Hello,
syzbot found the following issue on:
HEAD commit: d9b4a0c83a2d Linux 5.15.98
git tree: linux-5.15.y
console output:
https://syzkaller.appspot.com/x/log.txt?x=124c56a2c80000
kernel config:
https://syzkaller.appspot.com/x/.config?x=b57cfa804330c3b7
dashboard link:
https://syzkaller.appspot.com/bug?extid=f2c2d48314c03db2596d
compiler: Debian clang version 15.0.7, GNU ld (GNU Binutils for Debian) 2.35.2
userspace arch: arm64
Unfortunately, I don't have any reproducer for this issue yet.
Downloadable assets:
disk image:
https://storage.googleapis.com/syzbot-assets/8088989394e3/disk-d9b4a0c8.raw.xz
vmlinux:
https://storage.googleapis.com/syzbot-assets/2651d6753959/vmlinux-d9b4a0c8.xz
kernel image:
https://storage.googleapis.com/syzbot-assets/f3fa3f994f9a/Image-d9b4a0c8.gz.xz
IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by:
syzbot+f2c2d4...@syzkaller.appspotmail.com
------------[ cut here ]------------
WARNING: CPU: 0 PID: 1602 at net/mac80211/ibss.c:503 ieee80211_ibss_csa_beacon+0x498/0x530
Modules linked in:
CPU: 0 PID: 1602 Comm: kworker/u4:6 Not tainted 5.15.98-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 03/02/2023
Workqueue: phy14 ieee80211_iface_work
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : ieee80211_ibss_csa_beacon+0x498/0x530
lr : ieee80211_ibss_csa_beacon+0x494/0x530 net/mac80211/ibss.c:503
sp : ffff800020de7360
x29: ffff800020de7380 x28: 1fffe0002053f251 x27: dfff800000000000
x26: 0000000000000000 x25: ffff000102a585c0 x24: 0000000000000000
x23: ffff0001029f9288 x22: ffff0001029f9b18 x21: 0000000000000002
x20: ffff0001029f8c80 x19: ffff800020de7620 x18: 0000000000000201
x17: ff8080001116b53c x16: ffff8000084c28f4 x15: ffff80001116b53c
x14: 0000000000000003 x13: ffffffffffffffff x12: 0000000000040000
x11: 0000000000001a4e x10: ffff800025046000 x9 : ffff80001131d700
x8 : 0000000000001a4f x7 : 0000000000000000 x6 : 0000000000000000
x5 : 0000000000000020 x4 : 0000000000000000 x3 : ffff800008046698
x2 : 0000000000000006 x1 : ffff800011acb5e0 x0 : 00000000ffffffea
Call trace:
ieee80211_ibss_csa_beacon+0x498/0x530
ieee80211_set_csa_beacon net/mac80211/cfg.c:3374 [inline]
__ieee80211_channel_switch net/mac80211/cfg.c:3504 [inline]
ieee80211_channel_switch+0x1264/0x21f4 net/mac80211/cfg.c:3542
ieee80211_ibss_process_chanswitch+0x9ec/0xd60 net/mac80211/ibss.c:892
ieee80211_rx_mgmt_spectrum_mgmt net/mac80211/ibss.c:931 [inline]
ieee80211_ibss_rx_queued_mgmt+0xf60/0x26d0 net/mac80211/ibss.c:1667
ieee80211_iface_process_skb net/mac80211/iface.c:1441 [inline]
ieee80211_iface_work+0x5b4/0xa80 net/mac80211/iface.c:1495
process_one_work+0x82c/0x1478 kernel/workqueue.c:2306
worker_thread+0x910/0x1034 kernel/workqueue.c:2453
kthread+0x37c/0x45c kernel/kthread.c:319
ret_from_fork+0x10/0x20 <unknown>:870
irq event stamp: 14544032
hardirqs last enabled at (14544031): [<ffff8000081b7c94>] __local_bh_enable_ip+0x258/0x4d0 kernel/softirq.c:388
hardirqs last disabled at (14544032): [<ffff800011976650>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:387
softirqs last enabled at (14544030): [<ffff80001116b9e8>] spin_unlock_bh include/linux/spinlock.h:408 [inline]
softirqs last enabled at (14544030): [<ffff80001116b9e8>] cfg80211_get_bss+0x7a8/0xc28 net/wireless/scan.c:1473
softirqs last disabled at (14544028): [<ffff80001116b428>] spin_lock_bh include/linux/spinlock.h:368 [inline]
softirqs last disabled at (14544028): [<ffff80001116b428>] cfg80211_get_bss+0x1e8/0xc28 net/wireless/scan.c:1447
---[ end trace 70ad25f1bf94ab9d ]---
wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50