WARNING in crypto_wait_for_test

8 views
Skip to first unread message

syzbot

unread,
Apr 12, 2019, 8:00:37 PM4/12/19
to syzkaller-a...@googlegroups.com
Hello,

syzbot found the following crash on:

HEAD commit: d891a624
git tree: android-4.4
console output: https://syzkaller.appspot.com/x/log.txt?x=11ad7d51800000
kernel config: https://syzkaller.appspot.com/x/.config?x=44509e3077d6939
dashboard link: https://syzkaller.appspot.com/bug?extid=8a1d83592b6b297098b3
compiler: gcc (GCC) 7.1.1 20170620
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=129014c9800000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=1199c351800000

IMPORTANT: if you fix the bug, please add the following tag to the commit:
Reported-by: syzbot+8a1d83...@syzkaller.appspotmail.com

IPVS: Creating netns size=2552 id=1
------------[ cut here ]------------
WARNING: CPU: 0 PID: 3342 at crypto/algapi.c:343
crypto_wait_for_test+0xbb/0xd0 crypto/algapi.c:343()
Kernel panic - not syncing: panic_on_warn set ...

CPU: 0 PID: 3342 Comm: syzkaller057576 Not tainted 4.4.110-gd891a62 #19
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
0000000000000000 8b02bd668cf6cfa6 ffff8801cfceef00 ffffffff81d04e3d
ffffffff83842f60 ffff8801cfceefd8 ffffffff839dacc0 0000000000000009
0000000000000157 ffff8801cfceefc8 ffffffff814197fa 0000000041b58ab3
Call Trace:
[<ffffffff81d04e3d>] __dump_stack lib/dump_stack.c:15 [inline]
[<ffffffff81d04e3d>] dump_stack+0xc1/0x124 lib/dump_stack.c:51
[<ffffffff814197fa>] panic+0x1aa/0x388 kernel/panic.c:112
[<ffffffff8112d725>] warn_slowpath_common+0x125/0x140 kernel/panic.c:455
[<ffffffff8112d989>] warn_slowpath_null+0x29/0x30 kernel/panic.c:492
[<ffffffff81bd6e5b>] crypto_wait_for_test+0xbb/0xd0 crypto/algapi.c:343
[<ffffffff81bd7137>] crypto_register_instance+0x1f7/0x2d0
crypto/algapi.c:559
[<ffffffff81bdd933>] crypto_givcipher_default+0x483/0x5d0
crypto/ablkcipher.c:601
[<ffffffff81bddc29>] crypto_lookup_skcipher+0x1a9/0x2a0
crypto/ablkcipher.c:658
[<ffffffff81bdde2e>] crypto_alloc_ablkcipher+0x5e/0x190
crypto/ablkcipher.c:693
[<ffffffff810fd028>] rfc4106_set_hash_subkey
arch/x86/crypto/aesni-intel_glue.c:836 [inline]
[<ffffffff810fd028>] common_rfc4106_set_key+0x118/0x630
arch/x86/crypto/aesni-intel_glue.c:900
[<ffffffff81bd946a>] crypto_aead_setkey+0xaa/0x1c0 crypto/aead.c:60
[<ffffffff81c14081>] cryptd_aead_setkey+0x41/0x50 crypto/cryptd.c:678
[<ffffffff81bd9522>] setkey_unaligned crypto/aead.c:46 [inline]
[<ffffffff81bd9522>] crypto_aead_setkey+0x162/0x1c0 crypto/aead.c:58
[<ffffffff810fc811>] rfc4106_set_key+0x41/0x50
arch/x86/crypto/aesni-intel_glue.c:910
[<ffffffff81bd946a>] crypto_aead_setkey+0xaa/0x1c0 crypto/aead.c:60
[<ffffffff81bd95c7>] aead_geniv_setkey+0x47/0x60 crypto/aead.c:180
[<ffffffff81bd946a>] crypto_aead_setkey+0xaa/0x1c0 crypto/aead.c:60
[<ffffffff833e847a>] esp_init_aead net/ipv6/esp6.c:514 [inline]
[<ffffffff833e847a>] esp6_init_state+0x20a/0xf50 net/ipv6/esp6.c:632
[<ffffffff832c26b7>] __xfrm_init_state+0x3e7/0xb30
net/xfrm/xfrm_state.c:2058
[<ffffffff832e1536>] xfrm_state_construct net/xfrm/xfrm_user.c:590 [inline]
[<ffffffff832e1536>] xfrm_add_sa+0x1916/0x2e40 net/xfrm/xfrm_user.c:636
[<ffffffff832d1a9c>] xfrm_user_rcv_msg+0x41c/0x6b0
net/xfrm/xfrm_user.c:2525
[<ffffffff82f8c3be>] netlink_rcv_skb+0x13e/0x370
net/netlink/af_netlink.c:2349
[<ffffffff832cdfcf>] xfrm_netlink_rcv+0x6f/0x90 net/xfrm/xfrm_user.c:2533
[<ffffffff82f8af42>] netlink_unicast_kernel net/netlink/af_netlink.c:1267
[inline]
[<ffffffff82f8af42>] netlink_unicast+0x522/0x760
net/netlink/af_netlink.c:1293
[<ffffffff82f8ba68>] netlink_sendmsg+0x8e8/0xc50
net/netlink/af_netlink.c:1847
[<ffffffff82ded6da>] sock_sendmsg_nosec net/socket.c:625 [inline]
[<ffffffff82ded6da>] sock_sendmsg+0xca/0x110 net/socket.c:635
[<ffffffff82def2b1>] ___sys_sendmsg+0x6c1/0x7c0 net/socket.c:1962
[<ffffffff82df1303>] __sys_sendmsg+0xd3/0x190 net/socket.c:1996
[<ffffffff82df13ed>] SYSC_sendmsg net/socket.c:2007 [inline]
[<ffffffff82df13ed>] SyS_sendmsg+0x2d/0x50 net/socket.c:2003
[<ffffffff837755d9>] entry_SYSCALL_64_fastpath+0x16/0x92
Dumping ftrace buffer:
(ftrace buffer empty)
Kernel Offset: disabled
Rebooting in 86400 seconds..


---
This bug is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this bug report. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.
syzbot can test patches for this bug, for details see:
https://goo.gl/tpsmEJ#testing-patches
Reply all
Reply to author
Forward
0 new messages