[?25l[?1c7[ ok 8[?25h[?0c. [....] Starting periodic command scheduler: cron[?25l[?1c7[ ok 8[?25h[?0c. Starting mcstransd: [....] Starting file context maintaining daemon: restorecond[?25l[?1c7[ ok 8[?25h[?0c. [....] Starting OpenBSD Secure Shell server: sshd[?25l[?1c7[ ok 8[?25h[?0c. [ 18.040697] audit: type=1400 audit(1519642638.062:6): avc: denied { map } for pid=4240 comm="bash" path="/bin/bash" dev="sda1" ino=1457 scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=system_u:object_r:file_t:s0 tclass=file permissive=1 Debian GNU/Linux 7 syzkaller ttyS0 Warning: Permanently added '10.128.0.54' (ECDSA) to the list of known hosts. executing program syzkaller login: [ 24.372586] audit: type=1400 audit(1519642644.394:7): avc: denied { map } for pid=4254 comm="syzkaller919713" path="/root/syzkaller919713583" dev="sda1" ino=16481 scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_home_t:s0 tclass=file permissive=1 [ 24.406816] FAULT_INJECTION: forcing a failure. [ 24.406816] name failslab, interval 1, probability 0, space 0, times 1 [ 24.418136] CPU: 0 PID: 4254 Comm: syzkaller919713 Not tainted 4.16.0-rc1+ #18 [ 24.425471] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 [ 24.434796] Call Trace: [ 24.437367] dump_stack+0x194/0x24d [ 24.440970] ? arch_local_irq_restore+0x53/0x53 [ 24.445609] ? kernel_text_address+0x102/0x140 [ 24.450162] ? do_raw_spin_trylock+0x190/0x190 [ 24.454725] should_fail+0x8c0/0xa40 [ 24.458413] ? fault_create_debugfs_attr+0x1f0/0x1f0 [ 24.463497] ? save_stack+0x43/0xd0 [ 24.467095] ? kasan_kmalloc+0xad/0xe0 [ 24.470951] ? kasan_slab_alloc+0x12/0x20 [ 24.475071] ? kmem_cache_alloc+0x12e/0x760 [ 24.479369] ? find_held_lock+0x35/0x1d0 [ 24.483423] ? trace_event_raw_event_sched_switch+0x810/0x810 [ 24.489279] ? lock_release+0xa40/0xa40 [ 24.493228] ? rcu_note_context_switch+0x710/0x710 [ 24.498134] should_failslab+0xec/0x120 [ 24.502082] kmem_cache_alloc_trace+0x4b/0x740 [ 24.506637] ? sk_prot_alloc+0x65/0x2a0 [ 24.510595] selinux_sk_alloc_security+0x5d/0x190 [ 24.515410] security_sk_alloc+0x7d/0xb0 [ 24.519448] sk_prot_alloc+0x92/0x2a0 [ 24.523230] sk_alloc+0x105/0x1440 [ 24.526747] ? sock_def_error_report+0x5e0/0x5e0 [ 24.531476] ? __init_rwsem+0x12a/0x280 [ 24.535422] ? do_raw_write_unlock+0x290/0x290 [ 24.539980] ? check_noncircular+0x20/0x20 [ 24.544196] ? __raw_spin_lock_init+0x1c/0x100 [ 24.548753] ? trace_hardirqs_on_caller+0x421/0x5c0 [ 24.553748] ? trace_hardirqs_on_caller+0x421/0x5c0 [ 24.558739] ? __lockdep_init_map+0xe4/0x650 [ 24.563126] ? find_held_lock+0x35/0x1d0 [ 24.567157] ? check_noncircular+0x20/0x20 [ 24.571369] ? new_inode_pseudo+0xbd/0x190 [ 24.575574] ? lock_downgrade+0x980/0x980 [ 24.579700] ? find_held_lock+0x35/0x1d0 [ 24.583741] smc_sock_alloc+0x97/0x3d0 [ 24.587601] ? smc_bind+0x280/0x280 [ 24.591202] ? lock_release+0xa40/0xa40 [ 24.595149] ? __lock_is_held+0xb6/0x140 [ 24.599188] smc_create+0xa5/0x300 [ 24.602703] __sock_create+0x4d4/0x850 [ 24.606565] ? ___sys_recvmsg+0x640/0x640 [ 24.610683] ? retint_kernel+0x10/0x10 [ 24.614547] ? __might_sleep+0x95/0x190 [ 24.618500] SyS_socketpair+0x1c0/0x6f0 [ 24.622453] ? SyS_socket+0x1d0/0x1d0 [ 24.626225] ? SyS_write+0x184/0x220 [ 24.629912] ? SyS_read+0x220/0x220 [ 24.633514] ? do_syscall_64+0xb7/0x940 [ 24.637461] ? SyS_socket+0x1d0/0x1d0 [ 24.641235] do_syscall_64+0x282/0x940 [ 24.645096] ? __do_page_fault+0xc90/0xc90 [ 24.649302] ? trace_hardirqs_on_thunk+0x1a/0x1c [ 24.654030] ? syscall_return_slowpath+0x550/0x550 [ 24.658934] ? syscall_return_slowpath+0x2ac/0x550 [ 24.663835] ? prepare_exit_to_usermode+0x350/0x350 [ 24.668824] ? entry_SYSCALL_64_after_hwframe+0x36/0x9b [ 24.674162] ? trace_hardirqs_off_thunk+0x1a/0x1c [ 24.678982] entry_SYSCALL_64_after_hwframe+0x26/0x9b [ 24.684142] RIP: 0033:0x4404b9 [ 24.687301] RSP: 002b:00007fff44ab6908 EFLAGS: 00000246 ORIG_RAX: 0000000000000035 [ 24.694980] RAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00000000004404b9 [ 24.702220] RDX: 0000000000000000 RSI: 0000000000000001 RDI: 000000000000002b [ 24.709461] RBP: 00007fff44ab6910 R08: 0000000000000002 R09: 00007fff44003031 [ 24.716702] R10: 0000000020000040 R11: 0000000000000246 R12: ffffffffffffffff executing program [ 24.723943] R13: 0000000000000004 R14: 0000000000000000 R15: 0000000000000000 [ 24.733599] FAULT_INJECTION: forcing a failure. [ 24.733599] name failslab, interval 1, probability 0, space 0, times 0 [ 24.744871] CPU: 0 PID: 4254 Comm: syzkaller919713 Not tainted 4.16.0-rc1+ #18 [ 24.752213] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 [ 24.761537] Call Trace: [ 24.764100] dump_stack+0x194/0x24d [ 24.767702] ? arch_local_irq_restore+0x53/0x53 [ 24.772345] ? trace_hardirqs_on_caller+0x421/0x5c0 [ 24.777346] should_fail+0x8c0/0xa40 [ 24.781047] ? fault_create_debugfs_attr+0x1f0/0x1f0 [ 24.786129] ? save_stack+0x43/0xd0 [ 24.789727] ? kasan_slab_alloc+0x12/0x20 [ 24.793852] ? kmem_cache_alloc+0x12e/0x760 [ 24.798143] ? sock_alloc_inode+0x70/0x300 [ 24.802347] ? alloc_inode+0x65/0x180 [ 24.806117] ? new_inode_pseudo+0x69/0x190 [ 24.810320] ? sock_alloc+0x41/0x270 [ 24.814005] ? __sock_create+0x148/0x850 [ 24.818037] ? smc_create+0x106/0x300 [ 24.821807] ? __sock_create+0x4d4/0x850 [ 24.825837] ? SyS_socketpair+0x1c0/0x6f0 [ 24.829958] ? do_syscall_64+0x282/0x940 [ 24.833989] ? entry_SYSCALL_64_after_hwframe+0x26/0x9b [ 24.839330] ? find_held_lock+0x35/0x1d0 [ 24.843383] ? trace_event_raw_event_sched_switch+0x810/0x810 [ 24.849239] ? trace_event_raw_event_sched_switch+0x810/0x810 [ 24.855097] ? rcu_note_context_switch+0x710/0x710 [ 24.860006] should_failslab+0xec/0x120 [ 24.863956] kmem_cache_alloc_trace+0x4b/0x740 [ 24.868507] ? kmem_cache_alloc+0x466/0x760 [ 24.872804] ? find_held_lock+0x35/0x1d0 [ 24.876840] sock_alloc_inode+0xb4/0x300 [ 24.880873] ? sock_destroy_inode+0x70/0x70 [ 24.885168] ? lock_downgrade+0x980/0x980 [ 24.889291] ? sock_destroy_inode+0x70/0x70 [ 24.893585] alloc_inode+0x65/0x180 [ 24.897186] new_inode_pseudo+0x69/0x190 [ 24.901220] ? prune_icache_sb+0x1a0/0x1a0 [ 24.905425] ? trace_hardirqs_on_caller+0x421/0x5c0 [ 24.910414] ? smc_hash_sk+0x204/0x2f0 [ 24.914274] ? trace_hardirqs_on+0xd/0x10 [ 24.918393] ? __local_bh_enable_ip+0x121/0x230 [ 24.923037] sock_alloc+0x41/0x270 [ 24.926550] __sock_create+0x148/0x850 [ 24.930412] ? ___sys_recvmsg+0x640/0x640 [ 24.934535] ? smc_sock_alloc+0x315/0x3d0 [ 24.938654] ? smc_bind+0x280/0x280 [ 24.942256] ? lock_release+0xa40/0xa40 [ 24.946206] sock_create_kern+0x3f/0x50 [ 24.950154] smc_create+0x106/0x300 [ 24.953755] __sock_create+0x4d4/0x850 [ 24.957619] ? ___sys_recvmsg+0x640/0x640 [ 24.961767] ? __might_sleep+0x95/0x190 [ 24.965721] SyS_socketpair+0x1c0/0x6f0 [ 24.969673] ? SyS_socket+0x1d0/0x1d0 [ 24.973445] ? SyS_write+0x184/0x220 [ 24.977132] ? SyS_read+0x220/0x220 [ 24.980735] ? do_syscall_64+0xb7/0x940 [ 24.984685] ? SyS_socket+0x1d0/0x1d0 [ 24.988459] do_syscall_64+0x282/0x940 [ 24.992317] ? __do_page_fault+0xc90/0xc90 [ 24.996525] ? trace_hardirqs_on_thunk+0x1a/0x1c [ 25.001253] ? syscall_return_slowpath+0x550/0x550 [ 25.006155] ? syscall_return_slowpath+0x2ac/0x550 [ 25.011060] ? prepare_exit_to_usermode+0x350/0x350 [ 25.016060] ? entry_SYSCALL_64_after_hwframe+0x36/0x9b [ 25.021407] ? trace_hardirqs_off_thunk+0x1a/0x1c [ 25.026229] entry_SYSCALL_64_after_hwframe+0x26/0x9b [ 25.031387] RIP: 0033:0x4404b9 [ 25.034549] RSP: 002b:00007fff44ab6908 EFLAGS: 00000246 ORIG_RAX: 0000000000000035 [ 25.042227] RAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00000000004404b9 [ 25.049469] RDX: 0000000000000000 RSI: 0000000000000001 RDI: 000000000000002b [ 25.056708] RBP: 00007fff44ab6910 R08: 0000000000000002 R09: 00007fff44003031 [ 25.063953] R10: 0000000020000040 R11: 0000000000000246 R12: ffffffffffffffff [ 25.071192] R13: 0000000000000006 R14: 0000000000000000 R15: 0000000000000000 [ 25.078654] socket: no more sockets [ 25.082421] kasan: CONFIG_KASAN_INLINE enabled [ 25.087047] kasan: GPF could be caused by NULL-ptr deref or user memory access [ 25.094413] general protection fault: 0000 [#1] SMP KASAN [ 25.099919] Dumping ftrace buffer: [ 25.103430] (ftrace buffer empty) [ 25.107115] Modules linked in: [ 25.110288] CPU: 0 PID: 4254 Comm: syzkaller919713 Not tainted 4.16.0-rc1+ #18 [ 25.117613] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 [ 25.126942] RIP: 0010:smc_create+0x14e/0x300 [ 25.131315] RSP: 0018:ffff8801b06afbc8 EFLAGS: 00010202 [ 25.136645] RAX: dffffc0000000000 RBX: ffff8801b63457c0 RCX: ffffffff85a3e746 [ 25.143882] RDX: 0000000000000004 RSI: 00000000ffffffff RDI: 0000000000000020 [ 25.151122] RBP: ffff8801b06afbf0 R08: 00000000000007c0 R09: 0000000000000000 [ 25.158360] R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000000 [ 25.165596] R13: ffff8801b6345c08 R14: 00000000ffffffe9 R15: ffffffff8695ced0 [ 25.172837] FS: 0000000001afb880(0000) GS:ffff8801db200000(0000) knlGS:0000000000000000 [ 25.181036] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 25.186888] CR2: 0000000020000040 CR3: 00000001b0721004 CR4: 00000000001606f0 [ 25.194130] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 25.201383] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 25.208619] Call Trace: [ 25.211179] __sock_create+0x4d4/0x850 [ 25.215039] ? ___sys_recvmsg+0x640/0x640 [ 25.219174] ? __might_sleep+0x95/0x190 [ 25.223128] SyS_socketpair+0x1c0/0x6f0 [ 25.227079] ? SyS_socket+0x1d0/0x1d0 [ 25.230849] ? SyS_write+0x184/0x220 [ 25.234535] ? SyS_read+0x220/0x220 [ 25.238131] ? do_syscall_64+0xb7/0x940 [ 25.242074] ? SyS_socket+0x1d0/0x1d0 [ 25.245844] do_syscall_64+0x282/0x940 [ 25.249702] ? __do_page_fault+0xc90/0xc90 [ 25.253909] ? trace_hardirqs_on_thunk+0x1a/0x1c [ 25.258635] ? syscall_return_slowpath+0x550/0x550 [ 25.263536] ? syscall_return_slowpath+0x2ac/0x550 [ 25.268433] ? prepare_exit_to_usermode+0x350/0x350 [ 25.273417] ? entry_SYSCALL_64_after_hwframe+0x36/0x9b [ 25.278753] ? trace_hardirqs_off_thunk+0x1a/0x1c [ 25.283566] entry_SYSCALL_64_after_hwframe+0x26/0x9b [ 25.288724] RIP: 0033:0x4404b9 [ 25.291883] RSP: 002b:00007fff44ab6908 EFLAGS: 00000246 ORIG_RAX: 0000000000000035 [ 25.299559] RAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00000000004404b9 [ 25.306796] RDX: 0000000000000000 RSI: 0000000000000001 RDI: 000000000000002b [ 25.314037] RBP: 00007fff44ab6910 R08: 0000000000000002 R09: 00007fff44003031 [ 25.321276] R10: 0000000020000040 R11: 0000000000000246 R12: ffffffffffffffff [ 25.328516] R13: 0000000000000006 R14: 0000000000000000 R15: 0000000000000000 [ 25.335761] Code: 48 c1 ea 03 80 3c 02 00 0f 85 b3 01 00 00 4c 8b a3 48 04 00 00 48 b8 00 00 00 00 00 fc ff df 49 8d 7c 24 20 48 89 fa 48 c1 ea 03 <80> 3c 02 00 0f 85 82 01 00 00 4d 8b 7c 24 20 48 b8 00 00 00 00 [ 25.354834] RIP: smc_create+0x14e/0x300 RSP: ffff8801b06afbc8 [ 25.360740] ---[ end trace 8aa6c11e533899b1 ]--- [ 25.365502] Kernel panic - not syncing: Fatal exception [ 25.371260] Dumping ftrace buffer: [ 25.374773] (ftrace buffer empty) [ 25.378452] Kernel Offset: disabled [ 25.382046] Rebooting in 86400 seconds..