Reminder: 2 open syzbot bugs in "security/tomoyo" subsystem

Tetsuo Handa penguin-kernel at i-love.sakura.ne.jp
Wed Jul 24 03:18:47 UTC 2019


On 2019/07/24 11:42, Eric Biggers wrote:
> --------------------------------------------------------------------------------
> Title:              KASAN: use-after-free Read in tomoyo_realpath_from_path
> Last occurred:      28 days ago
> Reported:           48 days ago
> Branches:           Mainline and others
> Dashboard link:     https://syzkaller.appspot.com/bug?id=73d590010454403d55164cca23bd0565b1eb3b74
> Original thread:    https://lkml.kernel.org/lkml/0000000000004f43fa058a97f4d3@google.com/T/#u

A patch is available, but I can't find a chance to setup my git tree for sending
a pull request for the patch.

> --------------------------------------------------------------------------------
> Title:              KASAN: invalid-free in tomoyo_realpath_from_path
> Last occurred:      57 days ago
> Reported:           56 days ago
> Branches:           net-next
> Dashboard link:     https://syzkaller.appspot.com/bug?id=e9e5a1d41c3fb5d0f79aeea0e4cd535f160a6702
> Original thread:    https://lkml.kernel.org/lkml/000000000000785e9d0589ec359a@google.com/T/#u

This cannot be a TOMOYO's bug. We are waiting for a reproducer but
no crash occurred since then. Maybe it is time to close as invalid.



More information about the Linux-security-module-archive mailing list