Comment 4 for bug 2065839

Revision history for this message
Thorsten Hirsch (t-hirsch) wrote :

Still happens with the latest kernel.

```
[ 15.027316] ------------[ cut here ]------------
[ 15.027323] UBSAN: array-index-out-of-bounds in /var/lib/dkms/broadcom-sta/6.30.223.271/build/src/wl/sys/wl_linux.c:1935:4
[ 15.027329] index 2 is out of range for type 'ether_addr [1]'
[ 15.027333] CPU: 3 PID: 63 Comm: kworker/3:1 Tainted: P OE 6.8.0-35-generic #35-Ubuntu
[ 15.027336] Hardware name: Apple Inc. MacBookPro11,1/Mac-189A3D4F975D5FFC, BIOS 478.0.0.0.0 01/13/2023
[ 15.027339] Workqueue: ipv6_addrconf addrconf_dad_work
[ 15.027346] Call Trace:
[ 15.027348] <TASK>
[ 15.027351] dump_stack_lvl+0x48/0x70
[ 15.027360] dump_stack+0x10/0x20
[ 15.027364] __ubsan_handle_out_of_bounds+0xc6/0x110
[ 15.027369] _wl_set_multicast_list+0x211/0x230 [wl]
[ 15.027448] wl_set_multicast_list+0x3a/0xa0 [wl]
[ 15.027522] __dev_set_rx_mode+0x79/0xe0
[ 15.027528] __dev_mc_add+0x94/0xa0
[ 15.027532] dev_mc_add+0x10/0x20
[ 15.027535] igmp6_group_added+0xe0/0x100
[ 15.027541] __ipv6_dev_mc_inc+0x27d/0x400
[ 15.027545] ipv6_dev_mc_inc+0x10/0x20
[ 15.027549] addrconf_dad_work+0xaa/0x510
[ 15.027553] process_one_work+0x16f/0x350
[ 15.027560] worker_thread+0x306/0x440
[ 15.027564] ? _raw_spin_lock_irqsave+0xe/0x20
[ 15.027569] ? __pfx_worker_thread+0x10/0x10
[ 15.027573] kthread+0xf2/0x120
[ 15.027577] ? __pfx_kthread+0x10/0x10
[ 15.027580] ret_from_fork+0x47/0x70
[ 15.027583] ? __pfx_kthread+0x10/0x10
[ 15.027587] ret_from_fork_asm+0x1b/0x30
[ 15.027592] </TASK>
[ 15.027639] ---[ end trace ]---
```