[PATCH 4.19.y-cip 0/6] Backport netfilter: nf_tables: autoload modules from the abort path


Fong, Amy
 

The following series backports netfilter: nf_tables: autoload modules from abort path
which fixes the bug mentioned in the following:

https://syzkaller.appspot.com/bug?extid=437bf61d165c87bd40fb


----

BUG: corrupted list in __nf_tables_abort
Status: fixed on 2020/03/17 22:09
Reported-by: syzbot+437bf61d165c87bd40fb@...
Fix commit: eb014de4fd41 netfilter: nf_tables: autoload modules from the abort path
First crash: 717d, last: 710d

Cause bisection: introduced by (bisect log) :
commit ec7470b834fe7b5d7eff11b6677f5d7fdf5e9a91
Author: Pablo Neira Ayuso <pablo@...>
Date: Mon Jan 13 17:09:58 2020 +0000

netfilter: nf_tables: store transaction list locally while requesting module

Crash: KASAN: use-after-free Read in __nf_tables_abort (log)
Repro: C syz .config

Fix bisection: fixed by (bisect log) :
commit 34682110abc50ffea7e002b0c2fd7ea9e0000ccc
Author: Max Chou <max.chou@...>
Date: Wed Nov 27 03:01:07 2019 +0000

Bluetooth: btusb: Edit the logical value for Realtek Bluetooth reset

Join cip-dev@lists.cip-project.org to automatically receive all group messages.