Page MenuHomeFreeBSD

Avoid overflow in vtruncbuf()
ClosedPublic

Authored by tuexen on Jan 6 2019, 9:33 PM.

Details

Summary

When running the attached test program, the kernel panics due to trunclbn becoming negative. Therefore use a larger type (int64_t).

This issue was found by running syzkaller.

Test Plan

Run the attached test program.

Diff Detail

Repository
rS FreeBSD src repository
Lint
Automatic diff as part of commit; lint not applicable.
Unit
Automatic diff as part of commit; unit tests not applicable.

Event Timeline

tuexen created this revision.Jan 6 2019, 9:33 PM
kib accepted this revision.Jan 6 2019, 9:51 PM
This revision is now accepted and ready to land.Jan 6 2019, 9:51 PM
markj accepted this revision.Jan 6 2019, 10:11 PM
mckusick accepted this revision.Jan 6 2019, 11:26 PM
This revision was automatically updated to reflect the committed changes.