last executing test programs:

1m32.836468027s ago: executing program 4 (id=119):
syz_usb_connect$cdc_ncm(0x0, 0x6e, 0x0, 0x0)
bpf$BPF_TASK_FD_QUERY(0x14, &(0x7f0000000240)={0x0, 0xffffffffffffffff, 0x0, 0x7, &(0x7f0000000000)='cgroup\x00'}, 0x30)
r0 = openat$cgroup_root(0xffffffffffffff9c, &(0x7f0000000000), 0x200002, 0x0)
r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000080)={0x9, 0x4, &(0x7f00000008c0)=ANY=[@ANYBLOB="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"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @cgroup_sock, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x70)
bpf$BPF_PROG_DETACH(0x8, &(0x7f0000000040)={@cgroup=r0, r1, 0x2, 0x2, 0x0, @void, @value}, 0x10)
r2 = bpf$PROG_LOAD(0x5, &(0x7f0000000100)={0x1f, 0x4, &(0x7f0000000000)=ANY=[@ANYBLOB="1800000000000b00000000000000000c85000000a800000095"], &(0x7f0000000040)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x1f, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x90)
bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000340)={r2, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}, 0x48)
r3 = bpf$PROG_LOAD(0x5, &(0x7f0000000080)={0x9, 0x4, &(0x7f0000000280)=ANY=[@ANYBLOB="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"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @cgroup_sock, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x70)
bpf$BPF_TASK_FD_QUERY(0x14, &(0x7f0000000240)={0x0, 0xffffffffffffffff, 0x0, 0x7, &(0x7f0000000000)='cgroup\x00'}, 0x30)
r4 = openat$cgroup_root(0xffffffffffffff9c, &(0x7f0000000000), 0x200002, 0x0)
bpf$BPF_PROG_DETACH(0x8, &(0x7f0000000240)={@cgroup=r4, r3, 0x2, 0x6, 0x4000, @void, @value}, 0x10)

1m31.484917282s ago: executing program 4 (id=122):
r0 = socket$inet_tcp(0x2, 0x1, 0x0)
getsockopt$inet_int(r0, 0x0, 0x53, 0x0, &(0x7f00000000c0)=0x4)
r1 = socket$inet_tcp(0x2, 0x1, 0x0)
setsockopt$sock_int(r1, 0x1, 0x2f, &(0x7f0000000340)=0x6, 0x4)
r2 = socket$inet_tcp(0x2, 0x1, 0x0)
ioctl$sock_SIOCETHTOOL(r2, 0x40049409, 0x0)
setsockopt$inet_tcp_int(r2, 0x6, 0x6, &(0x7f0000000440)=0x7fff, 0x4)
bind$inet(r1, &(0x7f0000000000)={0x2, 0x4e21, @local}, 0x10)
connect$inet(r1, &(0x7f0000000180)={0x2, 0x4e21, @local}, 0x10)
setsockopt$inet_tcp_TCP_REPAIR(r1, 0x6, 0x13, &(0x7f0000000040)=0x1, 0x4)
shutdown(r1, 0x1)

1m27.976632865s ago: executing program 4 (id=133):
r0 = syz_open_dev$sndctrl(&(0x7f0000001440), 0x0, 0x0)
bpf$PROG_LOAD(0x5, &(0x7f0000000040)={0xd, 0x4, &(0x7f0000000000)=@framed={{}, [@call={0x79, 0x11, 0xc8}]}, &(0x7f00000000c0)='GPL\x00', 0x4, 0x1000, &(0x7f0000000200)=""/4096, 0x0, 0x0, '\x00', 0x0, @sock_ops, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x70)
ioctl$SNDRV_CTL_IOCTL_PCM_PREFER_SUBDEVICE(r0, 0x40045532, &(0x7f0000000100))
r1 = openat$audio(0xffffffffffffff9c, &(0x7f00000000c0), 0xa0602, 0x0)
ioctl$SNDCTL_DSP_GETODELAY(r1, 0x80045017, 0x0)
r2 = syz_open_dev$sndpcmp(&(0x7f00000001c0), 0x0, 0xa2c65)
socket$vsock_stream(0x28, 0x1, 0x0)
socket$vsock_stream(0x28, 0x1, 0x0)
pselect6(0x40, &(0x7f00000000c0), 0x0, &(0x7f0000000140)={0x1ff}, 0x0, 0x0)
write$snddsp(r2, &(0x7f0000000200)="a38d", 0x2)
ioctl$SNDRV_PCM_IOCTL_SW_PARAMS(r2, 0xc0884113, &(0x7f0000000000)={0x0, 0x0, 0x0, 0x3, 0x0, 0x0, 0xffffff7ffffffffe})

1m4.742832345s ago: executing program 4 (id=133):
r0 = syz_open_dev$sndctrl(&(0x7f0000001440), 0x0, 0x0)
bpf$PROG_LOAD(0x5, &(0x7f0000000040)={0xd, 0x4, &(0x7f0000000000)=@framed={{}, [@call={0x79, 0x11, 0xc8}]}, &(0x7f00000000c0)='GPL\x00', 0x4, 0x1000, &(0x7f0000000200)=""/4096, 0x0, 0x0, '\x00', 0x0, @sock_ops, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x70)
ioctl$SNDRV_CTL_IOCTL_PCM_PREFER_SUBDEVICE(r0, 0x40045532, &(0x7f0000000100))
r1 = openat$audio(0xffffffffffffff9c, &(0x7f00000000c0), 0xa0602, 0x0)
ioctl$SNDCTL_DSP_GETODELAY(r1, 0x80045017, 0x0)
r2 = syz_open_dev$sndpcmp(&(0x7f00000001c0), 0x0, 0xa2c65)
socket$vsock_stream(0x28, 0x1, 0x0)
socket$vsock_stream(0x28, 0x1, 0x0)
pselect6(0x40, &(0x7f00000000c0), 0x0, &(0x7f0000000140)={0x1ff}, 0x0, 0x0)
write$snddsp(r2, &(0x7f0000000200)="a38d", 0x2)
ioctl$SNDRV_PCM_IOCTL_SW_PARAMS(r2, 0xc0884113, &(0x7f0000000000)={0x0, 0x0, 0x0, 0x3, 0x0, 0x0, 0xffffff7ffffffffe})

54.941776468s ago: executing program 1 (id=185):
syz_mount_image$ext4(&(0x7f0000000700)='ext4\x00', &(0x7f0000000080)='./file0\x00', 0x8002, &(0x7f00000000c0), 0x7, 0x4a9, &(0x7f0000000b40)="$eJzs3E9sFFUYAPBvtru0gEhFREHUIhobjS0UFA5eMJp40MSIBz02bSFIoYbWRAjRkhg8GhLvxqNXD17Vm/Fk4hUPHkwMCTFcAE9jZnem3e6flrbbLri/X7L0vZk3+963b97s23m7BNCzhrJ/koiHIuJ6ROysZZcWGKr9uXPr8sTdW5cnYj5NT/6TVMvdzvK54rjteWa4FFH6Iml4wprZi5fOjk9PT13I86Nz5z4enb146eUz58ZPT52eOj92/PjRI4ePvTr2yuqDalFfFtftfZ/N7N/71ofX3pkoF9sH8r/1cXTKUAy1akrV852urMt21KWTchcbwqpk53/WXZXq+N8ZfaHzoFekaZr2t989nza60rQFeGAl0e0WAN1RvNFnn3+LxyZNPe4LN0/UPgBlcd/JH7U95SjlZSoNn287aSgiPpj/95vsEcvdh/hzgxoAAPScn04UM8HG+V8p9tSVezhfQxmMiEciYldEPBoRuyPisYhq2ccj4onGCpKIdJn6dzfkm+c/pRvriW8l2fzvtXxta+n8r5j9xWBfntsRUUyYpw7lr8lwVPpPnZmeOrxMHT+/8ftX7fbVz/+yR1Z/MRfM23Gj3HCDbnJ8bnzNATe4eSViX7kx/qScdVyxEpBExN6I2LeK5x2sS5958bv9C5nK0nIrx1+VtlxH68BSRfptxAu1/p+PJf2/WGOy/Prk6EBMTx0azc6CQy3r+PW3q++2q3/F+H/4q/GQN4/9eHK9YS/I+n9b3fkfxfrtYvyDSUSysF47u/o6rv7xZfV5hw4271vr+b8leb+a3pJv+3R8bu7C4YgtydvN28cWjy3yRfks/uGDrcf/rvyY7JV4MiKyk/ipiHg6Ip7J234gIp6NiBahLfjl9ec+arfvHs//DZPFP9ny+rek/xfX69eQ6Dt74PrdNhePe+v/o9XUcL6l9fUvWXKJuNcGduAlBAAAgPteKarf/S+NLKRLpZGR2j2g3bGtND0zO/fSqZlPzk/WfiMwGJVScaerdj+4khT3Pwfr8mMN+SP5feOv+7ZW8yMTM9OT3Q4eetz26phPmsZ/5u++brcO2HB+8gO9a6Xxv+faJjUE2HTe/6F31Y3/+TZF5n1TBv6fvP9D72o1/j9fwzHAgyU1lqGnGf/Qu8rx3kK61NWWAJvN+z/0pPX8rn/lRNrfetdANBeOgY1pxtYWdXUlkc2sulL71rUcVfxvCm3LRGl1T9gfzbv6otMhVyJixcKn93T85E/z78p3uge/35Rx2irRlcsRAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAABAx/0XAAD//8p53a4=")
mount$tmpfs(0x0, &(0x7f00000003c0)='./file0\x00', &(0x7f0000000400), 0x0, &(0x7f0000000000)={[{@huge_within_size}]})
chdir(&(0x7f0000000140)='./file0\x00')
r0 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f0000000080)='blkio.throttle.io_service_bytes_recursive\x00', 0x275a, 0x0)
mmap(&(0x7f0000000000/0x3000)=nil, 0x3000, 0x1, 0x12, r0, 0x0)
ftruncate(r0, 0x8001)
r1 = socket$inet6_tcp(0xa, 0x1, 0x0)
bind$inet6(r1, &(0x7f0000000100), 0x1c)
madvise(&(0x7f0000000000/0x800000)=nil, 0x800000, 0xe)
r2 = socket$packet(0x11, 0x2, 0x300)
setsockopt$packet_int(r2, 0x107, 0xa, &(0x7f0000001300), 0x4)

54.468620782s ago: executing program 1 (id=186):
pipe(&(0x7f00000001c0)={<r0=>0xffffffffffffffff, <r1=>0xffffffffffffffff})
r2 = socket$inet_udp(0x2, 0x2, 0x0)
close(r2)
sendmsg$nl_route(0xffffffffffffffff, 0x0, 0x0)
socket$nl_route(0x10, 0x3, 0x0)
r3 = socket$inet_dccp(0x2, 0x6, 0x0)
ioctl$sock_SIOCGIFINDEX(r3, 0x8933, &(0x7f0000000140)={'wlan1\x00', <r4=>0x0})
sendmsg$nl_route_sched(0xffffffffffffffff, &(0x7f00000012c0)={0x0, 0x0, &(0x7f0000000580)={&(0x7f0000000000)=@newqdisc={0x48, 0x24, 0x4ee4e6a52ff56541, 0x0, 0x0, {0x0, 0x0, 0x0, r4, {}, {0xffff, 0xffff}}, [@qdisc_kind_options=@q_cbs={{0x8}, {0x1c, 0x2, @TCA_CBS_PARMS={0x18, 0x1, {0x1f}}}}]}, 0x48}}, 0x0)
ioctl$sock_ipv6_tunnel_SIOCADD6RD(r0, 0x89f9, &(0x7f0000000100)={'sit0\x00', &(0x7f0000000080)={@ipv4={'\x00', '\xff\xff', @remote}, @multicast2, 0x1, 0xc}})
write$binfmt_misc(r1, &(0x7f0000000000), 0xfffffecc)
splice(r0, 0x0, r2, 0x0, 0x4ffe2, 0x0)

53.900502654s ago: executing program 1 (id=187):
syz_mount_image$ext4(&(0x7f0000000200)='ext4\x00', &(0x7f0000000740)='./file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00', 0xc000, &(0x7f00000006c0), 0x2, 0x246, &(0x7f0000000ac0)="$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")
openat(0xffffffffffffff9c, &(0x7f0000000080)='./bus\x00', 0x105042, 0x0)
mkdir(&(0x7f00000020c0)='./file0\x00', 0x0)
r0 = open$dir(&(0x7f0000000100)='./file0\x00', 0x0, 0x0)
ioctl$FS_IOC_SET_ENCRYPTION_POLICY(r0, 0x800c6613, &(0x7f0000000140)=@v1={0x0, @adiantum, 0x0, @desc3})
chdir(&(0x7f0000000000)='./file0\x00')
add_key$fscrypt_v1(&(0x7f00000000c0), &(0x7f0000000240)={'fscrypt:', @desc3}, &(0x7f00000002c0)={0x0, "615a091a55a8c9a640115d99d981b3886420589c6695d4982a83b71b906769e737201ac6b7a7804454156569cb03a5be811debc957b5831b89b59d703e748c7c", 0x25}, 0x48, 0xfffffffffffffffd)
syz_mount_image$vfat(0x0, &(0x7f0000000100)='./file0\x00', 0xc3464, 0x0, 0x0, 0x0, &(0x7f0000000000))
mkdir(&(0x7f0000000400)='./file1\x00', 0x0)
mkdir(&(0x7f0000000300)='./bus\x00', 0x0)
mount$overlay(0x0, &(0x7f00000000c0)='./bus\x00', &(0x7f0000000340), 0x0, &(0x7f0000000080)={[{@workdir={'workdir', 0x3d, './bus'}}, {@lowerdir={'lowerdir', 0x3d, './file0'}}, {@upperdir={'upperdir', 0x3d, './file1'}}]})

36.387015868s ago: executing program 3 (id=210):
mkdirat(0xffffffffffffff9c, &(0x7f00000000c0)='./file0\x00', 0x0)
mount$bind(&(0x7f0000000180)='.\x00', &(0x7f0000000200)='./file0/../file0\x00', 0x0, 0x101091, 0x0)
syz_mount_image$fuse(0x0, &(0x7f0000000040)='./file1\x00', 0x0, 0x0, 0x0, 0x0, 0x0)
mount$bind(&(0x7f00000001c0)='./file0\x00', &(0x7f0000000240)='./file1\x00', 0x0, 0x2804, 0x0)
bpf$MAP_CREATE_CONST_STR(0x0, 0x0, 0x0)
fcntl$lock(0xffffffffffffffff, 0x0, 0x0)
r0 = open_tree(0xffffffffffffff9c, &(0x7f0000000480)='./file0\x00', 0x89901)
move_mount(r0, &(0x7f0000000140)='.\x00', 0xffffffffffffff9c, &(0x7f0000000180)='./file0\x00', 0x0)
mount_setattr(0xffffffffffffff9c, &(0x7f0000000240)='./file0\x00', 0x0, &(0x7f0000000080)={0x0, 0x0, 0x20000}, 0x20)
r1 = open_tree(0xffffffffffffff9c, &(0x7f0000000640)='\x00', 0x89901)
move_mount(r1, &(0x7f0000000040)='.\x00', 0xffffffffffffff9c, &(0x7f00000000c0)='./file0\x00', 0x121)

36.171057228s ago: executing program 3 (id=211):
epoll_create1(0x0)
openat$rtc(0xffffffffffffff9c, &(0x7f0000000000), 0x0, 0x0)
syz_mount_image$ext4(&(0x7f0000000040)='ext4\x00', &(0x7f0000000080)='./file1\x00', 0x20081e, &(0x7f00000020c0), 0x1, 0x4ef, &(0x7f0000000a00)="$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")
r0 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f00000002c0)='cpuset.effective_mems\x00', 0x275a, 0x0)
r1 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f0000000000)='cgroup.controllers\x00', 0x275a, 0x0)
write$binfmt_elf64(r0, &(0x7f0000000140)=ANY=[], 0xfe6f)
r2 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f0000000080)='cgroup.controllers\x00', 0x275a, 0x0)
write$binfmt_script(r2, &(0x7f00000000c0), 0xfea7)
ioctl$BTRFS_IOC_TREE_SEARCH(0xffffffffffffffff, 0xd0009411, 0x0)
ioctl$EXT4_IOC_MOVE_EXT(r1, 0xc028660f, &(0x7f0000000040)={0x0, r0, 0x18})
timerfd_gettime(0xffffffffffffffff, 0x0)

35.586750322s ago: executing program 3 (id=213):
r0 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000000), 0x0, 0x0)
r1 = ioctl$KVM_CREATE_VM(r0, 0xae01, 0x0)
bpf$MAP_CREATE(0x0, &(0x7f0000000200)=ANY=[@ANYBLOB="0f00000004000000040000001200000000000000", @ANYRES32, @ANYBLOB="0000edff00"/18, @ANYRES32=0x0, @ANYRES32], 0x48)
bpf$PROG_LOAD(0x5, &(0x7f00000004c0)={0x11, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x41000, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0xfffffffe, @void, @value}, 0x90)
ioctl$KVM_CREATE_IRQCHIP(r1, 0xae60)
r2 = ioctl$KVM_CREATE_VCPU(r1, 0xae41, 0x0)
syz_kvm_setup_cpu$x86(r1, 0xffffffffffffffff, &(0x7f000049c000/0x18000)=nil, &(0x7f0000000400)=[@text16={0x10, 0x0}], 0x1, 0x0, 0x0, 0x0)
ioctl$KVM_SET_VAPIC_ADDR(r2, 0x4008ae93, &(0x7f0000000640)=0x1)
sendmsg$inet(0xffffffffffffffff, &(0x7f0000000380)={0x0, 0x0, 0x0, 0x0, &(0x7f0000000280)=ANY=[@ANYBLOB="1c00000000000000000021c63a083f001d1898b60e78907fa38162282eb5e4e32cf93efe813510f7cfc0ef9fe7453fb08e"], 0x38}, 0x20008840)
sendmmsg$inet(0xffffffffffffffff, &(0x7f0000000900)=[{{0x0, 0x0, &(0x7f0000000380)=[{0x0}, {0x0}, {0x0}], 0x3}}], 0x1, 0x4000000)
ioctl$KVM_SET_VCPU_EVENTS(r2, 0x4400ae8f, &(0x7f0000000140))
ioctl$KVM_RUN(r2, 0xae80, 0x0)

35.044058821s ago: executing program 3 (id=217):
openat$vicodec1(0xffffffffffffff9c, &(0x7f0000000000), 0x2, 0x0)
r0 = socket$inet_mptcp(0x2, 0x1, 0x106)
setsockopt$inet_tcp_TLS_RX(r0, 0x6, 0x2, &(0x7f00000004c0)=@gcm_256={{}, "90cd8e1edec77e35", "a0973a9d69a99b6707f877696f630679b3c07d3845b83d8c9cd3f9c3260c4d70", "9afb45ff", "252fd8f645d65ff2"}, 0x38)
bind$inet(r0, &(0x7f0000000080)={0x2, 0x4e24, @multicast2}, 0x10)
connect$inet(r0, &(0x7f00000000c0)={0x2, 0x4e24, @local}, 0x10)
recvmmsg(r0, &(0x7f0000000e40)=[{{0x0, 0x0, &(0x7f0000000040)=[{&(0x7f0000001180)=""/4104, 0x1008}], 0x1}}], 0x1, 0x102, 0x0)
sendto$inet(r0, &(0x7f0000000100)="1a", 0x1, 0x0, 0x0, 0x0)
socket(0x10, 0x803, 0x0)
socket$nl_route(0x10, 0x3, 0x0)
socket$nl_generic(0x10, 0x3, 0x10)
socket$netlink(0x10, 0x3, 0x0)
pselect6(0x40, &(0x7f0000000000)={0x1fe}, 0x0, 0x0, 0x0, 0x0)

34.108663638s ago: executing program 3 (id=219):
syz_mount_image$ext4(&(0x7f0000000040)='ext4\x00', &(0x7f0000000000)='./file0\x00', 0x21081e, &(0x7f0000000840), 0x1, 0x4e6, &(0x7f0000001400)="$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")
r0 = gettid()
timer_create(0x0, &(0x7f0000000200)={0x0, 0x21, 0x4, @tid=r0}, &(0x7f0000bbdffc))
timer_settime(0x0, 0x0, &(0x7f000006b000)={{0x0, 0x989680}, {0x0, 0x3938700}}, 0x0)
creat(&(0x7f00000000c0)='./bus\x00', 0x0)
r1 = openat(0xffffffffffffff9c, &(0x7f0000000240)='.\x00', 0x0, 0x0)
creat(&(0x7f0000000080)='./file1\x00', 0x0)
mount(&(0x7f0000000380)=@loop={'/dev/loop', 0x0}, &(0x7f0000000140)='./bus\x00', 0x0, 0x1000, 0x0)
r2 = open(&(0x7f0000000080)='./bus\x00', 0x185102, 0x0)
mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0x2, 0x28011, r2, 0x0)
bpf$PROG_LOAD_XDP(0x5, &(0x7f0000000540)={0x6, 0x15, &(0x7f00000003c0)=ANY=[@ANYBLOB="180100002020702500000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b7030300000000008500000006000000b7080000000000007b8af8fd00000000b7080000000000007b8af0ff000000129da100000000000007010000f8ffffffbfa400000000000007040000f0ffffffb70200000800000018230000", @ANYRES32, @ANYBLOB="0000000000000000b70500000800000085"], &(0x7f0000000040)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x18, '\x00', 0x0, 0x25, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x90)
ioctl$FS_IOC_REMOVE_ENCRYPTION_KEY(r1, 0xc0185879, &(0x7f0000000b40)={@desc={0x4100, 0x0, @desc1}})

33.151148596s ago: executing program 3 (id=220):
r0 = socket(0x840000000002, 0xa, 0x100)
connect$inet(r0, &(0x7f0000000000)={0x2, 0x0, @remote}, 0x10)
mkdir(&(0x7f0000000380)='./file0\x00', 0x0)
r1 = openat$fuse(0xffffffffffffff9c, &(0x7f0000000040), 0x42, 0x0)
mount$fuse(0x0, &(0x7f0000000000)='.\x00', &(0x7f00000003c0), 0x0, &(0x7f0000000900)=ANY=[@ANYRES32=r1, @ANYRES8=r1, @ANYRESDEC=r0, @ANYRESHEX=r0, @ANYBLOB="a16a6167da171a41874dafbed042c30f74315727fa65e561a69fab021e25963e62d4166272c34abcad44087830bbc7bc2740e2c9", @ANYRESHEX=0x0, @ANYRESDEC=r1])
mount_setattr(0xffffffffffffff9c, &(0x7f0000000140)='./file0\x00', 0x0, &(0x7f0000000180)={0x0, 0x0, 0x100000}, 0x20)
open_tree(0xffffffffffffff9c, &(0x7f0000000200)='./file0\x00', 0x89901)
mount$overlay(0x0, &(0x7f0000000000)='./file0\x00', 0x0, 0x88000, 0x0)
open_tree(0xffffffffffffff9c, &(0x7f0000000640)='\x00', 0x89901)
syz_emit_vhci(&(0x7f0000000040)=ANY=[@ANYBLOB="043e170e"], 0xf8)
syz_usb_connect(0x0, 0x2d, &(0x7f0000000080)=ANY=[@ANYBLOB="12010000a8f4dd086d0492082a6d0000000109021b0001000000000904"], 0x0)

31.099096535s ago: executing program 4 (id=133):
r0 = syz_open_dev$sndctrl(&(0x7f0000001440), 0x0, 0x0)
bpf$PROG_LOAD(0x5, &(0x7f0000000040)={0xd, 0x4, &(0x7f0000000000)=@framed={{}, [@call={0x79, 0x11, 0xc8}]}, &(0x7f00000000c0)='GPL\x00', 0x4, 0x1000, &(0x7f0000000200)=""/4096, 0x0, 0x0, '\x00', 0x0, @sock_ops, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x70)
ioctl$SNDRV_CTL_IOCTL_PCM_PREFER_SUBDEVICE(r0, 0x40045532, &(0x7f0000000100))
r1 = openat$audio(0xffffffffffffff9c, &(0x7f00000000c0), 0xa0602, 0x0)
ioctl$SNDCTL_DSP_GETODELAY(r1, 0x80045017, 0x0)
r2 = syz_open_dev$sndpcmp(&(0x7f00000001c0), 0x0, 0xa2c65)
socket$vsock_stream(0x28, 0x1, 0x0)
socket$vsock_stream(0x28, 0x1, 0x0)
pselect6(0x40, &(0x7f00000000c0), 0x0, &(0x7f0000000140)={0x1ff}, 0x0, 0x0)
write$snddsp(r2, &(0x7f0000000200)="a38d", 0x2)
ioctl$SNDRV_PCM_IOCTL_SW_PARAMS(r2, 0xc0884113, &(0x7f0000000000)={0x0, 0x0, 0x0, 0x3, 0x0, 0x0, 0xffffff7ffffffffe})

28.00499293s ago: executing program 1 (id=188):
syz_mount_image$f2fs(&(0x7f00000000c0), &(0x7f0000000100)='./file0\x00', 0x2008410, &(0x7f0000000400)=ANY=[@ANYBLOB="66617374626f6f742c71756f7461000000000000003b814e50a959736d65720f73ecea54b5e5be45aca9836c319f437199ff24212c651baef614d442ae89412ad3dcd0b7586d02002a6d6d65cacd4fc5002207ce994dda65c4b1d23a9bd5ba0f4ce5c2b525718c6aa918080002223d2753a5cac974110144cd0a1e368652324a41b31e1eb3b32dccbdf8f68bd96a45a75427a5f789d267fd92f6a5540200b81d5b9fa9b40fe4d7fbd50a6afc3a989c6d60045663c59cbdc4c700000000bc7f6b22df0191acf5912afdcc1c061835177068c40f757dd123d2600b1c544f1525aa8d00000000000000000000002e8b5c733d362417c17f527c0bfebec112d57fc69fabb9b31ef97b2147931ff60cdf666c25244218b1f1a6010000000100000020563b835d0e8e9a09070ef1691fcb2f37bda5d4e3d9d7a2d0ac82b45a53001057f321acc45d5e065a461de90100000077d200000000000040b78f0dd3836f5ab2f6a1a5b798bb7752f192c6b48e568973a59cd9c74bd9a14721856c5499cd8f93f8beaa9cf76718ce7244c84268030000000000000008886b313bd01a22d576e414011a4f0a897514329f86d4585fa0ea17068f8af349696da4a2b3e24310bb52ec51bc23b57897cb55a2d513e6a00765ee3f58b471c54dd57f0af584afe4a21f92b515e34ac8c454a30dd54a580ad7f2fa6fbb273ca0f751e684584320534667aea39ad7222c8ef531f514939177a47395e94c1723abb3fd44fd64fde4b45cc2f55f4ae05ff48648a4c998257856bcdcf2fa02010000001f54f3936570450e91c8d55abad76a7b7a000016f81ec9da9ccc1191c211632266d907e4d9b23496ae19bac24dc23c43f514f1b4af19988bbe61ee29a368a999435d6872d01b79c7821e875859dfbf3c57e4f1fb00010000f7a0fa13516c0926d19dd2d58633d97b4ca282e73ea142b01b4a742fa11c0927ba811dd60903d575db449d775021b542db617086b3ed42e6e60fe043cff79b0c067c584bbf82657974c3736912b4ab22052b9467d0da116ccc1652d861a420f09aaf67d3e9f6160100000001000000ae6335ad9896abd3cc00413638cb9bc62ab8054325d72e9144cf4f88702f586507e3147198e0bc4060a7c8f4dce73b653177ecf8228e6e6fae02510000000000000000000000000000f43739fdd2d24e50e0233acfe1c8639070fe00f40b0d01f8a0", @ANYRES32=0x0, @ANYRESHEX], 0x1, 0x5549, &(0x7f0000003d80)="$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")
r0 = openat(0xffffffffffffff9c, &(0x7f0000000040)='./file2\x00', 0x143042, 0x0)
creat(&(0x7f0000000000)='./bus\x00', 0x0)
mount(&(0x7f0000000380)=@loop={'/dev/loop', 0x0}, &(0x7f0000000080)='./bus\x00', 0x0, 0x1000, 0x0)
r1 = open(&(0x7f0000000000)='./bus\x00', 0x0, 0x0)
ioctl$LOOP_SET_STATUS64(r1, 0x4c04, &(0x7f0000000240)={0x0, 0x0, 0x0, 0x7fffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, "ef359f413bb90152f7d6d1ce5d29c3ee5e5ca9000f7c41499dc2aac63a01000000000000004faa2ad9c084a003ea00", "036c47c67808200400000000000000335263bdbcef549ba197fce47ddfdd753abd950100002a00ffffffffffffffff00000000e8f20000000200", "b7326736181c208220000000b9000000000000000000f0fffffffff2ff00"})
pwritev2(r0, &(0x7f0000000100)=[{&(0x7f0000000080)="ff", 0xabfb}], 0x1, 0x5405, 0x0, 0x0)
r2 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=@base={0xa, 0x1, 0x8, 0x8, 0x0, 0x1, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48)
r3 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000180)=ANY=[@ANYBLOB="1800000000000400000000000000000018110000", @ANYRES32=r2, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90)
bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000040)='kmem_cache_free\x00', r3}, 0x10)
creat(&(0x7f00000001c0)='./file0\x00', 0x178)

25.378718952s ago: executing program 1 (id=226):
prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0)
sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7)
r0 = getpid()
sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x4)
mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f07ebbeeb, 0x8031, 0xffffffffffffffff, 0x0)
socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={<r1=>0xffffffffffffffff, <r2=>0xffffffffffffffff})
connect$unix(r1, &(0x7f000057eff8)=@abs, 0x6e)
sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0)
recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0)
r3 = socket$kcm(0x10, 0x2, 0x10)
sendmsg$kcm(r3, &(0x7f0000000000)={0x0, 0xffffff2d, &(0x7f0000000080)=[{&(0x7f0000000040)="e03f03003d000b08d25a80648c6394f90324fc600b0002400a000000053582c137153e37020c018000f01700d1bd", 0x33fe0}], 0x1}, 0x0)

24.240582977s ago: executing program 1 (id=227):
syz_genetlink_get_family_id$nl80211(&(0x7f0000000040), 0xffffffffffffffff)
syz_genetlink_get_family_id$ieee802154(&(0x7f0000000080), 0xffffffffffffffff)
r0 = socket$nl_generic(0x10, 0x3, 0x10)
syz_genetlink_get_family_id$nl80211(&(0x7f00000000c0), r0)
syz_genetlink_get_family_id$ieee802154(&(0x7f0000000100), r0)
syz_genetlink_get_family_id$nl80211(&(0x7f0000000140), r0)
r1 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10)
syz_genetlink_get_family_id$nl80211(&(0x7f0000000180), r1)
syz_genetlink_get_family_id$ieee802154(&(0x7f00000001c0), r1)
r2 = socket$inet_udp(0x2, 0x2, 0x0)
syz_genetlink_get_family_id$nl80211(&(0x7f0000000200), r2)

8.672019631s ago: executing program 2 (id=258):
r0 = openat$binderfs(0xffffffffffffff9c, &(0x7f00000000c0)='./binderfs/binder0\x00', 0x0, 0x0)
ioctl$BINDER_SET_CONTEXT_MGR_EXT(r0, 0x4018620d, &(0x7f0000000300))
r1 = openat$binderfs(0xffffffffffffff9c, &(0x7f0000000180)='./binderfs/binder0\x00', 0x0, 0x0)
ioctl$BINDER_WRITE_READ(r1, 0xc0306201, &(0x7f0000000080)={0x8, 0x0, &(0x7f0000000400)=[@increfs], 0x0, 0x0, 0x0})
r2 = dup3(r1, r0, 0x0)
r3 = openat$binderfs(0xffffffffffffff9c, &(0x7f0000000040)='./binderfs/binder0\x00', 0x0, 0x0)
mmap$binder(&(0x7f0000ffc000/0x2000)=nil, 0x2000, 0x1, 0x11, r3, 0x0)
ioctl$BINDER_SET_CONTEXT_MGR_EXT(r3, 0x4018620d, &(0x7f0000000040))
ioctl$BINDER_WRITE_READ(r2, 0xc0306201, &(0x7f00000003c0)={0x8, 0x0, &(0x7f0000000000)=[@acquire], 0x0, 0x0, 0x0})
ioctl$BINDER_WRITE_READ(r1, 0xc0306201, &(0x7f0000000500)={0x4c, 0x0, &(0x7f0000000580)=[@transaction_sg={0x40486311, {0x1, 0x0, 0x0, 0x0, 0x21, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}, 0x1000}], 0x0, 0x0, 0x0})
r4 = openat$binder_debug(0xffffffffffffff9c, &(0x7f0000000040)='/sys/kernel/debug/binder/transactions\x00', 0x0, 0x0)
read$FUSE(r4, &(0x7f0000000480)={0x2020}, 0x2020)

8.517686385s ago: executing program 2 (id=259):
prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0)
sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7)
r0 = getpid()
sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x6)
mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0)
socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={<r1=>0xffffffffffffffff, <r2=>0xffffffffffffffff})
connect$unix(r1, &(0x7f000057eff8)=@abs, 0x6e)
sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0)
recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0)
r3 = bpf$PROG_LOAD(0x5, &(0x7f0000000040)={0x6, 0x4, &(0x7f0000000000)=@framed={{0x18, 0x2, 0x0, 0x0, 0xfffffffc}, [@call={0x85, 0x0, 0x0, 0x41}]}, &(0x7f00000001c0)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @xdp, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94)
bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000600)={r3, 0x0, 0x0, 0x0, 0x0, 0x0, 0x500, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x9}, 0x50)

7.27809957s ago: executing program 2 (id=260):
bpf$PROG_LOAD_XDP(0x5, &(0x7f0000000a40)={0x3, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000079000000090000000000000018110000", @ANYRES32, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000005700000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x25, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x90)
bpf$MAP_CREATE(0x0, &(0x7f0000000640)=@base={0x16, 0x0, 0x4, 0xff, 0x0, 0x1, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48)
bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90)
write$cgroup_int(0xffffffffffffffff, &(0x7f0000000100), 0x1001)
bpf$BPF_BTF_LOAD(0x12, &(0x7f00000004c0)={&(0x7f0000000100)=ANY=[@ANYBLOB="9feb01001800000000000000500000005000000002000000000000000300000d0000000000000000000000000b000000000000000600000003000000000000000000000d000000000000000001000013040000007f"], &(0x7f00000003c0)=""/252, 0x6a, 0xfc, 0x1, 0x0, 0x0, @void, @value}, 0x20)
ioctl$SIOCSIFHWADDR(0xffffffffffffffff, 0x4030582b, &(0x7f0000000000)={'lo\x00', @link_local={0x1, 0x80, 0xc2, 0xc}})
bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, 0x0, 0x0)
ioctl$TUNSETIFF(0xffffffffffffffff, 0x400454ca, 0x0)
syz_genetlink_get_family_id$tipc(&(0x7f0000000040), 0xffffffffffffffff)
r0 = socket$nl_generic(0x10, 0x3, 0x10)
r1 = syz_genetlink_get_family_id$tipc2(&(0x7f0000000200), 0xffffffffffffffff)
sendmsg$TIPC_NL_MON_PEER_GET(r0, &(0x7f0000000500)={0x0, 0x0, &(0x7f00000004c0)={&(0x7f0000000180)={0x60, r1, 0x30d, 0x0, 0x0, {}, [@TIPC_NLA_MON={0x4c, 0x9, 0x0, 0x1, [@TIPC_NLA_MON_ACTIVATION_THRESHOLD={0x8}, @TIPC_NLA_MON_REF={0x8}, @TIPC_NLA_MON_REF={0x8}, @TIPC_NLA_MON_ACTIVATION_THRESHOLD={0x8}, @TIPC_NLA_MON_REF={0x8}, @TIPC_NLA_MON_REF={0x8}, @TIPC_NLA_MON_REF={0x8}, @TIPC_NLA_MON_ACTIVATION_THRESHOLD={0x8}, @TIPC_NLA_MON_REF={0x1f}]}]}, 0x60}}, 0x0)

7.230914514s ago: executing program 0 (id=261):
r0 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xb, &(0x7f0000000380)=ANY=[@ANYBLOB="18000000000000000000000000000000180100002020702500000000002120207b1af8ff00000000bfa100000000000007010000f8ffffffb702000000000000b7030000e8ffff7f850000000400000095"], &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90)
bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000140)={&(0x7f00000002c0)='ext4_da_write_pages_extent\x00', r0}, 0x10)
r1 = bpf$MAP_CREATE_RINGBUF(0x0, &(0x7f00000007c0)={0x1b, 0x0, 0x0, 0x40000, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48)
r2 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xf, &(0x7f0000000180)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r1, @ANYBLOB="0000000000000000b702000014000000b7030000000000028500000083000000bf0900000000000055090100000000009500000000000000bf91000000000000b7020000000000008500000084000000b70000000000000095"], &(0x7f0000000000)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90)
bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000340)='ext4_da_write_pages_extent\x00', r2}, 0x10)
syz_mount_image$ext4(&(0x7f0000000780)='ext4\x00', &(0x7f0000000240)='./file0\x00', 0x2000480, &(0x7f0000000140), 0x1, 0x784, &(0x7f00000007c0)="$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")
open(&(0x7f0000000100)='./bus\x00', 0x143142, 0x0)
r3 = open(&(0x7f0000000040)='./bus\x00', 0x14103e, 0x0)
mmap(&(0x7f0000000000/0x600000)=nil, 0x600000, 0x7ffffe, 0x4002011, r3, 0x0)
ftruncate(r3, 0x20cf01)
syz_fuse_handle_req(0xffffffffffffffff, &(0x7f0000006380)="000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000002000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000080000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000dc4e00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000400000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000ba045abcd5dfc67d000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000230000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000050000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000a0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000080000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000209bfd66eea210560000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000020000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000040000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000001354c4b600", 0x2000, 0x0)
ioctl$EXT4_IOC_SWAP_BOOT(r3, 0x6611)

7.190143278s ago: executing program 4 (id=133):
r0 = syz_open_dev$sndctrl(&(0x7f0000001440), 0x0, 0x0)
bpf$PROG_LOAD(0x5, &(0x7f0000000040)={0xd, 0x4, &(0x7f0000000000)=@framed={{}, [@call={0x79, 0x11, 0xc8}]}, &(0x7f00000000c0)='GPL\x00', 0x4, 0x1000, &(0x7f0000000200)=""/4096, 0x0, 0x0, '\x00', 0x0, @sock_ops, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x70)
ioctl$SNDRV_CTL_IOCTL_PCM_PREFER_SUBDEVICE(r0, 0x40045532, &(0x7f0000000100))
r1 = openat$audio(0xffffffffffffff9c, &(0x7f00000000c0), 0xa0602, 0x0)
ioctl$SNDCTL_DSP_GETODELAY(r1, 0x80045017, 0x0)
r2 = syz_open_dev$sndpcmp(&(0x7f00000001c0), 0x0, 0xa2c65)
socket$vsock_stream(0x28, 0x1, 0x0)
socket$vsock_stream(0x28, 0x1, 0x0)
pselect6(0x40, &(0x7f00000000c0), 0x0, &(0x7f0000000140)={0x1ff}, 0x0, 0x0)
write$snddsp(r2, &(0x7f0000000200)="a38d", 0x2)
ioctl$SNDRV_PCM_IOCTL_SW_PARAMS(r2, 0xc0884113, &(0x7f0000000000)={0x0, 0x0, 0x0, 0x3, 0x0, 0x0, 0xffffff7ffffffffe})

6.419989469s ago: executing program 0 (id=262):
r0 = syz_open_procfs(0xffffffffffffffff, &(0x7f0000000140)='net/ip6_tables_matches\x00')
r1 = syz_clone(0x0, 0x0, 0x0, 0x0, 0x0, 0x0)
r2 = syz_open_procfs(0x0, &(0x7f00000000c0)='task\x00')
fchdir(r2)
mount(0x0, &(0x7f0000000080)='.\x00', &(0x7f0000000000)='proc\x00', 0x0, 0x0)
syz_mount_image$ext4(&(0x7f0000000000)='ext4\x00', &(0x7f0000000300)='./bus\x00', 0x8000d0, &(0x7f0000000040), 0x1, 0x7d2, &(0x7f0000000340)="$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")
syz_open_procfs(r1, &(0x7f0000000040)='pagemap\x00')
write$P9_RAUTH(r0, 0x0, 0x0)
r3 = socket$inet6(0xa, 0x2, 0x0)
setsockopt$inet6_IPV6_FLOWLABEL_MGR(r3, 0x29, 0x20, &(0x7f00000000c0)={@rand_addr=' \x01\x00', 0x800, 0x0, 0x103, 0x1}, 0x20)
setsockopt$inet6_IPV6_RTHDRDSTOPTS(r3, 0x29, 0x37, &(0x7f0000000140), 0x8)
close_range(r0, 0xffffffffffffffff, 0x0)

6.031786125s ago: executing program 0 (id=263):
sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2)
r0 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0)
ioctl$TUNSETOFFLOAD(0xffffffffffffffff, 0x40046629, 0x0)
read$msr(r0, &(0x7f0000019680)=""/102392, 0x18ff8)
prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0)
syz_init_net_socket$nl_rdma(0x10, 0x3, 0x10)
fanotify_init(0x0, 0x0)
r1 = socket$kcm(0x29, 0x2, 0x0)
r2 = memfd_create(&(0x7f0000000000)='e\xf4E\x88-\x00', 0x0)
pwritev(r2, &(0x7f0000000040)=[{&(0x7f0000000480)="db", 0x1}], 0x1, 0x4000001, 0x0)
sendfile(r1, r2, 0x0, 0x8000fb00)

4.032134089s ago: executing program 0 (id=264):
mkdirat(0xffffffffffffff9c, &(0x7f0000000340)='./file1\x00', 0x0)
mkdirat(0xffffffffffffff9c, &(0x7f0000000100)='./file0\x00', 0x0)
mkdir(&(0x7f0000000300)='./bus\x00', 0x0)
mount$overlay(0x0, &(0x7f00000000c0)='./bus\x00', &(0x7f0000000080), 0x0, &(0x7f0000000900)={[{@upperdir={'upperdir', 0x3d, './file1'}}, {@lowerdir={'lowerdir', 0x3d, './file0'}}, {@workdir={'workdir', 0x3d, './bus'}}]})
chdir(&(0x7f00000003c0)='./bus\x00')
pipe2$9p(&(0x7f0000000080)={<r0=>0xffffffffffffffff, <r1=>0xffffffffffffffff}, 0x0)
r2 = openat(0xffffffffffffff9c, &(0x7f0000000040)='./file1\x00', 0x101042, 0x0)
mount$9p_fd(0x0, &(0x7f0000000000)='./file1\x00', &(0x7f0000000100), 0x0, &(0x7f0000000280)={'trans=fd,', {'rfdno', 0x3d, r2}, 0x2c, {'wfdno', 0x3d, r1}})
r3 = openat$dir(0xffffffffffffff9c, &(0x7f0000000000)='.\x00', 0x0, 0x0)
r4 = fanotify_init(0x0, 0x0)
fanotify_mark(r4, 0x105, 0x4800003a, r3, 0x0)
splice(r0, 0x0, r2, 0x0, 0x200000000001, 0x0)

3.747309225s ago: executing program 0 (id=265):
bpf$PROG_LOAD(0x5, &(0x7f0000000180)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000feff17110000", @ANYRES32, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90)
r0 = bpf$MAP_CREATE(0x0, &(0x7f00000000c0)=@base={0xb, 0x7, 0x10001, 0x8, 0x1, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48)
bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90)
r1 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90)
bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000080)='sched_switch\x00', r1}, 0x10)
r2 = bpf$PROG_LOAD(0x5, &(0x7f000000e000)={0x10, 0x4, &(0x7f0000000040)=ANY=[@ANYBLOB="b4000000000000007910480000000000610400000000000095000000"], &(0x7f0000003ff6)='GPL\x00', 0x2, 0xfd90, &(0x7f000000cf3d)=""/195, 0x0, 0x0, '\x00', 0x0, @sk_msg, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48)
close(r2)
socketpair$unix(0x1, 0x1, 0x0, &(0x7f00000010c0))
bpf$PROG_LOAD(0x5, &(0x7f000000e000)={0xe, 0x4, &(0x7f0000000540)=ANY=[@ANYBLOB="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"], &(0x7f0000003ff6)='GPL\x00', 0x4, 0xfd90, &(0x7f000000cf3d)=""/195, 0x0, 0x0, '\x00', 0x0, @sk_skb, 0xffffffffffffffff, 0x8, &(0x7f0000000000), 0x366, 0x10, &(0x7f0000000000), 0x1dd, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48)
r3 = bpf$MAP_CREATE(0x0, &(0x7f0000000200)=@base={0xf, 0x4, 0x4, 0x12, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48)
bpf$MAP_UPDATE_ELEM_TAIL_CALL(0x2, &(0x7f00000000c0)={{r3}, &(0x7f0000000000), &(0x7f0000000080)=r2}, 0x20)
pselect6(0x40, &(0x7f00000001c0), 0x0, &(0x7f00000002c0)={0x3ff}, 0x0, 0x0)

2.760405526s ago: executing program 0 (id=266):
r0 = syz_usb_connect(0x0, 0x24, &(0x7f0000000000)=ANY=[@ANYBLOB="12010000795d6c08450c3a616dc4010203010902120001000000000904"], 0x0)
syz_usb_control_io(r0, 0x0, 0x0)
syz_usb_control_io$hid(r0, 0x0, &(0x7f0000000400)={0x2c, &(0x7f00000008c0)=ANY=[], 0x0, 0x0, 0x0, 0x0})
syz_usb_control_io$cdc_ncm(r0, 0x0, 0x0)
syz_usb_control_io(r0, 0x0, &(0x7f0000000800)={0x84, &(0x7f0000000280)={0x0, 0x0, 0x1, "12"}, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0})
syz_usb_control_io$printer(r0, 0x0, 0x0)
syz_usb_control_io$cdc_ecm(r0, 0x0, 0x0)
syz_usb_control_io$cdc_ncm(r0, 0x0, 0x0)
syz_usb_control_io(r0, 0x0, 0x0)
syz_usb_control_io$hid(r0, 0x0, &(0x7f00000007c0)={0x2c, &(0x7f0000000700)={0x20, 0xd}, 0x0, 0x0, 0x0, 0x0})
syz_usb_control_io(r0, 0x0, 0x0)
syz_usb_control_io(r0, 0x0, 0x0)

1.682444105s ago: executing program 2 (id=267):
r0 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000000), 0x0, 0x0)
r1 = ioctl$KVM_CREATE_VM(r0, 0xae01, 0x0)
ioctl$KVM_CREATE_IRQCHIP(r1, 0xae60)
sendmmsg$unix(0xffffffffffffffff, 0x0, 0x0, 0x0)
recvmmsg(0xffffffffffffffff, 0x0, 0x0, 0x2, 0x0)
r2 = dup(0xffffffffffffffff)
ioctl$TIOCL_SETSEL(r2, 0x541c, 0x0)
ioctl$FS_IOC_SET_ENCRYPTION_POLICY(r2, 0x800c6613, 0x0)
keyctl$setperm(0x5, 0x0, 0x0)
setrlimit(0x9, &(0x7f0000000000))
ioctl$KVM_CREATE_VCPU(r1, 0xae41, 0x0)
openat$cgroup_ro(0xffffffffffffff9c, &(0x7f00000000c0)='memory.events\x00', 0x26e1, 0x0)

1.424486929s ago: executing program 2 (id=268):
bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90)
ioctl$sock_ipv6_tunnel_SIOCGETTUNNEL(0xffffffffffffffff, 0x89f0, 0x0)
syz_mount_image$f2fs(&(0x7f0000000400), &(0x7f00000001c0)='./file0\x00', 0x800400, &(0x7f00000006c0)=ANY=[], 0xfe, 0x551a, &(0x7f0000005a40)="$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")
bpf$MAP_CREATE(0x0, 0x0, 0x0)
bpf$PROG_LOAD(0x5, 0x0, 0x0)
unlink(0x0)
bpf$PROG_LOAD(0x5, 0x0, 0x0)
syz_mount_image$ext4(&(0x7f00000002c0)='ext4\x00', &(0x7f0000000300)='./file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00', 0x10, &(0x7f0000000680), 0xfe, 0x244, &(0x7f0000000400)="$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")
openat$cgroup_ro(0xffffffffffffff9c, &(0x7f0000000000)='hugetlb.1GB.rsvd.usage_in_bytes\x00', 0x275a, 0x0)
syz_mount_image$ext4(&(0x7f0000000080)='ext4\x00', &(0x7f0000000280)='./file0\x00', 0x88a, &(0x7f00000001c0)={[{@usrquota}, {@usrjquota, 0x22}, {@errors_continue}, {@noload}, {@data_err_ignore}, {@grpjquota, 0x22}, {@grpquota}, {@jqfmt_vfsold}, {@noblock_validity}]}, 0xfe, 0x44e, &(0x7f0000000900)="$eJzs3M1vG0UbAPDHdpw0bfMmbykfDS0ECiLiI2nSD3rgUgQSB5CQ4FDEKSRpFeo2qAkSrSIIHMIRVeKOOCLxF3ChXBBwQuIKd4QUoVwonIzW3k3dxE7ixIlL/ftJm8x4xpp5dnfs8azXAXSsoeRPLuJgRPwaEf3V7J0Vhqr/bq0sTP69sjCZi3L5jT9zlXp/rSxMZlWz5x2oZsrlDdpdejtiolSavprmR+cvvzc6d+36czOXJy5OX5y+Mn727KmTx7rPjJ9uSZx9SV8HP5w9euSVt268Nnn+xjs/fp3092BaXhtHqwxV925dT7a6sTbrq0nnutrYEZpSiIjkcBUr478/CtG7WtYfL3/S1s4Bu6pczpd7GhcvloF7WDJRBzpR9kaffP7Ntj2aetwVls/F6jrGrXSrlnRFPq1TTD8j7YahiDi/+M8XyRa7tA4BAFDr5rmIeLbe/C8fD9TU+196bWggIv4fEYci4r6IOBwR90dU6j4YEQ812f7aKyTr5z/l/m0FtkXJ/O+F9NrWnfO/bPYXA4U011eJv5i7MFOaPpHuk+Eo9iT5sQ3a+O6lXz5rVFY7/0u2pP1sLpj244+uNQt0UxPzEzuJudbyxxGDXfXiz63OeZP58ZGIGNxmGzNPf3W0Udnm8W+gBZPy8pcRT1WP/2KsiT+Ta3h9cuz5M+OnR/dFafrEaHZWrPfTz0uvN2p/R/G3wPLNcuyve/6vxj+Q2xcxd+36pcr12rnm21j67dOGn2m2e/53596spLvTxz6YmJ+/OhbRnXt1/ePjt5+b5bP6yfk/fLz++D8Ut/fEwxGRnMTHIuKRiHg07ftjEfF4RBzfIP4fXnzi3ebj32BVvoWS+Kc2O/5Re/ybTxQuff9N8/FnkuN/qpIaTh/ZyuvfVju4k30HAAAA/xX5ynfgc/mR1XQ+PzJS/Q7/4difL83OzT9zYfb9K1PV78oPRDGfrXT116yHjqVrw1l+fE3+ZLpu/Hmht5IfmZwtTbU7eOhwBxqM/8TvhXb3Dth17teCzmX8Q+cy/qFzGf/QuYx/6Fz1xv9HbegHsPc2ef/v3at+AHvP/B86l/EPncv4h47U8N74/I5u+ZdoU+Lb7p39VsPWE5G/S0K+ZxLFqFvUteUfs9hmoqduUbtfmQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAFrj3wAAAP//j57jFA==")
syz_mount_image$msdos(&(0x7f0000000180), &(0x7f0000000100)='.\x00', 0x64, &(0x7f00000001c0)=ANY=[], 0x1, 0x0, &(0x7f0000000000))

0s ago: executing program 2 (id=269):
sendmsg$inet(0xffffffffffffffff, 0x0, 0x8861)
r0 = openat$ppp(0xffffffffffffff9c, &(0x7f0000000100), 0xc0802, 0x0)
ioctl$PPPIOCNEWUNIT(r0, 0xc004743e, &(0x7f00000000c0))
r1 = socket$pptp(0x18, 0x1, 0x2)
bind$pptp(r1, &(0x7f0000000000)={0x18, 0x2, {0x0, @dev={0xac, 0x14, 0x14, 0x10}}}, 0x1e)
connect$pptp(r1, &(0x7f0000000700)={0x18, 0x2, {0x0, @multicast1}}, 0x1e)
bpf$PROG_LOAD(0x5, &(0x7f0000000180)={0x1, 0x0, 0x0, 0x0, 0x7f, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x90)
r2 = openat$ppp(0xffffffffffffff9c, &(0x7f0000000040), 0x0, 0x0)
ioctl$EVIOCGPROP(r2, 0x40047438, &(0x7f0000000180)=""/246)
ioctl$PPPIOCSFLAGS1(r2, 0x4004743a, &(0x7f0000000300))
pwritev(r0, &(0x7f0000000940)=[{&(0x7f00000009c0)="0821f6d3a180b400", 0x8}, {&(0x7f0000001640)="3ab627ca19b947a1657813c43d24b1bc03bef5fe03e3bce4638a017a40e174ea6fb6de638083a09ed4", 0x29}], 0x2, 0xfffffffe, 0x0)

kernel console output (not intermixed with test programs):

18][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  136.035842][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  136.100894][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  136.141873][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  136.184799][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  136.208610][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  136.222633][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  136.233390][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  136.242770][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  136.305774][ T4489] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network
[  136.330300][ T4489] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[  136.350704][ T3644] Bluetooth: hci2: command tx timeout
[  136.364706][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  136.373933][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  136.538259][ T4593] netdevsim netdevsim1 netdevsim0: renamed from eth0
[  136.549852][ T4593] netdevsim netdevsim1 netdevsim1: renamed from eth1
[  136.560622][ T4593] netdevsim netdevsim1 netdevsim2: renamed from eth2
[  136.575383][ T4593] netdevsim netdevsim1 netdevsim3: renamed from eth3
[  136.671666][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  136.687843][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  136.773749][ T4476] device veth0_vlan entered promiscuous mode
[  136.854948][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[  136.864293][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[  136.879076][ T4689] chnl_net:caif_netlink_parms(): no params data found
[  136.908207][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[  136.916219][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[  137.006630][ T4489] 8021q: adding VLAN 0 to HW filter on device batadv0
[  137.015807][ T4476] device veth1_vlan entered promiscuous mode
[  137.029556][ T4689] bridge0: port 1(bridge_slave_0) entered blocking state
[  137.036689][ T4689] bridge0: port 1(bridge_slave_0) entered disabled state
[  137.051101][ T4689] device bridge_slave_0 entered promiscuous mode
[  137.061526][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  137.069929][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  137.087880][ T4593] 8021q: adding VLAN 0 to HW filter on device bond0
[  137.116349][ T4689] bridge0: port 2(bridge_slave_1) entered blocking state
[  137.132373][ T4689] bridge0: port 2(bridge_slave_1) entered disabled state
[  137.143680][ T4689] device bridge_slave_1 entered promiscuous mode
[  137.160411][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[  137.169411][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[  137.178688][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  137.188187][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  137.202434][ T4476] device veth0_macvtap entered promiscuous mode
[  137.215059][ T4476] device veth1_macvtap entered promiscuous mode
[  137.279537][ T4689] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link
[  137.296738][ T4593] 8021q: adding VLAN 0 to HW filter on device team0
[  137.305820][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[  137.324474][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macsec0: link becomes ready
[  137.334066][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[  137.347730][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[  137.356372][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready
[  137.370122][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready
[  137.378480][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[  137.386606][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[  137.399726][ T4689] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link
[  137.410526][ T4489] device veth0_vlan entered promiscuous mode
[  137.453970][ T4689] team0: Port device team_slave_0 added
[  137.461739][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready
[  137.472676][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready
[  137.481865][    T9] bridge0: port 1(bridge_slave_0) entered blocking state
[  137.489067][    T9] bridge0: port 1(bridge_slave_0) entered forwarding state
[  137.499058][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[  137.508006][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[  137.516450][    T9] bridge0: port 2(bridge_slave_1) entered blocking state
[  137.523602][    T9] bridge0: port 2(bridge_slave_1) entered forwarding state
[  137.540772][ T4489] device veth1_vlan entered promiscuous mode
[  137.552728][ T4476] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  137.566110][ T4476] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  137.576363][ T4476] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  137.587174][ T4476] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  137.599199][ T4476] batman_adv: batadv0: Interface activated: batadv_slave_0
[  137.610884][ T4689] team0: Port device team_slave_1 added
[  137.618287][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan0: link becomes ready
[  137.628685][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready
[  137.640254][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[  137.649598][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[  137.662242][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  137.690002][ T4476] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  137.702439][ T4476] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  137.713259][ T4476] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  137.723861][ T4476] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  137.736711][ T4476] batman_adv: batadv0: Interface activated: batadv_slave_1
[  137.774474][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan1: link becomes ready
[  137.783070][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[  137.796544][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[  137.805934][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  137.821524][ T4476] netdevsim netdevsim4 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[  137.831270][ T4476] netdevsim netdevsim4 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[  137.840139][ T4476] netdevsim netdevsim4 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[  137.849882][ T4476] netdevsim netdevsim4 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[  137.870547][ T4689] batman_adv: batadv0: Adding interface: batadv_slave_0
[  137.879962][ T4689] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  137.906401][ T4689] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active
[  137.932749][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  137.955023][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  138.022914][ T3738] netdevsim netdevsim0 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  138.067057][ T4689] batman_adv: batadv0: Adding interface: batadv_slave_1
[  138.074075][ T4689] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  138.100962][ T4689] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active
[  138.123535][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  138.133457][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  138.142807][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  138.152169][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[  138.162752][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[  138.172004][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  138.181203][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  138.196541][ T4489] device veth0_macvtap entered promiscuous mode
[  138.236070][ T3738] netdevsim netdevsim0 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  138.286399][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[  138.307775][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  138.316256][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  138.362322][ T4489] device veth1_macvtap entered promiscuous mode
[  138.415503][ T3738] netdevsim netdevsim0 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  138.431622][ T4593] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[  138.440377][ T3644] Bluetooth: hci2: command tx timeout
[  138.460240][ T4689] device hsr_slave_0 entered promiscuous mode
[  138.471794][ T4689] device hsr_slave_1 entered promiscuous mode
[  138.481482][ T4689] debugfs: Directory 'hsr0' with parent 'hsr' already present!
[  138.490092][ T4689] Cannot create hsr debugfs directory
[  138.549959][ T3738] netdevsim netdevsim0 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  138.638019][   T51] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  138.648539][   T51] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  138.679157][ T4489] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  138.704038][ T4489] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  138.715397][ T4489] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  138.726109][ T4489] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  138.736255][ T4489] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  138.747231][ T4489] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  138.759148][ T4489] batman_adv: batadv0: Interface activated: batadv_slave_0
[  138.787549][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): macsec0: link becomes ready
[  138.808259][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready
[  138.816273][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[  138.825658][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[  138.855803][ T4489] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  138.877023][ T4489] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  138.887428][ T4489] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  138.898014][ T4489] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  138.908737][ T4489] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  138.919511][ T4489] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  138.932168][ T4489] batman_adv: batadv0: Interface activated: batadv_slave_1
[  138.957656][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[  138.966489][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[  138.978304][   T33] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  138.992005][   T33] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  139.010128][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready
[  139.033733][ T4489] netdevsim netdevsim3 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[  139.044162][ T4489] netdevsim netdevsim3 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[  139.053775][ T4489] netdevsim netdevsim3 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[  139.063004][ T4489] netdevsim netdevsim3 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[  139.102489][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  139.123215][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  139.222380][ T4593] 8021q: adding VLAN 0 to HW filter on device batadv0
[  139.594628][    T9] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  139.598967][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  139.615251][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  139.629476][    T9] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  139.758571][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready
[  139.865606][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[  139.889908][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[  139.932891][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[  139.967628][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[  139.978728][ T4593] device veth0_vlan entered promiscuous mode
[  140.092918][  T102] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  140.111011][ T4593] device veth1_vlan entered promiscuous mode
[  140.123687][  T102] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  140.321467][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready
[  140.507562][ T3644] Bluetooth: hci2: command tx timeout
[  141.236541][ T4593] device veth0_macvtap entered promiscuous mode
[  141.313078][ T3646] Bluetooth: hci1: unexpected cc 0x0c03 length: 249 > 1
[  141.334788][ T3646] Bluetooth: hci1: unexpected cc 0x1003 length: 249 > 9
[  141.344261][ T3646] Bluetooth: hci1: unexpected cc 0x1001 length: 249 > 9
[  141.354570][ T4766] loop3: detected capacity change from 0 to 512
[  141.361903][ T3646] Bluetooth: hci1: unexpected cc 0x0c23 length: 249 > 4
[  141.367947][ T4769] loop2: detected capacity change from 0 to 128
[  141.378449][ T3646] Bluetooth: hci1: unexpected cc 0x0c25 length: 249 > 3
[  141.385769][ T3646] Bluetooth: hci1: unexpected cc 0x0c38 length: 249 > 2
[  141.417810][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[  141.426920][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[  141.447796][ T4769] UDF-fs: error (device loop2): udf_read_tagged: read failed, block=256, location=256
[  141.474000][ T4766] EXT4-fs error (device loop3): ext4_get_branch:178: inode #13: block 2: comm syz.3.138: invalid block
[  141.487588][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[  141.531620][ T4766] EXT4-fs error (device loop3): ext4_free_branches:1030: inode #13: comm syz.3.138: invalid indirect mapped block 10 (level 1)
[  141.536305][ T4769] UDF-fs: INFO Mounting volume 'LinuxUDF', timestamp 2022/11/22 14:59 (1000)
[  141.595421][ T4766] EXT4-fs error (device loop3): ext4_free_branches:1030: inode #13: comm syz.3.138: invalid indirect mapped block 8 (level 1)
[  141.618480][ T4593] device veth1_macvtap entered promiscuous mode
[  141.635979][ T4766] EXT4-fs (loop3): 1 truncate cleaned up
[  141.644338][ T4766] EXT4-fs (loop3): mounted filesystem without journal. Quota mode: none.
[  141.764638][ T4593] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  141.783842][ T4593] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  141.796208][ T4593] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  141.815292][ T4593] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  141.825721][ T4593] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  141.828180][ T4766] EXT4-fs error (device loop3): ext4_read_block_bitmap_nowait:477: comm syz.3.138: Invalid block bitmap block 0 in block_group 0
[  141.837787][ T4593] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  141.864427][ T4593] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  141.875283][ T4593] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  141.896949][ T4766] EXT4-fs error (device loop3): ext4_discard_preallocations:5122: comm syz.3.138: Error -117 reading block bitmap for 0
[  141.905280][ T4593] batman_adv: batadv0: Interface activated: batadv_slave_0
[  141.918615][  T102] EXT4-fs error (device loop3): __ext4_get_inode_loc:4506: comm kworker/u4:4: Invalid inode table block 0 in block_group 0
[  141.933998][ T4766] EXT4-fs error (device loop3): ext4_read_block_bitmap_nowait:477: comm syz.3.138: Invalid block bitmap block 0 in block_group 0
[  141.961466][  T102] EXT4-fs error (device loop3) in ext4_reserve_inode_write:5882: Corrupt filesystem
[  141.969697][ T4766] EXT4-fs error (device loop3): ext4_discard_preallocations:5122: comm syz.3.138: Error -117 reading block bitmap for 0
[  141.979856][  T102] EXT4-fs error (device loop3): ext4_dirty_inode:6086: inode #18: comm kworker/u4:4: mark_inode_dirty error
[  141.997266][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[  142.008668][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[  142.017697][ T4766] EXT4-fs error (device loop3): __ext4_get_inode_loc:4506: comm syz.3.138: Invalid inode table block 0 in block_group 0
[  142.025389][  T102] EXT4-fs error (device loop3): __ext4_get_inode_loc:4506: comm kworker/u4:4: Invalid inode table block 0 in block_group 0
[  142.040243][ T4766] EXT4-fs error (device loop3) in ext4_reserve_inode_write:5882: Corrupt filesystem
[  142.095841][ T4593] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  142.114099][ T4593] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  142.124428][ T4593] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  142.146518][ T4593] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  142.157009][ T4593] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  142.170165][ T4593] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  142.180526][ T4593] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  142.199681][ T4593] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  142.219704][ T4593] batman_adv: batadv0: Interface activated: batadv_slave_1
[  142.221325][ T4489] EXT4-fs (loop3): unmounting filesystem.
[  142.249166][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[  142.258885][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[  142.380633][ T4593] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[  142.389704][ T4593] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[  142.408649][ T4593] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[  142.424110][ T4593] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[  142.503396][ T4775] dccp_close: ABORT with 20 bytes unread
[  142.801863][ T4689] netdevsim netdevsim0 netdevsim0: renamed from eth0
[  142.934314][ T4689] netdevsim netdevsim0 netdevsim1: renamed from eth1
[  142.973761][ T4689] netdevsim netdevsim0 netdevsim2: renamed from eth2
[  143.362175][ T4689] netdevsim netdevsim0 netdevsim3: renamed from eth3
[  143.469063][ T3646] Bluetooth: hci1: command tx timeout
[  143.905789][ T3738] device hsr_slave_0 left promiscuous mode
[  144.147294][ T3738] device hsr_slave_1 left promiscuous mode
[  144.157436][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  144.164915][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  144.228193][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  144.235687][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  144.270611][ T3738] device bridge_slave_1 left promiscuous mode
[  144.277113][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  144.302373][ T3646] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1
[  144.312312][ T3738] device bridge_slave_0 left promiscuous mode
[  144.320722][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  144.321501][ T3646] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9
[  144.338411][ T3646] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9
[  144.346263][ T3646] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4
[  144.356621][ T3646] Bluetooth: hci4: unexpected cc 0x0c25 length: 249 > 3
[  144.364327][ T3646] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2
[  144.456432][ T3738] device veth1_macvtap left promiscuous mode
[  144.477748][ T3738] device veth0_macvtap left promiscuous mode
[  144.483992][ T3738] device veth1_vlan left promiscuous mode
[  144.490210][ T3738] device veth0_vlan left promiscuous mode
[  145.002218][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  145.050622][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  145.103039][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  145.164906][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  145.549830][ T3646] Bluetooth: hci1: command tx timeout
[  145.686956][ T3738] bond0 (unregistering): Released all slaves
[  145.785942][ T4762] chnl_net:caif_netlink_parms(): no params data found
[  145.822225][   T51] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  145.837827][   T51] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  145.947444][ T3976] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready
[  146.000147][ T3860] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  146.031177][ T3860] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  146.078328][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready
[  146.086656][ T4762] bridge0: port 1(bridge_slave_0) entered blocking state
[  146.094363][ T4762] bridge0: port 1(bridge_slave_0) entered disabled state
[  146.103307][ T4762] device bridge_slave_0 entered promiscuous mode
[  146.142529][ T4762] bridge0: port 2(bridge_slave_1) entered blocking state
[  146.162314][ T4762] bridge0: port 2(bridge_slave_1) entered disabled state
[  146.181194][ T4762] device bridge_slave_1 entered promiscuous mode
[  146.265343][ T4762] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link
[  146.325589][ T4762] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link
[  146.377133][ T4689] 8021q: adding VLAN 0 to HW filter on device bond0
[  146.418328][ T4762] team0: Port device team_slave_0 added
[  146.427499][ T3646] Bluetooth: hci4: command tx timeout
[  146.428066][ T4801] chnl_net:caif_netlink_parms(): no params data found
[  146.454156][ T4762] team0: Port device team_slave_1 added
[  146.499243][ T3976] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready
[  146.517026][ T3952] usb 2-1: new high-speed USB device number 4 using dummy_hcd
[  146.518823][ T3976] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready
[  146.539643][ T4689] 8021q: adding VLAN 0 to HW filter on device team0
[  146.550248][ T4762] batman_adv: batadv0: Adding interface: batadv_slave_0
[  146.557897][ T4762] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  146.584527][ T4762] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active
[  146.598983][ T4762] batman_adv: batadv0: Adding interface: batadv_slave_1
[  146.606030][ T4762] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  146.633907][ T4762] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active
[  146.682604][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready
[  146.697725][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready
[  146.706576][ T3860] bridge0: port 1(bridge_slave_0) entered blocking state
[  146.713748][ T3860] bridge0: port 1(bridge_slave_0) entered forwarding state
[  146.722505][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[  146.732416][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[  146.742622][ T3860] bridge0: port 2(bridge_slave_1) entered blocking state
[  146.749811][ T3860] bridge0: port 2(bridge_slave_1) entered forwarding state
[  146.759099][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready
[  146.843316][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  146.875306][ T4820] nbd2: detected capacity change from 0 to 22
[  146.892080][ T3952] usb 2-1: New USB device found, idVendor=046d, idProduct=0870, bcdDevice=61.47
[  146.905370][   T52] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  146.905565][ T4820] block nbd2: shutting down sockets
[  146.915325][   T52] Buffer I/O error on dev nbd2, logical block 0, async page read
[  146.929700][ T3952] usb 2-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0
[  146.948499][ T1070] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  146.949032][ T3952] usb 2-1: config 0 descriptor??
[  146.957966][ T1070] Buffer I/O error on dev nbd2, logical block 0, async page read
[  146.976585][   T52] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  146.988984][   T52] Buffer I/O error on dev nbd2, logical block 0, async page read
[  146.997459][   T52] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  147.006558][   T52] Buffer I/O error on dev nbd2, logical block 0, async page read
[  147.007282][ T4762] device hsr_slave_0 entered promiscuous mode
[  147.014632][   T52] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  147.029607][   T52] Buffer I/O error on dev nbd2, logical block 0, async page read
[  147.037738][   T52] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  147.037916][ T4762] device hsr_slave_1 entered promiscuous mode
[  147.046850][   T52] Buffer I/O error on dev nbd2, logical block 0, async page read
[  147.047071][   T52] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  147.072060][   T52] Buffer I/O error on dev nbd2, logical block 0, async page read
[  147.080722][   T52] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  147.089889][   T52] Buffer I/O error on dev nbd2, logical block 0, async page read
[  147.092067][ T4762] debugfs: Directory 'hsr0' with parent 'hsr' already present!
[  147.097731][ T3727] ldm_validate_partition_table(): Disk read failed.
[  147.097931][   T52] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  147.121727][   T52] Buffer I/O error on dev nbd2, logical block 0, async page read
[  147.129738][   T52] I/O error, dev nbd2, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2
[  147.129887][ T4762] Cannot create hsr debugfs directory
[  147.138853][   T52] Buffer I/O error on dev nbd2, logical block 0, async page read
[  147.139220][ T3727] Dev nbd2: unable to read RDB block 0
[  147.157395][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  147.164858][ T3952] gspca_main: STV06xx-2.14.0 probing 046d:0870
[  147.173327][ T3727]  nbd2: unable to read partition table
[  147.181308][ T3727] nbd2: partition table beyond EOD, truncated
[  147.192619][ T3727] ldm_validate_partition_table(): Disk read failed.
[  147.199788][ T3727] Dev nbd2: unable to read RDB block 0
[  147.207722][ T3727]  nbd2: unable to read partition table
[  147.213484][ T3727] nbd2: partition table beyond EOD, truncated
[  147.218196][ T4801] bridge0: port 1(bridge_slave_0) entered blocking state
[  147.230911][ T4801] bridge0: port 1(bridge_slave_0) entered disabled state
[  147.258432][ T4801] device bridge_slave_0 entered promiscuous mode
[  147.344053][ T3738] netdevsim netdevsim3 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  147.375869][ T4801] bridge0: port 2(bridge_slave_1) entered blocking state
[  147.378296][ T4823] loop2: detected capacity change from 0 to 2048
[  147.404958][ T4823] EXT4-fs (loop2): mounted filesystem without journal. Quota mode: none.
[  147.407083][ T4801] bridge0: port 2(bridge_slave_1) entered disabled state
[  147.451858][ T4801] device bridge_slave_1 entered promiscuous mode
[  147.474670][ T4823] EXT4-fs error (device loop2): ext4_mb_generate_buddy:1102: group 0, block bitmap and bg descriptor inconsistent: 25 vs 150994969 free clusters
[  147.500265][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  147.507137][ T4823] EXT4-fs (loop2): Remounting filesystem read-only
[  147.514112][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  147.524035][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  147.538478][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  147.569268][ T3738] netdevsim netdevsim3 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  147.606057][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  147.618610][ T4801] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link
[  147.643771][ T3646] Bluetooth: hci1: command tx timeout
[  147.654298][ T3738] netdevsim netdevsim3 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  147.673940][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  147.686249][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  147.708031][ T4801] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link
[  147.723493][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  147.734589][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  147.766048][ T3738] netdevsim netdevsim3 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  147.823804][ T4689] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[  147.834406][ T3650] EXT4-fs (loop2): unmounting filesystem.
[  147.849597][ T4801] team0: Port device team_slave_0 added
[  147.884430][ T4801] team0: Port device team_slave_1 added
[  147.964483][ T4829] loop2: detected capacity change from 0 to 1024
[  147.991089][ T4829] EXT4-fs: Warning: mounting with an experimental mount option 'dioread_nolock' for blocksize < PAGE_SIZE
[  148.054468][ T4801] batman_adv: batadv0: Adding interface: batadv_slave_0
[  148.067083][ T4801] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  148.077397][ T4829] EXT4-fs (loop2): mounted filesystem without journal. Quota mode: none.
[  148.128570][ T4801] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active
[  148.148355][ T4801] batman_adv: batadv0: Adding interface: batadv_slave_1
[  148.155338][ T4801] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  148.177946][   T26] audit: type=1800 audit(1727478696.186:49): pid=4829 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.2.183" name="bus" dev="loop2" ino=18 res=0 errno=0
[  148.181634][ T4801] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active
[  148.314232][ T4829] EXT4-fs error (device loop2): ext4_ind_map_blocks:604: inode #15: comm syz.2.183: Can't allocate blocks for non-extent mapped inodes with bigalloc
[  148.395277][ T4762] netdevsim netdevsim4 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  148.415741][ T4829] EXT4-fs (loop2): Delayed block allocation failed for inode 15 at logical offset 0 with max blocks 1 with error 117
[  148.467332][ T4829] EXT4-fs (loop2): This should not happen!! Data will be lost
[  148.467332][ T4829] 
[  148.507249][ T3646] Bluetooth: hci4: command tx timeout
[  148.571322][ T4801] device hsr_slave_0 entered promiscuous mode
[  148.608720][ T4801] device hsr_slave_1 entered promiscuous mode
[  148.617187][ T4801] debugfs: Directory 'hsr0' with parent 'hsr' already present!
[  148.624930][ T4801] Cannot create hsr debugfs directory
[  148.637942][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  148.692656][ T4762] netdevsim netdevsim4 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  148.708080][ T3650] EXT4-fs error (device loop2): ext4_readdir:220: inode #11: comm syz-executor: path /68/file1/lost+found: directory fails checksum at offset 0
[  148.776112][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  148.812104][ T3650] EXT4-fs error (device loop2): ext4_readdir:220: inode #11: comm syz-executor: path /68/file1/lost+found: directory fails checksum at offset 1024
[  148.829471][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  148.877379][ T3952] gspca_stv06xx: I2C: Read error writing address: -71
[  148.893390][ T3650] EXT4-fs error (device loop2): ext4_readdir:220: inode #11: comm syz-executor: path /68/file1/lost+found: directory fails checksum at offset 2048
[  148.894642][ T3952] usb 2-1: USB disconnect, device number 4
[  148.933555][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  148.961951][ T3650] EXT4-fs error (device loop2): ext4_readdir:220: inode #11: comm syz-executor: path /68/file1/lost+found: directory fails checksum at offset 3072
[  148.981755][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  148.993718][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  149.001323][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  149.010072][ T3650] EXT4-fs error (device loop2): ext4_readdir:220: inode #11: comm syz-executor: path /68/file1/lost+found: directory fails checksum at offset 4096
[  149.033393][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  149.068574][ T4762] netdevsim netdevsim4 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  149.079248][ T3650] EXT4-fs error (device loop2): ext4_readdir:220: inode #11: comm syz-executor: path /68/file1/lost+found: directory fails checksum at offset 5120
[  149.115035][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  149.153216][ T3650] EXT4-fs error (device loop2): ext4_readdir:220: inode #11: comm syz-executor: path /68/file1/lost+found: directory fails checksum at offset 6144
[  149.198412][ T4689] 8021q: adding VLAN 0 to HW filter on device batadv0
[  149.218018][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  149.254746][ T4762] netdevsim netdevsim4 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  149.265830][ T3650] EXT4-fs error (device loop2): ext4_readdir:220: inode #11: comm syz-executor: path /68/file1/lost+found: directory fails checksum at offset 7168
[  149.289897][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  149.328011][ T3650] EXT4-fs error (device loop2): ext4_readdir:220: inode #11: comm syz-executor: path /68/file1/lost+found: directory fails checksum at offset 8192
[  149.353266][ T3650] EXT4-fs warning (device loop2): ext4_dirblock_csum_verify:406: inode #11: comm syz-executor: No space for directory leaf checksum. Please run e2fsck -D.
[  149.427261][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  149.450004][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  149.566319][ T4852] loop1: detected capacity change from 0 to 512
[  149.650053][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[  149.659668][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[  149.663444][ T4852] EXT4-fs error (device loop1): ext4_free_branches:1030: inode #11: comm syz.1.185: invalid indirect mapped block 256 (level 2)
[  149.669840][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[  149.690175][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[  149.706966][ T3646] Bluetooth: hci1: command tx timeout
[  149.764093][ T4852] EXT4-fs (loop1): 2 truncates cleaned up
[  149.772594][ T4689] device veth0_vlan entered promiscuous mode
[  149.777079][ T4852] EXT4-fs (loop1): mounted filesystem without journal. Quota mode: writeback.
[  149.788420][ T4689] device veth1_vlan entered promiscuous mode
[  149.960655][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan0: link becomes ready
[  149.969410][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan1: link becomes ready
[  149.978074][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[  149.988459][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[  150.022095][ T4689] device veth0_macvtap entered promiscuous mode
[  150.036621][ T4593] EXT4-fs (loop1): unmounting filesystem.
[  150.203322][ T4689] device veth1_macvtap entered promiscuous mode
[  150.587510][ T3646] Bluetooth: hci4: command tx timeout
[  150.840391][ T4021] EXT4-fs (loop2): unmounting filesystem.
[  150.858592][ T4689] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  150.925116][ T4689] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  150.954697][ T4689] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  150.977593][ T4689] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  150.989757][ T4689] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  151.000714][ T4689] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  151.039059][ T4689] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  151.069570][ T4689] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  151.089883][ T4689] batman_adv: batadv0: Interface activated: batadv_slave_0
[  151.138176][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[  151.151035][ T3644] Bluetooth: hci0: unexpected cc 0x0c03 length: 249 > 1
[  151.162253][ T3644] Bluetooth: hci0: unexpected cc 0x1003 length: 249 > 9
[  151.168638][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[  151.185400][ T3644] Bluetooth: hci0: unexpected cc 0x1001 length: 249 > 9
[  151.186317][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[  151.208786][ T3644] Bluetooth: hci0: unexpected cc 0x0c23 length: 249 > 4
[  151.226881][ T3644] Bluetooth: hci0: unexpected cc 0x0c25 length: 249 > 3
[  151.234695][ T3644] Bluetooth: hci0: unexpected cc 0x0c38 length: 249 > 2
[  151.326755][ T4689] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  151.339969][ T4689] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  151.354003][ T4689] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  151.366125][ T4689] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  151.377708][ T4689] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  151.388280][ T4689] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  151.398635][ T4689] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  151.414419][ T4689] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  151.425658][ T4689] batman_adv: batadv0: Interface activated: batadv_slave_1
[  151.444968][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[  151.463771][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[  151.495755][ T4689] netdevsim netdevsim0 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[  151.505942][ T4689] netdevsim netdevsim0 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[  151.514881][ T4689] netdevsim netdevsim0 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[  151.523706][ T4689] netdevsim netdevsim0 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[  151.942936][    T9] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  151.999498][    T9] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  152.070171][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready
[  152.147728][   T51] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  152.155974][   T51] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  152.158026][ T4762] netdevsim netdevsim4 netdevsim0: renamed from eth0
[  152.217138][ T4762] netdevsim netdevsim4 netdevsim1: renamed from eth1
[  152.276530][ T3646] Bluetooth: hci3: unexpected cc 0x0c03 length: 249 > 1
[  152.309511][ T3646] Bluetooth: hci3: unexpected cc 0x1003 length: 249 > 9
[  152.322253][ T3646] Bluetooth: hci3: unexpected cc 0x1001 length: 249 > 9
[  152.330915][ T3646] Bluetooth: hci3: unexpected cc 0x0c23 length: 249 > 4
[  152.339055][ T3646] Bluetooth: hci3: unexpected cc 0x0c25 length: 249 > 3
[  152.350038][ T3646] Bluetooth: hci3: unexpected cc 0x0c38 length: 249 > 2
[  152.391987][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready
[  152.439768][ T4762] netdevsim netdevsim4 netdevsim2: renamed from eth2
[  152.569779][ T4801] netdevsim netdevsim3 netdevsim0: renamed from eth0
[  152.596544][ T4762] netdevsim netdevsim4 netdevsim3: renamed from eth3
[  152.667317][ T3646] Bluetooth: hci4: command tx timeout
[  152.823828][ T4801] netdevsim netdevsim3 netdevsim1: renamed from eth1
[  152.893626][ T4801] netdevsim netdevsim3 netdevsim2: renamed from eth2
[  152.951556][ T4801] netdevsim netdevsim3 netdevsim3: renamed from eth3
[  152.969633][ T3738] device hsr_slave_0 left promiscuous mode
[  152.982539][ T3738] device hsr_slave_1 left promiscuous mode
[  152.991075][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  152.998963][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  153.010248][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  153.019213][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  153.028444][ T3738] device bridge_slave_1 left promiscuous mode
[  153.035329][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  153.050896][ T3738] device bridge_slave_0 left promiscuous mode
[  153.064502][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  153.110714][ T3738] device hsr_slave_0 left promiscuous mode
[  153.125360][ T3738] device hsr_slave_1 left promiscuous mode
[  153.135814][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  153.150264][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  153.165997][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  153.182170][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  153.193232][ T3738] device bridge_slave_1 left promiscuous mode
[  153.205748][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  153.220448][ T3738] device bridge_slave_0 left promiscuous mode
[  153.230426][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  153.302913][ T3738] device veth1_macvtap left promiscuous mode
[  153.309198][ T3644] Bluetooth: hci0: command tx timeout
[  153.328959][ T3738] device veth0_macvtap left promiscuous mode
[  153.335427][ T3738] device veth1_vlan left promiscuous mode
[  153.348900][ T3738] device veth0_vlan left promiscuous mode
[  153.368477][ T3738] device veth1_macvtap left promiscuous mode
[  153.374570][ T3738] device veth0_macvtap left promiscuous mode
[  153.395139][ T3738] device veth1_vlan left promiscuous mode
[  153.408720][ T3738] device veth0_vlan left promiscuous mode
[  154.335129][ T4908] loop0: detected capacity change from 0 to 32768
[  154.382988][ T4908] XFS (loop0): Mounting V5 Filesystem
[  154.445383][ T3646] Bluetooth: hci3: command tx timeout
[  154.550727][ T4908] XFS (loop0): Ending clean mount
[  154.645166][ T4908] XFS (loop0): Quotacheck needed: Please wait.
[  154.797912][ T4908] XFS (loop0): Quotacheck: Done.
[  154.800146][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  154.896113][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  154.962388][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  154.994829][ T4689] XFS (loop0): Unmounting Filesystem
[  155.070564][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  155.396941][ T3646] Bluetooth: hci0: command tx timeout
[  155.938970][ T3738] bond0 (unregistering): Released all slaves
[  156.057020][  T152] usb 1-1: new full-speed USB device number 2 using dummy_hcd
[  156.484218][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  156.513818][ T3646] Bluetooth: hci3: command tx timeout
[  156.551797][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  156.604892][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  156.617082][  T152] usb 1-1: New USB device found, idVendor=0b05, idProduct=173f, bcdDevice=9d.6b
[  156.627520][  T152] usb 1-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3
[  156.635682][  T152] usb 1-1: Product: syz
[  156.640666][  T152] usb 1-1: Manufacturer: syz
[  156.645323][  T152] usb 1-1: SerialNumber: syz
[  156.660218][  T152] usb 1-1: config 0 descriptor??
[  156.683816][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  157.147134][  T152] dvb-usb: found a 'ASUS My Cinema U3100 Mini DVBT Tuner' in warm state.
[  157.185313][  T152] dvb-usb: will use the device's hardware PID filter (table count: 32).
[  157.215606][  T152] dvbdev: DVB: registering new adapter (ASUS My Cinema U3100 Mini DVBT Tuner)
[  157.234877][  T152] usb 1-1: media controller created
[  157.248633][  T152] dvbdev: dvb_create_media_entity: media entity 'dvb-demux' registered.
[  157.342122][ T3738] bond0 (unregistering): Released all slaves
[  157.364162][  T152] DVB: Unable to find symbol dib7000p_attach()
[  157.378698][  T152] dvb-usb: no frontend was attached by 'ASUS My Cinema U3100 Mini DVBT Tuner'
[  157.446320][ T4869] chnl_net:caif_netlink_parms(): no params data found
[  157.466994][ T3646] Bluetooth: hci0: command tx timeout
[  157.476956][  T152] rc_core: IR keymap rc-dib0700-rc5 not found
[  157.483084][  T152] Registered IR keymap rc-empty
[  157.496883][  T152] dvb-usb: could not initialize remote control.
[  157.503411][  T152] dvb-usb: ASUS My Cinema U3100 Mini DVBT Tuner successfully initialized and connected.
[  157.708290][ T4869] bridge0: port 1(bridge_slave_0) entered blocking state
[  157.748991][ T4869] bridge0: port 1(bridge_slave_0) entered disabled state
[  157.768750][ T4869] device bridge_slave_0 entered promiscuous mode
[  157.785131][ T3683] usb 1-1: USB disconnect, device number 2
[  157.801695][ T4869] bridge0: port 2(bridge_slave_1) entered blocking state
[  157.809254][ T4869] bridge0: port 2(bridge_slave_1) entered disabled state
[  157.818370][ T4869] device bridge_slave_1 entered promiscuous mode
[  157.857295][ T3683] dvb-usb: ASUS My Cinema U3100 Mini DVBT Tuner successfully deinitialized and disconnected.
[  157.889776][ T4877] chnl_net:caif_netlink_parms(): no params data found
[  157.941930][ T4869] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link
[  157.954290][ T4869] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link
[  158.040771][ T4869] team0: Port device team_slave_0 added
[  158.060886][ T4801] 8021q: adding VLAN 0 to HW filter on device bond0
[  158.080633][ T4762] 8021q: adding VLAN 0 to HW filter on device bond0
[  158.092329][ T4869] team0: Port device team_slave_1 added
[  158.144624][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready
[  158.152714][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready
[  158.173254][ T4801] 8021q: adding VLAN 0 to HW filter on device team0
[  158.181521][ T4877] bridge0: port 1(bridge_slave_0) entered blocking state
[  158.195508][ T4877] bridge0: port 1(bridge_slave_0) entered disabled state
[  158.203907][ T4877] device bridge_slave_0 entered promiscuous mode
[  158.235802][ T4869] batman_adv: batadv0: Adding interface: batadv_slave_0
[  158.243310][ T4869] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  158.269977][ T4869] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active
[  158.287287][ T4877] bridge0: port 2(bridge_slave_1) entered blocking state
[  158.294621][ T4877] bridge0: port 2(bridge_slave_1) entered disabled state
[  158.308960][ T4877] device bridge_slave_1 entered promiscuous mode
[  158.317561][ T4869] batman_adv: batadv0: Adding interface: batadv_slave_1
[  158.324543][ T4869] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  158.371252][ T4869] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active
[  158.388482][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready
[  158.397907][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready
[  158.406481][ T3860] bridge0: port 1(bridge_slave_0) entered blocking state
[  158.413688][ T3860] bridge0: port 1(bridge_slave_0) entered forwarding state
[  158.490173][ T4762] 8021q: adding VLAN 0 to HW filter on device team0
[  158.506356][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready
[  158.515777][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[  158.526168][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[  158.549651][ T3860] bridge0: port 2(bridge_slave_1) entered blocking state
[  158.556936][ T3860] bridge0: port 2(bridge_slave_1) entered forwarding state
[  158.565431][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready
[  158.573584][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready
[  158.581942][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  158.591265][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  158.597599][ T3646] Bluetooth: hci3: command tx timeout
[  158.601534][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  158.619871][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  158.643397][ T4877] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link
[  158.666585][ T4948] netlink: 24 bytes leftover after parsing attributes in process `syz.0.195'.
[  158.688993][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  158.703177][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  158.718267][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  158.727557][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready
[  158.737587][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready
[  158.746358][ T3860] bridge0: port 1(bridge_slave_0) entered blocking state
[  158.753544][ T3860] bridge0: port 1(bridge_slave_0) entered forwarding state
[  158.763982][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[  158.774159][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[  158.789818][ T3860] bridge0: port 2(bridge_slave_1) entered blocking state
[  158.797030][ T3860] bridge0: port 2(bridge_slave_1) entered forwarding state
[  158.805982][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  158.815439][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  158.825034][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  158.852593][ T4877] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link
[  158.882788][ T4801] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network
[  158.895003][ T4801] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[  158.906390][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready
[  158.917791][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  158.928333][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  158.938962][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  158.948859][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  158.966169][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  159.016422][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  159.025403][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  159.035355][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  159.048301][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  159.058923][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  159.068041][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  159.078214][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  159.091812][ T4869] device hsr_slave_0 entered promiscuous mode
[  159.099085][ T4869] device hsr_slave_1 entered promiscuous mode
[  159.126335][ T4762] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[  159.165639][ T4877] team0: Port device team_slave_0 added
[  159.218004][ T4877] team0: Port device team_slave_1 added
[  159.227117][  T152] usb 1-1: new full-speed USB device number 3 using dummy_hcd
[  159.319470][ T4877] batman_adv: batadv0: Adding interface: batadv_slave_0
[  159.326476][ T4877] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  159.387925][ T4877] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active
[  159.430006][ T4877] batman_adv: batadv0: Adding interface: batadv_slave_1
[  159.437647][ T4877] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  159.465018][ T4877] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active
[  159.509437][ T3738] netdevsim netdevsim2 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  159.547017][ T3646] Bluetooth: hci0: command tx timeout
[  159.607092][  T152] usb 1-1: config 1 interface 0 altsetting 5 has 2 endpoint descriptors, different from the interface descriptor's value: 1
[  159.625192][ T4877] device hsr_slave_0 entered promiscuous mode
[  159.627760][  T152] usb 1-1: config 1 interface 0 has no altsetting 0
[  159.648072][ T4877] device hsr_slave_1 entered promiscuous mode
[  159.655543][ T4877] debugfs: Directory 'hsr0' with parent 'hsr' already present!
[  159.664045][ T4877] Cannot create hsr debugfs directory
[  159.696050][ T3738] netdevsim netdevsim2 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  159.724254][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  159.732431][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  159.754030][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  159.761945][    T9] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  159.783288][ T4801] 8021q: adding VLAN 0 to HW filter on device batadv0
[  159.811015][ T3738] netdevsim netdevsim2 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  159.830486][  T152] usb 1-1: New USB device found, idVendor=05ac, idProduct=0247, bcdDevice= 0.40
[  159.852649][  T152] usb 1-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3
[  159.860972][  T152] usb 1-1: Product: 繑♑斲랠䋙跟꺹춧쳄࢓⑭柾ẛﻒ◪慠现蟺妨ᜫ킧鏔봼뤀逛懜戎陡ꐎ礹䘏ꐎ椒蝃宂院嚄吩씏컄涐탤鑎퍿쮔邢饉Ჴ쑂ꤙﻱ໌᯳촗矘쐜뛶녤纩꼱鏗릮ⷍﯓ뤔뒵㝌椢鞕䂵첦蔯뵦㠑櫵伡₻堚王쬃촨냈翡U랈͍銁ͅ揱ᚌﶴ൒ꯃ瀘荏⮝榛ᕘ勞
[  159.902536][ T4869] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  159.913323][  T152] usb 1-1: Manufacturer: 䐊
[  159.913350][  T152] usb 1-1: SerialNumber: ꓿踋଍篐ၨ㢥䎦劽⑂䷪㽠쮷뾲馑䰁䠣擤ꔲ棿썥ើٸꣷḓ햙唿섮焧ল䉵䎇㍯䫘ਬ襺噑䥘豵ꕨ顯餼鼋ꋉᚂ货販솷뮦쥪ኈ쀔嬦쳌Ẏ奼쏶૬襐埔䮱䤩鋄踅ﻭᅂ◱ꐊ旮㐾ᬸ灒퀠뉛맦ᔝ⫫ꮁꤰ겋䟛ฤㆨ䖒Ⲣ霾보龅噘錂ᆲᨁ虆罅멎鏈鏞⥯▷弁譊ਈ
[  159.957533][ T4954] raw-gadget.0 gadget.0: fail, usb_ep_enable returned -22
[  159.989906][ T4762] 8021q: adding VLAN 0 to HW filter on device batadv0
[  160.057752][ T3738] netdevsim netdevsim2 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  160.084465][ T3976] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  160.099994][ T3976] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  160.133966][ T4869] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  160.169588][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[  160.180031][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[  160.261840][ T4869] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  160.281772][ T4801] device veth0_vlan entered promiscuous mode
[  160.297068][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[  160.314015][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[  160.375207][ T4869] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  160.424111][ T4952] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy
[  160.450248][ T4801] device veth1_vlan entered promiscuous mode
[  160.456711][ T4952] misc raw-gadget: fail, usb_gadget_register_driver returned -16
[  160.519699][  T152] input: bcm5974 as /devices/platform/dummy_hcd.0/usb1/1-1/1-1:1.0/input/input9
[  160.554883][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan0: link becomes ready
[  160.582491][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan1: link becomes ready
[  160.607026][ T3076] bcm5974 1-1:1.0: could not read from device
[  160.626216][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[  160.657923][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[  160.668147][ T3646] Bluetooth: hci3: command tx timeout
[  160.696965][ T3076] bcm5974 1-1:1.0: could not read from device
[  160.710426][ T4801] device veth0_macvtap entered promiscuous mode
[  160.728074][  T152] usb 1-1: USB disconnect, device number 3
[  160.737146][ T3076] bcm5974 1-1:1.0: could not read from device
[  160.745704][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[  160.820166][ T4801] device veth1_macvtap entered promiscuous mode
[  160.869096][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  160.897945][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  161.055328][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[  161.065944][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[  161.088420][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[  161.104048][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[  161.184401][ T4801] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  161.197529][ T4801] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  161.209203][ T4801] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  161.220265][ T4801] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  161.232257][ T4801] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  161.243556][ T4801] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  161.256165][ T4801] batman_adv: batadv0: Interface activated: batadv_slave_0
[  161.286259][ T4762] device veth0_vlan entered promiscuous mode
[  161.300130][ T3976] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[  161.315498][ T3976] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[  161.432267][ T4801] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  161.443427][ T4801] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  161.453598][ T4801] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  161.464490][ T4801] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  161.475742][ T4801] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  161.486651][ T4801] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  161.508620][ T4801] batman_adv: batadv0: Interface activated: batadv_slave_1
[  161.533766][ T4869] netdevsim netdevsim1 netdevsim0: renamed from eth0
[  161.579290][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[  161.602688][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[  161.622086][ T4985] netlink: 4 bytes leftover after parsing attributes in process `syz.0.197'.
[  161.710713][ T4801] netdevsim netdevsim3 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[  161.726338][ T4801] netdevsim netdevsim3 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[  161.735995][ T4801] netdevsim netdevsim3 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[  161.745002][ T4801] netdevsim netdevsim3 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[  161.788356][ T4869] netdevsim netdevsim1 netdevsim1: renamed from eth1
[  161.801303][ T4869] netdevsim netdevsim1 netdevsim2: renamed from eth2
[  161.815110][ T4869] netdevsim netdevsim1 netdevsim3: renamed from eth3
[  161.881991][ T4762] device veth1_vlan entered promiscuous mode
[  162.164955][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[  162.179548][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[  162.203768][ T4762] device veth0_macvtap entered promiscuous mode
[  162.311655][   T11] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  162.330917][   T11] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  162.430406][ T4762] device veth1_macvtap entered promiscuous mode
[  162.504875][ T4433] hid-generic 0000:0000:0000.0005: unknown main item tag 0x0
[  162.537457][ T4433] hid-generic 0000:0000:0000.0005: unknown main item tag 0x0
[  162.554665][ T4998] QAT: Device 0 not found
[  162.562939][ T4433] hid-generic 0000:0000:0000.0005: hidraw0: <UNKNOWN> HID v0.00 Device [syz0] on syz1
[  162.588637][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[  162.599098][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): macsec0: link becomes ready
[  162.614884][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready
[  162.659518][ T4762] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  162.680841][ T4762] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  162.727053][ T4762] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  162.757724][ T4762] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  162.787231][ T4762] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  162.806915][ T4762] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  162.818677][ T4762] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  162.831778][ T4762] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  162.868698][ T4762] batman_adv: batadv0: Interface activated: batadv_slave_0
[  163.808364][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[  163.832907][    T9] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  163.844154][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[  163.853705][    T9] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  163.886460][ T4869] 8021q: adding VLAN 0 to HW filter on device bond0
[  163.912470][ T4762] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  163.924212][ T4762] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  163.935966][ T4762] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  163.953005][ T4762] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  163.963840][ T4762] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  163.982271][ T4762] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  163.993686][ T4762] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  164.005530][ T4762] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  164.029301][ T4762] batman_adv: batadv0: Interface activated: batadv_slave_1
[  164.113294][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready
[  164.122204][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[  164.131709][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[  164.190949][ T4762] netdevsim netdevsim4 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[  164.218496][ T4762] netdevsim netdevsim4 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[  164.229995][ T4762] netdevsim netdevsim4 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[  164.239595][ T4762] netdevsim netdevsim4 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[  164.447595][ T3942] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready
[  164.456157][ T3942] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready
[  165.581189][ T4869] 8021q: adding VLAN 0 to HW filter on device team0
[  165.596312][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready
[  165.618965][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready
[  165.628793][   T33] bridge0: port 1(bridge_slave_0) entered blocking state
[  165.635998][   T33] bridge0: port 1(bridge_slave_0) entered forwarding state
[  165.644964][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready
[  165.726110][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[  165.753489][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[  165.763819][   T11] bridge0: port 2(bridge_slave_1) entered blocking state
[  165.771469][   T11] bridge0: port 2(bridge_slave_1) entered forwarding state
[  165.779507][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  165.789972][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  165.928782][ T4877] netdevsim netdevsim2 netdevsim0: renamed from eth0
[  165.945910][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  165.965544][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  165.979499][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  165.990148][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  165.999736][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  166.008973][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  166.020063][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  166.033006][ T4877] netdevsim netdevsim2 netdevsim1: renamed from eth1
[  166.078152][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  166.086651][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  166.109135][ T4877] netdevsim netdevsim2 netdevsim2: renamed from eth2
[  166.251442][ T4869] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[  166.282503][ T4314] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  166.283877][ T4877] netdevsim netdevsim2 netdevsim3: renamed from eth3
[  166.290847][ T4314] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  166.360486][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready
[  166.658146][ T4314] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  166.666419][ T4314] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  166.949073][ T3738] device hsr_slave_0 left promiscuous mode
[  167.138194][ T3738] device hsr_slave_1 left promiscuous mode
[  167.235106][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  167.382028][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  167.689824][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  167.729825][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  167.772486][ T5040] loop0: detected capacity change from 0 to 8192
[  167.818654][ T3738] device bridge_slave_1 left promiscuous mode
[  167.824956][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  167.839381][ T3738] device bridge_slave_0 left promiscuous mode
[  167.845691][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  167.901372][ T3738] device hsr_slave_0 left promiscuous mode
[  167.918736][ T3738] device hsr_slave_1 left promiscuous mode
[  167.926344][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  167.963323][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  167.987928][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  167.995411][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  168.023683][ T3738] device bridge_slave_1 left promiscuous mode
[  168.034311][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  168.034642][   T26] audit: type=1800 audit(1727478716.066:50): pid=5055 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.0.207" name="bus" dev="loop0" ino=1048635 res=0 errno=0
[  168.065217][ T3738] device bridge_slave_0 left promiscuous mode
[  168.101808][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  168.287486][ T3738] device veth1_macvtap left promiscuous mode
[  168.293621][ T3738] device veth0_macvtap left promiscuous mode
[  168.300615][ T3738] device veth1_vlan left promiscuous mode
[  168.306463][ T3738] device veth0_vlan left promiscuous mode
[  168.316246][ T3738] device veth1_macvtap left promiscuous mode
[  168.327968][ T3738] device veth0_macvtap left promiscuous mode
[  168.334135][ T3738] device veth1_vlan left promiscuous mode
[  168.367082][ T3738] device veth0_vlan left promiscuous mode
[  168.382758][ T5062] loop3: detected capacity change from 0 to 512
[  168.445987][ T5062] EXT4-fs (loop3): mounted filesystem without journal. Quota mode: writeback.
[  168.459222][ T5062] ext4 filesystem being mounted at /6/file1 supports timestamps until 2038 (0x7fffffff)
[  168.854740][ T4801] EXT4-fs (loop3): unmounting filesystem.
[  169.613397][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  169.669846][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  169.729055][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  169.812453][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  170.390479][ T5090] loop3: detected capacity change from 0 to 512
[  170.435387][   T26] audit: type=1800 audit(1727478718.466:51): pid=5091 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.0.218" name="/" dev="fuse" ino=1 res=0 errno=0
[  170.483732][ T5090] EXT4-fs (loop3): mounted filesystem without journal. Quota mode: writeback.
[  170.493689][ T5090] ext4 filesystem being mounted at /9/file0 supports timestamps until 2038 (0x7fffffff)
[  170.830730][ T3738] bond0 (unregistering): Released all slaves
[  171.268377][ T4801] EXT4-fs error (device loop3): ext4_readdir:260: inode #12: block 32: comm syz-executor: path /9/file0/file0: bad entry in directory: rec_len is smaller than minimal - offset=0, inode=3, rec_len=0, size=2048 fake=0
[  171.592083][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  171.657837][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  171.727040][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  171.831339][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  172.593699][ T3738] bond0 (unregistering): Released all slaves
[  172.736400][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready
[  172.759503][ T4877] 8021q: adding VLAN 0 to HW filter on device bond0
[  172.774036][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  172.793826][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  172.843482][ T4869] 8021q: adding VLAN 0 to HW filter on device batadv0
[  172.879193][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready
[  172.918942][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready
[  173.006453][ T4877] 8021q: adding VLAN 0 to HW filter on device team0
[  173.137335][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready
[  173.157331][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready
[  173.176411][ T3860] bridge0: port 1(bridge_slave_0) entered blocking state
[  173.183607][ T3860] bridge0: port 1(bridge_slave_0) entered forwarding state
[  173.202574][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready
[  173.234984][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[  173.254985][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[  173.277893][   T33] bridge0: port 2(bridge_slave_1) entered blocking state
[  173.285063][   T33] bridge0: port 2(bridge_slave_1) entered forwarding state
[  173.338642][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  173.365677][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  173.449961][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  173.524289][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  173.579634][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[  173.597065][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[  173.638889][ T4869] device veth0_vlan entered promiscuous mode
[  173.663407][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[  173.672356][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[  173.691471][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  173.715561][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  173.753093][ T5107] loop0: detected capacity change from 0 to 128
[  173.760663][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  173.792138][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  173.835471][   T26] audit: type=1800 audit(1727478721.866:52): pid=5107 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.0.221" name="file1" dev="loop0" ino=1048640 res=0 errno=0
[  173.838093][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  173.947479][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  173.982417][ T4869] device veth1_vlan entered promiscuous mode
[  174.012923][ T4877] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network
[  174.059522][ T4877] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[  174.101739][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan0: link becomes ready
[  174.138178][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  174.146690][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  174.208040][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  174.308639][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[  174.337802][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[  174.370067][ T4869] device veth0_macvtap entered promiscuous mode
[  174.409564][ T4869] device veth1_macvtap entered promiscuous mode
[  174.500683][ T4869] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  174.527991][ T3644] Bluetooth: hci1: unexpected cc 0x0c03 length: 249 > 1
[  174.540966][ T3644] Bluetooth: hci1: unexpected cc 0x1003 length: 249 > 9
[  174.549856][ T3644] Bluetooth: hci1: unexpected cc 0x1001 length: 249 > 9
[  174.558866][ T4869] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  174.575223][ T3644] Bluetooth: hci1: unexpected cc 0x0c23 length: 249 > 4
[  174.584903][ T3644] Bluetooth: hci1: unexpected cc 0x0c25 length: 249 > 3
[  174.596354][ T3644] Bluetooth: hci1: unexpected cc 0x0c38 length: 249 > 2
[  174.644902][ T4869] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  174.657454][ T4869] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  174.673772][ T3681] usb 1-1: new high-speed USB device number 4 using dummy_hcd
[  174.676903][ T4869] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  174.718564][ T4869] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  174.748799][ T4869] batman_adv: batadv0: Interface activated: batadv_slave_0
[  174.767348][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[  174.775749][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): macsec0: link becomes ready
[  174.853133][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[  174.891249][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[  174.915420][ T4869] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  174.941554][ T4869] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  174.959762][ T4869] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  174.975710][ T4869] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  174.987635][ T4869] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  175.026410][ T4869] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  175.047736][ T4869] batman_adv: batadv0: Interface activated: batadv_slave_1
[  175.087131][ T3681] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7
[  175.106948][ T3681] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0
[  175.108172][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[  175.130952][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[  175.147828][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  175.155338][ T3681] usb 1-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 21
[  175.155376][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  175.189408][ T4869] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[  175.198491][ T3681] usb 1-1: New USB device found, idVendor=047f, idProduct=ffff, bcdDevice= 0.00
[  175.216880][ T4869] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[  175.225643][ T4869] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[  175.234439][ T3681] usb 1-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0
[  175.261880][ T3681] usb 1-1: config 0 descriptor??
[  175.267020][ T4869] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[  175.304361][ T4877] 8021q: adding VLAN 0 to HW filter on device batadv0
[  175.497558][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  175.506400][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  175.562877][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[  175.575392][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[  175.591452][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[  175.602365][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[  175.617100][ T4877] device veth0_vlan entered promiscuous mode
[  175.630386][  T102] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  175.648966][  T102] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  175.673352][ T4877] device veth1_vlan entered promiscuous mode
[  175.699974][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan0: link becomes ready
[  175.721732][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready
[  175.759256][ T3681] plantronics 0003:047F:FFFF.0006: unknown main item tag 0x0
[  175.807200][ T3681] plantronics 0003:047F:FFFF.0006: No inputs registered, leaving
[  175.831329][ T4877] device veth0_macvtap entered promiscuous mode
[  175.845784][ T3681] plantronics 0003:047F:FFFF.0006: hiddev0,hidraw0: USB HID v0.40 Device [HID 047f:ffff] on usb-dummy_hcd.0-1/input0
[  175.865997][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan1: link becomes ready
[  175.887840][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[  175.904185][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[  175.917946][ T4877] device veth1_macvtap entered promiscuous mode
[  175.920565][   T51] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  175.974598][ T5119] chnl_net:caif_netlink_parms(): no params data found
[  175.978540][   T51] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  175.991127][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[  176.008404][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macsec0: link becomes ready
[  176.027512][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready
[  176.040487][ T4877] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  176.067337][ T4877] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  176.086860][ T4877] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  176.107800][ T4877] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  176.126891][ T4877] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  176.146842][ T4877] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  176.166868][ T4877] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  176.177737][ T4877] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  176.210118][ T4877] batman_adv: batadv0: Interface activated: batadv_slave_0
[  176.342280][ T3738] netdevsim netdevsim4 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  176.386694][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[  176.409975][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[  176.469256][ T4877] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  176.496849][ T4877] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  176.506724][ T4877] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  176.546869][ T4877] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  176.566872][ T4877] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  176.596821][ T4877] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  176.606712][ T4877] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  176.657109][ T4877] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  176.667237][ T3646] Bluetooth: hci1: command tx timeout
[  176.735311][ T4877] batman_adv: batadv0: Interface activated: batadv_slave_1
[  176.812255][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[  176.831582][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[  176.904729][ T3738] netdevsim netdevsim4 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  176.935367][ T4877] netdevsim netdevsim2 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[  176.969076][ T4877] netdevsim netdevsim2 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[  176.996851][ T4877] netdevsim netdevsim2 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[  177.005718][ T4877] netdevsim netdevsim2 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[  177.191374][ T3738] netdevsim netdevsim4 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  177.202008][  T152] usb 1-1: reset high-speed USB device number 4 using dummy_hcd
[  177.328465][ T3738] netdevsim netdevsim4 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  177.396485][ T3942] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  177.427322][ T5119] bridge0: port 1(bridge_slave_0) entered blocking state
[  177.435048][ T5119] bridge0: port 1(bridge_slave_0) entered disabled state
[  177.446995][ T3942] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  177.477931][ T5119] device bridge_slave_0 entered promiscuous mode
[  177.497999][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready
[  177.522296][ T5119] bridge0: port 2(bridge_slave_1) entered blocking state
[  177.536977][ T5119] bridge0: port 2(bridge_slave_1) entered disabled state
[  177.545098][ T5119] device bridge_slave_1 entered promiscuous mode
[  177.572582][ T3942] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  177.598206][ T3942] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  177.649584][ T5119] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link
[  177.661124][ T5139] loop1: detected capacity change from 0 to 40427
[  177.670683][ T5119] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link
[  177.695550][ T5139] F2FS-fs (loop1): Invalid log_blocksize (268), supports only 12
[  177.732754][ T5139] F2FS-fs (loop1): Can't find valid F2FS filesystem in 1th superblock
[  177.765481][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready
[  177.848130][ T5139] F2FS-fs (loop1): Found nat_bits in checkpoint
[  177.888980][ T5119] team0: Port device team_slave_0 added
[  177.950596][ T5119] team0: Port device team_slave_1 added
[  178.063829][ T5119] batman_adv: batadv0: Adding interface: batadv_slave_0
[  178.070949][ T5139] F2FS-fs (loop1): f2fs_check_nid_range: out-of-range nid=1, run fsck to fix.
[  178.086829][ T5119] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  178.093414][ T3683] usb 1-1: USB disconnect, device number 4
[  178.161905][ T5119] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active
[  178.208796][ T5139] F2FS-fs (loop1): Try to recover 1th superblock, ret: 0
[  178.216005][ T5139] F2FS-fs (loop1): Mounted with checkpoint version = 48b305e5
[  178.260468][ T5119] batman_adv: batadv0: Adding interface: batadv_slave_1
[  178.307757][ T5119] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  178.367027][  T152] usb 3-1: new high-speed USB device number 10 using dummy_hcd
[  178.376836][ T5119] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active
[  178.560772][ T5139] loop1: detected capacity change from 40427 to 0
[  178.595016][   T51] loop: Write error at byte offset 9223372036877864959, length 4096.
[  178.626946][  T152] usb 3-1: Using ep0 maxpacket: 32
[  178.648905][    C1] blk_print_req_error: 25 callbacks suppressed
[  178.648923][    C1] I/O error, dev loop1, sector 45096 op 0x1:(WRITE) flags 0x800 phys_seg 11 prio class 2
[  178.726569][ T5119] device hsr_slave_0 entered promiscuous mode
[  178.735105][   T51] loop: Write error at byte offset 9223372036871573503, length 4096.
[  178.751750][    C1] I/O error, dev loop1, sector 32808 op 0x1:(WRITE) flags 0x800 phys_seg 1 prio class 2
[  178.765727][   T51] loop: Write error at byte offset 9223372036873682943, length 4096.
[  178.776461][ T5119] device hsr_slave_1 entered promiscuous mode
[  178.784530][ T3644] Bluetooth: hci1: command tx timeout
[  178.786993][ T5139] F2FS-fs (loop1): do_checkpoint failed err:-5, stop checkpoint
[  178.800861][ T5119] debugfs: Directory 'hsr0' with parent 'hsr' already present!
[  178.803145][    C1] I/O error, dev loop1, sector 36928 op 0x1:(WRITE) flags 0x800 phys_seg 2 prio class 2
[  178.825194][   T51] loop: Write error at byte offset 9223372036858970111, length 4096.
[  178.838012][  T152] usb 3-1: config 0 has no interfaces?
[  178.860933][ T5119] Cannot create hsr debugfs directory
[  178.883416][    C0] I/O error, dev loop1, sector 8192 op 0x1:(WRITE) flags 0x3800 phys_seg 5 prio class 2
[  179.027137][  T152] usb 3-1: New USB device found, idVendor=14c8, idProduct=0003, bcdDevice= 5.6c
[  179.030850][ T4869] F2FS-fs (loop1): invalid namelen(0), ino:0, run fsck to fix.
[  179.036218][  T152] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3
[  179.036246][  T152] usb 3-1: Product: syz
[  179.036263][  T152] usb 3-1: Manufacturer: syz
[  179.036284][  T152] usb 3-1: SerialNumber: syz
[  179.068397][  T152] usb 3-1: config 0 descriptor??
[  179.115738][ T4869] F2FS-fs (loop1): invalid namelen(0), ino:0, run fsck to fix.
[  179.115766][ T4869] F2FS-fs (loop1): invalid namelen(0), ino:0, run fsck to fix.
[  179.183531][ T4869] F2FS-fs (loop1): invalid namelen(0), ino:0, run fsck to fix.
[  179.197186][ T4869] F2FS-fs (loop1): invalid namelen(0), ino:0, run fsck to fix.
[  179.215097][ T4869] F2FS-fs (loop1): invalid namelen(0), ino:0, run fsck to fix.
[  179.235346][ T4869] F2FS-fs (loop1): invalid namelen(0), ino:0, run fsck to fix.
[  179.461052][ T5148] loop2: detected capacity change from 0 to 512
[  179.518096][ T5148] EXT4-fs: Ignoring removed i_version option
[  179.563564][ T5148] EXT4-fs: Ignoring removed nobh option
[  179.570873][ T5148] EXT4-fs: Warning: mounting with data=journal disables delayed allocation, dioread_nolock, O_DIRECT and fast_commit support!
[  179.594559][ T5148] EXT4-fs (loop2): encrypted files will use data=ordered instead of data journaling mode
[  179.622580][ T5148] EXT4-fs (loop2): 1 truncate cleaned up
[  179.629767][ T5148] EXT4-fs (loop2): mounted filesystem without journal. Quota mode: none.
[  179.691700][ T3683] usb 3-1: USB disconnect, device number 10
[  180.475812][ T4877] EXT4-fs (loop2): unmounting filesystem.
[  180.696029][ T5167] loop0: detected capacity change from 0 to 40427
[  180.725125][ T5167] F2FS-fs (loop0): Invalid segment/section count (24 != 24 * 3)
[  180.754135][ T5167] F2FS-fs (loop0): Can't find valid F2FS filesystem in 1th superblock
[  180.756039][ T5167] F2FS-fs (loop0): invalid crc value
[  180.773826][ T5167] F2FS-fs (loop0): Found nat_bits in checkpoint
[  180.837727][ T3644] Bluetooth: hci1: command tx timeout
[  180.923805][ T5167] F2FS-fs (loop0): Start checkpoint disabled!
[  181.023611][ T3738] device hsr_slave_0 left promiscuous mode
[  181.035035][ T5167] F2FS-fs (loop0): Try to recover 1th superblock, ret: 0
[  181.053920][ T5167] F2FS-fs (loop0): Mounted with checkpoint version = 48b305e6
[  181.066453][ T3738] device hsr_slave_1 left promiscuous mode
[  181.118440][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  181.145513][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  181.194018][   T26] audit: type=1800 audit(1727478729.226:53): pid=5167 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.0.225" name="bus" dev="loop0" ino=10 res=0 errno=0
[  181.221453][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  181.237477][ T5167] syz.0.225: attempt to access beyond end of device
[  181.237477][ T5167] loop0: rw=2049, sector=77824, nr_sectors = 848 limit=40427
[  181.261994][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  181.271633][   T26] audit: type=1800 audit(1727478729.226:54): pid=5167 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.0.225" name="bus" dev="loop0" ino=10 res=0 errno=0
[  181.297718][ T3738] device bridge_slave_1 left promiscuous mode
[  181.304036][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  181.350040][ T3738] device bridge_slave_0 left promiscuous mode
[  181.367171][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  181.453042][ T3646] Bluetooth: hci0: unexpected cc 0x0c03 length: 249 > 1
[  181.463962][ T3738] device veth1_macvtap left promiscuous mode
[  181.470713][ T3642] Bluetooth: hci0: unexpected cc 0x1003 length: 249 > 9
[  181.480977][ T3642] Bluetooth: hci0: unexpected cc 0x1001 length: 249 > 9
[  181.498502][ T3642] Bluetooth: hci0: unexpected cc 0x0c23 length: 249 > 4
[  181.506381][ T3642] Bluetooth: hci0: unexpected cc 0x0c25 length: 249 > 3
[  181.514177][ T3642] Bluetooth: hci0: unexpected cc 0x0c38 length: 249 > 2
[  181.532930][ T3738] device veth0_macvtap left promiscuous mode
[  181.569286][ T3738] device veth1_vlan left promiscuous mode
[  181.588979][ T4314] kworker/u4:14: attempt to access beyond end of device
[  181.588979][ T4314] loop0: rw=2049, sector=40960, nr_sectors = 16 limit=40427
[  181.593605][ T3738] device veth0_vlan left promiscuous mode
[  182.152409][ T3642] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1
[  182.179998][ T3642] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9
[  182.193069][ T3642] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9
[  182.204722][ T3642] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4
[  182.226698][ T3642] Bluetooth: hci4: unexpected cc 0x0c25 length: 249 > 3
[  182.234728][ T3642] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2
[  182.686365][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  182.740475][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  182.790791][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  182.855821][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  182.917059][ T3642] Bluetooth: hci1: command tx timeout
[  183.422034][ T3738] bond0 (unregistering): Released all slaves
[  183.524792][ T5192] netlink: 'syz.2.230': attribute type 10 has an invalid length.
[  183.547228][ T3642] Bluetooth: hci0: command tx timeout
[  183.574663][ T5192] team0: Port device netdevsim0 added
[  183.658582][ T5203] netlink: 'syz.0.233': attribute type 4 has an invalid length.
[  183.707146][ T5205] netlink: 'syz.0.233': attribute type 17 has an invalid length.
[  183.727684][ T5205] IPv6: ADDRCONF(NETDEV_CHANGE): lo: link becomes ready
[  183.823019][ T4801] EXT4-fs (loop3): unmounting filesystem.
[  184.149226][ T5119] netdevsim netdevsim4 netdevsim0: renamed from eth0
[  184.209604][ T5119] netdevsim netdevsim4 netdevsim1: renamed from eth1
[  184.228620][ T5119] netdevsim netdevsim4 netdevsim2: renamed from eth2
[  184.266616][ T5119] netdevsim netdevsim4 netdevsim3: renamed from eth3
[  184.277078][ T3642] Bluetooth: hci4: command tx timeout
[  184.531874][ T5225] loop2: detected capacity change from 0 to 8
[  184.846915][ T5200] chnl_net:caif_netlink_parms(): no params data found
[  184.874383][ T5225] SQUASHFS error: Unable to read directory block [631:72]
[  184.890953][ T5195] chnl_net:caif_netlink_parms(): no params data found
[  184.902301][ T5225] SQUASHFS error: Unable to read directory block [631:72]
[  184.925181][ T5217] loop0: detected capacity change from 0 to 32768
[  185.038003][ T5119] 8021q: adding VLAN 0 to HW filter on device bond0
[  185.057075][ T5217] XFS (loop0): Mounting V5 Filesystem
[  185.121528][ T3738] netdevsim netdevsim3 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  185.149603][ T5217] XFS (loop0): Ending clean mount
[  185.261829][ T5119] 8021q: adding VLAN 0 to HW filter on device team0
[  185.352925][ T3738] netdevsim netdevsim3 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  185.434995][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready
[  185.443555][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready
[  185.493362][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready
[  185.517703][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready
[  185.572149][ T4314] bridge0: port 1(bridge_slave_0) entered blocking state
[  185.579586][ T4314] bridge0: port 1(bridge_slave_0) entered forwarding state
[  185.635387][ T3642] Bluetooth: hci0: command tx timeout
[  185.716731][ T3738] netdevsim netdevsim3 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  185.804184][ T4689] XFS (loop0): Unmounting Filesystem
[  185.810991][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready
[  185.827728][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[  185.868614][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[  185.888134][ T4314] bridge0: port 2(bridge_slave_1) entered blocking state
[  185.895285][ T4314] bridge0: port 2(bridge_slave_1) entered forwarding state
[  185.927625][ T5237] loop2: detected capacity change from 0 to 32768
[  185.933381][ T5200] bridge0: port 1(bridge_slave_0) entered blocking state
[  185.943062][ T5200] bridge0: port 1(bridge_slave_0) entered disabled state
[  185.984118][ T5200] device bridge_slave_0 entered promiscuous mode
[  186.053739][ T3738] netdevsim netdevsim3 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  186.055544][ T5237] XFS (loop2): Mounting V5 Filesystem
[  186.107634][ T5200] bridge0: port 2(bridge_slave_1) entered blocking state
[  186.114763][ T5200] bridge0: port 2(bridge_slave_1) entered disabled state
[  186.158586][ T5200] device bridge_slave_1 entered promiscuous mode
[  186.242388][ T5237] XFS (loop2): Ending clean mount
[  186.257256][ T5237] XFS (loop2): Quotacheck needed: Please wait.
[  186.270519][   T51] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  186.347043][ T3642] Bluetooth: hci4: command tx timeout
[  186.347055][ T5195] bridge0: port 1(bridge_slave_0) entered blocking state
[  186.347115][ T5195] bridge0: port 1(bridge_slave_0) entered disabled state
[  186.364122][ T5237] XFS (loop2): Quotacheck: Done.
[  186.525907][ T5195] device bridge_slave_0 entered promiscuous mode
[  186.580212][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  186.616685][ T5195] bridge0: port 2(bridge_slave_1) entered blocking state
[  186.625698][ T5195] bridge0: port 2(bridge_slave_1) entered disabled state
[  186.835250][ T5195] device bridge_slave_1 entered promiscuous mode
[  187.254311][ T5195] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link
[  187.345493][ T5195] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link
[  187.391403][ T5200] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link
[  187.415867][ T5200] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link
[  187.441511][ T5283] loop0: detected capacity change from 0 to 164
[  187.455045][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  187.470359][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  187.481686][ T4877] XFS (loop2): Unmounting Filesystem
[  187.555695][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  187.613421][ T3091] udevd[3091]: worker [3727] terminated by signal 33 (Unknown signal 33)
[  187.643865][ T5195] team0: Port device team_slave_0 added
[  187.648001][ T3091] udevd[3091]: worker [3727] failed while handling '/devices/virtual/block/loop0'
[  187.711488][ T3642] Bluetooth: hci0: command tx timeout
[  187.893848][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  187.936073][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  188.087646][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  188.097606][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  188.994552][ T3642] Bluetooth: hci4: command tx timeout
[  189.240901][ T3738] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  189.325089][ T5300] loop2: detected capacity change from 0 to 4096
[  189.335604][ T5195] team0: Port device team_slave_1 added
[  189.611153][ T5304] loop0: detected capacity change from 0 to 4096
[  189.807132][ T3642] Bluetooth: hci0: command tx timeout
[  189.909398][ T5305] NILFS (loop0): segctord starting. Construction interval = 5 seconds, CP frequency < 30 seconds
[  189.991991][ T5300] NILFS (loop2): invalid segment: Checksum error in segment payload
[  190.086980][ T5300] NILFS (loop2): trying rollback from an earlier position
[  190.122348][ T5200] team0: Port device team_slave_0 added
[  190.152807][ T5300] NILFS (loop2): recovery complete
[  190.193125][ T5119] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network
[  190.216634][ T5119] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[  190.246945][ T5307] NILFS (loop2): segctord starting. Construction interval = 5 seconds, CP frequency < 30 seconds
[  190.304969][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  190.315452][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  190.439636][ T3738] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  190.480447][ T5300] overlayfs: upper fs does not support tmpfile.
[  190.492908][ T5200] team0: Port device team_slave_1 added
[  190.546028][ T5195] batman_adv: batadv0: Adding interface: batadv_slave_0
[  190.554247][ T5195] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  190.581644][ T5300] overlayfs: upper fs does not support RENAME_WHITEOUT.
[  190.617188][ T5300] overlayfs: failed to set xattr on upper
[  190.622969][ T5300] overlayfs: ...falling back to index=off,metacopy=off.
[  190.656960][ T5195] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active
[  190.804895][ T3738] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  190.896542][ T5200] batman_adv: batadv0: Adding interface: batadv_slave_0
[  190.916198][ T5200] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  190.942773][ T5200] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active
[  190.960410][ T5195] batman_adv: batadv0: Adding interface: batadv_slave_1
[  190.978494][ T5195] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  191.018594][ T5195] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active
[  191.069176][ T3644] Bluetooth: hci4: command tx timeout
[  191.113941][ T3738] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  191.145580][ T5310] loop0: detected capacity change from 0 to 32768
[  191.186296][ T5200] batman_adv: batadv0: Adding interface: batadv_slave_1
[  191.206253][ T5200] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  191.266101][ T5200] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active
[  191.285708][ T5310] XFS (loop0): Mounting V5 Filesystem
[  191.365127][ T5195] device hsr_slave_0 entered promiscuous mode
[  191.378140][ T5195] device hsr_slave_1 entered promiscuous mode
[  191.384040][ T5310] XFS (loop0): Ending clean mount
[  191.397371][ T5310] XFS (loop0): Quotacheck needed: Please wait.
[  191.403678][ T5195] debugfs: Directory 'hsr0' with parent 'hsr' already present!
[  191.418299][ T5195] Cannot create hsr debugfs directory
[  191.492772][ T5310] XFS (loop0): Quotacheck: Done.
[  191.662148][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  191.673129][ T5334] loop2: detected capacity change from 0 to 128
[  191.684718][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  191.705175][ T5119] 8021q: adding VLAN 0 to HW filter on device batadv0
[  191.707315][ T5310] XFS (loop0): User initiated shutdown received.
[  191.726654][ T5200] device hsr_slave_0 entered promiscuous mode
[  191.758089][ T5334] UDF-fs: error (device loop2): udf_read_tagged: read failed, block=256, location=256
[  191.768038][ T5310] XFS (loop0): Metadata I/O Error (0x4) detected at xfs_fs_goingdown+0x10c/0x150 (fs/xfs/xfs_fsops.c:481).  Shutting down filesystem.
[  191.782911][ T5200] device hsr_slave_1 entered promiscuous mode
[  191.789305][ T5334] UDF-fs: warning (device loop2): udf_fill_super: No partition found (2)
[  191.816535][ T5200] debugfs: Directory 'hsr0' with parent 'hsr' already present!
[  191.825069][ T5310] XFS (loop0): Please unmount the filesystem and rectify the problem(s)
[  191.836985][ T5200] Cannot create hsr debugfs directory
[  192.047476][ T4689] XFS (loop0): Unmounting Filesystem
[  193.028913][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  193.038822][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  193.183986][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[  193.209360][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[  193.240027][ T5119] device veth0_vlan entered promiscuous mode
[  193.269173][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[  193.282448][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[  193.452866][ T5119] device veth1_vlan entered promiscuous mode
[  193.846288][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan0: link becomes ready
[  193.906609][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan1: link becomes ready
[  193.981833][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[  194.053930][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[  194.213320][ T1268] ieee802154 phy0 wpan0: encryption failed: -22
[  194.223092][ T1268] ieee802154 phy1 wpan1: encryption failed: -22
[  194.268633][ T5119] device veth0_macvtap entered promiscuous mode
[  194.297148][ T5119] device veth1_macvtap entered promiscuous mode
[  194.428055][ T5386] EXT4-fs (sda1): resizing filesystem from 262144 to 2 blocks
[  194.447099][ T5386] EXT4-fs warning (device sda1): ext4_resize_fs:2051: can't shrink FS - resize aborted
[  194.512632][ T5119] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  194.541198][ T5119] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  194.551952][ T5119] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  194.564066][ T5119] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  194.585238][ T5119] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  194.599778][ T5119] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  194.616601][ T5119] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0
[  194.636716][ T5119] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  194.649024][ T5119] batman_adv: batadv0: Interface activated: batadv_slave_0
[  194.773955][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[  194.784077][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[  194.834509][  T102] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[  194.993139][ T5119] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  195.021043][ T5119] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  195.032613][ T5119] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  195.043782][ T5119] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  195.054502][ T5119] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  195.066024][ T5119] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  195.076614][ T5119] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1
[  195.087615][ T5119] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems!
[  195.099630][ T5119] batman_adv: batadv0: Interface activated: batadv_slave_1
[  195.124140][ T3939] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[  195.142137][ T3939] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[  195.209752][ T5119] netdevsim netdevsim4 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[  195.220132][ T5119] netdevsim netdevsim4 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[  195.230681][ T5119] netdevsim netdevsim4 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[  195.242211][ T5119] netdevsim netdevsim4 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[  195.521048][ T4314] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  195.534459][ T4314] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  195.609754][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready
[  195.678884][  T102] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50
[  195.733270][  T102] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50
[  195.791355][ T5195] netdevsim netdevsim1 netdevsim0: renamed from eth0
[  195.809057][ T5403] binder_alloc: 5402: pid 5402 spamming oneway? 1 buffers allocated for a total size of 4096
[  195.822018][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready
[  195.851560][ T5195] netdevsim netdevsim1 netdevsim1: renamed from eth1
[  196.074010][ T5195] netdevsim netdevsim1 netdevsim2: renamed from eth2
[  196.092125][ T5195] netdevsim netdevsim1 netdevsim3: renamed from eth3
[  197.278907][ T3738] device hsr_slave_0 left promiscuous mode
[  197.292548][ T3738] device hsr_slave_1 left promiscuous mode
[  197.301230][ T5417] netlink: 8 bytes leftover after parsing attributes in process `syz.2.260'.
[  197.318278][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  197.326695][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  197.341877][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  197.359983][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  197.378545][ T3738] device bridge_slave_1 left promiscuous mode
[  197.384852][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  197.403477][ T5423] loop0: detected capacity change from 0 to 2048
[  197.411947][ T3738] device bridge_slave_0 left promiscuous mode
[  197.428345][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  197.481467][ T3738] device hsr_slave_0 left promiscuous mode
[  197.494176][ T3738] device hsr_slave_1 left promiscuous mode
[  197.507477][ T5423] EXT4-fs (loop0): mounted filesystem without journal. Quota mode: none.
[  197.560935][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  197.578620][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  197.591369][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  197.599147][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  197.607338][ T3738] device bridge_slave_1 left promiscuous mode
[  197.613676][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  197.623940][ T3738] device bridge_slave_0 left promiscuous mode
[  197.630902][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  197.635495][ T5423] EXT4-fs error (device loop0): ext4_mb_generate_buddy:1102: group 0, block bitmap and bg descriptor inconsistent: 25 vs 150994969 free clusters
[  197.687030][ T5423] EXT4-fs (loop0): Delayed block allocation failed for inode 18 at logical offset 12 with max blocks 6 with error 28
[  197.716807][ T5423] EXT4-fs (loop0): This should not happen!! Data will be lost
[  197.716807][ T5423] 
[  197.752233][ T5423] EXT4-fs (loop0): Total free blocks count 0
[  197.761227][ T5423] EXT4-fs (loop0): Free/Dirty block details
[  197.769297][ T5423] EXT4-fs (loop0): free_blocks=2415919104
[  197.775394][ T3738] device veth1_macvtap left promiscuous mode
[  197.775516][ T5423] EXT4-fs (loop0): dirty_blocks=32
[  197.786065][ T3738] device veth0_macvtap left promiscuous mode
[  197.787224][ T5423] EXT4-fs (loop0): Block reservation details
[  197.799082][ T5423] EXT4-fs (loop0): i_reserved_data_blocks=2
[  197.820354][ T3738] device veth1_vlan left promiscuous mode
[  197.831249][ T3738] device veth0_vlan left promiscuous mode
[  197.845968][ T3738] device veth1_macvtap left promiscuous mode
[  197.857537][ T3738] device veth0_macvtap left promiscuous mode
[  197.863953][ T3738] device veth1_vlan left promiscuous mode
[  197.876148][ T4689] EXT4-fs (loop0): unmounting filesystem.
[  197.879584][ T3738] device veth0_vlan left promiscuous mode
[  198.179079][ T5437] loop0: detected capacity change from 0 to 2048
[  198.226182][ T3964] I/O error, dev loop0, sector 0 op 0x0:(READ) flags 0x80700 phys_seg 1 prio class 2
[  198.583920][ T3642] Bluetooth: hci1: unexpected cc 0x0c03 length: 249 > 1
[  198.604690][ T3642] Bluetooth: hci1: unexpected cc 0x1003 length: 249 > 9
[  198.614160][ T3642] Bluetooth: hci1: unexpected cc 0x1001 length: 249 > 9
[  198.622939][ T3642] Bluetooth: hci1: unexpected cc 0x0c23 length: 249 > 4
[  198.638799][ T3642] Bluetooth: hci1: unexpected cc 0x0c25 length: 249 > 3
[  198.646097][ T3642] Bluetooth: hci1: unexpected cc 0x0c38 length: 249 > 2
[  200.018284][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  200.179231][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  200.313199][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  200.432951][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  200.678907][ T3642] Bluetooth: hci1: command tx timeout
[  201.129516][ T3738] bond0 (unregistering): Released all slaves
[  201.733872][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  201.792642][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  201.846476][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  201.903004][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  202.004352][ T4433] usb 1-1: new high-speed USB device number 5 using dummy_hcd
[  202.260260][ T4433] usb 1-1: Using ep0 maxpacket: 8
[  202.532187][ T3738] bond0 (unregistering): Released all slaves
[  202.538483][ T4433] usb 1-1: New USB device found, idVendor=0c45, idProduct=613a, bcdDevice=c4.6d
[  202.547716][ T4433] usb 1-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3
[  202.555743][ T4433] usb 1-1: Product: syz
[  202.560030][ T4433] usb 1-1: Manufacturer: syz
[  202.564658][ T4433] usb 1-1: SerialNumber: syz
[  202.582788][ T4433] usb 1-1: config 0 descriptor??
[  202.631901][ T5200] netdevsim netdevsim3 netdevsim0: renamed from eth0
[  202.631993][ T4433] gspca_main: sonixj-2.14.0 probing 0c45:613a
[  202.650179][ T5200] netdevsim netdevsim3 netdevsim1: renamed from eth1
[  202.659268][ T5200] netdevsim netdevsim3 netdevsim2: renamed from eth2
[  202.705465][ T5200] netdevsim netdevsim3 netdevsim3: renamed from eth3
[  202.746949][ T3642] Bluetooth: hci1: command tx timeout
[  202.968511][ T5195] 8021q: adding VLAN 0 to HW filter on device bond0
[  203.031101][ T5200] 8021q: adding VLAN 0 to HW filter on device bond0
[  203.057311][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready
[  203.065547][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready
[  203.104490][ T5195] 8021q: adding VLAN 0 to HW filter on device team0
[  203.126506][ T5200] 8021q: adding VLAN 0 to HW filter on device team0
[  203.143583][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready
[  203.160381][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready
[  203.197016][ T3860] bridge0: port 1(bridge_slave_0) entered blocking state
[  203.204426][ T3860] bridge0: port 1(bridge_slave_0) entered forwarding state
[  203.214117][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready
[  203.222455][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready
[  203.231447][ T3860] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready
[  203.261300][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready
[  203.272577][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready
[  203.283851][ T4314] bridge0: port 1(bridge_slave_0) entered blocking state
[  203.291173][ T4314] bridge0: port 1(bridge_slave_0) entered forwarding state
[  203.303039][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[  203.326652][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[  203.336242][ T4314] bridge0: port 2(bridge_slave_1) entered blocking state
[  203.343637][ T4314] bridge0: port 2(bridge_slave_1) entered forwarding state
[  203.386946][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready
[  203.407965][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[  203.417273][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[  203.438383][ T4314] bridge0: port 2(bridge_slave_1) entered blocking state
[  203.445617][ T4314] bridge0: port 2(bridge_slave_1) entered forwarding state
[  203.453691][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  203.533195][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[  203.546180][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  203.560252][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  203.581751][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  203.653070][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  203.665723][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  203.682083][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  203.692741][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[  203.711324][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  203.723669][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  203.735810][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  203.748497][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  203.764353][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[  203.782226][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[  203.804990][ T5447] chnl_net:caif_netlink_parms(): no params data found
[  203.843423][ T5463] loop2: detected capacity change from 0 to 40427
[  203.851612][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[  203.860668][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[  203.872646][ T4314] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[  203.883167][ T5463] F2FS-fs (loop2): invalid crc value
[  203.944280][ T5463] F2FS-fs (loop2): Found nat_bits in checkpoint
[  203.962305][ T5195] hsr0: Slave A (hsr_slave_0) is not up; please bring it up to get a fully working HSR network
[  204.002669][ T5195] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network
[  204.016400][ T3939] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[  204.027830][ T3939] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[  204.057755][ T3939] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[  204.067246][ T3939] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[  204.076047][ T3939] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[  204.092023][ T5463] F2FS-fs (loop2): Mounted with checkpoint version = 48b305e5
[  204.240258][ T5447] bridge0: port 1(bridge_slave_0) entered blocking state
[  204.248842][ T5447] bridge0: port 1(bridge_slave_0) entered disabled state
[  204.258738][ T5447] device bridge_slave_0 entered promiscuous mode
[  204.283677][ T5463] F2FS-fs (loop2): Unrecognized mount option "noload" or missing value
[  204.309328][ T5447] bridge0: port 2(bridge_slave_1) entered blocking state
[  204.329681][ T5447] bridge0: port 2(bridge_slave_1) entered disabled state
[  204.376197][ T5447] device bridge_slave_1 entered promiscuous mode
[  204.400425][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  204.417765][   T33] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  204.430525][ T4877] syz-executor: attempt to access beyond end of device
[  204.430525][ T4877] loop2: rw=2049, sector=45096, nr_sectors = 8 limit=40427
[  204.479369][ T5200] 8021q: adding VLAN 0 to HW filter on device batadv0
[  204.538845][ T5447] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link
[  204.561244][ T5447] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link
[  204.662587][ T3738] netdevsim netdevsim4 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  204.732768][ T5447] team0: Port device team_slave_0 added
[  204.762363][ T5447] team0: Port device team_slave_1 added
[  204.787217][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[  204.794757][   T11] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[  204.814913][ T5195] 8021q: adding VLAN 0 to HW filter on device batadv0
[  204.845710][ T3642] Bluetooth: hci1: command tx timeout
[  204.893067][ T3738] netdevsim netdevsim4 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  204.941821][ T3939] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[  204.951306][ T3939] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[  204.978199][ T5447] batman_adv: batadv0: Adding interface: batadv_slave_0
[  204.985989][ T5447] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  205.020079][ T5482] 
[  205.021842][ T5447] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active
[  205.022459][ T5482] =====================================================
[  205.022468][ T5482] WARNING: SOFTIRQ-READ-safe -> SOFTIRQ-READ-unsafe lock order detected
[  205.022480][ T5482] 6.1.111-syzkaller #0 Not tainted
[  205.022491][ T5482] -----------------------------------------------------
[  205.022498][ T5482] syz.2.269/5482 [HC0[0]:SC0[8]:HE1:SE0] is trying to acquire:
[  205.036494][ T5447] batman_adv: batadv0: Adding interface: batadv_slave_1
[  205.040256][ T5482] ffff8880268541e0 (&pch->downl){+.+.}-{2:2}, at: ppp_connect_channel+0x190/0x640
[  205.048772][ T5447] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem.
[  205.053717][ T5482] 
[  205.053717][ T5482] and this task is already holding:
[  205.053728][ T5482] ffff8880663a0dd0
[  205.060795][ T5447] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active
[  205.068177][ T5482]  (&ppp->rlock){+...}-{2:2}, at: ppp_connect_channel+0x181/0x640
[  205.139618][ T5482] which would create a new lock dependency:
[  205.145606][ T5482]  (&ppp->rlock){+...}-{2:2} -> (&pch->downl){+.+.}-{2:2}
[  205.152795][ T5482] 
[  205.152795][ T5482] but this new dependency connects a SOFTIRQ-READ-irq-safe lock:
[  205.162690][ T5482]  (&pch->upl){++.-}-{2:2}
[  205.162720][ T5482] 
[  205.162720][ T5482] ... which became SOFTIRQ-READ-irq-safe at:
[  205.175306][ T5482]   lock_acquire+0x1f8/0x5a0
[  205.180013][ T5482]   _raw_read_lock_bh+0x39/0x50
[  205.184881][ T5482]   ppp_input+0x3ca/0xa00
[  205.189224][ T5482]   ppp_async_process+0x7b/0x140
[  205.194172][ T5482]   tasklet_action_common+0x3cb/0x4a0
[  205.199559][ T5482]   handle_softirqs+0x2ee/0xa40
[  205.204435][ T5482]   run_ksoftirqd+0xc6/0x120
[  205.209031][ T5482]   smpboot_thread_fn+0x52c/0xa30
[  205.214153][ T5482]   kthread+0x28d/0x320
[  205.218309][ T5482]   ret_from_fork+0x1f/0x30
[  205.222822][ T5482] 
[  205.222822][ T5482] to a SOFTIRQ-READ-irq-unsafe lock:
[  205.230274][ T5482]  (&pch->downl){+.+.}-{2:2}
[  205.230302][ T5482] 
[  205.230302][ T5482] ... which became SOFTIRQ-READ-irq-unsafe at:
[  205.243224][ T5482] ...
[  205.243234][ T5482]   lock_acquire+0x1f8/0x5a0
[  205.250425][ T5482]   _raw_spin_lock+0x2a/0x40
[  205.255028][ T5482]   ppp_input+0x185/0xa00
[  205.259457][ T5482]   pppoe_rcv_core+0x112/0x300
[  205.264234][ T5482]   __release_sock+0x198/0x4b0
[  205.269008][ T5482]   release_sock+0x5d/0x1c0
[  205.273516][ T5482]   pppoe_sendmsg+0xd1/0x740
[  205.278115][ T5482]   ____sys_sendmsg+0x5a5/0x8f0
[  205.283063][ T5482]   __sys_sendmmsg+0x3ab/0x730
[  205.287835][ T5482]   __x64_sys_sendmmsg+0x9c/0xb0
[  205.292782][ T5482]   do_syscall_64+0x3b/0xb0
[  205.297292][ T5482]   entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  205.303281][ T5482] 
[  205.303281][ T5482] other info that might help us debug this:
[  205.303281][ T5482] 
[  205.313516][ T5482] Chain exists of:
[  205.313516][ T5482]   &pch->upl --> &ppp->rlock --> &pch->downl
[  205.313516][ T5482] 
[  205.325343][ T5482]  Possible interrupt unsafe locking scenario:
[  205.325343][ T5482] 
[  205.333748][ T5482]        CPU0                    CPU1
[  205.339125][ T5482]        ----                    ----
[  205.344600][ T5482]   lock(&pch->downl);
[  205.348703][ T5482]                                local_irq_disable();
[  205.355476][ T5482]                                lock(&pch->upl);
[  205.361898][ T5482]                                lock(&ppp->rlock);
[  205.368491][ T5482]   <Interrupt>
[  205.371939][ T5482]     lock(&pch->upl);
[  205.376029][ T5482] 
[  205.376029][ T5482]  *** DEADLOCK ***
[  205.376029][ T5482] 
[  205.384191][ T5482] 5 locks held by syz.2.269/5482:
[  205.389217][ T5482]  #0: ffffffff8dd6c148 (ppp_mutex){+.+.}-{3:3}, at: ppp_ioctl+0x10e/0x1c90
[  205.397949][ T5482]  #1: ffff888058ac2cc0 (&pn->all_ppp_mutex){+.+.}-{3:3}, at: ppp_connect_channel+0x5e/0x640
[  205.408162][ T5482]  #2: ffff888026854248 (&pch->upl){++.-}-{2:2}, at: ppp_connect_channel+0x87/0x640
[  205.417572][ T5482]  #3: ffff8880663a0e10 (&ppp->wlock){+...}-{2:2}, at: ppp_connect_channel+0x170/0x640
[  205.427244][ T5482]  #4: ffff8880663a0dd0 (&ppp->rlock){+...}-{2:2}, at: ppp_connect_channel+0x181/0x640
[  205.436939][ T5482] 
[  205.436939][ T5482] the dependencies between SOFTIRQ-READ-irq-safe lock and the holding lock:
[  205.447952][ T5482]   -> (&pch->upl){++.-}-{2:2} {
[  205.452917][ T5482]      HARDIRQ-ON-W at:
[  205.457074][ T5482]                         lock_acquire+0x1f8/0x5a0
[  205.463592][ T5482]                         _raw_write_lock_bh+0x31/0x40
[  205.470453][ T5482]                         ppp_disconnect_channel+0x2f/0x2d0
[  205.477746][ T5482]                         ppp_unregister_channel+0xb5/0x2f0
[  205.485032][ T5482]                         pppox_unbind_sock+0x58/0xa0
[  205.491817][ T5482]                         pptp_release+0x143/0x2f0
[  205.498329][ T5482]                         sock_close+0xcd/0x230
[  205.504574][ T5482]                         __fput+0x3f6/0x8d0
[  205.510562][ T5482]                         task_work_run+0x246/0x300
[  205.517189][ T5482]                         exit_to_user_mode_loop+0xde/0x100
[  205.524477][ T5482]                         exit_to_user_mode_prepare+0xb1/0x140
[  205.532024][ T5482]                         syscall_exit_to_user_mode+0x60/0x270
[  205.539576][ T5482]                         do_syscall_64+0x47/0xb0
[  205.546002][ T5482]                         entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  205.553903][ T5482]      HARDIRQ-ON-R at:
[  205.558064][ T5482]                         lock_acquire+0x1f8/0x5a0
[  205.564585][ T5482]                         _raw_read_lock_bh+0x39/0x50
[  205.571377][ T5482]                         ppp_channel_push+0x2c/0x220
[  205.578171][ T5482]                         ppp_write+0x294/0x3a0
[  205.584416][ T5482]                         vfs_write+0x2d9/0xbc0
[  205.590659][ T5482]                         ksys_write+0x19c/0x2c0
[  205.596992][ T5482]                         do_syscall_64+0x3b/0xb0
[  205.603439][ T5482]                         entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  205.611344][ T5482]      IN-SOFTIRQ-R at:
[  205.615499][ T5482]                         lock_acquire+0x1f8/0x5a0
[  205.622011][ T5482]                         _raw_read_lock_bh+0x39/0x50
[  205.628788][ T5482]                         ppp_input+0x3ca/0xa00
[  205.635038][ T5482]                         ppp_async_process+0x7b/0x140
[  205.641895][ T5482]                         tasklet_action_common+0x3cb/0x4a0
[  205.649190][ T5482]                         handle_softirqs+0x2ee/0xa40
[  205.655962][ T5482]                         run_ksoftirqd+0xc6/0x120
[  205.662481][ T5482]                         smpboot_thread_fn+0x52c/0xa30
[  205.669424][ T5482]                         kthread+0x28d/0x320
[  205.675488][ T5482]                         ret_from_fork+0x1f/0x30
[  205.681910][ T5482]      INITIAL USE at:
[  205.685978][ T5482]                        lock_acquire+0x1f8/0x5a0
[  205.692400][ T5482]                        _raw_write_lock_bh+0x31/0x40
[  205.699256][ T5482]                        ppp_disconnect_channel+0x2f/0x2d0
[  205.706453][ T5482]                        ppp_unregister_channel+0xb5/0x2f0
[  205.713649][ T5482]                        pppox_unbind_sock+0x58/0xa0
[  205.720326][ T5482]                        pptp_release+0x143/0x2f0
[  205.726749][ T5482]                        sock_close+0xcd/0x230
[  205.732906][ T5482]                        __fput+0x3f6/0x8d0
[  205.738815][ T5482]                        task_work_run+0x246/0x300
[  205.745326][ T5482]                        exit_to_user_mode_loop+0xde/0x100
[  205.752524][ T5482]                        exit_to_user_mode_prepare+0xb1/0x140
[  205.760075][ T5482]                        syscall_exit_to_user_mode+0x60/0x270
[  205.767536][ T5482]                        do_syscall_64+0x47/0xb0
[  205.773874][ T5482]                        entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  205.781689][ T5482]      INITIAL READ USE at:
[  205.786278][ T5482]                             lock_acquire+0x1f8/0x5a0
[  205.793159][ T5482]                             _raw_read_lock_bh+0x39/0x50
[  205.800276][ T5482]                             ppp_channel_push+0x2c/0x220
[  205.807388][ T5482]                             ppp_write+0x294/0x3a0
[  205.814001][ T5482]                             vfs_write+0x2d9/0xbc0
[  205.820695][ T5482]                             ksys_write+0x19c/0x2c0
[  205.827457][ T5482]                             do_syscall_64+0x3b/0xb0
[  205.834230][ T5482]                             entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  205.842486][ T5482]    }
[  205.845153][ T5482]    ... key      at: [<ffffffff976db060>] ppp_register_net_channel.__key.3+0x0/0x20
[  205.854614][ T5482]  -> (&ppp->wlock){+...}-{2:2} {
[  205.859692][ T5482]     HARDIRQ-ON-W at:
[  205.863754][ T5482]                       lock_acquire+0x1f8/0x5a0
[  205.870093][ T5482]                       _raw_spin_lock_bh+0x31/0x40
[  205.876686][ T5482]                       ppp_get_stats64+0xbf/0x290
[  205.883185][ T5482]                       dev_get_stats+0xa7/0x490
[  205.889520][ T5482]                       rtnl_fill_stats+0x47/0x880
[  205.896051][ T5482]                       rtnl_fill_ifinfo+0x18aa/0x2090
[  205.902909][ T5482]                       rtmsg_ifinfo_build_skb+0xdc/0x180
[  205.910027][ T5482]                       rtmsg_ifinfo+0x71/0x120
[  205.916281][ T5482]                       register_netdevice+0x13dc/0x1720
[  205.923314][ T5482]                       ppp_dev_configure+0x850/0xab0
[  205.930163][ T5482]                       ppp_ioctl+0x702/0x1c90
[  205.936337][ T5482]                       __se_sys_ioctl+0xf1/0x160
[  205.942773][ T5482]                       do_syscall_64+0x3b/0xb0
[  205.949022][ T5482]                       entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  205.956756][ T5482]     INITIAL USE at:
[  205.960751][ T5482]                      lock_acquire+0x1f8/0x5a0
[  205.967013][ T5482]                      _raw_spin_lock_bh+0x31/0x40
[  205.973522][ T5482]                      ppp_get_stats64+0xbf/0x290
[  205.979938][ T5482]                      dev_get_stats+0xa7/0x490
[  205.986200][ T5482]                      rtnl_fill_stats+0x47/0x880
[  205.992711][ T5482]                      rtnl_fill_ifinfo+0x18aa/0x2090
[  205.999483][ T5482]                      rtmsg_ifinfo_build_skb+0xdc/0x180
[  206.006516][ T5482]                      rtmsg_ifinfo+0x71/0x120
[  206.012678][ T5482]                      register_netdevice+0x13dc/0x1720
[  206.019622][ T5482]                      ppp_dev_configure+0x850/0xab0
[  206.026320][ T5482]                      ppp_ioctl+0x702/0x1c90
[  206.032408][ T5482]                      __se_sys_ioctl+0xf1/0x160
[  206.038775][ T5482]                      do_syscall_64+0x3b/0xb0
[  206.044957][ T5482]                      entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.052601][ T5482]   }
[  206.055188][ T5482]   ... key      at: [<ffffffff976db1a0>] ppp_dev_configure.__key.65+0x0/0x20
[  206.064129][ T5482]   ... acquired at:
[  206.068011][ T5482]    lock_acquire+0x1f8/0x5a0
[  206.072699][ T5482]    _raw_spin_lock_bh+0x31/0x40
[  206.077642][ T5482]    ppp_connect_channel+0x170/0x640
[  206.082926][ T5482]    ppp_ioctl+0xbe5/0x1c90
[  206.087693][ T5482]    __se_sys_ioctl+0xf1/0x160
[  206.092630][ T5482]    do_syscall_64+0x3b/0xb0
[  206.097230][ T5482]    entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.103676][ T5482] 
[  206.106016][ T5482] -> (&ppp->rlock){+...}-{2:2} {
[  206.110975][ T5482]    HARDIRQ-ON-W at:
[  206.114957][ T5482]                     lock_acquire+0x1f8/0x5a0
[  206.121209][ T5482]                     _raw_spin_lock_bh+0x31/0x40
[  206.127625][ T5482]                     ppp_get_stats64+0x2f/0x290
[  206.133952][ T5482]                     dev_get_stats+0xa7/0x490
[  206.140653][ T5482]                     rtnl_fill_stats+0x47/0x880
[  206.146990][ T5482]                     rtnl_fill_ifinfo+0x18aa/0x2090
[  206.153676][ T5482]                     rtmsg_ifinfo_build_skb+0xdc/0x180
[  206.160618][ T5482]                     rtmsg_ifinfo+0x71/0x120
[  206.166702][ T5482]                     register_netdevice+0x13dc/0x1720
[  206.173585][ T5482]                     ppp_dev_configure+0x850/0xab0
[  206.180175][ T5482]                     ppp_ioctl+0x702/0x1c90
[  206.186330][ T5482]                     __se_sys_ioctl+0xf1/0x160
[  206.192657][ T5482]                     do_syscall_64+0x3b/0xb0
[  206.198734][ T5482]                     entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.206284][ T5482]    INITIAL USE at:
[  206.210176][ T5482]                    lock_acquire+0x1f8/0x5a0
[  206.216250][ T5482]                    _raw_spin_lock_bh+0x31/0x40
[  206.222585][ T5482]                    ppp_get_stats64+0x2f/0x290
[  206.228835][ T5482]                    dev_get_stats+0xa7/0x490
[  206.234947][ T5482]                    rtnl_fill_stats+0x47/0x880
[  206.241331][ T5482]                    rtnl_fill_ifinfo+0x18aa/0x2090
[  206.247947][ T5482]                    rtmsg_ifinfo_build_skb+0xdc/0x180
[  206.254906][ T5482]                    rtmsg_ifinfo+0x71/0x120
[  206.260921][ T5482]                    register_netdevice+0x13dc/0x1720
[  206.267698][ T5482]                    ppp_dev_configure+0x850/0xab0
[  206.274200][ T5482]                    ppp_ioctl+0x702/0x1c90
[  206.280184][ T5482]                    __se_sys_ioctl+0xf1/0x160
[  206.286337][ T5482]                    do_syscall_64+0x3b/0xb0
[  206.292325][ T5482]                    entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.299891][ T5482]  }
[  206.302388][ T5482]  ... key      at: [<ffffffff976db180>] ppp_dev_configure.__key+0x0/0x20
[  206.310909][ T5482]  ... acquired at:
[  206.314744][ T5482]    lock_acquire+0x1f8/0x5a0
[  206.319446][ T5482]    _raw_spin_lock_bh+0x31/0x40
[  206.324395][ T5482]    ppp_connect_channel+0x181/0x640
[  206.329695][ T5482]    ppp_ioctl+0xbe5/0x1c90
[  206.334293][ T5482]    __se_sys_ioctl+0xf1/0x160
[  206.339068][ T5482]    do_syscall_64+0x3b/0xb0
[  206.343669][ T5482]    entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.349742][ T5482] 
[  206.352078][ T5482] 
[  206.352078][ T5482] the dependencies between the lock to be acquired
[  206.352087][ T5482]  and SOFTIRQ-READ-irq-unsafe lock:
[  206.366044][ T5482] -> (&pch->downl){+.+.}-{2:2} {
[  206.371013][ T5482]    HARDIRQ-ON-W at:
[  206.375010][ T5482]                     lock_acquire+0x1f8/0x5a0
[  206.381174][ T5482]                     _raw_spin_lock_bh+0x31/0x40
[  206.387612][ T5482]                     ppp_unregister_channel+0x78/0x2f0
[  206.394546][ T5482]                     pppox_unbind_sock+0x58/0xa0
[  206.400960][ T5482]                     pptp_release+0x143/0x2f0
[  206.407121][ T5482]                     sock_close+0xcd/0x230
[  206.413012][ T5482]                     __fput+0x3f6/0x8d0
[  206.418648][ T5482]                     task_work_run+0x246/0x300
[  206.424891][ T5482]                     exit_to_user_mode_loop+0xde/0x100
[  206.431826][ T5482]                     exit_to_user_mode_prepare+0xb1/0x140
[  206.439030][ T5482]                     syscall_exit_to_user_mode+0x60/0x270
[  206.446229][ T5482]                     do_syscall_64+0x47/0xb0
[  206.452306][ T5482]                     entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.459859][ T5482]    SOFTIRQ-ON-W at:
[  206.463840][ T5482]                     lock_acquire+0x1f8/0x5a0
[  206.470436][ T5482]                     _raw_spin_lock+0x2a/0x40
[  206.476609][ T5482]                     ppp_input+0x185/0xa00
[  206.482499][ T5482]                     pppoe_rcv_core+0x112/0x300
[  206.488828][ T5482]                     __release_sock+0x198/0x4b0
[  206.495158][ T5482]                     release_sock+0x5d/0x1c0
[  206.501224][ T5482]                     pppoe_sendmsg+0xd1/0x740
[  206.507468][ T5482]                     ____sys_sendmsg+0x5a5/0x8f0
[  206.513906][ T5482]                     __sys_sendmmsg+0x3ab/0x730
[  206.520240][ T5482]                     __x64_sys_sendmmsg+0x9c/0xb0
[  206.526764][ T5482]                     do_syscall_64+0x3b/0xb0
[  206.532838][ T5482]                     entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.540389][ T5482]    INITIAL USE at:
[  206.544280][ T5482]                    lock_acquire+0x1f8/0x5a0
[  206.550460][ T5482]                    _raw_spin_lock_bh+0x31/0x40
[  206.556793][ T5482]                    ppp_unregister_channel+0x78/0x2f0
[  206.563650][ T5482]                    pppox_unbind_sock+0x58/0xa0
[  206.569981][ T5482]                    pptp_release+0x143/0x2f0
[  206.576056][ T5482]                    sock_close+0xcd/0x230
[  206.581897][ T5482]                    __fput+0x3f6/0x8d0
[  206.587443][ T5482]                    task_work_run+0x246/0x300
[  206.593602][ T5482]                    exit_to_user_mode_loop+0xde/0x100
[  206.600448][ T5482]                    exit_to_user_mode_prepare+0xb1/0x140
[  206.607563][ T5482]                    syscall_exit_to_user_mode+0x60/0x270
[  206.614798][ T5482]                    do_syscall_64+0x47/0xb0
[  206.620788][ T5482]                    entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.628253][ T5482]  }
[  206.630749][ T5482]  ... key      at: [<ffffffff976db040>] ppp_register_net_channel.__key.1+0x0/0x20
[  206.640039][ T5482]  ... acquired at:
[  206.643837][ T5482]    lock_acquire+0x1f8/0x5a0
[  206.648697][ T5482]    _raw_spin_lock_bh+0x31/0x40
[  206.653642][ T5482]    ppp_connect_channel+0x190/0x640
[  206.658942][ T5482]    ppp_ioctl+0xbe5/0x1c90
[  206.663452][ T5482]    __se_sys_ioctl+0xf1/0x160
[  206.668301][ T5482]    do_syscall_64+0x3b/0xb0
[  206.672903][ T5482]    entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.679068][ T5482] 
[  206.681386][ T5482] 
[  206.681386][ T5482] stack backtrace:
[  206.687297][ T5482] CPU: 0 PID: 5482 Comm: syz.2.269 Not tainted 6.1.111-syzkaller #0
[  206.695289][ T5482] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 09/13/2024
[  206.705365][ T5482] Call Trace:
[  206.708652][ T5482]  <TASK>
[  206.711601][ T5482]  dump_stack_lvl+0x1e3/0x2cb
[  206.716303][ T5482]  ? nf_tcp_handle_invalid+0x642/0x642
[  206.722124][ T5482]  ? panic+0x764/0x764
[  206.726202][ T5482]  ? print_shortest_lock_dependencies+0xee/0x150
[  206.732567][ T5482]  validate_chain+0x4d16/0x5950
[  206.737432][ T5482]  ? reacquire_held_locks+0x660/0x660
[  206.742804][ T5482]  ? mark_lock+0x9a/0x340
[  206.747145][ T5482]  ? __lock_acquire+0x125b/0x1f80
[  206.752180][ T5482]  ? register_lock_class+0x100/0x990
[  206.757481][ T5482]  ? is_dynamic_key+0x260/0x260
[  206.762348][ T5482]  ? mark_lock+0x9a/0x340
[  206.766699][ T5482]  __lock_acquire+0x125b/0x1f80
[  206.771567][ T5482]  lock_acquire+0x1f8/0x5a0
[  206.776082][ T5482]  ? ppp_connect_channel+0x190/0x640
[  206.781376][ T5482]  ? read_lock_is_recursive+0x10/0x10
[  206.786761][ T5482]  ? ppp_connect_channel+0x190/0x640
[  206.792056][ T5482]  ? __bpf_trace_softirq+0x10/0x10
[  206.797189][ T5482]  ? __rwlock_init+0x140/0x140
[  206.801954][ T5482]  ? ppp_connect_channel+0x190/0x640
[  206.807241][ T5482]  _raw_spin_lock_bh+0x31/0x40
[  206.812012][ T5482]  ? ppp_connect_channel+0x190/0x640
[  206.817304][ T5482]  ppp_connect_channel+0x190/0x640
[  206.822421][ T5482]  ? __might_fault+0xa1/0x110
[  206.827106][ T5482]  ppp_ioctl+0xbe5/0x1c90
[  206.831466][ T5482]  ? ppp_poll+0x240/0x240
[  206.835802][ T5482]  ? __fget_files+0x28/0x4a0
[  206.840393][ T5482]  ? __fget_files+0x435/0x4a0
[  206.845071][ T5482]  ? __fget_files+0x28/0x4a0
[  206.849666][ T5482]  ? bpf_lsm_file_ioctl+0x5/0x10
[  206.854692][ T5482]  ? security_file_ioctl+0x7d/0xa0
[  206.859808][ T5482]  ? ppp_poll+0x240/0x240
[  206.864137][ T5482]  __se_sys_ioctl+0xf1/0x160
[  206.868728][ T5482]  do_syscall_64+0x3b/0xb0
[  206.873156][ T5482]  ? clear_bhb_loop+0x45/0xa0
[  206.877842][ T5482]  entry_SYSCALL_64_after_hwframe+0x68/0xd2
[  206.883766][ T5482] RIP: 0033:0x7f117197dff9
[  206.888197][ T5482] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48
[  206.907811][ T5482] RSP: 002b:00007f11726f3038 EFLAGS: 00000246 ORIG_RAX: 0000000000000010
[  206.916314][ T5482] RAX: ffffffffffffffda RBX: 00007f1171b35f80 RCX: 00007f117197dff9
[  206.924295][ T5482] RDX: 0000000020000300 RSI: 000000004004743a RDI: 0000000000000005
[  206.932265][ T5482] RBP: 00007f11719f0296 R08: 0000000000000000 R09: 0000000000000000
[  206.940236][ T5482] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000
SYZFAIL: failed to recv rpc
fd=3 want=4 recv=0 n=0 (errno 9: Bad file descriptor)
[  206.948234][ T5482] R13: 0000000000000000 R14: 00007f1171b35f80 R15: 00007ffd1700a5b8
[  206.956237][ T5482]  </TASK>
[  206.975066][ T3642] Bluetooth: hci1: command tx timeout
[  206.988220][ T4433] gspca_sonixj: reg_w1 err -110
[  207.046863][ T4433] sonixj: probe of 1-1:0.0 failed with error -110
[  207.054327][ T4433] usb 1-1: USB disconnect, device number 5
[  207.072647][ T3738] netdevsim netdevsim4 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  207.402743][ T3738] netdevsim netdevsim4 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  208.346647][ T3738] device hsr_slave_0 left promiscuous mode
[  208.355485][ T3738] device hsr_slave_1 left promiscuous mode
[  208.363202][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  208.372915][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  208.381520][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  208.390868][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  208.398871][ T3738] device bridge_slave_1 left promiscuous mode
[  208.405092][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  208.414382][ T3738] device bridge_slave_0 left promiscuous mode
[  208.421644][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  208.434982][ T3738] device veth1_macvtap left promiscuous mode
[  208.441665][ T3738] device veth0_macvtap left promiscuous mode
[  208.450068][ T3738] device veth1_vlan left promiscuous mode
[  208.456071][ T3738] device veth0_vlan left promiscuous mode
[  208.639240][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  208.674784][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  208.704376][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  208.733715][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  208.812217][ T3738] bond0 (unregistering): Released all slaves
[  209.700722][ T3738] netdevsim netdevsim2 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  209.762448][ T3738] netdevsim netdevsim2 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  209.801246][ T3738] netdevsim netdevsim2 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  209.865100][ T3738] team0: Port device netdevsim0 removed
[  209.873819][ T3738] netdevsim netdevsim2 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  209.990116][ T3738] netdevsim netdevsim0 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  210.043096][ T3738] netdevsim netdevsim0 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  210.082758][ T3738] netdevsim netdevsim0 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  210.131981][ T3738] netdevsim netdevsim0 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0
[  211.260676][ T3738] device hsr_slave_0 left promiscuous mode
[  211.267916][ T3738] device hsr_slave_1 left promiscuous mode
[  211.274322][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  211.285609][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  211.293581][ T3738] device bridge_slave_1 left promiscuous mode
[  211.302123][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  211.311549][ T3738] device bridge_slave_0 left promiscuous mode
[  211.319799][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  211.331450][ T3738] device hsr_slave_0 left promiscuous mode
[  211.339862][ T3738] device hsr_slave_1 left promiscuous mode
[  211.346247][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  211.354479][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  211.364277][ T3738] device bridge_slave_1 left promiscuous mode
[  211.371427][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  211.380207][ T3738] device bridge_slave_0 left promiscuous mode
[  211.386435][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  211.398142][ T3738] device hsr_slave_0 left promiscuous mode
[  211.404491][ T3738] device hsr_slave_1 left promiscuous mode
[  211.411234][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  211.418796][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  211.426693][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  211.435149][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  211.442893][ T3738] device bridge_slave_1 left promiscuous mode
[  211.449548][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  211.458006][ T3738] device bridge_slave_0 left promiscuous mode
[  211.464228][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  211.474004][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  211.481894][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  211.489651][ T3738] device bridge_slave_1 left promiscuous mode
[  211.495874][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  211.504202][ T3738] device bridge_slave_0 left promiscuous mode
[  211.511423][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  211.521690][ T3738] device hsr_slave_0 left promiscuous mode
[  211.529265][ T3738] device hsr_slave_1 left promiscuous mode
[  211.535571][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_0
[  211.543319][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_0
[  211.551164][ T3738] batman_adv: batadv0: Interface deactivated: batadv_slave_1
[  211.559060][ T3738] batman_adv: batadv0: Removing interface: batadv_slave_1
[  211.566740][ T3738] device bridge_slave_1 left promiscuous mode
[  211.573098][ T3738] bridge0: port 2(bridge_slave_1) entered disabled state
[  211.581371][ T3738] device bridge_slave_0 left promiscuous mode
[  211.587809][ T3738] bridge0: port 1(bridge_slave_0) entered disabled state
[  211.601062][ T3738] device veth1_macvtap left promiscuous mode
[  211.607125][ T3738] device veth0_macvtap left promiscuous mode
[  211.613195][ T3738] device veth1_vlan left promiscuous mode
[  211.619387][ T3738] device veth0_vlan left promiscuous mode
[  211.625883][ T3738] device veth1_macvtap left promiscuous mode
[  211.632495][ T3738] device veth0_macvtap left promiscuous mode
[  211.638772][ T3738] device veth1_vlan left promiscuous mode
[  211.644585][ T3738] device veth0_vlan left promiscuous mode
[  211.890770][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  211.922833][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  211.951401][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  211.981728][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  212.037514][ T3738] bond0 (unregistering): Released all slaves
[  212.133320][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  212.151159][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  212.179463][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  212.210953][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  212.263770][ T3738] bond0 (unregistering): Released all slaves
[  212.377403][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  212.407061][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  212.418487][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  212.430997][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  212.482568][ T3738] bond0 (unregistering): Released all slaves
[  212.542646][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  212.572857][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  212.605532][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  212.638991][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  212.681591][ T3738] bond0 (unregistering): Released all slaves
[  212.828757][ T3738] team0 (unregistering): Port device team_slave_1 removed
[  212.858438][ T3738] team0 (unregistering): Port device team_slave_0 removed
[  212.887537][ T3738] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface
[  212.918543][ T3738] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface
[  213.112957][ T3738] bond0 (unregistering): Released all slaves