last executing test programs: 6.051060614s ago: executing program 0 (id=386): r0 = syz_clone(0x0, 0x0, 0x0, 0x0, 0x0, 0x0) r1 = openat$ptmx(0xffffffffffffff9c, &(0x7f00000000c0), 0x121301, 0x0) ioctl$TIOCSETD(r1, 0x541b, &(0x7f0000000000)) r2 = syz_open_procfs(0x0, &(0x7f00000000c0)='task\x00') r3 = openat$tun(0xffffffffffffff9c, &(0x7f0000000100), 0xe8001, 0x0) ioctl$TUNSETIFF(r3, 0x400454ca, &(0x7f0000000040)={'syzkaller1\x00', 0x2}) ioctl$TUNSETOFFLOAD(r3, 0x400454c9, 0xba98575a95aeb70d) ioctl$TUNSETLINK(r3, 0x400454cd, 0x30c) r4 = openat$kvm(0xffffffffffffff9c, &(0x7f00000000c0), 0x0, 0x0) ioctl$KVM_CREATE_VM(r4, 0xae01, 0x0) r5 = creat(&(0x7f00000002c0)='./file0\x00', 0x0) r6 = open$dir(&(0x7f0000000080)='./file0\x00', 0x0, 0x0) mmap$xdp(&(0x7f0000ffc000/0x4000)=nil, 0x4000, 0x0, 0x12, r6, 0x0) write(r5, &(0x7f0000000180)="2cd889f0253e14f3", 0x8) r7 = bpf$PROG_LOAD(0x5, &(0x7f0000000040)={0x2, 0x4, &(0x7f0000000200)=ANY=[@ANYBLOB="180000000300000000000000fe020010850000000700000095"], &(0x7f0000000000)='GPL\x00', 0x0, 0x0, 0x0, 0x100, 0x70, '\x00', 0x0, @fallback=0x30, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_LINK_CREATE_XDP(0x1c, &(0x7f00000005c0)={r7, 0x0, 0x30, 0x0, @val=@uprobe_multi={&(0x7f0000000140)='./file0\x00', &(0x7f00000001c0)=[0x7], 0x0, 0x0, 0x1}}, 0x40) fchdir(r2) mount(0x0, &(0x7f0000000080)='.\x00', &(0x7f0000000000)='proc\x00', 0x0, 0x0) syz_usb_disconnect(0xffffffffffffffff) syz_open_procfs$namespace(r0, &(0x7f0000000140)='ns/net\x00') 5.120777833s ago: executing program 0 (id=399): r0 = socket(0x10, 0x3, 0x0) setsockopt$netlink_NETLINK_TX_RING(r0, 0x10e, 0xc, &(0x7f0000000080)={0x209d}, 0x10) r1 = mq_open(&(0x7f0000000a00)='eth0\x00#\x13\xaeu\xe0\xfbu0*\xf3\x11i\xdd\xd9\xc6\x87\xde\xbf_\xa0\xf6\xdfk\xbf.\"\xa6\xc0#p\xcd\x1c/\xa6\xf2\xbcyL\x85a\xb5\xbb~+>\xbc\x93\xf8\xab\x9a3\x85l\x1d\x15\x11\x1a{@!2\xb6!\xae\xf79k\x90\x88\v8I$\xfdQ\x1d\x90=r\xd8\xc0\xd8\t/\x8dv\xd3\xa7\xd8J\xfd\x94#KT\xdd\x14\xd3\xe1\xbe_$A=z\xee\xbd/X\xbemOX)s\x94\xde\xbe_\x88N\xb8\xde\xeb)\xcd\xc56m\n\v\x01\xbe\xeb\xbb\x91\x11z\xc2|d\x1b\x04\xd2\xf9yx\xb2\x1b\bLTrw\x88|0\t\xc6\xe2\x9c\xed\\\xd8[\xc8\x04 \xf3\xac]V\x1d:\xfc\xc3\x9e\x02\ax\xef\xfe\x1c.TT\xcf\xbf\xf5\x80a%\xdcQ\xb3CuT\xcc\x02\xea\x91\xe8\xd8\x01YZy\xe6!\x89\x9c\xd1\xa6\x167\x8avs\xb2\a\xfe\xb3j*\xad\x18I\xcc\xe9\xaa{]\xef\xb7\xf2\xee*\xf95\bJt\xd0s\xc4\xaa\xc8\x13~\xb2\xf20\xbdf\xdb\xaeG\xe3\xfb\xef\x94\xef:Q\x1b\xe3\xa3\xa4}\xef`e\xcdL\xab\xdb\r\xf2y\x9fg1\xf4\t\x18i/!\x13\xf1,\x8cu\xaa\xbf~)\x94\x1b2\x93\x86\xe7\x9a\xf2j\xa8\x96\xa6\xa2\xfcN\x81\xafTh\xb3\x1bo:\xe8\vq7S\xe4H\xf3L\xa0\x9c\x97B\x12\x10\x9d\xaa\x7fq\x06\xb9(\xf6\x1c\x83\xb1[\x84\x10aF\x9b\xda\xeb\xc4*\x02q\xb2\x92\x00\x8cv\xac AN\xb9\xaa\x81W\x97Te\x81\x98L\xfe\x97+u\xd3^\xb1\xf0\xe0\x1f\xbd\a\xbb\xe5\x18\x9ds\x12ha\x00\xeb\x84\x99\xc6\x0f\xf1\xd5LD\xa87\xa0DQ\x8a2\x16!8,\xbc%$\xf1\xf2\xd6\x9cy\xecK\xda\xc5\xdc\xfa\xdd\xf6\b\xc6\xb4\x14\x16\x9c\x7f\x92\x85\xb0\xa2%:\xf0\xf4\x150\x0f\xb4\xa6d\xb4\xe4L\x19W\xd5\x90\xf7l\x1b\xfe\xde\vh\x97=m\x82.\xac\vh\xfe\x84Q}\x838/\x83\xebP\xbe\xd6+:\xceE\\\x95\xd4\xac\x92\x87\xd7\x98\x97\xe3\xec\xad\xd5\xac\x80C\x84R\x88r^g\xbaQ(\x9a>\xe2\xba\xa8=\x17\f04\x8f\x1f\xf2\x88*@v\xe7\xd1\xee\xb3\xc2\x8dT\xda\x81g\xd9\x1a:hzW6s)x\x06\xae\x11\xf2\x1e\xcd\v\xe5L\x19\x96s\xbc\x9e\xf4\x10$\r\xa4\xd8\xa2\xa2\xfcM\xc5R3~$\xc0\xa5n\x9a W\xb1e\xcc<$\xf5#G\xce\xaf\x88U\xfa\x80\xf24\xf6\xb5\xef\xe2z\xcf\x9eN\x92\xac\x81{\xe6\xbd\xd7\x16\xe6F\xe2\x9e\x91%\x94\v\xb9\xdc\xd6\x87\x8f\xcd\xc1\xb05\x81\x81\xf8\xe9X\xe8Kt9@\xf4\xe1\xa6=\xc9\xe1:p4\nP[f\x1d\xfd\xfa\x839\x8d\x0e\xd1\xf9\xa0\xd2^E\xe5\xedo.\xaa\xf2\xb4\xcdn\x14\f\xcd\x83_yk\xda\xc5\x89\xf0Z\xea\x1d\xbd\xc00\v\xa3\xb3\xbe\xe6\x8b\x18/\xa8\xaaY\xf2\x89\x0f\x9enOOr\x00\xb2\x01\x1f:Z\xb8\xee;\xe3;\x8aPV\xce\xee\xf8[\x16\n\xe6:z\xb8\x1dvk\a{\xc1\x14\xd9+\xdb\t\x11\x90y\xe8\\\xe6\xfc\xca\xb4\xcbC\xd6\xd0\xbeC\xce\xc0L\xdb\xcd\xb3\x907c\xb4\xa6\xce\xdb[\xce\x122N\xa3\xc7Q<\x1a\xa5\xb3)\xc5\x98\x84\x8a\x82\x19\xb0\t\xac\x10\\\x8c\xbe\xcb\raIYe[\xa8\xc4\xac\x0e\xbb\x0f\b^\xdag\xe2\xa9\"\xf5h\'\xcf\xd9\x1b\xef\xe3\xe7y\x82\x1e\xca\x7f\x02 \xcf\x9e\xe0\xd9TM\xb9\n\xa9\xad3\x91\xa5\xe6!\xcd\xa2\xa4\x14\x12\xf9\xbf\xa8b\xcec:\xd7\'\f\f\x957\xc9}\r\xa6\xaa\x0f\xca\x96\xeb\x00\x00\x00\x00\x00', 0x42, 0x1f0, 0x0) mq_timedsend(r1, 0x0, 0x0, 0x0, 0x0) mq_timedsend(r1, 0x0, 0x0, 0x6, 0x0) mq_timedsend(r1, 0x0, 0x0, 0x4, 0x0) write(r0, &(0x7f00000000c0)="1800000016005f0214fffffffffffff80700000001000000", 0x18) r2 = socket$nl_route(0x10, 0x3, 0x0) openat$dma_heap(0xffffffffffffff9c, &(0x7f0000000000), 0xc081, 0x0) openat$audio(0xffffffffffffff9c, &(0x7f00000000c0), 0x1cb202, 0x0) r3 = syz_open_dev$sndpcmp(&(0x7f00000001c0), 0x0, 0x0) ioctl$SNDRV_PCM_IOCTL_WRITEI_FRAMES(r3, 0xc0844123, &(0x7f0000000080)={0x0, 0x0}) r4 = socket$can_raw(0x1d, 0x3, 0x1) setsockopt$CAN_RAW_ERR_FILTER(r4, 0x65, 0x2, &(0x7f0000000280)=0x5, 0x4) ioctl$ifreq_SIOCGIFINDEX_vcan(r4, 0x8933, &(0x7f0000000180)={'vxcan1\x00', 0x0}) bind$can_raw(r4, &(0x7f0000000200)={0x1d, r5}, 0x10) ioctl$KVM_GET_VCPU_MMAP_SIZE(0xffffffffffffffff, 0xae04) sendmsg$nl_route_sched(r2, &(0x7f00000003c0)={0x0, 0x0, &(0x7f00000001c0)={&(0x7f00000000c0)=@getchain={0x24, 0x11, 0x839, 0x70bd25, 0x0, {0x0, 0x0, 0x0, r5, {0x1}, {0xffff, 0xa}, {0x1}}}, 0x24}}, 0x0) 4.979779796s ago: executing program 0 (id=402): r0 = socket$inet6_mptcp(0xa, 0x1, 0x106) setsockopt$sock_int(0xffffffffffffffff, 0x1, 0x8, 0x0, 0x0) sendto$inet6(r0, 0x0, 0x0, 0x20004041, 0x0, 0x0) connect$inet6(r0, &(0x7f0000000280)={0xa, 0x0, 0x0, @dev={0xfe, 0x80, '\x00', 0x19}, 0x7}, 0x1c) r1 = socket$nl_generic(0x10, 0x3, 0x10) r2 = syz_genetlink_get_family_id$mptcp(&(0x7f00000002c0), 0xffffffffffffffff) sendmsg$MPTCP_PM_CMD_ADD_ADDR(r1, &(0x7f0000000480)={0x0, 0x0, &(0x7f0000000440)={&(0x7f00000001c0)=ANY=[@ANYBLOB='(\x00\x00\x00', @ANYRES16=r2, @ANYBLOB="0900000000000004000002000000140001800500020001"], 0x28}}, 0x0) 4.900906041s ago: executing program 0 (id=403): openat(0xffffffffffffff9c, &(0x7f000000c380)='./file0\x00', 0x40, 0x0) r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000080)={0x18, 0x4, &(0x7f0000000000)=ANY=[@ANYBLOB="180100001c000000000000000000000c850000006d00000095"], &(0x7f0000001800)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000200)={&(0x7f0000000340)='9p_protocol_dump\x00', r0}, 0x10) pipe2$9p(&(0x7f0000000240)={0xffffffffffffffff, 0xffffffffffffffff}, 0x0) r2 = syz_open_procfs(0xffffffffffffffff, &(0x7f0000000000)='numa_maps\x00') prctl$PR_SET_SECCOMP(0x16, 0x1, 0x0) lseek(r2, 0x1000000, 0x0) dup(r1) openat$vga_arbiter(0xffffffffffffff9c, &(0x7f0000000000), 0x80082, 0x0) r3 = openat$nci(0xffffffffffffff9c, &(0x7f0000000080), 0x2, 0x0) ioctl$IOCTL_GET_NCIDEV_IDX(r3, 0x0, &(0x7f00000000c0)=0x0) r5 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) sendmsg$NFC_CMD_DEV_UP(r5, &(0x7f0000000140)={0x0, 0x0, &(0x7f0000000180)={&(0x7f00000001c0)={0x1c, 0x0, 0x1, 0x123, 0x234, {}, [@NFC_ATTR_DEVICE_INDEX={0x8, 0x1, r4}]}, 0x1c}}, 0x0) write$nci(r3, &(0x7f0000000280)=ANY=[@ANYBLOB="54023a8af5c1f1ef5cf8f07ceb6b687102bf67b40f712c020000005b41"], 0x9) 4.079568768s ago: executing program 0 (id=423): r0 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r0, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000040)={&(0x7f0000000100)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a20000000000a05000000000000000000010000000900010073797a300000000048000000030a05020000000000000000010000000900030073797a320000000014000480080002400000000008000140000000000900010073797a3000000000080007006e6174003c000000060a01040000000000000000010000001400048010000180090001006d6173710000000008000b40000000000900010073797a300000"], 0xcc}}, 0x0) (fail_nth: 3) 4.010774417s ago: executing program 0 (id=425): r0 = bpf$BPF_PROG_WITH_BTFID_LOAD(0x5, 0x0, 0x0) bpf$LINK_GET_FD_BY_ID(0x1e, 0x0, 0xfffffed1) r1 = socket$nl_netfilter(0x10, 0x3, 0xc) r2 = socket$nl_netfilter(0x10, 0x3, 0xc) r3 = openat$dsp(0xffffffffffffff9c, &(0x7f0000000000), 0x42, 0x0) r4 = syz_open_dev$dri(&(0x7f0000000140), 0x1, 0x0) ioctl$DRM_IOCTL_MODE_ADDFB2(r4, 0xc06864b8, &(0x7f0000000580)={0x0, 0x8c1, 0x80, 0x20203843, 0x3, [0x2], [0x810003, 0x0, 0x0, 0x7fffffff], [0x5, 0x0, 0xffffffff, 0x46], [0x0, 0x1000000, 0x0, 0xf]}) r5 = dup(r3) write$6lowpan_enable(r5, &(0x7f0000000000)='0', 0xfffffd2c) ioctl$SNDRV_CTL_IOCTL_PCM_PREFER_SUBDEVICE(0xffffffffffffffff, 0x40045532, &(0x7f0000000100)) r6 = getpid() r7 = syz_pidfd_open(r6, 0x0) setns(r7, 0x80) r8 = syz_open_dev$sndpcmp(&(0x7f00000001c0), 0x0, 0xa2c65) ioctl$SNDRV_PCM_IOCTL_HW_PARAMS(r8, 0xc2604111, &(0x7f0000000280)={0x7, [[0x8, 0x40, 0x7, 0x9, 0x0, 0x5, 0x7, 0x5], [0x401, 0x1, 0x80000000, 0x4601, 0x7fff, 0x88, 0x8, 0x576], [0x0, 0x1, 0x3, 0x4, 0x4, 0x3, 0x9, 0x625]], '\x00', [{0x1, 0xfffffff8}, {0x0, 0x1d}, {0x7ff, 0x4, 0x1, 0x1, 0x1}, {0x8, 0x93bd, 0x0, 0x1, 0x1}, {0xa, 0x7, 0x1}, {0x1000, 0x3, 0x1, 0x1, 0x1}, {0x7, 0x4, 0x0, 0x1, 0x1}, {0x6000000, 0x7, 0x1, 0x0, 0x1, 0x1}, {0xffffffc0, 0x409, 0x0, 0x0, 0x1}, {0xf, 0x9, 0x1, 0x1, 0x0, 0x1}, {0x7f, 0xfffffc01, 0x1, 0x1}, {0x0, 0x43, 0x0, 0x1, 0x1, 0x1}], '\x00', 0x5}) sendmsg$NFT_BATCH(r2, &(0x7f000000c2c0)={0x0, 0x0, &(0x7f0000000200)={&(0x7f0000000340)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a28000000000a0101000000005e1affd5020000000900010073797a300000000008000240000000032c000000030a01030000e6ff00000000020000000900010073797a30000000000900030073797a320000000014000000110001"], 0x7c}}, 0x0) sendmsg$NFT_BATCH(r2, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000300)={&(0x7f0000000240)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a2c000000060a0b040000000000000000020000000900010073797a30000000000900020073797a320000000014000000110001"], 0x54}}, 0x24008005) mount(&(0x7f0000000040)=@loop={'/dev/loop', 0x0}, &(0x7f0000000000)='./cgroup\x00', &(0x7f00000000c0)='nfs\x00', 0x2208001, 0x0) sendmsg$NFT_BATCH(r2, &(0x7f00000002c0)={0x0, 0x0, &(0x7f00000001c0)={&(0x7f00000007c0)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a20000000080a0101000000000000000002000000091f010073797a300000000038000000060a17d50000000000000000020000000900020073797a32000000000900010073797a30000000000c0003400000000000000002"], 0xcdc}, 0x1, 0x0, 0x0, 0x8004}, 0x0) sendmsg$IPSET_CMD_CREATE(r1, &(0x7f0000000000)={0x0, 0x0, &(0x7f00000004c0)={&(0x7f0000000740)={0x4c, 0x2, 0x6, 0x5, 0x0, 0x0, {}, [@IPSET_ATTR_TYPENAME={0xc, 0x3, 'hash:ip\x00'}, @IPSET_ATTR_REVISION={0x5}, @IPSET_ATTR_TYPENAME={0x14, 0x3, 'hash:ip,port,ip\x00'}, @IPSET_ATTR_FAMILY={0x5, 0x5, 0x2}, @IPSET_ATTR_PROTOCOL={0x5, 0x1, 0x6}]}, 0x4c}}, 0x0) r9 = socket$nl_netfilter(0x10, 0x3, 0xc) r10 = socket$alg(0x26, 0x5, 0x0) ioctl$AUTOFS_IOC_READY(r9, 0x9360, 0x5) bind$alg(r10, &(0x7f0000000000)={0x26, 'hash\x00', 0x0, 0x0, 'ghash-generic\x00'}, 0x58) r11 = accept4(r10, 0x0, 0x0, 0x0) setsockopt$ALG_SET_KEY(r10, 0x117, 0x1, &(0x7f0000000200)="ad56b6cc0400aeb995298992ea5400c2", 0x10) close_range(0xffffffffffffffff, r0, 0x2) sendmsg$alg(r11, &(0x7f0000000140)={0x0, 0x0, &(0x7f0000000100)=[{&(0x7f0000000280)="e1d5d784141154031d5f08077cc8fa6233", 0x11}, {&(0x7f0000000240)="c5c1a0bb6d", 0x5}], 0x2, 0x0, 0x0, 0x2000c810}, 0x4000050) sendmsg$IPSET_CMD_ADD(r9, &(0x7f0000000540)={0x0, 0x0, &(0x7f0000000180)={&(0x7f0000000600)=ANY=[@ANYBLOB="440000000906010200000000890000000000fffc0900020073797a310000000005000100070000001c0007800c00018008000140e000000240fc020000000000070000000000000000", @ANYRES64=r1, @ANYRESOCT=r1, @ANYRES8=r4], 0x44}, 0x1, 0x0, 0x0, 0x10000047}, 0x20000000) sendmsg$IPSET_CMD_SWAP(r9, &(0x7f0000000700)={0x0, 0x0, &(0x7f0000000500)={&(0x7f0000000840)=ANY=[@ANYBLOB="3400afa7e09720f4f0fb0000002300000500000105000100020073797a3100000000092c60fe0003e972797a3100000000000000d07c5985a8f77a60a2377e08006403a39923ee1a55364992d4f69025f0851fb41422119f6b7d08d01f8b475463ad53dd0888c79c373b34d33ffd617ca1326ba9308c9b9882785e5fc8ff637ab1d4b2a267d41cdc908903b88c6545fc"], 0x34}, 0x1, 0x0, 0x0, 0x844}, 0x840) 3.740636118s ago: executing program 2 (id=430): r0 = io_uring_setup(0x79bf, &(0x7f0000000180)) r1 = socket$inet6_tcp(0xa, 0x1, 0x0) r2 = socket$inet6_tcp(0xa, 0x1, 0x0) setsockopt$SO_ATTACH_FILTER(r2, 0x1, 0x1a, 0x0, 0x0) r3 = fcntl$dupfd(r2, 0x0, r1) sendto$inet6(r2, 0x0, 0x0, 0x240540c7, &(0x7f0000000200)={0xa, 0x4e22, 0x0, @loopback}, 0x1c) sendto$inet6(r2, &(0x7f0000000000)="04", 0x1, 0x44001, 0x0, 0x0) read$FUSE(r3, &(0x7f0000001fc0)={0x2020}, 0x2020) open(0x0, 0x0, 0x100) close_range(r0, 0xffffffffffffffff, 0x0) openat$rdma_cm(0xffffffffffffff9c, &(0x7f0000000440), 0x2, 0x0) socket$nl_route(0x10, 0x3, 0x0) socket$packet(0x11, 0x3, 0x300) r4 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route(r4, &(0x7f00000006c0)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000400)=@newlink={0x20, 0x10, 0x40d, 0x70bd29, 0x25dfdbfc}, 0x20}}, 0x0) 3.300194745s ago: executing program 3 (id=434): r0 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r0, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000040)={&(0x7f0000000100)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a20000000000a05000000000000000000010000000900010073797a300000000048000000030a05020000000000000000010000000900030073797a320000000014000480080002400000000008000140000000000900010073797a3000000000080007006e6174003c000000060a01040000000000000000010000001400048010000180090001006d6173710000000008000b40000000000900010073797a300000"], 0xcc}}, 0x0) (fail_nth: 4) 3.200883108s ago: executing program 3 (id=435): r0 = socket$inet6_mptcp(0xa, 0x1, 0x106) setsockopt$sock_int(0xffffffffffffffff, 0x1, 0x8, 0x0, 0x0) sendto$inet6(r0, 0x0, 0x0, 0x20004041, 0x0, 0x0) connect$inet6(r0, &(0x7f0000000280)={0xa, 0x0, 0x0, @dev={0xfe, 0x80, '\x00', 0x19}, 0x7}, 0x1c) r1 = socket$nl_generic(0x10, 0x3, 0x10) r2 = syz_genetlink_get_family_id$mptcp(&(0x7f00000002c0), 0xffffffffffffffff) sendmsg$MPTCP_PM_CMD_ADD_ADDR(r1, &(0x7f0000000480)={0x0, 0x0, &(0x7f0000000440)={&(0x7f00000001c0)=ANY=[@ANYBLOB='(\x00\x00\x00', @ANYRES16=r2, @ANYBLOB="0900000000000300000002000000140001800500020001"], 0x28}}, 0x0) 3.110773294s ago: executing program 3 (id=436): r0 = bpf$OBJ_GET_MAP(0x7, &(0x7f0000000180)=@o_path={&(0x7f0000000140)='./file0\x00'}, 0x18) r1 = dup(0xffffffffffffffff) bpf$MAP_UPDATE_ELEM(0x2, &(0x7f0000000280)={r0, &(0x7f00000001c0)="fc748c22c7fc6f839b3b15e69c9adce5c86061f32072ca00a373ca9413574f4276b244ccb2a57163b0694e50171a2a93463e9673ae8997634fb3240af242d80da0b3aefdef0a9de64170491b93fa314914bea19b7d3cec9b2a4013", &(0x7f0000000240)=@tcp6=r1, 0x4}, 0x20) migrate_pages(0x0, 0x5, &(0x7f0000000000)=0x9, &(0x7f0000000080)=0x272) (async) r2 = syz_usb_connect$cdc_ecm(0x0, 0x4d, &(0x7f00000002c0)=ANY=[@ANYBLOB="120100000200f23f2505a1a440000000010109023b000101000000090400001202060000052406000005240000100d240f01000000000000000000090582020002000000090503020002000000fe036cfbb9a25daebdaeaa5ad85ca9c34896daf8a54c2cc097b7d2dc3bd824c43a0fad02"], 0x0) syz_usb_ep_write(r2, 0x3, 0x0, 0x0) syz_emit_vhci(&(0x7f00000000c0)=@HCI_ACLDATA_PKT={0x2, {0xe8253500b5d34e0e, 0x1, 0x1, 0x5d}, @l2cap_cid_signaling={{0x59}, [@l2cap_conf_rsp={{0x5, 0x3, 0x4f}, {0xfffc, 0x2, 0x4, [@l2cap_conf_mtu={0x1, 0x2, 0xe184}, @l2cap_conf_flushto={0x2, 0x2, 0x3}, @l2cap_conf_efs={0x6, 0x10, {0x65, 0x0, 0xb, 0x4, 0x52}}, @l2cap_conf_efs={0x6, 0x10, {0x6, 0x0, 0x9, 0x6, 0x6, 0x4}}, @l2cap_conf_flushto={0x2, 0x2, 0x7}, @l2cap_conf_flushto={0x2, 0x2, 0x4}, @l2cap_conf_efs={0x6, 0x10, {0x5, 0x0, 0x3, 0x4, 0x6, 0x7}}, @l2cap_conf_fcs={0x5, 0x1}]}}, @l2cap_move_chan_cfm_rsp={{0x11, 0x1, 0x2}, {0x601}}]}}, 0x62) (async) syz_open_dev$vim2m(&(0x7f0000000000), 0x82000000003, 0x2) r3 = socket$netlink(0x10, 0x3, 0x4) bind$netlink(r3, &(0x7f0000514ff4)={0x10, 0x0, 0x4, 0x2ffffffff}, 0x2e) socket$inet6_tcp(0xa, 0x1, 0x0) r4 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000000), 0x0, 0x0) r5 = ioctl$KVM_CREATE_VM(r4, 0xae01, 0x0) r6 = ioctl$KVM_CREATE_VCPU(r5, 0xae41, 0x0) syz_kvm_setup_cpu$x86(0xffffffffffffffff, r6, &(0x7f0000fe8000/0x18000)=nil, &(0x7f0000000100)=[@text64={0x40, 0x0}], 0x1, 0x43, 0x0, 0x0) (async) syz_kvm_setup_cpu$x86(r5, 0xffffffffffffffff, &(0x7f0000fe8000/0x18000)=nil, &(0x7f00000000c0)=[@text32={0x20, 0x0}], 0x1, 0x0, 0x0, 0x0) ioctl$KVM_RUN(r6, 0xae80, 0x0) ioctl$KVM_SET_NESTED_STATE(r6, 0x4080aebf, &(0x7f0000000400)={{0x1, 0x0, 0x80, {0x4000, 0x100000}}, "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", "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"}) (async) openat$iommufd(0xffffffffffffff9c, 0x0, 0x0, 0x0) (async) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) (async) prlimit64(0x0, 0xe, &(0x7f0000000380)={0x8, 0x100008b}, 0x0) (async) r7 = socket$nl_route(0x10, 0x3, 0x0) (async) r8 = socket$nl_route(0x10, 0x3, 0x0) (async) r9 = socket(0x10, 0x3, 0x0) ioctl$sock_SIOCGIFINDEX(r9, 0x8933, &(0x7f0000000080)={'bridge0\x00', 0x0}) sendmsg$nl_route(r8, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000000)={&(0x7f0000000280)=ANY=[@ANYBLOB="3c00000010004b0400000000000000007a000000", @ANYRES32=r10, @ANYBLOB="00eaff00000000001c0012800b00010062726964676500000c0002800508070007000000"], 0x3c}, 0x1, 0x0, 0x0, 0x4004800}, 0x0) ioctl$sock_SIOCGIFINDEX(r7, 0x8933, &(0x7f0000000080)={'bond0\x00', 0x0}) (async) r12 = socket$inet6_icmp_raw(0xa, 0x3, 0x3a) ioctl$sock_SIOCGIFINDEX(r12, 0x8933, &(0x7f0000000000)={'bridge0\x00', 0x0}) sendmsg$nl_route(r7, &(0x7f0000000280)={0x0, 0x0, &(0x7f0000000580)={&(0x7f0000000740)=@newlink={0x4c, 0x10, 0x403, 0x0, 0x0, {0x0, 0x0, 0x0, 0x0, 0x215}, [@IFLA_LINKINFO={0x1c, 0x12, 0x0, 0x1, @vlan={{0x9}, {0xc, 0x2, 0x0, 0x1, [@IFLA_VLAN_ID={0x6}]}}}, @IFLA_LINK={0x8, 0x5, r11}, @IFLA_MASTER={0x8, 0xa, r13}]}, 0x4c}, 0x1, 0xba01}, 0x0) 2.850060032s ago: executing program 2 (id=437): bpf$PROG_LOAD(0x5, 0x0, 0x0) r0 = socket$nl_xfrm(0x10, 0x3, 0x6) r1 = socket$packet(0x11, 0x2, 0x300) ioctl$sock_SIOCGIFINDEX(r1, 0x8933, &(0x7f0000000040)={'bond0\x00', 0x0}) sendmsg$nl_xfrm(r0, &(0x7f00000004c0)={0x0, 0x0, &(0x7f0000000480)={&(0x7f0000000140)=@updsa={0x144, 0x10, 0x1, 0x0, 0x200017, {{@in6=@dev, @in6=@empty, 0x0, 0x0, 0x0, 0x0, 0x0, 0x20, 0x0, 0x32}, {@in6=@private1, 0x0, 0x32}, @in=@multicast2, {0x0, 0x0, 0x0, 0x500}, {0xffffffffffffffff}, {}, 0x0, 0x0, 0xa}, [@algo_crypt={0x48, 0x2, {{'ecb(cipher_null)\x00'}}}, @offload={0xc, 0x1c, {r2, 0x4}}]}, 0x144}}, 0x0) 2.849835964s ago: executing program 2 (id=438): mkdirat(0xffffffffffffff9c, &(0x7f0000000140)='./file0\x00', 0x0) mount$cgroup(0x0, &(0x7f0000000100)='./file0\x00', &(0x7f00000001c0), 0x2010042, &(0x7f0000000000)={[{@subsystem='hugetlb'}, {@subsystem='memory'}, {@subsystem='cpuacct'}, {@xattr}]}) mount(0x0, &(0x7f00000001c0)='./file0\x00', 0x0, 0x40078, &(0x7f0000000000)) r0 = syz_clone(0x0, 0x0, 0x0, 0x0, 0x0, 0x0) r1 = syz_open_procfs(0x0, &(0x7f00000000c0)='task\x00') fchdir(r1) r2 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000380), 0x0, 0x0) r3 = ioctl$KVM_CREATE_VM(r2, 0xae01, 0x0) r4 = ioctl$KVM_CREATE_VCPU(r3, 0xaece, 0x2) preadv(r4, &(0x7f0000000100)=[{&(0x7f0000001040)=""/4080, 0xff0}], 0x1, 0x6, 0x1) mount(0x0, &(0x7f0000000080)='.\x00', &(0x7f0000000040)='overlay\x00', 0x0, 0x0) r5 = socket$nl_xfrm(0x10, 0x3, 0x6) sendmsg$nl_xfrm(r5, &(0x7f0000000000)={0x0, 0x0, &(0x7f0000000040)={&(0x7f00000005c0)=@newsa={0x13c, 0x10, 0x413, 0x0, 0x0, {{@in=@multicast1, @in6=@rand_addr=' \x01\x00', 0x0, 0x0, 0x4e24, 0x0, 0x2, 0x0, 0x20, 0x0, 0x0, 0xee00}, {@in6=@ipv4={'\x00', '\xff\xff', @remote}, 0x0, 0x32}, @in=@dev, {0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x20000000008}, {0x0, 0x8, 0xcc}, {0xf6}, 0x0, 0x0, 0xa, 0x1, 0x1}, [@algo_aead={0x4c, 0x12, {{'rfc4106(gcm(aes))\x00'}, 0x0, 0x80}}]}, 0x13c}}, 0x0) syz_usb_disconnect(0xffffffffffffffff) syz_open_procfs$namespace(r0, &(0x7f0000000140)='ns/net\x00') 1.877994846s ago: executing program 2 (id=448): r0 = socket$inet6_mptcp(0xa, 0x1, 0x106) setsockopt$sock_int(0xffffffffffffffff, 0x1, 0x8, 0x0, 0x0) sendto$inet6(r0, 0x0, 0x0, 0x20004041, 0x0, 0x0) connect$inet6(r0, &(0x7f0000000280)={0xa, 0x0, 0x0, @dev={0xfe, 0x80, '\x00', 0x19}, 0x7}, 0x1c) r1 = socket$nl_generic(0x10, 0x3, 0x10) r2 = syz_genetlink_get_family_id$mptcp(&(0x7f00000002c0), 0xffffffffffffffff) sendmsg$MPTCP_PM_CMD_ADD_ADDR(r1, &(0x7f0000000480)={0x0, 0x0, &(0x7f0000000440)={&(0x7f00000001c0)=ANY=[@ANYBLOB='(\x00\x00\x00', @ANYRES16=r2, @ANYBLOB="0900000000005000000002000000140001800500020001"], 0x28}}, 0x0) 950.833948ms ago: executing program 2 (id=457): openat(0xffffffffffffff9c, &(0x7f000000c380)='./file0\x00', 0x40, 0x0) r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000080)={0x18, 0x4, &(0x7f0000000000)=ANY=[@ANYBLOB="180100001c000000000000000000000c850000006d00000095"], &(0x7f0000001800)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000200)={&(0x7f0000000340)='9p_protocol_dump\x00', r0}, 0x10) pipe2$9p(&(0x7f0000000240)={0xffffffffffffffff, 0xffffffffffffffff}, 0x0) r2 = syz_open_procfs(0xffffffffffffffff, &(0x7f0000000000)='numa_maps\x00') prctl$PR_SET_SECCOMP(0x16, 0x1, 0x0) lseek(r2, 0x1000000, 0x0) dup(r1) openat$vga_arbiter(0xffffffffffffff9c, &(0x7f0000000000), 0x80082, 0x0) r3 = openat$nci(0xffffffffffffff9c, &(0x7f0000000080), 0x2, 0x0) ioctl$IOCTL_GET_NCIDEV_IDX(r3, 0x0, &(0x7f00000000c0)=0x0) r5 = syz_genetlink_get_family_id$nfc(&(0x7f0000000200), 0xffffffffffffffff) sendmsg$NFC_CMD_DEV_UP(0xffffffffffffffff, &(0x7f0000000140)={0x0, 0x0, &(0x7f0000000180)={&(0x7f00000001c0)={0x1c, r5, 0x1, 0x123, 0x234, {}, [@NFC_ATTR_DEVICE_INDEX={0x8, 0x1, r4}]}, 0x1c}}, 0x0) write$nci(r3, &(0x7f0000000280)=ANY=[@ANYBLOB="54023a8af5c1f1ef5cf8f07ceb6b687102bf67b40f712c020000005b41"], 0x9) 950.004203ms ago: executing program 1 (id=459): r0 = openat$vcs(0xffffffffffffff9c, &(0x7f0000000080), 0x210000, 0x0) ioctl$IOCTL_VMCI_DATAGRAM_SEND(r0, 0x7ab, &(0x7f0000002640)={&(0x7f0000002200)={{@my=0x0, 0x8}, {@host, 0x3}, 0x400, "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"}, 0x418, 0x5}) r1 = syz_open_dev$mouse(&(0x7f0000002800), 0x10000, 0x60040) ioctl$FS_IOC_GETFLAGS(r1, 0x80086601, &(0x7f0000002a40)) r2 = syz_clone(0x0, 0x0, 0x0, 0x0, 0x0, 0x0) r3 = syz_genetlink_get_family_id$ethtool(&(0x7f0000000040), 0xffffffffffffffff) r4 = socket$nl_generic(0x10, 0x3, 0x10) r5 = socket$packet(0x11, 0x2, 0x300) ioctl$sock_SIOCGIFINDEX(r5, 0x8933, &(0x7f0000000040)={'netdevsim0\x00', 0x0}) sendmsg$ETHTOOL_MSG_PAUSE_SET(r4, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000cc0)={&(0x7f0000000100)=ANY=[@ANYBLOB='(\x00\x00\x00', @ANYRES16=r3, @ANYBLOB="010000000000000000001e0000000c00018008000100", @ANYRES32=r6, @ANYBLOB="050003"], 0x28}}, 0x80) r7 = syz_open_procfs(0x0, &(0x7f0000000040)='net/psched\x00') fchdir(r7) mount(0x0, &(0x7f00000021c0)='./file0\x00', &(0x7f0000000000)='proc\x00', 0x0, 0x0) read$FUSE(r7, &(0x7f0000000180)={0x2020}, 0x2020) syz_usb_disconnect(0xffffffffffffffff) syz_open_procfs$namespace(r2, &(0x7f0000000140)='ns/net\x00') 170.535139ms ago: executing program 1 (id=460): bpf$PROG_LOAD(0x5, 0x0, 0x0) r0 = socket$nl_xfrm(0x10, 0x3, 0x6) r1 = socket$packet(0x11, 0x2, 0x300) ioctl$sock_SIOCGIFINDEX(r1, 0x8933, &(0x7f0000000040)={'bond0\x00', 0x0}) sendmsg$nl_xfrm(r0, &(0x7f00000004c0)={0x0, 0x0, &(0x7f0000000480)={&(0x7f0000000140)=@updsa={0x144, 0x10, 0x1, 0x0, 0x200017, {{@in6=@dev, @in6=@empty, 0x0, 0x0, 0x0, 0x0, 0x0, 0x20, 0x0, 0x32}, {@in6=@private1, 0x0, 0x32}, @in=@multicast2, {0x0, 0x0, 0x0, 0xff80}, {0xffffffffffffffff}, {}, 0x0, 0x0, 0xa}, [@algo_crypt={0x48, 0x2, {{'ecb(cipher_null)\x00'}}}, @offload={0xc, 0x1c, {r2, 0x4}}]}, 0x144}}, 0x0) 169.988092ms ago: executing program 1 (id=461): r0 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$IPCTNL_MSG_TIMEOUT_NEW(r0, &(0x7f0000000100)={0x0, 0x0, &(0x7f00000000c0)={&(0x7f0000000480)=ANY=[@ANYBLOB="819abf9e5245f5a51765b6f320322cc0aed522ef8412dc380ab8910adac162cb76944ad56c183b2f3c9719f2b7f5c3e058c19408c5d69f9bff7e03078d36717965702a93c8e1e10f984d65f77cab0b4fb3e835999aec71d815cc2a590c16406f156311c9e03ded249efdcb20751ee8f84c96eb5be55b520bebe9f7ae28feee2464"], 0x34}}, 0x0) r1 = socket$inet_tcp(0x2, 0x1, 0x0) setsockopt$inet_buf(r1, 0x0, 0x8008000000010, &(0x7f00000003c0)="17000000020001000003d68c5ee17688a2003208030300ecff3f0000000300000a0000000098fc5ad9485bbb6a880000d6c8db0000dba67e06000000e28900000200df018000000000f50607bdff59100ac45761547a681f009cee4a5acb3da400001fb700674f00c88ebbf9315033bf79ac2dff060115003901000000000000ea000000000000000002ffff02dfccebf6ba0008400200000000e90554062a80e605007f71174aa951f3c63e5c83f1ba2112ce68bf17a6e0", 0xb8) r2 = socket$inet_tcp(0x2, 0x1, 0x0) setsockopt$inet_buf(r2, 0x0, 0x8008000000010, &(0x7f00000003c0)="17000000020001000003d68c5ee17688a2003208030300ecff3f0000000300000a0000000098fc5ad9485bbb6a880000d6c8db0000dba67e06000000e28900000200df018000000000f50607bdff59100ac45761547a681f009cee4a5acb3da400001fb700674f00c88ebbf9315033bf79ac2dff060115003901000000000000ea000000000000000002ffff02dfccebf6ba0008400200000000e90554062a80e605007f71174aa951f3c63e5c83f1ba2112ce68bf17a6e0", 0xb8) r3 = socket$key(0xf, 0x3, 0x2) sendmsg$key(r3, &(0x7f0000000180)={0x0, 0x0, &(0x7f0000000140)={&(0x7f0000000080)=ANY=[@ANYBLOB="0213f8860cf93be37f60700501000000"], 0x10}}, 0x0) setsockopt$sock_int(r3, 0x1, 0x8, &(0x7f00000001c0), 0x4) sendmsg$key(r3, &(0x7f00000002c0)={0x0, 0x0, &(0x7f0000000040)={&(0x7f0000000000)={0x2, 0x12, 0x0, 0x0, 0x2}, 0x10}}, 0x0) close_range(r2, 0xffffffffffffffff, 0x0) r4 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000040), 0x40080, 0x0) r5 = ioctl$KVM_CREATE_VM(r4, 0xae01, 0x0) ioctl$KVM_CAP_SPLIT_IRQCHIP(r5, 0x4068aea3, &(0x7f0000000080)) ioctl$KVM_CREATE_VCPU(r5, 0xae41, 0x2) ioctl$KVM_SET_GSI_ROUTING(r5, 0x4008ae6a, &(0x7f0000000200)=ANY=[@ANYBLOB="010000000000000000000000050000000000000000000000030000000000f100ffffffff"]) sendmsg$IPCTNL_MSG_TIMEOUT_DELETE(r0, &(0x7f0000000200)={0x0, 0x0, &(0x7f00000001c0)={&(0x7f0000000140)={0x14, 0x2, 0x8, 0x5, 0x0, 0x0, {0xa, 0x0, 0x7}}, 0x14}, 0x1, 0x0, 0x0, 0x4080}, 0x4008050) socket$nl_netfilter(0x10, 0x3, 0xc) fsconfig$FSCONFIG_SET_STRING(0xffffffffffffffff, 0x1, &(0x7f0000000280)='uid', &(0x7f00000008c0)='0\x00#\x00\xd0\x00 \x00\x00qS\x00\x00\x00\x00\x00\x00\x00\x00$\xf6_\xbdI\x1c\xf2\xa9]\xcc\xe0*\xef\x01\x8d\x15\xd2h\x93\xc9\xb57\xc3\xea\\bb\xf8\xe6,\xdf\xd4\xfae\x84\xcc\xd5\"d\xf0D-\x98\x9f\x81{\xfc$\xc4\xbcF\xf8\xc8\x8d\xcb\xd7\xf2\x1e\xe4\'U\xb3\xb8\xd3\xe6\xd7\x80=\x8a\xeb\n\xb8_\xe8\x96YY\xe3\xc7\xe6\xf28\x19\xa6\xa7\xfa\xdb\x1ce\xc1\x03\x86J\xb2fh\x19\xee#\xcc\x0f\xed\xfea\xdc\x88\xcb%bW\xd35\xda=\xac\x1d\xae\x93\xfd\'T6\x94\n\xa4\x9cU\xc4\fA~[\xbf\x8b\x90\xfe\x04\xe7U\xf3h\x81\x14l7u\x95\x96t\\\x0f\xef;\x03\xa4C\xbc(Vc!a\xc1\xe39\xc6b\x905\x1f\x03\x00\x00\x00\x00\x00\x00\xdf9\xaf5\xc8a:z\xe4\xcbag&67\x814\xf6}\xe10v6l\xd6,\x1e\xa0\xcc\xbf\xfdkm\b?\x839\x85N\x1c\xc1\xcb\xfc\x85\xd2\n\x02\"\xf2\x81g\x90\x01n%\x7f_\xe1.f>>\xa5\xfb\"\xab\xdb\x06\x12e\x14\x11~\x9a\bR-\x85\xc3\xa9\xe6\xf6R\x11\"\xc3\xc9\xfc\x14s X\xec\xdd\xc2qB\x85\xf0\xd7\x04\xdd<\x9ak\x00\x00\x00\x00\x00\x00\x00\n\xa72\xa3\xef^\xe7\x8f', 0x0) mknodat(0xffffffffffffff9c, &(0x7f0000000040)='./file0\x00', 0x81c0, 0x0) r6 = landlock_create_ruleset(&(0x7f0000000140)={0x4000}, 0x18, 0x0) landlock_restrict_self(r6, 0x0) r7 = openat$dir(0xffffffffffffff9c, &(0x7f00000001c0)='./file0\x00', 0x1, 0x0) ftruncate(r7, 0x1) ioctl$F2FS_IOC_COMMIT_ATOMIC_WRITE(r0, 0xf502, 0x0) r8 = socket$nl_xfrm(0x10, 0x3, 0x6) epoll_create1(0x0) r9 = syz_open_procfs(0x0, &(0x7f0000000080)='fdinfo/3\x00') read$eventfd(r9, &(0x7f0000000100), 0xfffffd79) sendmsg$nl_xfrm(r8, &(0x7f0000000200)={0x0, 0x0, &(0x7f00000001c0)={&(0x7f0000000280)=ANY=[@ANYBLOB="fc00000019000100000000000000000000000000000000000000000000000000fc01000000000000000000000000000000000000000000000a00000000000000", @ANYRES32=0x0, @ANYRES32=0x0, @ANYBLOB="0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000010000000000000000000000000000000b93760000000000000000000000000000000000000000000200000000000000010000000000000044000500ac141400000000000000000000000000000000003c00000000000000000000000000000000000000000000000000000001"], 0xfc}, 0x1, 0x0, 0x0, 0x24008040}, 0x20040000) 70.150994ms ago: executing program 3 (id=462): r0 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r0, &(0x7f00000000c0)={0x0, 0xf5, &(0x7f0000000040)={&(0x7f0000000100)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a20000000000a05000000000000000000010000000900010073797a300000000048000000030a05020000000000000000010000000900030073797a320000000014000480080002400000000008000140000000000900010073797a3000000000080007006e6174003c000000060a01040000000000000000010000001400048010000180090001006d6173710000000008000b40000000000900010073797a300000"], 0xcc}}, 0x0) 69.844351ms ago: executing program 2 (id=463): r0 = io_uring_setup(0x79bf, &(0x7f0000000180)={0x0, 0x0, 0x80, 0x1, 0xffffffff}) r1 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$IPSET_CMD_CREATE(r1, &(0x7f00000002c0)={0x0, 0x0, &(0x7f00000000c0)={&(0x7f0000000000)=ANY=[@ANYBLOB="5c0000000206030000000000000000000000000005000100070000000900020073797a310000000014000780050015000c00000008001240000000000500050002000000050004000000000010000300686173683a69702c6d6163"], 0x5c}}, 0x0) r2 = socket$inet6_tcp(0xa, 0x1, 0x0) r3 = socket$inet6_tcp(0xa, 0x1, 0x0) setsockopt$SO_ATTACH_FILTER(r3, 0x1, 0x1a, &(0x7f0000000280)={0x1, &(0x7f0000000080)=[{0x6, 0x0, 0x0, 0x2}]}, 0x10) r4 = fcntl$dupfd(r3, 0x406, r2) sendto(r2, &(0x7f00000000c0)="99951d69ea6365f070cc240c7019e120c877d1b6758e5e270030034041c5519a3e8675d4766ce6a78e5dec23565605f88db0dfbd38f0c61dc2dbc9353fbd185bd4a8e9b90db696566571da457ceb7f63d5c6acac54583e84", 0x58, 0x4054011, &(0x7f00000002c0)=@alg={0x26, 'rng\x00', 0x0, 0x0, 'drbg_pr_sha512\x00'}, 0x80) r5 = syz_open_dev$cec(&(0x7f00000003c0), 0x0, 0x0) ioctl$CEC_ADAP_S_LOG_ADDRS(r5, 0xc05c6104, &(0x7f0000000080)={'{\\~\x00', 0x48, 0x8, 0xfa, 0x0, 0xd3cc, "7b62d701a7ab0802cd8f2da37d83c1", "f9aa5cba", "de14bf4b", "ed5ebc28", ["f5e444ad1da635d736cdc398", '\x00', "a0fe649fa598ea2d67ee7d8f", "25e3bf3778db2993ccde71ee"]}) bind$inet6(r3, &(0x7f0000000040)={0xa, 0x4e22, 0x0, @loopback}, 0x1c) sendto$inet6(r3, 0x0, 0x0, 0x240540c7, &(0x7f0000000200)={0xa, 0x4e22, 0x2681968, @loopback}, 0x1c) sendto$inet6(r3, &(0x7f0000000000)="04", 0x1, 0x44001, 0x0, 0x0) prlimit64(0x0, 0x0, &(0x7f00000002c0)={0xffffffffffffffff, 0xffffffffffffffff}, 0x0) read$FUSE(r4, &(0x7f0000001fc0)={0x2020}, 0x2020) r6 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000700), r4) r7 = socket$nl_generic(0x10, 0x3, 0x10) setsockopt$packet_int(r4, 0x107, 0x13, &(0x7f0000000480)=0x8001, 0x4) ioctl$sock_SIOCGIFINDEX_80211(r7, 0x8933, &(0x7f00000003c0)={'wlan0\x00', 0x0}) sendmsg$NL80211_CMD_CHANNEL_SWITCH(r7, &(0x7f00000001c0)={0x0, 0x0, &(0x7f0000000180)={&(0x7f0000002040)=ANY=[@ANYBLOB=',\x00\x00\x00', @ANYRES16=r6, @ANYBLOB="010000000010000000006600000008010300", @ANYRES32=r8, @ANYBLOB="080026006c0900000800b70099000000"], 0x2c}}, 0x8004) ioctl$sock_SIOCGIFINDEX_80211(r4, 0x8933, &(0x7f0000000240)={'wlan0\x00', 0x0}) sendmsg$NL80211_CMD_SET_CHANNEL(r4, &(0x7f0000000340)={&(0x7f0000000140)={0x10, 0x0, 0x0, 0x8020000}, 0xc, &(0x7f0000000380)={&(0x7f0000000e40)=ANY=[@ANYBLOB="17e57edd", @ANYBLOB="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", @ANYBLOB="00eb08000000ffdbdf254100000008000300", @ANYRES32=r9, @ANYBLOB="0c009900050000000f00000008002700030000000800a000ffffffff"], 0x38}, 0x1, 0x0, 0x0, 0x4000}, 0x20040000) r10 = open(0x0, 0x0, 0x100) close_range(r0, 0xffffffffffffffff, 0x0) openat$rdma_cm(0xffffffffffffff9c, &(0x7f0000000440), 0x2, 0x0) socket$nl_route(0x10, 0x3, 0x0) socket$packet(0x11, 0x3, 0x300) socket$nl_route(0x10, 0x3, 0x0) ioctl$KVM_CREATE_VCPU(0xffffffffffffffff, 0xae41, 0x2) bpf$MAP_UPDATE_ELEM_TAIL_CALL(0x2, &(0x7f0000000c80)={{r4}, &(0x7f0000000c00), &(0x7f0000000c40)=r10}, 0x20) 69.572951ms ago: executing program 3 (id=464): r0 = openat$dlm_monitor(0xffffffffffffff9c, &(0x7f0000000000), 0x400080, 0x0) ioctl$TIOCGRS485(r0, 0x542e, &(0x7f0000000040)) connect$ax25(r0, &(0x7f0000000080)={{0x3, @netrom={0xbb, 0xbb, 0xbb, 0xbb, 0xbb, 0x0, 0x0}, 0x2}, [@default, @null, @bcast, @null, @remote={0xcc, 0xcc, 0xcc, 0xcc, 0xcc, 0xcc, 0x0}, @bcast, @default, @remote={0xcc, 0xcc, 0xcc, 0xcc, 0xcc, 0xcc, 0x2}]}, 0x48) r1 = openat$ptmx(0xffffffffffffff9c, &(0x7f0000000100), 0x8000, 0x0) getsockopt$EBT_SO_GET_ENTRIES(r0, 0x0, 0x81, &(0x7f0000000200)={'nat\x00', 0x0, 0x4, 0x3d, [0x0, 0x2, 0x9, 0x1, 0x10000, 0xfffffffffffffffd], 0x7, &(0x7f0000000140)=[{}, {}, {}, {}, {}, {}, {}], &(0x7f00000001c0)=""/61}, &(0x7f0000000280)=0x78) close_range(r0, r1, 0x0) ioctl$GIO_UNISCRNMAP(r1, 0x4b69, &(0x7f00000002c0)=""/127) r2 = syz_open_dev$tty20(0xc, 0x4, 0x1) ioctl$AUTOFS_DEV_IOCTL_FAIL(r0, 0xc0189377, &(0x7f0000000340)={{0x1, 0x1, 0x18, r0, {0x3, 0x8}}, './file0\x00'}) r4 = geteuid() setsockopt$sock_cred(r3, 0x1, 0x11, &(0x7f0000000380)={0x0, r4, 0xee00}, 0xc) getsockopt$inet6_mreq(r0, 0x29, 0x1b, &(0x7f00000003c0)={@remote}, &(0x7f0000000400)=0x14) write$P9_RWALK(r0, &(0x7f0000000440)={0x7e, 0x6f, 0x1, {0x9, [{0x20, 0x1, 0x7}, {0x41, 0x3, 0x2}, {0x20, 0x4}, {0x8, 0x2, 0x3}, {0x40, 0x1, 0x3}, {0x10, 0x4}, {0x1, 0x1, 0x4}, {0x40, 0x0, 0x4}, {0x40, 0x3, 0x2}]}}, 0x7e) setsockopt$ARPT_SO_SET_ADD_COUNTERS(r0, 0x0, 0x61, &(0x7f00000004c0)={'filter\x00', 0x4}, 0x68) sendmsg$nl_route(r0, &(0x7f0000000600)={&(0x7f0000000540)={0x10, 0x0, 0x0, 0x800000}, 0xc, &(0x7f00000005c0)={&(0x7f0000000580)=@delnexthop={0x28, 0x69, 0x200, 0x70bd25, 0x25dfdbff, {}, [{0x8, 0x1, 0x1}, {0x8}]}, 0x28}, 0x1, 0x0, 0x0, 0x24040000}, 0x80) r5 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000680), r3) sendmsg$NL80211_CMD_REGISTER_FRAME(r0, &(0x7f00000007c0)={&(0x7f0000000640)={0x10, 0x0, 0x0, 0x8}, 0xc, &(0x7f0000000780)={&(0x7f00000006c0)={0xa4, r5, 0x200, 0x70bd2b, 0x25dfdbfd, {{}, {@void, @void}}, [@NL80211_ATTR_FRAME_MATCH={0x80, 0x5b, "22b8514050c4987b69df67aaac95eff0b826663d23616d3568cf88ed35bab242a295f555457a97e78b5712190bd9bbe35f2beded67da18e1a1ab4a6f77410652ef58f082d6866df2e192328cf95b1c625eaff97b51ffce2ec86e69ec87b58ce1e4d729d6493a080b07e880f1c67ef6e9c4b5f4d70755cabe01f750ad"}, @NL80211_ATTR_FRAME_TYPE={0x6, 0x65, 0x1}, @NL80211_ATTR_FRAME_TYPE={0x6, 0x65, 0x8}]}, 0xa4}, 0x1, 0x0, 0x0, 0x2000c010}, 0x44040) bpf$MAP_UPDATE_ELEM_TAIL_CALL(0x2, &(0x7f0000000880)={{r3, 0xffffffffffffffff}, &(0x7f0000000800), &(0x7f0000000840)=r0}, 0x20) close_range(r2, r6, 0x0) r7 = syz_open_pts(r0, 0x480002) ioctl$GIO_FONTX(r7, 0x4b6b, &(0x7f0000000cc0)={0x133, 0x15, &(0x7f00000008c0)}) r8 = syz_init_net_socket$bt_hidp(0x1f, 0x3, 0x6) fcntl$setstatus(r8, 0x4, 0x0) r9 = socket$can_bcm(0x1d, 0x2, 0x2) ioctl$BTRFS_IOC_SNAP_CREATE(r9, 0x50009401, &(0x7f0000000d00)={{r2}, "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"}) ioctl$AUTOFS_DEV_IOCTL_REQUESTER(r0, 0xc018937b, &(0x7f0000001d00)={{0x1, 0x1, 0x18, r9, {r4, 0xee00}}, './file0\x00'}) ioctl$sock_SIOCSIFVLAN_ADD_VLAN_CMD(r10, 0x8983, &(0x7f0000001d40)={0x0, 'xfrm0\x00', {0x1}, 0x1}) ioctl$UFFDIO_WAKE(r0, 0x8010aa02, &(0x7f0000001d80)={&(0x7f0000ffa000/0x3000)=nil, 0x3000}) ioctl$SNDRV_CTL_IOCTL_TLV_WRITE(r0, 0xc008551b, &(0x7f0000001dc0)={0x40, 0x20, [0x6, 0x4, 0x3232bd2f, 0x9, 0xc, 0x1ff, 0x1, 0x1]}) sendmsg$nl_crypto(r3, &(0x7f0000001f80)={&(0x7f0000001e00)={0x10, 0x0, 0x0, 0x1}, 0xc, &(0x7f0000001f40)={&(0x7f0000001e40)=@getstat={0xe0, 0x15, 0x100, 0x70bd2a, 0x25dfdbff, {{'cbc(cast5)\x00'}, '\x00', '\x00', 0x2000, 0x2000}, ["", "", ""]}, 0xe0}, 0x1, 0x0, 0x0, 0x8000}, 0x4000800) 69.354292ms ago: executing program 1 (id=465): r0 = io_uring_setup(0x79bf, &(0x7f0000000180)) socket$inet6_tcp(0xa, 0x1, 0x0) r1 = socket$inet6_tcp(0xa, 0x1, 0x0) setsockopt$SO_ATTACH_FILTER(r1, 0x1, 0x1a, 0x0, 0x0) bind$inet6(r1, &(0x7f0000000040)={0xa, 0x4e22, 0x0, @loopback}, 0x1c) sendto$inet6(r1, 0x0, 0x0, 0x240540c7, &(0x7f0000000200)={0xa, 0x4e22, 0x0, @loopback}, 0x1c) sendto$inet6(r1, &(0x7f0000000000)="04", 0x1, 0x44001, 0x0, 0x0) read$FUSE(0xffffffffffffffff, &(0x7f0000001fc0)={0x2020}, 0x2020) open(0x0, 0x0, 0x100) close_range(r0, 0xffffffffffffffff, 0x0) openat$rdma_cm(0xffffffffffffff9c, &(0x7f0000000440), 0x2, 0x0) socket$nl_route(0x10, 0x3, 0x0) socket$packet(0x11, 0x3, 0x300) r2 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route(r2, &(0x7f00000006c0)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000400)=@newlink={0x20, 0x10, 0x40d, 0x70bd29, 0x25dfdbfc}, 0x20}}, 0x0) 394.927µs ago: executing program 1 (id=466): r0 = syz_open_dev$evdev(&(0x7f0000000200), 0x8, 0x420602) ioctl$EVIOCSFF(r0, 0x40304580, &(0x7f00000006c0)={0x52, 0x8, 0xd, {0x7, 0x1}, {0x2a, 0x6}, @cond=[{0x0, 0x6a, 0x19, 0x2, 0xd, 0x1005}, {0x2, 0x7f, 0xd, 0xc93, 0x0, 0xf3}]}) r1 = openat$autofs(0xffffffffffffff9c, &(0x7f00000002c0), 0x0, 0x0) bpf$PROG_LOAD(0x5, &(0x7f0000000200)={0x11, 0xb, 0x0, &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) ioctl$AUTOFS_DEV_IOCTL_CATATONIC(r1, 0xc018937e, &(0x7f0000000200)={{0x1, 0x1, 0x29}, './file0\x00'}) r2 = socket$unix(0x1, 0x1, 0x0) bind$unix(r2, &(0x7f0000000180)=@file={0x1, '\xe9\x1fq\x89Y\x1e\x923aK\x00'}, 0x6e) listen(r2, 0x0) r3 = io_uring_setup(0xf08, &(0x7f000000c480)={0x0, 0x826e, 0x10000, 0x7, 0x6}) io_uring_register$IORING_REGISTER_BUFFERS(r3, 0x0, &(0x7f0000000300)=[{&(0x7f0000000080)=""/36, 0x24}], 0x1) syz_clone3(&(0x7f0000000000)={0x285002400, 0x0, 0x0, 0x0, {}, 0x0, 0x0, 0x0, 0x0}, 0x46) r4 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r5 = syz_genetlink_get_family_id$ieee802154(&(0x7f00000006c0), r4) sendmsg$IEEE802154_LLSEC_SETPARAMS(r4, &(0x7f0000000f00)={0x0, 0x0, &(0x7f0000000ec0)={&(0x7f0000000080)={0x30, r5, 0x1, 0x70bd28, 0x25dfdbff, {}, [@IEEE802154_ATTR_LLSEC_SECLEVEL={0x5, 0x2a, 0x3}, @IEEE802154_ATTR_DEV_NAME={0xa, 0x1, 'wpan1\x00'}, @IEEE802154_ATTR_LLSEC_ENABLED={0x5}]}, 0x30}, 0x1, 0x0, 0x0, 0x10}, 0x0) io_uring_register$IORING_REGISTER_FILES(r3, 0x1e, &(0x7f0000000000)=[r3], 0x1) r6 = socket$unix(0x1, 0x1, 0x0) connect$unix(r6, &(0x7f0000000080)=@file={0x1, '\xe9\x1fq\x89Y\x1e\x923aK\x00'}, 0x6e) r7 = syz_open_procfs(0x0, &(0x7f0000000040)='fdinfo/3\x00') pread64(r7, &(0x7f0000000080)=""/237, 0xed, 0x5) r8 = syz_open_dev$evdev(&(0x7f0000000080), 0x1, 0x8c2b01) write$char_usb(r8, &(0x7f0000000040)="e2", 0x12d8) sendmsg$NFT_BATCH(0xffffffffffffffff, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000040)={&(0x7f0000000100)=ANY=[@ANYRES8=r6], 0xcc}}, 0x8081) 149.516µs ago: executing program 3 (id=467): r0 = socket$inet6_mptcp(0xa, 0x1, 0x106) setsockopt$sock_int(0xffffffffffffffff, 0x1, 0x8, 0x0, 0x0) sendto$inet6(r0, 0x0, 0x0, 0x20004041, 0x0, 0x0) connect$inet6(r0, &(0x7f0000000280)={0xa, 0x0, 0x0, @dev={0xfe, 0x80, '\x00', 0x19}, 0x7}, 0x1c) r1 = socket$nl_generic(0x10, 0x3, 0x10) r2 = syz_genetlink_get_family_id$mptcp(&(0x7f00000002c0), 0xffffffffffffffff) sendmsg$MPTCP_PM_CMD_ADD_ADDR(r1, &(0x7f0000000480)={0x0, 0x0, &(0x7f0000000440)={&(0x7f00000001c0)=ANY=[@ANYBLOB='(\x00\x00\x00', @ANYRES16=r2, @ANYBLOB="09000000000fff00000002000000140001800500020001"], 0x28}}, 0x0) 0s ago: executing program 1 (id=468): r0 = openat$adsp1(0xffffffffffffff9c, &(0x7f0000000040), 0xa0201, 0x0) ioctl$SNDCTL_DSP_SETFRAGMENT(r0, 0xc004500a, &(0x7f0000000000)) (async) r1 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = socket$nl_route(0x10, 0x3, 0x0) (async) r4 = socket(0x200000000000011, 0x2, 0x0) ioctl$sock_SIOCGIFINDEX(r4, 0x8933, &(0x7f0000000000)={'bridge0\x00', 0x0}) (async) socketpair$unix(0x1, 0x1, 0x0, &(0x7f0000000480)={0xffffffffffffffff, 0xffffffffffffffff}) ioctl$sock_SIOCGIFINDEX(r6, 0x8933, &(0x7f0000000080)={'bridge_slave_1\x00', 0x0}) sendmsg$nl_route(r3, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000040)={&(0x7f00000001c0)=ANY=[@ANYBLOB="380000005500e501000000000200000000000000", @ANYRES32=r5, @ANYBLOB="20000100", @ANYRES32=r7, @ANYBLOB="00010000ffffffff00000000000000000000000086dd0000"], 0x38}, 0x1, 0x0, 0x0, 0x4000001}, 0x0) (async) r8 = openat$ptmx(0xffffffffffffff9c, &(0x7f0000000300), 0x0, 0x0) ioctl$TIOCSETD(r8, 0x5423, &(0x7f00000000c0)=0xf) r9 = fcntl$dupfd(r8, 0x406, r8) ioctl$TCFLSH(r9, 0x400455c8, 0x1) (async) ioctl$TIOCSTI(r9, 0x5412, &(0x7f0000000040)=0xfc) ioctl$TIOCSTI(r9, 0x5412, &(0x7f0000000340)=0x5) (async) ioctl$TIOCSTI(r8, 0x5412, &(0x7f0000000180)=0xff) (async) ioctl$TIOCSTI(r8, 0x5412, &(0x7f0000000380)=0xff) ioctl$TIOCSTI(r9, 0x5412, &(0x7f00000001c0)=0xfe) (async) r10 = syz_genetlink_get_family_id$ieee802154(&(0x7f0000000140), r2) sendmsg$IEEE802154_ADD_IFACE(r1, &(0x7f0000000080)={0x0, 0x0, &(0x7f00000001c0)={&(0x7f00000000c0)=ANY=[@ANYBLOB='D\x00\x00\x00', @ANYRES16=r10, @ANYBLOB="01000000000000000000220000000a0001007770616e3000000005002000000004000500200000000000050020000000000009001f"], 0x44}}, 0x0) (async) ioctl$SNDCTL_DSP_CHANNELS(r0, 0xc0045006, &(0x7f0000000180)=0x70) (async) r11 = openat$binderfs(0xffffffffffffff9c, &(0x7f0000000200)='./binderfs/binder1\x00', 0x2, 0x0) r12 = dup2(r11, r11) ioctl$sock_SIOCGIFINDEX(0xffffffffffffffff, 0x8933, &(0x7f0000000100)={'netdevsim0\x00'}) (async) ioctl$BINDER_WRITE_READ(r12, 0xc0306201, &(0x7f0000000140)={0xc, 0xfffffffffffffdfd, &(0x7f00000005c0)=[@free_buffer], 0x0, 0x0, 0x0}) r13 = openat$dsp1(0xffffffffffffff9c, &(0x7f0000000080), 0x0, 0x0) ioctl$SNDCTL_DSP_SYNC(r13, 0x5001, 0x0) (async) write$dsp(r0, &(0x7f00000012c0)="a52876830a602214f6b4e928d758f38a5a7cb4b31c4c09289e9ebb6286784ca3", 0x4000) (async) ioctl$SNDCTL_DSP_SYNC(r13, 0x5001, 0x0) kernel console output (not intermixed with test programs): [ 43.542400][ T40] audit: type=1400 audit(1748231093.440:65): avc: denied { siginh } for pid=5848 comm="sh" scontext=system_u:system_r:sshd_t tcontext=root:sysadm_r:sysadm_t tclass=process permissive=1 Warning: Permanently added '[localhost]:31514' (ED25519) to the list of known hosts. [ 45.706375][ T40] audit: type=1400 audit(1748231095.620:66): avc: denied { name_bind } for pid=5906 comm="sshd-session" src=30000 scontext=system_u:system_r:sshd_t tcontext=system_u:object_r:unreserved_port_t tclass=tcp_socket permissive=1 [ 45.734990][ T40] audit: type=1400 audit(1748231095.650:67): avc: denied { write } for pid=5908 comm="sh" path="pipe:[4742]" dev="pipefs" ino=4742 scontext=root:sysadm_r:sysadm_t tcontext=system_u:system_r:sshd_t tclass=fifo_file permissive=1 [ 45.758249][ T40] audit: type=1400 audit(1748231095.680:68): avc: denied { execute } for pid=5908 comm="sh" name="syz-executor" dev="sda1" ino=2020 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:etc_runtime_t tclass=file permissive=1 [ 45.770596][ T40] audit: type=1400 audit(1748231095.680:69): avc: denied { execute_no_trans } for pid=5908 comm="sh" path="/syz-executor" dev="sda1" ino=2020 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:etc_runtime_t tclass=file permissive=1 [ 47.703551][ T40] audit: type=1400 audit(1748231097.620:70): avc: denied { mounton } for pid=5908 comm="syz-executor" path="/syzcgroup/unified" dev="sda1" ino=2022 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:root_t tclass=dir permissive=1 [ 47.706172][ T5908] cgroup: Unknown subsys name 'net' [ 47.869024][ T5908] cgroup: Unknown subsys name 'cpuset' [ 47.873068][ T5908] cgroup: Unknown subsys name 'rlimit' [ 48.051015][ T5925] SELinux: Context root:object_r:swapfile_t is not valid (left unmapped). Setting up swapspace version 1, size = 127995904 bytes [ 48.720719][ T5908] Adding 124996k swap on ./swap-file. Priority:0 extents:1 across:124996k [ 51.813116][ T40] kauditd_printk_skb: 13 callbacks suppressed [ 51.813130][ T40] audit: type=1400 audit(1748231101.730:84): avc: denied { execmem } for pid=5930 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=process permissive=1 [ 52.014106][ T40] audit: type=1400 audit(1748231101.930:85): avc: denied { create } for pid=5934 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 52.020818][ T40] audit: type=1400 audit(1748231101.930:86): avc: denied { read write } for pid=5934 comm="syz-executor" name="vhci" dev="devtmpfs" ino=1291 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:vhost_device_t tclass=chr_file permissive=1 [ 52.028309][ T40] audit: type=1400 audit(1748231101.930:87): avc: denied { open } for pid=5934 comm="syz-executor" path="/dev/vhci" dev="devtmpfs" ino=1291 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:vhost_device_t tclass=chr_file permissive=1 [ 52.035506][ T40] audit: type=1400 audit(1748231101.940:88): avc: denied { ioctl } for pid=5935 comm="syz-executor" path="socket:[4769]" dev="sockfs" ino=4769 ioctlcmd=0x48c9 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 52.065447][ T5948] Bluetooth: hci1: unexpected cc 0x0c03 length: 249 > 1 [ 52.068429][ T5948] Bluetooth: hci3: unexpected cc 0x0c03 length: 249 > 1 [ 52.071748][ T5948] Bluetooth: hci1: unexpected cc 0x1003 length: 249 > 9 [ 52.074172][ T5948] Bluetooth: hci3: unexpected cc 0x1003 length: 249 > 9 [ 52.077018][ T5948] Bluetooth: hci1: unexpected cc 0x1001 length: 249 > 9 [ 52.079253][ T5948] Bluetooth: hci3: unexpected cc 0x1001 length: 249 > 9 [ 52.082637][ T5952] Bluetooth: hci1: unexpected cc 0x0c23 length: 249 > 4 [ 52.084797][ T5949] Bluetooth: hci0: unexpected cc 0x0c03 length: 249 > 1 [ 52.085419][ T5952] Bluetooth: hci1: unexpected cc 0x0c38 length: 249 > 2 [ 52.089011][ T5949] Bluetooth: hci0: unexpected cc 0x1003 length: 249 > 9 [ 52.093798][ T5949] Bluetooth: hci0: unexpected cc 0x1001 length: 249 > 9 [ 52.099145][ T5950] Bluetooth: hci2: unexpected cc 0x0c03 length: 249 > 1 [ 52.099418][ T5288] Bluetooth: hci0: unexpected cc 0x0c23 length: 249 > 4 [ 52.102883][ T5948] Bluetooth: hci3: unexpected cc 0x0c23 length: 249 > 4 [ 52.102905][ T5950] Bluetooth: hci2: unexpected cc 0x1003 length: 249 > 9 [ 52.103340][ T5950] Bluetooth: hci2: unexpected cc 0x1001 length: 249 > 9 [ 52.104306][ T5288] Bluetooth: hci0: unexpected cc 0x0c38 length: 249 > 2 [ 52.105298][ T5950] Bluetooth: hci2: unexpected cc 0x0c23 length: 249 > 4 [ 52.105822][ T5950] Bluetooth: hci2: unexpected cc 0x0c38 length: 249 > 2 [ 52.107073][ T5948] Bluetooth: hci3: unexpected cc 0x0c38 length: 249 > 2 [ 52.108638][ T40] audit: type=1400 audit(1748231102.010:89): avc: denied { read } for pid=5935 comm="syz-executor" dev="nsfs" ino=4026531840 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:nsfs_t tclass=file permissive=1 [ 52.126238][ T40] audit: type=1400 audit(1748231102.020:90): avc: denied { open } for pid=5935 comm="syz-executor" path="net:[4026531840]" dev="nsfs" ino=4026531840 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:nsfs_t tclass=file permissive=1 [ 52.135581][ T40] audit: type=1400 audit(1748231102.020:91): avc: denied { mounton } for pid=5935 comm="syz-executor" path="/" dev="sda1" ino=2 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:root_t tclass=dir permissive=1 [ 52.347377][ T40] audit: type=1400 audit(1748231102.270:92): avc: denied { module_request } for pid=5935 comm="syz-executor" kmod="rtnl-link-nicvf" scontext=root:sysadm_r:sysadm_t tcontext=system_u:system_r:kernel_t tclass=system permissive=1 [ 52.384430][ T5945] chnl_net:caif_netlink_parms(): no params data found [ 52.399257][ T5935] chnl_net:caif_netlink_parms(): no params data found [ 52.423746][ T5940] chnl_net:caif_netlink_parms(): no params data found [ 52.575679][ T5945] bridge0: port 1(bridge_slave_0) entered blocking state [ 52.578604][ T5945] bridge0: port 1(bridge_slave_0) entered disabled state [ 52.581058][ T5945] bridge_slave_0: entered allmulticast mode [ 52.584794][ T5945] bridge_slave_0: entered promiscuous mode [ 52.624255][ T5945] bridge0: port 2(bridge_slave_1) entered blocking state [ 52.629152][ T5945] bridge0: port 2(bridge_slave_1) entered disabled state [ 52.632246][ T5945] bridge_slave_1: entered allmulticast mode [ 52.636195][ T5945] bridge_slave_1: entered promiscuous mode [ 52.748164][ T5935] bridge0: port 1(bridge_slave_0) entered blocking state [ 52.751219][ T5935] bridge0: port 1(bridge_slave_0) entered disabled state [ 52.754390][ T5935] bridge_slave_0: entered allmulticast mode [ 52.759496][ T5935] bridge_slave_0: entered promiscuous mode [ 52.762814][ T5935] bridge0: port 2(bridge_slave_1) entered blocking state [ 52.765205][ T5935] bridge0: port 2(bridge_slave_1) entered disabled state [ 52.768232][ T5935] bridge_slave_1: entered allmulticast mode [ 52.770840][ T5935] bridge_slave_1: entered promiscuous mode [ 52.794934][ T5945] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 52.799755][ T5945] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 52.876761][ T5935] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 52.898037][ T5940] bridge0: port 1(bridge_slave_0) entered blocking state [ 52.901018][ T5940] bridge0: port 1(bridge_slave_0) entered disabled state [ 52.903483][ T5940] bridge_slave_0: entered allmulticast mode [ 52.907522][ T5940] bridge_slave_0: entered promiscuous mode [ 52.911892][ T5945] team0: Port device team_slave_0 added [ 52.916818][ T5935] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 52.949396][ T5940] bridge0: port 2(bridge_slave_1) entered blocking state [ 52.952527][ T5940] bridge0: port 2(bridge_slave_1) entered disabled state [ 52.955567][ T5940] bridge_slave_1: entered allmulticast mode [ 52.959135][ T5940] bridge_slave_1: entered promiscuous mode [ 52.975186][ T5945] team0: Port device team_slave_1 added [ 53.005908][ T5935] team0: Port device team_slave_0 added [ 53.073970][ T5935] team0: Port device team_slave_1 added [ 53.081291][ T5940] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 53.085097][ T5934] chnl_net:caif_netlink_parms(): no params data found [ 53.090029][ T5945] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 53.092211][ T5945] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 53.101247][ T5945] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 53.134021][ T5940] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 53.162770][ T5945] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 53.164951][ T5945] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 53.173254][ T5945] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 53.177462][ T5935] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 53.180354][ T5935] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 53.190543][ T5935] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 53.199190][ T5935] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 53.201478][ T5935] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 53.210214][ T5935] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 53.232006][ T5940] team0: Port device team_slave_0 added [ 53.264623][ T5940] team0: Port device team_slave_1 added [ 53.328281][ T5940] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 53.330497][ T5940] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 53.338591][ T5940] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 53.414393][ T5935] hsr_slave_0: entered promiscuous mode [ 53.417643][ T5935] hsr_slave_1: entered promiscuous mode [ 53.463945][ T5940] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 53.468479][ T5940] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 53.476664][ T5940] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 53.493551][ T5945] hsr_slave_0: entered promiscuous mode [ 53.496529][ T5945] hsr_slave_1: entered promiscuous mode [ 53.499099][ T5945] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 53.501610][ T5945] Cannot create hsr debugfs directory [ 53.519946][ T5934] bridge0: port 1(bridge_slave_0) entered blocking state [ 53.522978][ T5934] bridge0: port 1(bridge_slave_0) entered disabled state [ 53.526969][ T5934] bridge_slave_0: entered allmulticast mode [ 53.530904][ T5934] bridge_slave_0: entered promiscuous mode [ 53.538518][ T5934] bridge0: port 2(bridge_slave_1) entered blocking state [ 53.540974][ T5934] bridge0: port 2(bridge_slave_1) entered disabled state [ 53.543005][ T5934] bridge_slave_1: entered allmulticast mode [ 53.545645][ T5934] bridge_slave_1: entered promiscuous mode [ 53.680953][ T5934] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 53.689710][ T5934] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 53.715011][ T5940] hsr_slave_0: entered promiscuous mode [ 53.717382][ T5940] hsr_slave_1: entered promiscuous mode [ 53.719533][ T5940] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 53.721891][ T5940] Cannot create hsr debugfs directory [ 53.788094][ T5934] team0: Port device team_slave_0 added [ 53.817192][ T5934] team0: Port device team_slave_1 added [ 53.900759][ T5934] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 53.902947][ T5934] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 53.912115][ T5934] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 53.935616][ T5934] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 53.939498][ T5934] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 53.948865][ T5934] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 54.060607][ T5934] hsr_slave_0: entered promiscuous mode [ 54.063370][ T5934] hsr_slave_1: entered promiscuous mode [ 54.066335][ T5934] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 54.069464][ T5934] Cannot create hsr debugfs directory [ 54.098246][ T5935] netdevsim netdevsim3 netdevsim0: renamed from eth0 [ 54.131718][ T5935] netdevsim netdevsim3 netdevsim1: renamed from eth1 [ 54.156999][ T68] Bluetooth: hci2: command tx timeout [ 54.157124][ T5288] Bluetooth: hci3: command tx timeout [ 54.157876][ T5950] Bluetooth: hci0: command tx timeout [ 54.157974][ T5950] Bluetooth: hci1: command tx timeout [ 54.171644][ T5935] netdevsim netdevsim3 netdevsim2: renamed from eth2 [ 54.180619][ T5935] netdevsim netdevsim3 netdevsim3: renamed from eth3 [ 54.242217][ T5945] netdevsim netdevsim0 netdevsim0: renamed from eth0 [ 54.257769][ T5945] netdevsim netdevsim0 netdevsim1: renamed from eth1 [ 54.264649][ T5945] netdevsim netdevsim0 netdevsim2: renamed from eth2 [ 54.269381][ T5945] netdevsim netdevsim0 netdevsim3: renamed from eth3 [ 54.318250][ T5940] netdevsim netdevsim2 netdevsim0: renamed from eth0 [ 54.322912][ T5940] netdevsim netdevsim2 netdevsim1: renamed from eth1 [ 54.328843][ T5940] netdevsim netdevsim2 netdevsim2: renamed from eth2 [ 54.333887][ T5940] netdevsim netdevsim2 netdevsim3: renamed from eth3 [ 54.372503][ T5935] 8021q: adding VLAN 0 to HW filter on device bond0 [ 54.414336][ T5935] 8021q: adding VLAN 0 to HW filter on device team0 [ 54.431765][ T5934] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 54.439707][ T5934] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 54.447379][ T5934] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 54.455564][ T66] bridge0: port 1(bridge_slave_0) entered blocking state [ 54.457971][ T66] bridge0: port 1(bridge_slave_0) entered forwarding state [ 54.465849][ T5934] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 54.485223][ T13] bridge0: port 2(bridge_slave_1) entered blocking state [ 54.487796][ T13] bridge0: port 2(bridge_slave_1) entered forwarding state [ 54.500491][ T5945] 8021q: adding VLAN 0 to HW filter on device bond0 [ 54.523526][ T5945] 8021q: adding VLAN 0 to HW filter on device team0 [ 54.542118][ T100] bridge0: port 1(bridge_slave_0) entered blocking state [ 54.544537][ T100] bridge0: port 1(bridge_slave_0) entered forwarding state [ 54.553679][ T5940] 8021q: adding VLAN 0 to HW filter on device bond0 [ 54.573538][ T13] bridge0: port 2(bridge_slave_1) entered blocking state [ 54.575986][ T13] bridge0: port 2(bridge_slave_1) entered forwarding state [ 54.586904][ T5940] 8021q: adding VLAN 0 to HW filter on device team0 [ 54.606487][ T100] bridge0: port 1(bridge_slave_0) entered blocking state [ 54.609280][ T100] bridge0: port 1(bridge_slave_0) entered forwarding state [ 54.618965][ T100] bridge0: port 2(bridge_slave_1) entered blocking state [ 54.622006][ T100] bridge0: port 2(bridge_slave_1) entered forwarding state [ 54.632935][ T40] audit: type=1400 audit(1748231104.550:93): avc: denied { sys_module } for pid=5935 comm="syz-executor" capability=16 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=capability permissive=1 [ 54.665442][ T5934] 8021q: adding VLAN 0 to HW filter on device bond0 [ 54.688899][ T5934] 8021q: adding VLAN 0 to HW filter on device team0 [ 54.696524][ T13] bridge0: port 1(bridge_slave_0) entered blocking state [ 54.698785][ T13] bridge0: port 1(bridge_slave_0) entered forwarding state [ 54.712869][ T1144] bridge0: port 2(bridge_slave_1) entered blocking state [ 54.715639][ T1144] bridge0: port 2(bridge_slave_1) entered forwarding state [ 54.723352][ T5935] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 54.782280][ T5935] veth0_vlan: entered promiscuous mode [ 54.791840][ T5935] veth1_vlan: entered promiscuous mode [ 54.798904][ T5945] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 54.813268][ T5940] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 54.820722][ T5935] veth0_macvtap: entered promiscuous mode [ 54.827839][ T5935] veth1_macvtap: entered promiscuous mode [ 54.845385][ T5935] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 54.851803][ T5945] veth0_vlan: entered promiscuous mode [ 54.859014][ T5935] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 54.862298][ T5945] veth1_vlan: entered promiscuous mode [ 54.873840][ T5935] netdevsim netdevsim3 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 54.877192][ T5935] netdevsim netdevsim3 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 54.879904][ T5935] netdevsim netdevsim3 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 54.882609][ T5935] netdevsim netdevsim3 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 54.892315][ T5940] veth0_vlan: entered promiscuous mode [ 54.914788][ T5934] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 54.918058][ T5940] veth1_vlan: entered promiscuous mode [ 54.931223][ T5945] veth0_macvtap: entered promiscuous mode [ 54.939964][ T5945] veth1_macvtap: entered promiscuous mode [ 54.984608][ T5945] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 54.993964][ T66] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 54.997044][ T5945] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 54.997169][ T66] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 55.002322][ T5945] netdevsim netdevsim0 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.005094][ T5945] netdevsim netdevsim0 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.008954][ T5945] netdevsim netdevsim0 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.011743][ T5945] netdevsim netdevsim0 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.017114][ T5940] veth0_macvtap: entered promiscuous mode [ 55.025440][ T5940] veth1_macvtap: entered promiscuous mode [ 55.052267][ T5934] veth0_vlan: entered promiscuous mode [ 55.055408][ T66] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 55.058104][ T66] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 55.068007][ T5934] veth1_vlan: entered promiscuous mode [ 55.083905][ T5940] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 55.092654][ T5940] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 55.098807][ T5940] netdevsim netdevsim2 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.101735][ T5940] netdevsim netdevsim2 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.104587][ T5940] netdevsim netdevsim2 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.108400][ T5940] netdevsim netdevsim2 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.121440][ T5935] soft_limit_in_bytes is deprecated and will be removed. Please report your usecase to linux-mm@kvack.org if you depend on this functionality. [ 55.138149][ T100] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 55.141017][ T100] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 55.188539][ T66] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 55.191605][ T66] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 55.193624][ T5934] veth0_macvtap: entered promiscuous mode [ 55.202567][ T5934] veth1_macvtap: entered promiscuous mode [ 55.204877][ T66] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 55.207543][ T66] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 55.220412][ T5934] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 55.240141][ T5934] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 55.250258][ T5934] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.253649][ T5934] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.257746][ T5934] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.260864][ T5934] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 55.265759][ T100] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 55.269571][ T100] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 55.313313][ T100] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 55.322896][ T100] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 55.341898][ T66] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 55.344410][ T66] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 55.384307][ T6012] Zero length message leads to an empty skb [ 55.403691][ T6013] 9pnet_fd: Insufficient options for proto=fd [ 55.418012][ T6016] SELinux: unrecognized netlink message: protocol=0 nlmsg_type=3 sclass=netlink_route_socket pid=6016 comm=syz.1.2 [ 55.494235][ T6023] capability: warning: `syz.2.6' uses deprecated v2 capabilities in a way that may be insecure [ 56.131208][ T6030] netlink: 'syz.2.9': attribute type 10 has an invalid length. [ 56.187114][ T6030] bond0: (slave wlan1): Enslaving as an active interface with an up link [ 56.238618][ T5288] Bluetooth: hci0: command tx timeout [ 56.238644][ T68] Bluetooth: hci2: command tx timeout [ 56.240752][ T5947] Bluetooth: hci3: command tx timeout [ 56.303262][ T6047] netlink: 8 bytes leftover after parsing attributes in process `syz.0.13'. [ 56.307080][ T6047] netlink: 8 bytes leftover after parsing attributes in process `syz.0.13'. [ 56.452609][ T6055] netlink: 8 bytes leftover after parsing attributes in process `syz.0.18'. [ 56.455400][ T6055] netlink: 8 bytes leftover after parsing attributes in process `syz.0.18'. [ 56.505808][ T6059] IPVS: set_ctl: invalid protocol: 33 224.0.0.1:20000 [ 56.724598][ T6070] syz_tun: entered allmulticast mode [ 56.807723][ T6074] syz_tun: left allmulticast mode [ 56.874490][ T40] kauditd_printk_skb: 64 callbacks suppressed [ 56.874501][ T40] audit: type=1400 audit(1748231106.790:158): avc: denied { map } for pid=6075 comm="syz.3.25" path="anon_inode:[io_uring]" dev="anon_inodefs" ino=7059 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:sysadm_t tclass=anon_inode permissive=1 [ 56.884325][ T40] audit: type=1400 audit(1748231106.790:159): avc: denied { read } for pid=6075 comm="syz.3.25" path="anon_inode:[io_uring]" dev="anon_inodefs" ino=7059 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:sysadm_t tclass=anon_inode permissive=1 [ 56.952415][ T6079] netlink: 'syz.2.26': attribute type 20 has an invalid length. [ 56.953362][ T40] audit: type=1400 audit(1748231106.870:160): avc: denied { create } for pid=6078 comm="syz.2.26" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_netfilter_socket permissive=1 [ 56.963849][ T40] audit: type=1400 audit(1748231106.870:161): avc: denied { write } for pid=6078 comm="syz.2.26" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_netfilter_socket permissive=1 [ 56.968110][ T6079] netlink: 'syz.2.26': attribute type 20 has an invalid length. [ 57.276181][ T5947] Bluetooth: hci1: command tx timeout [ 57.378293][ T40] audit: type=1400 audit(1748231107.300:162): avc: denied { ioctl } for pid=6089 comm="syz.3.28" path="/dev/vhost-vsock" dev="devtmpfs" ino=1301 ioctlcmd=0xaf01 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:vhost_device_t tclass=chr_file permissive=1 [ 57.620847][ T40] audit: type=1400 audit(1748231107.540:163): avc: denied { name_bind } for pid=6106 comm="syz.3.34" src=2 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:reserved_port_t tclass=tcp_socket permissive=1 [ 57.666861][ T40] audit: type=1400 audit(1748231107.590:164): avc: denied { write } for pid=6111 comm="syz.1.36" scontext=root:sysadm_r:sysadm_t tcontext=system_u:system_r:kernel_t tclass=key permissive=1 [ 57.705367][ T40] audit: type=1400 audit(1748231107.620:165): avc: denied { bind } for pid=6111 comm="syz.1.36" lport=58 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rawip_socket permissive=1 [ 57.711438][ T40] audit: type=1400 audit(1748231107.620:166): avc: denied { bind } for pid=6111 comm="syz.1.36" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_generic_socket permissive=1 [ 57.717726][ T40] audit: type=1400 audit(1748231107.630:167): avc: denied { read } for pid=6111 comm="syz.1.36" name="card1" dev="devtmpfs" ino=636 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 57.764257][ T6115] netlink: 8 bytes leftover after parsing attributes in process `syz.1.36'. [ 57.768544][ T6105] syz.0.33 (6105): drop_caches: 2 [ 57.779042][ T6104] syz.0.33 (6104): drop_caches: 2 [ 57.818037][ T6117] overlayfs: upper fs does not support RENAME_WHITEOUT. [ 57.820331][ T6117] overlayfs: failed to set xattr on upper [ 57.822420][ T6117] overlayfs: ...falling back to redirect_dir=nofollow. [ 57.824672][ T6117] overlayfs: ...falling back to index=off. [ 57.826915][ T6117] overlayfs: ...falling back to uuid=null. [ 57.866079][ T5980] usb 8-1: new full-speed USB device number 2 using dummy_hcd [ 57.872881][ T6122] netlink: 8 bytes leftover after parsing attributes in process `syz.0.39'. [ 57.875555][ T6122] netlink: 4 bytes leftover after parsing attributes in process `syz.0.39'. [ 57.878767][ T6122] netlink: 'syz.0.39': attribute type 1 has an invalid length. [ 58.029519][ T5980] usb 8-1: config 1 interface 0 altsetting 253 endpoint 0x1 has invalid maxpacket 1023, setting to 64 [ 58.032977][ T5980] usb 8-1: config 1 interface 0 has no altsetting 0 [ 58.036626][ T5980] usb 8-1: New USB device found, idVendor=0525, idProduct=a4a8, bcdDevice= 0.40 [ 58.039575][ T5980] usb 8-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 58.042147][ T5980] usb 8-1: Product: syz [ 58.043608][ T5980] usb 8-1: Manufacturer: syz [ 58.045338][ T5980] usb 8-1: SerialNumber: syz [ 58.050956][ T6107] raw-gadget.0 gadget.3: fail, usb_ep_enable returned -22 [ 58.269231][ T5980] usb 8-1: USB disconnect, device number 2 [ 58.316113][ T5947] Bluetooth: hci2: command tx timeout [ 58.326226][ T5947] Bluetooth: hci0: command tx timeout [ 58.950574][ T6181] sp0: Synchronizing with TNC [ 59.243938][ T6207] syz.1.70 uses obsolete (PF_INET,SOCK_PACKET) [ 59.252566][ T6207] xfrm1: entered allmulticast mode [ 59.309968][ T6208] kvm: requested 4190 ns i8254 timer period limited to 200000 ns [ 59.358304][ T5947] Bluetooth: hci1: command tx timeout [ 59.375799][ T6221] UDPLite: UDP-Lite is deprecated and scheduled to be removed in 2025, please contact the netdev mailing list [ 59.389016][ T6205] infiniband syz!: set active [ 59.391866][ T6205] infiniband syz!: added team_slave_0 [ 59.421371][ T6205] RDS/IB: syz!: added [ 59.423133][ T6205] smc: adding ib device syz! with port count 1 [ 59.425220][ T6205] smc: ib device syz! port 1 has pnetid [ 59.435701][ T6221] vhci_hcd vhci_hcd.0: pdev(3) rhport(0) sockfd(5) [ 59.437824][ T6221] vhci_hcd vhci_hcd.0: devid(0) speed(1) speed_str(low-speed) [ 59.443163][ T6221] vhci_hcd vhci_hcd.0: Device attached [ 59.443853][ T6229] netlink: 8 bytes leftover after parsing attributes in process `syz.1.75'. [ 59.448804][ T6229] netlink: 8 bytes leftover after parsing attributes in process `syz.1.75'. [ 59.452506][ T6221] vhci_hcd vhci_hcd.0: pdev(3) rhport(1) sockfd(7) [ 59.454628][ T6221] vhci_hcd vhci_hcd.0: devid(0) speed(4) speed_str(wireless) [ 59.460529][ T6221] vhci_hcd vhci_hcd.0: Device attached [ 59.467959][ T6227] vhci_hcd: connection closed [ 59.469161][ T96] vhci_hcd: stop threads [ 59.472577][ T96] vhci_hcd: release socket [ 59.474543][ T96] vhci_hcd: disconnect device [ 59.474955][ T6230] vhci_hcd: connection closed [ 59.478322][ T96] vhci_hcd: stop threads [ 59.481651][ T96] vhci_hcd: release socket [ 59.483289][ T96] vhci_hcd: disconnect device [ 59.571650][ T6241] xt_TPROXY: Can be used only with -p tcp or -p udp [ 59.624011][ T6250] netlink: 'syz.2.82': attribute type 2 has an invalid length. [ 59.627311][ T6250] netlink: 'syz.2.82': attribute type 1 has an invalid length. [ 59.629890][ T6250] netlink: 'syz.2.82': attribute type 1 has an invalid length. [ 59.745172][ T6259] netlink: 8 bytes leftover after parsing attributes in process `syz.2.85'. [ 59.776956][ T6262] warning: `syz.2.86' uses wireless extensions which will stop working for Wi-Fi 7 hardware; use nl80211 [ 59.818807][ T6267] binder: BINDER_SET_CONTEXT_MGR already set [ 59.820857][ T6267] binder: 6265:6267 ioctl 4018620d 2000000000c0 returned -16 [ 59.826610][ T6266] bond0: (slave geneve0): Error: Device can not be enslaved while up [ 59.829827][ T6266] binder_alloc: binder_alloc_mmap_handler: 6265 200000ffd000-200001000000 already mapped failed -16 [ 59.834257][ T6267] binder_alloc: 6265: binder_alloc_buf, no vma [ 59.834348][ T6269] binder_alloc: 6265: binder_alloc_buf, no vma [ 59.916493][ T5947] Bluetooth: hci3: command tx timeout [ 60.396118][ T5947] Bluetooth: hci0: command tx timeout [ 60.396938][ T5288] Bluetooth: hci2: command tx timeout [ 60.829499][ T6306] Bluetooth: hci4: Frame reassembly failed (-84) [ 60.833064][ T6306] futex_wake_op: syz.1.100 tries to shift op by 32; fix this program [ 60.932114][ T6313] UDPLite6: UDP-Lite is deprecated and scheduled to be removed in 2025, please contact the netdev mailing list [ 60.990469][ T6316] kvm_intel: set kvm_intel.dump_invalid_vmcs=1 to dump internal KVM state. [ 61.065403][ T6319] program syz.0.104 is using a deprecated SCSI ioctl, please convert it to SG_IO [ 61.552927][ T6354] __nla_validate_parse: 6 callbacks suppressed [ 61.552942][ T6354] netlink: 8 bytes leftover after parsing attributes in process `syz.0.116'. [ 61.660604][ T6358] pim6reg: entered allmulticast mode [ 61.663364][ T6358] pim6reg: left allmulticast mode [ 61.844213][ T6368] netlink: 4 bytes leftover after parsing attributes in process `syz.3.120'. [ 61.866123][ T5980] usb 5-1: new high-speed USB device number 2 using dummy_hcd [ 61.974557][ T40] kauditd_printk_skb: 93 callbacks suppressed [ 61.974568][ T40] audit: type=1400 audit(1748231111.890:261): avc: denied { node_bind } for pid=6373 comm="syz.3.122" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:node_t tclass=rawip_socket permissive=1 [ 61.980974][ T6375] netlink: 8 bytes leftover after parsing attributes in process `syz.3.122'. [ 62.028971][ T5980] usb 5-1: config index 0 descriptor too short (expected 23569, got 27) [ 62.031613][ T5980] usb 5-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 62.037209][ T5980] usb 5-1: New USB device found, idVendor=03eb, idProduct=0002, bcdDevice=ba.c0 [ 62.040343][ T5980] usb 5-1: New USB device strings: Mfr=5, Product=0, SerialNumber=0 [ 62.042700][ T5980] usb 5-1: Manufacturer: syz [ 62.047716][ T5980] usb 5-1: config 0 descriptor?? [ 62.106093][ T5980] rc_core: IR keymap rc-hauppauge not found [ 62.108092][ T5980] Registered IR keymap rc-empty [ 62.111081][ T5980] rc rc0: IgorPlug-USB IR Receiver as /devices/platform/dummy_hcd.0/usb5/5-1/5-1:0.0/rc/rc0 [ 62.115852][ T5980] input: IgorPlug-USB IR Receiver as /devices/platform/dummy_hcd.0/usb5/5-1/5-1:0.0/rc/rc0/input5 [ 62.123213][ T40] audit: type=1400 audit(1748231112.040:262): avc: denied { read } for pid=5333 comm="acpid" name="event4" dev="devtmpfs" ino=2854 scontext=system_u:system_r:acpid_t tcontext=system_u:object_r:device_t tclass=chr_file permissive=1 [ 62.130590][ T40] audit: type=1400 audit(1748231112.040:263): avc: denied { open } for pid=5333 comm="acpid" path="/dev/input/event4" dev="devtmpfs" ino=2854 scontext=system_u:system_r:acpid_t tcontext=system_u:object_r:device_t tclass=chr_file permissive=1 [ 62.138370][ T40] audit: type=1400 audit(1748231112.040:264): avc: denied { ioctl } for pid=5333 comm="acpid" path="/dev/input/event4" dev="devtmpfs" ino=2854 ioctlcmd=0x4520 scontext=system_u:system_r:acpid_t tcontext=system_u:object_r:device_t tclass=chr_file permissive=1 [ 62.200662][ T40] audit: type=1400 audit(1748231112.120:265): avc: denied { create } for pid=6388 comm="syz.3.126" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 62.206796][ T40] audit: type=1400 audit(1748231112.120:266): avc: denied { ioctl } for pid=6388 comm="syz.3.126" path="socket:[9933]" dev="sockfs" ino=9933 ioctlcmd=0x890b scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 62.214213][ T40] audit: type=1400 audit(1748231112.120:267): avc: denied { create } for pid=6388 comm="syz.3.126" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 62.220395][ T40] audit: type=1400 audit(1748231112.120:268): avc: denied { write } for pid=6388 comm="syz.3.126" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 62.253178][ T29] usb 5-1: USB disconnect, device number 2 [ 62.267667][ T6393] netlink: 40 bytes leftover after parsing attributes in process `syz.3.128'. [ 62.343839][ T40] audit: type=1400 audit(1748231112.260:269): avc: denied { read write } for pid=6394 comm="syz.3.129" name="ppp" dev="devtmpfs" ino=730 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:ppp_device_t tclass=chr_file permissive=1 [ 62.351898][ T40] audit: type=1400 audit(1748231112.260:270): avc: denied { open } for pid=6394 comm="syz.3.129" path="/dev/ppp" dev="devtmpfs" ino=730 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:ppp_device_t tclass=chr_file permissive=1 [ 62.575789][ T6409] capability: warning: `syz.3.133' uses 32-bit capabilities (legacy support in use) [ 62.854027][ T6415] sch_tbf: burst 19872 is lower than device lo mtu (65550) ! [ 62.876040][ T5947] Bluetooth: hci4: command 0x1003 tx timeout [ 62.876555][ T5288] Bluetooth: hci4: Opcode 0x1003 failed: -110 [ 63.063998][ T6429] netlink: 8 bytes leftover after parsing attributes in process `syz.0.139'. [ 63.067619][ T6429] netlink: 8 bytes leftover after parsing attributes in process `syz.0.139'. [ 63.193818][ T6437] SELinux: unrecognized netlink message: protocol=0 nlmsg_type=16400 sclass=netlink_route_socket pid=6437 comm=syz.0.143 [ 63.194310][ T6438] SELinux: unrecognized netlink message: protocol=0 nlmsg_type=16400 sclass=netlink_route_socket pid=6438 comm=syz.0.143 [ 63.284811][ T6446] SELinux: unrecognized netlink message: protocol=9 nlmsg_type=21 sclass=netlink_audit_socket pid=6446 comm=syz.0.145 [ 63.784674][ T6453] SELinux: unrecognized netlink message: protocol=0 nlmsg_type=0 sclass=netlink_route_socket pid=6453 comm=syz.1.147 [ 63.965755][ T6458] netlink: 8 bytes leftover after parsing attributes in process `syz.1.148'. [ 63.968688][ T6458] netlink: 8 bytes leftover after parsing attributes in process `syz.1.148'. [ 64.106703][ T6465] netlink: 8 bytes leftover after parsing attributes in process `syz.1.151'. [ 64.120828][ T6465] Driver unsupported XDP return value 0 on prog (id 16) dev N/A, expect packet loss! [ 64.390547][ T6471] ucma_write: process 132 (syz.3.154) changed security contexts after opening file descriptor, this is not allowed. [ 64.396062][ T9] usb 6-1: new high-speed USB device number 2 using dummy_hcd [ 64.428010][ T6485] netlink: 12 bytes leftover after parsing attributes in process `syz.3.156'. [ 64.566392][ T9] usb 6-1: Using ep0 maxpacket: 16 [ 64.575727][ T9] usb 6-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 0 [ 64.581713][ T9] usb 6-1: New USB device found, idVendor=05ac, idProduct=0244, bcdDevice= 0.00 [ 64.585524][ T9] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 64.593349][ T9] usb 6-1: config 0 descriptor?? [ 64.609874][ T9] input: bcm5974 as /devices/platform/dummy_hcd.1/usb6/6-1/6-1:0.0/input/input7 [ 64.799929][ T5333] bcm5974 6-1:0.0: could not read from device [ 64.804526][ T5978] usb 6-1: USB disconnect, device number 2 [ 64.857098][ T6508] process 'syz.3.161' launched '/dev/fd/4' with NULL argv: empty string added [ 65.946909][ T6559] SELinux: syz.1.179 (6559) set checkreqprot to 1. This is no longer supported. [ 65.968846][ T6558] 8021q: adding VLAN 0 to HW filter on device bond1 [ 65.972612][ T6558] bond0: (slave bond1): Enslaving as an active interface with an up link [ 66.501417][ T6590] xt_CONNSECMARK: only valid in 'mangle' or 'security' table, not 'syz0' [ 66.543696][ T6595] sctp: [Deprecated]: syz.3.193 (pid 6595) Use of int in maxseg socket option. [ 66.543696][ T6595] Use struct sctp_assoc_value instead [ 66.658840][ T6611] tipc: Started in network mode [ 66.660461][ T6611] tipc: Node identity , cluster identity 4711 [ 66.662277][ T6611] tipc: Failed to obtain node identity [ 66.663921][ T6611] tipc: Enabling of bearer rejected, failed to enable media [ 66.691245][ T6606] binder: BINDER_SET_CONTEXT_MGR already set [ 66.693360][ T6606] binder: 6605:6606 ioctl 4018620d 200000000040 returned -16 [ 66.798279][ T6623] __nla_validate_parse: 9 callbacks suppressed [ 66.798294][ T6623] netlink: 8 bytes leftover after parsing attributes in process `syz.2.200'. [ 66.798750][ T6624] overlayfs: upper fs does not support RENAME_WHITEOUT. [ 66.802912][ T6623] netlink: 8 bytes leftover after parsing attributes in process `syz.2.200'. [ 66.803694][ T6624] overlayfs: failed to set xattr on upper [ 66.811191][ T6624] overlayfs: ...falling back to redirect_dir=nofollow. [ 66.813387][ T6624] overlayfs: ...falling back to metacopy=off. [ 66.815466][ T6624] overlayfs: ...falling back to index=off. [ 66.817404][ T6624] overlayfs: ...falling back to uuid=null. [ 66.822214][ T6620] ceph: No mds server is up or the cluster is laggy [ 67.669700][ T6636] netlink: 'syz.3.205': attribute type 5 has an invalid length. [ 67.679514][ T6638] IPVS: sync thread started: state = MASTER, mcast_ifn = wlan1, syncid = 0, id = 0 [ 67.705383][ T40] kauditd_printk_skb: 57 callbacks suppressed [ 67.705395][ T40] audit: type=1400 audit(1748231117.620:328): avc: denied { bind } for pid=6630 comm="syz.2.203" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=tipc_socket permissive=1 [ 67.767172][ T6646] netlink: 8 bytes leftover after parsing attributes in process `syz.2.208'. [ 67.808092][ T40] audit: type=1400 audit(1748231117.730:329): avc: denied { create } for pid=6648 comm="syz.0.209" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 67.825250][ T40] audit: type=1400 audit(1748231117.740:330): avc: denied { connect } for pid=6648 comm="syz.0.209" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 67.890544][ T6656] netlink: 8 bytes leftover after parsing attributes in process `syz.2.211'. [ 67.894750][ T6656] netlink: 8 bytes leftover after parsing attributes in process `syz.2.211'. [ 68.699474][ T40] audit: type=1400 audit(1748231118.620:331): avc: denied { name_connect } for pid=6659 comm="syz.2.213" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:port_t tclass=sctp_socket permissive=1 [ 68.725325][ T40] audit: type=1400 audit(1748231118.640:332): avc: denied { listen } for pid=6659 comm="syz.2.213" lport=38687 faddr=::ffff:172.20.255.187 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 68.756145][ T6667] netlink: 20 bytes leftover after parsing attributes in process `syz.0.215'. [ 68.758973][ T6667] netlink: 40 bytes leftover after parsing attributes in process `syz.0.215'. [ 68.762280][ T6667] netlink: 696 bytes leftover after parsing attributes in process `syz.0.215'. [ 68.770399][ T40] audit: type=1400 audit(1748231118.690:333): avc: denied { accept } for pid=6659 comm="syz.2.213" lport=38687 faddr=::ffff:172.20.255.187 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 68.774145][ T6667] ptrace attach of "/syz-executor exec"[5945] was attempted by " [ 68.783803][ T40] audit: type=1400 audit(1748231118.690:334): avc: denied { write } for pid=6665 comm="syz.0.215" name="ptp1" dev="devtmpfs" ino=1288 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:clock_device_t tclass=chr_file permissive=1 [ 68.832099][ T40] audit: type=1400 audit(1748231118.750:335): avc: denied { write } for pid=6659 comm="syz.2.213" lport=38687 faddr=::ffff:172.20.255.187 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:unlabeled_t tclass=sctp_socket permissive=1 [ 68.982184][ T6681] netlink: 4 bytes leftover after parsing attributes in process `syz.3.219'. [ 68.985901][ T40] audit: type=1400 audit(1748231118.900:336): avc: denied { setopt } for pid=6680 comm="syz.3.219" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 69.068494][ T6693] netlink: 8 bytes leftover after parsing attributes in process `syz.0.221'. [ 69.135581][ T6694] Invalid logical block size (1) [ 69.259263][ T40] audit: type=1326 audit(1748231119.180:337): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=6704 comm="syz.1.225" exe="/syz-executor" sig=31 arch=c000003e syscall=202 compat=0 ip=0x7fdebc38e969 code=0x0 [ 69.997984][ T835] usb 7-1: new low-speed USB device number 2 using dummy_hcd [ 70.043748][ T6714] Bluetooth: hci1: Opcode 0x0c1a failed: -4 [ 70.047036][ T6714] Bluetooth: hci1: Opcode 0x0406 failed: -4 [ 70.054936][ T6714] Bluetooth: hci1: Opcode 0x0406 failed: -4 [ 70.060070][ T6714] Bluetooth: hci0: Opcode 0x0c1a failed: -4 [ 70.061981][ T6714] Bluetooth: hci0: Opcode 0x0406 failed: -4 [ 70.066565][ T6714] Bluetooth: hci0: Opcode 0x0406 failed: -4 [ 70.072059][ T6714] Bluetooth: hci2: Opcode 0x0c1a failed: -4 [ 70.074105][ T6714] Bluetooth: hci2: Opcode 0x0406 failed: -4 [ 70.078211][ T6714] Bluetooth: hci2: Opcode 0x0406 failed: -4 [ 70.082294][ T6714] Bluetooth: hci3: Opcode 0x0c1a failed: -4 [ 70.084286][ T6714] Bluetooth: hci3: Opcode 0x0406 failed: -4 [ 70.098411][ T6714] Bluetooth: hci3: Opcode 0x0406 failed: -4 [ 70.158312][ T835] usb 7-1: Invalid ep0 maxpacket: 32 [ 70.292475][ T835] usb 7-1: new low-speed USB device number 3 using dummy_hcd [ 70.457602][ T835] usb 7-1: Invalid ep0 maxpacket: 32 [ 70.460814][ T835] usb usb7-port1: attempt power cycle [ 70.818937][ T835] usb 7-1: new low-speed USB device number 4 using dummy_hcd [ 70.841506][ T835] usb 7-1: Invalid ep0 maxpacket: 32 [ 70.973745][ T835] usb 7-1: new low-speed USB device number 5 using dummy_hcd [ 70.994966][ T835] usb 7-1: Invalid ep0 maxpacket: 32 [ 70.997577][ T835] usb usb7-port1: unable to enumerate USB device [ 71.099447][ T6746] FAULT_INJECTION: forcing a failure. [ 71.099447][ T6746] name fail_usercopy, interval 1, probability 0, space 0, times 1 [ 71.105486][ T6746] CPU: 3 UID: 0 PID: 6746 Comm: syz.1.239 Not tainted 6.15.0-rc7-syzkaller-00175-g0f8c0258bf04 #0 PREEMPT(full) [ 71.105510][ T6746] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014 [ 71.105528][ T6746] Call Trace: [ 71.105534][ T6746] [ 71.105542][ T6746] dump_stack_lvl+0x16c/0x1f0 [ 71.105572][ T6746] should_fail_ex+0x512/0x640 [ 71.105601][ T6746] _copy_to_user+0x32/0xd0 [ 71.105630][ T6746] simple_read_from_buffer+0xcb/0x170 [ 71.105660][ T6746] proc_fail_nth_read+0x197/0x270 [ 71.105689][ T6746] ? __pfx_proc_fail_nth_read+0x10/0x10 [ 71.105717][ T6746] ? rw_verify_area+0xcf/0x680 [ 71.105740][ T6746] ? __pfx_proc_fail_nth_read+0x10/0x10 [ 71.105768][ T6746] vfs_read+0x1e1/0xc70 [ 71.105797][ T6746] ? __pfx___mutex_lock+0x10/0x10 [ 71.105823][ T6746] ? __pfx_vfs_read+0x10/0x10 [ 71.105856][ T6746] ? __fget_files+0x20e/0x3c0 [ 71.105879][ T6746] ksys_read+0x12a/0x240 [ 71.105904][ T6746] ? __pfx_ksys_read+0x10/0x10 [ 71.105928][ T6746] ? rcu_is_watching+0x12/0xc0 [ 71.105957][ T6746] do_syscall_64+0xcd/0x260 [ 71.105986][ T6746] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 71.106004][ T6746] RIP: 0033:0x7fdebc38d37c [ 71.106019][ T6746] Code: ec 28 48 89 54 24 18 48 89 74 24 10 89 7c 24 08 e8 99 93 02 00 48 8b 54 24 18 48 8b 74 24 10 41 89 c0 8b 7c 24 08 31 c0 0f 05 <48> 3d 00 f0 ff ff 77 34 44 89 c7 48 89 44 24 08 e8 ef 93 02 00 48 [ 71.106035][ T6746] RSP: 002b:00007fdeba1f6030 EFLAGS: 00000246 ORIG_RAX: 0000000000000000 [ 71.106051][ T6746] RAX: ffffffffffffffda RBX: 00007fdebc5b5fa0 RCX: 00007fdebc38d37c [ 71.106063][ T6746] RDX: 000000000000000f RSI: 00007fdeba1f60a0 RDI: 0000000000000007 [ 71.106073][ T6746] RBP: 00007fdeba1f6090 R08: 0000000000000000 R09: 0000000000000000 [ 71.106083][ T6746] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 71.106092][ T6746] R13: 0000000000000000 R14: 00007fdebc5b5fa0 R15: 00007fff883cb228 [ 71.106117][ T6746] [ 71.202895][ T6751] netlink: 'syz.1.240': attribute type 10 has an invalid length. [ 71.204699][ T6754] xt_hashlimit: max too large, truncated to 1048576 [ 71.208205][ T6754] xt_bpf: check failed: parse error [ 71.215007][ T6751] bond0: (slave dummy0): Enslaving as an active interface with an up link [ 71.223602][ T6751] mmap: syz.1.240 (6751) uses deprecated remap_file_pages() syscall. See Documentation/mm/remap_file_pages.rst. [ 71.235139][ T5947] Bluetooth: hci1: unexpected subevent 0x0e length: 30 > 15 [ 71.237554][ T5947] Bluetooth: hci1: Unable to find connection for dst 00:00:00:00:00:00 sid 0x00 [ 71.303215][ T5947] Bluetooth: hci3: unexpected event for opcode 0x2041 [ 71.314722][ T1420] ieee802154 phy0 wpan0: encryption failed: -22 [ 71.317361][ T1420] ieee802154 phy1 wpan1: encryption failed: -22 [ 72.031357][ T5947] Bluetooth: hci1: command 0x0c1a tx timeout [ 72.111347][ T5947] Bluetooth: hci2: command 0x0c1a tx timeout [ 72.111731][ T68] Bluetooth: hci0: command 0x0c1a tx timeout [ 72.271004][ T6804] __nla_validate_parse: 5 callbacks suppressed [ 72.271015][ T6804] netlink: 8 bytes leftover after parsing attributes in process `syz.3.249'. [ 72.438882][ T6800] netlink: 'syz.0.248': attribute type 4 has an invalid length. [ 72.602756][ T6819] 9pnet_virtio: no channels available for device 127.0.0.1 [ 72.691484][ T6826] xt_policy: output policy not valid in PREROUTING and INPUT [ 72.696165][ T6826] SELinux: Context #! ./cgroup/file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa [ 72.789464][ T6831] random: crng reseeded on system resumption [ 72.790910][ T40] kauditd_printk_skb: 22 callbacks suppressed [ 72.790920][ T40] audit: type=1400 audit(1748755408.673:360): avc: denied { write } for pid=6829 comm="syz.2.258" name="snapshot" dev="devtmpfs" ino=98 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:acpi_bios_t tclass=chr_file permissive=1 [ 72.816752][ C2] vkms_vblank_simulate: vblank timer overrun [ 72.844204][ T40] audit: type=1400 audit(1748755408.733:361): avc: denied { append } for pid=6829 comm="syz.2.258" name="nvram" dev="devtmpfs" ino=631 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:nvram_device_t tclass=chr_file permissive=1 [ 72.853237][ T40] audit: type=1400 audit(1748755408.733:362): avc: denied { open } for pid=6829 comm="syz.2.258" path="/dev/nvram" dev="devtmpfs" ino=631 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:nvram_device_t tclass=chr_file permissive=1 [ 72.954137][ T68] Bluetooth: hci2: unexpected event for opcode 0x2011 [ 72.956494][ T68] Bluetooth: hci2: unexpected event for opcode 0x2011 [ 72.962357][ T40] audit: type=1400 audit(1748755408.853:363): avc: denied { read } for pid=6834 comm="syz.2.259" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=packet_socket permissive=1 [ 72.978825][ T6839] binder: 6838:6839 ioctl c0306201 200000000480 returned -14 [ 73.595246][ T6857] ptm ptm0: ldisc open failed (-12), clearing slot 0 [ 73.652132][ T40] audit: type=1400 audit(1748755409.543:364): avc: denied { append } for pid=6861 comm="syz.2.267" name="kvm" dev="devtmpfs" ino=84 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 73.910971][ T6872] netlink: 4 bytes leftover after parsing attributes in process `syz.0.270'. [ 74.035534][ T40] audit: type=1400 audit(1748755409.923:365): avc: denied { setopt } for pid=6883 comm="syz.3.274" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=tipc_socket permissive=1 [ 74.043139][ T6885] tipc: Failed to remove unknown binding: 66,1,1/0:811055766/811055768 [ 74.047127][ T6885] tipc: Failed to remove unknown binding: 66,1,1/0:811055766/811055768 [ 74.067230][ T6891] netlink: 8 bytes leftover after parsing attributes in process `syz.2.272'. [ 74.089304][ T6893] kvm_intel: set kvm_intel.dump_invalid_vmcs=1 to dump internal KVM state. [ 74.111365][ T68] Bluetooth: hci1: command 0x0c1a tx timeout [ 74.194206][ T40] audit: type=1400 audit(1748755410.083:366): avc: denied { read write } for pid=6905 comm="syz.0.280" name="uhid" dev="devtmpfs" ino=1296 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:uhid_device_t tclass=chr_file permissive=1 [ 74.197756][ T835] hid (null): invalid report_count 30051 [ 74.202223][ T68] Bluetooth: hci0: command 0x0c1a tx timeout [ 74.202313][ T40] audit: type=1400 audit(1748755410.083:367): avc: denied { open } for pid=6905 comm="syz.0.280" path="/dev/uhid" dev="devtmpfs" ino=1296 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:uhid_device_t tclass=chr_file permissive=1 [ 74.214554][ T6906] syzkaller0: default qdisc (pfifo_fast) fail, fallback to noqueue [ 74.223765][ T6906] syzkaller0: entered promiscuous mode [ 74.224280][ T835] hid-generic 0008:0004:0000.0002: invalid report_count 30051 [ 74.226831][ T6906] syzkaller0: entered allmulticast mode [ 74.228447][ T835] hid-generic 0008:0004:0000.0002: item 0 2 1 9 parsing failed [ 74.235388][ T835] hid-generic 0008:0004:0000.0002: probe with driver hid-generic failed with error -22 [ 74.255899][ T40] audit: type=1400 audit(1748755410.143:368): avc: denied { connect } for pid=6908 comm="syz.3.281" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 74.974356][ T6923] netlink: 4 bytes leftover after parsing attributes in process `syz.2.284'. [ 74.977289][ T6911] netlink: 12 bytes leftover after parsing attributes in process `syz.3.282'. [ 74.980805][ T6911] netlink: 60 bytes leftover after parsing attributes in process `syz.3.282'. [ 74.984229][ T6911] netlink: 12 bytes leftover after parsing attributes in process `syz.3.282'. [ 74.988239][ T6911] netlink: 60 bytes leftover after parsing attributes in process `syz.3.282'. [ 74.991979][ T6911] netlink: 104 bytes leftover after parsing attributes in process `syz.3.282'. [ 75.118936][ T6927] could not allocate digest TFM handle sha256-ce [ 75.165643][ T6936] SELinux: unrecognized netlink message: protocol=0 nlmsg_type=5 sclass=netlink_route_socket pid=6936 comm=syz.2.289 [ 75.202762][ T5979] IPVS: starting estimator thread 0... [ 75.312481][ T68] Bluetooth: hci3: Controller not accepting commands anymore: ncmd = 0 [ 75.315319][ T68] Bluetooth: hci3: Injecting HCI hardware error event [ 75.321461][ T6945] IPVS: using max 42 ests per chain, 100800 per kthread [ 75.826261][ T40] audit: type=1400 audit(1748755411.713:369): avc: denied { attach_queue } for pid=6964 comm="syz.2.298" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=tun_socket permissive=1 [ 75.965608][ T6970] netlink: 4 bytes leftover after parsing attributes in process `syz.2.299'. [ 76.044912][ T6978] tmpfs: Bad value for 'mpol' [ 76.064609][ T68] Bluetooth: hci3: ACL packet for unknown connection handle 200 [ 76.201738][ T68] Bluetooth: hci1: command 0x0c1a tx timeout [ 76.281332][ T68] Bluetooth: hci0: command 0x0c1a tx timeout [ 76.604005][ T7019] Bluetooth: (null): Invalid header checksum [ 76.696749][ T68] Bluetooth: hci0: unexpected event for opcode 0x2027 [ 76.699748][ T68] Bluetooth: hci0: unexpected event for opcode 0x2027 [ 76.729874][ T7033] ntfs3(sr0): Primary boot signature is not NTFS. [ 76.732536][ T7033] ntfs3(sr0): try to read out of volume at offset 0xf800 [ 76.999001][ T7054] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 77.003112][ T7054] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 77.008141][ T7055] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 77.011786][ T7055] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 77.381479][ T835] usb 5-1: new high-speed USB device number 3 using dummy_hcd [ 77.511494][ T835] usb 5-1: device descriptor read/64, error -71 [ 77.641357][ T5979] usb 6-1: new high-speed USB device number 3 using dummy_hcd [ 77.751425][ T835] usb 5-1: new high-speed USB device number 4 using dummy_hcd [ 77.801255][ T5979] usb 6-1: Using ep0 maxpacket: 16 [ 77.804311][ T5979] usb 6-1: config 1 interface 0 altsetting 118 bulk endpoint 0x1 has invalid maxpacket 64 [ 77.807385][ T5979] usb 6-1: config 1 interface 0 altsetting 118 bulk endpoint 0x82 has invalid maxpacket 32 [ 77.810422][ T5979] usb 6-1: config 1 interface 0 has no altsetting 0 [ 77.814879][ T5979] usb 6-1: New USB device found, idVendor=0525, idProduct=a4a8, bcdDevice= 0.40 [ 77.817689][ T5979] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 77.820118][ T5979] usb 6-1: Product: syz [ 77.821507][ T5979] usb 6-1: Manufacturer: syz [ 77.822984][ T5979] usb 6-1: SerialNumber: syz [ 77.828434][ T7089] raw-gadget.1 gadget.1: fail, usb_ep_enable returned -22 [ 77.830880][ T7089] raw-gadget.1 gadget.1: fail, usb_ep_enable returned -22 [ 77.891458][ T835] usb 5-1: device descriptor read/64, error -71 [ 78.002689][ T835] usb usb5-port1: attempt power cycle [ 78.007988][ T7094] 8021q: adding VLAN 0 to HW filter on device bond1 [ 78.041381][ T40] kauditd_printk_skb: 11 callbacks suppressed [ 78.041396][ T40] audit: type=1400 audit(1748755413.933:381): avc: denied { ioctl } for pid=7096 comm="syz.2.338" path="socket:[16811]" dev="sockfs" ino=16811 ioctlcmd=0x8933 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=alg_socket permissive=1 [ 78.070862][ T5979] usblp 6-1:1.0: usblp0: USB Bidirectional printer dev 3 if 0 alt 118 proto 3 vid 0x0525 pid 0xA4A8 [ 78.078676][ T5979] usb 6-1: USB disconnect, device number 3 [ 78.088024][ T5979] usblp0: removed [ 78.241655][ T7115] pim6reg: entered allmulticast mode [ 78.325008][ T7120] __nla_validate_parse: 10 callbacks suppressed [ 78.325019][ T7120] netlink: 8 bytes leftover after parsing attributes in process `syz.3.347'. [ 78.329698][ T7120] netlink: 8 bytes leftover after parsing attributes in process `syz.3.347'. [ 78.361639][ T835] usb 5-1: new high-speed USB device number 5 using dummy_hcd [ 78.370371][ T7126] kvm: kvm [7125]: vcpu0, guest rIP: 0xfff0 Unhandled WRMSR(0xc0010015) = 0x2020202020202020 [ 78.394989][ T835] usb 5-1: device descriptor read/8, error -71 [ 78.586966][ T7138] netlink: 32 bytes leftover after parsing attributes in process `syz.2.354'. [ 78.590275][ T7138] netlink: 32 bytes leftover after parsing attributes in process `syz.2.354'. [ 78.623243][ T7140] netlink: 'syz.2.355': attribute type 10 has an invalid length. [ 78.632198][ T7140] 8021q: adding VLAN 0 to HW filter on device team0 [ 78.635754][ T7140] bond0: (slave team0): Enslaving as an active interface with an up link [ 78.641575][ T835] usb 5-1: new high-speed USB device number 6 using dummy_hcd [ 78.664719][ T835] usb 5-1: device descriptor read/8, error -71 [ 78.780440][ T7146] netlink: 'syz.1.357': attribute type 2 has an invalid length. [ 78.782013][ T835] usb usb5-port1: unable to enumerate USB device [ 78.794154][ T40] audit: type=1400 audit(1748755414.683:382): avc: denied { create } for pid=7145 comm="syz.1.357" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=isdn_socket permissive=1 [ 78.801364][ T40] audit: type=1400 audit(1748755414.683:383): avc: denied { bind } for pid=7145 comm="syz.1.357" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=isdn_socket permissive=1 [ 78.819884][ T40] audit: type=1400 audit(1748755414.703:384): avc: denied { unmount } for pid=5934 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:nfs_t tclass=filesystem permissive=1 [ 78.844211][ T7148] netlink: 32 bytes leftover after parsing attributes in process `syz.1.358'. [ 78.925116][ T7152] netlink: 8 bytes leftover after parsing attributes in process `syz.1.359'. [ 78.927857][ T7152] netlink: 8 bytes leftover after parsing attributes in process `syz.1.359'. [ 79.006062][ T40] audit: type=1400 audit(1748755414.893:385): avc: denied { mount } for pid=7156 comm="syz.2.361" name="/" dev="tmpfs" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:tmpfs_t tclass=filesystem permissive=1 [ 79.012977][ T40] audit: type=1400 audit(1748755414.893:386): avc: denied { watch watch_reads } for pid=7156 comm="syz.2.361" path="/proc/246" dev="proc" ino=15064 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=dir permissive=1 [ 79.052437][ T7157] netlink: 48 bytes leftover after parsing attributes in process `syz.2.361'. [ 79.054627][ T7161] ADFS-fs (nullb0): error: can't find an ADFS filesystem on dev nullb0. [ 79.069483][ T40] audit: type=1400 audit(1748755414.953:387): avc: denied { unmount } for pid=5940 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:tmpfs_t tclass=filesystem permissive=1 [ 79.185032][ T7171] fuseblk: Unknown parameter 'gwoup_id' [ 79.193479][ T7171] qnx6: unable to set blocksize [ 79.196358][ T40] audit: type=1400 audit(1748755415.083:388): avc: denied { remount } for pid=7170 comm="syz.2.366" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:tmpfs_t tclass=filesystem permissive=1 [ 79.227112][ T40] audit: type=1400 audit(1748755415.113:389): avc: denied { create } for pid=7175 comm="syz.2.367" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netrom_socket permissive=1 [ 79.299098][ T40] audit: type=1326 audit(1748755415.183:390): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7179 comm="syz.2.368" exe="/syz-executor" sig=9 arch=c000003e syscall=231 compat=0 ip=0x7f33f7b8e969 code=0x0 [ 79.495696][ T7134] netlink: 12 bytes leftover after parsing attributes in process `syz.3.352'. [ 79.502865][ T7134] xt_hashlimit: size too large, truncated to 1048576 [ 79.721399][ T5977] usb 6-1: new high-speed USB device number 4 using dummy_hcd [ 79.881457][ T5977] usb 6-1: Using ep0 maxpacket: 16 [ 79.886237][ T5977] usb 6-1: config 1 interface 0 altsetting 7 endpoint 0x81 has an invalid bInterval 127, changing to 10 [ 79.890530][ T5977] usb 6-1: config 1 interface 0 altsetting 7 endpoint 0x2 has an invalid bInterval 142, changing to 11 [ 79.894286][ T5977] usb 6-1: config 1 interface 0 has no altsetting 0 [ 79.898189][ T5977] usb 6-1: New USB device found, idVendor=046d, idProduct=c215, bcdDevice= 0.40 [ 79.901127][ T5977] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 79.903939][ T5977] usb 6-1: Product: syz [ 79.905333][ T5977] usb 6-1: Manufacturer: syz [ 79.906877][ T5977] usb 6-1: SerialNumber: syz [ 80.124108][ T5977] usbhid 6-1:1.0: can't add hid device: -71 [ 80.127093][ T5977] usbhid 6-1:1.0: probe with driver usbhid failed with error -71 [ 80.137910][ T5977] usb 6-1: USB disconnect, device number 4 [ 80.234417][ T7204] netlink: 8 bytes leftover after parsing attributes in process `syz.2.376'. [ 81.206494][ T7236] syzkaller1: tun_chr_ioctl cmd 1074025677 [ 81.209044][ T7236] syzkaller1: linktype set to 780 [ 81.260147][ T7243] No such timeout policy "syz1" [ 81.305403][ T7245] binder: BINDER_SET_CONTEXT_MGR already set [ 81.307327][ T7245] binder: 7244:7245 ioctl 4018620d 200000000040 returned -16 [ 81.310690][ T7245] binder: 7244:7245 ioctl c0306201 200000001440 returned -11 [ 81.567262][ T58] cfg80211: failed to load regulatory.db [ 82.078297][ T7270] FAULT_INJECTION: forcing a failure. [ 82.078297][ T7270] name fail_usercopy, interval 1, probability 0, space 0, times 0 [ 82.085988][ T7270] CPU: 1 UID: 0 PID: 7270 Comm: syz.2.398 Not tainted 6.15.0-rc7-syzkaller-00175-g0f8c0258bf04 #0 PREEMPT(full) [ 82.086011][ T7270] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014 [ 82.086022][ T7270] Call Trace: [ 82.086027][ T7270] [ 82.086033][ T7270] dump_stack_lvl+0x16c/0x1f0 [ 82.086081][ T7270] should_fail_ex+0x512/0x640 [ 82.086116][ T7270] _copy_from_user+0x2e/0xd0 [ 82.086142][ T7270] copy_msghdr_from_user+0x98/0x160 [ 82.086165][ T7270] ? __pfx_copy_msghdr_from_user+0x10/0x10 [ 82.086203][ T7270] ___sys_sendmsg+0xfe/0x1d0 [ 82.086224][ T7270] ? __pfx____sys_sendmsg+0x10/0x10 [ 82.086272][ T7270] __sys_sendmsg+0x16d/0x220 [ 82.086291][ T7270] ? __pfx___sys_sendmsg+0x10/0x10 [ 82.086316][ T7270] ? rcu_is_watching+0x12/0xc0 [ 82.086343][ T7270] do_syscall_64+0xcd/0x260 [ 82.086369][ T7270] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 82.086385][ T7270] RIP: 0033:0x7f33f7b8e969 [ 82.086398][ T7270] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 82.086413][ T7270] RSP: 002b:00007f33f8964038 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 82.086429][ T7270] RAX: ffffffffffffffda RBX: 00007f33f7db5fa0 RCX: 00007f33f7b8e969 [ 82.086439][ T7270] RDX: 0000000000000000 RSI: 00002000000000c0 RDI: 0000000000000003 [ 82.086449][ T7270] RBP: 00007f33f8964090 R08: 0000000000000000 R09: 0000000000000000 [ 82.086458][ T7270] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 82.086468][ T7270] R13: 0000000000000000 R14: 00007f33f7db5fa0 R15: 00007ffe5677bff8 [ 82.086489][ T7270] [ 82.561861][ T68] Bluetooth: hci2: unexpected event for opcode 0x2040 [ 82.574760][ T7307] FAULT_INJECTION: forcing a failure. [ 82.574760][ T7307] name failslab, interval 1, probability 0, space 0, times 1 [ 82.579199][ T7307] CPU: 3 UID: 0 PID: 7307 Comm: syz.3.411 Not tainted 6.15.0-rc7-syzkaller-00175-g0f8c0258bf04 #0 PREEMPT(full) [ 82.579214][ T7307] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014 [ 82.579221][ T7307] Call Trace: [ 82.579225][ T7307] [ 82.579230][ T7307] dump_stack_lvl+0x16c/0x1f0 [ 82.579250][ T7307] should_fail_ex+0x512/0x640 [ 82.579266][ T7307] ? kmem_cache_alloc_node_noprof+0x5e/0x3b0 [ 82.579279][ T7307] should_failslab+0xc2/0x120 [ 82.579291][ T7307] kmem_cache_alloc_node_noprof+0x71/0x3b0 [ 82.579302][ T7307] ? __alloc_skb+0x2b2/0x380 [ 82.579316][ T7307] __alloc_skb+0x2b2/0x380 [ 82.579328][ T7307] ? __pfx___alloc_skb+0x10/0x10 [ 82.579341][ T7307] ? __pfx_netlink_autobind.isra.0+0x10/0x10 [ 82.579358][ T7307] netlink_alloc_large_skb+0x69/0x130 [ 82.579378][ T7307] netlink_sendmsg+0x6a1/0xdd0 [ 82.579395][ T7307] ? __pfx_netlink_sendmsg+0x10/0x10 [ 82.579414][ T7307] ____sys_sendmsg+0xa95/0xc70 [ 82.579431][ T7307] ? copy_msghdr_from_user+0x10a/0x160 [ 82.579443][ T7307] ? __pfx_____sys_sendmsg+0x10/0x10 [ 82.579465][ T7307] ___sys_sendmsg+0x134/0x1d0 [ 82.579478][ T7307] ? __pfx____sys_sendmsg+0x10/0x10 [ 82.579507][ T7307] __sys_sendmsg+0x16d/0x220 [ 82.579520][ T7307] ? __pfx___sys_sendmsg+0x10/0x10 [ 82.579536][ T7307] ? rcu_is_watching+0x12/0xc0 [ 82.579554][ T7307] do_syscall_64+0xcd/0x260 [ 82.579571][ T7307] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 82.579582][ T7307] RIP: 0033:0x7fc82918e969 [ 82.579591][ T7307] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 82.579602][ T7307] RSP: 002b:00007fc82a0cd038 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 82.579612][ T7307] RAX: ffffffffffffffda RBX: 00007fc8293b5fa0 RCX: 00007fc82918e969 [ 82.579619][ T7307] RDX: 0000000000000000 RSI: 00002000000000c0 RDI: 0000000000000003 [ 82.579625][ T7307] RBP: 00007fc82a0cd090 R08: 0000000000000000 R09: 0000000000000000 [ 82.579631][ T7307] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 82.579637][ T7307] R13: 0000000000000000 R14: 00007fc8293b5fa0 R15: 00007ffec7c12e38 [ 82.579650][ T7307] [ 82.679427][ T7309] IPv6: NLM_F_CREATE should be specified when creating new route [ 82.691727][ T7311] syz.3.412: vmalloc error: size 16777216, failed to allocated page array size 32768, mode:0xdc2(GFP_KERNEL|__GFP_HIGHMEM|__GFP_ZERO), nodemask=(null),cpuset=/,mems_allowed=0-1 [ 82.697180][ T7311] CPU: 0 UID: 0 PID: 7311 Comm: syz.3.412 Not tainted 6.15.0-rc7-syzkaller-00175-g0f8c0258bf04 #0 PREEMPT(full) [ 82.697196][ T7311] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014 [ 82.697202][ T7311] Call Trace: [ 82.697207][ T7311] [ 82.697212][ T7311] dump_stack_lvl+0x16c/0x1f0 [ 82.697232][ T7311] warn_alloc+0x248/0x3a0 [ 82.697244][ T7311] ? __pfx_warn_alloc+0x10/0x10 [ 82.697259][ T7311] ? __get_vm_area_node+0x1dc/0x330 [ 82.697274][ T7311] ? __get_vm_area_node+0x208/0x330 [ 82.697291][ T7311] __vmalloc_node_range_noprof+0x1110/0x1540 [ 82.697312][ T7311] ? __v4l2_ctrl_modify_dimensions+0x1be/0x630 [ 82.697335][ T7311] ? __pfx___vmalloc_node_range_noprof+0x10/0x10 [ 82.697357][ T7311] __kvmalloc_node_noprof+0x2ff/0x600 [ 82.697374][ T7311] ? __v4l2_ctrl_modify_dimensions+0x1be/0x630 [ 82.697392][ T7311] ? __v4l2_ctrl_modify_dimensions+0x1be/0x630 [ 82.697412][ T7311] ? __v4l2_ctrl_modify_dimensions+0x1be/0x630 [ 82.697428][ T7311] __v4l2_ctrl_modify_dimensions+0x1be/0x630 [ 82.697448][ T7311] vivid_update_format_cap+0x12de/0x25a0 [ 82.697460][ T7311] ? __asan_memset+0x23/0x50 [ 82.697481][ T7311] ? __pfx_vivid_update_format_cap+0x10/0x10 [ 82.697493][ T7311] ? vivid_get_format+0x124/0x180 [ 82.697511][ T7311] vivid_s_fmt_vid_cap+0x1a06/0x32d0 [ 82.697526][ T7311] ? __asan_memset+0x23/0x50 [ 82.697543][ T7311] ? __pfx_vivid_s_fmt_vid_cap+0x10/0x10 [ 82.697552][ T7311] fmt_sp2mp_func+0xb1/0x3e0 [ 82.697569][ T7311] ? __pfx_fmt_sp2mp_func+0x10/0x10 [ 82.697596][ T7311] ? v4l_sanitize_format+0x18d/0x430 [ 82.697611][ T7311] vidioc_s_fmt_vid_cap+0xa0/0xe0 [ 82.697623][ T7311] vivid_s_fmt_cap+0x76/0xc0 [ 82.697638][ T7311] v4l_s_fmt+0x433/0xf30 [ 82.697652][ T7311] __video_do_ioctl+0xb3d/0xfc0 [ 82.697668][ T7311] ? __might_fault+0xe3/0x190 [ 82.697679][ T7311] ? __pfx___video_do_ioctl+0x10/0x10 [ 82.697698][ T7311] video_usercopy+0x4cd/0x1720 [ 82.697713][ T7311] ? __pfx___video_do_ioctl+0x10/0x10 [ 82.697726][ T7311] ? selinux_bprm_creds_for_exec+0xc20/0xc60 [ 82.697746][ T7311] ? __pfx_video_usercopy+0x10/0x10 [ 82.697783][ T7311] v4l2_ioctl+0x1ba/0x250 [ 82.697795][ T7311] ? __pfx_v4l2_ioctl+0x10/0x10 [ 82.697809][ T7311] __x64_sys_ioctl+0x193/0x200 [ 82.697825][ T7311] do_syscall_64+0xcd/0x260 [ 82.697843][ T7311] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 82.697854][ T7311] RIP: 0033:0x7fc82918e969 [ 82.697863][ T7311] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 82.697874][ T7311] RSP: 002b:00007fc82a026038 EFLAGS: 00000246 ORIG_RAX: 0000000000000010 [ 82.697884][ T7311] RAX: ffffffffffffffda RBX: 00007fc8293b6160 RCX: 00007fc82918e969 [ 82.697891][ T7311] RDX: 00002000000000c0 RSI: 00000000c0d05605 RDI: 0000000000000005 [ 82.697897][ T7311] RBP: 00007fc829210ab1 R08: 0000000000000000 R09: 0000000000000000 [ 82.697903][ T7311] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 [ 82.697909][ T7311] R13: 0000000000000001 R14: 00007fc8293b6160 R15: 00007ffec7c12e38 [ 82.697923][ T7311] [ 82.697983][ T7311] Mem-Info: [ 82.788816][ T7305] pim6reg1: entered promiscuous mode [ 82.789944][ T7311] active_anon:8901 inactive_anon:0 isolated_anon:0 [ 82.789944][ T7311] active_file:2581 inactive_file:52875 isolated_file:0 [ 82.789944][ T7311] unevictable:1768 dirty:210 writeback:0 [ 82.789944][ T7311] slab_reclaimable:10143 slab_unreclaimable:72626 [ 82.789944][ T7311] mapped:24895 shmem:2397 pagetables:901 [ 82.789944][ T7311] sec_pagetables:298 bounce:0 [ 82.789944][ T7311] kernel_misc_reclaimable:0 [ 82.789944][ T7311] free:468046 free_pcp:901 free_cma:0 [ 82.792724][ T7305] pim6reg1: entered allmulticast mode [ 82.795085][ T7311] Node 0 active_anon:35480kB inactive_anon:0kB active_file:10324kB inactive_file:211300kB unevictable:3536kB isolated(anon):0kB isolated(file):0kB mapped:99580kB dirty:824kB writeback:0kB shmem:6052kB shmem_thp:0kB shmem_pmdmapped:0kB anon_thp:0kB writeback_tmp:0kB kernel_stack:12016kB pagetables:3604kB sec_pagetables:1192kB all_unreclaimable? no Balloon:0kB [ 82.795117][ T7311] Node 1 active_anon:0kB inactive_anon:0kB active_file:0kB inactive_file:200kB unevictable:3536kB isolated(anon):0kB isolated(file):0kB mapped:0kB dirty:16kB writeback:0kB shmem:3536kB shmem_thp:0kB shmem_pmdmapped:0kB anon_thp:0kB writeback_tmp:0kB kernel_stack:112kB pagetables:0kB sec_pagetables:0kB all_unreclaimable? no Balloon:0kB [ 82.795144][ T7311] Node 0 DMA free:15360kB boost:0kB min:340kB low:424kB high:508kB reserved_highatomic:0KB active_anon:0kB inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB writepending:0kB present:15992kB managed:15360kB mlocked:0kB bounce:0kB free_pcp:0kB local_pcp:0kB free_cma:0kB [ 82.843123][ T7311] lowmem_reserve[]: 0 1238 1238 1238 1238 [ 82.844967][ T7311] Node 0 DMA32 free:239792kB boost:0kB min:27576kB low:34468kB high:41360kB reserved_highatomic:0KB active_anon:35436kB inactive_anon:0kB active_file:10396kB inactive_file:211300kB unevictable:3536kB writepending:900kB present:2080628kB managed:1268524kB mlocked:0kB bounce:0kB free_pcp:2996kB local_pcp:716kB free_cma:0kB [ 82.854349][ T7311] lowmem_reserve[]: 0 0 0 0 0 [ 82.855972][ T7311] Node 1 Normal free:1617160kB boost:0kB min:39660kB low:49572kB high:59484kB reserved_highatomic:0KB active_anon:0kB inactive_anon:0kB active_file:0kB inactive_file:200kB unevictable:3536kB writepending:16kB present:2097152kB managed:1781964kB mlocked:0kB bounce:0kB free_pcp:700kB local_pcp:104kB free_cma:0kB [ 82.865767][ T7311] lowmem_reserve[]: 0 0 0 0 0 [ 82.867350][ T7311] Node 0 DMA: 0*4kB 0*8kB 0*16kB 0*32kB 0*64kB 0*128kB 0*256kB 0*512kB 1*1024kB (U) 1*2048kB (M) 3*4096kB (M) = 15360kB [ 82.871439][ T7311] Node 0 DMA32: 2*4kB (UE) 165*8kB (UME) 209*16kB (UME) 287*32kB (UME) 293*64kB (UME) 40*128kB (UME) 78*256kB (UME) 73*512kB (UME) 51*1024kB (UME) 23*2048kB (UME) 11*4096kB (UM) = 239456kB [ 82.877264][ T7311] Node 1 Normal: 6*4kB (UME) 6*8kB (ME) 12*16kB (UME) 162*32kB (UME) 61*64kB (UME) 21*128kB (UME) 4*256kB (UE) 3*512kB (M) 1*1024kB (U) 4*2048kB (UME) 389*4096kB (M) = 1617160kB [ 82.883269][ T7311] Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0 hugepages_size=1048576kB [ 82.886118][ T7311] Node 0 hugepages_total=2 hugepages_free=2 hugepages_surp=0 hugepages_size=2048kB [ 82.888871][ T7311] Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0 hugepages_size=1048576kB [ 82.891806][ T7311] Node 1 hugepages_total=2 hugepages_free=2 hugepages_surp=0 hugepages_size=2048kB [ 82.894729][ T7311] 57867 total pagecache pages [ 82.896179][ T7311] 0 pages in swap cache [ 82.897487][ T7311] Free swap = 124996kB [ 82.898806][ T7311] Total swap = 124996kB [ 82.900131][ T7311] 1048443 pages RAM [ 82.901433][ T7311] 0 pages HighMem/MovableOnly [ 82.902924][ T7311] 281981 pages reserved [ 82.904254][ T7311] 0 pages cma reserved [ 83.148563][ T40] kauditd_printk_skb: 17 callbacks suppressed [ 83.148579][ T40] audit: type=1400 audit(1748755419.033:408): avc: denied { append } for pid=7341 comm="syz.1.422" name="card2" dev="devtmpfs" ino=639 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 83.286315][ T40] audit: type=1400 audit(1748755419.173:409): avc: denied { ioctl } for pid=7351 comm="syz.0.425" path="socket:[18453]" dev="sockfs" ino=18453 ioctlcmd=0x9360 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_netfilter_socket permissive=1 [ 83.386553][ T7358] __nla_validate_parse: 15 callbacks suppressed [ 83.386564][ T7358] netlink: 8 bytes leftover after parsing attributes in process `syz.1.426'. [ 83.391746][ T7358] netlink: 8 bytes leftover after parsing attributes in process `syz.1.426'. [ 83.450514][ T40] audit: type=1400 audit(1748755419.333:410): avc: denied { watch } for pid=7361 comm="syz.1.428" path="/105/file0" dev="tmpfs" ino=571 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:tmpfs_t tclass=filesystem permissive=1 [ 83.454323][ T7362] netlink: 'syz.1.428': attribute type 1 has an invalid length. [ 83.458331][ T40] audit: type=1400 audit(1748755419.333:411): avc: denied { watch_sb watch_reads } for pid=7361 comm="syz.1.428" path="/105/file0" dev="tmpfs" ino=571 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=file permissive=1 [ 83.460912][ T7362] netlink: 'syz.1.428': attribute type 3 has an invalid length. [ 83.470711][ T7362] netlink: 224 bytes leftover after parsing attributes in process `syz.1.428'. [ 83.475238][ T7362] NCSI netlink: No device for ifindex 0 [ 83.574159][ T40] audit: type=1326 audit(1748755419.463:412): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=7367 comm="syz.1.431" exe="/syz-executor" sig=9 arch=c000003e syscall=231 compat=0 ip=0x7fdebc38e969 code=0x0 [ 83.876535][ T40] audit: type=1400 audit(1748755419.763:413): avc: denied { getopt } for pid=7375 comm="syz.3.432" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_rdma_socket permissive=1 [ 83.910574][ T7378] JFS: charset not found [ 83.938834][ T7380] FAULT_INJECTION: forcing a failure. [ 83.938834][ T7380] name fail_usercopy, interval 1, probability 0, space 0, times 0 [ 83.944439][ T7380] CPU: 3 UID: 0 PID: 7380 Comm: syz.3.434 Not tainted 6.15.0-rc7-syzkaller-00175-g0f8c0258bf04 #0 PREEMPT(full) [ 83.944453][ T7380] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014 [ 83.944460][ T7380] Call Trace: [ 83.944464][ T7380] [ 83.944468][ T7380] dump_stack_lvl+0x16c/0x1f0 [ 83.944488][ T7380] should_fail_ex+0x512/0x640 [ 83.944506][ T7380] _copy_from_iter+0x2a4/0x15b0 [ 83.944524][ T7380] ? __alloc_skb+0x200/0x380 [ 83.944536][ T7380] ? __pfx__copy_from_iter+0x10/0x10 [ 83.944553][ T7380] ? __pfx_netlink_autobind.isra.0+0x10/0x10 [ 83.944572][ T7380] netlink_sendmsg+0x829/0xdd0 [ 83.944591][ T7380] ? __pfx_netlink_sendmsg+0x10/0x10 [ 83.944618][ T7380] ____sys_sendmsg+0xa95/0xc70 [ 83.944641][ T7380] ? copy_msghdr_from_user+0x10a/0x160 [ 83.944654][ T7380] ? __pfx_____sys_sendmsg+0x10/0x10 [ 83.944676][ T7380] ___sys_sendmsg+0x134/0x1d0 [ 83.944689][ T7380] ? __pfx____sys_sendmsg+0x10/0x10 [ 83.944717][ T7380] __sys_sendmsg+0x16d/0x220 [ 83.944730][ T7380] ? __pfx___sys_sendmsg+0x10/0x10 [ 83.944751][ T7380] do_syscall_64+0xcd/0x260 [ 83.944768][ T7380] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 83.944780][ T7380] RIP: 0033:0x7fc82918e969 [ 83.944789][ T7380] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 83.944800][ T7380] RSP: 002b:00007fc82a0cd038 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 83.944810][ T7380] RAX: ffffffffffffffda RBX: 00007fc8293b5fa0 RCX: 00007fc82918e969 [ 83.944817][ T7380] RDX: 0000000000000000 RSI: 00002000000000c0 RDI: 0000000000000003 [ 83.944823][ T7380] RBP: 00007fc82a0cd090 R08: 0000000000000000 R09: 0000000000000000 [ 83.944829][ T7380] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 83.944835][ T7380] R13: 0000000000000000 R14: 00007fc8293b5fa0 R15: 00007ffec7c12e38 [ 83.944848][ T7380] [ 84.088223][ T7383] netlink: 8 bytes leftover after parsing attributes in process `syz.3.435'. [ 84.091001][ T7383] netlink: 8 bytes leftover after parsing attributes in process `syz.3.435'. [ 84.391419][ T836] usb 8-1: new high-speed USB device number 3 using dummy_hcd [ 84.432659][ T7390] ======================================================= [ 84.432659][ T7390] WARNING: The mand mount option has been deprecated and [ 84.432659][ T7390] and is ignored by this kernel. Remove the mand [ 84.432659][ T7390] option from the mount to silence this warning. [ 84.432659][ T7390] ======================================================= [ 84.443823][ T7390] new mount options do not match the existing superblock, will be ignored [ 84.447461][ T40] audit: type=1400 audit(1748755420.333:414): avc: denied { remount } for pid=7389 comm="syz.2.438" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:cgroup_t tclass=filesystem permissive=1 [ 84.447872][ T7390] cgroup: option or name mismatch, new: 0x4 "", old: 0x0 "" [ 84.479644][ T7390] overlayfs: missing 'lowerdir' [ 84.521952][ T836] usb 8-1: device descriptor read/64, error -71 [ 84.526742][ T40] audit: type=1400 audit(1748755420.413:415): avc: denied { create } for pid=7401 comm="syz.1.441" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_crypto_socket permissive=1 [ 84.533065][ T40] audit: type=1400 audit(1748755420.413:416): avc: denied { write } for pid=7401 comm="syz.1.441" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_crypto_socket permissive=1 [ 84.539868][ T40] audit: type=1400 audit(1748755420.413:417): avc: denied { read } for pid=7401 comm="syz.1.441" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_crypto_socket permissive=1 [ 84.583566][ T7408] kvm: emulating exchange as write [ 84.727480][ T7415] kvm: MWAIT instruction emulated as NOP! [ 84.761391][ T836] usb 8-1: new high-speed USB device number 4 using dummy_hcd [ 84.819972][ T7418] FAULT_INJECTION: forcing a failure. [ 84.819972][ T7418] name failslab, interval 1, probability 0, space 0, times 0 [ 84.824671][ T7418] CPU: 3 UID: 0 PID: 7418 Comm: syz.1.444 Not tainted 6.15.0-rc7-syzkaller-00175-g0f8c0258bf04 #0 PREEMPT(full) [ 84.824686][ T7418] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014 [ 84.824692][ T7418] Call Trace: [ 84.824696][ T7418] [ 84.824700][ T7418] dump_stack_lvl+0x16c/0x1f0 [ 84.824732][ T7418] should_fail_ex+0x512/0x640 [ 84.824754][ T7418] should_failslab+0xc2/0x120 [ 84.824766][ T7418] kmem_cache_alloc_noprof+0x6d/0x3b0 [ 84.824778][ T7418] ? skb_clone+0x190/0x3f0 [ 84.824793][ T7418] skb_clone+0x190/0x3f0 [ 84.824806][ T7418] netlink_deliver_tap+0xabd/0xd30 [ 84.824823][ T7418] netlink_unicast+0x5df/0x7f0 [ 84.824839][ T7418] ? __pfx_netlink_unicast+0x10/0x10 [ 84.824857][ T7418] netlink_sendmsg+0x8d1/0xdd0 [ 84.824874][ T7418] ? __pfx_netlink_sendmsg+0x10/0x10 [ 84.824893][ T7418] ____sys_sendmsg+0xa95/0xc70 [ 84.824909][ T7418] ? copy_msghdr_from_user+0x10a/0x160 [ 84.824921][ T7418] ? __pfx_____sys_sendmsg+0x10/0x10 [ 84.824944][ T7418] ___sys_sendmsg+0x134/0x1d0 [ 84.824957][ T7418] ? __pfx____sys_sendmsg+0x10/0x10 [ 84.824986][ T7418] __sys_sendmsg+0x16d/0x220 [ 84.824998][ T7418] ? __pfx___sys_sendmsg+0x10/0x10 [ 84.825031][ T7418] do_syscall_64+0xcd/0x260 [ 84.825050][ T7418] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 84.825062][ T7418] RIP: 0033:0x7fdebc38e969 [ 84.825070][ T7418] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 84.825081][ T7418] RSP: 002b:00007fdeba1f6038 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 84.825091][ T7418] RAX: ffffffffffffffda RBX: 00007fdebc5b5fa0 RCX: 00007fdebc38e969 [ 84.825098][ T7418] RDX: 0000000000000000 RSI: 00002000000000c0 RDI: 0000000000000003 [ 84.825104][ T7418] RBP: 00007fdeba1f6090 R08: 0000000000000000 R09: 0000000000000000 [ 84.825111][ T7418] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 84.825117][ T7418] R13: 0000000000000000 R14: 00007fdebc5b5fa0 R15: 00007fff883cb228 [ 84.825130][ T7418] [ 84.901560][ T836] usb 8-1: device descriptor read/64, error -71 [ 84.955302][ T7422] bridge0: entered promiscuous mode [ 84.957154][ T7422] macvlan2: entered promiscuous mode [ 85.012723][ T836] usb usb8-port1: attempt power cycle [ 85.371275][ T836] usb 8-1: new high-speed USB device number 5 using dummy_hcd [ 85.393342][ T836] usb 8-1: device descriptor read/8, error -71 [ 85.407416][ T7431] netlink: 8 bytes leftover after parsing attributes in process `syz.2.448'. [ 85.410980][ T7431] netlink: 8 bytes leftover after parsing attributes in process `syz.2.448'. [ 85.641261][ T836] usb 8-1: new high-speed USB device number 6 using dummy_hcd [ 85.661746][ T836] usb 8-1: device descriptor read/8, error -71 [ 85.781461][ T836] usb usb8-port1: unable to enumerate USB device [ 85.949180][ T7439] ref_ctr_offset mismatch. inode: 0x287 offset: 0x0 ref_ctr_offset(old): 0x0 ref_ctr_offset(new): 0xa [ 86.100377][ T7445] binder: 7444:7445 ioctl 4c01 0 returned -22 [ 86.103311][ T7445] netlink: 20 bytes leftover after parsing attributes in process `syz.1.454'. [ 86.180680][ T7449] FAULT_INJECTION: forcing a failure. [ 86.180680][ T7449] name failslab, interval 1, probability 0, space 0, times 0 [ 86.184798][ T7449] CPU: 0 UID: 0 PID: 7449 Comm: syz.1.456 Not tainted 6.15.0-rc7-syzkaller-00175-g0f8c0258bf04 #0 PREEMPT(full) [ 86.184812][ T7449] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014 [ 86.184819][ T7449] Call Trace: [ 86.184823][ T7449] [ 86.184827][ T7449] dump_stack_lvl+0x16c/0x1f0 [ 86.184847][ T7449] should_fail_ex+0x512/0x640 [ 86.184862][ T7449] ? kmem_cache_alloc_noprof+0x5a/0x3b0 [ 86.184875][ T7449] should_failslab+0xc2/0x120 [ 86.184888][ T7449] kmem_cache_alloc_noprof+0x6d/0x3b0 [ 86.184898][ T7449] ? skb_clone+0x190/0x3f0 [ 86.184913][ T7449] skb_clone+0x190/0x3f0 [ 86.184926][ T7449] nfnetlink_rcv_batch+0x1dd/0x2350 [ 86.184944][ T7449] ? kmem_cache_free+0x2d4/0x4d0 [ 86.184964][ T7449] ? __pfx_nfnetlink_rcv_batch+0x10/0x10 [ 86.184981][ T7449] ? find_held_lock+0x2b/0x80 [ 86.184994][ T7449] ? __dev_queue_xmit+0x896/0x43e0 [ 86.185020][ T7449] ? avc_has_perm_noaudit+0x149/0x3b0 [ 86.185033][ T7449] ? __asan_memset+0x23/0x50 [ 86.185049][ T7449] ? __nla_validate_parse+0x600/0x2880 [ 86.185063][ T7449] ? __pfx___nla_validate_parse+0x10/0x10 [ 86.185076][ T7449] ? cap_capable+0xb3/0x250 [ 86.185092][ T7449] ? __nla_parse+0x40/0x60 [ 86.185104][ T7449] nfnetlink_rcv+0x3c1/0x430 [ 86.185119][ T7449] ? __pfx_nfnetlink_rcv+0x10/0x10 [ 86.185138][ T7449] netlink_unicast+0x53a/0x7f0 [ 86.185154][ T7449] ? __pfx_netlink_unicast+0x10/0x10 [ 86.185171][ T7449] netlink_sendmsg+0x8d1/0xdd0 [ 86.185187][ T7449] ? __pfx_netlink_sendmsg+0x10/0x10 [ 86.185211][ T7449] ____sys_sendmsg+0xa95/0xc70 [ 86.185227][ T7449] ? copy_msghdr_from_user+0x10a/0x160 [ 86.185239][ T7449] ? __pfx_____sys_sendmsg+0x10/0x10 [ 86.185260][ T7449] ___sys_sendmsg+0x134/0x1d0 [ 86.185273][ T7449] ? __pfx____sys_sendmsg+0x10/0x10 [ 86.185309][ T7449] __sys_sendmsg+0x16d/0x220 [ 86.185327][ T7449] ? __pfx___sys_sendmsg+0x10/0x10 [ 86.185357][ T7449] do_syscall_64+0xcd/0x260 [ 86.185384][ T7449] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 86.185401][ T7449] RIP: 0033:0x7fdebc38e969 [ 86.185413][ T7449] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 86.185430][ T7449] RSP: 002b:00007fdeba1f6038 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 86.185446][ T7449] RAX: ffffffffffffffda RBX: 00007fdebc5b5fa0 RCX: 00007fdebc38e969 [ 86.185454][ T7449] RDX: 0000000000000000 RSI: 00002000000000c0 RDI: 0000000000000003 [ 86.185460][ T7449] RBP: 00007fdeba1f6090 R08: 0000000000000000 R09: 0000000000000000 [ 86.185466][ T7449] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 86.185472][ T7449] R13: 0000000000000000 R14: 00007fdebc5b5fa0 R15: 00007fff883cb228 [ 86.185485][ T7449] [ 87.273135][ T7480] Oops: general protection fault, probably for non-canonical address 0xdffffc0000000021: 0000 [#1] SMP KASAN NOPTI [ 87.277040][ T7480] KASAN: null-ptr-deref in range [0x0000000000000108-0x000000000000010f] [ 87.281227][ T7480] CPU: 2 UID: 0 PID: 7480 Comm: syz.1.468 Not tainted 6.15.0-rc7-syzkaller-00175-g0f8c0258bf04 #0 PREEMPT(full) [ 87.285104][ T7480] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014 [ 87.288366][ T7480] RIP: 0010:bcsp_recv+0x10a/0x17f0 [ 87.289946][ T7480] Code: 18 48 c1 e8 03 48 01 e8 48 89 04 24 48 8d 83 78 01 00 00 48 89 44 24 28 48 c1 e8 03 48 89 44 24 08 e8 3a 0c 5d f9 48 8b 04 24 <80> 38 00 0f 85 d1 12 00 00 4c 8b ab 08 01 00 00 31 ff 4c 89 ee e8 [ 87.296016][ T7480] RSP: 0018:ffffc900053cfbf0 EFLAGS: 00010293 [ 87.296330][ T7482] netlink: 8 bytes leftover after parsing attributes in process `syz.3.467'. [ 87.298218][ T7480] RAX: dffffc0000000021 RBX: 0000000000000000 RCX: ffffffff885e396a [ 87.298232][ T7480] RDX: ffff888023372440 RSI: ffffffff885e39b6 RDI: 0000000000000005 [ 87.298244][ T7480] RBP: dffffc0000000000 R08: 0000000000000005 R09: 0000000000000000 [ 87.298255][ T7480] R10: 0000000000000001 R11: 0000000000000000 R12: ffffc900053cfd88 [ 87.301510][ T7482] netlink: 8 bytes leftover after parsing attributes in process `syz.3.467'. [ 87.304301][ T7480] R13: ffffc900053cfd88 R14: 0000000000000001 R15: ffff88805a16b400 [ 87.317773][ T7480] FS: 00007fdeba1d56c0(0000) GS:ffff8880d6bda000(0000) knlGS:0000000000000000 [ 87.320538][ T7480] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 87.322860][ T7480] CR2: 00007fdeba1b4d58 CR3: 0000000043316000 CR4: 0000000000352ef0 [ 87.325346][ T7480] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 87.327789][ T7480] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 87.330240][ T7480] Call Trace: [ 87.331312][ T7480] [ 87.332343][ T7480] ? __pfx_bcsp_recv+0x10/0x10 [ 87.334256][ T7480] hci_uart_tty_receive+0x251/0x7e0 [ 87.336322][ T7480] ? __pfx_hci_uart_tty_receive+0x10/0x10 [ 87.338566][ T7480] tty_ioctl+0x580/0x1610 [ 87.340297][ T7480] ? __pfx_tty_ioctl+0x10/0x10 [ 87.342023][ T7480] ? __pfx_ioctl_has_perm.constprop.0.isra.0+0x10/0x10 [ 87.344223][ T7480] ? hook_file_ioctl_common+0x145/0x410 [ 87.346011][ T7480] ? selinux_file_ioctl+0x180/0x270 [ 87.347830][ T7480] ? selinux_file_ioctl+0xb4/0x270 [ 87.349479][ T7480] ? __pfx_tty_ioctl+0x10/0x10 [ 87.350985][ T7480] __x64_sys_ioctl+0x193/0x200 [ 87.352617][ T7480] do_syscall_64+0xcd/0x260 [ 87.354064][ T7480] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 87.355915][ T7480] RIP: 0033:0x7fdebc38e969 [ 87.357330][ T7480] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 87.363332][ T7480] RSP: 002b:00007fdeba1d5038 EFLAGS: 00000246 ORIG_RAX: 0000000000000010 [ 87.365871][ T7480] RAX: ffffffffffffffda RBX: 00007fdebc5b6080 RCX: 00007fdebc38e969 [ 87.368286][ T7480] RDX: 0000200000000040 RSI: 0000000000005412 RDI: 000000000000000b [ 87.370750][ T7480] RBP: 00007fdebc410ab1 R08: 0000000000000000 R09: 0000000000000000 [ 87.373700][ T7480] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 [ 87.376153][ T7480] R13: 0000000000000000 R14: 00007fdebc5b6080 R15: 00007fff883cb228 [ 87.378610][ T7480] [ 87.379593][ T7480] Modules linked in: [ 87.381365][ T7480] ---[ end trace 0000000000000000 ]--- [ 87.384119][ T7480] RIP: 0010:bcsp_recv+0x10a/0x17f0 [ 87.385977][ T7480] Code: 18 48 c1 e8 03 48 01 e8 48 89 04 24 48 8d 83 78 01 00 00 48 89 44 24 28 48 c1 e8 03 48 89 44 24 08 e8 3a 0c 5d f9 48 8b 04 24 <80> 38 00 0f 85 d1 12 00 00 4c 8b ab 08 01 00 00 31 ff 4c 89 ee e8 [ 87.394257][ T7480] RSP: 0018:ffffc900053cfbf0 EFLAGS: 00010293 [ 87.396828][ T7480] RAX: dffffc0000000021 RBX: 0000000000000000 RCX: ffffffff885e396a [ 87.400064][ T7480] RDX: ffff888023372440 RSI: ffffffff885e39b6 RDI: 0000000000000005 [ 87.403402][ T7480] RBP: dffffc0000000000 R08: 0000000000000005 R09: 0000000000000000 [ 87.406764][ T7480] R10: 0000000000000001 R11: 0000000000000000 R12: ffffc900053cfd88 [ 87.410002][ T7480] R13: ffffc900053cfd88 R14: 0000000000000001 R15: ffff88805a16b400 [ 87.413969][ T7480] FS: 00007fdeba1d56c0(0000) GS:ffff8880d6cda000(0000) knlGS:0000000000000000 [ 87.417715][ T7480] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 87.420328][ T7480] CR2: 0000000000000000 CR3: 0000000043316000 CR4: 0000000000352ef0 [ 87.422871][ T7480] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 87.425348][ T7480] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 87.427834][ T7480] Kernel panic - not syncing: Fatal exception [ 87.430396][ T7480] Kernel Offset: disabled [ 87.431761][ T7480] Rebooting in 86400 seconds.. VM DIAGNOSIS: 03:45:37 Registers: info registers vcpu 0 CPU#0 RAX=0000000000078e04 RBX=0000000000000000 RCX=ffffffff8b6d5419 RDX=ffffed100d4865be RSI=ffffffff8bf4a460 RDI=ffffffff8191adf1 RBP=fffffbfff1c12ee8 RSP=ffffffff8e007e10 R8 =0000000000000000 R9 =ffffed100d4865bd R10=ffff88806a432deb R11=0000000000000000 R12=0000000000000000 R13=ffffffff8e097740 R14=ffffffff90853110 R15=0000000000000000 RIP=ffffffff8b6d3caf RFL=00000286 [--S--P-] CPL=0 II=0 A20=1 SMM=0 HLT=1 ES =0000 0000000000000000 ffffffff 00c00000 CS =0010 0000000000000000 ffffffff 00a09b00 DPL=0 CS64 [-RA] SS =0018 0000000000000000 ffffffff 00c09300 DPL=0 DS [-WA] DS =0000 0000000000000000 ffffffff 00c00000 FS =0000 0000000000000000 ffffffff 00c00000 GS =0000 ffff8880d69da000 ffffffff 00c00000 LDT=0000 0000000000000000 ffffffff 00c00000 TR =0040 fffffe0000003000 00000067 00008b00 DPL=0 TSS64-busy GDT= fffffe0000001000 0000007f IDT= fffffe0000000000 0000ffff CR0=80050033 CR2=00007fdeba1d4f98 CR3=000000004cf7b000 CR4=00352ef0 DR0=0000000000000000 DR1=0000000000000000 DR2=0000000000000000 DR3=0000000000000000 DR6=00000000fffe0ff0 DR7=0000000000000400 EFER=0000000000000d01 FCW=037f FSW=0000 [ST=0] FTW=00 MXCSR=00001f80 FPR0=0000000000000000 0000 FPR1=0000000000000000 0000 FPR2=0000000000000000 0000 FPR3=0000000000000000 0000 FPR4=0000000000000000 0000 FPR5=0000000000000000 0000 FPR6=0000000000000000 0000 FPR7=0000000000000000 0000 Opmask00=0000000040000400 Opmask01=0000000000000000 Opmask02=00000000ffffffef Opmask03=0000000000000000 Opmask04=0000000000000000 Opmask05=0000000000000000 Opmask06=0000000000000000 Opmask07=0000000000000000 ZMM00=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM01=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fff883cb5b0 0000003000000018 ZMM02=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000001a0000000d0 00000000ffffffff ZMM03=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000001a0000000d0 00000000ffffffff ZMM04=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411a8a ZMM05=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411a97 ZMM06=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411a91 ZMM07=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411aa5 ZMM08=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411b2b ZMM09=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411c09 ZMM10=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM11=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM12=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM13=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM14=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM15=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM16=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM17=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM18=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM19=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM20=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM21=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000000524f525245 ZMM22=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00524f5252450040 ZMM23=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00e800a800000000 ZMM24=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM25=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM26=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM27=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM28=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM29=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM30=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM31=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 info registers vcpu 1 CPU#1 RAX=000000000004d1dc RBX=0000000000000001 RCX=ffffffff8b6d5419 RDX=ffffed100d4a65be RSI=ffffffff8bf4a460 RDI=ffffffff8191adf1 RBP=ffffed1003b58488 RSP=ffffc90000177df8 R8 =0000000000000000 R9 =ffffed100d4a65bd R10=ffff88806a532deb R11=0000000000000000 R12=0000000000000001 R13=ffff88801dac2440 R14=ffffffff90853110 R15=0000000000000000 RIP=ffffffff8b6d3caf RFL=00000286 [--S--P-] CPL=0 II=0 A20=1 SMM=0 HLT=1 ES =0000 0000000000000000 ffffffff 00c00000 CS =0010 0000000000000000 ffffffff 00a09b00 DPL=0 CS64 [-RA] SS =0018 0000000000000000 ffffffff 00c09300 DPL=0 DS [-WA] DS =0000 0000000000000000 ffffffff 00c00000 FS =0000 0000000000000000 ffffffff 00c00000 GS =0000 ffff8880d6ada000 ffffffff 00c00000 LDT=0000 0000000000000000 ffffffff 00c00000 TR =0040 fffffe000004a000 00000067 00008b00 DPL=0 TSS64-busy GDT= fffffe0000048000 0000007f IDT= fffffe0000000000 0000ffff CR0=80050033 CR2=0000200000000280 CR3=000000002a4c8000 CR4=00352ef0 DR0=0000000000000000 DR1=0000000000000000 DR2=0000000000000000 DR3=0000000000000000 DR6=00000000fffe0ff0 DR7=0000000000000400 EFER=0000000000000d01 FCW=037f FSW=0000 [ST=0] FTW=00 MXCSR=00001f80 FPR0=0000000000000000 0000 FPR1=0000000000000000 0000 FPR2=0000000000000000 0000 FPR3=0000000000000000 0000 FPR4=0000000000000000 0000 FPR5=0000000000000000 0000 FPR6=0000000000000000 0000 FPR7=0000000000000000 0000 Opmask00=00000000c0fffc00 Opmask01=0000000000000054 Opmask02=00000000000000ff Opmask03=0000000000000000 Opmask04=0000000000000000 Opmask05=0000000000000000 Opmask06=0000000000000000 Opmask07=0000000000000000 ZMM00=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000001 ZMM01=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000014 000000000001df8a ZMM02=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000055555d79542b 000055555d7951e0 ZMM03=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000055555d7a0694 000055555d7a0690 ZMM04=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM05=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000055555d79d6de 000055555d79c830 ZMM06=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM07=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000000000001df8a ZMM08=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM09=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM10=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM11=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM12=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM13=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM14=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM15=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM16=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM17=0000000000000000 0000000000000000 0000000000000000 0000000000000000 8388820800010000 18080606010fd20f ffffffffffff0405 d00300100005c003 ZMM18=0000000000000000 0000000000000000 0000000000000000 0000000000000000 1a48ac0031707364 2f7665642f01ffff ffffffffffffeb08 0280030580041883 ZMM19=0000000000000000 0000000000000000 0000000000000000 0000000000000000 c08208000100001a 0806060123940002 0007000400000800 02800401c7100008 ZMM20=0000000000000000 0000000000000000 0000000000000000 0000000000000000 094c1cb3b47c5a8a f358d728e9b4f614 22600a837628a540 084b800300100002 ZMM21=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0100100002c08208 000100001a080606 0123940280801000 4b80040100000008 ZMM22=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0606017bbc000200 07a34c788662bb9e 9e28094c1cb3b47c 5a8af358d728e9b4 ZMM23=0000000000000000 0000000000000000 0000000000000000 0000000000000000 f61422600a837628 a540084b80030010 0002c08208000100 001a080606012394 ZMM24=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0002000700040000 080002800401c710 00081a48ac003170 73642f7665642f01 ZMM25=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM26=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM27=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM28=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM29=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM30=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM31=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 info registers vcpu 2 CPU#2 RAX=0000000000000030 RBX=00000000000003f8 RCX=0000000000000000 RDX=00000000000003f8 RSI=ffffffff854fb975 RDI=ffffffff9adfe5a0 RBP=ffffffff9adfe560 RSP=ffffc900053cf5f0 R8 =0000000000000001 R9 =000000000000001f R10=0000000000000000 R11=000000004153414b R12=0000000000000000 R13=0000000000000030 R14=ffffffff9adfe560 R15=ffffffff854fb910 RIP=ffffffff854fb99f RFL=00000002 [-------] CPL=0 II=0 A20=1 SMM=0 HLT=0 ES =0000 0000000000000000 ffffffff 00c00000 CS =0010 0000000000000000 ffffffff 00a09b00 DPL=0 CS64 [-RA] SS =0018 0000000000000000 ffffffff 00c09300 DPL=0 DS [-WA] DS =0000 0000000000000000 ffffffff 00c00000 FS =0000 00007fdeba1d56c0 ffffffff 00c00000 GS =0000 ffff8880d6bda000 ffffffff 00c00000 LDT=0000 0000000000000000 ffffffff 00c00000 TR =0040 fffffe0000091000 00000067 00008b00 DPL=0 TSS64-busy GDT= fffffe000008f000 0000007f IDT= fffffe0000000000 0000ffff CR0=80050033 CR2=00007fdeba1b4d58 CR3=0000000043316000 CR4=00352ef0 DR0=0000000000000000 DR1=0000000000000000 DR2=0000000000000000 DR3=0000000000000000 DR6=00000000fffe0ff0 DR7=0000000000000400 EFER=0000000000000d01 FCW=037f FSW=0000 [ST=0] FTW=00 MXCSR=00001f80 FPR0=0000000000000000 0000 FPR1=0000000000000000 0000 FPR2=0000000000000000 0000 FPR3=0000000000000000 0000 FPR4=0000000000000000 0000 FPR5=0000000000000000 0000 FPR6=0000000000000000 0000 FPR7=0000000000000000 0000 Opmask00=0000000000008001 Opmask01=0000000000000000 Opmask02=00000000ffffffef Opmask03=0000000000000000 Opmask04=0000000000000000 Opmask05=0000000000000000 Opmask06=0000000000000000 Opmask07=0000000000000000 ZMM00=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM01=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM02=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000001a0000000d0 00000000ffffffff ZMM03=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000001a0000000d0 00000000ffffffff ZMM04=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411a8a ZMM05=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411a97 ZMM06=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411a91 ZMM07=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411aa5 ZMM08=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411b2b ZMM09=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc411c09 ZMM10=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM11=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM12=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM13=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM14=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM15=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM16=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM17=0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc583488 00007fdebc583480 00007fdebc583478 00007fdebc583450 ZMM18=0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebd0ed100 00007fdebc583440 00007fdebc583458 00007fdebc5834a0 ZMM19=0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fdebc583498 00007fdebc583490 00007fdebc583488 00007fdebc583480 ZMM20=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM21=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 000000524f525245 ZMM22=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00524f5252450040 ZMM23=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00e800a800000000 ZMM24=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM25=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM26=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM27=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM28=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM29=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM30=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM31=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 info registers vcpu 3 CPU#3 RAX=000000000006b954 RBX=0000000000000003 RCX=ffffffff8b6d5419 RDX=ffffed100d4e65be RSI=ffffffff8bf4a460 RDI=ffffffff8191adf1 RBP=ffffed1003bda000 RSP=ffffc90000197df8 R8 =0000000000000000 R9 =ffffed100d4e65bd R10=ffff88806a732deb R11=0000000000000000 R12=0000000000000003 R13=ffff88801ded0000 R14=ffffffff90853110 R15=0000000000000000 RIP=ffffffff8b6d3caf RFL=00000286 [--S--P-] CPL=0 II=0 A20=1 SMM=0 HLT=1 ES =0000 0000000000000000 ffffffff 00c01300 CS =0010 0000000000000000 ffffffff 00a09b00 DPL=0 CS64 [-RA] SS =0018 0000000000000000 ffffffff 00c09300 DPL=0 DS [-WA] DS =0000 0000000000000000 ffffffff 00c01300 FS =0000 0000000000000000 ffffffff 00c00000 GS =0000 ffff8880d6cda000 ffffffff 00c00000 LDT=0000 0000000000000000 ffffffff 00c00000 TR =0040 fffffe00000d8000 00000067 00008b00 DPL=0 TSS64-busy GDT= fffffe00000d6000 0000007f IDT= fffffe0000000000 0000ffff CR0=80050033 CR2=00007fdeba1b3f98 CR3=0000000023fde000 CR4=00352ef0 DR0=0000000000000000 DR1=0000000000000000 DR2=0000000000000000 DR3=0000000000000000 DR6=00000000fffe0ff0 DR7=0000000000000400 EFER=0000000000000d01 FCW=037f FSW=0000 [ST=0] FTW=00 MXCSR=00001f80 FPR0=0000000000000000 0000 FPR1=0000000000000000 0000 FPR2=0000000000000000 0000 FPR3=0000000000000000 0000 FPR4=0000000000000000 0000 FPR5=0000000000000000 0000 FPR6=0000000000000000 0000 FPR7=0000000000000000 0000 Opmask00=00000000818181f8 Opmask01=00000000003fffff Opmask02=0000000003bfffff Opmask03=0000000000000000 Opmask04=00000000ffffffff Opmask05=00000000004007ff Opmask06=0000000007ffe7ff Opmask07=0000000000000000 ZMM00=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM01=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00005570947a9980 00005570947a9980 ZMM02=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000557094792020 ZMM03=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fb87c5f1b20 ZMM04=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007fb87c5f1b20 ZMM05=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM06=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM07=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM08=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ffffffffffffff00 ffffffffffffffff ZMM09=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 f90004a05a136e76 73732606b0038c88 ZMM10=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 73737373737373a2 7373737373737373 ZMM11=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM12=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM13=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM14=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM15=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM16=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 ZMM17=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000003078 303d4e4f53414552 5f4b434f4c425f57 485f4c4c494b4652 ZMM18=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000d45 0d004e4f53414552 5f4b434f4c425f57 485f4c4c494b4652 ZMM19=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000557094799 0000000000000021 0000000000000033 ZMM20=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000557094798cd0 00007fb87c5f1b53 0000557094790180 00007fb87c5f1b4d ZMM21=0000000000000000 0000000000000000 0000000000000000 0000000000000000 000000000000dd90 ffff804783a0e4af 00002ac8e832fcea 0000004755cbb245 ZMM22=0000000000000000 0000000000000000 0000000000000000 0000000000000000 00007ff8fc7ffff3 ffffffffffffffff 8a732aebfd3ffeff ffff8047d7ebffff ZMM23=0000000000000000 0000000000000000 0000000000000000 0000000000000000 343064623a312b32 316f70627e322d33 2e36312e312d6e61 696265642d332e36 ZMM24=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000010 0000000000000030 0000000000000000 00004e4f53414552 ZMM25=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000010 0000000000000030 0000000000000000 00004e4f53411b4d ZMM26=0000000000000000 0000000000000000 0000000000000000 0000000000000000 282b2e2fdf37342d 280bbfbf23243324 26312033fc040f18 1317140d080b0412 ZMM27=0000000000000000 0000000000000000 0000000000000000 0000000000000000 343133bffc121104 1214041204110814 100411bffc040f18 1317140d080b0412 ZMM28=0000000000000000 0000000000000000 0000000000000000 0000000000000000 4141414141414141 4141414141414141 4141414141414141 4141414141414141 ZMM29=0000000000000000 0000000000000000 0000000000000000 0000000000000000 1a1a1a1a1a1a1a1a 1a1a1a1a1a1a1a1a 1a1a1a1a1a1a1a1a 1a1a1a1a1a1a1a1a ZMM30=0000000000000000 0000000000000000 0000000000000000 0000000000000000 2020202020202020 2020202020202020 2020202020202020 2020202020202020 ZMM31=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000