last executing test programs: 3m17.790030043s ago: executing program 0 (id=2523): r0 = syz_io_uring_setup(0x49a, &(0x7f0000000400)={0x0, 0x79af, 0x3180, 0x8000, 0x40024e}, &(0x7f0000000340)=0x0, &(0x7f0000000040)=0x0) syz_memcpy_off$IO_URING_METADATA_GENERIC(r1, 0x4, &(0x7f0000000080)=0xfffffffc, 0x0, 0x4) syz_io_uring_submit(r1, r2, &(0x7f00000002c0)=@IORING_OP_TIMEOUT={0xb, 0x1, 0x0, 0x0, 0x7, &(0x7f0000000100)={0x0, 0x989680}, 0x1, 0x4, 0x1}) io_uring_enter(r0, 0x3516, 0x0, 0x0, 0x0, 0x0) 3m17.618769949s ago: executing program 0 (id=2528): r0 = syz_usb_connect(0x0, 0x36, &(0x7f00000000c0)=ANY=[@ANYBLOB="120100008010bd40820514009dbb0000000109022400011b00000009040000022a3e740009058bff7f0000100109050b362f"], 0x0) r1 = syz_open_dev$midi(&(0x7f0000000000), 0x3, 0x88c02) syz_usb_disconnect(r0) writev(r1, &(0x7f0000000080)=[{&(0x7f0000000100)="f5", 0x1}], 0x1) 3m16.114951136s ago: executing program 0 (id=2555): io_uring_setup(0x6cfb, 0x0) openat$hwrng(0xffffffffffffff9c, 0x0, 0x0, 0x0) r0 = socket$nl_xfrm(0x10, 0x3, 0x6) sendmsg$nl_xfrm(r0, &(0x7f0000000180)={0x0, 0x0, &(0x7f00000001c0)={&(0x7f00000005c0)=@updpolicy={0xcc, 0x19, 0x1, 0x0, 0x0, {{@in6=@rand_addr=' \x01\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x01', @in=@empty, 0x0, 0xfffd, 0x0, 0x0, 0xa, 0x0, 0x0, 0x29}, {0x1, 0x2, 0x100000001, 0x0, 0x0, 0xffffffffffffb473, 0xffffffffffffffff}, {0x1000000000, 0x2000000000000000, 0x0, 0xffffffffffffffff}, 0xfffffffe}, [@XFRMA_IF_ID={0x8, 0x1f, 0x1}, @mark={0xc, 0x15, {0x350759, 0x9}}]}, 0xcc}}, 0x4004) 3m16.069824569s ago: executing program 0 (id=2557): mkdirat(0xffffffffffffff9c, &(0x7f0000000000)='./file0\x00', 0x0) mount$bind(&(0x7f00000002c0)='.\x00', &(0x7f0000000200)='./file0\x00', 0x0, 0x101091, 0x0) mount$bind(&(0x7f0000000300)='./file0/../file0\x00', &(0x7f0000000340)='./file0/file0\x00', 0x0, 0x89101a, 0x0) umount2(&(0x7f0000000080)='./file0\x00', 0x9) 3m16.031330373s ago: executing program 0 (id=2558): r0 = syz_open_dev$sg(&(0x7f0000000040), 0x0, 0x0) madvise(&(0x7f0000000000/0x600000)=nil, 0x600722, 0x66) madvise(&(0x7f0000000000/0x3000)=nil, 0x7fffffffffffffff, 0x67) ioctl$SG_GET_VERSION_NUM(r0, 0x2284, &(0x7f0000000080)) 3m15.74834806s ago: executing program 0 (id=2566): ioperm(0x7, 0x81, 0x2) r0 = getpid() r1 = syz_pidfd_open(r0, 0x0) process_madvise(r1, 0x0, 0x0, 0x19, 0x0) 3m15.609376581s ago: executing program 32 (id=2566): ioperm(0x7, 0x81, 0x2) r0 = getpid() r1 = syz_pidfd_open(r0, 0x0) process_madvise(r1, 0x0, 0x0, 0x19, 0x0) 57.614016302s ago: executing program 3 (id=5847): r0 = socket$nl_generic(0x10, 0x3, 0x10) r1 = syz_genetlink_get_family_id$team(&(0x7f00000044c0), 0xffffffffffffffff) ioctl$ifreq_SIOCGIFINDEX_team(r0, 0x8933, &(0x7f0000004700)={'team0\x00', 0x0}) sendmsg$TEAM_CMD_OPTIONS_SET(r0, &(0x7f0000004bc0)={0x0, 0x0, &(0x7f0000004b80)={&(0x7f00000047c0)={0x58, r1, 0x405, 0x70bd27, 0x25dfdbfe, {}, [{{0x8, 0x1, r2}, {0x3c, 0x2, 0x0, 0x1, [{0x38, 0x1, @mcast_rejoin_count={{0x24}, {0x5}, {0x8, 0x4, 0x1}}}]}}]}, 0x58}, 0x1, 0x0, 0x0, 0x4000401}, 0x44084) 57.577576754s ago: executing program 3 (id=5848): r0 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000000), 0x0, 0x0) r1 = ioctl$KVM_CREATE_VM(r0, 0xae01, 0x0) r2 = ioctl$KVM_CREATE_VCPU(r1, 0xae41, 0x0) ioctl$KVM_SET_MSRS(r2, 0x4008ae89, &(0x7f0000000c00)=ANY=[@ANYBLOB="02000000000000002a000040"]) 57.416804029s ago: executing program 3 (id=5849): r0 = seccomp$SECCOMP_SET_MODE_FILTER_LISTENER(0x1, 0x0, &(0x7f0000000400)={0x1, &(0x7f0000000380)=[{0x6, 0x1, 0x8, 0x7ffffffb}]}) r1 = openat$dma_heap(0xffffffffffffff9c, &(0x7f0000000040), 0x0, 0x0) prlimit64(0x0, 0x7, &(0x7f0000000000), 0x0) ioctl$DMA_HEAP_IOCTL_ALLOC(r1, 0xc0184800, &(0x7f0000000080)={0x10001, r0}) 57.366580031s ago: executing program 3 (id=5850): r0 = userfaultfd(0x801) ioctl$UFFDIO_API(r0, 0xc018aa3f, &(0x7f0000000000)={0xaa, 0x65}) ioctl$UFFDIO_REGISTER(r0, 0xc020aa00, &(0x7f00000000c0)={{&(0x7f0000001000/0x3000)=nil, 0x3000}, 0x1}) ioctl$UFFDIO_REGISTER(r0, 0xc020aa00, &(0x7f0000000040)={{&(0x7f0000000000/0x4000)=nil, 0x4000}, 0x2}) 57.342143482s ago: executing program 3 (id=5852): r0 = openat(0xffffffffffffff9c, &(0x7f0000000040)='.\x00', 0x0, 0x0) ioctl$FS_IOC_SETFLAGS(r0, 0x40086602, &(0x7f0000000280)=0x10) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000940)={0xffffffffffffffff, 0xffffffffffffffff}) bind$unix(r1, &(0x7f0000000200)=@file={0x1, './file0\x00'}, 0x6e) 57.306140736s ago: executing program 3 (id=5853): r0 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r0, &(0x7f000000c2c0)={0x0, 0x0, &(0x7f0000000200)={&(0x7f00000000c0)=ANY=[@ANYBLOB="140000001000010600000000000000000000000a28000000000a0101000000005e1affd5020000000900010073797a300000000008000240000000032c000000030a01030000e6ff1b000000020000000900010073797a30000001000900030073797a320000000014000000110001"], 0x7c}}, 0x0) sendmsg$NFT_BATCH(r0, &(0x7f0000000240)={0x0, 0x0, &(0x7f0000000000)={&(0x7f0000000280)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a3c000000120a01020000000000100000020000000900020073797a310000000008000440000000000900010073797a3000000000080003400000000a14000000110001"], 0x64}}, 0x0) sendmsg$NFT_BATCH(r0, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000480)={&(0x7f00000004c0)={{0x14}, [@NFT_MSG_DELOBJ={0x34, 0x14, 0xa, 0x307, 0x0, 0x0, {0x2, 0x0, 0x9}, [@NFTA_OBJ_TYPE={0x8, 0x3, 0x1, 0x0, 0xa}, @NFTA_OBJ_TABLE={0x9, 0x1, 'syz0\x00'}, @NFTA_OBJ_HANDLE={0xc, 0x6, 0x1, 0x0, 0x2}]}, @NFT_MSG_DELTABLE={0x14, 0x2, 0xa, 0x101, 0x0, 0x0, {0x0, 0x0, 0xa}}], {0x14}}, 0x70}}, 0x0) 48.28385013s ago: executing program 1 (id=6017): set_mempolicy(0x3, &(0x7f0000000040)=0xfff, 0x5) r0 = bpf$PROG_LOAD(0x5, &(0x7f0000000400)={0x11, 0xb, &(0x7f0000000180)=ANY=[@ANYBLOB="18000000000000000000000000000000180100002020702500000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000000000000b703000000000000850000000400000095"], &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x18, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000180)={&(0x7f0000000140)='mm_page_alloc\x00', r0}, 0x10) bpf$MAP_CREATE(0x0, &(0x7f0000000840)=ANY=[@ANYBLOB="0a00000001010000ff7f0000cc"], 0x48) 48.029311425s ago: executing program 1 (id=6018): r0 = socket$nl_generic(0x10, 0x3, 0x10) r1 = syz_genetlink_get_family_id$SEG6(&(0x7f0000000080), 0xffffffffffffffff) sendmsg$SEG6_CMD_SETHMAC(r0, &(0x7f00000004c0)={0x0, 0x0, &(0x7f00000001c0)={&(0x7f00000000c0)={0x34, r1, 0x1, 0x0, 0x0, {}, [@SEG6_ATTR_SECRETLEN={0x5, 0x5, 0x1}, @SEG6_ATTR_SECRET={0x8, 0x4, [0x0]}, @SEG6_ATTR_ALGID={0x5}, @SEG6_ATTR_HMACKEYID={0x8, 0x3, 0x1}]}, 0x34}}, 0x0) sendmsg$SEG6_CMD_SETHMAC(r0, &(0x7f00000004c0)={0x0, 0x0, &(0x7f00000001c0)={&(0x7f00000000c0)={0x2c, r1, 0x1, 0x0, 0x0, {}, [@SEG6_ATTR_SECRETLEN={0x5}, @SEG6_ATTR_ALGID={0x5, 0x6, 0x7}, @SEG6_ATTR_HMACKEYID={0x8, 0x3, 0x1}]}, 0x2c}}, 0x0) 47.916239613s ago: executing program 1 (id=6019): open(&(0x7f0000000240)='./file0/file0/file0/file0/file0\x00', 0x400141042, 0x10) socket(0x10, 0x3, 0x0) pipe2(&(0x7f0000000040)={0xffffffffffffffff, 0xffffffffffffffff}, 0x0) syz_usb_connect$uac1(0x0, 0xa4, &(0x7f00000001c0)=ANY=[@ANYBLOB="2a01000020000040b708000000000000030109029200030172e5000904000000010100000a24010000000201020c0d2407000005000000000000000c240000e9fffff5ffffffff092403f3ff000005024524", @ANYRES8=r1, @ANYBLOB="05", @ANYRES32=r0, @ANYRES16=r1], 0x0) 46.694590835s ago: executing program 1 (id=6042): mkdirat(0xffffffffffffff9c, &(0x7f0000000280)='./file0\x00', 0x0) mount$bind(&(0x7f0000000040)='./file0\x00', &(0x7f0000000080)='./file0/../file0\x00', 0x0, 0x101091, 0x0) r0 = open_tree(0xffffffffffffff9c, &(0x7f0000000640)='\x00', 0x89901) move_mount(r0, &(0x7f0000000140)='.\x00', 0xffffffffffffff9c, &(0x7f0000000180)='./file0\x00', 0x262) 46.611663542s ago: executing program 1 (id=6046): r0 = socket$kcm(0x10, 0x3, 0x10) r1 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000180)={0x11, 0x5, &(0x7f0000000280)=ANY=[@ANYBLOB="1801000021000000000000003b810000850000006d000000070000000000000095"], &(0x7f0000000040)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000880)={&(0x7f0000000a80)='kfree\x00', r1}, 0x10) sendmsg$kcm(r0, &(0x7f0000000000)={0x0, 0xffffff0a, &(0x7f0000000080)=[{&(0x7f0000000040)="c01803001d000b63d25a80648c2594f90124fc60100c030002040009053582c137153e370248078000f01700d1bd", 0x33fe0}], 0x1, 0x0, 0x0, 0x4000}, 0x3500000000000000) 45.940131305s ago: executing program 1 (id=6052): r0 = seccomp$SECCOMP_SET_MODE_FILTER_LISTENER(0x1, 0x0, &(0x7f00000000c0)={0x1, &(0x7f0000000100)=[{0x6, 0x0, 0x0, 0x7fff0006}]}) r1 = socket$xdp(0x2c, 0x3, 0x0) setsockopt$XDP_UMEM_FILL_RING(r1, 0x11b, 0x5, &(0x7f0000000200)=0x10, 0x4) close_range(r0, 0xffffffffffffffff, 0x0) 45.82708574s ago: executing program 33 (id=6052): r0 = seccomp$SECCOMP_SET_MODE_FILTER_LISTENER(0x1, 0x0, &(0x7f00000000c0)={0x1, &(0x7f0000000100)=[{0x6, 0x0, 0x0, 0x7fff0006}]}) r1 = socket$xdp(0x2c, 0x3, 0x0) setsockopt$XDP_UMEM_FILL_RING(r1, 0x11b, 0x5, &(0x7f0000000200)=0x10, 0x4) close_range(r0, 0xffffffffffffffff, 0x0) 42.249130929s ago: executing program 34 (id=5853): r0 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r0, &(0x7f000000c2c0)={0x0, 0x0, &(0x7f0000000200)={&(0x7f00000000c0)=ANY=[@ANYBLOB="140000001000010600000000000000000000000a28000000000a0101000000005e1affd5020000000900010073797a300000000008000240000000032c000000030a01030000e6ff1b000000020000000900010073797a30000001000900030073797a320000000014000000110001"], 0x7c}}, 0x0) sendmsg$NFT_BATCH(r0, &(0x7f0000000240)={0x0, 0x0, &(0x7f0000000000)={&(0x7f0000000280)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a3c000000120a01020000000000100000020000000900020073797a310000000008000440000000000900010073797a3000000000080003400000000a14000000110001"], 0x64}}, 0x0) sendmsg$NFT_BATCH(r0, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000480)={&(0x7f00000004c0)={{0x14}, [@NFT_MSG_DELOBJ={0x34, 0x14, 0xa, 0x307, 0x0, 0x0, {0x2, 0x0, 0x9}, [@NFTA_OBJ_TYPE={0x8, 0x3, 0x1, 0x0, 0xa}, @NFTA_OBJ_TABLE={0x9, 0x1, 'syz0\x00'}, @NFTA_OBJ_HANDLE={0xc, 0x6, 0x1, 0x0, 0x2}]}, @NFT_MSG_DELTABLE={0x14, 0x2, 0xa, 0x101, 0x0, 0x0, {0x0, 0x0, 0xa}}], {0x14}}, 0x70}}, 0x0) 3.040160388s ago: executing program 7 (id=6932): r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f00000003c0)={0x18, 0x5, &(0x7f0000000040)=ANY=[@ANYBLOB="180100002100000000000000000000008500000075000000a50000002300000095"], &(0x7f00000000c0)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000100)={&(0x7f00000001c0)='mmap_lock_acquire_returned\x00', r0, 0x0, 0x4}, 0x18) r1 = syz_open_procfs(0x0, &(0x7f00000005c0)='smaps_rollup\x00') lseek(r1, 0x2000, 0x0) 2.946253383s ago: executing program 7 (id=6935): r0 = syz_init_net_socket$bt_sco(0x1f, 0x5, 0x2) bind$bt_sco(r0, &(0x7f0000000040)={0x1f, @fixed}, 0x8) listen(r0, 0x0) setsockopt$bt_BT_DEFER_SETUP(r0, 0x112, 0x7, &(0x7f0000000000)=0x1, 0x4) 2.860100325s ago: executing program 7 (id=6937): r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000200)={0x11, 0x4, &(0x7f00000002c0)=ANY=[@ANYBLOB="180100001c0000000000000000000000850000006d00000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x20, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000100)={&(0x7f00000003c0)='sys_enter\x00', r0}, 0x18) nanosleep(&(0x7f0000000bc0)={0x0, 0x3938700}, 0x0) setsockopt$netlink_NETLINK_DROP_MEMBERSHIP(0xffffffffffffffff, 0x10e, 0xc, 0x0, 0x0) 2.808962301s ago: executing program 7 (id=6939): r0 = socket$phonet(0x23, 0x2, 0x1) r1 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f00000013c0)={0x11, 0x3, &(0x7f0000000080)=@framed={{0x18, 0x0, 0x0, 0x0, 0x90bd}}, &(0x7f0000000300)='syzkaller\x00', 0x0, 0x0, 0x0, 0x41100, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000000c0)={&(0x7f0000000040)='contention_end\x00', r1}, 0x10) ioctl$SIOCPNDELRESOURCE(r0, 0x89ef, &(0x7f0000000740)=0xb2) 2.703569568s ago: executing program 7 (id=6942): syz_open_dev$radio(&(0x7f0000000000), 0xffffffffffffffff, 0x2) mprotect(&(0x7f0000000000/0x800000)=nil, 0x800000, 0x1) r0 = syz_init_net_socket$bt_l2cap(0x1f, 0x5, 0x0) getsockopt$bt_BT_CHANNEL_POLICY(r0, 0x112, 0x4, 0x0, &(0x7f0000000000)) 2.594392192s ago: executing program 7 (id=6945): bpf$PROG_LOAD(0x5, &(0x7f00000005c0)={0x11, 0xb, 0x0, &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x2b, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r0 = syz_usb_connect$hid(0x3, 0x36, &(0x7f0000000dc0)={{0x12, 0x1, 0x0, 0x0, 0x0, 0x0, 0x40, 0xfc5, 0xb080, 0x0, 0x0, 0x0, 0x0, 0x1, [{{0x9, 0x2, 0x24, 0x1, 0x0, 0x0, 0x0, 0x0, [{{0x9, 0x4, 0x0, 0x0, 0x1, 0x3, 0x0, 0x0, 0x0, {0x9, 0x21, 0x0, 0x0, 0x1, {0x22, 0x3}}}}]}}]}}, 0x0) syz_usb_control_io$hid(r0, 0x0, 0x0) syz_usb_control_io(r0, &(0x7f0000000740)={0x2c, &(0x7f0000000000)={0x40, 0x2, 0x4, {0x4, 0x0, "34d0"}}, 0x0, 0x0, 0x0, 0x0}, 0x0) 1.889475711s ago: executing program 6 (id=6969): r0 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000340), 0x0, 0x0) ioctl$KVM_CREATE_VM(r0, 0xae01, 0x0) mmap$IORING_OFF_SQ_RING(&(0x7f0000400000/0xc00000)=nil, 0xc00000, 0x0, 0x5d031, 0xffffffffffffffff, 0x0) madvise(&(0x7f0000000000/0x600000)=nil, 0x600003, 0x18) 1.8117483s ago: executing program 6 (id=6971): r0 = socket$inet6(0xa, 0x5, 0x0) setsockopt$inet_int(r0, 0x0, 0xf, &(0x7f0000000340)=0xfffffffffffffff9, 0x4) setsockopt$inet_sctp6_SCTP_SOCKOPT_BINDX_ADD(r0, 0x84, 0x64, &(0x7f0000000040)=[@in={0x2, 0x0, @private=0xc0586300}], 0x10) getsockopt$inet_sctp6_SCTP_SOCKOPT_CONNECTX3(r0, 0x84, 0x6f, &(0x7f00000000c0)={0x0, 0x1c, &(0x7f0000001180)=[@in6={0xa, 0x4e21, 0x63c, @rand_addr=' \x01\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x02', 0x401}]}, &(0x7f0000000140)=0x10) 1.739963803s ago: executing program 6 (id=6972): r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000180)={0x18, 0x5, &(0x7f0000000280)=ANY=[@ANYBLOB="1800000000000000000000004b64ffec850000006d000000850000002a00000095"], &(0x7f0000000080)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000440)={&(0x7f00000003c0)='kfree\x00', r0}, 0x10) r1 = syz_open_dev$tty1(0xc, 0x4, 0x3) ioctl$KDSKBSENT(r1, 0x4b49, &(0x7f0000000380)={0x6, "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"}) 1.739481234s ago: executing program 6 (id=6973): r0 = socket$nl_route(0x10, 0x3, 0x0) r1 = socket$packet(0x11, 0x3, 0x300) ioctl$ifreq_SIOCGIFINDEX_wireguard(r1, 0x8933, &(0x7f00000001c0)={'wg1\x00', 0x0}) sendmsg$nl_route(r0, &(0x7f0000000380)={0x0, 0x0, &(0x7f0000000340)={&(0x7f0000000400)=@newlink={0x38, 0x10, 0x1, 0x70bd27, 0x25dfdbfe, {0x0, 0x0, 0x0, r2}, [@IFLA_VFINFO_LIST={0x18, 0x16, 0x0, 0x1, [{0x14, 0x1, 0x0, 0x1, [@IFLA_VF_RATE={0x10, 0x6, {0xffffffff, 0x7f, 0x8000}}]}]}]}, 0x38}}, 0x0) 1.736146469s ago: executing program 6 (id=6974): r0 = socket$inet6_sctp(0xa, 0x5, 0x84) shutdown(r0, 0x0) getsockopt$inet_sctp6_SCTP_SOCKOPT_CONNECTX3(r0, 0x84, 0x6f, &(0x7f0000000000)={0x0, 0x10, &(0x7f00000002c0)=[@in={0x2, 0x0, @local}]}, &(0x7f0000000240)=0x10) getsockopt$inet_sctp6_SCTP_DEFAULT_SNDINFO(r0, 0x84, 0x22, &(0x7f0000000080)={0x40, 0x6, 0x6, 0x9, r1}, &(0x7f00000000c0)=0x10) 1.71223897s ago: executing program 6 (id=6975): r0 = syz_usb_connect(0x0, 0x24, &(0x7f0000000280)=ANY=[@ANYBLOB="12010000d3750820c80a2103be6f000000010902120001000000000904"], 0x0) syz_usb_control_io$cdc_ecm(r0, 0x0, &(0x7f0000000540)={0x1c, &(0x7f0000000380)=ANY=[], 0x0, 0x0}) syz_usb_control_io(r0, 0x0, 0x0) syz_usb_control_io$uac1(r0, 0x0, 0x0) 1.542471411s ago: executing program 4 (id=6977): syz_emit_ethernet(0x2a, &(0x7f0000000100)={@broadcast, @random="9f875bf6a485", @void, {@arp={0x806, @ether_ipv4={0x1, 0x800, 0x6, 0x4, 0x2, @dev={'\xaa\xaa\xaa\xaa\xaa', 0x19}, @remote, @link_local={0x1, 0x80, 0xc2, 0x0, 0x0, 0x1}, @remote}}}}, 0x0) r0 = socket$packet(0x11, 0x3, 0x300) ioctl$ifreq_SIOCGIFINDEX_batadv_mesh(r0, 0x8933, &(0x7f0000000080)={'batadv0\x00', 0x0}) sendto$packet(r0, &(0x7f0000000100)="f257a8ea7bc273dfaeab96850806", 0x2a, 0x0, &(0x7f0000000200)={0x11, 0x0, r1, 0x1, 0x0, 0x6, @link_local}, 0x14) 1.490485875s ago: executing program 4 (id=6978): r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000000)=ANY=[@ANYBLOB="09000000030000000400010005"], 0x48) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000004c0)={0x11, 0x14, &(0x7f0000000580)=ANY=[@ANYBLOB="1802000000000000000000000000000018010000786c6c2500000000070000007b1af8ff00000000bfa100000000000007010000f8ffffffb700000000000000b7030000000000fd850000007200000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x29, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000480)={&(0x7f0000000680)='sys_exit\x00', r1}, 0x10) mq_unlink(0x0) 1.408014713s ago: executing program 4 (id=6979): r0 = socket$inet_udp(0x2, 0x2, 0x0) bind$inet(r0, &(0x7f0000000040)={0x2, 0x4e20, @empty}, 0x10) syz_emit_ethernet(0x34, &(0x7f0000000080)={@local, @empty, @void, {@ipv4={0x800, @udp={{0x5, 0x4, 0x0, 0x0, 0x26, 0x0, 0x0, 0x0, 0x11, 0x0, @empty, @empty}, {0x0, 0x4e20, 0x12, 0x0, @opaque='\x00'/10}}}}}, 0x0) recvfrom(r0, &(0x7f00000000c0)=""/10, 0xa, 0x0, 0x0, 0x0) 600.588343ms ago: executing program 4 (id=6980): r0 = syz_open_dev$tty1(0xc, 0x4, 0x3) r1 = dup(r0) ioctl$TCSETSF2(r0, 0x402c542d, &(0x7f0000000000)={0x0, 0x79cb, 0x0, 0x0, 0x0, "4b17e675bb3208c27ff338260a943c6acab1a8"}) write$UHID_INPUT(r1, &(0x7f0000001040)={0xfc, {"a2e3ad09ed1a09f91b5d090987f70e06d038e7ff7fc6e5539b0d3d0e8b089b3f38306d090890e0879b0a0ac6e70a9b3348959b509a240d5b0af3988f7ef319520100ffe8d178708c523c921b1b5b31070d07640936cd3b78130daa61d8e8040000005802b77f07227227b7ba67e0e78657a6f5c2a874e62a9ccdc0d31a0c9f318c0da1993bd160e233df4a62179c6f30e065cd5b91cd0ae193973735b36d5b1b63dd1c00305d3f46635eb016d5b1dda98e2d749be7bd1df1fb3b231fdcdb5075a9aaa1b469c3090000000000000075271b286329d169934288fd789aa37d6e98b224fd44b65b31334ffc55cc82cd3ac32ecdb08ced6f9081b4dd0d8b38f3cd4498bee800490841bdb114f6b76383709d8f5c55432a909fda039aec54a1236e80f6a8abadea7662496bddbb42be6bfb2f17959d1f416e56c71b1931870262f5e801119242ca026bfc821e7e7daf2451138e645bb80c617669314e2fbe70de98ec76a9e40dad47f36fd9f7d0d42a4b5f1185ccdcf16ff46295d8a0fa17713c5802630933a9a34af674f3f39fe23491237c08822dec110911e893d0a8c4f677747abc360934b82910ff85bfd995083bba2987a67399eac427d145d546a40b9f6ff14ac488ec130fb3850a27af9544ae15a7e454dea05918b41243513f000000000000000a3621c56cea8d20fa911a0c41db6ebe8cac64f17679141d54b34bbc9963ac4f4bb3309603f1d4ab966203861b5b15a841f2b575a8bd0d78248ebe4d9a80002695104f674c2431dca141fae269cab70e9a66f3c3a9a63e9639e1f59c0ede26c6b5d74b078a5e15c31634e5ae098ce9ee70771aaa18119a867e1088334975e9f73483b6a62fa678ca14ffd9f9db2a7869d85864056526f889af43a6056080572286522449df466c632b3570243f989cce7cd9f465e41e610c20d80421d653a5520000008213b704c7fb082ff27590678ef9f190bae97909507041d860420c5664b27921b14dc1db8892fd32d0ad7bc946813591ad8deff4b05f60cea0da7710ac0000000000008000bea37ce0d0d4aa202f928f28381aab144a5d429a04a6a2b83c7068ae949ed06e288e810bac9c76600025e19c907f8ea2e2010000008271a1f5f8528f227e79c1389dbdfffe492f21579d2c15b8c70cdb1c332d86d87341432750861ec2bc3451edca194b221cfec4603d276bbaa1dfa6d4fb8a48a76eafc9a9a0270e4c10d64cd5a62427264f2377fe763c43470833ac96c45f357cbbaba8f1b1fdcc7cbb61a7cdb9744ed7f9129aede2be21ccfdc4e9134f8684b3a4f354da9a795e96334e207dff70f1988037b2ed3aaf575c0b88d8f146684078416d59fdee5325928974d12dad99dac44c3f0008047096a44002bebc2420aed92fa9b6578b4779415d4ac01b75d5495c118045651cf41c2fc48b778efa5ea5677747430af4162b987b80c3e001cd34e5c92f76cc4c24eeb8bc4e9ac2aed9e53803ed0ca4ae3a9737d214060005ea6f1783e287b3bee96e3a726eafe2fdfaa78d1f48c13b64df07847754b8400daaa69bf5c8f4350aeae9ca1207e78283cd0b20ceb360c7e658828163e2d25c4aa348561f927e88f63aa70e73a5e69b3df3495903f06572e1e007fa55a2999f596d067312f5779e8dbfdcf3427138f3d444d2639a10477f9bec4b0bbb6e3c04be68981f392203dd0ee3ef478e16dacfc5e3e03cf7ab8e3902f1b0ff034ef655b253ca509383815b1b6fc6522d4e4fdc11a48cf42d48604675fde2b94cf00500a2690891abf8ab9c015073014d9e08d4338b8780bdecd436cf0541359bafffa45237f104b96210403b2de9efed496f42355bc7872c827467cfa5c4e72730d56bd068ed211cf847535edecb7b373f78b095b68441a34cb51682a8ae4d24ad0465f3927f889b813076038e79a7962fb385a882e8020f06c4c2ba1dd5cac7c18876da865d258734dd73583df292892448039ef799cf0630becdcce04579b5561dc825ab829827945e020c1f67ee615feb6243378e0610060f02cca4e91b2f001edb3d78fb4b55668dda93aec92a5de203717aa49c2d284acfabe262fccfcbb2b75a2183c46eb65ca8104e1b4da7fbb77ab2fc043aead87c32ab875ee7c2e7b7019c982cd3b43eaeb1a5fb135c0c7dcee8fe6516a328032f88c042891824659e9e94265c803b35ee5f83a2b210520106b8a358b50ab7a1fa89af9c251fe5294b3d1802d5676d95f160ec97b1ad94872cb2044642c37b4a6cc6c04effc1672db7e4b68d787d9a7a508ae54b3cd7369dde50e8c77d95a3d361c040babb171607caac2a3559ad4f75465f49c0d0ae3716db6e00cb11db4a5fade2a57c10238e204a67737c3b42aae501b20f7694a00f16e2d0174035a2c22656dc29880acebdbe8ddbd75c2f998d8ac2dfad2ba3a504767b6b45a45957f24d758ed024b3849c11d412a2a03b4047497022d9c30e23ef4df5c89644f48bb536f7945b59d7bcddff754413d135273ea8e75f22f216c6b9990ae71806f2c00b4025c48b75c0f73cdb9a7b8fa367b50028067e7f16f4dd569d462f4f19eacdb3ed70eeebb4483f8fd777d443e8b40427db6fe29068c0ca3d2414442e8f3a154704b0e51bc664a137b26be719f4f7c9a5678a674dfc95df80b9ce375dd649c8c704e509bd88c8e63d8c7dd67071115c8982ba46af4d6adcc9f68a75b9397b035153faf46366e7205dd8d6f37525c1a0e94610dd94323f6c15d085197149bfd6655548cfd9c52c9711937f79abb1a124f1210465483cd3b2d78378cfb85ed82e7da0f6eb6d279f2ae455925d0f6f1ba571eba281f2a654fb39ddff3b484439ff158e7c5419e037f3e3ad038f2211f1033195563c7f93cd54b9094f226e783271e1e5a2a2c10712eab625d64931cd4ffe6738d97b9b5ef828ee9fb059fc01af0e79c1e14b1d25988c69a399567c1d93768f7971d31488b8658a20878b7c1dd7ba02fc42939dde3d4a3339a65d507dc59c51097b40517705da56e9ebf0afa53282bf86dbb58c548069ff6eb95aade7cc66d7bbef724779ca1f731b3346ff177050373d79ff7b3e7f9bc0c1b4b266a8878b90baaa039d3e3b63979ac3df6e6f4859afd50238c7547a39b60810938044ae185d2ba3e00a4e73676864ae090d81eaee5ee6cf1d0ab378dd4dd891e937c2ea5410e0513005000000000000003911fab964c271550027697b52160687461602f88df165d884b36ec2b6c25a2f33c715687e9d4afb96d6861aca47da73d6f3144345f48843dd014e5c5ad8fe995754bd9cf32fce1e31919c4b2082fb0a30b9deae84bed4b28045634073c9c58c89d9e99c81769177c6d594f88a4facfd4c735a20307c737afa2d60399473296b831dbd933d93994ba3064279b10ea0c5833f41f157ea2302993dbe433b1aa3a3766d5439020484f4113c4c859465c3b415c3432f81db8719539d5bf372aaaea1cc43a6c5cbe59758bfee2916580dac4b008e595f437491d87abed02cefcd9db53d94d02daee67918e5d6787463183b4b87c1050000002f7809959bc048850613d17ca51055f2f416a44fe180d2d50c312cca7cb14a2bdc331f57a9817139a206fc76957227ffff2de20a4b8e3737fbb42913777c06376f799eba367e21f94ca598705f5dcb767d6f0900d6b0f6095e53c4c4234d0c1fbe434f6ab8f43c0013ee93b83946ee7759e89d7bdd1a32d7b311711b757fe43c06d21a35810d8fe98b27faea8aa12bc8716eefc5c97c45ac33eeec964c5214bc3a9359bdea1cccab94f15e36319cb34ebcacedb82c2ed3de5a8a8f0011e8f74e82d7f96093530e76692839d7961939adfdeeeaff19d11efcafb6d546fef271e89d6cc2389e81ff58cefcce3fbf4625a7e7de40e42e07b34449e15e065cc7340002000000000000f288a4510de03dab19d26285eda89156d50dd385a60333ba5bbf5d77cd7007ad1519ad5470de3dd6d6080cafccf8a97406bb6b68a1f0c4549820a73c880f475f732ae00398e8bd1f4108b7807fb33b72685ec37a2d3f766413a60459516246e5a1d998a2017aef0948a68cf255315ab80dd349e891aef595dc4d470e8ac32a308e15fc37d06aeac289c0523f483e1ff7408c6087f1ab652f2ef91d4f2b01987b0f46da034e5c3f745a7ee8101a3934c54e24b48ec0275e2d0687dc746b0827cbf652f406c6b95f2722e58c05f752ce2126596e1cd7655b904801784c416b22f73d324678e2724f43f1fe687c7e8a60c28b82b6528341b648cdd56fed7cdcbb1575912d5ecd36dea3bca0b7427d8392c6289455e8f8d2ab2242729251ae033a9e02210e62df0546a74b333a1c48f95fd54acb5741259e8c5488efeee327415cc19451432c6f14c27693102a3cd84857cd6586fc5ca9a93eb0145fac0662ff86107f998a8ef7df8aa14046c55b03d3d47f88a8d60f7774a2ee08758897fb411a94b3c2fc5d5f0db42c0456ec015f08e5247d33ae2d35603ff8454c16f8342856935125102bb784ed7148b6ce431b63ee356b0c785f2f47b90e29389f22fc5b59a70efaea2bd40195af4486220d702e30bfc43c10ec23ea6283994a7dde4dcb61fea6b651fb1d62458d0741a12830052fcc460db043afe525629b40d7cee458e4cb5e930ed624806c43a006e39336d07c2b8081c128ad2706f48261f7897484c297a1a6613bc18f5a38d442768af38041efe03d152ef95ff569e76db2391f4509d7f339d92fdb4a89364949da398000000000000000d80a4fe654578376e599aff3565b1d531f30912b9945030b81ea9935fd46edb44a78f615255490a4b621501f2a9e4d24624c4dac9274118c67584f5d374755534d7f68f679c4ff516a9c861a0e7e65868fcb2bf1cb9aea4e05df72279fdb0d2b9e935c5af3cf474bed79dfc248c1f5aea4b8b32c5d295e57079d0fe662a46b7f71cd47744db86c50b704c971d90295c7b2c7439a2d78ccfa79b5fc2bff6bbf840262bf89394b3e0691953264d2700c838fa2c7b3425260f59554e502dcea39cb313b0000000000004ca7c12f45858d6284ca6270d6b2f0e58fded8a7b4a302a97bc641df07720ba2b26bbfcc807ca0abb1b44322269c21c5ec68cb068ea88067d905ea917bb03eefdaebdeabf2d0dce80997c915c8949de992587c2cb5fe36d7d3e5db21b094b8b77940b5f07722e47a08d367e5f84c96ec664b72934b99b3109af65d77e86abd6859cddf4bbae1f0930462df15fddbc48562ea3511a8065ef028cf12f14dcf6ebecd8d884836174faf1aa609e5f1ee1162dfa13bdc1fa7cfaadba85c72e9758f03a755d0be53f8d2a1dfb1c68cc164b0a0780d971a96ea2c4d4ca0398c2235980a9307b3d5bd3b01faffd0a5dbed2881a9700af561ac8c6b00000000000000f96f06817fb903729a7db6ff957697c9ede7885d94ffb0969be0daf60af93109eb1dee72e4363f51af62af6fb2a6df3bec89822a7a0b678058fa3fef86faec216eb6992162f8dcbf719c148cd2f9c55f4901203a9a8a2c3e90f3943dbc10360a1a49700d1dfbf66d69f6fbaf506c8bcce8bb0d872a02238926407a4eddd5d0fc5a752f9000", 0x1000}}, 0x1006) 483.881784ms ago: executing program 5 (id=6983): r0 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000080), 0xffffffffffffffff) r1 = socket$nl_generic(0x10, 0x3, 0x10) ioctl$sock_SIOCGIFINDEX_80211(r1, 0x8933, &(0x7f0000000000)={'wlan1\x00', 0x0}) sendmsg$NL80211_CMD_REMAIN_ON_CHANNEL(r1, &(0x7f0000000240)={0x0, 0x0, &(0x7f00000001c0)={&(0x7f00000000c0)={0x34, r0, 0x1, 0x0, 0x0, {{0x2}, {@val={0x8, 0x3, r2}, @void}}, [@chandef_params=[@NL80211_ATTR_WIPHY_FREQ={0x8, 0x26, @random=0x9b4}, @NL80211_ATTR_WIPHY_CHANNEL_TYPE={0x8, 0x27, 0x1}, @NL80211_ATTR_CENTER_FREQ2={0x8}]]}, 0x34}, 0x1, 0x0, 0x0, 0x800}, 0x0) 453.272848ms ago: executing program 5 (id=6984): r0 = socket$pppl2tp(0x18, 0x1, 0x1) recvmsg(r0, &(0x7f00000001c0)={0x0, 0x0, 0x0}, 0x0) r1 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route(r1, &(0x7f0000000280)={0x0, 0x0, &(0x7f0000000040)={&(0x7f0000000080)=@newlink={0x48, 0x10, 0x421, 0x0, 0x0, {0x0, 0x0, 0x0, 0x0, 0x900, 0x100}, [@IFLA_LINKINFO={0x28, 0x12, 0x0, 0x1, @gtp={{0x8}, {0x1c, 0x2, 0x0, 0x1, [@IFLA_GTP_PDP_HASHSIZE={0x8, 0x3, 0x2}, @IFLA_GTP_ROLE={0x8}, @IFLA_GTP_RESTART_COUNT={0x5, 0x6, 0x6}]}}}]}, 0x48}, 0x1, 0x0, 0x0, 0x80}, 0x8000) 391.860178ms ago: executing program 5 (id=6985): r0 = socket$nl_generic(0x10, 0x3, 0x10) r1 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000040), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_80211(r0, 0x8933, &(0x7f0000000200)={'wlan1\x00', 0x0}) sendmsg$NL80211_CMD_FRAME(r0, &(0x7f0000000000)={0x0, 0x0, &(0x7f0000000480)={&(0x7f0000000240)={0x54, r1, 0x1, 0x2000, 0x0, {{}, {@val={0x8, 0x3, r2}, @void}}, [@NL80211_ATTR_FRAME={0x38, 0x33, @deauth={{{0x0, 0x0, 0xc, 0x0, 0x0, 0x0, 0x0, 0x1, 0x1}, {0x7}, @broadcast, @device_b, @initial, {0x1, 0x6e}}, 0x39, @val={0x8c, 0x18, {0xea, "456cc1f3e08c", @long="7df36e27d2b85b9ce264a669fc372f08"}}}}]}, 0x54}, 0x1, 0x0, 0x0, 0x4004}, 0x8000) 391.439279ms ago: executing program 4 (id=6986): mmap(&(0x7f00009fd000/0x600000)=nil, 0x600000, 0x2000003, 0x6031, 0xffffffffffffffff, 0x0) mremap(&(0x7f0000ceb000/0x2000)=nil, 0x2000, 0x800000, 0x3, &(0x7f0000130000/0x800000)=nil) mbind(&(0x7f00005f7000/0x2000)=nil, 0x2000, 0x1, 0x0, 0x0, 0x0) mbind(&(0x7f0000001000/0x800000)=nil, 0x800000, 0x0, 0x0, 0x0, 0x0) 324.470672ms ago: executing program 5 (id=6987): r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000180)={0x18, 0x5, &(0x7f0000000480)=ANY=[@ANYBLOB="1801000021000000000000003b810000850000006d000000850000005000000095"], &(0x7f0000000040)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000040)={&(0x7f0000000f00)='kfree\x00', r0}, 0x18) symlink(&(0x7f0000001780)='./file0/../file0\x00', &(0x7f00000017c0)='./file0\x00') rename(&(0x7f0000000000)='./file1\x00', &(0x7f00000000c0)='./file0/file0\x00') 273.628543ms ago: executing program 2 (id=6988): bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, 0x0, 0x0) unshare(0x2040400) r0 = syz_open_dev$loop(&(0x7f0000000000), 0x4, 0x101000) fadvise64(r0, 0x1, 0x4, 0x0) 221.103616ms ago: executing program 5 (id=6989): r0 = syz_io_uring_setup(0x1725, &(0x7f0000000100)={0x0, 0x0, 0x100, 0x400002, 0x39b}, &(0x7f0000000000)=0x0, &(0x7f0000000200)=0x0) syz_memcpy_off$IO_URING_METADATA_GENERIC(r1, 0x4, &(0x7f0000000080)=0x1, 0x0, 0x4) syz_io_uring_submit(r1, r2, &(0x7f0000000180)=@IORING_OP_MKDIRAT={0x25, 0x2, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x84, 0x0, 0x1}) io_uring_enter(r0, 0x47f6, 0x0, 0x0, 0x0, 0x0) 196.016185ms ago: executing program 2 (id=6990): socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000280)) syz_open_procfs(0xffffffffffffffff, &(0x7f0000000000)='net/fib_triestat\x00') socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000040)) bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f000000b5c0)={0x8, 0x3, &(0x7f00000001c0)=@framed={{0x18, 0x0, 0x3, 0x0, 0x0, 0x0, 0x0, 0x0, 0x7}}, &(0x7f0000000180)='syzkaller\x00', 0xa, 0x0, 0x0, 0x41100, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x81, @void, @value}, 0x94) 163.31044ms ago: executing program 5 (id=6991): r0 = syz_init_net_socket$bt_l2cap(0x1f, 0x2, 0x0) bind$bt_l2cap(r0, &(0x7f0000000040)={0x1f, 0x0, @any, 0x4}, 0xe) connect$bt_l2cap(r0, &(0x7f0000000080)={0x1f, 0x0, @fixed={'\xaa\xaa\xaa\xaa\xaa', 0x10}, 0x7ff}, 0xe) setsockopt$bt_BT_SECURITY(r0, 0x112, 0x4, &(0x7f00000000c0)={0x3, 0x67}, 0x2) 117.033927ms ago: executing program 2 (id=6992): r0 = socket$nl_generic(0x10, 0x3, 0x10) r1 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000380), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_80211(r0, 0x8933, &(0x7f0000000000)={'wlan0\x00', 0x0}) sendmsg$NL80211_CMD_FRAME(r0, &(0x7f0000000040)={0x0, 0x0, &(0x7f0000000fc0)={&(0x7f00000001c0)={0x2c, r1, 0x5, 0x0, 0x0, {{0x2}, {@val={0x8, 0x3, r2}, @void}}, [@chandef_params=[@NL80211_ATTR_WIPHY_CHANNEL_TYPE={0x8, 0x27, 0x2}], @chandef_params=[@NL80211_ATTR_WIPHY_FREQ={0x8}]]}, 0x2c}, 0x1, 0x0, 0x0, 0x4000000}, 0x0) 65.479307ms ago: executing program 2 (id=6993): prctl$PR_SET_SYSCALL_USER_DISPATCH_ON(0x3b, 0x1, 0x0, 0x0, &(0x7f0000006680)) open(&(0x7f0000000180)='./bus\x00', 0x14927e, 0x0) socket$can_j1939(0x1d, 0x2, 0x7) listxattr(&(0x7f0000000040)='./bus\x00', 0x0, 0x0) 49.634551ms ago: executing program 4 (id=6994): r0 = syz_open_dev$dri(&(0x7f0000000000), 0x0, 0x0) ioctl$DRM_IOCTL_MODE_CREATE_DUMB(r0, 0xc02064b2, &(0x7f0000000040)={0x1, 0x6476, 0xd}) mmap(&(0x7f0000ffc000/0x3000)=nil, 0x3000, 0x0, 0x11, r0, 0x100000000) syz_clone(0x0, 0x0, 0x0, 0x0, 0x0, 0x0) 394.406µs ago: executing program 2 (id=6995): r0 = socket(0x2, 0x80805, 0x0) setsockopt$inet_sctp6_SCTP_STREAM_SCHEDULER(0xffffffffffffffff, 0x84, 0x7b, &(0x7f0000000080)={0x0, 0x8001}, 0x8) getsockopt$inet_sctp6_SCTP_SOCKOPT_CONNECTX3(0xffffffffffffffff, 0x84, 0x6f, &(0x7f0000000040)={0x0, 0x0, 0x0}, &(0x7f0000000080)=0x10) getsockopt$bt_hci(r0, 0x84, 0x7f, &(0x7f0000000080)=""/4041, &(0x7f0000000000)=0xfc9) 0s ago: executing program 2 (id=6996): capset(0x0, 0x0) clock_settime(0x0, &(0x7f0000000240)={0x77359400}) clock_adjtime(0x0, &(0x7f0000000640)={0x7, 0x9, 0x380000, 0x8, 0xfffffffffffffff9, 0xfffffffffffffff7, 0x9, 0x0, 0xae, 0x6, 0x7, 0x4, 0xfffffffffffff04f, 0x7, 0x80000000, 0xfffffffffffffff8, 0xffffffffffffffff, 0x6, 0x0, 0x100, 0x4, 0x2, 0x5, 0x3, 0x8, 0x8}) clock_adjtime(0x0, &(0x7f0000000900)={0x6, 0xe, 0xe, 0x0, 0xf, 0xa, 0x0, 0x2, 0x9, 0x2, 0x4, 0x8000000000000000, 0xc, 0x9, 0x7, 0x9, 0x7, 0x3, 0x8, 0xfffffffffffffffa, 0x0, 0x5, 0x8, 0x7, 0x3, 0x7ff}) kernel console output (not intermixed with test programs): a deprecated SCSI ioctl, please convert it to SG_IO [ 283.892347][T17978] A link change request failed with some changes committed already. Interface bridge0 may have been left with an inconsistent configuration, please check. [ 283.974913][ T47] usb 6-1: new full-speed USB device number 22 using dummy_hcd [ 284.134634][ T47] usb 6-1: unable to get BOS descriptor or descriptor too short [ 284.142399][ T30] audit: type=1400 audit(1742934694.466:1373): avc: denied { ioctl } for pid=18000 comm="syz.2.5498" path="/dev/fb0" dev="devtmpfs" ino=629 ioctlcmd=0x4601 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:framebuf_device_t tclass=chr_file permissive=1 [ 284.155188][ T47] usb 6-1: unable to read config index 0 descriptor/start: -71 [ 284.155218][ T47] usb 6-1: can't read configurations, error -71 [ 284.164069][ T30] audit: type=1400 audit(1742934694.496:1374): avc: denied { create } for pid=18002 comm="syz.4.5499" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_crypto_socket permissive=1 [ 284.168530][ T30] audit: type=1400 audit(1742934694.496:1375): avc: denied { write } for pid=18002 comm="syz.4.5499" path="socket:[63883]" dev="sockfs" ino=63883 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_crypto_socket permissive=1 [ 284.257043][ C1] vkms_vblank_simulate: vblank timer overrun [ 284.523290][T18029] program syz.1.5512 is using a deprecated SCSI ioctl, please convert it to SG_IO [ 284.533528][ T5828] Bluetooth: hci1: command 0x0405 tx timeout [ 284.611163][ T30] audit: type=1400 audit(1742934694.936:1376): avc: denied { map } for pid=18036 comm="syz.2.5515" path="socket:[63280]" dev="sockfs" ino=63280 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=packet_socket permissive=1 [ 284.676580][T18043] bridge1: entered promiscuous mode [ 284.682583][ T30] audit: type=1400 audit(1742934694.966:1377): avc: denied { read } for pid=18036 comm="syz.2.5515" path="socket:[63280]" dev="sockfs" ino=63280 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=packet_socket permissive=1 [ 284.687600][T18043] xt_bpf: check failed: parse error [ 284.773907][ T5866] usb 4-1: new high-speed USB device number 62 using dummy_hcd [ 284.818850][T18053] vhci_hcd vhci_hcd.0: pdev(1) rhport(0) sockfd(3) [ 284.825417][T18053] vhci_hcd vhci_hcd.0: devid(0) speed(4) speed_str(wireless) [ 284.839016][T18053] vhci_hcd vhci_hcd.0: Device attached [ 284.848159][T18054] vhci_hcd: connection closed [ 284.848413][T17099] vhci_hcd: stop threads [ 284.867572][T17099] vhci_hcd: release socket [ 284.872043][T17099] vhci_hcd: disconnect device [ 284.903238][T18061] veth0_to_bridge: entered promiscuous mode [ 284.910598][T18060] veth0_to_bridge: left promiscuous mode [ 284.944204][ T5866] usb 4-1: Using ep0 maxpacket: 32 [ 284.954434][ T5866] usb 4-1: config 0 has an invalid interface number: 215 but max is 0 [ 284.965608][ T5866] usb 4-1: config 0 has no interface number 0 [ 284.976584][ T5866] usb 4-1: New USB device found, idVendor=1608, idProduct=0301, bcdDevice=f1.24 [ 284.988199][ T5866] usb 4-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 284.996593][ T5866] usb 4-1: Product: syz [ 285.001044][ T5866] usb 4-1: Manufacturer: syz [ 285.006294][ T5866] usb 4-1: SerialNumber: syz [ 285.012371][ T5866] usb 4-1: config 0 descriptor?? [ 285.020393][ T5866] io_ti 4-1:0.215: required endpoints missing [ 285.246933][ T5866] usb 4-1: USB disconnect, device number 62 [ 285.253929][T18080] tipc: Enabling of bearer rejected, failed to enable media [ 285.564183][ T835] usb 5-1: new high-speed USB device number 44 using dummy_hcd [ 285.713849][ T835] usb 5-1: Using ep0 maxpacket: 32 [ 285.734994][ T835] usb 5-1: config 0 has an invalid interface number: 51 but max is 0 [ 285.743151][ T835] usb 5-1: config 0 has no interface number 0 [ 285.756512][ T835] usb 5-1: New USB device found, idVendor=061d, idProduct=c150, bcdDevice=ce.6f [ 285.774787][ T835] usb 5-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 285.789311][ T835] usb 5-1: Product: syz [ 285.808873][ T835] usb 5-1: Manufacturer: syz [ 285.827134][ T835] usb 5-1: SerialNumber: syz [ 285.833321][ T835] usb 5-1: config 0 descriptor?? [ 285.840396][ T835] quatech2 5-1:0.51: Quatech 2nd gen USB to Serial Driver converter detected [ 286.016160][T18111] tap0: tun_chr_ioctl cmd 1074025672 [ 286.021649][T18111] tap0: ignored: set checksum disabled [ 286.054742][ T835] usb 5-1: Quatech 2nd gen USB to Serial Driver converter now attached to ttyUSB0 [ 286.083492][ T835] usb 5-1: Quatech 2nd gen USB to Serial Driver converter now attached to ttyUSB1 [ 286.527140][T18158] netlink: 72 bytes leftover after parsing attributes in process `syz.3.5572'. [ 286.563456][ C0] usb 5-1: qt2_read_bulk_callback - non-zero urb status: -71 [ 286.574289][ T835] usb 5-1: USB disconnect, device number 44 [ 286.587990][ T835] quatech-serial ttyUSB0: Quatech 2nd gen USB to Serial Driver converter now disconnected from ttyUSB0 [ 286.618180][ T835] quatech-serial ttyUSB1: Quatech 2nd gen USB to Serial Driver converter now disconnected from ttyUSB1 [ 286.633818][ T30] audit: type=1400 audit(1742934696.956:1378): avc: denied { getopt } for pid=18159 comm="syz.3.5573" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 286.656192][ T835] quatech2 5-1:0.51: device disconnected [ 286.776559][T18169] overlayfs: conflicting options: userxattr,redirect_dir=on [ 287.100993][T18196] bridge: RTM_NEWNEIGH bridge0 without NUD_PERMANENT [ 287.173291][ T30] audit: type=1400 audit(1742934697.496:1379): avc: denied { setopt } for pid=18200 comm="syz.2.5592" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 287.196184][T18197] IPVS: Error connecting to the multicast addr [ 287.509122][T18224] netlink: 8 bytes leftover after parsing attributes in process `syz.3.5602'. [ 287.519864][T18224] mac80211_hwsim hwsim3 wlan1: entered promiscuous mode [ 287.528757][T18224] netlink: 'syz.3.5602': attribute type 2 has an invalid length. [ 287.664078][ T5866] usb 6-1: new full-speed USB device number 24 using dummy_hcd [ 287.692311][T18229] 8021q: adding VLAN 0 to HW filter on device bond0 [ 287.699200][ T30] audit: type=1400 audit(1742934698.016:1380): avc: denied { map } for pid=18233 comm="syz.2.5607" path="/dev/dri/card0" dev="devtmpfs" ino=627 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 287.733500][T18229] 8021q: adding VLAN 0 to HW filter on device team0 [ 287.745522][T18229] A link change request failed with some changes committed already. Interface caif0 may have been left with an inconsistent configuration, please check. [ 287.764464][ T30] audit: type=1400 audit(1742934698.016:1381): avc: denied { execute } for pid=18233 comm="syz.2.5607" path="/dev/dri/card0" dev="devtmpfs" ino=627 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 287.847950][ T5866] usb 6-1: config 0 has an invalid interface number: 33 but max is 0 [ 287.867244][ T5866] usb 6-1: config 0 has no interface number 0 [ 287.875880][ T5866] usb 6-1: New USB device found, idVendor=2eca, idProduct=c101, bcdDevice=f6.9e [ 287.887174][ T5866] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 287.901087][ T5866] usb 6-1: Product: syz [ 287.919340][ T5866] usb 6-1: Manufacturer: syz [ 287.931651][T18242] netlink: 28 bytes leftover after parsing attributes in process `syz.4.5608'. [ 287.941089][ T5866] usb 6-1: SerialNumber: syz [ 287.948212][T18242] netlink: 28 bytes leftover after parsing attributes in process `syz.4.5608'. [ 287.968531][ T5866] usb 6-1: config 0 descriptor?? [ 288.088659][T18249] openvswitch: netlink: Flow actions may not be safe on all matching packets. [ 288.126459][T18255] loop2: detected capacity change from 0 to 7 [ 288.144794][T18255] Dev loop2: unable to read RDB block 7 [ 288.163833][T18255] loop2: AHDI p1 p2 p3 [ 288.171882][T18255] loop2: partition table partially beyond EOD, truncated [ 288.182055][T18255] loop2: p1 start 1601398130 is beyond EOD, truncated [ 288.192093][T18255] loop2: p2 start 1702059890 is beyond EOD, truncated [ 288.205871][ T835] usb 6-1: USB disconnect, device number 24 [ 288.478682][ T30] audit: type=1400 audit(1742934698.806:1382): avc: denied { read } for pid=18279 comm="syz.4.5627" path="socket:[64476]" dev="sockfs" ino=64476 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 288.512383][ C1] vkms_vblank_simulate: vblank timer overrun [ 288.548879][T18286] vhci_hcd vhci_hcd.0: pdev(4) rhport(0) sockfd(3) [ 288.548907][T18286] vhci_hcd vhci_hcd.0: devid(0) speed(4) speed_str(wireless) [ 288.549680][T18286] vhci_hcd vhci_hcd.0: Device attached [ 288.554970][T18286] vhci_hcd vhci_hcd.0: pdev(4) rhport(1) sockfd(5) [ 288.554994][T18286] vhci_hcd vhci_hcd.0: devid(0) speed(1) speed_str(low-speed) [ 288.555026][T18286] vhci_hcd vhci_hcd.0: Device attached [ 288.556240][T18286] vhci_hcd vhci_hcd.0: pdev(4) rhport(2) sockfd(7) [ 288.556261][T18286] vhci_hcd vhci_hcd.0: devid(0) speed(4) speed_str(wireless) [ 288.556290][T18286] vhci_hcd vhci_hcd.0: Device attached [ 288.557370][T18286] vhci_hcd vhci_hcd.0: pdev(4) rhport(3) sockfd(9) [ 288.557389][T18286] vhci_hcd vhci_hcd.0: devid(0) speed(2) speed_str(full-speed) [ 288.557417][T18286] vhci_hcd vhci_hcd.0: Device attached [ 288.557720][T18293] vhci_hcd: connection closed [ 288.557865][ T3016] vhci_hcd: stop threads [ 288.557879][ T3016] vhci_hcd: release socket [ 288.557889][ T3016] vhci_hcd: disconnect device [ 288.558132][T18291] vhci_hcd: connection closed [ 288.558206][ T3016] vhci_hcd: stop threads [ 288.558214][ T3016] vhci_hcd: release socket [ 288.558223][ T3016] vhci_hcd: disconnect device [ 288.558432][T18289] vhci_hcd: connection closed [ 288.558516][ T3016] vhci_hcd: stop threads [ 288.558523][ T3016] vhci_hcd: release socket [ 288.558532][ T3016] vhci_hcd: disconnect device [ 288.558733][T18287] vhci_hcd: connection closed [ 288.558804][ T3016] vhci_hcd: stop threads [ 288.558812][ T3016] vhci_hcd: release socket [ 288.558820][ T3016] vhci_hcd: disconnect device [ 289.176012][T18322] netlink: 8 bytes leftover after parsing attributes in process `syz.3.5644'. [ 289.187203][T18322] openvswitch: netlink: VXLAN extension 12922 out of range max 1 [ 289.323201][T18337] bridge0: port 2(bridge_slave_1) entered disabled state [ 289.484019][ T47] usb 5-1: new high-speed USB device number 45 using dummy_hcd [ 289.501612][T18356] Context (ID=0x1) not attached to queue pair (handle=0x1:0x0) [ 289.553876][ T5820] usb 4-1: new high-speed USB device number 63 using dummy_hcd [ 289.647131][T18368] netlink: 'syz.1.5663': attribute type 13 has an invalid length. [ 289.676455][ T47] usb 5-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 289.699692][ T47] usb 5-1: New USB device found, idVendor=046d, idProduct=08c1, bcdDevice=ee.8d [ 289.709111][ T47] usb 5-1: New USB device strings: Mfr=32, Product=0, SerialNumber=9 [ 289.724960][ T5820] usb 4-1: Using ep0 maxpacket: 32 [ 289.727366][ T47] usb 5-1: Manufacturer: syz [ 289.733429][ T5820] usb 4-1: New USB device found, idVendor=041e, idProduct=400b, bcdDevice=3e.e7 [ 289.739764][ T47] usb 5-1: SerialNumber: syz [ 289.749271][ T5820] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 289.766473][ T47] usb 5-1: config 0 descriptor?? [ 289.775112][ T5820] usb 4-1: config 0 descriptor?? [ 289.790102][ T5820] gspca_main: sunplus-2.14.0 probing 041e:400b [ 289.812481][T17099] : (slave bond_slave_0): interface is now down [ 289.821666][T18368] 8021q: adding VLAN 0 to HW filter on device  [ 289.833987][T17099] : (slave bond_slave_1): interface is now down [ 289.845074][T18368] 8021q: adding VLAN 0 to HW filter on device team0 [ 289.854940][T17113] : (slave bond_slave_0): interface is now down [ 289.863254][T17113] : (slave bond_slave_1): interface is now down [ 289.870808][T18368] A link change request failed with some changes committed already. Interface caif0 may have been left with an inconsistent configuration, please check. [ 289.889196][T17113] : (slave bond_slave_0): interface is now down [ 289.889236][T17113] : (slave bond_slave_1): interface is now down [ 289.899462][T18371] team0: entered allmulticast mode [ 289.907990][T18371] team_slave_0: entered allmulticast mode [ 289.913969][T18371] team_slave_1: entered allmulticast mode [ 289.924121][T17113] : (slave bond_slave_0): interface is now down [ 289.944192][T17113] : (slave bond_slave_1): interface is now down [ 289.966377][T17113] : (slave bond_slave_0): interface is now down [ 289.973064][T17113] : (slave bond_slave_1): interface is now down [ 289.975066][ T10] ip6_tunnel: ip6gretap0 xmit: Local address not yet configured! [ 289.987921][ T47] usb 5-1: USB disconnect, device number 45 [ 290.005562][T17113] : now running without any active interface! [ 290.040622][ T30] audit: type=1804 audit(1742934700.366:1383): pid=18379 uid=0 auid=4294967295 ses=4294967295 subj=root:sysadm_r:sysadm_t op=invalid_pcr cause=open_writers comm=6C2586CE36DB0CCF197CC94F7FCE8F name="/newroot/1218/file0" dev="tmpfs" ino=6190 res=1 errno=0 [ 290.094754][T18384] overlay: filesystem on ./file0 is read-only [ 290.272523][ T30] audit: type=1400 audit(1742934700.596:1384): avc: denied { listen } for pid=18395 comm="syz.2.5677" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 290.292189][ C1] vkms_vblank_simulate: vblank timer overrun [ 290.554271][T17096] ip6_tunnel: ip6gretap0 xmit: Local address not yet configured! [ 290.606683][ T5820] gspca_sunplus: reg_r err -71 [ 290.611651][ T5820] sunplus 4-1:0.0: probe with driver sunplus failed with error -71 [ 290.655268][ T5820] usb 4-1: USB disconnect, device number 63 [ 290.786302][ T30] audit: type=1400 audit(1742934701.106:1385): avc: denied { connect } for pid=18416 comm="syz.5.5687" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=nfc_socket permissive=1 [ 290.865550][T18424] sctp: [Deprecated]: syz.4.5691 (pid 18424) Use of struct sctp_assoc_value in delayed_ack socket option. [ 290.865550][T18424] Use struct sctp_sack_info instead [ 290.919064][ T5866] kernel write not supported for file /input/mouse0 (pid: 5866 comm: kworker/1:4) [ 291.004027][ T5820] ip6_tunnel: ip6gretap0 xmit: Local address not yet configured! [ 291.112666][T18446] netlink: 20 bytes leftover after parsing attributes in process `syz.5.5701'. [ 291.115663][T18447] netlink: 'syz.1.5702': attribute type 1 has an invalid length. [ 291.131613][T18447] netlink: 'syz.1.5702': attribute type 2 has an invalid length. [ 291.295728][T18454] netlink: 28 bytes leftover after parsing attributes in process `syz.1.5706'. [ 291.306462][T18454] netlink: 28 bytes leftover after parsing attributes in process `syz.1.5706'. [ 291.358318][T18461] netlink: 8 bytes leftover after parsing attributes in process `syz.2.5710'. [ 291.415926][T18465] kvm: kvm [18464]: vcpu0, guest rIP: 0xfff0 Unhandled WRMSR(0x4000002a) = 0x0 [ 291.483942][ T5866] usb 4-1: new high-speed USB device number 64 using dummy_hcd [ 291.564132][ T3016] ip6_tunnel: ip6gretap0 xmit: Local address not yet configured! [ 291.572377][ T3016] ip6_tunnel: ip6gretap0 xmit: Local address not yet configured! [ 291.586122][T18477] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 291.635042][ T5866] usb 4-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 291.657154][ T5866] usb 4-1: New USB device found, idVendor=0926, idProduct=3333, bcdDevice= 0.40 [ 291.667779][ T5866] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 291.678289][ T5866] usb 4-1: config 0 descriptor?? [ 291.712556][ T30] audit: type=1400 audit(1742934702.036:1386): avc: denied { accept } for pid=18484 comm="syz.1.5721" path="socket:[66032]" dev="sockfs" ino=66032 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=packet_socket permissive=1 [ 291.730629][T18487] SELinux: policydb table sizes (0,0) do not match mine (6,7) [ 291.739011][ T47] usb 6-1: new full-speed USB device number 25 using dummy_hcd [ 291.744778][T18487] SELinux: failed to load policy [ 291.887132][ T5868] kernel read not supported for file /dsp1 (pid: 5868 comm: kworker/0:4) [ 291.905061][ T47] usb 6-1: config 27 interface 0 altsetting 0 endpoint 0x8B has an invalid bInterval 0, changing to 4 [ 291.923014][ T5868] usb 4-1: USB disconnect, device number 64 [ 291.934085][ T47] usb 6-1: config 27 interface 0 altsetting 0 endpoint 0xB has invalid maxpacket 65535, setting to 64 [ 291.953363][ T47] usb 6-1: New USB device found, idVendor=0582, idProduct=0014, bcdDevice=bb.9d [ 291.966293][ T47] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 291.986747][T18473] raw-gadget.1 gadget.5: fail, usb_ep_enable returned -22 [ 291.996534][ T47] usb 6-1: Quirk or no altset; falling back to MIDI 1.0 [ 292.009604][ T47] usb 6-1: invalid MIDI in EP 0 [ 292.062368][ T47] snd-usb-audio 6-1:27.0: probe with driver snd-usb-audio failed with error -22 [ 292.084636][T18505] netlink: 68 bytes leftover after parsing attributes in process `syz.1.5731'. [ 292.205044][ T47] usb 6-1: USB disconnect, device number 25 [ 292.220944][ T30] audit: type=1400 audit(1742934702.546:1387): avc: denied { setopt } for pid=18513 comm="syz.1.5734" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=llc_socket permissive=1 [ 292.240444][ C1] vkms_vblank_simulate: vblank timer overrun [ 292.318073][ T30] audit: type=1400 audit(1742934702.646:1388): avc: denied { ioctl } for pid=18523 comm="syz.1.5739" path="socket:[65495]" dev="sockfs" ino=65495 ioctlcmd=0x8915 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=qipcrtr_socket permissive=1 [ 292.343163][ C1] vkms_vblank_simulate: vblank timer overrun [ 292.387984][ T30] audit: type=1400 audit(1742934702.716:1389): avc: denied { connect } for pid=18528 comm="syz.1.5741" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=ax25_socket permissive=1 [ 292.407631][ C1] vkms_vblank_simulate: vblank timer overrun [ 292.414155][ T5868] usb 4-1: new high-speed USB device number 65 using dummy_hcd [ 292.444396][ T47] ip6_tunnel: ip6gretap0 xmit: Local address not yet configured! [ 292.477227][T18533] netlink: 8 bytes leftover after parsing attributes in process `syz.4.5743'. [ 292.486316][T18533] netlink: 4 bytes leftover after parsing attributes in process `syz.4.5743'. [ 292.494523][ T10] usb 3-1: new high-speed USB device number 48 using dummy_hcd [ 292.575145][ T5868] usb 4-1: Using ep0 maxpacket: 16 [ 292.582891][ T5868] usb 4-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 292.595063][ T5868] usb 4-1: New USB device found, idVendor=077d, idProduct=0410, bcdDevice= 0.40 [ 292.604823][ T5868] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 292.613942][ T5868] usb 4-1: config 0 descriptor?? [ 292.620284][ T5868] powermate 4-1:0.0: probe with driver powermate failed with error -22 [ 292.655113][ T10] usb 3-1: Using ep0 maxpacket: 16 [ 292.662495][ T10] usb 3-1: config 0 interface 0 altsetting 2 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 292.673686][ T10] usb 3-1: config 0 interface 0 altsetting 2 endpoint 0x81 has invalid wMaxPacketSize 0 [ 292.684365][ T10] usb 3-1: config 0 interface 0 has no altsetting 0 [ 292.690989][ T10] usb 3-1: New USB device found, idVendor=060b, idProduct=500a, bcdDevice= 0.00 [ 292.700538][ T10] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 292.709941][ T10] usb 3-1: config 0 descriptor?? [ 292.775928][ T47] usb 5-1: new high-speed USB device number 46 using dummy_hcd [ 292.856080][ T5868] usb 4-1: USB disconnect, device number 65 [ 292.954633][ T47] usb 5-1: config 0 has an invalid interface number: 1 but max is 0 [ 292.962690][ T47] usb 5-1: config 0 has no interface number 0 [ 292.975381][ T47] usb 5-1: config 0 interface 1 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 293.004311][ T47] usb 5-1: config 0 interface 1 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 293.014212][ T47] usb 5-1: New USB device found, idVendor=5543, idProduct=0522, bcdDevice= 0.00 [ 293.023826][ T47] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 293.044355][ T47] usb 5-1: config 0 descriptor?? [ 293.131592][ T10] cougar 0003:060B:500A.0052: unexpected long global item [ 293.141686][ T10] cougar 0003:060B:500A.0052: parse failed [ 293.147652][ T10] cougar 0003:060B:500A.0052: probe with driver cougar failed with error -22 [ 293.246819][ T30] kauditd_printk_skb: 1 callbacks suppressed [ 293.246851][ T30] audit: type=1400 audit(1742934703.576:1391): avc: denied { connect } for pid=18562 comm="syz.1.5757" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 293.367596][ T5866] usb 3-1: USB disconnect, device number 48 [ 293.500551][ T47] uclogic 0003:5543:0522.0053: item fetching failed at offset 4/5 [ 293.514707][ T47] uclogic 0003:5543:0522.0053: parse failed [ 293.520694][ T47] uclogic 0003:5543:0522.0053: probe with driver uclogic failed with error -22 [ 293.704053][ T47] usb 5-1: USB disconnect, device number 46 [ 293.767153][ T30] audit: type=1400 audit(1742934704.096:1392): avc: denied { setopt } for pid=18594 comm="syz.5.5772" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rxrpc_socket permissive=1 [ 293.844655][ T30] audit: type=1400 audit(1742934704.176:1393): avc: denied { listen } for pid=18596 comm="syz.5.5773" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 294.000800][T18605] input: syz0 as /devices/virtual/input/input88 [ 294.248794][ T30] audit: type=1400 audit(1742934704.576:1394): avc: denied { mounton } for pid=18613 comm="syz.5.5781" path="/95/file0" dev="tmpfs" ino=509 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=fifo_file permissive=1 [ 294.360100][ T30] audit: type=1400 audit(1742934704.686:1395): avc: denied { wake_alarm } for pid=18619 comm="syz.4.5784" capability=35 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=capability2 permissive=1 [ 294.624940][ T30] audit: type=1326 audit(1742934704.956:1396): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=18640 comm="syz.5.5794" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fc5a6d8d169 code=0x7ffc0000 [ 294.671823][T18645] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 294.696703][ T30] audit: type=1326 audit(1742934704.956:1397): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=18640 comm="syz.5.5794" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fc5a6d8d169 code=0x7ffc0000 [ 294.750521][ T30] audit: type=1326 audit(1742934704.956:1398): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=18640 comm="syz.5.5794" exe="/root/syz-executor" sig=0 arch=c000003e syscall=254 compat=0 ip=0x7fc5a6d8d169 code=0x7ffc0000 [ 294.784658][T18651] netlink: 92 bytes leftover after parsing attributes in process `syz.2.5799'. [ 294.856558][ T30] audit: type=1326 audit(1742934704.956:1399): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=18640 comm="syz.5.5794" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fc5a6d8d169 code=0x7ffc0000 [ 294.888048][ T30] audit: type=1326 audit(1742934704.956:1400): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=18640 comm="syz.5.5794" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fc5a6d8d169 code=0x7ffc0000 [ 295.004361][T18662] netlink: 'syz.4.5803': attribute type 4 has an invalid length. [ 295.034557][T18662] netlink: 'syz.4.5803': attribute type 2 has an invalid length. [ 295.684199][ T5868] usb 2-1: new high-speed USB device number 55 using dummy_hcd [ 295.719518][T18702] netlink: 16 bytes leftover after parsing attributes in process `syz.5.5822'. [ 295.854102][ T5868] usb 2-1: Using ep0 maxpacket: 16 [ 295.878712][ T5868] usb 2-1: New USB device found, idVendor=06be, idProduct=a232, bcdDevice=33.f3 [ 295.883893][ C1] ip6_tunnel: ip6gretap0 xmit: Local address not yet configured! [ 295.901435][ T5868] usb 2-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 295.913819][ T5868] usb 2-1: Product: syz [ 295.918020][ T5868] usb 2-1: Manufacturer: syz [ 295.922702][ T5868] usb 2-1: SerialNumber: syz [ 295.932886][ T5868] usb 2-1: config 0 descriptor?? [ 295.982726][T18720] netlink: 8 bytes leftover after parsing attributes in process `syz.5.5831'. [ 295.994248][T18720] netlink: 4 bytes leftover after parsing attributes in process `syz.5.5831'. [ 296.026427][T18722] openvswitch: netlink: Actions may not be safe on all matching packets [ 296.351474][ T5868] dvb-usb: found a 'AME DTV-5100 USB2.0 DVB-T' in warm state. [ 296.360857][ T5868] dvb-usb: will pass the complete MPEG2 transport stream to the software demuxer. [ 296.371085][ T5868] dvbdev: DVB: registering new adapter (AME DTV-5100 USB2.0 DVB-T) [ 296.379273][ T5868] usb 2-1: media controller created [ 296.401361][ T5868] dvbdev: dvb_create_media_entity: media entity 'dvb-demux' registered. [ 296.560050][ T5868] dvb-usb: no frontend was attached by 'AME DTV-5100 USB2.0 DVB-T' [ 296.568441][ T5868] dvb-usb: AME DTV-5100 USB2.0 DVB-T successfully initialized and connected. [ 296.663962][ T5866] usb 5-1: new high-speed USB device number 47 using dummy_hcd [ 296.683873][ T47] usb 6-1: new high-speed USB device number 26 using dummy_hcd [ 296.807031][ T5867] usb 2-1: USB disconnect, device number 55 [ 296.823678][ T5867] dvb-usb: AME DTV-5100 USB2.0 DVB-T successfully deinitialized and disconnected. [ 296.833689][ T5866] usb 5-1: Using ep0 maxpacket: 32 [ 296.839061][ T47] usb 6-1: Using ep0 maxpacket: 16 [ 296.846232][ T5866] usb 5-1: config 0 interface 0 altsetting 16 endpoint 0x81 has invalid wMaxPacketSize 0 [ 296.858144][ T47] usb 6-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 296.869746][ T5866] usb 5-1: config 0 interface 0 altsetting 16 has 1 endpoint descriptor, different from the interface descriptor's value: 5 [ 296.883606][ T47] usb 6-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 296.894128][ T47] usb 6-1: New USB device found, idVendor=054c, idProduct=05c4, bcdDevice= 0.00 [ 296.903254][ T5866] usb 5-1: config 0 interface 0 has no altsetting 0 [ 296.910130][ T5866] usb 5-1: New USB device found, idVendor=1b1c, idProduct=0c10, bcdDevice= 0.00 [ 296.920003][ T47] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 296.929933][ T5866] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 296.935951][T18754] kvm: kvm [18753]: vcpu0, guest rIP: 0xfff0 Unhandled WRMSR(0x4000002a) = 0x0 [ 296.947980][ T47] usb 6-1: config 0 descriptor?? [ 296.955702][ T5866] usb 5-1: config 0 descriptor?? [ 297.233910][T18766] sp0: Synchronizing with TNC [ 297.320863][T18768] CIFS mount error: No usable UNC path provided in device string! [ 297.320863][T18768] [ 297.332126][T18768] CIFS: VFS: CIFS mount error: No usable UNC path provided in device string! [ 297.376537][ T47] playstation 0003:054C:05C4.0054: hidraw0: USB HID v0.00 Device [HID 054c:05c4] on usb-dummy_hcd.5-1/input0 [ 297.401312][ T5866] corsair-cpro 0003:1B1C:0C10.0055: hidraw1: USB HID v0.00 Device [HID 1b1c:0c10] on usb-dummy_hcd.4-1/input0 [ 297.485999][ T5866] corsair-cpro 0003:1B1C:0C10.0055: probe with driver corsair-cpro failed with error -38 [ 297.533609][T18777] kvm: kvm [18776]: vcpu0, guest rIP: 0xfff0 Unhandled WRMSR(0x4000002a) = 0x0 [ 297.589548][ T47] playstation 0003:054C:05C4.0054: Invalid byte count transferred, expected 16 got 0 [ 297.601103][ T47] playstation 0003:054C:05C4.0054: Failed to retrieve DualShock4 pairing info: -22 [ 297.610770][ T47] playstation 0003:054C:05C4.0054: Failed to get MAC address from DualShock4 [ 297.634350][ T47] playstation 0003:054C:05C4.0054: Failed to create dualshock4. [ 297.656314][ T47] playstation 0003:054C:05C4.0054: probe with driver playstation failed with error -22 [ 297.679633][ T835] usb 5-1: USB disconnect, device number 47 [ 297.795857][ T5868] usb 6-1: USB disconnect, device number 26 [ 298.306660][ T30] kauditd_printk_skb: 11 callbacks suppressed [ 298.306674][ T30] audit: type=1326 audit(1742934708.636:1412): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=18774 comm="syz.1.5859" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f45de58d169 code=0x7fc00000 [ 298.400191][T18801] netlink: 4 bytes leftover after parsing attributes in process `syz.5.5871'. [ 298.513894][ T5868] usb 5-1: new high-speed USB device number 48 using dummy_hcd [ 298.686180][ T5868] usb 5-1: config 0 has an invalid interface number: 69 but max is 0 [ 298.714169][ T5868] usb 5-1: config 0 has no interface number 0 [ 298.720308][ T5868] usb 5-1: config 0 interface 69 altsetting 0 bulk endpoint 0x8 has invalid maxpacket 1023 [ 298.743802][ T5868] usb 5-1: config 0 interface 69 altsetting 0 endpoint 0x82 has an invalid bInterval 44, changing to 9 [ 298.762164][T18811] netlink: 14548 bytes leftover after parsing attributes in process `syz.5.5876'. [ 298.765765][ T5868] usb 5-1: New USB device found, idVendor=0c4b, idProduct=0100, bcdDevice=d7.ca [ 298.804607][ T5868] usb 5-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 298.812717][ T5868] usb 5-1: Product: syz [ 298.834121][ T5868] usb 5-1: Manufacturer: syz [ 298.838758][ T5868] usb 5-1: SerialNumber: syz [ 298.847367][ T5868] usb 5-1: config 0 descriptor?? [ 298.852860][T18799] raw-gadget.0 gadget.4: fail, usb_ep_enable returned -22 [ 298.865005][ T5868] cyberjack 5-1:0.69: Reiner SCT Cyberjack USB card reader converter detected [ 298.884184][ T5868] usb 5-1: Reiner SCT Cyberjack USB card reader converter now attached to ttyUSB0 [ 299.140815][ T5868] kernel write not supported for file /vcsa (pid: 5868 comm: kworker/0:4) [ 299.201342][ T30] audit: type=1400 audit(1742934709.526:1413): avc: denied { ioctl } for pid=18798 comm="syz.4.5870" path="/dev/usbmon0" dev="devtmpfs" ino=716 ioctlcmd=0x9207 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:usbmon_device_t tclass=chr_file permissive=1 [ 299.201639][ T47] usb 5-1: USB disconnect, device number 48 [ 299.260047][ T47] cyberjack ttyUSB0: Reiner SCT Cyberjack USB card reader converter now disconnected from ttyUSB0 [ 299.291425][ T47] cyberjack 5-1:0.69: device disconnected [ 299.611397][T18842] netlink: 'syz.2.5891': attribute type 4 has an invalid length. [ 299.639249][T18842] netlink: 'syz.2.5891': attribute type 1 has an invalid length. [ 299.661399][T18842] netlink: 180 bytes leftover after parsing attributes in process `syz.2.5891'. [ 299.731724][T18845] IPVS: sync thread started: state = MASTER, mcast_ifn = sit0, syncid = 0, id = 0 [ 299.812741][T18849] block nbd5: NBD_DISCONNECT [ 299.820231][T18848] block nbd5: Disconnected due to user request. [ 299.834204][T18848] block nbd5: shutting down sockets [ 299.937698][T18856] netlink: 40 bytes leftover after parsing attributes in process `syz.5.5897'. [ 300.157934][ T30] audit: type=1400 audit(1742934710.486:1414): avc: denied { bind } for pid=18872 comm="syz.2.5905" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 300.215460][ T5868] usb 5-1: new high-speed USB device number 49 using dummy_hcd [ 300.384123][ T5868] usb 5-1: Using ep0 maxpacket: 16 [ 300.390636][ T5868] usb 5-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 0 [ 300.436879][ T5868] usb 5-1: New USB device found, idVendor=05ac, idProduct=0244, bcdDevice= 0.00 [ 300.446607][ T5868] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 300.457540][ T5868] usb 5-1: config 0 descriptor?? [ 300.465708][ T5868] input: bcm5974 as /devices/platform/dummy_hcd.4/usb5/5-1/5-1:0.0/input/input89 [ 300.683600][ T5868] bcm5974 5-1:0.0: could not read from device [ 300.711218][ T5868] input: failed to attach handler mousedev to device input89, error: -5 [ 300.732154][ T5868] usb 5-1: USB disconnect, device number 49 [ 300.768912][T18898] netlink: 'syz.5.5917': attribute type 1 has an invalid length. [ 300.779343][T18898] netlink: 224 bytes leftover after parsing attributes in process `syz.5.5917'. [ 300.788620][ T30] audit: type=1400 audit(1742934711.116:1415): avc: denied { read } for pid=18894 comm="syz.2.5916" name="snapshot" dev="devtmpfs" ino=92 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:acpi_bios_t tclass=chr_file permissive=1 [ 300.842609][ T30] audit: type=1400 audit(1742934711.116:1416): avc: denied { open } for pid=18894 comm="syz.2.5916" path="/dev/snapshot" dev="devtmpfs" ino=92 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:acpi_bios_t tclass=chr_file permissive=1 [ 300.893058][T18866] Bluetooth: hci2: Opcode 0x0c1a failed: -4 [ 300.899733][T18866] Bluetooth: hci2: Error when powering off device on rfkill (-4) [ 300.914313][T18895] Bluetooth: hci1: Opcode 0x0c1a failed: -4 [ 300.926649][T18895] Bluetooth: hci1: Opcode 0x0406 failed: -4 [ 300.955906][T18895] Bluetooth: hci1: Opcode 0x0406 failed: -4 [ 300.998070][T18866] Bluetooth: hci1: Opcode 0x0c1a failed: -4 [ 301.004421][T18866] Bluetooth: hci1: Error when powering off device on rfkill (-4) [ 301.103128][T18905] netlink: 88 bytes leftover after parsing attributes in process `syz.1.5920'. [ 301.117281][T18905] netlink: 16 bytes leftover after parsing attributes in process `syz.1.5920'. [ 302.113925][ T5867] usb 2-1: new high-speed USB device number 56 using dummy_hcd [ 302.264182][ T5867] usb 2-1: Using ep0 maxpacket: 16 [ 302.271962][ T5867] usb 2-1: config 8 has an invalid interface number: 39 but max is 0 [ 302.283125][ T5867] usb 2-1: config 8 has no interface number 0 [ 302.302961][ T5867] usb 2-1: config 8 interface 39 altsetting 1 has an endpoint descriptor with address 0xDF, changing to 0x8F [ 302.317759][ T5867] usb 2-1: config 8 interface 39 altsetting 1 endpoint 0x8F has invalid wMaxPacketSize 0 [ 302.327962][ T5867] usb 2-1: config 8 interface 39 altsetting 1 bulk endpoint 0x8F has invalid maxpacket 0 [ 302.339674][ T5867] usb 2-1: config 8 interface 39 has no altsetting 0 [ 302.358154][ T5867] usb 2-1: New USB device found, idVendor=05ac, idProduct=c704, bcdDevice=62.77 [ 302.370491][ T5867] usb 2-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 302.390431][ T5867] usb 2-1: Product: syz [ 302.400686][ T5867] usb 2-1: Manufacturer: syz [ 302.411091][ T5867] usb 2-1: SerialNumber: syz [ 302.484097][T18964] netlink: 4 bytes leftover after parsing attributes in process `syz.2.5945'. [ 303.033446][ T5867] ipheth 2-1:8.39: ipheth_enable_ncm: usb_control_msg: 0 [ 303.046930][ T5867] ipheth 2-1:8.39: Apple iPhone USB Ethernet device attached [ 303.214485][ T47] usb 3-1: new high-speed USB device number 49 using dummy_hcd [ 303.250094][ T5867] usb 2-1: USB disconnect, device number 56 [ 303.295346][T18990] hugetlbfs: syz.4.5957 (18990): Using mlock ulimits for SHM_HUGETLB is obsolete [ 303.305909][ T5867] ipheth 2-1:8.39: Apple iPhone USB Ethernet now disconnected [ 303.367831][ T47] usb 3-1: config 1 has an invalid descriptor of length 0, skipping remainder of the config [ 303.383628][ T47] usb 3-1: config 1 has 1 interface, different from the descriptor's value: 3 [ 303.396019][T18992] SELinux: failed to load policy [ 303.396020][ T47] usb 3-1: New USB device found, idVendor=08b7, idProduct=0000, bcdDevice= 0.00 [ 303.396044][ T47] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=3 [ 303.419990][ T47] usb 3-1: SerialNumber: syz [ 303.491879][ T30] audit: type=1400 audit(1742934713.816:1417): avc: denied { ioctl } for pid=18993 comm="syz.4.5959" path="socket:[69211]" dev="sockfs" ino=69211 ioctlcmd=0x89e0 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 303.637803][ T47] usb 3-1: 0:2 : does not exist [ 303.646300][T18998] bridge_slave_0: default FDB implementation only supports local addresses [ 303.660674][ T47] usb 3-1: USB disconnect, device number 49 [ 304.226995][T19019] ax25_connect(): syz.1.5973 uses autobind, please contact jreuter@yaina.de [ 304.280932][T19025] netlink: 12 bytes leftover after parsing attributes in process `syz.2.5974'. [ 304.603860][ C1] ip6_tunnel: ip6gretap0 xmit: Local address not yet configured! [ 304.636415][T19048] netlink: 56 bytes leftover after parsing attributes in process `syz.2.5985'. [ 304.670956][T19050] SELinux: failed to load policy [ 305.434395][ T47] usb 6-1: new high-speed USB device number 27 using dummy_hcd [ 305.585033][ T47] usb 6-1: Using ep0 maxpacket: 16 [ 305.598738][ T47] usb 6-1: config 0 has an invalid interface number: 4 but max is 0 [ 305.608529][ T47] usb 6-1: config 0 has no interface number 0 [ 305.628038][ T47] usb 6-1: config 0 interface 4 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 305.642548][ T47] usb 6-1: config 0 interface 4 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 305.695807][ T47] usb 6-1: New USB device found, idVendor=6161, idProduct=4d15, bcdDevice= 0.00 [ 305.727130][ T47] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 305.734313][T19103] kernel read not supported for file /eth0 (pid: 19103 comm: syz.2.6009) [ 305.755138][ T47] usb 6-1: config 0 descriptor?? [ 305.766175][ T30] audit: type=1800 audit(1742934716.096:1418): pid=19103 uid=0 auid=4294967295 ses=4294967295 subj=root:sysadm_r:sysadm_t op=collect_data cause=failed comm="syz.2.6009" name="eth0" dev="mqueue" ino=18420 res=0 errno=0 [ 305.813814][ T30] audit: type=1400 audit(1742934716.096:1419): avc: denied { append } for pid=19102 comm="syz.2.6009" name="usbmon5" dev="devtmpfs" ino=735 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:usbmon_device_t tclass=chr_file permissive=1 [ 306.176879][ T47] hid (null): nested delimiters [ 306.181836][ T47] hid (null): nested delimiters [ 306.188405][ T47] hid (null): nested delimiters [ 306.193357][ T47] hid (null): bogus close delimiter [ 306.199749][ T47] hid (null): unknown global tag 0xd [ 306.389704][ T5867] usb 6-1: USB disconnect, device number 27 [ 306.733949][ T47] usb 2-1: new high-speed USB device number 57 using dummy_hcd [ 306.895867][ T47] usb 2-1: config 1 has an invalid descriptor of length 105, skipping remainder of the config [ 306.907788][ T47] usb 2-1: config 1 has 1 interface, different from the descriptor's value: 3 [ 306.926750][ T47] usb 2-1: New USB device found, idVendor=08b7, idProduct=0000, bcdDevice= 0.00 [ 306.944950][ T47] usb 2-1: New USB device strings: Mfr=0, Product=0, SerialNumber=3 [ 306.964799][ T47] usb 2-1: SerialNumber: syz [ 307.024561][ T5867] usb 3-1: new high-speed USB device number 50 using dummy_hcd [ 307.053535][T19138] bridge0: port 1(syz_tun) entered blocking state [ 307.063331][T19138] bridge0: port 1(syz_tun) entered disabled state [ 307.065346][T19139] ip_tunnel: non-ECT from 0.0.0.0 with TOS=0x2 [ 307.070628][T19138] syz_tun: entered allmulticast mode [ 307.085484][T19138] syz_tun: entered promiscuous mode [ 307.185967][ T5867] usb 3-1: Using ep0 maxpacket: 8 [ 307.197409][ T47] usb 2-1: 0:2 : does not exist [ 307.209388][ T5867] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 307.222666][ T5867] usb 3-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 2 [ 307.238235][ T5867] usb 3-1: New USB device found, idVendor=056a, idProduct=00b9, bcdDevice= 0.00 [ 307.248181][ T5867] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 307.265000][ T47] usb 2-1: USB disconnect, device number 57 [ 307.277631][ T5867] usb 3-1: config 0 descriptor?? [ 307.697006][ T5867] hid (null): invalid report_count 13110 [ 307.726318][ T5867] wacom 0003:056A:00B9.0057: ignoring exceeding usage max [ 307.745002][ T5867] wacom 0003:056A:00B9.0057: invalid report_count 13110 [ 307.751999][ T5867] wacom 0003:056A:00B9.0057: item 0 2 1 9 parsing failed [ 307.768673][ T5867] wacom 0003:056A:00B9.0057: parse failed [ 307.794326][ T5867] wacom 0003:056A:00B9.0057: probe with driver wacom failed with error -22 [ 307.974479][ T5867] usb 3-1: USB disconnect, device number 50 [ 308.377973][T19182] UHID_CREATE from different security context by process 2508 (syz.4.6049), this is not allowed. [ 308.647353][T19189] netlink: 432 bytes leftover after parsing attributes in process `syz.2.6054'. [ 308.834438][ T3016] bridge_slave_1: left allmulticast mode [ 308.840156][ T3016] bridge_slave_1: left promiscuous mode [ 308.865355][ T3016] bridge0: port 2(bridge_slave_1) entered disabled state [ 308.912740][ T5828] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 308.925149][ T5828] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 308.937133][ T5828] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 308.954448][ T3016] bridge_slave_0: left allmulticast mode [ 308.965939][ T3016] bridge_slave_0: left promiscuous mode [ 308.971657][ T5828] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 308.981793][ T3016] bridge0: port 1(bridge_slave_0) entered disabled state [ 308.991907][ T5828] Bluetooth: hci4: unexpected cc 0x0c25 length: 249 > 3 [ 309.001058][ T5828] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 309.013991][T19200] openvswitch: netlink: Flow actions may not be safe on all matching packets. [ 309.023011][ T5143] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 309.039476][ T5143] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 309.048934][ T5143] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 309.056631][ T47] SELinux: failure in sel_netif_sid_slow(), invalid network interface (13) [ 309.084528][ T5143] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 309.094471][ T5143] Bluetooth: hci4: unexpected cc 0x0c25 length: 249 > 3 [ 309.102210][ T5143] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 309.283905][ T47] SELinux: failure in sel_netif_sid_slow(), invalid network interface (13) [ 309.629693][ T3016]  (unregistering): (slave bond_slave_0): Releasing backup interface [ 309.641264][ T3016]  (unregistering): (slave bond_slave_1): Releasing backup interface [ 309.649183][ T3016]  (unregistering): Released all slaves [ 309.682277][ T3016] bond0 (unregistering): Released all slaves [ 310.139163][T19235] delete_channel: no stack [ 310.143142][ T30] audit: type=1400 audit(1742934720.466:1420): avc: denied { setopt } for pid=19235 comm="syz.5.6070" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=isdn_socket permissive=1 [ 310.164020][ T5867] usb 5-1: new high-speed USB device number 50 using dummy_hcd [ 310.188040][T19237] netlink: 'syz.2.6071': attribute type 2 has an invalid length. [ 310.208562][T19237] netlink: 85376 bytes leftover after parsing attributes in process `syz.2.6071'. [ 310.276927][T19195] chnl_net:caif_netlink_parms(): no params data found [ 310.327908][ T5867] usb 5-1: Using ep0 maxpacket: 32 [ 310.343296][ T30] audit: type=1400 audit(1742934720.666:1421): avc: denied { ioctl } for pid=19241 comm="syz.2.6073" path="socket:[69838]" dev="sockfs" ino=69838 ioctlcmd=0x8933 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=icmp_socket permissive=1 [ 310.383831][ T5867] usb 5-1: config 0 has an invalid interface number: 16 but max is 0 [ 310.409312][ T5867] usb 5-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 310.429767][ T5867] usb 5-1: config 0 has no interface number 0 [ 310.443988][ T5867] usb 5-1: config 0 interface 16 altsetting 0 bulk endpoint 0x6 has invalid maxpacket 1023 [ 310.464797][ T5867] usb 5-1: config 0 interface 16 altsetting 0 bulk endpoint 0x82 has invalid maxpacket 8 [ 310.498187][ T5867] usb 5-1: New USB device found, idVendor=0499, idProduct=102a, bcdDevice=85.2d [ 310.515078][ T5867] usb 5-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 310.555977][ T5867] usb 5-1: Product: syz [ 310.560196][ T5867] usb 5-1: Manufacturer: syz [ 310.575198][ T5867] usb 5-1: SerialNumber: syz [ 310.581129][ T5867] usb 5-1: config 0 descriptor?? [ 310.602340][T19225] raw-gadget.0 gadget.4: fail, usb_ep_enable returned -22 [ 310.614518][T19225] raw-gadget.0 gadget.4: fail, usb_ep_enable returned -22 [ 310.623023][ T5867] usb 5-1: Quirk or no altset; falling back to MIDI 1.0 [ 310.896245][ T5867] usb 5-1: USB disconnect, device number 50 [ 310.936719][ T3016] team0 (unregistering): Port device team_slave_1 removed [ 310.982723][ T3016] team0 (unregistering): Port device team_slave_0 removed [ 311.165950][ T5143] Bluetooth: hci4: command tx timeout [ 311.549149][T19195] bridge0: port 1(bridge_slave_0) entered blocking state [ 311.575650][T19195] bridge0: port 1(bridge_slave_0) entered disabled state [ 311.607054][T19195] bridge_slave_0: entered allmulticast mode [ 311.624122][T19195] bridge_slave_0: entered promiscuous mode [ 311.648341][T19195] bridge0: port 2(bridge_slave_1) entered blocking state [ 311.668750][T19195] bridge0: port 2(bridge_slave_1) entered disabled state [ 311.695450][T19195] bridge_slave_1: entered allmulticast mode [ 311.720320][T19195] bridge_slave_1: entered promiscuous mode [ 311.732234][ T30] audit: type=1400 audit(1742934722.056:1422): avc: denied { ioctl } for pid=19270 comm="syz.5.6083" path="socket:[70938]" dev="sockfs" ino=70938 ioctlcmd=0x89a1 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=alg_socket permissive=1 [ 311.796665][T19195] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 311.839631][T19195] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 311.923698][ T3016] IPVS: stop unused estimator thread 0... [ 311.958889][T19195] team0: Port device team_slave_0 added [ 311.981707][T19195] team0: Port device team_slave_1 added [ 312.036578][T19195] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 312.043564][T19195] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 312.093895][ T30] audit: type=1400 audit(1742934722.416:1423): avc: denied { ioctl } for pid=19282 comm="syz.2.6088" path="pid:[4026532795]" dev="nsfs" ino=4026532795 ioctlcmd=0xb707 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:nsfs_t tclass=file permissive=1 [ 312.095277][T19195] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 312.129233][ T5867] usb 5-1: new high-speed USB device number 51 using dummy_hcd [ 312.142160][T19195] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 312.151670][T19195] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 312.202525][T19195] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 312.296220][ T5867] usb 5-1: Using ep0 maxpacket: 32 [ 312.302731][ T5867] usb 5-1: config 0 interface 0 altsetting 16 endpoint 0x81 has invalid wMaxPacketSize 0 [ 312.319732][ T5867] usb 5-1: config 0 interface 0 altsetting 16 has 1 endpoint descriptor, different from the interface descriptor's value: 5 [ 312.356153][ T5867] usb 5-1: config 0 interface 0 has no altsetting 0 [ 312.362807][ T5867] usb 5-1: New USB device found, idVendor=1b1c, idProduct=1b3e, bcdDevice= 0.00 [ 312.395869][ T5867] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 312.419077][T19195] hsr_slave_0: entered promiscuous mode [ 312.426524][T19195] hsr_slave_1: entered promiscuous mode [ 312.428677][ T5867] usb 5-1: config 0 descriptor?? [ 312.436119][T19195] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 312.450203][T19195] Cannot create hsr debugfs directory [ 312.496076][ T5828] Bluetooth: hci5: unexpected cc 0x0c03 length: 249 > 1 [ 312.510051][ T5828] Bluetooth: hci5: unexpected cc 0x1003 length: 249 > 9 [ 312.521567][ T5828] Bluetooth: hci5: unexpected cc 0x1001 length: 249 > 9 [ 312.533647][ T5828] Bluetooth: hci5: unexpected cc 0x0c23 length: 249 > 4 [ 312.541443][ T5828] Bluetooth: hci5: unexpected cc 0x0c25 length: 249 > 3 [ 312.554380][ T5828] Bluetooth: hci5: unexpected cc 0x0c38 length: 249 > 2 [ 312.855369][ T5867] corsair 0003:1B1C:1B3E.0058: report_id 3291754556 is invalid [ 312.875105][ T5867] corsair 0003:1B1C:1B3E.0058: item 0 4 1 8 parsing failed [ 312.891225][ T5867] corsair 0003:1B1C:1B3E.0058: parse failed [ 312.902825][ T5867] corsair 0003:1B1C:1B3E.0058: probe with driver corsair failed with error -22 [ 312.970352][T19195] netdevsim netdevsim6 netdevsim0: renamed from eth0 [ 312.988617][T19195] netdevsim netdevsim6 netdevsim1: renamed from eth1 [ 312.999892][T19195] netdevsim netdevsim6 netdevsim2: renamed from eth2 [ 313.009533][T19195] netdevsim netdevsim6 netdevsim3: renamed from eth3 [ 313.062093][ T5866] usb 5-1: USB disconnect, device number 51 [ 313.076770][T19296] chnl_net:caif_netlink_parms(): no params data found [ 313.110155][T17131] bridge_slave_1: left promiscuous mode [ 313.115892][ T47] usb 3-1: new high-speed USB device number 51 using dummy_hcd [ 313.124530][T17131] bridge0: port 2(bridge_slave_1) entered disabled state [ 313.132533][T17131] bridge_slave_0: left allmulticast mode [ 313.138738][T17131] bridge_slave_0: left promiscuous mode [ 313.144549][T17131] bridge0: port 1(bridge_slave_0) entered disabled state [ 313.168822][ C1] SELinux: failure in sel_netif_sid_slow(), invalid network interface (3) [ 313.177780][ C1] SELinux: failure in sel_netif_sid_slow(), invalid network interface (3) [ 313.186788][ T24] SELinux: failure in sel_netif_sid_slow(), invalid network interface (13) [ 313.245639][ T5143] Bluetooth: hci4: command tx timeout [ 313.275344][ T47] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 313.286443][ T47] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 313.296570][ T47] usb 3-1: New USB device found, idVendor=046d, idProduct=c293, bcdDevice= 0.00 [ 313.305064][ T835] usb 6-1: new high-speed USB device number 28 using dummy_hcd [ 313.306546][ T47] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 313.325161][ T47] usb 3-1: config 0 descriptor?? [ 313.353078][T17131] bridge0 (unregistering): left allmulticast mode [ 313.474116][ T835] usb 6-1: Using ep0 maxpacket: 32 [ 313.482769][ T835] usb 6-1: config 0 interface 0 altsetting 128 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 313.496642][ T835] usb 6-1: config 0 interface 0 altsetting 128 has 1 endpoint descriptor, different from the interface descriptor's value: 3 [ 313.509761][ T835] usb 6-1: config 0 interface 0 has no altsetting 0 [ 313.516448][ T835] usb 6-1: New USB device found, idVendor=056a, idProduct=0094, bcdDevice= 0.00 [ 313.526067][ T835] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 313.539701][ T835] usb 6-1: config 0 descriptor?? [ 313.622500][T17131] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 313.633618][T17131] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 313.643644][T17131] bond0 (unregistering): Released all slaves [ 313.690739][T19296] bridge0: port 1(bridge_slave_0) entered blocking state [ 313.704118][T19296] bridge0: port 1(bridge_slave_0) entered disabled state [ 313.711348][T19296] bridge_slave_0: entered allmulticast mode [ 313.718681][T19296] bridge_slave_0: entered promiscuous mode [ 313.734183][T19296] bridge0: port 2(bridge_slave_1) entered blocking state [ 313.741326][T19296] bridge0: port 2(bridge_slave_1) entered disabled state [ 313.754532][ T47] logitech 0003:046D:C293.0059: unbalanced collection at end of report description [ 313.764713][T19296] bridge_slave_1: entered allmulticast mode [ 313.771212][T19296] bridge_slave_1: entered promiscuous mode [ 313.779676][ T47] logitech 0003:046D:C293.0059: parse failed [ 313.780319][T17131] tipc: Disabling bearer [ 313.793834][ T47] logitech 0003:046D:C293.0059: probe with driver logitech failed with error -22 [ 313.796911][T17131] tipc: Left network mode [ 313.839900][T19195] 8021q: adding VLAN 0 to HW filter on device bond0 [ 313.855809][T19296] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 313.869452][T19296] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 313.935629][T19296] team0: Port device team_slave_0 added [ 313.943079][T19195] 8021q: adding VLAN 0 to HW filter on device team0 [ 313.962593][ T835] wacom 0003:056A:0094.005A: Using device in hidraw-only mode [ 313.969277][T19296] team0: Port device team_slave_1 added [ 313.981846][ T835] wacom 0003:056A:0094.005A: hidraw0: USB HID v0.05 Device [HID 056a:0094] on usb-dummy_hcd.5-1/input0 [ 314.005861][ T5820] usb 3-1: USB disconnect, device number 51 [ 314.033333][ T180] bridge0: port 1(bridge_slave_0) entered blocking state [ 314.040465][ T180] bridge0: port 1(bridge_slave_0) entered forwarding state [ 314.047857][T19326] Bluetooth: hci4: Opcode 0x0c1a failed: -4 [ 314.056090][T19326] Bluetooth: hci4: Opcode 0x0406 failed: -4 [ 314.068727][T19326] Bluetooth: hci4: Opcode 0x0406 failed: -4 [ 314.080997][T19326] Bluetooth: hci5: Opcode 0x0c1a failed: -4 [ 314.087088][T19326] Bluetooth: hci5: Opcode 0x0406 failed: -4 [ 314.099745][T17113] bridge0: port 2(bridge_slave_1) entered blocking state [ 314.106868][T17113] bridge0: port 2(bridge_slave_1) entered forwarding state [ 314.124872][T19326] Bluetooth: hci5: Opcode 0x0406 failed: -4 [ 314.131142][T19296] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 314.138482][T19296] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 314.165279][T19296] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 314.177563][T19296] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 314.184612][T19296] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 314.213468][T19296] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 314.229354][ T5820] usb 6-1: USB disconnect, device number 28 [ 314.258876][T17131] hsr_slave_0: left promiscuous mode [ 314.269542][T17131] hsr_slave_1: left promiscuous mode [ 314.275295][T17131] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 314.282695][T17131] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 314.325377][T17131] team0 (unregistering): Port device batadv1 removed [ 314.595544][T17131] team0 (unregistering): Port device team_slave_1 removed [ 314.625378][T17131] team0 (unregistering): Port device team_slave_0 removed [ 314.782531][ T30] audit: type=1400 audit(1742934725.106:1424): avc: denied { create } for pid=19333 comm="syz.5.6107" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 314.973176][T19195] hsr0: Slave A (hsr_slave_0) is not up; please bring it up to get a fully working HSR network [ 315.014638][T19195] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network [ 315.055428][T19296] hsr_slave_0: entered promiscuous mode [ 315.074549][T19296] hsr_slave_1: entered promiscuous mode [ 315.449971][T17131] IPVS: stop unused estimator thread 0... [ 315.466157][T19195] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 315.700160][T19296] netdevsim netdevsim7 netdevsim0: renamed from eth0 [ 315.739748][T19296] netdevsim netdevsim7 netdevsim1: renamed from eth1 [ 315.761512][T19296] netdevsim netdevsim7 netdevsim2: renamed from eth2 [ 315.816786][T19296] netdevsim netdevsim7 netdevsim3: renamed from eth3 [ 315.948138][T19195] veth0_vlan: entered promiscuous mode [ 315.959421][T19296] 8021q: adding VLAN 0 to HW filter on device bond0 [ 315.971322][T19195] veth1_vlan: entered promiscuous mode [ 316.000278][T19296] 8021q: adding VLAN 0 to HW filter on device team0 [ 316.011068][ T30] audit: type=1400 audit(1742934726.336:1425): avc: denied { bind } for pid=19386 comm="syz.5.6123" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_tcpdiag_socket permissive=1 [ 316.049238][ T5143] Bluetooth: hci4: command 0x0419 tx timeout [ 316.052668][T19195] veth0_macvtap: entered promiscuous mode [ 316.072116][ T180] bridge0: port 1(bridge_slave_0) entered blocking state [ 316.079276][ T180] bridge0: port 1(bridge_slave_0) entered forwarding state [ 316.090877][ T180] bridge0: port 2(bridge_slave_1) entered blocking state [ 316.098062][ T180] bridge0: port 2(bridge_slave_1) entered forwarding state [ 316.124346][ T5143] Bluetooth: hci5: command 0x041b tx timeout [ 316.148488][T19195] veth1_macvtap: entered promiscuous mode [ 316.201805][T19195] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 316.234355][T19195] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 316.255586][T19195] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 316.286097][T19195] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 316.313841][T19195] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 316.334748][T19195] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 316.400379][T19195] netdevsim netdevsim6 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 316.420901][T19195] netdevsim netdevsim6 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 316.440698][T19195] netdevsim netdevsim6 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 316.453007][T19195] netdevsim netdevsim6 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 316.512722][T19296] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 316.707314][T17131] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 316.723359][T17131] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 316.825396][T17113] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 316.833268][T17113] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 316.957457][T19296] veth0_vlan: entered promiscuous mode [ 316.978068][T19296] veth1_vlan: entered promiscuous mode [ 317.031278][T19296] veth0_macvtap: entered promiscuous mode [ 317.049945][T19296] veth1_macvtap: entered promiscuous mode [ 317.080984][T19296] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 317.104527][T19296] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 317.124134][T19296] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 317.145522][T19296] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 317.163030][T19296] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 317.187872][T19296] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 317.207447][T19296] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 317.224055][T19296] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 317.243488][T19296] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 317.259217][T19296] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 317.273669][T19296] netdevsim netdevsim7 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 317.286197][T19296] netdevsim netdevsim7 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 317.300858][T19296] netdevsim netdevsim7 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 317.321293][T19296] netdevsim netdevsim7 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 317.344850][ T5866] usb 6-1: new high-speed USB device number 29 using dummy_hcd [ 317.385176][ T9] kernel read not supported for file /rfkill (pid: 9 comm: kworker/0:0) [ 317.411958][T17113] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 317.433475][T17113] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 317.460439][ T180] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 317.468780][ T180] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 317.508901][ T5866] usb 6-1: config index 0 descriptor too short (expected 23569, got 27) [ 317.519735][ T5866] usb 6-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 317.545519][ T5866] usb 6-1: New USB device found, idVendor=03eb, idProduct=0002, bcdDevice=ba.c0 [ 317.564356][ T5866] usb 6-1: New USB device strings: Mfr=5, Product=0, SerialNumber=0 [ 317.572478][ T5866] usb 6-1: Manufacturer: syz [ 317.582879][ T5866] usb 6-1: config 0 descriptor?? [ 317.605797][ T5867] usb 5-1: new high-speed USB device number 52 using dummy_hcd [ 317.645070][ T5866] rc_core: IR keymap rc-hauppauge not found [ 317.654454][ T5866] Registered IR keymap rc-empty [ 317.659567][ T5866] rc rc0: IgorPlug-USB IR Receiver as /devices/platform/dummy_hcd.5/usb6/6-1/6-1:0.0/rc/rc0 [ 317.672013][ T5866] input: IgorPlug-USB IR Receiver as /devices/platform/dummy_hcd.5/usb6/6-1/6-1:0.0/rc/rc0/input90 [ 317.758855][ T30] audit: type=1400 audit(1742934728.086:1426): avc: denied { mounton } for pid=19467 comm="syz.2.6149" path="/1376/file0" dev="fuse" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:fusefs_t tclass=fifo_file permissive=1 [ 317.784267][ T5867] usb 5-1: Using ep0 maxpacket: 8 [ 317.803680][ T5867] usb 5-1: New USB device found, idVendor=047d, idProduct=5003, bcdDevice=2f.8c [ 317.817663][ T5867] usb 5-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 317.826820][ T5867] usb 5-1: Product: syz [ 317.831658][ T5867] usb 5-1: Manufacturer: syz [ 317.844735][ T5867] usb 5-1: SerialNumber: syz [ 317.853570][ T5867] usb 5-1: config 0 descriptor?? [ 317.868608][ T5867] gspca_main: se401-2.14.0 probing 047d:5003 [ 318.000938][ C1] igorplugusb 6-1:0.0: receive overflow invalid: 236 [ 318.123914][ T5143] Bluetooth: hci4: command 0x0419 tx timeout [ 318.204133][ T5143] Bluetooth: hci5: command 0x041b tx timeout [ 318.211351][ T47] usb 6-1: USB disconnect, device number 29 [ 318.381485][ T30] audit: type=1400 audit(1742934728.706:1427): avc: denied { execheap } for pid=19501 comm="syz.2.6164" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=process permissive=1 [ 318.435917][ T5867] usb 5-1: reset high-speed USB device number 52 using dummy_hcd [ 318.506110][ T30] audit: type=1400 audit(1742934728.836:1428): avc: denied { write } for pid=19511 comm="syz.2.6169" path="socket:[71679]" dev="sockfs" ino=71679 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=isdn_socket permissive=1 [ 318.530388][T19511] delete_channel: no stack [ 318.572334][T19518] netlink: 20 bytes leftover after parsing attributes in process `syz.2.6172'. [ 318.794194][ T5868] usb 7-1: new high-speed USB device number 2 using dummy_hcd [ 318.953989][ T5868] usb 7-1: Using ep0 maxpacket: 16 [ 318.966552][ T5868] usb 7-1: config 0 has an invalid interface number: 251 but max is 0 [ 318.984258][ T5868] usb 7-1: config 0 has no interface number 0 [ 318.991248][ T5868] usb 7-1: config 0 interface 251 altsetting 0 bulk endpoint 0x4 has invalid maxpacket 16 [ 319.011437][ T5868] usb 7-1: config 0 interface 251 altsetting 0 bulk endpoint 0x82 has invalid maxpacket 64 [ 319.023555][T19557] netlink: 76 bytes leftover after parsing attributes in process `syz.5.6186'. [ 319.034703][ T5868] usb 7-1: New USB device found, idVendor=0b95, idProduct=172a, bcdDevice=f7.f4 [ 319.054647][ T5868] usb 7-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 319.055437][ T5867] gspca_se401: write req failed req 0x57 val 0x00 error -71 [ 319.062658][ T5868] usb 7-1: Product: syz [ 319.062678][ T5868] usb 7-1: Manufacturer: syz [ 319.062692][ T5868] usb 7-1: SerialNumber: syz [ 319.074648][ T5868] usb 7-1: config 0 descriptor?? [ 319.090923][T19516] raw-gadget.0 gadget.6: fail, usb_ep_enable returned -22 [ 319.098409][T19516] raw-gadget.0 gadget.6: fail, usb_ep_enable returned -22 [ 319.106054][ T5867] se401 5-1:0.0: probe with driver se401 failed with error -71 [ 319.123448][ T5867] usb 5-1: USB disconnect, device number 52 [ 319.215266][ T30] audit: type=1400 audit(1742934729.536:1429): avc: denied { mount } for pid=19560 comm="syz.5.6188" name="/" dev="debugfs" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:debugfs_t tclass=filesystem permissive=1 [ 319.339355][T19516] raw-gadget.0 gadget.6: fail, usb_ep_enable returned -22 [ 319.354887][T19516] raw-gadget.0 gadget.6: fail, usb_ep_enable returned -22 [ 319.371261][T19567] new mount options do not match the existing superblock, will be ignored [ 319.384915][ T30] audit: type=1400 audit(1742934729.716:1430): avc: denied { remount } for pid=19566 comm="syz.7.6191" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:cgroup_t tclass=filesystem permissive=1 [ 319.393242][T19569] mkiss: ax0: crc mode is auto. [ 319.409252][T19567] cgroup: option or name mismatch, new: 0x4 "", old: 0x0 "" [ 319.517235][T19575] netlink: 68 bytes leftover after parsing attributes in process `syz.7.6196'. [ 319.528875][T19575] netlink: 16 bytes leftover after parsing attributes in process `syz.7.6196'. [ 319.580035][T19580] pci 0000:00:05.0: vgaarb: VGA decodes changed: olddecodes=io+mem,decodes=io+mem:owns=io+mem [ 319.786372][ T5868] asix 7-1:0.251 (unnamed net_device) (uninitialized): Interface mode not supported by driver [ 319.799294][ T5868] asix 7-1:0.251: probe with driver asix failed with error -524 [ 320.022280][ T5820] usb 7-1: USB disconnect, device number 2 [ 320.204231][ T5143] Bluetooth: hci4: command 0x0419 tx timeout [ 320.283982][ T5143] Bluetooth: hci5: command 0x041b tx timeout [ 320.319260][ T5820] kernel write not supported for file /uhid (pid: 5820 comm: kworker/0:3) [ 320.652641][T19599] syz.7.6207 (19599): drop_caches: 2 [ 320.811777][T19633] openvswitch: netlink: Flow actions may not be safe on all matching packets. [ 321.013628][T19650] netlink: 912 bytes leftover after parsing attributes in process `syz.7.6228'. [ 321.013676][T19648] batadv_slave_1: entered promiscuous mode [ 321.048735][T19648] batadv_slave_1: left promiscuous mode [ 321.066657][T19655] netlink: 8 bytes leftover after parsing attributes in process `syz.7.6230'. [ 321.205107][ T47] usb 6-1: new high-speed USB device number 30 using dummy_hcd [ 321.293824][ T9] usb 5-1: new full-speed USB device number 53 using dummy_hcd [ 321.375308][ T47] usb 6-1: too many endpoints for config 0 interface 0 altsetting 0: 196, using maximum allowed: 30 [ 321.387427][ T47] usb 6-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 321.404130][ T47] usb 6-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 196 [ 321.417293][ T47] usb 6-1: New USB device found, idVendor=04d9, idProduct=a055, bcdDevice= 0.00 [ 321.426688][ T47] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 321.436047][ T47] usb 6-1: config 0 descriptor?? [ 321.445831][ T9] usb 5-1: config 0 interface 0 altsetting 32 endpoint 0x8D has invalid maxpacket 200, setting to 64 [ 321.457130][ T9] usb 5-1: config 0 interface 0 altsetting 32 endpoint 0x5 has invalid wMaxPacketSize 0 [ 321.467388][ T9] usb 5-1: config 0 interface 0 altsetting 32 endpoint 0x8B has invalid wMaxPacketSize 0 [ 321.477314][ T9] usb 5-1: config 0 interface 0 has no altsetting 0 [ 321.485036][ T9] usb 5-1: New USB device found, idVendor=05ac, idProduct=8215, bcdDevice=8f.58 [ 321.494292][ T9] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 321.503655][ T9] usb 5-1: config 0 descriptor?? [ 321.527804][ T5828] Bluetooth: hci2: urb ffff888142bc8500 submission failed (90) [ 321.633153][T19674] 9p: Unknown access argument c: -22 [ 321.725890][ T9] usb 5-1: USB disconnect, device number 53 [ 321.850521][ T47] holtek_kbd 0003:04D9:A055.005B: item fetching failed at offset 6/7 [ 321.859763][ T47] holtek_kbd 0003:04D9:A055.005B: probe with driver holtek_kbd failed with error -22 [ 321.953966][ T5867] usb 7-1: new high-speed USB device number 3 using dummy_hcd [ 322.072820][ T9] usb 6-1: USB disconnect, device number 30 [ 322.103931][ T5867] usb 7-1: Using ep0 maxpacket: 16 [ 322.110281][ T5867] usb 7-1: config 0 has an invalid interface number: 126 but max is 0 [ 322.118789][ T5867] usb 7-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 322.128999][ T24] usb 3-1: new full-speed USB device number 52 using dummy_hcd [ 322.136586][ T5867] usb 7-1: config 0 has no interface number 0 [ 322.142647][ T5867] usb 7-1: config 0 interface 126 altsetting 0 has an endpoint descriptor with address 0xB7, changing to 0x87 [ 322.154547][ T5867] usb 7-1: config 0 interface 126 altsetting 0 endpoint 0x87 has invalid maxpacket 34328, setting to 1024 [ 322.166500][ T5867] usb 7-1: config 0 interface 126 altsetting 0 endpoint 0xA has invalid maxpacket 512, setting to 64 [ 322.177744][ T5867] usb 7-1: config 0 interface 126 altsetting 0 endpoint 0x4 has invalid wMaxPacketSize 0 [ 322.187777][ T5867] usb 7-1: config 0 interface 126 altsetting 0 has 3 endpoint descriptors, different from the interface descriptor's value: 4 [ 322.200838][ T5867] usb 7-1: New USB device found, idVendor=0763, idProduct=1015, bcdDevice=56.88 [ 322.209890][ T5867] usb 7-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 322.218971][ T5867] usb 7-1: config 0 descriptor?? [ 322.224492][T19676] raw-gadget.3 gadget.6: fail, usb_ep_enable returned -22 [ 322.232887][ T5867] usb 7-1: Quirk or no altset; falling back to MIDI 1.0 [ 322.284063][ T5828] Bluetooth: hci4: command 0x0419 tx timeout [ 322.326764][ T24] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 10 [ 322.338070][ T24] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 322.350377][ T24] usb 3-1: New USB device found, idVendor=060b, idProduct=700a, bcdDevice= 0.00 [ 322.360115][ T24] usb 3-1: New USB device strings: Mfr=2, Product=0, SerialNumber=0 [ 322.368629][ T5828] Bluetooth: hci5: command 0x041b tx timeout [ 322.374786][ T24] usb 3-1: Manufacturer: syz [ 322.381399][ T24] usb 3-1: config 0 descriptor?? [ 322.463088][ T9] usb 7-1: USB disconnect, device number 3 [ 322.633417][T19684] SELinux: failed to load policy [ 322.795765][ T24] cougar 0003:060B:700A.005C: hidraw0: USB HID v0.00 Device [syz] on usb-dummy_hcd.2-1/input0 [ 323.013466][ T9] usb 3-1: USB disconnect, device number 52 [ 323.196395][T19709] lo: entered promiscuous mode [ 323.245952][T19712] openvswitch: netlink: Key type 775 is out of range max 32 [ 323.265353][ T24] usb 7-1: new high-speed USB device number 4 using dummy_hcd [ 323.303296][ T30] audit: type=1400 audit(1742934733.626:1431): avc: denied { read } for pid=19716 comm="syz.5.6258" name="loop-control" dev="devtmpfs" ino=646 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:loop_control_device_t tclass=chr_file permissive=1 [ 323.329221][ T30] audit: type=1400 audit(1742934733.646:1432): avc: denied { open } for pid=19716 comm="syz.5.6258" path="/dev/loop-control" dev="devtmpfs" ino=646 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:loop_control_device_t tclass=chr_file permissive=1 [ 323.355490][ T30] audit: type=1400 audit(1742934733.656:1433): avc: denied { ioctl } for pid=19716 comm="syz.5.6258" path="/dev/loop-control" dev="devtmpfs" ino=646 ioctlcmd=0x4c80 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:loop_control_device_t tclass=chr_file permissive=1 [ 323.433840][ T24] usb 7-1: Using ep0 maxpacket: 32 [ 323.443337][ T24] usb 7-1: config 0 has an invalid interface number: 85 but max is 0 [ 323.452096][ T24] usb 7-1: config 0 has no interface number 0 [ 323.458325][ T24] usb 7-1: config 0 interface 85 altsetting 7 endpoint 0x82 has an invalid bInterval 0, changing to 7 [ 323.470798][ T24] usb 7-1: config 0 interface 85 has no altsetting 0 [ 323.479227][ T24] usb 7-1: New USB device found, idVendor=05ac, idProduct=0219, bcdDevice=f0.72 [ 323.488482][ T24] usb 7-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 323.497083][ T24] usb 7-1: Product: syz [ 323.501253][ T24] usb 7-1: Manufacturer: syz [ 323.506066][ T24] usb 7-1: SerialNumber: syz [ 323.511830][ T24] usb 7-1: config 0 descriptor?? [ 323.534111][ T5867] usb 5-1: new high-speed USB device number 54 using dummy_hcd [ 323.676220][T19731] netlink: 10 bytes leftover after parsing attributes in process `syz.2.6265'. [ 323.694921][ T5867] usb 5-1: Using ep0 maxpacket: 16 [ 323.704371][ T5867] usb 5-1: config 0 interface 0 altsetting 0 endpoint 0x84 has an invalid bInterval 150, changing to 7 [ 323.723554][ T47] usb 6-1: new high-speed USB device number 31 using dummy_hcd [ 323.731704][ T5867] usb 5-1: config 0 interface 0 altsetting 0 endpoint 0x84 has invalid maxpacket 42231, setting to 1024 [ 323.747324][ T5867] usb 5-1: New USB device found, idVendor=2040, idProduct=0264, bcdDevice=4e.d1 [ 323.756626][ T5867] usb 5-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 323.764644][ T5867] usb 5-1: Product: syz [ 323.768790][ T5867] usb 5-1: Manufacturer: syz [ 323.773381][ T5867] usb 5-1: SerialNumber: syz [ 323.778875][ T5867] usb 5-1: config 0 descriptor?? [ 323.785652][ T5867] em28xx 5-1:0.0: New device syz syz @ 480 Mbps (2040:0264, interface 0, class 0) [ 323.794942][ T5867] em28xx 5-1:0.0: DVB interface 0 found: isoc [ 323.927034][ T47] usb 6-1: New USB device found, idVendor=0cf3, idProduct=9271, bcdDevice= 1.08 [ 323.936313][ T47] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 323.944401][ T47] usb 6-1: Product: syz [ 323.948582][ T47] usb 6-1: Manufacturer: syz [ 323.953189][ T47] usb 6-1: SerialNumber: syz [ 323.961620][ T47] usb 6-1: ath9k_htc: Firmware ath9k_htc/htc_9271-1.4.0.fw requested [ 323.977406][ T5866] usb 6-1: ath9k_htc: Transferred FW: ath9k_htc/htc_9271-1.4.0.fw, size: 51008 [ 324.054443][ T5867] em28xx 5-1:0.0: unknown em28xx chip ID (0) [ 324.125065][ T24] appletouch 7-1:0.85: Geyser mode initialized. [ 324.138266][ T5867] em28xx 5-1:0.0: reading from i2c device at 0xa0 failed (error=-5) [ 324.147905][ T24] input: appletouch as /devices/platform/dummy_hcd.6/usb7/7-1/7-1:0.85/input/input91 [ 324.157593][ T5867] em28xx 5-1:0.0: board has no eeprom [ 324.201617][T19736] netlink: 24 bytes leftover after parsing attributes in process `syz.2.6267'. [ 324.235655][ T5867] em28xx 5-1:0.0: Identified as PCTV tripleStick (292e) (card=94) [ 324.243966][ T5867] em28xx 5-1:0.0: dvb set to isoc mode. [ 324.255002][ T24] em28xx 5-1:0.0: Binding DVB extension [ 324.269583][ T5867] usb 5-1: USB disconnect, device number 54 [ 324.286258][ T5867] em28xx 5-1:0.0: Disconnecting em28xx [ 324.329398][ T24] em28xx 5-1:0.0: Registering input extension [ 324.347001][ T5867] em28xx 5-1:0.0: Closing input extension [ 324.367800][ T9] usb 7-1: USB disconnect, device number 4 [ 324.379142][ T9] appletouch 7-1:0.85: input: appletouch disconnected [ 324.388398][ T5867] em28xx 5-1:0.0: Freeing device [ 324.430149][ T24] usb 6-1: USB disconnect, device number 31 [ 324.445427][ T5143] Bluetooth: hci5: command 0x041b tx timeout [ 324.656006][ T30] audit: type=1400 audit(1742934734.986:1434): avc: denied { append } for pid=19758 comm="syz.7.6276" name="rtc0" dev="devtmpfs" ino=921 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:clock_device_t tclass=chr_file permissive=1 [ 325.003984][ T5866] ath9k_htc 6-1:1.0: ath9k_htc: Target is unresponsive [ 325.013551][ T5866] ath9k_htc: Failed to initialize the device [ 325.023661][ T24] usb 6-1: ath9k_htc: USB layer deinitialized [ 325.698396][ T5866] usb 3-1: new high-speed USB device number 53 using dummy_hcd [ 325.833805][ T24] usb 6-1: new high-speed USB device number 32 using dummy_hcd [ 325.875733][ T5866] usb 3-1: unable to get BOS descriptor or descriptor too short [ 325.884635][ T5866] usb 3-1: config 6 has an invalid interface number: 200 but max is 0 [ 325.894408][ T5866] usb 3-1: config 6 has no interface number 0 [ 325.900809][ T5866] usb 3-1: config 6 interface 200 has no altsetting 0 [ 325.910247][ T5866] usb 3-1: New USB device found, idVendor=05d8, idProduct=810c, bcdDevice=18.5f [ 325.921004][ T5866] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 325.929685][ T5866] usb 3-1: Product: syz [ 325.935320][ T5866] usb 3-1: Manufacturer: syz [ 325.940029][ T5866] usb 3-1: SerialNumber: syz [ 326.004204][ T24] usb 6-1: Using ep0 maxpacket: 32 [ 326.021277][ T24] usb 6-1: config 0 has an invalid interface number: 51 but max is 0 [ 326.031558][ T24] usb 6-1: config 0 has no interface number 0 [ 326.040075][ T24] usb 6-1: New USB device found, idVendor=061d, idProduct=c150, bcdDevice=ce.6f [ 326.052663][ T24] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 326.060933][ T24] usb 6-1: Product: syz [ 326.067479][ T24] usb 6-1: Manufacturer: syz [ 326.072326][ T24] usb 6-1: SerialNumber: syz [ 326.078706][ T24] usb 6-1: config 0 descriptor?? [ 326.085792][ T24] quatech2 6-1:0.51: Quatech 2nd gen USB to Serial Driver converter detected [ 326.103843][ T47] usb 5-1: new high-speed USB device number 55 using dummy_hcd [ 326.260536][ T47] usb 5-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 326.271894][ T47] usb 5-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 326.282288][ T47] usb 5-1: New USB device found, idVendor=054c, idProduct=0df2, bcdDevice=d6.af [ 326.292056][ T47] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 326.306782][ T47] usb 5-1: config 0 descriptor?? [ 326.312058][ T24] usb 6-1: Quatech 2nd gen USB to Serial Driver converter now attached to ttyUSB0 [ 326.328778][ T24] usb 6-1: Quatech 2nd gen USB to Serial Driver converter now attached to ttyUSB1 [ 326.524193][ T5143] Bluetooth: hci5: command 0x041b tx timeout [ 326.722526][ T5866] dvb-usb: found a 'Artec T14 - USB2.0 DVB-T' in warm state. [ 326.733525][ C1] usb 6-1: qt2_read_bulk_callback - non-zero urb status: -71 [ 326.733810][ T9] usb 6-1: USB disconnect, device number 32 [ 326.748616][ T47] playstation 0003:054C:0DF2.005D: unknown main item tag 0x0 [ 326.758942][ T47] playstation 0003:054C:0DF2.005D: unknown main item tag 0x0 [ 326.764387][ T9] quatech-serial ttyUSB0: Quatech 2nd gen USB to Serial Driver converter now disconnected from ttyUSB0 [ 326.767903][ T5866] dvb-usb: will pass the complete MPEG2 transport stream to the software demuxer. [ 326.792421][ T47] playstation 0003:054C:0DF2.005D: unknown main item tag 0x0 [ 326.800317][ T47] playstation 0003:054C:0DF2.005D: unknown main item tag 0x0 [ 326.800502][ T9] quatech-serial ttyUSB1: Quatech 2nd gen USB to Serial Driver converter now disconnected from ttyUSB1 [ 326.809366][ T47] playstation 0003:054C:0DF2.005D: unknown main item tag 0x0 [ 326.830113][ T5866] dvbdev: DVB: registering new adapter (Artec T14 - USB2.0 DVB-T) [ 326.834346][ T9] quatech2 6-1:0.51: device disconnected [ 326.843704][ T5866] usb 3-1: media controller created [ 326.859482][ T5866] dvbdev: dvb_create_media_entity: media entity 'dvb-demux' registered. [ 326.869994][ T47] playstation 0003:054C:0DF2.005D: hidraw0: USB HID v1.01 Device [HID 054c:0df2] on usb-dummy_hcd.4-1/input0 [ 326.932121][ T5866] dvb-usb: bulk message failed: -71 (6/0) [ 326.945897][ T5866] dvb-usb: bulk message failed: -71 (6/0) [ 326.951905][ T5866] dvb-usb: no frontend was attached by 'Artec T14 - USB2.0 DVB-T' [ 326.963043][ T5866] input: IR-receiver inside an USB DVB receiver as /devices/platform/dummy_hcd.2/usb3/3-1/input/input94 [ 326.976021][ T5866] dvb-usb: schedule remote query interval to 150 msecs. [ 326.983006][ T5866] dvb-usb: Artec T14 - USB2.0 DVB-T successfully initialized and connected. [ 326.995603][ T5866] usb 3-1: USB disconnect, device number 53 [ 327.024914][ T5866] dvb-usb: Artec T14 - USB2.0 DVB-T successfully deinitialized and disconnected. [ 327.162384][ T47] playstation 0003:054C:0DF2.005D: Failed to retrieve feature with reportID 32: -71 [ 327.175488][ T47] playstation 0003:054C:0DF2.005D: Failed to retrieve DualSense firmware info: -71 [ 327.194151][ T47] playstation 0003:054C:0DF2.005D: Failed to get firmware info from DualSense [ 327.205630][ T47] playstation 0003:054C:0DF2.005D: Failed to create dualsense. [ 327.253666][ T47] playstation 0003:054C:0DF2.005D: probe with driver playstation failed with error -71 [ 327.276245][ T47] usb 5-1: USB disconnect, device number 55 [ 328.076786][ T30] audit: type=1400 audit(1742934738.406:1435): avc: denied { mounton } for pid=19887 comm="syz.5.6334" path="/253/file0" dev="configfs" ino=1168 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:configfs_t tclass=dir permissive=1 [ 328.192680][ T30] audit: type=1400 audit(1742934738.516:1436): avc: denied { mount } for pid=19895 comm="syz.6.6341" name="/" dev="binfmt_misc" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:binfmt_misc_fs_t tclass=filesystem permissive=1 [ 328.300188][T19908] netlink: 4 bytes leftover after parsing attributes in process `syz.5.6345'. [ 328.377593][ T30] audit: type=1400 audit(1742934738.706:1437): avc: denied { ioctl } for pid=19911 comm="syz.4.6347" path="socket:[73398]" dev="sockfs" ino=73398 ioctlcmd=0x89f1 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=xdp_socket permissive=1 [ 328.604129][ T5143] Bluetooth: hci5: command 0x041b tx timeout [ 328.611495][T19929] netlink: 1256 bytes leftover after parsing attributes in process `syz.7.6355'. [ 328.659147][T19929] openvswitch: netlink: Encap mask attribute is set for non-VLAN frame. [ 328.766302][T19943] netlink: 28 bytes leftover after parsing attributes in process `syz.6.6361'. [ 328.844256][ T47] usb 3-1: new high-speed USB device number 54 using dummy_hcd [ 329.003922][ T47] usb 3-1: Using ep0 maxpacket: 32 [ 329.010114][ T47] usb 3-1: config 0 has an invalid interface number: 51 but max is 0 [ 329.018504][ T47] usb 3-1: config 0 has no interface number 0 [ 329.026567][ T47] usb 3-1: config 0 has an invalid interface number: 51 but max is 0 [ 329.034720][ T47] usb 3-1: config 0 has no interface number 0 [ 329.041490][ T47] usb 3-1: config 0 has an invalid interface number: 51 but max is 0 [ 329.049808][ T47] usb 3-1: config 0 has no interface number 0 [ 329.057382][ T47] usb 3-1: New USB device found, idVendor=061d, idProduct=c150, bcdDevice=ce.6f [ 329.066536][ T47] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 329.075142][ T47] usb 3-1: Product: syz [ 329.079308][ T47] usb 3-1: Manufacturer: syz [ 329.084428][ T47] usb 3-1: SerialNumber: syz [ 329.089906][ T47] usb 3-1: config 0 descriptor?? [ 329.096101][ T47] quatech2 3-1:0.51: Quatech 2nd gen USB to Serial Driver converter detected [ 329.233953][ T5856] usb 6-1: new high-speed USB device number 33 using dummy_hcd [ 329.297689][ T47] usb 3-1: Quatech 2nd gen USB to Serial Driver converter now attached to ttyUSB0 [ 329.307991][ T47] usb 3-1: Quatech 2nd gen USB to Serial Driver converter now attached to ttyUSB1 [ 329.393869][ T5856] usb 6-1: Using ep0 maxpacket: 32 [ 329.400271][ T5856] usb 6-1: config 0 has an invalid interface number: 184 but max is 0 [ 329.408861][ T5856] usb 6-1: config 0 has no interface number 0 [ 329.415093][ T5856] usb 6-1: config 0 interface 184 has no altsetting 0 [ 329.423462][ T5856] usb 6-1: New USB device found, idVendor=0424, idProduct=7500, bcdDevice=69.ee [ 329.433037][ T5856] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 329.441425][ T5856] usb 6-1: Product: syz [ 329.445740][ T5856] usb 6-1: Manufacturer: syz [ 329.450338][ T5856] usb 6-1: SerialNumber: syz [ 329.456114][ T5856] usb 6-1: config 0 descriptor?? [ 329.462161][ T5856] smsc75xx v1.0.0 [ 329.576909][T19970] input: syz0 as /devices/virtual/input/input95 [ 329.703072][ C1] usb 3-1: qt2_read_bulk_callback - non-zero urb status: -71 [ 329.703318][ T9] usb 3-1: USB disconnect, device number 54 [ 329.728841][ T9] quatech-serial ttyUSB0: Quatech 2nd gen USB to Serial Driver converter now disconnected from ttyUSB0 [ 329.743268][ T9] quatech-serial ttyUSB1: Quatech 2nd gen USB to Serial Driver converter now disconnected from ttyUSB1 [ 329.766081][T19985] netlink: 4 bytes leftover after parsing attributes in process `syz.4.6378'. [ 329.773148][ T9] quatech2 3-1:0.51: device disconnected [ 329.883841][ T5868] usb 7-1: new high-speed USB device number 5 using dummy_hcd [ 329.946729][T19994] netlink: 84 bytes leftover after parsing attributes in process `syz.4.6383'. [ 330.035247][ T5868] usb 7-1: config 0 has an invalid interface number: 1 but max is 0 [ 330.044826][ T5868] usb 7-1: config 0 has no interface number 0 [ 330.050967][ T5868] usb 7-1: config 0 interface 1 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 330.071096][ T5868] usb 7-1: config 0 interface 1 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 330.083570][ T5868] usb 7-1: New USB device found, idVendor=041e, idProduct=2801, bcdDevice= 0.00 [ 330.095495][ T5868] usb 7-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 330.104935][ T5868] usb 7-1: config 0 descriptor?? [ 330.271863][ T5856] smsc75xx 6-1:0.184 (unnamed net_device) (uninitialized): Failed to write reg index 0x00000040: -71 [ 330.283412][ T5856] smsc75xx 6-1:0.184 (unnamed net_device) (uninitialized): Error writing E2P_CMD [ 330.304284][ T5856] smsc75xx 6-1:0.184 (unnamed net_device) (uninitialized): Failed to read reg index 0x00000014: -71 [ 330.318653][ T5856] smsc75xx 6-1:0.184 (unnamed net_device) (uninitialized): Failed to read PMT_CTL: -71 [ 330.328776][ T5856] smsc75xx 6-1:0.184 (unnamed net_device) (uninitialized): device not ready in smsc75xx_reset [ 330.339223][ T5856] smsc75xx 6-1:0.184 (unnamed net_device) (uninitialized): smsc75xx_reset error -71 [ 330.348730][ T5856] smsc75xx 6-1:0.184: probe with driver smsc75xx failed with error -71 [ 330.360539][ T5856] usb 6-1: USB disconnect, device number 33 [ 330.530874][ T5868] prodikeys 0003:041E:2801.005E: unknown main item tag 0x0 [ 330.540423][ T5868] prodikeys 0003:041E:2801.005E: unknown main item tag 0x0 [ 330.548286][ T5868] prodikeys 0003:041E:2801.005E: unknown main item tag 0x0 [ 330.556676][ T5868] prodikeys 0003:041E:2801.005E: unknown main item tag 0x0 [ 330.564569][ T5868] prodikeys 0003:041E:2801.005E: unknown main item tag 0x0 [ 330.571876][ T5868] prodikeys 0003:041E:2801.005E: unknown main item tag 0x0 [ 330.579303][ T5868] prodikeys 0003:041E:2801.005E: unknown main item tag 0x0 [ 330.587397][ T5868] prodikeys 0003:041E:2801.005E: hidraw0: USB HID v0.00 Device [HID 041e:2801] on usb-dummy_hcd.6-1/input1 [ 330.599972][ T5868] hid_prodikeys: hid-prodikeys: failed to find output report [ 330.599972][ T5868] [ 330.757020][ T5856] usb 7-1: USB disconnect, device number 5 [ 331.079962][T20039] input: syz1 as /devices/virtual/input/input96 [ 331.386984][T20054] netlink: 'syz.6.6411': attribute type 1 has an invalid length. [ 331.395430][T20054] netlink: 134708 bytes leftover after parsing attributes in process `syz.6.6411'. [ 331.464595][ T47] usb 6-1: new full-speed USB device number 34 using dummy_hcd [ 331.616900][T20062] netlink: 'syz.2.6415': attribute type 21 has an invalid length. [ 331.625867][ T47] usb 6-1: config 4 has an invalid interface number: 44 but max is 0 [ 331.635051][ T47] usb 6-1: config 4 has an invalid descriptor of length 0, skipping remainder of the config [ 331.647143][ T47] usb 6-1: config 4 has no interface number 0 [ 331.653255][ T47] usb 6-1: config 4 interface 44 altsetting 0 has 0 endpoint descriptors, different from the interface descriptor's value: 2 [ 331.666702][ T5866] usb 7-1: new full-speed USB device number 6 using dummy_hcd [ 331.690067][ T47] usb 6-1: New USB device found, idVendor=1044, idProduct=7001, bcdDevice= 5.20 [ 331.700086][ T47] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 331.708307][ T47] usb 6-1: Product: syz [ 331.712604][ T47] usb 6-1: Manufacturer: syz [ 331.717281][ T47] usb 6-1: SerialNumber: syz [ 331.729744][ T30] audit: type=1326 audit(1742934742.056:1438): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=20066 comm="syz.2.6417" exe="/root/syz-executor" sig=9 arch=c000003e syscall=231 compat=0 ip=0x7f031f58d169 code=0x0 [ 331.752636][ C0] vkms_vblank_simulate: vblank timer overrun [ 331.856474][ T5866] usb 7-1: New USB device found, idVendor=09c0, idProduct=0203, bcdDevice=d3.43 [ 331.865924][ T5866] usb 7-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 331.875358][ T5866] usb 7-1: config 0 descriptor?? [ 331.881693][ T5866] dvb-usb: found a 'Genpix SkyWalker-1 DVB-S receiver' in warm state. [ 332.133250][ T47] dvb-usb: found a 'Gigabyte U7000' in warm state. [ 332.140838][ T47] dvb-usb: will use the device's hardware PID filter (table count: 32). [ 332.149843][ T47] dvbdev: DVB: registering new adapter (Gigabyte U7000) [ 332.157107][ T47] usb 6-1: media controller created [ 332.163251][ T47] dvbdev: dvb_create_media_entity: media entity 'dvb-demux' registered. [ 332.188015][ T47] DVB: Unable to find symbol dib7000p_attach() [ 332.194932][ T47] dvb-usb: no frontend was attached by 'Gigabyte U7000' [ 332.254088][ T47] rc_core: IR keymap rc-dib0700-rc5 not found [ 332.260210][ T47] Registered IR keymap rc-empty [ 332.265689][ T47] dvb-usb: could not initialize remote control. [ 332.271947][ T47] dvb-usb: Gigabyte U7000 successfully initialized and connected. [ 332.288340][ T5866] gp8psk: usb in 128 operation failed. [ 332.294675][ T5866] gp8psk: usb in 137 operation failed. [ 332.300667][ T5866] dvb-usb: This USB2.0 device cannot be run on a USB1.1 port. (it lacks a hardware PID filter) [ 332.311253][ T5866] dvb-usb: Genpix SkyWalker-1 DVB-S receiver error while loading driver (-19) [ 332.322154][ T5866] usb 7-1: USB disconnect, device number 6 [ 332.556235][ T9] usb 6-1: USB disconnect, device number 34 [ 332.565920][ T9] dvb-usb: Gigabyte U7000 successfully deinitialized and disconnected. [ 332.903921][ T5866] usb 3-1: new full-speed USB device number 55 using dummy_hcd [ 333.075290][ T5866] usb 3-1: config 1 has an invalid descriptor of length 0, skipping remainder of the config [ 333.085649][ T5866] usb 3-1: config 1 has 2 interfaces, different from the descriptor's value: 3 [ 333.094980][ T5866] usb 3-1: config 1 has no interface number 1 [ 333.101363][ T5866] usb 3-1: config 1 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 0 [ 333.114686][ T5866] usb 3-1: config 1 interface 2 altsetting 1 endpoint 0x82 has an invalid bInterval 0, changing to 4 [ 333.120923][T20080] netlink: 'syz.5.6422': attribute type 2 has an invalid length. [ 333.128306][ T5866] usb 3-1: New USB device found, idVendor=1d6b, idProduct=0101, bcdDevice= 0.40 [ 333.147848][ T5866] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 333.165072][ T5866] usb 3-1: Product: syz [ 333.177403][ T5866] usb 3-1: Manufacturer: syz [ 333.184785][ T5866] usb 3-1: SerialNumber: syz [ 333.204945][ T30] audit: type=1400 audit(1742934743.536:1439): avc: denied { lock } for pid=20081 comm="syz.5.6423" path="socket:[74923]" dev="sockfs" ino=74923 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=unix_stream_socket permissive=1 [ 333.352758][ T30] audit: type=1400 audit(1742934743.676:1440): avc: denied { accept } for pid=20094 comm="syz.4.6429" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 333.391450][T20099] syz.5.6430 (20099): drop_caches: 2 [ 333.413920][ T30] audit: type=1400 audit(1742934743.706:1441): avc: denied { ioctl } for pid=20094 comm="syz.4.6429" path="socket:[75780]" dev="sockfs" ino=75780 ioctlcmd=0x89e2 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 333.574581][ T5866] usb 3-1: 2:1 : invalid UAC_AS_GENERAL desc [ 333.587099][ T5866] usb 3-1: USB disconnect, device number 55 [ 333.673216][T20111] input: syz1 as /devices/virtual/input/input98 [ 333.981489][ T30] audit: type=1400 audit(1742935000.306:1442): avc: denied { create } for pid=20133 comm="syz.4.6444" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=caif_socket permissive=1 [ 334.264161][ T5866] usb 7-1: new high-speed USB device number 7 using dummy_hcd [ 334.334211][ T47] usb 3-1: new high-speed USB device number 56 using dummy_hcd [ 334.359678][T20153] netlink: 12 bytes leftover after parsing attributes in process `syz.7.6453'. [ 334.421574][T20157] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 334.435004][T20157] batadv_slave_1: entered promiscuous mode [ 334.453830][ T5866] usb 7-1: Using ep0 maxpacket: 16 [ 334.465141][ T5866] usb 7-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 334.476785][ T5866] usb 7-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 334.495929][ T5866] usb 7-1: New USB device found, idVendor=1b96, idProduct=0006, bcdDevice= 0.00 [ 334.505689][ T5866] usb 7-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 334.516042][ T5866] usb 7-1: config 0 descriptor?? [ 334.535999][ T47] usb 3-1: too many endpoints for config 0 interface 0 altsetting 0: 255, using maximum allowed: 30 [ 334.549915][T20159] mkiss: ax0: crc mode is auto. [ 334.561864][ T47] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 334.573135][ T47] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 334.583296][ T47] usb 3-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 255 [ 334.599867][ T47] usb 3-1: New USB device found, idVendor=04d8, idProduct=c002, bcdDevice= 0.00 [ 334.611168][ T47] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 334.620329][ T47] usb 3-1: config 0 descriptor?? [ 334.687452][T20163] netlink: 'syz.7.6458': attribute type 1 has an invalid length. [ 334.955337][ T5866] ntrig 0003:1B96:0006.005F: hidraw0: USB HID v0.04 Device [HID 1b96:0006] on usb-dummy_hcd.6-1/input0 [ 335.050226][ T47] hid-picolcd 0003:04D8:C002.0060: unknown main item tag 0x0 [ 335.058372][ T47] hid-picolcd 0003:04D8:C002.0060: unknown main item tag 0x0 [ 335.067246][ T47] hid-picolcd 0003:04D8:C002.0060: unknown main item tag 0x0 [ 335.075052][ T47] hid-picolcd 0003:04D8:C002.0060: unknown main item tag 0x0 [ 335.083035][ T47] hid-picolcd 0003:04D8:C002.0060: unknown main item tag 0x0 [ 335.144233][ T47] hid-picolcd 0003:04D8:C002.0060: No report with id 0x11 found [ 335.170259][ T5866] usb 7-1: USB disconnect, device number 7 [ 335.285638][ T9] usb 3-1: USB disconnect, device number 56 [ 335.559584][ T30] audit: type=1400 audit(1742935001.886:1443): avc: denied { setopt } for pid=20200 comm="syz.5.6473" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=phonet_socket permissive=1 [ 335.629705][T20203] netdevsim netdevsim5 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 335.673164][ T30] audit: type=1400 audit(1742935001.996:1444): avc: denied { map } for pid=20204 comm="syz.7.6475" path="/dev/v4l-subdev3" dev="devtmpfs" ino=943 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:device_t tclass=chr_file permissive=1 [ 335.745659][T20203] netdevsim netdevsim5 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 335.761452][T20207] sctp: [Deprecated]: syz.4.6476 (pid 20207) Use of int in max_burst socket option. [ 335.761452][T20207] Use struct sctp_assoc_value instead [ 335.778046][ T30] audit: type=1400 audit(1742935002.086:1445): avc: denied { setopt } for pid=20204 comm="syz.7.6475" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 335.848313][T20203] netdevsim netdevsim5 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 335.948973][T20203] netdevsim netdevsim5 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 336.055831][T20203] netdevsim netdevsim5 eth0: set [1, 0] type 2 family 0 port 6081 - 0 [ 336.080025][T20203] netdevsim netdevsim5 eth1: set [1, 0] type 2 family 0 port 6081 - 0 [ 336.109305][T20203] netdevsim netdevsim5 eth2: set [1, 0] type 2 family 0 port 6081 - 0 [ 336.134422][T20203] netdevsim netdevsim5 eth3: set [1, 0] type 2 family 0 port 6081 - 0 [ 336.594967][T20259] trusted_key: syz.4.6498 sent an empty control message without MSG_MORE. [ 336.686232][T20265] netlink: 4 bytes leftover after parsing attributes in process `syz.7.6501'. [ 336.745063][T20271] netlink: 12 bytes leftover after parsing attributes in process `syz.6.6505'. [ 336.750000][T20274] syz.7.6506: attempt to access beyond end of device [ 336.750000][T20274] nbd7: rw=0, sector=64, nr_sectors = 1 limit=0 [ 336.770279][T20274] syz.7.6506: attempt to access beyond end of device [ 336.770279][T20274] nbd7: rw=0, sector=256, nr_sectors = 1 limit=0 [ 336.783321][T20274] UDF-fs: error (device nbd7): udf_read_tagged: read failed, block=256, location=256 [ 336.794874][T20274] syz.7.6506: attempt to access beyond end of device [ 336.794874][T20274] nbd7: rw=0, sector=512, nr_sectors = 1 limit=0 [ 336.808831][T20274] UDF-fs: error (device nbd7): udf_read_tagged: read failed, block=512, location=512 [ 336.827993][T20274] syz.7.6506: attempt to access beyond end of device [ 336.827993][T20274] nbd7: rw=0, sector=64, nr_sectors = 2 limit=0 [ 336.842843][T20274] syz.7.6506: attempt to access beyond end of device [ 336.842843][T20274] nbd7: rw=0, sector=512, nr_sectors = 2 limit=0 [ 336.845056][ T30] audit: type=1400 audit(1742935003.176:1446): avc: denied { write } for pid=20276 comm="syz.6.6507" name="cachefiles" dev="devtmpfs" ino=4 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:cachefiles_device_t tclass=chr_file permissive=1 [ 336.881181][ T30] audit: type=1400 audit(1742935003.176:1447): avc: denied { open } for pid=20276 comm="syz.6.6507" path="/dev/cachefiles" dev="devtmpfs" ino=4 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:cachefiles_device_t tclass=chr_file permissive=1 [ 336.905832][T20274] UDF-fs: error (device nbd7): udf_read_tagged: read failed, block=256, location=256 [ 336.908669][T20274] syz.7.6506: attempt to access beyond end of device [ 336.908669][T20274] nbd7: rw=0, sector=1024, nr_sectors = 2 limit=0 [ 336.930731][T20274] UDF-fs: error (device nbd7): udf_read_tagged: read failed, block=512, location=512 [ 336.940937][T20274] syz.7.6506: attempt to access beyond end of device [ 336.940937][T20274] nbd7: rw=0, sector=64, nr_sectors = 4 limit=0 [ 336.954228][ T5866] kernel read not supported for file /dsp1 (pid: 5866 comm: kworker/1:4) [ 336.965274][T20274] syz.7.6506: attempt to access beyond end of device [ 336.965274][T20274] nbd7: rw=0, sector=1024, nr_sectors = 4 limit=0 [ 336.973815][ T9] usb 6-1: new high-speed USB device number 35 using dummy_hcd [ 336.978369][T20274] UDF-fs: error (device nbd7): udf_read_tagged: read failed, block=256, location=256 [ 336.997057][T20274] syz.7.6506: attempt to access beyond end of device [ 336.997057][T20274] nbd7: rw=0, sector=2048, nr_sectors = 4 limit=0 [ 337.042569][T20274] UDF-fs: error (device nbd7): udf_read_tagged: read failed, block=512, location=512 [ 337.068671][T20274] syz.7.6506: attempt to access beyond end of device [ 337.068671][T20274] nbd7: rw=0, sector=64, nr_sectors = 8 limit=0 [ 337.090661][T20274] UDF-fs: error (device nbd7): udf_read_tagged: read failed, block=256, location=256 [ 337.105752][T20274] UDF-fs: error (device nbd7): udf_read_tagged: read failed, block=512, location=512 [ 337.125734][T20274] UDF-fs: warning (device nbd7): udf_fill_super: No partition found (1) [ 337.135087][ T9] usb 6-1: config 0 has an invalid interface number: 191 but max is 0 [ 337.157886][ T9] usb 6-1: config 0 has no interface number 0 [ 337.173194][ T9] usb 6-1: config 0 interface 191 has no altsetting 0 [ 337.195346][ T9] usb 6-1: New USB device found, idVendor=046d, idProduct=0920, bcdDevice=7f.b1 [ 337.205208][ T9] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 337.219498][ T9] usb 6-1: Product: syz [ 337.224112][ T9] usb 6-1: Manufacturer: syz [ 337.228923][ T9] usb 6-1: SerialNumber: syz [ 337.253848][ T9] usb 6-1: config 0 descriptor?? [ 337.260928][ T9] gspca_main: tv8532-2.14.0 probing 046d:0920 [ 337.396323][T20307] mkiss: ax0: crc mode is auto. [ 337.493101][ T9] usb 6-1: USB disconnect, device number 35 [ 337.511254][ T30] audit: type=1400 audit(1742935003.836:1448): avc: denied { watch watch_reads } for pid=20316 comm="syz.2.6525" path="/syzcgroup/cpu/syz2/cgroup.procs" dev="cgroup" ino=236 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:cgroup_t tclass=file permissive=1 [ 338.253013][T20367] netlink: 24 bytes leftover after parsing attributes in process `syz.6.6549'. [ 338.365269][T20379] netlink: 4 bytes leftover after parsing attributes in process `syz.6.6555'. [ 338.428518][T20386] netlink: 40 bytes leftover after parsing attributes in process `syz.7.6559'. [ 338.481032][T20389] IPVS: length: 24 != 16106127384 [ 338.594290][ T47] usb 3-1: new full-speed USB device number 57 using dummy_hcd [ 338.605778][T20395] netlink: 'syz.5.6563': attribute type 1 has an invalid length. [ 338.675926][ T5866] IPVS: starting estimator thread 0... [ 338.758314][ T30] audit: type=1400 audit(1742935005.086:1449): avc: denied { map } for pid=20407 comm="syz.7.6570" path="pipe:[69943]" dev="pipefs" ino=69943 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=fifo_file permissive=1 [ 338.764947][ T47] usb 3-1: New USB device found, idVendor=0bed, idProduct=1100, bcdDevice=ec.c3 [ 338.781794][T20404] IPVS: using max 45 ests per chain, 108000 per kthread [ 338.825418][ T47] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 338.847067][ T47] usb 3-1: config 0 descriptor?? [ 338.860670][ T47] cp210x 3-1:0.0: cp210x converter detected [ 338.862094][ T30] audit: type=1400 audit(1742935005.186:1450): avc: denied { audit_write } for pid=20414 comm="syz.7.6571" capability=29 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=capability permissive=1 [ 338.915086][T20417] SELinux: failed to load policy [ 339.025874][ T9] kernel write not supported for file /673/attr/keycreate (pid: 9 comm: kworker/0:0) [ 339.109251][T20430] netlink: 'syz.4.6578': attribute type 4 has an invalid length. [ 339.423385][T20452] macvlan0: entered allmulticast mode [ 339.442953][T20452] veth1_vlan: entered allmulticast mode [ 339.455326][T20452] macvlan0: left allmulticast mode [ 339.460872][T20452] veth1_vlan: left allmulticast mode [ 339.468640][ T47] cp210x 3-1:0.0: failed to get vendor val 0x000e size 678: -71 [ 339.482562][ T47] cp210x 3-1:0.0: GPIO initialisation failed: -71 [ 339.490173][ T47] usb 3-1: cp210x converter now attached to ttyUSB0 [ 339.500987][ T47] usb 3-1: USB disconnect, device number 57 [ 339.509037][ T47] cp210x ttyUSB0: cp210x converter now disconnected from ttyUSB0 [ 339.520822][ T47] cp210x 3-1:0.0: device disconnected [ 339.544114][ T30] audit: type=1400 audit(1742935005.866:1451): avc: denied { listen } for pid=20458 comm="syz.7.6593" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 339.646840][T20466] overlayfs: conflicting options: metacopy=on,redirect_dir=follow [ 340.130054][T20517] overlayfs: missing 'workdir' [ 340.580835][T20562] bridge: RTM_NEWNEIGH bridge0 with NTF_USE is not supported [ 340.925610][ T47] kernel read not supported for file /dsp1 (pid: 47 comm: kworker/1:1) [ 341.430925][ T30] audit: type=1326 audit(1742935007.756:1452): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=20615 comm="syz.4.6665" exe="/root/syz-executor" sig=31 arch=c000003e syscall=202 compat=0 ip=0x7f695f98d169 code=0x0 [ 341.485655][ T5868] usb 3-1: new high-speed USB device number 58 using dummy_hcd [ 341.613840][ T5866] usb 7-1: new full-speed USB device number 8 using dummy_hcd [ 341.643480][ T30] audit: type=1400 audit(1742935007.966:1453): avc: denied { read } for pid=20628 comm="syz.5.6671" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=can_socket permissive=1 [ 341.643893][ T5868] usb 3-1: Using ep0 maxpacket: 8 [ 341.680376][ T5868] usb 3-1: New USB device found, idVendor=0763, idProduct=2081, bcdDevice=d0.ab [ 341.692439][ T5868] usb 3-1: New USB device strings: Mfr=1, Product=228, SerialNumber=2 [ 341.701198][ T5868] usb 3-1: Product: syz [ 341.707537][ T5868] usb 3-1: Manufacturer: syz [ 341.712952][ T5868] usb 3-1: SerialNumber: syz [ 341.720048][ T5868] usb 3-1: config 0 descriptor?? [ 341.795372][ T5866] usb 7-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 10 [ 341.807475][ T5866] usb 7-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 2 [ 341.820597][ T5866] usb 7-1: New USB device found, idVendor=6666, idProduct=8802, bcdDevice= 0.00 [ 341.829712][ T5866] usb 7-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 341.839051][ T5866] usb 7-1: config 0 descriptor?? [ 341.996523][T20645] netlink: 4 bytes leftover after parsing attributes in process `syz.5.6679'. [ 342.267999][ T5866] smartjoyplus 0003:6666:8802.0061: unknown main item tag 0x0 [ 342.286920][ T5866] smartjoyplus 0003:6666:8802.0061: unknown main item tag 0x0 [ 342.298854][ T5866] smartjoyplus 0003:6666:8802.0061: unknown main item tag 0x0 [ 342.307871][ T5866] smartjoyplus 0003:6666:8802.0061: unknown main item tag 0x0 [ 342.315979][ T5866] smartjoyplus 0003:6666:8802.0061: unknown main item tag 0x0 [ 342.326265][ T5866] smartjoyplus 0003:6666:8802.0061: hidraw0: USB HID v0.00 Device [HID 6666:8802] on usb-dummy_hcd.6-1/input0 [ 342.351270][ T5866] smartjoyplus 0003:6666:8802.0061: no output reports found [ 342.369818][T20665] netlink: 4 bytes leftover after parsing attributes in process `syz.5.6689'. [ 342.491728][ T5868] usb 7-1: USB disconnect, device number 8 [ 342.555530][T20680] netlink: 60 bytes leftover after parsing attributes in process `syz.4.6693'. [ 342.566211][T20673] netlink: 60 bytes leftover after parsing attributes in process `syz.4.6693'. [ 342.578123][T20680] netlink: 60 bytes leftover after parsing attributes in process `syz.4.6693'. [ 342.595675][ T5866] usb 3-1: USB disconnect, device number 58 [ 342.625713][ C1] vkms_vblank_simulate: vblank timer overrun [ 342.718113][T20685] vimc link validate: Sensor A:src:640x480 (0x33424752, 8, 0, 0, 0) Raw Capture 0:snk:640x480 (0x33424752, 8, 0, 0, 0) [ 342.797372][T20689] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 342.982089][ T30] audit: type=1400 audit(1742935009.306:1454): avc: denied { bind } for pid=20700 comm="syz.5.6706" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 343.154195][ T5866] usb 5-1: new high-speed USB device number 56 using dummy_hcd [ 343.314779][ T5866] usb 5-1: Using ep0 maxpacket: 8 [ 343.329154][ T5866] usb 5-1: config 1 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 343.351332][ T5866] usb 5-1: config 1 interface 1 altsetting 1 endpoint 0x3 has invalid wMaxPacketSize 0 [ 343.367794][ T5866] usb 5-1: config 1 interface 1 altsetting 1 bulk endpoint 0x3 has invalid maxpacket 0 [ 343.379554][ T5866] usb 5-1: New USB device found, idVendor=0525, idProduct=a4a1, bcdDevice= 0.40 [ 343.414966][ T5866] usb 5-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 343.426928][ T5866] usb 5-1: Product: syz [ 343.432109][ T5866] usb 5-1: Manufacturer: syz [ 343.437168][ T5866] usb 5-1: SerialNumber: syz [ 343.533253][T20734] netlink: 4 bytes leftover after parsing attributes in process `syz.7.6720'. [ 343.621333][T20740] input: syz1 as /devices/virtual/input/input100 [ 343.657040][ T5866] cdc_ncm 5-1:1.0: bind() failure [ 343.666945][ T5866] cdc_ncm 5-1:1.1: CDC Union missing and no IAD found [ 343.674189][ T5866] cdc_ncm 5-1:1.1: bind() failure [ 343.691942][ T5866] usb 5-1: USB disconnect, device number 56 [ 343.864123][ T47] usb 3-1: new high-speed USB device number 59 using dummy_hcd [ 343.917320][ T30] audit: type=1400 audit(1742935010.246:1455): avc: denied { getopt } for pid=20757 comm="syz.5.6732" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=nfc_socket permissive=1 [ 344.046290][ T47] usb 3-1: New USB device found, idVendor=17e9, idProduct=8b4e, bcdDevice=9c.08 [ 344.055684][ T47] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 344.064546][ T47] usb 3-1: config 0 descriptor?? [ 344.275710][ T47] [drm] vendor descriptor length:6 data:06 5f 01 00 00 00 00 00 00 00 00 [ 344.286351][ T47] [drm:udl_init] *ERROR* Unrecognized vendor firmware descriptor [ 344.440356][T20781] netlink: 4 bytes leftover after parsing attributes in process `syz.4.6743'. [ 344.485471][ T47] [drm:udl_init] *ERROR* Selecting channel failed [ 344.500325][ T47] [drm] Initialized udl 0.0.1 for 3-1:0.0 on minor 2 [ 344.507261][ T47] [drm] Initialized udl on minor 2 [ 344.512813][ T47] udl 3-1:0.0: [drm] *ERROR* Read EDID byte 0 failed err ffffffb9 [ 344.531343][ T47] udl 3-1:0.0: [drm] Cannot find any crtc or sizes [ 344.533184][ T24] udl 3-1:0.0: [drm] *ERROR* Read EDID byte 0 failed err ffffffb9 [ 344.533278][ T24] udl 3-1:0.0: [drm] Cannot find any crtc or sizes [ 344.535662][ T47] usb 3-1: USB disconnect, device number 59 [ 344.619636][ T30] audit: type=1400 audit(1742935010.946:1456): avc: denied { getopt } for pid=20787 comm="syz.6.6746" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netrom_socket permissive=1 [ 344.640668][ C1] vkms_vblank_simulate: vblank timer overrun [ 344.834535][T20807] CIFS: VFS: Malformed UNC in devname [ 345.269300][T20835] netlink: 40 bytes leftover after parsing attributes in process `syz.2.6766'. [ 345.527428][T20851] delete_channel: no stack [ 345.535713][T20850] delete_channel: no stack [ 345.587134][T20853] macsec1: entered promiscuous mode [ 345.594858][T20853] macvlan1: entered promiscuous mode [ 345.613206][T20853] macvlan1: left promiscuous mode [ 345.758126][ T30] audit: type=1326 audit(1742935012.086:1457): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=20814 comm="syz.7.6758" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7d9e38d169 code=0x7fc00000 [ 345.808620][T20868] A link change request failed with some changes committed already. Interface batadv_slave_0 may have been left with an inconsistent configuration, please check. [ 346.114614][T20893] netlink: 76 bytes leftover after parsing attributes in process `syz.7.6791'. [ 346.547174][T20915] bridge0: port 2(bridge_slave_1) entered disabled state [ 346.760861][ T30] audit: type=1326 audit(1742935013.086:1458): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=20931 comm="syz.2.6808" exe="/root/syz-executor" sig=31 arch=c000003e syscall=202 compat=0 ip=0x7f031f58d169 code=0x0 [ 346.988837][T20947] netlink: 16 bytes leftover after parsing attributes in process `syz.5.6814'. [ 347.469037][T20994] input: syz0 as /devices/virtual/input/input101 [ 347.552827][ T30] audit: type=1326 audit(1742935013.876:1459): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=20999 comm="syz.5.6837" exe="/root/syz-executor" sig=31 arch=c000003e syscall=202 compat=0 ip=0x7fc5a6d8d169 code=0x0 [ 347.967251][ T30] audit: type=1400 audit(1742935014.296:1460): avc: denied { mount } for pid=21028 comm="syz.4.6850" name="/" dev="pstore" ino=4197 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:pstore_t tclass=filesystem permissive=1 [ 347.975624][T21029] overlayfs: "xino" feature enabled using 3 upper inode bits. [ 347.989751][ C1] vkms_vblank_simulate: vblank timer overrun [ 348.023275][ T30] audit: type=1400 audit(1742935014.346:1461): avc: denied { unmount } for pid=5817 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:pstore_t tclass=filesystem permissive=1 [ 348.243298][ T30] audit: type=1400 audit(1742935014.566:1462): avc: denied { ioctl } for pid=21046 comm="syz.4.6859" path="socket:[80241]" dev="sockfs" ino=80241 ioctlcmd=0x8946 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=dccp_socket permissive=1 [ 348.455030][ T30] audit: type=1400 audit(1742935014.786:1463): avc: denied { create } for pid=21059 comm="syz.6.6865" anonclass=[io_uring] scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:sysadm_t tclass=anon_inode permissive=1 [ 348.476354][ C1] vkms_vblank_simulate: vblank timer overrun [ 348.492885][ T30] audit: type=1400 audit(1742935014.786:1464): avc: denied { map } for pid=21059 comm="syz.6.6865" path="anon_inode:[io_uring]" dev="anon_inodefs" ino=80260 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:sysadm_t tclass=anon_inode permissive=1 [ 348.956409][ T30] kauditd_printk_skb: 38 callbacks suppressed [ 348.956426][ T30] audit: type=1400 audit(1742935015.286:1503): avc: denied { create } for pid=21094 comm="syz.6.6881" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=kcm_socket permissive=1 [ 348.987938][ T30] audit: type=1400 audit(1742935015.316:1504): avc: denied { setopt } for pid=21094 comm="syz.6.6881" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=kcm_socket permissive=1 [ 349.044222][ T9] usb 6-1: new high-speed USB device number 36 using dummy_hcd [ 349.056993][T21101] A link change request failed with some changes committed already. Interface lo may have been left with an inconsistent configuration, please check. [ 349.093889][ T24] usb 3-1: new high-speed USB device number 60 using dummy_hcd [ 349.196666][ T9] usb 6-1: config 1 has an invalid descriptor of length 0, skipping remainder of the config [ 349.207279][ T9] usb 6-1: config 1 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 0 [ 349.223679][ T9] usb 6-1: New USB device found, idVendor=0525, idProduct=a4a1, bcdDevice= 0.40 [ 349.233394][ T9] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 349.241526][ T9] usb 6-1: Product: syz [ 349.248487][ T9] usb 6-1: Manufacturer: syz [ 349.253110][ T9] usb 6-1: SerialNumber: syz [ 349.263519][ T30] audit: type=1400 audit(1742935015.586:1505): avc: denied { read write } for pid=21105 comm="syz.4.6886" name="radio0" dev="devtmpfs" ino=955 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:v4l_device_t tclass=chr_file permissive=1 [ 349.291462][ T30] audit: type=1400 audit(1742935015.586:1506): avc: denied { open } for pid=21105 comm="syz.4.6886" path="/dev/radio0" dev="devtmpfs" ino=955 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:v4l_device_t tclass=chr_file permissive=1 [ 349.294112][ T24] usb 3-1: Using ep0 maxpacket: 8 [ 349.318323][ T30] audit: type=1400 audit(1742935015.586:1507): avc: denied { ioctl } for pid=21105 comm="syz.4.6886" path="/dev/radio0" dev="devtmpfs" ino=955 ioctlcmd=0x5648 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:v4l_device_t tclass=chr_file permissive=1 [ 349.321024][ T5866] usb 7-1: new high-speed USB device number 9 using dummy_hcd [ 349.345904][ C1] vkms_vblank_simulate: vblank timer overrun [ 349.362412][ T24] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 349.373418][ T24] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 349.383709][ T24] usb 3-1: New USB device found, idVendor=046d, idProduct=c24f, bcdDevice= 0.00 [ 349.394011][ T24] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 349.403417][ T24] usb 3-1: config 0 descriptor?? [ 349.467846][T21083] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 349.476667][T21083] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 349.482445][ T30] audit: type=1400 audit(1742935015.806:1508): avc: denied { read } for pid=21111 comm="syz.4.6889" name="usbmon7" dev="devtmpfs" ino=742 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:usbmon_device_t tclass=chr_file permissive=1 [ 349.489221][ T9] cdc_ether 6-1:1.0: probe with driver cdc_ether failed with error -22 [ 349.508035][ C1] vkms_vblank_simulate: vblank timer overrun [ 349.526983][ T30] audit: type=1400 audit(1742935015.806:1509): avc: denied { open } for pid=21111 comm="syz.4.6889" path="/dev/usbmon7" dev="devtmpfs" ino=742 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:usbmon_device_t tclass=chr_file permissive=1 [ 349.528194][ T9] usb 6-1: USB disconnect, device number 36 [ 349.551774][ T5866] usb 7-1: Using ep0 maxpacket: 8 [ 349.567416][ T5866] usb 7-1: config 2 has an invalid interface number: 31 but max is 0 [ 349.575893][ T5866] usb 7-1: config 2 has no interface number 0 [ 349.581977][ T5866] usb 7-1: config 2 interface 31 has no altsetting 0 [ 349.595287][ T5866] usb 7-1: New USB device found, idVendor=1a86, idProduct=e092, bcdDevice=53.3f [ 349.605079][ T5866] usb 7-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 349.613116][ T5866] usb 7-1: Product: syz [ 349.620327][ T5866] usb 7-1: Manufacturer: syz [ 349.626786][ T5866] usb 7-1: SerialNumber: syz [ 349.683522][ T30] audit: type=1400 audit(1742935016.006:1510): avc: denied { read } for pid=21117 comm="syz.4.6892" name="kvm" dev="devtmpfs" ino=84 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 349.706616][ C1] vkms_vblank_simulate: vblank timer overrun [ 349.715763][ T30] audit: type=1400 audit(1742935016.006:1511): avc: denied { open } for pid=21117 comm="syz.4.6892" path="/dev/kvm" dev="devtmpfs" ino=84 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 349.742724][ T30] audit: type=1400 audit(1742935016.016:1512): avc: denied { ioctl } for pid=21117 comm="syz.4.6892" path="/dev/kvm" dev="devtmpfs" ino=84 ioctlcmd=0xae01 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 349.819579][ T24] logitech 0003:046D:C24F.0062: unknown main item tag 0x0 [ 349.827009][ T24] logitech 0003:046D:C24F.0062: unknown main item tag 0x0 [ 349.834481][ T24] logitech 0003:046D:C24F.0062: unknown main item tag 0x0 [ 349.841834][ T24] logitech 0003:046D:C24F.0062: unknown main item tag 0x0 [ 349.853822][ T24] logitech 0003:046D:C24F.0062: unknown main item tag 0x0 [ 349.862867][ T24] logitech 0003:046D:C24F.0062: hidraw0: USB HID v0.00 Device [HID 046d:c24f] on usb-dummy_hcd.2-1/input0 [ 349.876097][ T24] logitech 0003:046D:C24F.0062: no inputs found [ 349.984149][ T9] usb 6-1: new high-speed USB device number 37 using dummy_hcd [ 350.055133][ T10] usb 3-1: USB disconnect, device number 60 [ 350.133795][ T9] usb 6-1: Using ep0 maxpacket: 8 [ 350.144588][ T9] usb 6-1: config index 0 descriptor too short (expected 301, got 72) [ 350.152832][ T9] usb 6-1: config 16 has an invalid descriptor of length 0, skipping remainder of the config [ 350.166165][ T9] usb 6-1: config 16 interface 0 altsetting 0 endpoint 0x5 has invalid wMaxPacketSize 0 [ 350.176268][ T9] usb 6-1: config 16 interface 0 altsetting 0 bulk endpoint 0x5 has invalid maxpacket 0 [ 350.186579][ T9] usb 6-1: config 16 interface 0 altsetting 0 bulk endpoint 0x8B has invalid maxpacket 1024 [ 350.196984][ T9] usb 6-1: config 16 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 350.213877][ T9] usb 6-1: New USB device found, idVendor=ee8d, idProduct=db1e, bcdDevice=61.23 [ 350.223158][ T9] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 350.245467][ T5866] ch9200 7-1:2.31: probe with driver ch9200 failed with error -22 [ 350.259171][ T5866] usb 7-1: USB disconnect, device number 9 [ 350.459333][ T9] usb 6-1: usb_control_msg returned -71 [ 350.465459][ T9] usbtmc 6-1:16.0: can't read capabilities [ 350.474485][ T9] usb 6-1: USB disconnect, device number 37 [ 350.780222][T21160] netlink: 188 bytes leftover after parsing attributes in process `syz.7.6912'. [ 350.789725][T21160] netlink: 'syz.7.6912': attribute type 1 has an invalid length. [ 350.982337][T21180] netlink: 'syz.6.6920': attribute type 1 has an invalid length. [ 350.990600][T21180] netlink: 28 bytes leftover after parsing attributes in process `syz.6.6920'. [ 350.993839][ T24] usb 5-1: new high-speed USB device number 57 using dummy_hcd [ 351.176210][ T24] usb 5-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 351.197442][ T24] usb 5-1: New USB device found, idVendor=0926, idProduct=3333, bcdDevice= 0.40 [ 351.216000][ T24] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 351.230800][ T24] usb 5-1: config 0 descriptor?? [ 351.363526][T21202] netlink: 20 bytes leftover after parsing attributes in process `syz.7.6930'. [ 351.649014][ T24] keytouch 0003:0926:3333.0063: fixing up Keytouch IEC report descriptor [ 351.660493][ T24] input: HID 0926:3333 as /devices/platform/dummy_hcd.4/usb5/5-1/5-1:0.0/0003:0926:3333.0063/input/input103 [ 351.759376][T21229] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 351.767255][ T24] keytouch 0003:0926:3333.0063: input,hidraw0: USB HID v0.00 Keyboard [HID 0926:3333] on usb-dummy_hcd.4-1/input0 [ 351.934537][ T10] kernel write not supported for file /3194/attr/exec (pid: 10 comm: kworker/0:1) [ 352.137758][T21256] netlink: 16 bytes leftover after parsing attributes in process `syz.5.6953'. [ 352.268809][T21268] openvswitch: netlink: nsh attribute has 65512 unknown bytes. [ 352.276896][T21268] openvswitch: netlink: Flow actions may not be safe on all matching packets. [ 352.333484][ T47] usb 5-1: USB disconnect, device number 57 [ 352.406137][T21278] kvm: kvm [21277]: vcpu0, guest rIP: 0xfff0 Unhandled WRMSR(0xc0010015) = 0x35000bf4a7e59801 [ 352.521305][T21286] netlink: 20 bytes leftover after parsing attributes in process `syz.6.6968'. [ 352.594220][ T24] usb 3-1: new high-speed USB device number 61 using dummy_hcd [ 352.776556][ T24] usb 3-1: Using ep0 maxpacket: 8 [ 352.782938][ T24] usb 3-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 352.793412][ T24] usb 3-1: New USB device found, idVendor=046d, idProduct=0892, bcdDevice=6d.2a [ 352.802565][ T24] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 352.811478][ T24] usb 3-1: config 0 descriptor?? [ 352.818230][ T24] gspca_main: vc032x-2.14.0 probing 046d:0892 [ 352.874166][ T47] usb 6-1: new high-speed USB device number 38 using dummy_hcd [ 352.964470][ T10] usb 7-1: new high-speed USB device number 10 using dummy_hcd [ 353.045571][ T47] usb 6-1: config 0 interface 0 has no altsetting 0 [ 353.053908][ T47] usb 6-1: New USB device found, idVendor=045e, idProduct=0283, bcdDevice=99.0b [ 353.063039][ T47] usb 6-1: New USB device strings: Mfr=1, Product=228, SerialNumber=2 [ 353.071279][ T47] usb 6-1: Product: syz [ 353.075665][ T47] usb 6-1: Manufacturer: syz [ 353.080273][ T47] usb 6-1: SerialNumber: syz [ 353.087099][ T47] usb 6-1: config 0 descriptor?? [ 353.094291][ T47] usb 6-1: selecting invalid altsetting 0 [ 353.124037][ T10] usb 7-1: Using ep0 maxpacket: 32 [ 353.130742][ T10] usb 7-1: New USB device found, idVendor=0ac8, idProduct=0321, bcdDevice=6f.be [ 353.140014][ T10] usb 7-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 353.149482][ T10] usb 7-1: config 0 descriptor?? [ 353.156199][ T10] gspca_main: vc032x-2.14.0 probing 0ac8:0321 [ 353.315771][ T9] usb 6-1: USB disconnect, device number 38 [ 353.623263][ T24] gspca_vc032x: reg_w err -71 [ 353.628201][ T24] vc032x 3-1:0.0: probe with driver vc032x failed with error -71 [ 353.637604][ T24] usb 3-1: USB disconnect, device number 61 [ 353.959475][ T10] gspca_vc032x: reg_w err -71 [ 353.965842][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 353.973790][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 353.981311][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 353.989509][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 353.995363][ T30] kauditd_printk_skb: 58 callbacks suppressed [ 353.995377][ T30] audit: type=1400 audit(1742935020.326:1571): avc: denied { create } for pid=21319 comm="syz.5.6984" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 354.001558][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.035192][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.044702][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.053084][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.054665][ T30] audit: type=1400 audit(1742935020.346:1572): avc: denied { read } for pid=21319 comm="syz.5.6984" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 354.063175][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.094101][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.101944][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.114600][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.122024][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.131086][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.145252][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.150721][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.175349][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.180687][ T10] gspca_vc032x: I2c Bus Busy Wait 00 [ 354.190682][ T10] gspca_vc032x: Unknown sensor... [ 354.197680][ T10] vc032x 7-1:0.0: probe with driver vc032x failed with error -22 [ 354.210512][ T10] usb 7-1: USB disconnect, device number 10 [ 354.288949][ T30] audit: type=1400 audit(1742935020.616:1573): avc: denied { connect } for pid=21334 comm="syz.5.6991" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 354.309036][ C1] vkms_vblank_simulate: vblank timer overrun [ 354.408347][ T30] audit: type=1400 audit(1742935020.736:1574): avc: denied { ioctl } for pid=21341 comm="syz.4.6994" path="/dev/dri/card0" dev="devtmpfs" ino=627 ioctlcmd=0x64b2 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 354.452011][ T30] audit: type=1400 audit(1742935020.766:1575): avc: denied { map } for pid=21341 comm="syz.4.6994" path="/dev/dri/card0" dev="devtmpfs" ino=627 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 354.475731][ C1] vkms_vblank_simulate: vblank timer overrun [ 459.463689][ C1] rcu: INFO: rcu_preempt detected stalls on CPUs/tasks: [ 459.470673][ C1] rcu: 0-...!: (0 ticks this GP) idle=4d5c/1/0x4000000000000000 softirq=70860/70860 fqs=0 [ 459.481684][ C1] rcu: (detected by 1, t=10502 jiffies, g=67537, q=195 ncpus=2) [ 459.489399][ C1] Sending NMI from CPU 1 to CPUs 0: [ 459.489427][ C0] NMI backtrace for cpu 0 [ 459.489439][ C0] CPU: 0 UID: 0 PID: 21346 Comm: syz.2.6996 Not tainted 6.14.0-syzkaller-01103-g2df0c02dab82 #0 PREEMPT(full) [ 459.489456][ C0] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025 [ 459.489464][ C0] RIP: 0010:lock_is_held_type+0x13/0x150 [ 459.489486][ C0] Code: 00 00 00 00 0f 1f 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 41 57 41 56 41 55 41 bd ff ff ff ff 41 54 55 <53> 48 83 ec 08 8b 0d 26 0d 25 05 85 c9 0f 84 dd 00 00 00 65 8b 05 [ 459.489498][ C0] RSP: 0018:ffffc90000007d60 EFLAGS: 00000046 [ 459.489510][ C0] RAX: 0000000000010002 RBX: ffff8880258d6340 RCX: ffffffff89706628 [ 459.489518][ C0] RDX: ffff888027afa440 RSI: 00000000ffffffff RDI: ffff8880258d6300 [ 459.489532][ C0] RBP: ffff88801d73ac00 R08: 0000000000000005 R09: 0000000000000000 [ 459.489540][ C0] R10: 0000000000000001 R11: 0000000000000000 R12: 0000000000000001 [ 459.489548][ C0] R13: 00000000ffffffff R14: ffff8880258d6340 R15: ffffffff897064b0 [ 459.489557][ C0] FS: 00007f03204346c0(0000) GS:ffff888124a54000(0000) knlGS:0000000000000000 [ 459.489572][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 459.489581][ C0] CR2: 0000200000000240 CR3: 0000000028bb6000 CR4: 00000000003526f0 [ 459.489589][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 459.489597][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 459.489606][ C0] Call Trace: [ 459.489612][ C0] [ 459.489619][ C0] ? nmi_cpu_backtrace+0x1d8/0x390 [ 459.489639][ C0] ? nmi_cpu_backtrace_handler+0xc/0x20 [ 459.489653][ C0] ? nmi_handle.part.0+0x1a7/0x5d0 [ 459.489669][ C0] ? nmi_handle+0x86/0xc0 [ 459.489681][ C0] ? lock_is_held_type+0x13/0x150 [ 459.489695][ C0] ? default_do_nmi+0x6a/0x160 [ 459.489713][ C0] ? exc_nmi+0x170/0x1e0 [ 459.489729][ C0] ? end_repeat_nmi+0xf/0x53 [ 459.489742][ C0] ? __pfx_advance_sched+0x10/0x10 [ 459.489762][ C0] ? advance_sched+0x178/0xc80 [ 459.489779][ C0] ? lock_is_held_type+0x13/0x150 [ 459.489793][ C0] ? lock_is_held_type+0x13/0x150 [ 459.489807][ C0] ? lock_is_held_type+0x13/0x150 [ 459.489821][ C0] [ 459.489826][ C0] [ 459.489831][ C0] ? __pfx_advance_sched+0x10/0x10 [ 459.489848][ C0] advance_sched+0x721/0xc80 [ 459.489866][ C0] ? find_held_lock+0x2b/0x80 [ 459.489881][ C0] ? do_raw_spin_unlock+0x172/0x230 [ 459.489894][ C0] ? __pfx_advance_sched+0x10/0x10 [ 459.489910][ C0] __hrtimer_run_queues+0x1ff/0xad0 [ 459.489925][ C0] ? __pfx___hrtimer_run_queues+0x10/0x10 [ 459.489937][ C0] ? read_tsc+0x9/0x20 [ 459.489955][ C0] hrtimer_interrupt+0x397/0x8e0 [ 459.489971][ C0] __sysvec_apic_timer_interrupt+0x108/0x3f0 [ 459.489986][ C0] sysvec_apic_timer_interrupt+0x9f/0xc0 [ 459.490000][ C0] [ 459.490005][ C0] [ 459.490009][ C0] asm_sysvec_apic_timer_interrupt+0x1a/0x20 [ 459.490022][ C0] RIP: 0010:write_comp_data+0x42/0x90 [ 459.490040][ C0] Code: a9 00 01 ff 00 74 1d f6 c4 01 74 67 a9 00 00 0f 00 75 60 a9 00 00 f0 00 75 59 8b 82 3c 16 00 00 85 c0 74 4f 8b 82 18 16 00 00 <83> f8 03 75 44 48 8b 82 20 16 00 00 8b 92 1c 16 00 00 48 8b 38 48 [ 459.490052][ C0] RSP: 0018:ffffc9000d9b7c08 EFLAGS: 00000246 [ 459.490063][ C0] RAX: 0000000000000002 RBX: ffff8880b853f500 RCX: ffffffff81aed369 [ 459.490072][ C0] RDX: ffff888027afa440 RSI: 0000000000000000 RDI: 0000000000000005 [ 459.490080][ C0] RBP: 0000000000000003 R08: 0000000000000005 R09: 0000000000000000 [ 459.490088][ C0] R10: 0000000000000001 R11: 0000000000000000 R12: ffffed10170a7ea1 [ 459.490096][ C0] R13: 0000000000000001 R14: dffffc0000000000 R15: ffff8880b843b000 [ 459.490107][ C0] ? smp_call_function_many_cond+0x4c9/0x1290 [ 459.490123][ C0] smp_call_function_many_cond+0x4c9/0x1290 [ 459.490139][ C0] ? _raw_spin_unlock_irqrestore+0x52/0x80 [ 459.490153][ C0] clock_was_set+0x642/0x870 [ 459.490168][ C0] ? __pfx_clock_was_set+0x10/0x10 [ 459.490181][ C0] ? rcu_is_watching+0x12/0xc0 [ 459.490194][ C0] ? _raw_spin_unlock_irqrestore+0x52/0x80 [ 459.490208][ C0] do_settimeofday64+0x304/0x4b0 [ 459.490223][ C0] ? __pfx_do_settimeofday64+0x10/0x10 [ 459.490237][ C0] ? bpf_lsm_capable+0x9/0x10 [ 459.490252][ C0] ? vhost_vdpa_unlocked_ioctl+0xb82/0x3250 [ 459.490269][ C0] ? capable+0xd4/0x110 [ 459.490283][ C0] do_sys_settimeofday64+0x1dc/0x260 [ 459.490301][ C0] __x64_sys_clock_settime+0x1be/0x2a0 [ 459.490319][ C0] ? __pfx___x64_sys_clock_settime+0x10/0x10 [ 459.490337][ C0] ? rcu_is_watching+0x12/0xc0 [ 459.490352][ C0] do_syscall_64+0xcd/0x260 [ 459.490367][ C0] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 459.490379][ C0] RIP: 0033:0x7f031f58d169 [ 459.490392][ C0] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 459.490402][ C0] RSP: 002b:00007f0320434038 EFLAGS: 00000246 ORIG_RAX: 00000000000000e3 [ 459.490414][ C0] RAX: ffffffffffffffda RBX: 00007f031f7a5fa0 RCX: 00007f031f58d169 [ 459.490423][ C0] RDX: 0000000000000000 RSI: 0000200000000240 RDI: 0000000000000000 [ 459.490431][ C0] RBP: 00007f031f60e2a0 R08: 0000000000000000 R09: 0000000000000000 [ 459.490439][ C0] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 [ 459.490446][ C0] R13: 0000000000000000 R14: 00007f031f7a5fa0 R15: 00007ffe8a728618 [ 459.490459][ C0] [ 459.491422][ C1] rcu: rcu_preempt kthread timer wakeup didn't happen for 10501 jiffies! g67537 f0x0 RCU_GP_WAIT_FQS(5) ->state=0x402 [ 460.028991][ C1] rcu: Possible timer handling issue on cpu=0 timer-softirq=26367 [ 460.036868][ C1] rcu: rcu_preempt kthread starved for 10502 jiffies! g67537 f0x0 RCU_GP_WAIT_FQS(5) ->state=0x402 ->cpu=0 [ 460.048224][ C1] rcu: Unless rcu_preempt kthread gets sufficient CPU time, OOM is now expected behavior. [ 460.058179][ C1] rcu: RCU grace-period kthread stack dump: [ 460.064052][ C1] task:rcu_preempt state:I stack:28856 pid:16 tgid:16 ppid:2 task_flags:0x208040 flags:0x00004000 [ 460.075964][ C1] Call Trace: [ 460.079232][ C1] [ 460.082157][ C1] __schedule+0x1129/0x5c00 [ 460.086661][ C1] ? find_held_lock+0x2b/0x80 [ 460.091335][ C1] ? __lock_acquire+0x5ca/0x1ba0 [ 460.096358][ C1] ? __pfx___schedule+0x10/0x10 [ 460.101205][ C1] ? find_held_lock+0x2b/0x80 [ 460.105874][ C1] ? schedule+0x2d7/0x3a0 [ 460.110196][ C1] schedule+0xe7/0x3a0 [ 460.114255][ C1] schedule_timeout+0x123/0x280 [ 460.119103][ C1] ? __pfx_schedule_timeout+0x10/0x10 [ 460.124485][ C1] ? __pfx_process_timeout+0x10/0x10 [ 460.130547][ C1] ? _raw_spin_unlock_irqrestore+0x3b/0x80 [ 460.136348][ C1] ? prepare_to_swait_event+0xf3/0x470 [ 460.141809][ C1] rcu_gp_fqs_loop+0x1ea/0xb00 [ 460.146577][ C1] ? __pfx_rcu_gp_fqs_loop+0x10/0x10 [ 460.151876][ C1] ? rcu_gp_init+0xc76/0x15a0 [ 460.156587][ C1] ? rcu_gp_cleanup+0x7c1/0xd90 [ 460.161450][ C1] ? _raw_spin_unlock_irqrestore+0x52/0x80 [ 460.167255][ C1] rcu_gp_kthread+0x270/0x380 [ 460.171934][ C1] ? __pfx_rcu_gp_kthread+0x10/0x10 [ 460.177125][ C1] ? rcu_is_watching+0x12/0xc0 [ 460.181880][ C1] ? lockdep_hardirqs_on+0x7c/0x110 [ 460.187071][ C1] ? __kthread_parkme+0x148/0x220 [ 460.192097][ C1] ? __pfx_rcu_gp_kthread+0x10/0x10 [ 460.197291][ C1] kthread+0x3a4/0x760 [ 460.201349][ C1] ? __pfx_kthread+0x10/0x10 [ 460.205933][ C1] ? __pfx_kthread+0x10/0x10 [ 460.210519][ C1] ? __pfx_kthread+0x10/0x10 [ 460.215099][ C1] ? __pfx_kthread+0x10/0x10 [ 460.219677][ C1] ? rcu_is_watching+0x12/0xc0 [ 460.224437][ C1] ? __pfx_kthread+0x10/0x10 [ 460.229016][ C1] ret_from_fork+0x45/0x80 [ 460.233428][ C1] ? __pfx_kthread+0x10/0x10 [ 460.238010][ C1] ret_from_fork_asm+0x1a/0x30 [ 460.242779][ C1] [ 460.246158][ C1] vkms_vblank_simulate: vblank timer overrun