Message ID | 20240206173844.30271-1-apanov@astralinux.ru |
---|---|
Headers |
Return-Path: <linux-kernel+bounces-55407-ouuuleilei=gmail.com@vger.kernel.org> Delivered-To: ouuuleilei@gmail.com Received: by 2002:a05:7301:168b:b0:106:860b:bbdd with SMTP id ma11csp1704830dyb; Tue, 6 Feb 2024 09:40:58 -0800 (PST) X-Google-Smtp-Source: AGHT+IH65Yu1rErBClc99vs6duaLdIK/0i2to0LevyX55gvyu1mJ/jLrZkMgMxP8Olpc/aNhTvpR X-Received: by 2002:a05:622a:c9:b0:42a:2fd3:bc0d with SMTP id p9-20020a05622a00c900b0042a2fd3bc0dmr4580932qtw.56.1707241257899; Tue, 06 Feb 2024 09:40:57 -0800 (PST) ARC-Seal: i=2; a=rsa-sha256; t=1707241257; cv=pass; d=google.com; s=arc-20160816; b=wnYsVVh1HVXcCJs4bBjF5C0+bOgonyLsHWXGBhBseXC7dZ8vJf8rYbYFGoSWu7ZJgL IjB+ifO4u6q9+zRxPp8CmMm+gCb32w60/C6UvDoBg7ejReLquq13+eDd7EmLdU2ULtlw UKgPuZxO7Z1xhlz7xrQf/uVujINyX5appnlXlaK9y3/HXAzQlXQpS4EJj4QQw7UU4dfs zAQWacOdObUf76v39/uHMar03gkW4rAqzyYgtR3qX9t7Lp62c/icg4CXTyq6OeDltdfb 4WbNgITxOXFqs+B7t4fGvAzWwGuibKny7cYeSg/3gzqM1ZSm3oKKLE7QPRBUhrolfwGn 1RZA== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=content-transfer-encoding:mime-version:list-unsubscribe :list-subscribe:list-id:precedence:message-id:date:subject:cc:to :from; bh=vRtSngSZ1LHNibkVF1r+Xu2ql+WRcWagH9Pl3kuQI8E=; fh=rKcK2F/nqq0IlwH8ZVGW4iCTevmLT695g+EKdWdukL4=; b=Kq/MzC1Qv6VL0tUhQ58ui/H53vwWsCMROGvbtHpTvB6MmxidflXGY3CaIWoL+5U/7r ZW9F270x399+dOd404XcfRkYx+dCFzzPZrAV4BAKLkJkb9Vo6x62y+830tAbJ2v4la+J 64tuo55sCtsTmxSs4fXNLpYb0W4zVXua3cBMcHU34EbE/keNe892dcWk9CweYyGdlkz5 dDNAQFxsWUKL49dSbxz0WSGlPklmU3rlYKbGlvSrgqRXf1Sm+unUy3vyIFCG/Z51n8xK Phme9PJSMnimN5xa+62OJ5kuISfSeY8Bo7JifJJG9vaz/QMyVpHk2H5L0s4h5G3uDmYP Op2g==; dara=google.com ARC-Authentication-Results: i=2; mx.google.com; arc=pass (i=1 spf=pass spfdomain=astralinux.ru); spf=pass (google.com: domain of linux-kernel+bounces-55407-ouuuleilei=gmail.com@vger.kernel.org designates 147.75.199.223 as permitted sender) smtp.mailfrom="linux-kernel+bounces-55407-ouuuleilei=gmail.com@vger.kernel.org" X-Forwarded-Encrypted: i=1; AJvYcCWFxXhCyR04OY2y/TGoeuh+R1s+AvyGXtAbLi5C4ZyLvRlWssM9gU0FNaZBT5oeYQZAOy7Xnua46dquHORVsjw9pz4+iA== Received: from ny.mirrors.kernel.org (ny.mirrors.kernel.org. [147.75.199.223]) by mx.google.com with ESMTPS id e18-20020ac85dd2000000b0042c38764dffsi1248802qtx.301.2024.02.06.09.40.57 for <ouuuleilei@gmail.com> (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Tue, 06 Feb 2024 09:40:57 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel+bounces-55407-ouuuleilei=gmail.com@vger.kernel.org designates 147.75.199.223 as permitted sender) client-ip=147.75.199.223; Authentication-Results: mx.google.com; arc=pass (i=1 spf=pass spfdomain=astralinux.ru); spf=pass (google.com: domain of linux-kernel+bounces-55407-ouuuleilei=gmail.com@vger.kernel.org designates 147.75.199.223 as permitted sender) smtp.mailfrom="linux-kernel+bounces-55407-ouuuleilei=gmail.com@vger.kernel.org" Received: from smtp.subspace.kernel.org (wormhole.subspace.kernel.org [52.25.139.140]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ny.mirrors.kernel.org (Postfix) with ESMTPS id 9FC4A1C23555 for <ouuuleilei@gmail.com>; Tue, 6 Feb 2024 17:40:57 +0000 (UTC) Received: from localhost.localdomain (localhost.localdomain [127.0.0.1]) by smtp.subspace.kernel.org (Postfix) with ESMTP id 5B76A11CAF; Tue, 6 Feb 2024 17:39:41 +0000 (UTC) Received: from new-mail.astralinux.ru (new-mail.astralinux.ru [51.250.53.244]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 25F02D517; Tue, 6 Feb 2024 17:39:35 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=51.250.53.244 ARC-Seal: i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1707241179; cv=none; b=LP6ZDV1P/XxX98O+wkFQnspEbgfUTWp3EbmAcpmy+FDG+Rks1EWSLXiSldx7xZTNuuDCyoL4FW30C33EnRa0FbioWJH2/2bf53+ls1ZY7AdiPkk/lfRUkGu1UPyXxCmRhsqH15alLvOeBip0+diuoQrqr50oKpiZP5IdboBpGrA= ARC-Message-Signature: i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1707241179; c=relaxed/simple; bh=vRtSngSZ1LHNibkVF1r+Xu2ql+WRcWagH9Pl3kuQI8E=; h=From:To:Cc:Subject:Date:Message-Id:MIME-Version; b=AZ6HI1eNPMHx2fGK16brad3jDiR9k+F7yaSu8eYPnWXlM6RuKzCuPgvmRwgwJBKvo7T3LS913MugKcIIImyFA99dFLH0FDXBjRYcGf3uhqzZS+ZnYc4anm72T2LRX3kxbJAC1AhN4UodJAqOPjpg9JHmYoOVz4y6R9PIDzab3G8= ARC-Authentication-Results: i=1; smtp.subspace.kernel.org; dmarc=none (p=none dis=none) header.from=astralinux.ru; spf=pass smtp.mailfrom=astralinux.ru; arc=none smtp.client-ip=51.250.53.244 Authentication-Results: smtp.subspace.kernel.org; dmarc=none (p=none dis=none) header.from=astralinux.ru Authentication-Results: smtp.subspace.kernel.org; spf=pass smtp.mailfrom=astralinux.ru Received: from rbta-msk-lt-156703.astralinux.ru (unknown [10.177.20.15]) by new-mail.astralinux.ru (Postfix) with ESMTPA id 4TTr8v2zLmzfYwQ; Tue, 6 Feb 2024 20:39:27 +0300 (MSK) From: Alexey Panov <apanov@astralinux.ru> To: stable@vger.kernel.org, Greg Kroah-Hartman <gregkh@linuxfoundation.org> Cc: Alexey Panov <apanov@astralinux.ru>, Eric Dumazet <edumazet@google.com>, Jakub Kicinski <kuba@kernel.org>, Paolo Abeni <pabeni@redhat.com>, Sasha Levin <sashal@kernel.org>, Kuniyuki Iwashima <kuniyu@amazon.com>, Mohamed Khalfella <mkhalfella@purestorage.com>, Pratyush Yadav <ptyadav@amazon.de>, Kees Cook <keescook@chromium.org>, Liang Chen <liangchen.linux@gmail.com>, Marcelo Ricardo Leitner <marcelo.leitner@gmail.com>, netdev@vger.kernel.org, linux-kernel@vger.kernel.org, lvc-project@linuxtesting.org Subject: [PATCH 5.10/5.15/6.1 0/1] net: prevent mss overflow in skb_segment() Date: Tue, 6 Feb 2024 20:38:43 +0300 Message-Id: <20240206173844.30271-1-apanov@astralinux.ru> X-Mailer: git-send-email 2.30.2 Precedence: bulk X-Mailing-List: linux-kernel@vger.kernel.org List-Id: <linux-kernel.vger.kernel.org> List-Subscribe: <mailto:linux-kernel+subscribe@vger.kernel.org> List-Unsubscribe: <mailto:linux-kernel+unsubscribe@vger.kernel.org> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit X-DrWeb-SpamScore: -100 X-DrWeb-SpamState: legit X-DrWeb-SpamDetail: gggruggvucftvghtrhhoucdtuddrgedvfedrvdehuddgtddvucetufdoteggodetrfcurfhrohhfihhlvgemucfftfghgfeunecuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivghnthhsucdlqddutddtmdenucfjughrpefhvfevufffkffoggfgsedtkeertdertddtnecuhfhrohhmpeetlhgvgigvhicurfgrnhhovhcuoegrphgrnhhovhesrghsthhrrghlihhnuhigrdhruheqnecuggftrfgrthhtvghrnhepudehuefgveehffekleekleetteefvedtveeujeekvdetjedvtdeuueetjedtleeunecuffhomhgrihhnpehlihhnuhigthgvshhtihhnghdrohhrghenucfkphepuddtrddujeejrddvtddrudehnecurfgrrhgrmhephhgvlhhopehrsghtrgdqmhhskhdqlhhtqdduheeijedtfedrrghsthhrrghlihhnuhigrdhruhdpihhnvghtpedutddrudejjedrvddtrdduheemgeehjeegvddpmhgrihhlfhhrohhmpegrphgrnhhovhesrghsthhrrghlihhnuhigrdhruhdpnhgspghrtghpthhtohepudeipdhrtghpthhtohepshhtrggslhgvsehvghgvrhdrkhgvrhhnvghlrdhorhhgpdhrtghpthhtohepghhrvghgkhhhsehlihhnuhigfhhouhhnuggrthhiohhnrdhorhhgpdhrtghpthhtoheprghprghnohhvsegrshhtrhgrlhhinhhugidrrhhupdhrtghpthhtohepvgguuhhmrgiivghtsehgohhoghhlvgdrtghomhdprhgtphhtthhopehkuhgsrgeskhgvrhhnvghlrdhorhhgpd hrtghpthhtohepphgrsggvnhhisehrvgguhhgrthdrtghomhdprhgtphhtthhopehsrghshhgrlheskhgvrhhnvghlrdhorhhgpdhrtghpthhtohepkhhunhhihihusegrmhgriihonhdrtghomhdprhgtphhtthhopehmkhhhrghlfhgvlhhlrgesphhurhgvshhtohhrrghgvgdrtghomhdprhgtphhtthhopehpthihrggurghvsegrmhgriihonhdruggvpdhrtghpthhtohepkhgvvghstghoohhksegthhhrohhmihhumhdrohhrghdprhgtphhtthhopehlihgrnhhgtghhvghnrdhlihhnuhigsehgmhgrihhlrdgtohhmpdhrtghpthhtohepmhgrrhgtvghlohdrlhgvihhtnhgvrhesghhmrghilhdrtghomhdprhgtphhtthhopehnvghtuggvvhesvhhgvghrrdhkvghrnhgvlhdrohhrghdprhgtphhtthhopehlihhnuhigqdhkvghrnhgvlhesvhhgvghrrdhkvghrnhgvlhdrohhrghdprhgtphhtthhopehlvhgtqdhprhhojhgvtghtsehlihhnuhigthgvshhtihhnghdrohhrgh X-DrWeb-SpamVersion: Vade Retro 01.423.251#02 AS+AV+AP Profile: DRWEB; Bailout: 300 X-AntiVirus: Checked by Dr.Web [MailD: 11.1.19.2307031128, SE: 11.1.12.2210241838, Core engine: 7.00.61.08090, Virus records: 12326436, Updated: 2024-Feb-06 16:36:35 UTC] X-getmail-retrieved-from-mailbox: INBOX X-GMAIL-THRID: 1790172209040428360 X-GMAIL-MSGID: 1790172209040428360 |
Series |
net: prevent mss overflow in skb_segment()
|
|
Message
Alexey Panov
Feb. 6, 2024, 5:38 p.m. UTC
Syzkaller reports NULL pointer dereference issue at skb_segment() in 5.10/5.15/6.1 stable releases. The problem has been fixed by the following patch which can be cleanly applied to 5.10/5.15/6.1 branches. Found by Linux Verification Center (linuxtesting.org) with Syzkaller.