[v6.1] WARNING in ieee80211_probe_client

0 views
Skip to first unread message

syzbot

unread,
Aug 16, 2023, 11:57:02 AM8/16/23
to syzkaller...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 1321ab403b38 Linux 6.1.45
git tree: linux-6.1.y
console output: https://syzkaller.appspot.com/x/log.txt?x=15568f03a80000
kernel config: https://syzkaller.appspot.com/x/.config?x=98e020fdb0f6ab0f
dashboard link: https://syzkaller.appspot.com/bug?extid=cab91082f3f67536d48a
compiler: Debian clang version 15.0.6, GNU ld (GNU Binutils for Debian) 2.40
userspace arch: arm64

Unfortunately, I don't have any reproducer for this issue yet.

Downloadable assets:
disk image: https://storage.googleapis.com/syzbot-assets/3b9d65a68f82/disk-1321ab40.raw.xz
vmlinux: https://storage.googleapis.com/syzbot-assets/afca87deee2c/vmlinux-1321ab40.xz
kernel image: https://storage.googleapis.com/syzbot-assets/c93e18288863/Image-1321ab40.gz.xz

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+cab910...@syzkaller.appspotmail.com

------------[ cut here ]------------
WARNING: CPU: 1 PID: 2024 at net/mac80211/cfg.c:3995 ieee80211_probe_client+0x54c/0x6a8
Modules linked in:
CPU: 1 PID: 2024 Comm: syz-executor.3 Not tainted 6.1.45-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 07/12/2023
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : ieee80211_probe_client+0x54c/0x6a8
lr : ieee80211_probe_client+0x548/0x6a8 net/mac80211/cfg.c:3995
sp : ffff800021987150
x29: ffff800021987180 x28: ffff0000d13f8e00 x27: ffff800021987260
x26: ffff0000d13faa40 x25: 0000000000000000 x24: ffff0000d1602420
x23: ffff0000f83baad0 x22: ffff0000f83b8000 x21: dfff800000000000
x20: 00000000ffffffea x19: ffff0000f83b9590 x18: ffff800021986c80
x17: 00000000ffff0000 x16: ffff8000084fce08 x15: 0000000000023910
x14: 1ffff00002b140b0 x13: dfff800000000000 x12: 0000000000040000
x11: 000000000000150a x10: ffff8000286ce000 x9 : ffff800011a1e4a0
x8 : 000000000000150b x7 : ffff800011a24284 x6 : 0000000000000000
x5 : 0000000000000000 x4 : 0000000000000000 x3 : 0000000000000002
x2 : 0000000000000008 x1 : 0000000000000001 x0 : 0000000000000000
Call trace:
ieee80211_probe_client+0x54c/0x6a8
rdev_probe_client net/wireless/rdev-ops.h:934 [inline]
nl80211_probe_client+0x360/0x8b4 net/wireless/nl80211.c:13891
genl_family_rcv_msg_doit net/netlink/genetlink.c:756 [inline]
genl_family_rcv_msg net/netlink/genetlink.c:833 [inline]
genl_rcv_msg+0x948/0xc2c net/netlink/genetlink.c:850
netlink_rcv_skb+0x20c/0x3b8 net/netlink/af_netlink.c:2525
genl_rcv+0x38/0x50 net/netlink/genetlink.c:861
netlink_unicast_kernel net/netlink/af_netlink.c:1328 [inline]
netlink_unicast+0x660/0x8d4 net/netlink/af_netlink.c:1354
netlink_sendmsg+0x834/0xb18 net/netlink/af_netlink.c:1903
sock_sendmsg_nosec net/socket.c:716 [inline]
sock_sendmsg net/socket.c:736 [inline]
____sys_sendmsg+0x558/0x844 net/socket.c:2482
___sys_sendmsg net/socket.c:2536 [inline]
__sys_sendmsg+0x26c/0x33c net/socket.c:2565
__do_sys_sendmsg net/socket.c:2574 [inline]
__se_sys_sendmsg net/socket.c:2572 [inline]
__arm64_sys_sendmsg+0x80/0x94 net/socket.c:2572
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2c0 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x64/0x218 arch/arm64/kernel/syscall.c:206
el0_svc+0x58/0x168 arch/arm64/kernel/entry-common.c:637
el0t_64_sync_handler+0x84/0xf0 arch/arm64/kernel/entry-common.c:655
el0t_64_sync+0x18c/0x190 arch/arm64/kernel/entry.S:581
irq event stamp: 1728
hardirqs last enabled at (1727): [<ffff8000121f7464>] __raw_spin_unlock_irqrestore include/linux/spinlock_api_smp.h:151 [inline]
hardirqs last enabled at (1727): [<ffff8000121f7464>] _raw_spin_unlock_irqrestore+0x48/0xac kernel/locking/spinlock.c:194
hardirqs last disabled at (1728): [<ffff800012112c3c>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:405
softirqs last enabled at (1716): [<ffff800010406040>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:32
softirqs last disabled at (1710): [<ffff80001040600c>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:19
---[ end trace 0000000000000000 ]---


---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

If the bug is already fixed, let syzbot know by replying with:
#syz fix: exact-commit-title

If you want to overwrite bug's subsystems, reply with:
#syz set subsystems: new-subsystem
(See the list of subsystem names on the web dashboard)

If the bug is a duplicate of another bug, reply with:
#syz dup: exact-subject-of-another-report

If you want to undo deduplication, reply with:
#syz undup

syzbot

unread,
Nov 24, 2023, 10:57:17 AM11/24/23
to syzkaller...@googlegroups.com
Auto-closing this bug as obsolete.
Crashes did not happen for a while, no reproducer and no activity.
Reply all
Reply to author
Forward
0 new messages