last executing test programs: 1m30.431379509s ago: executing program 1 (id=467): r0 = socket$kcm(0x10, 0x2, 0x0) recvmsg(r0, &(0x7f0000000300)={0x0, 0x0, 0x0}, 0x0) r1 = openat$cgroup_subtree(0xffffffffffffffff, &(0x7f0000000180), 0x2, 0x0) openat$cgroup_subtree(0xffffffffffffffff, &(0x7f00000001c0), 0x2, 0x0) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$ieee802154(&(0x7f00000005c0), r2) ioctl$sock_SIOCGIFINDEX_802154(r2, 0x8933, &(0x7f0000000600)={'wpan0\x00', 0x0}) sendmsg$IEEE802154_LLSEC_ADD_DEV(r2, &(0x7f0000000700)={0x0, 0x0, &(0x7f00000006c0)={&(0x7f0000000640)={0x50, r3, 0x615, 0x70bd26, 0x25dfdbff, {}, [@IEEE802154_ATTR_PAN_ID={0x6, 0x6, 0x3}, @IEEE802154_ATTR_DEV_INDEX={0x8, 0x2, r4}, @IEEE802154_ATTR_LLSEC_DEV_KEY_MODE={0x5}, @IEEE802154_ATTR_LLSEC_FRAME_COUNTER={0x8}, @IEEE802154_ATTR_HW_ADDR={0xc}, @IEEE802154_ATTR_LLSEC_DEV_OVERRIDE={0x5}, @IEEE802154_ATTR_SHORT_ADDR={0x6, 0x4, 0xfffe}]}, 0x50}, 0x1, 0x0, 0x0, 0x801}, 0xc040) write$cgroup_subtree(r1, &(0x7f0000000200)=ANY=[@ANYRES16=r0, @ANYRESOCT], 0xfe33) r5 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r6 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000080), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_802154(r5, 0x8933, &(0x7f00000000c0)={'wpan4\x00', 0x0}) sendmsg$NL802154_CMD_DEL_SEC_DEV(r5, &(0x7f0000000140)={&(0x7f0000000040)={0x10, 0x0, 0x0, 0x20}, 0xc, &(0x7f0000000100)={&(0x7f0000000240)={0x44, r6, 0x0, 0x70bd28, 0x8, {}, [@NL802154_ATTR_SEC_DEVICE={0x10, 0x2e, 0x0, 0x1, {0xc}}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x3}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x100000001}, @NL802154_ATTR_IFINDEX={0x8, 0x3, r7}]}, 0x44}, 0x1, 0x0, 0x0, 0x40800}, 0x200448c0) recvmsg(r0, &(0x7f0000001f40)={0x0, 0x0, 0x0}, 0x2) 1m10.436720646s ago: executing program 1 (id=467): r0 = socket$kcm(0x10, 0x2, 0x0) recvmsg(r0, &(0x7f0000000300)={0x0, 0x0, 0x0}, 0x0) r1 = openat$cgroup_subtree(0xffffffffffffffff, &(0x7f0000000180), 0x2, 0x0) openat$cgroup_subtree(0xffffffffffffffff, &(0x7f00000001c0), 0x2, 0x0) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$ieee802154(&(0x7f00000005c0), r2) ioctl$sock_SIOCGIFINDEX_802154(r2, 0x8933, &(0x7f0000000600)={'wpan0\x00', 0x0}) sendmsg$IEEE802154_LLSEC_ADD_DEV(r2, &(0x7f0000000700)={0x0, 0x0, &(0x7f00000006c0)={&(0x7f0000000640)={0x50, r3, 0x615, 0x70bd26, 0x25dfdbff, {}, [@IEEE802154_ATTR_PAN_ID={0x6, 0x6, 0x3}, @IEEE802154_ATTR_DEV_INDEX={0x8, 0x2, r4}, @IEEE802154_ATTR_LLSEC_DEV_KEY_MODE={0x5}, @IEEE802154_ATTR_LLSEC_FRAME_COUNTER={0x8}, @IEEE802154_ATTR_HW_ADDR={0xc}, @IEEE802154_ATTR_LLSEC_DEV_OVERRIDE={0x5}, @IEEE802154_ATTR_SHORT_ADDR={0x6, 0x4, 0xfffe}]}, 0x50}, 0x1, 0x0, 0x0, 0x801}, 0xc040) write$cgroup_subtree(r1, &(0x7f0000000200)=ANY=[@ANYRES16=r0, @ANYRESOCT], 0xfe33) r5 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r6 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000080), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_802154(r5, 0x8933, &(0x7f00000000c0)={'wpan4\x00', 0x0}) sendmsg$NL802154_CMD_DEL_SEC_DEV(r5, &(0x7f0000000140)={&(0x7f0000000040)={0x10, 0x0, 0x0, 0x20}, 0xc, &(0x7f0000000100)={&(0x7f0000000240)={0x44, r6, 0x0, 0x70bd28, 0x8, {}, [@NL802154_ATTR_SEC_DEVICE={0x10, 0x2e, 0x0, 0x1, {0xc}}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x3}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x100000001}, @NL802154_ATTR_IFINDEX={0x8, 0x3, r7}]}, 0x44}, 0x1, 0x0, 0x0, 0x40800}, 0x200448c0) recvmsg(r0, &(0x7f0000001f40)={0x0, 0x0, 0x0}, 0x2) 46.34860081s ago: executing program 1 (id=467): r0 = socket$kcm(0x10, 0x2, 0x0) recvmsg(r0, &(0x7f0000000300)={0x0, 0x0, 0x0}, 0x0) r1 = openat$cgroup_subtree(0xffffffffffffffff, &(0x7f0000000180), 0x2, 0x0) openat$cgroup_subtree(0xffffffffffffffff, &(0x7f00000001c0), 0x2, 0x0) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$ieee802154(&(0x7f00000005c0), r2) ioctl$sock_SIOCGIFINDEX_802154(r2, 0x8933, &(0x7f0000000600)={'wpan0\x00', 0x0}) sendmsg$IEEE802154_LLSEC_ADD_DEV(r2, &(0x7f0000000700)={0x0, 0x0, &(0x7f00000006c0)={&(0x7f0000000640)={0x50, r3, 0x615, 0x70bd26, 0x25dfdbff, {}, [@IEEE802154_ATTR_PAN_ID={0x6, 0x6, 0x3}, @IEEE802154_ATTR_DEV_INDEX={0x8, 0x2, r4}, @IEEE802154_ATTR_LLSEC_DEV_KEY_MODE={0x5}, @IEEE802154_ATTR_LLSEC_FRAME_COUNTER={0x8}, @IEEE802154_ATTR_HW_ADDR={0xc}, @IEEE802154_ATTR_LLSEC_DEV_OVERRIDE={0x5}, @IEEE802154_ATTR_SHORT_ADDR={0x6, 0x4, 0xfffe}]}, 0x50}, 0x1, 0x0, 0x0, 0x801}, 0xc040) write$cgroup_subtree(r1, &(0x7f0000000200)=ANY=[@ANYRES16=r0, @ANYRESOCT], 0xfe33) r5 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r6 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000080), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_802154(r5, 0x8933, &(0x7f00000000c0)={'wpan4\x00', 0x0}) sendmsg$NL802154_CMD_DEL_SEC_DEV(r5, &(0x7f0000000140)={&(0x7f0000000040)={0x10, 0x0, 0x0, 0x20}, 0xc, &(0x7f0000000100)={&(0x7f0000000240)={0x44, r6, 0x0, 0x70bd28, 0x8, {}, [@NL802154_ATTR_SEC_DEVICE={0x10, 0x2e, 0x0, 0x1, {0xc}}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x3}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x100000001}, @NL802154_ATTR_IFINDEX={0x8, 0x3, r7}]}, 0x44}, 0x1, 0x0, 0x0, 0x40800}, 0x200448c0) recvmsg(r0, &(0x7f0000001f40)={0x0, 0x0, 0x0}, 0x2) 31.904707936s ago: executing program 1 (id=467): r0 = socket$kcm(0x10, 0x2, 0x0) recvmsg(r0, &(0x7f0000000300)={0x0, 0x0, 0x0}, 0x0) r1 = openat$cgroup_subtree(0xffffffffffffffff, &(0x7f0000000180), 0x2, 0x0) openat$cgroup_subtree(0xffffffffffffffff, &(0x7f00000001c0), 0x2, 0x0) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$ieee802154(&(0x7f00000005c0), r2) ioctl$sock_SIOCGIFINDEX_802154(r2, 0x8933, &(0x7f0000000600)={'wpan0\x00', 0x0}) sendmsg$IEEE802154_LLSEC_ADD_DEV(r2, &(0x7f0000000700)={0x0, 0x0, &(0x7f00000006c0)={&(0x7f0000000640)={0x50, r3, 0x615, 0x70bd26, 0x25dfdbff, {}, [@IEEE802154_ATTR_PAN_ID={0x6, 0x6, 0x3}, @IEEE802154_ATTR_DEV_INDEX={0x8, 0x2, r4}, @IEEE802154_ATTR_LLSEC_DEV_KEY_MODE={0x5}, @IEEE802154_ATTR_LLSEC_FRAME_COUNTER={0x8}, @IEEE802154_ATTR_HW_ADDR={0xc}, @IEEE802154_ATTR_LLSEC_DEV_OVERRIDE={0x5}, @IEEE802154_ATTR_SHORT_ADDR={0x6, 0x4, 0xfffe}]}, 0x50}, 0x1, 0x0, 0x0, 0x801}, 0xc040) write$cgroup_subtree(r1, &(0x7f0000000200)=ANY=[@ANYRES16=r0, @ANYRESOCT], 0xfe33) r5 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r6 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000080), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_802154(r5, 0x8933, &(0x7f00000000c0)={'wpan4\x00', 0x0}) sendmsg$NL802154_CMD_DEL_SEC_DEV(r5, &(0x7f0000000140)={&(0x7f0000000040)={0x10, 0x0, 0x0, 0x20}, 0xc, &(0x7f0000000100)={&(0x7f0000000240)={0x44, r6, 0x0, 0x70bd28, 0x8, {}, [@NL802154_ATTR_SEC_DEVICE={0x10, 0x2e, 0x0, 0x1, {0xc}}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x3}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x100000001}, @NL802154_ATTR_IFINDEX={0x8, 0x3, r7}]}, 0x44}, 0x1, 0x0, 0x0, 0x40800}, 0x200448c0) recvmsg(r0, &(0x7f0000001f40)={0x0, 0x0, 0x0}, 0x2) 18.958408322s ago: executing program 1 (id=467): r0 = socket$kcm(0x10, 0x2, 0x0) recvmsg(r0, &(0x7f0000000300)={0x0, 0x0, 0x0}, 0x0) r1 = openat$cgroup_subtree(0xffffffffffffffff, &(0x7f0000000180), 0x2, 0x0) openat$cgroup_subtree(0xffffffffffffffff, &(0x7f00000001c0), 0x2, 0x0) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$ieee802154(&(0x7f00000005c0), r2) ioctl$sock_SIOCGIFINDEX_802154(r2, 0x8933, &(0x7f0000000600)={'wpan0\x00', 0x0}) sendmsg$IEEE802154_LLSEC_ADD_DEV(r2, &(0x7f0000000700)={0x0, 0x0, &(0x7f00000006c0)={&(0x7f0000000640)={0x50, r3, 0x615, 0x70bd26, 0x25dfdbff, {}, [@IEEE802154_ATTR_PAN_ID={0x6, 0x6, 0x3}, @IEEE802154_ATTR_DEV_INDEX={0x8, 0x2, r4}, @IEEE802154_ATTR_LLSEC_DEV_KEY_MODE={0x5}, @IEEE802154_ATTR_LLSEC_FRAME_COUNTER={0x8}, @IEEE802154_ATTR_HW_ADDR={0xc}, @IEEE802154_ATTR_LLSEC_DEV_OVERRIDE={0x5}, @IEEE802154_ATTR_SHORT_ADDR={0x6, 0x4, 0xfffe}]}, 0x50}, 0x1, 0x0, 0x0, 0x801}, 0xc040) write$cgroup_subtree(r1, &(0x7f0000000200)=ANY=[@ANYRES16=r0, @ANYRESOCT], 0xfe33) r5 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r6 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000080), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_802154(r5, 0x8933, &(0x7f00000000c0)={'wpan4\x00', 0x0}) sendmsg$NL802154_CMD_DEL_SEC_DEV(r5, &(0x7f0000000140)={&(0x7f0000000040)={0x10, 0x0, 0x0, 0x20}, 0xc, &(0x7f0000000100)={&(0x7f0000000240)={0x44, r6, 0x0, 0x70bd28, 0x8, {}, [@NL802154_ATTR_SEC_DEVICE={0x10, 0x2e, 0x0, 0x1, {0xc}}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x3}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x100000001}, @NL802154_ATTR_IFINDEX={0x8, 0x3, r7}]}, 0x44}, 0x1, 0x0, 0x0, 0x40800}, 0x200448c0) recvmsg(r0, &(0x7f0000001f40)={0x0, 0x0, 0x0}, 0x2) 5.902393121s ago: executing program 1 (id=467): r0 = socket$kcm(0x10, 0x2, 0x0) recvmsg(r0, &(0x7f0000000300)={0x0, 0x0, 0x0}, 0x0) r1 = openat$cgroup_subtree(0xffffffffffffffff, &(0x7f0000000180), 0x2, 0x0) openat$cgroup_subtree(0xffffffffffffffff, &(0x7f00000001c0), 0x2, 0x0) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$ieee802154(&(0x7f00000005c0), r2) ioctl$sock_SIOCGIFINDEX_802154(r2, 0x8933, &(0x7f0000000600)={'wpan0\x00', 0x0}) sendmsg$IEEE802154_LLSEC_ADD_DEV(r2, &(0x7f0000000700)={0x0, 0x0, &(0x7f00000006c0)={&(0x7f0000000640)={0x50, r3, 0x615, 0x70bd26, 0x25dfdbff, {}, [@IEEE802154_ATTR_PAN_ID={0x6, 0x6, 0x3}, @IEEE802154_ATTR_DEV_INDEX={0x8, 0x2, r4}, @IEEE802154_ATTR_LLSEC_DEV_KEY_MODE={0x5}, @IEEE802154_ATTR_LLSEC_FRAME_COUNTER={0x8}, @IEEE802154_ATTR_HW_ADDR={0xc}, @IEEE802154_ATTR_LLSEC_DEV_OVERRIDE={0x5}, @IEEE802154_ATTR_SHORT_ADDR={0x6, 0x4, 0xfffe}]}, 0x50}, 0x1, 0x0, 0x0, 0x801}, 0xc040) write$cgroup_subtree(r1, &(0x7f0000000200)=ANY=[@ANYRES16=r0, @ANYRESOCT], 0xfe33) r5 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r6 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000080), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_802154(r5, 0x8933, &(0x7f00000000c0)={'wpan4\x00', 0x0}) sendmsg$NL802154_CMD_DEL_SEC_DEV(r5, &(0x7f0000000140)={&(0x7f0000000040)={0x10, 0x0, 0x0, 0x20}, 0xc, &(0x7f0000000100)={&(0x7f0000000240)={0x44, r6, 0x0, 0x70bd28, 0x8, {}, [@NL802154_ATTR_SEC_DEVICE={0x10, 0x2e, 0x0, 0x1, {0xc}}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x3}, @NL802154_ATTR_WPAN_DEV={0xc, 0x6, 0x100000001}, @NL802154_ATTR_IFINDEX={0x8, 0x3, r7}]}, 0x44}, 0x1, 0x0, 0x0, 0x40800}, 0x200448c0) recvmsg(r0, &(0x7f0000001f40)={0x0, 0x0, 0x0}, 0x2) 1.776190452s ago: executing program 0 (id=1867): bpf$ENABLE_STATS(0x20, 0x0, 0x0) r0 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="0a00000004000000ff0f000007"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x2, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000000000000b70400000000000085000000c300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x26, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000040)={&(0x7f0000000000)='percpu_alloc_percpu\x00', r1}, 0x10) bpf$PROG_LOAD(0x5, &(0x7f0000000540)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000080)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x20, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) 1.616463488s ago: executing program 0 (id=1870): bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018120000", @ANYRES32, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000002010000850000004300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r0 = bpf$MAP_CREATE(0x0, &(0x7f00000000c0)=@base={0x1b, 0x0, 0x0, 0x8000, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018120000", @ANYRES32=r0], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xfffffffd, @void, @value}, 0x94) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0x4, &(0x7f0000000480)=ANY=[@ANYBLOB="1800000000000000000000000000000085000000d0"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0xfffffffffffffefb, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000500)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0xf, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000100)='net_dev_xmit\x00', r1}, 0x10) r2 = bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0xc, 0xe, &(0x7f0000000640)=ANY=[@ANYBLOB="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"/2566], &(0x7f0000000340)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000080)={r2, 0x18000000000002a0, 0xe40, 0x0, &(0x7f0000000100)="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", 0x0, 0x8, 0x60000000}, 0x1e) 1.416127307s ago: executing program 0 (id=1871): bpf$BPF_GET_MAP_INFO(0xf, 0x0, 0x0) bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, 0x0, 0x0) bpf$PROG_LOAD(0x5, 0x0, 0x0) r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000240)={0x18, 0x4, &(0x7f0000000000)=ANY=[@ANYBLOB="18010000200180000000000000000000850000007b00000095"], &(0x7f00000001c0)='GPL\x00', 0x4, 0x93, &(0x7f00000003c0)=""/147, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x80) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000200)={&(0x7f0000000080)='sched_switch\x00', r0}, 0x10) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x3, 0x4, &(0x7f0000000700)=@framed={{0x18, 0x0, 0x0, 0x0, 0x1}, [@call={0x85, 0x0, 0x0, 0x61}]}, &(0x7f0000000200)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @sched_cls, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f00000004c0)={r1, 0x18000000000002a0, 0x12, 0x0, &(0x7f0000000240)="d2ff03076003008cb89e08f088a82b9a86dd", 0x0, 0xd5b1, 0x60000000, 0x0, 0x0, 0x0, 0x0}, 0x50) 1.250300147s ago: executing program 2 (id=1873): bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000085000000070000001801000020756c2500000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b70300000000a5df850000002d00000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0xfffffffffffffe82, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$PROG_LOAD(0x5, &(0x7f0000000680)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="18090000000000000000000000000000850000006d0000001801000020696c2500000000002020097b1af8ff00000000bfa100000000000007010000b8ffffffb702000000000000b703000000000000"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r0 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x1, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x17, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000580)={&(0x7f0000000040)='fib6_table_lookup\x00', r0}, 0x10) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0xc, 0xe, &(0x7f00000039c0)=ANY=[@ANYBLOB="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"], &(0x7f0000000340)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x8, &(0x7f0000000000), 0x0, 0x10, &(0x7f0000000000), 0xffffffffffffffe8, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000040)={r1, 0x18000000000002a0, 0x38, 0x0, &(0x7f0000000140)="b9ff0300600d698cff9e14f086dd", 0x0, 0x63, 0x60000000, 0x0, 0x0, 0x0, 0x0}, 0x48) 1.211578295s ago: executing program 0 (id=1874): r0 = openat$tun(0xffffffffffffff9c, &(0x7f0000000140), 0x0, 0x0) ioctl$TUNSETIFF(r0, 0x400454ca, &(0x7f0000000080)={'pimreg0\x00', 0x7c2}) ioctl$TUNSETTXFILTER(r0, 0x400454d1, &(0x7f0000000000)={0x0, 0x4, [@multicast, @dev={'\xaa\xaa\xaa\xaa\xaa', 0x37}, @local, @local]}) 1.160107212s ago: executing program 4 (id=1875): r0 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x18, 0xb, &(0x7f00000009c0)=ANY=[@ANYBLOB="18000000000000000000000000000000180100002020702500000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b703000000000093850000007100000095"], &(0x7f0000000200)='GPL\x00', 0x0, 0x0, 0x0, 0x41100, 0x0, '\x00', 0x0, @fallback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000540)={&(0x7f0000000000)='kfree\x00', r0}, 0x18) bpf$BPF_BTF_LOAD(0x12, &(0x7f0000000140)={&(0x7f0000000000)={{0xeb9f, 0x1, 0x0, 0x18, 0x0, 0xc, 0xc, 0x2, [@struct]}}, &(0x7f0000000040)=""/247, 0x26, 0xf7, 0x1, 0x0, 0x0, @void, @value}, 0x20) 1.09588918s ago: executing program 3 (id=1876): r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000000)=@base={0x5, 0x6, 0x40, 0x40, 0x41, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$MAP_UPDATE_BATCH(0x1a, &(0x7f00000004c0)={0x0, 0x0, &(0x7f0000000a40), &(0x7f00000008c0), 0x1003, r0}, 0x38) bpf$MAP_LOOKUP_ELEM(0x4, &(0x7f0000000b80)={r0, 0x0, &(0x7f0000000b40)=""/31}, 0x20) 1.050484393s ago: executing program 2 (id=1877): bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="180000000000000000000000000001b518110000", @ANYRES32, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000180)=ANY=[@ANYBLOB="0b00000005000000000400000900000001"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f0000000340)={0x8, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @cgroup_skb, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$MAP_GET_NEXT_KEY(0x2, &(0x7f00000004c0)={r0, &(0x7f0000000340), &(0x7f00000005c0)=""/155}, 0x20) bpf$PROG_LOAD(0x5, &(0x7f0000000500)={0x0, 0x0, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000800000000000000000000018110000", @ANYRES32=r0], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000700)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000f40)={&(0x7f0000000300)='fib_table_lookup\x00', r1}, 0x10) r2 = bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0xc, 0xe, &(0x7f0000002ec0)=ANY=[@ANYBLOB="b702000007000000bfa30000000000000703000000feffff7a0af0ff0100000079a4f0ff00000000b7060000ffffffff2d6405000000000065040400010000000404000001007d60b7030000000000006a0a00fe00000000850000000d000000b70000000000000095000000000000005ecefab8f2e85c6c1ca711fcd0cdfa146ec561750379585e5a076d839240d29c034055b67dafe6c8dc3d5d78c07fa1f7e655ce34e4d5b3185fec0e07004e60c08dc8b8dbf11e6e94d75938321a3aa502cd2424a66e6d2ef831ab7ea0c34f17e3946ef3bb622003b538dfd8e01f3440cee51bc53099e90f4580d760551b5b341a29f31e3106d1ddd6152f7cbdb9cd38bdb2209c67deca8eeb9c15ab3a14817ac61e4dd11183a13477bf7e860e3670ef0e789f65f1328d6704902cbe7bc04b82d2789cad32b8667c2147661df28d9961b63e1a9cf6c2a660a1fe3c184b751c51160fb20b1c581e7be6ba0dc001c4110555850915148ba532e6ea09c346dfebd38608b3280080005d9a9500000000000000334d83239dd27080851dcac3c12233f9a1fb9c2aec61ce63a38d2fd50117b89a9ab359b4eea0c6e95767d42b4e54861d0227dbfd2e6d7f715a7f3deadd7130856f756436303767d2e24f29e5dad9796edb697aeea0182babd18cac1bd4f4390af9a9ceafd0002cab154ad029a1090000002780870014f51c3c975d5aec84222fd3a0ec4be3e563112f0b39501aafe234870072858dc06e7c337602d3e5a815232f5e16c1b30c3a6abc85018e5ff2c91018afc9ffc2cc788bee1b47683db012469398685211dfbbae3e2ed0a50e7393bff5d4c391ddece00fc772dd6b4d4de2a41990f05ca3bdfc92c88c5b8dcd36e7487afa447e2edfae4f390a8337841cef386e22cc22ee17476d738952229682e24b92533ac2a9f5a699593f084419cae0b4532bcc97d300006aca54183fb01c73f979ca9857399537f5dc2a2d0e0000000000000578673f8b6e74ce23877a6b24db0e067345560942fa629fbef2461c96a088a22e8b15c3e233db7af22e30d46a9d26d37cef099ece729aa218f9f44a3210223fdae7ed04935c3c90d3add8eebc8619d73415cda2130f5011e48455b5a8b90dfae158b94f50adab988dd8e12baf5cc9398fff00404d5d99f82e20ee6a8c88e18c2977fb536a9caab37d9ac4cfc1c7b400000000000007ffc826b956ba859ac8e3c177b91bd7d5e41ff83ced846891180604b6dd2499d16d7d9158ffffffff00000000ef069dc42749a89f854797f29d000069a16203a967c1bbe09315c29877a308bcc87dc3addb08142bdee5d27874b2f663ddeef0005b3d96c7aabf4df517d90bdc01e73835d5a3e1a90800c66ee2b1ad76dff9f9000071414c99d4894ee7f8240000e3428d2129369ee1b85af9ffffff0d0df414b315f651c8412392191fa83ee830548f11be359454a3f2239cfe35f81b7a490f167e6d5c1109000000000000000042b8ff8c21ad702ccacad5b39eef213d1ca296d2a27798c8ce2a305c0c7d35cf4b22549a4bd92000000000f285f653b621491dc6aaee0200e2ff08644fb94c06006eff1be2f633c1d987591ec3db58a7bb74d4ec3f771f7a1338a5c3dd35e926049fe86e09c58e273cd905de328c13c1ed1c0d9cae846bcbfa8cce7b893e578af7dc7d5e87d44ff828de453f34c2b18660b080efc707e676e1fb4d5825c0ca177a4c7fbb4eda0545c00f576b2b5cc7f819abd0f885cc4806f40300966fcf1e54f5a2d38708294cd6f496e5dee734fe7da3770845cf442d488afdc0e17000000000000000000000000000000000000000000000000000005205000000dc1c56d59f35d367632952a978ee56c83a3466ae595c6a8cda690d192a070886df42b27098773b45198b4a34ac977ebd4450e121d01342e0eaf6f330e935878a6d169c80aa4252d4ea6b8f6216ff202b5b5a182cb5e838b307632d03a7ca6f6d0339f9953c3093c3690d10ecb65dc5b47481edbf1f000000000000004d16d29c28eb5167e9936ed327fb237a56224e49d9ea95ec1b3ccd35364600000000000000000000000000000000000000000000000000000000000026ded4dd6fe1518cc7802043ecfe69f743f1213bf81700cd9e5a225d67521dc728eac7d80a5656ac2cbde21d3ebfbf69ff861f4394836ddf128d6d19079e64336e7c676505c78ad67548f4b192be3827fcd95cf107753cb0a6a979d3db0c407081c6281e2d8429a863903ca75f4c7df3ea8fc2018d07af1491ef060cd4403a099f32468f65bd06b4082d43e121861b5cc03f1a1561f0589e0d12969bc982ff5d8e9b986c0c6c747d9a1cc500bb892c3a16ff10feea20bdac0000000000000000ca06f256c8028e0f9b65f037b21f3289f86a6826c69fa35ba5cbc3f2db1516ffc5c6e3fa618b24a6ce16d6c7010bb37b61fa0a2d8974e69115d33394e86e4b838297ba20f969369de47422604e2fc5d1d33d84d96b50fb000000ae07c65b71088dd7d5d1e1bab9000000000000000000000000b5ace293b6c833c13e3229432ad71d646218b5229dd88137fc7c59aa242af3bb4efb82055a3b612272d40f522d8c98c879aca11033ec14bb9cc16bd83a00840e31d828ec78e116ae46c4897e2795b6ff92e9a1e24b0b855c02f2b7add58ffb25f339297729a7a51810134d3dfbe71f6516737be55c06d9cdcfb1e2bb10b50000eb4acff90756dba1ecf9f58afd3c19b5c4558ba9af6b7333c894a1fb29ade9ad75c9c022e8d03fe28bc358684492aa771dbfe80745fe89ad349ffaad76ff9dd643796caffdf67af5dd476c37e7e9a84e2e5da2696e285a59b53f2fb0e16d8262c080c159ce40c14089c82759106f422582b42e3e8484ea5a6ad9aa52106eafe0e0caea1ad4cb23f3c2b8a0f455ba69ea284c268d54b43158a8b1d128d02af263b3dc1cab794c9ac57a2a7332f4d8764c302ccd5aac114482b619fc575aa0dd2777e881e29a854380e2f1e49db5a1517ec40bb3fa44f9959bad67ccaba76408da35c9f1534c8bd46dbd61627a2e0a74b5e6aefb7eee403502734137ff47a57f164391c673b6079e65d7295eed164ca63e4ea26dce0fb3ce0f6591d80dfb8f386bb74b5589829b6b0679b5d65a125e3af1130d66a7b66837ae7e7123dde7404a067ad0a6a2d6bec9411b61cad4121be3c72ff3a04713042253d438e7becf8120de3895b8ce974958bde39cb8da3427a2e9e2de936431e67fed5ab5684db07de39083d8948cc4c8a2608100000000000000000000aecb8b0b7941088f971ce17427eec32a012295cc0cdd32955176b6ad5a4bb953e58ccfa9428f452cfb5a48a9fda26db3985c8be3c2f99827da074825b01c4a3a71fb59d5798100000000000000c76b05a45d2dd8c20d971e2f3e4369168f5cb83d6ff3a18733fec726034fbfa95624135bee374414b2c8c61f52357a520efd6a10aff244bc8a62ed367981fb4d5d77f7bc093958ff46527499957da4934cd4b370cf76f72dd05fa80cdfb68c836fd81be7a58532e041a87f9222f157610a4bcdc05b2a55308c8e7568b90f7a338557e816a16972aea79dff5becefa6f9c5ce6c58fb38da9e7532dc53cfdc2e789b76f7d32aca1bfea2aa62621b78dded30fc07171866bf3d552900000000a32dda61eeda1750e157c2d569b9d08f583c0ee28daec2e8bb85f3c8e91c4448096ee953def18dc73e55cb30f9cd069d8780b00eaba382f0c3ae391c30a5f1b0f36dd0c2193b791995d2890327a10d7abac76d1202f72e97f0105184d7aaaab8d3e29c9a8d263f076b55cf53c5bb9c0662a3d19a6722d7f83ae4331d3256f90af0857788b380ccc3b266c418e66d1d756d5df6423dd0cea67bc235d3776d22270fc19301ead09f156893e9"], &(0x7f0000000340)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) bpf$MAP_UPDATE_ELEM_TAIL_CALL(0x2, &(0x7f0000000400)={{r0}, &(0x7f0000000000), &(0x7f00000002c0)=r2}, 0x20) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000080)={r2, 0x18000000000002a0, 0xe2c, 0x60000000, &(0x7f0000000100)="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", 0x0, 0x24, 0x60000000}, 0x2c) 939.839642ms ago: executing program 4 (id=1878): bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018120000", @ANYRES32, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000002000000b704000000000000850000004300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0xffffff7a, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r0 = bpf$MAP_CREATE(0x0, &(0x7f00000000c0)=@base={0x1b, 0x0, 0x0, 0x8000, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018120000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0xc, 0xe, &(0x7f0000002ec0)=ANY=[@ANYBLOB="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"], &(0x7f0000000340)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) r2 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000001300)={&(0x7f0000000c00)='net_dev_start_xmit\x00', r2}, 0x10) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000080)={r1, 0x18000000000002a0, 0xe2c, 0x60000000, &(0x7f0000000100)="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", 0x0, 0x24, 0x60000000}, 0x2c) 924.105494ms ago: executing program 2 (id=1879): r0 = bpf$MAP_CREATE(0x0, &(0x7f00000000c0)=ANY=[@ANYBLOB="1b00000000000000000000000080"], 0x48) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0x7, &(0x7f0000000240)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b702000002000000850000008600000095"], &(0x7f0000000200)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000080)={&(0x7f0000000000)='tlb_flush\x00', r1}, 0x18) r2 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="0a00000004000000080000002b"], 0x50) bpf$PROG_LOAD(0x5, &(0x7f0000000400)={0x11, 0xd, &(0x7f00000004c0)=ANY=[@ANYBLOB="1800000000000000000000000100000018110000", @ANYRES32=r2, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b7040000000000008500000003000000850000002300000095"], &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0xa, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) 853.935581ms ago: executing program 3 (id=1880): r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000000)=ANY=[@ANYBLOB="0a000000050000000200000007"], 0x48) bpf$MAP_UPDATE_BATCH(0x1a, &(0x7f0000000780)={0x0, 0x0, &(0x7f0000000640), &(0x7f0000000740), 0x75, r0}, 0x38) bpf$PROG_LOAD(0x5, &(0x7f0000000180)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000818110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000340)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000300)={&(0x7f0000000180)='workqueue_activate_work\x00', r1}, 0x10) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, 0x0, 0x0, 0x0, 0x0, 0x0, 0x40f00, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$MAP_LOOKUP_ELEM(0x5, &(0x7f00000000c0)={0xffffffffffffffff, 0x0, &(0x7f0000000040)=""/73}, 0x20) 747.991312ms ago: executing program 0 (id=1881): bpf$MAP_CREATE(0x0, 0x0, 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r0 = openat$tun(0xffffffffffffff9c, &(0x7f0000000080), 0x0, 0x0) ioctl$TUNSETIFF(r0, 0x400454ca, &(0x7f0000000140)={'pim6reg1\x00', 0x1}) r1 = bpf$MAP_CREATE(0x0, &(0x7f0000000340)=ANY=[@ANYBLOB="0600000004000000ff0f000007"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r1, @ANYBLOB="0000000000000000b7080000000400007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r2 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000180)={&(0x7f0000000080)='contention_end\x00', r2}, 0x10) mkdirat$cgroup_root(0xffffffffffffff9c, 0x0, 0x1ff) openat$tun(0xffffffffffffff9c, &(0x7f0000000080), 0x0, 0x0) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=@framed={{}, [@printk={@ld, {}, {}, {}, {}, {0x7, 0x0, 0xb, 0x3, 0x0, 0x0, 0x4}}, @call={0x85, 0x0, 0x0, 0x2a}]}, 0x0, 0x0, 0x0, 0x0, 0x40f00, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$PROG_LOAD(0x5, 0x0, 0x0) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, 0x0, 0x0) socketpair$nbd(0x1, 0x1, 0x0, &(0x7f0000000040)={0xffffffffffffffff, 0xffffffffffffffff}) ioctl$SIOCSIFHWADDR(r3, 0x8914, &(0x7f0000000100)={'pim6reg1\x00', @broadcast}) r4 = openat$cgroup_root(0xffffffffffffff9c, &(0x7f0000000000), 0x200002, 0x0) openat$cgroup_procs(r4, &(0x7f0000000840)='cgroup.procs\x00', 0x2, 0x0) r5 = bpf$PROG_LOAD(0x5, &(0x7f00000002c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000280)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x7, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) socketpair$nbd(0x1, 0x1, 0x0, 0x0) bpf$PROG_LOAD(0x5, 0x0, 0x0) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000040)='qdisc_destroy\x00', r5}, 0x10) close(r0) 747.842509ms ago: executing program 2 (id=1882): r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000000)=ANY=[@ANYBLOB="0a000000050000000200000007"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f0000000180)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000818110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000340)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000300)={&(0x7f0000000180)='workqueue_activate_work\x00', r1}, 0x10) r2 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x40f00, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000300)={&(0x7f0000000180)='workqueue_activate_work\x00', r2}, 0x10) bpf$MAP_LOOKUP_ELEM(0x5, &(0x7f00000000c0)={0xffffffffffffffff, 0x0, &(0x7f0000000040)=""/73}, 0x20) 734.048503ms ago: executing program 4 (id=1883): r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000180)=@base={0xb, 0x5, 0x400, 0x9, 0x1, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000005c0)={0xd, 0xc, &(0x7f0000000440)=@framed={{0x18, 0x0, 0x0, 0x0, 0xfffffff8}, [@ringbuf_output={{}, {}, {}, {}, {}, {}, {0x7, 0x0, 0xb, 0x4, 0x0, 0x0, 0x1}, {0x85, 0x0, 0x0, 0x3}}]}, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xfff, @void, @value}, 0x94) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000800000000000000000000018110000", @ANYRES32=r0], 0x0, 0x40000, 0x0, 0x0, 0x0, 0x20, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000880)={0x1, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000000)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x10, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) socketpair$unix(0x1, 0x2, 0x0, &(0x7f00000001c0)={0xffffffffffffffff, 0xffffffffffffffff}) setsockopt$sock_attach_bpf(r2, 0x1, 0x32, &(0x7f0000000180)=r1, 0x4) sendmsg$inet(r3, &(0x7f0000000100)={0x0, 0x0, 0x0}, 0x20000000) 702.922371ms ago: executing program 3 (id=1884): r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000640)=ANY=[@ANYBLOB="1e0000000000000005000000ff"], 0x50) bpf$PROG_LOAD_XDP(0x5, &(0x7f0000000a40)={0x3, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000005700000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x61, '\x00', 0x0, 0x25, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000005c0)={0x18, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x12, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000140)={&(0x7f0000000040)='mm_page_alloc\x00', r1}, 0x10) r2 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x6, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @xdp=0x25, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000280)={r2, 0x2000300, 0xe, 0x0, &(0x7f0000000000)="63eced8e46dc3f0adf3389f7b986", 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x2}, 0x50) 543.903294ms ago: executing program 2 (id=1885): r0 = bpf$MAP_CREATE(0x0, &(0x7f00000000c0)=ANY=[@ANYBLOB="0b000000080000000c000000ff05ffff01"], 0x48) bpf$MAP_UPDATE_BATCH(0x1a, &(0x7f0000000240)={0x0, 0x0, &(0x7f00000000c0), &(0x7f0000000140), 0x5, r0}, 0x38) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000810018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000005c0)={0x18, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000003c0)={&(0x7f0000000300)='qdisc_dequeue\x00', r1}, 0x10) r2 = bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0xc, 0xe, &(0x7f0000000640)=ANY=[@ANYBLOB="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"/2566], &(0x7f0000000340)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000080)={r2, 0x18000000000002a0, 0xe40, 0x0, &(0x7f0000000100)="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", 0x0, 0x8, 0x60000000}, 0x1e) 543.600451ms ago: executing program 3 (id=1886): r0 = openat$tun(0xffffffffffffff9c, &(0x7f0000000080), 0x0, 0x0) close(r0) r1 = openat$ppp(0xffffffffffffff9c, &(0x7f0000000080), 0x0, 0x0) bpf$MAP_CREATE(0x0, 0x0, 0x0) r2 = bpf$MAP_CREATE(0x1900000000000000, &(0x7f0000000040)=@base={0x1b, 0x0, 0x0, 0x2000, 0x0, 0xffffffffffffffff, 0xfffffffe, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x50) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=@framed={{}, [@ringbuf_output={{0x18, 0x1, 0x1, 0x0, r2}}]}, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$PROG_LOAD(0x5, &(0x7f00000005c0)={0x18, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, 0x0, 0x0) bpf$MAP_CREATE(0x0, 0x0, 0x0) recvmsg$unix(0xffffffffffffffff, &(0x7f0000000400)={0x0, 0x0, 0x0, 0x0, &(0x7f00000003c0)=[@rights={{0x10}}], 0x10}, 0x0) r3 = bpf$PROG_LOAD(0x5, &(0x7f00000005c0)={0x18, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0xa3500, 0x0, '\x00', 0x0, @fallback=0xc, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000140)={&(0x7f0000000040)='mm_page_alloc\x00', r3}, 0x10) bpf$MAP_CREATE(0x0, &(0x7f00000000c0)=@base={0x1b, 0x0, 0x0, 0x8000, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$PROG_LOAD(0x5, 0x0, 0x0) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, 0x0, 0x0) bpf$PROG_LOAD(0x5, 0x0, 0x0) bpf$PROG_LOAD(0x5, &(0x7f0000000180)={0x2d, 0x0, 0x0, 0x0, 0x8000000c, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x36, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) ioctl$TUNSETOFFLOAD(r1, 0xc004743e, 0x110e22fff6) ioctl$TUNGETVNETLE(r0, 0x40047451, &(0x7f0000000180)) 543.397862ms ago: executing program 4 (id=1887): r0 = bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0xc, 0xe, &(0x7f0000002ec0)=ANY=[@ANYBLOB="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"], &(0x7f0000000340)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) r1 = bpf$MAP_CREATE(0x0, &(0x7f00000002c0)=ANY=[@ANYBLOB="0a000000040000000800000008"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r1, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$MAP_UPDATE_ELEM_TAIL_CALL(0x2, &(0x7f0000000280)={{r1}, &(0x7f0000000000), &(0x7f0000000180)}, 0x20) r2 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x2d, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000001300)={&(0x7f0000000c00)='net_dev_start_xmit\x00', r2}, 0x10) r3 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000001300)={&(0x7f0000000c00)='net_dev_start_xmit\x00', r3}, 0x10) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000080)={r0, 0x18000000000002a0, 0xe2c, 0x60000000, &(0x7f0000000100)="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", 0x0, 0x24, 0x60000000}, 0x2c) 419.161447ms ago: executing program 2 (id=1888): bpf$PROG_LOAD(0x5, &(0x7f0000000180)={0x0, 0xc, &(0x7f0000000440)=@framed={{}, [@ringbuf_output={{}, {}, {}, {}, {}, {}, {}, {0x85, 0x0, 0x0, 0x3}}]}, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r0 = bpf$MAP_CREATE(0x0, &(0x7f00000000c0)=ANY=[@ANYBLOB="0b00000007000000010001000800000001"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f0000000e40)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0], 0x0, 0x0, 0x52, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x25, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r1 = openat$tun(0xffffffffffffff9c, &(0x7f0000000080), 0x0, 0x0) ioctl$TUNSETIFF(r1, 0x400454ca, &(0x7f0000000140)={'pim6reg1\x00', 0x1}) r2 = bpf$PROG_LOAD(0x5, &(0x7f0000000700)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x2, '\x00', 0x0, @fallback=0x1c, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000040)={&(0x7f0000000640)='console\x00', r2}, 0x18) r3 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000940)={&(0x7f0000000640)='console\x00', r3}, 0x10) socketpair$nbd(0x1, 0x1, 0x0, &(0x7f00000001c0)={0xffffffffffffffff, 0xffffffffffffffff}) ioctl$SIOCSIFHWADDR(r4, 0x8914, &(0x7f0000000100)={'pim6reg1\x00', @broadcast}) 299.57896ms ago: executing program 4 (id=1889): bpf$MAP_CREATE(0x0, &(0x7f0000000b00)=@base={0xb, 0x5, 0x5, 0x8, 0x1, 0xffffffffffffffff, 0xfffffffc, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x50) r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000000)=@base={0x5, 0x6, 0x40, 0x40, 0x41, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$MAP_UPDATE_BATCH(0x1a, &(0x7f00000004c0)={0x0, 0x0, &(0x7f0000000a40)="69032231ae7b520378", &(0x7f00000008c0), 0x1003, r0}, 0x38) bpf$MAP_LOOKUP_ELEM(0x4, &(0x7f0000000b80)={r0, &(0x7f00000014c0), &(0x7f0000000b40)=""/31}, 0x20) 239.916171ms ago: executing program 0 (id=1890): r0 = openat$tun(0xffffffffffffff9c, &(0x7f0000000080), 0x0, 0x0) ioctl$TUNSETIFF(r0, 0x400454ca, &(0x7f0000000140)={'pim6reg1\x00', 0x1}) r1 = bpf$MAP_CREATE(0x0, &(0x7f0000002080)=ANY=[@ANYBLOB="020000000400000006000000050000000010"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000001070000000000000000000018110000", @ANYRES32=r1, @ANYBLOB="0000000000000000b7080000001900007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0xfffffd98, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) socketpair$nbd(0x1, 0x1, 0x0, &(0x7f00000001c0)={0xffffffffffffffff, 0xffffffffffffffff}) ioctl$SIOCSIFHWADDR(r2, 0x8914, &(0x7f0000000100)={'pim6reg1\x00', @broadcast}) r3 = bpf$PROG_LOAD(0x5, &(0x7f00000002c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000280)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x7, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000040)='qdisc_destroy\x00', r3}, 0x10) close(r0) 209.77192ms ago: executing program 3 (id=1891): bpf$BPF_BTF_LOAD(0x12, &(0x7f00000011c0)={&(0x7f0000000540)=ANY=[@ANYBLOB="9feb01001800000000000000180000001800000006000000000000000000000b0300000004000000e6ffff0b"], &(0x7f00000010c0)=""/217, 0x36, 0xd9, 0x1, 0x0, 0x0, @void, @value}, 0x28) 49.617404ms ago: executing program 3 (id=1892): bpf$ENABLE_STATS(0x20, 0x0, 0x0) r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000840)=ANY=[@ANYBLOB="1b00000000000000000000000080"], 0x48) r1 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0x7, &(0x7f0000000540)=ANY=[@ANYBLOB="1800000000000000000000000000000018110000", @ANYRES32=r0, @ANYBLOB="0000000000000000b702000003000000850000008600000095"], &(0x7f0000000200)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000bc0)={&(0x7f0000000400)='signal_generate\x00', r1}, 0x18) syz_open_procfs$namespace(0x0, 0xfffffffffffffffe) 0s ago: executing program 4 (id=1893): r0 = bpf$MAP_CREATE(0x0, &(0x7f00000008c0)=ANY=[@ANYBLOB="1b00000000000000000000000080"], 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x6, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="1800000000000000000000000000000018120000", @ANYRES32=r0, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000002010000850000004300000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) r1 = bpf$PROG_LOAD(0x5, &(0x7f0000000180)={0x1f, 0xc, &(0x7f0000000440)=ANY=[], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x12, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_GET_PROG_INFO(0xa, &(0x7f0000000740)={r1, 0x0, 0x0}, 0x10) kernel console output (not intermixed with test programs): ve wlan1): Enslaving as an active interface with an up link [ 151.610014][ T8159] chnl_net:caif_netlink_parms(): no params data found [ 151.836216][ T8066] lo speed is unknown, defaulting to 1000 [ 151.930735][ T5842] Bluetooth: hci4: command 0x041b tx timeout [ 151.948822][ T8316] bond0: left allmulticast mode [ 151.968846][ T8316] mac80211_hwsim hwsim11 wlan1: left allmulticast mode [ 151.991296][ T8316] 8021q: adding VLAN 0 to HW filter on device bond0 [ 152.061997][ T8316] A link change request failed with some changes committed already. Interface caif0 may have been left with an inconsistent configuration, please check. [ 152.224267][ T8159] bridge0: port 1(bridge_slave_0) entered blocking state [ 152.250767][ T8159] bridge0: port 1(bridge_slave_0) entered disabled state [ 152.259178][ T8159] bridge_slave_0: entered allmulticast mode [ 152.274527][ T8159] bridge_slave_0: entered promiscuous mode [ 152.305384][ T8159] bridge0: port 2(bridge_slave_1) entered blocking state [ 152.359950][ T8159] bridge0: port 2(bridge_slave_1) entered disabled state [ 152.376326][ T8159] bridge_slave_1: entered allmulticast mode [ 152.397154][ T8159] bridge_slave_1: entered promiscuous mode [ 152.653135][ T8159] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 152.753780][ T8159] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 152.779746][ T8346] __nla_validate_parse: 3 callbacks suppressed [ 152.779765][ T8346] netlink: 28 bytes leftover after parsing attributes in process `syz.3.668'. [ 152.970155][ T8353] openvswitch: netlink: Either Ethernet header or EtherType is required. [ 152.993888][ T8353] netlink: 8 bytes leftover after parsing attributes in process `syz.4.670'. [ 153.024018][ T8353] netlink: 4 bytes leftover after parsing attributes in process `syz.4.670'. [ 153.134832][ T8159] team0: Port device team_slave_0 added [ 153.289785][ T6430] hsr_slave_0: left promiscuous mode [ 153.319964][ T6430] hsr_slave_1: left promiscuous mode [ 153.340978][ T6430] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 153.359207][ T6430] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 153.372838][ T6430] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 153.390565][ T6430] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 153.429636][ T8373] ip6t_srh: unknown srh invflags 5F00 [ 153.478960][ T6430] veth1_macvtap: left promiscuous mode [ 153.499232][ T6430] veth0_macvtap: left promiscuous mode [ 153.514512][ T6430] veth1_vlan: left promiscuous mode [ 153.530133][ T6430] veth0_vlan: left promiscuous mode [ 153.993494][ T6430] team0 (unregistering): Port device team_slave_1 removed [ 154.013552][ T5842] Bluetooth: hci4: command 0x041b tx timeout [ 154.038184][ T6430] team0 (unregistering): Port device team_slave_0 removed [ 154.341720][ T8159] team0: Port device team_slave_1 added [ 154.505429][ T8159] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 154.527679][ T8381] netlink: 32 bytes leftover after parsing attributes in process `syz.4.676'. [ 154.552781][ T8159] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 154.581785][ T8383] netlink: 8 bytes leftover after parsing attributes in process `syz.2.677'. [ 154.598219][ T8383] netlink: 24 bytes leftover after parsing attributes in process `syz.2.677'. [ 154.628826][ T8159] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 154.656875][ T8390] netlink: 12 bytes leftover after parsing attributes in process `syz.4.676'. [ 154.668572][ T8381] netlink: 28 bytes leftover after parsing attributes in process `syz.4.676'. [ 154.677695][ T8390] netlink: 28 bytes leftover after parsing attributes in process `syz.4.676'. [ 154.690377][ T8381] netlink: 'syz.4.676': attribute type 7 has an invalid length. [ 154.696159][ T8391] netlink: 8 bytes leftover after parsing attributes in process `syz.3.679'. [ 154.709171][ T8391] openvswitch: netlink: IP tunnel attribute has 16 unknown bytes. [ 154.709592][ T8390] netlink: 'syz.4.676': attribute type 7 has an invalid length. [ 154.728818][ T8159] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 154.769775][ T8159] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 154.780502][ T8381] netlink: 'syz.4.676': attribute type 8 has an invalid length. [ 154.801291][ T8390] netlink: 'syz.4.676': attribute type 8 has an invalid length. [ 154.854176][ T8159] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 154.962402][ T8399] netlink: 'syz.2.680': attribute type 1 has an invalid length. [ 155.226374][ T8400] bond0: (slave wlan1): Releasing backup interface [ 155.294043][ T8400] syz.0.681 (8400) used greatest stack depth: 20056 bytes left [ 155.312312][ T8159] hsr_slave_0: entered promiscuous mode [ 155.322288][ T8159] hsr_slave_1: entered promiscuous mode [ 155.328547][ T8159] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 155.387958][ T8159] Cannot create hsr debugfs directory [ 156.090446][ T5842] Bluetooth: hci4: command 0x041b tx timeout [ 156.657512][ T8461] IPVS: Schedule: port zero only supported in persistent services, check your ipvs configuration [ 156.794355][ T8159] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 156.888365][ T8159] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 157.043469][ T8159] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 157.064333][ T8480] openvswitch: netlink: Message has 5 unknown bytes. [ 157.131432][ T8159] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 157.503341][ T8159] 8021q: adding VLAN 0 to HW filter on device bond0 [ 157.599862][ T8507] netlink: 'syz.3.705': attribute type 13 has an invalid length. [ 157.620367][ T8507] netlink: 'syz.3.705': attribute type 58 has an invalid length. [ 157.632613][ T8159] 8021q: adding VLAN 0 to HW filter on device team0 [ 157.651784][ T8509] netlink: 'syz.0.707': attribute type 32 has an invalid length. [ 157.711746][ T8509] (unnamed net_device) (uninitialized): option coupled_control: invalid value (29) [ 157.768558][ T6425] bridge0: port 1(bridge_slave_0) entered blocking state [ 157.775802][ T6425] bridge0: port 1(bridge_slave_0) entered forwarding state [ 157.823801][ T6425] bridge0: port 2(bridge_slave_1) entered blocking state [ 157.831022][ T6425] bridge0: port 2(bridge_slave_1) entered forwarding state [ 158.008037][ T8159] hsr0: Slave A (hsr_slave_0) is not up; please bring it up to get a fully working HSR network [ 158.040401][ T8159] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network [ 158.170703][ T5842] Bluetooth: hci4: command 0x041b tx timeout [ 158.457617][ T8545] __nla_validate_parse: 15 callbacks suppressed [ 158.457634][ T8545] netlink: 8 bytes leftover after parsing attributes in process `syz.2.716'. [ 158.501848][ T8545] netlink: 8 bytes leftover after parsing attributes in process `syz.2.716'. [ 158.675792][ T8159] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 158.722013][ T8562] netlink: 68 bytes leftover after parsing attributes in process `syz.0.721'. [ 158.920478][ T8159] veth0_vlan: entered promiscuous mode [ 159.002575][ T8159] veth1_vlan: entered promiscuous mode [ 159.139653][ T8159] veth0_macvtap: entered promiscuous mode [ 159.231129][ T8159] veth1_macvtap: entered promiscuous mode [ 159.311997][ T8591] netlink: 'syz.4.728': attribute type 1 has an invalid length. [ 159.337847][ T8159] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 159.351086][ T8591] netlink: 12 bytes leftover after parsing attributes in process `syz.4.728'. [ 159.423874][ T8159] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 159.442913][ T8159] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 159.485491][ T8159] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 159.515843][ T8159] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 159.554822][ T8159] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 159.914752][ T6436] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 159.955229][ T6436] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 160.080358][ T6443] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 160.091146][ T6443] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 160.100395][ T8616] openvswitch: netlink: IP tunnel attribute has 8 unknown bytes. [ 160.152149][ T8623] ipvlan0: entered promiscuous mode [ 160.157431][ T8623] ipvlan0: entered allmulticast mode [ 160.192197][ T8623] veth0_vlan: entered allmulticast mode [ 160.532624][ T8639] netlink: 16 bytes leftover after parsing attributes in process `syz.0.741'. [ 160.557524][ T8638] tipc: Failed to obtain node identity [ 160.576560][ T8638] tipc: Enabling of bearer rejected, failed to enable media [ 160.869973][ T8651] netlink: 156 bytes leftover after parsing attributes in process `syz.0.745'. [ 160.928076][ T6437] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 161.133397][ T6437] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 161.474488][ T6437] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 161.594277][ T8678] netlink: 'syz.0.752': attribute type 39 has an invalid length. [ 161.653942][ T6437] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 161.704926][ T8685] netlink: 108 bytes leftover after parsing attributes in process `syz.0.752'. [ 161.744292][ T8685] netlink: 8 bytes leftover after parsing attributes in process `syz.0.752'. [ 162.043909][ T8695] ip6gretap1: entered promiscuous mode [ 162.070437][ T8695] ip6gretap1: entered allmulticast mode [ 162.262938][ T6437] bridge_slave_1: left allmulticast mode [ 162.280639][ T6437] bridge_slave_1: left promiscuous mode [ 162.285230][ T51] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 162.295766][ T51] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 162.305823][ T51] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 162.308460][ T6437] bridge0: port 2(bridge_slave_1) entered disabled state [ 162.327134][ T51] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 162.341928][ T51] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 162.389361][ T6437] bridge_slave_0: left allmulticast mode [ 162.428960][ T6437] bridge_slave_0: left promiscuous mode [ 162.457672][ T6437] bridge0: port 1(bridge_slave_0) entered disabled state [ 162.617374][ T8722] netlink: 8 bytes leftover after parsing attributes in process `syz.2.761'. [ 162.710586][ T8730] netlink: 'syz.3.762': attribute type 1 has an invalid length. [ 162.732687][ T8730] netlink: 244 bytes leftover after parsing attributes in process `syz.3.762'. [ 163.124010][ T6437] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 163.147702][ T6437] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 163.164344][ T6437] bond0 (unregistering): Released all slaves [ 163.187823][ T8713] macvlan0: entered promiscuous mode [ 163.194081][ T8713] macvlan0: entered allmulticast mode [ 163.364976][ T8708] lo speed is unknown, defaulting to 1000 [ 163.988753][ T8773] __nla_validate_parse: 1 callbacks suppressed [ 163.988771][ T8773] netlink: 24 bytes leftover after parsing attributes in process `syz.2.771'. [ 164.132578][ T8778] netlink: 8 bytes leftover after parsing attributes in process `syz.4.772'. [ 164.192955][ T8782] netlink: 'syz.4.772': attribute type 4 has an invalid length. [ 164.420882][ T5842] Bluetooth: hci4: command tx timeout [ 164.509369][ T8790] netlink: 24 bytes leftover after parsing attributes in process `syz.2.776'. [ 165.038201][ T8812] netlink: 'syz.3.779': attribute type 11 has an invalid length. [ 165.049330][ T6437] hsr_slave_0: left promiscuous mode [ 165.084303][ T6437] hsr_slave_1: left promiscuous mode [ 165.094414][ T6437] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 165.130413][ T6437] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 165.149545][ T6437] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 165.167022][ T6437] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 165.247673][ T6437] veth1_macvtap: left promiscuous mode [ 165.277497][ T6437] veth0_macvtap: left promiscuous mode [ 165.298992][ T6437] veth1_vlan: left promiscuous mode [ 165.315893][ T6437] veth0_vlan: left promiscuous mode [ 166.095215][ T6437] team0 (unregistering): Port device team_slave_1 removed [ 166.134467][ T6437] team0 (unregistering): Port device team_slave_0 removed [ 166.487537][ T8817] workqueue: Failed to create a rescuer kthread for wq "bond2": -EINTR [ 166.490412][ T5842] Bluetooth: hci4: command tx timeout [ 166.682807][ T8857] netlink: 28 bytes leftover after parsing attributes in process `syz.0.789'. [ 166.750538][ T8857] netlink: 'syz.0.789': attribute type 7 has an invalid length. [ 166.758236][ T8857] netlink: 16 bytes leftover after parsing attributes in process `syz.0.789'. [ 166.788220][ T8708] chnl_net:caif_netlink_parms(): no params data found [ 166.912788][ T8857] erspan0: entered promiscuous mode [ 166.919291][ T8857] gretap0: entered promiscuous mode [ 167.138726][ T8882] xt_bpf: check failed: parse error [ 167.378441][ T8895] netlink: 16 bytes leftover after parsing attributes in process `syz.2.798'. [ 167.437560][ T8899] netlink: 8 bytes leftover after parsing attributes in process `syz.4.799'. [ 167.551496][ T8899] netlink: 12 bytes leftover after parsing attributes in process `syz.4.799'. [ 167.648695][ T8912] openvswitch: netlink: Actions may not be safe on all matching packets [ 167.666205][ T8708] bridge0: port 1(bridge_slave_0) entered blocking state [ 167.684141][ T8708] bridge0: port 1(bridge_slave_0) entered disabled state [ 167.710610][ T8708] bridge_slave_0: entered allmulticast mode [ 167.718609][ T8708] bridge_slave_0: entered promiscuous mode [ 167.733834][ T8915] netlink: 18 bytes leftover after parsing attributes in process `syz.2.801'. [ 167.798522][ T8708] bridge0: port 2(bridge_slave_1) entered blocking state [ 167.843660][ T8708] bridge0: port 2(bridge_slave_1) entered disabled state [ 167.857648][ T8708] bridge_slave_1: entered allmulticast mode [ 167.874319][ T8708] bridge_slave_1: entered promiscuous mode [ 167.970288][ T8926] netlink: 396 bytes leftover after parsing attributes in process `syz.3.804'. [ 168.119012][ T8708] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 168.134827][ T8933] netlink: 'syz.4.805': attribute type 1 has an invalid length. [ 168.166361][ T8708] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 168.185247][ T8933] netlink: 'syz.4.805': attribute type 3 has an invalid length. [ 168.220637][ T8933] NCSI netlink: No device for ifindex 813332851 [ 168.368229][ T8941] netlink: 'syz.3.809': attribute type 10 has an invalid length. [ 168.452394][ T8941] team0: Port device geneve0 added [ 168.484762][ T8708] team0: Port device team_slave_0 added [ 168.564933][ T8708] team0: Port device team_slave_1 added [ 168.580607][ T5842] Bluetooth: hci4: command tx timeout [ 168.823255][ T8708] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 168.852422][ T8708] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 168.925603][ T8708] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 168.945900][ T8962] (unnamed net_device) (uninitialized): (slave gre0): Device is not bonding slave [ 168.957984][ T8962] (unnamed net_device) (uninitialized): option active_slave: invalid value (gre0) [ 169.066873][ T8708] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 169.078547][ T8708] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 169.107244][ T8708] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 169.388983][ T8992] IPVS: set_ctl: invalid protocol: 58 224.0.0.2:20000 [ 169.416145][ T8708] hsr_slave_0: entered promiscuous mode [ 169.421996][ T8994] netlink: 'syz.3.823': attribute type 11 has an invalid length. [ 169.452319][ T8708] hsr_slave_1: entered promiscuous mode [ 169.458724][ T8708] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 169.476504][ T8996] netlink: 'syz.2.825': attribute type 2 has an invalid length. [ 169.526227][ T8708] Cannot create hsr debugfs directory [ 169.859061][ T9011] __nla_validate_parse: 5 callbacks suppressed [ 169.859077][ T9011] netlink: 24 bytes leftover after parsing attributes in process `syz.2.828'. [ 169.915001][ T9011] netlink: 10 bytes leftover after parsing attributes in process `syz.2.828'. [ 170.013293][ T9025] netlink: 8 bytes leftover after parsing attributes in process `syz.4.831'. [ 170.200352][ T9034] netlink: 8 bytes leftover after parsing attributes in process `syz.2.834'. [ 170.209456][ T9034] openvswitch: netlink: Flow actions may not be safe on all matching packets. [ 170.651061][ T5842] Bluetooth: hci4: command tx timeout [ 170.767700][ T9053] netlink: 24 bytes leftover after parsing attributes in process `syz.4.837'. [ 170.804596][ T9054] syzkaller0: entered promiscuous mode [ 170.827250][ T9054] syzkaller0: entered allmulticast mode [ 171.071439][ T9054] netlink: 64 bytes leftover after parsing attributes in process `syz.2.839'. [ 171.557100][ T8708] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 171.604724][ T8708] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 171.632679][ T8708] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 171.686900][ T9094] netlink: 'syz.3.845': attribute type 1 has an invalid length. [ 171.690161][ T8708] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 171.707992][ T9094] netlink: 212 bytes leftover after parsing attributes in process `syz.3.845'. [ 171.718209][ T9094] netlink: 'syz.3.845': attribute type 1 has an invalid length. [ 172.076843][ T8708] 8021q: adding VLAN 0 to HW filter on device bond0 [ 172.123552][ T9110] netlink: 12 bytes leftover after parsing attributes in process `syz.2.850'. [ 172.178655][ T8708] 8021q: adding VLAN 0 to HW filter on device team0 [ 172.249793][ T6443] bridge0: port 1(bridge_slave_0) entered blocking state [ 172.256989][ T6443] bridge0: port 1(bridge_slave_0) entered forwarding state [ 172.313628][ T9117] syzkaller1: entered promiscuous mode [ 172.364371][ T6430] bridge0: port 2(bridge_slave_1) entered blocking state [ 172.371574][ T6430] bridge0: port 2(bridge_slave_1) entered forwarding state [ 172.910471][ T9151] netlink: 256 bytes leftover after parsing attributes in process `syz.3.858'. [ 173.175574][ T9158] lo speed is unknown, defaulting to 1000 [ 173.475729][ T8708] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 173.641917][ T8708] veth0_vlan: entered promiscuous mode [ 173.678837][ T8708] veth1_vlan: entered promiscuous mode [ 173.787687][ T8708] veth0_macvtap: entered promiscuous mode [ 173.794430][ T9188] netlink: 28 bytes leftover after parsing attributes in process `syz.0.867'. [ 173.819578][ T8708] veth1_macvtap: entered promiscuous mode [ 173.882528][ T8708] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 173.914153][ T8708] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 173.938336][ T8708] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 173.963532][ T8708] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 173.995234][ T8708] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 174.020261][ T8708] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 174.430441][ T6442] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 174.438614][ T9207] xt_CT: No such helper "snmp" [ 174.460538][ T6442] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 174.576425][ T6437] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 174.610562][ T6437] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 174.848805][ T9224] IPv6: sit1: Disabled Multicast RS [ 174.910141][ T9224] sit1: entered allmulticast mode [ 175.476205][ T9251] netlink: 'syz.3.881': attribute type 1 has an invalid length. [ 175.506107][ T6437] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 175.715122][ T6437] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 175.868392][ T6437] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 175.975008][ T6437] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 176.145505][ T6437] bridge_slave_1: left allmulticast mode [ 176.151566][ T6437] bridge_slave_1: left promiscuous mode [ 176.157392][ T6437] bridge0: port 2(bridge_slave_1) entered disabled state [ 176.173089][ T6437] bridge_slave_0: left allmulticast mode [ 176.178783][ T6437] bridge_slave_0: left promiscuous mode [ 176.189012][ T6437] bridge0: port 1(bridge_slave_0) entered disabled state [ 176.371680][ T9283] netlink: 36 bytes leftover after parsing attributes in process `syz.2.882'. [ 176.864527][ T51] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 176.876734][ T51] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 176.885389][ T51] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 176.903127][ T51] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 176.914603][ T51] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 177.017198][ T6437] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 177.028200][ T6437] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 177.039033][ T6437] bond0 (unregistering): Released all slaves [ 177.176374][ T9297] lo speed is unknown, defaulting to 1000 [ 177.347673][ T9313] netlink: 2 bytes leftover after parsing attributes in process `syz.2.891'. [ 177.376519][ T9313] openvswitch: netlink: Flow actions may not be safe on all matching packets. [ 177.647885][ T9326] netlink: 4 bytes leftover after parsing attributes in process `syz.0.893'. [ 177.666700][ T9326] netlink: 32 bytes leftover after parsing attributes in process `syz.0.893'. [ 177.716355][ T9326] gretap1: entered promiscuous mode [ 177.729893][ T9326] gretap1: entered allmulticast mode [ 178.235182][ T9355] netlink: 'syz.0.900': attribute type 1 has an invalid length. [ 178.305257][ T9358] netlink: 8 bytes leftover after parsing attributes in process `syz.3.901'. [ 178.409474][ T9355] 8021q: adding VLAN 0 to HW filter on device bond1 [ 178.602549][ T9357] bond1: (slave gretap2): making interface the new active one [ 178.642027][ T9357] bond1: (slave gretap2): Enslaving as an active interface with an up link [ 178.733971][ T9357] syz.0.900 (9357) used greatest stack depth: 19064 bytes left [ 178.751083][ T6437] hsr_slave_0: left promiscuous mode [ 178.781210][ T6437] hsr_slave_1: left promiscuous mode [ 178.800997][ T6437] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 178.828775][ T6437] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 178.837594][ T9376] netlink: 24 bytes leftover after parsing attributes in process `syz.3.904'. [ 178.878575][ T6437] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 178.902453][ T9379] RDS: rds_bind could not find a transport for ::ffff:172.20.20.170, load rds_tcp or rds_rdma? [ 178.907968][ T6437] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 178.967945][ T6437] veth1_macvtap: left promiscuous mode [ 178.973918][ T5842] Bluetooth: hci4: command tx timeout [ 178.985718][ T6437] veth0_macvtap: left promiscuous mode [ 178.995990][ T6437] veth1_vlan: left promiscuous mode [ 179.001677][ T6437] veth0_vlan: left promiscuous mode [ 179.021989][ T9372] netlink: 24 bytes leftover after parsing attributes in process `syz.3.904'. [ 179.116556][ T9389] netlink: 24 bytes leftover after parsing attributes in process `syz.2.907'. [ 179.446740][ T6437] team0 (unregistering): Port device team_slave_1 removed [ 179.479377][ T6437] team0 (unregistering): Port device team_slave_0 removed [ 179.806220][ T9364] syzkaller1: entered promiscuous mode [ 179.813697][ T9364] syzkaller1: entered allmulticast mode [ 180.560809][ T9422] netlink: 8 bytes leftover after parsing attributes in process `syz.2.914'. [ 180.579946][ T9422] netlink: 4 bytes leftover after parsing attributes in process `syz.2.914'. [ 181.052537][ T9451] bond1: (slave gretap2): Releasing active interface [ 181.065881][ T5842] Bluetooth: hci4: command tx timeout [ 181.134596][ T9447] : renamed from bridge_slave_0 (while UP) [ 181.244444][ T9297] chnl_net:caif_netlink_parms(): no params data found [ 181.323591][ T9459] syzkaller1: entered promiscuous mode [ 181.329112][ T9459] syzkaller1: entered allmulticast mode [ 181.824088][ T9297] bridge0: port 1(bridge_slave_0) entered blocking state [ 181.857522][ T9297] bridge0: port 1(bridge_slave_0) entered disabled state [ 181.877899][ T9297] bridge_slave_0: entered allmulticast mode [ 181.892120][ T9491] netlink: 844 bytes leftover after parsing attributes in process `syz.4.928'. [ 181.909359][ T9297] bridge_slave_0: entered promiscuous mode [ 181.920425][ T9491] openvswitch: netlink: Flow key attr not present in new flow. [ 181.965507][ T9297] bridge0: port 2(bridge_slave_1) entered blocking state [ 181.976911][ T9297] bridge0: port 2(bridge_slave_1) entered disabled state [ 181.989864][ T9297] bridge_slave_1: entered allmulticast mode [ 182.009018][ T9297] bridge_slave_1: entered promiscuous mode [ 182.113211][ T9297] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 182.154155][ T9297] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 182.369001][ T9506] team0: Device vti0 is of different type [ 182.377566][ T9510] netlink: 'syz.0.932': attribute type 47 has an invalid length. [ 182.446156][ T9297] team0: Port device team_slave_0 added [ 182.475875][ T9297] team0: Port device team_slave_1 added [ 182.486399][ T9512] xt_CT: No such helper "syz0" [ 182.689047][ T9522] netlink: 8 bytes leftover after parsing attributes in process `syz.3.934'. [ 182.701785][ T9297] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 182.719677][ T9297] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 182.767715][ T9522] netlink: 16 bytes leftover after parsing attributes in process `syz.3.934'. [ 182.767859][ T9297] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 182.797645][ T9297] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 182.889667][ T9297] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 182.946440][ T9297] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 183.023313][ T9540] netlink: 'syz.3.938': attribute type 83 has an invalid length. [ 183.150326][ T5842] Bluetooth: hci4: command tx timeout [ 183.191129][ T9543] netlink: 'syz.2.939': attribute type 1 has an invalid length. [ 183.198818][ T9543] netlink: 228 bytes leftover after parsing attributes in process `syz.2.939'. [ 183.210950][ T9543] netlink: 8 bytes leftover after parsing attributes in process `syz.2.939'. [ 183.407208][ T9297] hsr_slave_0: entered promiscuous mode [ 183.416910][ T9297] hsr_slave_1: entered promiscuous mode [ 183.425511][ T9297] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 183.433431][ T9297] Cannot create hsr debugfs directory [ 183.530941][ T9568] netlink: 'syz.4.945': attribute type 11 has an invalid length. [ 183.639861][ T9573] raw_sendmsg: syz.2.947 forgot to set AF_INET. Fix it! [ 183.672053][ T9573] netlink: 'syz.2.947': attribute type 1 has an invalid length. [ 183.799641][ T9577] bond1: (slave ip6gretap1): Enslaving as a backup interface with an up link [ 183.858849][ T9582] netlink: 'syz.0.951': attribute type 1 has an invalid length. [ 183.883076][ T9573] veth7: entered promiscuous mode [ 183.924324][ T9585] IPVS: set_ctl: invalid protocol: 43 172.20.20.170:20003 [ 183.938476][ T9573] bond1: (slave veth7): Enslaving as a backup interface with a down link [ 184.273047][ T9600] netlink: 32 bytes leftover after parsing attributes in process `syz.0.956'. [ 184.344338][ T9609] Unsupported ieee802154 address type: 0 [ 184.447183][ T9611] openvswitch: netlink: Flow actions may not be safe on all matching packets. [ 184.790003][ T9630] openvswitch: netlink: VXLAN extension message has 3 unknown bytes. [ 185.210446][ T5842] Bluetooth: hci4: command tx timeout [ 185.458615][ T9663] netlink: 56 bytes leftover after parsing attributes in process `syz.2.969'. [ 185.504535][ T9663] netlink: 4 bytes leftover after parsing attributes in process `syz.2.969'. [ 185.544443][ T9663] netlink: 31 bytes leftover after parsing attributes in process `syz.2.969'. [ 185.558922][ T9671] openvswitch: netlink: Tunnel attr 0 has unexpected len 16 expected 8 [ 185.591907][ T9663] netlink: 'syz.2.969': attribute type 2 has an invalid length. [ 185.600338][ T9671] openvswitch: netlink: IP tunnel TTL not specified. [ 185.630373][ T9663] netlink: 31 bytes leftover after parsing attributes in process `syz.2.969'. [ 185.865289][ T9297] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 185.913656][ T9297] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 185.979378][ T9297] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 186.039817][ T9297] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 186.397719][ T9297] 8021q: adding VLAN 0 to HW filter on device bond0 [ 186.453068][ T9297] 8021q: adding VLAN 0 to HW filter on device team0 [ 186.487806][ T6425] bridge0: port 1(bridge_slave_0) entered blocking state [ 186.495093][ T6425] bridge0: port 1(bridge_slave_0) entered forwarding state [ 186.564081][ T6425] bridge0: port 2(bridge_slave_1) entered blocking state [ 186.571325][ T6425] bridge0: port 2(bridge_slave_1) entered forwarding state [ 186.993461][ T9739] A link change request failed with some changes committed already. Interface lo may have been left with an inconsistent configuration, please check. [ 187.056100][ T9739] ieee802154 phy0 wpan0: encryption failed: -22 [ 187.093312][ T9739] Unknown options in mask 1f4 [ 187.188206][ T9748] xt_policy: too many policy elements [ 187.530505][ T9760] netlink: 'syz.0.993': attribute type 2 has an invalid length. [ 187.544960][ T9297] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 187.586292][ T9760] __nla_validate_parse: 6 callbacks suppressed [ 187.586305][ T9760] netlink: 12 bytes leftover after parsing attributes in process `syz.0.993'. [ 187.623780][ T9760] tc_dump_action: action bad kind [ 187.793410][ T9297] veth0_vlan: entered promiscuous mode [ 187.827409][ T9297] veth1_vlan: entered promiscuous mode [ 187.913578][ T9777] netlink: 164 bytes leftover after parsing attributes in process `syz.0.997'. [ 187.942971][ T9779] netlink: 12 bytes leftover after parsing attributes in process `syz.4.998'. [ 187.975532][ T9297] veth0_macvtap: entered promiscuous mode [ 188.052572][ T9297] veth1_macvtap: entered promiscuous mode [ 188.068769][ T9782] netlink: 24 bytes leftover after parsing attributes in process `syz.2.999'. [ 188.144674][ T9779] netlink: 'syz.4.998': attribute type 9 has an invalid length. [ 188.166971][ T9780] netlink: 12 bytes leftover after parsing attributes in process `syz.2.999'. [ 188.205030][ T9297] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 188.230339][ T9780] netlink: 5 bytes leftover after parsing attributes in process `syz.2.999'. [ 188.256763][ T9790] netlink: 24 bytes leftover after parsing attributes in process `syz.3.1002'. [ 188.268097][ T9297] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 188.290440][ T9780] netlink: 8 bytes leftover after parsing attributes in process `syz.2.999'. [ 188.299244][ T9780] netlink: 40 bytes leftover after parsing attributes in process `syz.2.999'. [ 188.328690][ T9790] netlink: 8 bytes leftover after parsing attributes in process `syz.3.1002'. [ 188.332031][ T9297] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 188.371253][ T9297] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 188.380016][ T9297] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 188.410261][ T9297] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 188.808280][ T78] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 188.838411][ T78] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 188.982851][ T6425] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 189.005925][ T6425] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 189.016854][ T9819] erspan0: entered promiscuous mode [ 189.035863][ T9819] gretap0: entered promiscuous mode [ 189.048014][ T9819] debugfs: Directory 'hsr1' with parent 'hsr' already present! [ 189.077613][ T9819] Cannot create hsr debugfs directory [ 189.134056][ T9824] netlink: 'syz.3.1011': attribute type 7 has an invalid length. [ 189.752801][ T6439] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 189.782748][ T9849] netlink: 'syz.0.1016': attribute type 1 has an invalid length. [ 189.884134][ T6439] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 190.158525][ T6439] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 190.303430][ T6439] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 190.601191][ T6439] bridge_slave_1: left allmulticast mode [ 190.606899][ T6439] bridge_slave_1: left promiscuous mode [ 190.630993][ T6439] bridge0: port 2(bridge_slave_1) entered disabled state [ 190.731886][ T6439] bridge_slave_0: left allmulticast mode [ 190.750324][ T6439] bridge_slave_0: left promiscuous mode [ 190.756187][ T6439] bridge0: port 1(bridge_slave_0) entered disabled state [ 191.238916][ T51] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 191.257120][ T51] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 191.265004][ T51] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 191.278190][ T51] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 191.287237][ T51] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 191.398905][ T6439] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 191.410973][ T6439] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 191.421140][ T6439] bond0 (unregistering): Released all slaves [ 191.554951][ T9897] lo speed is unknown, defaulting to 1000 [ 191.832550][ T9908] netlink: 'syz.3.1028': attribute type 10 has an invalid length. [ 191.970900][ T9908] 8021q: adding VLAN 0 to HW filter on device team0 [ 192.035939][ T9908] bond0: (slave team0): Enslaving as an active interface with an up link [ 192.091558][ T9920] netlink: 'syz.4.1030': attribute type 15 has an invalid length. [ 192.655026][ T9950] A link change request failed with some changes committed already. Interface lo may have been left with an inconsistent configuration, please check. [ 192.978350][ T6439] hsr_slave_0: left promiscuous mode [ 193.020044][ T6439] hsr_slave_1: left promiscuous mode [ 193.040641][ T6439] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 193.072677][ T6439] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 193.093165][ T6439] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 193.115127][ T6439] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 193.155587][ T6439] veth1_macvtap: left promiscuous mode [ 193.163780][ T6439] veth0_macvtap: left promiscuous mode [ 193.169539][ T6439] veth1_vlan: left promiscuous mode [ 193.177529][ T6439] veth0_vlan: left promiscuous mode [ 193.373712][ T5842] Bluetooth: hci4: command tx timeout [ 193.704059][ T9989] netlink: 'syz.4.1046': attribute type 1 has an invalid length. [ 193.713704][ T9989] netlink: 'syz.4.1046': attribute type 2 has an invalid length. [ 193.828801][ T9991] netlink: 'syz.4.1047': attribute type 33 has an invalid length. [ 193.838790][ T9991] __nla_validate_parse: 10 callbacks suppressed [ 193.838805][ T9991] netlink: 152 bytes leftover after parsing attributes in process `syz.4.1047'. [ 193.896413][ T6439] team0 (unregistering): Port device team_slave_1 removed [ 193.934653][ T6439] team0 (unregistering): Port device team_slave_0 removed [ 194.265416][ T1301] ieee802154 phy0 wpan0: encryption failed: -22 [ 194.609501][T10005] netlink: 4 bytes leftover after parsing attributes in process `syz.3.1050'. [ 194.651934][T10006] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 194.755117][T10015] netlink: 'syz.3.1050': attribute type 10 has an invalid length. [ 194.888708][T10015] team0: Device bond0 is already an upper device of the team interface [ 195.022497][ T9897] chnl_net:caif_netlink_parms(): no params data found [ 195.119681][T10030] macvlan0: left promiscuous mode [ 195.128499][T10030] macvlan0: left allmulticast mode [ 195.134771][T10030] netlink: 28 bytes leftover after parsing attributes in process `syz.4.1053'. [ 195.378947][T10043] netlink: 8 bytes leftover after parsing attributes in process `syz.0.1056'. [ 195.403287][ T9897] bridge0: port 1(bridge_slave_0) entered blocking state [ 195.423403][ T9897] bridge0: port 1(bridge_slave_0) entered disabled state [ 195.431601][ T9897] bridge_slave_0: entered allmulticast mode [ 195.442273][ T9897] bridge_slave_0: entered promiscuous mode [ 195.450405][ T5842] Bluetooth: hci4: command tx timeout [ 195.460970][T10039] netlink: 24 bytes leftover after parsing attributes in process `syz.0.1056'. [ 195.469640][ T9897] bridge0: port 2(bridge_slave_1) entered blocking state [ 195.487285][ T9897] bridge0: port 2(bridge_slave_1) entered disabled state [ 195.500345][ T9897] bridge_slave_1: entered allmulticast mode [ 195.508236][ T9897] bridge_slave_1: entered promiscuous mode [ 195.593125][ T9897] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 195.614891][ T9897] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 195.695505][ T9897] team0: Port device team_slave_0 added [ 195.708211][ T9897] team0: Port device team_slave_1 added [ 195.781514][ T9897] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 195.788623][ T9897] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 195.845717][ T9897] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 195.895736][ T9897] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 195.907884][ T9897] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 195.980596][ T9897] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 196.317924][ T9897] hsr_slave_0: entered promiscuous mode [ 196.347209][ T9897] hsr_slave_1: entered promiscuous mode [ 196.382802][ T9897] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 196.394546][T10079] netlink: 56 bytes leftover after parsing attributes in process `syz.4.1068'. [ 196.406249][ T9897] Cannot create hsr debugfs directory [ 196.420890][T10076] netlink: 4 bytes leftover after parsing attributes in process `syz.0.1067'. [ 196.439985][T10079] netlink: 12 bytes leftover after parsing attributes in process `syz.4.1068'. [ 196.486304][T10079] netlink: 31 bytes leftover after parsing attributes in process `syz.4.1068'. [ 196.518017][T10079] netlink: 'syz.4.1068': attribute type 2 has an invalid length. [ 196.549786][T10079] netlink: 31 bytes leftover after parsing attributes in process `syz.4.1068'. [ 197.216168][T10123] netlink: 'syz.4.1077': attribute type 4 has an invalid length. [ 197.535010][ T5842] Bluetooth: hci4: command tx timeout [ 197.609258][T10141] vlan3: entered promiscuous mode [ 197.649985][T10141] bridge0: entered promiscuous mode [ 197.660481][T10141] vlan3: entered allmulticast mode [ 197.706956][T10141] bridge0: entered allmulticast mode [ 198.350036][T10186] netlink: 'syz.4.1093': attribute type 29 has an invalid length. [ 198.387903][T10186] bridge0: the hash_elasticity option has been deprecated and is always 16 [ 198.415853][T10186] bridge0: port 2(bridge_slave_1) entered disabled state [ 198.424799][T10186] bridge0: port 1(bridge_slave_0) entered disabled state [ 199.096353][ T9897] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 199.142598][ T9897] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 199.194386][ T9897] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 199.242550][T10221] __nla_validate_parse: 6 callbacks suppressed [ 199.242569][T10221] netlink: 104 bytes leftover after parsing attributes in process `syz.4.1101'. [ 199.266615][ T9897] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 199.507748][T10234] netlink: 12 bytes leftover after parsing attributes in process `syz.2.1105'. [ 199.602172][ T9897] 8021q: adding VLAN 0 to HW filter on device bond0 [ 199.610307][ T5842] Bluetooth: hci4: command tx timeout [ 199.710883][ T9897] 8021q: adding VLAN 0 to HW filter on device team0 [ 199.796326][ T6437] bridge0: port 1(bridge_slave_0) entered blocking state [ 199.803535][ T6437] bridge0: port 1(bridge_slave_0) entered forwarding state [ 199.872306][ T6425] bridge0: port 2(bridge_slave_1) entered blocking state [ 199.879569][ T6425] bridge0: port 2(bridge_slave_1) entered forwarding state [ 199.972383][T10258] netlink: 4 bytes leftover after parsing attributes in process `syz.4.1110'. [ 200.072688][T10258] netlink: 4 bytes leftover after parsing attributes in process `syz.4.1110'. [ 200.112439][T10258] netlink: 20 bytes leftover after parsing attributes in process `syz.4.1110'. [ 200.351116][T10274] netlink: 'syz.3.1115': attribute type 1 has an invalid length. [ 200.480865][T10288] netlink: 'syz.4.1117': attribute type 1 has an invalid length. [ 200.697046][T10288] 8021q: adding VLAN 0 to HW filter on device bond4 [ 200.837422][ T9897] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 200.837588][T10303] netlink: 24 bytes leftover after parsing attributes in process `syz.0.1121'. [ 200.892858][T10288] ip6erspan0: entered promiscuous mode [ 200.921483][T10288] bond4: (slave ip6erspan0): making interface the new active one [ 200.936591][T10288] bond4: (slave ip6erspan0): Enslaving as an active interface with an up link [ 201.375818][T10328] netlink: 56 bytes leftover after parsing attributes in process `syz.4.1126'. [ 201.385016][T10328] netlink: 8 bytes leftover after parsing attributes in process `syz.4.1126'. [ 201.424575][ T9897] veth0_vlan: entered promiscuous mode [ 201.462685][ T9897] veth1_vlan: entered promiscuous mode [ 201.471542][T10333] x_tables: ip6_tables: TCPMSS target: only valid for protocol 6 [ 201.582407][T10341] xt_l2tp: invalid flags combination: c [ 201.587760][ T9897] veth0_macvtap: entered promiscuous mode [ 201.637224][ T9897] veth1_macvtap: entered promiscuous mode [ 201.750047][ T9897] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 201.803247][ T9897] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 201.840495][ T9897] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 201.861882][ T9897] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 201.918026][ T9897] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 201.962204][ T9897] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 202.116686][T10367] netlink: 20 bytes leftover after parsing attributes in process `syz.2.1135'. [ 202.315392][ T6439] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 202.357031][ T6439] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 202.518793][T10381] netlink: 8 bytes leftover after parsing attributes in process `syz.4.1139'. [ 202.660141][ T6439] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 202.700071][ T6439] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 202.917016][T10394] lo speed is unknown, defaulting to 1000 [ 203.212624][T10409] ipt_REJECT: TCP_RESET invalid for non-tcp [ 203.623926][ T6425] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 203.693461][T10418] netlink: 'syz.0.1147': attribute type 1 has an invalid length. [ 203.862957][ T6425] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 203.917138][ T6425] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 204.005705][ T6425] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 204.186360][ T6425] bridge_slave_1: left allmulticast mode [ 204.192891][ T6425] bridge_slave_1: left promiscuous mode [ 204.198785][ T6425] bridge0: port 2(bridge_slave_1) entered disabled state [ 204.209880][ T6425] bridge_slave_0: left allmulticast mode [ 204.215795][ T6425] bridge_slave_0: left promiscuous mode [ 204.221987][ T6425] bridge0: port 1(bridge_slave_0) entered disabled state [ 204.508205][T10438] __nla_validate_parse: 4 callbacks suppressed [ 204.508222][T10438] netlink: 24 bytes leftover after parsing attributes in process `syz.4.1151'. [ 204.808282][T10452] sctp: [Deprecated]: syz.4.1153 (pid 10452) Use of struct sctp_assoc_value in delayed_ack socket option. [ 204.808282][T10452] Use struct sctp_sack_info instead [ 204.838038][T10454] x_tables: unsorted underflow at hook 2 [ 204.856440][ T6425] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 204.920962][ T6425] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 204.941927][ T6425] bond0 (unregistering): Released all slaves [ 204.956976][T10460] netlink: 4 bytes leftover after parsing attributes in process `syz.2.1156'. [ 205.023129][T10461] netlink: 12 bytes leftover after parsing attributes in process `syz.2.1156'. [ 205.029053][T10435] vlan4: entered allmulticast mode [ 205.139743][ T51] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 205.144561][T10461] geneve2: entered promiscuous mode [ 205.153401][ T51] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 205.161815][ T51] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 205.172999][ T51] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 205.185524][ T51] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 205.511511][T10466] lo speed is unknown, defaulting to 1000 [ 205.657473][T10489] netlink: 16 bytes leftover after parsing attributes in process `syz.0.1163'. [ 206.013678][T10508] netlink: 4 bytes leftover after parsing attributes in process `syz.0.1170'. [ 206.397855][T10498] iwpm_register_pid: Unable to send a nlmsg (client = 2) [ 206.443279][T10519] netlink: 52 bytes leftover after parsing attributes in process `syz.3.1173'. [ 206.477795][T10498] infiniband srz1: RDMA CMA: cma_listen_on_dev, error -98 [ 206.777626][T10533] netlink: 4 bytes leftover after parsing attributes in process `syz.0.1175'. [ 207.047764][ T6425] hsr_slave_0: left promiscuous mode [ 207.059009][ T6425] hsr_slave_1: left promiscuous mode [ 207.074545][ T6425] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 207.082581][ T6425] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 207.097390][ T6425] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 207.111378][ T6425] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 207.141820][ T6425] veth1_macvtap: left promiscuous mode [ 207.147479][ T6425] veth0_macvtap: left promiscuous mode [ 207.154051][ T6425] veth1_vlan: left promiscuous mode [ 207.157018][T10546] netlink: 28 bytes leftover after parsing attributes in process `syz.3.1179'. [ 207.159484][ T6425] veth0_vlan: left promiscuous mode [ 207.174892][T10546] netlink: 28 bytes leftover after parsing attributes in process `syz.3.1179'. [ 207.235332][T10547] xt_hashlimit: size too large, truncated to 1048576 [ 207.290322][ T5842] Bluetooth: hci4: command tx timeout [ 207.723155][ T6425] team0 (unregistering): Port device team_slave_1 removed [ 207.759403][ T6425] team0 (unregistering): Port device team_slave_0 removed [ 208.209597][T10466] chnl_net:caif_netlink_parms(): no params data found [ 208.364701][T10556] netlink: 36 bytes leftover after parsing attributes in process `syz.4.1181'. [ 208.424520][T10561] Unknown options in mask 1f4 [ 208.715973][T10466] bridge0: port 1(bridge_slave_0) entered blocking state [ 208.751216][T10466] bridge0: port 1(bridge_slave_0) entered disabled state [ 208.766956][T10466] bridge_slave_0: entered allmulticast mode [ 208.793363][T10466] bridge_slave_0: entered promiscuous mode [ 208.838501][T10466] bridge0: port 2(bridge_slave_1) entered blocking state [ 208.848328][T10466] bridge0: port 2(bridge_slave_1) entered disabled state [ 208.881050][T10466] bridge_slave_1: entered allmulticast mode [ 208.895940][T10466] bridge_slave_1: entered promiscuous mode [ 209.178262][T10466] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 209.232493][T10466] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 209.334761][T10597] netlink: 'syz.3.1189': attribute type 15 has an invalid length. [ 209.370507][ T5842] Bluetooth: hci4: command tx timeout [ 209.449610][T10466] team0: Port device team_slave_0 added [ 209.555539][T10612] tipc: Started in network mode [ 209.574921][T10612] tipc: Node identity 2af61b6c7b37, cluster identity 4711 [ 209.607552][T10612] tipc: Enabled bearer , priority 0 [ 209.629190][T10619] netlink: 'syz.0.1191': attribute type 21 has an invalid length. [ 209.668482][T10466] team0: Port device team_slave_1 added [ 209.688391][T10610] +: renamed from syzkaller0 [ 209.758345][T10610] tipc: Disabling bearer [ 209.806877][T10619] __nla_validate_parse: 4 callbacks suppressed [ 209.806897][T10619] netlink: 132 bytes leftover after parsing attributes in process `syz.0.1191'. [ 209.946350][T10630] netlink: 16 bytes leftover after parsing attributes in process `syz.3.1196'. [ 210.074103][T10466] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 210.093273][T10466] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 210.190872][T10466] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 210.227781][T10466] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 210.247454][T10466] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 210.350757][T10466] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 210.473755][T10645] netdevsim netdevsim0 netdevsim0: set [0, 0] type 1 family 0 port 8472 - 0 [ 210.483409][T10645] netdevsim netdevsim0 netdevsim1: set [0, 0] type 1 family 0 port 8472 - 0 [ 210.492665][T10645] netdevsim netdevsim0 netdevsim2: set [0, 0] type 1 family 0 port 8472 - 0 [ 210.501886][T10645] netdevsim netdevsim0 netdevsim3: set [0, 0] type 1 family 0 port 8472 - 0 [ 210.531233][T10645] vxlan1: entered promiscuous mode [ 210.537155][T10645] vxlan1: entered allmulticast mode [ 210.806413][T10659] netlink: 'syz.3.1204': attribute type 32 has an invalid length. [ 210.825051][T10466] hsr_slave_0: entered promiscuous mode [ 210.851463][T10466] hsr_slave_1: entered promiscuous mode [ 210.858910][T10466] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 210.868273][T10466] Cannot create hsr debugfs directory [ 210.885348][T10662] xt_hashlimit: size too large, truncated to 1048576 [ 211.213185][T10674] netlink: 8 bytes leftover after parsing attributes in process `syz.3.1209'. [ 211.389432][T10687] netlink: 48 bytes leftover after parsing attributes in process `syz.4.1213'. [ 211.461369][ T5853] Bluetooth: hci4: command tx timeout [ 211.695284][ T5853] Bluetooth: hci1: command 0x0406 tx timeout [ 211.695649][T10703] atomic_op ffff88805995e998 conn xmit_atomic 0000000000000000 [ 211.703204][ T5853] Bluetooth: hci2: command 0x0406 tx timeout [ 211.708998][ T5856] Bluetooth: hci0: command 0x0406 tx timeout [ 212.343697][T10714] netlink: 'syz.0.1219': attribute type 18 has an invalid length. [ 212.409263][T10719] netlink: 'syz.0.1219': attribute type 18 has an invalid length. [ 212.449088][T10718] input: Bluetooth HID Boot Protocol Device as /devices/virtual/bluetooth/hci4/hci4:200/input6 [ 212.730033][T10466] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 212.822166][T10466] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 212.863851][T10466] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 212.903467][T10740] A link change request failed with some changes committed already. Interface lo may have been left with an inconsistent configuration, please check. [ 212.946435][T10466] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 212.980959][T10746] netlink: 'syz.3.1225': attribute type 13 has an invalid length. [ 213.015047][T10746] netlink: 'syz.3.1225': attribute type 17 has an invalid length. [ 213.073373][T10752] netlink: 4 bytes leftover after parsing attributes in process `syz.3.1225'. [ 213.177938][T10746] 8021q: adding VLAN 0 to HW filter on device bond0 [ 213.258279][T10760] netlink: 'syz.0.1229': attribute type 1 has an invalid length. [ 213.272105][T10760] netlink: 'syz.0.1229': attribute type 4 has an invalid length. [ 213.280471][T10760] netlink: 9491 bytes leftover after parsing attributes in process `syz.0.1229'. [ 213.305263][T10746] A link change request failed with some changes committed already. Interface caif0 may have been left with an inconsistent configuration, please check. [ 213.526749][T10466] 8021q: adding VLAN 0 to HW filter on device bond0 [ 213.533495][ T5853] Bluetooth: hci4: command tx timeout [ 213.621420][T10466] 8021q: adding VLAN 0 to HW filter on device team0 [ 213.657538][ T6443] bridge0: port 1(bridge_slave_0) entered blocking state [ 213.664717][ T6443] bridge0: port 1(bridge_slave_0) entered forwarding state [ 213.705651][ T6443] bridge0: port 2(bridge_slave_1) entered blocking state [ 213.712854][ T6443] bridge0: port 2(bridge_slave_1) entered forwarding state [ 213.910697][T10779] x_tables: duplicate entry at hook 1 [ 214.149437][T10796] netlink: 28 bytes leftover after parsing attributes in process `syz.4.1235'. [ 214.173269][T10798] netlink: 8 bytes leftover after parsing attributes in process `syz.2.1236'. [ 214.211117][T10798] netlink: 8 bytes leftover after parsing attributes in process `syz.2.1236'. [ 214.272257][T10805] netlink: 8 bytes leftover after parsing attributes in process `syz.2.1236'. [ 214.522748][T10466] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 214.807896][T10835] xt_hashlimit: size too large, truncated to 1048576 [ 214.984560][T10836] C: renamed from lo (while UP) [ 215.022527][T10836] A link change request failed with some changes committed already. Interface C may have been left with an inconsistent configuration, please check. [ 215.049129][T10846] __nla_validate_parse: 1 callbacks suppressed [ 215.049146][T10846] netlink: 8 bytes leftover after parsing attributes in process `syz.0.1246'. [ 215.117710][T10854] openvswitch: netlink: Flow actions may not be safe on all matching packets. [ 215.152903][T10466] veth0_vlan: entered promiscuous mode [ 215.174642][T10846] netlink: 4 bytes leftover after parsing attributes in process `syz.0.1246'. [ 215.226200][T10846] netlink: 'syz.0.1246': attribute type 1 has an invalid length. [ 215.248016][T10858] netlink: 4 bytes leftover after parsing attributes in process `syz.3.1245'. [ 215.276712][T10846] nbd: error processing sock list [ 215.402048][T10466] veth1_vlan: entered promiscuous mode [ 215.562592][T10466] veth0_macvtap: entered promiscuous mode [ 215.597824][T10466] veth1_macvtap: entered promiscuous mode [ 215.610706][ T5853] Bluetooth: hci4: command tx timeout [ 215.659303][T10466] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 215.693275][T10466] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 215.860168][T10466] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 215.921276][T10466] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 215.960340][T10466] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 215.979479][T10466] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 216.125553][T10893] nbd: must specify at least one socket [ 216.339862][ T78] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 216.376187][ T78] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 216.459694][ T78] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 216.475713][T10907] netlink: 16 bytes leftover after parsing attributes in process `syz.0.1258'. [ 216.486219][ T78] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 216.581232][T10907] netlink: 32 bytes leftover after parsing attributes in process `syz.0.1258'. [ 216.597654][T10907] netlink: 16 bytes leftover after parsing attributes in process `syz.0.1258'. [ 216.611271][T10907] netlink: 32 bytes leftover after parsing attributes in process `syz.0.1258'. [ 216.623920][T10907] netlink: 16 bytes leftover after parsing attributes in process `syz.0.1258'. [ 216.646020][T10907] netlink: 32 bytes leftover after parsing attributes in process `syz.0.1258'. [ 216.679671][T10907] netlink: 16 bytes leftover after parsing attributes in process `syz.0.1258'. [ 217.177065][ T78] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 217.443426][ T78] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 217.618441][ T78] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 217.865701][ T78] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 218.088278][ T78] bridge_slave_1: left allmulticast mode [ 218.105993][ T78] bridge_slave_1: left promiscuous mode [ 218.112758][ T78] bridge0: port 2(bridge_slave_1) entered disabled state [ 218.127954][ T78] bridge_slave_0: left allmulticast mode [ 218.136649][ T78] bridge_slave_0: left promiscuous mode [ 218.147422][ T78] bridge0: port 1(bridge_slave_0) entered disabled state [ 219.170387][ T5154] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 219.170460][ T78] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 219.188038][ T5154] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 219.198351][ T5154] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 219.218934][ T5154] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 219.227609][ T78] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 219.237379][ T5154] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 219.257109][ T78] bond0 (unregistering): Released all slaves [ 219.376598][T11010] lo speed is unknown, defaulting to 1000 [ 219.859634][ C1] GRED: Unable to relocate VQ 0x0 after dequeue, screwing up backlog [ 220.517689][T11057] __nla_validate_parse: 126 callbacks suppressed [ 220.517711][T11057] netlink: 8 bytes leftover after parsing attributes in process `syz.4.1281'. [ 220.537362][T11057] netlink: 4 bytes leftover after parsing attributes in process `syz.4.1281'. [ 220.565820][ T78] hsr_slave_0: left promiscuous mode [ 220.586764][ T78] hsr_slave_1: left promiscuous mode [ 220.601296][ T78] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 220.620288][ T78] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 220.629622][ T78] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 220.645350][ T78] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 220.689264][ T78] veth1_macvtap: left promiscuous mode [ 220.695457][ T78] veth0_macvtap: left promiscuous mode [ 220.701252][ T78] veth1_vlan: left promiscuous mode [ 220.706701][ T78] veth0_vlan: left promiscuous mode [ 220.710666][T11061] netlink: 216 bytes leftover after parsing attributes in process `syz.4.1282'. [ 220.727433][T11061] netlink: 8 bytes leftover after parsing attributes in process `syz.4.1282'. [ 221.290370][ T5853] Bluetooth: hci4: command tx timeout [ 221.350691][ T78] team0 (unregistering): Port device team_slave_1 removed [ 221.386718][ T78] team0 (unregistering): Port device team_slave_0 removed [ 221.773096][T11040] syzkaller0: entered promiscuous mode [ 221.778638][T11040] syzkaller0: entered allmulticast mode [ 222.149328][T11090] nbd: must specify an index to disconnect [ 222.242459][T11010] chnl_net:caif_netlink_parms(): no params data found [ 222.467236][T11103] netlink: 8 bytes leftover after parsing attributes in process `syz.3.1292'. [ 222.479543][T11107] netlink: 4 bytes leftover after parsing attributes in process `syz.2.1291'. [ 222.911902][T11010] bridge0: port 1(bridge_slave_0) entered blocking state [ 222.950350][T11010] bridge0: port 1(bridge_slave_0) entered disabled state [ 222.957789][T11010] bridge_slave_0: entered allmulticast mode [ 223.005689][T11010] bridge_slave_0: entered promiscuous mode [ 223.043995][T11010] bridge0: port 2(bridge_slave_1) entered blocking state [ 223.064169][T11010] bridge0: port 2(bridge_slave_1) entered disabled state [ 223.085940][T11010] bridge_slave_1: entered allmulticast mode [ 223.116188][T11010] bridge_slave_1: entered promiscuous mode [ 223.214939][T11010] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 223.254368][T11010] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 223.370933][ T5853] Bluetooth: hci4: command tx timeout [ 223.386699][T11146] netlink: 'syz.4.1300': attribute type 7 has an invalid length. [ 223.397289][T11146] netlink: 140 bytes leftover after parsing attributes in process `syz.4.1300'. [ 223.454952][T11149] openvswitch: netlink: Key type 7942 is out of range max 32 [ 223.463582][T11148] netlink: 48 bytes leftover after parsing attributes in process `syz.4.1300'. [ 223.479084][T11010] team0: Port device team_slave_0 added [ 223.575197][T11010] team0: Port device team_slave_1 added [ 223.852597][T11010] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 223.900268][T11010] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 223.970863][T11010] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 224.020369][T11164] netlink: 12 bytes leftover after parsing attributes in process `syz.0.1307'. [ 224.029929][T11010] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 224.045769][T11010] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 224.061762][T11168] netlink: 12 bytes leftover after parsing attributes in process `syz.0.1307'. [ 224.088059][T11010] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 224.112392][T11167] A link change request failed with some changes committed already. Interface geneve0 may have been left with an inconsistent configuration, please check. [ 224.411963][T11010] hsr_slave_0: entered promiscuous mode [ 224.461786][T11010] hsr_slave_1: entered promiscuous mode [ 224.468042][T11010] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 224.521483][T11010] Cannot create hsr debugfs directory [ 224.596451][T11178] lo speed is unknown, defaulting to 1000 [ 224.646403][T11187] pimreg: entered allmulticast mode [ 225.450554][ T5853] Bluetooth: hci4: command tx timeout [ 225.659205][T11223] xt_CT: No such helper "snmp" [ 226.466844][T11247] lo speed is unknown, defaulting to 1000 [ 227.101293][T11280] xt_bpf: check failed: parse error [ 227.219301][T11010] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 227.292179][T11010] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 227.333916][T11010] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 227.398235][T11010] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 227.514180][T11296] veth0: entered promiscuous mode [ 227.532117][ T5853] Bluetooth: hci4: command tx timeout [ 227.573936][T11295] veth0: left promiscuous mode [ 227.608699][T11299] bridge0: port 3(veth0_to_bridge) entered blocking state [ 227.616573][T11299] bridge0: port 3(veth0_to_bridge) entered disabled state [ 227.625790][T11299] veth0_to_bridge: entered allmulticast mode [ 227.682182][T11299] veth0_to_bridge: entered promiscuous mode [ 227.688331][T11299] bridge0: adding interface veth0_to_bridge with same address as a received packet (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 227.744844][T11299] bridge0: port 3(veth0_to_bridge) entered blocking state [ 227.752342][T11299] bridge0: port 3(veth0_to_bridge) entered forwarding state [ 228.024543][T11315] netlink: 'syz.0.1337': attribute type 2 has an invalid length. [ 228.173596][T11010] 8021q: adding VLAN 0 to HW filter on device bond0 [ 228.321097][T11010] 8021q: adding VLAN 0 to HW filter on device team0 [ 228.405248][ T6425] bridge0: port 1(bridge_slave_0) entered blocking state [ 228.412491][ T6425] bridge0: port 1(bridge_slave_0) entered forwarding state [ 228.472564][ T6425] bridge0: port 2(bridge_slave_1) entered blocking state [ 228.479829][ T6425] bridge0: port 2(bridge_slave_1) entered forwarding state [ 228.727855][T11344] bridge0: port 2(bridge_slave_1) entered disabled state [ 228.735669][T11344] bridge0: port 1(bridge_slave_0) entered disabled state [ 228.828272][T11347] __nla_validate_parse: 4 callbacks suppressed [ 228.828292][T11347] netlink: 4 bytes leftover after parsing attributes in process `syz.3.1342'. [ 228.902511][T11351] unknown channel width for channel at 909000KHz? [ 228.918094][T11346] netlink: 24 bytes leftover after parsing attributes in process `syz.2.1344'. [ 228.961846][T11346] netlink: 24 bytes leftover after parsing attributes in process `syz.2.1344'. [ 228.981951][T11336] lo speed is unknown, defaulting to 1000 [ 229.578720][T11010] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 229.698164][T11374] netlink: 'syz.2.1349': attribute type 12 has an invalid length. [ 229.750016][T11374] netlink: 28 bytes leftover after parsing attributes in process `syz.2.1349'. [ 229.785377][T11374] netlink: 28 bytes leftover after parsing attributes in process `syz.2.1349'. [ 229.876133][T11378] batadv1: entered allmulticast mode [ 229.923142][T11378] 8021q: adding VLAN 0 to HW filter on device batadv1 [ 229.971499][T11391] netlink: 28 bytes leftover after parsing attributes in process `syz.4.1352'. [ 229.992139][T11391] netlink: 28 bytes leftover after parsing attributes in process `syz.4.1352'. [ 230.077445][T11010] veth0_vlan: entered promiscuous mode [ 230.143471][T11010] veth1_vlan: entered promiscuous mode [ 230.302461][T11410] netlink: 8 bytes leftover after parsing attributes in process `syz.4.1355'. [ 230.329698][T11410] netlink: 12 bytes leftover after parsing attributes in process `syz.4.1355'. [ 230.465054][T11010] veth0_macvtap: entered promiscuous mode [ 230.488725][T11010] veth1_macvtap: entered promiscuous mode [ 230.546676][T11010] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 230.619380][T11417] xt_CT: You must specify a L4 protocol and not use inversions on it [ 230.647304][T11010] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 230.677186][T11010] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 230.710296][T11010] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 230.719141][T11010] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 230.750220][T11010] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 230.956726][T11422] netlink: 'syz.2.1359': attribute type 3 has an invalid length. [ 231.002989][ T78] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 231.022443][ T78] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 231.116159][ T6425] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 231.160927][ T6425] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 231.260652][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.273370][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.285817][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.298230][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.310581][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.322938][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.335313][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.347704][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.360133][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.372534][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 231.567423][T11439] netlink: 52 bytes leftover after parsing attributes in process `syz.3.1362'. [ 234.645868][T11458] sched: DL replenish lagged too much [ 235.419337][T11512] netlink: 'syz.4.1370': attribute type 1 has an invalid length. [ 236.270388][ C1] net_ratelimit: 26447 callbacks suppressed [ 236.270428][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 236.287471][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 236.299784][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 236.310862][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 236.323152][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 236.334240][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 236.346510][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 236.357580][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 236.369854][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 236.380906][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 236.464355][T11512] 8021q: adding VLAN 0 to HW filter on device bond7 [ 236.496862][T11514] bond7: (slave gretap1): making interface the new active one [ 236.508941][T11514] bond7: (slave gretap1): Enslaving as an active interface with an up link [ 236.533696][T11524] tipc: Enabling of bearer rejected, failed to enable media [ 237.457623][T11543] netlink: 'syz.3.1377': attribute type 1 has an invalid length. [ 237.496028][T11543] netlink: 224 bytes leftover after parsing attributes in process `syz.3.1377'. [ 237.575550][T11543] netlink: 8 bytes leftover after parsing attributes in process `syz.3.1377'. [ 237.608037][T11544] sctp: [Deprecated]: syz.3.1377 (pid 11544) Use of struct sctp_assoc_value in delayed_ack socket option. [ 237.608037][T11544] Use struct sctp_sack_info instead [ 237.941780][ T6425] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 238.552917][ T6425] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 238.860936][T11564] xt_TCPMSS: path-MTU clamping only supported in FORWARD, OUTPUT and POSTROUTING hooks [ 239.014475][ T6425] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 239.444278][ T6425] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 239.494900][T11580] netlink: 12 bytes leftover after parsing attributes in process `syz.3.1382'. [ 239.741728][T11591] ieee802154 phy0 wpan0: encryption failed: -22 [ 240.505718][ T6425] bridge_slave_1: left allmulticast mode [ 240.550315][ T6425] bridge_slave_1: left promiscuous mode [ 240.556141][ T6425] bridge0: port 2(bridge_slave_1) entered disabled state [ 240.813639][ T6425] bridge_slave_0: left allmulticast mode [ 240.848804][ T6425] bridge_slave_0: left promiscuous mode [ 240.890191][ T6425] bridge0: port 1(bridge_slave_0) entered disabled state [ 240.966698][ T5154] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 240.983843][ T5154] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 240.991810][ T5154] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 241.000812][ T5154] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 241.009360][ T5154] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 241.280267][ C1] net_ratelimit: 25531 callbacks suppressed [ 241.280286][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 241.297290][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 241.309485][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 241.321692][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 241.332683][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 241.343674][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 241.355915][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 241.368152][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 241.379218][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 241.390270][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 241.411850][T11616] unsupported nla_type 52263 [ 242.238826][ T6425] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 242.267276][ T6425] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 242.288510][ T6425] bond0 (unregistering): Released all slaves [ 243.050554][ T5853] Bluetooth: hci4: command tx timeout [ 243.395098][T11608] lo speed is unknown, defaulting to 1000 [ 243.822588][T11653] netlink: 'syz.3.1400': attribute type 1 has an invalid length. [ 243.897515][T11653] netlink: 'syz.3.1400': attribute type 2 has an invalid length. [ 244.649617][T11665] netlink: 'syz.2.1406': attribute type 13 has an invalid length. [ 244.662392][T11668] xt_socket: unknown flags 0x2 [ 244.780678][T11672] netlink: 'syz.3.1407': attribute type 1 has an invalid length. [ 244.852501][T11672] netlink: 'syz.3.1407': attribute type 2 has an invalid length. [ 245.130711][ T5853] Bluetooth: hci4: command tx timeout [ 245.230982][T11679] netlink: 'syz.2.1409': attribute type 1 has an invalid length. [ 245.464538][T11684] netlink: 84 bytes leftover after parsing attributes in process `syz.3.1410'. [ 245.999204][ T6425] hsr_slave_0: left promiscuous mode [ 246.051939][ T6425] hsr_slave_1: left promiscuous mode [ 246.084012][ T6425] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 246.114255][T11703] netlink: 12 bytes leftover after parsing attributes in process `syz.4.1415'. [ 246.133638][ T6425] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 246.159686][T11701] netlink: 12 bytes leftover after parsing attributes in process `syz.4.1415'. [ 246.201996][ T6425] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 246.209419][ T6425] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 246.290305][ C1] net_ratelimit: 27178 callbacks suppressed [ 246.290321][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 246.307248][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 246.319493][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 246.331730][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 246.342735][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 246.353748][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 246.365991][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 246.378235][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 246.389220][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 246.400269][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 246.457448][ T6425] veth1_macvtap: left promiscuous mode [ 246.468424][ T6425] veth0_macvtap: left promiscuous mode [ 246.507749][ T6425] veth1_vlan: left promiscuous mode [ 246.527373][ T6425] veth0_vlan: left promiscuous mode [ 246.877454][T11700] Bluetooth: hci0: Opcode 0x0401 failed: -4 [ 246.934227][T11716] netlink: 'syz.0.1419': attribute type 2 has an invalid length. [ 246.995046][T11716] xt_hashlimit: overflow, try lower: 1125899906842624/8 [ 247.212636][ T5853] Bluetooth: hci4: command tx timeout [ 248.090341][ T5853] Bluetooth: hci0: command 0x0406 tx timeout [ 248.638999][ T6425] team0 (unregistering): Port device team_slave_1 removed [ 248.726454][ T6425] team0 (unregistering): Port device team_slave_0 removed [ 249.292657][ T5853] Bluetooth: hci4: command tx timeout [ 249.994118][T11733] netlink: 'syz.0.1420': attribute type 21 has an invalid length. [ 250.349681][T11733] netlink: 132 bytes leftover after parsing attributes in process `syz.0.1420'. [ 250.616451][T11751] netlink: 8 bytes leftover after parsing attributes in process `syz.3.1424'. [ 251.257782][T11608] chnl_net:caif_netlink_parms(): no params data found [ 251.300312][ C1] net_ratelimit: 27526 callbacks suppressed [ 251.300334][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 251.317417][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 251.329706][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 251.341997][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 251.353081][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 251.364231][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 251.376592][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 251.388901][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 251.399991][ C1] bridge0: received packet on  with own address as source address (addr:aa:aa:aa:aa:aa:1b, vlan:0) [ 251.411106][ C1] bridge0: received packet on veth0_to_bridge with own address as source address (addr:ae:67:cf:c2:97:a3, vlan:0) [ 251.851862][T11779] netlink: 'syz.3.1431': attribute type 9 has an invalid length. [ 252.313082][T11608] bridge0: port 1(bridge_slave_0) entered blocking state [ 252.464182][T11608] bridge0: port 1(bridge_slave_0) entered disabled state [ 252.550039][T11608] bridge_slave_0: entered allmulticast mode [ 252.630935][T11608] bridge_slave_0: entered promiscuous mode [ 252.701596][T11608] bridge0: port 2(bridge_slave_1) entered blocking state [ 252.753829][T11608] bridge0: port 2(bridge_slave_1) entered disabled state [ 252.816309][T11608] bridge_slave_1: entered allmulticast mode [ 252.850356][T11813] ieee802154 phy0 wpan0: encryption failed: -90 [ 252.870480][T11608] bridge_slave_1: entered promiscuous mode [ 253.472100][T11608] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 253.743191][T11608] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 254.340385][T11608] team0: Port device team_slave_0 added [ 254.388629][T11608] team0: Port device team_slave_1 added [ 254.531062][T11861] netlink: 8 bytes leftover after parsing attributes in process `syz.4.1442'. [ 254.546442][ T5892] hid-generic 0005:046D:FFF9.0002: item fetching failed at offset 0/1 [ 254.581291][ T5892] hid-generic 0005:046D:FFF9.0002: probe with driver hid-generic failed with error -22 [ 254.612546][T11855] macvlan0: entered promiscuous mode [ 254.630037][T11855] macvlan0: entered allmulticast mode [ 254.684734][T11608] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 254.722930][T11608] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 254.762727][T11608] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 254.813805][T11608] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 254.829379][T11608] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 254.887558][T11608] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 254.982759][T11872] netlink: 'syz.4.1446': attribute type 24 has an invalid length. [ 255.054155][T11872] netlink: 8 bytes leftover after parsing attributes in process `syz.4.1446'. [ 255.089439][T11879] netlink: 4 bytes leftover after parsing attributes in process `syz.3.1448'. [ 255.148024][T11608] hsr_slave_0: entered promiscuous mode [ 255.174931][T11608] hsr_slave_1: entered promiscuous mode [ 255.189812][T11608] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 255.228361][T11608] Cannot create hsr debugfs directory [ 255.505981][T11891] 8021q: VLANs not supported on rose0 [ 255.695812][ T1301] ieee802154 phy0 wpan0: encryption failed: -22 [ 256.052790][T11921] netlink: 60 bytes leftover after parsing attributes in process `syz.3.1457'. [ 256.385733][T11933] netlink: 348 bytes leftover after parsing attributes in process `syz.2.1460'. [ 256.386029][T11932] netlink: 348 bytes leftover after parsing attributes in process `syz.2.1460'. [ 256.410584][T11933] netlink: 256 bytes leftover after parsing attributes in process `syz.2.1460'. [ 256.422258][T11934] netlink: 256 bytes leftover after parsing attributes in process `syz.2.1460'. [ 256.643820][T11943] netdevsim netdevsim2 netdevsim2: entered allmulticast mode [ 256.682853][T11943] netlink: 144 bytes leftover after parsing attributes in process `syz.2.1463'. [ 256.835918][T11947] tipc: Started in network mode [ 256.843136][T11947] tipc: Node identity , cluster identity 4711 [ 256.849520][T11947] tipc: Failed to set node id, please configure manually [ 256.859502][T11947] tipc: Enabling of bearer rejected, failed to enable media [ 257.050477][ T5154] Bluetooth: hci4: command 0x0405 tx timeout [ 257.189768][T11608] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 257.240798][T11608] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 257.312234][T11608] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 257.329378][T11961] netlink: 8 bytes leftover after parsing attributes in process `syz.2.1469'. [ 257.339908][T11961] netlink: 16 bytes leftover after parsing attributes in process `syz.2.1469'. [ 257.357882][T11608] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 257.831042][T11608] 8021q: adding VLAN 0 to HW filter on device bond0 [ 257.912902][T11982] net_ratelimit: 14401 callbacks suppressed [ 257.912920][T11982] GRED: Unable to relocate VQ 0x0 after dequeue, screwing up backlog [ 257.936737][T11608] 8021q: adding VLAN 0 to HW filter on device team0 [ 258.004633][ T6439] bridge0: port 1(bridge_slave_0) entered blocking state [ 258.011804][ T6439] bridge0: port 1(bridge_slave_0) entered forwarding state [ 258.116882][ T6443] bridge0: port 2(bridge_slave_1) entered blocking state [ 258.124250][ T6443] bridge0: port 2(bridge_slave_1) entered forwarding state [ 258.155794][ T5896] IPVS: starting estimator thread 0... [ 258.250709][T11998] IPVS: using max 26 ests per chain, 62400 per kthread [ 258.457322][T12015] netlink: 20 bytes leftover after parsing attributes in process `syz.2.1480'. [ 258.481386][T12015] netlink: 20 bytes leftover after parsing attributes in process `syz.2.1480'. [ 258.714806][T12027] openvswitch: netlink: IP tunnel attribute has 16 unknown bytes. [ 258.970453][ C0] GRED: Unable to relocate VQ 0x0 after dequeue, screwing up backlog [ 259.037022][T11608] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 259.262696][T11608] veth0_vlan: entered promiscuous mode [ 259.394000][T11608] veth1_vlan: entered promiscuous mode [ 259.503931][T11608] veth0_macvtap: entered promiscuous mode [ 259.525950][T11608] veth1_macvtap: entered promiscuous mode [ 259.645356][T11608] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 259.744794][T11608] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 259.777363][T11608] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 259.806557][T11608] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 259.842974][T11608] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 259.885510][T11608] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 260.010487][ C0] GRED: Unable to relocate VQ 0x0 after dequeue, screwing up backlog [ 260.278518][ T6439] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 260.322846][ T6439] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 260.435186][ T6443] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 260.459353][ T6443] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 261.146430][T12116] __nla_validate_parse: 1 callbacks suppressed [ 261.146449][T12116] netlink: 40 bytes leftover after parsing attributes in process `syz.3.1507'. [ 261.430466][ T6436] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 261.602955][ T6436] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 261.983775][ T6436] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 262.121854][ T6436] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 262.291096][ T6436] bridge_slave_1: left allmulticast mode [ 262.296809][ T6436] bridge_slave_1: left promiscuous mode [ 262.312991][ T6436] bridge0: port 2(bridge_slave_1) entered disabled state [ 262.327133][ T6436] bridge_slave_0: left allmulticast mode [ 262.334567][ T6436] bridge_slave_0: left promiscuous mode [ 262.344237][ T6436] bridge0: port 1(bridge_slave_0) entered disabled state [ 262.892785][ T5154] Bluetooth: hci3: command 0x0405 tx timeout [ 262.955923][T12170] netlink: 8 bytes leftover after parsing attributes in process `syz.2.1515'. [ 263.237494][ T6436] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 263.268393][ T6436] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 263.297010][ T6436] bond0 (unregistering): Released all slaves [ 263.357467][T12181] unknown channel width for channel at 909000KHz? [ 263.494758][T12196] netlink: 8 bytes leftover after parsing attributes in process `syz.4.1518'. [ 263.532239][T12198] netlink: 12 bytes leftover after parsing attributes in process `syz.2.1519'. [ 263.573985][ T5154] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 263.585854][ T5154] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 263.594648][ T5154] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 263.604945][ T5154] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 263.613798][ T5154] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 263.878163][T12212] netlink: 20 bytes leftover after parsing attributes in process `syz.2.1521'. [ 263.953386][T12200] lo speed is unknown, defaulting to 1000 [ 264.734053][T12241] macvlan0: left promiscuous mode [ 264.757386][T12241] macvlan0: left allmulticast mode [ 264.925193][T12259] netlink: 'syz.0.1533': attribute type 1 has an invalid length. [ 264.980437][T12259] netlink: 'syz.0.1533': attribute type 4 has an invalid length. [ 265.019015][T12259] netlink: 9491 bytes leftover after parsing attributes in process `syz.0.1533'. [ 265.088411][T12262] team0: entered promiscuous mode [ 265.106633][T12262] team_slave_0: entered promiscuous mode [ 265.137289][T12262] team_slave_1: entered promiscuous mode [ 265.161841][T12262] geneve0: entered promiscuous mode [ 265.213580][T12276] netlink: 'syz.0.1537': attribute type 1 has an invalid length. [ 265.236979][T12261] team0: left promiscuous mode [ 265.250969][T12261] team_slave_0: left promiscuous mode [ 265.267920][T12261] team_slave_1: left promiscuous mode [ 265.296303][T12261] geneve0: left promiscuous mode [ 265.367111][ T6436] hsr_slave_0: left promiscuous mode [ 265.380442][ T6436] hsr_slave_1: left promiscuous mode [ 265.397881][ T6436] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 265.420120][ T6436] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 265.446541][ T6436] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 265.465093][ T6436] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 265.567053][ T6436] veth1_macvtap: left promiscuous mode [ 265.576672][ T6436] veth0_macvtap: left promiscuous mode [ 265.582823][ T6436] veth1_vlan: left promiscuous mode [ 265.588410][ T6436] veth0_vlan: left promiscuous mode [ 265.691648][ T5853] Bluetooth: hci4: command tx timeout [ 266.060149][ T6436] team0 (unregistering): Port device team_slave_1 removed [ 266.101495][ T6436] team0 (unregistering): Port device team_slave_0 removed [ 266.473256][T12276] workqueue: Failed to create a rescuer kthread for wq "bond2": -EINTR [ 266.475182][T12280] workqueue: Failed to create a rescuer kthread for wq "wg-crypt-wireguard%d": -EINTR [ 266.724403][T12308] netlink: 'syz.3.1543': attribute type 2 has an invalid length. [ 267.103770][T12200] chnl_net:caif_netlink_parms(): no params data found [ 267.776635][ T5853] Bluetooth: hci4: command tx timeout [ 268.079636][T12200] bridge0: port 1(bridge_slave_0) entered blocking state [ 268.102669][T12200] bridge0: port 1(bridge_slave_0) entered disabled state [ 268.126417][T12200] bridge_slave_0: entered allmulticast mode [ 268.152768][T12200] bridge_slave_0: entered promiscuous mode [ 268.220448][T12200] bridge0: port 2(bridge_slave_1) entered blocking state [ 268.227607][T12200] bridge0: port 2(bridge_slave_1) entered disabled state [ 268.266062][T12200] bridge_slave_1: entered allmulticast mode [ 268.303274][T12200] bridge_slave_1: entered promiscuous mode [ 268.348900][T12368] netlink: 44 bytes leftover after parsing attributes in process `syz.0.1555'. [ 268.515297][T12200] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 268.529616][T12371] netlink: 12 bytes leftover after parsing attributes in process `syz.2.1557'. [ 268.582239][T12200] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 268.600633][T12379] netlink: 12 bytes leftover after parsing attributes in process `syz.3.1558'. [ 268.682763][T12384] netlink: 28 bytes leftover after parsing attributes in process `syz.4.1562'. [ 268.721006][T12387] x_tables: unsorted entry at hook 1 [ 268.749367][T12200] team0: Port device team_slave_0 added [ 268.778454][T12200] team0: Port device team_slave_1 added [ 268.973116][T12200] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 268.981027][ T43] IPVS: starting estimator thread 0... [ 268.991104][T12200] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 269.035766][T12395] netlink: 'syz.3.1563': attribute type 1 has an invalid length. [ 269.060878][T12200] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 269.082351][T12401] IPVS: using max 26 ests per chain, 62400 per kthread [ 269.158789][T12395] bond3: entered promiscuous mode [ 269.178895][T12395] 8021q: adding VLAN 0 to HW filter on device bond3 [ 269.258975][T12410] 8021q: adding VLAN 0 to HW filter on device bond3 [ 269.292446][T12410] bond3: (slave wireguard0): The slave device specified does not support setting the MAC address [ 269.314038][T12419] netlink: 'syz.4.1566': attribute type 1 has an invalid length. [ 269.345292][T12410] bond3: (slave wireguard0): Setting fail_over_mac to active for active-backup mode [ 269.412991][T12410] bond3: (slave wireguard0): making interface the new active one [ 269.436107][T12410] wireguard0: entered promiscuous mode [ 269.467919][T12410] bond3: (slave wireguard0): Enslaving as an active interface with an up link [ 269.498439][T12200] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 269.534368][T12200] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 269.587032][T12200] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 269.615111][T12429] netlink: 'syz.0.1569': attribute type 8 has an invalid length. [ 269.732754][T12424] bond8: (slave gretap2): making interface the new active one [ 269.749465][T12424] bond8: (slave gretap2): Enslaving as an active interface with an up link [ 269.852204][ T5853] Bluetooth: hci4: command tx timeout [ 269.963543][T12200] hsr_slave_0: entered promiscuous mode [ 269.970952][T12200] hsr_slave_1: entered promiscuous mode [ 269.977036][T12200] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 269.986152][T12200] Cannot create hsr debugfs directory [ 270.268701][T12458] netlink: 212376 bytes leftover after parsing attributes in process `syz.4.1573'. [ 270.579383][T12473] netlink: 24 bytes leftover after parsing attributes in process `syz.4.1577'. [ 270.598189][T12473] openvswitch: netlink: Flow key attr not present in new flow. [ 270.672509][T12472] openvswitch: netlink: Unknown key attributes 2 [ 271.058648][T12497] xt_AUDIT: Audit type out of range (valid range: 0..2) [ 271.440312][T12514] Cannot find del_set index 128 as target [ 271.538700][T12520] sctp: [Deprecated]: syz.2.1586 (pid 12520) Use of int in max_burst socket option. [ 271.538700][T12520] Use struct sctp_assoc_value instead [ 271.930731][ T5853] Bluetooth: hci4: command tx timeout [ 271.944410][T12200] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 271.954844][T12536] xt_hashlimit: max too large, truncated to 1048576 [ 271.972840][T12200] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 272.006567][T12200] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 272.053661][T12200] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 272.354281][T12200] 8021q: adding VLAN 0 to HW filter on device bond0 [ 272.425265][T12200] 8021q: adding VLAN 0 to HW filter on device team0 [ 272.493103][ T6443] bridge0: port 1(bridge_slave_0) entered blocking state [ 272.500306][ T6443] bridge0: port 1(bridge_slave_0) entered forwarding state [ 272.552229][ T6443] bridge0: port 2(bridge_slave_1) entered blocking state [ 272.559393][ T6443] bridge0: port 2(bridge_slave_1) entered forwarding state [ 272.738620][T12200] hsr0: Slave A (hsr_slave_0) is not up; please bring it up to get a fully working HSR network [ 272.769039][T12200] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network [ 272.937659][T12574] veth0: entered promiscuous mode [ 272.989211][T12572] veth0: left promiscuous mode [ 273.063311][T12586] netlink: 'syz.3.1601': attribute type 12 has an invalid length. [ 273.408852][T12597] netlink: 'syz.0.1605': attribute type 3 has an invalid length. [ 273.445791][T12597] netlink: 201372 bytes leftover after parsing attributes in process `syz.0.1605'. [ 273.492517][T12200] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 273.574188][T12606] netlink: 248 bytes leftover after parsing attributes in process `syz.4.1608'. [ 273.779181][T12200] veth0_vlan: entered promiscuous mode [ 273.838838][T12200] veth1_vlan: entered promiscuous mode [ 273.896800][T12622] netlink: 'syz.0.1611': attribute type 1 has an invalid length. [ 273.956531][T12626] netlink: 12 bytes leftover after parsing attributes in process `syz.2.1612'. [ 273.986411][T12622] 8021q: adding VLAN 0 to HW filter on device bond2 [ 274.008059][T12627] bond2: entered promiscuous mode [ 274.017620][T12626] netlink: 12 bytes leftover after parsing attributes in process `syz.2.1612'. [ 274.155590][T12200] veth0_macvtap: entered promiscuous mode [ 274.210798][T12200] veth1_macvtap: entered promiscuous mode [ 274.274876][T12200] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 274.399645][T12200] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 274.411775][T12642] netlink: 20 bytes leftover after parsing attributes in process `syz.0.1613'. [ 274.442498][T12200] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 274.471837][T12200] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 274.493227][T12200] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 274.513501][T12200] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 274.658654][T12650] input: Bluetooth HID Boot Protocol Device as /devices/virtual/bluetooth/hci4/hci4:200/input7 [ 274.859968][ T6443] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 274.899371][ T6443] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 274.989853][ T6430] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 275.028296][ T6430] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 275.606857][ T6430] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 275.782859][ T6430] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 275.931842][ T6430] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 276.076898][ T6430] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 276.287485][ T6430] bridge_slave_1: left allmulticast mode [ 276.295269][ T6430] bridge_slave_1: left promiscuous mode [ 276.302118][ T6430] bridge0: port 2(bridge_slave_1) entered disabled state [ 276.313828][ T6430] bridge_slave_0: left allmulticast mode [ 276.319521][ T6430] bridge_slave_0: left promiscuous mode [ 276.325967][ T6430] bridge0: port 1(bridge_slave_0) entered disabled state [ 276.649722][ T6430] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 276.660986][ T6430] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 276.671186][ T6430] bond0 (unregistering): Released all slaves [ 277.357446][T12729] netlink: 4 bytes leftover after parsing attributes in process `syz.4.1631'. [ 277.498134][T12735] netlink: 4 bytes leftover after parsing attributes in process `syz.3.1633'. [ 277.923394][ T5154] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 277.938815][ T5154] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 277.947979][ T5154] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 277.958079][ T5154] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 277.967492][ T5154] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 277.998701][ T6430] hsr_slave_0: left promiscuous mode [ 278.010287][ T6430] hsr_slave_1: left promiscuous mode [ 278.016378][ T6430] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 278.049367][ T6430] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 278.061403][ T6430] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 278.091080][ T6430] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 278.125638][ T6430] veth1_macvtap: left promiscuous mode [ 278.136445][ T6430] veth0_macvtap: left promiscuous mode [ 278.142718][ T6430] veth1_vlan: left promiscuous mode [ 278.149067][ T6430] veth0_vlan: left promiscuous mode [ 278.195971][T12752] netlink: 24 bytes leftover after parsing attributes in process `syz.4.1637'. [ 278.614751][ T6430] team0 (unregistering): Port device team_slave_1 removed [ 278.654623][ T6430] team0 (unregistering): Port device team_slave_0 removed [ 279.109220][T12743] lo speed is unknown, defaulting to 1000 [ 279.288751][T12770] netlink: 'syz.4.1641': attribute type 12 has an invalid length. [ 279.309069][T12763] netlink: 32 bytes leftover after parsing attributes in process `syz.3.1640'. [ 279.335006][T12764] netlink: 32 bytes leftover after parsing attributes in process `syz.3.1640'. [ 279.365718][T12763] netlink: 32 bytes leftover after parsing attributes in process `syz.3.1640'. [ 279.419416][T12763] openvswitch: netlink: Geneve option length err (len 256, max 255). [ 279.796428][T12791] netlink: 28 bytes leftover after parsing attributes in process `syz.3.1645'. [ 280.012311][ T5154] Bluetooth: hci4: command tx timeout [ 280.207052][T12743] chnl_net:caif_netlink_parms(): no params data found [ 280.556181][T12816] netlink: 80 bytes leftover after parsing attributes in process `syz.4.1651'. [ 280.597172][T12828] netlink: 'syz.3.1653': attribute type 10 has an invalid length. [ 280.682535][T12828] team0: Device bond0 is already an upper device of the team interface [ 280.718624][T12832] netlink: 40 bytes leftover after parsing attributes in process `syz.0.1655'. [ 280.764256][T12743] bridge0: port 1(bridge_slave_0) entered blocking state [ 280.785161][T12743] bridge0: port 1(bridge_slave_0) entered disabled state [ 280.804474][T12743] bridge_slave_0: entered allmulticast mode [ 280.822425][T12743] bridge_slave_0: entered promiscuous mode [ 280.841389][T12743] bridge0: port 2(bridge_slave_1) entered blocking state [ 280.860303][T12743] bridge0: port 2(bridge_slave_1) entered disabled state [ 280.867477][T12743] bridge_slave_1: entered allmulticast mode [ 280.891709][T12743] bridge_slave_1: entered promiscuous mode [ 280.952302][T12839] netlink: 256 bytes leftover after parsing attributes in process `syz.2.1656'. [ 281.021207][T12837] team0: Device gtp0 is of different type [ 281.128619][T12847] ip6t_REJECT: TCP_RESET illegal for non-tcp [ 281.172993][T12849] x_tables: arp_tables: MARK.2 target: invalid size 8 (kernel) != (user) 0 [ 281.216267][T12743] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 281.295079][T12743] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 281.448725][T12743] team0: Port device team_slave_0 added [ 281.494923][T12743] team0: Port device team_slave_1 added [ 281.728637][T12743] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 281.754606][T12743] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 281.889119][T12743] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 281.955853][T12743] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 281.973270][T12743] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 281.999826][T12743] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 282.090862][ T5154] Bluetooth: hci4: command tx timeout [ 282.227339][T12743] hsr_slave_0: entered promiscuous mode [ 282.276497][T12743] hsr_slave_1: entered promiscuous mode [ 282.295088][T12743] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 282.310814][T12743] Cannot create hsr debugfs directory [ 282.343485][T12895] netlink: 'syz.3.1669': attribute type 19 has an invalid length. [ 282.365519][T12895] netlink: 224 bytes leftover after parsing attributes in process `syz.3.1669'. [ 282.541139][T12903] netlink: 288 bytes leftover after parsing attributes in process `syz.0.1672'. [ 282.583857][T12909] sctp: [Deprecated]: syz.3.1674 (pid 12909) Use of struct sctp_assoc_value in delayed_ack socket option. [ 282.583857][T12909] Use struct sctp_sack_info instead [ 282.612988][T12901] Unsupported ieee802154 address type: 0 [ 282.836833][T12918] netlink: 4 bytes leftover after parsing attributes in process `syz.4.1675'. [ 283.686687][T12957] netlink: 'syz.4.1683': attribute type 1 has an invalid length. [ 284.170452][ T5154] Bluetooth: hci4: command tx timeout [ 284.424018][T12997] netlink: 'syz.3.1691': attribute type 1 has an invalid length. [ 284.433369][T12997] __nla_validate_parse: 4 callbacks suppressed [ 284.433384][T12997] netlink: 220 bytes leftover after parsing attributes in process `syz.3.1691'. [ 284.603054][T12743] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 284.669616][T12743] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 284.704011][T12743] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 284.748354][T12743] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 285.154982][T12743] 8021q: adding VLAN 0 to HW filter on device bond0 [ 285.241015][T13025] netlink: 28 bytes leftover after parsing attributes in process `syz.3.1698'. [ 285.269375][T12743] 8021q: adding VLAN 0 to HW filter on device team0 [ 285.347513][ T6443] bridge0: port 1(bridge_slave_0) entered blocking state [ 285.354849][ T6443] bridge0: port 1(bridge_slave_0) entered forwarding state [ 285.367942][T13025] openvswitch: netlink: Flow actions may not be safe on all matching packets. [ 285.394336][ T6443] bridge0: port 2(bridge_slave_1) entered blocking state [ 285.401534][ T6443] bridge0: port 2(bridge_slave_1) entered forwarding state [ 285.630008][T13045] input: Bluetooth HID Boot Protocol Device as /devices/virtual/bluetooth/hci4/hci4:200/input8 [ 286.256956][ T5154] Bluetooth: hci4: command tx timeout [ 286.352440][T12743] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 286.519020][T13083] veth5: entered promiscuous mode [ 286.576177][T13091] block nbd0: Unsupported socket: shutdown callout must be supported. [ 286.690829][T13097] netlink: 8 bytes leftover after parsing attributes in process `syz.2.1713'. [ 286.693649][T12743] veth0_vlan: entered promiscuous mode [ 286.778197][T12743] veth1_vlan: entered promiscuous mode [ 286.894455][T12743] veth0_macvtap: entered promiscuous mode [ 286.938818][T12743] veth1_macvtap: entered promiscuous mode [ 287.032006][T12743] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 287.067433][T12743] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 287.114918][T12743] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 287.140306][T12743] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 287.149068][T12743] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 287.195366][T12743] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 287.250971][T13117] netlink: 'syz.0.1716': attribute type 9 has an invalid length. [ 287.305678][T13118] 8021q: adding VLAN 0 to HW filter on device ipvlan0 [ 287.509086][T13128] A link change request failed with some changes committed already. Interface C may have been left with an inconsistent configuration, please check. [ 287.766490][ T6432] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 287.807654][ T6432] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 287.931338][ T6436] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 287.939203][ T6436] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 288.096805][T13154] IPv6: Can't replace route, no match found [ 288.177715][T13154] IPv6: Can't replace route, no match found [ 288.581584][T13175] netlink: 256 bytes leftover after parsing attributes in process `syz.4.1730'. [ 288.626807][T13175] sctp: [Deprecated]: syz.4.1730 (pid 13175) Use of struct sctp_assoc_value in delayed_ack socket option. [ 288.626807][T13175] Use struct sctp_sack_info instead [ 288.671872][ T6443] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 288.693441][T13175] netlink: 44 bytes leftover after parsing attributes in process `syz.4.1730'. [ 288.749674][T13175] netlink: 72 bytes leftover after parsing attributes in process `syz.4.1730'. [ 288.759269][T13175] netlink: 72 bytes leftover after parsing attributes in process `syz.4.1730'. [ 288.867038][ T6443] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 289.107016][ T6443] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 289.257773][ T6443] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 289.425572][ T6443] bridge_slave_1: left allmulticast mode [ 289.435904][ T6443] bridge_slave_1: left promiscuous mode [ 289.442236][ T6443] bridge0: port 2(bridge_slave_1) entered disabled state [ 289.454878][ T6443] bridge_slave_0: left allmulticast mode [ 289.460727][ T6443] bridge_slave_0: left promiscuous mode [ 289.466535][ T6443] bridge0: port 1(bridge_slave_0) entered disabled state [ 289.909686][ T6443] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 289.927887][ T6443] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 289.939499][ T6443] bond0 (unregistering): Released all slaves [ 290.463067][T13219] lo: entered allmulticast mode [ 290.577392][ T6443] hsr_slave_0: left promiscuous mode [ 290.648679][ T6443] hsr_slave_1: left promiscuous mode [ 290.685099][T13230] netlink: 4 bytes leftover after parsing attributes in process `syz.0.1735'. [ 290.688179][ T6443] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 290.695897][T13231] xt_connbytes: Forcing CT accounting to be enabled [ 290.726491][ T6443] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 290.752427][ T6443] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 290.760392][ T6443] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 290.840072][ T6443] veth1_macvtap: left promiscuous mode [ 290.861275][ T6443] veth0_macvtap: left promiscuous mode [ 290.868249][ T6443] veth1_vlan: left promiscuous mode [ 290.878402][ T6443] veth0_vlan: left promiscuous mode [ 291.054551][ T5853] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 291.068384][ T5853] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 291.080546][ T5853] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 291.089526][ T5853] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 291.098756][ T5853] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 291.457525][ T6443] team0 (unregistering): Port device team_slave_1 removed [ 291.493603][ T6443] team0 (unregistering): Port device team_slave_0 removed [ 291.814043][T13219] lo: left allmulticast mode [ 291.886642][T13239] lo speed is unknown, defaulting to 1000 [ 292.016779][T13249] netlink: 'syz.2.1740': attribute type 8 has an invalid length. [ 292.056954][T13250] netlink: 'syz.4.1742': attribute type 10 has an invalid length. [ 292.085468][T13250] netlink: 40 bytes leftover after parsing attributes in process `syz.4.1742'. [ 292.120107][T13250] dummy0: entered promiscuous mode [ 292.130937][T13250] bridge0: port 3(dummy0) entered blocking state [ 292.184164][T13250] bridge0: port 3(dummy0) entered disabled state [ 292.236027][T13250] dummy0: entered allmulticast mode [ 292.730819][T13287] netlink: 8 bytes leftover after parsing attributes in process `syz.2.1748'. [ 292.788516][T13287] 8021q: adding VLAN 0 to HW filter on device macvlan2 [ 292.819721][T13289] netlink: 12 bytes leftover after parsing attributes in process `syz.0.1750'. [ 292.829578][T13290] netlink: 8 bytes leftover after parsing attributes in process `syz.2.1748'. [ 292.985284][T13296] veth5: entered allmulticast mode [ 293.140532][ T5853] Bluetooth: hci4: command tx timeout [ 293.235437][T13308] x_tables: duplicate underflow at hook 2 [ 293.269492][T13308] sctp: [Deprecated]: syz.0.1755 (pid 13308) Use of int in maxseg socket option. [ 293.269492][T13308] Use struct sctp_assoc_value instead [ 293.665669][T13239] chnl_net:caif_netlink_parms(): no params data found [ 293.674799][T13327] netlink: 'syz.0.1759': attribute type 21 has an invalid length. [ 293.703753][T13328] netlink: 'syz.0.1759': attribute type 21 has an invalid length. [ 293.751926][T13327] netlink: 128 bytes leftover after parsing attributes in process `syz.0.1759'. [ 293.777450][T13328] netlink: 128 bytes leftover after parsing attributes in process `syz.0.1759'. [ 293.851453][T13327] netlink: 'syz.0.1759': attribute type 4 has an invalid length. [ 293.872543][T13327] netlink: 'syz.0.1759': attribute type 5 has an invalid length. [ 293.880586][T13327] netlink: 3 bytes leftover after parsing attributes in process `syz.0.1759'. [ 293.900396][T13328] netlink: 'syz.0.1759': attribute type 4 has an invalid length. [ 293.918886][T13328] netlink: 'syz.0.1759': attribute type 5 has an invalid length. [ 293.930723][T13328] netlink: 3 bytes leftover after parsing attributes in process `syz.0.1759'. [ 294.111671][T13239] bridge0: port 1(bridge_slave_0) entered blocking state [ 294.148932][T13239] bridge0: port 1(bridge_slave_0) entered disabled state [ 294.157980][T13239] bridge_slave_0: entered allmulticast mode [ 294.169529][T13239] bridge_slave_0: entered promiscuous mode [ 294.200323][T13239] bridge0: port 2(bridge_slave_1) entered blocking state [ 294.215908][T13239] bridge0: port 2(bridge_slave_1) entered disabled state [ 294.228663][T13239] bridge_slave_1: entered allmulticast mode [ 294.252912][T13239] bridge_slave_1: entered promiscuous mode [ 294.539239][T13239] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 294.612124][T13239] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 294.942938][T13239] team0: Port device team_slave_0 added [ 294.966629][T13413] netlink: 76 bytes leftover after parsing attributes in process `syz.4.1774'. [ 294.974687][T13239] team0: Port device team_slave_1 added [ 295.214035][ T5853] Bluetooth: hci4: command tx timeout [ 295.237153][T13239] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 295.281692][T13239] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 295.354874][T13430] x_tables: duplicate underflow at hook 1 [ 295.364909][T13239] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 295.415215][T13239] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 295.437133][T13239] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 295.510751][T13239] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 295.805930][T13453] openvswitch: netlink: Missing key (keys=40, expected=2000) [ 295.852396][T13239] hsr_slave_0: entered promiscuous mode [ 295.864730][T13239] hsr_slave_1: entered promiscuous mode [ 295.876288][T13239] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 295.895280][T13239] Cannot create hsr debugfs directory [ 296.537283][T13489] __nla_validate_parse: 4 callbacks suppressed [ 296.537303][T13489] netlink: 4 bytes leftover after parsing attributes in process `syz.0.1795'. [ 296.570975][T13493] netlink: 4 bytes leftover after parsing attributes in process `syz.4.1793'. [ 296.768618][T13501] openvswitch: netlink: IP tunnel dst address not specified [ 296.899704][T13506] netlink: 8 bytes leftover after parsing attributes in process `syz.0.1798'. [ 297.290384][ T5853] Bluetooth: hci4: command tx timeout [ 297.429937][T13539] netlink: 4 bytes leftover after parsing attributes in process `syz.4.1804'. [ 297.617884][T13239] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 297.678018][T13239] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 297.743726][T13239] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 297.786116][T13239] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 297.788786][T13559] netlink: 48 bytes leftover after parsing attributes in process `syz.2.1808'. [ 298.102803][T13239] 8021q: adding VLAN 0 to HW filter on device bond0 [ 298.163190][T13239] 8021q: adding VLAN 0 to HW filter on device team0 [ 298.227486][ T6425] bridge0: port 1(bridge_slave_0) entered blocking state [ 298.234716][ T6425] bridge0: port 1(bridge_slave_0) entered forwarding state [ 298.255916][T13576] IPVS: sed: UDP 224.0.0.2:0 - no destination available [ 298.297362][T13576] netlink: 'syz.0.1811': attribute type 13 has an invalid length. [ 298.309635][ T6425] bridge0: port 2(bridge_slave_1) entered blocking state [ 298.316934][ T6425] bridge0: port 2(bridge_slave_1) entered forwarding state [ 298.348746][T13587] netlink: 28 bytes leftover after parsing attributes in process `syz.3.1814'. [ 298.379849][T13588] xt_hashlimit: size too large, truncated to 1048576 [ 298.410270][T13587] netlink: 28 bytes leftover after parsing attributes in process `syz.3.1814'. [ 298.498462][T13576] A link change request failed with some changes committed already. Interface caif0 may have been left with an inconsistent configuration, please check. [ 298.515079][T13375] GRED: Unable to relocate VQ 0x0 after dequeue, screwing up backlog [ 298.787348][T13239] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network [ 298.871582][T13374] GRED: Unable to relocate VQ 0x0 after dequeue, screwing up backlog [ 298.991258][T13605] netlink: 'syz.0.1818': attribute type 4 has an invalid length. [ 298.999036][T13605] netlink: 17 bytes leftover after parsing attributes in process `syz.0.1818'. [ 299.031685][T13608] netlink: 40 bytes leftover after parsing attributes in process `syz.3.1817'. [ 299.133836][T13613] netlink: 8 bytes leftover after parsing attributes in process `syz.2.1819'. [ 299.257670][T13621] RDS: rds_bind could not find a transport for ::ffff:10.1.1.2, load rds_tcp or rds_rdma? [ 299.303481][T13623] netlink: 'syz.0.1821': attribute type 2 has an invalid length. [ 299.370930][ T5154] Bluetooth: hci4: command tx timeout [ 299.404681][T13239] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 299.505280][T13239] veth0_vlan: entered promiscuous mode [ 299.555925][T13239] veth1_vlan: entered promiscuous mode [ 299.725335][T13239] veth0_macvtap: entered promiscuous mode [ 299.765237][T13239] veth1_macvtap: entered promiscuous mode [ 299.887762][T13239] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 299.935430][T13239] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 300.011037][T13239] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 300.060745][T13239] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 300.088616][T13239] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 300.098746][T13660] nbd: socks must be embedded in a SOCK_ITEM attr [ 300.111770][T13239] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 300.220664][T13665] xt_cgroup: path and classid specified [ 300.249918][T13665] netlink: 'syz.4.1831': attribute type 21 has an invalid length. [ 300.303666][T13671] netlink: 'syz.4.1831': attribute type 21 has an invalid length. [ 300.337469][T13665] netlink: 'syz.4.1831': attribute type 4 has an invalid length. [ 300.360353][T13665] netlink: 'syz.4.1831': attribute type 5 has an invalid length. [ 300.389925][T13671] netlink: 'syz.4.1831': attribute type 4 has an invalid length. [ 300.464621][T13671] netlink: 'syz.4.1831': attribute type 5 has an invalid length. [ 300.736804][ T6432] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 300.794361][ T6432] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 300.865535][ T6439] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 300.929425][ T6439] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 301.684320][ T6439] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 301.748474][T13733] Bluetooth: hci0: Opcode 0x0c03 failed: -4 [ 301.834082][ T6439] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 302.156833][ T6439] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 302.276034][ T6439] netdevsim netdevsim1 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 302.390632][ T6439] bridge_slave_1: left allmulticast mode [ 302.396331][ T6439] bridge_slave_1: left promiscuous mode [ 302.402132][ T6439] bridge0: port 2(bridge_slave_1) entered disabled state [ 302.414004][ T6439] bridge_slave_0: left allmulticast mode [ 302.419671][ T6439] bridge_slave_0: left promiscuous mode [ 302.427053][ T6439] bridge0: port 1(bridge_slave_0) entered disabled state [ 302.717724][ T6439] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 302.728686][ T6439] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 302.739188][ T6439] bond0 (unregistering): Released all slaves [ 303.275654][T13753] __nla_validate_parse: 8 callbacks suppressed [ 303.275676][T13753] netlink: 72 bytes leftover after parsing attributes in process `syz.3.1850'. [ 303.355997][ T6439] hsr_slave_0: left promiscuous mode [ 303.388247][ T6439] hsr_slave_1: left promiscuous mode [ 303.412591][ T6439] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 303.438506][ T6439] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 303.473161][ T6439] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 303.488988][ T6439] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 303.579253][ T6439] veth1_macvtap: left promiscuous mode [ 303.599078][ T6439] veth0_macvtap: left promiscuous mode [ 303.636950][ T6439] veth1_vlan: left promiscuous mode [ 303.647224][ T6439] veth0_vlan: left promiscuous mode [ 303.857756][ T5853] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 303.869534][ T5853] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 303.886589][ T5853] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 303.896896][ T5853] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 303.904656][ T5853] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 304.246381][ T6439] team0 (unregistering): Port device team_slave_1 removed [ 304.282456][ T6439] team0 (unregistering): Port device team_slave_0 removed [ 304.623379][T13764] veth0: entered promiscuous mode [ 304.768605][T13765] veth0: left promiscuous mode [ 304.794471][T13782] netlink: 24 bytes leftover after parsing attributes in process `syz.2.1856'. [ 304.843905][T13779] lo speed is unknown, defaulting to 1000 [ 305.930530][ T5853] Bluetooth: hci4: command tx timeout [ 306.146947][T13779] chnl_net:caif_netlink_parms(): no params data found [ 306.723017][T13779] bridge0: port 1(bridge_slave_0) entered blocking state [ 306.747903][T13779] bridge0: port 1(bridge_slave_0) entered disabled state [ 306.766399][T13779] bridge_slave_0: entered allmulticast mode [ 306.782431][T13779] bridge_slave_0: entered promiscuous mode [ 306.804493][T13861] pim6reg1: entered promiscuous mode [ 306.823781][T13861] pim6reg1: entered allmulticast mode [ 306.844753][T13779] bridge0: port 2(bridge_slave_1) entered blocking state [ 306.865571][T13779] bridge0: port 2(bridge_slave_1) entered disabled state [ 306.886247][T13779] bridge_slave_1: entered allmulticast mode [ 306.919063][T13779] bridge_slave_1: entered promiscuous mode [ 307.072923][T13779] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 307.107780][T13779] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 307.302577][T13879] pim6reg1: entered promiscuous mode [ 307.320427][T13879] pim6reg1: entered allmulticast mode [ 307.472947][T13897] [ 307.475646][T13897] ============================= [ 307.480611][T13897] WARNING: suspicious RCU usage [ 307.485596][T13897] 6.15.0-syzkaller-07818-g12c331b29c73 #0 Not tainted [ 307.492833][T13897] ----------------------------- [ 307.497708][T13897] kernel/events/callchain.c:163 suspicious rcu_dereference_check() usage! [ 307.506306][T13897] [ 307.506306][T13897] other info that might help us debug this: [ 307.506306][T13897] [ 307.516625][T13897] [ 307.516625][T13897] rcu_scheduler_active = 2, debug_locks = 1 [ 307.524773][T13897] 1 lock held by syz.4.1893/13897: [ 307.529909][T13897] #0: ffffffff8e13cea0 (rcu_read_lock_trace){....}-{0:0}, at: rcu_read_lock_trace+0x38/0x80 [ 307.541674][T13897] [ 307.541674][T13897] stack backtrace: [ 307.547612][T13897] CPU: 0 UID: 0 PID: 13897 Comm: syz.4.1893 Not tainted 6.15.0-syzkaller-07818-g12c331b29c73 #0 PREEMPT(full) [ 307.547638][T13897] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 307.547656][T13897] Call Trace: [ 307.547664][T13897] [ 307.547673][T13897] dump_stack_lvl+0x189/0x250 [ 307.547714][T13897] ? __pfx_dump_stack_lvl+0x10/0x10 [ 307.547747][T13897] ? __pfx__printk+0x10/0x10 [ 307.547786][T13897] lockdep_rcu_suspicious+0x140/0x1d0 [ 307.547818][T13897] get_callchain_entry+0x2b6/0x3c0 [ 307.547844][T13897] get_perf_callchain+0xa1/0x6b0 [ 307.547871][T13897] ? __pfx_get_perf_callchain+0x10/0x10 [ 307.547900][T13897] ? preempt_schedule+0xae/0xc0 [ 307.547930][T13897] __bpf_get_stack+0x3fc/0xa60 [ 307.547969][T13897] ? __pfx___bpf_get_stack+0x10/0x10 [ 307.547999][T13897] ? __lock_acquire+0xab9/0xd20 [ 307.548034][T13897] bpf_get_stack+0x33/0x50 [ 307.548060][T13897] ? bpf_prog_b8a90dd1efcc4ad9+0x46/0x4e [ 307.548091][T13897] bpf_get_stack_raw_tp+0x1a9/0x220 [ 307.548120][T13897] bpf_prog_b8a90dd1efcc4ad9+0x46/0x4e [ 307.548141][T13897] bpf_prog_run_pin_on_cpu+0x67/0x150 [ 307.548166][T13897] bpf_prog_test_run_syscall+0x312/0x4b0 [ 307.548203][T13897] ? __pfx_bpf_prog_test_run_syscall+0x10/0x10 [ 307.548236][T13897] ? __fget_files+0x2a/0x420 [ 307.548271][T13897] ? __pfx_bpf_prog_test_run_syscall+0x10/0x10 [ 307.548306][T13897] bpf_prog_test_run+0x2c4/0x340 [ 307.548339][T13897] __sys_bpf+0x4a4/0x860 [ 307.548370][T13897] ? __pfx___sys_bpf+0x10/0x10 [ 307.548393][T13897] ? _raw_spin_unlock_irqrestore+0x85/0x110 [ 307.548439][T13897] ? rcu_is_watching+0x15/0xb0 [ 307.548478][T13897] __x64_sys_bpf+0x7c/0x90 [ 307.548503][T13897] do_syscall_64+0xfa/0x3b0 [ 307.548528][T13897] ? lockdep_hardirqs_on+0x9c/0x150 [ 307.548553][T13897] ? entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 307.548573][T13897] ? clear_bhb_loop+0x60/0xb0 [ 307.548599][T13897] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 307.548620][T13897] RIP: 0033:0x7f71b118e929 [ 307.548639][T13897] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 307.548658][T13897] RSP: 002b:00007f71b1f53038 EFLAGS: 00000246 ORIG_RAX: 0000000000000141 SYZFAIL: failed to recv rpc fd=3 want=4 recv=0 n=0 (errno 9: Bad file descriptor) [ 307.548679][T13897] RAX: ffffffffffffffda RBX: 00007f71b13b5fa0 RCX: 00007f71b118e929 [ 307.548695][T13897] RDX: 0000000000000010 RSI: 0000200000000740 RDI: 000000000000000a [ 307.548708][T13897] RBP: 00007f71b1210ab1 R08: 0000000000000000 R09: 0000000000000000 [ 307.548721][T13897] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 [ 307.548733][T13897] R13: 0000000000000000 R14: 00007f71b13b5fa0 R15: 00007ffc56593ca8 [ 307.548765][T13897] [ 308.010412][ T5853] Bluetooth: hci4: command tx timeout [ 308.135563][T13779] team0: Port device team_slave_0 added [ 308.997769][ T6442] netdevsim netdevsim3 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 309.079741][ T6442] netdevsim netdevsim3 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 309.199248][ T6442] netdevsim netdevsim3 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 309.316231][ T6442] netdevsim netdevsim3 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 309.535003][ T6442] bridge_slave_1: left promiscuous mode [ 309.542722][ T6442] bridge0: port 2(bridge_slave_1) entered disabled state [ 309.552780][ T6442] bridge0: port 1(bridge_slave_0) entered disabled state [ 309.792257][ T6442] erspan0 (unregistering): left promiscuous mode [ 309.811784][ T6442] gretap0 (unregistering): left promiscuous mode [ 309.866995][ T6442] team0: Port device geneve0 removed [ 310.168212][ T6442] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 310.185815][ T6442] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 310.196959][ T6442] bond0 (unregistering): (slave team0): Releasing backup interface [ 310.209149][ T6442] bond0 (unregistering): Released all slaves [ 310.224926][ T6442] bond1 (unregistering): Released all slaves [ 310.238536][ T6442] bond2 (unregistering): Released all slaves [ 310.329601][ T6442] bond3 (unregistering): (slave wireguard0): Releasing backup interface [ 310.338296][ T6442] wireguard0: left promiscuous mode [ 310.345621][ T6442] bond3 (unregistering): Released all slaves [ 312.153926][ T6442] hsr_slave_0: left promiscuous mode [ 312.159969][ T6442] hsr_slave_1: left promiscuous mode [ 312.171164][ T6442] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 312.178739][ T6442] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 312.188711][ T6442] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 312.198141][ T6442] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 312.215354][ T6442] veth1_macvtap: left promiscuous mode [ 312.221200][ T6442] veth0_macvtap: left promiscuous mode [ 312.226872][ T6442] veth1_vlan: left promiscuous mode [ 312.237600][ T6442] veth0_vlan: left promiscuous mode [ 312.662016][ T6442] team0 (unregistering): Port device team_slave_1 removed [ 312.696427][ T6442] team0 (unregistering): Port device team_slave_0 removed [ 313.369700][ T6442] IPVS: stop unused estimator thread 0... [ 313.467835][ T6442] netdevsim netdevsim0 netdevsim3 (unregistering): unset [0, 0] type 1 family 0 port 8472 - 0 [ 313.487151][ T6442] netdevsim netdevsim0 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 313.559438][ T6442] netdevsim netdevsim0 netdevsim2 (unregistering): unset [0, 0] type 1 family 0 port 8472 - 0 [ 313.570332][ T6442] netdevsim netdevsim0 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 313.627764][ T6442] netdevsim netdevsim0 netdevsim1 (unregistering): unset [0, 0] type 1 family 0 port 8472 - 0 [ 313.638422][ T6442] netdevsim netdevsim0 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 313.729609][ T6442] netdevsim netdevsim0 netdevsim0 (unregistering): unset [0, 0] type 1 family 0 port 8472 - 0 [ 313.741592][ T6442] netdevsim netdevsim0 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 313.926737][ T6442] bridge_slave_1: left allmulticast mode [ 313.938446][ T6442] bridge_slave_1: left promiscuous mode [ 313.948443][ T6442] bridge0: port 2(bridge_slave_1) entered disabled state [ 313.958918][ T6442] bridge_slave_0: left allmulticast mode [ 313.964955][ T6442] bridge_slave_0: left promiscuous mode [ 313.972188][ T6442] bridge0: port 1(bridge_slave_0) entered disabled state [ 314.191515][ T6442] erspan0 (unregistering): left promiscuous mode [ 314.229812][ T6442] gretap0 (unregistering): left promiscuous mode [ 314.755188][ T6442] bond0 (unregistering): Released all slaves [ 314.839495][ T6442] bond1 (unregistering): Released all slaves [ 314.921464][ T6442] bond2 (unregistering): Released all slaves [ 314.995923][ T6442] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 315.009924][ T6442] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 315.020582][ T6442] bond0 (unregistering): Released all slaves [ 315.144806][ T6442] tipc: Left network mode [ 315.693149][ T6442] hsr_slave_0: left promiscuous mode [ 315.699291][ T6442] hsr_slave_1: left promiscuous mode [ 315.752192][ T6442] vlan0: left allmulticast mode [ 315.757143][ T6442] veth0_vlan: left allmulticast mode [ 315.766975][ T6442] vlan0: left promiscuous mode [ 315.773277][ T6442] veth1_macvtap: left promiscuous mode [ 315.778808][ T6442] veth0_macvtap: left promiscuous mode [ 315.785310][ T6442] veth1_vlan: left promiscuous mode [ 315.790907][ T6442] veth0_vlan: left promiscuous mode [ 315.886886][ T6442] pimreg3 (unregistering): left allmulticast mode [ 316.978613][ T6442] team0 (unregistering): Port device team_slave_0 removed