last executing test programs: 3m52.720563137s ago: executing program 4 (id=88): syz_mount_image$exfat(&(0x7f00000005c0), &(0x7f0000000240)='./file0\x00', 0x3000050, &(0x7f0000000600)=ANY=[], 0x2, 0x14fe, &(0x7f0000002180)="$eJzs3Au0ztXWMPA511p/NklPkvuaa/55kssiSXJJSCRJkiS5JSRJkoTEJrckJCH3JPeQ3GIn9/st9yQ5kiQJCUnWN3Q6n/e8nfftnO+c7/V9Z8/fGGvsNff/mfNZa889nv9ljL2/7Ti4av1qlesyM/xT8M9fUgEgBQD6AcA1ABABQKlspbIBDoNMGlP/uTcR/1oPTbvSKxBXkvQ/fZP+p2/S//RN+p++Sf/TN+l/+ib9T9+k/0KkZ1un575WRvod/3PP/0Ge//8/R87//0YOFxvz5fpi13f6B1Kk/+mb9D99k/6nb9L/9E36n75J///NRQCV/pvD0v/0TfovRHp2pZ8/y7iy40r//gkhhBBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCCCGESB/OhcsMAPxlfqXXJYQQQgghhBBCiH+dkPFKr0AIIYQQQgghhBD/9yEo0GAgggyQEVIgE2SGqyALXA1Z4RpIwLWQDa6D7HA95ICckAtyQx7IC/nAAoEDhhjyQwFIwg1QEG6EQlAYikBR8FAMisNNUAJuhpJwC5SCW6E03AZloCyUg/JwO1SAO6AiVILKcCdUgbugKlSDu6E63AM14F6oCfdBLbgfasMDUAcehLrwENSDh6E+PAIN4FFoCI2gMTSBpv9H+S9CV3gJukF3SIUe0BNehl7QG/pAX+gHr0B/eBUGwGswEAbBYHgdhsAbMBTehGEwHEbAWzASRsFoGANjYRyMh7dhArwDE+FdmASTYQpMhWkwHWbAezATZsFseB/mwAcwF+bBfFgAC+FDWASLIQ0+giXwMSyFZbAcVsBKWAWrYQ2shXWwHjbARtgEm2ELbIVPYBtshx2wE3bBbtgDn8Je+Az2weewH774B/PP/qf8TggIqFChQYMZMAOmYApmxsyYBbNgVsyKCUxgNsyG2TE75sAcmAtzYR7Mg/kwHxISMjLmx/yYxCQWxIJYCAthESyCHj0Wx+JYAm/GklgSS2EpLI2lsQyWxbJYHstjBayAFbEiVsbKWAWrYFWsinfj3XgP1sAaWBNrYi2shbWxNtbBOlgX62I9rIf1sT42wAbYEBtiY2yMTbEpNsNm2BybY0tsia2wFbbG1tgG22BbbIvtsB22x/bYATtgR+yInbAzdsYX8UV8CV/C7lhF9cCe2BN7YS/sg32xL76C/fFVfBVfw4E4CAfj6/g6voFD8QwOw+E4AkdgBTUKR+MYZDUOx+N4nIATcCJOxEk4GSfjVJyG03EGzsCZOAtn4fs4Bz/AD3AezsMFuBAX4iJcjGmYhkvwLC7FZbgcV+BKXIUrcQ2uxTW4HjfgetyEm3ALbsFP8BPcjttxJ+7E3bgbP8VP8TP8DAfiftyPB/AAHsSDeAgP4WE8jEfwCB7Fo3gMj+FxPI4n8CSewpN4Gk/jGTyL5/AcnsfzeAGfz/N1vd2F1w0EdYlRRmVQGVSKSlGZVWaVRWVRWVVWlVAJlU1lU9lVdpVD5VC5VC6VR+VR+VQ+RYoUq1jlV/lVUiVVQVVQFVKFVBFVRHnlVXFVXJVQJVRJVVKVUreq0uo2VUaVVS18eVVeVVAtfUVVSVVWlVUVdZeqqqqpaqq6qq5qqBqqpqqpaqlaqrZ6QNVRPbAPPqQudaa+GoQN1GBsqBqpxqqJegMfU83UUGyuWqiW6gk1HIdha9XMt1FPq7ZqNLZTz6ox+JzqoMZhR/WC6qQ6qy7qRdVVNffdMvz2EaimYi/VW/VRfdVMvEtd6lhV9ZoaqAapwep1tQDfUEPVm2qYGq5GqLfUSDVKjVZj1Fg1To1Xb6sJ6h01Ub2rJqnJaoqaqqap6WqGek/NVLPUbPW+mqM+UHPVPDVfLVAL1YdqkVqs0tRHaon6WC1Vy9RytUKtVKvUarVGrVXr1Hq1QW1Um9RmtUVtVZ+obWq72qF2ql1qt9qjPlV71Wdqn/pc7VdfqAPqT+qg+lIdUl+pw+prdUR9o46qb9Ux9Z06rr5XJ9RJdUr9oE6rH9UZdVadUz+p8+pndUH9oi6qoECjVlproyOdQWfUKTqTzqyv0ln01TqrvkYn9LU6m75OZ9fX6xw6p86lc+s8Oq/Op60m7TTrWOfXBXRS36AL6ht1IV1YF9FFtdfFdHF9ky6hb9Yl9S26lL5Vl9a36TK6rC6ny+vbdQV9h66oK+nK+k5dRd+lq+pq+m5dXd+ja+h7dU19n66l79e19QO6jn5Q19UP6Xr6YV1fP6Ib6Ed1Q91IN9ZNdFP9mG6mH9fNdQvdUj+hW+kndWv9lG6jn9Zt9TO6nX5Wt9fP6Q76ed1Rv6A76c66i/5FX9RBd9PddaruoXvql3Uv3Vv30X11P/2K7q9f1QP0a3qgHqQH69f1EP2GHqrf1MP0cD1Cv6VH6lF6tB6jx+pxerx+W0/Q7+iJ+l09SU/WU/RUPU1P131+qzT778h/52/kD/j13bforfoTvU1v1zv0Tr1L79Z79B69V+/V+/Q+vV/v1wf0AX1QH9SH9CF9WB/WR/QRfVQf1cf0MX1cH9cn9En9k/5Bn9Y/6jP6rD6rf9Ln9Xl94befARg0ymhjTGQymIwmxWQymc1VJou52mQ115iEudZkM9eZ7OZ6k8PkNLlMbpPH5DX5jDVknGETm/ymgEmaG0xBc6MpZAqbIqao8aaYKW5u+qfz/2h9TU1T08w0M81Nc9PStDStTCvT2rQ2bUwb09a0Ne1MO9PetDcdTAfT0XQ0nUwn08V0MV1NV9PNdDOpJtX0NC+bXqa36WP6mn7mFdPf9DcDzAAz0Aw0g81gM8QMMUPNUDPMDDMjzAgz0ow0o81oM9aMNePNeDPBTDATzUQzyUwyU8wUM81MMzPMDDPTzDSzzWwzx8wxc81cM9/MNwvNQrPILDJpJs0sMUvMUrPMLDMrzAqzyqwya8was86sMxvMBrPJbDJLzVaz1Wwz28wOs8PsMrvMHrPH7DV7zT6zz+w3+80Bc8AcNAfNIXPIHDaHzRFzxBw1R80xc8wcN8fNCXPCnDKnzGlz2pwxZ8w5c86cN+fNBXPBXDQXL132RSpSkYlMlCHKEKVEKVHmKHOUJcoSZY2yRokoEWWLskXZo+ujHFHOKFeUO8oT5Y1SwUYUuYijOMofFYiS0Q1RwejGqFBUOCoSFY18VCwqHt0UlYhujkpGt0Sloluj0tFtUZmobFQuKh/dHlWI7ogqRpWiytGdUZXorqhqVC26O6oe3RPViO6Nakb3RbWi+6Pa0QNRnejBqG70UFQvejiqHz0SNYgejRpGjaLGUZOo6b+0fghncj7uu9nuNtX2sD3ty7aX7W372L62n33F9rev2gH2NTvQDrKD7et2iH3DDrVv2mF2uB1h37Ij7Sg72o6xY+04O96+bSfYd+xE+66dZCfbKXaqnWan2xn2PTvTzrKz7ft2jv3AzrXz7Hy7wC60H9pFdrFNsx/ZJfZju9Qus8vtCrvSrrKr7Rq71q6z6+0Gu9FuspvtFrvVfmK32e12h91pd9nddo/91O61n9l99nO7335hD9g/2YP2S3vIfmUP26/tEfuNPWq/tcfsd/a4/d6esCftKfuDPW1/tGfsWXvO/mTP25/tBfuLvWjDpYv7S6d3MmQoA2WgFEqhzJSZslAWykpZKUEJykbZKDtlpxyUg3JRLspDeSgf5aNLmJjyU35KUpIKUkEqRIWoCBUhT56KU3EqQSWoJJWkUlSKSlNpKkNlqByVo9vpdrqD7qBKVInupDvpLrqLqlE1qk7VqQbVoJpUk2pRLapNtakO1aG6VJfqUT2qT/WpATWghtSQGlNjakpNqRk1o+bUnFpSS2pFrag1taY21IbaUltqR+2oPbWnDtSBOlJH6kSdqAt1oa7UlbpRN0qlVOpJPakX9aI+1If6UT/qT/1pAA2ggTSQBtNgGkJDaCgNpWE0nEbQWzSSRtFoGkNjaRyNp/E0gSbQRJpIk2gSTaEpNI2m0QyaQTNpJs2m2TSH5tBcmkvzaT4tpIW0iBZRGqXRElpCS2kpLafltJJW0mpaTWtpLa2n9bSRNtJm2kxbaStto220g3bQLtpFe2gP7aW9tI/20X7aTwfoAB2kg3SIDtFhOkxH6AgdpaN0jI7RcTpOJ+gEnaJTdJpO0xk6Q+foHJ2nn+kC/UIXKVCKU5DZXeWyuKtdVneNS3GZ3KU4AoBLcS6X2+VxeV0+Z10Ol/OvYnLOFXKFXRFX1HlXzBV3N/0uLuPKunKuvLvdVXB3uIq/i6u7e1wNd6+r6e5z1dzdfxXXcve72u4RV8c96uq6Rq6ea+Lqu0dcA/eoa+gaucauiWvlnnSt3VOujXvatXXP/C5e5Ba7tW6dW+82uL3uM3fO/eSOum/defez6+a6u37uFdffveoGuNfcQDfod/EI95Yb6Ua50W6MG+vG/S6e4qa6aW66m+HeczPdrN/FC92Hbo5Lc3PdPDffLfg1vrSmNPeRW+I+dkvdMrfcrXAr3Sq32q3532td4Ta5zW6L2+M+ddvcdrfD7XS73O5f40v72Oc+d/vdF+6I+8YddF+6Q+6YO+y+/jW+tL9j7jt33H3vTriT7pT7wZ12P7oz7uyv+7+09x/cL+6iCw4YWbFmwxFn4Iycwpk4M1/FWfhqzsrXcIKv5Wx8HWfn6zkH5+RcnJvzcF7Ox5aJHTPHnJ8LcJJv4IJ8IxfiwlyEi7LnYlycb+ISfDOX5Fu4FN/Kpfk2LsNluRyX59u5At/BFbkSV+Y7uUoIXJWr8d1cne/hGnwv1+T7uBbfz7X5Aa7DD3Jdfojr8cNcnx/hBvwoN+RG3JibcFN+jJvx49ycW3BLfoJb8ZPcmp/iNvw0t+VnuB0/y+35Oe7Az3NHfoE7cWfuwi9yV36Ju3F3TuUe3JNf5l7cm/twX+7Hr3B/fpUH8Gs8kAfxYH6dh/AbPJTf5GE8nEfwWzySR/FoHsNjeRyP57d5Ar/DE/ldnsSTeQpP5Wk8nWfwezyTZ/Fsfp/n8Ac8l+fxfF7AC/lDXsSLOY0/4iX8MS/lZbycV/BKXsWreQ2v5XW8njfwRt7Em3kLb+VPeBtv5x28k3fxbt7Dn/Je/oz38ee8n7/gA/wnPshf8iH+ig/z13yEv+Gj/C0f4+/4OH/PJ/gkn+If+DT/yGf4LJ/jn/g8/8wX+Be+yIEhxljFOjZxFGeIM8YpcaY4c3xVnCW+Os4aXxMn4mvjbPF1cfb4+jhHnDPOFeeO88R543yxjSl2McdxnD8uECfjG+KC8Y1xobhwXCQuGvu4WFw8vikuEd8cl4xviUvFt8al49viMnHZ+JH7yse3xxXiO+KKcaW4cnxnXCW+K64aV4vvjqvH98Q14nvjmvF9ccn4/rh2/EBcJ34wrhs/FNeLH47rx4/EDeJH44Zxo7hx3CRuGj8WN4sfj5vHLeKW8RNxq/jJuHX8VNwmfjpuGz/zh8dT4x5xz/jl+OU4hHv1/OSC5MLkh8lFycXJtORHySXJj5NLk8uSy5MrkiuTq5Krk2uSa5PrkuuTG5Ibk5uSm5NbkiFUywgevfLaGx/5DD6jT/GZfGZ/lc/ir/ZZ/TU+4a/12fx1Pru/3ufwOX0un9vn8Xl9Pm89eefZxz6/L+CT/gZf0N/oC/nCvogv6r0v5ov7Jr6pb+qb+cd9c9/Ct/RP+Cf8k/5J/5R/yj/t2/pnfDv/rG/vn/Md/PP+ef+C7+Q7+y7+Rd/Vv+S7+e4+1af6nr6n7+V7+T6+j+/n+/n+vr8f4Af4gX6gH+wH+yF+iB/qh/phfpgf4Uf4kX6kH+1H+7F+rB/vx/sJfoKf6Cf6SX6Sn+Kn+Gl+mp/hZ/iZfqaf7Wf7OYXm+Ll+rp/v5/uFfqFf5Bf5NJ/ml/glfqlf6pf75X6lX+lX+9V+rV/r1/v1fqPf6Df7zX6r3+q3+W1+h9/hd/ldfo/f4/f6vX6f3+f3+/3+gD/gD/qD/pD/yh/2X/sj/ht/1H/rj/nv/HH/vT/hT/pT/gd/2v/oz/iz/pz/yZ/3P/sL/hd/0Qc/PvF2YkLincTExLuJSYnJiSmJqYlpiemJGYn3EjMTsxKzE+8n5iQ+SMxNzEvMTyxILEx8mFiUWJxIS3yUWJL4OLE0sSyxPLEisTKxKhFC3m1xyB8KhGS4IRQMN4ZCoXAoEooGH4qF4uGmUCLcHEqGW0KpcGsoHW4LZULZUC48GhqGRqFxaBKahsdCs/B4aB5ahJbhidAqPBlah6dCm/B0aBueCe3Cs6F9eC50CM+HjuGF0Cl0Dl3Ci6FreCl0C91DaugReoaXQ6/QO/QJfUO/8EroH14NA8JrYWAYFAaH18OQ8EYYGt4Mw8LwMCK8FUaGUWF0GBPGhnFhfHg7TAjvhInh3TApTA5TwtQwLUwPM8J7YWaYFWaH98Oc8EGYG+aF+WFBWBg+DIvC4pAWPgpLwsdhaVgWlocVYWVYFVaHNWFtWBfWhw1hY9gUNoctYWv4JGwL28OOsDPsCrvDnvBp2Bs+C/vC52F/+CIcCH8KB8OX4VD4KhwOX4cj4ZtwNHwbjoXvwvHwfTgRToZT4YdwOvwYzoSz4Vz4KZwPP4cL4ZdwUf5mTQghhBDi76L/4HiPv/G9DACgfpv3BICrt+c+/J9rbszx53lvladVAgCe7t7xob+MKlVSU1N/e+1SDVGBeQCQ+Ov6f4mXQUt4EtpACyjxN9fXW3U+z39QP3krQOb/kJMCl+PL9W/+L+o/9sSIRaXjc9n+m/rzAAoVuJyTCS7Hl+uX/C/q52z2B+vP9OV4gOb/IScLXI4v1y8Oj8Mz0OavXimEEEIIIYQQQvxZb1Wu/R/dP1+6P89jLudkhMvxH92fCyGEEEIIIYQQ4sp7rnOXpx5r06ZF+79vgr89F/jHsmQiE5n8fza50p9MQgghhBBCiH+1yxf9V3olQgghhBBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCCCFE+vU/8e/ErvQehRBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCCCGEEEIIIYQQQgghhBBCiCvtfwUAAP//luw5aQ==") mount$bind(&(0x7f00000002c0)='.\x00', &(0x7f0000000200)='./file0\x00', 0x0, 0x101091, 0x0) chroot(&(0x7f0000000080)='./file0/file0\x00') pivot_root(&(0x7f00000001c0)='./file0\x00', &(0x7f0000000240)='./file0/../file0\x00') 3m52.044247562s ago: executing program 4 (id=93): r0 = syz_usb_connect(0x5, 0x24, &(0x7f0000000080)=ANY=[@ANYBLOB="1201000007794608cd0c39007b90000000010902120001fc0000000904"], 0x0) syz_usb_control_io$cdc_ecm(r0, 0x0, 0x0) r1 = syz_open_dev$I2C(&(0x7f0000000000), 0x1, 0x402) write(r1, 0x0, 0x0) 3m50.204216911s ago: executing program 4 (id=101): syz_mount_image$udf(&(0x7f0000000c40), &(0x7f0000000140)='./file0\x00', 0x0, &(0x7f0000000000)=ANY=[@ANYBLOB='noadinicb,nostrict,mode=00000000000000000000004,uid=forget,noadinicb,umask=00000000000000040002000,lastblock=00000000000000000013,undelete,partition=00000000000000000005,\x00'], 0x47, 0xc11, &(0x7f0000000d00)="$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") syz_mount_image$ext4(&(0x7f0000000080)='ext3\x00', &(0x7f0000000340)='./file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00', 0xc0ed000e, &(0x7f00000000c0)={[{@jqfmt_vfsold}, {@data_err_abort}, {@debug}, {@noload}, {@mblk_io_submit}, {@commit={'commit', 0x3d, 0x5}}, {@init_itable_val={'init_itable', 0x3d, 0x601}}, {@debug}]}, 0xfe, 0x46d, &(0x7f0000000f00)="$eJzs3M1vFOUfAPDvTF94+/FrRXwBQapoJL60tLzIwYtGEw6amOgB46m2hVQKNbQmQohWD3g0JN6N/4XxpBejXjTxqndDQgwXUC9rZmemLMtu2aXbLnQ/n2S6zzPzdJ/nOzPP7jPz7G4APWsk+5NE/C8ifo+IoTx7a4GR/OHGtYtTf1+7OJVEpfLWX0m13PVrF6fKouX/bcszlUqR39Sg3kvvRkzOzc2cK/Jji2c+GFs4f+GF2TOTp2ZOzZydOHbs8KG9g0cnjnQkziyu67s/nt+z6/g7l9+YOnH5vZ+S/sjjjro4OmUk37sNPd3pyrpse026umOX7fvlZrrRmUA39UVEdrgGqv1/KPpiy/K2oXjts642DlhTlUqlssKr8lIF2MCS6HYLgO4o3+iz699yWaehxz3h6sv5BVAW941iybf0R5on9g3UXd920khEnFj656tsiTW6DwEAUOu7bPzzfKPxXxoP54nB7M//izmU4Yh4ICJ2RMSDEbEzIh6KqJZ9JCIebbP++hmS28c/6ZW7Dq4F2fjvpWJu69bxX1oWGe4rctur8Q8kJ2fnZg4W++RADGw6OZvMjK9Qx/ev/vZFs221479syeovx4JFO670192gm55cnFxNzLWufhqxu79R/EmU0zhJROyKiN13Wcfss/1Nt905/hU0f9qWVb6OeCY//ktRF38paTo/Of7i0YkjY5tjbubgWHlW3O7nXy+92az+VcXfAdnx39rw/F+OfzjZHLFw/sLp6nztQvt1XPrj86bXNG2e/8e3F+f/YPJ2dcVgseGjycXFc+MRg8nrt6+fuPlsZb4sn8V/YH/j/r8jbu6JxyJiT0TsjYjHs4vCou1PRMSTEbF/hfh/fOWp99uPf33mSrP4p+90/KP2+Lef6Dv9w7d3jn9zRDQ7/oerqQPFmlZe/1pt4Gr2HQAAANwv0upn4JN0dDmdpqOj+Wf4d8bWdG5+YfG5k/Mfnp3OPys/HANpeadrqOZ+6Hhxb7jMT9TlDxX3jb/s21LNj07Nz013O3jocdua9P/Mn33dbh2w5jowjwbcp/R/6F36P/SmRP+Hnqb/Q+9q1P8/aVp69Js1bQywrrz/Q+9qof8v5Q/NRwXA/cn7P/Qu/R96UtPvxqer+sr/uif+LX7P8F5pz8ZPRHpPNGPjJ/pb/jGLNhKVobz/Z2s2NSzT7VcmAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACAzvgvAAD//w3J5b0=") mmap(&(0x7f0000001000/0xc00000)=nil, 0xc00000, 0x200000c, 0x3032, 0xffffffffffffffff, 0x0) rename(&(0x7f00000003c0)='./file0\x00', &(0x7f0000000f40)='./file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00') 3m49.589800334s ago: executing program 4 (id=106): syz_mount_image$ext4(&(0x7f00000004c0)='ext4\x00', &(0x7f0000000000)='./file1\x00', 0x2000044, &(0x7f0000000280)={[{@max_batch_time={'max_batch_time', 0x3d, 0x8}}, {@jqfmt_vfsold}, {@grpquota}, {@nodelalloc}, {@dioread_lock}]}, 0x2, 0x500, &(0x7f0000000500)="$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") mkdir(&(0x7f0000000300)='./bus\x00', 0x0) mkdirat(0xffffffffffffff9c, &(0x7f0000000340)='./file1\x00', 0x0) mount$overlay(0x0, &(0x7f00000000c0)='./bus\x00', &(0x7f0000000080), 0x0, &(0x7f0000000100)={[{@workdir={'workdir', 0x3d, './bus'}}, {@lowerdir={'lowerdir', 0x3d, './file0'}}, {@upperdir={'upperdir', 0x3d, './file1'}}]}) 3m48.858428623s ago: executing program 4 (id=109): r0 = syz_init_net_socket$bt_l2cap(0x1f, 0x2, 0x0) connect$bt_l2cap(r0, &(0x7f0000000080)={0x1f, 0x0, @fixed={'\xaa\xaa\xaa\xaa\xaa', 0x10}, 0x7ff}, 0xe) r1 = syz_init_net_socket$bt_hidp(0x1f, 0x3, 0x6) ioctl$sock_bt_hidp_HIDPCONNADD(r1, 0x400448c8, &(0x7f0000000340)={r0, r0, 0x8, 0x4, &(0x7f0000000fc0)="c0f924ae", 0x9, 0x52, 0x7c0, 0x8002, 0x9, 0x0, 0xd, 'syz0\x00'}) 3m47.836189876s ago: executing program 32 (id=113): r0 = socket$inet6_sctp(0xa, 0x801, 0x84) connect$inet6(r0, &(0x7f0000000100)={0xa, 0x0, 0x0, @private1, 0x200000}, 0x1c) shutdown(r0, 0x1) getsockopt$inet_sctp6_SCTP_CONTEXT(r0, 0x84, 0x11, &(0x7f0000000380)={0x0, 0x40}, &(0x7f00000003c0)=0x8) 3m45.089231019s ago: executing program 4 (id=129): prlimit64(0x0, 0xe, &(0x7f0000000140)={0x800008, 0x20000008b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x4) syz_mount_image$bcachefs(&(0x7f00000000c0), &(0x7f0000000000)='./file1\x00', 0x800000, &(0x7f00000003c0)=ANY=[@ANYBLOB="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"], 0xff, 0x5978, &(0x7f0000002080)="$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") mkdirat(0xffffffffffffff9c, &(0x7f0000000000)='./file0\x00', 0x0) 3m44.624084452s ago: executing program 33 (id=129): prlimit64(0x0, 0xe, &(0x7f0000000140)={0x800008, 0x20000008b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x4) syz_mount_image$bcachefs(&(0x7f00000000c0), &(0x7f0000000000)='./file1\x00', 0x800000, &(0x7f00000003c0)=ANY=[@ANYBLOB="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"], 0xff, 0x5978, &(0x7f0000002080)="$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") mkdirat(0xffffffffffffff9c, &(0x7f0000000000)='./file0\x00', 0x0) 3m5.914001701s ago: executing program 7 (id=464): r0 = socket$alg(0x26, 0x5, 0x0) bind$alg(r0, &(0x7f0000000240)={0x26, 'hash\x00', 0x0, 0x0, 'sha1-avx\x00'}, 0x58) r1 = accept4(r0, 0x0, 0x0, 0x0) sendmsg$ETHTOOL_MSG_TSINFO_GET(r1, &(0x7f00000003c0)={0x0, 0x0, &(0x7f0000000380)={&(0x7f00000004c0)={0x48, 0x0, 0x1, 0x0, 0x0, {0x1a}, [@HEADER={0x34, 0x1, 0x0, 0x1, [@ETHTOOL_A_HEADER_DEV_INDEX={0x8}, @ETHTOOL_A_HEADER_DEV_NAME={0x14, 0x2, 'syz_tun\x00'}, @ETHTOOL_A_HEADER_DEV_NAME={0x14, 0x2, 'vcan0\x00'}]}]}, 0x48}, 0x1, 0x0, 0x0, 0x800}, 0x0) 3m5.644907344s ago: executing program 7 (id=469): prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000000)={0x1, &(0x7f00000000c0)=[{0x200000000006, 0x0, 0x0, 0x7ffc1ffb}]}) mprotect(&(0x7f0000000000/0x4000)=nil, 0x4000, 0x1) r0 = syz_open_dev$tty1(0xc, 0x4, 0x1) ioctl$KDFONTOP_SET(r0, 0x4b72, &(0x7f0000000000)={0x0, 0x0, 0xc, 0x8010, 0x202, 0x0}) 3m5.448104728s ago: executing program 7 (id=472): sendmsg$nl_route_sched(0xffffffffffffffff, &(0x7f0000002f80)={0x0, 0x0, &(0x7f0000002f40)={&(0x7f00000004c0)=@getqdisc={0x24, 0x26, 0x800, 0x70bd2d, 0x25dfdbfe, {0x0, 0x0, 0x0, 0x0, {0x6}, {0xfff2, 0xbc62265150fce23b}, {0xfff1, 0x7}}}, 0x24}, 0x1, 0x0, 0x0, 0x24040000}, 0x4000840) socketpair$unix(0x1, 0x5, 0x0, &(0x7f0000000080)={0xffffffffffffffff, 0xffffffffffffffff}) setsockopt$SO_ATTACH_FILTER(r1, 0x1, 0x1a, &(0x7f0000000040)={0x3, &(0x7f0000000140)=[{0x20, 0x0, 0x0, 0xfffff00c}, {0x20, 0x0, 0x0, 0xfffff024}, {0x6}]}, 0x10) sendmmsg(r0, &(0x7f0000001c00), 0x400000000000159, 0x40840) 3m5.021831007s ago: executing program 7 (id=480): syz_mount_image$ext4(&(0x7f0000000000)='ext4\x00', &(0x7f0000000640)='./file2\x00', 0x10050, &(0x7f00000000c0)={[{@errors_remount}, {@auto_da_alloc_val={'auto_da_alloc', 0x3d, 0x7}}]}, 0x3, 0x51e, &(0x7f0000000680)="$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") mount$overlay(0x0, &(0x7f0000000140)='./file0\x00', &(0x7f0000000180), 0x1204001, &(0x7f00000011c0)={[{@lowerdir={'lowerdir', 0x3d, '.'}, 0x3a}], [], 0x2f}) chdir(&(0x7f00000001c0)='./file0\x00') quotactl$Q_QUOTAON(0xffffffff80000201, &(0x7f0000000040)=@sg0, 0x0, &(0x7f0000000100)='./file2\x00') 3m4.393442457s ago: executing program 7 (id=487): r0 = openat$misdntimer(0xffffffffffffff9c, &(0x7f0000001440), 0x0, 0x0) ioctl$IMADDTIMER(r0, 0x80044940, &(0x7f0000000080)=0x14) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0x200000b, 0x8031, 0xffffffffffffffff, 0x52c26000) close(r0) 3m3.751959199s ago: executing program 7 (id=498): socket$inet6_udp(0xa, 0x2, 0x0) r0 = open_tree(0xffffffffffffff9c, &(0x7f0000000640)='\x00', 0x89901) syz_usb_connect$uac1(0x3, 0xa4, &(0x7f0000000040)=ANY=[@ANYBLOB="2a01000020000040b708000000000000030109029200030172e5000904000000010100000a24010000000201020c0d2405000005000000000000000c240000e9fffff5ffffffff092403f3ff000005024524", @ANYRES8=r0, @ANYBLOB="05"], 0x0) ioctl$SIOCGIFHWADDR(0xffffffffffffffff, 0x8927, 0x0) 3m3.165290625s ago: executing program 34 (id=498): socket$inet6_udp(0xa, 0x2, 0x0) r0 = open_tree(0xffffffffffffff9c, &(0x7f0000000640)='\x00', 0x89901) syz_usb_connect$uac1(0x3, 0xa4, &(0x7f0000000040)=ANY=[@ANYBLOB="2a01000020000040b708000000000000030109029200030172e5000904000000010100000a24010000000201020c0d2405000005000000000000000c240000e9fffff5ffffffff092403f3ff000005024524", @ANYRES8=r0, @ANYBLOB="05"], 0x0) ioctl$SIOCGIFHWADDR(0xffffffffffffffff, 0x8927, 0x0) 2m49.004980051s ago: executing program 5 (id=644): r0 = userfaultfd(0x80001) ioctl$UFFDIO_API(0xffffffffffffffff, 0xc018aa3f, &(0x7f00000000c0)) mprotect(&(0x7f0000000000/0x800000)=nil, 0x800000, 0x1) ioctl$UFFDIO_API(r0, 0xc018aa3f, &(0x7f00000000c0)) 2m48.839814576s ago: executing program 5 (id=646): r0 = socket$nl_route(0x10, 0x3, 0x0) r1 = socket$inet6_udp(0xa, 0x2, 0x0) ioctl$sock_SIOCGIFINDEX(r1, 0x8933, &(0x7f0000000c80)={'lo\x00', 0x0}) sendmsg$nl_route_sched(r0, &(0x7f0000000000)={0x0, 0x0, &(0x7f00000000c0)={&(0x7f0000000480)=@newqdisc={0x50, 0x24, 0x4ee4e6a52ff56541, 0x0, 0x0, {0x0, 0x0, 0x0, r2, {}, {0xffff, 0xffff}}, [@qdisc_kind_options=@q_htb={{0x8}, {0x7b, 0x2, [@TCA_HTB_INIT={0x18}, @TCA_HTB_DIRECT_QLEN={0x3}]}}]}, 0x50}}, 0x0) 2m48.631110659s ago: executing program 5 (id=649): r0 = socket$netlink(0x10, 0x3, 0x0) socketpair$unix(0x1, 0x1, 0x0, &(0x7f0000000040)={0xffffffffffffffff, 0xffffffffffffffff}) ioctl$sock_SIOCGIFINDEX(r1, 0x8933, &(0x7f0000000000)={'macsec0\x00', 0x0}) sendmsg$nl_route(r0, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000140)={&(0x7f00000002c0)=ANY=[@ANYBLOB="3c0000001000010010000000ffdbdf2530000000", @ANYRES32=r2, @ANYBLOB="20000000000000001c0012800b0001006d616373656300000c00028005000f"], 0x3c}}, 0x0) 2m48.269939847s ago: executing program 5 (id=653): syz_mount_image$ext4(&(0x7f0000000040)='ext4\x00', &(0x7f0000000200)='./file1\x00', 0x200000, &(0x7f0000000500)={[{@discard}, {@abort}, {@dioread_lock}, {@norecovery}, {@nombcache}, {@lazytime}, {@noload}, {@usrquota}, {@noauto_da_alloc}, {@resuid}, {@init_itable_val}, {@jqfmt_vfsv1}]}, 0xfe, 0x558, &(0x7f0000000c00)="$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") mkdirat(0xffffffffffffff9c, &(0x7f00000001c0)='./bus\x00', 0x0) setxattr$trusted_overlay_origin(&(0x7f0000000040)='./file0\x00', &(0x7f0000000340), &(0x7f0000000200), 0x2, 0x0) mount$overlay(0x0, &(0x7f0000000180)='./bus\x00', &(0x7f00000001c0), 0x0, &(0x7f0000000300)={[{@workdir={'workdir', 0x3d, './bus'}}, {@index_on}, {@upperdir={'upperdir', 0x3d, './file0'}}, {@lowerdir={'lowerdir', 0x3d, './file1'}}]}) 2m47.635187974s ago: executing program 5 (id=659): prctl$PR_SET_SYSCALL_USER_DISPATCH_ON(0x3b, 0x1, 0x3, 0x6, &(0x7f0000006680)) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0x2000003, 0x4008032, 0xffffffffffffffff, 0x0) madvise(&(0x7f0000000000/0x600000)=nil, 0x600000, 0x15) rename(0x0, 0x0) 2m46.193854451s ago: executing program 5 (id=675): syz_mount_image$ext4(&(0x7f0000000040)='ext4\x00', &(0x7f00000002c0)='./bus\x00', 0x1200000, &(0x7f0000000180), 0xef, 0x57c, &(0x7f0000000ac0)="$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") pipe(&(0x7f0000000100)={0xffffffffffffffff, 0xffffffffffffffff}) r1 = openat(0xffffffffffffff9c, &(0x7f0000000100)='./file1\x00', 0x40042, 0x1fe) splice(r1, 0x0, r0, 0x0, 0x3, 0x2) 2m45.671192664s ago: executing program 35 (id=675): syz_mount_image$ext4(&(0x7f0000000040)='ext4\x00', &(0x7f00000002c0)='./bus\x00', 0x1200000, &(0x7f0000000180), 0xef, 0x57c, &(0x7f0000000ac0)="$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") pipe(&(0x7f0000000100)={0xffffffffffffffff, 0xffffffffffffffff}) r1 = openat(0xffffffffffffff9c, &(0x7f0000000100)='./file1\x00', 0x40042, 0x1fe) splice(r1, 0x0, r0, 0x0, 0x3, 0x2) 35.751032768s ago: executing program 6 (id=1943): syz_clone(0x11, 0x0, 0x0, 0x0, 0x0, 0x0) r0 = socket$phonet_pipe(0x23, 0x5, 0x2) listen(r0, 0x7) accept4$phonet_pipe(r0, 0x0, 0x0, 0x0) 35.489192467s ago: executing program 6 (id=1945): bpf$MAP_CREATE_RINGBUF(0x0, 0x0, 0x48) mremap(&(0x7f0000400000/0xc00000)=nil, 0xc00000, 0x1000, 0x0, &(0x7f00008b5000/0x1000)=nil) r0 = socket$inet6_tcp(0xa, 0x1, 0x0) setsockopt$SO_ATTACH_FILTER(r0, 0x1, 0x33, &(0x7f00000001c0)={0x1, &(0x7f0000f07000)=[{0x6}]}, 0x10) 35.342676492s ago: executing program 6 (id=1947): socketpair$unix(0x1, 0x5, 0x0, &(0x7f00000001c0)={0xffffffffffffffff, 0xffffffffffffffff}) r2 = bpf$PROG_LOAD(0x5, &(0x7f0000000000)={0x1, 0x8, &(0x7f0000002fc0)=ANY=[@ANYBLOB="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"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) setsockopt$sock_attach_bpf(r0, 0x1, 0x32, &(0x7f0000000040)=r2, 0x4) sendmsg$unix(r1, &(0x7f0000000780)={0x0, 0x0, 0x0}, 0x0) 35.162975769s ago: executing program 6 (id=1948): syz_mount_image$tmpfs(0x0, &(0x7f00000000c0)='./file0\x00', 0x10, 0x0, 0x0, 0x0, &(0x7f0000000000)) mount$bind(&(0x7f00000002c0)='.\x00', &(0x7f0000000200)='./file0\x00', 0x0, 0x1010d1, 0x0) mount$bind(&(0x7f0000000080)='./file0\x00', &(0x7f0000000240)='./file0/file0\x00', 0x0, 0x2081c80, 0x0) mount$tmpfs(0x0, &(0x7f0000000100)='./file0/file0\x00', 0x0, 0x24000, 0x0) 34.993090854s ago: executing program 6 (id=1949): r0 = socket$packet(0x11, 0x3, 0x300) setsockopt$packet_fanout(r0, 0x107, 0x12, &(0x7f0000000040)={0x0, 0x6}, 0x4) setsockopt$packet_fanout_data(r0, 0x107, 0x16, &(0x7f0000000100)={0x3, &(0x7f0000000180)=[{0x28, 0x0, 0x0, 0xfffff034}, {0x40}, {0x6}]}, 0x10) syz_emit_ethernet(0x3a, &(0x7f0000000b40)={@local, @link_local={0x3, 0x80, 0xc2, 0x0, 0x0, 0xe}, @void, {@ipv4={0x800, @tcp={{0x6, 0x4, 0x0, 0x0, 0x2c, 0xfffc, 0x0, 0x0, 0x6, 0x0, @local, @initdev={0xac, 0x1e, 0x0, 0x0}, {[@rr={0x44, 0x3, 0x8}]}}, {{0x0, 0x0, 0x41424344, 0x41424344, 0x0, 0x0, 0x5}}}}}}, 0x0) 34.651472256s ago: executing program 6 (id=1952): unshare(0x22020600) r0 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f0000000380)='memory.events\x00', 0x26e1, 0x0) r1 = bpf$MAP_CREATE_TAIL_CALL(0x0, &(0x7f0000000740)={0x3, 0x4, 0x4, 0xa, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$MAP_UPDATE_ELEM_TAIL_CALL(0x2, &(0x7f0000000900)={{r1}, &(0x7f0000000880), &(0x7f00000008c0)=r0}, 0x20) 34.280761763s ago: executing program 36 (id=1952): unshare(0x22020600) r0 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f0000000380)='memory.events\x00', 0x26e1, 0x0) r1 = bpf$MAP_CREATE_TAIL_CALL(0x0, &(0x7f0000000740)={0x3, 0x4, 0x4, 0xa, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$MAP_UPDATE_ELEM_TAIL_CALL(0x2, &(0x7f0000000900)={{r1}, &(0x7f0000000880), &(0x7f00000008c0)=r0}, 0x20) 4.789921387s ago: executing program 9 (id=2243): r0 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=@base={0x5, 0x4, 0xfff, 0x7, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000000000000b70400000000000085000000c300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000880)={0x6, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @xdp, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000340)={r1, 0x2000002, 0xe, 0x0, &(0x7f0000000200)="df33c9f7b9a60000000000000000", 0x0, 0x1, 0x0, 0x0, 0x0, 0x0, 0x0, 0x2}, 0x50) 4.513891785s ago: executing program 9 (id=2244): prctl$PR_SET_SYSCALL_USER_DISPATCH_ON(0x3b, 0x1, 0x0, 0x0, &(0x7f0000006680)) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0x2, 0x8031, 0xffffffffffffffff, 0x0) madvise(&(0x7f0000000000/0x600000)=nil, 0x600002, 0x9) syz_io_uring_setup(0x82e, &(0x7f0000000300)={0x0, 0x20000000, 0x10100}, &(0x7f0000000100), &(0x7f0000000080)) 3.707326896s ago: executing program 0 (id=2250): socketpair$unix(0x1, 0x1, 0x0, &(0x7f0000000040)={0xffffffffffffffff}) r1 = io_uring_setup(0x7d98, &(0x7f00000003c0)={0x0, 0xdf07, 0x2, 0x2}) close_range(r1, 0xffffffffffffffff, 0x0) sendmsg$inet(r0, &(0x7f0000000980)={0x0, 0x6000, &(0x7f0000000900)=[{&(0x7f0000000640)='U', 0xa00120}], 0x1}, 0x3) 3.672772593s ago: executing program 2 (id=2251): r0 = socket$nl_generic(0x10, 0x3, 0x10) r1 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000080), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_80211(r0, 0x8933, &(0x7f0000000280)={'wlan0\x00', 0x0}) sendmsg$NL80211_CMD_SET_INTERFACE(r0, &(0x7f0000000100)={0x0, 0x0, &(0x7f0000000140)={&(0x7f0000000180)={0x24, r1, 0x5, 0x0, 0x0, {{}, {@val={0x8, 0x3, r2}, @void}}, [@NL80211_ATTR_IFTYPE={0x8, 0x5, 0xc}]}, 0x24}}, 0x0) 3.600800838s ago: executing program 3 (id=2253): bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000002c80)={0x3, 0xc, &(0x7f0000000140)=ANY=[@ANYBLOB="180200000000000400000000000000008500000030000000180100002020702500000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b70300000000000085000000060000009500000000000000"], &(0x7f0000000080)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x65) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000000)={0xffffffffffffffff}) r1 = gettid() sendmsg$unix(r0, &(0x7f0000000540)={&(0x7f00000000c0)=@file={0x0, './file0\x00'}, 0x6e, 0x0, 0x0, &(0x7f0000000500)=ANY=[@ANYBLOB="1c000000000000000100000002000000", @ANYRES32=r1, @ANYRES32=0xee00, @ANYRES32=0xee00, @ANYBLOB="0000000014000000000000000100000001"], 0x38, 0xc0}, 0x40000840) 3.447488436s ago: executing program 2 (id=2255): prctl$PR_SET_SYSCALL_USER_DISPATCH_ON(0x3b, 0x1, 0x0, 0x0, &(0x7f0000006680)) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xf, 0x4008032, 0xffffffffffffffff, 0x0) madvise(&(0x7f0000000000/0x600000)=nil, 0x600000, 0x15) rseq(&(0x7f0000000080)={0x0, 0x0, 0x0, 0x5}, 0x20, 0x0, 0x0) 3.219508871s ago: executing program 3 (id=2256): syz_mount_image$jfs(&(0x7f0000000200), &(0x7f0000000080)='./file0\x00', 0x101c002, &(0x7f0000000a00)=ANY=[@ANYBLOB='discard,discard=0x0000000000020001,discard,iocharset=cp857,errors=remount-ro,iocharset=iso8859-2,uid=', @ANYRESHEX=0xee00, @ANYBLOB="2c6572726f72733d72656d6f756e742d726f2c696f636861727365743d69736f383835392d342c00fb8602bc827d678ff4d12dba8652b9d39b4b4ff5657dd6ec1c923fb62ce2b91d41de0069a0e4d9cc00c46db0687686104197b53eeedda4d051ba690ba658ce6beb"], 0x23, 0x61c3, &(0x7f000000c9c0)="$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") r0 = openat(0xffffffffffffff9c, &(0x7f0000004280)='.\x00', 0x0, 0x0) getdents64(r0, &(0x7f0000000200)=""/55, 0x37) getdents64(r0, 0xfffffffffffffffe, 0x29) 3.073816917s ago: executing program 9 (id=2258): setuid(0xee01) r0 = semget$private(0x0, 0x6, 0x3b1) semop(r0, &(0x7f0000000000)=[{0x0, 0xea, 0x1000}, {0x0, 0x0, 0x1000}], 0x2) semctl$GETVAL(r0, 0x4, 0xc, 0x0) 2.871372462s ago: executing program 0 (id=2260): syz_mount_image$hfsplus(&(0x7f0000000000), &(0x7f0000000040)='./file1\x00', 0x400, &(0x7f0000000140)=ANY=[], 0x1, 0x68b, &(0x7f0000000a40)="$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") truncate(&(0x7f0000000080)='./file1\x00', 0x200000080000000) r0 = open(&(0x7f0000000100)='./file1\x00', 0x147842, 0x88) preadv2(r0, &(0x7f0000000040)=[{&(0x7f0000001200)=""/4096, 0xfffffdef}], 0x1, 0x0, 0x0, 0x7) 2.450305645s ago: executing program 3 (id=2262): r0 = getpid() r1 = syz_clone(0x0, 0x0, 0x0, 0x0, 0x0, 0x0) capset(&(0x7f0000000080)={0x20071026}, &(0x7f0000000100)) kcmp(r0, r1, 0x0, 0xffffffffffffffff, 0xffffffffffffffff) 2.120993361s ago: executing program 9 (id=2265): syz_mount_image$ocfs2(&(0x7f0000004440), &(0x7f0000000040)='./file1\x00', 0x8c0, &(0x7f0000000680)=ANY=[@ANYBLOB="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"], 0x1, 0x442d, &(0x7f0000004480)="$eJzs3c9PHGUfAPBnBvoW+rZ9oW8PfZM3cRObaNQQ6EmliZTSUmixptrGeNkusG3RhW1gMR56wFsTTyYejIdGE2+cGg5e65/gxWM9N9GDFxOTRszuzgIz7IaVsGDr53NgmOc3fGeefeYw+8SJyp25pdzcUq6wkCvP3Fo6k/u4XFqeL4Z4nzTt/9D+9U97OnGdHPS190929fzFd2+cCeH72R+frK+vr4eq7tDU0Jbff/v13szWY0OcqVNtt3lre+WDEMLJbeOq6gohvP9dCFEI4VySNpoce0MIx0I978a9z27m9mg0Dx8Xz+afTt1fGz49ufpgrfXfHoXwVel/r92e//nFruGfXtmj7gEAAAAAAAAAAAAAAAAAeMaNX7t6/Z3BofAoCt2r0fb3dceTY6v3Y9f3zAsh9HX+7wUAAAAAAAAAAAAAAAAAAIC/o833/3PRiSbv/48lx5EW9dff6vwY6ZyJt6+OXRgcSvZ/j7blv54k/XKuK/Q32fc9u//7uUz95vu/b+9ntxrja/TbF6J4IHUexwMDIXyTbPx+KjoSl8pLlVdvlZcXZvdsGM+sdPzru/enopNs6N9u/Ecz7Xd+////bruaquc39+4Se66l49/Vsty3n0Ztxf98pt5+xJ/dS8e/u5bWu7XASH0CqMb/8+6d4z+Wab9T8T8eQshF1bHmUjNAdQ1TTW+1XiEtHf9DtbTU1Jn8I1vd/79n4n8h0/5Bzf8r2Q8imkrH/1+1tJ5Uic37vz/e+f6/mGn/IOJfHf+Kz/+2pON/uJ7YnSpS+0+2O/+PZ9rvVPyvx8k4j0epK2A1qqe3+r460tLx79mWv/n8F7e1/ruUqb9fz3+NfhvPf43p/+Wo/vxHc+n497Ys1+79P5Gp1+n5f6S2/mO30vE/UktLr53rX8rZbvwnM+13Kv61VUlPI/6b88kfh+vpX1v/tSUd/3/XE+OtJVZqP2vrv2jn9f/lTPsHsf6rjn8l7myvz4t0/I+2LFeN/w9tfP5fydTrfPxDGLTW37V0/I+1LFe7/3t2jv9Upl6n4/9SJxsHAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAeAaMJse+EMUDqfM4HhgI4XxyfiociaYLs/npUnnmo6UQxpL0XDgR3S6Vpwul/NxCebaYL5RK5ZkQLiT5J0NPtFQqV/LzhbsXN9rqje4UC4uV6WKhEkIYT9L/H4412pqeq8wX7oYQLm3k/ScuL969U1jIz84tvjk4ODgYJjbG0B8VP6kUFyr13uu5IUxu1O2Ltgyuln15YyxHow/Ly4sLhVIt/cqWOqXyTKG0pc5UkvdF6I8qi8sLM4VKMV8q3270d5BGkuPYxLX3rl0Z2pZ/M6ofR/d3WAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAD8RY+G3/gyhNBdP4tDCCONX6Jm5R8+Lp7NP526vzZ8enL1wdqTVuUAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAADgT3bgQAAAAAAAyP+1EaqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqwS8coDQRRGIDfjIXaeQyrZbezXVFEC1cET6DH8DB6FC/hHVKkSJsiBJJZCJtd2Capvq95MD8z78E8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAYJ6n9+7jrW4iUlxtLiP+vv4Xh/lLqT/34/cvzjAjp/P82j081k3593SU35WjZZt36Xr1/Rkjtfc72JPhPu31fa4n55rat6n5+r43kXIVEW3Jb1POVTXvLQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAIAtO3AgAAAAAADk/9oIVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVdiBYwEAAAAAYf7WUfRtAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAPwKAAD//+UFHyA=") syz_mount_image$tmpfs(0x0, &(0x7f00000000c0)='./file0\x00', 0xd8f3dccb89d0ae3e, 0x0, 0x1, 0x0, &(0x7f0000000000)) r0 = openat$dir(0xffffffffffffff9c, &(0x7f0000000080)='./file0\x00', 0x0, 0x1c0) getdents(r0, 0xfffffffffffffffd, 0x58) 2.074496163s ago: executing program 2 (id=2266): bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x15, 0x2000000000000216, &(0x7f0000000440)=ANY=[@ANYBLOB="18000000000000000000000000000000850000000f00000018010000646c6c2400000000000000007b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b703000000000000850000000600000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, '\x00', 0x0, @fallback=0x1c, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r0 = bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f00000001c0)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x52) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000002c0)={&(0x7f0000000700)='signal_generate\x00', r0}, 0x10) syz_open_procfs$namespace(0x0, 0xfffffffffffffffe) 1.759769139s ago: executing program 2 (id=2268): getsockopt$inet_mreqn(0xffffffffffffffff, 0x0, 0x20, 0x0, 0x0) bpf$PROG_LOAD(0x5, &(0x7f0000000000)={0x11, 0xc, 0x0, 0x0, 0x100000, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x1f, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) prctl$PR_SET_VMA(0x53564d41, 0x0, &(0x7f0000ffc000/0x4000)=nil, 0x5bbf91a1e7f99074, &(0x7f0000000000)) bpf$PROG_LOAD(0x5, 0x0, 0x0) 1.653006658s ago: executing program 8 (id=2269): r0 = socket(0x10, 0x3, 0x0) r1 = socket$packet(0x11, 0x2, 0x300) ioctl$sock_SIOCGIFINDEX(r1, 0x8933, &(0x7f0000000080)={'ip6tnl0\x00', 0x0}) sendmsg$nl_route_sched(r0, &(0x7f00000007c0)={0x0, 0x0, &(0x7f0000000000)={&(0x7f00000002c0)=@newqdisc={0x64, 0x24, 0x3fe3aa0262d8c583, 0x0, 0x0, {0x0, 0x0, 0x0, r2, {}, {0xffff, 0xffff}}, [@qdisc_kind_options=@q_etf={{0x8}, {0x12, 0x2, @TCA_ETF_PARMS={0x10, 0x1, {0x0, 0x1, 0x1}}}}, @TCA_STAB={0x24, 0x8, 0x0, 0x1, [{{0x1c, 0x1, {0x0, 0x0, 0x4}}, {0x4}}]}]}, 0x64}, 0x1, 0x0, 0x0, 0x40010}, 0x0) 1.478573542s ago: executing program 3 (id=2271): r0 = syz_io_uring_setup(0x10c, &(0x7f0000000380)={0x0, 0x5885, 0x10, 0x1}, &(0x7f0000000340)=0x0, &(0x7f0000000280)=0x0) syz_memcpy_off$IO_URING_METADATA_GENERIC(r1, 0x4, &(0x7f0000000080)=0xfffffffc, 0x0, 0x4) syz_io_uring_submit(r1, r2, &(0x7f00000002c0)=@IORING_OP_TIMEOUT={0xb, 0x1, 0x0, 0x0, 0x7, &(0x7f0000000100)={0x0, 0x989680}, 0x1, 0x4, 0x1}) io_uring_enter(r0, 0x3516, 0x0, 0x0, 0x0, 0x0) 1.442019049s ago: executing program 2 (id=2272): r0 = epoll_create1(0x0) ioctl$FS_IOC_SETFLAGS(r0, 0x40088a01, &(0x7f0000000000)=0x100) r1 = socket(0x10, 0x803, 0x0) epoll_ctl$EPOLL_CTL_ADD(r0, 0x1, r1, &(0x7f0000000280)={0x60000008}) 1.43901415s ago: executing program 0 (id=2273): r0 = bpf$MAP_CREATE(0x0, &(0x7f00000008c0)=ANY=[@ANYBLOB="1e0000000000000004000000ff"], 0x48) bpf$PROG_LOAD_XDP(0x5, &(0x7f0000000a40)={0x3, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000000000000b704000000000000850000005700000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x25, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000800)={0x6, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x41000, 0x0, '\x00', 0x0, @fallback=0x16, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000000)={r1, 0x2000000, 0xe, 0x0, &(0x7f0000000600)="630b008646dc3f0adf33c9f7b986", 0x0, 0x1ff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x2, 0x0, 0x3}, 0x50) 1.363790854s ago: executing program 1 (id=2274): r0 = creat(&(0x7f0000000280)='./file0\x00', 0xecf86c37d53049cc) write$binfmt_elf32(r0, &(0x7f0000000080)=ANY=[@ANYBLOB="7f454c4604070003070028fadf06000002000300060000000903000038000200000000000e0000000000200001000500"], 0x58) close(r0) execve(&(0x7f0000000400)='./file0\x00', 0x0, 0x0) 1.211119428s ago: executing program 8 (id=2275): r0 = socket$nl_generic(0x10, 0x3, 0x10) r1 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000100), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_80211(r0, 0x8933, &(0x7f0000000000)={'wlan0\x00', 0x0}) sendmsg$NL80211_CMD_NEW_INTERFACE(r0, &(0x7f00000004c0)={0x0, 0x0, &(0x7f0000000980)={&(0x7f0000000b40)={0x54, r1, 0x1, 0x0, 0x0, {{}, {@val={0x8, 0x1, 0x49}, @val={0x8, 0x3, r2}, @val={0xc, 0x99, {0x50, 0x18}}}}, [@NL80211_ATTR_IFNAME={0x14, 0x4, 'pim6reg\x00'}, @NL80211_ATTR_4ADDR={0x5, 0x53, 0x1}, @NL80211_ATTR_IFTYPE={0x8, 0x5, 0x2}]}, 0x54}}, 0x0) 1.208678193s ago: executing program 2 (id=2276): syz_mount_image$xfs(&(0x7f0000009600), &(0x7f0000009640)='./file0\x00', 0x200800, &(0x7f0000000100)={[{@ikeep}, {@nogrpid}, {@filestreams}, {@uqnoenforce}, {@nolargeio}]}, 0x8, 0x9695, &(0x7f0000012cc0)="$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") r0 = open(&(0x7f0000000180)='./file1\x00', 0x14d27e, 0x108) fallocate(r0, 0x1, 0xb21, 0x1001f0) open(&(0x7f0000000300)='./file1\x00', 0x14927e, 0x0) 1.101404697s ago: executing program 0 (id=2277): setsockopt$EBT_SO_SET_ENTRIES(0xffffffffffffffff, 0x100000000000000, 0x80, &(0x7f00000001c0)=@broute={'broute\x00', 0x4000, 0x0, 0x90, [], 0x2, 0x0, &(0x7f0000000100)=ANY=[@ANYBLOB="000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000f4"]}, 0xe2) r0 = add_key$user(&(0x7f00000002c0), &(0x7f0000000180)={'syz', 0x2}, &(0x7f0000000280)="85952b177328da2f8757c9343d6559eb7a8197c0479df99720c9f9d0a8093c947d", 0x21, 0xfffffffffffffffd) r1 = add_key$user(&(0x7f00000003c0), &(0x7f0000000440), &(0x7f00000000c0), 0xc9, 0xfffffffffffffffd) keyctl$dh_compute(0x17, &(0x7f0000000140)={r0, r1, r0}, &(0x7f00000000c0)=""/80, 0x50, 0x0) 1.086521498s ago: executing program 1 (id=2278): r0 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r1 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r2 = syz_genetlink_get_family_id$netlbl_mgmt(&(0x7f0000000c40), r0) sendmsg$NLBL_MGMT_C_LISTDEF(r1, &(0x7f0000000d40)={0x0, 0x0, &(0x7f0000000d00)={&(0x7f00000000c0)=ANY=[@ANYBLOB="1c000000", @ANYRES16=r2, @ANYBLOB="01002cbd7000fddbdf250600000006000b000a"], 0x1c}, 0x1, 0x0, 0x0, 0x20000040}, 0x4880) 996.749113ms ago: executing program 3 (id=2279): r0 = socket(0x10, 0x3, 0x0) socketpair$unix(0x1, 0x1, 0x0, &(0x7f0000000280)={0xffffffffffffffff}) ioctl$sock_SIOCGIFINDEX(r1, 0x8933, &(0x7f00000000c0)={'gretap0\x00', 0x0}) sendmsg$nl_route_sched(r0, &(0x7f0000000000)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000140)=@newqdisc={0x3c, 0x24, 0xf0b, 0x0, 0x0, {0x60, 0x0, 0x0, r2, {}, {0xffff, 0xffff}, {0xc}}, [@qdisc_kind_options=@q_cake={{0x9}, {0xc, 0x2, [@TCA_CAKE_DIFFSERV_MODE={0x8, 0x3, 0x2}]}}]}, 0x3c}}, 0x0) 812.829173ms ago: executing program 0 (id=2280): mmap$IORING_OFF_SQ_RING(&(0x7f0000400000/0xc00000)=nil, 0xc00000, 0x4000002, 0x5d031, 0xffffffffffffffff, 0x0) r0 = userfaultfd(0x801) ioctl$UFFDIO_API(r0, 0xc018aa3f, &(0x7f0000000100)) ioctl$UFFDIO_CONTINUE(r0, 0x8010aa01, &(0x7f0000000080)={{&(0x7f000098b000/0x1000)=nil, 0x1000}}) 811.253033ms ago: executing program 8 (id=2281): r0 = socket$alg(0x26, 0x5, 0x0) bind$alg(r0, &(0x7f0000000000)={0x26, 'hash\x00', 0x0, 0x0, 'sha256-generic\x00'}, 0x58) r1 = accept4(r0, 0x0, 0x0, 0x0) recvmmsg$unix(r1, &(0x7f0000003700)=[{{0x0, 0x700, 0x0, 0x0, 0x0, 0x500}}], 0x600, 0x0, 0x0) 759.969698ms ago: executing program 1 (id=2282): r0 = socket$alg(0x26, 0x5, 0x0) bind$alg(r0, &(0x7f0000000080)={0x26, 'hash\x00', 0x0, 0x0, 'xxhash64-generic\x00'}, 0x58) r1 = accept4(r0, 0x0, 0x0, 0x0) sendmmsg$inet6(r1, &(0x7f0000007bc0)=[{{0x0, 0x0, &(0x7f0000001d80)=[{&(0x7f0000000280)="a9cff351c0016f245d698d8c14cdacc0e4d7fc6a44004aacd8", 0x19}], 0x1}}], 0x1, 0x20000040) 695.083045ms ago: executing program 9 (id=2283): r0 = socket$nl_route(0x10, 0x3, 0x0) r1 = socket$inet6_udp(0xa, 0x2, 0x0) ioctl$sock_SIOCGIFINDEX(r1, 0x8933, &(0x7f0000000c80)={'lo\x00', 0x0}) sendmsg$nl_route_sched(r0, &(0x7f0000001200)={0x0, 0x0, &(0x7f0000000000)={&(0x7f00000002c0)=@newqdisc={0x40, 0x24, 0x4ee4e6a52ff56541, 0x0, 0x0, {0x0, 0x0, 0x0, r2, {}, {0xffff, 0xffff}}, [@qdisc_kind_options=@q_fq={{0x7}, {0x14, 0x2, [@TCA_FQ_FLOW_DEFAULT_RATE={0x10, 0x11, 0x3fff}, @TCA_FQ_QUANTUM={0x8, 0x3, 0xf1ff}]}}]}, 0x40}}, 0x0) 604.568754ms ago: executing program 0 (id=2284): r0 = syz_usb_connect$hid(0x0, 0x36, &(0x7f0000001180)=ANY=[@ANYBLOB="12010000090003206d0414c34000ffff000109022400010400a000090400000103010100093700086ce82201000905815f"], 0x0) syz_usb_control_io(r0, &(0x7f0000000280)={0x2c, 0x0, 0x0, 0x0, 0x0, &(0x7f0000000240)={0x20, 0x2a, 0xc, {0xc, 0x2a, 0x6, 0x3, 0x2, 0x6, 0xa, 0xff, 0x2}}}, 0x0) syz_usb_control_io$hid(r0, 0x0, &(0x7f0000000680)={0x2c, &(0x7f0000000480)={0x0, 0xf}, 0x0, 0x0, 0x0, 0x0}) bpf$PROG_LOAD_XDP(0x5, 0x0, 0x0) 603.711692ms ago: executing program 3 (id=2285): recvmmsg(0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0) r0 = syz_usb_connect(0x0, 0x24, &(0x7f0000000080)=ANY=[@ANYBLOB="1201100182e5e74033073004fb35000000010902120001000040400904"], 0x0) syz_usb_control_io(r0, 0x0, 0x0) syz_usb_connect(0x0, 0x36, 0x0, 0x0) 551.185672ms ago: executing program 1 (id=2286): r0 = socket$nl_route(0x10, 0x3, 0x0) r1 = socket$inet6_icmp_raw(0xa, 0x3, 0x3a) ioctl$sock_SIOCGIFINDEX(r1, 0x8933, &(0x7f0000000000)={'bridge0\x00', 0x0}) sendmsg$nl_route(r0, &(0x7f0000000100)={0x0, 0x0, &(0x7f00000000c0)={&(0x7f0000000540)=ANY=[@ANYBLOB="2800000070000100000000000000000007000000", @ANYRES32=r2, @ANYBLOB="10000180040005"], 0x28}}, 0x0) 388.013754ms ago: executing program 8 (id=2287): r0 = socket$inet6(0xa, 0x2, 0x0) bind$inet6(r0, &(0x7f0000f5dfe4)={0xa, 0x4e20}, 0x1c) setsockopt$SO_ATTACH_FILTER(r0, 0x1, 0x1a, &(0x7f00000009c0)={0x1, &(0x7f0000000980)=[{0x6, 0x7f, 0xe6, 0x7}]}, 0x10) syz_emit_ethernet(0xbe, &(0x7f0000000000)={@local, @link_local, @void, {@ipv4={0x800, @udp={{0x5, 0x4, 0x0, 0x0, 0xb0, 0x0, 0x0, 0x0, 0x11, 0x0, @empty, @empty}, {0x0, 0x4e20, 0x9c, 0x0, @wg=@initiation={0x1, 0x0, "7b4b143b7461fd777b1c012bd14efb9f49fcdb8f080c26a04883ad5c8c82b8af", "584cbf2649a50f2dbc43efa8698dfa871c51852e4451b57d037ad3c045942824251d7d17b5191584cdd4fbe40a27424d", "bcfd56f1373669caaa2f19935e6996c7096ffe4f3a4745a8f762b964", {"9a3bfbc1f39cb307b3472eb9cdb042d2", "643fcbb2c5a57df67d544af6e8dafe09"}}}}}}}, 0x0) 371.929323ms ago: executing program 1 (id=2288): r0 = syz_open_dev$dri(&(0x7f00000005c0), 0x1f, 0x0) ioctl$DRM_IOCTL_MODE_GETRESOURCES(r0, 0xc04064a0, &(0x7f0000000240)={0x0, 0x0, &(0x7f00000001c0)=[0x0], 0x0, 0x0, 0x0, 0x1}) ioctl$DRM_IOCTL_MODE_GETCONNECTOR(r0, 0xc05064a7, &(0x7f0000000280)={0x0, 0x0, &(0x7f0000000140)=[0x0], &(0x7f0000000180), 0x0, 0x1, 0x0, 0x0, r1, 0x1f000000}) ioctl$DRM_IOCTL_MODE_GETPROPERTY(r0, 0xc04064aa, &(0x7f0000000200)={0x0, &(0x7f0000000600)=[{}], r2, 0x0, '\x00', 0xffffffffffffffe8, 0x1}) 171.992184ms ago: executing program 1 (id=2289): sched_setscheduler(0x0, 0x1, &(0x7f0000000240)=0x7) syz_mount_image$bcachefs(&(0x7f00000000c0), &(0x7f0000000180)='./file1\x00', 0x10, &(0x7f0000000040)=ANY=[], 0xff, 0x5a82, &(0x7f0000001080)="$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") r0 = openat(0xffffffffffffff9c, &(0x7f0000000040)='./file1\x00', 0x42, 0x1) ioctl$FS_IOC_FIEMAP(r0, 0xc020660b, &(0x7f0000000340)=ANY=[@ANYBLOB="010000000000000001000100"]) 171.205067ms ago: executing program 8 (id=2290): r0 = inotify_init1(0x0) inotify_add_watch(r0, &(0x7f0000000040)='.\x00', 0xc0000484) syz_mount_image$fuse(0x0, &(0x7f0000000040)='./file0\x00', 0x0, 0x0, 0x0, 0x0, 0x0) lsetxattr$system_posix_acl(&(0x7f0000000280)='./file0\x00', &(0x7f0000000440)='system.posix_acl_default\x00', &(0x7f0000000540), 0x4, 0x0) 37.026579ms ago: executing program 9 (id=2291): r0 = timerfd_create(0x8, 0x80000) timerfd_settime(r0, 0x3, &(0x7f0000000040)={{}, {0x77359400}}, 0x0) clock_settime(0x0, &(0x7f0000003c80)={0x77359400}) ioctl$TFD_IOC_SET_TICKS(r0, 0x40085400, &(0x7f0000000100)=0x5a76a520) 0s ago: executing program 8 (id=2292): syz_mount_image$ext4(&(0x7f00000001c0)='ext4\x00', &(0x7f00000000c0)='./file0\x00', 0x80070c, &(0x7f0000000000)={[{@nombcache}, {@noauto_da_alloc}, {@jqfmt_vfsv1}, {@errors_remount}, {@quota}, {@auto_da_alloc_val={'auto_da_alloc', 0x3d, 0x9}}, {@noquota}]}, 0xff, 0x4b1, &(0x7f0000000c40)="$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") r0 = open(&(0x7f00000000c0)='.\x00', 0x0, 0x0) setreuid(0x0, 0xee01) ioctl$FS_IOC_SET_ENCRYPTION_POLICY(r0, 0x660c, 0x0) kernel console output (not intermixed with test programs): x10/0x10 [ 274.564997][ T7461] ? srso_alias_return_thunk+0x5/0xfbef5 [ 274.565029][ T7461] ? srso_alias_return_thunk+0x5/0xfbef5 [ 274.565057][ T7461] ? do_raw_spin_unlock+0x122/0x240 [ 274.565091][ T7461] filemap_fdatawrite+0x191/0x230 [ 274.565125][ T7461] ? __pfx_filemap_fdatawrite+0x10/0x10 [ 274.565206][ T7461] ? srso_alias_return_thunk+0x5/0xfbef5 [ 274.565240][ T7461] ? do_raw_spin_unlock+0x122/0x240 [ 274.565274][ T7461] f2fs_sync_dirty_inodes+0x31f/0x830 [ 274.565323][ T7461] f2fs_write_checkpoint+0x94a/0x1de0 [ 274.565382][ T7461] ? __pfx_f2fs_write_checkpoint+0x10/0x10 [ 274.565469][ T7461] ? kill_f2fs_super+0x298/0x6c0 [ 274.565507][ T7461] kill_f2fs_super+0x2c3/0x6c0 [ 274.565545][ T7461] ? __pfx_kill_f2fs_super+0x10/0x10 [ 274.565570][ T7461] ? radix_tree_delete_item+0x2b6/0x400 [ 274.565606][ T7461] ? srso_alias_return_thunk+0x5/0xfbef5 [ 274.565633][ T7461] ? shrinker_free+0x2ce/0x3e0 [ 274.565662][ T7461] deactivate_locked_super+0xbc/0x130 [ 274.565689][ T7461] cleanup_mnt+0x425/0x4c0 [ 274.565725][ T7461] ? srso_alias_return_thunk+0x5/0xfbef5 [ 274.565751][ T7461] ? lockdep_hardirqs_on+0x9c/0x150 [ 274.565782][ T7461] task_work_run+0x1d4/0x260 [ 274.565830][ T7461] ? __pfx_task_work_run+0x10/0x10 [ 274.565862][ T7461] ? srso_alias_return_thunk+0x5/0xfbef5 [ 274.565901][ T7461] resume_user_mode_work+0x5e/0x80 [ 274.565938][ T7461] syscall_exit_to_user_mode+0x9a/0x120 [ 274.565968][ T7461] do_syscall_64+0x103/0x210 [ 274.566007][ T7461] ? srso_alias_return_thunk+0x5/0xfbef5 [ 274.566038][ T7461] ? exc_page_fault+0x91/0x110 [ 274.566067][ T7461] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 274.566090][ T7461] RIP: 0033:0x7f5c11b8fc97 [ 274.566115][ T7461] Code: a8 ff ff ff f7 d8 64 89 01 48 83 c8 ff c3 0f 1f 44 00 00 31 f6 e9 09 00 00 00 66 0f 1f 84 00 00 00 00 00 b8 a6 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 01 c3 48 c7 c2 a8 ff ff ff f7 d8 64 89 02 b8 [ 274.566136][ T7461] RSP: 002b:00007ffcd3fa1b38 EFLAGS: 00000246 ORIG_RAX: 00000000000000a6 [ 274.566165][ T7461] RAX: 0000000000000000 RBX: 00007f5c11c1089d RCX: 00007f5c11b8fc97 [ 274.566191][ T7461] RDX: 0000000000000000 RSI: 0000000000000009 RDI: 00007ffcd3fa1bf0 [ 274.566207][ T7461] RBP: 00007ffcd3fa1bf0 R08: 0000000000000000 R09: 0000000000000000 [ 274.566225][ T7461] R10: 00000000ffffffff R11: 0000000000000246 R12: 00007ffcd3fa2c80 [ 274.566241][ T7461] R13: 00007f5c11c1089d R14: 0000000000042f36 R15: 00007ffcd3fa2cc0 [ 274.566281][ T7461] [ 274.566293][ T7461] F2FS-fs (loop8): Stopped filesystem due to reason: 3 [ 274.992876][ T5884] GRED: Unable to relocate VQ 0x0 after dequeue, screwing up backlog [ 275.030175][T10514] netlink: 8 bytes leftover after parsing attributes in process `syz.9.1625'. [ 275.084437][T10481] loop2: detected capacity change from 0 to 32768 [ 275.120276][T10518] loop9: detected capacity change from 0 to 1024 [ 275.128124][T10518] EXT4-fs: Ignoring removed bh option [ 275.143871][T10481] BTRFS: device fsid c9fe44da-de57-406a-8241-57ec7d4412cf devid 1 transid 8 /dev/loop2 (7:2) scanned by syz.2.1614 (10481) [ 275.190880][T10481] BTRFS info (device loop2): first mount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 275.225910][T10518] EXT4-fs (loop9): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 275.239055][T10481] BTRFS info (device loop2): using crc32c (crc32c-x86_64) checksum algorithm [ 275.259104][T10481] BTRFS info (device loop2): disk space caching is enabled [ 275.281258][T10481] BTRFS warning (device loop2): space cache v1 is being deprecated and will be removed in a future release, please use -o space_cache=v2 [ 275.322113][ T30] audit: type=1804 audit(1746574473.935:139): pid=10518 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=invalid_pcr cause=open_writers comm="syz.9.1627" name="/newroot/120/file1/file1" dev="loop9" ino=15 res=1 errno=0 [ 275.408314][ T5819] BTRFS info (device loop1): last unmount of filesystem ed167579-eb65-4e76-9a50-61ac97e9b59d [ 275.449339][ T7926] EXT4-fs (loop9): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 275.543301][T10481] BTRFS info (device loop2): rebuilding free space tree [ 275.624016][T10481] BTRFS info (device loop2): disabling free space tree [ 275.653382][ T47] GRED: Unable to relocate VQ 0x0 after dequeue, screwing up backlog [ 275.653589][T10481] BTRFS info (device loop2): clearing compat-ro feature flag for FREE_SPACE_TREE (0x1) [ 275.674808][T10481] BTRFS info (device loop2): clearing compat-ro feature flag for FREE_SPACE_TREE_VALID (0x2) [ 275.817232][ T30] audit: type=1800 audit(1746574474.425:140): pid=10481 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.2.1614" name="bus" dev="loop2" ino=263 res=0 errno=0 [ 275.842809][ T974] usb 7-1: new full-speed USB device number 6 using dummy_hcd [ 276.027580][ T974] usb 7-1: config 0 has an invalid interface number: 235 but max is 0 [ 276.042135][ T974] usb 7-1: config 0 has no interface number 0 [ 276.053510][ T5884] GRED: Unable to relocate VQ 0x0 after dequeue, screwing up backlog [ 276.075208][ T974] usb 7-1: config 0 interface 235 altsetting 16 endpoint 0x5 has invalid wMaxPacketSize 0 [ 276.080412][ T5825] BTRFS info (device loop2): last unmount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 276.098819][ T974] usb 7-1: config 0 interface 235 has no altsetting 0 [ 276.118857][T10557] sch_fq: defrate 2048 ignored. [ 276.121255][ T974] usb 7-1: New USB device found, idVendor=06cd, idProduct=0112, bcdDevice=3e.18 [ 276.138499][ T974] usb 7-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 276.146926][ T974] usb 7-1: Product: syz [ 276.151865][ T974] usb 7-1: Manufacturer: syz [ 276.156593][ T974] usb 7-1: SerialNumber: syz [ 276.171074][ T974] usb 7-1: config 0 descriptor?? [ 276.180598][ T974] keyspan 7-1:0.235: Keyspan 1 port adapter converter detected [ 276.190267][ T974] keyspan 7-1:0.235: found no endpoint descriptor for endpoint 87 [ 276.200298][ T974] keyspan 7-1:0.235: found no endpoint descriptor for endpoint 7 [ 276.227931][ T974] keyspan 7-1:0.235: found no endpoint descriptor for endpoint 81 [ 276.238882][ T974] keyspan 7-1:0.235: found no endpoint descriptor for endpoint 1 [ 276.300134][ T974] keyspan 7-1:0.235: found no endpoint descriptor for endpoint 85 [ 276.334480][ T974] usb 7-1: Keyspan 1 port adapter converter now attached to ttyUSB0 [ 276.451553][ T47] usb 7-1: USB disconnect, device number 6 [ 276.507270][ T47] keyspan_1 ttyUSB0: Keyspan 1 port adapter converter now disconnected from ttyUSB0 [ 276.547293][ T47] keyspan 7-1:0.235: device disconnected [ 277.136079][T10586] loop1: detected capacity change from 0 to 2048 [ 277.222624][T10586] UDF-fs: error (device loop1): udf_read_tagged: tag version 0x0000 != 0x0002 || 0x0003, block 0 [ 277.285594][T10586] UDF-fs: warning (device loop1): udf_load_vrs: No anchor found [ 277.306082][T10586] UDF-fs: Scanning with blocksize 512 failed [ 277.373835][T10586] UDF-fs: INFO Mounting volume 'LinuxUDF', timestamp 2022/11/22 14:59 (1000) [ 277.517675][T10568] loop8: detected capacity change from 0 to 32768 [ 277.607123][ T30] audit: type=1326 audit(1746574476.225:141): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=10605 comm="syz.6.1656" exe="/root/syz-executor" sig=9 arch=c000003e syscall=231 compat=0 ip=0x7f19a618e969 code=0x0 [ 277.674493][T10568] JBD2: Ignoring recovery information on journal [ 277.807254][T10568] ocfs2: Mounting device (7,8) on (node local, slot 0) with ordered data mode. [ 277.928312][ T7461] ocfs2: Unmounting device (7,8) on (node local) [ 278.683300][T10644] loop9: detected capacity change from 0 to 256 [ 278.750177][T10645] loop8: detected capacity change from 0 to 1024 [ 278.793066][T10644] FAT-fs (loop9): Directory bread(block 64) failed [ 278.810337][T10644] FAT-fs (loop9): Directory bread(block 65) failed [ 278.834640][T10616] loop1: detected capacity change from 0 to 32768 [ 278.841194][T10644] FAT-fs (loop9): Directory bread(block 66) failed [ 278.860736][T10647] loop6: detected capacity change from 0 to 4096 [ 278.867534][ T30] audit: type=1800 audit(1746574477.485:142): pid=10645 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.8.1674" name="file1" dev="loop8" ino=20 res=0 errno=0 [ 278.870810][T10644] FAT-fs (loop9): Directory bread(block 67) failed [ 278.899727][T10647] ntfs3(loop6): Different NTFS sector size (1024) and media sector size (512). [ 278.906268][T10644] FAT-fs (loop9): Directory bread(block 68) failed [ 278.916654][T10644] FAT-fs (loop9): Directory bread(block 69) failed [ 278.923756][T10644] FAT-fs (loop9): Directory bread(block 70) failed [ 278.971887][T10644] FAT-fs (loop9): Directory bread(block 71) failed [ 279.025397][T10644] FAT-fs (loop9): Directory bread(block 72) failed [ 279.048268][T10644] FAT-fs (loop9): Directory bread(block 73) failed [ 279.408855][T10658] loop0: detected capacity change from 0 to 64 [ 279.540436][T10662] skbuff: bad partial csum: csum=65506/2 headroom=144 headlen=65526 [ 279.829715][ T30] audit: type=1326 audit(1746574478.445:143): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=10671 comm="syz.0.1687" exe="/root/syz-executor" sig=9 arch=c000003e syscall=231 compat=0 ip=0x7fa94af8e969 code=0x0 [ 279.977340][T10677] loop6: detected capacity change from 0 to 1024 [ 279.993360][T10677] EXT4-fs: Ignoring removed orlov option [ 279.999269][T10677] EXT4-fs: Ignoring removed nomblk_io_submit option [ 280.039387][T10677] EXT4-fs (loop6): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 280.084221][T10684] loop8: detected capacity change from 0 to 1024 [ 280.119764][T10684] EXT4-fs (loop8): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 280.169371][T10684] ext4 filesystem being mounted at /190/file1 supports timestamps until 2038-01-19 (0x7fffffff) [ 280.280516][ T6349] EXT4-fs (loop6): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 280.364876][ T36] EXT4-fs error (device loop8): ext4_mb_generate_buddy:1220: group 0, block bitmap and bg descriptor inconsistent: 21 vs 268369941 free clusters [ 280.391258][ T36] EXT4-fs (loop8): Remounting filesystem read-only [ 280.405495][ T7461] EXT4-fs (loop8): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 280.726436][T10703] loop8: detected capacity change from 0 to 4096 [ 280.764410][T10703] ntfs3(loop8): Different NTFS sector size (2048) and media sector size (512). [ 280.843716][T10709] Falling back ldisc for ptm0. [ 280.853168][T10703] ntfs3(loop8): ino=b, mi_enum_attr [ 280.878866][T10703] ntfs3(loop8): Mark volume as dirty due to NTFS errors [ 280.903866][T10703] ntfs3(loop8): Failed to load $Extend (-22). [ 280.912112][T10703] ntfs3(loop8): Failed to initialize $Extend. [ 281.051918][T10719] dummy0: entered promiscuous mode [ 281.069991][T10719] macvtap1: entered promiscuous mode [ 281.080104][T10719] macvtap1: entered allmulticast mode [ 281.089284][T10719] dummy0: entered allmulticast mode [ 281.115001][T10719] dummy0: left allmulticast mode [ 281.122290][T10719] dummy0: left promiscuous mode [ 281.264667][ T974] usb 7-1: new high-speed USB device number 7 using dummy_hcd [ 281.277758][T10724] openvswitch: netlink: VXLAN extension 2 out of range max 1 [ 281.442956][ T974] usb 7-1: Using ep0 maxpacket: 32 [ 281.480211][ T974] usb 7-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 281.511171][ T974] usb 7-1: config 0 interface 0 altsetting 16 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 281.536562][ T974] usb 7-1: config 0 interface 0 altsetting 16 endpoint 0x81 has invalid wMaxPacketSize 0 [ 281.563554][ T974] usb 7-1: config 0 interface 0 altsetting 16 has 1 endpoint descriptor, different from the interface descriptor's value: 5 [ 281.601244][ T974] usb 7-1: config 0 interface 0 has no altsetting 0 [ 281.620884][ T974] usb 7-1: New USB device found, idVendor=046d, idProduct=c29c, bcdDevice= 0.00 [ 281.650551][ T974] usb 7-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 281.697865][ T974] usb 7-1: config 0 descriptor?? [ 281.822759][T10737] loop2: detected capacity change from 0 to 64 [ 282.019761][T10740] pim6reg: entered allmulticast mode [ 282.058880][T10740] pim6reg: left allmulticast mode [ 282.099087][T10722] loop0: detected capacity change from 0 to 32768 [ 282.139734][ T974] logitech 0003:046D:C29C.000F: hidraw0: USB HID v0.00 Device [HID 046d:c29c] on usb-dummy_hcd.6-1/input0 [ 282.160413][T10722] XFS (loop0): Mounting V5 Filesystem bfdc47fc-10d8-4eed-a562-11a831b3f791 [ 282.323420][T10722] XFS (loop0): Ending clean mount [ 282.343856][T10753] (unnamed net_device) (uninitialized): (slave bond_slave_1): Device is not our slave [ 282.362428][T10753] (unnamed net_device) (uninitialized): option active_slave: invalid value (bond_slave_1) [ 282.363347][T10722] XFS (loop0): Quotacheck needed: Please wait. [ 282.500240][T10755] loop9: detected capacity change from 0 to 1024 [ 282.527147][ T974] logitech 0003:046D:C29C.000F: no inputs found [ 282.548028][T10755] EXT4-fs: Quota format mount options ignored when QUOTA feature is enabled [ 282.558997][ T974] usb 7-1: USB disconnect, device number 7 [ 282.599212][T10755] EXT4-fs (loop9): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 282.632747][T10722] XFS (loop0): Quotacheck: Done. [ 282.634020][T10734] loop8: detected capacity change from 0 to 32768 [ 282.667480][T10755] EXT4-fs (loop9): re-mounted 00000000-0000-0000-0000-000000000000 ro. [ 282.672538][T10734] BTRFS: device fsid ed167579-eb65-4e76-9a50-61ac97e9b59d devid 1 transid 8 /dev/loop8 (7:8) scanned by syz.8.1713 (10734) [ 282.729609][T10734] BTRFS info (device loop8): first mount of filesystem ed167579-eb65-4e76-9a50-61ac97e9b59d [ 282.750881][T10734] BTRFS info (device loop8): using sha256 (sha256-ni) checksum algorithm [ 282.770076][T10734] BTRFS info (device loop8): using free-space-tree [ 282.790782][ T7926] EXT4-fs (loop9): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 282.812269][ T5822] XFS (loop0): Unmounting Filesystem bfdc47fc-10d8-4eed-a562-11a831b3f791 [ 282.828888][T10763] netlink: 'syz.1.1722': attribute type 16 has an invalid length. [ 282.847671][T10763] netlink: 'syz.1.1722': attribute type 3 has an invalid length. [ 282.916220][T10763] netlink: 58290 bytes leftover after parsing attributes in process `syz.1.1722'. [ 283.011647][T10734] BTRFS info (device loop8): rebuilding free space tree [ 283.375407][ T7461] BTRFS info (device loop8): last unmount of filesystem ed167579-eb65-4e76-9a50-61ac97e9b59d [ 283.892668][ T879] usb 3-1: new high-speed USB device number 9 using dummy_hcd [ 284.112855][ T879] usb 3-1: Using ep0 maxpacket: 16 [ 284.118027][T10814] netlink: 16 bytes leftover after parsing attributes in process `syz.6.1741'. [ 284.118235][T10814] netlink: 16 bytes leftover after parsing attributes in process `syz.6.1741'. [ 284.196773][ T879] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 284.218614][ T879] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 284.252741][ T879] usb 3-1: New USB device found, idVendor=1b1c, idProduct=1b02, bcdDevice= 0.00 [ 284.292394][ T879] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 284.327556][ T879] usb 3-1: config 0 descriptor?? [ 284.489917][T10819] loop6: detected capacity change from 0 to 4096 [ 284.491130][T10794] loop9: detected capacity change from 0 to 32768 [ 284.526336][T10819] ntfs3(loop6): Different NTFS sector size (1024) and media sector size (512). [ 284.539396][T10800] loop1: detected capacity change from 0 to 32768 [ 284.565322][T10794] XFS (loop9): DAX unsupported by block device. Turning off DAX. [ 284.591095][T10794] XFS (loop9): Mounting V5 Filesystem c496e05e-540d-4c72-b591-04d79d8b4eeb [ 284.747841][T10794] XFS (loop9): Ending clean mount [ 284.781130][ T879] corsair 0003:1B1C:1B02.0010: hidraw0: USB HID v0.00 Device [HID 1b1c:1b02] on usb-dummy_hcd.2-1/input0 [ 284.826496][T10794] XFS (loop9): Quotacheck needed: Please wait. [ 284.981617][T10794] XFS (loop9): Quotacheck: Done. [ 284.988964][ T879] corsair 0003:1B1C:1B02.0010: Read invalid backlight brightness: d8. [ 285.021772][T10817] loop8: detected capacity change from 0 to 32768 [ 285.080796][T10817] XFS (loop8): Mounting V5 Filesystem c496e05e-540d-4c72-b591-04d79d8b4eeb [ 285.204123][T10817] XFS (loop8): Ending clean mount [ 285.209594][ T879] usb 3-1: USB disconnect, device number 9 [ 285.217941][ T7926] XFS (loop9): Unmounting Filesystem c496e05e-540d-4c72-b591-04d79d8b4eeb [ 285.406072][ T7461] XFS (loop8): Unmounting Filesystem c496e05e-540d-4c72-b591-04d79d8b4eeb [ 285.416222][T10852] netlink: 8 bytes leftover after parsing attributes in process `syz.6.1754'. [ 285.698338][T10858] sg_write: process 667 (syz.1.1755) changed security contexts after opening file descriptor, this is not allowed. [ 286.432808][T10877] netlink: zone id is out of range [ 286.447837][T10877] netlink: zone id is out of range [ 286.460165][T10877] netlink: zone id is out of range [ 286.480314][T10877] netlink: zone id is out of range [ 286.498025][T10877] netlink: zone id is out of range [ 286.516339][T10877] netlink: zone id is out of range [ 286.529743][T10877] netlink: zone id is out of range [ 286.552552][T10877] netlink: zone id is out of range [ 286.572480][T10877] netlink: zone id is out of range [ 286.577694][T10877] netlink: zone id is out of range [ 286.852519][T10866] loop1: detected capacity change from 0 to 32768 [ 286.873560][T10866] BTRFS: device fsid c9fe44da-de57-406a-8241-57ec7d4412cf devid 1 transid 8 /dev/loop1 (7:1) scanned by syz.1.1759 (10866) [ 286.912011][T10866] BTRFS info (device loop1): first mount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 286.939380][T10866] BTRFS info (device loop1): using crc32c (crc32c-x86_64) checksum algorithm [ 286.949335][T10862] loop9: detected capacity change from 0 to 32768 [ 286.964145][T10881] loop0: detected capacity change from 0 to 512 [ 286.988562][T10866] BTRFS info (device loop1): disk space caching is enabled [ 286.989620][T10862] (syz.9.1751,10862,1):ocfs2_block_check_validate:402 ERROR: CRC32 failed: stored: 0xb3775c19, computed 0x2dd1c265. Applying ECC. [ 286.998666][T10881] EXT4-fs: Journaled quota options ignored when QUOTA feature is enabled [ 287.028563][T10866] BTRFS warning (device loop1): space cache v1 is being deprecated and will be removed in a future release, please use -o space_cache=v2 [ 287.064596][ T0] NOHZ tick-stop error: local softirq work is pending, handler #200!!! [ 287.100270][T10862] (syz.9.1751,10862,0):ocfs2_block_check_validate:402 ERROR: CRC32 failed: stored: 0xb3775c19, computed 0x2dd1c265. Applying ECC. [ 287.119180][T10881] EXT4-fs error (device loop0): ext4_get_branch:178: inode #11: block 4294967295: comm syz.0.1765: invalid block [ 287.166427][T10870] loop6: detected capacity change from 0 to 32768 [ 287.178697][T10881] EXT4-fs error (device loop0): ext4_free_branches:1023: inode #11: comm syz.0.1765: invalid indirect mapped block 4294967295 (level 1) [ 287.199357][T10881] EXT4-fs error (device loop0): ext4_free_branches:1023: inode #11: comm syz.0.1765: invalid indirect mapped block 4294967295 (level 1) [ 287.227113][T10862] JBD2: Ignoring recovery information on journal [ 287.236413][T10881] EXT4-fs (loop0): 2 truncates cleaned up [ 287.253303][T10881] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 287.310329][T10870] XFS (loop6): Mounting V5 Filesystem bfdc47fc-10d8-4eed-a562-11a831b3f791 [ 287.347933][T10881] EXT4-fs error (device loop0): ext4_validate_block_bitmap:432: comm syz.0.1765: bg 0: block 5: invalid block bitmap [ 287.362219][T10862] ocfs2: Mounting device (7,9) on (node local, slot 0) with ordered data mode. [ 287.430275][T10881] EXT4-fs error (device loop0) in ext4_mb_clear_bb:6548: Corrupt filesystem [ 287.455902][T10866] BTRFS info (device loop1): rebuilding free space tree [ 287.528062][T10866] BTRFS info (device loop1): disabling free space tree [ 287.582595][T10866] BTRFS info (device loop1): clearing compat-ro feature flag for FREE_SPACE_TREE (0x1) [ 287.599016][T10870] XFS (loop6): Ending clean mount [ 287.616607][T10870] XFS (loop6): Quotacheck needed: Please wait. [ 287.618638][T10866] BTRFS info (device loop1): clearing compat-ro feature flag for FREE_SPACE_TREE_VALID (0x2) [ 287.640750][ T5822] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 287.731661][ T7926] ocfs2: Unmounting device (7,9) on (node local) [ 287.737981][T10870] XFS (loop6): Quotacheck: Done. [ 287.763751][ T5884] usb 9-1: new high-speed USB device number 9 using dummy_hcd [ 287.812637][ T5827] Bluetooth: hci4: command 0x0406 tx timeout [ 287.906899][ T6349] XFS (loop6): Unmounting Filesystem bfdc47fc-10d8-4eed-a562-11a831b3f791 [ 287.934263][ T5884] usb 9-1: Using ep0 maxpacket: 8 [ 287.953681][ T5884] usb 9-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 287.980820][ T5884] usb 9-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 287.997056][T10910] loop2: detected capacity change from 0 to 40427 [ 288.019689][ T5884] usb 9-1: New USB device found, idVendor=2179, idProduct=0053, bcdDevice= 0.00 [ 288.042017][ T5884] usb 9-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 288.056403][T10910] F2FS-fs (loop2): build fault injection attr: rate: 690, type: 0x3fffff [ 288.062500][ T5819] BTRFS info (device loop1): last unmount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 288.078002][ T5884] usb 9-1: config 0 descriptor?? [ 288.083603][T10910] F2FS-fs (loop2): Image doesn't support compression [ 288.135066][T10910] F2FS-fs (loop2): Image doesn't support compression [ 288.167963][T10910] F2FS-fs (loop2): invalid crc value [ 288.231622][T10918] mac80211_hwsim hwsim4 wlan0: entered promiscuous mode [ 288.307070][T10918] macsec2: entered promiscuous mode [ 288.379234][T10918] macsec2: entered allmulticast mode [ 288.412617][T10918] mac80211_hwsim hwsim4 wlan0: entered allmulticast mode [ 288.437967][T10910] F2FS-fs (loop2): Mounted with checkpoint version = 48b305e5 [ 288.502348][T10910] F2FS-fs (loop2): inject dquot initialize in f2fs_dquot_initialize of f2fs_link+0x2bd/0x720 [ 288.557078][ T5884] uclogic 0003:2179:0053.0011: interface is invalid, ignoring [ 288.702300][ T5825] syz-executor: attempt to access beyond end of device [ 288.702300][ T5825] loop2: rw=2049, sector=45096, nr_sectors = 16 limit=40427 [ 288.763997][T10930] loop9: detected capacity change from 0 to 256 [ 288.765915][ T5884] usb 9-1: USB disconnect, device number 9 [ 288.781512][T10930] FAT-fs (loop9): Volume was not properly unmounted. Some data may be corrupt. Please run fsck. [ 288.782444][ T5825] CPU: 0 UID: 0 PID: 5825 Comm: syz-executor Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 288.782508][ T5825] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 288.782523][ T5825] Call Trace: [ 288.782533][ T5825] [ 288.782544][ T5825] dump_stack_lvl+0x189/0x250 [ 288.782587][ T5825] ? __pfx_dump_stack_lvl+0x10/0x10 [ 288.782623][ T5825] ? __pfx_queue_work_on+0x10/0x10 [ 288.782645][ T5825] ? _raw_spin_unlock_irqrestore+0xad/0x110 [ 288.782671][ T5825] ? __pfx__raw_spin_unlock_irqrestore+0x10/0x10 [ 288.782699][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.782736][ T5825] f2fs_handle_critical_error+0x37c/0x540 [ 288.782771][ T5825] f2fs_write_end_io+0x4e2/0x6d0 [ 288.782824][ T5825] __submit_merged_bio+0x27a/0x6a0 [ 288.782857][ T5825] __submit_merged_write_cond+0x255/0x530 [ 288.782905][ T5825] f2fs_write_data_pages+0x2854/0x31f0 [ 288.782933][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783000][ T5825] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 288.783090][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783116][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783163][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783190][ T5825] ? __lock_acquire+0xaac/0xd20 [ 288.783233][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783273][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783300][ T5825] ? do_raw_spin_unlock+0x122/0x240 [ 288.783330][ T5825] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 288.783359][ T5825] do_writepages+0x3b1/0x7b0 [ 288.783410][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783437][ T5825] ? do_raw_spin_lock+0x121/0x290 [ 288.783464][ T5825] ? __pfx_do_writepages+0x10/0x10 [ 288.783499][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783531][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783556][ T5825] ? do_raw_spin_unlock+0x122/0x240 [ 288.783590][ T5825] filemap_fdatawrite+0x191/0x230 [ 288.783624][ T5825] ? __pfx_filemap_fdatawrite+0x10/0x10 [ 288.783706][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.783738][ T5825] ? do_raw_spin_unlock+0x122/0x240 [ 288.783771][ T5825] f2fs_sync_dirty_inodes+0x31f/0x830 [ 288.783826][ T5825] f2fs_write_checkpoint+0x94a/0x1de0 [ 288.783885][ T5825] ? __pfx_f2fs_write_checkpoint+0x10/0x10 [ 288.783972][ T5825] ? kill_f2fs_super+0x298/0x6c0 [ 288.784009][ T5825] kill_f2fs_super+0x2c3/0x6c0 [ 288.784047][ T5825] ? __pfx_kill_f2fs_super+0x10/0x10 [ 288.784075][ T5825] ? radix_tree_delete_item+0x2b6/0x400 [ 288.784110][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.784137][ T5825] ? shrinker_free+0x2ce/0x3e0 [ 288.784165][ T5825] deactivate_locked_super+0xbc/0x130 [ 288.784191][ T5825] cleanup_mnt+0x425/0x4c0 [ 288.784227][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.784254][ T5825] ? lockdep_hardirqs_on+0x9c/0x150 [ 288.784285][ T5825] task_work_run+0x1d4/0x260 [ 288.784321][ T5825] ? __pfx_task_work_run+0x10/0x10 [ 288.784352][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.784392][ T5825] resume_user_mode_work+0x5e/0x80 [ 288.784427][ T5825] syscall_exit_to_user_mode+0x9a/0x120 [ 288.784457][ T5825] do_syscall_64+0x103/0x210 [ 288.784487][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 288.784514][ T5825] ? exc_page_fault+0x91/0x110 [ 288.784543][ T5825] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 288.784566][ T5825] RIP: 0033:0x7fa5fdf8fc97 [ 288.784587][ T5825] Code: a8 ff ff ff f7 d8 64 89 01 48 83 c8 ff c3 0f 1f 44 00 00 31 f6 e9 09 00 00 00 66 0f 1f 84 00 00 00 00 00 b8 a6 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 01 c3 48 c7 c2 a8 ff ff ff f7 d8 64 89 02 b8 [ 288.784607][ T5825] RSP: 002b:00007fff50f82e08 EFLAGS: 00000246 ORIG_RAX: 00000000000000a6 [ 288.784631][ T5825] RAX: 0000000000000000 RBX: 00007fa5fe01089d RCX: 00007fa5fdf8fc97 [ 288.784647][ T5825] RDX: 0000000000000000 RSI: 0000000000000009 RDI: 00007fff50f82ec0 [ 288.784662][ T5825] RBP: 00007fff50f82ec0 R08: 0000000000000000 R09: 0000000000000000 [ 288.784678][ T5825] R10: 00000000ffffffff R11: 0000000000000246 R12: 00007fff50f83f50 [ 288.784694][ T5825] R13: 00007fa5fe01089d R14: 000000000004671c R15: 00007fff50f83f90 [ 288.784731][ T5825] [ 288.784741][ T5825] F2FS-fs (loop2): Stopped filesystem due to reason: 3 [ 288.854627][ T30] audit: type=1800 audit(1746574487.465:144): pid=10930 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.9.1775" name="file2" dev="loop9" ino=1048686 res=0 errno=0 [ 289.044416][ T5825] CPU: 0 UID: 0 PID: 5825 Comm: syz-executor Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 289.044451][ T5825] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 289.044465][ T5825] Call Trace: [ 289.044475][ T5825] [ 289.044485][ T5825] dump_stack_lvl+0x189/0x250 [ 289.044529][ T5825] ? __pfx_dump_stack_lvl+0x10/0x10 [ 289.044564][ T5825] ? __pfx_queue_work_on+0x10/0x10 [ 289.044586][ T5825] ? _raw_spin_unlock_irqrestore+0xad/0x110 [ 289.044613][ T5825] ? __pfx__raw_spin_unlock_irqrestore+0x10/0x10 [ 289.044640][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.044678][ T5825] f2fs_handle_critical_error+0x37c/0x540 [ 289.044711][ T5825] f2fs_write_end_io+0x4e2/0x6d0 [ 289.044759][ T5825] __submit_merged_bio+0x27a/0x6a0 [ 289.044792][ T5825] __submit_merged_write_cond+0x255/0x530 [ 289.044844][ T5825] f2fs_write_data_pages+0x2854/0x31f0 [ 289.044873][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.044939][ T5825] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 289.045027][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.045053][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.045100][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.045126][ T5825] ? __lock_acquire+0xaac/0xd20 [ 289.045169][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.045209][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.045235][ T5825] ? do_raw_spin_unlock+0x122/0x240 [ 289.045264][ T5825] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 289.045294][ T5825] do_writepages+0x3b1/0x7b0 [ 289.045345][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.045372][ T5825] ? do_raw_spin_lock+0x121/0x290 [ 289.045400][ T5825] ? __pfx_do_writepages+0x10/0x10 [ 289.045436][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.045467][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.045494][ T5825] ? do_raw_spin_unlock+0x122/0x240 [ 289.045528][ T5825] filemap_fdatawrite+0x191/0x230 [ 289.045562][ T5825] ? __pfx_filemap_fdatawrite+0x10/0x10 [ 289.045644][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.045677][ T5825] ? do_raw_spin_unlock+0x122/0x240 [ 289.045711][ T5825] f2fs_sync_dirty_inodes+0x31f/0x830 [ 289.045761][ T5825] f2fs_write_checkpoint+0x94a/0x1de0 [ 289.045827][ T5825] ? __pfx_f2fs_write_checkpoint+0x10/0x10 [ 289.045914][ T5825] ? kill_f2fs_super+0x298/0x6c0 [ 289.045951][ T5825] kill_f2fs_super+0x2c3/0x6c0 [ 289.045990][ T5825] ? __pfx_kill_f2fs_super+0x10/0x10 [ 289.046018][ T5825] ? radix_tree_delete_item+0x2b6/0x400 [ 289.046054][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.046080][ T5825] ? shrinker_free+0x2ce/0x3e0 [ 289.046109][ T5825] deactivate_locked_super+0xbc/0x130 [ 289.046136][ T5825] cleanup_mnt+0x425/0x4c0 [ 289.046173][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.046200][ T5825] ? lockdep_hardirqs_on+0x9c/0x150 [ 289.046231][ T5825] task_work_run+0x1d4/0x260 [ 289.046267][ T5825] ? __pfx_task_work_run+0x10/0x10 [ 289.046299][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.046338][ T5825] resume_user_mode_work+0x5e/0x80 [ 289.046372][ T5825] syscall_exit_to_user_mode+0x9a/0x120 [ 289.046402][ T5825] do_syscall_64+0x103/0x210 [ 289.046432][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 289.046462][ T5825] ? exc_page_fault+0x91/0x110 [ 289.046491][ T5825] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 289.046514][ T5825] RIP: 0033:0x7fa5fdf8fc97 [ 289.046535][ T5825] Code: a8 ff ff ff f7 d8 64 89 01 48 83 c8 ff c3 0f 1f 44 00 00 31 f6 e9 09 00 00 00 66 0f 1f 84 00 00 00 00 00 b8 a6 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 01 c3 48 c7 c2 a8 ff ff ff f7 d8 64 89 02 b8 [ 289.046555][ T5825] RSP: 002b:00007fff50f82e08 EFLAGS: 00000246 ORIG_RAX: 00000000000000a6 [ 289.046579][ T5825] RAX: 0000000000000000 RBX: 00007fa5fe01089d RCX: 00007fa5fdf8fc97 [ 289.046595][ T5825] RDX: 0000000000000000 RSI: 0000000000000009 RDI: 00007fff50f82ec0 [ 289.046611][ T5825] RBP: 00007fff50f82ec0 R08: 0000000000000000 R09: 0000000000000000 [ 289.046626][ T5825] R10: 00000000ffffffff R11: 0000000000000246 R12: 00007fff50f83f50 [ 289.046642][ T5825] R13: 00007fa5fe01089d R14: 000000000004671c R15: 00007fff50f83f90 [ 289.046680][ T5825] [ 289.046690][ T5825] F2FS-fs (loop2): Stopped filesystem due to reason: 3 [ 290.241894][T10950] loop0: detected capacity change from 0 to 2048 [ 290.272155][T10950] UDF-fs: error (device loop0): udf_read_tagged: tag checksum failed, block 99: 0x27 != 0x4d [ 290.273550][T10953] netlink: 'syz.1.1786': attribute type 39 has an invalid length. [ 290.323934][T10950] UDF-fs: INFO Mounting volume 'LinuxUDF', timestamp 2022/11/22 14:59 (1000) [ 290.388647][T10932] loop6: detected capacity change from 0 to 32768 [ 290.449476][T10932] XFS (loop6): Mounting V5 Filesystem bfdc47fc-10d8-4eed-a562-11a831b3f791 [ 290.653862][T10932] XFS (loop6): Ending clean mount [ 290.688634][T10932] XFS (loop6): Quotacheck needed: Please wait. [ 290.806123][T10932] XFS (loop6): Quotacheck: Done. [ 290.899967][T10978] lo: entered promiscuous mode [ 290.908429][T10975] lo: left promiscuous mode [ 290.998695][ T6349] XFS (loop6): Unmounting Filesystem bfdc47fc-10d8-4eed-a562-11a831b3f791 [ 291.133581][T10981] loop8: detected capacity change from 0 to 512 [ 291.206807][T10981] EXT4-fs error (device loop8): ext4_orphan_get:1391: inode #17: comm syz.8.1796: iget: bogus i_mode (0) [ 291.282897][T10981] EXT4-fs error (device loop8): ext4_orphan_get:1396: comm syz.8.1796: couldn't read orphan inode 17 (err -117) [ 291.299640][T10981] EXT4-fs (loop8): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 291.363314][T10981] EXT4-fs error (device loop8): ext4_validate_block_bitmap:432: comm syz.8.1796: bg 0: block 7: invalid block bitmap [ 291.518065][ T7461] EXT4-fs (loop8): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 291.694806][T10989] loop8: detected capacity change from 0 to 128 [ 291.757665][T10989] FAT-fs (loop8): Volume was not properly unmounted. Some data may be corrupt. Please run fsck. [ 291.834139][T10973] loop0: detected capacity change from 0 to 32768 [ 291.925026][ T30] audit: type=1800 audit(1746574490.545:145): pid=10973 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.0.1791" name="file1" dev="loop0" ino=4 res=0 errno=0 [ 292.158427][T10976] loop2: detected capacity change from 0 to 40427 [ 292.244807][T10976] F2FS-fs (loop2): invalid crc value [ 292.374116][T10985] loop9: detected capacity change from 0 to 32768 [ 292.448661][T10985] ocfs2: Slot 0 on device (7,9) was already allocated to this node! [ 292.502534][T10985] (syz.9.1797,10985,0):ocfs2_clear_journal_error:1125 ERROR: File system error -318767104 recorded in journal 0. [ 292.532405][T10985] (syz.9.1797,10985,1):ocfs2_clear_journal_error:1127 ERROR: File system on device loop9 needs checking. [ 292.585512][T10985] ocfs2: Mounting device (7,9) on (node local, slot 0) with ordered data mode. [ 292.608454][T10976] F2FS-fs (loop2): Mounted with checkpoint version = 48b305e4 [ 292.718301][ T30] audit: type=1800 audit(1746574491.335:146): pid=10985 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.9.1797" name="file2" dev="loop9" ino=17058 res=0 errno=0 [ 292.761400][T11007] loop1: detected capacity change from 0 to 256 [ 292.884034][ T7926] ocfs2: Unmounting device (7,9) on (node local) [ 292.975765][T11007] exFAT-fs (loop1): start_clu is invalid cluster(0x400) [ 293.040502][T10994] loop8: detected capacity change from 0 to 40427 [ 293.052108][T10992] loop6: detected capacity change from 0 to 32768 [ 293.071000][T10992] BTRFS: device fsid c9fe44da-de57-406a-8241-57ec7d4412cf devid 1 transid 8 /dev/loop6 (7:6) scanned by syz.6.1799 (10992) [ 293.100741][T10992] BTRFS info (device loop6): first mount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 293.143152][T10992] BTRFS info (device loop6): using crc32c (crc32c-x86_64) checksum algorithm [ 293.152047][T10992] BTRFS info (device loop6): disk space caching is enabled [ 293.210058][T10992] BTRFS warning (device loop6): space cache v1 is being deprecated and will be removed in a future release, please use -o space_cache=v2 [ 293.464415][T10994] F2FS-fs (loop8): Mounted with checkpoint version = 48b305e5 [ 293.489121][T10992] BTRFS info (device loop6): rebuilding free space tree [ 293.499377][T10994] F2FS-fs (loop8): Inconsistent error blkaddr:5633, sit bitmap:0 [ 293.512032][T10994] CPU: 0 UID: 0 PID: 10994 Comm: syz.8.1800 Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 293.512067][T10994] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 293.512082][T10994] Call Trace: [ 293.512092][T10994] [ 293.512102][T10994] dump_stack_lvl+0x189/0x250 [ 293.512149][T10994] ? __pfx_dump_stack_lvl+0x10/0x10 [ 293.512185][T10994] ? __pfx_f2fs_get_dnode_of_data+0x10/0x10 [ 293.512232][T10994] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.512266][T10994] __f2fs_is_valid_blkaddr+0xd84/0x14f0 [ 293.512310][T10994] f2fs_get_read_data_folio+0x25b/0x690 [ 293.512341][T10994] ? __pfx_f2fs_get_read_data_folio+0x10/0x10 [ 293.512375][T10994] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.512402][T10994] ? __filemap_get_folio+0x9a6/0xaf0 [ 293.512437][T10994] f2fs_find_data_folio+0x195/0x3c0 [ 293.512466][T10994] f2fs_readdir+0x47a/0x900 [ 293.512520][T10994] ? __pfx_f2fs_readdir+0x10/0x10 [ 293.512549][T10994] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.512580][T10994] ? __pfx___mutex_lock+0x10/0x10 [ 293.512612][T10994] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.512639][T10994] ? end_current_label_crit_section+0x152/0x180 [ 293.512672][T10994] ? iterate_dir+0x49f/0x770 [ 293.512696][T10994] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.512724][T10994] ? down_read_killable+0x1d1/0x350 [ 293.512756][T10994] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.512789][T10994] iterate_dir+0x5af/0x770 [ 293.512829][T10994] __se_sys_getdents64+0xe4/0x260 [ 293.512864][T10994] ? __pfx___se_sys_getdents64+0x10/0x10 [ 293.512890][T10994] ? __pfx_filldir64+0x10/0x10 [ 293.512928][T10994] ? do_syscall_64+0xba/0x210 [ 293.512963][T10994] do_syscall_64+0xf6/0x210 [ 293.512993][T10994] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.513021][T10994] ? exc_page_fault+0x91/0x110 [ 293.513051][T10994] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 293.513074][T10994] RIP: 0033:0x7f5c11b8e969 [ 293.513094][T10994] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 293.513114][T10994] RSP: 002b:00007f5c1296e038 EFLAGS: 00000246 ORIG_RAX: 00000000000000d9 [ 293.513139][T10994] RAX: ffffffffffffffda RBX: 00007f5c11db5fa0 RCX: 00007f5c11b8e969 [ 293.513157][T10994] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000000000004 [ 293.513171][T10994] RBP: 00007f5c11c10ab1 R08: 0000000000000000 R09: 0000000000000000 [ 293.513187][T10994] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 [ 293.513202][T10994] R13: 0000000000000000 R14: 00007f5c11db5fa0 R15: 00007ffcd3fa28a8 [ 293.513240][T10994] [ 293.781301][T10992] BTRFS info (device loop6): disabling free space tree [ 293.788290][T10992] BTRFS info (device loop6): clearing compat-ro feature flag for FREE_SPACE_TREE (0x1) [ 293.792086][T11034] F2FS-fs (loop8): Inconsistent error blkaddr:5633, sit bitmap:0 [ 293.798009][T10992] BTRFS info (device loop6): clearing compat-ro feature flag for FREE_SPACE_TREE_VALID (0x2) [ 293.920510][T11034] CPU: 0 UID: 0 PID: 11034 Comm: syz.8.1800 Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 293.920548][T11034] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 293.920564][T11034] Call Trace: [ 293.920573][T11034] [ 293.920583][T11034] dump_stack_lvl+0x189/0x250 [ 293.920630][T11034] ? __pfx_dump_stack_lvl+0x10/0x10 [ 293.920666][T11034] ? __pfx_f2fs_get_dnode_of_data+0x10/0x10 [ 293.920705][T11034] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.920738][T11034] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.920780][T11034] __f2fs_is_valid_blkaddr+0xd84/0x14f0 [ 293.920820][T11034] f2fs_get_read_data_folio+0x25b/0x690 [ 293.920851][T11034] ? __pfx_f2fs_get_read_data_folio+0x10/0x10 [ 293.920883][T11034] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.920910][T11034] ? __filemap_get_folio+0x79f/0xaf0 [ 293.920946][T11034] f2fs_find_data_folio+0x195/0x3c0 [ 293.920976][T11034] f2fs_readdir+0x47a/0x900 [ 293.921031][T11034] ? __pfx_f2fs_readdir+0x10/0x10 [ 293.921061][T11034] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.921091][T11034] ? __pfx___mutex_lock+0x10/0x10 [ 293.921124][T11034] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.921152][T11034] ? end_current_label_crit_section+0x152/0x180 [ 293.921186][T11034] ? iterate_dir+0x49f/0x770 [ 293.921210][T11034] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.921238][T11034] ? down_read_killable+0x1d1/0x350 [ 293.921270][T11034] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.921303][T11034] iterate_dir+0x5af/0x770 [ 293.921336][T11034] __se_sys_getdents64+0xe4/0x260 [ 293.921364][T11034] ? exc_page_fault+0x68/0x110 [ 293.921391][T11034] ? __pfx___se_sys_getdents64+0x10/0x10 [ 293.921417][T11034] ? __pfx_filldir64+0x10/0x10 [ 293.921464][T11034] ? do_syscall_64+0xba/0x210 [ 293.921502][T11034] do_syscall_64+0xf6/0x210 [ 293.921532][T11034] ? srso_alias_return_thunk+0x5/0xfbef5 [ 293.921560][T11034] ? exc_page_fault+0x91/0x110 [ 293.921602][T11034] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 293.921627][T11034] RIP: 0033:0x7f5c11b8e969 [ 293.921655][T11034] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 293.921671][T11034] RSP: 002b:00007f5c1294d038 EFLAGS: 00000246 ORIG_RAX: 00000000000000d9 [ 293.921696][T11034] RAX: ffffffffffffffda RBX: 00007f5c11db6080 RCX: 00007f5c11b8e969 [ 293.921711][T11034] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000000000004 [ 293.921723][T11034] RBP: 00007f5c11c10ab1 R08: 0000000000000000 R09: 0000000000000000 [ 293.921734][T11034] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 [ 293.921746][T11034] R13: 0000000000000001 R14: 00007f5c11db6080 R15: 00007ffcd3fa28a8 [ 293.921786][T11034] [ 294.199691][T11038] netlink: 72 bytes leftover after parsing attributes in process `syz.1.1808'. [ 294.235590][ T6349] BTRFS info (device loop6): last unmount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 294.462403][T11049] loop0: detected capacity change from 0 to 2048 [ 294.597997][T11049] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 294.663504][T11049] ext4 filesystem being mounted at /337/file0 supports timestamps until 2038-01-19 (0x7fffffff) [ 294.735709][ T5884] usb 3-1: new high-speed USB device number 10 using dummy_hcd [ 294.865456][ T5822] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 294.892457][ T5884] usb 3-1: Using ep0 maxpacket: 16 [ 294.936348][ T5884] usb 3-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 294.961526][ T5884] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x82 has an invalid bInterval 0, changing to 7 [ 295.012443][ T5884] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x2 has invalid wMaxPacketSize 0 [ 295.028310][ T5884] usb 3-1: config 0 interface 0 altsetting 0 bulk endpoint 0x2 has invalid maxpacket 0 [ 295.038652][ T5884] usb 3-1: config 0 interface 0 altsetting 0 has 2 endpoint descriptors, different from the interface descriptor's value: 3 [ 295.081101][ T5884] usb 3-1: New USB device found, idVendor=2040, idProduct=b138, bcdDevice= 1.42 [ 295.090793][ T5884] usb 3-1: New USB device strings: Mfr=4, Product=0, SerialNumber=0 [ 295.110835][ T5884] usb 3-1: Manufacturer: syz [ 295.118736][ T5884] usb 3-1: config 0 descriptor?? [ 295.251326][T11074] loop6: detected capacity change from 0 to 256 [ 295.387627][T11074] FAT-fs (loop6): Directory bread(block 64) failed [ 295.410392][T11074] FAT-fs (loop6): Directory bread(block 65) failed [ 295.428848][T11074] FAT-fs (loop6): Directory bread(block 66) failed [ 295.459285][T11074] FAT-fs (loop6): Directory bread(block 67) failed [ 295.467594][T11074] FAT-fs (loop6): Directory bread(block 68) failed [ 295.482438][ T5884] rc_core: IR keymap rc-hauppauge not found [ 295.488552][ T5884] Registered IR keymap rc-empty [ 295.494765][T11074] FAT-fs (loop6): Directory bread(block 69) failed [ 295.501451][T11074] FAT-fs (loop6): Directory bread(block 70) failed [ 295.507921][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 295.542571][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 295.549786][T11074] FAT-fs (loop6): Directory bread(block 71) failed [ 295.549952][T11074] FAT-fs (loop6): Directory bread(block 72) failed [ 295.598269][T11074] FAT-fs (loop6): Directory bread(block 73) failed [ 295.614272][ T5884] rc rc0: Conexant Hybrid TV (cx231xx) MCE IR no TX as /devices/platform/dummy_hcd.2/usb3/3-1/3-1:0.0/rc/rc0 [ 295.654639][ T5884] input: Conexant Hybrid TV (cx231xx) MCE IR no TX as /devices/platform/dummy_hcd.2/usb3/3-1/3-1:0.0/rc/rc0/input17 [ 295.703051][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 295.760106][T11089] loop9: detected capacity change from 0 to 64 [ 295.782692][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 295.825528][T11087] loop8: detected capacity change from 0 to 2048 [ 295.836808][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 295.872709][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 295.899702][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 295.902060][T11087] EXT4-fs (loop8): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 295.922489][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 295.939655][T11094] vlan3: entered allmulticast mode [ 295.943030][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 295.945500][T11094] mac80211_hwsim hwsim15 wlan0: entered allmulticast mode [ 295.987932][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 296.012465][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 296.033813][ T5884] mceusb 3-1:0.0: Error: mce write submit urb error = -90 [ 296.046086][T11087] EXT4-fs: Ignoring removed bh option [ 296.070419][ T5884] mceusb 3-1:0.0: Registered 424242424242 with mce emulator interface version 1 [ 296.079682][ T5884] mceusb 3-1:0.0: 2 tx ports (0x0 cabled) and 2 rx sensors (0x0 active) [ 296.101551][ T5884] usb 3-1: USB disconnect, device number 10 [ 296.107866][T11087] EXT4-fs (loop8): can't disable delalloc during remount [ 296.227715][ T7461] EXT4-fs error (device loop8): ext4_mb_generate_buddy:1220: group 0, block bitmap and bg descriptor inconsistent: 25 vs 4128793 free clusters [ 296.306262][T11106] loop6: detected capacity change from 0 to 8 [ 296.321763][ T7461] EXT4-fs (loop8): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 296.362193][T11106] SQUASHFS error: Failed to read block 0x4de: -5 [ 296.375987][T11108] syzkaller0: tun_chr_ioctl cmd 2147767506 [ 296.399477][T11106] SQUASHFS error: Failed to read block 0x4de: -5 [ 296.410972][T11106] SQUASHFS error: Failed to read block 0x4de: -5 [ 296.424752][T11106] SQUASHFS error: Failed to read block 0x4de: -5 [ 296.431289][T11106] SQUASHFS error: Failed to read block 0x4de: -5 [ 296.441123][ T30] audit: type=1800 audit(1746574495.055:147): pid=11106 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed comm="syz.6.1834" name="file1" dev="loop6" ino=5 res=0 errno=0 [ 296.833592][T11121] Falling back ldisc for ttyS3. [ 297.531327][T11117] loop6: detected capacity change from 0 to 32768 [ 297.626536][T11117] JBD2: Ignoring recovery information on journal [ 297.727645][T11132] loop8: detected capacity change from 0 to 4096 [ 297.766024][T11117] ocfs2: Mounting device (7,6) on (node local, slot 0) with ordered data mode. [ 297.826902][T11117] OCFS2: ERROR (device loop6): int ocfs2_xattr_find_entry(struct inode *, int, const char *, struct ocfs2_xattr_search *): corrupted xattr entries [ 297.827038][T11117] On-disk corruption discovered. Please run fsck.ocfs2 once the filesystem is unmounted. [ 297.956179][T11117] OCFS2: File system is now read-only. [ 298.154926][ T6349] ocfs2: Unmounting device (7,6) on (node local) [ 298.165558][T11123] loop2: detected capacity change from 0 to 40427 [ 298.174006][T11126] loop9: detected capacity change from 0 to 40427 [ 298.185973][T11141] loop0: detected capacity change from 0 to 1024 [ 298.210079][T11126] F2FS-fs (loop9): Invalid log_blocksize (268), supports only 12 [ 298.233622][T11126] F2FS-fs (loop9): Can't find valid F2FS filesystem in 1th superblock [ 298.234508][T11123] F2FS-fs (loop2): build fault injection attr: rate: 771, type: 0x3fffff [ 298.275169][T11141] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 298.315211][T11123] F2FS-fs (loop2): invalid crc value [ 298.374522][T11126] F2FS-fs (loop9): invalid crc value [ 298.534460][ T5822] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 298.745034][T11123] F2FS-fs (loop2): Mounted with checkpoint version = 48b305e5 [ 298.845310][ T30] audit: type=1800 audit(1746574497.455:148): pid=11123 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.2.1843" name="file1" dev="loop2" ino=10 res=0 errno=0 [ 298.922866][T11126] F2FS-fs (loop9): Try to recover 1th superblock, ret: 0 [ 298.925992][T11158] loop6: detected capacity change from 0 to 4096 [ 298.936203][T11126] F2FS-fs (loop9): Mounted with checkpoint version = 48b305e5 [ 298.979324][T11162] loop0: detected capacity change from 0 to 1024 [ 298.987849][T11165] netlink: 76 bytes leftover after parsing attributes in process `syz.1.1857'. [ 299.084134][T11158] ntfs3(loop6): Mark volume as dirty due to NTFS errors [ 299.084843][ T5825] syz-executor: attempt to access beyond end of device [ 299.084843][ T5825] loop2: rw=2049, sector=45096, nr_sectors = 8 limit=40427 [ 299.127940][ T5825] CPU: 1 UID: 0 PID: 5825 Comm: syz-executor Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 299.127974][ T5825] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 299.127989][ T5825] Call Trace: [ 299.127999][ T5825] [ 299.128009][ T5825] dump_stack_lvl+0x189/0x250 [ 299.128053][ T5825] ? __pfx_dump_stack_lvl+0x10/0x10 [ 299.128088][ T5825] ? __pfx_queue_work_on+0x10/0x10 [ 299.128111][ T5825] ? _raw_spin_unlock_irqrestore+0xad/0x110 [ 299.128137][ T5825] ? __pfx__raw_spin_unlock_irqrestore+0x10/0x10 [ 299.128164][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.128203][ T5825] f2fs_handle_critical_error+0x37c/0x540 [ 299.128238][ T5825] f2fs_write_end_io+0x4e2/0x6d0 [ 299.128286][ T5825] __submit_merged_bio+0x27a/0x6a0 [ 299.128319][ T5825] __submit_merged_write_cond+0x255/0x530 [ 299.128368][ T5825] f2fs_write_data_pages+0x2854/0x31f0 [ 299.128395][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.128466][ T5825] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 299.128552][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.128613][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.128639][ T5825] ? __lock_acquire+0xaac/0xd20 [ 299.128684][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.128724][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.128751][ T5825] ? do_raw_spin_unlock+0x122/0x240 [ 299.128781][ T5825] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 299.128809][ T5825] do_writepages+0x3b1/0x7b0 [ 299.128860][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.128887][ T5825] ? do_raw_spin_lock+0x121/0x290 [ 299.128914][ T5825] ? __pfx_do_writepages+0x10/0x10 [ 299.128949][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.128980][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.129007][ T5825] ? do_raw_spin_unlock+0x122/0x240 [ 299.129041][ T5825] filemap_fdatawrite+0x191/0x230 [ 299.129075][ T5825] ? __pfx_filemap_fdatawrite+0x10/0x10 [ 299.129154][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.129186][ T5825] ? do_raw_spin_unlock+0x122/0x240 [ 299.129220][ T5825] f2fs_sync_dirty_inodes+0x31f/0x830 [ 299.129269][ T5825] f2fs_write_checkpoint+0x94a/0x1de0 [ 299.129329][ T5825] ? __pfx_f2fs_write_checkpoint+0x10/0x10 [ 299.129413][ T5825] ? f2fs_stop_gc_thread+0x7f/0xb0 [ 299.129444][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.129471][ T5825] ? kfree+0x193/0x440 [ 299.129500][ T5825] ? kill_f2fs_super+0x298/0x6c0 [ 299.129540][ T5825] kill_f2fs_super+0x2c3/0x6c0 [ 299.129592][ T5825] ? __pfx_kill_f2fs_super+0x10/0x10 [ 299.129621][ T5825] ? radix_tree_delete_item+0x2b6/0x400 [ 299.129657][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.129684][ T5825] ? shrinker_free+0x2ce/0x3e0 [ 299.129712][ T5825] deactivate_locked_super+0xbc/0x130 [ 299.129738][ T5825] cleanup_mnt+0x425/0x4c0 [ 299.129776][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.129803][ T5825] ? lockdep_hardirqs_on+0x9c/0x150 [ 299.129835][ T5825] task_work_run+0x1d4/0x260 [ 299.129871][ T5825] ? __pfx_task_work_run+0x10/0x10 [ 299.129903][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.129943][ T5825] resume_user_mode_work+0x5e/0x80 [ 299.129979][ T5825] syscall_exit_to_user_mode+0x9a/0x120 [ 299.130009][ T5825] do_syscall_64+0x103/0x210 [ 299.130040][ T5825] ? srso_alias_return_thunk+0x5/0xfbef5 [ 299.130067][ T5825] ? exc_page_fault+0x91/0x110 [ 299.130097][ T5825] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 299.130121][ T5825] RIP: 0033:0x7fa5fdf8fc97 [ 299.130142][ T5825] Code: a8 ff ff ff f7 d8 64 89 01 48 83 c8 ff c3 0f 1f 44 00 00 31 f6 e9 09 00 00 00 66 0f 1f 84 00 00 00 00 00 b8 a6 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 01 c3 48 c7 c2 a8 ff ff ff f7 d8 64 89 02 b8 [ 299.130163][ T5825] RSP: 002b:00007fff50f82e08 EFLAGS: 00000246 ORIG_RAX: 00000000000000a6 [ 299.130187][ T5825] RAX: 0000000000000000 RBX: 00007fa5fe01089d RCX: 00007fa5fdf8fc97 [ 299.130205][ T5825] RDX: 0000000000000000 RSI: 0000000000000009 RDI: 00007fff50f82ec0 [ 299.130220][ T5825] RBP: 00007fff50f82ec0 R08: 0000000000000000 R09: 0000000000000000 [ 299.130236][ T5825] R10: 00000000ffffffff R11: 0000000000000246 R12: 00007fff50f83f50 [ 299.130253][ T5825] R13: 00007fa5fe01089d R14: 0000000000048f76 R15: 00007fff50f83f90 [ 299.130291][ T5825] [ 299.130790][ T5825] F2FS-fs (loop2): Stopped filesystem due to reason: 3 [ 299.138115][T11158] ntfs3(loop6): ino=9, ntfs_sync_fs failed, -22. [ 299.588505][ T7736] hfsplus: b-tree write err: -5, ino 4 [ 299.624642][ T6349] ntfs3(loop6): ino=9, ntfs_sync_fs failed, -22. [ 299.934095][T11182] net_ratelimit: 100 callbacks suppressed [ 299.934122][T11182] A link change request failed with some changes committed already. Interface bond0 may have been left with an inconsistent configuration, please check. [ 300.015640][T11187] loop0: detected capacity change from 0 to 512 [ 300.070574][T11187] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 300.255456][T11187] EXT4-fs (loop0): shut down requested (1) [ 300.383240][T11190] loop8: detected capacity change from 0 to 32768 [ 300.400940][T11190] (syz.8.1869,11190,0):ocfs2_block_check_validate:402 ERROR: CRC32 failed: stored: 0xb3775c19, computed 0x2dd1c265. Applying ECC. [ 300.415091][T11190] (syz.8.1869,11190,0):ocfs2_block_check_validate:402 ERROR: CRC32 failed: stored: 0xb3775c19, computed 0x2dd1c265. Applying ECC. [ 300.450436][T11190] JBD2: Ignoring recovery information on journal [ 300.484025][ T5822] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 300.508450][T11190] ocfs2: Mounting device (7,8) on (node local, slot 0) with ordered data mode. [ 300.671296][T11190] (syz.8.1869,11190,0):ocfs2_block_check_validate:402 ERROR: CRC32 failed: stored: 0x1cec3d0f, computed 0x8a715327. Applying ECC. [ 300.685313][T11190] (syz.8.1869,11190,0):ocfs2_block_check_validate:416 ERROR: Fixed CRC32 failed: stored: 0x1cec3d0f, computed 0x9e78a67 [ 300.698315][T11190] (syz.8.1869,11190,0):ocfs2_read_quota_phys_block:160 ERROR: status = -5 [ 300.710136][T11190] (syz.8.1869,11190,0):ocfs2_quota_read:201 ERROR: status = -5 [ 300.717809][T11190] Quota error (device loop8): find_tree_dqentry: Can't read quota tree block 4 [ 300.727290][T11190] Quota error (device loop8): qtree_read_dquot: Can't read quota structure for id 0 [ 300.736745][T11190] (syz.8.1869,11190,0):ocfs2_acquire_dquot:890 ERROR: status = -5 [ 300.745910][T11190] (syz.8.1869,11190,0):ocfs2_symlink:1891 ERROR: status = -5 [ 300.753367][T11190] (syz.8.1869,11190,0):ocfs2_symlink:2077 ERROR: status = -5 [ 300.920441][ T7461] ocfs2: Unmounting device (7,8) on (node local) [ 301.013624][T11208] netlink: 'syz.9.1862': attribute type 25 has an invalid length. [ 301.449880][T11220] netlink: 188 bytes leftover after parsing attributes in process `syz.6.1880'. [ 301.513468][T11218] loop8: detected capacity change from 0 to 2048 [ 301.560284][T11222] NILFS (loop8): segctord starting. Construction interval = 5 seconds, CP frequency < 30 seconds [ 301.587544][T11199] loop2: detected capacity change from 0 to 32768 [ 301.625693][T11199] BTRFS: device fsid ed167579-eb65-4e76-9a50-61ac97e9b59d devid 1 transid 8 /dev/loop2 (7:2) scanned by syz.2.1871 (11199) [ 301.637273][T11194] loop1: detected capacity change from 0 to 32768 [ 301.677064][T11199] BTRFS info (device loop2): first mount of filesystem ed167579-eb65-4e76-9a50-61ac97e9b59d [ 301.708167][T11199] BTRFS info (device loop2): using sha256 (sha256-ni) checksum algorithm [ 301.721462][T11228] IPVS: sync thread started: state = MASTER, mcast_ifn = hsr0, syncid = 0, id = 0 [ 301.731932][T11229] IPVS: sync thread started: state = MASTER, mcast_ifn = hsr0, syncid = 0, id = 1 [ 301.733594][T11199] BTRFS info (device loop2): using free-space-tree [ 301.744658][T11232] loop9: detected capacity change from 0 to 64 [ 301.748312][T11230] IPVS: sync thread started: state = MASTER, mcast_ifn = hsr0, syncid = 0, id = 2 [ 301.776708][T11231] IPVS: sync thread started: state = MASTER, mcast_ifn = hsr0, syncid = 0, id = 3 [ 301.951505][T11199] BTRFS info (device loop2): rebuilding free space tree [ 302.480644][ T5825] BTRFS info (device loop2): last unmount of filesystem ed167579-eb65-4e76-9a50-61ac97e9b59d [ 302.542859][T11264] loop0: detected capacity change from 0 to 512 [ 302.694538][T11264] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 302.771930][T11264] ext4 filesystem being mounted at /356/bus supports timestamps until 2038-01-19 (0x7fffffff) [ 302.871750][T11264] EXT4-fs (loop0): shut down requested (2) [ 303.004863][ T5822] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 303.230311][T11254] loop6: detected capacity change from 0 to 32768 [ 303.415587][T11254] bcachefs (da441363-bb6a-4ab9-999b-c1f40db4fee2): Using encoding defined by superblock: utf8-12.1.0 [ 303.454965][T11254] bcachefs (loop6): starting version 0.263: (unknown version) opts=errors=continue,metadata_checksum=none,data_checksum=none,compression=lz4,nojournal_transaction_names [ 303.454965][T11254] allowing incompatible features above 0.0: (unknown version) [ 303.481768][T11254] bcachefs (loop6): initializing new filesystem [ 303.489105][T11254] bcachefs (loop6): going read-write [ 303.537425][T11254] bcachefs (loop6): marking superblocks [ 303.708360][T11254] bcachefs (loop6): initializing freespace [ 303.720502][T11309] loop1: detected capacity change from 0 to 256 [ 303.757104][T11254] bcachefs (loop6): done initializing freespace [ 303.801132][T11254] bcachefs (loop6): reading snapshots table [ 303.829082][T11254] bcachefs (loop6): reading snapshots done [ 303.900147][T11254] bcachefs (loop6): done starting filesystem [ 304.018231][T11315] netlink: 'syz.1.1907': attribute type 9 has an invalid length. [ 304.026745][T11315] netlink: 20 bytes leftover after parsing attributes in process `syz.1.1907'. [ 304.088820][T11312] loop8: detected capacity change from 0 to 4096 [ 304.128128][T11312] ntfs3(loop8): Different NTFS sector size (4096) and media sector size (512). [ 304.130257][ T6349] bcachefs (loop6): shutting down [ 304.163419][ T6349] bcachefs (loop6): going read-only [ 304.181638][ T6349] bcachefs (loop6): finished waiting for writes to stop [ 304.267873][ T6349] bcachefs (loop6): flushing journal and stopping allocators, journal seq 3 [ 304.481487][ T6349] bcachefs (loop6): flushing journal and stopping allocators complete, journal seq 3 [ 304.532774][ T6349] bcachefs (loop6): clean shutdown complete, journal seq 4 [ 304.590461][ T6349] bcachefs (loop6): marking filesystem clean [ 304.615166][T11327] loop8: detected capacity change from 0 to 64 [ 304.795282][ T6349] bcachefs (loop6): shutdown complete [ 304.891015][T11337] pci 0000:00:05.0: vgaarb: VGA decodes changed: olddecodes=io+mem,decodes=none:owns=io+mem [ 305.149269][T11341] loop2: detected capacity change from 0 to 256 [ 305.165965][T11341] exfat: Deprecated parameter 'namecase' [ 305.229040][T11341] exFAT-fs (loop2): failed to load upcase table (idx : 0x00010000, chksum : 0x36e00b20, utbl_chksum : 0xe619d30d) [ 305.478511][T11329] loop9: detected capacity change from 0 to 32768 [ 305.520283][T11329] BTRFS: device fsid 395ef67a-297e-477c-816d-cd80a5b93e5d devid 1 transid 8 /dev/loop9 (7:9) scanned by syz.9.1914 (11329) [ 305.569010][T11346] loop2: detected capacity change from 0 to 512 [ 305.598379][T11346] EXT4-fs (loop2): encrypted files will use data=ordered instead of data journaling mode [ 305.623380][T11329] BTRFS info (device loop9): first mount of filesystem 395ef67a-297e-477c-816d-cd80a5b93e5d [ 305.639366][T11346] EXT4-fs (loop2): 1 truncate cleaned up [ 305.653702][T11329] BTRFS info (device loop9): using sha256 (sha256-ni) checksum algorithm [ 305.658876][T11346] EXT4-fs (loop2): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 305.662227][T11329] BTRFS info (device loop9): using free-space-tree [ 305.693795][T11336] loop0: detected capacity change from 0 to 32768 [ 305.718761][ T30] audit: type=1800 audit(1746574504.315:149): pid=11346 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.2.1922" name="file1" dev="loop2" ino=15 res=0 errno=0 [ 305.761270][ T5825] EXT4-fs (loop2): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 305.763847][ T30] audit: type=1800 audit(1746574504.325:150): pid=11346 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.2.1922" name="file2" dev="loop2" ino=16 res=0 errno=0 [ 305.807221][T11336] JBD2: Ignoring recovery information on journal [ 305.887166][T11336] ocfs2: Mounting device (7,0) on (node local, slot 0) with ordered data mode. [ 306.031718][ T30] audit: type=1800 audit(1746574504.645:151): pid=11336 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.0.1917" name="file1" dev="loop0" ino=17058 res=0 errno=0 [ 306.143637][ T30] audit: type=1804 audit(1746574504.755:152): pid=11377 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=invalid_pcr cause=open_writers comm="syz.0.1917" name="/newroot/361/file1/file1" dev="loop0" ino=17058 res=1 errno=0 [ 306.178335][T11379] loop1: detected capacity change from 0 to 1024 [ 306.187518][ T7926] BTRFS info (device loop9): last unmount of filesystem 395ef67a-297e-477c-816d-cd80a5b93e5d [ 306.304591][T11379] EXT4-fs (loop1): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 306.467266][ T5822] ocfs2: Unmounting device (7,0) on (node local) [ 306.551767][ T5819] EXT4-fs (loop1): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 306.646026][T11385] Bluetooth: received HCILL_WAKE_UP_ACK in state 2 [ 306.732076][ T5910] Bluetooth: hci6: Frame reassembly failed (-84) [ 306.831652][T11387] loop1: detected capacity change from 0 to 256 [ 307.403700][T11401] netlink: 4 bytes leftover after parsing attributes in process `syz.8.1937'. [ 307.452491][T11401] netlink: 4 bytes leftover after parsing attributes in process `syz.8.1937'. [ 307.829991][T11413] netlink: 28 bytes leftover after parsing attributes in process `syz.6.1942'. [ 307.840088][T11413] netem: change failed [ 307.842506][ T5891] usb 1-1: new high-speed USB device number 6 using dummy_hcd [ 307.947923][T11407] loop9: detected capacity change from 0 to 32768 [ 307.981232][T11407] XFS (loop9): Mounting V5 Filesystem d7dc424e-7990-42cb-9f91-9cb7200a101d [ 308.025933][ T5891] usb 1-1: config 1 has too many interfaces: 66, using maximum allowed: 32 [ 308.037451][ T5891] usb 1-1: config 1 has an invalid descriptor of length 0, skipping remainder of the config [ 308.048346][ T5891] usb 1-1: config 1 has 1 interface, different from the descriptor's value: 66 [ 308.057697][ T5891] usb 1-1: config 1 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 308.065513][T11407] XFS (loop9): Ending clean mount [ 308.071524][ T5891] usb 1-1: New USB device found, idVendor=7d25, idProduct=a415, bcdDevice= 0.40 [ 308.088943][ T5891] usb 1-1: New USB device strings: Mfr=1, Product=4, SerialNumber=0 [ 308.115404][ T5891] usb 1-1: Product: syz [ 308.129972][ T5891] usb 1-1: Manufacturer: syz [ 308.164929][ T5891] cdc_wdm 1-1:1.0: skipping garbage [ 308.170290][ T5891] cdc_wdm 1-1:1.0: skipping garbage [ 308.202681][ T5891] cdc_wdm 1-1:1.0: cdc-wdm0: USB WDM device [ 308.219007][ T5891] cdc_wdm 1-1:1.0: Unknown control protocol [ 308.293260][ T7926] XFS (loop9): Unmounting Filesystem d7dc424e-7990-42cb-9f91-9cb7200a101d [ 308.404222][ T5891] usb 1-1: USB disconnect, device number 6 [ 308.697756][ T5827] Bluetooth: hci6: Opcode 0x1003 failed: -110 [ 308.703546][ T5835] Bluetooth: hci6: command 0x1003 tx timeout [ 309.520788][T11452] netlink: 4 bytes leftover after parsing attributes in process `syz.2.1956'. [ 310.446836][ T5835] Bluetooth: hci3: unexpected cc 0x0c03 length: 249 > 1 [ 310.457132][ T5835] Bluetooth: hci3: unexpected cc 0x1003 length: 249 > 9 [ 310.474766][ T5835] Bluetooth: hci3: unexpected cc 0x1001 length: 249 > 9 [ 310.484969][ T5835] Bluetooth: hci3: unexpected cc 0x0c23 length: 249 > 4 [ 310.493995][ T5835] Bluetooth: hci3: unexpected cc 0x0c38 length: 249 > 2 [ 310.989715][T11465] loop8: detected capacity change from 0 to 131072 [ 311.137639][T11465] F2FS-fs (loop8): Mounted with checkpoint version = 48b305e5 [ 311.195840][T11465] F2FS-fs (loop8): recover xattr in inode (7), error(0) [ 311.204456][T11465] F2FS-fs (loop8): set inode (7) has corrupted xattr [ 311.506338][T11499] netdevsim netdevsim0 netdevsim0: set [0, 0] type 1 family 0 port 8472 - 0 [ 311.516376][T11499] netdevsim netdevsim0 netdevsim1: set [0, 0] type 1 family 0 port 8472 - 0 [ 311.525263][T11499] netdevsim netdevsim0 netdevsim2: set [0, 0] type 1 family 0 port 8472 - 0 [ 311.534363][T11499] netdevsim netdevsim0 netdevsim3: set [0, 0] type 1 family 0 port 8472 - 0 [ 311.592497][T11499] vxlan1: entered promiscuous mode [ 311.597700][T11499] vxlan1: entered allmulticast mode [ 311.673621][T11509] loop2: detected capacity change from 0 to 512 [ 311.721419][T11480] chnl_net:caif_netlink_parms(): no params data found [ 311.723904][T11509] EXT4-fs error (device loop2): ext4_orphan_get:1391: inode #15: comm syz.2.1981: iget: bad extended attribute block 1 [ 311.797395][T11509] EXT4-fs error (device loop2): ext4_orphan_get:1396: comm syz.2.1981: couldn't read orphan inode 15 (err -117) [ 311.824321][T11475] loop9: detected capacity change from 0 to 32768 [ 311.833409][T11475] XFS: attr2 mount option is deprecated. [ 311.842643][T11509] EXT4-fs (loop2): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 311.909371][T11475] XFS (loop9): Mounting V5 Filesystem d7dc424e-7990-42cb-9f91-9cb7200a101d [ 311.960469][ T5825] EXT4-fs (loop2): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 312.011061][T11475] XFS (loop9): Ending clean mount [ 312.058008][T11475] XFS (loop9): Quotacheck needed: Please wait. [ 312.115213][T11480] bridge0: port 1(bridge_slave_0) entered blocking state [ 312.132637][T11480] bridge0: port 1(bridge_slave_0) entered disabled state [ 312.140022][T11480] bridge_slave_0: entered allmulticast mode [ 312.164506][T11480] bridge_slave_0: entered promiscuous mode [ 312.185466][T11480] bridge0: port 2(bridge_slave_1) entered blocking state [ 312.201263][T11480] bridge0: port 2(bridge_slave_1) entered disabled state [ 312.208770][T11475] XFS (loop9): Quotacheck: Done. [ 312.218538][T11480] bridge_slave_1: entered allmulticast mode [ 312.227034][T11480] bridge_slave_1: entered promiscuous mode [ 312.252758][T11528] loop2: detected capacity change from 0 to 1024 [ 312.257952][ T30] audit: type=1800 audit(1746574510.875:153): pid=11475 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.9.1968" name="file1" dev="loop9" ino=6150 res=0 errno=0 [ 312.406049][T11480] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 312.427866][T11480] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 312.495971][ T7926] XFS (loop9): Unmounting Filesystem d7dc424e-7990-42cb-9f91-9cb7200a101d [ 312.532881][ T5835] Bluetooth: hci3: command tx timeout [ 312.625763][T11480] team0: Port device team_slave_0 added [ 312.734287][T11480] team0: Port device team_slave_1 added [ 313.062696][T11480] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 313.069715][T11480] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 313.176061][T11480] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 313.233367][T11480] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 313.240421][T11480] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 313.266357][ C0] vkms_vblank_simulate: vblank timer overrun [ 313.352508][T11480] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 313.624737][T11480] hsr_slave_0: entered promiscuous mode [ 313.644328][T11480] hsr_slave_1: entered promiscuous mode [ 313.651083][T11480] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 313.669104][T11536] loop0: detected capacity change from 0 to 40427 [ 313.684212][T11480] Cannot create hsr debugfs directory [ 313.724696][T11536] F2FS-fs (loop0): heap/no_heap options were deprecated [ 313.766057][T11536] F2FS-fs (loop0): invalid crc value [ 313.924130][ T5884] usb 9-1: new high-speed USB device number 10 using dummy_hcd [ 314.013430][T11536] F2FS-fs (loop0): Mounted with checkpoint version = 48b305e5 [ 314.083209][ T5884] usb 9-1: Using ep0 maxpacket: 8 [ 314.097531][ T5884] usb 9-1: config 0 has no interfaces? [ 314.108724][ T5884] usb 9-1: New USB device found, idVendor=0525, idProduct=a4a1, bcdDevice= 0.40 [ 314.132893][ T5884] usb 9-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 314.169126][ T5884] usb 9-1: Product: syz [ 314.182493][ T5884] usb 9-1: Manufacturer: syz [ 314.187198][ T5884] usb 9-1: SerialNumber: syz [ 314.226161][ T5884] usb 9-1: config 0 descriptor?? [ 314.307580][ T5822] syz-executor: attempt to access beyond end of device [ 314.307580][ T5822] loop0: rw=2049, sector=45096, nr_sectors = 8 limit=40427 [ 314.344411][ T5822] CPU: 1 UID: 0 PID: 5822 Comm: syz-executor Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 314.344457][ T5822] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 314.344472][ T5822] Call Trace: [ 314.344481][ T5822] [ 314.344493][ T5822] dump_stack_lvl+0x189/0x250 [ 314.344542][ T5822] ? __pfx_dump_stack_lvl+0x10/0x10 [ 314.344585][ T5822] ? __pfx_queue_work_on+0x10/0x10 [ 314.344609][ T5822] ? _raw_spin_unlock_irqrestore+0xad/0x110 [ 314.344639][ T5822] ? __pfx__raw_spin_unlock_irqrestore+0x10/0x10 [ 314.344672][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.344714][ T5822] f2fs_handle_critical_error+0x37c/0x540 [ 314.344754][ T5822] f2fs_write_end_io+0x4e2/0x6d0 [ 314.344815][ T5822] __submit_merged_bio+0x27a/0x6a0 [ 314.344858][ T5822] __submit_merged_write_cond+0x255/0x530 [ 314.344916][ T5822] f2fs_write_data_pages+0x2854/0x31f0 [ 314.344949][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345031][ T5822] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 314.345133][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345162][ T5822] ? __mod_node_page_state+0xf4/0x170 [ 314.345207][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345236][ T5822] ? lru_gen_update_size+0x7bd/0xd20 [ 314.345285][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345314][ T5822] ? __lock_acquire+0xaac/0xd20 [ 314.345365][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345412][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345441][ T5822] ? do_raw_spin_unlock+0x122/0x240 [ 314.345473][ T5822] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 314.345506][ T5822] do_writepages+0x3b1/0x7b0 [ 314.345566][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345594][ T5822] ? do_raw_spin_lock+0x121/0x290 [ 314.345623][ T5822] ? __pfx_do_writepages+0x10/0x10 [ 314.345664][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345699][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345728][ T5822] ? do_raw_spin_unlock+0x122/0x240 [ 314.345765][ T5822] filemap_fdatawrite+0x191/0x230 [ 314.345802][ T5822] ? __pfx_filemap_fdatawrite+0x10/0x10 [ 314.345907][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.345944][ T5822] ? do_raw_spin_unlock+0x122/0x240 [ 314.345981][ T5822] f2fs_sync_dirty_inodes+0x31f/0x830 [ 314.346039][ T5822] f2fs_write_checkpoint+0x94a/0x1de0 [ 314.346114][ T5822] ? __pfx_f2fs_write_checkpoint+0x10/0x10 [ 314.346216][ T5822] ? f2fs_stop_gc_thread+0x7f/0xb0 [ 314.346249][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.346277][ T5822] ? kfree+0x193/0x440 [ 314.346312][ T5822] ? kill_f2fs_super+0x298/0x6c0 [ 314.346357][ T5822] kill_f2fs_super+0x2c3/0x6c0 [ 314.346401][ T5822] ? __pfx_kill_f2fs_super+0x10/0x10 [ 314.346431][ T5822] ? radix_tree_delete_item+0x2b6/0x400 [ 314.346475][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.346504][ T5822] ? shrinker_free+0x2ce/0x3e0 [ 314.346536][ T5822] deactivate_locked_super+0xbc/0x130 [ 314.346570][ T5822] cleanup_mnt+0x425/0x4c0 [ 314.346609][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.346638][ T5822] ? lockdep_hardirqs_on+0x9c/0x150 [ 314.346677][ T5822] task_work_run+0x1d4/0x260 [ 314.346718][ T5822] ? __pfx_task_work_run+0x10/0x10 [ 314.346753][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.346802][ T5822] resume_user_mode_work+0x5e/0x80 [ 314.346854][ T5822] syscall_exit_to_user_mode+0x9a/0x120 [ 314.346888][ T5822] do_syscall_64+0x103/0x210 [ 314.346921][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 314.346949][ T5822] ? exc_page_fault+0x91/0x110 [ 314.346983][ T5822] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 314.347008][ T5822] RIP: 0033:0x7fa94af8fc97 [ 314.347031][ T5822] Code: a8 ff ff ff f7 d8 64 89 01 48 83 c8 ff c3 0f 1f 44 00 00 31 f6 e9 09 00 00 00 66 0f 1f 84 00 00 00 00 00 b8 a6 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 01 c3 48 c7 c2 a8 ff ff ff f7 d8 64 89 02 b8 [ 314.347052][ T5822] RSP: 002b:00007fff62ff7428 EFLAGS: 00000246 ORIG_RAX: 00000000000000a6 [ 314.347080][ T5822] RAX: 0000000000000000 RBX: 00007fa94b01089d RCX: 00007fa94af8fc97 [ 314.347098][ T5822] RDX: 0000000000000000 RSI: 0000000000000009 RDI: 00007fff62ff74e0 [ 314.347114][ T5822] RBP: 00007fff62ff74e0 R08: 0000000000000000 R09: 0000000000000000 [ 314.347130][ T5822] R10: 00000000ffffffff R11: 0000000000000246 R12: 00007fff62ff8570 [ 314.347148][ T5822] R13: 00007fa94b01089d R14: 000000000004cb2f R15: 00007fff62ff85b0 [ 314.347194][ T5822] [ 314.352448][ T5822] F2FS-fs (loop0): Stopped filesystem due to reason: 3 [ 314.580116][ T5823] usb 9-1: USB disconnect, device number 10 [ 314.760139][ T5835] Bluetooth: hci3: command 0x041b tx timeout [ 315.057877][T11551] loop2: detected capacity change from 0 to 32768 [ 315.119381][T11551] XFS (loop2): Mounting V5 Filesystem a2f82aab-77f8-4286-afd4-a8f747a74bab [ 315.173558][T11578] pci 0000:00:05.0: vgaarb: VGA decodes changed: olddecodes=none,decodes=io+mem:owns=io+mem [ 315.215680][T11578] pci 0000:00:05.0: vgaarb: VGA decodes changed: olddecodes=io+mem,decodes=none:owns=io+mem [ 315.297174][T11582] loop1: detected capacity change from 0 to 256 [ 315.304507][T11582] exfat: Deprecated parameter 'namecase' [ 315.310486][T11582] exfat: Deprecated parameter 'utf8' [ 315.318326][T11578] pci 0000:00:05.0: vgaarb: VGA decodes changed: olddecodes=none,decodes=none:owns=io+mem [ 315.328547][T11551] XFS (loop2): Ending clean mount [ 315.368341][T11551] XFS (loop2): Quotacheck needed: Please wait. [ 315.486154][T11551] XFS (loop2): Quotacheck: Done. [ 315.507232][T11582] exFAT-fs (loop1): failed to load upcase table (idx : 0x00010000, chksum : 0xdc42f586, utbl_chksum : 0xe619d30d) [ 315.683780][T11480] netdevsim netdevsim3 netdevsim0: renamed from eth0 [ 315.750771][ T5825] XFS (loop2): Unmounting Filesystem a2f82aab-77f8-4286-afd4-a8f747a74bab [ 315.753054][T11480] netdevsim netdevsim3 netdevsim1: renamed from eth1 [ 315.816878][T11480] netdevsim netdevsim3 netdevsim2: renamed from eth2 [ 316.319523][T11480] netdevsim netdevsim3 netdevsim3: renamed from eth3 [ 316.736835][T11622] loop8: detected capacity change from 0 to 128 [ 316.765137][T11622] FAT-fs (loop8): utf8 is not a recommended IO charset for FAT filesystems, filesystem will be case sensitive! [ 316.799039][T11622] FAT-fs (loop8): Invalid FSINFO signature: 0x41615252, 0x80417272 (sector = 1) [ 316.831640][T11480] 8021q: adding VLAN 0 to HW filter on device bond0 [ 316.854325][ T5827] Bluetooth: hci3: command 0x041b tx timeout [ 316.905505][T11626] loop0: detected capacity change from 0 to 512 [ 316.906158][T11480] 8021q: adding VLAN 0 to HW filter on device team0 [ 316.957921][ T53] bridge0: port 1(bridge_slave_0) entered blocking state [ 316.965221][ T53] bridge0: port 1(bridge_slave_0) entered forwarding state [ 317.014422][T11629] loop9: detected capacity change from 0 to 8 [ 317.029318][T11629] MTD: Attempt to mount non-MTD device "/dev/loop9" [ 317.055248][T11626] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 317.070026][ T12] bridge0: port 2(bridge_slave_1) entered blocking state [ 317.077258][ T12] bridge0: port 2(bridge_slave_1) entered forwarding state [ 317.122249][T11626] ext4 filesystem being mounted at /382/bus supports timestamps until 2038-01-19 (0x7fffffff) [ 317.205000][T11626] EXT4-fs (loop0): shut down requested (1) [ 317.251130][ T12] FAT-fs (loop8): Invalid FSINFO signature: 0x41615252, 0x80417272 (sector = 1) [ 317.364747][ T5822] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 317.478930][T11641] syzkaller1: tun_chr_ioctl cmd 1074025678 [ 317.502677][ T5992] usb 3-1: new high-speed USB device number 11 using dummy_hcd [ 317.520519][T11641] syzkaller1: group set to 0 [ 317.702977][ T5992] usb 3-1: Using ep0 maxpacket: 8 [ 317.723995][ T5992] usb 3-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 317.769527][ T5992] usb 3-1: New USB device found, idVendor=046d, idProduct=0892, bcdDevice=6d.2a [ 317.800783][ T5992] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 317.828057][ T5992] usb 3-1: config 0 descriptor?? [ 317.859021][ T5992] gspca_main: vc032x-2.14.0 probing 046d:0892 [ 317.879665][T11480] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 318.085549][T11480] veth0_vlan: entered promiscuous mode [ 318.160391][T11480] veth1_vlan: entered promiscuous mode [ 318.364576][T11480] veth0_macvtap: entered promiscuous mode [ 318.401057][T11480] veth1_macvtap: entered promiscuous mode [ 318.506612][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 318.545627][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 318.570410][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 318.591064][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 318.647179][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 318.679871][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 318.704068][ T5992] gspca_vc032x: reg_w err -71 [ 318.708846][ T5992] vc032x 3-1:0.0: probe with driver vc032x failed with error -71 [ 318.712836][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 318.737966][ T5992] usb 3-1: USB disconnect, device number 11 [ 318.752718][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 318.780072][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 318.822811][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 318.843946][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 318.865562][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 318.900720][T11480] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 318.945966][ T5827] Bluetooth: hci3: command 0x041b tx timeout [ 318.979756][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 319.049064][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 319.091459][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 319.125852][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 319.152053][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 319.178789][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 319.195153][T11704] loop1: detected capacity change from 0 to 1024 [ 319.202669][T11707] loop9: detected capacity change from 0 to 1024 [ 319.210824][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 319.227994][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 319.252473][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 319.286504][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 319.299009][T11707] EXT4-fs (loop9): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 319.317742][T11704] hfsplus: xattr searching failed [ 319.342144][T11480] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 319.383435][T11707] EXT4-fs error (device loop9): ext4_mb_generate_buddy:1220: group 0, block bitmap and bg descriptor inconsistent: 25 vs 4278190105 free clusters [ 319.389211][T11480] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 319.412905][T11707] EXT4-fs (loop9): Delayed block allocation failed for inode 15 at logical offset 0 with max blocks 1 with error 28 [ 319.452477][T11707] EXT4-fs (loop9): This should not happen!! Data will be lost [ 319.452477][T11707] [ 319.463007][T11707] EXT4-fs (loop9): Total free blocks count 0 [ 319.469326][T11707] EXT4-fs (loop9): Free/Dirty block details [ 319.475765][T11707] EXT4-fs (loop9): free_blocks=68451041280 [ 319.482183][T11707] EXT4-fs (loop9): dirty_blocks=16 [ 319.484557][T11480] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 319.555725][T11707] EXT4-fs (loop9): Block reservation details [ 319.582275][T11700] vlan2: entered allmulticast mode [ 319.588751][T11707] EXT4-fs (loop9): i_reserved_data_blocks=1 [ 319.600308][T11700] dummy0: entered allmulticast mode [ 319.629193][T11480] netdevsim netdevsim3 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 319.670532][T11480] netdevsim netdevsim3 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 319.712650][T11480] netdevsim netdevsim3 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 319.739382][T11480] netdevsim netdevsim3 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 319.834820][ T7926] EXT4-fs (loop9): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 319.846325][T11725] netlink: 32 bytes leftover after parsing attributes in process `syz.2.2048'. [ 319.970360][T11727] loop8: detected capacity change from 0 to 2048 [ 320.010896][T11725] netlink: 20 bytes leftover after parsing attributes in process `syz.2.2048'. [ 320.105410][T11727] UDF-fs: INFO Mounting volume 'LiuxUDF', timestamp 2022/11/22 14:59 (1000) [ 320.179829][T11727] MPI: mpi too large (32776 bits) [ 320.231423][ T12] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 320.260384][ T12] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 320.264539][T11735] loop2: detected capacity change from 0 to 64 [ 320.341703][ T7736] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 320.389695][ T7736] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 320.404927][ T30] audit: type=1800 audit(1746574519.025:154): pid=11735 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.2.2054" name="bus" dev="loop2" ino=21 res=0 errno=0 [ 320.498301][T11743] loop1: detected capacity change from 0 to 1024 [ 320.508950][T11745] loop8: detected capacity change from 0 to 64 [ 320.567727][T11745] Trying to free block not in datazone [ 320.600494][ T30] audit: type=1800 audit(1746574519.215:155): pid=11743 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.1.2058" name="file1" dev="loop1" ino=20 res=0 errno=0 [ 320.624945][T11748] Trying to free block not in datazone [ 320.630505][T11748] minix_free_inode: bit 5 already cleared [ 321.013151][ T5827] Bluetooth: hci3: command 0x041b tx timeout [ 321.101062][T11760] loop2: detected capacity change from 0 to 256 [ 321.479650][T11765] loop8: detected capacity change from 0 to 256 [ 321.511616][T11765] exFAT-fs (loop8): failed to load upcase table (idx : 0x000104d0, chksum : 0x60d18cac, utbl_chksum : 0xe619d30d) [ 321.550352][ T30] audit: type=1800 audit(1746574520.165:156): pid=11765 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.8.2067" name="file1" dev="loop8" ino=1048700 res=0 errno=0 [ 321.621246][T11768] loop3: detected capacity change from 0 to 64 [ 321.674095][ T5992] usb 10-1: new high-speed USB device number 7 using dummy_hcd [ 321.744862][T11770] loop0: detected capacity change from 0 to 512 [ 321.753025][T11770] EXT4-fs: Ignoring removed mblk_io_submit option [ 321.760666][T11770] EXT4-fs: Ignoring removed mblk_io_submit option [ 321.770220][T11770] EXT4-fs (loop0): Test dummy encryption mode enabled [ 321.782930][T11770] EXT4-fs (loop0): encrypted files will use data=ordered instead of data journaling mode [ 321.816866][T11770] EXT4-fs (loop0): 1 truncate cleaned up [ 321.827177][T11770] EXT4-fs (loop0): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 321.844701][ T5992] usb 10-1: config 0 has an invalid interface number: 255 but max is 0 [ 321.862512][ T5992] usb 10-1: config 0 has no interface number 0 [ 321.868881][ T5992] usb 10-1: too many endpoints for config 0 interface 255 altsetting 255: 255, using maximum allowed: 30 [ 321.880513][ T5992] usb 10-1: config 0 interface 255 altsetting 255 has 0 endpoint descriptors, different from the interface descriptor's value: 255 [ 321.894675][ T5992] usb 10-1: config 0 interface 255 has no altsetting 0 [ 321.904195][ T5992] usb 10-1: New USB device found, idVendor=0bda, idProduct=0177, bcdDevice=7d.0b [ 321.913681][ T5992] usb 10-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 321.933451][ T5992] usb 10-1: config 0 descriptor?? [ 321.941078][ T5992] ums-realtek 10-1:0.255: USB Mass Storage device detected [ 322.052289][T11770] fscrypt: AES-256-CBC-CTS using implementation "cts-cbc-aes-aesni" [ 322.169435][ T879] usb 10-1: USB disconnect, device number 7 [ 322.177045][T11787] overlayfs: missing 'lowerdir' [ 322.238915][ T5822] EXT4-fs (loop0): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 322.279419][T11789] overlayfs: option "uuid=on" requires an upper fs, falling back to uuid=null. [ 322.405952][T11793] loop0: detected capacity change from 0 to 2048 [ 322.440939][T11794] NILFS (loop0): segctord starting. Construction interval = 5 seconds, CP frequency < 30 seconds [ 322.602917][T11794] NILFS (loop0): vblocknr = 18 has abnormal lifetime: start cno (= 504403158265495554) > current cno (= 3) [ 322.652431][T11794] NILFS error (device loop0): nilfs_bmap_propagate: broken bmap (inode number=2) [ 322.726009][T11794] Remounting filesystem read-only [ 322.863350][ T5822] NILFS (loop0): disposed unprocessed dirty file(s) when stopping log writer [ 322.932255][T11813] netlink: 4 bytes leftover after parsing attributes in process `syz.2.2087'. [ 322.956062][T11814] loop9: detected capacity change from 0 to 1024 [ 323.090163][T11822] hfsplus: request for non-existent node 16777216 in B*Tree [ 323.092979][ T30] audit: type=1800 audit(1746574522.701:157): pid=11822 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.9.2085" name="file1" dev="loop9" ino=20 res=0 errno=0 [ 323.120033][T11822] hfsplus: request for non-existent node 16777216 in B*Tree [ 323.170590][T11820] A link change request failed with some changes committed already. Interface bridge_slave_0 may have been left with an inconsistent configuration, please check. [ 323.708522][T11842] program syz.3.2098 is using a deprecated SCSI ioctl, please convert it to SG_IO [ 323.964875][T11848] netlink: 'syz.3.2100': attribute type 1 has an invalid length. [ 323.987758][T11848] netlink: 'syz.3.2100': attribute type 2 has an invalid length. [ 324.022739][T11848] netlink: 'syz.3.2100': attribute type 1 has an invalid length. [ 324.040748][T11848] netlink: 'syz.3.2100': attribute type 2 has an invalid length. [ 324.639476][T11843] loop8: detected capacity change from 0 to 32768 [ 324.679942][T11866] loop3: detected capacity change from 0 to 4096 [ 324.720585][T11843] ocfs2: Slot 0 on device (7,8) was already allocated to this node! [ 324.751780][T11872] loop2: detected capacity change from 0 to 1024 [ 324.763343][T11843] ocfs2: Mounting device (7,8) on (node local, slot 0) with ordered data mode. [ 324.823557][T11877] NILFS (loop3): segctord starting. Construction interval = 5 seconds, CP frequency < 30 seconds [ 324.839454][T11872] hfsplus: xattr searching failed [ 324.872760][T11872] hfsplus: request for non-existent node 62977 in B*Tree [ 324.910626][T11872] hfsplus: request for non-existent node 62977 in B*Tree [ 324.933472][ T7461] ocfs2: Unmounting device (7,8) on (node local) [ 325.036410][ T12] hfsplus: b-tree write err: -5, ino 3 [ 325.682742][T11898] netlink: 24 bytes leftover after parsing attributes in process `syz.8.2122'. [ 325.718733][T11898] netlink: 24 bytes leftover after parsing attributes in process `syz.8.2122'. [ 326.036316][T11909] mac80211_hwsim hwsim19 wlan1: entered promiscuous mode [ 326.062545][T11909] macvtap1: entered allmulticast mode [ 326.072249][T11909] mac80211_hwsim hwsim19 wlan1: entered allmulticast mode [ 326.131449][T11909] mac80211_hwsim hwsim19 wlan1: left allmulticast mode [ 326.163823][T11909] mac80211_hwsim hwsim19 wlan1: left promiscuous mode [ 326.278327][T11890] loop9: detected capacity change from 0 to 32768 [ 326.335517][T11890] btrfs: Deprecated parameter 'usebackuproot' [ 326.341619][T11890] BTRFS warning: 'usebackuproot' is deprecated, use 'rescue=usebackuproot' instead [ 326.409046][T11890] BTRFS: device fsid c9fe44da-de57-406a-8241-57ec7d4412cf devid 1 transid 8 /dev/loop9 (7:9) scanned by syz.9.2119 (11890) [ 326.478522][T11890] BTRFS info (device loop9): first mount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 326.501545][T11890] BTRFS info (device loop9): using crc32c (crc32c-x86_64) checksum algorithm [ 326.522708][T11890] BTRFS info (device loop9): using free-space-tree [ 326.810019][T11890] BTRFS info (device loop9): rebuilding free space tree [ 327.080059][ T7926] BTRFS info (device loop9): last unmount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 327.248951][T11965] loop8: detected capacity change from 0 to 2048 [ 327.322454][ T47] usb 1-1: new high-speed USB device number 7 using dummy_hcd [ 327.338536][T11965] UDF-fs: INFO Mounting volume 'LiuxUDF', timestamp 2022/11/22 14:59 (1000) [ 327.512609][ T47] usb 1-1: Using ep0 maxpacket: 32 [ 327.544206][ T47] usb 1-1: config 4 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 327.570695][T11926] loop2: detected capacity change from 0 to 32768 [ 327.575759][ T47] usb 1-1: config 4 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 327.637379][ T7461] UDF-fs: warning (device loop8): udf_evict_inode: Inode 1367 (mode 100000) has inode size 21542219777 different from extent length 21542220288. Filesystem need not be standards compliant. [ 327.638012][ T47] usb 1-1: New USB device found, idVendor=046d, idProduct=c314, bcdDevice= 0.40 [ 327.692387][ T47] usb 1-1: New USB device strings: Mfr=255, Product=255, SerialNumber=0 [ 327.742558][ T47] usb 1-1: Product: syz [ 327.747017][ T47] usb 1-1: Manufacturer: syz [ 327.792805][ T47] hub 1-1:4.0: USB hub found [ 327.998457][ T47] hub 1-1:4.0: 4 ports detected [ 328.012938][ T47] hub 1-1:4.0: insufficient power available to use all downstream ports [ 328.133265][T11984] loop9: detected capacity change from 0 to 1024 [ 328.142269][T11984] EXT4-fs (loop9): ext4_check_descriptors: Checksum for group 0 failed (32298!=35945) [ 328.166131][T11984] EXT4-fs (loop9): stripe (65535) is not aligned with cluster size (4096), stripe is disabled [ 328.186451][T11984] EXT4-fs (loop9): revision level too high, forcing read-only mode [ 328.195788][T11984] EXT4-fs (loop9): orphan cleanup on readonly fs [ 328.203408][ T47] hub 1-1:4.0: hub_hub_status failed (err = -71) [ 328.211713][ T47] hub 1-1:4.0: config failed, can't get hub status (err -71) [ 328.219991][T11984] EXT4-fs error (device loop9): ext4_read_inode_bitmap:167: comm syz.9.2154: Inode bitmap for bg 0 marked uninitialized [ 328.240512][T11984] EXT4-fs (loop9): mounted filesystem 00000000-0000-0000-0000-000000000000 ro without journal. Quota mode: writeback. [ 328.260447][T11984] EXT4-fs (loop9): shut down requested (1) [ 328.278264][ T47] usb 1-1: USB disconnect, device number 7 [ 328.395021][ T7926] EXT4-fs (loop9): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 328.650226][T11979] loop8: detected capacity change from 0 to 32768 [ 328.717317][T11979] ERROR: (device loop8): dtSearch: DT_GETPAGE: dtree page corrupt [ 328.717317][T11979] [ 328.762717][T11979] ERROR: (device loop8): remounting filesystem as read-only [ 328.790748][T11979] jfs_lookup: dtSearch returned -5 [ 328.824898][T11997] ERROR: (device loop8): dtReadFirst: DT_GETPAGE: dtree page corrupt [ 328.824898][T11997] [ 328.919536][T12001] loop0: detected capacity change from 0 to 1024 [ 329.024746][ T12] hfsplus: b-tree write err: -5, ino 4 [ 329.444257][T11991] loop2: detected capacity change from 0 to 32768 [ 329.480302][T11991] BTRFS: device fsid c9fe44da-de57-406a-8241-57ec7d4412cf devid 1 transid 8 /dev/loop2 (7:2) scanned by syz.2.2155 (11991) [ 329.505092][T11991] BTRFS info (device loop2): first mount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 329.515652][T11991] BTRFS info (device loop2): using crc32c (crc32c-x86_64) checksum algorithm [ 329.524887][T11991] BTRFS info (device loop2): using free-space-tree [ 329.636635][T12025] netlink: 8 bytes leftover after parsing attributes in process `syz.8.2168'. [ 329.759943][T11996] loop3: detected capacity change from 0 to 40427 [ 329.802206][T11996] F2FS-fs (loop3): build fault injection attr: rate: 690, type: 0x3fffff [ 329.859144][T11996] F2FS-fs (loop3): Image doesn't support compression [ 329.895526][T11996] F2FS-fs (loop3): Image doesn't support compression [ 329.903440][T12040] loop9: detected capacity change from 0 to 512 [ 329.911275][T12040] EXT4-fs: Ignoring removed nobh option [ 329.941120][T11996] F2FS-fs (loop3): invalid crc value [ 329.951105][T12040] EXT4-fs (loop9): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 329.998755][ T5825] BTRFS info (device loop2): last unmount of filesystem c9fe44da-de57-406a-8241-57ec7d4412cf [ 330.287887][ T7926] EXT4-fs (loop9): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 330.352103][T11996] F2FS-fs (loop3): Mounted with checkpoint version = 48b305e5 [ 330.447907][T11996] F2FS-fs (loop3): inject orphan in f2fs_acquire_orphan_inode of f2fs_rename2+0x13aa/0x2660 [ 330.637197][T11480] syz-executor: attempt to access beyond end of device [ 330.637197][T11480] loop3: rw=2049, sector=45096, nr_sectors = 16 limit=40427 [ 330.655558][T12056] tipc: Started in network mode [ 330.672848][T12056] tipc: Node identity ac14140f, cluster identity 4711 [ 330.679085][T11480] CPU: 1 UID: 0 PID: 11480 Comm: syz-executor Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 330.679119][T11480] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 330.679133][T11480] Call Trace: [ 330.679144][T11480] [ 330.679154][T11480] dump_stack_lvl+0x189/0x250 [ 330.679200][T11480] ? __pfx_dump_stack_lvl+0x10/0x10 [ 330.679236][T11480] ? __pfx_queue_work_on+0x10/0x10 [ 330.679260][T11480] ? _raw_spin_unlock_irqrestore+0xad/0x110 [ 330.679287][T11480] ? __pfx__raw_spin_unlock_irqrestore+0x10/0x10 [ 330.679316][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.679355][T11480] f2fs_handle_critical_error+0x37c/0x540 [ 330.679391][T11480] f2fs_write_end_io+0x4e2/0x6d0 [ 330.679440][T11480] __submit_merged_bio+0x27a/0x6a0 [ 330.679474][T11480] __submit_merged_write_cond+0x255/0x530 [ 330.679524][T11480] f2fs_write_data_pages+0x2854/0x31f0 [ 330.679553][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.679622][T11480] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 330.679708][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.679735][T11480] ? __mod_node_page_state+0xf4/0x170 [ 330.679777][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.679804][T11480] ? lru_gen_update_size+0x7bd/0xd20 [ 330.679853][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.679880][T11480] ? __lock_acquire+0xaac/0xd20 [ 330.679924][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.679967][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.679994][T11480] ? do_raw_spin_unlock+0x122/0x240 [ 330.680025][T11480] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 330.680055][T11480] do_writepages+0x3b1/0x7b0 [ 330.680108][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.680135][T11480] ? do_raw_spin_lock+0x121/0x290 [ 330.680162][T11480] ? __pfx_do_writepages+0x10/0x10 [ 330.680199][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.680231][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.680259][T11480] ? do_raw_spin_unlock+0x122/0x240 [ 330.680293][T11480] filemap_fdatawrite+0x191/0x230 [ 330.680328][T11480] ? __pfx_filemap_fdatawrite+0x10/0x10 [ 330.680412][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.680445][T11480] ? do_raw_spin_unlock+0x122/0x240 [ 330.680479][T11480] f2fs_sync_dirty_inodes+0x31f/0x830 [ 330.680530][T11480] f2fs_write_checkpoint+0x94a/0x1de0 [ 330.680594][T11480] ? __pfx_f2fs_write_checkpoint+0x10/0x10 [ 330.680683][T11480] ? kill_f2fs_super+0x298/0x6c0 [ 330.680722][T11480] kill_f2fs_super+0x2c3/0x6c0 [ 330.680761][T11480] ? __pfx_kill_f2fs_super+0x10/0x10 [ 330.680789][T11480] ? radix_tree_delete_item+0x2b6/0x400 [ 330.680830][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.680857][T11480] ? shrinker_free+0x2ce/0x3e0 [ 330.680887][T11480] deactivate_locked_super+0xbc/0x130 [ 330.680914][T11480] cleanup_mnt+0x425/0x4c0 [ 330.680952][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.680979][T11480] ? lockdep_hardirqs_on+0x9c/0x150 [ 330.681011][T11480] task_work_run+0x1d4/0x260 [ 330.681048][T11480] ? __pfx_task_work_run+0x10/0x10 [ 330.681081][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.681122][T11480] resume_user_mode_work+0x5e/0x80 [ 330.681157][T11480] syscall_exit_to_user_mode+0x9a/0x120 [ 330.681187][T11480] do_syscall_64+0x103/0x210 [ 330.681219][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.681246][T11480] ? exc_page_fault+0x91/0x110 [ 330.681275][T11480] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 330.681299][T11480] RIP: 0033:0x7f8b53d8fc97 [ 330.681321][T11480] Code: a8 ff ff ff f7 d8 64 89 01 48 83 c8 ff c3 0f 1f 44 00 00 31 f6 e9 09 00 00 00 66 0f 1f 84 00 00 00 00 00 b8 a6 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 01 c3 48 c7 c2 a8 ff ff ff f7 d8 64 89 02 b8 [ 330.681342][T11480] RSP: 002b:00007ffe83115248 EFLAGS: 00000246 ORIG_RAX: 00000000000000a6 [ 330.681367][T11480] RAX: 0000000000000000 RBX: 00007f8b53e1089d RCX: 00007f8b53d8fc97 [ 330.681383][T11480] RDX: 0000000000000000 RSI: 0000000000000009 RDI: 00007ffe83115300 [ 330.681399][T11480] RBP: 00007ffe83115300 R08: 0000000000000000 R09: 0000000000000000 [ 330.681414][T11480] R10: 00000000ffffffff R11: 0000000000000246 R12: 00007ffe83116390 [ 330.681430][T11480] R13: 00007f8b53e1089d R14: 0000000000050acb R15: 00007ffe831163d0 [ 330.681469][T11480] [ 330.681505][T11480] F2FS-fs (loop3): Stopped filesystem due to reason: 3 [ 330.750394][T12056] tipc: New replicast peer: 255.255.255.255 [ 330.904491][T12045] loop8: detected capacity change from 0 to 32768 [ 330.939071][T11480] CPU: 0 UID: 0 PID: 11480 Comm: syz-executor Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 330.939107][T11480] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 330.939123][T11480] Call Trace: [ 330.939133][T11480] [ 330.939143][T11480] dump_stack_lvl+0x189/0x250 [ 330.939191][T11480] ? __pfx_dump_stack_lvl+0x10/0x10 [ 330.939227][T11480] ? __pfx_queue_work_on+0x10/0x10 [ 330.939250][T11480] ? _raw_spin_unlock_irqrestore+0xad/0x110 [ 330.939278][T11480] ? __pfx__raw_spin_unlock_irqrestore+0x10/0x10 [ 330.939306][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.939346][T11480] f2fs_handle_critical_error+0x37c/0x540 [ 330.939382][T11480] f2fs_write_end_io+0x4e2/0x6d0 [ 330.939431][T11480] __submit_merged_bio+0x27a/0x6a0 [ 330.939466][T11480] __submit_merged_write_cond+0x255/0x530 [ 330.939516][T11480] f2fs_write_data_pages+0x2854/0x31f0 [ 330.939544][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.939620][T11480] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 330.939704][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.939732][T11480] ? __mod_node_page_state+0xf4/0x170 [ 330.939773][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.939800][T11480] ? lru_gen_update_size+0x7bd/0xd20 [ 330.939843][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.939870][T11480] ? __lock_acquire+0xaac/0xd20 [ 330.939915][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.939960][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.939988][T11480] ? do_raw_spin_unlock+0x122/0x240 [ 330.940018][T11480] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 330.940048][T11480] do_writepages+0x3b1/0x7b0 [ 330.940101][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.940128][T11480] ? do_raw_spin_lock+0x121/0x290 [ 330.940156][T11480] ? __pfx_do_writepages+0x10/0x10 [ 330.940192][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.940225][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.940252][T11480] ? do_raw_spin_unlock+0x122/0x240 [ 330.940286][T11480] filemap_fdatawrite+0x191/0x230 [ 330.940321][T11480] ? __pfx_filemap_fdatawrite+0x10/0x10 [ 330.940405][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.940439][T11480] ? do_raw_spin_unlock+0x122/0x240 [ 330.940474][T11480] f2fs_sync_dirty_inodes+0x31f/0x830 [ 330.940524][T11480] f2fs_write_checkpoint+0x94a/0x1de0 [ 330.940591][T11480] ? __pfx_f2fs_write_checkpoint+0x10/0x10 [ 330.940681][T11480] ? kill_f2fs_super+0x298/0x6c0 [ 330.940719][T11480] kill_f2fs_super+0x2c3/0x6c0 [ 330.940759][T11480] ? __pfx_kill_f2fs_super+0x10/0x10 [ 330.940788][T11480] ? radix_tree_delete_item+0x2b6/0x400 [ 330.940824][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.940851][T11480] ? shrinker_free+0x2ce/0x3e0 [ 330.940880][T11480] deactivate_locked_super+0xbc/0x130 [ 330.940908][T11480] cleanup_mnt+0x425/0x4c0 [ 330.940947][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.940974][T11480] ? lockdep_hardirqs_on+0x9c/0x150 [ 330.941007][T11480] task_work_run+0x1d4/0x260 [ 330.941044][T11480] ? __pfx_task_work_run+0x10/0x10 [ 330.941077][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.941119][T11480] resume_user_mode_work+0x5e/0x80 [ 330.941155][T11480] syscall_exit_to_user_mode+0x9a/0x120 [ 330.941186][T11480] do_syscall_64+0x103/0x210 [ 330.941217][T11480] ? srso_alias_return_thunk+0x5/0xfbef5 [ 330.941245][T11480] ? exc_page_fault+0x91/0x110 [ 330.941275][T11480] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 330.941300][T11480] RIP: 0033:0x7f8b53d8fc97 [ 330.941323][T11480] Code: a8 ff ff ff f7 d8 64 89 01 48 83 c8 ff c3 0f 1f 44 00 00 31 f6 e9 09 00 00 00 66 0f 1f 84 00 00 00 00 00 b8 a6 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 01 c3 48 c7 c2 a8 ff ff ff f7 d8 64 89 02 b8 [ 330.941343][T11480] RSP: 002b:00007ffe83115248 EFLAGS: 00000246 ORIG_RAX: 00000000000000a6 [ 330.941370][T11480] RAX: 0000000000000000 RBX: 00007f8b53e1089d RCX: 00007f8b53d8fc97 [ 330.941387][T11480] RDX: 0000000000000000 RSI: 0000000000000009 RDI: 00007ffe83115300 [ 330.941403][T11480] RBP: 00007ffe83115300 R08: 0000000000000000 R09: 0000000000000000 [ 330.941419][T11480] R10: 00000000ffffffff R11: 0000000000000246 R12: 00007ffe83116390 [ 330.941436][T11480] R13: 00007f8b53e1089d R14: 0000000000050acb R15: 00007ffe831163d0 [ 330.941475][T11480] [ 330.941485][T11480] F2FS-fs (loop3): Stopped filesystem due to reason: 3 [ 330.963930][T12056] tipc: Enabled bearer , priority 10 [ 331.093711][T12045] BTRFS: device fsid 3d39d0ba-bdae-447e-827b-b091e1a68885 devid 1 transid 8 /dev/loop8 (7:8) scanned by syz.8.2172 (12045) [ 331.474332][T12069] input: syz0 as /devices/virtual/input/input18 [ 331.614125][T12070] loop9: detected capacity change from 0 to 2048 [ 331.682231][T12045] BTRFS info (device loop8): first mount of filesystem 3d39d0ba-bdae-447e-827b-b091e1a68885 [ 331.692563][T12070] NILFS (loop9): broken superblock, retrying with spare superblock (blocksize = 1024) [ 331.724518][T12045] BTRFS info (device loop8): using crc32c (crc32c-x86_64) checksum algorithm [ 331.728920][T12073] NILFS (loop9): segctord starting. Construction interval = 5 seconds, CP frequency < 30 seconds [ 331.779015][T12045] BTRFS info (device loop8): using free-space-tree [ 331.791069][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 1, flags = 0x0, nchildren = 157 [ 331.802632][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 331.860322][T12070] Remounting filesystem read-only [ 331.884648][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 331.903209][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 331.915447][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 331.925822][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 331.939221][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 331.949588][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 331.959644][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 331.970697][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.012500][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.032473][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.046215][T12082] loop1: detected capacity change from 0 to 256 [ 332.052934][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.072627][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.084227][ T974] tipc: Node number set to 2886997007 [ 332.103120][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.175785][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.253146][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.272534][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.392651][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.424744][ T30] audit: type=1800 audit(1746574532.031:158): pid=12045 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.8.2172" name="bus" dev="loop8" ino=263 res=0 errno=0 [ 332.482662][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.551086][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.584679][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.600556][T12105] openvswitch: netlink: Missing key (keys=40, expected=2000) [ 332.619425][ T7461] BTRFS info (device loop8): last unmount of filesystem 3d39d0ba-bdae-447e-827b-b091e1a68885 [ 332.630764][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.692682][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.766255][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.794810][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.829774][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.892399][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 332.967395][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 332.999094][T12113] loop3: detected capacity change from 0 to 256 [ 333.008247][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 333.072386][T12070] NILFS (loop9): bad btree node (ino=16, blocknr=15): level = 0, flags = 0x0, nchildren = 0 [ 333.102537][T12070] NILFS error (device loop9): nilfs_bmap_lookup_contig: broken bmap (inode number=16) [ 333.153984][ T30] audit: type=1800 audit(1746574532.771:159): pid=12070 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed comm="syz.9.2185" name="file2" dev="loop9" ino=16 res=0 errno=0 [ 333.457936][T12123] loop8: detected capacity change from 0 to 128 [ 333.772720][ T5992] usb 10-1: new high-speed USB device number 8 using dummy_hcd [ 333.918881][T12132] loop1: detected capacity change from 0 to 256 [ 333.948368][T12132] exfat: Deprecated parameter 'namecase' [ 333.967321][ T5992] usb 10-1: Using ep0 maxpacket: 32 [ 333.988422][ T5992] usb 10-1: config 4 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 334.020649][T12132] exFAT-fs (loop1): failed to load upcase table (idx : 0x00010000, chksum : 0x1a9973fb, utbl_chksum : 0xe619d30d) [ 334.033066][ T5992] usb 10-1: config 4 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 334.058213][ T5992] usb 10-1: New USB device found, idVendor=046d, idProduct=c314, bcdDevice= 0.40 [ 334.078011][ T5992] usb 10-1: New USB device strings: Mfr=255, Product=255, SerialNumber=0 [ 334.103915][T12101] loop0: detected capacity change from 0 to 40427 [ 334.116352][ T5992] usb 10-1: Product: syz [ 334.142400][ T5992] usb 10-1: Manufacturer: syz [ 334.158417][ T5992] hub 10-1:4.0: USB hub found [ 334.365263][ T5992] hub 10-1:4.0: 2 ports detected [ 334.398266][T12101] F2FS-fs (loop0): Mounted with checkpoint version = 48b305e5 [ 334.454728][T12149] netlink: 'syz.1.2208': attribute type 10 has an invalid length. [ 334.503030][T12101] syz.0.2190: attempt to access beyond end of device [ 334.503030][T12101] loop0: rw=2049, sector=53248, nr_sectors = 8 limit=40427 [ 334.551883][T12101] syz.0.2190: attempt to access beyond end of device [ 334.551883][T12101] loop0: rw=2049, sector=53280, nr_sectors = 24 limit=40427 [ 334.567486][T12119] loop2: detected capacity change from 0 to 32768 [ 334.581684][T12101] syz.0.2190: attempt to access beyond end of device [ 334.581684][T12101] loop0: rw=2049, sector=53328, nr_sectors = 24 limit=40427 [ 334.601857][ T5992] hub 10-1:4.0: hub_hub_status failed (err = -71) [ 334.626197][T12119] JBD2: Ignoring recovery information on journal [ 334.628765][ T5992] hub 10-1:4.0: config failed, can't get hub status (err -71) [ 334.637690][T12101] syz.0.2190: attempt to access beyond end of device [ 334.637690][T12101] loop0: rw=2049, sector=53368, nr_sectors = 16 limit=40427 [ 334.683413][ T5992] usb 10-1: USB disconnect, device number 8 [ 334.772020][T12101] syz.0.2190: attempt to access beyond end of device [ 334.772020][T12101] loop0: rw=2049, sector=53400, nr_sectors = 24 limit=40427 [ 334.828171][T12119] ocfs2: Mounting device (7,2) on (node local, slot 0) with ordered data mode. [ 334.930057][ T30] audit: type=1800 audit(1746574534.541:160): pid=12119 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=collect_data cause=failed(directio) comm="syz.2.2200" name="file1" dev="loop2" ino=17058 res=0 errno=0 [ 334.969947][ T5822] syz-executor: attempt to access beyond end of device [ 334.969947][ T5822] loop0: rw=2049, sector=45096, nr_sectors = 8 limit=40427 [ 334.998922][T12159] loop1: detected capacity change from 0 to 4096 [ 335.023005][ T5822] CPU: 1 UID: 0 PID: 5822 Comm: syz-executor Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 335.023046][ T5822] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 335.023064][ T5822] Call Trace: [ 335.023075][ T5822] [ 335.023086][ T5822] dump_stack_lvl+0x189/0x250 [ 335.023137][ T5822] ? __pfx_dump_stack_lvl+0x10/0x10 [ 335.023177][ T5822] ? __pfx_queue_work_on+0x10/0x10 [ 335.023202][ T5822] ? _raw_spin_unlock_irqrestore+0xad/0x110 [ 335.023232][ T5822] ? __pfx__raw_spin_unlock_irqrestore+0x10/0x10 [ 335.023263][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.023306][ T5822] f2fs_handle_critical_error+0x37c/0x540 [ 335.023347][ T5822] f2fs_write_end_io+0x4e2/0x6d0 [ 335.023401][ T5822] __submit_merged_bio+0x27a/0x6a0 [ 335.023433][ T5822] __submit_merged_write_cond+0x255/0x530 [ 335.023483][ T5822] f2fs_write_data_pages+0x2854/0x31f0 [ 335.023512][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.023584][ T5822] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 335.023672][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.023702][ T5822] ? __mod_node_page_state+0xf4/0x170 [ 335.023747][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.023789][ T5822] ? lru_gen_update_size+0x7bd/0xd20 [ 335.023838][ T5822] ? folios_put_refs+0x560/0x640 [ 335.023881][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.023909][ T5822] ? lru_add+0xa2f/0xd80 [ 335.023938][ T5822] ? __pfx_f2fs_write_data_pages+0x10/0x10 [ 335.023968][ T5822] do_writepages+0x3b1/0x7b0 [ 335.024020][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.024048][ T5822] ? do_raw_spin_lock+0x121/0x290 [ 335.024077][ T5822] ? __pfx_do_writepages+0x10/0x10 [ 335.024113][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.024146][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.024174][ T5822] ? do_raw_spin_unlock+0x122/0x240 [ 335.024209][ T5822] filemap_fdatawrite+0x191/0x230 [ 335.024244][ T5822] ? __pfx_filemap_fdatawrite+0x10/0x10 [ 335.024324][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.024359][ T5822] ? do_raw_spin_unlock+0x122/0x240 [ 335.024393][ T5822] f2fs_sync_dirty_inodes+0x31f/0x830 [ 335.024443][ T5822] f2fs_write_checkpoint+0x94a/0x1de0 [ 335.024506][ T5822] ? __pfx_f2fs_write_checkpoint+0x10/0x10 [ 335.024593][ T5822] ? kill_f2fs_super+0x298/0x6c0 [ 335.024632][ T5822] kill_f2fs_super+0x2c3/0x6c0 [ 335.024672][ T5822] ? __pfx_kill_f2fs_super+0x10/0x10 [ 335.024701][ T5822] ? radix_tree_delete_item+0x2b6/0x400 [ 335.024738][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.024772][ T5822] ? shrinker_free+0x2ce/0x3e0 [ 335.024801][ T5822] deactivate_locked_super+0xbc/0x130 [ 335.024829][ T5822] cleanup_mnt+0x425/0x4c0 [ 335.024867][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.024894][ T5822] ? lockdep_hardirqs_on+0x9c/0x150 [ 335.024927][ T5822] task_work_run+0x1d4/0x260 [ 335.024965][ T5822] ? __pfx_task_work_run+0x10/0x10 [ 335.024998][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.025039][ T5822] resume_user_mode_work+0x5e/0x80 [ 335.025075][ T5822] syscall_exit_to_user_mode+0x9a/0x120 [ 335.025106][ T5822] do_syscall_64+0x103/0x210 [ 335.025138][ T5822] ? srso_alias_return_thunk+0x5/0xfbef5 [ 335.025165][ T5822] ? exc_page_fault+0x91/0x110 [ 335.025195][ T5822] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 335.025220][ T5822] RIP: 0033:0x7fa94af8fc97 [ 335.025242][ T5822] Code: a8 ff ff ff f7 d8 64 89 01 48 83 c8 ff c3 0f 1f 44 00 00 31 f6 e9 09 00 00 00 66 0f 1f 84 00 00 00 00 00 b8 a6 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 01 c3 48 c7 c2 a8 ff ff ff f7 d8 64 89 02 b8 [ 335.025265][ T5822] RSP: 002b:00007fff62ff7428 EFLAGS: 00000246 ORIG_RAX: 00000000000000a6 [ 335.025290][ T5822] RAX: 0000000000000000 RBX: 00007fa94b01089d RCX: 00007fa94af8fc97 [ 335.025308][ T5822] RDX: 0000000000000000 RSI: 0000000000000009 RDI: 00007fff62ff74e0 [ 335.025324][ T5822] RBP: 00007fff62ff74e0 R08: 0000000000000000 R09: 0000000000000000 [ 335.025341][ T5822] R10: 00000000ffffffff R11: 0000000000000246 R12: 00007fff62ff8570 [ 335.025358][ T5822] R13: 00007fa94b01089d R14: 0000000000051bd4 R15: 00007fff62ff85b0 [ 335.025398][ T5822] [ 335.025409][ T5822] F2FS-fs (loop0): Stopped filesystem due to reason: 3 [ 335.087409][ T30] audit: type=1804 audit(1746574534.701:161): pid=12163 uid=0 auid=4294967295 ses=4294967295 subj=unconfined op=invalid_pcr cause=open_writers comm="syz.2.2200" name="/newroot/405/file1/file1" dev="loop2" ino=17058 res=1 errno=0 [ 335.497399][T12165] loop3: detected capacity change from 0 to 256 [ 335.653593][ T5825] ocfs2: Unmounting device (7,2) on (node local) [ 335.657896][T12159] ntfs3(loop1): try to read out of volume at offset 0x3fffffc7000 [ 335.684118][T12159] ntfs3(loop1): ino=21, The size of extended attributes must not exceed 64KiB [ 335.791209][T12143] loop8: detected capacity change from 0 to 32768 [ 335.838753][T12143] BTRFS: device fsid e417788f-7a09-42b2-9266-8ddc5d5d35d2 devid 1 transid 8 /dev/loop8 (7:8) scanned by syz.8.2209 (12143) [ 335.907281][T12143] BTRFS info (device loop8): first mount of filesystem e417788f-7a09-42b2-9266-8ddc5d5d35d2 [ 335.951282][T12143] BTRFS info (device loop8): using xxhash64 (xxhash64-generic) checksum algorithm [ 335.991857][T12143] BTRFS info (device loop8): using free-space-tree [ 336.247397][T12143] BTRFS info (device loop8): rebuilding free space tree [ 336.505023][T12198] loop3: detected capacity change from 0 to 1024 [ 336.547891][ T7461] BTRFS info (device loop8): last unmount of filesystem e417788f-7a09-42b2-9266-8ddc5d5d35d2 [ 336.587351][T12198] EXT4-fs (loop3): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: writeback. [ 336.830460][T11480] EXT4-fs (loop3): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 337.168500][ T30] audit: type=1326 audit(1746574536.781:162): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f363ab8e969 code=0x7ffc0000 [ 337.261955][ T30] audit: type=1326 audit(1746574536.781:163): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f363ab8e969 code=0x7ffc0000 [ 337.357223][ T30] audit: type=1326 audit(1746574536.811:164): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=321 compat=0 ip=0x7f363ab8e969 code=0x7ffc0000 [ 337.445872][ T30] audit: type=1326 audit(1746574536.811:165): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f363ab8e969 code=0x7ffc0000 [ 337.521559][ T30] audit: type=1326 audit(1746574536.811:166): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f363ab8e969 code=0x7ffc0000 [ 337.552724][T12223] sctp: [Deprecated]: syz.0.2231 (pid 12223) Use of int in maxseg socket option. [ 337.552724][T12223] Use struct sctp_assoc_value instead [ 337.600474][ T30] audit: type=1326 audit(1746574536.821:167): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=321 compat=0 ip=0x7f363ab8e969 code=0x7ffc0000 [ 337.646258][ T30] audit: type=1326 audit(1746574536.851:168): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f363ab8e969 code=0x7ffc0000 [ 337.714986][ T30] audit: type=1326 audit(1746574536.851:169): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=39 compat=0 ip=0x7f363ab85927 code=0x7ffc0000 [ 337.795185][ T30] audit: type=1326 audit(1746574536.851:170): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=15 compat=0 ip=0x7f363ab2ab39 code=0x7ffc0000 [ 337.868567][T12204] loop2: detected capacity change from 0 to 40427 [ 337.887673][T12229] A link change request failed with some changes committed already. Interface bridge_slave_0 may have been left with an inconsistent configuration, please check. [ 337.893771][T12204] F2FS-fs (loop2): Invalid log_blocksize (268), supports only 12 [ 337.913160][ T30] audit: type=1326 audit(1746574536.851:171): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f363ab8e969 code=0x7ffc0000 [ 337.923555][T12204] F2FS-fs (loop2): Can't find valid F2FS filesystem in 1th superblock [ 337.966139][ T30] audit: type=1326 audit(1746574536.861:172): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=39 compat=0 ip=0x7f363ab85927 code=0x7ffc0000 [ 338.031696][T12204] F2FS-fs (loop2): invalid crc value [ 338.073438][ T30] audit: type=1326 audit(1746574536.861:173): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=15 compat=0 ip=0x7f363ab2ab39 code=0x7ffc0000 [ 338.180299][ T30] audit: type=1326 audit(1746574536.861:174): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=unconfined pid=12212 comm="syz.9.2228" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f363ab8e969 code=0x7ffc0000 [ 338.359611][T12204] F2FS-fs (loop2): Try to recover 1th superblock, ret: 0 [ 338.380556][T12204] F2FS-fs (loop2): Mounted with checkpoint version = 48b305e5 [ 338.505194][T12247] netlink: 4 bytes leftover after parsing attributes in process `syz.9.2240'. [ 338.592933][T12247] bond_slave_0: entered promiscuous mode [ 338.598715][T12247] bond_slave_1: entered promiscuous mode [ 338.652718][T12247] macvlan2: entered promiscuous mode [ 338.658111][T12247] bond0: entered promiscuous mode [ 338.665298][T12247] 8021q: adding VLAN 0 to HW filter on device macvlan2 [ 339.402064][T12239] loop1: detected capacity change from 0 to 32768 [ 339.507429][T12239] XFS (loop1): Mounting V5 Filesystem a2f82aab-77f8-4286-afd4-a8f747a74bab [ 339.542224][T12246] loop0: detected capacity change from 0 to 32768 [ 339.655797][T12239] XFS (loop1): Ending clean mount [ 339.692166][T12266] netlink: 4 bytes leftover after parsing attributes in process `syz.8.2247'. [ 339.714007][T12239] XFS (loop1): Quotacheck needed: Please wait. [ 339.881977][T12239] XFS (loop1): Quotacheck: Done. [ 340.162983][ T5819] XFS (loop1): Unmounting Filesystem a2f82aab-77f8-4286-afd4-a8f747a74bab [ 340.888687][T12295] loop8: detected capacity change from 0 to 2048 [ 340.955393][T12295] EXT4-fs (loop8): mounted filesystem 00000000-0000-0000-0000-000000000000 r/w without journal. Quota mode: none. [ 341.016947][T12300] loop0: detected capacity change from 0 to 1024 [ 341.103553][T12287] loop3: detected capacity change from 0 to 32768 [ 341.268771][ T7461] EXT4-fs (loop8): unmounting filesystem 00000000-0000-0000-0000-000000000000. [ 342.153575][T12322] netlink: 14 bytes leftover after parsing attributes in process `syz.8.2269'. [ 342.550422][T12308] loop9: detected capacity change from 0 to 32768 [ 342.654847][T12308] ocfs2: Mounting device (7,9) on (node local, slot 0) with writeback data mode. [ 343.014869][ T7926] ocfs2: Unmounting device (7,9) on (node local) [ 343.362567][ T974] usb 1-1: new high-speed USB device number 8 using dummy_hcd [ 343.440589][T12336] loop2: detected capacity change from 0 to 32768 [ 343.452580][ T5823] usb 4-1: new high-speed USB device number 3 using dummy_hcd [ 343.487286][T12336] XFS: ikeep mount option is deprecated. [ 343.538464][ T974] usb 1-1: Using ep0 maxpacket: 32 [ 343.552747][T12336] XFS (loop2): Mounting V5 Filesystem bfdc47fc-10d8-4eed-a562-11a831b3f791 [ 343.571056][ T974] usb 1-1: config 4 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 343.620960][ T974] usb 1-1: config 4 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 343.644817][ T974] usb 1-1: New USB device found, idVendor=046d, idProduct=c314, bcdDevice= 0.40 [ 343.664786][ T5823] usb 4-1: New USB device found, idVendor=0733, idProduct=0430, bcdDevice=35.fb [ 343.671975][ T974] usb 1-1: New USB device strings: Mfr=255, Product=255, SerialNumber=0 [ 343.682375][ T5823] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 343.685446][ T5823] usb 4-1: config 0 descriptor?? [ 343.699959][ T5823] gspca_main: spca505-2.14.0 probing 0733:0430 [ 343.724693][T12376] loop8: detected capacity change from 0 to 512 [ 343.738244][T12376] EXT4-fs: Quota format mount options ignored when QUOTA feature is enabled [ 343.738449][ T974] usb 1-1: Product: syz [ 343.767524][T12376] EXT4-fs error (device loop8): ext4_orphan_get:1391: inode #15: comm syz.8.2292: casefold flag without casefold feature [ 343.769502][ T974] usb 1-1: Manufacturer: syz [ 343.808272][ T974] hub 1-1:4.0: USB hub found [ 448.822328][ C0] rcu: INFO: rcu_preempt detected stalls on CPUs/tasks: [ 448.829336][ C0] rcu: 1-...!: (0 ticks this GP) idle=9c1c/1/0x4000000000000000 softirq=46160/46160 fqs=0 [ 448.841498][ C0] rcu: (detected by 0, t=10502 jiffies, g=46997, q=334 ncpus=2) [ 448.849230][ C0] Sending NMI from CPU 0 to CPUs 1: [ 448.849263][ C1] NMI backtrace for cpu 1 [ 448.849279][ C1] CPU: 1 UID: 0 PID: 12379 Comm: syz.9.2291 Not tainted 6.15.0-rc5-syzkaller-00032-g0d8d44db295c #0 PREEMPT(full) [ 448.849305][ C1] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/29/2025 [ 448.849320][ C1] RIP: 0010:rcu_is_watching+0x4e/0xb0 [ 448.849360][ C1] Code: ff df 4c 8d 34 dd 10 dc 96 8d 4c 89 f0 48 c1 e8 03 42 80 3c 38 00 74 08 4c 89 f7 e8 1c cd 7a 00 48 c7 c3 58 7b 76 92 49 03 1e <48> 89 d8 48 c1 e8 03 42 0f b6 04 38 84 c0 75 34 8b 03 65 ff 0d 49 [ 448.849379][ C1] RSP: 0018:ffffc90000a08d20 EFLAGS: 00000083 [ 448.849399][ C1] RAX: 1ffffffff1b2db83 RBX: ffff8880b8932b58 RCX: 59f3d9f8e8f23600 [ 448.849417][ C1] RDX: ffff88802af65a00 RSI: ffffffff8bc1d1c0 RDI: ffffffff8bc1d180 [ 448.849434][ C1] RBP: ffffc90000a08e90 R08: ffffffff8f7ed977 R09: 1ffffffff1efdb2e [ 448.849451][ C1] R10: dffffc0000000000 R11: fffffbfff1efdb2f R12: ffff8880345e7340 [ 448.849467][ C1] R13: 0000000000000000 R14: ffffffff8d96dc18 R15: dffffc0000000000 [ 448.849486][ C1] FS: 00007f363ba026c0(0000) GS:ffff8881261cb000(0000) knlGS:0000000000000000 [ 448.849506][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 448.849521][ C1] CR2: 0000200000003c80 CR3: 00000000254b2000 CR4: 0000000000350ef0 [ 448.849539][ C1] Call Trace: [ 448.849548][ C1] [ 448.849559][ C1] __hrtimer_run_queues+0x5b6/0xc60 [ 448.849599][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.849637][ C1] ? __pfx___hrtimer_run_queues+0x10/0x10 [ 448.849669][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.849696][ C1] ? rcu_is_watching+0x15/0xb0 [ 448.849733][ C1] hrtimer_interrupt+0x45b/0xaa0 [ 448.849785][ C1] __sysvec_apic_timer_interrupt+0x10b/0x410 [ 448.849815][ C1] sysvec_apic_timer_interrupt+0xa1/0xc0 [ 448.849842][ C1] [ 448.849849][ C1] [ 448.849858][ C1] asm_sysvec_apic_timer_interrupt+0x1a/0x20 [ 448.849881][ C1] RIP: 0010:__sanitizer_cov_trace_const_cmp4+0x8/0x90 [ 448.849909][ C1] Code: 48 89 44 11 20 e9 93 6c 50 ff cc 0f 1f 80 00 00 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 48 8b 04 24 <65> 48 8b 14 25 08 50 75 92 65 8b 0d 88 7b b5 10 81 e1 00 01 ff 00 [ 448.849926][ C1] RSP: 0018:ffffc9000b00fab8 EFLAGS: 00000246 [ 448.849945][ C1] RAX: ffffffff81b45a47 RBX: 0000000000000001 RCX: 0000000000000002 [ 448.849960][ C1] RDX: ffff88802af65a00 RSI: 0000000000000001 RDI: 0000000000000000 [ 448.849974][ C1] RBP: ffffc9000b00fc10 R08: 0000000000000000 R09: 1ffffffff1efdb2e [ 448.849989][ C1] R10: dffffc0000000000 R11: fffffbfff1efdb2f R12: ffffc9000b00fcc0 [ 448.850006][ C1] R13: dffffc0000000000 R14: 0000000000000001 R15: 0000000080000001 [ 448.850028][ C1] ? smp_call_function_many_cond+0x127/0x11c0 [ 448.850067][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.850092][ C1] smp_call_function_many_cond+0x127/0x11c0 [ 448.850131][ C1] ? __pfx_retrigger_next_event+0x10/0x10 [ 448.850161][ C1] ? _raw_spin_unlock_irqrestore+0x85/0x110 [ 448.850185][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.850213][ C1] ? __pfx_smp_call_function_many_cond+0x10/0x10 [ 448.850244][ C1] ? _raw_spin_unlock_irqrestore+0xad/0x110 [ 448.850267][ C1] ? __pfx__raw_spin_unlock_irqrestore+0x10/0x10 [ 448.850288][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.850321][ C1] clock_was_set+0x709/0x7c0 [ 448.850351][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.850385][ C1] ? __pfx_clock_was_set+0x10/0x10 [ 448.850413][ C1] ? do_settimeofday64+0x2c4/0x590 [ 448.850440][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.850465][ C1] ? timekeeping_update_from_shadow+0x2b1/0x350 [ 448.850494][ C1] do_settimeofday64+0x2df/0x590 [ 448.850523][ C1] ? __pfx_do_settimeofday64+0x10/0x10 [ 448.850546][ C1] ? vringh_complete_iotlb+0x2f7/0x4d0 [ 448.850585][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.850610][ C1] ? security_settime64+0x76/0x290 [ 448.850634][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.850660][ C1] ? do_sys_settimeofday64+0x163/0x260 [ 448.850688][ C1] __x64_sys_clock_settime+0x22c/0x280 [ 448.850716][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.850741][ C1] ? rcu_is_watching+0x15/0xb0 [ 448.850774][ C1] ? __pfx___x64_sys_clock_settime+0x10/0x10 [ 448.850805][ C1] ? do_syscall_64+0xba/0x210 [ 448.850835][ C1] do_syscall_64+0xf6/0x210 [ 448.850862][ C1] ? srso_alias_return_thunk+0x5/0xfbef5 [ 448.850887][ C1] ? exc_page_fault+0x91/0x110 [ 448.850912][ C1] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 448.850935][ C1] RIP: 0033:0x7f363ab8e969 [ 448.850954][ C1] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 448.850973][ C1] RSP: 002b:00007f363ba02038 EFLAGS: 00000246 ORIG_RAX: 00000000000000e3 [ 448.850994][ C1] RAX: ffffffffffffffda RBX: 00007f363adb5fa0 RCX: 00007f363ab8e969 [ 448.851011][ C1] RDX: 0000000000000000 RSI: 0000200000003c80 RDI: 0000000000000000 [ 448.851025][ C1] RBP: 00007f363ac10ab1 R08: 0000000000000000 R09: 0000000000000000 [ 448.851039][ C1] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 [ 448.851053][ C1] R13: 0000000000000000 R14: 00007f363adb5fa0 R15: 00007fff9272dab8 [ 448.851081][ C1] [ 448.851254][ C0] rcu: rcu_preempt kthread timer wakeup didn't happen for 10501 jiffies! g46997 f0x0 RCU_GP_WAIT_FQS(5) ->state=0x402 [ 449.374254][ C0] rcu: Possible timer handling issue on cpu=1 timer-softirq=22725 [ 449.382164][ C0] rcu: rcu_preempt kthread starved for 10502 jiffies! g46997 f0x0 RCU_GP_WAIT_FQS(5) ->state=0x402 ->cpu=1 [ 449.393571][ C0] rcu: Unless rcu_preempt kthread gets sufficient CPU time, OOM is now expected behavior. [ 449.403553][ C0] rcu: RCU grace-period kthread stack dump: [ 449.409461][ C0] task:rcu_preempt state:I stack:27496 pid:16 tgid:16 ppid:2 task_flags:0x208040 flags:0x00004000 [ 449.421460][ C0] Call Trace: [ 449.424768][ C0] [ 449.427713][ C0] __schedule+0x16e2/0x4cd0 [ 449.432247][ C0] ? srso_alias_return_thunk+0x5/0xfbef5 [ 449.437896][ C0] ? do_raw_spin_unlock+0x122/0x240 [ 449.443118][ C0] ? schedule+0x165/0x360 [ 449.447467][ C0] ? __pfx___schedule+0x10/0x10 [ 449.452351][ C0] ? srso_alias_return_thunk+0x5/0xfbef5 [ 449.458006][ C0] ? schedule+0x91/0x360 [ 449.462270][ C0] schedule+0x165/0x360 [ 449.466450][ C0] schedule_timeout+0x12b/0x270 [ 449.471344][ C0] ? __pfx_schedule_timeout+0x10/0x10 [ 449.476762][ C0] ? __pfx_process_timeout+0x10/0x10 [ 449.482072][ C0] ? srso_alias_return_thunk+0x5/0xfbef5 [ 449.487817][ C0] ? prepare_to_swait_event+0x341/0x380 [ 449.493402][ C0] rcu_gp_fqs_loop+0x301/0x1540 [ 449.498293][ C0] ? srso_alias_return_thunk+0x5/0xfbef5 [ 449.503957][ C0] ? __pfx_rcu_gp_init+0x10/0x10 [ 449.508931][ C0] ? __pfx_rcu_gp_fqs_loop+0x10/0x10 [ 449.514275][ C0] ? _raw_spin_unlock_irq+0x2e/0x50 [ 449.519611][ C0] ? finish_swait+0xcd/0x1f0 [ 449.524241][ C0] rcu_gp_kthread+0x99/0x390 [ 449.528868][ C0] ? __pfx_rcu_gp_kthread+0x10/0x10 [ 449.534089][ C0] ? __kthread_parkme+0x7b/0x200 [ 449.539047][ C0] ? srso_alias_return_thunk+0x5/0xfbef5 [ 449.544788][ C0] ? __kthread_parkme+0x1a1/0x200 [ 449.549967][ C0] kthread+0x711/0x8a0 [ 449.554062][ C0] ? __pfx_rcu_gp_kthread+0x10/0x10 [ 449.559282][ C0] ? __pfx_kthread+0x10/0x10 [ 449.563890][ C0] ? srso_alias_return_thunk+0x5/0xfbef5 [ 449.569541][ C0] ? __pfx_kthread+0x10/0x10 [ 449.574145][ C0] ? _raw_spin_unlock_irq+0x23/0x50 [ 449.579355][ C0] ? srso_alias_return_thunk+0x5/0xfbef5 [ 449.585004][ C0] ? lockdep_hardirqs_on+0x9c/0x150 [ 449.590217][ C0] ? __pfx_kthread+0x10/0x10 [ 449.594824][ C0] ret_from_fork+0x4e/0x80 [ 449.599253][ C0] ? __pfx_kthread+0x10/0x10 [ 449.603859][ C0] ret_from_fork_asm+0x1a/0x30 [ 449.608663][ C0]