[Linux-kernel-mentees] [PATCH syzbot net-next] rxrpc: Fixuse-after-free write in rxrpc_connect_call()

Hillf Danton hdanton at sina.com
Fri Sep 18 08:16:10 EDT 2020


On Fri, 18 Sep 2020 18:52:16 Dan Carpenter wrote:
> 
> The commit message is not clear and I can't immediately verify what
> the patch is trying to do.

Our fault and say sorry to you for it.

You can find the uaf syzbot report at the link below,

 https://lore.kernel.org/lkml/0000000000005b8e4505af6a62a9@google.com/

and I sent a diff in reply to it. This is the thread Peilin raised and
asked syzbot to test the diff posted mainly for David to see if I'm 
in the right direction.

> Looking through the git log, I think this
> might already be fixed by commit f1b449748760 ("rxrpc: Fix an overget of
> the conn bundle when setting up a client conn")

Thanks for taking a look at it, Dan.

Quite likely if the syzbot report did not cover the commit above.

btw, I'm curious about why the mentees tag is necessary. Are you now taking
some intern job at some office like google.

Hillf




More information about the linux-afs mailing list