last executing test programs: 2.582462841s ago: executing program 4 (id=980): r0 = socket$netlink(0x10, 0x3, 0x14) sendmsg$RDMA_NLDEV_CMD_NEWLINK(r0, &(0x7f0000000300)={0x0, 0x0, &(0x7f0000001200)={&(0x7f0000000500)=ANY=[@ANYBLOB="38000000031401002dbd7000000000000900020073797a320000000008004100727865001400330076657468305f746f5f626f6e64"], 0x38}, 0x1, 0x0, 0x0, 0x20000854}, 0x0) 2.389864624s ago: executing program 4 (id=982): bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="02000000040000000500000002"], 0x48) r0 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, 0x0, &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x40f00, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000300)={&(0x7f0000000040)='kmem_cache_free\x00', r0}, 0x10) prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000000)={0x1, &(0x7f00000000c0)=[{0x200000000006, 0x0, 0x0, 0x7ffc1ffb}]}) statx(0xffffffffffffff9c, &(0x7f0000000080)='./file1\x00', 0x0, 0x7ff, &(0x7f00000000c0)) 2.307957815s ago: executing program 4 (id=983): socket$packet(0x11, 0x3, 0x300) socket$nl_route(0x10, 0x3, 0x0) r0 = socket(0x10, 0x803, 0x0) syz_genetlink_get_family_id$smc(&(0x7f00000001c0), r0) getsockname$packet(r0, &(0x7f0000000100)={0x11, 0x0, 0x0, 0x1, 0x0, 0x6, @broadcast}, &(0x7f0000000200)=0x14) r1 = perf_event_open(&(0x7f0000000140)={0x2, 0x80, 0x3f, 0x1, 0x0, 0x0, 0x0, 0x8, 0x0, 0x1, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x2000000, 0x0, @perf_bp={0x0, 0x13}, 0x400, 0xffffffff, 0xd15, 0x6, 0x0, 0x1, 0xfff9, 0x0, 0x0, 0x0, 0x6}, 0x0, 0x0, 0xffffffffffffffff, 0x8) r2 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000780)={0x5, 0x3, &(0x7f0000000500)=ANY=[@ANYBLOB="1800000000001200000000000000000095"], &(0x7f0000000c00)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x90) ioctl$PERF_EVENT_IOC_SET_BPF(r1, 0x40042408, r2) socket$nl_route(0x10, 0x3, 0x0) r3 = syz_open_dev$sg(&(0x7f00000003c0), 0x0, 0x802) writev(r3, &(0x7f0000000000)=[{&(0x7f0000000040)="aefdda9d240303005a90f57f07703aeff0f64eb9ee07962c220a2e11b44e65d76641cb010852f426072a", 0x2a}], 0x1) read(r3, 0x0, 0x0) syz_mount_image$ext4(&(0x7f0000000000)='ext4\x00', &(0x7f0000000040)='./bus\x00', 0x1208002, &(0x7f00000001c0), 0x1, 0x5df, &(0x7f0000002f80)="$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") r4 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route(r4, &(0x7f0000000140)={0x0, 0x0, &(0x7f0000000100)={&(0x7f0000000240)=@ipv4_delroute={0x24, 0x19, 0x901, 0x0, 0x0, {0x2, 0x18, 0x0, 0x0, 0x0, 0x1, 0xff}, [@RTA_DST={0x8, 0x1, @dev}]}, 0x24}}, 0x0) chdir(&(0x7f00000003c0)='./bus\x00') mkdir(&(0x7f00000003c0)='./file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00', 0x26) 1.680642784s ago: executing program 4 (id=985): r0 = openat$selinux_load(0xffffffffffffff9c, &(0x7f0000000380), 0x2, 0x0) r1 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[], 0x50) r2 = bpf$PROG_LOAD(0x5, &(0x7f00000006c0)={0x11, 0x14, &(0x7f0000000280)=ANY=[@ANYBLOB="180000000000000000000000000000001801000020646c2100000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b703000000000000850000000600000018110000", @ANYRES32=r1, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b70400000000000085000000c300000095"], &(0x7f0000000000)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0xb, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000280)='kmem_cache_free\x00', r2, 0x0, 0x6}, 0x18) r3 = openat$selinux_policy(0xffffff9c, &(0x7f0000001040), 0x0, 0x0) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb, 0x12, r3, 0x0) write$selinux_load(r0, &(0x7f0000000000)={0xf97cff8c, 0x8, 'SE Linux', "a5199fcdafdf3bb7cc4c8bc74a5ec2b0d07a2123b1ffffc2b5877ed2f506d04eb3c4c94cca1ae1060238"}, 0x3a) 1.394483839s ago: executing program 4 (id=993): r0 = bpf$MAP_CREATE_RINGBUF(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="1b0000000000000000000000000004"], 0x48) r1 = bpf$BPF_BTF_LOAD(0x12, &(0x7f0000000400)={&(0x7f0000000580)=ANY=[@ANYBLOB="9feb01001800000000000000d8000000d80000000b0000000000000000000003000000000500000004000000100000000600000008000085000000000a0000000500000001000000040000000100000002000000020000000500000006000000000005000000330f00000b00000000000000018000000b00000004000000040000000600000005000000080000000800000005000000100000000d0000000000000100000000800074000e0000000000000a000020000500004000000009020200000f0000000000000e01000000020000000800000000000007000000000600000000000001000000002300030600002e2e5f5f5f002e3000"], &(0x7f0000003480)=""/4086, 0xfb, 0xff6, 0x1, 0xe273, 0x0, @void, @value}, 0x28) r2 = bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0x11, 0xf, &(0x7f0000000000)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b702000014fa0000b7030000000008008500000083000000bf0900000000000055090100000000009500000000000000bf91000000000000b7020000000000008500000084000000b70000000020000095"], &(0x7f0000000080)='GPL\x00', 0x0, 0x0, 0x0, 0x40f00, 0x0, '\x00', 0x0, @fallback=0x14, r1, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000080)='kfree\x00', r2}, 0x10) r3 = fsopen(&(0x7f0000000000)='ramfs\x00', 0x0) r4 = socket(0x10, 0x3, 0x6) r5 = socket(0x10, 0x3, 0x0) r6 = perf_event_open(&(0x7f0000000100)={0x1, 0x80, 0x4, 0x0, 0x0, 0x0, 0x0, 0x100, 0x10020, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x2, @perf_bp={0x0, 0xb}, 0x100002, 0x0, 0xfffffffc, 0x2}, 0x0, 0xffffffffffffffff, 0xffffffffffffffff, 0x0) r7 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="04000000040000000400000005"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x1b, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r7, @ANYBLOB="0000000000000000b70800000000e7057b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000001600000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x2a, '\x00', 0x0, @fallback=0x9, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xe8c, @void, @value}, 0x94) bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f00000023c0)={0x0, 0x4, &(0x7f0000000480)=ANY=[@ANYBLOB="18020000000000000000"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$MAP_UPDATE_ELEM_TAIL_CALL(0x2, &(0x7f0000000200)={{r7}, &(0x7f0000000180), &(0x7f00000001c0)=r6}, 0x20) r8 = bpf$PROG_LOAD(0x5, &(0x7f0000000740)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000200)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x2f, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000f40)={&(0x7f0000000f00)='kfree\x00', r8, 0x0, 0xf}, 0x18) ioctl$ifreq_SIOCGIFINDEX_team(r4, 0x8933, &(0x7f0000000040)={'team0\x00', 0x0}) sendmsg$nl_route_sched(r5, &(0x7f0000000200)={0x0, 0x0, &(0x7f0000000000)={&(0x7f0000000300)=@newqdisc={0x90, 0x24, 0xf0b, 0x70bd26, 0x0, {0x0, 0x0, 0x0, r9, {0x0, 0xffff}, {0xffff, 0xffff}}, [@qdisc_kind_options=@q_mqprio={{0xb}, {0x58, 0x2, {{0x2, [], 0x0, [0x4, 0x2, 0xfffe, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x5c4, 0x0, 0x0, 0x0, 0x3dc], [0x0, 0x4, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x1000]}}}}, @TCA_RATE={0x6}]}, 0x90}}, 0x20000000) fsconfig$FSCONFIG_CMD_CREATE(r3, 0x6, 0x0, 0x0, 0x0) fchdir(0xffffffffffffffff) open(&(0x7f0000000040)='./bus\x00', 0x143142, 0x80) 1.357035679s ago: executing program 0 (id=995): r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000a00)=ANY=[@ANYBLOB="0a0000000500000002000000"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f0000000180)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000300000095"], 0x0, 0x0, 0xfffffffffffffe8b, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000380)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x6, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x9, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000340)={&(0x7f0000000040)='kmem_cache_free\x00', r1}, 0x10) prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000000)={0x1, &(0x7f0000000180)=[{0x200000000006, 0x0, 0x0, 0x7ffc0001}]}) execveat(0xffffffffffffff9c, &(0x7f0000000140)='./file1\x00', 0x0, 0x0, 0x0) 1.31425072s ago: executing program 2 (id=997): r0 = bpf$PROG_LOAD(0x5, &(0x7f0000000ac0)={0x11, 0x4, &(0x7f0000000040)=ANY=[@ANYBLOB="1800000000000000000000000000000085000000ae00000095"], &(0x7f00000007c0)='syzkaller\x00', 0x3, 0x0, 0x0, 0x40f00, 0x0, '\x00', 0x0, @fallback=0x19, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x7fff, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={0x0, r0, 0x0, 0x4}, 0x18) r1 = socket$inet6_tcp(0xa, 0x1, 0x0) setsockopt$IP6T_SO_SET_REPLACE(r1, 0x29, 0x40, &(0x7f0000000c80)=@raw={'raw\x00', 0x3c1, 0x3, 0x3f8, 0x0, 0x940c, 0x3002, 0x0, 0x2c0, 0x328, 0x3d8, 0x3d8, 0x328, 0x3d8, 0x3, 0x0, {[{{@uncond, 0x0, 0x1c8, 0x210, 0x4001, {}, [@common=@inet=@recent0={{0xf8}, {0x0, 0x1, 0x1, 0x3, 'syz0\x00'}}, @common=@eui64={{0x28}}]}, @common=@inet=@TEE={0x48, 'TEE\x00', 0x1, {@ipv4=@loopback, 'virt_wifi0\x00'}}}, {{@uncond, 0x0, 0xd8, 0x118, 0x0, {}, [@common=@frag={{0x30}, {[0x5, 0x2], 0x80000001, 0x29, 0x1}}]}, @common=@unspec=@RATEEST={0x40, 'RATEEST\x00', 0x0, {'syz1\x00', 0x1, 0xbe, {0x565159d7}}}}], {{'\x00', 0x0, 0xa8, 0xd0}, {0x28}}}}, 0x458) 1.30592665s ago: executing program 0 (id=998): socket$packet(0x11, 0x3, 0x300) socket$nl_route(0x10, 0x3, 0x0) r0 = socket(0x10, 0x803, 0x0) syz_genetlink_get_family_id$smc(&(0x7f00000001c0), r0) getsockname$packet(r0, &(0x7f0000000100)={0x11, 0x0, 0x0, 0x1, 0x0, 0x6, @broadcast}, &(0x7f0000000200)=0x14) r1 = perf_event_open(&(0x7f0000000140)={0x2, 0x80, 0x3f, 0x1, 0x0, 0x0, 0x0, 0x8, 0x0, 0x1, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x2000000, 0x0, @perf_bp={0x0, 0x13}, 0x400, 0xffffffff, 0xd15, 0x6, 0x0, 0x1, 0xfff9, 0x0, 0x0, 0x0, 0x6}, 0x0, 0x0, 0xffffffffffffffff, 0x8) r2 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000780)={0x5, 0x3, &(0x7f0000000500)=ANY=[@ANYBLOB="1800000000001200000000000000000095"], &(0x7f0000000c00)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x90) ioctl$PERF_EVENT_IOC_SET_BPF(r1, 0x40042408, r2) socket$nl_route(0x10, 0x3, 0x0) r3 = syz_open_dev$sg(&(0x7f00000003c0), 0x0, 0x802) writev(r3, &(0x7f0000000000)=[{&(0x7f0000000040)="aefdda9d240303005a90f57f07703aeff0f64eb9ee07962c220a2e11b44e65d76641cb010852f426072a", 0x2a}], 0x1) read(r3, 0x0, 0x0) syz_mount_image$ext4(&(0x7f0000000000)='ext4\x00', &(0x7f0000000040)='./bus\x00', 0x1208002, &(0x7f00000001c0), 0x1, 0x5df, &(0x7f0000002f80)="$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") syz_mount_image$vfat(&(0x7f00000002c0), &(0x7f0000000280)='./bus\x00', 0x89440c, 0x0, 0x1, 0x0, &(0x7f0000000140)) chdir(&(0x7f00000003c0)='./bus\x00') mkdir(&(0x7f00000003c0)='./file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00', 0x26) 1.30328714s ago: executing program 4 (id=999): syz_mount_image$ext4(&(0x7f0000000080)='ext4\x00', &(0x7f0000000500)='./file0\x00', 0x1000430, &(0x7f0000000100)={[{@grpid}, {@dioread_lock}]}, 0x8, 0x508, &(0x7f0000000a40)="$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") creat(&(0x7f00000000c0)='./bus\x00', 0x182) openat(0xffffffffffffff9c, &(0x7f0000000040)='./file1\x00', 0x181242, 0x42) bpf$PROG_LOAD(0x5, 0x0, 0x0) r0 = syz_open_dev$tty1(0xc, 0x4, 0x1) prlimit64(0x0, 0xe, &(0x7f0000000140)={0xa, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f0000000180)=@abs, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) bpf$MAP_CREATE(0x0, 0x0, 0x0) seccomp$SECCOMP_SET_MODE_FILTER_LISTENER(0x1, 0x0, &(0x7f0000000040)) io_pgetevents(0x0, 0x3, 0x3, &(0x7f0000000440)=[{}, {}, {}], &(0x7f00000004c0)={0x0, 0x3938700}, 0x0) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r3 = bpf$PROG_LOAD(0x5, &(0x7f0000000640)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x41000, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000080)='sched_switch\x00', r3}, 0x10) r4 = dup(r0) write$UHID_INPUT(r4, &(0x7f0000001040)={0xd, {"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", 0x1010}}, 0x1b7) 1.212046161s ago: executing program 2 (id=1000): r0 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="0500000004000000ff0f000007"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0xd, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000000000000b70400000000000085000000c300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000b80)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f00000002c0)='syzkaller\x00', 0x0, 0x0, 0x0, 0x40f00, 0x0, '\x00', 0x0, @fallback=0x1e, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x7, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000080)='kfree\x00', r1}, 0x18) r2 = bpf$MAP_CREATE(0x0, &(0x7f0000000480)=ANY=[@ANYBLOB="050000000600000008000000ad00000000"], 0x50) bpf$MAP_CREATE(0x0, &(0x7f00000008c0)=ANY=[@ANYBLOB="0d00000002000000040000000240000005000000", @ANYRES32=r2, @ANYBLOB='\x00'/20, @ANYRES32=0x0, @ANYRES32, @ANYBLOB='\x00\x00\x00\x00\x00\x00\x00\b'], 0x50) (fail_nth: 2) 798.312188ms ago: executing program 2 (id=1002): io_uring_setup(0x4126, &(0x7f0000000580)={0x0, 0x0, 0x40, 0x2, 0x1000000}) unshare(0x2040400) r0 = fsopen(&(0x7f0000000440)='cgroup2\x00', 0x0) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xb, &(0x7f0000000500)=ANY=[@ANYBLOB="18000000000000000000000000000000180100002020702500000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000000000000b70300000000a999850000000400000095"], &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x4f, '\x00', 0x0, @fallback=0xe, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x6, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000200)={&(0x7f0000000700)='kfree\x00', r1}, 0x18) fsconfig$FSCONFIG_CMD_CREATE(r0, 0x6, 0x0, 0x0, 0x0) unshare(0x0) r2 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000740)={0x11, 0x5, &(0x7f0000000280)=ANY=[], &(0x7f0000000080)='GPL\x00', 0x0, 0xfffffffffffffe58, 0x0, 0x40ffe, 0x79, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x800, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000200)={&(0x7f0000000240)='kfree\x00', r2, 0x0, 0x3}, 0x18) symlinkat(&(0x7f0000001040)='./file0/file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa/file0\x00', 0xffffffffffffff9c, &(0x7f0000000000)='./file0\x00') bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="04000000040000000400000005"], 0x48) r3 = openat$selinux_load(0xffffffffffffff9c, &(0x7f0000000180), 0x2, 0x0) r4 = seccomp$SECCOMP_SET_MODE_FILTER_LISTENER(0x1, 0x0, &(0x7f00000000c0)={0x1, &(0x7f0000000100)=[{0x6, 0x0, 0x0, 0x7fff0006}]}) close_range(r4, 0xffffffffffffffff, 0x0) r5 = io_uring_setup(0x5969, &(0x7f00000000c0)={0x0, 0x2bad, 0x40, 0x2, 0x13b}) io_uring_register$IORING_REGISTER_IOWQ_MAX_WORKERS(r5, 0x14, &(0x7f0000001900)=[0xffffffff], 0x2) r6 = socket$kcm(0x2a, 0x2, 0x0) sendmsg$inet(r6, &(0x7f00000004c0)={&(0x7f0000000500)={0x2a, 0xfffc, @multicast2}, 0x10, 0x0}, 0x20000040) r7 = openat$selinux_policy(0xffffff9c, &(0x7f0000001040), 0x0, 0x0) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0x100000a, 0x12, 0xffffffffffffffff, 0x0) write$selinux_load(r3, &(0x7f0000000000)=ANY=[], 0x3e14) mkdirat(0xffffffffffffff9c, &(0x7f00000000c0)='./file0\x00', 0x1e) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000bc0)={&(0x7f0000000a80)='kfree\x00', r7}, 0x18) r8 = socket$key(0xf, 0x3, 0x2) lgetxattr(&(0x7f0000000300)='./file0\x00', &(0x7f0000000340)=ANY=[@ANYBLOB='osx.pagehaV\x00'], &(0x7f0000000380)=""/69, 0x45) sendmsg$key(r8, &(0x7f0000000180)={0x0, 0x0, &(0x7f0000000140)={&(0x7f0000003080)=ANY=[@ANYRES64=r4, @ANYBLOB="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", @ANYBLOB="fe70c891c4b6807e975942d32a04849885780e436498077ca4459e93252a72e847d2056df8"], 0x88}}, 0x0) mount$bind(&(0x7f0000000000)='./file0\x00', &(0x7f00000001c0)='./file0/../file0\x00', 0x0, 0x101091, 0x0) r9 = open_tree(0xffffffffffffff9c, &(0x7f0000000640)='\x00', 0x89901) move_mount(0xffffffffffffff9c, &(0x7f0000008080)='./file0\x00', r9, 0x0, 0x160) open(&(0x7f0000000200)='./file0\x00', 0xc0, 0x0) 666.71ms ago: executing program 0 (id=1004): r0 = openat$selinux_load(0xffffffffffffff9c, &(0x7f0000000380), 0x2, 0x0) r1 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[], 0x50) r2 = bpf$PROG_LOAD(0x5, &(0x7f00000006c0)={0x11, 0x14, &(0x7f0000000280)=ANY=[@ANYBLOB="180000000000000000000000000000001801000020646c2100000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b703000000000000850000000600000018110000", @ANYRES32=r1, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b70400000000000085000000c300000095"], &(0x7f0000000000)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0xb, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000280)='kmem_cache_free\x00', r2, 0x0, 0x6}, 0x18) r3 = openat$selinux_policy(0xffffff9c, &(0x7f0000001040), 0x0, 0x0) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb, 0x12, r3, 0x0) write$selinux_load(r0, &(0x7f0000000000)={0xf97cff8c, 0x8, 'SE Linux', "a5199fcdafdf3bb7cc4c8bc74a5ec2b0d07a2123b1ffffc2b5877ed2f506d04eb3c4c94cca1ae1060238"}, 0x3a) 597.167431ms ago: executing program 2 (id=1005): perf_event_open(&(0x7f0000000140)={0x2, 0x80, 0x3f, 0x1, 0x0, 0x0, 0x0, 0x7, 0x590, 0x15, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @perf_bp={0x0, 0xc}, 0x4c58, 0x5, 0x0, 0x1, 0x8, 0x20002, 0xb, 0x0, 0x0, 0x0, 0x6}, 0x0, 0xffffffffffffffff, 0xffffffffffffffff, 0x0) openat$selinux_avc_cache_stats(0xffffffffffffff9c, &(0x7f00000001c0), 0x0, 0x0) r0 = bpf$MAP_CREATE_CONST_STR(0x0, &(0x7f0000000380)=ANY=[@ANYBLOB="0200000004000000080000000100000080000000", @ANYRES32=0x0, @ANYBLOB='\a\x00'/20, @ANYRES32=0x0, @ANYRES32, @ANYBLOB="020095de00"/24], 0x50) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000080)={&(0x7f0000000040)='sched_switch\x00', r1}, 0x10) r2 = socket$nl_generic(0x10, 0x3, 0x10) ioctl$ifreq_SIOCGIFINDEX_batadv_mesh(r2, 0x8933, &(0x7f0000000140)={'batadv0\x00', 0x0}) sendmsg$BATADV_CMD_SET_MESH(r2, &(0x7f0000006880)={0x0, 0x0, &(0x7f00000002c0)={&(0x7f0000000040)=ANY=[@ANYBLOB='$\x00\x00\x00', @ANYRES16, @ANYBLOB="010000000000ffdbdf250f00000008000300", @ANYRES32=r3, @ANYBLOB="05002f"], 0x24}, 0x1, 0x0, 0x0, 0x48000}, 0x0) bpf$BPF_LINK_CREATE_XDP(0x1c, &(0x7f0000000040)={r1, r3, 0x25, 0x1c, @val=@iter={&(0x7f0000000000)=@map_fd=r0, 0x10}}, 0x20) bpf$PROG_LOAD(0x5, &(0x7f00000004c0)={0x0, 0x10, &(0x7f0000000580)=@framed={{0x18, 0x5, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x20000}, [@snprintf={{}, {}, {}, {}, {}, {}, {}, {}, {}, {0x18, 0x3, 0x2, 0x0, r0}, {0x7, 0x0, 0xb, 0x4}, {0x85, 0x0, 0x0, 0x95}}]}, 0x0, 0x0, 0x0, 0x0, 0x0, 0x4, '\x00', 0x0, @fallback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r4 = bpf$PROG_LOAD(0x5, &(0x7f00000004c0)={0x11, 0x10, &(0x7f0000000580)=ANY=[], &(0x7f0000000600)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000180)={&(0x7f0000000140)='sched_switch\x00', r4}, 0x10) clock_nanosleep(0x9, 0x0, &(0x7f0000000080)={0x0, 0x3938700}, 0x0) r5 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$IPSET_CMD_CREATE(r5, &(0x7f0000000100)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000001bc0)=ANY=[@ANYBLOB="5c0000000206010100000000000000000000000005000100070000000900020073797a32000000000500050000000000050004000000000014000780080008400000009008000640000600000d0003006c6973743a736574"], 0x5c}}, 0x0) 596.411541ms ago: executing program 1 (id=1006): openat$procfs(0xffffffffffffff9c, &(0x7f0000000040)='/proc/schedstat\x00', 0x0, 0x0) 516.659032ms ago: executing program 3 (id=1007): prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000180)={0x1, &(0x7f0000000040)=[{0x200000000006, 0x0, 0x0, 0x7ffc0002}]}) bpf$MAP_CREATE_CONST_STR(0x0, &(0x7f00000002c0)=ANY=[@ANYBLOB="02000000040000000800000001"], 0x48) r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000e80)=ANY=[@ANYBLOB="0a00000002000000ff0f000007"], 0x50) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000000000000b70400000000000085000000c300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x40, '\x00', 0x0, @fallback=0x1e, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000380)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x3, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000080)='sched_switch\x00', r1}, 0x10) r2 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0x10, &(0x7f0000000580)=ANY=[], &(0x7f0000000080)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000006c0)={&(0x7f0000000700)='kmem_cache_free\x00', r2}, 0x10) r3 = socket$inet6_sctp(0xa, 0x1, 0x84) sendto$inet6(r3, &(0x7f0000000500)="a4", 0x34000, 0x2000c851, &(0x7f0000000140)={0xa, 0x4e23, 0x0, @loopback, 0xffffffff}, 0x1c) 498.284072ms ago: executing program 1 (id=1008): bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000080)={0xffffffffffffffff, 0x18000000000002a0, 0xa5, 0x0, &(0x7f0000000100)="b9ff030f6044238cb89e14f088a81bff892f00004000633277fbac14142ce934a0a662079f4b4d2f87e56dca6aab845013f2325f1a3901050b038da1880b25181aa59d943be3f4aed50ea5a6b8686731cb89ef77123c899b699eeaa8eaa0073461119663906400f30c0600000000000059b6d3296e8ca31bce1d8392078b72f24996ae17dffc2e43c8174b54b620636894aaacf28ff62616363c70a440aec4014caf28c0ad", 0x0, 0xfe, 0x60000000, 0x0, 0x0, 0x0, 0x0}, 0x50) sendmsg$NL802154_CMD_DEL_SEC_KEY(0xffffffffffffffff, &(0x7f0000000300)={0x0, 0x0, &(0x7f00000002c0)={&(0x7f0000000180)=ANY=[@ANYBLOB=' \x00\x00\x00', @ANYRES16, @ANYBLOB="01002bbd0400fedbdf25180000000c0006000a00"], 0x20}, 0x1, 0x0, 0x0, 0x20004020}, 0x4000004) r0 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route(r0, &(0x7f0000000240)={0x0, 0x0, &(0x7f0000000200)={&(0x7f0000000180)=ANY=[@ANYBLOB="240000006800b5610000000000000000020000000000000004000b00080010"], 0x24}}, 0x800) 497.690562ms ago: executing program 0 (id=1009): r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000a00)=ANY=[@ANYBLOB="0a0000000500000002000000"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f0000000180)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000300000095"], 0x0, 0x0, 0xfffffffffffffe8b, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000380)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x6, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x9, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000340)={&(0x7f0000000040)='kmem_cache_free\x00', r1}, 0x10) prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000000)={0x1, &(0x7f0000000180)=[{0x200000000006, 0x0, 0x0, 0x7ffc0001}]}) execveat(0xffffffffffffff9c, &(0x7f0000000140)='./file1\x00', 0x0, 0x0, 0x0) 479.753742ms ago: executing program 2 (id=1010): r0 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=@base={0x5, 0x6, 0x8, 0xc, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x50) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xd, &(0x7f0000000280)=ANY=[@ANYBLOB="18000000000000000000000000000000850000000f00000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], &(0x7f0000000040)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000180)='kfree\x00', r1}, 0x10) r2 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r2, &(0x7f0000000000)={0x0, 0x0, &(0x7f0000000200)={&(0x7f00000003c0)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a28000000000a0101000000005e1affd5020000000900010073797a300000000008000240000000032c000000030a01030000e6ff00000000020000000900010073797a3000000000090003007379"], 0x7c}}, 0x0) sendmsg$NFT_BATCH(r2, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000680)=ANY=[@ANYBLOB="14000000100001000000000000b890c1a000000a80000000160a01030000000000000000020000000900020073797a30000000000900010073797a30000000005400038008000240000000000800014000000000400003801400010076657468315f746f5f6272696467650014000100776732000000000000000000000000001400010076657468305f746f5f7465616d00000014000000110001"], 0xa8}}, 0x0) sendmsg$NFT_BATCH(r2, &(0x7f0000000500)={0x0, 0x0, &(0x7f00000004c0)={&(0x7f0000000240)={{0x14, 0x10, 0x1, 0x0, 0x0, {0x5}}, [@NFT_MSG_DELFLOWTABLE={0x2c, 0x18, 0xa, 0x5, 0x0, 0x0, {0x2, 0x0, 0x1}, [@NFTA_FLOWTABLE_HANDLE={0xc, 0x5, 0x1, 0x0, 0x2}, @NFTA_FLOWTABLE_TABLE={0x9, 0x1, 'syz0\x00'}]}, @NFT_MSG_DELTABLE={0x20, 0x2, 0xa, 0x101, 0x0, 0x0, {0x0, 0x0, 0x6}, [@NFTA_TABLE_NAME={0x9, 0x1, 'syz0\x00'}]}], {0x14, 0x11, 0x1, 0x0, 0x0, {0x3}}}, 0x74}, 0x1, 0x0, 0x0, 0x4048000}, 0x880) 449.426133ms ago: executing program 2 (id=1011): r0 = socket$inet(0x2, 0x4000000000000001, 0x0) setsockopt$inet_tcp_int(r0, 0x6, 0x80000000000002, &(0x7f00000004c0)=0x79, 0x4) syz_usbip_server_init(0x5) syz_mount_image$ext4(&(0x7f0000000040)='ext4\x00', &(0x7f0000000200)='./file1\x00', 0x3000406, &(0x7f00000006c0), 0x1, 0x512, &(0x7f0000000c40)="$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") name_to_handle_at(0xffffffffffffff9c, &(0x7f0000000080)='./file0\x00', &(0x7f00000000c0)=ANY=[@ANYBLOB="14"], &(0x7f0000000000), 0x0) mount$bind(0x0, &(0x7f0000000100)='.\x00', 0x0, 0x21, 0x0) mount(0x0, &(0x7f0000000080)='.\x00', 0x0, 0x20, 0x0) open_by_handle_at(0xffffffffffffff9c, &(0x7f00000000c0)=ANY=[], 0x0) bind$inet(r0, &(0x7f0000000080)={0x2, 0x4e23, @local}, 0x10) setsockopt$SO_ATTACH_FILTER(r0, 0x1, 0x1a, &(0x7f0000000140)={0x1, &(0x7f00000000c0)=[{0x6, 0x0, 0x0, 0xe4}]}, 0x10) sendto$inet(r0, 0x0, 0x0, 0x200007fd, &(0x7f0000e68000)={0x2, 0x4e23, @local}, 0x10) umount2(&(0x7f0000000180)='./file1/file0\x00', 0x7) setsockopt$inet_tcp_TCP_CONGESTION(r0, 0x6, 0xd, &(0x7f0000000100)='bbr\x00', 0x4) sendmmsg$inet(r0, &(0x7f0000000cc0)=[{{0x0, 0x0, &(0x7f0000000500)=[{&(0x7f00000002c0)="68377863ac6ea61666eaa696435a75f1626fe3a3acedcaf71527ff51d446daac757559d2d6fc2b90952355ec6c61d718c91784312b1b4771888a0811895b02ffb658934b0bbd6466c9cc04cc7252f1f1deea5a8b9c6797c8f1263db526cf88899f7ecab544662eb34743cefb660a78cb9468d2900b3cda4cca9d89ab6d341d145acf249276dda272407bc98d9e5431316d468b9e4750f2316589dc4de3157592d27fd723a512c85b08035842b75ec422346f9696f4bb3226b0ca75d135ebd8cae46fb83b71c103e1fdcb1934fd1d28b4916abe2c44e26ea72be426c27052e816212096000155788943b846746ccb492175fc9e", 0xf3}, {&(0x7f00000003c0)="5453b4b759f9d4f4f33bda880b70e0dadde06223919f4585429ef69078a4956f646ea03bfd4c090a003c01f32b1a175baf38c1eb4572c8b372a4cf9128062e58ff575546876a2804144c3aea98c4a3533396f87e860de8c66bceb0e6b387ec853b7e91c57587d38436637e702ae18eeccefdcd7a3cdd7bfc327b5d619b57d56afe1628b65e2948af5ee0e3f52746a5aff58bb7c6d253a58bf745584d1bc19fe5e42b5534eab9e9d2587b413e81f68b60f56130f82b327f5fe900e3e107bc6b783d1d23a056426d6502133386b51e657046c1c43a2a2c4a7611ee6592a5ee08700d24d832163b3def1f", 0xe9}, {&(0x7f0000000640)="d48c8225ddfdf2c06c27763617468581389d34126760ba3dd0fe077a7c2ce378dd62cafeeb4ba1493766d09fd561d69a5bf8109ffcd3e43d8c16b9c3fa92d4439c5af1fa4775d01dcf0748a24ab51b52fbe75287a4b9aaa18fd479bdd154b4efe531a242d90a1ca2799c242bfd4ddd8271448d3415bd3a907ad340dc2fa2471393212d02eb25242808cffdc4e7a646211c18ac8602f5fc1e4f82b72871a8d42f37988365ff226c1523bf01617976641421438e16378094c94f2e55a44150d9a358d92606afb12f21a63daadbb143d6ccdae88d53521b9fe51ffabb08ff67cb98266eeb1fbf81ec1e06", 0xe9}, {&(0x7f0000000040)="f96be6c391f1f8b23ae44a70a75f4a5ed0e013f80882907ab0", 0x19}, {&(0x7f0000000740)="f52ec22aafecc37a6d9995f1afb5c1727f223f9b84451a110b1dfbf19cc7ed183ba93f6d55645001887fc999262b9c938e22ef5ec46b4b1b535060dcca5cff1f0e5a1d9b32cef2b6e0a61af7968dc1759c4d901867d7d6e9f2521f6a1578e1cc2fbf58", 0x63}], 0x5}}, {{0x0, 0xfffffffffffffde3, &(0x7f0000000000)=[{&(0x7f0000000840)="b1f56ee29c433328d3b2a83bd97e37007087acae7568edff43ed556d76770122635aea1dc48755381c71590cd542e796cc2669e2af442a03760c5cdfc691b3da35ad6a8d2ef9c2baa53a8dec36a2e434d46e643a1277b1dd932f3ef2cf46c257d6a1", 0x62}], 0x1}}], 0x2, 0xc0) r1 = openat$procfs(0xffffffffffffff9c, &(0x7f0000000040)='/proc/timer_list\x00', 0x0, 0x0) mmap(&(0x7f0000ffc000/0x4000)=nil, 0x4000, 0x3000003, 0x13, r1, 0xbac44000) r2 = socket(0x10, 0x3, 0x0) ioctl$sock_SIOCGIFINDEX(r2, 0x8933, &(0x7f0000000180)={'ip6tnl0\x00', 0x0}) sendmsg$nl_route_sched(r2, &(0x7f00000007c0)={0x0, 0x0, &(0x7f0000000140)={&(0x7f0000000340)=@newqdisc={0x5c, 0x24, 0xf0b, 0x0, 0x25dfdbfd, {0x0, 0x0, 0x0, r3, {0x0, 0xc}, {0xffff, 0xffff}, {0xd, 0xc}}, [@qdisc_kind_options=@q_multiq={{0xb}, {0x8, 0x2, {0x7f, 0x4}}}, @TCA_STAB={0x24, 0x8, 0x0, 0x1, [{{0x1c, 0x1, {0x5, 0x5, 0x12, 0x400, 0x1, 0x200}}, {0x4}}]}]}, 0x5c}, 0x1, 0x0, 0x0, 0x44004}, 0x0) bpf$PROG_LOAD(0x5, &(0x7f000000e000)={0x1, 0x0, 0x0, 0x0, 0x5, 0xc3, &(0x7f000000cf3d)=""/195, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x8, &(0x7f0000000000), 0x8, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$PROG_LOAD(0x5, 0x0, 0x0) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000080)={0xffffffffffffffff, 0x18000000000002a0, 0x0, 0x0, &(0x7f0000000100), 0x0, 0x0, 0x60000000, 0x0, 0x0, 0x0, 0x0}, 0x50) perf_event_open(&(0x7f00000001c0)={0x0, 0x80, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @perf_bp={0x0}, 0x0, 0x0, 0x0, 0x0, 0x1008, 0xfffffffc, 0x0, 0x0, 0x0, 0x0, 0x1}, 0x0, 0x0, 0xffffffffffffffff, 0x0) r4 = bpf$MAP_CREATE(0x0, &(0x7f00000000c0)=ANY=[@ANYBLOB="1b00000000000000000000000080", @ANYBLOB], 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0x7, &(0x7f0000000400)=ANY=[@ANYBLOB="180000000000000000000000fcffffff18110000", @ANYRES32=r4, @ANYBLOB="0000000000000000b702000000"], &(0x7f00000003c0)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) ioctl$TUNSETIFF(0xffffffffffffffff, 0x400454ca, &(0x7f0000000080)={'ip6tnl0\x00', 0x210}) socketpair(0x1, 0x1, 0x0, &(0x7f0000000000)={0xffffffffffffffff, 0xffffffffffffffff}) ioctl$PERF_EVENT_IOC_SET_FILTER(r5, 0x89f1, &(0x7f0000000080)) 400.369583ms ago: executing program 0 (id=1012): bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="19000000040000000400000005"], 0x48) socket$inet6_tcp(0xa, 0x1, 0x0) r0 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], 0x0, 0x0, 0x0, 0x0, 0x0, 0x26, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$PROG_LOAD(0x5, 0x0, 0x0) bpf$PROG_LOAD(0x5, 0x0, 0x0) bpf$PROG_LOAD(0x5, 0x0, 0x0) sendmsg$nl_route(0xffffffffffffffff, 0x0, 0x0) r1 = socket$inet_tcp(0x2, 0x1, 0x0) ioctl$sock_SIOCSIFBR(r1, 0x890c, 0x0) r2 = socket$netlink(0x10, 0x3, 0x9) syz_mount_image$ext4(&(0x7f0000000780)='ext4\x00', &(0x7f00000000c0)='./file0\x00', 0xa00008, &(0x7f0000000140)={[{@min_batch_time={'min_batch_time', 0x3d, 0xd}}, {@mb_optimize_scan={'mb_optimize_scan', 0x3d, 0x1}}, {@noblock_validity}]}, 0x1, 0x7ad, &(0x7f00000007c0)="$eJzs3c9rG1ceAPDvyD/jZNdeWNjNngwLu4YQeZ31JruwsFn2sBQaCLTnJEZWTGrZCpYcYmNIQin00kNLD4XmknPTprdc++PaXvo39FAS0tYJTemhuIw0SmRbcpzEklL8+cBY782M9N533sybZ82gCWDfGk//5CIORwykydFsfhLZjOiPOFlf7+H6WiGdktjYeOW7pLbOg/W1QjS9J3Uwy/wxIj57I+JIbnu5lZXV+ZlSqbiU5SerCxcnKyurRy8szMwV54qLx6emp4+d+MeJ43sX6w9frh66+/b///rRyZ9e/8Ottz5P4mQcypY1x7FXxmM82yYD6Sbc5H97XViPJb2uAM8kPTT76kd5HI7R6NuhJf/T1ZoBAJ1yJSI2AIB9JnH+B4B9pvE9wIP1tUJjivr1nKs9/WKiS+79NyKG6/E3rm/Wl/TXr9l9NVy7DjryIKldI2lIImJsD8ofj4jrt8/cTKfo0HVIgFauXouIc2PjW/v/tIfbes/C0/rbLtYZ35LX/0H3fJKOf/65ffwXkcuO/+Ha363jn6EWx+6zePLxn7uzKTuwB4U2Scd//266t+1hU/yZsb4s95vamG8gOX+hVEz7tt9GxEQMDKX5qR3KmLj/8/12y5rHf9+/89oHafnp6+M1cnf6hza/Z3amOvM8MTe7dy3iT/2t4k8etX/SZvx7epdlvPSvN99vtyyNP423MW2Pv7M2bkT8pWX7P74PKtnx/sTJ2u4w2dgpWvj46/dG2pXf3P7Xb6clrRUa/wt0Q9r+IzvHP5Y0369Zefoyvrgx+mm7ZZvjP3MzLX9z/K33/8Hk1Vp6MJt3eaZaXZqKGExe3j7/2OP3NvKN9dP4J/7c+vjfaf9Pu6FzWXrjCTc/9t/99sNnj7+z0vhn0/ZPsiCe2P5Pn7j1cL6vXfm7a//pWmoim7O9/+vf9rm7reBzbTwAAAAAAAAAAAAAAAAAAAAAAAAA2KVcRByKJJd/lM7l8vn6M7x/HyO5UrlSPXK+vLw4G7VnZY/FQK7xU5ejTb+HOpX9Hn4jf2xL/u8R8buIeHfoQC2fL5RLs70OHgAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAyB9s8/z/1zVCvawcAdMxwrysAAHSd8z8A7D9tzv+DrWcf6GhdAIDuqJ3/k/5eVwMA6CLf/wPA/uP8DwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAQIedPnUqnTZ+XF8rpPnZSyvL8+VLR2eLlfn8wnIhXygvXczPlctzpWK+UF5o+0FX6y+lcvnidCwuX56sFivVycrK6tmF8vJi9eyFhZm54tniQNciAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAIDdq6yszs+USsUliZ0TV16IalzLmq3XW0PihUgMRUSnimjuJQ70pnMCAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA+BX4JQAA//9qsh/Y") mmap(&(0x7f0000001000/0xc00000)=nil, 0xc00000, 0x4, 0x1010, r0, 0x66960000) r3 = creat(&(0x7f0000000100)='./file1\x00', 0xe0) write$UHID_INPUT(r3, &(0x7f0000001680)={0x8, {"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", 0x1000}}, 0x1006) r4 = openat(0xffffffffffffff9c, &(0x7f0000000080)='./file1\x00', 0x40042, 0x0) fallocate(r4, 0x0, 0x2, 0x101) setsockopt$sock_attach_bpf(r2, 0x1, 0x32, 0x0, 0x0) bpf$MAP_CREATE(0x0, 0x0, 0xfffffffffffffe5c) r5 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xb, &(0x7f0000000180)=ANY=[@ANYBLOB="18000000000000000000000000000000180100002020702500000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b70300001e880000850000007000000095"], &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000180)={&(0x7f0000000140)='kmem_cache_free\x00', r5}, 0x10) prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000180)={0x1, &(0x7f0000000040)=[{0x200000000006, 0x0, 0x0, 0x7ffc0002}]}) signalfd4(0xffffffffffffffff, &(0x7f0000000240)={[0x8]}, 0x8, 0x800) r6 = openat$ttyS3(0xffffffffffffff9c, &(0x7f0000000040), 0x0, 0x0) ioctl$TIOCSSOFTCAR(r6, 0x5453, 0x0) 400.052834ms ago: executing program 1 (id=1013): bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="02000000040000000500000002"], 0x48) r0 = bpf$PROG_LOAD(0x5, 0x0, 0x0) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000300)={&(0x7f0000000040)='kmem_cache_free\x00', r0}, 0x10) prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000000)={0x1, &(0x7f00000000c0)=[{0x200000000006, 0x0, 0x0, 0x7ffc1ffb}]}) r1 = seccomp$SECCOMP_SET_MODE_FILTER_LISTENER(0x1, 0xa, &(0x7f0000000000)={0x1, &(0x7f0000000040)=[{0x6, 0x0, 0x1, 0x7fff0000}]}) flistxattr(r1, 0x0, 0xffde) 382.294864ms ago: executing program 3 (id=1014): r0 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="19000000040000000800000008"], 0x48) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000580)={0x18, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="18000000000000000000000000000000181100", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000107b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b70400000000925e850000000100000095"], &(0x7f0000000180)='GPL\x00', 0x4, 0x0, 0x0, 0x0, 0x4f, '\x00', 0x0, @fallback=0xc, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x1, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000080)='kfree\x00', r1}, 0x10) r2 = socket$netlink(0x10, 0x3, 0x0) ioctl$sock_SIOCGIFINDEX(r2, 0x8933, &(0x7f0000000080)={'batadv_slave_0\x00', 0x0}) sendmsg$nl_route_sched(r2, &(0x7f0000000300)={0x0, 0x0, &(0x7f0000000140)={&(0x7f0000000880)=@newqdisc={0x38, 0x24, 0xd0f, 0x70bd2c, 0x25dfdbfd, {0x60, 0x0, 0x0, r3, {0x0, 0x3}, {0xffff, 0xffff}, {0xfff1, 0xfff2}}, [@qdisc_kind_options=@q_fq={{0x7}, {0xc, 0x2, [@TCA_FQ_QUANTUM={0x8, 0x3, 0x80000000}]}}]}, 0x38}, 0x1, 0x0, 0x0, 0x80d1}, 0x3000c81c) 307.249285ms ago: executing program 3 (id=1015): r0 = socket$packet(0x11, 0x3, 0x300) ioctl$ifreq_SIOCGIFINDEX_batadv_mesh(r0, 0x8933, &(0x7f00000001c0)) r1 = bpf$MAP_CREATE(0x0, &(0x7f0000000600)=ANY=[@ANYBLOB="1b00000000000000000000000080"], 0x48) r2 = syz_open_dev$usbfs(&(0x7f0000000100), 0x77, 0x101301) ioctl$USBDEVFS_CONTROL(r2, 0xc0105500, &(0x7f0000000140)={0x80, 0x6, 0x303, 0xfffd, 0x0, 0x0, 0x0}) r3 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0x8, &(0x7f0000000280)=ANY=[@ANYBLOB="18010000000000000000000000000000850000006d00000018110000", @ANYRES32=r1, @ANYBLOB="0000000000000000b702000000000000850000008600000095"], &(0x7f0000000200)='GPL\x00', 0x4, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000580)={&(0x7f00000004c0)='kfree\x00', r3}, 0x10) r4 = syz_open_procfs(0xffffffffffffffff, &(0x7f0000000200)='attr/fscreate\x00') writev(r4, &(0x7f00000000c0)=[{&(0x7f0000000040)="dc", 0x1}], 0x8) r5 = socket$packet(0x11, 0x2, 0x300) ioctl$sock_SIOCGIFINDEX(0xffffffffffffffff, 0x8933, &(0x7f0000000040)={'sit0\x00', 0x0}) sendmsg$nl_route(0xffffffffffffffff, &(0x7f0000000100)={0xffffffffffffffff, 0x0, &(0x7f00000000c0)={&(0x7f0000000000)=@ipv6_newnexthop={0x34, 0x68, 0x1, 0x0, 0x0, {0xa, 0x0, 0x2}, [@NHA_ENCAP_TYPE={0x6, 0x7, 0x8}, @NHA_ENCAP={0xc, 0x8, 0x0, 0x1, @LWT_BPF_XMIT_HEADROOM={0x8, 0xc001}}, @NHA_OIF={0x8, 0x5, r6}]}, 0x34}}, 0x0) sendto$packet(r5, 0x0, 0xffffffffffffffd6, 0x0, &(0x7f0000000200)={0x11, 0xc, r6, 0x1, 0xfe, 0x6, @link_local={0x1, 0x80, 0xc2, 0x0, 0x0, 0xe}}, 0x14) rmdir(&(0x7f0000000080)='./file0\x00') 278.820285ms ago: executing program 1 (id=1016): r0 = syz_open_dev$usbfs(&(0x7f0000000240), 0xb, 0x101301) ioctl$USBDEVFS_IOCTL(r0, 0xc0105512, &(0x7f0000000200)) ioctl$USBDEVFS_SETCONFIGURATION(r0, 0x80045505, &(0x7f00000001c0)=0x1) pidfd_getfd(0xffffffffffffffff, 0xffffffffffffffff, 0x0) r1 = bpf$MAP_CREATE(0x0, &(0x7f0000000640)=ANY=[@ANYBLOB="1b00000000000000000000000080"], 0x48) r2 = bpf$PROG_LOAD(0x5, &(0x7f0000000680)={0x11, 0x7, &(0x7f0000000540)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r1, @ANYBLOB="0000000000000000b702000002000000850000008600000095"], &(0x7f0000000200)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0xf, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000bc0)={&(0x7f0000000a80)='kfree\x00', r2}, 0x10) r3 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r4 = syz_genetlink_get_family_id$nfc(&(0x7f0000000000), r3) sendmsg$NFC_CMD_DEP_LINK_UP(r3, &(0x7f0000000600)={0x0, 0xffffffffffffff24, &(0x7f00000005c0)={&(0x7f0000000700)=ANY=[@ANYBLOB='<\x00\x00\x00', @ANYRES16=r4, @ANYBLOB="01002abd7000fbdbdf250400000005000a0000000000080001"], 0x3c}, 0x1, 0x0, 0x0, 0x26040041}, 0x40) r5 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f00000001c0)={0x11, 0x5, &(0x7f0000000100)=ANY=[@ANYBLOB="18000000000000000000000000000000850000000f000000850000082300000095"], &(0x7f0000000140)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x44, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x800, @void, @value}, 0x94) r6 = socket$inet_udplite(0x2, 0x2, 0x88) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000180)={&(0x7f0000000080)='kfree\x00', r5}, 0x18) r7 = syz_open_procfs(0x0, &(0x7f00000001c0)='fd/3\x00') r8 = epoll_create1(0x0) epoll_ctl$EPOLL_CTL_ADD(r8, 0x1, r7, &(0x7f0000000040)) epoll_ctl$EPOLL_CTL_MOD(r8, 0x3, r7, &(0x7f0000000c40)={0x2000000b}) r9 = syz_clone(0x0, 0x0, 0x0, 0x0, 0x0, 0x0) r10 = open(&(0x7f0000000080)='./bus\x00', 0x400169042, 0x0) mmap(&(0x7f0000001000/0xa000)=nil, 0xa000, 0x7800007, 0x12, r10, 0x0) r11 = creat(&(0x7f0000000000)='./bus\x00', 0x0) ftruncate(r11, 0x81fd) mount$9p_fd(0x0, 0x0, 0x0, 0x0, &(0x7f0000000440)=ANY=[]) write$binfmt_elf32(r10, &(0x7f0000002680)=ANY=[], 0x38) madvise(&(0x7f0000000000/0x600000)=nil, 0x600003, 0x15) write$binfmt_script(r10, &(0x7f0000000180)={'#! ', './bus'}, 0x9) ptrace(0x10, r9) getsockopt$sock_cred(r7, 0x1, 0x11, &(0x7f0000000280)={0x0}, &(0x7f00000002c0)=0xc) ptrace$getregset(0x4205, r12, 0x4, &(0x7f0000000300)={0x0}) fsetxattr$security_selinux(r6, &(0x7f00000000c0), &(0x7f0000000480)='system_u:object_r:usbmon_device_t:s0\x00', 0x25, 0x0) 126.540017ms ago: executing program 3 (id=1017): r0 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000640)=ANY=[@ANYBLOB="1800000000000000000000000000000018010000", @ANYRES32, @ANYBLOB="0000000000000000b70800000000396f7b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000002400000095"], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x40f00, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000440)={&(0x7f0000000040)='kmem_cache_free\x00', r0}, 0x10) r1 = socket$nl_rdma(0x10, 0x3, 0x14) sendmsg$RDMA_NLDEV_CMD_GET_CHARDEV(r1, &(0x7f0000000380)={0x0, 0x0, 0x0, 0x1, 0x0, 0x0, 0x20000000}, 0x4000) 101.708398ms ago: executing program 3 (id=1018): bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="02000000040000000500000002"], 0x48) r0 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000180)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x40f00, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000300)={&(0x7f0000000040)='kmem_cache_free\x00', r0}, 0x10) prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000000)={0x1, &(0x7f00000000c0)=[{0x200000000006, 0x0, 0x0, 0x7ffc1ffb}]}) statx(0xffffffffffffff9c, &(0x7f0000000080)='./file1\x00', 0x0, 0x7ff, &(0x7f00000000c0)) 74.437649ms ago: executing program 0 (id=1019): perf_event_open(&(0x7f0000000140)={0x2, 0x80, 0x40, 0x1, 0x0, 0x0, 0x0, 0x5, 0x0, 0x3, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x400000, 0x0, @perf_bp={0x0}, 0x1500, 0x5dd8, 0x7fffffff, 0x5, 0x0, 0x8, 0xfffb, 0x0, 0x0, 0x0, 0x5}, 0x0, 0xffffffffffffffff, 0xffffffffffffffff, 0x8) r0 = socket(0x10, 0x3, 0x0) sendmsg$nl_route(r0, &(0x7f00000002c0)={0xffffffffffffffff, 0x0, &(0x7f0000000f40)={&(0x7f0000000000)=@ipv6_newnexthop={0x18, 0x68, 0x1, 0x2, 0x25dfdbfe, {0x2, 0x0, 0x0, 0x0, 0x7}}, 0x18}}, 0x0) socketpair$unix(0x1, 0x5, 0x0, &(0x7f0000000680)) r1 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f00000000c0)={0x11, 0x5, &(0x7f00000027c0)=ANY=[@ANYBLOB="180000000000000000000000ff000000850000000f000000970000005000000095"], &(0x7f0000000280)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x80) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000400)='sys_enter\x00', r1}, 0x10) getxattr(&(0x7f00000004c0)='./file0\x00', &(0x7f0000000500)=@known='trusted.overlay.redirect\x00', &(0x7f0000000e00)=""/141, 0x8d) 61.673839ms ago: executing program 3 (id=1020): r0 = bpf$MAP_CREATE_RINGBUF(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="1b0000000000000000000000000004"], 0x48) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000b00)={0x11, 0xf, &(0x7f0000000280)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b70200001400000bb7030000000000008500000083000000bf0900000000000055090100000000009500000000000000bf91000000000000b70200"], &(0x7f00000005c0)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000200)={&(0x7f0000000700)='kfree\x00', r1}, 0x18) modify_ldt$write(0x1, &(0x7f0000000300)={0x9, 0x20000000, 0xffffffffffffffff, 0x0, 0x2, 0x0, 0x1}, 0x10) syz_clone(0x2c9a4080, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff) 500.11µs ago: executing program 1 (id=1021): r0 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=@base={0x5, 0x6, 0x8, 0xc, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x50) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xd, &(0x7f0000000280)=ANY=[@ANYBLOB="18000000000000000000000000000000850000000f00000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], &(0x7f0000000040)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000180)='kfree\x00', r1}, 0x10) r2 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r2, &(0x7f0000000000)={0x0, 0x0, &(0x7f0000000200)={&(0x7f00000003c0)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a28000000000a0101000000005e1affd5020000000900010073797a300000000008000240000000032c000000030a01030000e6ff00000000020000000900010073797a3000000000090003007379"], 0x7c}}, 0x0) sendmsg$NFT_BATCH(r2, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000680)=ANY=[@ANYBLOB="14000000100001000000000000b890c1a000000a80000000160a01030000000000000000020000000900020073797a30000000000900010073797a30000000005400038008000240000000000800014000000000400003801400010076657468315f746f5f6272696467650014000100776732000000000000000000000000001400010076657468305f746f5f7465616d00000014000000110001"], 0xa8}}, 0x0) sendmsg$NFT_BATCH(r2, &(0x7f0000000500)={0x0, 0x0, &(0x7f00000004c0)={&(0x7f0000000240)={{0x14, 0x10, 0x1, 0x0, 0x0, {0x5}}, [@NFT_MSG_DELFLOWTABLE={0x2c, 0x18, 0xa, 0x5, 0x0, 0x0, {0x2, 0x0, 0x1}, [@NFTA_FLOWTABLE_HANDLE={0xc, 0x5, 0x1, 0x0, 0x2}, @NFTA_FLOWTABLE_TABLE={0x9, 0x1, 'syz0\x00'}]}, @NFT_MSG_DELTABLE={0x20, 0x2, 0xa, 0x101, 0x0, 0x0, {0x0, 0x0, 0x6}, [@NFTA_TABLE_NAME={0x9, 0x1, 'syz0\x00'}]}], {0x14, 0x11, 0x1, 0x0, 0x0, {0x3}}}, 0x74}, 0x1, 0x0, 0x0, 0x4048000}, 0x880) 0s ago: executing program 1 (id=1022): bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r0 = bpf$PROG_LOAD(0x5, &(0x7f0000000380)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x6, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x9, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000340)={&(0x7f0000000040)='kmem_cache_free\x00', r0}, 0x10) prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000000)={0x1, &(0x7f0000000180)=[{0x200000000006, 0x0, 0x0, 0x7ffc0001}]}) execveat(0xffffffffffffff9c, &(0x7f0000000140)='./file1\x00', 0x0, 0x0, 0x0) kernel console output (not intermixed with test programs): 5150] program syz.4.387 not setting count and/or reply_len properly [ 78.077046][ T5153] loop4: detected capacity change from 0 to 512 [ 78.091872][ T5153] EXT4-fs: Ignoring removed mblk_io_submit option [ 78.098404][ T5153] EXT4-fs: Ignoring removed bh option [ 78.103964][ T3392] usb 2-1: device descriptor read/8, error -110 [ 78.138131][ T5153] EXT4-fs (loop4): encrypted files will use data=ordered instead of data journaling mode [ 78.154038][ T5161] FAULT_INJECTION: forcing a failure. [ 78.154038][ T5161] name fail_usercopy, interval 1, probability 0, space 0, times 0 [ 78.167337][ T5161] CPU: 1 UID: 0 PID: 5161 Comm: syz.2.392 Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) [ 78.167371][ T5161] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 78.167386][ T5161] Call Trace: [ 78.167393][ T5161] [ 78.167441][ T5161] __dump_stack+0x1d/0x30 [ 78.167466][ T5161] dump_stack_lvl+0xe8/0x140 [ 78.167491][ T5161] dump_stack+0x15/0x1b [ 78.167576][ T5161] should_fail_ex+0x265/0x280 [ 78.167598][ T5161] should_fail+0xb/0x20 [ 78.167615][ T5161] should_fail_usercopy+0x1a/0x20 [ 78.167638][ T5161] _copy_from_iter+0xcf/0xe40 [ 78.167673][ T5161] ? __build_skb_around+0x1a0/0x200 [ 78.167709][ T5161] ? __alloc_skb+0x223/0x320 [ 78.167743][ T5161] netlink_sendmsg+0x471/0x6b0 [ 78.167778][ T5161] ? __pfx_netlink_sendmsg+0x10/0x10 [ 78.167830][ T5161] __sock_sendmsg+0x145/0x180 [ 78.167858][ T5161] ____sys_sendmsg+0x31e/0x4e0 [ 78.167900][ T5161] ___sys_sendmsg+0x17b/0x1d0 [ 78.167948][ T5161] __x64_sys_sendmsg+0xd4/0x160 [ 78.167985][ T5161] x64_sys_call+0x2999/0x2fb0 [ 78.168013][ T5161] do_syscall_64+0xd2/0x200 [ 78.168063][ T5161] ? arch_exit_to_user_mode_prepare+0x27/0x60 [ 78.168098][ T5161] ? clear_bhb_loop+0x40/0x90 [ 78.168121][ T5161] ? clear_bhb_loop+0x40/0x90 [ 78.168145][ T5161] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 78.168234][ T5161] RIP: 0033:0x7fa82999e969 [ 78.168250][ T5161] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 78.168273][ T5161] RSP: 002b:00007fa828007038 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 78.168293][ T5161] RAX: ffffffffffffffda RBX: 00007fa829bc5fa0 RCX: 00007fa82999e969 [ 78.168307][ T5161] RDX: 0000000000000000 RSI: 0000200000000140 RDI: 0000000000000003 [ 78.168319][ T5161] RBP: 00007fa828007090 R08: 0000000000000000 R09: 0000000000000000 [ 78.168389][ T5161] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 78.168404][ T5161] R13: 0000000000000000 R14: 00007fa829bc5fa0 R15: 00007ffe71337638 [ 78.168457][ T5161] [ 78.181531][ T5153] EXT4-fs (loop4): 1 truncate cleaned up [ 78.222307][ T4005] usb usb10-port1: attempt power cycle [ 78.223510][ T5153] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 78.242000][ T3392] usb 2-1: new SuperSpeed USB device number 7 using vhci_hcd [ 78.363292][ T5166] loop3: detected capacity change from 0 to 512 [ 78.392192][ T3392] usb 2-1: enqueue for inactive port 0 [ 78.440439][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 78.557665][ T3392] usb 2-1: enqueue for inactive port 0 [ 78.563662][ T3392] usb 2-1: enqueue for inactive port 0 [ 78.640869][ T5189] can0: slcan on ttyS3. [ 78.666638][ T5185] SELinux: failed to load policy [ 78.798489][ T5189] can0 (unregistered): slcan off ttyS3. [ 78.805437][ T5189] Falling back ldisc for ttyS3. [ 78.938882][ T5218] can0: slcan on ttyS3. [ 78.969954][ T5222] FAULT_INJECTION: forcing a failure. [ 78.969954][ T5222] name failslab, interval 1, probability 0, space 0, times 0 [ 78.982695][ T5222] CPU: 1 UID: 0 PID: 5222 Comm: syz.4.409 Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) [ 78.982726][ T5222] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 78.982774][ T5222] Call Trace: [ 78.982782][ T5222] [ 78.982792][ T5222] __dump_stack+0x1d/0x30 [ 78.982815][ T5222] dump_stack_lvl+0xe8/0x140 [ 78.982839][ T5222] dump_stack+0x15/0x1b [ 78.982914][ T5222] should_fail_ex+0x265/0x280 [ 78.982939][ T5222] should_failslab+0x8c/0xb0 [ 78.982970][ T5222] __kvmalloc_node_noprof+0x126/0x4f0 [ 78.983008][ T5222] ? vmemdup_user+0x26/0xd0 [ 78.983097][ T5222] ? should_fail_usercopy+0x1a/0x20 [ 78.983130][ T5222] vmemdup_user+0x26/0xd0 [ 78.983231][ T5222] path_setxattrat+0x1b6/0x310 [ 78.983312][ T5222] __x64_sys_lsetxattr+0x71/0x90 [ 78.983345][ T5222] x64_sys_call+0x1e36/0x2fb0 [ 78.983373][ T5222] do_syscall_64+0xd2/0x200 [ 78.983467][ T5222] ? arch_exit_to_user_mode_prepare+0x27/0x60 [ 78.983505][ T5222] ? clear_bhb_loop+0x40/0x90 [ 78.983530][ T5222] ? clear_bhb_loop+0x40/0x90 [ 78.983610][ T5222] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 78.983693][ T5222] RIP: 0033:0x7f87c4d3e969 [ 78.983711][ T5222] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 78.983732][ T5222] RSP: 002b:00007f87c33a7038 EFLAGS: 00000246 ORIG_RAX: 00000000000000bd [ 78.983754][ T5222] RAX: ffffffffffffffda RBX: 00007f87c4f65fa0 RCX: 00007f87c4d3e969 [ 78.983820][ T5222] RDX: 00002000000002c0 RSI: 0000200000000240 RDI: 00002000000001c0 [ 78.983845][ T5222] RBP: 00007f87c33a7090 R08: 0000000000000000 R09: 0000000000000000 [ 78.983860][ T5222] R10: 0000000000000025 R11: 0000000000000246 R12: 0000000000000001 [ 78.983874][ T5222] R13: 0000000000000000 R14: 00007f87c4f65fa0 R15: 00007ffc671978e8 [ 78.983896][ T5222] [ 79.230079][ T5223] loop0: detected capacity change from 0 to 512 [ 79.241781][ T5230] UDPLite6: UDP-Lite is deprecated and scheduled to be removed in 2025, please contact the netdev mailing list [ 79.254008][ T5223] EXT4-fs: Ignoring removed mblk_io_submit option [ 79.260490][ T5223] EXT4-fs: Ignoring removed bh option [ 79.278300][ T5223] EXT4-fs (loop0): encrypted files will use data=ordered instead of data journaling mode [ 79.288379][ T5218] can0 (unregistered): slcan off ttyS3. [ 79.299605][ T5230] loop4: detected capacity change from 0 to 1764 [ 79.308067][ T5218] Falling back ldisc for ttyS3. [ 79.337684][ T5240] loop3: detected capacity change from 0 to 512 [ 79.346059][ T5223] EXT4-fs (loop0): 1 truncate cleaned up [ 79.352871][ T5223] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 79.408650][ T29] kauditd_printk_skb: 453 callbacks suppressed [ 79.408670][ T29] audit: type=1400 audit(1748852040.928:1882): avc: denied { mount } for pid=5228 comm="syz.4.410" name="/" dev="loop4" ino=1920 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:iso9660_t tclass=filesystem permissive=1 [ 79.500710][ T29] audit: type=1326 audit(1748852040.998:1883): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5228 comm="syz.4.410" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 79.524236][ T29] audit: type=1326 audit(1748852040.998:1884): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5228 comm="syz.4.410" exe="/root/syz-executor" sig=0 arch=c000003e syscall=321 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 79.585629][ T5249] x_tables: ip6_tables: tcpmss match: only valid for protocol 6 [ 79.819230][ T5258] loop1: detected capacity change from 0 to 512 [ 79.851675][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 79.886642][ T3392] usb usb2-port1: attempt power cycle [ 79.892258][ T29] audit: type=1326 audit(1748852041.018:1885): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5228 comm="syz.4.410" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 79.915753][ T29] audit: type=1326 audit(1748852041.018:1886): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5228 comm="syz.4.410" exe="/root/syz-executor" sig=0 arch=c000003e syscall=257 compat=0 ip=0x7f87c4d3d2d0 code=0x7ffc0000 [ 79.939099][ T29] audit: type=1326 audit(1748852041.018:1887): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5228 comm="syz.4.410" exe="/root/syz-executor" sig=0 arch=c000003e syscall=257 compat=0 ip=0x7f87c4d3d2d0 code=0x7ffc0000 [ 79.953995][ T5258] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 79.962469][ T29] audit: type=1326 audit(1748852041.018:1888): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5228 comm="syz.4.410" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 79.976147][ T5258] ext4 filesystem being mounted at /90/file0 supports timestamps until 2038-01-19 (0x7fffffff) [ 79.998267][ T29] audit: type=1326 audit(1748852041.028:1889): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5228 comm="syz.4.410" exe="/root/syz-executor" sig=0 arch=c000003e syscall=46 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 80.032049][ T29] audit: type=1326 audit(1748852041.028:1890): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5228 comm="syz.4.410" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 80.055545][ T29] audit: type=1326 audit(1748852041.048:1891): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5228 comm="syz.4.410" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 80.088308][ T2971] usb 8-1: device descriptor read/8, error -110 [ 80.188988][ T5269] loop4: detected capacity change from 0 to 512 [ 80.197542][ T5249] +}[@ (5249) used greatest stack depth: 10560 bytes left [ 80.204895][ T2971] usb 8-1: new SuperSpeed USB device number 11 using vhci_hcd [ 80.232038][ T2971] usb 8-1: enqueue for inactive port 0 [ 80.232705][ T5269] EXT4-fs (loop4): 1 orphan inode deleted [ 80.247748][ T2971] usb 8-1: enqueue for inactive port 0 [ 80.267878][ T2971] usb 8-1: enqueue for inactive port 0 [ 80.302412][ T1798] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:7: Failed to release dquot type 1 [ 80.325795][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 80.360925][ T5269] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 80.409792][ T5280] loop3: detected capacity change from 0 to 512 [ 80.419103][ T5269] ext4 filesystem being mounted at /79/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 80.435495][ T5280] EXT4-fs (loop3): 1 orphan inode deleted [ 80.452388][ T5280] EXT4-fs (loop3): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 80.454072][ T173] EXT4-fs error (device loop3): ext4_release_dquot:6969: comm kworker/u8:5: Failed to release dquot type 1 [ 80.501200][ T5280] ext4 filesystem being mounted at /78/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 80.589359][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 80.633715][ T3318] EXT4-fs (loop3): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 80.715479][ T5294] loop3: detected capacity change from 0 to 512 [ 80.722289][ T4005] usb usb10-port1: unable to enumerate USB device [ 80.839695][ T5300] loop0: detected capacity change from 0 to 512 [ 80.860791][ T5298] loop1: detected capacity change from 0 to 1024 [ 80.893281][ T5303] loop4: detected capacity change from 0 to 512 [ 81.778318][ T2971] usb usb8-port1: attempt power cycle [ 82.075572][ T5328] loop4: detected capacity change from 0 to 256 [ 82.085648][ T5323] syz.3.433: vmalloc error: size 8589938688, exceeds total pages, mode:0xdc0(GFP_KERNEL|__GFP_ZERO), nodemask=(null),cpuset=/,mems_allowed=0 [ 82.100286][ T5323] CPU: 0 UID: 0 PID: 5323 Comm: syz.3.433 Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) [ 82.100320][ T5323] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 82.100335][ T5323] Call Trace: [ 82.100342][ T5323] [ 82.100351][ T5323] __dump_stack+0x1d/0x30 [ 82.100377][ T5323] dump_stack_lvl+0xe8/0x140 [ 82.100427][ T5323] dump_stack+0x15/0x1b [ 82.100446][ T5323] warn_alloc+0x12b/0x1a0 [ 82.100558][ T5323] ? audit_log_end+0x1d7/0x1f0 [ 82.100582][ T5323] ? audit_log_end+0x1d7/0x1f0 [ 82.100606][ T5323] __vmalloc_node_range_noprof+0x9c/0xe00 [ 82.100645][ T5323] ? __pfx_avc_audit_post_callback+0x10/0x10 [ 82.100734][ T5323] ? slow_avc_audit+0x104/0x140 [ 82.100766][ T5323] ? should_fail_ex+0x30/0x280 [ 82.100787][ T5323] ? xskq_create+0x36/0xe0 [ 82.100812][ T5323] vmalloc_user_noprof+0x7d/0xb0 [ 82.100867][ T5323] ? xskq_create+0x80/0xe0 [ 82.100890][ T5323] xskq_create+0x80/0xe0 [ 82.100914][ T5323] xsk_init_queue+0x95/0xf0 [ 82.100957][ T5323] xsk_setsockopt+0x3de/0x510 [ 82.101054][ T5323] ? __pfx_xsk_setsockopt+0x10/0x10 [ 82.101128][ T5323] __sys_setsockopt+0x181/0x200 [ 82.101163][ T5323] __x64_sys_setsockopt+0x64/0x80 [ 82.101263][ T5323] x64_sys_call+0x2bd5/0x2fb0 [ 82.101290][ T5323] do_syscall_64+0xd2/0x200 [ 82.101383][ T5323] ? arch_exit_to_user_mode_prepare+0x27/0x60 [ 82.101414][ T5323] ? clear_bhb_loop+0x40/0x90 [ 82.101442][ T5323] ? clear_bhb_loop+0x40/0x90 [ 82.101501][ T5323] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 82.101522][ T5323] RIP: 0033:0x7f6e0c5be969 [ 82.101587][ T5323] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 82.101611][ T5323] RSP: 002b:00007f6e0ac27038 EFLAGS: 00000246 ORIG_RAX: 0000000000000036 [ 82.101667][ T5323] RAX: ffffffffffffffda RBX: 00007f6e0c7e5fa0 RCX: 00007f6e0c5be969 [ 82.101682][ T5323] RDX: 0000000000000002 RSI: 000000000000011b RDI: 0000000000000007 [ 82.101693][ T5323] RBP: 00007f6e0c640ab1 R08: 0000000000000004 R09: 0000000000000000 [ 82.101714][ T5323] R10: 0000200000000900 R11: 0000000000000246 R12: 0000000000000000 [ 82.101729][ T5323] R13: 0000000000000000 R14: 00007f6e0c7e5fa0 R15: 00007ffe0fd8c608 [ 82.101766][ T5323] [ 82.101788][ T5323] Mem-Info: [ 82.333642][ T5323] active_anon:9644 inactive_anon:0 isolated_anon:0 [ 82.333642][ T5323] active_file:6248 inactive_file:2224 isolated_file:0 [ 82.333642][ T5323] unevictable:0 dirty:306 writeback:58 [ 82.333642][ T5323] slab_reclaimable:2952 slab_unreclaimable:30659 [ 82.333642][ T5323] mapped:35285 shmem:3162 pagetables:1171 [ 82.333642][ T5323] sec_pagetables:0 bounce:0 [ 82.333642][ T5323] kernel_misc_reclaimable:0 [ 82.333642][ T5323] free:1861503 free_pcp:13583 free_cma:0 [ 82.379130][ T5323] Node 0 active_anon:38576kB inactive_anon:0kB active_file:24992kB inactive_file:8896kB unevictable:0kB isolated(anon):0kB isolated(file):0kB mapped:141140kB dirty:64kB writeback:928kB shmem:12648kB writeback_tmp:0kB kernel_stack:2960kB pagetables:4684kB sec_pagetables:0kB all_unreclaimable? no Balloon:0kB [ 82.379883][ T5337] netlink: 4 bytes leftover after parsing attributes in process `syz.4.435'. [ 82.408150][ T5323] Node 0 DMA free:15360kB boost:0kB min:20kB low:32kB high:44kB reserved_highatomic:0KB free_highatomic:0KB active_anon:0kB inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB writepending:0kB present:15992kB managed:15360kB mlocked:0kB bounce:0kB free_pcp:0kB local_pcp:0kB free_cma:0kB [ 82.417300][ T5337] netlink: 4 bytes leftover after parsing attributes in process `syz.4.435'. [ 82.445559][ T5323] lowmem_reserve[]: 0 2882 7861 7861 [ 82.445602][ T5323] Node 0 DMA32 free:2947808kB boost:0kB min:4132kB low:7060kB high:9988kB reserved_highatomic:0KB free_highatomic:0KB active_anon:0kB inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB writepending:0kB present:3129332kB managed:2951436kB mlocked:0kB bounce:0kB free_pcp:3628kB local_pcp:100kB free_cma:0kB [ 82.490470][ T5323] lowmem_reserve[]: 0 0 4978 4978 [ 82.491582][ T5337] netlink: 4 bytes leftover after parsing attributes in process `syz.4.435'. [ 82.495582][ T5323] Node 0 Normal free:4482612kB boost:0kB min:7188kB low:12284kB high:17380kB reserved_highatomic:0KB free_highatomic:0KB active_anon:38692kB inactive_anon:0kB active_file:24992kB inactive_file:8896kB unevictable:0kB writepending:64kB present:5242880kB managed:5098232kB mlocked:0kB bounce:0kB free_pcp:50864kB local_pcp:18124kB free_cma:0kB [ 82.536154][ T5323] lowmem_reserve[]: 0 0 0 0 [ 82.540717][ T5323] Node 0 DMA: 0*4kB 0*8kB 0*16kB 0*32kB 0*64kB 0*128kB 0*256kB 0*512kB 1*1024kB (U) 1*2048kB (M) 3*4096kB (M) = 15360kB [ 82.553687][ T5323] Node 0 DMA32: 4*4kB (M) 2*8kB (M) 2*16kB (M) 1*32kB (M) 2*64kB (M) 2*128kB (M) 3*256kB (M) 3*512kB (M) 4*1024kB (M) 2*2048kB (M) 717*4096kB (M) = 2947808kB [ 82.569929][ T5323] Node 0 Normal: 425*4kB (UME) 192*8kB (ME) 215*16kB (ME) 43*32kB (M) 1*64kB (M) 3*128kB (UE) 7*256kB (M) 15*512kB (UME) 16*1024kB (ME) 4*2048kB (UME) 1084*4096kB (M) = 4482612kB [ 82.588052][ T5323] Node 0 hugepages_total=4 hugepages_free=4 hugepages_surp=0 hugepages_size=2048kB [ 82.597410][ T5323] 11609 total pagecache pages [ 82.602124][ T5323] 0 pages in swap cache [ 82.606289][ T5323] Free swap = 124996kB [ 82.610489][ T5323] Total swap = 124996kB [ 82.614788][ T5323] 2097051 pages RAM [ 82.618603][ T5323] 0 pages HighMem/MovableOnly [ 82.623436][ T5323] 80794 pages reserved [ 82.662285][ T3392] usb usb2-port1: unable to enumerate USB device [ 82.686203][ T5340] can0: slcan on ttyS3. [ 82.759268][ T5345] netlink: 'syz.1.440': attribute type 1 has an invalid length. [ 82.779174][ T5351] loop3: detected capacity change from 0 to 512 [ 82.802284][ T5340] can0 (unregistered): slcan off ttyS3. [ 82.826786][ T5340] Falling back ldisc for ttyS3. [ 82.993280][ T5367] loop0: detected capacity change from 0 to 512 [ 83.962569][ T5381] loop1: detected capacity change from 0 to 512 [ 84.152023][ T5399] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 84.158785][ T5399] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 84.166648][ T5399] vhci_hcd vhci_hcd.0: Device attached [ 84.189070][ T5403] netlink: 8 bytes leftover after parsing attributes in process `syz.2.453'. [ 84.221258][ T5409] loop4: detected capacity change from 0 to 512 [ 84.256350][ T5403] hub 4-0:1.0: USB hub found [ 84.264620][ T5403] hub 4-0:1.0: 8 ports detected [ 84.300038][ T5409] EXT4-fs (loop4): 1 orphan inode deleted [ 84.331965][ T70] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:4: Failed to release dquot type 1 [ 84.362774][ T2971] usb usb8-port1: unable to enumerate USB device [ 84.388256][ T5409] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 84.420208][ T5424] can0: slcan on ttyS3. [ 84.456380][ T5427] loop0: detected capacity change from 0 to 512 [ 84.474463][ T3394] usb 10-1: SetAddress Request (14) to port 0 [ 84.481865][ T5409] ext4 filesystem being mounted at /83/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 84.504174][ T3394] usb 10-1: new SuperSpeed USB device number 14 using vhci_hcd [ 84.574936][ T5399] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000. [ 84.627964][ T5424] can0 (unregistered): slcan off ttyS3. [ 84.639351][ T29] kauditd_printk_skb: 256 callbacks suppressed [ 84.639450][ T29] audit: type=1400 audit(1748852046.158:2145): avc: denied { read write } for pid=5434 comm="syz.3.458" name="ppp" dev="devtmpfs" ino=140 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:ppp_device_t tclass=chr_file permissive=1 [ 84.640579][ T5424] Falling back ldisc for ttyS3. [ 84.651956][ T29] audit: type=1400 audit(1748852046.158:2146): avc: denied { open } for pid=5434 comm="syz.3.458" path="/dev/ppp" dev="devtmpfs" ino=140 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:ppp_device_t tclass=chr_file permissive=1 [ 84.959772][ T5399] EXT4-fs error (device loop4): ext4_lookup:1787: inode #15: comm syz.4.452: iget: bad i_size value: 360287970189639690 [ 85.140874][ T29] audit: type=1400 audit(1748852046.188:2147): avc: denied { ioctl } for pid=5434 comm="syz.3.458" path="/dev/ppp" dev="devtmpfs" ino=140 ioctlcmd=0x743e scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:ppp_device_t tclass=chr_file permissive=1 [ 85.181278][ T5400] vhci_hcd: connection reset by peer [ 85.188414][ T31] vhci_hcd: stop threads [ 85.192755][ T31] vhci_hcd: release socket [ 85.197199][ T31] vhci_hcd: disconnect device [ 85.740315][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 85.774338][ T29] audit: type=1326 audit(1748852046.968:2148): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5434 comm="syz.3.458" exe="/root/syz-executor" sig=31 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x0 [ 85.819422][ T5463] loop0: detected capacity change from 0 to 512 [ 86.252194][ T5477] netlink: 24 bytes leftover after parsing attributes in process `syz.3.466'. [ 86.261194][ T29] audit: type=1400 audit(1748852047.768:2149): avc: denied { nlmsg_read } for pid=5474 comm="syz.3.466" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_xfrm_socket permissive=1 [ 86.470502][ T5489] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 86.477070][ T5489] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 86.484835][ T5489] vhci_hcd vhci_hcd.0: Device attached [ 86.504578][ T29] audit: type=1326 audit(1748852048.018:2150): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5492 comm="syz.3.469" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 86.505029][ T5488] sg_write: data in/out 209152/1 bytes for SCSI command 0xf2-- guessing data in; [ 86.505029][ T5488] program syz.0.467 not setting count and/or reply_len properly [ 86.528021][ T29] audit: type=1326 audit(1748852048.018:2151): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5492 comm="syz.3.469" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 86.528056][ T29] audit: type=1326 audit(1748852048.018:2152): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5492 comm="syz.3.469" exe="/root/syz-executor" sig=0 arch=c000003e syscall=294 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 86.528138][ T29] audit: type=1326 audit(1748852048.018:2153): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5492 comm="syz.3.469" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 86.615126][ T29] audit: type=1326 audit(1748852048.018:2154): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5492 comm="syz.3.469" exe="/root/syz-executor" sig=0 arch=c000003e syscall=254 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 86.635289][ T5493] loop3: detected capacity change from 0 to 512 [ 86.655211][ T5489] loop4: detected capacity change from 0 to 512 [ 86.695658][ T5489] EXT4-fs (loop4): 1 orphan inode deleted [ 86.710269][ T5489] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 86.712153][ T1798] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:7: Failed to release dquot type 1 [ 86.744177][ T5498] program syz.0.471 is using a deprecated SCSI ioctl, please convert it to SG_IO [ 86.755347][ T5489] ext4 filesystem being mounted at /85/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 86.836768][ T5489] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000. [ 86.852592][ T5504] loop3: detected capacity change from 0 to 1024 [ 86.869167][ T5504] EXT4-fs (loop3): ext4_check_descriptors: Inode bitmap for group 0 overlaps block group descriptors [ 86.879611][ T5489] EXT4-fs error (device loop4): ext4_lookup:1787: inode #15: comm syz.4.468: iget: bad i_size value: 360287970189639690 [ 86.880126][ T5504] EXT4-fs (loop3): ext4_check_descriptors: Checksum for group 0 failed (51554!=20869) [ 86.912226][ T5509] vhci_hcd vhci_hcd.0: pdev(0) rhport(0) sockfd(4) [ 86.913593][ T5504] JBD2: no valid journal superblock found [ 86.918768][ T5509] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 86.924561][ T5504] EXT4-fs (loop3): Could not load journal inode [ 86.932189][ T5509] vhci_hcd vhci_hcd.0: Device attached [ 86.951596][ T5490] vhci_hcd: connection closed [ 86.951845][ T1798] vhci_hcd: stop threads [ 86.961159][ T1798] vhci_hcd: release socket [ 86.965654][ T1798] vhci_hcd: disconnect device [ 86.975002][ T5512] loop0: detected capacity change from 0 to 512 [ 87.005883][ T5512] EXT4-fs (loop0): 1 orphan inode deleted [ 87.016326][ T5512] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 87.037709][ T1798] EXT4-fs error (device loop0): ext4_release_dquot:6969: comm kworker/u8:7: Failed to release dquot type 1 [ 87.052363][ T5504] netlink: 48 bytes leftover after parsing attributes in process `syz.3.473'. [ 87.067743][ T5512] ext4 filesystem being mounted at /80/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 87.104357][ T5520] ip6_tunnel: non-ECT from fc02:0000:0000:0000:0000:0000:0000:0000 with DS=0x2 [ 87.113817][ T5509] EXT4-fs (loop0): re-mounted 00000000-0000-0000-0000-000000000000. [ 87.153942][ T5509] EXT4-fs error (device loop0): ext4_lookup:1787: inode #15: comm syz.0.475: iget: bad i_size value: 360287970189639690 [ 87.170325][ T5510] vhci_hcd: connection closed [ 87.170530][ T12] vhci_hcd: stop threads [ 87.179535][ T12] vhci_hcd: release socket [ 87.184189][ T12] vhci_hcd: disconnect device [ 87.695951][ T2971] usb 2-1: enqueue for inactive port 0 [ 87.753464][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 87.961974][ T2971] usb 2-1: enqueue for inactive port 0 [ 88.067838][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 88.526830][ T5556] loop4: detected capacity change from 0 to 512 [ 88.630210][ T5559] loop1: detected capacity change from 0 to 512 [ 89.238657][ T5562] loop0: detected capacity change from 0 to 512 [ 89.401333][ T5570] tipc: Started in network mode [ 89.406323][ T5570] tipc: Node identity 9a53486ca3a7, cluster identity 4711 [ 89.413771][ T5570] tipc: Enabled bearer , priority 0 [ 89.424548][ T37] tipc: Resetting bearer [ 89.433008][ T5562] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 89.448070][ T5562] ext4 filesystem being mounted at /83/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 89.459721][ T5567] FAULT_INJECTION: forcing a failure. [ 89.459721][ T5567] name fail_usercopy, interval 1, probability 0, space 0, times 0 [ 89.472945][ T5567] CPU: 0 UID: 0 PID: 5567 Comm: syz.2.492 Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) [ 89.472981][ T5567] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 89.472994][ T5567] Call Trace: [ 89.473001][ T5567] [ 89.473011][ T5567] __dump_stack+0x1d/0x30 [ 89.473114][ T5567] dump_stack_lvl+0xe8/0x140 [ 89.473136][ T5567] dump_stack+0x15/0x1b [ 89.473153][ T5567] should_fail_ex+0x265/0x280 [ 89.473190][ T5567] should_fail+0xb/0x20 [ 89.473213][ T5567] should_fail_usercopy+0x1a/0x20 [ 89.473241][ T5567] _copy_from_iter+0x24e/0xe40 [ 89.473266][ T5567] ? __build_skb_around+0x1a0/0x200 [ 89.473302][ T5567] skb_copy_datagram_from_iter+0xb1/0x490 [ 89.473396][ T5567] ? __netdev_alloc_frag_align+0xd8/0x130 [ 89.473427][ T5567] tun_get_user+0xa0e/0x2500 [ 89.473491][ T5567] ? ref_tracker_alloc+0x1f2/0x2f0 [ 89.473524][ T5567] tun_chr_write_iter+0x15e/0x210 [ 89.473566][ T5567] do_iter_readv_writev+0x3ee/0x4b0 [ 89.473595][ T5567] vfs_writev+0x2df/0x8b0 [ 89.473664][ T5567] do_writev+0xe7/0x210 [ 89.473734][ T5567] __x64_sys_writev+0x45/0x50 [ 89.473761][ T5567] x64_sys_call+0x2006/0x2fb0 [ 89.473784][ T5567] do_syscall_64+0xd2/0x200 [ 89.473819][ T5567] ? arch_exit_to_user_mode_prepare+0x27/0x60 [ 89.473896][ T5567] ? clear_bhb_loop+0x40/0x90 [ 89.473968][ T5567] ? clear_bhb_loop+0x40/0x90 [ 89.473996][ T5567] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 89.474024][ T5567] RIP: 0033:0x7fa82999e969 [ 89.474043][ T5567] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 89.474061][ T5567] RSP: 002b:00007fa828007038 EFLAGS: 00000246 ORIG_RAX: 0000000000000014 [ 89.474093][ T5567] RAX: ffffffffffffffda RBX: 00007fa829bc5fa0 RCX: 00007fa82999e969 [ 89.474109][ T5567] RDX: 0000000000000002 RSI: 0000200000000000 RDI: 0000000000000004 [ 89.474124][ T5567] RBP: 00007fa828007090 R08: 0000000000000000 R09: 0000000000000000 [ 89.474140][ T5567] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 89.474227][ T5567] R13: 0000000000000000 R14: 00007fa829bc5fa0 R15: 00007ffe71337638 [ 89.474286][ T5567] [ 89.507573][ T2971] usb usb2-port1: attempt power cycle [ 89.625565][ T5576] netlink: 24 bytes leftover after parsing attributes in process `syz.3.494'. [ 89.629476][ T3394] usb 10-1: device descriptor read/8, error -110 [ 89.696781][ T29] kauditd_printk_skb: 129 callbacks suppressed [ 89.696799][ T29] audit: type=1400 audit(1748852051.218:2282): avc: denied { setattr } for pid=5553 comm="+}[@" name="file0" dev="loop0" ino=12 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:unlabeled_t tclass=chr_file permissive=1 [ 89.789284][ T29] audit: type=1400 audit(1748852051.268:2283): avc: denied { create } for pid=5582 comm="syz.4.497" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_netfilter_socket permissive=1 [ 89.810036][ T29] audit: type=1400 audit(1748852051.278:2284): avc: denied { write } for pid=5582 comm="syz.4.497" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_netfilter_socket permissive=1 [ 89.811333][ T5566] tipc: Resetting bearer [ 89.830612][ T29] audit: type=1400 audit(1748852051.308:2285): avc: denied { unmount } for pid=3325 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:fs_t tclass=filesystem permissive=1 [ 89.858787][ T3394] usb 10-1: new SuperSpeed USB device number 14 using vhci_hcd [ 89.882045][ T3394] usb 10-1: enqueue for inactive port 0 [ 89.884744][ T5566] tipc: Disabling bearer [ 89.893833][ T3394] usb 10-1: enqueue for inactive port 0 [ 89.899490][ T29] audit: type=1326 audit(1748852051.418:2286): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5586 comm="syz.4.500" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 89.923257][ T29] audit: type=1326 audit(1748852051.418:2287): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5586 comm="syz.4.500" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 89.946851][ T29] audit: type=1326 audit(1748852051.418:2288): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5586 comm="syz.4.500" exe="/root/syz-executor" sig=0 arch=c000003e syscall=321 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 89.970188][ T29] audit: type=1326 audit(1748852051.418:2289): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5586 comm="syz.4.500" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 89.983653][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 89.993732][ T29] audit: type=1326 audit(1748852051.418:2290): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5586 comm="syz.4.500" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 90.026034][ T29] audit: type=1326 audit(1748852051.418:2291): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5586 comm="syz.4.500" exe="/root/syz-executor" sig=0 arch=c000003e syscall=41 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 90.049423][ T3394] usb 10-1: enqueue for inactive port 0 [ 90.074088][ T5580] 8021q: adding VLAN 0 to HW filter on device bond1 [ 90.209374][ T5600] loop4: detected capacity change from 0 to 8192 [ 90.320287][ T5613] SELinux: failed to load policy [ 90.536368][ T5611] loop0: detected capacity change from 0 to 512 [ 90.577711][ T5611] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 90.591323][ T5611] ext4 filesystem being mounted at /88/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 90.634940][ T5642] netlink: 24 bytes leftover after parsing attributes in process `syz.1.521'. [ 90.659966][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 90.936750][ T5663] SELinux: policydb version -845211227 does not match my version range 15-34 [ 90.952266][ T5663] SELinux: failed to load policy [ 91.000692][ T5667] loop1: detected capacity change from 0 to 512 [ 91.017406][ T5667] EXT4-fs: Ignoring removed mblk_io_submit option [ 91.024010][ T5667] EXT4-fs: Ignoring removed bh option [ 91.044721][ T5669] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 91.051320][ T5669] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 91.059074][ T5669] vhci_hcd vhci_hcd.0: Device attached [ 91.069185][ T5671] vhci_hcd vhci_hcd.0: pdev(0) rhport(0) sockfd(4) [ 91.075794][ T5671] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 91.083553][ T5671] vhci_hcd vhci_hcd.0: Device attached [ 91.091868][ T5677] netlink: 8 bytes leftover after parsing attributes in process `syz.3.535'. [ 91.103982][ T5667] EXT4-fs (loop1): encrypted files will use data=ordered instead of data journaling mode [ 91.116924][ T5678] loop4: detected capacity change from 0 to 512 [ 91.125785][ T5671] loop0: detected capacity change from 0 to 512 [ 91.138744][ T5667] EXT4-fs (loop1): 1 truncate cleaned up [ 91.147118][ T5667] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 91.161963][ T3394] usb 10-1: SetAddress Request (15) to port 0 [ 91.168176][ T3394] usb 10-1: new SuperSpeed USB device number 15 using vhci_hcd [ 91.183471][ T5678] EXT4-fs (loop4): 1 orphan inode deleted [ 91.189684][ T5678] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 91.203361][ T12] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:0: Failed to release dquot type 1 [ 91.227839][ T5671] EXT4-fs (loop0): 1 orphan inode deleted [ 91.237934][ T5671] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 91.242157][ T5678] ext4 filesystem being mounted at /98/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 91.256170][ T5686] loop3: detected capacity change from 0 to 512 [ 91.269769][ T31] EXT4-fs error (device loop0): ext4_release_dquot:6969: comm kworker/u8:1: Failed to release dquot type 1 [ 91.281605][ T2971] usb 2-1: SetAddress Request (14) to port 0 [ 91.281654][ T2971] usb 2-1: new SuperSpeed USB device number 14 using vhci_hcd [ 91.281855][ T5671] ext4 filesystem being mounted at /92/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 91.288396][ T5671] EXT4-fs (loop0): re-mounted 00000000-0000-0000-0000-000000000000. [ 91.290283][ T5671] EXT4-fs error (device loop0): ext4_lookup:1787: inode #15: comm syz.0.534: iget: bad i_size value: 360287970189639690 [ 91.293684][ T5674] vhci_hcd: connection closed [ 91.293976][ T12] vhci_hcd: stop threads [ 91.293988][ T12] vhci_hcd: release socket [ 91.294004][ T12] vhci_hcd: disconnect device [ 91.383471][ T5672] vhci_hcd: connection reset by peer [ 91.383745][ T12] vhci_hcd: stop threads [ 91.383756][ T12] vhci_hcd: release socket [ 91.383772][ T12] vhci_hcd: disconnect device [ 91.695504][ T5704] ip6_tunnel: non-ECT from fc02:0000:0000:0000:0000:0000:0000:0000 with DS=0x2 [ 91.709754][ T5699] vhci_hcd vhci_hcd.0: pdev(3) rhport(0) sockfd(4) [ 91.716321][ T5699] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 91.724103][ T5699] vhci_hcd vhci_hcd.0: Device attached [ 91.734895][ T5705] loop3: detected capacity change from 0 to 512 [ 91.779835][ T5705] EXT4-fs (loop3): 1 orphan inode deleted [ 91.788649][ T5705] EXT4-fs (loop3): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 91.803990][ T1798] EXT4-fs error (device loop3): ext4_release_dquot:6969: comm kworker/u8:7: Failed to release dquot type 1 [ 91.836228][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 91.863984][ T5705] ext4 filesystem being mounted at /96/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 91.900028][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 91.917520][ T5699] EXT4-fs (loop3): re-mounted 00000000-0000-0000-0000-000000000000. [ 91.982463][ T5713] can0: slcan on ttyS3. [ 91.991080][ T5699] EXT4-fs error (device loop3): ext4_lookup:1787: inode #15: comm syz.3.540: iget: bad i_size value: 360287970189639690 [ 91.992092][ T3393] usb 8-1: SetAddress Request (15) to port 0 [ 92.009508][ T5702] vhci_hcd: connection closed [ 92.010077][ T12] vhci_hcd: stop threads [ 92.019226][ T12] vhci_hcd: release socket [ 92.023926][ T12] vhci_hcd: disconnect device [ 92.035640][ T3393] usb 8-1: new SuperSpeed USB device number 15 using vhci_hcd [ 92.075642][ T3393] usb 8-1: enqueue for inactive port 0 [ 92.082280][ T5719] can0 (unregistered): slcan off ttyS3. [ 92.097805][ T3393] usb 8-1: enqueue for inactive port 0 [ 92.112429][ T3393] usb 8-1: enqueue for inactive port 0 [ 92.141229][ T5728] vhci_hcd vhci_hcd.0: pdev(1) rhport(0) sockfd(4) [ 92.147805][ T5728] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 92.155631][ T5728] vhci_hcd vhci_hcd.0: Device attached [ 92.186277][ T5728] loop1: detected capacity change from 0 to 512 [ 92.237578][ T3393] usb 8-1: new SuperSpeed USB device number 15 using vhci_hcd [ 92.247713][ T5728] EXT4-fs (loop1): 1 orphan inode deleted [ 92.261938][ T3393] usb 8-1: enqueue for inactive port 0 [ 92.265079][ T5728] ext4 filesystem being mounted at /125/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 92.271945][ T3393] usb 8-1: enqueue for inactive port 0 [ 92.278968][ T12] EXT4-fs error (device loop1): ext4_release_dquot:6969: comm kworker/u8:0: Failed to release dquot type 1 [ 92.286743][ T3393] usb 8-1: enqueue for inactive port 0 [ 92.347221][ T5728] EXT4-fs (loop1): re-mounted 00000000-0000-0000-0000-000000000000 ro. [ 92.371066][ T5728] EXT4-fs error (device loop1): ext4_lookup:1787: inode #15: comm syz.1.550: iget: bad i_size value: 360287970189639690 [ 92.420195][ T5728] EXT4-fs error (device loop1): ext4_lookup:1787: inode #15: comm syz.1.550: iget: bad i_size value: 360287970189639690 [ 92.441000][ T5772] vhci_hcd vhci_hcd.0: pdev(0) rhport(0) sockfd(4) [ 92.447760][ T5772] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 92.455666][ T5772] vhci_hcd vhci_hcd.0: Device attached [ 92.462037][ T4005] usb 4-1: SetAddress Request (7) to port 0 [ 92.468996][ T5728] EXT4-fs error (device loop1): ext4_lookup:1787: inode #15: comm syz.1.550: iget: bad i_size value: 360287970189639690 [ 92.481713][ T4005] usb 4-1: new SuperSpeed USB device number 7 using vhci_hcd [ 92.489651][ T5772] loop0: detected capacity change from 0 to 512 [ 92.503917][ T5732] vhci_hcd: connection closed [ 92.505695][ T12] vhci_hcd: stop threads [ 92.514923][ T12] vhci_hcd: release socket [ 92.514942][ T12] vhci_hcd: disconnect device [ 92.545472][ T5772] EXT4-fs (loop0): 1 orphan inode deleted [ 92.552010][ T5772] ext4 filesystem being mounted at /98/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 92.564578][ T1798] EXT4-fs error (device loop0): ext4_release_dquot:6969: comm kworker/u8:7: Failed to release dquot type 1 [ 92.578365][ T5773] vhci_hcd: connection reset by peer [ 92.585885][ T12] vhci_hcd: stop threads [ 92.590268][ T12] vhci_hcd: release socket [ 92.594742][ T12] vhci_hcd: disconnect device [ 92.635892][ T5783] loop3: detected capacity change from 0 to 512 [ 93.210065][ T5792] loop0: detected capacity change from 0 to 512 [ 93.337723][ T5797] loop1: detected capacity change from 0 to 512 [ 93.390769][ T5797] EXT4-fs (loop1): feature flags set on rev 0 fs, running e2fsck is recommended [ 93.399934][ T5797] EXT4-fs (loop1): ea_inode feature is not supported for Hurd [ 93.663702][ T5805] vhci_hcd vhci_hcd.0: pdev(2) rhport(0) sockfd(4) [ 93.670287][ T5805] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 93.678144][ T5805] vhci_hcd vhci_hcd.0: Device attached [ 93.952118][ T23] usb 6-1: SetAddress Request (7) to port 0 [ 93.972149][ T23] usb 6-1: new SuperSpeed USB device number 7 using vhci_hcd [ 94.014311][ T5808] vhci_hcd: connection closed [ 94.014564][ T1798] vhci_hcd: stop threads [ 94.023563][ T1798] vhci_hcd: release socket [ 94.027984][ T1798] vhci_hcd: disconnect device [ 94.050074][ T23] usb 6-1: enqueue for inactive port 0 [ 94.112131][ T3393] usb usb8-port1: attempt power cycle [ 94.118330][ T23] usb 6-1: enqueue for inactive port 0 [ 94.128556][ T23] usb 6-1: enqueue for inactive port 0 [ 94.135543][ T5824] loop0: detected capacity change from 0 to 512 [ 94.146890][ T5825] loop4: detected capacity change from 0 to 512 [ 94.252076][ T23] usb 6-1: new SuperSpeed USB device number 7 using vhci_hcd [ 94.281975][ T23] usb 6-1: enqueue for inactive port 0 [ 94.287722][ T23] usb 6-1: enqueue for inactive port 0 [ 94.301971][ T23] usb 6-1: enqueue for inactive port 0 [ 95.434753][ T29] kauditd_printk_skb: 160 callbacks suppressed [ 95.434815][ T29] audit: type=1400 audit(1748852056.958:2447): avc: denied { create } for pid=5837 comm="syz.1.572" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 95.529173][ T29] audit: type=1400 audit(1748852057.048:2448): avc: denied { read } for pid=5837 comm="syz.1.572" name="mISDNtimer" dev="devtmpfs" ino=249 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:device_t tclass=chr_file permissive=1 [ 95.552377][ T29] audit: type=1400 audit(1748852057.048:2449): avc: denied { open } for pid=5837 comm="syz.1.572" path="/dev/mISDNtimer" dev="devtmpfs" ino=249 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:device_t tclass=chr_file permissive=1 [ 95.576449][ T29] audit: type=1400 audit(1748852057.048:2450): avc: denied { ioctl } for pid=5837 comm="syz.1.572" path="/dev/mISDNtimer" dev="devtmpfs" ino=249 ioctlcmd=0x4940 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:device_t tclass=chr_file permissive=1 [ 95.623787][ T5845] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 95.630371][ T5845] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 95.638262][ T5845] vhci_hcd vhci_hcd.0: Device attached [ 95.662872][ T5845] loop4: detected capacity change from 0 to 512 [ 95.689609][ T5851] loop3: detected capacity change from 0 to 512 [ 95.715295][ T5855] program syz.0.579 is using a deprecated SCSI ioctl, please convert it to SG_IO [ 95.748288][ T5845] EXT4-fs (loop4): 1 orphan inode deleted [ 95.749300][ T29] audit: type=1326 audit(1748852057.198:2451): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5850 comm="syz.3.577" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 95.775984][ T5838] audit: audit_backlog=65 > audit_backlog_limit=64 [ 95.777705][ T29] audit: type=1326 audit(1748852057.198:2452): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5850 comm="syz.3.577" exe="/root/syz-executor" sig=0 arch=c000003e syscall=294 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 95.784169][ T5838] audit: audit_lost=2 audit_rate_limit=0 audit_backlog_limit=64 [ 95.807474][ T29] audit: type=1326 audit(1748852057.198:2453): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=5850 comm="syz.3.577" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 95.815127][ T5838] audit: backlog limit exceeded [ 95.845205][ T5845] ext4 filesystem being mounted at /107/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 95.855964][ T37] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:2: Failed to release dquot type 1 [ 95.897540][ T5861] loop3: detected capacity change from 0 to 512 [ 95.903896][ T5845] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000. [ 95.934194][ T5845] EXT4-fs error (device loop4): ext4_lookup:1787: inode #15: comm syz.4.575: iget: bad i_size value: 360287970189639690 [ 96.038515][ T5871] loop0: detected capacity change from 0 to 512 [ 96.047205][ T5865] vhci_hcd vhci_hcd.0: pdev(0) rhport(0) sockfd(4) [ 96.053772][ T5865] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 96.061522][ T5865] vhci_hcd vhci_hcd.0: Device attached [ 96.145113][ T5871] EXT4-fs (loop0): 1 orphan inode deleted [ 96.154144][ T5871] ext4 filesystem being mounted at /104/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 96.166087][ T1798] EXT4-fs error (device loop0): ext4_release_dquot:6969: comm kworker/u8:7: Failed to release dquot type 1 [ 96.925467][ T5847] vhci_hcd: sendmsg failed!, ret=-32 for 48 [ 96.933273][ T23] usb usb6-port1: attempt power cycle [ 96.941135][ T51] vhci_hcd: stop threads [ 96.941320][ T5865] EXT4-fs (loop0): re-mounted 00000000-0000-0000-0000-000000000000. [ 96.945484][ T51] vhci_hcd: release socket [ 96.958008][ T51] vhci_hcd: disconnect device [ 96.958108][ T5881] loop1: detected capacity change from 0 to 512 [ 96.978160][ T5865] EXT4-fs error (device loop0): ext4_lookup:1787: inode #15: comm syz.0.582: iget: bad i_size value: 360287970189639690 [ 96.994690][ T5866] vhci_hcd: connection reset by peer [ 97.011810][ T3394] usb 10-1: device descriptor read/8, error -110 [ 97.026299][ T51] vhci_hcd: stop threads [ 97.030596][ T51] vhci_hcd: release socket [ 97.035171][ T51] vhci_hcd: disconnect device [ 97.117630][ T2971] usb 2-1: device descriptor read/8, error -110 [ 97.132656][ T3394] usb 10-1: new SuperSpeed USB device number 15 using vhci_hcd [ 97.152035][ T3394] usb 10-1: enqueue for inactive port 0 [ 97.158367][ T3394] usb 10-1: enqueue for inactive port 0 [ 97.214364][ T3394] usb 10-1: enqueue for inactive port 0 [ 97.232239][ T2971] usb 2-1: new SuperSpeed USB device number 14 using vhci_hcd [ 97.277161][ T5887] loop3: detected capacity change from 0 to 512 [ 97.372051][ T3394] usb usb10-port1: attempt power cycle [ 97.378120][ T2971] usb 2-1: enqueue for inactive port 0 [ 97.403015][ T2971] usb 2-1: enqueue for inactive port 0 [ 97.571614][ T3393] usb usb8-port1: unable to enumerate USB device [ 97.584940][ T4005] usb 4-1: device descriptor read/8, error -110 [ 97.603889][ T2971] usb 2-1: enqueue for inactive port 0 [ 97.695911][ T4005] usb 4-1: new SuperSpeed USB device number 7 using vhci_hcd [ 97.721956][ T4005] usb 4-1: enqueue for inactive port 0 [ 97.741904][ T4005] usb 4-1: enqueue for inactive port 0 [ 97.759452][ T4005] usb 4-1: enqueue for inactive port 0 [ 97.786772][ T5904] loop0: detected capacity change from 0 to 512 [ 97.901267][ T5910] program syz.0.595 is using a deprecated SCSI ioctl, please convert it to SG_IO [ 98.048026][ T5916] loop1: detected capacity change from 0 to 1024 [ 98.081496][ T5916] EXT4-fs: Ignoring removed orlov option [ 98.098027][ T5916] EXT4-fs mount: 10 callbacks suppressed [ 98.098100][ T5916] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 98.222110][ T5919] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 98.228703][ T5919] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 98.236489][ T5919] vhci_hcd vhci_hcd.0: Device attached [ 98.274882][ T5928] vhci_hcd vhci_hcd.0: pdev(0) rhport(0) sockfd(4) [ 98.281445][ T5928] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 98.289332][ T5928] vhci_hcd vhci_hcd.0: Device attached [ 98.371337][ T5932] loop0: detected capacity change from 0 to 512 [ 98.396147][ T5933] loop4: detected capacity change from 0 to 512 [ 98.425617][ T5932] EXT4-fs (loop0): 1 orphan inode deleted [ 98.442230][ T37] EXT4-fs error (device loop0): ext4_release_dquot:6969: comm kworker/u8:2: Failed to release dquot type 1 [ 98.458629][ T5932] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 98.502245][ T5933] EXT4-fs (loop4): 1 orphan inode deleted [ 98.518068][ T5933] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 98.533211][ T5932] ext4 filesystem being mounted at /107/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 98.550445][ T5933] ext4 filesystem being mounted at /109/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 98.553099][ T37] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:2: Failed to release dquot type 1 [ 98.572539][ T3393] usb 2-1: SetAddress Request (15) to port 0 [ 98.578652][ T3393] usb 2-1: new SuperSpeed USB device number 15 using vhci_hcd [ 98.589058][ T5928] EXT4-fs (loop0): re-mounted 00000000-0000-0000-0000-000000000000 ro. [ 98.600909][ T3394] usb 10-1: SetAddress Request (16) to port 0 [ 98.610997][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 98.621333][ T3394] usb 10-1: new SuperSpeed USB device number 16 using vhci_hcd [ 98.630819][ T5928] EXT4-fs (loop0): warning: mounting fs with errors, running e2fsck is recommended [ 98.640618][ T5919] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000 ro. [ 98.661769][ T5939] ip6_tunnel: non-ECT from fc02:0000:0000:0000:0000:0000:0000:0000 with DS=0x2 [ 98.672764][ T5928] EXT4-fs (loop0): re-mounted 00000000-0000-0000-0000-000000000000 r/w. [ 98.683957][ T5928] EXT4-fs error (device loop0): ext4_lookup:1787: inode #15: comm syz.0.600: iget: bad i_size value: 360287970189639690 [ 98.698951][ T5941] EXT4-fs error (device loop4): ext4_lookup:1787: inode #15: comm syz.4.599: iget: bad i_size value: 360287970189639690 [ 98.711638][ T5929] vhci_hcd: connection reset by peer [ 98.717631][ T31] vhci_hcd: stop threads [ 98.722026][ T31] vhci_hcd: release socket [ 98.726457][ T31] vhci_hcd: disconnect device [ 98.735302][ T5933] EXT4-fs (loop4): warning: mounting fs with errors, running e2fsck is recommended [ 98.796984][ T5933] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000 r/w. [ 98.800920][ T5943] SELinux: unrecognized netlink message: protocol=0 nlmsg_type=0 sclass=netlink_route_socket pid=5943 comm=syz.1.602 [ 98.824069][ T5921] vhci_hcd: connection reset by peer [ 98.829723][ T5943] loop1: detected capacity change from 0 to 164 [ 98.851940][ T37] vhci_hcd: stop threads [ 98.856241][ T37] vhci_hcd: release socket [ 98.860750][ T37] vhci_hcd: disconnect device [ 98.889333][ T5943] iso9660: Unknown parameter 'hid‚' [ 98.970910][ T5955] tipc: New replicast peer: 255.255.255.83 [ 98.976997][ T5955] tipc: Enabled bearer , priority 10 [ 99.028506][ T5957] SELinux: failed to load policy [ 99.062744][ T5963] SELinux: policydb version -845211227 does not match my version range 15-34 [ 99.071711][ T5963] SELinux: failed to load policy [ 99.083760][ T5967] vhci_hcd vhci_hcd.0: pdev(1) rhport(0) sockfd(4) [ 99.090310][ T5967] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 99.098081][ T5967] vhci_hcd vhci_hcd.0: Device attached [ 99.117083][ T5967] loop1: detected capacity change from 0 to 512 [ 99.130627][ T5971] can0: slcan on ttyS3. [ 99.162530][ T23] usb usb6-port1: unable to enumerate USB device [ 99.174844][ T5967] EXT4-fs (loop1): 1 orphan inode deleted [ 99.181331][ T5967] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 99.196107][ T70] EXT4-fs error (device loop1): ext4_release_dquot:6969: comm kworker/u8:4: Failed to release dquot type 1 [ 99.208466][ T5967] ext4 filesystem being mounted at /137/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 99.232017][ T4005] usb 4-1: SetAddress Request (8) to port 0 [ 99.238046][ T4005] usb 4-1: new SuperSpeed USB device number 8 using vhci_hcd [ 99.249333][ T5967] EXT4-fs (loop1): re-mounted 00000000-0000-0000-0000-000000000000 ro. [ 99.261636][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 99.273377][ T5982] can0 (unregistered): slcan off ttyS3. [ 99.279150][ T5967] EXT4-fs (loop1): warning: mounting fs with errors, running e2fsck is recommended [ 99.304476][ T5967] EXT4-fs (loop1): re-mounted 00000000-0000-0000-0000-000000000000 r/w. [ 99.329945][ T5967] EXT4-fs error (device loop1): ext4_lookup:1787: inode #15: comm syz.1.612: iget: bad i_size value: 360287970189639690 [ 99.374858][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 99.398447][ T5968] vhci_hcd: connection reset by peer [ 99.404193][ T12] vhci_hcd: stop threads [ 99.408485][ T12] vhci_hcd: release socket [ 99.413070][ T12] vhci_hcd: disconnect device [ 99.620058][ T5992] loop0: detected capacity change from 0 to 512 [ 99.848485][ T6030] SELinux: failed to load policy [ 99.858724][ T5992] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 99.874123][ T5992] ext4 filesystem being mounted at /108/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 100.031116][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 100.045695][ T6033] loop4: detected capacity change from 0 to 512 [ 100.073798][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 100.092027][ T9] tipc: Node number set to 972310636 [ 100.273397][ T6045] loop0: detected capacity change from 0 to 512 [ 100.284149][ T6047] loop1: detected capacity change from 0 to 128 [ 100.292372][ T6047] vfat: Unknown parameter '¿‰ïv±Iv4sÃJ¢³{ÿf¥&@øœå<˜KûTlOj†ë7“Ãla©…ôä"“Oå0ˆ—ÝÅC>óRZ¸>ÑŠ"oûæÅÕ <2žWø…u`îâ-¿Zý½.ÂNI¾™o}' [ 101.711239][ T29] kauditd_printk_skb: 317 callbacks suppressed [ 101.711257][ T29] audit: type=1326 audit(1748852063.228:2764): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6055 comm="syz.3.633" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 101.790014][ T29] audit: type=1326 audit(1748852063.288:2765): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6057 comm="syz.2.632" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 101.813626][ T29] audit: type=1326 audit(1748852063.288:2766): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6057 comm="syz.2.632" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 101.837033][ T29] audit: type=1326 audit(1748852063.288:2767): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6057 comm="syz.2.632" exe="/root/syz-executor" sig=0 arch=c000003e syscall=321 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 101.860372][ T29] audit: type=1326 audit(1748852063.288:2768): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6055 comm="syz.3.633" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 101.867485][ T6056] program syz.3.633 is using a deprecated SCSI ioctl, please convert it to SG_IO [ 101.883900][ T29] audit: type=1326 audit(1748852063.298:2769): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6057 comm="syz.2.632" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 101.916574][ T29] audit: type=1326 audit(1748852063.298:2770): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6057 comm="syz.2.632" exe="/root/syz-executor" sig=0 arch=c000003e syscall=321 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 101.939971][ T29] audit: type=1326 audit(1748852063.298:2771): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6057 comm="syz.2.632" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 101.963289][ T29] audit: type=1326 audit(1748852063.298:2772): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6057 comm="syz.2.632" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 101.986720][ T29] audit: type=1326 audit(1748852063.298:2773): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6057 comm="syz.2.632" exe="/root/syz-executor" sig=0 arch=c000003e syscall=85 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 102.152638][ T6073] vhci_hcd vhci_hcd.0: pdev(0) rhport(0) sockfd(4) [ 102.159210][ T6073] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 102.166943][ T6073] vhci_hcd vhci_hcd.0: Device attached [ 102.185332][ T6078] netlink: 8 bytes leftover after parsing attributes in process `syz.3.638'. [ 102.269940][ T6080] loop0: detected capacity change from 0 to 512 [ 102.322651][ T6069] loop1: detected capacity change from 0 to 512 [ 102.328346][ T6080] EXT4-fs (loop0): 1 orphan inode deleted [ 102.366110][ T70] EXT4-fs error (device loop0): ext4_release_dquot:6969: comm kworker/u8:4: Failed to release dquot type 1 [ 102.385876][ T6080] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 102.424203][ T6069] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 102.438117][ T6080] ext4 filesystem being mounted at /110/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 102.479231][ T6069] ext4 filesystem being mounted at /143/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 102.512229][ T6073] EXT4-fs (loop0): re-mounted 00000000-0000-0000-0000-000000000000 ro. [ 102.610155][ T6105] loop4: detected capacity change from 0 to 512 [ 102.620263][ T6074] vhci_hcd: connection closed [ 102.622881][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 102.636807][ T70] vhci_hcd: stop threads [ 102.641073][ T70] vhci_hcd: release socket [ 102.645695][ T70] vhci_hcd: disconnect device [ 102.782193][ T6109] loop3: detected capacity change from 0 to 1024 [ 102.799527][ T6109] EXT4-fs (loop3): ext4_check_descriptors: Inode bitmap for group 0 overlaps block group descriptors [ 102.810613][ T6109] EXT4-fs (loop3): ext4_check_descriptors: Checksum for group 0 failed (51554!=20869) [ 103.653599][ T6109] JBD2: no valid journal superblock found [ 103.659607][ T6109] EXT4-fs (loop3): Could not load journal inode [ 103.681958][ T3393] usb 2-1: device descriptor read/8, error -110 [ 103.691618][ T3394] usb 10-1: device descriptor read/8, error -110 [ 103.792213][ T3393] usb 2-1: new SuperSpeed USB device number 15 using vhci_hcd [ 103.801920][ T3394] usb 10-1: new SuperSpeed USB device number 16 using vhci_hcd [ 103.821944][ T3394] usb 10-1: enqueue for inactive port 0 [ 103.830711][ T3394] usb 10-1: enqueue for inactive port 0 [ 103.837983][ T3393] usb 2-1: enqueue for inactive port 0 [ 103.842694][ T3394] usb 10-1: enqueue for inactive port 0 [ 103.851203][ T3393] usb 2-1: enqueue for inactive port 0 [ 103.861536][ T3393] usb 2-1: enqueue for inactive port 0 [ 103.865201][ T6109] netlink: 'syz.3.649': attribute type 1 has an invalid length. [ 103.874814][ T6109] netlink: 224 bytes leftover after parsing attributes in process `syz.3.649'. [ 103.927537][ T6125] loop1: detected capacity change from 0 to 512 [ 104.096436][ T6127] loop3: detected capacity change from 0 to 2048 [ 104.111388][ T6127] EXT4-fs: Ignoring removed mblk_io_submit option [ 104.314125][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 104.323383][ T4005] usb 4-1: device descriptor read/8, error -110 [ 104.337041][ T6127] EXT4-fs (loop3): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 105.141963][ T1043] Process accounting resumed [ 105.164614][ T51] EXT4-fs error (device loop3): ext4_validate_block_bitmap:441: comm kworker/u8:3: bg 0: block 234: padding at end of block bitmap is not set [ 105.279591][ T4005] usb 4-1: new SuperSpeed USB device number 8 using vhci_hcd [ 105.304165][ T4005] usb 4-1: enqueue for inactive port 0 [ 105.309819][ T4005] usb 4-1: enqueue for inactive port 0 [ 105.327108][ T51] EXT4-fs (loop3): Remounting filesystem read-only [ 105.357880][ T6149] loop0: detected capacity change from 0 to 512 [ 105.372507][ T4005] usb 4-1: enqueue for inactive port 0 [ 105.561099][ T4005] usb usb4-port1: attempt power cycle [ 105.607703][ T6158] ip6_tunnel: non-ECT from fc02:0000:0000:0000:0000:0000:0000:0000 with DS=0x2 [ 105.752422][ T3394] usb usb10-port1: unable to enumerate USB device [ 105.964830][ T6164] can0: slcan on ttyS3. [ 106.145883][ T3318] EXT4-fs (loop3): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 106.378436][ T6145] loop4: detected capacity change from 0 to 512 [ 106.452134][ T6163] can0 (unregistered): slcan off ttyS3. [ 106.531802][ T6181] loop0: detected capacity change from 0 to 512 [ 106.542127][ T3393] usb usb2-port1: attempt power cycle [ 106.543496][ T6145] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 106.611835][ T6145] ext4 filesystem being mounted at /123/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 106.687635][ T6196] loop1: detected capacity change from 0 to 512 [ 106.722641][ T29] kauditd_printk_skb: 226 callbacks suppressed [ 106.722659][ T29] audit: type=1326 audit(1748852068.238:2999): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6144 comm="+}[@" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 106.752006][ T29] audit: type=1326 audit(1748852068.238:3000): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6144 comm="+}[@" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 106.783878][ T29] audit: type=1400 audit(1748852068.248:3001): avc: denied { add_name } for pid=6171 comm="dhcpcd-run-hook" name="resolv.conf.can0.link" scontext=system_u:system_r:dhcpc_t tcontext=system_u:object_r:tmpfs_t tclass=dir permissive=1 [ 106.806815][ T29] audit: type=1400 audit(1748852068.248:3002): avc: denied { create } for pid=6171 comm="dhcpcd-run-hook" name="resolv.conf.can0.link" scontext=system_u:system_r:dhcpc_t tcontext=system_u:object_r:tmpfs_t tclass=file permissive=1 [ 106.829302][ T29] audit: type=1400 audit(1748852068.248:3003): avc: denied { write } for pid=6171 comm="dhcpcd-run-hook" path="/run/dhcpcd/hook-state/resolv.conf.can0.link" dev="tmpfs" ino=6054 scontext=system_u:system_r:dhcpc_t tcontext=system_u:object_r:tmpfs_t tclass=file permissive=1 [ 106.855518][ T29] audit: type=1400 audit(1748852068.248:3004): avc: denied { append } for pid=6171 comm="dhcpcd-run-hook" name="resolv.conf.can0.link" dev="tmpfs" ino=6054 scontext=system_u:system_r:dhcpc_t tcontext=system_u:object_r:tmpfs_t tclass=file permissive=1 [ 106.879773][ T29] audit: type=1400 audit(1748852068.268:3005): avc: denied { remove_name } for pid=6202 comm="rm" name="resolv.conf.can0.link" dev="tmpfs" ino=6054 scontext=system_u:system_r:dhcpc_t tcontext=system_u:object_r:tmpfs_t tclass=dir permissive=1 [ 106.903251][ T29] audit: type=1400 audit(1748852068.268:3006): avc: denied { unlink } for pid=6202 comm="rm" name="resolv.conf.can0.link" dev="tmpfs" ino=6054 scontext=system_u:system_r:dhcpc_t tcontext=system_u:object_r:tmpfs_t tclass=file permissive=1 [ 106.932607][ T6191] loop3: detected capacity change from 0 to 512 [ 107.134984][ T6190] vhci_hcd vhci_hcd.0: pdev(1) rhport(0) sockfd(4) [ 107.141628][ T6190] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 107.149379][ T6190] vhci_hcd vhci_hcd.0: Device attached [ 107.493408][ T4005] usb 4-1: SetAddress Request (10) to port 0 [ 107.506603][ T4005] usb 4-1: new SuperSpeed USB device number 10 using vhci_hcd [ 107.556391][ T6138] EXT4-fs error (device loop4): ext4_mb_generate_buddy:1220: group 0, block bitmap and bg descriptor inconsistent: 41 vs 39667 free clusters [ 107.579452][ T6196] EXT4-fs (loop1): 1 orphan inode deleted [ 107.659720][ T6196] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 107.671947][ T29] audit: type=1400 audit(1748852068.628:3007): avc: denied { unmount } for pid=3323 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:fs_t tclass=filesystem permissive=1 [ 107.691941][ T29] audit: type=1400 audit(1748852068.858:3008): avc: denied { read } for pid=3047 comm="dhcpcd" scontext=system_u:system_r:dhcpc_t tcontext=system_u:system_r:dhcpc_t tclass=netlink_kobject_uevent_socket permissive=1 [ 107.733475][ T37] EXT4-fs error (device loop1): ext4_release_dquot:6969: comm kworker/u8:2: Failed to release dquot type 1 [ 107.747464][ T6196] ext4 filesystem being mounted at /149/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 107.768859][ T6190] EXT4-fs (loop1): re-mounted 00000000-0000-0000-0000-000000000000. [ 107.777992][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 107.856784][ T6190] EXT4-fs error (device loop1): ext4_lookup:1787: inode #15: comm syz.1.666: iget: bad i_size value: 360287970189639690 [ 107.972329][ T6193] vhci_hcd: connection reset by peer [ 107.978077][ T1798] vhci_hcd: stop threads [ 107.982475][ T1798] vhci_hcd: release socket [ 107.986922][ T1798] vhci_hcd: disconnect device [ 108.148033][ T6259] FAULT_INJECTION: forcing a failure. [ 108.148033][ T6259] name fail_usercopy, interval 1, probability 0, space 0, times 0 [ 108.161437][ T6259] CPU: 1 UID: 0 PID: 6259 Comm: syz.0.682 Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) [ 108.161473][ T6259] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 108.161490][ T6259] Call Trace: [ 108.161499][ T6259] [ 108.161509][ T6259] __dump_stack+0x1d/0x30 [ 108.161607][ T6259] dump_stack_lvl+0xe8/0x140 [ 108.161633][ T6259] dump_stack+0x15/0x1b [ 108.161654][ T6259] should_fail_ex+0x265/0x280 [ 108.161681][ T6259] should_fail+0xb/0x20 [ 108.161772][ T6259] should_fail_usercopy+0x1a/0x20 [ 108.161800][ T6259] _copy_to_user+0x20/0xa0 [ 108.161884][ T6259] simple_read_from_buffer+0xb5/0x130 [ 108.161913][ T6259] proc_fail_nth_read+0x100/0x140 [ 108.161944][ T6259] ? __pfx_proc_fail_nth_read+0x10/0x10 [ 108.162070][ T6259] vfs_read+0x1a0/0x6f0 [ 108.162099][ T6259] ? __sys_bpf+0x4ed/0x790 [ 108.162127][ T6259] ksys_read+0xda/0x1a0 [ 108.162157][ T6259] __x64_sys_read+0x40/0x50 [ 108.162185][ T6259] x64_sys_call+0x2d77/0x2fb0 [ 108.162291][ T6259] do_syscall_64+0xd2/0x200 [ 108.162373][ T6259] ? arch_exit_to_user_mode_prepare+0x27/0x60 [ 108.162466][ T6259] ? clear_bhb_loop+0x40/0x90 [ 108.162494][ T6259] ? clear_bhb_loop+0x40/0x90 [ 108.162529][ T6259] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 108.162556][ T6259] RIP: 0033:0x7fbb0cdfd37c [ 108.162575][ T6259] Code: ec 28 48 89 54 24 18 48 89 74 24 10 89 7c 24 08 e8 99 93 02 00 48 8b 54 24 18 48 8b 74 24 10 41 89 c0 8b 7c 24 08 31 c0 0f 05 <48> 3d 00 f0 ff ff 77 34 44 89 c7 48 89 44 24 08 e8 ef 93 02 00 48 [ 108.162599][ T6259] RSP: 002b:00007fbb0b467030 EFLAGS: 00000246 ORIG_RAX: 0000000000000000 [ 108.162624][ T6259] RAX: ffffffffffffffda RBX: 00007fbb0d025fa0 RCX: 00007fbb0cdfd37c [ 108.162660][ T6259] RDX: 000000000000000f RSI: 00007fbb0b4670a0 RDI: 0000000000000004 [ 108.162676][ T6259] RBP: 00007fbb0b467090 R08: 0000000000000000 R09: 0000000000000000 [ 108.162691][ T6259] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 108.162707][ T6259] R13: 0000000000000000 R14: 00007fbb0d025fa0 R15: 00007ffdddf0fde8 [ 108.162731][ T6259] [ 108.403887][ T6265] loop3: detected capacity change from 0 to 512 [ 108.411267][ T6265] EXT4-fs: Ignoring removed nobh option [ 108.419986][ T6265] EXT4-fs (loop3): encrypted files will use data=ordered instead of data journaling mode [ 108.472498][ T6265] EXT4-fs (loop3): 1 truncate cleaned up [ 108.496347][ T6265] EXT4-fs (loop3): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 108.554614][ T6265] EXT4-fs error (device loop3): ext4_search_dir:1474: inode #12: block 7: comm syz.3.684: bad entry in directory: inode out of bounds - offset=0, inode=16777215, rec_len=16, size=56 fake=0 [ 108.595797][ T6265] EXT4-fs (loop3): Remounting filesystem read-only [ 108.641970][ T6285] loop0: detected capacity change from 0 to 1024 [ 108.649062][ T3318] EXT4-fs (loop3): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 108.652530][ T6285] EXT4-fs: Ignoring removed oldalloc option [ 108.673447][ T6285] EXT4-fs (loop0): stripe (3) is not aligned with cluster size (16), stripe is disabled [ 108.707303][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 108.718666][ T6285] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 108.835008][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 108.848208][ T6303] ip6_tunnel: non-ECT from fc02:0000:0000:0000:0000:0000:0000:0000 with DS=0x2 [ 108.904731][ T6305] loop3: detected capacity change from 0 to 512 [ 108.928727][ T6308] netlink: 4 bytes leftover after parsing attributes in process `syz.1.704'. [ 108.941416][ T6308] netlink: 4 bytes leftover after parsing attributes in process `syz.1.704'. [ 109.352495][ T6308] netlink: 4 bytes leftover after parsing attributes in process `syz.1.704'. [ 109.442254][ T6308] netlink: 4 bytes leftover after parsing attributes in process `syz.1.704'. [ 109.512613][ T3393] usb usb2-port1: unable to enumerate USB device [ 109.570810][ T6308] netlink: 4 bytes leftover after parsing attributes in process `syz.1.704'. [ 109.580469][ T6327] loop0: detected capacity change from 0 to 2048 [ 109.589350][ T6308] netlink: 4 bytes leftover after parsing attributes in process `syz.1.704'. [ 109.615500][ T6327] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 109.627838][ T6292] syz.4.695 (6292) used greatest stack depth: 10192 bytes left [ 109.647456][ T6327] EXT4-fs error (device loop0): ext4_mb_generate_buddy:1220: group 0, block bitmap and bg descriptor inconsistent: 25 vs 4128793 free clusters [ 109.665325][ T6327] EXT4-fs (loop0): Delayed block allocation failed for inode 15 at logical offset 0 with max blocks 3 with error 28 [ 109.677650][ T6327] EXT4-fs (loop0): This should not happen!! Data will be lost [ 109.677650][ T6327] [ 109.687511][ T6327] EXT4-fs (loop0): Total free blocks count 0 [ 109.693649][ T6327] EXT4-fs (loop0): Free/Dirty block details [ 109.699582][ T6327] EXT4-fs (loop0): free_blocks=66060288 [ 109.705216][ T6327] EXT4-fs (loop0): dirty_blocks=16 [ 109.710463][ T6327] EXT4-fs (loop0): Block reservation details [ 109.716586][ T6327] EXT4-fs (loop0): i_reserved_data_blocks=1 [ 109.725028][ T6332] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 109.731613][ T6332] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 109.739449][ T6332] vhci_hcd vhci_hcd.0: Device attached [ 109.748782][ T6332] loop4: detected capacity change from 0 to 512 [ 109.767227][ T6332] EXT4-fs (loop4): 1 orphan inode deleted [ 109.790770][ T6332] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 109.804299][ T6332] ext4 filesystem being mounted at /131/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 109.823841][ T37] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:2: Failed to release dquot type 1 [ 109.836717][ T6332] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000. [ 109.847540][ T6332] EXT4-fs error (device loop4): ext4_lookup:1787: inode #15: comm syz.4.708: iget: bad i_size value: 360287970189639690 [ 109.864216][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 109.908810][ T6335] vhci_hcd: connection closed [ 109.909116][ T51] vhci_hcd: stop threads [ 109.918141][ T51] vhci_hcd: release socket [ 109.922647][ T51] vhci_hcd: disconnect device [ 110.000563][ T6351] loop1: detected capacity change from 0 to 128 [ 110.028661][ T6351] EXT4-fs (loop1): mounted filesystem 76b65be2-f6da-4727-8c75-0525a5b65a09 r/w without journal. Quota mode: none. [ 110.042229][ T6351] ext4 filesystem being mounted at /154/file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa supports timestamps until 2038-01-19 (0x7fffffff) [ 110.588260][ T6369] loop0: detected capacity change from 0 to 512 [ 110.608026][ T6371] loop3: detected capacity change from 0 to 1024 [ 110.634289][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 110.644400][ T6371] workqueue: Failed to create a rescuer kthread for wq "ext4-rsv-conversion": -EINTR [ 110.644444][ T6371] EXT4-fs: failed to create workqueue [ 110.659665][ T6371] EXT4-fs (loop3): mount failed [ 111.161857][ T6396] SELinux: policydb version -845211227 does not match my version range 15-34 [ 111.249320][ C1] vcan0: j1939_tp_rxtimer: 0xffff888119ce1c00: rx timeout, send abort [ 111.265442][ T6396] SELinux: failed to load policy [ 111.287403][ T6400] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 111.293978][ T6400] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 111.301846][ T6400] vhci_hcd vhci_hcd.0: Device attached [ 111.313457][ T6404] loop3: detected capacity change from 0 to 1024 [ 111.324403][ T6404] EXT4-fs (loop3): ext4_check_descriptors: Inode bitmap for group 0 overlaps block group descriptors [ 111.335407][ T6404] EXT4-fs (loop3): ext4_check_descriptors: Checksum for group 0 failed (51554!=20869) [ 111.339949][ T6400] loop4: detected capacity change from 0 to 512 [ 111.352867][ T6404] JBD2: no valid journal superblock found [ 111.358637][ T6404] EXT4-fs (loop3): Could not load journal inode [ 111.380850][ T6400] EXT4-fs (loop4): 1 orphan inode deleted [ 111.393208][ T173] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:5: Failed to release dquot type 1 [ 111.406124][ T6400] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 111.432022][ T6400] ext4 filesystem being mounted at /136/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 111.448895][ T6400] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000. [ 111.468097][ T6400] EXT4-fs error (device loop4): ext4_lookup:1787: inode #15: comm syz.4.730: iget: bad i_size value: 360287970189639690 [ 111.484311][ T6401] vhci_hcd: connection closed [ 111.484621][ T173] vhci_hcd: stop threads [ 111.493684][ T173] vhci_hcd: release socket [ 111.498115][ T173] vhci_hcd: disconnect device [ 111.539401][ T6414] vhci_hcd vhci_hcd.0: pdev(2) rhport(0) sockfd(4) [ 111.545971][ T6414] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 111.553751][ T6414] vhci_hcd vhci_hcd.0: Device attached [ 111.578996][ T6415] vhci_hcd: connection closed [ 111.579170][ T173] vhci_hcd: stop threads [ 111.588360][ T173] vhci_hcd: release socket [ 111.592924][ T173] vhci_hcd: disconnect device [ 111.605369][ T6426] loop0: detected capacity change from 0 to 256 [ 111.617361][ T6426] FAT-fs (loop0): utf8 is not a recommended IO charset for FAT filesystems, filesystem will be case sensitive! [ 111.637615][ T6426] FAT-fs (loop0): Volume was not properly unmounted. Some data may be corrupt. Please run fsck. [ 111.656116][ T6430] netlink: 4 bytes leftover after parsing attributes in process `syz.3.741'. [ 111.656663][ T6426] FAULT_INJECTION: forcing a failure. [ 111.656663][ T6426] name fail_usercopy, interval 1, probability 0, space 0, times 0 [ 111.678307][ T6426] CPU: 1 UID: 0 PID: 6426 Comm: syz.0.739 Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) [ 111.678336][ T6426] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 111.678349][ T6426] Call Trace: [ 111.678356][ T6426] [ 111.678363][ T6426] __dump_stack+0x1d/0x30 [ 111.678387][ T6426] dump_stack_lvl+0xe8/0x140 [ 111.678506][ T6426] dump_stack+0x15/0x1b [ 111.678528][ T6426] should_fail_ex+0x265/0x280 [ 111.678553][ T6426] should_fail+0xb/0x20 [ 111.678571][ T6426] should_fail_usercopy+0x1a/0x20 [ 111.678626][ T6426] _copy_to_iter+0xcf/0xe30 [ 111.678652][ T6426] ? seq_write+0x9e/0xc0 [ 111.678705][ T6426] ? __pfx_fat_show_options+0x10/0x10 [ 111.678729][ T6426] ? show_vfsmnt+0x3b3/0x3e0 [ 111.678767][ T6426] seq_read_iter+0x76a/0x940 [ 111.678808][ T6426] ? __pfx_seq_read_iter+0x10/0x10 [ 111.678937][ T6426] vfs_read+0x5ca/0x6f0 [ 111.678959][ T6426] ? __pfx_seq_read_iter+0x10/0x10 [ 111.679036][ T6426] __x64_sys_pread64+0xfd/0x150 [ 111.679067][ T6426] x64_sys_call+0x296d/0x2fb0 [ 111.679118][ T6426] do_syscall_64+0xd2/0x200 [ 111.679206][ T6426] ? arch_exit_to_user_mode_prepare+0x27/0x60 [ 111.679240][ T6426] ? clear_bhb_loop+0x40/0x90 [ 111.679282][ T6426] ? clear_bhb_loop+0x40/0x90 [ 111.679310][ T6426] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 111.679391][ T6426] RIP: 0033:0x7fbb0cdfe969 [ 111.679406][ T6426] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 111.679431][ T6426] RSP: 002b:00007fbb0b467038 EFLAGS: 00000246 ORIG_RAX: 0000000000000011 [ 111.679455][ T6426] RAX: ffffffffffffffda RBX: 00007fbb0d025fa0 RCX: 00007fbb0cdfe969 [ 111.679471][ T6426] RDX: 000000000000102c RSI: 0000200000003200 RDI: 0000000000000004 [ 111.679513][ T6426] RBP: 00007fbb0b467090 R08: 0000000000000000 R09: 0000000000000000 [ 111.679528][ T6426] R10: 0000000000000059 R11: 0000000000000246 R12: 0000000000000001 [ 111.679569][ T6426] R13: 0000000000000000 R14: 00007fbb0d025fa0 R15: 00007ffdddf0fde8 [ 111.679590][ T6426] [ 111.698287][ T6430] loop3: detected capacity change from 0 to 1024 [ 111.737215][ T29] kauditd_printk_skb: 204 callbacks suppressed [ 111.737233][ T29] audit: type=1400 audit(1748852073.258:3210): avc: denied { unmount } for pid=3325 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dosfs_t tclass=filesystem permissive=1 [ 111.761146][ C1] vcan0: j1939_tp_rxtimer: 0xffff888119ce1c00: abort rx timeout. Force session deactivation [ 111.763663][ T6430] EXT4-fs (loop3): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 111.793085][ T6433] loop0: detected capacity change from 0 to 512 [ 111.812451][ T29] audit: type=1400 audit(1748852073.318:3211): avc: denied { create } for pid=6429 comm="syz.3.741" name="bus" scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:unlabeled_t tclass=dir permissive=1 [ 111.836929][ T6430] netlink: 12 bytes leftover after parsing attributes in process `syz.3.741'. [ 111.844147][ T29] audit: type=1400 audit(1748852073.328:3212): avc: denied { add_name } for pid=6429 comm="syz.3.741" name="file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa" scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:unlabeled_t tclass=dir permissive=1 [ 112.020015][ T29] audit: type=1400 audit(1748852073.328:3213): avc: denied { allowed } for pid=6429 comm="syz.3.741" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=io_uring permissive=1 [ 112.042219][ T29] audit: type=1400 audit(1748852073.338:3214): avc: denied { map } for pid=6429 comm="syz.3.741" path="anon_inode:[io_uring]" dev="anon_inodefs" ino=13240 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:sysadm_t tclass=anon_inode permissive=1 [ 112.066596][ T29] audit: type=1400 audit(1748852073.338:3215): avc: denied { read write } for pid=6429 comm="syz.3.741" path="anon_inode:[io_uring]" dev="anon_inodefs" ino=13240 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:sysadm_t tclass=anon_inode permissive=1 [ 112.102197][ T3316] EXT4-fs (loop1): unmounting filesystem 76b65be2-f6da-4727-8c75-0525a5b65a09. [ 112.137976][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 112.159678][ T3318] EXT4-fs (loop3): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 112.280343][ T6450] loop4: detected capacity change from 0 to 512 [ 112.293678][ T6446] loop3: detected capacity change from 0 to 1024 [ 112.332659][ T6446] EXT4-fs (loop3): ext4_check_descriptors: Inode bitmap for group 0 overlaps block group descriptors [ 112.343649][ T6446] EXT4-fs (loop3): ext4_check_descriptors: Checksum for group 0 failed (51554!=20869) [ 112.416331][ T6446] JBD2: no valid journal superblock found [ 112.422173][ T6446] EXT4-fs (loop3): Could not load journal inode [ 112.642012][ T4005] usb 4-1: device descriptor read/8, error -110 [ 112.688555][ T6463] loop1: detected capacity change from 0 to 1024 [ 112.771342][ T4005] usb 4-1: new SuperSpeed USB device number 10 using vhci_hcd [ 112.854986][ T4005] usb 4-1: enqueue for inactive port 0 [ 112.869460][ T6463] EXT4-fs: Ignoring removed oldalloc option [ 112.883405][ T6465] loop3: detected capacity change from 0 to 1024 [ 112.932461][ T6463] EXT4-fs (loop1): stripe (3) is not aligned with cluster size (16), stripe is disabled [ 112.946557][ T4005] usb 4-1: enqueue for inactive port 0 [ 112.961900][ T29] audit: type=1326 audit(1748852074.468:3216): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6468 comm="syz.2.754" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 112.985512][ T29] audit: type=1326 audit(1748852074.468:3217): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6468 comm="syz.2.754" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 112.998366][ T6463] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 113.008889][ T29] audit: type=1326 audit(1748852074.468:3218): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6468 comm="syz.2.754" exe="/root/syz-executor" sig=0 arch=c000003e syscall=321 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 113.044382][ T29] audit: type=1326 audit(1748852074.468:3219): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6468 comm="syz.2.754" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fa82999e969 code=0x7ffc0000 [ 113.070722][ T4005] usb 4-1: enqueue for inactive port 0 [ 113.078180][ T6465] EXT4-fs (loop3): ext4_check_descriptors: Inode bitmap for group 0 overlaps block group descriptors [ 113.089283][ T6465] EXT4-fs (loop3): ext4_check_descriptors: Checksum for group 0 failed (51554!=20869) [ 113.131948][ T6465] JBD2: no valid journal superblock found [ 113.137730][ T6465] EXT4-fs (loop3): Could not load journal inode [ 113.252649][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 113.384272][ T6465] netlink: 'syz.3.753': attribute type 1 has an invalid length. [ 113.392119][ T6465] netlink: 224 bytes leftover after parsing attributes in process `syz.3.753'. [ 113.590118][ T6496] loop1: detected capacity change from 0 to 512 [ 113.823293][ T6500] loop3: detected capacity change from 0 to 1024 [ 113.842225][ T6500] EXT4-fs: Ignoring removed bh option [ 113.847707][ T6500] EXT4-fs: inline encryption not supported [ 113.903651][ T6500] EXT4-fs (loop3): filesystem is read-only [ 113.938577][ T6500] EXT4-fs (loop3): ext4_check_descriptors: Checksum for group 0 failed (51269!=20869) [ 113.957480][ T6504] SELinux: failed to load policy [ 113.969590][ T6500] EXT4-fs (loop3): stripe (65535) is not aligned with cluster size (16), stripe is disabled [ 113.995031][ T6478] loop4: detected capacity change from 0 to 512 [ 114.008490][ T6500] EXT4-fs error (device loop3): ext4_get_journal_inode:5796: inode #32: comm syz.3.765: iget: special inode unallocated [ 114.026617][ T6478] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 114.040420][ T6500] EXT4-fs (loop3): no journal found [ 114.045747][ T6500] EXT4-fs (loop3): can't get journal size [ 114.074902][ T6500] EXT4-fs error (device loop3): ext4_protect_reserved_inode:160: inode #32: comm syz.3.765: iget: special inode unallocated [ 114.112177][ T6478] ext4 filesystem being mounted at /139/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 114.142476][ T6500] EXT4-fs (loop3): failed to initialize system zone (-117) [ 114.172009][ T6500] EXT4-fs (loop3): mount failed [ 114.350376][ T6515] netlink: 28 bytes leftover after parsing attributes in process `syz.3.765'. [ 114.376236][ T6516] vhci_hcd vhci_hcd.0: pdev(0) rhport(0) sockfd(4) [ 114.382797][ T6516] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 114.390534][ T6516] vhci_hcd vhci_hcd.0: Device attached [ 114.400014][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 114.411384][ T6515] netlink: 28 bytes leftover after parsing attributes in process `syz.3.765'. [ 114.440930][ T6521] loop0: detected capacity change from 0 to 512 [ 114.468450][ T6515] netlink: 28 bytes leftover after parsing attributes in process `syz.3.765'. [ 114.497854][ T6521] EXT4-fs (loop0): 1 orphan inode deleted [ 114.503763][ T6515] netlink: 28 bytes leftover after parsing attributes in process `syz.3.765'. [ 114.525878][ T6521] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 114.539728][ T37] EXT4-fs error (device loop0): ext4_release_dquot:6969: comm kworker/u8:2: Failed to release dquot type 1 [ 114.602338][ T6521] ext4 filesystem being mounted at /137/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 114.640093][ T6515] netlink: 28 bytes leftover after parsing attributes in process `syz.3.765'. [ 114.663067][ T9] usb 2-1: SetAddress Request (19) to port 0 [ 114.669128][ T9] usb 2-1: new SuperSpeed USB device number 19 using vhci_hcd [ 114.701187][ T6516] EXT4-fs (loop0): re-mounted 00000000-0000-0000-0000-000000000000. [ 114.713473][ T6516] EXT4-fs error (device loop0): ext4_lookup:1787: inode #15: comm syz.0.769: iget: bad i_size value: 360287970189639690 [ 114.731318][ T6517] vhci_hcd: connection reset by peer [ 114.737635][ T173] vhci_hcd: stop threads [ 114.737711][ T6515] netlink: 28 bytes leftover after parsing attributes in process `syz.3.765'. [ 114.741971][ T173] vhci_hcd: release socket [ 114.755251][ T173] vhci_hcd: disconnect device [ 114.760948][ T6534] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 114.767566][ T6534] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 114.775340][ T6534] vhci_hcd vhci_hcd.0: Device attached [ 114.786212][ T6537] loop4: detected capacity change from 0 to 512 [ 114.818144][ T6537] EXT4-fs (loop4): 1 orphan inode deleted [ 114.834659][ T173] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:5: Failed to release dquot type 1 [ 114.853446][ T6537] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 114.866743][ T6537] ext4 filesystem being mounted at /142/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 114.881520][ T6534] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000 ro. [ 114.890991][ T6534] EXT4-fs (loop4): warning: mounting fs with errors, running e2fsck is recommended [ 114.912505][ T6534] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000 r/w. [ 114.922981][ T6534] EXT4-fs error (device loop4): ext4_lookup:1787: inode #15: comm syz.4.772: iget: bad i_size value: 360287970189639690 [ 114.939315][ T6535] vhci_hcd: connection closed [ 114.939811][ T70] vhci_hcd: stop threads [ 114.948849][ T70] vhci_hcd: release socket [ 114.953315][ T70] vhci_hcd: disconnect device [ 115.035170][ T6554] ip6_tunnel: non-ECT from fc02:0000:0000:0000:0000:0000:0000:0000 with DS=0x2 [ 115.045931][ T6551] SELinux: failed to load policy [ 115.063864][ T6557] netlink: 4 bytes leftover after parsing attributes in process `syz.1.780'. [ 115.089340][ T6557] loop1: detected capacity change from 0 to 1024 [ 115.102099][ T6557] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 115.230346][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 115.256853][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 115.284065][ T6578] vhci_hcd vhci_hcd.0: pdev(0) rhport(0) sockfd(4) [ 115.290622][ T6578] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 115.298451][ T6578] vhci_hcd vhci_hcd.0: Device attached [ 115.317704][ T6578] loop0: detected capacity change from 0 to 512 [ 115.365267][ T6588] ip6_tunnel: non-ECT from fc02:0000:0000:0000:0000:0000:0000:0000 with DS=0x2 [ 115.367122][ T6578] EXT4-fs (loop0): 1 orphan inode deleted [ 115.401154][ T6578] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 115.414177][ T6589] SELinux: failed to load policy [ 115.419411][ T70] EXT4-fs error (device loop0): ext4_release_dquot:6969: comm kworker/u8:4: Failed to release dquot type 1 [ 115.433959][ T6578] ext4 filesystem being mounted at /138/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 115.462653][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 115.475009][ T6578] EXT4-fs (loop0): re-mounted 00000000-0000-0000-0000-000000000000. [ 115.505243][ T6578] EXT4-fs error (device loop0): ext4_lookup:1787: inode #15: comm syz.0.791: iget: bad i_size value: 360287970189639690 [ 115.527940][ T6599] loop1: detected capacity change from 0 to 1024 [ 115.545325][ T6579] vhci_hcd: connection closed [ 115.545828][ T70] vhci_hcd: stop threads [ 115.555021][ T70] vhci_hcd: release socket [ 115.559563][ T70] vhci_hcd: disconnect device [ 115.571900][ T6599] EXT4-fs: Ignoring removed oldalloc option [ 115.584050][ T6599] EXT4-fs (loop1): stripe (3) is not aligned with cluster size (16), stripe is disabled [ 115.626410][ T6599] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 115.686080][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 115.878120][ T6613] infiniband syz2: set active [ 115.883021][ T6613] infiniband syz2: added veth0_to_bond [ 115.922283][ T6613] RDS/IB: syz2: added [ 115.935287][ T6613] smc: adding ib device syz2 with port count 1 [ 115.941506][ T6613] smc: ib device syz2 port 1 has pnetid [ 116.080176][ T6624] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 116.086766][ T6624] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 116.094538][ T6624] vhci_hcd vhci_hcd.0: Device attached [ 116.103921][ T6624] loop4: detected capacity change from 0 to 512 [ 116.148731][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 116.159601][ T6628] netlink: 'syz.1.808': attribute type 10 has an invalid length. [ 116.167447][ T6628] netlink: 40 bytes leftover after parsing attributes in process `syz.1.808'. [ 116.179125][ T6624] EXT4-fs (loop4): 1 orphan inode deleted [ 116.192370][ T37] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:2: Failed to release dquot type 1 [ 116.226002][ T6624] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 116.239642][ T6624] ext4 filesystem being mounted at /149/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 116.252588][ T6636] SELinux: syz.3.811 (6636) wrote to /sys/fs/selinux/user! This will not be supported in the future; please update your userspace. [ 116.271507][ T6628] team0: Port device geneve1 added [ 116.286085][ T6630] SELinux: policydb version -845211227 does not match my version range 15-34 [ 116.295833][ T6630] SELinux: failed to load policy [ 116.302227][ T6628] syz.1.808 (6628) used greatest stack depth: 9920 bytes left [ 116.310915][ T6624] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000 ro. [ 116.324789][ T6624] EXT4-fs (loop4): warning: mounting fs with errors, running e2fsck is recommended [ 116.361936][ T1043] usb 10-1: SetAddress Request (20) to port 0 [ 116.368131][ T1043] usb 10-1: new SuperSpeed USB device number 20 using vhci_hcd [ 116.403547][ T6624] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000 r/w. [ 116.435661][ T6624] EXT4-fs error (device loop4): ext4_lookup:1787: inode #15: comm syz.4.807: iget: bad i_size value: 360287970189639690 [ 116.494469][ T6625] vhci_hcd: connection reset by peer [ 116.500028][ T37] vhci_hcd: stop threads [ 116.504365][ T37] vhci_hcd: release socket [ 116.508863][ T37] vhci_hcd: disconnect device [ 116.513849][ T6667] loop0: detected capacity change from 0 to 512 [ 116.883094][ T29] kauditd_printk_skb: 293 callbacks suppressed [ 116.883111][ T29] audit: type=1326 audit(1748852078.408:3509): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6686 comm="syz.3.831" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 117.132018][ T29] audit: type=1326 audit(1748852078.438:3510): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6686 comm="syz.3.831" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 117.155474][ T29] audit: type=1326 audit(1748852078.508:3511): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6691 comm="syz.1.830" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fee9e01e969 code=0x7ffc0000 [ 117.179015][ T29] audit: type=1326 audit(1748852078.508:3512): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6691 comm="syz.1.830" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fee9e01e969 code=0x7ffc0000 [ 117.202443][ T29] audit: type=1326 audit(1748852078.508:3513): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6691 comm="syz.1.830" exe="/root/syz-executor" sig=0 arch=c000003e syscall=322 compat=0 ip=0x7fee9e01e969 code=0x7ffc0000 [ 117.225795][ T29] audit: type=1326 audit(1748852078.508:3514): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6691 comm="syz.1.830" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fee9e01e969 code=0x7ffc0000 [ 117.249159][ T29] audit: type=1326 audit(1748852078.508:3515): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6691 comm="syz.1.830" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fee9e01e969 code=0x7ffc0000 [ 117.272530][ T29] audit: type=1326 audit(1748852078.538:3516): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6693 comm="syz.3.832" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 117.295863][ T29] audit: type=1326 audit(1748852078.538:3517): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6693 comm="syz.3.832" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 117.319263][ T29] audit: type=1326 audit(1748852078.538:3518): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6693 comm="syz.3.832" exe="/root/syz-executor" sig=0 arch=c000003e syscall=317 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 117.361184][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 117.391979][ T6708] SELinux: syz.3.840 (6708) wrote to /sys/fs/selinux/user! This will not be supported in the future; please update your userspace. [ 117.553641][ T6720] loop1: detected capacity change from 0 to 1024 [ 117.561237][ T6720] EXT4-fs (loop1): ext4_check_descriptors: Inode bitmap for group 0 overlaps block group descriptors [ 117.565868][ T6717] SELinux: failed to load policy [ 117.572209][ T6720] EXT4-fs (loop1): ext4_check_descriptors: Checksum for group 0 failed (51554!=20869) [ 117.589381][ T6720] JBD2: no valid journal superblock found [ 117.595241][ T6720] EXT4-fs (loop1): Could not load journal inode [ 117.639857][ T6726] netlink: 8 bytes leftover after parsing attributes in process `syz.4.846'. [ 117.834006][ T6733] loop4: detected capacity change from 0 to 1024 [ 117.881448][ T6733] EXT4-fs: Ignoring removed oldalloc option [ 117.907537][ T6733] EXT4-fs (loop4): stripe (3) is not aligned with cluster size (16), stripe is disabled [ 117.942886][ T6738] netlink: 4 bytes leftover after parsing attributes in process `syz.0.850'. [ 117.992620][ T6733] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 118.070398][ T6720] netlink: 'syz.1.845': attribute type 1 has an invalid length. [ 118.089142][ T6747] loop3: detected capacity change from 0 to 512 [ 118.188241][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 118.219592][ T6760] loop0: detected capacity change from 0 to 1024 [ 118.227504][ T6760] EXT4-fs: Ignoring removed oldalloc option [ 118.237660][ T6760] EXT4-fs (loop0): stripe (3) is not aligned with cluster size (16), stripe is disabled [ 118.577852][ T6760] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 118.693229][ T6772] loop1: detected capacity change from 0 to 2048 [ 118.813804][ T6772] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 118.814587][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 118.841083][ T6772] EXT4-fs error (device loop1): ext4_mb_generate_buddy:1220: group 0, block bitmap and bg descriptor inconsistent: 25 vs 4128793 free clusters [ 118.880185][ T6772] EXT4-fs (loop1): Delayed block allocation failed for inode 15 at logical offset 0 with max blocks 3 with error 28 [ 118.892639][ T6772] EXT4-fs (loop1): This should not happen!! Data will be lost [ 118.892639][ T6772] [ 118.902379][ T6772] EXT4-fs (loop1): Total free blocks count 0 [ 118.908394][ T6772] EXT4-fs (loop1): Free/Dirty block details [ 118.914372][ T6772] EXT4-fs (loop1): free_blocks=66060288 [ 118.919957][ T6772] EXT4-fs (loop1): dirty_blocks=16 [ 118.925174][ T6772] EXT4-fs (loop1): Block reservation details [ 118.931191][ T6772] EXT4-fs (loop1): i_reserved_data_blocks=1 [ 118.938724][ T6781] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(4) [ 118.945389][ T6781] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 118.953207][ T6781] vhci_hcd vhci_hcd.0: Device attached [ 118.981716][ T6781] loop4: detected capacity change from 0 to 512 [ 118.996159][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 119.088360][ T6781] EXT4-fs (loop4): 1 orphan inode deleted [ 119.126476][ T70] EXT4-fs error (device loop4): ext4_release_dquot:6969: comm kworker/u8:4: Failed to release dquot type 1 [ 119.158666][ T6791] FAULT_INJECTION: forcing a failure. [ 119.158666][ T6791] name fail_usercopy, interval 1, probability 0, space 0, times 0 [ 119.169580][ T6781] EXT4-fs (loop4): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 119.171794][ T6791] CPU: 0 UID: 0 PID: 6791 Comm: syz.1.863 Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) [ 119.171867][ T6791] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 119.171885][ T6791] Call Trace: [ 119.171894][ T6791] [ 119.171905][ T6791] __dump_stack+0x1d/0x30 [ 119.171933][ T6791] dump_stack_lvl+0xe8/0x140 [ 119.171961][ T6791] dump_stack+0x15/0x1b [ 119.171984][ T6791] should_fail_ex+0x265/0x280 [ 119.172013][ T6791] should_fail+0xb/0x20 [ 119.172111][ T6791] should_fail_usercopy+0x1a/0x20 [ 119.172142][ T6791] _copy_from_user+0x1c/0xb0 [ 119.172234][ T6791] __copy_msghdr+0x244/0x300 [ 119.172276][ T6791] ___sys_sendmsg+0x109/0x1d0 [ 119.172372][ T6791] __x64_sys_sendmsg+0xd4/0x160 [ 119.172426][ T6791] x64_sys_call+0x2999/0x2fb0 [ 119.172510][ T6791] do_syscall_64+0xd2/0x200 [ 119.172585][ T6791] ? arch_exit_to_user_mode_prepare+0x27/0x60 [ 119.172655][ T6791] ? clear_bhb_loop+0x40/0x90 [ 119.172685][ T6791] ? clear_bhb_loop+0x40/0x90 [ 119.172794][ T6791] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 119.172883][ T6791] RIP: 0033:0x7fee9e01e969 [ 119.172904][ T6791] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 119.172929][ T6791] RSP: 002b:00007fee9c687038 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 119.173013][ T6791] RAX: ffffffffffffffda RBX: 00007fee9e245fa0 RCX: 00007fee9e01e969 [ 119.173031][ T6791] RDX: 0000000000000000 RSI: 0000200000000100 RDI: 0000000000000003 [ 119.173047][ T6791] RBP: 00007fee9c687090 R08: 0000000000000000 R09: 0000000000000000 [ 119.173063][ T6791] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 119.173080][ T6791] R13: 0000000000000000 R14: 00007fee9e245fa0 R15: 00007fff599563c8 [ 119.173104][ T6791] [ 119.367817][ T6781] ext4 filesystem being mounted at /156/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 119.400018][ T6793] __nla_validate_parse: 8 callbacks suppressed [ 119.400039][ T6793] netlink: 4 bytes leftover after parsing attributes in process `syz.0.866'. [ 119.435543][ T6793] netlink: 4 bytes leftover after parsing attributes in process `syz.0.866'. [ 119.454702][ T6781] EXT4-fs (loop4): re-mounted 00000000-0000-0000-0000-000000000000. [ 119.500955][ T6781] EXT4-fs error (device loop4): ext4_lookup:1787: inode #15: comm syz.4.862: iget: bad i_size value: 360287970189639690 [ 119.512792][ T6793] netlink: 4 bytes leftover after parsing attributes in process `syz.0.866'. [ 119.536820][ T6793] netlink: 4 bytes leftover after parsing attributes in process `syz.0.866'. [ 119.590713][ T6782] vhci_hcd: connection closed [ 119.593040][ T37] vhci_hcd: stop threads [ 119.602154][ T37] vhci_hcd: release socket [ 119.606629][ T37] vhci_hcd: disconnect device [ 119.651374][ T6814] loop3: detected capacity change from 0 to 512 [ 119.761981][ T9] usb 2-1: device descriptor read/8, error -110 [ 119.829158][ T6821] loop0: detected capacity change from 0 to 1024 [ 119.840768][ T6821] EXT4-fs: Ignoring removed oldalloc option [ 120.187220][ T6821] EXT4-fs (loop0): stripe (3) is not aligned with cluster size (16), stripe is disabled [ 120.244086][ T6821] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 120.328038][ T6825] netlink: 'syz.2.878': attribute type 1 has an invalid length. [ 120.335755][ T6825] netlink: 224 bytes leftover after parsing attributes in process `syz.2.878'. [ 120.366149][ T9] usb 2-1: new SuperSpeed USB device number 19 using vhci_hcd [ 120.404966][ T9] usb 2-1: enqueue for inactive port 0 [ 120.410495][ T9] usb 2-1: enqueue for inactive port 0 [ 120.418102][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 120.435788][ T9] usb 2-1: enqueue for inactive port 0 [ 120.443933][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 120.549619][ T6840] loop0: detected capacity change from 0 to 512 [ 120.719311][ T6851] netlink: 4 bytes leftover after parsing attributes in process `syz.1.885'. [ 121.036479][ T6851] loop1: detected capacity change from 0 to 1024 [ 121.194212][ T6851] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 121.351191][ T6868] vhci_hcd vhci_hcd.0: pdev(3) rhport(0) sockfd(4) [ 121.357836][ T6868] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 121.365649][ T6868] vhci_hcd vhci_hcd.0: Device attached [ 121.383910][ T6868] loop3: detected capacity change from 0 to 512 [ 121.409665][ T6868] EXT4-fs (loop3): 1 orphan inode deleted [ 121.417051][ T6868] EXT4-fs (loop3): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 121.429937][ T37] EXT4-fs error (device loop3): ext4_release_dquot:6969: comm kworker/u8:2: Failed to release dquot type 1 [ 121.442045][ T1043] usb 10-1: device descriptor read/8, error -110 [ 121.455621][ T6868] ext4 filesystem being mounted at /179/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 121.500458][ T3316] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 121.553142][ T1043] usb 10-1: new SuperSpeed USB device number 20 using vhci_hcd [ 121.561666][ T6868] EXT4-fs (loop3): re-mounted 00000000-0000-0000-0000-000000000000. [ 121.572598][ T1043] usb 10-1: enqueue for inactive port 0 [ 121.582584][ T9] usb usb2-port1: attempt power cycle [ 121.588263][ T6887] EXT4-fs error (device loop3): ext4_lookup:1787: inode #15: comm syz.3.890: iget: bad i_size value: 360287970189639690 [ 121.616551][ T1043] usb 10-1: enqueue for inactive port 0 [ 121.622418][ T6883] SELinux: failed to load policy [ 121.630051][ T1043] usb 10-1: enqueue for inactive port 0 [ 121.630355][ T6892] vhci_hcd vhci_hcd.0: pdev(2) rhport(0) sockfd(4) [ 121.642261][ T6892] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 121.650054][ T6892] vhci_hcd vhci_hcd.0: Device attached [ 121.665885][ T6870] vhci_hcd: connection closed [ 121.666009][ T70] vhci_hcd: stop threads [ 121.672042][ T3394] usb 8-1: SetAddress Request (19) to port 0 [ 121.675195][ T70] vhci_hcd: release socket [ 121.683477][ T3394] usb 8-1: new SuperSpeed USB device number 19 using vhci_hcd [ 121.685703][ T70] vhci_hcd: disconnect device [ 121.721427][ T6903] loop0: detected capacity change from 0 to 1024 [ 121.731751][ T6903] EXT4-fs: Ignoring removed oldalloc option [ 121.736050][ T3394] usb 8-1: enqueue for inactive port 0 [ 121.758722][ T6893] vhci_hcd: connection closed [ 121.759165][ T173] vhci_hcd: stop threads [ 121.768228][ T173] vhci_hcd: release socket [ 121.772367][ T6903] EXT4-fs (loop0): stripe (3) is not aligned with cluster size (16), stripe is disabled [ 121.772675][ T173] vhci_hcd: disconnect device [ 121.792056][ T3394] usb 8-1: enqueue for inactive port 0 [ 121.801692][ T3394] usb 8-1: enqueue for inactive port 0 [ 121.819199][ T6903] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 121.838194][ T6911] loop1: detected capacity change from 0 to 512 [ 121.914255][ T3394] usb 8-1: new SuperSpeed USB device number 19 using vhci_hcd [ 121.942200][ T3394] usb 8-1: enqueue for inactive port 0 [ 121.955754][ T29] kauditd_printk_skb: 175 callbacks suppressed [ 121.955775][ T29] audit: type=1326 audit(1748852083.475:3692): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6914 comm="syz.4.907" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 121.956120][ T3394] usb 8-1: enqueue for inactive port 0 [ 121.962307][ T29] audit: type=1326 audit(1748852083.475:3693): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6914 comm="syz.4.907" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 122.014388][ T29] audit: type=1326 audit(1748852083.475:3694): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6914 comm="syz.4.907" exe="/root/syz-executor" sig=0 arch=c000003e syscall=332 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 122.028244][ T3394] usb 8-1: enqueue for inactive port 0 [ 122.037835][ T29] audit: type=1326 audit(1748852083.475:3695): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6914 comm="syz.4.907" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 122.088502][ T6922] loop0: detected capacity change from 0 to 512 [ 122.188808][ T6928] netlink: 4 bytes leftover after parsing attributes in process `syz.4.912'. [ 122.209853][ T6928] netlink: 4 bytes leftover after parsing attributes in process `syz.4.912'. [ 122.326156][ T29] audit: type=1400 audit(1748852083.805:3696): avc: denied { bind } for pid=6933 comm="syz.3.913" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rawip_socket permissive=1 [ 122.345645][ T29] audit: type=1400 audit(1748852083.805:3697): avc: denied { node_bind } for pid=6933 comm="syz.3.913" saddr=224.0.0.1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:node_t tclass=rawip_socket permissive=1 [ 122.367025][ T29] audit: type=1400 audit(1748852083.805:3698): avc: denied { connect } for pid=6933 comm="syz.3.913" laddr=224.0.0.1 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rawip_socket permissive=1 [ 122.388118][ T29] audit: type=1400 audit(1748852083.805:3699): avc: denied { mount } for pid=6933 comm="syz.3.913" name="/" dev="cgroup2" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:cgroup_t tclass=filesystem permissive=1 [ 122.716751][ T6942] vhci_hcd vhci_hcd.0: pdev(2) rhport(0) sockfd(4) [ 122.723408][ T6942] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 122.731240][ T6942] vhci_hcd vhci_hcd.0: Device attached [ 122.833416][ T6943] vhci_hcd: connection closed [ 122.833913][ T70] vhci_hcd: stop threads [ 122.842934][ T70] vhci_hcd: release socket [ 122.847358][ T70] vhci_hcd: disconnect device [ 122.858392][ T29] audit: type=1326 audit(1748852084.285:3700): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6946 comm="syz.3.916" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 122.881842][ T29] audit: type=1326 audit(1748852084.285:3701): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6946 comm="syz.3.916" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 122.916159][ T6928] netlink: 4 bytes leftover after parsing attributes in process `syz.4.912'. [ 122.925203][ T6928] netlink: 4 bytes leftover after parsing attributes in process `syz.4.912'. [ 123.108788][ T6959] loop3: detected capacity change from 0 to 4096 [ 123.212475][ T3394] usb usb8-port1: attempt power cycle [ 123.267221][ T6969] vhci_hcd vhci_hcd.0: pdev(3) rhport(0) sockfd(4) [ 123.272162][ T1043] usb usb10-port1: attempt power cycle [ 123.273774][ T6969] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 123.287041][ T6969] vhci_hcd vhci_hcd.0: Device attached [ 123.324657][ T6974] loop3: detected capacity change from 0 to 512 [ 123.347666][ T6973] loop0: detected capacity change from 0 to 1024 [ 123.361978][ T3394] usb 8-1: SetAddress Request (21) to port 0 [ 123.368031][ T3394] usb 8-1: new SuperSpeed USB device number 21 using vhci_hcd [ 123.466697][ T6974] EXT4-fs (loop3): 1 orphan inode deleted [ 123.490059][ T173] EXT4-fs error (device loop3): ext4_release_dquot:6969: comm kworker/u8:5: Failed to release dquot type 1 [ 123.512769][ T6974] ext4 filesystem being mounted at /186/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 123.597753][ T6969] EXT4-fs (loop3): re-mounted 00000000-0000-0000-0000-000000000000. [ 123.626153][ T6970] vhci_hcd: connection reset by peer [ 123.631718][ T70] vhci_hcd: stop threads [ 123.636068][ T70] vhci_hcd: release socket [ 123.640656][ T70] vhci_hcd: disconnect device [ 124.086877][ T6994] loop1: detected capacity change from 0 to 2048 [ 124.119421][ T6994] EXT4-fs error (device loop1): ext4_mb_generate_buddy:1220: group 0, block bitmap and bg descriptor inconsistent: 25 vs 4128793 free clusters [ 124.151226][ T6994] EXT4-fs (loop1): Delayed block allocation failed for inode 15 at logical offset 0 with max blocks 3 with error 28 [ 124.163623][ T6994] EXT4-fs (loop1): This should not happen!! Data will be lost [ 124.163623][ T6994] [ 124.173329][ T6994] EXT4-fs (loop1): Total free blocks count 0 [ 124.179356][ T6994] EXT4-fs (loop1): Free/Dirty block details [ 124.185392][ T6994] EXT4-fs (loop1): free_blocks=66060288 [ 124.190972][ T6994] EXT4-fs (loop1): dirty_blocks=16 [ 124.196141][ T6994] EXT4-fs (loop1): Block reservation details [ 124.202220][ T6994] EXT4-fs (loop1): i_reserved_data_blocks=1 [ 124.259385][ T7008] loop0: detected capacity change from 0 to 1024 [ 124.267085][ T7008] EXT4-fs: Ignoring removed oldalloc option [ 124.274154][ T7008] EXT4-fs (loop0): stripe (3) is not aligned with cluster size (16), stripe is disabled [ 124.301195][ T9] usb usb2-port1: unable to enumerate USB device [ 124.478248][ T7021] loop1: detected capacity change from 0 to 512 [ 124.629569][ T7030] loop3: detected capacity change from 0 to 512 [ 124.932061][ T7044] loop4: detected capacity change from 0 to 1024 [ 124.953379][ T7044] EXT4-fs: Ignoring removed oldalloc option [ 125.171701][ T7044] EXT4-fs (loop4): stripe (3) is not aligned with cluster size (16), stripe is disabled [ 125.274935][ T7057] __nla_validate_parse: 3 callbacks suppressed [ 125.274952][ T7057] netlink: 4 bytes leftover after parsing attributes in process `syz.2.952'. [ 125.393047][ T7062] rdma_rxe: rxe_newlink: failed to add veth0_to_bond [ 125.585953][ T1043] usb usb10-port1: unable to enumerate USB device [ 125.641757][ T7073] loop0: detected capacity change from 0 to 512 [ 125.985426][ T7088] FAULT_INJECTION: forcing a failure. [ 125.985426][ T7088] name fail_usercopy, interval 1, probability 0, space 0, times 0 [ 125.998733][ T7088] CPU: 0 UID: 0 PID: 7088 Comm: syz.4.965 Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) [ 125.998771][ T7088] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 125.998784][ T7088] Call Trace: [ 125.998792][ T7088] [ 125.998800][ T7088] __dump_stack+0x1d/0x30 [ 125.998895][ T7088] dump_stack_lvl+0xe8/0x140 [ 125.998922][ T7088] dump_stack+0x15/0x1b [ 125.998947][ T7088] should_fail_ex+0x265/0x280 [ 125.998969][ T7088] should_fail+0xb/0x20 [ 125.998987][ T7088] should_fail_usercopy+0x1a/0x20 [ 125.999011][ T7088] _copy_to_user+0x20/0xa0 [ 125.999056][ T7088] io_register_iowq_max_workers+0x34d/0x470 [ 125.999173][ T7088] __se_sys_io_uring_register+0xdce/0xeb0 [ 125.999232][ T7088] ? fput+0x8f/0xc0 [ 125.999286][ T7088] ? ksys_write+0x192/0x1a0 [ 125.999311][ T7088] __x64_sys_io_uring_register+0x55/0x70 [ 125.999413][ T7088] x64_sys_call+0xc91/0x2fb0 [ 125.999462][ T7088] do_syscall_64+0xd2/0x200 [ 125.999517][ T7088] ? arch_exit_to_user_mode_prepare+0x27/0x60 [ 125.999548][ T7088] ? clear_bhb_loop+0x40/0x90 [ 125.999570][ T7088] ? clear_bhb_loop+0x40/0x90 [ 125.999599][ T7088] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 125.999690][ T7088] RIP: 0033:0x7f87c4d3e969 [ 125.999709][ T7088] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 125.999732][ T7088] RSP: 002b:00007f87c33a7038 EFLAGS: 00000246 ORIG_RAX: 00000000000001ab [ 125.999753][ T7088] RAX: ffffffffffffffda RBX: 00007f87c4f65fa0 RCX: 00007f87c4d3e969 [ 125.999766][ T7088] RDX: 0000200000001bc0 RSI: 0000000000000013 RDI: 0000000000000003 [ 125.999829][ T7088] RBP: 00007f87c33a7090 R08: 0000000000000000 R09: 0000000000000000 [ 125.999890][ T7088] R10: 0000000000000002 R11: 0000000000000246 R12: 0000000000000001 [ 125.999903][ T7088] R13: 0000000000000000 R14: 00007f87c4f65fa0 R15: 00007ffc671978e8 [ 126.000002][ T7088] [ 126.272329][ T7093] rdma_rxe: rxe_newlink: failed to add veth0_to_bond [ 126.542382][ T7109] SELinux: policydb version -845211227 does not match my version range 15-34 [ 126.581823][ T7109] SELinux: failed to load policy [ 126.714662][ T7113] loop1: detected capacity change from 0 to 1024 [ 126.739862][ T7113] EXT4-fs (loop1): ext4_check_descriptors: Inode bitmap for group 0 overlaps block group descriptors [ 126.750875][ T7113] EXT4-fs (loop1): ext4_check_descriptors: Checksum for group 0 failed (51554!=20869) [ 126.779333][ T7111] SELinux: failed to load policy [ 126.784780][ T7113] JBD2: no valid journal superblock found [ 126.790620][ T7113] EXT4-fs (loop1): Could not load journal inode [ 126.864401][ T7117] loop3: detected capacity change from 0 to 2048 [ 126.903744][ T7113] netlink: 'syz.1.975': attribute type 1 has an invalid length. [ 126.911463][ T7113] netlink: 224 bytes leftover after parsing attributes in process `syz.1.975'. [ 126.927263][ T7117] EXT4-fs error (device loop3): ext4_mb_generate_buddy:1220: group 0, block bitmap and bg descriptor inconsistent: 25 vs 4128793 free clusters [ 126.951916][ T7117] EXT4-fs (loop3): Delayed block allocation failed for inode 15 at logical offset 0 with max blocks 3 with error 28 [ 126.964202][ T7117] EXT4-fs (loop3): This should not happen!! Data will be lost [ 126.964202][ T7117] [ 126.973906][ T7117] EXT4-fs (loop3): Total free blocks count 0 [ 126.979933][ T7117] EXT4-fs (loop3): Free/Dirty block details [ 126.985939][ T7117] EXT4-fs (loop3): free_blocks=66060288 [ 126.991524][ T7117] EXT4-fs (loop3): dirty_blocks=16 [ 126.996677][ T7117] EXT4-fs (loop3): Block reservation details [ 127.002715][ T7117] EXT4-fs (loop3): i_reserved_data_blocks=1 [ 127.016920][ T7124] netlink: 4 bytes leftover after parsing attributes in process `syz.1.977'. [ 127.042232][ T7124] loop1: detected capacity change from 0 to 1024 [ 127.063682][ T29] kauditd_printk_skb: 158 callbacks suppressed [ 127.063701][ T29] audit: type=1326 audit(1748852088.592:3859): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7116 comm="syz.3.976" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 127.123085][ T29] audit: type=1326 audit(1748852088.622:3860): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7116 comm="syz.3.976" exe="/root/syz-executor" sig=0 arch=c000003e syscall=257 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 127.146766][ T29] audit: type=1326 audit(1748852088.622:3861): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7116 comm="syz.3.976" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 127.170136][ T29] audit: type=1326 audit(1748852088.622:3862): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7116 comm="syz.3.976" exe="/root/syz-executor" sig=0 arch=c000003e syscall=16 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 127.193486][ T29] audit: type=1326 audit(1748852088.622:3863): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7116 comm="syz.3.976" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 127.216955][ T29] audit: type=1326 audit(1748852088.622:3864): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7116 comm="syz.3.976" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f6e0c5be969 code=0x7ffc0000 [ 127.263554][ T7127] loop3: detected capacity change from 0 to 512 [ 127.709893][ T7135] rdma_rxe: rxe_newlink: failed to add veth0_to_bond [ 127.897192][ T29] audit: type=1326 audit(1748852089.422:3865): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7138 comm="syz.4.982" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 127.967323][ T7142] netlink: 4 bytes leftover after parsing attributes in process `syz.4.983'. [ 127.973897][ T29] audit: type=1326 audit(1748852089.452:3866): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7138 comm="syz.4.982" exe="/root/syz-executor" sig=0 arch=c000003e syscall=332 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 127.999661][ T29] audit: type=1326 audit(1748852089.452:3867): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7138 comm="syz.4.982" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f87c4d3e969 code=0x7ffc0000 [ 128.051206][ T7142] loop4: detected capacity change from 0 to 1024 [ 128.520188][ T3394] usb 8-1: device descriptor read/8, error -110 [ 128.577384][ T3323] EXT4-fs unmount: 19 callbacks suppressed [ 128.577403][ T3323] EXT4-fs (loop4): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 128.609473][ T29] audit: type=1400 audit(1748852090.122:3868): avc: denied { create } for pid=7150 comm="syz.3.986" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=kcm_socket permissive=1 [ 128.636104][ T3394] usb 8-1: new SuperSpeed USB device number 21 using vhci_hcd [ 128.662277][ T7157] capability: warning: `syz.3.986' uses 32-bit capabilities (legacy support in use) [ 128.662375][ T3394] usb 8-1: enqueue for inactive port 0 [ 128.719528][ T3394] usb 8-1: enqueue for inactive port 0 [ 128.793519][ T3394] usb 8-1: enqueue for inactive port 0 [ 128.806786][ T7162] SELinux: failed to load policy [ 128.958742][ T7186] loop4: detected capacity change from 0 to 512 [ 128.988416][ T7190] netlink: 4 bytes leftover after parsing attributes in process `syz.0.998'. [ 129.058014][ T7193] FAULT_INJECTION: forcing a failure. [ 129.058014][ T7193] name failslab, interval 1, probability 0, space 0, times 0 [ 129.070761][ T7193] CPU: 0 UID: 0 PID: 7193 Comm: syz.2.1000 Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) [ 129.070793][ T7193] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 129.070853][ T7193] Call Trace: [ 129.070861][ T7193] [ 129.070949][ T7193] __dump_stack+0x1d/0x30 [ 129.070978][ T7193] dump_stack_lvl+0xe8/0x140 [ 129.071031][ T7193] dump_stack+0x15/0x1b [ 129.071050][ T7193] should_fail_ex+0x265/0x280 [ 129.071154][ T7193] should_failslab+0x8c/0xb0 [ 129.071217][ T7193] __kmalloc_noprof+0xa5/0x3e0 [ 129.071291][ T7193] ? bpf_map_meta_alloc+0x116/0x340 [ 129.071334][ T7193] bpf_map_meta_alloc+0x116/0x340 [ 129.071366][ T7193] htab_of_map_alloc+0x21/0x80 [ 129.071455][ T7193] map_create+0x843/0xb90 [ 129.071480][ T7193] ? security_bpf+0x2b/0x90 [ 129.071513][ T7193] __sys_bpf+0x5ab/0x790 [ 129.071546][ T7193] __x64_sys_bpf+0x41/0x50 [ 129.071662][ T7193] x64_sys_call+0x2478/0x2fb0 [ 129.071691][ T7193] do_syscall_64+0xd2/0x200 [ 129.071722][ T7193] ? arch_exit_to_user_mode_prepare+0x27/0x60 [ 129.071754][ T7193] ? clear_bhb_loop+0x40/0x90 [ 129.071782][ T7193] ? clear_bhb_loop+0x40/0x90 [ 129.071825][ T7193] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 129.071858][ T7193] RIP: 0033:0x7fa82999e969 [ 129.071878][ T7193] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 129.071974][ T7193] RSP: 002b:00007fa828007038 EFLAGS: 00000246 ORIG_RAX: 0000000000000141 [ 129.071998][ T7193] RAX: ffffffffffffffda RBX: 00007fa829bc5fa0 RCX: 00007fa82999e969 [ 129.072012][ T7193] RDX: 0000000000000050 RSI: 00002000000008c0 RDI: 0000000000000000 [ 129.072026][ T7193] RBP: 00007fa828007090 R08: 0000000000000000 R09: 0000000000000000 [ 129.072042][ T7193] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 129.072082][ T7193] R13: 0000000000000000 R14: 00007fa829bc5fa0 R15: 00007ffe71337638 [ 129.072107][ T7193] [ 129.280676][ T7190] loop0: detected capacity change from 0 to 1024 [ 129.302367][ T7198] netlink: 12 bytes leftover after parsing attributes in process `syz.1.1001'. [ 129.383559][ T7190] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 129.580672][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 129.705042][ T7220] SELinux: failed to load policy [ 129.818345][ T7235] vhci_hcd vhci_hcd.0: pdev(2) rhport(0) sockfd(4) [ 129.825264][ T7235] vhci_hcd vhci_hcd.0: devid(0) speed(5) speed_str(super-speed) [ 129.833096][ T7235] vhci_hcd vhci_hcd.0: Device attached [ 129.871564][ T7239] loop0: detected capacity change from 0 to 2048 [ 129.889504][ T7236] vhci_hcd: connection closed [ 129.889777][ T70] vhci_hcd: stop threads [ 129.898997][ T70] vhci_hcd: release socket [ 129.903534][ T70] vhci_hcd: disconnect device [ 129.932234][ T3394] usb usb8-port1: unable to enumerate USB device [ 129.943233][ T7239] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 129.955970][ T7248] SELinux: Context Ü is not valid (left unmapped). [ 129.972251][ T7239] EXT4-fs error (device loop0): ext4_mb_generate_buddy:1220: group 0, block bitmap and bg descriptor inconsistent: 25 vs 4128793 free clusters [ 129.984797][ T7248] SELinux: Context attr is not valid (left unmapped). [ 129.987191][ T7239] EXT4-fs (loop0): Delayed block allocation failed for inode 15 at logical offset 0 with max blocks 3 with error 28 [ 130.006147][ T7239] EXT4-fs (loop0): This should not happen!! Data will be lost [ 130.006147][ T7239] [ 130.015999][ T7239] EXT4-fs (loop0): Total free blocks count 0 [ 130.022475][ T7239] EXT4-fs (loop0): Free/Dirty block details [ 130.028826][ T7239] EXT4-fs (loop0): free_blocks=66060288 [ 130.034470][ T7239] EXT4-fs (loop0): dirty_blocks=16 [ 130.039632][ T7239] EXT4-fs (loop0): Block reservation details [ 130.045722][ T7239] EXT4-fs (loop0): i_reserved_data_blocks=1 [ 130.088339][ T7251] netlink: 24 bytes leftover after parsing attributes in process `syz.1.1016'. [ 130.153191][ T7251] SELinux: Context system_u:object_r:usbmon_device_t:s0 is not valid (left unmapped). [ 130.171179][ T3325] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 130.271141][ T3318] ================================================================== [ 130.279309][ T3318] BUG: KCSAN: data-race in pollwake / pollwake [ 130.285500][ T3318] [ 130.287845][ T3318] write to 0xffffc900014ef9e0 of 4 bytes by task 3325 on cpu 0: [ 130.295505][ T3318] pollwake+0xb6/0x100 [ 130.299591][ T3318] __wake_up_sync_key+0x52/0x80 [ 130.304440][ T3318] anon_pipe_write+0x8ba/0xaa0 [ 130.309209][ T3318] vfs_write+0x4a0/0x8e0 [ 130.313451][ T3318] ksys_write+0xda/0x1a0 [ 130.317694][ T3318] __x64_sys_write+0x40/0x50 [ 130.322289][ T3318] x64_sys_call+0x2cdd/0x2fb0 [ 130.327006][ T3318] do_syscall_64+0xd2/0x200 [ 130.331526][ T3318] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 130.337422][ T3318] [ 130.339739][ T3318] write to 0xffffc900014ef9e0 of 4 bytes by task 3318 on cpu 1: [ 130.347364][ T3318] pollwake+0xb6/0x100 [ 130.351434][ T3318] __wake_up_sync_key+0x52/0x80 [ 130.356293][ T3318] anon_pipe_write+0x8ba/0xaa0 [ 130.361091][ T3318] vfs_write+0x4a0/0x8e0 [ 130.365334][ T3318] ksys_write+0xda/0x1a0 [ 130.370011][ T3318] __x64_sys_write+0x40/0x50 [ 130.374601][ T3318] x64_sys_call+0x2cdd/0x2fb0 [ 130.379279][ T3318] do_syscall_64+0xd2/0x200 [ 130.383816][ T3318] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 130.389708][ T3318] [ 130.392033][ T3318] value changed: 0x00000000 -> 0x00000001 [ 130.397755][ T3318] [ 130.400079][ T3318] Reported by Kernel Concurrency Sanitizer on: [ 130.406222][ T3318] CPU: 1 UID: 0 PID: 3318 Comm: syz-executor Not tainted 6.15.0-syzkaller-10820-gcd2e103d57e5 #0 PREEMPT(voluntary) SYZFAIL: failed to send rpc fd=3 want=56 sent=0 n=-1 (errno 32: Broken pipe) [ 130.418456][ T3318] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 130.428510][ T3318] ================================================================== [ 130.584851][ T7235] EXT4-fs (loop2): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 130.814042][ T12] netdevsim netdevsim0 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 130.885007][ T12] netdevsim netdevsim0 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 130.944511][ T12] netdevsim netdevsim0 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 130.995056][ T12] netdevsim netdevsim0 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 131.079455][ T12] bridge_slave_1: left allmulticast mode [ 131.085211][ T12] bridge_slave_1: left promiscuous mode [ 131.090862][ T12] bridge0: port 2(bridge_slave_1) entered disabled state [ 131.098861][ T12] bridge_slave_0: left allmulticast mode [ 131.104574][ T12] bridge_slave_0: left promiscuous mode [ 131.110403][ T12] bridge0: port 1(bridge_slave_0) entered disabled state [ 131.214070][ T12] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 131.224165][ T12] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 131.233861][ T12] bond0 (unregistering): Released all slaves [ 131.293497][ T12] hsr_slave_0: left promiscuous mode [ 131.299327][ T12] hsr_slave_1: left promiscuous mode [ 131.305348][ T12] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 131.312865][ T12] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 131.322155][ T12] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 131.329607][ T12] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 131.340385][ T12] veth1_macvtap: left promiscuous mode [ 131.346014][ T12] veth0_macvtap: left promiscuous mode [ 131.351551][ T12] veth1_vlan: left promiscuous mode [ 131.357115][ T12] veth0_vlan: left promiscuous mode [ 131.418185][ T12] team0 (unregistering): Port device team_slave_1 removed [ 131.427631][ T12] team0 (unregistering): Port device team_slave_0 removed