Warning: Permanently added '10.128.10.0' (ED25519) to the list of known hosts. 2025/05/31 14:21:34 ignoring optional flag "sandboxArg"="0" 2025/05/31 14:21:35 parsed 1 programs [ 98.806100][ T4602] Adding 124996k swap on ./swap-file. Priority:0 extents:1 across:124996k FS [ 101.124809][ T154] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 101.132783][ T154] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 101.162656][ T144] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready [ 101.178272][ T144] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 101.187344][ T144] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 101.197820][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready [ 102.538812][ T4673] chnl_net:caif_netlink_parms(): no params data found [ 102.582213][ T4673] bridge0: port 1(bridge_slave_0) entered blocking state [ 102.589485][ T4673] bridge0: port 1(bridge_slave_0) entered disabled state [ 102.597646][ T4673] device bridge_slave_0 entered promiscuous mode [ 102.605832][ T4673] bridge0: port 2(bridge_slave_1) entered blocking state [ 102.612956][ T4673] bridge0: port 2(bridge_slave_1) entered disabled state [ 102.621263][ T4673] device bridge_slave_1 entered promiscuous mode [ 102.644624][ T4673] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 102.655831][ T4673] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 102.679894][ T4673] team0: Port device team_slave_0 added [ 102.687689][ T4673] team0: Port device team_slave_1 added [ 102.706572][ T4673] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 102.713675][ T4673] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 102.739844][ T4673] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 102.751887][ T4673] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 102.759075][ T4673] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 102.785351][ T4673] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 102.817732][ T4673] device hsr_slave_0 entered promiscuous mode [ 102.824850][ T4673] device hsr_slave_1 entered promiscuous mode [ 103.381493][ T4673] netdevsim netdevsim0 netdevsim0: renamed from eth0 [ 103.391405][ T4673] netdevsim netdevsim0 netdevsim1: renamed from eth1 [ 103.402486][ T4673] netdevsim netdevsim0 netdevsim2: renamed from eth2 [ 103.415338][ T4673] netdevsim netdevsim0 netdevsim3: renamed from eth3 [ 103.469753][ T4673] bridge0: port 2(bridge_slave_1) entered blocking state [ 103.476905][ T4673] bridge0: port 2(bridge_slave_1) entered forwarding state [ 103.484355][ T4673] bridge0: port 1(bridge_slave_0) entered blocking state [ 103.491456][ T4673] bridge0: port 1(bridge_slave_0) entered forwarding state [ 103.545806][ T154] bridge0: port 1(bridge_slave_0) entered disabled state [ 103.561726][ T154] bridge0: port 2(bridge_slave_1) entered disabled state [ 103.625773][ T4673] 8021q: adding VLAN 0 to HW filter on device bond0 [ 103.640945][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 103.650403][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready [ 103.664452][ T4673] 8021q: adding VLAN 0 to HW filter on device team0 [ 103.676906][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready [ 103.687258][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready [ 103.697314][ T9] bridge0: port 1(bridge_slave_0) entered blocking state [ 103.704575][ T9] bridge0: port 1(bridge_slave_0) entered forwarding state [ 103.725281][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready [ 103.735708][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready [ 103.744864][ T9] bridge0: port 2(bridge_slave_1) entered blocking state [ 103.751952][ T9] bridge0: port 2(bridge_slave_1) entered forwarding state [ 103.762634][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready [ 103.774840][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready [ 103.815111][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready [ 103.825271][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready [ 103.834274][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready [ 103.843123][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready [ 103.852559][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready [ 103.861694][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready [ 103.875042][ T4673] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network [ 103.887178][ T4673] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready [ 103.895923][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready [ 103.904660][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready [ 103.913196][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready [ 104.060068][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready [ 104.068162][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready [ 104.089275][ T4673] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 104.143097][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready [ 104.153538][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready [ 104.173861][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready [ 104.182660][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready [ 104.193773][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready [ 104.201702][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready [ 104.214360][ T4673] device veth0_vlan entered promiscuous mode [ 104.227770][ T4673] device veth1_vlan entered promiscuous mode [ 104.292508][ T4673] device veth0_macvtap entered promiscuous mode [ 104.301337][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan0: link becomes ready [ 104.310939][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan1: link becomes ready [ 104.320791][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready [ 104.329934][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready [ 104.344070][ T4673] device veth1_macvtap entered promiscuous mode [ 104.358048][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready [ 104.368625][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): macsec0: link becomes ready [ 104.385231][ T4673] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 104.394893][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready [ 104.404659][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready [ 104.417663][ T4673] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 104.430833][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready [ 104.441028][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready [ 104.452811][ T4673] netdevsim netdevsim0 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 104.465683][ T4673] netdevsim netdevsim0 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 104.477046][ T4673] netdevsim netdevsim0 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 104.487805][ T4673] netdevsim netdevsim0 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 2025/05/31 14:21:46 executed programs: 0 [ 105.906292][ T4775] chnl_net:caif_netlink_parms(): no params data found [ 106.026699][ T4775] bridge0: port 1(bridge_slave_0) entered blocking state [ 106.034397][ T4775] bridge0: port 1(bridge_slave_0) entered disabled state [ 106.048211][ T4775] device bridge_slave_0 entered promiscuous mode [ 106.059212][ T4775] bridge0: port 2(bridge_slave_1) entered blocking state [ 106.066775][ T4775] bridge0: port 2(bridge_slave_1) entered disabled state [ 106.078385][ T4775] device bridge_slave_1 entered promiscuous mode [ 106.110410][ T4775] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 106.127124][ T4775] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 106.186403][ T4775] team0: Port device team_slave_0 added [ 106.214944][ T4775] team0: Port device team_slave_1 added [ 106.259752][ T4775] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 106.273425][ T4775] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 106.323866][ T4775] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 106.354061][ T4775] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 106.361047][ T4775] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 106.389130][ T4775] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 106.462168][ T4775] device hsr_slave_0 entered promiscuous mode [ 106.469636][ T4775] device hsr_slave_1 entered promiscuous mode [ 106.479555][ T4775] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 106.505613][ T4775] Cannot create hsr debugfs directory [ 106.623963][ T1476] netdevsim netdevsim0 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 107.693561][ T4668] Bluetooth: hci0: command 0x0409 tx timeout [ 109.766425][ T1111] Bluetooth: hci0: command 0x041b tx timeout [ 109.839506][ T1476] netdevsim netdevsim0 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 109.901146][ T1476] netdevsim netdevsim0 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 109.959774][ T1476] netdevsim netdevsim0 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 110.777091][ T4775] netdevsim netdevsim0 netdevsim0: renamed from eth0 [ 110.790679][ T4775] netdevsim netdevsim0 netdevsim1: renamed from eth1 [ 110.801232][ T4775] netdevsim netdevsim0 netdevsim2: renamed from eth2 [ 110.812035][ T4775] netdevsim netdevsim0 netdevsim3: renamed from eth3 [ 110.890830][ T4775] 8021q: adding VLAN 0 to HW filter on device bond0 [ 110.905541][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 110.914257][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready [ 110.924775][ T4775] 8021q: adding VLAN 0 to HW filter on device team0 [ 110.935536][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bridge: link becomes ready [ 110.944385][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_0: link becomes ready [ 110.952773][ T9] bridge0: port 1(bridge_slave_0) entered blocking state [ 110.960313][ T9] bridge0: port 1(bridge_slave_0) entered forwarding state [ 110.968397][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): bridge0: link becomes ready [ 110.990991][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready [ 111.000083][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready [ 111.009053][ T9] bridge0: port 2(bridge_slave_1) entered blocking state [ 111.016253][ T9] bridge0: port 2(bridge_slave_1) entered forwarding state [ 111.026223][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready [ 111.042972][ T1476] device hsr_slave_0 left promiscuous mode [ 111.049655][ T1476] device hsr_slave_1 left promiscuous mode [ 111.057066][ T1476] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 111.064781][ T1476] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 111.072528][ T1476] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 111.080205][ T1476] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 111.088368][ T1476] device bridge_slave_1 left promiscuous mode [ 111.094871][ T1476] bridge0: port 2(bridge_slave_1) entered disabled state [ 111.103176][ T1476] device bridge_slave_0 left promiscuous mode [ 111.109820][ T1476] bridge0: port 1(bridge_slave_0) entered disabled state [ 111.121722][ T1476] device veth1_macvtap left promiscuous mode [ 111.127896][ T1476] device veth0_macvtap left promiscuous mode [ 111.134029][ T1476] device veth1_vlan left promiscuous mode [ 111.139801][ T1476] device veth0_vlan left promiscuous mode [ 111.284791][ T1476] team0 (unregistering): Port device team_slave_1 removed [ 111.299635][ T1476] team0 (unregistering): Port device team_slave_0 removed [ 111.311320][ T1476] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 111.326494][ T1476] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 111.383127][ T1476] bond0 (unregistering): Released all slaves [ 111.452822][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready [ 111.466533][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready [ 111.475619][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready [ 111.485298][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready [ 111.494107][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready [ 111.502755][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready [ 111.517589][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready [ 111.529765][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready [ 111.547455][ T4775] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network [ 111.559230][ T4775] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready [ 111.568035][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready [ 111.576770][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready [ 111.692199][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready [ 111.700080][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready [ 111.714418][ T4775] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 111.735969][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready [ 111.744930][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready [ 111.764246][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready [ 111.772715][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready [ 111.781631][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready [ 111.790443][ T9] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready [ 111.799818][ T4775] device veth0_vlan entered promiscuous mode [ 111.811692][ T4775] device veth1_vlan entered promiscuous mode [ 111.835054][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan0: link becomes ready [ 111.843791][ T4275] Bluetooth: hci0: command 0x040f tx timeout [ 111.851227][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan1: link becomes ready [ 111.861574][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready [ 111.871557][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready [ 111.882762][ T4775] device veth0_macvtap entered promiscuous mode [ 111.893156][ T4775] device veth1_macvtap entered promiscuous mode [ 111.914097][ T4775] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 111.921732][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready [ 111.931106][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): macsec0: link becomes ready [ 111.940008][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready [ 111.949470][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready [ 111.962366][ T4775] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 111.971438][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready [ 111.981051][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready [ 111.992755][ T4775] netdevsim netdevsim0 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 112.003005][ T4775] netdevsim netdevsim0 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 112.012469][ T4775] netdevsim netdevsim0 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 112.023150][ T4775] netdevsim netdevsim0 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 112.092665][ T154] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 112.103760][ T154] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 112.115625][ T4312] IPv6: ADDRCONF(NETDEV_CHANGE): wlan0: link becomes ready [ 112.138895][ T4312] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 112.147765][ T4312] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 112.157736][ T154] IPv6: ADDRCONF(NETDEV_CHANGE): wlan1: link becomes ready 2025/05/31 14:21:53 executed programs: 2 [ 112.474589][ T4275] usb 1-1: new high-speed USB device number 2 using dummy_hcd [ 112.834032][ T4275] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x7 has invalid wMaxPacketSize 0 [ 112.844337][ T4275] usb 1-1: config 0 interface 0 altsetting 0 bulk endpoint 0x7 has invalid maxpacket 0 [ 112.854490][ T4275] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x89 has an invalid bInterval 229, changing to 11 [ 112.866006][ T4275] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x89 has invalid maxpacket 17664, setting to 1024 [ 112.953568][ T4275] usb 1-1: New USB device found, idVendor=2040, idProduct=2000, bcdDevice=65.72 [ 112.962652][ T4275] usb 1-1: New USB device strings: Mfr=151, Product=0, SerialNumber=0 [ 112.971024][ T4275] usb 1-1: Manufacturer: syz [ 112.981560][ T4275] usb 1-1: config 0 descriptor?? [ 113.004294][ T5073] raw-gadget.0 gadget: fail, usb_ep_enable returned -22 [ 113.027153][ T4275] smsusb:smsusb_probe: board id=9, interface number 0 [ 113.075689][ T4275] smsusb:siano_media_device_register: media controller created [ 113.085212][ T4275] ------------[ cut here ]------------ [ 113.090678][ T4275] usb 1-1: BOGUS urb xfer, pipe 3 != type 1 [ 113.097351][ T4275] WARNING: CPU: 0 PID: 4275 at drivers/usb/core/urb.c:503 usb_submit_urb+0xc81/0x1980 [ 113.107148][ T4275] Modules linked in: [ 113.111069][ T4275] CPU: 0 PID: 4275 Comm: kworker/0:7 Not tainted 5.15.184-syzkaller #0 [ 113.119490][ T4275] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 113.130060][ T4275] Workqueue: usb_hub_wq hub_event [ 113.135285][ T4275] RIP: 0010:usb_submit_urb+0xc81/0x1980 [ 113.140858][ T4275] Code: 8a 4c 89 f0 48 c1 e8 03 42 0f b6 04 28 84 c0 0f 85 09 09 00 00 45 8b 06 48 c7 c7 80 64 a4 8a 48 89 ee 4c 89 e2 e8 8f 7d c7 03 <0f> 0b 44 8b 64 24 3c 8b 6c 24 30 44 0f b6 74 24 08 4c 89 f7 48 c7 [ 113.160748][ T4275] RSP: 0018:ffffc9000304ebc0 EFLAGS: 00010246 [ 113.166897][ T4275] RAX: 9a2a6f5bfab17800 RBX: ffff88807bb40030 RCX: ffff888022471dc0 [ 113.174953][ T4275] RDX: 0000000000000000 RSI: 0000000080000000 RDI: 0000000000000000 [ 113.182974][ T4275] RBP: ffffffff8aa4ce00 R08: dffffc0000000000 R09: fffff52000609cdd [ 113.191086][ T4275] R10: fffff52000609cdd R11: 1ffff92000609cdc R12: ffff888019fadf28 [ 113.199139][ T4275] R13: dffffc0000000000 R14: ffffffff8aa4626c R15: ffff88807bfff0f8 [ 113.207349][ T4275] FS: 0000000000000000(0000) GS:ffff8880b9000000(0000) knlGS:0000000000000000 [ 113.216533][ T4275] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 113.223149][ T4275] CR2: 00007f9cf42b2da0 CR3: 000000001da8b000 CR4: 00000000003506f0 [ 113.231415][ T4275] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 113.239570][ T4275] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 113.247710][ T4275] Call Trace: [ 113.251000][ T4275] [ 113.254060][ T4275] smsusb_start_streaming+0x2d4/0x540 [ 113.259477][ T4275] smsusb_probe+0x1607/0x1d10 [ 113.264267][ T4275] ? lme_coldreset+0xd0/0xd0 [ 113.268963][ T4275] ? smsusb1_detectmode+0x260/0x260 [ 113.274327][ T4275] ? _raw_spin_unlock_irqrestore+0x82/0x100 [ 113.280281][ T4275] ? pm_runtime_enable+0x115/0x300 [ 113.285667][ T4275] ? __pm_runtime_set_status+0x87f/0xb50 [ 113.291336][ T4275] usb_probe_interface+0x5a0/0xaf0 [ 113.296561][ T4275] ? usb_register_driver+0x3d0/0x3d0 [ 113.301979][ T4275] really_probe+0x284/0xc80 [ 113.306652][ T4275] __driver_probe_device+0x18c/0x330 [ 113.311960][ T4275] driver_probe_device+0x4f/0x420 [ 113.317097][ T4275] __device_attach_driver+0x2b0/0x500 [ 113.322490][ T4275] ? deferred_probe_work_func+0x230/0x230 [ 113.328285][ T4275] bus_for_each_drv+0x175/0x200 [ 113.333696][ T4275] ? _raw_spin_unlock+0x40/0x40 [ 113.338586][ T4275] ? subsys_find_device_by_id+0x350/0x350 [ 113.344406][ T4275] __device_attach+0x29b/0x460 [ 113.349195][ T4275] ? kobject_uevent_env+0x371/0x890 [ 113.354476][ T4275] ? device_attach+0x20/0x20 [ 113.359110][ T4275] ? kobject_uevent_env+0x371/0x890 [ 113.364669][ T4275] bus_probe_device+0xbc/0x1e0 [ 113.369464][ T4275] ? device_add+0x97c/0xfb0 [ 113.374065][ T4275] device_add+0xa00/0xfb0 [ 113.378423][ T4275] usb_set_configuration+0x1991/0x1fd0 [ 113.383961][ T4275] usb_generic_driver_probe+0x89/0x150 [ 113.389440][ T4275] usb_probe_device+0x139/0x270 [ 113.394469][ T4275] ? usb_register_device_driver+0x230/0x230 [ 113.400392][ T4275] really_probe+0x284/0xc80 [ 113.405026][ T4275] __driver_probe_device+0x18c/0x330 [ 113.410354][ T4275] driver_probe_device+0x4f/0x420 [ 113.415575][ T4275] __device_attach_driver+0x2b0/0x500 [ 113.420969][ T4275] ? deferred_probe_work_func+0x230/0x230 [ 113.426843][ T4275] bus_for_each_drv+0x175/0x200 [ 113.431867][ T4275] ? _raw_spin_unlock+0x40/0x40 [ 113.437065][ T4275] ? subsys_find_device_by_id+0x350/0x350 [ 113.442814][ T4275] ? lockdep_hardirqs_on+0x94/0x140 [ 113.448236][ T4275] __device_attach+0x29b/0x460 [ 113.453028][ T4275] ? device_attach+0x20/0x20 [ 113.457771][ T4275] ? kobject_uevent_env+0x371/0x890 [ 113.462991][ T4275] bus_probe_device+0xbc/0x1e0 [ 113.467964][ T4275] ? device_add+0x97c/0xfb0 [ 113.472612][ T4275] device_add+0xa00/0xfb0 [ 113.477120][ T4275] usb_new_device+0xd53/0x1640 [ 113.481926][ T4275] ? lock_chain_count+0x20/0x20 [ 113.487089][ T4275] ? usb_disconnect+0x8a0/0x8a0 [ 113.491970][ T4275] ? _raw_spin_unlock_irq+0x1f/0x40 [ 113.497328][ T4275] ? lockdep_hardirqs_on+0x94/0x140 [ 113.502577][ T4275] hub_event+0x295c/0x4fa0 [ 113.507106][ T4275] ? led_work+0x6e0/0x6e0 [ 113.511507][ T4275] ? read_lock_is_recursive+0x10/0x10 [ 113.517235][ T4275] ? _raw_spin_unlock_irqrestore+0xaa/0x100 [ 113.523404][ T4275] ? _raw_spin_unlock+0x40/0x40 [ 113.528285][ T4275] ? _raw_spin_unlock_irq+0x1f/0x40 [ 113.533568][ T4275] process_one_work+0x863/0x1000 [ 113.538712][ T4275] ? worker_detach_from_pool+0x240/0x240 [ 113.545421][ T4275] ? lockdep_hardirqs_off+0x70/0x100 [ 113.550725][ T4275] ? _raw_spin_lock_irq+0xab/0xe0 [ 113.555885][ T4275] ? _raw_spin_lock_irqsave+0xf0/0xf0 [ 113.561284][ T4275] ? wq_worker_running+0x97/0x170 [ 113.566386][ T4275] worker_thread+0xaa8/0x12a0 [ 113.571104][ T4275] kthread+0x436/0x520 [ 113.575323][ T4275] ? rcu_lock_release+0x20/0x20 [ 113.580212][ T4275] ? kthread_blkcg+0xd0/0xd0 [ 113.584961][ T4275] ret_from_fork+0x1f/0x30 [ 113.589404][ T4275] [ 113.592424][ T4275] Kernel panic - not syncing: kernel: panic_on_warn set ... [ 113.599690][ T4275] CPU: 0 PID: 4275 Comm: kworker/0:7 Not tainted 5.15.184-syzkaller #0 [ 113.607924][ T4275] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 113.617972][ T4275] Workqueue: usb_hub_wq hub_event [ 113.623082][ T4275] Call Trace: [ 113.626357][ T4275] [ 113.629282][ T4275] dump_stack_lvl+0x168/0x230 [ 113.633958][ T4275] ? show_regs_print_info+0x20/0x20 [ 113.639150][ T4275] ? load_image+0x3b0/0x3b0 [ 113.643669][ T4275] panic+0x2c9/0x7f0 [ 113.647593][ T4275] ? bpf_jit_dump+0xd0/0xd0 [ 113.652127][ T4275] ? ret_from_fork+0x1f/0x30 [ 113.657059][ T4275] ? usb_submit_urb+0xc81/0x1980 [ 113.661994][ T4275] __warn+0x248/0x2b0 [ 113.665967][ T4275] ? usb_submit_urb+0xc81/0x1980 [ 113.670898][ T4275] report_bug+0x1b7/0x2e0 [ 113.675225][ T4275] handle_bug+0x3a/0x70 [ 113.679378][ T4275] exc_invalid_op+0x16/0x40 [ 113.683921][ T4275] asm_exc_invalid_op+0x16/0x20 [ 113.688778][ T4275] RIP: 0010:usb_submit_urb+0xc81/0x1980 [ 113.694352][ T4275] Code: 8a 4c 89 f0 48 c1 e8 03 42 0f b6 04 28 84 c0 0f 85 09 09 00 00 45 8b 06 48 c7 c7 80 64 a4 8a 48 89 ee 4c 89 e2 e8 8f 7d c7 03 <0f> 0b 44 8b 64 24 3c 8b 6c 24 30 44 0f b6 74 24 08 4c 89 f7 48 c7 [ 113.714324][ T4275] RSP: 0018:ffffc9000304ebc0 EFLAGS: 00010246 [ 113.720391][ T4275] RAX: 9a2a6f5bfab17800 RBX: ffff88807bb40030 RCX: ffff888022471dc0 [ 113.728364][ T4275] RDX: 0000000000000000 RSI: 0000000080000000 RDI: 0000000000000000 [ 113.736338][ T4275] RBP: ffffffff8aa4ce00 R08: dffffc0000000000 R09: fffff52000609cdd [ 113.744330][ T4275] R10: fffff52000609cdd R11: 1ffff92000609cdc R12: ffff888019fadf28 [ 113.752378][ T4275] R13: dffffc0000000000 R14: ffffffff8aa4626c R15: ffff88807bfff0f8 [ 113.760402][ T4275] smsusb_start_streaming+0x2d4/0x540 [ 113.765816][ T4275] smsusb_probe+0x1607/0x1d10 [ 113.770624][ T4275] ? lme_coldreset+0xd0/0xd0 [ 113.775238][ T4275] ? smsusb1_detectmode+0x260/0x260 [ 113.780467][ T4275] ? _raw_spin_unlock_irqrestore+0x82/0x100 [ 113.786396][ T4275] ? pm_runtime_enable+0x115/0x300 [ 113.791544][ T4275] ? __pm_runtime_set_status+0x87f/0xb50 [ 113.797200][ T4275] usb_probe_interface+0x5a0/0xaf0 [ 113.802343][ T4275] ? usb_register_driver+0x3d0/0x3d0 [ 113.807718][ T4275] really_probe+0x284/0xc80 [ 113.812223][ T4275] __driver_probe_device+0x18c/0x330 [ 113.817529][ T4275] driver_probe_device+0x4f/0x420 [ 113.822550][ T4275] __device_attach_driver+0x2b0/0x500 [ 113.827917][ T4275] ? deferred_probe_work_func+0x230/0x230 [ 113.833628][ T4275] bus_for_each_drv+0x175/0x200 [ 113.838491][ T4275] ? _raw_spin_unlock+0x40/0x40 [ 113.843531][ T4275] ? subsys_find_device_by_id+0x350/0x350 [ 113.849275][ T4275] __device_attach+0x29b/0x460 [ 113.854039][ T4275] ? kobject_uevent_env+0x371/0x890 [ 113.859233][ T4275] ? device_attach+0x20/0x20 [ 113.863845][ T4275] ? kobject_uevent_env+0x371/0x890 [ 113.869045][ T4275] bus_probe_device+0xbc/0x1e0 [ 113.873796][ T4275] ? device_add+0x97c/0xfb0 [ 113.878391][ T4275] device_add+0xa00/0xfb0 [ 113.882714][ T4275] usb_set_configuration+0x1991/0x1fd0 [ 113.888197][ T4275] usb_generic_driver_probe+0x89/0x150 [ 113.893654][ T4275] usb_probe_device+0x139/0x270 [ 113.898513][ T4275] ? usb_register_device_driver+0x230/0x230 [ 113.904412][ T4275] really_probe+0x284/0xc80 [ 113.908912][ T4275] __driver_probe_device+0x18c/0x330 [ 113.914187][ T4275] driver_probe_device+0x4f/0x420 [ 113.919293][ T4275] __device_attach_driver+0x2b0/0x500 [ 113.924655][ T4275] ? deferred_probe_work_func+0x230/0x230 [ 113.930453][ T4275] bus_for_each_drv+0x175/0x200 [ 113.935292][ T4275] ? _raw_spin_unlock+0x40/0x40 [ 113.940136][ T4275] ? subsys_find_device_by_id+0x350/0x350 [ 113.945857][ T4275] ? lockdep_hardirqs_on+0x94/0x140 [ 113.951164][ T4275] __device_attach+0x29b/0x460 [ 113.955929][ T4275] ? device_attach+0x20/0x20 [ 113.960546][ T4275] ? kobject_uevent_env+0x371/0x890 [ 113.965751][ T4275] bus_probe_device+0xbc/0x1e0 [ 113.970594][ T4275] ? device_add+0x97c/0xfb0 [ 113.975085][ T4275] device_add+0xa00/0xfb0 [ 113.979414][ T4275] usb_new_device+0xd53/0x1640 [ 113.984183][ T4275] ? lock_chain_count+0x20/0x20 [ 113.989027][ T4275] ? usb_disconnect+0x8a0/0x8a0 [ 113.993880][ T4275] ? _raw_spin_unlock_irq+0x1f/0x40 [ 113.999100][ T4275] ? lockdep_hardirqs_on+0x94/0x140 [ 114.004402][ T4275] hub_event+0x295c/0x4fa0 [ 114.008848][ T4275] ? led_work+0x6e0/0x6e0 [ 114.013166][ T4275] ? read_lock_is_recursive+0x10/0x10 [ 114.018542][ T4275] ? _raw_spin_unlock_irqrestore+0xaa/0x100 [ 114.024530][ T4275] ? _raw_spin_unlock+0x40/0x40 [ 114.029382][ T4275] ? _raw_spin_unlock_irq+0x1f/0x40 [ 114.034576][ T4275] process_one_work+0x863/0x1000 [ 114.039523][ T4275] ? worker_detach_from_pool+0x240/0x240 [ 114.045152][ T4275] ? lockdep_hardirqs_off+0x70/0x100 [ 114.050465][ T4275] ? _raw_spin_lock_irq+0xab/0xe0 [ 114.055546][ T4275] ? _raw_spin_lock_irqsave+0xf0/0xf0 [ 114.060944][ T4275] ? wq_worker_running+0x97/0x170 [ 114.065962][ T4275] worker_thread+0xaa8/0x12a0 [ 114.070652][ T4275] kthread+0x436/0x520 [ 114.074887][ T4275] ? rcu_lock_release+0x20/0x20 [ 114.079729][ T4275] ? kthread_blkcg+0xd0/0xd0 [ 114.084332][ T4275] ret_from_fork+0x1f/0x30 [ 114.088771][ T4275] [ 114.092013][ T4275] Kernel Offset: disabled [ 114.096460][ T4275] Rebooting in 86400 seconds..