Hello,
syzbot found the following issue on:
HEAD commit: 501eec4f9e13 Linux 4.14.281
git tree: linux-4.14.y
console output:
https://syzkaller.appspot.com/x/log.txt?x=136e90edf00000
kernel config:
https://syzkaller.appspot.com/x/.config?x=f1fa63ddcfc7168c
dashboard link:
https://syzkaller.appspot.com/bug?extid=ebf8b58ad8a5ad6dbb68
compiler: gcc version 10.2.1 20210110 (Debian 10.2.1-6)
Unfortunately, I don't have any reproducer for this issue yet.
IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by:
syzbot+ebf8b5...@syzkaller.appspotmail.com
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.2'.
tmpfs: Bad value 'local:' for mount option 'mpol'
INFO: trying to register non-static key.
the code is fine but needs lockdep annotation.
netlink: 4 bytes leftover after parsing attributes in process `syz-executor.3'.
turning off the locking correctness validator.
CPU: 0 PID: 12730 Comm: syz-executor.0 Not tainted 4.14.281-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011
Call Trace:
__dump_stack lib/dump_stack.c:17 [inline]
dump_stack+0x1b2/0x281 lib/dump_stack.c:58
register_lock_class+0x389/0x1180 kernel/locking/lockdep.c:768
__lock_acquire+0x167/0x3f20 kernel/locking/lockdep.c:3378
Restarting kernel threads ...
lock_acquire+0x170/0x3f0 kernel/locking/lockdep.c:3998
done.
flush_work+0xad/0x770 kernel/workqueue.c:2890
__cancel_work_timer+0x321/0x460 kernel/workqueue.c:2965
smc_close_active+0x7e2/0xbb0 net/smc/smc_close.c:207
smc_release+0x3e1/0x5d0 net/smc/af_smc.c:131
__sock_release+0xcd/0x2b0 net/socket.c:602
sock_close+0x15/0x20 net/socket.c:1139
__fput+0x25f/0x7a0 fs/file_table.c:210
task_work_run+0x11f/0x190 kernel/task_work.c:113
tracehook_notify_resume include/linux/tracehook.h:191 [inline]
exit_to_usermode_loop+0x1ad/0x200 arch/x86/entry/common.c:164
prepare_exit_to_usermode arch/x86/entry/common.c:199 [inline]
syscall_return_slowpath arch/x86/entry/common.c:270 [inline]
do_syscall_64+0x4a3/0x640 arch/x86/entry/common.c:297
entry_SYSCALL_64_after_hwframe+0x46/0xbb
RIP: 0033:0x7f8e2949ad4b
RSP: 002b:00007fffca7e3d60 EFLAGS: 00000293 ORIG_RAX: 0000000000000003
RAX: 0000000000000000 RBX: 0000000000000004 RCX: 00007f8e2949ad4b
RDX: 00007f8e295ff1b0 RSI: ffffffffffffffff RDI: 0000000000000003
RBP: 00007f8e295fc960 R08: 0000000000000000 R09: 00007f8e295ff1b8
R10: 00007fffca7e3e60 R11: 0000000000000293 R12: 00000000000226f1
R13: 00007fffca7e3e60 R14: 00007f8e295faf60 R15: 0000000000000032
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.2'.
netlink: 4 bytes leftover after parsing attributes in process `syz-executor.3'.
Restarting kernel threads ... done.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.2'.
netlink: 4 bytes leftover after parsing attributes in process `syz-executor.4'.
netlink: 4 bytes leftover after parsing attributes in process `syz-executor.3'.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.2'.
netlink: 4 bytes leftover after parsing attributes in process `syz-executor.5'.
Restarting kernel threads ... done.
netlink: 4 bytes leftover after parsing attributes in process `syz-executor.3'.
Restarting kernel threads ... done.
Restarting kernel threads ... done.
Restarting kernel threads ... done.
Restarting kernel threads ... done.
Restarting kernel threads ... done.
Restarting kernel threads ... done.
Bluetooth: hci5 command 0x0405 tx timeout
nla_parse: 13 callbacks suppressed
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.1'.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.1'.
IPVS: ftp: loaded support on port[0] = 21
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.1'.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.1'.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.1'.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.5'.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.5'.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.1'.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.5'.
netlink: 24 bytes leftover after parsing attributes in process `syz-executor.1'.
bridge0: port 2(bridge_slave_1) entered disabled state
bridge0: port 1(bridge_slave_0) entered disabled state
batman_adv: batadv0: Interface deactivated: batadv_slave_0
batman_adv: batadv0: Interface deactivated: batadv_slave_1
bridge0: port 2(bridge_slave_1) entered disabled state
bridge0: port 1(bridge_slave_0) entered disabled state
---
This report is generated by a bot. It may contain errors.
See
https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at
syzk...@googlegroups.com.
syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.