syzbot has found a reproducer for the following issue on:
HEAD commit: 0c935c049b5c Linux 5.15.179
git tree: linux-5.15.y
console output:
https://syzkaller.appspot.com/x/log.txt?x=11f75e98580000
syz repro:
https://syzkaller.appspot.com/x/repro.syz?x=165bcc4c580000
C reproducer:
https://syzkaller.appspot.com/x/repro.c?x=14881c4c580000
mounted in repro:
https://storage.googleapis.com/syzbot-assets/1251662b76eb/mount_0.gz
fsck result: failed (log:
https://syzkaller.appspot.com/x/fsck.log?x=125bcc4c580000)
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 0 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 0 PID: 4025 Comm: syz-executor206 Not tainted 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be1f436 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df0fa1b0 x19: ffff0000df0fa168 x18: 1fffe0003682e78e
x17: 1fffe0003682e78e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 0000000000000028
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 0000000000000028
x5 : ffff0000df0fa1f0 x4 : ffff0000df0f81c0 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 17994
hardirqs last enabled at (17993): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (17994): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (17760): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (17758): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbde1 ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 0 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 0 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be1f76e x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df0fbb70 x19: ffff0000df0fbb28 x18: 1fffe0003682e78e
x17: 1fffe0003682e78e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 0000000000000028
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 0000000000000028
x5 : ffff0000df0fbbb0 x4 : ffff0000df3401c0 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 23770
hardirqs last enabled at (23769): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (23770): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (23618): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (23616): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbde2 ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 0 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 0 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be1faa6 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df0fd530 x19: ffff0000df0fd4e8 x18: 1fffe0003682e78e
x17: 1fffe0003682e78e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 0000000000000028
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 0000000000000028
x5 : ffff0000df0fd570 x4 : ffff0000df340ea0 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 29004
hardirqs last enabled at (29003): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (29004): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (28840): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (28838): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbde3 ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 0 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 0 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be21030 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df108180 x19: ffff0000df108138 x18: 1fffe0003682e78e
x17: 1fffe0003682e78e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 0000000000000028
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 0000000000000028
x5 : ffff0000df1081c0 x4 : ffff0000df0fdbe0 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 33798
hardirqs last enabled at (33797): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (33798): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (33688): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (33686): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbde4 ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 1 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 1 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be686a0 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df343500 x19: ffff0000df3434b8 x18: 1fffe0003683298e
x17: 1fffe0003683298e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 0000000000000029
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 0000000000000029
x5 : ffff0000df343540 x4 : ffff0000df108830 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 39710
hardirqs last enabled at (39709): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (39710): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (39644): [<ffff8000081b70b8>] softirq_handle_end kernel/softirq.c:401 [inline]
softirqs last enabled at (39644): [<ffff8000081b70b8>] handle_softirqs+0xb88/0xdbc kernel/softirq.c:586
softirqs last disabled at (39573): [<ffff8000081b7750>] __do_softirq kernel/softirq.c:592 [inline]
softirqs last disabled at (39573): [<ffff8000081b7750>] do_softirq_own_stack include/asm-generic/softirq_stack.h:10 [inline]
softirqs last disabled at (39573): [<ffff8000081b7750>] invoke_softirq kernel/softirq.c:439 [inline]
softirqs last disabled at (39573): [<ffff8000081b7750>] __irq_exit_rcu+0x268/0x4d8 kernel/softirq.c:641
---[ end trace 2961a4c42adbbde5 ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 1 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 1 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be689d8 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df344ec0 x19: ffff0000df344e78 x18: 1fffe0003683298e
x17: 1fffe0003683298e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 0000000000000029
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 0000000000000029
x5 : ffff0000df344f00 x4 : ffff0000df108ea0 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 44990
hardirqs last enabled at (44989): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (44990): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (44830): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (44828): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbde6 ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 1 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 1 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be68eac x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df347560 x19: ffff0000df347518 x18: 1fffe0003683298e
x17: 1fffe0003683298e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 0000000000000029
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 0000000000000029
x5 : ffff0000df3475a0 x4 : ffff0000df345570 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 50166
hardirqs last enabled at (50165): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (50166): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (49998): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (49996): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbde7 ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 1 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 1 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be79436 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df3ca1b0 x19: ffff0000df3ca168 x18: 1fffe0003683298e
x17: 1fffe0003683298e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 0000000000000029
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 0000000000000029
x5 : ffff0000df3ca1f0 x4 : ffff0000df3c81c0 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 55482
hardirqs last enabled at (55481): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (55482): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (55316): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (55314): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbde8 ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 0 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 0 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be2176e x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df10bb70 x19: ffff0000df10bb28 x18: 1fffe0003682e78e
x17: 1fffe0003682e78e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 000000000000002a
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 000000000000002a
x5 : ffff0000df10bbb0 x4 : ffff0000df109b80 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 60708
hardirqs last enabled at (60707): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (60708): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (60540): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (60538): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbde9 ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 0 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 0 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be21b74 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df10dba0 x19: ffff0000df10db58 x18: 1fffe0003682e78e
x17: 1fffe0003682e78e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 000000000000002a
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 000000000000002a
x5 : ffff0000df10dbe0 x4 : ffff0000df10c220 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 65812
hardirqs last enabled at (65811): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (65812): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (65646): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (65644): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbdea ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 1 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 1 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be799d8 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df3ccec0 x19: ffff0000df3cce78 x18: 1fffe0003683298e
x17: 1fffe0003683298e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 000000000000002a
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 000000000000002a
x5 : ffff0000df3ccf00 x4 : ffff0000df3caed0 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 71328
hardirqs last enabled at (71327): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (71328): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (71182): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (71180): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbdeb ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 1 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 1 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be79eac x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df3cf560 x19: ffff0000df3cf518 x18: 1fffe0003683298e
x17: 1fffe0003683298e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 000000000000002b
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 000000000000002b
x5 : ffff0000df3cf5a0 x4 : ffff0000df3cd570 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 76524
hardirqs last enabled at (76523): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (76524): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (76364): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (76362): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbdec ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 0 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 0 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be21eac x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df10f560 x19: ffff0000df10f518 x18: 1fffe0003682e78e
x17: 1fffe0003682e78e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 000000000000002b
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 000000000000002b
x5 : ffff0000df10f5a0 x4 : ffff0000df3081c0 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 81586
hardirqs last enabled at (81585): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (81586): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (81422): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (81420): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbded ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 1 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 1 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be615d2 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df30ae90 x19: ffff0000df30ae48 x18: 1fffe0003683298e
x17: 1fffe0003683298e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 000000000000002b
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 000000000000002b
x5 : ffff0000df30aed0 x4 : ffff0000df308ea0 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 87106
hardirqs last enabled at (87105): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (87106): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (86948): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (86946): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbdee ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 30
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 31
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 32
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 33
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 34
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 35
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294965504
EXT2-fs (loop0): error: ext2_free_branches: Read failure, inode=16, block=4294967295
------------[ cut here ]------------
WARNING: CPU: 1 PID: 4025 at fs/inode.c:332 drop_nlink+0xe8/0x148 fs/inode.c:332
Modules linked in:
CPU: 1 PID: 4025 Comm: syz-executor206 Tainted: G W 5.15.179-syzkaller #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025
pstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)
pc : drop_nlink+0xe8/0x148 fs/inode.c:332
lr : drop_nlink+0xe8/0x148 fs/inode.c:332
sp : ffff80001d1a7a00
x29: ffff80001d1a7a00 x28: 1ffff00003a34f50 x27: 1ffff00003a34f4c
x26: dfff800000000000 x25: ffff700003a34f48 x24: ffff80001d1a7a80
x23: 1fffe0001be61aa6 x22: dfff800000000000 x21: 0000000000000000
x20: ffff0000df30d530 x19: ffff0000df30d4e8 x18: 1fffe0003683298e
x17: 1fffe0003683298e x16: ffff800011b5ac80 x15: ffff800014c0f2a0
x14: 1ffff0000296e06c x13: 0000000000000000 x12: 000000000000002b
x11: 0000000000000000 x10: 0000000000000000 x9 : ffff0000d66e9b40
x8 : ffff8000089ec1a4 x7 : 0000000000000000 x6 : 000000000000002b
x5 : ffff0000df30d570 x4 : ffff0000df30b540 x3 : ffff800008ecde28
x2 : 0000000000000010 x1 : 0000000000000000 x0 : 0000000000000000
Call trace:
drop_nlink+0xe8/0x148 fs/inode.c:332
inode_dec_link_count include/linux/fs.h:2503 [inline]
ext2_unlink+0x1b4/0x218 fs/ext2/namei.c:302
vfs_unlink+0x2f0/0x508 fs/namei.c:4280
do_unlinkat+0x4cc/0x830 fs/namei.c:4348
__do_sys_unlinkat fs/namei.c:4391 [inline]
__se_sys_unlinkat fs/namei.c:4384 [inline]
__arm64_sys_unlinkat+0xcc/0xfc fs/namei.c:4384
__invoke_syscall arch/arm64/kernel/syscall.c:38 [inline]
invoke_syscall+0x98/0x2b8 arch/arm64/kernel/syscall.c:52
el0_svc_common+0x138/0x258 arch/arm64/kernel/syscall.c:142
do_el0_svc+0x58/0x14c arch/arm64/kernel/syscall.c:181
el0_svc+0x7c/0x1f0 arch/arm64/kernel/entry-common.c:608
el0t_64_sync_handler+0x84/0xe4 arch/arm64/kernel/entry-common.c:626
el0t_64_sync+0x1a0/0x1a4 arch/arm64/kernel/entry.S:584
irq event stamp: 92754
hardirqs last enabled at (92753): [<ffff8000083c78a8>] seqcount_lockdep_reader_access+0x208/0x2cc include/linux/seqlock.h:105
hardirqs last disabled at (92754): [<ffff800011b56334>] el1_dbg+0x24/0x80 arch/arm64/kernel/entry-common.c:396
softirqs last enabled at (92590): [<ffff8000080309b8>] local_bh_enable+0x10/0x34 include/linux/bottom_half.h:31
softirqs last disabled at (92588): [<ffff800008030984>] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:18
---[ end trace 2961a4c42adbbdef ]---
EXT2-fs (loop0): error: ext2_valid_block_bitmap: Invalid block bitmap - block_group = 0, block = 252
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 14
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 15
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 16
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 17
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 18
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 19
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 20
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 21
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 22
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 23
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 24
EXT2-fs (loop0): error: ext2_check_page: size of directory #12 is not a multiple of chunk size
EXT2-fs (loop0): error: ext2_readdir: bad page in #12
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 27
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 28
EXT2-fs (loop0): error: ext2_free_blocks: bit already cleared for block 29
EXT2-fs (loop0): error: e
---
If you want syzbot to run the reproducer, reply with:
#syz test: git://repo/address.git branch-or-commit-hash
If you attach or paste a git patch, syzbot will apply it before testing.