config: https://syzkaller.appspot.com/x/.config?x=835f3591019836d5
> dashboard link: https://syzkaller.appspot.com/bug?extid=cb95143d1d4d788c1941
> compiler: gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2

syz fix: io_uring/io-wq: only free worker if it was allocated for creation

--
Jens Axboe