last executing test programs: 6m30.654556997s ago: executing program 0 (id=1910): r0 = socket$nl_generic(0x10, 0x3, 0x10) r1 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000040), r0) ioctl$sock_SIOCGIFINDEX_80211(r0, 0x8933, &(0x7f0000000380)={'wlan0\x00', 0x0}) sendmsg$NL80211_CMD_JOIN_MESH(r0, &(0x7f0000000500)={0x0, 0x0, &(0x7f00000003c0)={&(0x7f0000001c40)={0x28, r1, 0x1, 0x70bd29, 0x25dfdbfe, {{}, {@val={0x8, 0x3, r2}, @void}}, [@NL80211_ATTR_MESH_CONFIG={0xc, 0x23, 0x0, 0x1, [@NL80211_MESHCONF_GATE_ANNOUNCEMENTS={0x5}]}]}, 0x28}, 0x1, 0x0, 0x0, 0x5}, 0x0) 6m30.441871833s ago: executing program 0 (id=1915): bpf$PROG_LOAD(0x5, &(0x7f0000000ec0)={0x20, 0x3, &(0x7f0000000040)=ANY=[@ANYBLOB="1800000000000000000000000000000095"], &(0x7f0000000900)='GPL\x00', 0x9, 0x0, 0x0, 0x41000, 0x0, '\x00', 0x0, @netfilter=0x2d, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) syz_init_net_socket$bt_hci(0x1f, 0x3, 0x1) socketpair$unix(0x1, 0x1, 0x0, &(0x7f00000001c0)={0xffffffffffffffff}) fcntl$lock(r0, 0x5, &(0x7f00000002c0)={0x2, 0x0, 0x6, 0x6}) sendmsg$nl_route_sched(0xffffffffffffffff, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000040)={&(0x7f00000000c0)=@newtaction={0xa4, 0x30, 0x1, 0x0, 0x0, {}, [{0x90, 0x1, [@m_ct={0x44, 0x2, 0x0, 0x0, {{0x7}, {0x1c, 0x2, 0x0, 0x1, [@TCA_CT_PARMS={0x18, 0x1, {0x9d, 0x11e41e7a, 0x20000000, 0x0, 0xf}}]}, {0x4}, {0xc, 0x7, {0x0, 0x1}}, {0xc, 0x8, {0x0, 0x1}}}}, @m_ife={0x48, 0x1, 0x0, 0x0, {{0x8}, {0x20, 0x2, 0x0, 0x1, [@TCA_IFE_PARMS={0x1c, 0x1, {{0xfffffffe, 0x0, 0x1}}}]}, {0x4}, {0xc}, {0xc}}}]}]}, 0xa4}, 0x1, 0x0, 0x0, 0x800}, 0x0) bpf$MAP_CREATE_CONST_STR(0x0, &(0x7f0000001280)=ANY=[@ANYBLOB="0200000004000000080000000100000080000000", @ANYRES32, @ANYBLOB='\x00'/20, @ANYRES32=0x0, @ANYRES32, @ANYBLOB], 0x17) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r1 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r1, 0x2, &(0x7f0000000200)=0x4) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeef, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f000057eff8)=@file={0x0, './file0\x00'}, 0x6e) sendmmsg$unix(r3, &(0x7f0000000000), 0x400000000000041, 0x0) sched_setaffinity(r1, 0x8, &(0x7f0000000400)=0x2) recvmmsg(r2, &(0x7f00000000c0), 0x10106, 0x2, 0x0) r4 = openat$binfmt_format(0xffffffffffffff9c, &(0x7f0000001580)='/proc/sys/fs/binfmt_misc/syz0\x00', 0x2, 0x0) read(r4, 0x0, 0x0) r5 = syz_open_dev$vivid(&(0x7f0000000180), 0x3, 0x2) ioctl$VIDIOC_SUBSCRIBE_EVENT(r5, 0x4020565a, &(0x7f00000001c0)={0x3, 0xa07, 0x2}) bpf$MAP_CREATE_CONST_STR(0x0, &(0x7f0000000300)=ANY=[@ANYBLOB="0200000004000000080000000100000080000000", @ANYRES32, @ANYBLOB='\x00'/20, @ANYRES32=0x0, @ANYRES32=0x0, @ANYBLOB="00000000940d000000000000000000000000000000009f1dcf"], 0x50) bpf$MAP_CREATE_RINGBUF(0x0, &(0x7f0000000440)=ANY=[@ANYBLOB="1b000004000000007468f74996836d8c05e05864b00a3cd43889f03bff95194aa5696c99d06e4dad66fcbfa8cf6c", @ANYRES32=0x0, @ANYBLOB='\x00'/20, @ANYRES32=0x0, @ANYRES32], 0x50) setxattr$incfs_metadata(&(0x7f0000000800)='./cgroup\x00', &(0x7f0000000840), &(0x7f0000000880)="22cff58056ac", 0xffd7, 0x1) removexattr(&(0x7f0000000200)='./cgroup\x00', &(0x7f0000000240)=@known='user.incfs.metadata\x00') ioctl$sock_ipv6_tunnel_SIOCADDTUNNEL(0xffffffffffffffff, 0x89f1, &(0x7f0000000000)={'ip6gre0\x00', &(0x7f0000000380)={'syztnl0\x00', 0x0, 0x2f, 0x0, 0x0, 0x0, 0x52, @empty, @mcast1, 0x0, 0x8000, 0x101}}) r6 = openat$proc_mixer(0xffffffffffffff9c, &(0x7f0000000380)='/proc/asound/card1/oss_mixer\x00', 0x1, 0x0) write$proc_mixer(r6, &(0x7f00000000c0)=ANY=[@ANYBLOB='RADIO\nCD \'Mic Ctpture Switch\' 00000000000000000000\nIGAIN\nT'], 0xd3) r7 = socket$inet_smc(0x2b, 0x1, 0x0) ioctl$sock_ifreq(r7, 0x89a2, &(0x7f0000000280)={'bridge0\x00', @ifru_settings={0x43, 0x0, @sync=0x0}}) 6m29.35184099s ago: executing program 0 (id=1920): r0 = socket$nl_route(0x10, 0x3, 0x0) r1 = socket(0x200000000000011, 0x2, 0x0) ioctl$sock_SIOCGIFINDEX(r1, 0x8933, &(0x7f0000000000)={'bridge0\x00', 0x0}) sendmsg$nl_route(r0, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000480)={&(0x7f00000002c0)=ANY=[@ANYBLOB="3800000054000100010000000000000007000000", @ANYRES32=r2, @ANYBLOB="20000100", @ANYRES32, @ANYBLOB="010003007f"], 0x38}, 0x1, 0x0, 0x0, 0x4}, 0x0) 6m29.138091244s ago: executing program 0 (id=1922): r0 = openat(0xffffffffffffff9c, &(0x7f0000000040)='.\x00', 0x0, 0x0) ioctl$FS_IOC_SETFLAGS(r0, 0x40086602, &(0x7f0000000280)=0x20) mkdirat(0xffffffffffffff9c, &(0x7f00000000c0)='./file0\x00', 0x0) rename(&(0x7f00000003c0)='./file0\x00', &(0x7f0000000f40)='./file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00') 6m28.93691985s ago: executing program 0 (id=1923): sched_setscheduler(0x0, 0x2, &(0x7f0000000180)=0x3) sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r0 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r0, &(0x7f0000019680)=""/102392, 0x18ff8) sync() r1 = socket$key(0xf, 0x3, 0x2) r2 = socket$key(0xf, 0x3, 0x2) sendmsg$key(r2, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000000)={&(0x7f0000000240)=ANY=[@ANYBLOB="020100030c000000000000000000000005000500000000000a0000000000000000000000000000000000ffffe0000001000000000000000005000600000800"], 0x60}}, 0x0) sendmsg$key(r1, &(0x7f0000000100)={0x0, 0x0, &(0x7f0000000300)={&(0x7f0000000400)={0x2, 0x9, 0x0, 0x3, 0x2}, 0x10}}, 0x0) openat$rtc(0xffffffffffffff9c, 0x0, 0x40, 0x0) r3 = socket$inet6_tcp(0xa, 0x1, 0x0) setsockopt$inet6_tcp_int(r3, 0x6, 0x13, 0x0, 0x0) setsockopt$inet6_tcp_TCP_REPAIR_QUEUE(r3, 0x6, 0x14, &(0x7f00000013c0)=0x1, 0x4) r4 = openat$sndtimer(0xffffffffffffff9c, &(0x7f00000000c0), 0x20000) ioctl$SNDRV_TIMER_IOCTL_GPARAMS(r4, 0x40485404, &(0x7f0000000380)={{0x1, 0x2, 0x6, 0x0, 0x3}, 0x1, 0x7}) connect$inet6(r3, &(0x7f0000000180)={0xa, 0x0, 0x0, @ipv4={'\x00', '\xff\xff', @remote}}, 0x1c) sendto$inet6(r3, &(0x7f00000003c0)="a7", 0xfffffffffffffd51, 0x0, 0x0, 0xfffffee2) setsockopt$bt_BT_DEFER_SETUP(r4, 0x112, 0x7, &(0x7f0000000440)=0x1, 0x4) recvmsg(r3, &(0x7f0000000580)={&(0x7f0000000300)=@un=@abs, 0x80, &(0x7f0000000900)=[{&(0x7f0000000b00)=""/241, 0xf1}, {&(0x7f0000000a00)=""/125, 0x7d}, {&(0x7f0000000700)=""/95, 0x5f}, {&(0x7f0000004180)=""/4096, 0xffffff5e}, {&(0x7f0000000780)=""/181, 0xb5}, {&(0x7f0000000880)=""/111, 0x6f}], 0x6, &(0x7f0000000980)=""/78, 0x4e}, 0x10122) syz_io_uring_setup(0x369a, &(0x7f0000000300)={0x0, 0xfad6, 0x0, 0xfffffffd, 0xfffffffd}, &(0x7f00000003c0)=0x0, &(0x7f0000000280)=0x0) syz_memcpy_off$IO_URING_METADATA_GENERIC(r5, 0x4, &(0x7f0000000080)=0xfffffffc, 0x0, 0x4) syz_io_uring_submit(r5, r6, &(0x7f00000002c0)=@IORING_OP_MKDIRAT={0x25, 0xa, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x14e}) r7 = io_uring_register$IORING_REGISTER_PERSONALITY(0xffffffffffffffff, 0x9, 0x0, 0x0) syz_io_uring_submit(r5, 0x0, &(0x7f0000000240)=@IORING_OP_SYMLINKAT={0x26, 0x18, 0x0, 0xffffffffffffffff, &(0x7f0000000100)='./file0\x00', &(0x7f0000000200)='./file0\x00', 0x0, 0x0, 0x27d704a318365224, {0x0, r7}}) r8 = memfd_create(&(0x7f00000011c0)='[\v\xdbX\xae\b\x00\xa9\xfd\xfa\xad\xd1}d\xc8\x85H\t\x00\x00\x00\x1ae\xe0\xdb\xb8l\x14\x19\x02\x00\x00\x00\xfb\xff\x81\x9eG\xd9,\xe2\xc6a\x9f\xe8\xf1\xb3\x86\xe2+Op\xd0\xa2\x82\x1eb;(\xb5\xe1jS\xd6\x91%||\xa0\x8ez\xadT\xc8\f\xe5\x89\xbf3:\x99\x1e\xac`\xc3\xcf\xd3\xae\xd2\a\x11\xa9\xa5^\xff\xf5\x95\xd2q#\xc6\xca\x97\x9d\xcb\x1e\x80\xd6\xd5%N&\xf8#\x80\x87q2\xe1\x1d\bBz8Z\xd2}\xf5\xe4\x9f\xb5\x9b\x01\xf9t\xbb\x1er\x14\xdb\xd3\xcd\xfd\xbdnC\xec\x02\xd8\xa2\x12\x8cR4\xed2\x82\x05?:\xe5.', 0x7) fsetxattr$security_ima(r8, &(0x7f0000000040), &(0x7f0000000080)=@ng={0x4, 0x11}, 0x2, 0x0) 6m27.967219735s ago: executing program 0 (id=1925): r0 = openat$kvm(0x0, &(0x7f0000000040), 0x0, 0x0) r1 = ioctl$KVM_CREATE_VM(r0, 0xae01, 0x0) ioctl$KVM_CREATE_DEVICE(r1, 0xc00caee0, &(0x7f0000000140)={0x4, 0xffffffffffffffff}) ioctl$KVM_HAS_DEVICE_ATTR(r2, 0x4018aee3, &(0x7f00000000c0)=@attr_arm64={0x0, 0x1, 0x1, 0x0}) 6m27.553712459s ago: executing program 32 (id=1925): r0 = openat$kvm(0x0, &(0x7f0000000040), 0x0, 0x0) r1 = ioctl$KVM_CREATE_VM(r0, 0xae01, 0x0) ioctl$KVM_CREATE_DEVICE(r1, 0xc00caee0, &(0x7f0000000140)={0x4, 0xffffffffffffffff}) ioctl$KVM_HAS_DEVICE_ATTR(r2, 0x4018aee3, &(0x7f00000000c0)=@attr_arm64={0x0, 0x1, 0x1, 0x0}) 1m2.189641467s ago: executing program 4 (id=2846): r0 = openat$ptmx(0xffffffffffffff9c, &(0x7f0000000040), 0x0, 0x0) ioctl$TIOCSETD(r0, 0x5423, &(0x7f00000000c0)=0xf) bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000200)={0x18, 0x4, &(0x7f00000002c0)=ANY=[@ANYBLOB="18010000000000000000000000000000850000006d00000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x88}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000240)=0x7) r1 = getpid() sched_setscheduler(r1, 0x2, &(0x7f0000000200)=0x7) r2 = socket$kcm(0x10, 0x100000000002, 0x4) sendmsg$kcm(r2, &(0x7f00000001c0)={0x0, 0x0, &(0x7f0000000000)=[{&(0x7f0000000200)="39000000150081ae00002c000500015601618575e285af0180000000171300883795c04a31ba377a1b2cc32b38d3740000ffffffffffffffff", 0x39}], 0x1, 0x0, 0x0, 0xc00e}, 0x0) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r3, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r4, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r3, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000000)=0x6) openat$rdma_cm(0xffffffffffffff9c, &(0x7f0000000540), 0x2, 0x0) statx(0xffffffffffffffff, &(0x7f0000000300)='./file0\x00', 0x100, 0x40, &(0x7f00000003c0)={0x0, 0x0, 0x0, 0x0, 0x0}) sendmsg$nl_netfilter(0xffffffffffffffff, &(0x7f00000004c0)={&(0x7f0000000180)={0x10, 0x0, 0x0, 0x4000000}, 0xc, &(0x7f0000000340)={&(0x7f0000004840)={0x2420, 0xc, 0x8, 0x5, 0x70bd2b, 0x25dfdbfe, {0x2, 0x0, 0x3}, [@nested={0x419, 0x113, 0x0, 0x1, [@generic="0d6b91386b1903b6e35f26273684bf4d0007a2db7a076f1c9e196ca8bb2e04b6c580d480b864e3546f170b3edda0d3fd05494a7293cf52a8e96a3ea33b3907dfb621d740f272d49e9cc8cd9dfb530c319edcfc3644715a3b211511c7c8b0746de87a657f46ab20758b1c0b5c5c6df9676da30548edf8674cf04b7179e2b2cb5c0718e1f6d6b14c1dcd2d78ba84304558e1eae63d61bc", @nested={0xbd, 0xd8, 0x0, 0x1, [@generic="50a474fd25504155047194cca6110e0dcdb266c5428be4208010ee7a4d195cfefe40f4ed58a3a07021c872", @typed={0x11, 0xa, 0x0, 0x0, @str='sched_switch\x00'}, @generic="85f946585b6c76dbcd79de7dcaaf707e5fdbeec981c296ad88842655017fc372cfb8699095fb9fdf4c839110cfea326666a8f1da214f46b959e09cf439e38b1be22b8a56e7a978b5c9bbdcb9cc6e998904b3b205d2f8175eee5fa46320c8e86a5e560ffe1efe401d864521a2e2d304cda8abc7913e96", @nested={0x4, 0x3d}]}, @generic="e3f6be39182ebf5877bb4bed912bf8b13545c953eaa076c67d7796b9757ec676cd1ae90184e94ed4b064a90d6625b5d26c08c54ce97615edd9c30c43c851a10ae8aedb164c4bbb88a6403a18c39360dcaf4fee0b634961e86224ea919f1378fb95ad306fd5b0810b3547af7ef5f07de01bcf2d005ef867e875e8205c4212b34b44eb6913b49eb38d5550de7d16e6204c98a4751545bd8e0455ecdcc182e2ea1add4b683b42c3a1ee2947c8f658a4e65cf4c53cbd1c94c458b94e26bb5ab7aa09bbed7cbd11f06df16c8de75da083c25312e866a06231068f74cd579aff1e1543aa926f36c6bf56462bccade705", @typed={0x8, 0xa5, 0x0, 0x0, @uid=r5}, @generic="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", @nested={0x8, 0x4b, 0x0, 0x1, [@nested={0x4, 0x8d}]}, @nested={0xc7, 0x6c, 0x0, 0x1, [@generic="2a214d4e10c8219fed63b12768d579092e6fa60bdf8c41585a1f9765422bb4104a8cb337fabe501279ee5cdc5852541194ff66386411c6d8889b5c81da7e5e440b2549e5aff7b5e3e4da790663bf8284982d852b810a99ab562e2660a190cf75689c3d6af1331affa3af3de1b8562de54864bcf48efb49c0114dbc0accba1fe613afa02c0fb983242484b33100478b454ab11264a4a16e7af98d228ad2d138bef57ee27dd8c5752c74ec2b4f8dbe07889dd15b6b514bfcdaf3466f9d14d64988dda5f5"]}]}, @typed={0x8, 0x3a, 0x0, 0x0, @uid=r5}, @typed={0x1000, 0x6e, 0x0, 0x0, @binary="741c00540dd7eaf1065b0720018ec0b22a8833d10f8fd23ad58a53df519f17ab0c908fedea7d46896f136ccff9ee3e134dbe2d9d8eb25d496459ffd918d14d83a7c026ac288598f50125f58264e6248d082fe6bba1526811202b75de424c33549b7294cccaf1a9564266c723e57de7d3c6198aafa902bd3a50997023dfb64b9c12814366750a7ef42d2a39780aa769940209f3283cf2689d9135ce690151d29aa92904537da265194105da16d92fd72d8dc5ced0ee06d199638b5a5e0408e830f01a8bbcd846494944894f704914a941a87c2605a025b14459eade91e7af50f58b9fbb91c9f5663212b99baa59b027bde45f851fac7a7c7e36eef8db7b15b9687e0a675ae5f217119f8846365da0f6d567496a9ce51cf28cb1a29cee1c5bb10cfb771c4d5e8aa77c6e3c4634d82dedf4527c07e2fc89ce8c0b870464171dae16b5a9fe850a452d3253c78e62bbbaba6c9e1d77efef08c80a2311abee1c9831f0ff308d371627c1f13fbdb28bdcd96f5174755c99a6ae5ac9365779ec3ccd35f5b0de083dd94813c38f857b7f7a6c4a806dd2b256b16f1ef3fcfa872b5c8f035202601932998b61de41ab41cecd87ac3fb3d6993eed6f9a7e50e976c6254e3df1cf89af1946abbbc34f024fe8b90b538c317e11e7c4e902785849ffe95b71b5bd0a16a7632af6abc4728aa2ed4a7456f07dd6410eee3c36ef8fe5a37a175004ad0c95e7b1621de6441cd765cc48a39ea284cf2d182866986eb296a5ae7087aeb80b80b3e706f0cc3754c5e337ed67c787853edcfe95b0b96fddfb711fd6d26186b69b7d64e482f0f54e37e0fd08ba5b6d5ca0bac4e55fc63c5cc920afea933a2e899e7185c6d9face662a31ad7ddc4a5c7833029cc6e961967b929d032bf4847be204624717ed38cadda32673db7ae082b4dd7b96ef3791781c8f5f9451c7eff241947edadb4a642018f27cec12801c0b82e91cba85029c8109b78a831a01db47b247a2633096c5dde5170c5b430c22040a5a38591c03e50c5cbf252e9f05a8650d75e586f243dd30a291c10a90c506b7c7fd3fe35692933cfa41f3a33f1d0e001a8229beb0535677f56afb7caaee7d9173da65d6b733b749cf77366ad430d48ebc108c055f72b0dcf80206eec319c857353185530db73526213356cae73e5d522740cfa5f4fce2cc2979a5cbd0fe9045e63bbb29de600026e346125c12c222d977c3faa0b7fc7166c5a2ff7e4fe169a178f33b57a1b966ab7102194e082ee945d3958161276e66d0d3c2c7763018e9d7f8e9e65fd1e5794352e1073d908a91952cb26385dc1c69e53fabf21b4e0b348e0fb8836ee3a3558832c3e1998443711c3c0f2032e146f4db3fbc42665c8a5250bd0fe149128b5ffc345e0448297802d2e2139812a12fc77591d83e9f9aea851537c0cb96f61136da2b2abd1d9993170818e030d96eb771d5e83b0fc02aeb5dc2d6b3c1162e4ad2a6606c3020cae7e04d1a22f4ab8173f6064b1e60ef7527bd050dcef850ef62eb0926f7ec626078d7d36edc95af49b87ba8b0c420a13f3e2edb29684ebde22aeb72b1ccf3bd1bd4ac9cdacded1d47c4a41dfe49125affb164a6a8a5dc23074f6b24fc6a516f06fe9974222bdb41476ef0ba70543a06b6cfb56e83af941712e0dd43cb44e19e49919e9f72754dcbe2c2dbc77b33de10f7ebf7ed35e67748e5a259c6ae605adcae8939bd2d813d4a48dd72bbb364705e76cf9fea4f3eace71c43dc706eddbf6d5be10534542056f8364a553c9f5ad2e0c30afbb7b05da9874a33a8e305f16c8f668adcc6aab69aa6e05b314ecda817cf9eb69f9af1349bb5dc0b397b8c72be2ac206330f097916f2adf428b7be6cc7732dedeceba8537b10af678053c5704d00f41e8dca7bf255ea93cd928d9be7017d2766309ed1adc0eb42dcf576e9a4675fbe4e3e495d5227ff1138a2e1ddac489eac98651f773fa3a550fe0e739534b3e68bd33f21b735ab3b95b72c632602581489cf55cfa6a77ee8f97c9512eec71f21441322dcaf53558913f5ad07bd710fb29cd9d685db2e9f2c2be2e9bf0d8e8ff1d21ac56fb130872e4557081e69aedfaabd172bb2b168d8df03ae88e3beccb2798c6014737fd09fd3558213af323653f08644b8fe1e3a8028deaf8ea81ea798636b559f276914e385a4b318e78ff70cbb9a9a19ec7f2d247e4a35e36412ae419b130fd2dbaa12677cfbd0e77937ced91bb41456f01eeac2297d0cf05c16c3b5f1ec2fbfcefe40661d4076dd122c0410e8ea7a34c48a46884bfbc9a8beb858059b113f6f487e01862fa3b4b1ddb1f965924b1b1015fc1f69554ae4df024d0dcd13868ce680426ceb251847045992f624290e48d94cefaf869b9e80c0535b1365b88d60a2c3ab3b57c8a0752445d60e685e5f73ee4b44fe1138b3ff675ed3b02e2b864976b152c84be6f0d000e70820e98fa236c16e158d538e7eb07b0488ba1ee5a9578b4ddd8caa204df469f938f9d2684842ce982214e7b1b432c6dff414d49d8225e42b736b0562eab97709dbfdb78f4e6343d50ee15dc828fd7ac748e9d4ba45d458466ebd776d5bbcf196c8830db86bb3f9221956f984c0d8405557f73c34fcba49ab1075e2f973d34990b6e8a479fbe8e66f2ca8c8b050e85ae20399937773c741de7b25ed69a62d187566cf28a451b0da607d19b6623adc303e50702427987e2a198f13121649729b9e6f1581fa0072788ed4be7d9b8d999bcacae0f619489b13553f44991968310e5c3b5d908c1fbdfe74716c279aa596eb0eea3e6e26ac9ebc4c9e6bfd227055e0450b1c4fdbc4ec68eef0f56e9ce4fe44951cbc077463e25878a3c0c9e845ab14a207e1cfa7b5fe2731f45c75a39ce20657c0571a177c6a1e7deb789dfaa66139835004c6717659aabf5912973144d47885976aef89aa14d2f4059510a21f311be375279492d1708609af469c7b1be4a0af637afc9918802679f3b92a4e06d488738babe8c379b5b867e6909dc1a9027b68374f4b10cf9b0f50830f2d6c6468d0e9d90f552e128cb4c00ca0a3379e8a912a24a86b3bb4248c8473e596b1332156670c298bd83bef6e4904523c90233aceb26225076e2ac04076cf3adbbe116aabc8cedbc9e0947c609d9bc79095e310efc6b440f8a1cc8e067d75f79bca4e57739c074fd0b941bcb4b86b07c1470650582e52d830d567aa6dab5adc1b87e4e958d78b40e515bc3d2f4727295b686906fe6fb56c9a5c0758c2d36d4c241518c128dd6628b57a8a6ab6637bfdb051f90ec00d347f2f4dbaed0afc87a5f9880144bb80a580fa92c06b82e88259238e529b36a49e940d3de95dbe64965966ea6f85ddd8a836e344dbe618498eda6ade81cdb47c8760486ae85de02cd3ecf3887a200b5765eedf9a7312701d31e0d85669de3019d3adca9a026ad3227d830dfff4902159ad3160d6efae47a6da6c69578a7377ad5f495e8893859a7fbee74bb0636dcb859a069e025610306d1e97eb2ba76c4cae6161523ca8d55bdbc3883136c2fb855596dde44a52a6ef84962b5ad5a77e95c40c2b7669376cd644cc7e1e0bbaa2eec844d3d33048df394169d877a8207fb322b7815a2db1cf926e8cc143c499776239cc45f9b91906cc343f95e6caac03cf121bd44f621946b654cf791f21a7da53cb29835af33923dbfaf2f641dd8746dad83dadf55d7418e325a94c426839663d3d866d3bc33c118fb3c00bfd03cc76dc9e2fc34d60affa6404c12bd51140bb5005814ed1bfc3921c3a3f6a1d385cf2a5a3c2557889ae460776b24183f78785c2a541673f9c0b897482681aff29e4944084d4a9cb785615273a5f04ba702b12e60358480cd73d4ced80105ca8f4b2dfd602d4e6166d9d6561b47c4c035094775526beb78f64c85c96677b67c0d0c15426aafe0119986ede2a62692ddd8df7fde6a2ed9804b259a6b5db96090e4246895450ed4b41fdf18956087c44968912cb4781fd8062eeaa116d2d361c5626d4893e1779c4e7c6471f83412bda5f352120a0d762ec8d911eceff225c90c12671ff09a5a45959c29ea6ce36d70d7d25c7df1d651922c3b19ba4600b4f04b5ab6f37d6f2aa20c9431bffe4fcffe52116c5f55342c7e53ed8ca665de002727dcf1f00c88584b19b8baccd8fa4df38f31f7d18734a23bce738f4302e89cfd6d0d693bd29603a4ea529f9c9ed0bdccf046faec16de9bab8eea75f6f5eb615cae33b3de08f6e63a0b2f5351e79c06d03e42314be363cf1b38189800e82939554a26c2fc49128d4885192cf9b7f14eb8866b460e2aed3db5ed80847b68505ced38468016eab46eb4b209837f32574c2e2ba72af110eef578b4d970e21f675a0686f3df55f79a9e350bc0bc306ed31b6675319225adfd5f45e0f396c36a31a6d86af07b3b6e4ad03d856c5fdf412cca17b9c7bc85fc74d79778aa1a2d7e8370e4fb59da57a02d4e7735074812d12eccd92c94e23d170a238a4d9e349e8332392e5afcd1995086f171647581e81bb2d5a219324aa73ccf209dfa5d5af87c8829a21167a6557f1b0f7181a5c51d856d7d6123e0a3cd0fbb0ce7512e23a897cae16d9d3d1e58b609dac07199da1c47420e1eadb23f78ee510bc345f76875158b82b8a3b4115ba61f8916a3c30cf878435d5184c2af2f16ad29014245d1b441ee82eebb24a49a066837da7d72f1d6ef0e40a8943b07ae772038ef8225ee4257436d06bd76d518514e3d56df9ebfd6fd572c1a3b803b54b86376073b585685a6e69987737146e4904ddd70df77e1897990d474b13a7059a58d145078baf6bb3cfa9d6afbde2041db0b498bb747c2af9e0647ba5d8c868edfc00554a61fb86ee5b480923b99dd762e9ea67206a2103cd295ffdf11ad1edba6c6a5ba5a766261ea417be1b480423b319704c63a2437b7dbea08f1747dd5a83bd0ad3bacab500b1e4a5dc8bbeae4113c3a5d097b92de11f867c9338f098c639ce2782ebdfe404ffa576925fbafa24bf1369c257c00c4417f637f01eaab95a890485b578a23161fe11540ba5eedfe71c52a420363e1e26094ffab7335a600cb689213c6b4e379f7c2405aeedc580900a55d5a441ed587c5de5e139b58eec2b88c1069757f779f980026ac76410e7c746745bbfb2068421e76f5af2fe2c97f61c1de03bb0163e349d9c67e0ccb31416b0e0441c66a0c3a29127928b90216df3130c0740e653829d216e80ccebe2ce27e197e05012552502731f12b05c3ddcf8b737de48765ad758a7e797e5adf9ce87d2676f43b16aa55b39eb45935a971164eb0192e7d705451b64b4cdef45b5ec575c58a47d232f4be3129eb138a5dae180b2b5fc49aa7a0215144218614306092dcea9e53dca43fe65bf2cff982683656ef0b21d49672c6f940d999159069910104b3afc9ecfd4f40ab7d5e7664aaf2bafe2cc201a331879a7a3b766d48b0440eb6c5336285509effc139d06f08a11bc0e751b110a04b775a9d516116c75f7a4a68c805370d487c7007db6d882138f02d83218056fe40f22c83fcf9d45a44975375da09a8713df34ad2482a7f1237c2efc88b46f3c3fc484e817c7f7fd63fd72f308f6e2753ad150f27293302485ee9819ad19f8530597bd7f70dcb889e771ac25fc940fec40f4726ff1b42ee2f955ff68e0a3ac77ce60d6582be2c1f5513d9b2e14a0994e5c53303efbc93072c80d1dda545dadefde1fb53a3e5ba7d5f143b244699c1c1cb4cb7ecf3f74400a7c14f4c49939048ae530691d0ad7eb1be12aa7188761fe80ecaaa8"}, @typed={0x4, 0xcb}, @nested={0x9b, 0x6d, 0x0, 0x1, [@generic="d92fc01b67f71d9fc7f12b2d9a48cbde1039a67b5e61a7f420981bb4bab3bd9c4ceda9835527a03a55c7f8255d719802b488ce1bc054b1c6cfe86ba6c364305478b78802cc7b75f96b6c696fb0d6a7554cc20533ce964c6b1070b17a1147661af32662e34288aedd", @nested={0x4, 0x112}, @generic="cd3b697c47e593768c2425b6d659ed", @generic, @typed={0x14, 0xc9, 0x0, 0x0, @ipv6=@mcast2}, @nested={0x4, 0x2b}, @nested={0x4, 0x8}]}, @nested={0xef9, 0x14d, 0x0, 0x1, [@generic="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", @nested={0x4, 0x24}]}, @generic="1799e80e8028fa351d2162414b760f6f5891ac7d9d8be68378237770cbc596d2eead2ee10d04243ecc2a1b5806102246f3d8768b5fb13b78786e2dce7a6410d098afacaced57be4ccc"]}, 0x2420}, 0x1, 0x0, 0x0, 0x1}, 0x400c004) capset(0x0, &(0x7f0000000140)={0x0, 0x3, 0x7, 0x0, 0x101, 0x8a}) r6 = syz_open_dev$vim2m(&(0x7f0000000000), 0x3, 0x2) setxattr$incfs_metadata(&(0x7f0000000380)='./file0\x00', &(0x7f0000000500), &(0x7f0000002680)="f5059699a87112ed40d449afd07f1d5bf784011b33978a6ea73f80cb58d05e20786f2b20f9f7d214b1524f3ae99a8e04708e8a5fdfa6e53962488b342f0ac8c68c7133ab4f07f987f5a6d4833761a98425e0b78ac8bbe04a0d3e7f003a616b3a5d07855e082a15a0138c8101e364f22f2ab35a58ca5326ce76372af820ac4b52bf980b4928fdc79eb58f718e7c2a22b5c9cc3983b15eab7a0d3df820925eb355c5f9016aedc8fbc9a992249ceab436c004a7d620e11d8f39130655", 0xbb, 0x3) ioctl$vim2m_VIDIOC_STREAMOFF(r6, 0x40045612, &(0x7f0000000080)=0x2) r7 = fcntl$dupfd(r0, 0x0, r0) mprotect(&(0x7f0000000000/0x4000)=nil, 0x4000, 0x1) ioctl$TCFLSH(r7, 0x400455c8, 0x20000000009) ioctl$TIOCSETD(r7, 0x5412, &(0x7f0000000000)=0x3) 59.704642187s ago: executing program 4 (id=2848): bpf$ENABLE_STATS(0x20, 0x0, 0x0) bpf$MAP_CREATE(0x0, &(0x7f00000002c0)=@base={0x1b, 0x0, 0x0, 0x8000, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, 0x0, 0x0) r1 = socket$inet_udplite(0x2, 0x2, 0x88) getsockopt$inet_udp_int(r1, 0x11, 0xa, &(0x7f00000000c0), &(0x7f0000000340)=0x4) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x20008b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000640)=0x3) sched_setaffinity(0x0, 0x8, &(0x7f0000000280)=0x2) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r2 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r2, &(0x7f0000001a40)=""/102392, 0x18ff8) syz_genetlink_get_family_id$smc(0x0, 0xffffffffffffffff) r3 = syz_init_net_socket$nl_rdma(0x10, 0x3, 0x10) sendmsg$SMC_PNETID_ADD(r3, &(0x7f00000001c0)={0x0, 0x0, &(0x7f0000000180)={0x0, 0x40}}, 0x0) sendmsg$SMC_PNETID_DEL(r3, 0x0, 0x0) r4 = open(&(0x7f0000000280)='.\x00', 0x0, 0x0) fcntl$notify(r4, 0x402, 0x8000003d) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r5 = socket$inet6(0xa, 0x2, 0x0) setsockopt$inet6_int(r5, 0x29, 0x38, 0x0, 0x0) r6 = openat$procfs(0xffffffffffffff9c, &(0x7f0000000180)='/proc/meminfo\x00', 0x0, 0x0) pread64(r6, &(0x7f00000007c0)=""/29, 0x1d, 0x9) syz_usb_connect(0x5, 0x24, &(0x7f0000000000)={{0x12, 0x1, 0x310, 0x78, 0xf2, 0x9d, 0x40, 0x82d, 0x200, 0x7aa5, 0x1, 0x2, 0x3, 0x1, [{{0x9, 0x2, 0x12, 0x1, 0x2, 0x8, 0x10, 0x4, [{{0x9, 0x4, 0xf, 0xf7, 0x0, 0xe9, 0x74, 0xef, 0x9}}]}}]}}, &(0x7f0000000200)={0x0, 0x0, 0x0, 0x0}) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000500)={r0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}, 0x48) r7 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route_sched(r7, 0x0, 0x0) 55.943526898s ago: executing program 4 (id=2857): prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) r0 = getpid() sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) ioctl$ifreq_SIOCGIFINDEX_vcan(r2, 0x8933, &(0x7f0000000300)={'vxcan0\x00'}) sendmsg$IPSET_CMD_GET_BYNAME(0xffffffffffffffff, 0x0, 0x4040) r3 = syz_io_uring_setup(0x10d, &(0x7f0000000380)={0x0, 0x0, 0x80, 0xfffffffd}, &(0x7f0000000340)=0x0, &(0x7f0000000480)=0x0) syz_memcpy_off$IO_URING_METADATA_GENERIC(r4, 0x4, &(0x7f0000000080)=0xfffffffc, 0x0, 0x4) syz_io_uring_submit(r4, r5, &(0x7f00000002c0)=@IORING_OP_SHUTDOWN={0x22, 0x9}) io_uring_enter(r3, 0x3516, 0x0, 0x0, 0x0, 0x0) r6 = mq_open(&(0x7f000084dff0)='\xa1sxt\x1a\x00\x00\x00\x00\x00\x00\x00\x01\x88\xbdd', 0x6e93ebbbcc0884f2, 0x100, &(0x7f0000000300)={0x0, 0x1, 0x3}) mq_timedsend(r6, 0x0, 0x0, 0x0, 0x0) mq_timedsend(r6, 0x0, 0x0, 0x0, 0x0) mq_timedreceive(r6, &(0x7f0000000180)=""/204, 0xcc, 0x0, 0x0) 54.931611979s ago: executing program 4 (id=2858): prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) read$msr(0xffffffffffffffff, &(0x7f0000019680)=""/102392, 0x18ff8) connect$inet6(0xffffffffffffffff, &(0x7f0000000200)={0xa, 0x0, 0x0, @loopback}, 0x1c) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) bind$bt_hci(0xffffffffffffffff, 0x0, 0x0) r0 = getpid() sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) getsockopt$IP_VS_SO_GET_SERVICE(0xffffffffffffffff, 0x0, 0x483, 0x0, &(0x7f00000001c0)) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) r3 = socket$inet_tcp(0x2, 0x1, 0x0) r4 = syz_open_dev$tty1(0xc, 0x4, 0x1) r5 = dup(r4) write$UHID_INPUT(r5, &(0x7f0000002100)={0x18, {"a2e3ad2119c752f91b5e09091bf70e0dd038e7ff7fc6e5539b324d078b089b3b0838721a0890e0878f0e1ac6e7049b3d63959b509a240d5b67f3988f7ef319520100ffe8d178708c523c921b1b5b31320d076d0936cd3b78130daa61d8e809ea889b5802b77f07227227b7ba67e0e78669a6f5c2a874e62a9ccdc0d31a0c9f318c0da1993bd160e233df4a62179c6f30e065cd5b91cd0ae19397d696d0d758f2dc7d1c00305d3f46635eb016d5b1dda98e2d749be7bd1df1fb3b231fdcdb5075a9aaa1b469c3090000000002335875271b286329d169934288fd789aa37d6e98b224fd44b65b31334ffc55cc82cd3ac32ecdb08ced6f9081b4dd0d8b38f3cd4498bee800490841bdb114f6b76383709d8f5c55432a909fda039aec54a1236e80f6a8949eea7662496bddbb42be6bfb2f17959d1fe90a56c71b1931870262f5e801119242ca026bfc821e7e7daf2451138e645bb80c617601000000be70d998ec76a9e40dad47f36fd9f7d0d42a4b5f1185ccdcf16ff46295d8a0fa17713c5802630933a9a34af674f3f39fe23491237c08822dec110911e893d0a8c4f677747abc360934b82910ff85bfd995083bba2987a67399eac427d145d595a40b9f6ff14ac488ec130fb3850a27af9544ae15a7e454dea05918b41243513f0000000c558cdc0a3621c56cea8d20fa911a0c41db6ebe8cac64f17679141d54b34bbc9980000000b3309603f1d4ab966203861b5b15a841f2b59a80002695104f674c2431dca141fae269cab70e9a66f3c3a9a63e9639e1f59c0ede26c6b5d74b078a5e15c31634e5af098ce9ee70771aaa18119a867e1088334975e9f73483b6c82fa678ca14ffd9f9db2a7869d85864056526f889af43a6056080572286522449df466c632b3570243f989cce3803f465e41e610c2021d653a5520000008213b704a5000000000000008ef9f190bae97909507041d860420c5664b27921b14dc1db8892fd32d0ad7bc94681359bad8deff4b05f60cea0da7710a80000000000108000e0a37ce0d0d4aa202f928f28381aab144a5d429a04a6a2b83c7068ae949ed06e288e810bac9c76600025e19c907f8ea2e2010000008271a1f5f8528f227e79c1389dbdfffe492f21579d2c15b8c70cdb1c332d86d87341432750861ec2bc3451edca194b221cfec4603d276bbaa1dfa6d4e38a48a76eafc9a9a0270e4c10d64cd5a62427264f2377fe763c43470833ac96c45f357cbbaba8f1b1fdcc7cbb61a7cdb9744ed7f9129aede2be21ccfdc4e9134f8684b3a4f354da9a795e96334e207dff70f1988037b2ed3aaf575c0b88d8f146684078416d59fdee5325928974d12dad99dac44c3f0008047096a44002bebc2420aed92fa9b6578b4779415d97b9a6d6d5495c118045651cf41c2fc48b778efa5ea5677747430af4162b987b80c3e001cd34e5c92f76cc4c24eeb8bc4e9ac2bed9e53803edf1a4ae3a9737d214060005ea6f1783e287b3bee96e3a726eafe2fdfaa78d1f48c13b64df07847754b8400daaa69bf5c8f4cea060c7e658828563e2d25c4aa348561f927e88f63aa70e73a5e69b3df3495903f06572e1e007fa55a2999f596d067312f5779e8dbfdcf3427138f3d444d2639a10477f9bec4b0bbb6e3c04be68981f392203dd0ee3ef478e16dacfc5e3e03cf7ab8e3902f1b0ff034e00000000ca509383815b1b2fc6522d4e4fdc11a48cf42d48604675fde2b94cf00500a2690891abf8ab9c015073014d9e08d4338b8780bdecd436cf0541359bafffa45237f104b96210403b2de9efed496f42355bc7872c827467cfa5c478b095b68441a34cb51682a8ae4d24ad92f243941ed274549b79a7962fb385a882e8020f06c4c2ba1dd5cac7c18876da865d258734dd73583df292892448039ef799cf0630becdbe6c4579b5561dc825ab829827945e020c1f67ee615feb6243378e0610060f02cca4e91b2f001edb3d78fb4b55668dda93ae62fccfcbb2b75a2183c46eb65ca8124e1b4da7fbb77ab2fc043aead87c32ab875ee7c2e7b7019c982cd3b43e4fb1a5fb135c0c7dcee8fe6516a328032f88c042891824659e9e01feffffffffffff83a2b210520106b8a358b50ab7a1fa89af9c251fe5294b3d1802d5676d95f160ec97b1ad94872cb2044642c37b4a6cc6c04effc1672db7e4b68d787d9a7a508ae54b3cd7369d75f2e8c77d95a3d3a6df40babb171607caac2a3559ad4f75465f49c0d0ae3716db6e00cb11db4a5fade2a57c10238e204a67737c3b42aa01b20f7694a00f16e2d0174035a2c22656dc00880acebdbe8ddbd75c2f998d8ac2dfad2ba3a50200000045a45957f24d758ed024b3849c11d412a2a03b4047497022d9c30e23ef4df5c89644f48bb536f794c9eee1198751adaa13d135273ea8e75f22f216c6b9990ae71806f2c00b4025c48b75c0f73cdb9a7b8fa367b50028067e7f16f4dd569d462f4f19eacdb3ed70eeebb4483f8fd777d443e8b40426db6fe2907ac0ca3d2414442e8f3a154704b0e51bc664a137b26be719f4f7c9a5678a674dfc95df80b9ce375dd649c8c704e509bd88c8e63d8c7dd67071115c8982ba46af4d6adcc9f68a75b9397b035153faf463661c953fcad6f37525c1a0e94610dd94323f6c15d085197149bfd6655548cfd9c52c9711937f79abb1a124f1210465483cd3b2d78378cfb85ed82e7da0f6eb6d279f2ae455925d0f6f1ba571eba281f2a654fb39ddff3b484439ff158e7cd419e037f3e3ad038f2211f1033195563c7f93cd54b9094f226e783271e1e5a2a2c10712eab625d64931cd4ffe6738d97b9b5ef828ee9fb059fc01af0e79c1e14b1d25988c69a399567c1d93768f7971d31488b8658a20878b7c1dd7ba02fc42939dde3d4a3339a65d507dc59c51097b40517705da56e9ebf0afa53282bf86dbb58c548069ff6eb95aade7cc66d7bbef724779ca1f731b3346ff177050373d79ff7b3e7f9bc0c1b4b266a8878b90baaa039d3e3b63979ac3df6e6f4859afd50238c7547a39b60810938044ae185d2ba3e00a4e73676864ae090d81eaeecf1d0ab378dd4dd891e937c2ea5410e0513005000000000000003911fab964c271550027697b52160687461602f88df165d884b36ec2b6c25a2f33c715687e9d4afb96d6861aca47da73d6f3dd014e5c5ad8fe995754bd9cf32fce1e31919c4b2082fb0a30b9deae84bed4b28045634073c9c58c89d9e99c81769177c6ea94f88a4facfd4c735a20307c737afae5136651b1b9bd522dcb399473296b831dbd933d93994ba3064279b10ea0c5833f41f157ea2302993dbe433b1aa3a37684f4113c48859465c3b415c3432f81db8719539d5bf372aaaea1cc43a6c5cbe59758bfee2916580dac4b008e595f437491d87abed02cefcd9db53d94d02dae17b118e5d6787463183b4b87c105000000302a808d7f5251440613d17ca51055f2f416a44fe180d2d50c312cca7cb14a20dc331f39a9817139a206fc76957227ffff2de20a4b8e3737fbb40100000006376f799eba367e21f94ca598705f5dcb767d6f0900d6b0f6095e53c4c4234d0c1fbe434f6ab83c0013ee93b83946ee7759e89d7bdd1a32d735810d8fe98b27faea8aa12bc8716eefc5c97c45ac33eeec964c5214bc3a9359bdea1cccab94f15e36319cb34ebcacedb82c2ed3de5a8a8f0011e8f74e82d7ceec7dc808bf653639d7961939adfdeeeaff19d11efcafb6d546fef271e89d6cc2389e81ff58cefcce3fbf4625a7e7de40e42e07b34449e15e065cc7348663a52192202c7af288a4510de03dab19d26285eda89156d50dd385a6020000000000000007a4f58e19ad5470de3dd6d6080cafccf8a97406bb6b68a1f0c4549820a73c880f475f732ae00303000000000000007fb33b72685ec37a2d3f766413a60559516246e5a1d998a2017aef0948a68cf255315ab80dd349e891aef595dc4d470e8ac32a308e15fc37d06aeac289c0523f483e1ff7408c6087f1ab652f2ef91d4f2b01987b0f46da034e5c3f745a7ee8101a3934c54e24af8ec0275e2d0687dc746b0827cbf6529006c6b95f2722e58c05f752ce2126596e1cd7655b904801784c416b22f73d324678e2724f43f1fe687c7e8a60c28b82b6522fb5f6ffcdd56fed88935fcb75912d5ecd36dea3bca0b7427d8392c6289455e8f8d2ab2242729251ae233a9e02210e62df0546a74b333a1c48f95fd54acb5741259e8c5488efeee327415cc19451432c6f14c27693102a5bd84857cd6586fc5ca9a93eb0145fac0662ff86107f998a8ef7df8aa14046c55b03d3d47f88a8d60f7774a2ee08008897fb411a94b3c2fc5d5f0db42c0456ec015f08e5247d33ae2d35603ff8454c16f8342856935125102bb6ce431b63ee356b0c785f2f47b90e29389f22fc5b59a70efaea2bd40195af4486220d702e30bfc43c10ec23ea6283994a7dde4dcb61fea6b651fb1d62458d0741a12830052fcc460db043afe525629b40d7cee458e4cb5e930ed624806c43a006e39336d07c2b80c1c128ad2706f48261f7897484c297a1a6613bc18f5a38d442768af38041efe03d152ef95ff569e76db2391f4509d7f339d92fdb4a89364949da398000000000000000d80a4fe654578376e599aff3565b1d531f30912b9945030b81ea9935fd46edb44a78f615255490a4b621501f2a9e4d24624c4dac9274118c67584f5d374755534d7f68f679c4ff516a9c861a0e7e65868fcb2bf1cb9aea4e05df72279fdb0d2b9e935c5af3cf474bed79dfc248c1f5aea4b8b32c5d295e57fa9c0fe662a46b7f71cd47744db86c50b704c98ad90295c7b2c7439a2d78ccfa79b5fc2bff6bbf840262bf89394b3e0691953264d2700c838fa2c7b3425260f59554e502dcea39cb313b0000000000004ca7c12f45858d6284ca6270d6b2f0e58fded8a7b4a302a97bc641df07720ba2b26bbfcc807ca0abb1b44322269c21c5ec68cb068ea88067d905ea917bb03eefdaebdeabf2d0dce80997c915c8949de992587c2cb5fe360500000000000000b77940b5f07722e47a08d3679507000000000000934b99b3109af65d77e86abd6859cddf4bbae1f0930462df15fddbc48562ea3511a8065ef028cf12f14dcf6ebecd8d8872fe174faf1aa609e5f1ee1062dfa13bdc1fa7cfaadba85c72e9758f03a755d0be53f8d2a1df0d07b3d5bd3b01faffd0addbed2881a9700af561ac8c7e36bb2fc4c40e9c766c06817bb903729a7db6ff957697c9ede7885d94ffb0759be0daf60af93109eb1dee72e4363f51af62af6fb2a6df3bec89822a7a0b678058fa3fef86faec216eb6992162f8dcbf719c1484d2f980000000203a9a8a2c3e90f39c3dbc10360a1a49700d1dfbf66d69f6fbaf506c8bcce8bb0d872a02238926407a4eddd5d00000000000000000000000000004000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000060000000000000000000000000000000000000000000000000000000000000000000000000000000000004000", 0x1000}}, 0x1006) r6 = syz_genetlink_get_family_id$batadv(&(0x7f00000002c0), 0xffffffffffffffff) sendmsg$BATADV_CMD_GET_VLAN(r5, &(0x7f0000000380)={&(0x7f0000000280)={0x10, 0x0, 0x0, 0x100000}, 0xc, &(0x7f0000000340)={&(0x7f0000000300)={0x1c, r6, 0x20, 0x70bd25, 0x25dfdbfe, {}, [@BATADV_ATTR_ORIG_INTERVAL={0x8, 0x39, 0x80}]}, 0x1c}, 0x1, 0x0, 0x0, 0x24044801}, 0x0) r7 = syz_io_uring_setup(0x110, &(0x7f0000000140)={0x0, 0xf2fe, 0x0, 0x1, 0x250}, &(0x7f0000000000)=0x0, &(0x7f0000000040)=0x0) syz_memcpy_off$IO_URING_METADATA_GENERIC(r8, 0x4, &(0x7f0000000080)=0xfffffffc, 0x0, 0x4) socketpair$nbd(0x1, 0x1, 0x0, &(0x7f0000000240)={0xffffffffffffffff, 0xffffffffffffffff}) syz_io_uring_submit(r8, r9, &(0x7f00000004c0)=@IORING_OP_RECV=@use_registered_buffer={0x1b, 0x30, 0x2, r10, 0x0, 0x0, 0x0, 0x40, 0x1, {0x1}}) io_uring_enter(r7, 0x8aa, 0x0, 0x4, 0x0, 0x0) close_range(r3, 0xffffffffffffffff, 0x0) 53.037780939s ago: executing program 4 (id=2861): r0 = socket$kcm(0x11, 0x3, 0x0) setsockopt$sock_attach_bpf(0xffffffffffffffff, 0x107, 0xf, &(0x7f0000000000), 0x2) sendmsg$kcm(r0, 0x0, 0x4) bpf$PROG_LOAD_XDP(0x5, 0x0, 0x0) prlimit64(0x0, 0xe, 0x0, 0x0) socket$rds(0x15, 0x5, 0x0) ioctl$PPPIOCBRIDGECHAN(0xffffffffffffffff, 0x40047435, &(0x7f0000000300)=0x8) sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) socketpair$unix(0x1, 0x2, 0x0, 0x0) connect$unix(0xffffffffffffffff, 0x0, 0x0) r1 = syz_open_dev$vim2m(&(0x7f0000000000), 0x47b, 0x2) ioctl$vim2m_VIDIOC_S_CTRL(r1, 0xc008561c, &(0x7f0000000040)={0xf0f080, 0x1}) r2 = socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000040), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_80211(r2, 0x8933, &(0x7f0000000740)={'wlan1\x00', 0x0}) r5 = socket$nl_generic(0x10, 0x3, 0x10) syz_genetlink_get_family_id$nl80211(&(0x7f0000000240), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_80211(r5, 0x8933, 0x0) r6 = socket$nl_generic(0x10, 0x3, 0x10) sendmsg$NL80211_CMD_REGISTER_FRAME(r6, &(0x7f0000000340)={0x0, 0x0, 0x0}, 0x0) r7 = socket$nl_generic(0x10, 0x3, 0x10) sendmsg$NL80211_CMD_REGISTER_FRAME(r7, &(0x7f00000005c0)={0x0, 0x0, &(0x7f0000000140)={&(0x7f0000000c80)=ANY=[@ANYBLOB='$\x00\x00\x00', @ANYRES16=r3, @ANYBLOB="010000000000000000003a00000008000300", @ANYRES32=r4, @ANYBLOB="05005b"], 0x24}}, 0x0) r8 = socket$nl_generic(0x10, 0x3, 0x10) r9 = syz_genetlink_get_family_id$nl80211(&(0x7f0000000200), 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_80211(r8, 0x8933, &(0x7f0000000700)={'wlan1\x00', 0x0}) sendmsg$NL80211_CMD_SET_INTERFACE(r8, &(0x7f0000000340)={0x0, 0x0, &(0x7f0000000300)={&(0x7f0000000240)={0x24, r9, 0x5, 0x0, 0x0, {{}, {@val={0x8, 0x3, r10}, @void}}, [@NL80211_ATTR_IFTYPE={0x8, 0x5, 0x2}]}, 0x24}}, 0x0) 52.741023431s ago: executing program 4 (id=2865): prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000000)={0x8, 0x100008b}, 0x0) sched_setaffinity(0x0, 0x11, &(0x7f0000000180)=0x1400200bce) sched_setscheduler(0x0, 0x1, &(0x7f0000002200)=0x1) r0 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r0, &(0x7f000001b700)=""/102392, 0x18ff8) r1 = fsopen(&(0x7f0000000280)='ceph\x00', 0x0) fsconfig$FSCONFIG_SET_STRING(r1, 0x1, &(0x7f0000000000)='source', &(0x7f0000000040)='c:::\x00', 0x0) openat$procfs(0xffffffffffffff9c, 0x0, 0x0, 0x0) mount$9p_fd(0x0, &(0x7f0000000140)='.\x00', &(0x7f0000000080), 0x0, &(0x7f0000000340)=ANY=[]) r2 = socket$inet6_sctp(0xa, 0x5, 0x84) setsockopt$inet_sctp6_SCTP_SOCKOPT_BINDX_ADD(r2, 0x84, 0x64, &(0x7f0000000080)=[@in={0x2, 0x4e20, @empty}, @in={0x2, 0x4e21, @empty}, @in6={0xa, 0x4e20, 0x7fff, @private2={0xfc, 0x2, '\x00', 0x1}, 0x4}, @in6={0xa, 0x6e23, 0x7ff, @dev={0xfe, 0x80, '\x00', 0x19}, 0xbcacbe}], 0x58) r3 = syz_open_procfs(0x0, &(0x7f0000000140)='status\x00') preadv(r3, &(0x7f0000000000)=[{&(0x7f0000000240)=""/135, 0x87}], 0x1, 0x0, 0x0) r4 = socket$nl_route(0x10, 0x3, 0x0) r5 = socket$nl_generic(0x10, 0x3, 0x10) ioctl$ifreq_SIOCGIFINDEX_batadv_mesh(r5, 0x8933, &(0x7f0000000440)) sendmsg$BATADV_CMD_SET_MESH(r5, 0x0, 0x0) sendmsg$nl_route(r4, 0x0, 0xa0) openat$ttyS3(0xffffffffffffff9c, &(0x7f0000001480), 0x42002, 0x0) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) sched_setaffinity(0x0, 0x0, 0x0) sendmsg$NL80211_CMD_ADD_TX_TS(r5, &(0x7f00000004c0)={0x0, 0x0, &(0x7f0000000480)={&(0x7f00000003c0)={0x2c, 0x0, 0x100, 0x70bd27, 0x25dfdbfc, {{}, {@val={0x8}, @void}}, [@NL80211_ATTR_TSID={0x5, 0xd2, 0x2}, @NL80211_ATTR_ADMITTED_TIME={0x6}]}, 0x2c}, 0x1, 0x0, 0x0, 0x40040}, 0x1) pipe(&(0x7f0000000240)) socketpair(0x1, 0x20000000000001, 0x0, 0x0) 36.601976394s ago: executing program 33 (id=2865): prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000000)={0x8, 0x100008b}, 0x0) sched_setaffinity(0x0, 0x11, &(0x7f0000000180)=0x1400200bce) sched_setscheduler(0x0, 0x1, &(0x7f0000002200)=0x1) r0 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r0, &(0x7f000001b700)=""/102392, 0x18ff8) r1 = fsopen(&(0x7f0000000280)='ceph\x00', 0x0) fsconfig$FSCONFIG_SET_STRING(r1, 0x1, &(0x7f0000000000)='source', &(0x7f0000000040)='c:::\x00', 0x0) openat$procfs(0xffffffffffffff9c, 0x0, 0x0, 0x0) mount$9p_fd(0x0, &(0x7f0000000140)='.\x00', &(0x7f0000000080), 0x0, &(0x7f0000000340)=ANY=[]) r2 = socket$inet6_sctp(0xa, 0x5, 0x84) setsockopt$inet_sctp6_SCTP_SOCKOPT_BINDX_ADD(r2, 0x84, 0x64, &(0x7f0000000080)=[@in={0x2, 0x4e20, @empty}, @in={0x2, 0x4e21, @empty}, @in6={0xa, 0x4e20, 0x7fff, @private2={0xfc, 0x2, '\x00', 0x1}, 0x4}, @in6={0xa, 0x6e23, 0x7ff, @dev={0xfe, 0x80, '\x00', 0x19}, 0xbcacbe}], 0x58) r3 = syz_open_procfs(0x0, &(0x7f0000000140)='status\x00') preadv(r3, &(0x7f0000000000)=[{&(0x7f0000000240)=""/135, 0x87}], 0x1, 0x0, 0x0) r4 = socket$nl_route(0x10, 0x3, 0x0) r5 = socket$nl_generic(0x10, 0x3, 0x10) ioctl$ifreq_SIOCGIFINDEX_batadv_mesh(r5, 0x8933, &(0x7f0000000440)) sendmsg$BATADV_CMD_SET_MESH(r5, 0x0, 0x0) sendmsg$nl_route(r4, 0x0, 0xa0) openat$ttyS3(0xffffffffffffff9c, &(0x7f0000001480), 0x42002, 0x0) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) sched_setaffinity(0x0, 0x0, 0x0) sendmsg$NL80211_CMD_ADD_TX_TS(r5, &(0x7f00000004c0)={0x0, 0x0, &(0x7f0000000480)={&(0x7f00000003c0)={0x2c, 0x0, 0x100, 0x70bd27, 0x25dfdbfc, {{}, {@val={0x8}, @void}}, [@NL80211_ATTR_TSID={0x5, 0xd2, 0x2}, @NL80211_ATTR_ADMITTED_TIME={0x6}]}, 0x2c}, 0x1, 0x0, 0x0, 0x40040}, 0x1) pipe(&(0x7f0000000240)) socketpair(0x1, 0x20000000000001, 0x0, 0x0) 14.185997407s ago: executing program 3 (id=2927): r0 = socket$nl_generic(0x10, 0x3, 0x10) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r1 = getpid() sched_setscheduler(r1, 0x1, &(0x7f0000000400)=0x7) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000380)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f0000000180)=@abs, 0x6e) sendmmsg$unix(r3, &(0x7f00000bd000), 0x318, 0x0) recvmmsg(r2, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000200)=0x4) r4 = io_uring_setup(0x6282, &(0x7f0000000080)) io_uring_register$IORING_REGISTER_BUFFERS(r4, 0x0, 0x0, 0x0) r5 = socket$nl_generic(0x10, 0x3, 0x10) bpf$BPF_PROG_DETACH(0x9, &(0x7f0000000640)={@cgroup, 0xffffffffffffffff, 0xf, 0x20, 0x0, @void, @void, @void, @value=0xffffffffffffffff}, 0x20) r6 = syz_genetlink_get_family_id$nl80211(0x0, 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_80211(r5, 0x8933, &(0x7f0000000080)={'wlan1\x00', 0x0}) syz_genetlink_get_family_id$ethtool(&(0x7f00000003c0), r0) sendmsg$NL80211_CMD_JOIN_IBSS(r5, &(0x7f0000000300)={0x0, 0x0, &(0x7f0000000580)={&(0x7f0000000340)={0x1c, r6, 0x101, 0x0, 0x0, {{}, {@val={0x8, 0x3, r7}, @void}}}, 0x1c}, 0x1, 0x0, 0x0, 0x4010}, 0x0) r8 = syz_open_dev$loop(0x0, 0x4, 0x2a82) r9 = syz_open_dev$loop(&(0x7f0000000080), 0x2000000007, 0x8000) ioctl$LOOP_CONFIGURE(r9, 0x4c0a, &(0x7f0000000880)={r8, 0x0, {0x2a00, 0x80010000, 0x0, 0x4, 0x202, 0x0, 0x2, 0x20003, 0x90dcee9397caba8d, "fee8a2ab78fc179fd1f8a0e91ddaaca7bd64c683dda1af1ea80000000033000000000000deff0000000000000000000000000000000800", "2809e8dbe108038948224ad54a0ec11d875397bd7561ac000000000000000000000063000804000000000000000001000000000000000800", "90be555a55f9640000000000000000070000000000e7ff000000a3d402008000", [0xffffffffffffbf00, 0x9]}}) ioctl$vim2m_VIDIOC_S_CTRL(0xffffffffffffffff, 0xc008561c, &(0x7f0000000040)={0xf0f024}) ioctl$vim2m_VIDIOC_S_FMT(0xffffffffffffffff, 0xc0d05605, &(0x7f0000000200)={0x2, @sliced={0x4, [0x0, 0xb95, 0x6, 0x0, 0x3, 0x6d3, 0xf, 0x6, 0x4, 0x80, 0x7fff, 0x9, 0x1, 0x1000, 0x4, 0x7, 0x2, 0xad, 0xfff, 0x7, 0x8, 0xfffc, 0x5, 0x8000, 0x800, 0x6, 0x2e53, 0x975f, 0x4, 0x1, 0x9, 0x8001, 0xa, 0x1, 0x7, 0x2, 0x9, 0x6, 0x7e70, 0x0, 0x47, 0x5, 0xff, 0xfff9, 0xd06, 0x2, 0x1, 0xbb7], 0x3ff}}) unshare(0x20000400) r10 = socket$nl_generic(0x10, 0x3, 0x10) r11 = syz_genetlink_get_family_id$gtp(&(0x7f0000000400), 0xffffffffffffffff) sendmsg$GTP_CMD_GETPDP(r10, &(0x7f0000000300)={0x0, 0x0, &(0x7f00000002c0)={&(0x7f0000000240)={0x1c, r11, 0x1, 0x0, 0x0, {}, [@GTPA_VERSION={0x8}]}, 0x1c}}, 0x0) 14.09756692s ago: executing program 1 (id=2928): openat$mixer(0xffffffffffffff9c, 0x0, 0x0, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f00000001c0)=0x8) sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) syz_open_dev$sndmidi(0x0, 0xe4, 0x189400) r0 = socket$nl_xfrm(0x10, 0x3, 0x6) ioctl$TUNSETIFF(0xffffffffffffffff, 0x400454ca, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000640)=0x2) sched_setaffinity(0x0, 0x8, &(0x7f0000000280)=0x2) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r1 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r1, &(0x7f0000019680)=""/102392, 0x18ff8) r2 = openat$udambuf(0xffffffffffffff9c, &(0x7f0000000040), 0x2) r3 = memfd_create(0x0, 0x2) ftruncate(r3, 0x1000006) fcntl$addseals(r3, 0x409, 0x7) ioctl$UDMABUF_CREATE(r2, 0x40187542, &(0x7f0000000000)={r3, 0x0, 0x0, 0x1000000}) sendmsg$nl_xfrm(r0, &(0x7f0000000480)={0x0, 0x0, &(0x7f0000001f40)={0x0, 0xfc}}, 0x0) socket$nl_generic(0x10, 0x3, 0x10) syz_genetlink_get_family_id$tipc2(&(0x7f00000002c0), 0xffffffffffffffff) r4 = socket$inet6(0xa, 0x3, 0x6) bind$inet6(r4, &(0x7f0000000480)={0xa, 0x0, 0x0, @mcast1={0xff, 0x5}}, 0x1c) socket$nl_xfrm(0x10, 0x3, 0x6) syz_genetlink_get_family_id$netlbl_unlabel(&(0x7f00000000c0), 0xffffffffffffffff) sendmsg$NLBL_UNLABEL_C_ACCEPT(0xffffffffffffffff, &(0x7f0000000d80)={0x0, 0x0, &(0x7f0000000d40)={&(0x7f0000000380)=ANY=[], 0x14}}, 0x200408b4) syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) 13.373861853s ago: executing program 2 (id=2929): fsopen(0x0, 0x0) syz_open_dev$cec(&(0x7f0000000000), 0x0, 0x82000) r0 = socket$inet_mptcp(0x2, 0x1, 0x106) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r1 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r1, 0x2, &(0x7f0000000200)=0x6) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r3, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r2, &(0x7f00000000c0), 0x10106, 0x2, 0x0) r4 = bpf$PROG_LOAD(0x5, &(0x7f0000000380)={0x11, 0x3, &(0x7f0000000300)=ANY=[], &(0x7f0000000200)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x35, 0x0, 0x0, 0x0, 0x11, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x7, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000180)={&(0x7f0000000080)='sched_switch\x00', r4}, 0x10) sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) bpf$BPF_PROG_WITH_BTFID_LOAD(0x5, 0x0, 0x0) bind$inet(r0, &(0x7f0000000080)={0x2, 0x4e24, @multicast2}, 0x10) syz_open_dev$tty1(0xc, 0x4, 0x1) connect$inet(r0, &(0x7f00000009c0)={0x2, 0x4e24, @dev={0xac, 0x14, 0x14, 0x21}}, 0x10) r5 = socket$nl_netfilter(0x10, 0x3, 0xc) r6 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000300)=ANY=[@ANYBLOB="18010000120000000000000000000000850000006d000000180100002020642500000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b70300000000"], &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x10, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000240)={&(0x7f0000000280)='contention_end\x00', r6}, 0x10) sendmsg$IPSET_CMD_CREATE(r5, &(0x7f0000000200)={0x0, 0x0, &(0x7f0000000000)={&(0x7f0000000080)=ANY=[@ANYBLOB="5c00000002060104000000000000000000000000050005000a000000050004000000000015000300686173683a69702c706f72742c6e655c0000000005000100070000000c0007800800124009000000090002"], 0x5c}}, 0x0) writev(r0, &(0x7f0000000200)=[{&(0x7f00000000c0)='X', 0x8030000}], 0x1) shutdown(r0, 0x1) mkdir(&(0x7f0000000180)='./file0\x00', 0x0) 13.222908929s ago: executing program 3 (id=2931): r0 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route(r0, &(0x7f00000002c0)={0x0, 0x0, &(0x7f0000000140)={&(0x7f0000000500)=ANY=[@ANYBLOB="5000008072003303000000000000000007000000", @ANYRES32=0x0, @ANYBLOB="0800010001000000080001000100000005000100000000000800010001000000080001000000000008000100010000000800010000000000"], 0x50}}, 0x0) r1 = socket$nl_generic(0x10, 0x3, 0x10) sendmsg$nl_generic(0xffffffffffffffff, &(0x7f0000000180)={0x0, 0x0, 0x0, 0x1, 0x0, 0x0, 0x1}, 0x0) creat(&(0x7f0000000280)='./file0\x00', 0x80) modify_ldt$write(0x1, &(0x7f00000000c0), 0x10) modify_ldt$read(0x0, &(0x7f0000002200)=""/229, 0xe5) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r2 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route(r2, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000040)={&(0x7f0000000280)=@ipmr_delroute={0x24, 0x19, 0x1, 0x0, 0x25dfdbfb, {0x80, 0x20, 0x14, 0x0, 0x0, 0x11, 0x0, 0x5}, [@RTA_TABLE={0x8, 0xf, 0xfffffffe}]}, 0x24}}, 0x8000) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) socket(0x10, 0x2, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000240)=0x8) sched_setaffinity(0x0, 0x8, &(0x7f0000000200)=0x400000bce) r3 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) syz_usb_connect(0x4, 0x0, 0x0, 0x0) read$msr(r3, &(0x7f0000019680)=""/102392, 0x18ff8) r4 = socket$nl_rdma(0x10, 0x3, 0x14) sendmsg$nl_route(r0, &(0x7f00000003c0)={&(0x7f0000000080)={0x10, 0x0, 0x0, 0x8}, 0xc, &(0x7f0000000380)={&(0x7f0000000340)=@ipv6_delroute={0x28, 0x19, 0x800, 0x70bd28, 0x25dfdbfb, {0xa, 0x10, 0x14, 0x6, 0xff, 0x4, 0x0, 0x7, 0x800}, [@RTA_MULTIPATH={0xc, 0x9, {0xe81f, 0x4, 0x81}}]}, 0x28}, 0x1, 0x0, 0x0, 0x4}, 0x20000000) sendmsg$RDMA_NLDEV_CMD_NEWLINK(r4, &(0x7f0000000240)={0x0, 0x12, &(0x7f0000000200)={&(0x7f0000000000)={0x38, 0x1403, 0x1, 0xf, 0x25dfdbfc, "", [{{0x9, 0x2, 'syz2\x00'}, {0x8, 0x41, 'siw\x00'}, {0x14, 0x33, 'wlan0\x00'}}]}, 0x38}, 0x1, 0x0, 0x0, 0x8080}, 0x8810) r5 = socket$inet6(0xa, 0x2, 0x0) socket$inet6(0xa, 0x2, 0x0) connect$inet6(r5, &(0x7f0000000000)={0xa, 0x4e23, 0x5, @mcast1, 0x9}, 0x1c) syz_emit_ethernet(0x3a, &(0x7f0000000640)=ANY=[@ANYBLOB="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"], 0x0) sendmsg$nl_generic(r1, &(0x7f0000000140)={0x0, 0x0, &(0x7f0000001ac0)={&(0x7f0000000180)=ANY=[@ANYBLOB="1c0000002c00010026bd9300fcdbdf250400000008000c"], 0x1c}, 0x1, 0x0, 0x0, 0x4000d}, 0x20000000) syz_emit_ethernet(0x141, &(0x7f0000000a40)=ANY=[@ANYBLOB="0180c200000000000000000008004dff013300650000de069078ac1414bbe00000018604760344281920000001ff000000030000000600000040000000070000000600000004000000070000000044342233ffffffff00000000ac1e000100000009ac1414bb0000dfefac1414aa000000047f0000010000000a0a010101000001014e224e23", @ANYRES32=0x41424344, @ANYRES32=0x41424344, @ANYBLOB="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"], 0x0) 11.526532389s ago: executing program 2 (id=2932): syz_init_net_socket$bt_l2cap(0x1f, 0x1, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0xa, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) r0 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f0000000180)=@abs, 0x6e) ioprio_get$pid(0x0, r0) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) r3 = bpf$MAP_CREATE(0x0, &(0x7f0000000100)=@base={0x1, 0x1, 0x7fe2, 0x1, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x0, 0xc, &(0x7f0000000440)=@framed={{}, [@ringbuf_output={{0x18, 0x1, 0x1, 0x0, r3}, {0x7, 0x0, 0xb, 0x8, 0x0, 0x0, 0x5}, {}, {}, {}, {}, {}, {0x85, 0x0, 0x0, 0x3}}]}, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) r4 = socket(0x10, 0x2, 0x0) setsockopt$netlink_NETLINK_LISTEN_ALL_NSID(r4, 0x10e, 0x8, 0x0, 0x0) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, 0x0, 0x0) mkdirat$cgroup_root(0xffffffffffffff9c, &(0x7f0000000000)='./cgroup.cpu/syz0\x00', 0x1ff) bpf$BPF_PROG_WITH_BTFID_LOAD(0x5, &(0x7f0000000300)=@bpf_lsm={0xd, 0x5, &(0x7f0000000040)=@framed={{0x26, 0xa, 0x0, 0x0, 0x0, 0x61, 0x11, 0x9c}, [@initr0]}, &(0x7f0000000000)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x1b, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x80) socket$netlink(0x10, 0x3, 0x0) sendmsg$nl_route_sched(0xffffffffffffffff, &(0x7f0000000280)={0x0, 0x0, 0x0, 0x1, 0x0, 0x0, 0x55}, 0x4000) r5 = getpid() sched_setscheduler(r5, 0x2, &(0x7f0000000200)=0x7) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000003c0)={&(0x7f0000000400)='io_uring_poll_arm\x00', 0xffffffffffffffff, 0x0, 0xfffffffffffffffc}, 0x18) sendmsg$IPCTNL_MSG_CT_NEW(0xffffffffffffffff, &(0x7f0000000080)={0x0, 0x0, &(0x7f00000000c0)={&(0x7f00000005c0)=ANY=[@ANYBLOB], 0xb8}}, 0x0) 11.461154463s ago: executing program 5 (id=2933): r0 = syz_init_net_socket$bt_hci(0x1f, 0x3, 0x1) bind$bt_hci(r0, &(0x7f00000000c0)={0x1f, 0xffff, 0x3}, 0x6) write(r0, &(0x7f0000000000), 0x0) socket$nl_generic(0x10, 0x3, 0x10) syz_genetlink_get_family_id$ipvs(&(0x7f0000000080), 0xffffffffffffffff) openat$cachefiles(0xffffffffffffff9c, 0x0, 0x1, 0x0) socket$can_bcm(0x1d, 0x2, 0x2) sendmsg$nl_route_sched(0xffffffffffffffff, 0x0, 0x0) mkdir(&(0x7f0000000440)='./file1\x00', 0x1) mount(0x0, &(0x7f0000000240)='./file1\x00', &(0x7f0000000000)='tmpfs\x00', 0x0, &(0x7f0000000300)='usrquota') r1 = syz_init_net_socket$bt_l2cap(0x1f, 0x2, 0x0) chdir(&(0x7f0000000140)='./file1\x00') ioctl$TIOCSERGETLSR(0xffffffffffffffff, 0x5459, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000180)=0x4) sched_setaffinity(0x0, 0x8, &(0x7f00000000c0)=0xfffffffffffffffe) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) ioctl$VFAT_IOCTL_READDIR_BOTH(r1, 0x82307201, &(0x7f0000002600)=[{0x0, 0x0, 0x100}, {0x0, 0x0, 0x100}]) r2 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r2, &(0x7f0000019680)=""/102392, 0x18ff8) ioctl$IOMMU_TEST_OP_ADD_RESERVED(0xffffffffffffffff, 0x3ba0, &(0x7f0000000440)={0x48, 0x1, 0x0, 0x0, 0x97, 0x8000000}) r3 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f0000000040)='net_prio.prioidx\x00', 0x275a, 0x0) read$FUSE(r3, &(0x7f00000005c0)={0x2020, 0x0, 0x0, 0x0}, 0x2020) quotactl_fd$Q_SETQUOTA(r3, 0x2, r4, 0x0) fchown(r3, 0xee01, 0x0) 11.436321431s ago: executing program 1 (id=2934): r0 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route_sched(r0, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000040)={&(0x7f00000000c0)=@newtaction={0xa4, 0x30, 0x1, 0x70bd2b, 0x0, {}, [{0x90, 0x1, [@m_ct={0x44, 0x2, 0x0, 0x0, {{0x7}, {0x1c, 0x2, 0x0, 0x1, [@TCA_CT_PARMS={0x18, 0x1, {0x9d, 0x11e41e7a, 0x20000000, 0x0, 0xf}}]}, {0x4}, {0xc, 0x7, {0x0, 0x1}}, {0xc, 0x8, {0x0, 0x1}}}}, @m_ife={0x48, 0x1, 0x0, 0x0, {{0x8}, {0x20, 0x2, 0x0, 0x1, [@TCA_IFE_PARMS={0x1c, 0x1, {{0x0, 0x0, 0x7}}}]}, {0x4}, {0xc}, {0xc}}}]}]}, 0xa4}, 0x1, 0x0, 0x0, 0x804}, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r1 = socket$inet6_dccp(0xa, 0x6, 0x0) bind$inet6(r1, &(0x7f0000000100)={0xa, 0x4e20, 0x0, @ipv4={'\x00', '\xff\xff', @local}}, 0x1c) connect$inet6(r1, &(0x7f0000000000)={0xa, 0x4e21, 0x6, @ipv4={'\x00', '\xff\xff', @broadcast}}, 0x1c) r2 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r2, 0x2, 0x0) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeef, 0x8031, 0xffffffffffffffff, 0x0) remap_file_pages(&(0x7f0000800000/0x800000)=nil, 0x800000, 0x0, 0x0, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) dup2(r3, r3) sendmmsg$unix(r4, &(0x7f0000000000), 0x400000000000041, 0x0) sched_setaffinity(r2, 0x8, &(0x7f0000000240)=0x2) recvmmsg(r3, &(0x7f00000000c0), 0x10106, 0x2, 0x0) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000740)={&(0x7f00000006c0)='sched_switch\x00'}, 0x10) syz_open_dev$sndmidi(&(0x7f0000000040), 0x2, 0x141101) syz_io_uring_setup(0x4e1, &(0x7f0000000380)={0x0, 0x1ffffa, 0x10100, 0x10000}, &(0x7f0000000180), &(0x7f00000001c0)) r5 = socket$inet6_mptcp(0xa, 0x1, 0x106) sendto$inet6(r5, 0x0, 0x0, 0x20004041, 0x0, 0x0) connect$inet6(r5, &(0x7f0000000280)={0xa, 0x0, 0x0, @dev, 0x7}, 0x1c) r6 = socket$nl_generic(0x10, 0x3, 0x10) r7 = syz_genetlink_get_family_id$mptcp(&(0x7f00000002c0), 0xffffffffffffffff) sendmsg$MPTCP_PM_CMD_ADD_ADDR(r6, &(0x7f0000000480)={0x0, 0x0, &(0x7f0000000440)={&(0x7f00000001c0)=ANY=[@ANYBLOB='(\x00\x00\x00', @ANYRES16=r7, @ANYBLOB="0900000000000000000002000000140001800500020001"], 0x28}}, 0x0) sendmsg$nl_route(0xffffffffffffffff, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000200)={&(0x7f0000001280)=ANY=[@ANYBLOB="3c00000010001ffe00989837a182138b00268f1c", @ANYRES32=0x0, @ANYBLOB="ff7f000000000000140012800a00010076786c616e0000000400028008000a00", @ANYRESHEX], 0x3c}, 0x1, 0x8000a0ffffffff}, 0x0) 10.368338134s ago: executing program 2 (id=2935): r0 = socket$nl_route(0x10, 0x3, 0x0) ioctl$sock_SIOCETHTOOL(r0, 0x8946, &(0x7f0000000040)={'hsr0\x00', &(0x7f00000000c0)=@ethtool_coalesce={0xf, 0x4, 0x6, 0x7ff, 0x9, 0x6080, 0xfb75, 0x1, 0x12f5, 0x2, 0x8, 0x200003, 0x65, 0x8, 0xc5, 0x0, 0x4, 0x5, 0x3, 0x280, 0x4dbf, 0x10, 0x4}}) getsockopt$inet_sctp_SCTP_GET_PEER_ADDRS(0xffffffffffffffff, 0x84, 0x6c, 0x0, 0x0) r1 = socket$packet(0x11, 0x3, 0x300) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r2 = socket(0x40000000015, 0x5, 0x0) connect$inet(r2, &(0x7f0000000040)={0x2, 0x0, @loopback}, 0x10) ioctl$KVM_CREATE_VM(0xffffffffffffffff, 0xae01, 0x0) sendmsg$nl_route_sched(0xffffffffffffffff, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000040)={&(0x7f00000000c0)=@newtaction={0xa4, 0x30, 0x1, 0x0, 0x0, {}, [{0x90, 0x1, [@m_ct={0x44, 0x2, 0x0, 0x0, {{0x7}, {0x1c, 0x2, 0x0, 0x1, [@TCA_CT_PARMS={0x18, 0x1, {0x9d, 0x11e41e7a, 0x20000000, 0x7, 0xf}}]}, {0x4}, {0xc, 0x7, {0x0, 0x1}}, {0xc, 0x8, {0x0, 0x1}}}}, @m_ife={0x48, 0x1, 0x0, 0x0, {{0x8}, {0xfffffffffffffead, 0x2, 0x0, 0x1, [@TCA_IFE_PARMS={0x1c, 0x1, {{0x0, 0x0, 0x10000000}}}]}, {0x3}, {0xc}, {0xc}}}]}]}, 0xa4}, 0x1, 0x0, 0x0, 0x804}, 0x0) syz_genetlink_get_family_id$nfc(&(0x7f0000000100), 0xffffffffffffffff) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r3 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeef, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r4, &(0x7f000057eff8)=@file={0x0, './file0\x00'}, 0x6e) sendmmsg$unix(r5, &(0x7f0000000000), 0x400000000000041, 0x0) sched_setaffinity(r3, 0x8, &(0x7f0000000240)=0x2) recvmmsg(r4, &(0x7f00000000c0), 0x10106, 0x2, 0x0) bind$inet(r2, &(0x7f0000000340)={0x2, 0x0, @loopback}, 0x57) sendmsg$xdp(r2, &(0x7f0000000100)={0x0, 0x0, 0x0}, 0x0) recvmmsg(r2, &(0x7f0000000b40)=[{{0x0, 0x0, 0x0, 0x0, &(0x7f0000000280)=""/11, 0xb}}], 0x5df, 0x2, 0x0) setsockopt$packet_int(r1, 0x107, 0xa, 0x0, 0x0) close(r1) bpf$MAP_CREATE(0x0, &(0x7f0000000480)=@bloom_filter={0x1e, 0x1, 0x6, 0x0, 0x20000, 0xffffffffffffffff, 0x5, '\x00', 0x0, 0xffffffffffffffff, 0x1, 0x0, 0x4, 0xb, @void, @value, @void, @value}, 0x50) 10.03611318s ago: executing program 3 (id=2936): bpf$PROG_LOAD_XDP(0x5, &(0x7f0000000780)={0x5, 0xb, &(0x7f0000000180)=ANY=[@ANYBLOB="1804000000000000000000000000000018010000696c6c2500000000002020207b1af8ff00000000bfa100000000000007010000f8ffffffb702000008000000b70300000000000085000000b100000095"], 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x25, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x90) r0 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xb, &(0x7f0000000180)=ANY=[], &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x90) ioctl$KVM_SET_CPUID(0xffffffffffffffff, 0x4008ae8a, &(0x7f0000000200)={0x5, 0x0, [{0x7, 0x6, 0x6, 0x9, 0x3}, {0xc0000000, 0xa0000, 0x3ff, 0x38, 0x8}, {0x0, 0x1, 0x3, 0x8, 0xfffffb09}, {0x2, 0xc0c, 0xf, 0xfffffffc, 0x3000}, {0x8, 0x3, 0x6, 0x7, 0xffff}]}) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000040)={&(0x7f0000000080)='percpu_create_chunk\x00', r0}, 0x18) bpf$MAP_CREATE(0x0, &(0x7f0000000840)=@base={0xa, 0x101, 0x7fff, 0xcc, 0x0, 0xffffffffffffffff, 0x0, '\x00', 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, @void, @value, @void, @value}, 0x48) mknod$loop(&(0x7f0000000000)='./file0\x00', 0x100000000000600d, 0x1) setsockopt$EBT_SO_SET_ENTRIES(0xffffffffffffffff, 0x0, 0x80, &(0x7f0000000300)=@broute={'broute\x00', 0x20, 0x0, 0x90, [0x0, 0x0, 0x0, 0x0, 0x0, 0x400000000040], 0x0, 0x0, &(0x7f0000000040)=[{0x0, '\x00', 0x0, 0xffffffffffffffff}, {0x0, '\x00', 0x0, 0xfffffffffffffffc}, {0x0, '\x00', 0x0, 0xfffffffffffffffe}]}, 0x108) r1 = socket$inet_icmp(0x2, 0x2, 0x1) io_uring_setup(0x74d6, &(0x7f0000000480)={0x0, 0x64c5, 0x800, 0xffffffff, 0x261}) preadv(0xffffffffffffffff, &(0x7f0000000240)=[{&(0x7f0000033a80)=""/102386, 0xfffffd6e}], 0x1, 0x0, 0x0) r2 = syz_open_dev$vbi(&(0x7f0000000000), 0x1, 0x2) ioctl$VIDIOC_QBUF(r2, 0xc058565d, 0x0) r3 = creat(&(0x7f0000000040)='./bus\x00', 0x0) r4 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f00000000c0)='blkio.bfq.time_recursive\x00', 0x275a, 0x0) copy_file_range(r4, 0x0, r3, &(0x7f0000000100), 0xfffffffffffffff8, 0x0) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000200)=0x3) sched_setaffinity(0x0, 0x8, &(0x7f0000000100)=0x400200bce) r5 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) socketpair(0x1cc0bac9dde8779c, 0x3, 0x5, &(0x7f0000000280)) read$msr(r5, &(0x7f0000019680)=""/102392, 0x18ff8) mprotect(&(0x7f0000ffd000/0x3000)=nil, 0x3000, 0x1) splice(0xffffffffffffffff, 0x0, 0xffffffffffffffff, 0x0, 0x10d00, 0x0) r6 = socket(0x10, 0x3, 0x0) sendmsg$nl_route_sched(r6, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000780)={&(0x7f0000000380)=@newqdisc={0x2c, 0x24, 0xd0f, 0x470bd2d, 0xfffffffd, {0x60, 0x0, 0x0, 0x0, {0x0, 0xfff2}, {0xfff1, 0xffff}, {0x0, 0xffff}}, [@TCA_INGRESS_BLOCK={0x8, 0xd, 0x800}]}, 0x2c}}, 0x44080) setsockopt$EBT_SO_SET_ENTRIES(r1, 0x0, 0x80, &(0x7f0000000300)=@broute={'broute\x00', 0x20, 0x0, 0x90, [0x0, 0x0, 0x0, 0x0, 0x0, 0x400000000040], 0x0, 0x0, &(0x7f0000000040)=[{0x0, '\x00', 0x0, 0xffffffffffffffff}, {0x0, '\x00', 0x0, 0xfffffffffffffffc}, {0x0, '\x00', 0x0, 0xfffffffffffffffe}]}, 0x108) 9.560884806s ago: executing program 5 (id=2937): madvise(&(0x7f0000000000/0x800000)=nil, 0x800000, 0xe) prlimit64(0x0, 0xe, &(0x7f0000000040)={0x8, 0x420000008b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r0 = getpid() sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x7) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f0000000180)=@abs, 0x6e) sendmmsg$unix(r2, &(0x7f00000bd000), 0x318, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) mkdirat$cgroup_root(0xffffffffffffff9c, &(0x7f0000000040)='./cgroup.net/syz0\x00', 0x1ff) r3 = openat$cgroup_root(0xffffffffffffff9c, 0x0, 0x200002, 0x0) r4 = openat$cgroup_devices(r3, &(0x7f0000000100)='devices.allow\x00', 0x2, 0x0) bpf$BPF_PROG_QUERY(0x10, &(0x7f00000001c0)={@fallback=r4, 0x1e, 0x0, 0xb3f, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}, 0x40) sched_setscheduler(0x0, 0x2, &(0x7f0000000200)=0x4) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000080)={&(0x7f00000000c0)='sched_switch\x00'}, 0x18) r5 = socket$inet6_sctp(0xa, 0x1, 0x84) setsockopt(r5, 0x84, 0x81, &(0x7f0000000280)="1a00000002000000", 0x8) sendto$inet6(r5, &(0x7f0000000580)="1bd51d4112ebde60d4", 0x9, 0x2400c814, &(0x7f0000000140)={0xa, 0x4e23, 0x7, @loopback, 0xffffffff}, 0x1c) getsockopt$inet_sctp6_SCTP_AUTH_ACTIVE_KEY(r5, 0x84, 0x18, &(0x7f0000000100)={0x0, 0x3}, &(0x7f00000002c0)=0x8) openat$kvm(0xffffffffffffff9c, &(0x7f0000000000), 0x0, 0x0) r6 = ioctl$KVM_CREATE_VCPU(0xffffffffffffffff, 0xae41, 0xfffffffffffffffc) ioctl$KVM_SET_IRQCHIP(0xffffffffffffffff, 0x4020aeb2, &(0x7f0000000300)={0x1, 0x12c, @ioapic={0xffff1000, 0x8000, 0x2, 0x80000001, 0x0, [{0x9, 0x85, 0x1, '\x00', 0x4}, {0x5, 0x3, 0x0, '\x00', 0x6}, {0x7, 0x1, 0xe, '\x00', 0x3b}, {0x4e, 0xe, 0xd6, '\x00', 0x86}, {0xc, 0x9, 0x6, '\x00', 0x4}, {0x11, 0x8, 0xf5, '\x00', 0x3}, {0x2, 0xa, 0xe4, '\x00', 0x6}, {0x88, 0x3, 0x2a, '\x00', 0x88}, {0x1, 0x0, 0xa, '\x00', 0xed}, {0x8, 0x9, 0x3, '\x00', 0x8}, {0x9f, 0x6, 0x3, '\x00', 0x2}, {0x2, 0xb, 0x80, '\x00', 0x7f}, {0x8, 0x51, 0xa, '\x00', 0xfc}, {0xe, 0xfc, 0x5, '\x00', 0x4}, {0x9, 0x4, 0x7, '\x00', 0x9}, {0x1, 0x3, 0x7, '\x00', 0x3}, {0x2, 0xb, 0xd6, '\x00', 0x3}, {0x7, 0x4, 0xca, '\x00', 0x6}, {0x0, 0xff, 0x81, '\x00', 0x13}, {0x5, 0x0, 0x6, '\x00', 0xda}, {0x3, 0x3, 0x6, '\x00', 0x9}, {0x9, 0x23, 0x1, '\x00', 0x2}, {0xf9, 0x1, 0x1, '\x00', 0xb}, {0x8, 0xc, 0x0, '\x00', 0xa}]}}) ioctl$KVM_RUN(r6, 0xae80, 0x0) madvise(&(0x7f0000000000/0x600000)=nil, 0x600000, 0x15) syz_usb_connect(0x1, 0x36, &(0x7f0000000040)=ANY=[], 0x0) unshare(0x2c020400) msgget$private(0x0, 0x101) 9.011404565s ago: executing program 1 (id=2938): bpf$PROG_LOAD(0x5, &(0x7f0000000ec0)={0x20, 0x3, &(0x7f0000000040)=ANY=[@ANYBLOB="1800000000000000000000000000000095"], &(0x7f0000000900)='GPL\x00', 0x9, 0x0, 0x0, 0x41000, 0x0, '\x00', 0x0, @netfilter=0x2d, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) syz_init_net_socket$bt_hci(0x1f, 0x3, 0x1) socketpair$unix(0x1, 0x1, 0x0, &(0x7f00000001c0)={0xffffffffffffffff}) fcntl$lock(r0, 0x5, &(0x7f00000002c0)={0x2, 0x0, 0x6, 0x6}) sendmsg$nl_route_sched(0xffffffffffffffff, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000040)={&(0x7f00000000c0)=@newtaction={0xa4, 0x30, 0x1, 0x0, 0x0, {}, [{0x90, 0x1, [@m_ct={0x44, 0x2, 0x0, 0x0, {{0x7}, {0x1c, 0x2, 0x0, 0x1, [@TCA_CT_PARMS={0x18, 0x1, {0x9d, 0x11e41e7a, 0x20000000, 0x0, 0xf}}]}, {0x4}, {0xc, 0x7, {0x0, 0x1}}, {0xc, 0x8, {0x0, 0x1}}}}, @m_ife={0x48, 0x1, 0x0, 0x0, {{0x8}, {0x20, 0x2, 0x0, 0x1, [@TCA_IFE_PARMS={0x1c, 0x1, {{0xfffffffe, 0x0, 0x1}}}]}, {0x4}, {0xc}, {0xc}}}]}]}, 0xa4}, 0x1, 0x0, 0x0, 0x800}, 0x0) bpf$MAP_CREATE_CONST_STR(0x0, &(0x7f0000001280)=ANY=[@ANYBLOB="0200000004000000080000000100000080000000", @ANYRES32, @ANYBLOB='\x00'/20, @ANYRES32=0x0, @ANYRES32, @ANYBLOB], 0x17) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r1 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r1, 0x2, &(0x7f0000000200)=0x4) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeef, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f000057eff8)=@file={0x0, './file0\x00'}, 0x6e) sendmmsg$unix(r3, &(0x7f0000000000), 0x400000000000041, 0x0) sched_setaffinity(r1, 0x8, &(0x7f0000000400)=0x2) recvmmsg(r2, &(0x7f00000000c0), 0x10106, 0x2, 0x0) r4 = openat$binfmt_format(0xffffffffffffff9c, &(0x7f0000001580)='/proc/sys/fs/binfmt_misc/syz0\x00', 0x2, 0x0) read(r4, 0x0, 0x0) r5 = syz_open_dev$vivid(&(0x7f0000000180), 0x3, 0x2) ioctl$VIDIOC_SUBSCRIBE_EVENT(r5, 0x4020565a, &(0x7f00000001c0)={0x3, 0xa07, 0x2}) bpf$MAP_CREATE_CONST_STR(0x0, &(0x7f0000000300)=ANY=[@ANYBLOB="0200000004000000080000000100000080000000", @ANYRES32, @ANYBLOB='\x00'/20, @ANYRES32=0x0, @ANYRES32=0x0, @ANYBLOB="00000000940d000000000000000000000000000000009f1dcf"], 0x50) bpf$MAP_CREATE_RINGBUF(0x0, &(0x7f0000000440)=ANY=[@ANYBLOB="1b000004000000007468f74996836d8c05e05864b00a3cd43889f03bff95194aa5696c99d06e4dad66fcbfa8cf6c", @ANYRES32=0x0, @ANYBLOB='\x00'/20, @ANYRES32=0x0, @ANYRES32], 0x50) setxattr$incfs_metadata(&(0x7f0000000800)='./cgroup\x00', &(0x7f0000000840), &(0x7f0000000880)="22cff58056ac", 0xffd7, 0x1) removexattr(&(0x7f0000000200)='./cgroup\x00', &(0x7f0000000240)=@known='user.incfs.metadata\x00') ioctl$sock_ipv6_tunnel_SIOCADDTUNNEL(0xffffffffffffffff, 0x89f1, &(0x7f0000000000)={'ip6gre0\x00', &(0x7f0000000380)={'syztnl0\x00', 0x0, 0x2f, 0x0, 0x0, 0x0, 0x52, @empty, @mcast1, 0x0, 0x8000, 0x101}}) r6 = openat$proc_mixer(0xffffffffffffff9c, &(0x7f0000000380)='/proc/asound/card1/oss_mixer\x00', 0x1, 0x0) write$proc_mixer(r6, 0x0, 0xd3) r7 = socket$inet_smc(0x2b, 0x1, 0x0) ioctl$sock_ifreq(r7, 0x89a2, &(0x7f0000000280)={'bridge0\x00', @ifru_settings={0x43, 0x0, @sync=0x0}}) 8.058299686s ago: executing program 1 (id=2939): r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000180)={0x18, 0x5, &(0x7f0000000280)=ANY=[@ANYBLOB="1801000000000000000000004b64ffed850000006d000000a50000000500000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x80) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000000c0)={&(0x7f0000000080)='sched_switch\x00', r0}, 0x10) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000002c0)={&(0x7f00000001c0)='sctp_probe_path\x00', r0, 0x0, 0x2}, 0x18) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x88}, 0x0) openat$vmci(0xffffffffffffff9c, &(0x7f0000000440), 0x2, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000240)=0x7) r1 = getpid() sched_setscheduler(r1, 0x2, &(0x7f0000000480)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r3, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r2, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000000)=0x6) r4 = fsopen(&(0x7f0000000000)='rpc_pipefs\x00', 0x0) fsconfig$FSCONFIG_CMD_CREATE(r4, 0x6, 0x0, 0x0, 0x0) r5 = socket$inet6_sctp(0xa, 0x801, 0x84) connect$inet6(r5, 0x0, 0x0) r6 = socket$inet_mptcp(0x2, 0x1, 0x106) recvmmsg(r6, &(0x7f0000002f00)=[{{0x0, 0x0, &(0x7f0000000300)=[{0x0}, {&(0x7f00000003c0)=""/113, 0x71}], 0x2}, 0x2}, {{&(0x7f0000001a00)=@isdn, 0x80, &(0x7f0000000380)=[{&(0x7f0000001b40)=""/78, 0x4e}, {0x0}], 0x2}, 0x8}], 0x2, 0x100, &(0x7f0000002fc0)={0x0, 0x3938700}) io_uring_setup(0xd6c, &(0x7f0000000080)={0x0, 0xf6fe, 0x800, 0x3, 0x23a}) r7 = openat$dsp(0xffffffffffffff9c, &(0x7f0000000000), 0x202, 0x0) ioctl$SNDCTL_DSP_SETDUPLEX(r7, 0x5016, 0x0) close_range(0xffffffffffffffff, 0xffffffffffffffff, 0x0) socket$netlink(0x10, 0x3, 0x10) syz_usb_control_io$hid(0xffffffffffffffff, 0x0, 0x0) 7.066389269s ago: executing program 3 (id=2940): socket$nl_generic(0x10, 0x3, 0x10) mkdirat(0xffffffffffffff9c, &(0x7f00000020c0)='./file0\x00', 0x1c0) mkdirat(0xffffffffffffff9c, &(0x7f0000000100)='./file0/file0\x00', 0x1c0) mkdirat(0xffffffffffffff9c, &(0x7f0000000340)='./file1\x00', 0x0) mkdir(&(0x7f00000004c0)='./bus\x00', 0x0) mount$overlay(0x0, &(0x7f0000000140)='./bus\x00', &(0x7f0000000380), 0x0, &(0x7f0000000180)={[{@workdir={'workdir', 0x3d, './bus'}}, {@lowerdir={'lowerdir', 0x3d, './file0'}}, {@upperdir={'upperdir', 0x3d, './file1'}}]}) chdir(&(0x7f00000000c0)='./bus\x00') ioctl$BTRFS_IOC_SUBVOL_CREATE(0xffffffffffffffff, 0x5000940e, 0x0) ioctl$UI_DEV_CREATE(0xffffffffffffffff, 0x5501) r0 = openat$procfs(0xffffffffffffff9c, &(0x7f0000002100)='/proc/bus/input/devices\x00', 0x0, 0x0) syz_genetlink_get_family_id$ipvs(0x0, 0xffffffffffffffff) r1 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route(r1, 0x0, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000180)=0x3) sched_setaffinity(0x0, 0x8, &(0x7f00000000c0)=0xa) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r2 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r2, &(0x7f0000019680)=""/102392, 0x18ff8) socket$kcm(0x11, 0xa, 0x300) add_key$fscrypt_v1(&(0x7f0000000000), &(0x7f0000002080)={'fscrypt:', @desc1}, 0x0, 0x0, 0xfffffffffffffffa) ioctl$DRM_IOCTL_MODE_SETCRTC(0xffffffffffffffff, 0xc06864a2, 0x0) read$FUSE(r0, &(0x7f0000000040)={0x2020}, 0x2020) syz_open_dev$vim2m(&(0x7f0000000080), 0x7f, 0x2) mkdirat(0xffffffffffffff9c, &(0x7f0000000080)='./file1\x00', 0x1c0) mkdirat(0xffffffffffffff9c, &(0x7f0000000100)='./file1/file3\x00', 0x4) renameat2(0xffffffffffffff9c, &(0x7f0000000480)='./file1/file3\x00', 0xffffffffffffff9c, &(0x7f00000004c0)='./file0\x00', 0x2) 6.51679379s ago: executing program 1 (id=2941): prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) r0 = getpid() sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sendmsg$IPSET_CMD_GET_BYNAME(0xffffffffffffffff, 0x0, 0x4040) bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, 0x0, 0x0) r3 = syz_io_uring_setup(0x10d, &(0x7f0000000380)={0x0, 0x0, 0x80, 0xfffffffd}, &(0x7f0000000340)=0x0, &(0x7f0000000480)=0x0) syz_memcpy_off$IO_URING_METADATA_GENERIC(r4, 0x4, &(0x7f0000000080)=0xfffffffc, 0x0, 0x4) syz_io_uring_submit(r4, r5, &(0x7f00000002c0)=@IORING_OP_SHUTDOWN={0x22, 0x9}) io_uring_enter(r3, 0x3516, 0x0, 0x0, 0x0, 0x0) r6 = mq_open(&(0x7f000084dff0)='\xa1sxt\x1a\x00\x00\x00\x00\x00\x00\x00\x01\x88\xbdd', 0x6e93ebbbcc0884f2, 0x100, &(0x7f0000000300)={0x0, 0x1, 0x3}) mq_timedsend(r6, 0x0, 0x0, 0x0, 0x0) mq_timedsend(r6, 0x0, 0x0, 0x0, 0x0) mq_timedreceive(r6, &(0x7f0000000180)=""/204, 0xcc, 0x0, 0x0) 6.267327813s ago: executing program 2 (id=2942): socket$nl_route(0x10, 0x3, 0x0) socket(0x10, 0x803, 0x0) r0 = open(&(0x7f0000000280)='.\x00', 0x0, 0x0) fcntl$notify(r0, 0x402, 0x8000003d) mkdirat(0xffffffffffffff9c, &(0x7f0000000080)='./file1\x00', 0x0) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000180)=0x1) sched_setaffinity(0x0, 0x8, &(0x7f0000000200)=0x400000bce) r1 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r1, &(0x7f0000019680)=""/102392, 0x18ff8) openat$sysfs(0xffffffffffffff9c, 0x0, 0x80802, 0x0) bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, 0x0, 0x0) bpf$BPF_PROG_TEST_RUN(0xa, 0x0, 0x0) bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[], 0x66) bpf$MAP_CREATE(0x0, 0x0, 0x48) bpf$PROG_BIND_MAP(0x23, 0x0, 0x0) r2 = socket$inet_udp(0x2, 0x2, 0x0) setsockopt$EBT_SO_SET_ENTRIES(r2, 0x0, 0x80, 0x0, 0x1a6) bpf$MAP_UPDATE_BATCH(0x1a, 0x0, 0x0) write$FUSE_NOTIFY_DELETE(0xffffffffffffffff, 0x0, 0x0) landlock_restrict_self(0xffffffffffffffff, 0x0) landlock_restrict_self(0xffffffffffffffff, 0x0) symlink(0x0, &(0x7f0000000e40)='./file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00') mkdirat(0xffffffffffffff9c, &(0x7f0000000400)='./file1/file3\x00', 0x0) socket$netlink(0x10, 0x3, 0x5) renameat2(r0, &(0x7f0000000180)='./file1/file3\x00', 0xffffffffffffff9c, &(0x7f0000000040)='./file0\x00', 0x1) 5.766104028s ago: executing program 5 (id=2943): r0 = socket$nl_rdma(0x10, 0x3, 0x14) prlimit64(0x0, 0xe, &(0x7f0000000140)={0xa, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) r1 = getpid() sched_setscheduler(r1, 0x2, &(0x7f0000000200)=0x7) syz_init_net_socket$llc(0x1a, 0x2, 0x0) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r3, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r2, &(0x7f00000000c0), 0x10106, 0x2, 0x0) mount(0x0, 0x0, 0x0, 0xa08000, 0x0) r4 = socket(0x10, 0x80002, 0x0) socket$packet(0x11, 0x2, 0x300) sendmsg$nl_route(r4, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000040)={&(0x7f00000000c0)=ANY=[@ANYBLOB="1c0000005e00679a3601ffc4910700004f78d4c1a0731cccff", @ANYRESDEC=r0], 0x1c}}, 0x0) r5 = socket$nl_xfrm(0x10, 0x3, 0x6) sendmsg$nl_xfrm(r5, &(0x7f0000000580)={0x0, 0x0, &(0x7f0000000180)={&(0x7f0000000000)=ANY=[], 0xb8}}, 0x0) sendmsg$nl_xfrm(r5, &(0x7f0000000580)={0x0, 0x0, &(0x7f0000000180)={&(0x7f0000000000)=ANY=[@ANYBLOB="b80000001300e9990000000000000000fc000000000000000100000000000000ac1e000100"/55], 0xb8}}, 0x0) r6 = socket$nl_xfrm(0x10, 0x3, 0x6) sendmsg$nl_xfrm(r6, &(0x7f0000000580)={0x0, 0x0, 0x0, 0x1, 0x0, 0x0, 0x80}, 0x0) sendmsg$nl_xfrm(r6, &(0x7f0000000580)={0x0, 0x0, &(0x7f0000000180)={&(0x7f0000000000)=ANY=[@ANYBLOB="b80000001300e9990000000000000000fc000000000000000000000000000000ac13000100000000000000000000000000000000000000000a0042"], 0xb8}}, 0x0) recvmmsg$unix(r4, &(0x7f0000002380)=[{{0x0, 0x0, 0x0}}], 0x1, 0x0, 0x0) setsockopt$inet_MCAST_MSFILTER(0xffffffffffffffff, 0x0, 0x30, &(0x7f0000000a40)=ANY=[], 0x90) r7 = syz_init_net_socket$x25(0x9, 0x5, 0x0) recvfrom$x25(r7, 0x0, 0x0, 0x0, &(0x7f0000000000), 0x12) socket$inet_mptcp(0x2, 0x1, 0x106) timerfd_create(0x1, 0x1800) 5.527443188s ago: executing program 1 (id=2944): openat$adsp1(0xffffffffffffff9c, &(0x7f0000000040), 0xa0201, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x6) r0 = getpid() ioctl$DRM_IOCTL_WAIT_VBLANK(0xffffffffffffffff, 0xc018643a, &(0x7f0000000300)={0x3e, 0x8, 0x9}) bpf$PROG_LOAD(0x5, 0x0, 0x0) r1 = socket$xdp(0x2c, 0x3, 0x0) getsockopt$XDP_MMAP_OFFSETS(r1, 0x11b, 0x1, 0xffffffffffffffff, &(0x7f00000001c0)=0x60) sched_setscheduler(r0, 0x1, &(0x7f0000000400)=0x7) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f0000000180)=@abs, 0x6e) sendmmsg$unix(r3, &(0x7f00000bd000), 0x318, 0x0) recvmmsg(r2, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000200)=0x4) r4 = socket$phonet(0x23, 0x2, 0x1) r5 = socket$inet_udplite(0x2, 0x2, 0x88) ioctl$AUTOFS_DEV_IOCTL_REQUESTER(r3, 0xc018937b, &(0x7f0000000880)={{0x1, 0x1, 0x18, r2, {0xffffffffffffffff}}, './file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00'}) setsockopt$packet_int(r6, 0x107, 0x14, &(0x7f0000000240)=0x7, 0x4) ioctl$sock_inet_SIOCDARP(r5, 0x8955, &(0x7f0000000280)={{0x2, 0x4e23, @empty}, {}, 0x6a, {0x2, 0x0, @broadcast}}) sendto$phonet(r4, &(0x7f0000000040), 0x0, 0x4000, &(0x7f0000000100), 0x10) syz_emit_ethernet(0x52, &(0x7f0000000440)=ANY=[@ANYBLOB="aaaaaaaaaaaaaaaaaa89aaaa00080045000044000000fb4902060000069078ac1414bbac1414aa00000002", @ANYRES32=0x41424344, @ANYRES32=0x41424344, @ANYBLOB="cc000000907800000204010404021312"], 0x0) memfd_create(&(0x7f00000000c0)='[\v\xdbX\xae[\x1a\xa9\xfd\xfa\xad\xd1md\xc8\x85HX\xa9%\f\x1ae\xe0\x00\x00\x00\x00\xfb\xff\x00\x00\x81\x9eG\xd9,\xe2\xc6a\x9f\xe8\xf1\xb3\x86\xe2+Op\xd0\xa2\x82\x1eb;(\xb5\xe1jS\xd6\x91%||\xa0\x8ez\xadT\xc8\f\xe5\x89\xbf3:\x99\x1e\xac`\xc3\xcf\xd3\xae\xd2\a\x11\xa9\xa5^\xff\xf5\x95\xd2q#\xc6\xca\x97\x9d\xcb\x1e\x80\xd6\xd5%N&\xf8#\x80z8Z\xd2}\xf5\xe4\x9f5\x9b\x01\xf9t\xbb\x1er\x14\xdb\xd3\xcd\xfd\xbdnC\xec', 0x3) symlink(&(0x7f00000049c0)='./file0aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa\x00', &(0x7f00000059c0)='./file0\x00') lstat(&(0x7f00000048c0)='./file0\x00', &(0x7f0000004900)) bind$alg(0xffffffffffffffff, 0x0, 0x0) sendmsg$ETHTOOL_MSG_LINKMODES_SET(0xffffffffffffffff, &(0x7f0000000100)={0x0, 0x0, &(0x7f0000000840)={&(0x7f0000000780)=ANY=[], 0xfebe}}, 0x200040d1) prctl$PR_GET_SPECULATION_CTRL(0x34, 0x0, 0x0) 5.33890369s ago: executing program 3 (id=2945): write$USERIO_CMD_SET_PORT_TYPE(0xffffffffffffffff, &(0x7f0000000040)={0x1, 0x5}, 0x2) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x20000008b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x6) r0 = getpid() sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x7) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f0000000180)=@abs, 0x6e) sendmmsg$unix(r2, &(0x7f00000bd000), 0x318, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000200)=0x4) r3 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000200)={0x18, 0x4, &(0x7f00000002c0)=ANY=[@ANYBLOB="18010000000000000000000000000000850000006d00000095"], &(0x7f0000000340)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x97, @void, @value}, 0x94) r4 = syz_open_dev$tty1(0xc, 0x4, 0x1) write$UHID_INPUT(r4, 0x0, 0x0) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000080)={&(0x7f0000000000)='sched_switch\x00', r3}, 0x10) ioctl$KDFONTOP_GET(r4, 0x4b72, &(0x7f00000000c0)={0x1, 0x0, 0x1d, 0x1f, 0xe2, &(0x7f0000000380)}) r5 = syz_open_dev$video4linux(0x0, 0x2, 0x0) ioctl$VIDIOC_QUERYMENU(r5, 0xc040564a, 0x0) openat(0xffffffffffffff9c, &(0x7f0000000040)='./file1\x00', 0x42, 0x0) close_range(0xffffffffffffffff, 0xffffffffffffffff, 0x2) r6 = socket$nl_generic(0x10, 0x3, 0x10) r7 = syz_genetlink_get_family_id$batadv(&(0x7f0000000080), 0xffffffffffffffff) ioctl$ifreq_SIOCGIFINDEX_batadv_mesh(r6, 0x8933, &(0x7f0000000140)={'batadv0\x00', 0x0}) sendmsg$BATADV_CMD_GET_NEIGHBORS(r6, &(0x7f0000004340)={0x0, 0x0, &(0x7f0000000280)={&(0x7f0000000100)=ANY=[@ANYBLOB=',\x00\x00\x00', @ANYRES16=r7, @ANYBLOB="31032fbd7000fddbdf250800000008000300", @ANYRES32=r8, @ANYBLOB="05002d000100000008000600"], 0x2c}, 0x1, 0x0, 0x0, 0x8814}, 0x20000884) syz_genetlink_get_family_id$tipc(&(0x7f0000000040), 0xffffffffffffffff) write$USERIO_CMD_REGISTER(0xffffffffffffffff, 0x0, 0x0) write$USERIO_CMD_SEND_INTERRUPT(0xffffffffffffffff, &(0x7f0000000280)={0x2, 0x4}, 0x2) 3.449655862s ago: executing program 5 (id=2946): mmap(&(0x7f0000001000/0x1000)=nil, 0x1000, 0x4, 0x11, 0xffffffffffffffff, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x9, 0x8b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r0 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x4) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeef, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@file={0x0, './file0\x00'}, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x400000000000041, 0x0) sched_setaffinity(r0, 0x8, &(0x7f0000000240)=0x2) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) r3 = open(&(0x7f0000000040)='./bus\x00', 0x1612c2, 0x0) r4 = openat$procfs(0xffffffffffffff9c, &(0x7f0000000100)='/proc/crypto\x00', 0x0, 0x0) sendfile(r3, r4, 0x0, 0x4000000000010046) r5 = socket$nl_route(0x10, 0x3, 0x0) socket$can_raw(0x1d, 0x3, 0x1) bpf$MAP_CREATE(0x0, &(0x7f00000000c0)=ANY=[], 0x48) r6 = bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0x7, &(0x7f0000000540)=ANY=[], &(0x7f0000000200)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000280)={&(0x7f0000000040)='kmem_cache_free\x00', r6}, 0x10) recvmmsg(0xffffffffffffffff, &(0x7f00000014c0)=[{{0x0, 0x0, 0x0, 0x0, &(0x7f00000004c0)=""/4096, 0x1000}}], 0x1, 0x0, 0x0) r7 = socket$inet6(0xa, 0x800000000000002, 0x0) connect$inet6(r7, &(0x7f0000000040)={0xa, 0x0, 0x0, @mcast2, 0x4}, 0x1c) sendmmsg$inet6(r7, &(0x7f0000003cc0)=[{{0x0, 0x0, &(0x7f0000003980), 0x36, 0x0, 0x0, 0x20000000}, 0xa}], 0x400000000000172, 0x0) sendmsg$nl_route(r5, &(0x7f0000000440)={0x0, 0x0, &(0x7f00000003c0)={&(0x7f0000000380)=@ipv6_getanyicast={0x14, 0x3e, 0x927, 0x70bd26, 0x25dfdbfb}, 0x14}, 0x1, 0x0, 0x0, 0x40}, 0x2400c014) 3.438852857s ago: executing program 2 (id=2947): r0 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r0, &(0x7f000000c2c0)={0x0, 0x0, &(0x7f0000000200)={&(0x7f00000003c0)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a28000000000a0101000000005e1affd5020000000900010073797a300000000008000240000000032c000000030a01030000e6ff00000000020000000900010073797a30000000000900030073797a320000000014"], 0x7c}}, 0x0) sendmsg$NFT_BATCH(r0, 0x0, 0x0) seccomp$SECCOMP_SET_MODE_FILTER_LISTENER(0x1, 0x0, &(0x7f0000000040)={0x1, &(0x7f0000000000)=[{0x6, 0x0, 0x0, 0x7fff0005}]}) r1 = landlock_create_ruleset(&(0x7f0000000040)={0x2001}, 0x10, 0x0) landlock_restrict_self(r1, 0x0) openat$procfs(0xffffff9c, &(0x7f0000000000)='/proc/mdstat\x00', 0x0, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0xa, 0xe1}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000640)=0x6) r2 = getpid() sched_setscheduler(r2, 0x2, &(0x7f0000000200)=0x4) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x2000000) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) sched_setaffinity(0x0, 0x8, &(0x7f0000000280)=0x2) connect$unix(r3, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r4, &(0x7f00000bd000), 0x318, 0x0) recvmmsg(r3, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sched_setaffinity(0x0, 0xfffffffffffffc33, &(0x7f0000000280)=0x2) preadv2(r4, 0x0, 0x0, 0x2b, 0xfffffff9, 0x0) r5 = socket$alg(0x26, 0x5, 0x0) r6 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000280)={0x18, 0x5, &(0x7f0000000040)=ANY=[@ANYBLOB="1801000021000000000000000000000085"], &(0x7f00000000c0)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000100)={&(0x7f00000001c0)='mmap_lock_acquire_returned\x00', r6}, 0x10) r7 = userfaultfd(0x80001) ioctl$UFFDIO_API(r7, 0xc018aa3f, &(0x7f00000000c0)={0xaa, 0x7c8}) ioctl$UFFDIO_REGISTER(r7, 0xc020aa00, &(0x7f0000000200)={{&(0x7f00000e2000/0xc00000)=nil, 0xc00000}, 0x1}) madvise(&(0x7f0000000000/0x400000)=nil, 0x40001e, 0x18) close_range(r7, 0xffffffffffffffff, 0x0) bind$alg(r5, &(0x7f0000000000)={0x26, 'skcipher\x00', 0x0, 0x0, 'ecb-twofish-3way\x00'}, 0x58) accept4(r5, 0x0, 0x0, 0x0) 3.350778813s ago: executing program 3 (id=2948): r0 = syz_io_uring_setup(0xe41, &(0x7f0000000140)={0x0, 0x2119, 0x1000}, &(0x7f0000000240)=0x0, &(0x7f00000001c0)=0x0) syz_memcpy_off$IO_URING_METADATA_GENERIC(r1, 0x4, &(0x7f0000000080)=0xfffffffc, 0x0, 0x4) syz_io_uring_submit(r1, r2, &(0x7f00000002c0)=@IORING_OP_OPENAT2={0x1c, 0x0, 0x0, 0xffffffffffffff9c, &(0x7f00000004c0)={0x40102, 0x0, 0xd}, &(0x7f0000000040)='./file0/file0\x00', 0x18}) io_uring_enter(r0, 0x47f6, 0x0, 0x0, 0x0, 0x0) openat$kvm(0xffffffffffffff9c, &(0x7f0000000040), 0x0, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000180)=0x3) sched_setaffinity(0x0, 0x8, &(0x7f00000000c0)=0xa) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x1, 0x0) recvmmsg(0xffffffffffffffff, 0x0, 0x0, 0x2, 0x0) ioctl$VIDIOC_S_FMT(0xffffffffffffffff, 0xc0d05605, &(0x7f0000000240)={0x9, @pix={0x1, 0x72, 0x34424752, 0x3, 0x730d, 0x7, 0xb, 0x7, 0x0, 0x0, 0x2, 0x5}}) r3 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r3, &(0x7f0000019680)=""/102392, 0x18ff8) syz_open_dev$dri(0x0, 0x0, 0x0) r4 = socket$nl_route(0x10, 0x3, 0x0) r5 = socket$qrtr(0x2a, 0x2, 0x0) ioctl$sock_SIOCGIFINDEX(r5, 0x8933, 0x0) ioctl$ifreq_SIOCGIFINDEX_team(r4, 0x8933, 0x0) sendmsg$nl_route(r4, 0x0, 0x0) bpf$MAP_CREATE(0x0, 0x0, 0x50) r6 = syz_init_net_socket$bt_hci(0x1f, 0x3, 0x1) bind$bt_hci(r6, &(0x7f0000000080)={0x1f, 0xffff, 0x3}, 0x6) writev(0xffffffffffffffff, &(0x7f0000000100)=[{&(0x7f0000000000)='4', 0x1}], 0x1) write$binfmt_misc(r6, 0x0, 0x0) socket$nl_netfilter(0x10, 0x3, 0xc) socket$nl_netfilter(0x10, 0x3, 0xc) close_range(0xffffffffffffffff, 0xffffffffffffffff, 0x0) 2.015446888s ago: executing program 5 (id=2949): r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000180)={0x18, 0x5, 0x0, &(0x7f0000000080)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000540)={&(0x7f0000000080)='sched_switch\x00', r0}, 0x10) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) r1 = getpid() sched_setscheduler(r1, 0x2, &(0x7f0000000200)=0x7) r2 = getpid() sched_setscheduler(r2, 0x1, &(0x7f0000000100)=0x5) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f00000002c0)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r3, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r4, &(0x7f00000bd000), 0x318, 0x0) recvmmsg(r3, &(0x7f00000000c0), 0x10106, 0x2, 0x0) r5 = socket$inet6_tcp(0xa, 0x1, 0x0) close(r5) r6 = socket$inet6_mptcp(0xa, 0x1, 0x106) bind$inet6(r5, &(0x7f0000000040)={0xa, 0x4e22, 0x0, @empty}, 0x1c) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff}) r8 = syz_io_uring_setup(0x117, 0x0, &(0x7f0000000000)=0x0, &(0x7f0000000200)=0x0) syz_io_uring_submit(r9, r10, &(0x7f00000000c0)=@IORING_OP_SENDMSG={0x9, 0xc, 0x0, r7, 0x0, &(0x7f0000000800)={0x0, 0x0, 0x0, 0x0, 0x0, 0x18}, 0x0, 0x0, 0x1}) io_uring_enter(r8, 0x47f6, 0x80ffff, 0x0, 0x0, 0x0) listen(r6, 0x4000000) r11 = socket$inet_mptcp(0x2, 0x1, 0x106) connect$inet(r11, &(0x7f0000000000)={0x2, 0x4e22, @local}, 0x10) r12 = accept(r5, 0x0, 0x0) sendmsg$TEAM_CMD_OPTIONS_SET(r12, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000100)={&(0x7f0000000080)=ANY=[], 0xfffffdef}}, 0x0) recvfrom(r11, &(0x7f0000000180)=""/60, 0xfffffffffffffecb, 0x0, 0x0, 0x0) 2.013574796s ago: executing program 2 (id=2950): r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000200)={0x18, 0x4, &(0x7f00000009c0)=ANY=[@ANYBLOB="18010000000000000000000000000000850000006d00000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000080)={&(0x7f0000000000)='sched_switch\x00', r0}, 0x10) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x88}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000240)=0x7) mount$tmpfs(0x0, 0x0, &(0x7f0000000280), 0x0, &(0x7f00000000c0)=ANY=[@ANYRESOCT]) r1 = getpid() sched_setscheduler(r1, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r3, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r2, &(0x7f00000000c0), 0x10115, 0x2, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000000)=0x6) socket$nl_generic(0x10, 0x3, 0x10) r4 = syz_usb_connect(0x3, 0x2d, 0x0, 0x0) r5 = bpf$OBJ_GET_PROG(0x7, &(0x7f0000000180)=@o_path={&(0x7f0000000140)='./file0\x00'}, 0x18) bpf$PROG_LOAD(0x5, &(0x7f0000000040)={0x1e, 0x5, &(0x7f00000002c0)=ANY=[@ANYBLOB="18020000020000000000000000000008852000000100000085100000ff800000000000002b44620c324fbaa1b8c8bc85387e2cdde6009500"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x70, '\x00', 0x0, @fallback=0x2d, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, r5, 0x0, 0x0, 0x0, 0x10, 0x4, @void, @value}, 0x94) syz_usb_control_io$printer(r4, 0x0, 0x0) r6 = memfd_create(&(0x7f0000000c40)='\x00\x00\x1a\x00\x00\x00z\x9b\xb2\xe8t%\xfc\x02\x00\x00\x009\xa0\x8b\x14d\xa2\xa1\xa8!\xe8\xd1\xa0\x8a\xce0\x1c\xb7\xf1\xccm\xce\xd4\xdb\x99\xe5\x8f\xe2\xb6\xdc\n\xf5kWnr\x92G\xbd\b\x01\xd0\xf5\xbb}\xeb\x86P=\xe51\x9d,\xb7\xc3_M\xbe\x19\xea#\xffWj\xdc\xd4\xb1\xcc\\\xa8N\x8c)[\xd1\xc3\x9a\xa3\x1b\xf9\xe9\x1d \xce1\xc9\x9f\xb0\x14\xc2\xeb\xf9\xceE\xad\xa4\x92\f\xef\x87g\xb6\xabW\xac\rP\xf42\xb7\xc8\xaajn\xbfF}\xbd\x1c\xff\xff\xff\xff\xff\xff\xb5v*R?\xa0Y$\x95tO*\xf4\xae\xb8\xb8m\xbf\r\xd5\xbf*\xfd\xc7\x85\x1b\x8b\xe5\x97j`c\xe0\x88?\xe8\xd6\xae1\xc3\x9e\xec`\xf2\xd1BM\x10\xc6\xb4F\n\x10q\xde\v\xec\xa2\x92x\xe9\xf5\x1f\xc9hj\xc0\xe5\xce\xd1v\bez\"\xb1\xd3 \xbc\x9b\xe8\x86u\x0e\v\x17\x85\xb8\xdb2\x92\x00\x00\x00\x00\x00\x00\x00\x00\x80\x9c99\n|\xc1,\xd3\xedI\x11\xf9\xa6wN\xa3\xc9M\xe6\x92\xaf\xb2I\x16}\xae\xe8\xa8\xd7\xad\\\x84\v\fB\xe2d\x90\xdd\x90\x1e\x8c\xe4\xc70\x93\xc7\x8b\xec/a8\x95a\x8c?)\xa2\xf6~\xa7\xc3\xfc\x19\xa8\x98\x1f\x8d\x13\x00e;g]\x1c\x1d\xb0\xa0\x96\xac\x9f3\xe8\xa7R\x92\xe6\n\xdda\x86\xa8\x13\xf1\xccQa\xef\x94u\xed\x0fvq=|\xb0\xc2I/\\}\xf4\xb7\xda\xdds\xf3\xf9\f\xff\xcc\xf3\xa8\x02\xa9/\xfd\xcfn\x00\x84wa[,\xd8\xda\xd4h\xdd\xc4\x80\xb9_\x7f\xa1\x90H\x824Y\x89E', 0x7) execveat(r6, &(0x7f0000000000)='\x00', 0x0, 0x0, 0x1100) mkdirat(0xffffffffffffff9c, &(0x7f0000000040)='./file0\x00', 0x16) mkdir(0x0, 0x3b) mount(0x0, &(0x7f0000000140)='./file0\x00', &(0x7f0000000000)='configfs\x00', 0x0, 0x0) mount$overlay(0x0, &(0x7f0000000140)='./file0\x00', &(0x7f0000000180), 0xc810, &(0x7f00000001c0)={[{@lowerdir={'lowerdir', 0x3d, './file0'}, 0x3a}], [], 0x2f}) openat$dir(0xffffffffffffff9c, &(0x7f0000000540)='./file0\x00', 0x0, 0x0) syz_usb_connect(0x0, 0x2d, &(0x7f0000000000)=ANY=[@ANYBLOB="9f01000083667d1040206402d14e0102030109021b000100000000090400000190f19c000905f3"], 0x0) 1.850775213s ago: executing program 6 (id=2892): r0 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r0, &(0x7f000000c2c0)={0x0, 0x0, &(0x7f0000000200)={&(0x7f00000003c0)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a28000000000a0101000000005e1affd5020000000900010073797a300000000008000240000000032c000000030a01030000e6ff00000000020000000900010073797a30000000000900030073797a3200000000140000001100"], 0x7c}}, 0x0) sendmsg$NFT_BATCH(r0, &(0x7f0000000000)={0x0, 0x0, &(0x7f00000000c0)={&(0x7f00000002c0)={{0x14, 0x10, 0x1, 0x0, 0x0, {0x3}}, [@NFT_MSG_NEWRULE={0x34, 0x6, 0xa, 0x40b, 0x0, 0x0, {0x2}, [@NFTA_RULE_ID={0x8, 0x9, 0x1, 0x0, 0x1}, @NFTA_RULE_TABLE={0x9, 0x1, 'syz0\x00'}, @NFTA_RULE_CHAIN={0x9, 0x2, 'syz2\x00'}]}], {0x14, 0x11, 0x1, 0x0, 0x0, {0x1}}}, 0x5c}, 0x1, 0x0, 0x0, 0x4000014}, 0x0) seccomp$SECCOMP_SET_MODE_FILTER_LISTENER(0x1, 0x0, &(0x7f0000000040)={0x1, &(0x7f0000000000)=[{0x6, 0x0, 0x0, 0x7fff0005}]}) r1 = landlock_create_ruleset(&(0x7f0000000040)={0x2001}, 0x10, 0x0) landlock_restrict_self(r1, 0x0) openat$procfs(0xffffff9c, &(0x7f0000000000)='/proc/mdstat\x00', 0x0, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0xa, 0xe1}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000640)=0x6) r2 = getpid() sched_setscheduler(r2, 0x2, &(0x7f0000000200)=0x4) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x2000000) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) sched_setaffinity(0x0, 0x8, &(0x7f0000000280)=0x2) connect$unix(r3, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r4, &(0x7f00000bd000), 0x318, 0x0) recvmmsg(r3, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sched_setaffinity(0x0, 0xfffffffffffffc33, &(0x7f0000000280)=0x2) preadv2(r4, 0x0, 0x0, 0x2b, 0xfffffff9, 0x0) r5 = socket$alg(0x26, 0x5, 0x0) r6 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000280)={0x18, 0x5, &(0x7f0000000040)=ANY=[@ANYBLOB="1801000021000000000000000000000085"], &(0x7f00000000c0)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000100)={&(0x7f00000001c0)='mmap_lock_acquire_returned\x00', r6}, 0x10) r7 = userfaultfd(0x80001) ioctl$UFFDIO_API(r7, 0xc018aa3f, &(0x7f00000000c0)={0xaa, 0x7c8}) ioctl$UFFDIO_REGISTER(r7, 0xc020aa00, &(0x7f0000000200)={{&(0x7f00000e2000/0xc00000)=nil, 0xc00000}, 0x1}) madvise(&(0x7f0000000000/0x400000)=nil, 0x40001e, 0x18) close_range(r7, 0xffffffffffffffff, 0x0) bind$alg(r5, &(0x7f0000000000)={0x26, 'skcipher\x00', 0x0, 0x0, 'ecb-twofish-3way\x00'}, 0x58) accept4(r5, 0x0, 0x0, 0x0) 748.018682ms ago: executing program 5 (id=2951): prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) r0 = getpid() sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) ioctl$ifreq_SIOCGIFINDEX_vcan(r2, 0x8933, &(0x7f0000000300)={'vxcan0\x00'}) sendmsg$IPSET_CMD_GET_BYNAME(0xffffffffffffffff, 0x0, 0x4040) bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, 0x0, 0x0) r3 = syz_io_uring_setup(0x10d, &(0x7f0000000380)={0x0, 0x0, 0x80, 0xfffffffd}, &(0x7f0000000340)=0x0, &(0x7f0000000480)=0x0) syz_memcpy_off$IO_URING_METADATA_GENERIC(r4, 0x4, &(0x7f0000000080)=0xfffffffc, 0x0, 0x4) syz_io_uring_submit(r4, r5, &(0x7f00000002c0)=@IORING_OP_SHUTDOWN={0x22, 0x9}) io_uring_enter(r3, 0x3516, 0x0, 0x0, 0x0, 0x0) r6 = mq_open(&(0x7f000084dff0)='\xa1sxt\x1a\x00\x00\x00\x00\x00\x00\x00\x01\x88\xbdd', 0x6e93ebbbcc0884f2, 0x100, &(0x7f0000000300)={0x0, 0x1, 0x3}) mq_timedsend(r6, 0x0, 0x0, 0x0, 0x0) mq_timedsend(r6, 0x0, 0x0, 0x0, 0x0) mq_timedreceive(r6, &(0x7f0000000180)=""/204, 0xcc, 0x0, 0x0) 0s ago: executing program 6 (id=2952): bpf$MAP_CREATE(0x0, &(0x7f0000000000)=ANY=[], 0x50) syz_init_net_socket$bt_hci(0x1f, 0x3, 0x1) clock_settime(0x0, &(0x7f0000000240)={0x77359400}) clock_adjtime(0x0, &(0x7f0000000640)={0x7, 0x9, 0x380000, 0x5, 0xfffffffffffffff9, 0xfffffffffffffff7, 0x9, 0x0, 0xae, 0x6, 0x7, 0x4, 0xfffffffffffff04f, 0x7, 0x80000000, 0xfffffffffffffff8, 0xffffffffffffffff, 0x6, 0x0, 0x100, 0x4, 0x2, 0x5, 0x3, 0x8, 0x8}) socket$nl_route(0x10, 0x3, 0x0) r0 = socket$inet6_tcp(0xa, 0x1, 0x0) bind$inet6(r0, &(0x7f0000000100)={0xa, 0x4e22}, 0x1c) listen(r0, 0x3) setsockopt$sock_int(0xffffffffffffffff, 0x1, 0xf, &(0x7f0000000180)=0x800001, 0x4) r1 = openat$nvme_fabrics(0xffffffffffffff9c, &(0x7f0000000840), 0x20042, 0x0) ioctl$I2C_SMBUS(r1, 0x720, &(0x7f0000000400)={0x1, 0x5, 0x8, &(0x7f0000000300)={0x20, "33e1bcc8514934e94b17e9a46de77c36d2712c0e2401a00505e49c1df7c1853cfb"}}) write$UHID_INPUT(r1, 0x0, 0x0) mq_timedsend(r1, &(0x7f0000000000)="8524c4b268aa11b80c2650b5ccb8fd4d3b490cdc420f", 0x16, 0x9, &(0x7f0000000200)={0x77359400}) r2 = socket$inet6_tcp(0xa, 0x1, 0x0) setsockopt$sock_int(r2, 0x1, 0xf, &(0x7f0000000180)=0x800001, 0x4) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r3 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r3, &(0x7f0000019680)=""/102392, 0x18ff8) openat$audio(0xffffffffffffff9c, &(0x7f0000000040), 0x0, 0x0) r4 = bpf$MAP_CREATE(0x1900000000000000, &(0x7f0000000040)=ANY=[], 0x48) mmap(&(0x7f0000ffc000/0x1000)=nil, 0x1000, 0x2000012, 0x12, r4, 0x864d7000) r5 = userfaultfd(0x1) ioctl$UFFDIO_API(r5, 0xc018aa3f, &(0x7f0000000000)) ioctl$UFFDIO_UNREGISTER(r5, 0x8010aa01, &(0x7f0000000000)={&(0x7f0000ffc000/0x4000)=nil, 0x4000}) kernel console output (not intermixed with test programs): T52] cdc_wdm 5-1:1.0: cdc-wdm0: USB WDM device [ 716.231795][ T52] cdc_wdm 5-1:1.0: Unknown control protocol [ 716.440831][ T9] usb 5-1: USB disconnect, device number 17 [ 717.273502][T13686] ALSA: mixer_oss: invalid OSS volume 'SPEA' [ 718.239989][ T10] gspca_zc3xx: reg_w_i err -71 [ 718.865345][ T10] gspca_zc3xx: Unknown sensor - set to TAS5130C [ 718.877690][ T10] gspca_zc3xx 3-1:0.0: probe with driver gspca_zc3xx failed with error -71 [ 718.900030][ T10] usb 3-1: USB disconnect, device number 19 [ 719.077073][T13709] netlink: 'syz.2.2218': attribute type 1 has an invalid length. [ 719.462510][T13709] 8021q: adding VLAN 0 to HW filter on device bond1 [ 719.539295][T13710] bond1: (slave gretap1): making interface the new active one [ 719.557626][T13710] bond1: (slave gretap1): Enslaving as an active interface with an up link [ 719.941485][T13711] bond1: entered promiscuous mode [ 719.946845][T13711] gretap1: entered promiscuous mode [ 720.000769][T13708] bond1: left promiscuous mode [ 720.509363][T13708] gretap1: left promiscuous mode [ 720.546473][T13721] IPv6: RTM_NEWROUTE with no NLM_F_CREATE or NLM_F_REPLACE [ 720.554281][T13721] IPv6: NLM_F_CREATE should be set when creating new route [ 722.838680][T13729] syz.5.2223 (13729): drop_caches: 2 [ 723.421495][ T30] audit: type=1400 audit(1742015943.161:1512): avc: denied { read } for pid=13743 comm="syz.3.2227" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 723.475224][ T5873] usb 3-1: new high-speed USB device number 20 using dummy_hcd [ 723.641404][ T5873] usb 3-1: Using ep0 maxpacket: 16 [ 723.710292][ T5873] usb 3-1: config 0 has an invalid interface number: 1 but max is 0 [ 724.235981][ T5873] usb 3-1: config 0 has no interface number 0 [ 724.542474][ T5873] usb 3-1: New USB device found, idVendor=04fc, idProduct=1528, bcdDevice=6d.5d [ 724.551791][ T5873] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 724.568005][ T5873] usb 3-1: Product: syz [ 724.572469][ T5873] usb 3-1: Manufacturer: syz [ 724.577087][ T5873] usb 3-1: SerialNumber: syz [ 724.588279][ T5873] usb 3-1: config 0 descriptor?? [ 724.604453][ T5873] gspca_main: spca1528-2.14.0 probing 04fc:1528 [ 724.901391][ T52] usb 6-1: new high-speed USB device number 5 using dummy_hcd [ 724.945158][T13775] netlink: 212408 bytes leftover after parsing attributes in process `syz.3.2236'. [ 724.991290][T13775] netlink: zone id is out of range [ 725.003493][T13775] netlink: zone id is out of range [ 725.010592][T13775] netlink: get zone limit has 8 unknown bytes [ 726.250227][ T5873] gspca_spca1528: reg_w err -110 [ 726.271291][ T5873] spca1528 3-1:0.1: probe with driver spca1528 failed with error -110 [ 726.341218][ T52] usb 6-1: Using ep0 maxpacket: 32 [ 726.360010][ T52] usb 6-1: config 0 has an invalid interface number: 35 but max is 0 [ 726.381422][ T52] usb 6-1: config 0 has no interface number 0 [ 726.399569][ T26] usb 3-1: USB disconnect, device number 20 [ 726.406902][ T52] usb 6-1: New USB device found, idVendor=10c4, idProduct=818a, bcdDevice=7d.8f [ 726.460347][ T52] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 726.472382][ T52] usb 6-1: Product: syz [ 726.477762][ T52] usb 6-1: Manufacturer: syz [ 726.500784][ T52] usb 6-1: SerialNumber: syz [ 726.520561][ T52] usb 6-1: config 0 descriptor?? [ 726.879095][ T30] audit: type=1400 audit(1742015946.811:1513): avc: denied { ioctl } for pid=13769 comm="syz.5.2235" path="socket:[37423]" dev="sockfs" ino=37423 ioctlcmd=0x8922 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 726.913344][ T5873] usb 4-1: new high-speed USB device number 20 using dummy_hcd [ 726.932104][ T52] radio-si470x 6-1:0.35: this is not a si470x device. [ 726.971744][ T52] radio-raremono 6-1:0.35: this is not Thanko's Raremono. [ 726.983597][ T52] usb 6-1: USB disconnect, device number 5 [ 727.082876][ T5873] usb 4-1: config 0 has no interfaces? [ 727.090165][ T5873] usb 4-1: New USB device found, idVendor=045e, idProduct=0283, bcdDevice=99.0b [ 727.109107][ T5873] usb 4-1: New USB device strings: Mfr=1, Product=228, SerialNumber=2 [ 727.117863][ T5873] usb 4-1: Product: syz [ 727.124377][ T5873] usb 4-1: Manufacturer: syz [ 727.133497][ T5873] usb 4-1: SerialNumber: syz [ 727.147511][ T5873] usb 4-1: config 0 descriptor?? [ 727.504686][T13795] lo speed is unknown, defaulting to 1000 [ 727.633860][ T5865] usb 4-1: USB disconnect, device number 20 [ 728.458561][ T52] hid-generic 0020:0003:0002.0018: unknown main item tag 0x0 [ 728.467758][ T52] hid-generic 0020:0003:0002.0018: unknown main item tag 0x0 [ 729.067119][T13812] netlink: 36 bytes leftover after parsing attributes in process `syz.1.2247'. [ 729.085646][ T52] hid-generic 0020:0003:0002.0018: unknown main item tag 0x0 [ 729.096113][ T52] hid-generic 0020:0003:0002.0018: unknown main item tag 0x0 [ 729.103934][ T52] hid-generic 0020:0003:0002.0018: unknown main item tag 0x0 [ 729.111641][ T52] hid-generic 0020:0003:0002.0018: unknown main item tag 0x0 [ 729.119192][ T52] hid-generic 0020:0003:0002.0018: unknown main item tag 0x0 [ 729.164766][ T52] hid-generic 0020:0003:0002.0018: unknown main item tag 0x0 [ 729.184983][ T52] hid-generic 0020:0003:0002.0018: unknown main item tag 0x0 [ 729.218994][ T52] hid-generic 0020:0003:0002.0018: hidraw0: SENSOR HUB HID v0.00 Device [syz0] on syz1 [ 730.019806][T13820] syz.5.2249: attempt to access beyond end of device [ 730.019806][T13820] nbd5: rw=2048, sector=0, nr_sectors = 8 limit=0 [ 730.038247][T13820] SQUASHFS error: Failed to read block 0x0: -5 [ 730.044663][T13820] unable to read squashfs_super_block [ 731.424703][T13836] kvm: requested 4190 ns i8254 timer period limited to 200000 ns [ 731.858410][T13836] kvm: pic: non byte read [ 731.869949][T13836] kvm: pic: level sensitive irq not supported [ 731.870019][T13836] kvm: pic: non byte read [ 732.684351][T13855] tipc: Started in network mode [ 732.689215][T13855] tipc: Node identity 4, cluster identity 4711 [ 732.701870][T13855] tipc: Node number set to 4 [ 733.072408][ T5866] hid-generic 0020:0003:0002.0019: unknown main item tag 0x0 [ 733.092303][ T5866] hid-generic 0020:0003:0002.0019: unknown main item tag 0x0 [ 733.131599][ T5866] hid-generic 0020:0003:0002.0019: unknown main item tag 0x0 [ 733.149623][ T5866] hid-generic 0020:0003:0002.0019: unknown main item tag 0x0 [ 733.783628][ T5866] hid-generic 0020:0003:0002.0019: unknown main item tag 0x0 [ 733.791302][ T5866] hid-generic 0020:0003:0002.0019: unknown main item tag 0x0 [ 733.801570][ T5866] hid-generic 0020:0003:0002.0019: unknown main item tag 0x0 [ 733.811327][ T5866] hid-generic 0020:0003:0002.0019: unknown main item tag 0x0 [ 733.818903][ T5866] hid-generic 0020:0003:0002.0019: unknown main item tag 0x0 [ 733.860559][ T5866] hid-generic 0020:0003:0002.0019: hidraw0: SENSOR HUB HID v0.00 Device [syz0] on syz1 [ 733.909980][T13858] netem: incorrect gi model size [ 733.915533][T13858] netem: change failed [ 734.009265][T13871] SELinux: security_context_str_to_sid (root) failed with errno=-22 [ 734.112162][ T30] audit: type=1400 audit(1742015954.041:1514): avc: denied { accept } for pid=13869 comm="syz.5.2264" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 734.701762][ T10] usb 2-1: new high-speed USB device number 18 using dummy_hcd [ 735.393966][ T30] audit: type=1400 audit(1742015954.781:1515): avc: denied { read } for pid=13879 comm="syz.5.2268" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=tipc_socket permissive=1 [ 735.714119][ T10] usb 2-1: Using ep0 maxpacket: 8 [ 735.734221][ T10] usb 2-1: config 63 has too many interfaces: 254, using maximum allowed: 32 [ 735.851613][ T10] usb 2-1: config 63 has 1 interface, different from the descriptor's value: 254 [ 735.862822][ T10] usb 2-1: config 63 has no interface number 0 [ 735.871080][ T10] usb 2-1: config 63 interface 19 altsetting 0 endpoint 0x2 has invalid wMaxPacketSize 0 [ 735.889167][ T10] usb 2-1: config 63 interface 19 altsetting 0 bulk endpoint 0x2 has invalid maxpacket 0 [ 736.143978][ T10] usb 2-1: New USB device found, idVendor=2201, idProduct=012c, bcdDevice=3f.e0 [ 736.153568][ T10] usb 2-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 737.036271][ T10] usb 2-1: probing VID:PID(2201:012C) [ 737.048295][ T10] usb 2-1: vub300 testing BULK OUT EndPoint(0) 02 [ 737.065978][ T10] usb 2-1: Could not find two sets of bulk-in/out endpoint pairs [ 737.118823][ T10] vub300 2-1:63.19: probe with driver vub300 failed with error -22 [ 737.492778][ T52] usb 2-1: USB disconnect, device number 18 [ 737.576301][ T10] usb 6-1: new high-speed USB device number 6 using dummy_hcd [ 737.653516][T13908] netlink: 48 bytes leftover after parsing attributes in process `syz.4.2275'. [ 737.884323][ T10] usb 6-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 737.923473][ T10] usb 6-1: New USB device found, idVendor=0471, idProduct=0304, bcdDevice=e4.df [ 737.947536][ T10] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 737.972737][ T10] usb 6-1: config 0 descriptor?? [ 738.000569][ T10] pwc: Askey VC010 type 2 USB webcam detected. [ 738.758852][ T10] pwc: recv_control_msg error -32 req 02 val 2b00 [ 738.785542][ T10] pwc: recv_control_msg error -32 req 02 val 2700 [ 738.798607][ T10] pwc: recv_control_msg error -32 req 02 val 2c00 [ 738.810258][ T10] pwc: recv_control_msg error -32 req 04 val 1000 [ 738.824472][ T10] pwc: recv_control_msg error -32 req 04 val 1300 [ 738.841815][ T10] pwc: recv_control_msg error -32 req 04 val 1400 [ 738.856952][ T5866] hid-generic 0020:0003:0002.001A: unknown main item tag 0x0 [ 738.866047][ T5866] hid-generic 0020:0003:0002.001A: unknown main item tag 0x0 [ 739.028829][ T5866] hid-generic 0020:0003:0002.001A: unknown main item tag 0x0 [ 739.047604][ T5866] hid-generic 0020:0003:0002.001A: unknown main item tag 0x0 [ 739.049816][ T10] pwc: recv_control_msg error -71 req 02 val 2100 [ 739.062234][ T10] pwc: recv_control_msg error -71 req 04 val 1500 [ 739.070691][ T10] pwc: recv_control_msg error -71 req 02 val 2500 [ 739.098757][ T10] pwc: recv_control_msg error -71 req 02 val 2400 [ 739.164415][ T5133] Bluetooth: hci2: ACL packet for unknown connection handle 201 [ 739.389358][ T10] pwc: recv_control_msg error -71 req 02 val 2600 [ 739.406335][ T5866] hid-generic 0020:0003:0002.001A: unknown main item tag 0x0 [ 739.409952][ T10] pwc: recv_control_msg error -71 req 02 val 2900 [ 739.413918][ T5866] hid-generic 0020:0003:0002.001A: unknown main item tag 0x0 [ 739.430052][ T5866] hid-generic 0020:0003:0002.001A: unknown main item tag 0x0 [ 739.437831][ T10] pwc: recv_control_msg error -71 req 02 val 2800 [ 739.445428][ T10] pwc: recv_control_msg error -71 req 04 val 1100 [ 739.454579][ T10] pwc: recv_control_msg error -71 req 04 val 1200 [ 739.463232][ T5866] hid-generic 0020:0003:0002.001A: unknown main item tag 0x0 [ 739.468007][ T10] pwc: Registered as video103. [ 739.478117][ T10] input: PWC snapshot button as /devices/platform/dummy_hcd.5/usb6/6-1/input/input28 [ 739.487906][ T5866] hid-generic 0020:0003:0002.001A: unknown main item tag 0x0 [ 739.515149][ T5866] hid-generic 0020:0003:0002.001A: hidraw0: SENSOR HUB HID v0.00 Device [syz0] on syz1 [ 739.518564][ T10] usb 6-1: USB disconnect, device number 6 [ 742.942379][T13962] block nbd3: shutting down sockets [ 743.707767][T13969] kvm: requested 4190 ns i8254 timer period limited to 200000 ns [ 743.757194][T13969] kvm: pic: non byte read [ 743.968441][T13975] vimc link validate: Scaler:src:640x480 (0x33424752, 8, 0, 0, 0) RGB/YUV Capture:snk:640x480 (0x33424752, 8, 0, 0, 0) [ 743.990941][ T30] audit: type=1400 audit(1742015963.921:1516): avc: denied { shutdown } for pid=13973 comm="syz.5.2293" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 744.027066][ T5133] Bluetooth: hci1: unexpected event for opcode 0x0c22 [ 744.074114][ T5866] hid-generic 0020:0003:0002.001B: unknown main item tag 0x0 [ 744.094180][T13982] netlink: 212408 bytes leftover after parsing attributes in process `syz.4.2295'. [ 744.104855][T13982] netlink: zone id is out of range [ 744.112143][T13982] netlink: zone id is out of range [ 744.117709][T13982] netlink: get zone limit has 8 unknown bytes [ 744.120380][ T5866] hid-generic 0020:0003:0002.001B: unknown main item tag 0x0 [ 744.315212][ T5866] hid-generic 0020:0003:0002.001B: unknown main item tag 0x0 [ 744.349763][ T5866] hid-generic 0020:0003:0002.001B: unknown main item tag 0x0 [ 745.090078][ T5866] hid-generic 0020:0003:0002.001B: unknown main item tag 0x0 [ 745.120042][T13975] Bluetooth: hci2: Opcode 0x0c1a failed: -4 [ 745.145914][ T5866] hid-generic 0020:0003:0002.001B: unknown main item tag 0x0 [ 745.166152][T13975] Bluetooth: hci2: Error when powering off device on rfkill (-4) [ 745.179552][ T5866] hid-generic 0020:0003:0002.001B: unknown main item tag 0x0 [ 745.203165][ T5866] hid-generic 0020:0003:0002.001B: unknown main item tag 0x0 [ 745.276847][ T5133] Bluetooth: hci2: command 0x0406 tx timeout [ 745.838550][T13975] Bluetooth: hci3: Opcode 0x0c1a failed: -4 [ 745.841728][ T5866] hid-generic 0020:0003:0002.001B: unknown main item tag 0x0 [ 745.901957][T13975] Bluetooth: hci3: Error when powering off device on rfkill (-4) [ 745.911459][ T5866] hid-generic 0020:0003:0002.001B: hidraw0: SENSOR HUB HID v0.00 Device [syz0] on syz1 [ 746.083054][T13975] Bluetooth: hci1: Opcode 0x0c1a failed: -4 [ 746.238049][T13975] Bluetooth: hci1: Error when powering off device on rfkill (-4) [ 746.329842][T13990] ALSA: mixer_oss: invalid OSS volume '' [ 750.214950][T14030] veth0_to_team: entered promiscuous mode [ 750.220717][T14030] veth0_to_team: entered allmulticast mode [ 750.922818][ T30] audit: type=1400 audit(1742015970.861:1517): avc: denied { getopt } for pid=14038 comm="syz.2.2309" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netrom_socket permissive=1 [ 751.028430][ T30] audit: type=1400 audit(1742015970.911:1518): avc: denied { nlmsg_write } for pid=14038 comm="syz.2.2309" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_tcpdiag_socket permissive=1 [ 751.885959][ T30] audit: type=1400 audit(1742015971.371:1519): avc: denied { listen } for pid=14041 comm="syz.5.2311" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=tipc_socket permissive=1 [ 752.185868][ T5866] hid-generic 0020:0003:0002.001C: unknown main item tag 0x0 [ 752.201923][ T5866] hid-generic 0020:0003:0002.001C: unknown main item tag 0x0 [ 753.170952][ T5866] hid-generic 0020:0003:0002.001C: unknown main item tag 0x0 [ 753.179530][ T5866] hid-generic 0020:0003:0002.001C: unknown main item tag 0x0 [ 753.186957][ T5866] hid-generic 0020:0003:0002.001C: unknown main item tag 0x0 [ 753.194389][ T5866] hid-generic 0020:0003:0002.001C: unknown main item tag 0x0 [ 753.201809][ T5866] hid-generic 0020:0003:0002.001C: unknown main item tag 0x0 [ 753.209219][ T5866] hid-generic 0020:0003:0002.001C: unknown main item tag 0x0 [ 753.218473][ T5866] hid-generic 0020:0003:0002.001C: unknown main item tag 0x0 [ 753.763590][ T5866] hid-generic 0020:0003:0002.001C: hidraw0: SENSOR HUB HID v0.00 Device [syz0] on syz1 [ 755.127281][T14066] ALSA: mixer_oss: invalid OSS volume 'SPEA' [ 758.393024][ T30] audit: type=1400 audit(1742015978.331:1520): avc: denied { read write } for pid=14102 comm="syz.1.2326" name=0B dev="tmpfs" ino=2501 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=chr_file permissive=1 [ 759.358423][ T30] audit: type=1400 audit(1742015978.331:1521): avc: denied { open } for pid=14102 comm="syz.1.2326" path=2F3437362F0B dev="tmpfs" ino=2501 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=chr_file permissive=1 [ 760.541486][ T5828] usb 3-1: new full-speed USB device number 21 using dummy_hcd [ 760.746560][ T5828] usb 3-1: New USB device found, idVendor=056e, idProduct=4010, bcdDevice=20.1c [ 760.780920][ T5828] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 760.789326][ T52] usb 4-1: new high-speed USB device number 21 using dummy_hcd [ 760.843096][ T5828] usb 3-1: config 0 descriptor?? [ 761.545414][ T52] usb 4-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 761.582396][T14137] kvm: kvm [14136]: vcpu0, guest rIP: 0x1be Unhandled WRMSR(0xc1) = 0x4000 [ 761.617647][ T52] usb 4-1: New USB device found, idVendor=0471, idProduct=0304, bcdDevice=e4.df [ 761.637305][ T52] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 761.672153][ T52] usb 4-1: config 0 descriptor?? [ 761.693502][ T52] pwc: Askey VC010 type 2 USB webcam detected. [ 761.948537][ T5828] pegasus 3-1:0.0: probe with driver pegasus failed with error -32 [ 761.963600][ T5828] usb 3-1: USB disconnect, device number 21 [ 762.134767][ T52] pwc: recv_control_msg error -32 req 02 val 2b00 [ 762.142658][ T52] pwc: recv_control_msg error -32 req 02 val 2700 [ 762.157733][ T52] pwc: recv_control_msg error -32 req 02 val 2c00 [ 762.186826][ T52] pwc: recv_control_msg error -32 req 04 val 1000 [ 762.199393][ T52] pwc: recv_control_msg error -32 req 04 val 1300 [ 762.210890][ T52] pwc: recv_control_msg error -32 req 04 val 1400 [ 762.222285][ T52] pwc: recv_control_msg error -32 req 02 val 2000 [ 762.225507][ T30] audit: type=1400 audit(1742015982.161:1522): avc: denied { bind } for pid=14149 comm="syz.4.2339" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 762.231169][ T52] pwc: recv_control_msg error -32 req 02 val 2100 [ 762.262724][ T30] audit: type=1400 audit(1742015982.161:1523): avc: denied { listen } for pid=14149 comm="syz.4.2339" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 762.288964][ T30] audit: type=1400 audit(1742015982.161:1524): avc: denied { accept } for pid=14149 comm="syz.4.2339" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 762.398687][ T52] pwc: recv_control_msg error -32 req 04 val 1500 [ 762.415836][ T52] pwc: recv_control_msg error -32 req 02 val 2500 [ 762.427483][ T52] pwc: recv_control_msg error -32 req 02 val 2400 [ 762.435394][ T52] pwc: recv_control_msg error -32 req 02 val 2600 [ 762.442677][ T52] pwc: recv_control_msg error -32 req 02 val 2900 [ 763.050240][ T52] pwc: recv_control_msg error -71 req 04 val 1100 [ 763.057042][ T52] pwc: recv_control_msg error -71 req 04 val 1200 [ 763.064241][ T52] pwc: Registered as video103. [ 763.069709][ T52] input: PWC snapshot button as /devices/platform/dummy_hcd.3/usb4/4-1/input/input29 [ 763.081885][ T52] usb 4-1: USB disconnect, device number 21 [ 764.174897][ T30] audit: type=1326 audit(1742015984.081:1525): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 764.339585][T14176] Bluetooth: MGMT ver 1.23 [ 764.515253][ T30] audit: type=1326 audit(1742015984.081:1526): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=16 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 764.736071][ T30] audit: type=1326 audit(1742015984.081:1527): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 764.759598][ C0] vkms_vblank_simulate: vblank timer overrun [ 764.771700][ T30] audit: type=1326 audit(1742015984.081:1528): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 764.795151][ C0] vkms_vblank_simulate: vblank timer overrun [ 764.806730][ T30] audit: type=1326 audit(1742015984.081:1529): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 764.830177][ C0] vkms_vblank_simulate: vblank timer overrun [ 765.456294][ T30] audit: type=1326 audit(1742015984.081:1530): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 765.481509][ T30] audit: type=1326 audit(1742015984.091:1531): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 765.505375][ T30] audit: type=1326 audit(1742015984.091:1532): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 765.564042][ T30] audit: type=1326 audit(1742015984.091:1533): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 765.716346][ T30] audit: type=1326 audit(1742015984.091:1534): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14168 comm="syz.4.2343" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f7188d8d169 code=0x7fc00000 [ 767.516401][T14187] lo speed is unknown, defaulting to 1000 [ 769.701376][ T9] usb 6-1: new high-speed USB device number 7 using dummy_hcd [ 769.866262][ T9] usb 6-1: config index 0 descriptor too short (expected 45, got 36) [ 769.895118][ T9] usb 6-1: config 0 interface 0 altsetting 0 has an endpoint descriptor with address 0xFF, changing to 0x8F [ 769.929306][ T9] usb 6-1: config 0 interface 0 altsetting 0 endpoint 0x8F has an invalid bInterval 0, changing to 7 [ 770.020089][ T9] usb 6-1: config 0 interface 0 altsetting 0 endpoint 0x8F has invalid maxpacket 59391, setting to 1024 [ 770.051236][ T9] usb 6-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 21 [ 770.135362][ T9] usb 6-1: New USB device found, idVendor=047f, idProduct=ffff, bcdDevice= 0.00 [ 770.251300][ T9] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 770.397543][ T9] usb 6-1: config 0 descriptor?? [ 770.421845][T14223] raw-gadget.0 gadget.5: fail, usb_ep_enable returned -22 [ 771.046346][ T9] plantronics 0003:047F:FFFF.001D: unknown main item tag 0xd [ 771.118326][ T9] plantronics 0003:047F:FFFF.001D: No inputs registered, leaving [ 771.189231][ T9] plantronics 0003:047F:FFFF.001D: hiddev0,hidraw0: USB HID v0.40 Device [HID 047f:ffff] on usb-dummy_hcd.5-1/input0 [ 771.256478][ T9] usb 6-1: USB disconnect, device number 7 [ 778.181361][ T9] usb 3-1: new high-speed USB device number 22 using dummy_hcd [ 778.196195][ T30] kauditd_printk_skb: 56 callbacks suppressed [ 778.196208][ T30] audit: type=1400 audit(1742015998.131:1591): avc: denied { sqpoll } for pid=14328 comm="syz.1.2371" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=io_uring permissive=1 [ 778.268486][T14338] lo speed is unknown, defaulting to 1000 [ 778.435225][ T9] usb 3-1: Using ep0 maxpacket: 32 [ 778.471878][ T9] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 778.482872][ T9] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 778.505221][ T9] usb 3-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 5 [ 778.575430][ T9] usb 3-1: New USB device found, idVendor=0458, idProduct=5011, bcdDevice= 0.00 [ 778.632434][ T9] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 778.661616][T14347] kvm: requested 13409 ns i8254 timer period limited to 200000 ns [ 778.695872][T14347] kvm: pic: single mode not supported [ 778.695892][T14347] kvm: pic: level sensitive irq not supported [ 778.701923][T14347] kvm: pic: non byte read [ 778.713306][ T9] usb 3-1: config 0 descriptor?? [ 778.732976][T14347] kvm: pic: single mode not supported [ 778.732989][T14347] kvm: pic: level sensitive irq not supported [ 778.755859][T14347] kvm: pic: non byte read [ 779.180596][ T9] usbhid 3-1:0.0: can't add hid device: -71 [ 779.957811][ T9] usbhid 3-1:0.0: probe with driver usbhid failed with error -71 [ 779.989239][ T9] usb 3-1: USB disconnect, device number 22 [ 780.204790][T14365] netlink: 8 bytes leftover after parsing attributes in process `syz.5.2379'. [ 783.859225][T14394] lo speed is unknown, defaulting to 1000 [ 784.072135][ T30] audit: type=1400 audit(1742016003.971:1592): avc: denied { setopt } for pid=14397 comm="syz.5.2388" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_generic_socket permissive=1 [ 785.544831][T14398] netdevsim netdevsim5 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 785.921297][ T30] audit: type=1400 audit(1742016005.851:1593): avc: denied { watch_mount } for pid=14419 comm="syz.4.2393" path="/502" dev="tmpfs" ino=2623 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=dir permissive=1 [ 786.076182][ T30] audit: type=1400 audit(1742016005.851:1594): avc: denied { watch watch_reads } for pid=14419 comm="syz.4.2393" path="/502" dev="tmpfs" ino=2623 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=dir permissive=1 [ 786.078744][T14398] netdevsim netdevsim5 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 787.092507][T14398] netdevsim netdevsim5 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 787.231257][T14398] bridge0: port 3(netdevsim0) entered disabled state [ 787.249161][T14398] netdevsim netdevsim5 netdevsim0 (unregistering): left allmulticast mode [ 787.257901][T14398] netdevsim netdevsim5 netdevsim0 (unregistering): left promiscuous mode [ 787.267150][T14398] bridge0: port 3(netdevsim0) entered disabled state [ 787.798879][T14398] netdevsim netdevsim5 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 787.841256][ T26] usb 5-1: new high-speed USB device number 18 using dummy_hcd [ 788.035684][ T26] usb 5-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 788.391235][ T26] usb 5-1: New USB device found, idVendor=0471, idProduct=0304, bcdDevice=e4.df [ 788.873113][ T26] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 788.892456][T14398] netdevsim netdevsim5 eth0: set [1, 0] type 2 family 0 port 6081 - 0 [ 788.908942][ T26] usb 5-1: config 0 descriptor?? [ 788.917806][ T26] pwc: Askey VC010 type 2 USB webcam detected. [ 788.955757][T14398] netdevsim netdevsim5 eth1: set [1, 0] type 2 family 0 port 6081 - 0 [ 788.970502][T14398] netdevsim netdevsim5 eth2: set [1, 0] type 2 family 0 port 6081 - 0 [ 788.988234][T14398] netdevsim netdevsim5 eth3: set [1, 0] type 2 family 0 port 6081 - 0 [ 789.341620][ T5828] usb 2-1: new high-speed USB device number 19 using dummy_hcd [ 790.291782][ T5828] usb 2-1: Using ep0 maxpacket: 16 [ 790.307327][ T26] pwc: recv_control_msg error -32 req 02 val 2b00 [ 790.316816][ T5828] usb 2-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 790.328987][ T26] pwc: recv_control_msg error -32 req 02 val 2700 [ 790.339172][ T5828] usb 2-1: New USB device found, idVendor=0458, idProduct=5015, bcdDevice= 0.00 [ 790.455199][ T26] pwc: recv_control_msg error -32 req 02 val 2c00 [ 790.481339][ T5828] usb 2-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 790.493686][ T26] pwc: recv_control_msg error -32 req 04 val 1000 [ 790.506174][ T26] pwc: recv_control_msg error -32 req 04 val 1300 [ 790.605253][ T5828] usb 2-1: config 0 descriptor?? [ 790.622458][ T26] pwc: recv_control_msg error -32 req 04 val 1400 [ 790.631086][ T26] pwc: recv_control_msg error -32 req 02 val 2000 [ 791.296469][ T26] pwc: recv_control_msg error -32 req 04 val 1500 [ 791.319456][ T26] pwc: recv_control_msg error -32 req 02 val 2500 [ 791.327324][ T26] pwc: recv_control_msg error -32 req 02 val 2400 [ 791.334825][ T26] pwc: recv_control_msg error -32 req 02 val 2600 [ 791.360604][ T26] pwc: recv_control_msg error -32 req 02 val 2900 [ 791.368288][ T26] pwc: recv_control_msg error -32 req 02 val 2800 [ 791.432104][ T5866] usb 4-1: new high-speed USB device number 22 using dummy_hcd [ 791.576541][ T26] pwc: recv_control_msg error -71 req 04 val 1200 [ 791.584149][ T26] pwc: Registered as video103. [ 791.589816][ T26] input: PWC snapshot button as /devices/platform/dummy_hcd.4/usb5/5-1/input/input31 [ 791.600986][ T5866] usb 4-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 791.656730][ T5828] input: HID 0458:5015 as /devices/platform/dummy_hcd.1/usb2/2-1/2-1:0.0/0003:0458:5015.001E/input/input32 [ 791.670059][ T5866] usb 4-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 791.680358][ T26] usb 5-1: USB disconnect, device number 18 [ 791.745928][T14477] virtio-fs: tag <(null)> not found [ 792.200207][ T5866] usb 4-1: New USB device found, idVendor=10c4, idProduct=ea90, bcdDevice= 0.00 [ 792.228609][ T5866] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 792.250393][ T5866] usb 4-1: config 0 descriptor?? [ 792.283723][ T5828] input: HID 0458:5015 as /devices/platform/dummy_hcd.1/usb2/2-1/2-1:0.0/0003:0458:5015.001E/input/input33 [ 792.324961][ T5828] input: HID 0458:5015 as /devices/platform/dummy_hcd.1/usb2/2-1/2-1:0.0/0003:0458:5015.001E/input/input34 [ 793.589764][ T5828] kye 0003:0458:5015.001E: input,hiddev0,hidraw0: USB HID vcf.f2 Mouse [HID 0458:5015] on usb-dummy_hcd.1-1/input0 [ 793.604281][ T5866] cp2112 0003:10C4:EA90.001F: unknown main item tag 0x0 [ 793.812676][ T5828] usb 2-1: USB disconnect, device number 19 [ 794.947094][ T5866] cp2112 0003:10C4:EA90.001F: hidraw1: USB HID v0.00 Device [HID 10c4:ea90] on usb-dummy_hcd.3-1/input0 [ 795.608279][ T5866] cp2112 0003:10C4:EA90.001F: error requesting version [ 795.987906][ T30] audit: type=1400 audit(1742016015.731:1595): avc: denied { listen } for pid=14508 comm="syz.4.2414" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 796.231571][ T5866] cp2112 0003:10C4:EA90.001F: probe with driver cp2112 failed with error -71 [ 796.239707][ T30] audit: type=1400 audit(1742016015.731:1596): avc: denied { accept } for pid=14508 comm="syz.4.2414" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 796.259930][ C0] vkms_vblank_simulate: vblank timer overrun [ 796.449256][ T5866] usb 4-1: USB disconnect, device number 22 [ 797.754837][T14524] Driver unsupported XDP return value 0 on prog (id 475) dev N/A, expect packet loss! [ 799.104481][ T5828] usb 6-1: new high-speed USB device number 8 using dummy_hcd [ 799.721379][ T5828] usb 6-1: Using ep0 maxpacket: 16 [ 799.875962][ T5828] usb 6-1: config 0 interface 0 altsetting 0 has an endpoint descriptor with address 0xF3, changing to 0x83 [ 800.054068][T14553] snd_dummy snd_dummy.0: control 0:0:0:syz0:0 is already present [ 800.671612][ T5828] usb 6-1: config 0 interface 0 altsetting 0 endpoint 0x83 has invalid maxpacket 768, setting to 64 [ 800.695575][ T5828] usb 6-1: New USB device found, idVendor=2040, idProduct=0264, bcdDevice=4e.d1 [ 800.711299][ T5828] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 800.719361][ T5828] usb 6-1: Product: syz [ 800.723635][ T5828] usb 6-1: Manufacturer: syz [ 800.732091][ T5828] usb 6-1: SerialNumber: syz [ 800.746544][ T5828] usb 6-1: config 0 descriptor?? [ 800.777272][ T5828] em28xx 6-1:0.0: error: skipping audio endpoint 0x83, because it uses bulk transfers ! [ 802.292882][ T30] audit: type=1326 audit(1742016022.221:1597): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 802.649247][ T30] audit: type=1326 audit(1742016022.221:1598): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 803.392014][ T30] audit: type=1326 audit(1742016022.261:1599): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=6 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 803.529375][ T30] audit: type=1326 audit(1742016022.261:1600): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 803.561248][ T30] audit: type=1326 audit(1742016022.261:1601): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 803.623127][ T30] audit: type=1326 audit(1742016022.261:1602): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=157 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 803.668502][ T30] audit: type=1326 audit(1742016022.261:1603): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 803.821393][ T30] audit: type=1326 audit(1742016022.321:1604): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 803.868594][ T5828] usb 6-1: USB disconnect, device number 8 [ 803.875480][ T30] audit: type=1326 audit(1742016022.321:1605): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=41 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 804.652301][ T30] audit: type=1326 audit(1742016022.321:1606): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=14540 comm="syz.5.2421" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fba1378d169 code=0x7ffc0000 [ 805.493503][T14615] ALSA: mixer_oss: invalid OSS volume 'SPEA' [ 807.414643][T14637] program syz.5.2435 is using a deprecated SCSI ioctl, please convert it to SG_IO [ 808.438513][T14658] fuse: Unknown parameter '0x0000000000000003' [ 809.255374][ T5865] hid-generic 0020:0003:0002.0020: unknown main item tag 0x0 [ 809.263075][ T5865] hid-generic 0020:0003:0002.0020: unknown main item tag 0x0 [ 809.803651][ T5865] hid-generic 0020:0003:0002.0020: unknown main item tag 0x0 [ 809.811074][ T5865] hid-generic 0020:0003:0002.0020: unknown main item tag 0x0 [ 809.830520][ T5865] hid-generic 0020:0003:0002.0020: unknown main item tag 0x0 [ 809.851234][ T5865] hid-generic 0020:0003:0002.0020: unknown main item tag 0x0 [ 809.890777][ T5865] hid-generic 0020:0003:0002.0020: unknown main item tag 0x0 [ 809.915067][ T5865] hid-generic 0020:0003:0002.0020: unknown main item tag 0x0 [ 810.597681][ T5865] hid-generic 0020:0003:0002.0020: unknown main item tag 0x0 [ 810.621668][ T5865] hid-generic 0020:0003:0002.0020: hidraw0: SENSOR HUB HID v0.00 Device [syz0] on syz1 [ 812.121529][ T5873] usb 5-1: new high-speed USB device number 19 using dummy_hcd [ 813.195163][ T5873] usb 5-1: Using ep0 maxpacket: 16 [ 813.225301][ T5873] usb 5-1: config 0 has an invalid interface number: 8 but max is 0 [ 813.238471][ T5873] usb 5-1: config 0 has no interface number 0 [ 813.255660][ T5873] usb 5-1: config 0 interface 8 altsetting 0 has an invalid descriptor for endpoint zero, skipping [ 813.292519][ T5873] usb 5-1: New USB device found, idVendor=0d8c, idProduct=000e, bcdDevice=8e.8f [ 813.305413][ T5873] usb 5-1: New USB device strings: Mfr=0, Product=24, SerialNumber=3 [ 813.318335][ T5873] usb 5-1: Product: syz [ 813.324004][ T5873] usb 5-1: SerialNumber: syz [ 813.335253][ T5873] usb 5-1: config 0 descriptor?? [ 813.459037][T14704] trusted_key: encrypted_key: key user:syz not found [ 813.505762][ T5873] usbhid 5-1:0.8: couldn't find an input interrupt endpoint [ 813.570640][T14709] fuse: Unknown parameter '0x0000000000000003' [ 813.898605][T14682] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 813.935677][T14682] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 814.439451][ T30] kauditd_printk_skb: 13 callbacks suppressed [ 814.439490][ T30] audit: type=1400 audit(1742016034.231:1620): avc: denied { create } for pid=14715 comm="syz.2.2455" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_connector_socket permissive=1 [ 814.999346][T14725] netlink: 20 bytes leftover after parsing attributes in process `syz.2.2458'. [ 815.018726][T14725] netlink: 20 bytes leftover after parsing attributes in process `syz.2.2458'. [ 815.285694][ T5873] hid-generic 0020:0003:0002.0021: unknown main item tag 0x0 [ 815.293707][ T5873] hid-generic 0020:0003:0002.0021: unknown main item tag 0x0 [ 815.303404][ T5873] hid-generic 0020:0003:0002.0021: unknown main item tag 0x0 [ 815.310856][ T5873] hid-generic 0020:0003:0002.0021: unknown main item tag 0x0 [ 815.318389][ T5873] hid-generic 0020:0003:0002.0021: unknown main item tag 0x0 [ 815.325840][ T5873] hid-generic 0020:0003:0002.0021: unknown main item tag 0x0 [ 815.338023][ T5873] hid-generic 0020:0003:0002.0021: unknown main item tag 0x0 [ 815.363262][ T5873] hid-generic 0020:0003:0002.0021: unknown main item tag 0x0 [ 815.696500][ T5873] hid-generic 0020:0003:0002.0021: unknown main item tag 0x0 [ 815.732732][ T5828] usb 5-1: USB disconnect, device number 19 [ 815.770336][ T5873] hid-generic 0020:0003:0002.0021: hidraw0: SENSOR HUB HID v0.00 Device [syz0] on syz1 [ 816.014963][T14739] netlink: 8 bytes leftover after parsing attributes in process `syz.4.2461'. [ 816.024866][T14739] netlink: 8 bytes leftover after parsing attributes in process `syz.4.2461'. [ 818.214136][T14760] fuse: Unknown parameter '0x0000000000000003' [ 820.224919][T14774] veth3: entered promiscuous mode [ 826.101782][ T30] audit: type=1400 audit(1742016045.881:1621): avc: denied { connect } for pid=14840 comm="syz.5.2489" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netrom_socket permissive=1 [ 826.547096][T14849] netlink: 'syz.2.2490': attribute type 10 has an invalid length. [ 827.012305][T14849] 8021q: adding VLAN 0 to HW filter on device team0 [ 827.019434][T14849] team0: entered promiscuous mode [ 827.024503][T14849] team_slave_0: entered promiscuous mode [ 827.030259][T14849] team_slave_1: entered promiscuous mode [ 827.038294][T14849] bond0: (slave team0): Enslaving as an active interface with an up link [ 827.784805][T14858] EXT4-fs: Value of option "test_dummy_encryption" is unrecognized [ 828.957904][T14866] netdevsim netdevsim2: loading /lib/firmware/. failed with error -22 [ 828.966686][T14866] netdevsim netdevsim2: Direct firmware load for . failed with error -22 [ 828.975234][T14866] netdevsim netdevsim2: Falling back to sysfs fallback for: . [ 831.346795][T14892] syz.3.2502: attempt to access beyond end of device [ 831.346795][T14892] nbd3: rw=0, sector=16, nr_sectors = 2 limit=0 [ 835.761193][ T5865] usb 6-1: new high-speed USB device number 9 using dummy_hcd [ 836.474499][ T5865] usb 6-1: config 27 interface 0 altsetting 0 endpoint 0x8B has an invalid bInterval 0, changing to 7 [ 836.493989][ T5865] usb 6-1: config 27 interface 0 altsetting 0 bulk endpoint 0xB has invalid maxpacket 47 [ 836.520046][ T5865] usb 6-1: New USB device found, idVendor=0582, idProduct=0014, bcdDevice=bb.9d [ 836.531791][ T5865] usb 6-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 836.542751][T14923] raw-gadget.0 gadget.5: fail, usb_ep_enable returned -22 [ 836.555381][ T5865] usb 6-1: Quirk or no altset; falling back to MIDI 1.0 [ 838.359315][ T5828] usb 6-1: USB disconnect, device number 9 [ 838.573019][ T30] audit: type=1400 audit(1742016058.511:1622): avc: denied { bind } for pid=14939 comm="syz.2.2515" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=phonet_socket permissive=1 [ 840.544641][T14972] SET target dimension over the limit! [ 842.184343][ T30] audit: type=1400 audit(1742016062.111:1623): avc: denied { write } for pid=14979 comm="syz.4.2526" dev="9p" ino=2 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:unlabeled_t tclass=file permissive=1 [ 842.227053][ T30] audit: type=1400 audit(1742016062.141:1624): avc: denied { open } for pid=14979 comm="syz.4.2526" name="/" dev="9p" ino=2 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:unlabeled_t tclass=file permissive=1 [ 843.339361][ T30] audit: type=1400 audit(1742016063.261:1625): avc: denied { read } for pid=14979 comm="syz.4.2526" dev="9p" ino=2 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:unlabeled_t tclass=file permissive=1 [ 844.757085][ T30] audit: type=1800 audit(1742016064.691:1626): pid=14991 uid=0 auid=4294967295 ses=4294967295 subj=root:sysadm_r:sysadm_t op=collect_data cause=failed comm="syz.4.2526" name="/" dev="9p" ino=2 res=0 errno=0 [ 845.058509][T15011] [U] vÔ [ 845.705094][T15013] input: syz0 as /devices/virtual/input/input35 [ 845.712139][T15013] input: failed to attach handler leds to device input35, error: -6 [ 847.763514][ T30] audit: type=1400 audit(1742016067.021:1627): avc: denied { bind } for pid=15022 comm="syz.3.2536" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_tcpdiag_socket permissive=1 [ 850.958678][ T30] audit: type=1400 audit(1742016070.881:1628): avc: denied { mount } for pid=15041 comm="syz.3.2542" name="/" dev="rpc_pipefs" ino=42558 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:rpc_pipefs_t tclass=filesystem permissive=1 [ 851.253528][T15043] SELinux: unrecognized netlink message: protocol=0 nlmsg_type=0 sclass=netlink_route_socket pid=15043 comm=syz.5.2539 [ 851.286916][ T30] audit: type=1400 audit(1742016070.971:1629): avc: denied { mount } for pid=15042 comm="syz.5.2539" name="/" dev="pstore" ino=4286 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:pstore_t tclass=filesystem permissive=1 [ 851.400343][ T30] audit: type=1400 audit(1742016071.321:1630): avc: denied { unmount } for pid=12777 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:pstore_t tclass=filesystem permissive=1 [ 851.420434][ C1] vkms_vblank_simulate: vblank timer overrun [ 851.439637][T15052] lo speed is unknown, defaulting to 1000 [ 853.815512][T15068] SELinux: unrecognized netlink message: protocol=0 nlmsg_type=0 sclass=netlink_route_socket pid=15068 comm=syz.1.2547 [ 855.868168][T15092] xt_CT: You must specify a L4 protocol and not use inversions on it [ 856.716076][T15103] syz.4.2552: attempt to access beyond end of device [ 856.716076][T15103] loop4: rw=0, sector=0, nr_sectors = 1 limit=0 [ 856.748781][T15103] (syz.4.2552,15103,0):ocfs2_get_sector:1714 ERROR: status = -5 [ 856.757722][T15103] (syz.4.2552,15103,0):ocfs2_sb_probe:753 ERROR: status = -5 [ 856.769995][T15103] (syz.4.2552,15103,0):ocfs2_fill_super:989 ERROR: superblock probe failed! [ 856.779000][T15103] (syz.4.2552,15103,0):ocfs2_fill_super:1177 ERROR: status = -5 [ 857.172723][ T30] audit: type=1400 audit(1742016077.111:1631): avc: denied { append } for pid=15088 comm="syz.5.2553" name="fb0" dev="devtmpfs" ino=629 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:framebuf_device_t tclass=chr_file permissive=1 [ 857.799550][ T30] audit: type=1400 audit(1742016077.141:1632): avc: denied { map } for pid=15088 comm="syz.5.2553" path="/dev/fb0" dev="devtmpfs" ino=629 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:framebuf_device_t tclass=chr_file permissive=1 [ 858.017512][T15116] snd_dummy snd_dummy.0: control 0:0:0:syz0:0 is already present [ 858.296789][ T30] audit: type=1400 audit(1742016077.141:1633): avc: denied { execute } for pid=15088 comm="syz.5.2553" path="/dev/fb0" dev="devtmpfs" ino=629 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:framebuf_device_t tclass=chr_file permissive=1 [ 869.745465][T15232] netlink: 76 bytes leftover after parsing attributes in process `syz.5.2587'. [ 874.654729][ T2892] Bluetooth: (null): Invalid header checksum [ 874.691442][ T2892] Bluetooth: (null): Invalid header checksum [ 874.703734][ T2892] Bluetooth: (null): Invalid header checksum [ 874.709838][ T2892] Bluetooth: (null): Invalid header checksum [ 874.721638][ T2892] Bluetooth: (null): Invalid header checksum [ 874.727749][ T2892] Bluetooth: (null): Invalid header checksum [ 874.734910][ T2892] Bluetooth: (null): Invalid header checksum [ 874.780739][ T2892] Bluetooth: (null): Invalid header checksum [ 876.158340][T15301] SELinux: policydb magic number 0x0 does not match expected magic number 0xf97cff8c [ 876.168213][T15301] SELinux: failed to load policy [ 877.130592][T15311] netlink: 20 bytes leftover after parsing attributes in process `syz.5.2603'. [ 880.126233][T15331] serio: Serial port ptm0 [ 882.071088][ T5873] hid-generic 0020:0003:0002.0022: unknown main item tag 0x0 [ 882.087982][ T5873] hid-generic 0020:0003:0002.0022: unknown main item tag 0x0 [ 882.123755][ T5873] hid-generic 0020:0003:0002.0022: unknown main item tag 0x0 [ 882.157544][ T5873] hid-generic 0020:0003:0002.0022: unknown main item tag 0x0 [ 882.174047][ T30] audit: type=1400 audit(1742016102.111:1634): avc: denied { map_create } for pid=15329 comm="syz.2.2607" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bpf permissive=1 [ 882.211317][ T5873] hid-generic 0020:0003:0002.0022: unknown main item tag 0x0 [ 882.218896][ T5873] hid-generic 0020:0003:0002.0022: unknown main item tag 0x0 [ 882.230608][ T30] audit: type=1400 audit(1742016102.111:1635): avc: denied { bpf } for pid=15329 comm="syz.2.2607" capability=39 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=capability2 permissive=1 [ 882.253966][ T5873] hid-generic 0020:0003:0002.0022: unknown main item tag 0x0 [ 882.267127][ T5873] hid-generic 0020:0003:0002.0022: unknown main item tag 0x0 [ 882.293842][ T5873] hid-generic 0020:0003:0002.0022: unknown main item tag 0x0 [ 882.309925][ T30] audit: type=1400 audit(1742016102.191:1636): avc: denied { map_read map_write } for pid=15329 comm="syz.2.2607" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bpf permissive=1 [ 882.336167][ T5873] hid-generic 0020:0003:0002.0022: hidraw0: SENSOR HUB HID v0.00 Device [syz0] on syz1 [ 882.358021][ T30] audit: type=1400 audit(1742016102.261:1637): avc: denied { create } for pid=15353 comm="syz.1.2613" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 882.419172][ T30] audit: type=1400 audit(1742016102.321:1638): avc: denied { listen } for pid=15353 comm="syz.1.2613" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 882.439146][ T30] audit: type=1400 audit(1742016102.321:1639): avc: denied { accept } for pid=15353 comm="syz.1.2613" lport=50760 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 882.576108][ T30] audit: type=1400 audit(1742016102.331:1640): avc: denied { read } for pid=15329 comm="syz.2.2607" name="kvm" dev="devtmpfs" ino=84 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 882.732224][T15360] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 882.748571][T15360] serio: Serial port ptm0 [ 883.322438][ T30] audit: type=1400 audit(1742016102.331:1641): avc: denied { open } for pid=15329 comm="syz.2.2607" path="/dev/kvm" dev="devtmpfs" ino=84 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 883.351717][ T30] audit: type=1400 audit(1742016102.341:1642): avc: denied { ioctl } for pid=15329 comm="syz.2.2607" path="/dev/kvm" dev="devtmpfs" ino=84 ioctlcmd=0xae01 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 883.381223][ T30] audit: type=1400 audit(1742016102.341:1643): avc: denied { unmount } for pid=5821 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:proc_t tclass=filesystem permissive=1 [ 885.280901][T15383] vivid-000: disconnect [ 885.848529][T15375] vivid-000: reconnect [ 886.231618][T15391] netlink: 'syz.5.2621': attribute type 1 has an invalid length. [ 887.255413][T15392] lo speed is unknown, defaulting to 1000 [ 887.923018][ T30] kauditd_printk_skb: 39 callbacks suppressed [ 887.923033][ T30] audit: type=1400 audit(1742016107.181:1683): avc: denied { create } for pid=15379 comm="syz.1.2619" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=tipc_socket permissive=1 [ 888.796629][ T30] audit: type=1400 audit(1742016107.321:1684): avc: denied { getopt } for pid=15379 comm="syz.1.2619" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=tipc_socket permissive=1 [ 888.816836][ T30] audit: type=1326 audit(1742016108.151:1685): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=15394 comm="syz.3.2622" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fcc9978d169 code=0x7fc00000 [ 889.045517][ T30] audit: type=1400 audit(1742016108.321:1686): avc: denied { create } for pid=15405 comm="syz.5.2624" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 889.381311][ T30] audit: type=1400 audit(1742016108.761:1687): avc: denied { setopt } for pid=15405 comm="syz.5.2624" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 889.431878][ T30] audit: type=1400 audit(1742016108.801:1688): avc: denied { write } for pid=15404 comm="syz.1.2625" name="vmci" dev="devtmpfs" ino=697 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:device_t tclass=chr_file permissive=1 [ 889.585774][ T30] audit: type=1400 audit(1742016108.811:1689): avc: denied { read write } for pid=15404 comm="syz.1.2625" name="vhost-net" dev="devtmpfs" ino=1274 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:vhost_device_t tclass=chr_file permissive=1 [ 889.610003][ T30] audit: type=1400 audit(1742016108.811:1690): avc: denied { open } for pid=15404 comm="syz.1.2625" path="/dev/vhost-net" dev="devtmpfs" ino=1274 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:vhost_device_t tclass=chr_file permissive=1 [ 889.650660][ T30] audit: type=1400 audit(1742016108.811:1691): avc: denied { ioctl } for pid=15404 comm="syz.1.2625" path="/dev/vhost-net" dev="devtmpfs" ino=1274 ioctlcmd=0xaf01 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:vhost_device_t tclass=chr_file permissive=1 [ 890.491389][ T30] audit: type=1326 audit(1742016108.981:1692): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=root:sysadm_r:sysadm_t pid=15394 comm="syz.3.2622" exe="/root/syz-executor" sig=0 arch=c000003e syscall=16 compat=0 ip=0x7fcc9978d169 code=0x7fc00000 [ 891.397623][T15429] fuse: Unknown parameter '0x0000000000000003' [ 891.972159][T15440] SELinux: syz.1.2631 (15440) wrote to /sys/fs/selinux/user! This will not be supported in the future; please update your userspace. [ 892.034353][T15440] bridge3: entered promiscuous mode [ 893.052410][ T30] kauditd_printk_skb: 22 callbacks suppressed [ 893.052429][ T30] audit: type=1400 audit(1742016112.981:1715): avc: denied { create } for pid=15424 comm="syz.2.2629" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_rdma_socket permissive=1 [ 893.145606][T15434] »»»»»»: renamed from lo (while UP) [ 893.151076][ T30] audit: type=1400 audit(1742016113.061:1716): avc: denied { read } for pid=15428 comm="syz.3.2630" name="card1" dev="devtmpfs" ino=628 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 893.214823][ T30] audit: type=1400 audit(1742016113.061:1717): avc: denied { open } for pid=15428 comm="syz.3.2630" path="/dev/dri/card1" dev="devtmpfs" ino=628 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 893.331216][ T30] audit: type=1400 audit(1742016113.081:1718): avc: denied { ioctl } for pid=15424 comm="syz.2.2629" path="socket:[44260]" dev="sockfs" ino=44260 ioctlcmd=0x8923 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rawip_socket permissive=1 [ 893.357254][ T30] audit: type=1400 audit(1742016113.111:1719): avc: denied { ioctl } for pid=15428 comm="syz.3.2630" path="/dev/dri/card1" dev="devtmpfs" ino=628 ioctlcmd=0x640d scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 893.413050][ T30] audit: type=1400 audit(1742016113.121:1720): avc: denied { create } for pid=15428 comm="syz.3.2630" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=nfc_socket permissive=1 [ 893.485181][ T30] audit: type=1400 audit(1742016113.331:1721): avc: denied { create } for pid=15448 comm="syz.1.2634" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 893.505019][ T30] audit: type=1400 audit(1742016113.361:1722): avc: denied { setopt } for pid=15448 comm="syz.1.2634" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 893.524616][ T30] audit: type=1400 audit(1742016113.361:1723): avc: denied { connect } for pid=15448 comm="syz.1.2634" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 893.582750][ T30] audit: type=1400 audit(1742016113.361:1724): avc: denied { bind } for pid=15448 comm="syz.1.2634" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=dccp_socket permissive=1 [ 898.352583][ T30] kauditd_printk_skb: 18 callbacks suppressed [ 898.352599][ T30] audit: type=1400 audit(1742016118.291:1743): avc: denied { write } for pid=15489 comm="syz.3.2643" name="001" dev="devtmpfs" ino=745 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:usb_device_t tclass=chr_file permissive=1 [ 899.719982][ T30] audit: type=1400 audit(1742016119.651:1744): avc: denied { append } for pid=15496 comm="syz.5.2645" name="mice" dev="devtmpfs" ino=916 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:mouse_device_t tclass=chr_file permissive=1 [ 899.878781][ T30] audit: type=1400 audit(1742016119.651:1745): avc: denied { open } for pid=15496 comm="syz.5.2645" path="/dev/input/mice" dev="devtmpfs" ino=916 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:mouse_device_t tclass=chr_file permissive=1 [ 900.916461][ T30] audit: type=1400 audit(1742016120.851:1746): avc: denied { lock } for pid=15503 comm="syz.3.2647" path="socket:[44420]" dev="sockfs" ino=44420 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=unix_stream_socket permissive=1 [ 900.951232][ T30] audit: type=1400 audit(1742016120.881:1747): avc: denied { create } for pid=15507 comm="syz.4.2650" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=xdp_socket permissive=1 [ 900.975919][ T30] audit: type=1400 audit(1742016120.881:1748): avc: denied { setopt } for pid=15507 comm="syz.4.2650" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=xdp_socket permissive=1 [ 901.082553][T15518] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 901.163109][T15518] netlink: 'syz.2.2649': attribute type 20 has an invalid length. [ 901.671197][ T30] audit: type=1400 audit(1742016120.961:1749): avc: denied { setopt } for pid=15508 comm="syz.5.2648" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 901.761766][ T30] audit: type=1400 audit(1742016120.961:1750): avc: denied { bind } for pid=15508 comm="syz.5.2648" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 901.812141][ T30] audit: type=1400 audit(1742016120.961:1751): avc: denied { name_bind } for pid=15508 comm="syz.5.2648" src=20003 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:unreserved_port_t tclass=sctp_socket permissive=1 [ 901.838909][ T30] audit: type=1400 audit(1742016120.971:1752): avc: denied { node_bind } for pid=15508 comm="syz.5.2648" saddr=127.0.0.1 src=20003 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:node_t tclass=sctp_socket permissive=1 [ 901.971085][T15503] ALSA: mixer_oss: invalid OSS volume 'SPEA' [ 903.901834][ T30] kauditd_printk_skb: 13 callbacks suppressed [ 903.901851][ T30] audit: type=1400 audit(1742016123.261:1766): avc: denied { connect } for pid=15537 comm="syz.3.2654" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=can_socket permissive=1 [ 904.083223][ T30] audit: type=1400 audit(1742016123.261:1767): avc: denied { write } for pid=15537 comm="syz.3.2654" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=can_socket permissive=1 [ 904.173810][T15530] dccp_invalid_packet: P.Data Offset(10) too large [ 905.091616][ T30] audit: type=1400 audit(1742016124.831:1768): avc: denied { setopt } for pid=15555 comm="syz.3.2659" laddr=::1 lport=45734 faddr=::1 fport=20000 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=dccp_socket permissive=1 [ 905.249105][ T30] audit: type=1400 audit(1742016125.141:1769): avc: denied { block_suspend } for pid=15557 comm="syz.1.2660" capability=36 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=capability2 permissive=1 [ 905.629604][T15563] syz.5.2662: attempt to access beyond end of device [ 905.629604][T15563] nbd5: rw=0, sector=8, nr_sectors = 8 limit=0 [ 905.649124][T15563] VFS: could not find a valid V7 on nbd5. [ 906.077097][ T30] audit: type=1400 audit(1742016126.011:1770): avc: denied { setopt } for pid=15566 comm="syz.4.2663" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=alg_socket permissive=1 [ 906.431343][ T5873] usb 4-1: new high-speed USB device number 23 using dummy_hcd [ 906.694519][ T30] audit: type=1400 audit(1742016126.041:1771): avc: denied { connect } for pid=15566 comm="syz.4.2663" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netrom_socket permissive=1 [ 906.981197][T15569] ALSA: mixer_oss: invalid OSS volume 'SPEA' [ 907.135055][ T30] audit: type=1400 audit(1742016126.531:1772): avc: denied { create } for pid=15561 comm="syz.5.2662" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=ax25_socket permissive=1 [ 907.182862][ T5873] usb 4-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 907.202751][ T30] audit: type=1400 audit(1742016126.651:1773): avc: denied { create } for pid=15561 comm="syz.5.2662" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 907.224148][ T5873] usb 4-1: config 0 interface 0 altsetting 0 endpoint 0x7 has invalid wMaxPacketSize 0 [ 907.431178][ T5873] usb 4-1: config 0 interface 0 altsetting 0 bulk endpoint 0x7 has invalid maxpacket 0 [ 907.443247][ T5873] usb 4-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 2 [ 907.456601][ T5873] usb 4-1: New USB device found, idVendor=2040, idProduct=4900, bcdDevice=4d.8b [ 907.466215][ T5873] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 908.342770][ T30] audit: type=1400 audit(1742016128.261:1774): avc: denied { read } for pid=15579 comm="syz.5.2666" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=alg_socket permissive=1 [ 908.430623][ T5873] usb 4-1: config 0 descriptor?? [ 908.439113][ T5873] hdpvr 4-1:0.0: Could not find bulk-in endpoint [ 908.445894][ T5873] hdpvr 4-1:0.0: probe with driver hdpvr failed with error -12 [ 908.521191][ T30] audit: type=1400 audit(1742016128.281:1775): avc: denied { create } for pid=15579 comm="syz.5.2666" name="file0" scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=blk_file permissive=1 [ 908.976184][ T30] kauditd_printk_skb: 1 callbacks suppressed [ 908.976200][ T30] audit: type=1400 audit(1742016128.881:1777): avc: denied { mounton } for pid=15587 comm="syz.5.2668" path="/138" dev="tmpfs" ino=723 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=dir permissive=1 [ 910.274296][ T5865] usb 4-1: USB disconnect, device number 23 [ 910.283993][ T30] audit: type=1400 audit(1742016129.731:1778): avc: denied { mount } for pid=15599 comm="syz.2.2671" name="/" dev="pstore" ino=4286 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:pstore_t tclass=filesystem permissive=1 [ 910.469390][ T30] audit: type=1400 audit(1742016130.391:1779): avc: denied { unmount } for pid=5816 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:pstore_t tclass=filesystem permissive=1 [ 910.706551][ T30] audit: type=1400 audit(1742016130.441:1780): avc: denied { bind } for pid=15603 comm="syz.3.2672" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 910.855092][ T30] audit: type=1400 audit(1742016130.791:1781): avc: denied { read write } for pid=12777 comm="syz-executor" name="loop5" dev="devtmpfs" ino=652 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file permissive=1 [ 910.894848][ T30] audit: type=1400 audit(1742016130.791:1782): avc: denied { open } for pid=12777 comm="syz-executor" path="/dev/loop5" dev="devtmpfs" ino=652 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file permissive=1 [ 910.926933][ T30] audit: type=1400 audit(1742016130.791:1783): avc: denied { ioctl } for pid=12777 comm="syz-executor" path="/dev/loop5" dev="devtmpfs" ino=652 ioctlcmd=0x4c01 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:fixed_disk_device_t tclass=blk_file permissive=1 [ 910.938839][T15610] sp0: Synchronizing with TNC [ 911.011428][ T52] usb 3-1: new high-speed USB device number 23 using dummy_hcd [ 911.268397][ T52] usb 3-1: config 0 interface 0 altsetting 251 endpoint 0x9 has invalid wMaxPacketSize 0 [ 911.287072][ T52] usb 3-1: config 0 interface 0 has no altsetting 0 [ 911.295505][ T30] audit: type=1400 audit(1742016130.821:1784): avc: denied { ioctl } for pid=15607 comm="syz.2.2673" path="/dev/raw-gadget" dev="devtmpfs" ino=820 ioctlcmd=0x5502 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:device_t tclass=chr_file permissive=1 [ 911.321555][ T30] audit: type=1400 audit(1742016130.861:1785): avc: denied { create } for pid=15614 comm="syz.5.2675" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_rdma_socket permissive=1 [ 911.342293][ T30] audit: type=1400 audit(1742016130.891:1786): avc: denied { read } for pid=15614 comm="syz.5.2675" name="msr" dev="devtmpfs" ino=87 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:cpu_device_t tclass=chr_file permissive=1 [ 911.367057][ T52] usb 3-1: New USB device found, idVendor=045e, idProduct=0283, bcdDevice=99.0b [ 911.376179][ T52] usb 3-1: New USB device strings: Mfr=1, Product=228, SerialNumber=2 [ 911.384401][ T52] usb 3-1: Product: syz [ 911.388545][ T52] usb 3-1: Manufacturer: syz [ 911.398939][ T52] usb 3-1: SerialNumber: syz [ 911.424692][ T52] usb 3-1: config 0 descriptor?? [ 911.433154][ T52] usb 3-1: selecting invalid altsetting 0 [ 911.581848][ T5865] usb 2-1: new high-speed USB device number 20 using dummy_hcd [ 912.344771][T15619] ALSA: mixer_oss: invalid OSS volume 'SPEA' [ 912.823717][ T9447] usb 3-1: USB disconnect, device number 23 [ 913.472312][ T5865] usb 2-1: Using ep0 maxpacket: 16 [ 913.593742][ T5865] usb 2-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 913.637308][ T5865] usb 2-1: config 0 interface 0 has no altsetting 0 [ 913.666075][ T5865] usb 2-1: New USB device found, idVendor=13b1, idProduct=0042, bcdDevice=9d.3d [ 913.680316][ T5865] usb 2-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 913.719829][T15608] netlink: 12 bytes leftover after parsing attributes in process `syz.2.2673'. [ 913.833295][ T5865] usb 2-1: Product: syz [ 913.837852][ T5865] usb 2-1: Manufacturer: syz [ 913.842654][ T5865] usb 2-1: SerialNumber: syz [ 913.865381][ T5865] usb 2-1: config 0 descriptor?? [ 913.881659][T15608] netdevsim netdevsim2 netdevsim0: set [0, 0] type 1 family 0 port 8472 - 0 [ 913.891050][T15608] netdevsim netdevsim2 netdevsim1: set [0, 0] type 1 family 0 port 8472 - 0 [ 913.899886][T15608] netdevsim netdevsim2 netdevsim2: set [0, 0] type 1 family 0 port 8472 - 0 [ 913.908639][T15608] netdevsim netdevsim2 netdevsim3: set [0, 0] type 1 family 0 port 8472 - 0 [ 913.918077][ T5865] usb 2-1: can't set config #0, error -71 [ 914.411614][T15609] [U] è [ 914.416187][T15608] vxlan0: entered promiscuous mode [ 914.429185][ T5865] usb 2-1: USB disconnect, device number 20 [ 914.654034][T15650] fuse: Unknown parameter '0x000000000000000300000000000000000000' [ 914.847681][ T30] kauditd_printk_skb: 41 callbacks suppressed [ 914.847698][ T30] audit: type=1400 audit(1742016134.591:1828): avc: denied { mounton } for pid=15649 comm="syz.1.2683" path="/544/file0" dev="tmpfs" ino=2853 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=fifo_file permissive=1 [ 915.370808][ T30] audit: type=1400 audit(1742016134.981:1829): avc: denied { create } for pid=15639 comm="syz.4.2680" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=kcm_socket permissive=1 [ 915.710658][ T30] audit: type=1400 audit(1742016135.571:1830): avc: denied { create } for pid=15657 comm="syz.5.2684" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=key_socket permissive=1 [ 915.731431][ T30] audit: type=1400 audit(1742016135.581:1831): avc: denied { write } for pid=15657 comm="syz.5.2684" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=key_socket permissive=1 [ 915.751370][ T30] audit: type=1400 audit(1742016135.631:1832): avc: denied { map } for pid=15657 comm="syz.5.2684" path="anon_inode:[io_uring]" dev="anon_inodefs" ino=43712 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:sysadm_t tclass=anon_inode permissive=1 [ 915.795794][ T30] audit: type=1400 audit(1742016135.631:1833): avc: denied { read write } for pid=15657 comm="syz.5.2684" path="anon_inode:[io_uring]" dev="anon_inodefs" ino=43712 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:sysadm_t tclass=anon_inode permissive=1 [ 915.836965][ T30] audit: type=1400 audit(1742016135.691:1834): avc: denied { read } for pid=15649 comm="syz.1.2683" name="card1" dev="devtmpfs" ino=628 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 915.860780][ T30] audit: type=1400 audit(1742016135.691:1835): avc: denied { open } for pid=15649 comm="syz.1.2683" path="/dev/dri/card1" dev="devtmpfs" ino=628 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 915.964279][ T30] audit: type=1400 audit(1742016135.691:1836): avc: denied { ioctl } for pid=15649 comm="syz.1.2683" path="/dev/dri/card1" dev="devtmpfs" ino=628 ioctlcmd=0x640d scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:dri_device_t tclass=chr_file permissive=1 [ 915.990051][ T30] audit: type=1400 audit(1742016135.691:1837): avc: denied { create } for pid=15649 comm="syz.1.2683" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=nfc_socket permissive=1 [ 918.654923][T15687] netlink: 44 bytes leftover after parsing attributes in process `syz.5.2691'. [ 919.336306][T15702] vivid-007: disconnect [ 919.891990][T15689] vivid-007: reconnect [ 920.231377][ T30] kauditd_printk_skb: 31 callbacks suppressed [ 920.231485][ T30] audit: type=1400 audit(1742016139.741:1869): avc: denied { sqpoll } for pid=15706 comm="syz.5.2696" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=io_uring permissive=1 [ 920.454980][ T30] audit: type=1400 audit(1742016139.901:1870): avc: denied { append } for pid=15696 comm="syz.3.2694" name="001" dev="devtmpfs" ino=721 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:usb_device_t tclass=chr_file permissive=1 [ 920.478002][ T30] audit: type=1400 audit(1742016140.051:1871): avc: denied { ioctl } for pid=15696 comm="syz.3.2694" path="/dev/kvm" dev="devtmpfs" ino=84 ioctlcmd=0xae01 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 921.015138][ T30] audit: type=1400 audit(1742016140.951:1872): avc: denied { bind } for pid=15706 comm="syz.5.2696" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 921.594772][ T30] audit: type=1400 audit(1742016141.051:1873): avc: denied { listen } for pid=15716 comm="syz.3.2699" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=phonet_socket permissive=1 [ 921.707045][ T30] audit: type=1400 audit(1742016141.131:1874): avc: denied { write } for pid=15716 comm="syz.3.2699" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=phonet_socket permissive=1 [ 921.782276][ T30] audit: type=1400 audit(1742016141.531:1875): avc: denied { mount } for pid=15713 comm="syz.2.2698" name="/" dev="rpc_pipefs" ino=44855 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:rpc_pipefs_t tclass=filesystem permissive=1 [ 921.831478][ T30] audit: type=1400 audit(1742016141.551:1876): avc: denied { shutdown } for pid=15713 comm="syz.2.2698" lport=58 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rawip_socket permissive=1 [ 921.857849][T15726] loop6: detected capacity change from 0 to 524287999 [ 921.872200][ C1] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 921.881644][ C1] Buffer I/O error on dev loop6, logical block 0, async page read [ 921.896958][ T30] audit: type=1400 audit(1742016141.751:1877): avc: denied { name_bind } for pid=15712 comm="syz.1.2697" src=20003 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:unreserved_port_t tclass=tcp_socket permissive=1 [ 921.964121][ C1] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 921.973364][ C1] Buffer I/O error on dev loop6, logical block 0, async page read [ 921.988697][ C1] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 921.997935][ C1] Buffer I/O error on dev loop6, logical block 0, async page read [ 922.006188][ C1] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 922.015343][ C1] Buffer I/O error on dev loop6, logical block 0, async page read [ 922.024258][ C1] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 922.033457][ C1] Buffer I/O error on dev loop6, logical block 0, async page read [ 922.168306][ T30] audit: type=1400 audit(1742016141.751:1878): avc: denied { node_bind } for pid=15712 comm="syz.1.2697" saddr=172.20.20.170 src=20003 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:node_t tclass=tcp_socket permissive=1 [ 922.194857][ C1] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 922.204082][ C1] Buffer I/O error on dev loop6, logical block 0, async page read [ 922.218227][ C1] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 922.227473][ C1] Buffer I/O error on dev loop6, logical block 0, async page read [ 922.238898][ C1] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 922.243139][T15729] netlink: 4 bytes leftover after parsing attributes in process `syz.5.2700'. [ 922.248140][ C1] Buffer I/O error on dev loop6, logical block 0, async page read [ 922.305018][ C0] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 922.314317][ C0] Buffer I/O error on dev loop6, logical block 0, async page read [ 922.333043][T15726] ldm_validate_partition_table(): Disk read failed. [ 922.388030][ C0] I/O error, dev loop6, sector 0 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 2 [ 922.397254][ C0] Buffer I/O error on dev loop6, logical block 0, async page read [ 922.409955][T15726] Dev loop6: unable to read RDB block 0 [ 922.544707][T15726] loop6: unable to read partition table [ 922.561278][T15726] loop_reread_partitions: partition scan of loop6 (3Ÿ ¾‚³˜) failed (rc=-5) [ 923.579092][T15748] netlink: 'syz.4.2707': attribute type 12 has an invalid length. [ 925.303163][ T30] kauditd_printk_skb: 15 callbacks suppressed [ 925.303179][ T30] audit: type=1400 audit(1742016144.371:1894): avc: denied { bind } for pid=15753 comm="syz.4.2708" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 925.328623][ C0] vkms_vblank_simulate: vblank timer overrun [ 925.397833][ T30] audit: type=1400 audit(1742016144.371:1895): avc: denied { name_bind } for pid=15753 comm="syz.4.2708" src=20003 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:unreserved_port_t tclass=sctp_socket permissive=1 [ 925.423679][ T30] audit: type=1400 audit(1742016144.371:1896): avc: denied { node_bind } for pid=15753 comm="syz.4.2708" saddr=::1 src=20003 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:node_t tclass=sctp_socket permissive=1 [ 925.445402][ C0] vkms_vblank_simulate: vblank timer overrun [ 925.494658][ T30] audit: type=1400 audit(1742016144.371:1897): avc: denied { write } for pid=15753 comm="syz.4.2708" laddr=::1 lport=20003 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 925.622155][T15764] block nbd4: not configured, cannot reconfigure [ 925.646453][ T30] audit: type=1400 audit(1742016144.371:1898): avc: denied { connect } for pid=15753 comm="syz.4.2708" laddr=::1 lport=20003 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 926.169952][ T30] audit: type=1400 audit(1742016144.371:1899): avc: denied { name_connect } for pid=15753 comm="syz.4.2708" dest=20003 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:unreserved_port_t tclass=sctp_socket permissive=1 [ 926.282439][ T30] audit: type=1400 audit(1742016145.451:1900): avc: denied { name_bind } for pid=15761 comm="syz.3.2710" src=2 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:reserved_port_t tclass=tcp_socket permissive=1 [ 927.702759][ T30] audit: type=1400 audit(1742016147.641:1901): avc: denied { write } for pid=15777 comm="syz.5.2716" name="uinput" dev="devtmpfs" ino=920 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:event_device_t tclass=chr_file permissive=1 [ 927.753687][ T30] audit: type=1400 audit(1742016147.641:1902): avc: denied { open } for pid=15777 comm="syz.5.2716" path="/dev/uinput" dev="devtmpfs" ino=920 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:event_device_t tclass=chr_file permissive=1 [ 927.777355][ C0] vkms_vblank_simulate: vblank timer overrun [ 927.898584][T15779] snd_dummy snd_dummy.0: control 0:0:0:syz0:0 is already present [ 927.933362][ T30] audit: type=1400 audit(1742016147.671:1903): avc: denied { ioctl } for pid=15777 comm="syz.5.2716" path="/dev/uinput" dev="devtmpfs" ino=920 ioctlcmd=0x5504 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:event_device_t tclass=chr_file permissive=1 [ 929.525107][T15816] netlink: 8 bytes leftover after parsing attributes in process `syz.1.2722'. [ 929.572976][T15815] syz.1.2722 (15815): drop_caches: 2 [ 929.587894][T15815] syz.1.2722 (15815): drop_caches: 2 [ 929.858385][ T9447] usb 5-1: new full-speed USB device number 20 using dummy_hcd [ 931.131419][ T30] kauditd_printk_skb: 1 callbacks suppressed [ 931.131436][ T30] audit: type=1400 audit(1742016150.691:1905): avc: denied { create } for pid=15814 comm="syz.2.2721" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=dccp_socket permissive=1 [ 932.057084][ T9447] usb 5-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 932.263243][ T30] audit: type=1400 audit(1742016150.701:1906): avc: denied { listen } for pid=15814 comm="syz.2.2721" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=dccp_socket permissive=1 [ 932.374412][T15832] netlink: 'syz.3.2725': attribute type 3 has an invalid length. [ 932.382614][T15832] netlink: 199836 bytes leftover after parsing attributes in process `syz.3.2725'. [ 933.184133][T15833] vivid-007: disconnect [ 933.263294][ T9447] usb 5-1: string descriptor 0 read error: -71 [ 933.270264][ T30] audit: type=1400 audit(1742016150.721:1907): avc: denied { checkpoint_restore } for pid=15814 comm="syz.2.2721" capability=40 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=capability2 permissive=1 [ 933.289737][T15829] vivid-007: reconnect [ 933.409373][ T9447] usb 5-1: New USB device found, idVendor=2294, idProduct=425b, bcdDevice=a2.10 [ 933.474822][ T9447] usb 5-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 933.501524][ T30] audit: type=1400 audit(1742016153.431:1908): avc: denied { create } for pid=15839 comm="syz.5.2730" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 934.503889][ T9447] usb 5-1: config 0 descriptor?? [ 934.515353][ T9447] usb 5-1: can't set config #0, error -71 [ 934.534879][ T30] audit: type=1400 audit(1742016153.691:1909): avc: denied { create } for pid=15840 comm="syz.4.2729" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_xfrm_socket permissive=1 [ 934.534922][ T9447] usb 5-1: USB disconnect, device number 20 [ 934.580984][T15850] IPVS: stopping master sync thread 15852 ... [ 934.752510][T15845] netlink: 24 bytes leftover after parsing attributes in process `syz.3.2728'. [ 935.185410][T15855] netlink: 12 bytes leftover after parsing attributes in process `syz.2.2727'. [ 935.351130][ T30] audit: type=1400 audit(1742016155.131:1910): avc: denied { write } for pid=15854 comm="syz.2.2727" name="001" dev="devtmpfs" ino=745 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:usb_device_t tclass=chr_file permissive=1 [ 935.451187][ T30] audit: type=1400 audit(1742016155.351:1911): avc: denied { append } for pid=15839 comm="syz.5.2730" name="kvm" dev="devtmpfs" ino=84 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 935.698428][ T30] audit: type=1400 audit(1742016155.521:1912): avc: denied { append } for pid=15858 comm="syz.4.2731" name="mice" dev="devtmpfs" ino=916 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:mouse_device_t tclass=chr_file permissive=1 [ 936.060744][ T30] audit: type=1400 audit(1742016155.531:1913): avc: denied { open } for pid=15858 comm="syz.4.2731" path="/dev/input/mice" dev="devtmpfs" ino=916 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:mouse_device_t tclass=chr_file permissive=1 [ 937.075371][ T30] audit: type=1400 audit(1742016156.571:1914): avc: denied { ioctl } for pid=15865 comm="syz.4.2733" path="socket:[45092]" dev="sockfs" ino=45092 ioctlcmd=0x8933 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_generic_socket permissive=1 [ 938.508602][ T30] audit: type=1400 audit(1742016157.731:1915): avc: denied { mount } for pid=15870 comm="syz.2.2735" name="/" dev="ramfs" ino=45099 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:ramfs_t tclass=filesystem permissive=1 [ 938.542967][ T30] audit: type=1400 audit(1742016157.751:1916): avc: denied { ioctl } for pid=15870 comm="syz.2.2735" path="socket:[45102]" dev="sockfs" ino=45102 ioctlcmd=0x5411 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 938.667164][ T30] audit: type=1400 audit(1742016158.561:1917): avc: denied { unmount } for pid=5816 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:ramfs_t tclass=filesystem permissive=1 [ 939.914826][T15893] lo speed is unknown, defaulting to 1000 [ 940.126581][T15900] ip6t_rpfilter: unknown options [ 942.480025][T15908] SELinux: unrecognized netlink message: protocol=4 nlmsg_type=16 sclass=netlink_tcpdiag_socket pid=15908 comm=syz.4.2742 [ 942.721752][T15908] workqueue: Failed to create a rescuer kthread for wq "xfs-buf/nbd4": -EINTR [ 942.722755][ T30] audit: type=1400 audit(1742016162.391:1918): avc: denied { write } for pid=15905 comm="syz.3.2743" path="socket:[45157]" dev="sockfs" ino=45157 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 943.255368][ T30] audit: type=1400 audit(1742016162.411:1919): avc: denied { connect } for pid=15903 comm="syz.4.2742" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 943.281137][ T30] audit: type=1400 audit(1742016162.431:1920): avc: denied { read } for pid=15903 comm="syz.4.2742" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_tcpdiag_socket permissive=1 [ 943.356310][ T30] audit: type=1400 audit(1742016162.431:1921): avc: denied { mounton } for pid=15903 comm="syz.4.2742" path="/syzcgroup/unified/syz4" dev="cgroup2" ino=154 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:cgroup_t tclass=dir permissive=1 [ 943.531017][ T30] audit: type=1400 audit(1742016163.291:1922): avc: denied { read write } for pid=15913 comm="syz.4.2746" name="uhid" dev="devtmpfs" ino=1273 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:uhid_device_t tclass=chr_file permissive=1 [ 943.712246][ T30] audit: type=1400 audit(1742016163.291:1923): avc: denied { open } for pid=15913 comm="syz.4.2746" path="/dev/uhid" dev="devtmpfs" ino=1273 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:uhid_device_t tclass=chr_file permissive=1 [ 944.355014][ T30] audit: type=1400 audit(1742016163.291:1924): avc: denied { getopt } for pid=15913 comm="syz.4.2746" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 944.526362][ T30] audit: type=1400 audit(1742016163.851:1925): avc: denied { name_connect } for pid=15919 comm="syz.2.2738" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:port_t tclass=sctp_socket permissive=1 [ 944.595571][ T30] audit: type=1400 audit(1742016163.931:1926): avc: denied { listen } for pid=15919 comm="syz.2.2738" lport=48227 faddr=::ffff:172.20.255.187 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 944.840933][ T30] audit: type=1400 audit(1742016163.941:1927): avc: denied { accept } for pid=15919 comm="syz.2.2738" lport=48227 faddr=::ffff:172.20.255.187 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 945.547741][T15945] RDS: rds_bind could not find a transport for ::ffff:172.20.20.170, load rds_tcp or rds_rdma? [ 948.268707][T15975] netlink: 8 bytes leftover after parsing attributes in process `syz.4.2756'. [ 948.642616][ T30] kauditd_printk_skb: 9 callbacks suppressed [ 948.642628][ T30] audit: type=1400 audit(1742016168.111:1937): avc: denied { ioctl } for pid=15968 comm="syz.4.2756" path="socket:[46292]" dev="sockfs" ino=46292 ioctlcmd=0x8923 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_netfilter_socket permissive=1 [ 948.691333][ T30] audit: type=1400 audit(1742016168.201:1938): avc: denied { write } for pid=15968 comm="syz.4.2756" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_rdma_socket permissive=1 [ 948.792695][ T30] audit: type=1400 audit(1742016168.221:1939): avc: denied { write } for pid=15968 comm="syz.4.2756" scontext=root:sysadm_r:sysadm_t tcontext=system_u:system_r:kernel_t tclass=key permissive=1 [ 948.920979][ T30] audit: type=1400 audit(1742016168.661:1940): avc: denied { bind } for pid=15961 comm="syz.3.2754" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=xdp_socket permissive=1 [ 949.511650][ T30] audit: type=1400 audit(1742016168.961:1941): avc: denied { write } for pid=15977 comm="syz.1.2757" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 949.533377][ T30] audit: type=1400 audit(1742016169.021:1942): avc: denied { unmount } for pid=5816 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:proc_t tclass=filesystem permissive=1 [ 949.981219][ T30] audit: type=1400 audit(1742016169.761:1943): avc: denied { create } for pid=15982 comm="syz.4.2758" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=ax25_socket permissive=1 [ 950.648364][T15989] netlink: 28 bytes leftover after parsing attributes in process `syz.2.2759'. [ 950.667542][ T30] audit: type=1400 audit(1742016169.811:1944): avc: denied { connect } for pid=15982 comm="syz.4.2758" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=ax25_socket permissive=1 [ 950.806747][ T30] audit: type=1400 audit(1742016169.821:1945): avc: denied { read write } for pid=15982 comm="syz.4.2758" name="sg0" dev="devtmpfs" ino=753 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:scsi_generic_device_t tclass=chr_file permissive=1 [ 950.999997][ T30] audit: type=1400 audit(1742016169.821:1946): avc: denied { open } for pid=15982 comm="syz.4.2758" path="/dev/sg0" dev="devtmpfs" ino=753 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:scsi_generic_device_t tclass=chr_file permissive=1 [ 952.056509][T16005] lo speed is unknown, defaulting to 1000 [ 953.919086][T16023] lo speed is unknown, defaulting to 1000 [ 954.561682][T16031] netlink: 12 bytes leftover after parsing attributes in process `syz.2.2769'. [ 957.905819][ T30] kauditd_printk_skb: 1 callbacks suppressed [ 957.905859][ T30] audit: type=1400 audit(1742016177.841:1948): avc: denied { ioctl } for pid=16042 comm="syz.3.2779" path="socket:[45454]" dev="sockfs" ino=45454 ioctlcmd=0x890c scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=sctp_socket permissive=1 [ 958.088810][ T30] audit: type=1400 audit(1742016178.001:1949): avc: denied { setopt } for pid=16042 comm="syz.3.2779" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=phonet_socket permissive=1 [ 958.238060][T16043] dlm: no local IP address has been set [ 958.245389][T16043] dlm: cannot start dlm midcomms -107 [ 958.383546][ T30] audit: type=1400 audit(1742016178.231:1950): avc: denied { create } for pid=16053 comm="syz.1.2773" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 958.431859][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 958.452129][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 958.927602][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 959.050130][ T30] audit: type=1400 audit(1742016178.241:1951): avc: denied { bind } for pid=16053 comm="syz.1.2773" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rose_socket permissive=1 [ 959.070051][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 959.091510][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 959.115407][ T30] audit: type=1400 audit(1742016178.361:1952): avc: denied { write } for pid=16047 comm="syz.2.2772" name="kvm" dev="devtmpfs" ino=84 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:kvm_device_t tclass=chr_file permissive=1 [ 960.010619][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.024553][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.037039][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.045193][ T30] audit: type=1400 audit(1742016179.751:1953): avc: denied { setopt } for pid=16057 comm="syz.5.2775" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 960.064814][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.077931][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.085851][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.115105][ T30] audit: type=1400 audit(1742016179.901:1954): avc: denied { connect } for pid=16057 comm="syz.5.2775" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 960.191385][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.199578][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.213546][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.224565][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.234806][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.246448][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.334630][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 960.357198][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 961.326951][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 961.336567][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 961.344468][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 961.368283][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 961.790912][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 961.984454][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.288005][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.296128][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.303955][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.318517][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.332830][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.364733][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.450177][ T30] audit: type=1400 audit(1742016182.381:1955): avc: denied { mount } for pid=16081 comm="syz.3.2781" name="/" dev="hugetlbfs" ino=45649 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:hugetlbfs_t tclass=filesystem permissive=1 [ 962.537395][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.553618][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.565065][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.579011][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.591221][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.613818][T16091] syz.4.2783: attempt to access beyond end of device [ 962.613818][T16091] nbd4: rw=0, sector=1, nr_sectors = 1 limit=0 [ 962.626948][T16091] VFS: could not find a valid V7 on nbd4. [ 962.637708][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.653155][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.691981][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.735458][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.745770][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.756796][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.771701][ T10] hid-generic 0000:007F:FFFFFFFE.0023: unknown main item tag 0x0 [ 962.776127][ T30] audit: type=1400 audit(1742016182.451:1956): avc: denied { setopt } for pid=16083 comm="syz.5.2782" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 962.780708][ T10] hid-generic 0000:007F:FFFFFFFE.0023: hidraw0: HID v0.00 Device [syz1] on syz0 [ 964.011558][ T30] audit: type=1400 audit(1742016182.451:1957): avc: denied { read } for pid=16083 comm="syz.5.2782" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 964.252332][ T30] audit: type=1400 audit(1742016184.181:1958): avc: denied { unmount } for pid=5830 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:hugetlbfs_t tclass=filesystem permissive=1 [ 964.800567][ T30] audit: type=1400 audit(1742016184.281:1959): avc: denied { bind } for pid=16094 comm="syz.4.2784" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 964.969461][ T30] audit: type=1400 audit(1742016184.291:1960): avc: denied { listen } for pid=16094 comm="syz.4.2784" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 965.283075][ T30] audit: type=1400 audit(1742016184.291:1961): avc: denied { connect } for pid=16094 comm="syz.4.2784" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 965.311452][ T30] audit: type=1400 audit(1742016184.301:1962): avc: denied { shutdown } for pid=16094 comm="syz.4.2784" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=vsock_socket permissive=1 [ 965.587628][ T30] audit: type=1400 audit(1742016184.971:1963): avc: denied { write } for pid=16096 comm="syz.5.2786" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_xfrm_socket permissive=1 [ 965.607942][ T30] audit: type=1400 audit(1742016184.971:1964): avc: denied { nlmsg_write } for pid=16096 comm="syz.5.2786" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_xfrm_socket permissive=1 [ 965.629767][ T30] audit: type=1400 audit(1742016185.271:1965): avc: denied { getopt } for pid=16098 comm="syz.2.2787" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rawip_socket permissive=1 [ 965.657671][ T30] audit: type=1400 audit(1742016185.281:1966): avc: denied { create } for pid=16098 comm="syz.2.2787" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_dnrt_socket permissive=1 [ 966.201282][T16120] lo speed is unknown, defaulting to 1000 [ 966.836661][T16122] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 969.191239][ T30] kauditd_printk_skb: 5 callbacks suppressed [ 969.191254][ T30] audit: type=1400 audit(1742016188.921:1972): avc: denied { watch watch_reads } for pid=16130 comm="syz.1.2792" path="/562" dev="tmpfs" ino=2944 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=dir permissive=1 [ 969.527693][T16144] pci 0000:00:05.0: vgaarb: VGA decodes changed: olddecodes=io+mem,decodes=none:owns=io+mem [ 970.001566][ T30] audit: type=1400 audit(1742016189.451:1973): avc: denied { read write } for pid=16141 comm="syz.5.2795" name="vga_arbiter" dev="devtmpfs" ino=3 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:xserver_misc_device_t tclass=chr_file permissive=1 [ 970.035120][T16145] syz.2.2796: attempt to access beyond end of device [ 970.035120][T16145] nbd2: rw=0, sector=1, nr_sectors = 1 limit=0 [ 970.048253][T16145] VFS: could not find a valid V7 on nbd2. [ 970.050163][ T30] audit: type=1400 audit(1742016189.451:1974): avc: denied { open } for pid=16141 comm="syz.5.2795" path="/dev/vga_arbiter" dev="devtmpfs" ino=3 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:xserver_misc_device_t tclass=chr_file permissive=1 [ 971.462775][ T30] audit: type=1400 audit(1742016191.271:1975): avc: denied { mount } for pid=16152 comm="syz.5.2799" name="/" dev="sysfs" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:sysfs_t tclass=filesystem permissive=1 [ 971.562804][T16150] netlink: 8 bytes leftover after parsing attributes in process `syz.4.2797'. [ 972.701527][ T10] usb 5-1: new high-speed USB device number 21 using dummy_hcd [ 972.790879][ T30] audit: type=1400 audit(1742016192.711:1976): avc: denied { read } for pid=16168 comm="syz.5.2802" name="vhost-net" dev="devtmpfs" ino=1274 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:vhost_device_t tclass=chr_file permissive=1 [ 972.821690][ T30] audit: type=1400 audit(1742016192.711:1977): avc: denied { open } for pid=16168 comm="syz.5.2802" path="/dev/vhost-net" dev="devtmpfs" ino=1274 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:vhost_device_t tclass=chr_file permissive=1 [ 972.935355][ T30] audit: type=1400 audit(1742016192.871:1978): avc: denied { append } for pid=16176 comm="syz.3.2805" name="sg0" dev="devtmpfs" ino=753 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:scsi_generic_device_t tclass=chr_file permissive=1 [ 973.078030][T16178] SET target dimension over the limit! [ 973.556911][ T30] audit: type=1400 audit(1742016193.491:1979): avc: denied { create } for pid=16168 comm="syz.5.2802" name="file0" scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=blk_file permissive=1 [ 973.722959][ T30] audit: type=1400 audit(1742016193.511:1980): avc: denied { write } for pid=16168 comm="syz.5.2802" name="file0" dev="tmpfs" ino=882 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=blk_file permissive=1 [ 973.729272][ T10] usb 5-1: Using ep0 maxpacket: 32 [ 973.793543][T16182] netlink: 8 bytes leftover after parsing attributes in process `syz.1.2804'. [ 973.849566][T16190] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 973.866152][ T30] audit: type=1400 audit(1742016193.511:1981): avc: denied { open } for pid=16168 comm="syz.5.2802" path="/167/file0" dev="tmpfs" ino=882 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=blk_file permissive=1 [ 973.893609][ T10] usb 5-1: device descriptor read/all, error -71 [ 975.710601][ T30] kauditd_printk_skb: 4 callbacks suppressed [ 975.710610][ T30] audit: type=1400 audit(1742016195.641:1986): avc: denied { watch watch_reads } for pid=16192 comm="syz.4.2807" path=2F6465762F7074732F30202864656C6574656429 dev="devpts" ino=3 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_devpts_t tclass=chr_file permissive=1 [ 976.242619][ T30] audit: type=1400 audit(1742016195.741:1987): avc: denied { create } for pid=16201 comm="syz.2.2809" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=icmp_socket permissive=1 [ 976.262740][ T30] audit: type=1400 audit(1742016195.751:1988): avc: denied { ioctl } for pid=16201 comm="syz.2.2809" path="socket:[46652]" dev="sockfs" ino=46652 ioctlcmd=0x8933 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=icmp_socket permissive=1 [ 976.311724][ T30] audit: type=1400 audit(1742016195.751:1989): avc: denied { setopt } for pid=16201 comm="syz.2.2809" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=icmp_socket permissive=1 [ 976.337071][ T30] audit: type=1400 audit(1742016196.231:1990): avc: denied { unlink } for pid=12777 comm="syz-executor" name="file0" dev="tmpfs" ino=882 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_tmpfs_t tclass=blk_file permissive=1 [ 976.447285][ T30] audit: type=1400 audit(1742016196.381:1991): avc: denied { setopt } for pid=16207 comm="syz.2.2811" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=key_socket permissive=1 [ 976.603118][ T30] audit: type=1400 audit(1742016196.541:1992): avc: denied { mount } for pid=16205 comm="syz.5.2810" name="/" dev="cgroup2" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:cgroup_t tclass=filesystem permissive=1 [ 977.003078][ T30] audit: type=1400 audit(1742016196.921:1993): avc: denied { ioctl } for pid=16207 comm="syz.2.2811" path="/dev/vhost-net" dev="devtmpfs" ino=1274 ioctlcmd=0xaf01 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:vhost_device_t tclass=chr_file permissive=1 [ 977.609842][ T30] audit: type=1400 audit(1742016197.311:1994): avc: denied { read append } for pid=16211 comm="syz.4.2812" name="autofs" dev="devtmpfs" ino=98 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:autofs_device_t tclass=chr_file permissive=1 [ 977.633742][ C0] vkms_vblank_simulate: vblank timer overrun [ 978.023115][ T30] audit: type=1400 audit(1742016197.311:1995): avc: denied { open } for pid=16211 comm="syz.4.2812" path="/dev/autofs" dev="devtmpfs" ino=98 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:autofs_device_t tclass=chr_file permissive=1 [ 979.392312][T16237] netlink: 80 bytes leftover after parsing attributes in process `syz.5.2818'. [ 980.751182][T16248] netlink: 'syz.1.2820': attribute type 5 has an invalid length. [ 980.759135][T16248] netlink: 40 bytes leftover after parsing attributes in process `syz.1.2820'. [ 980.800683][T16248] SET target dimension over the limit! [ 981.423143][ T30] kauditd_printk_skb: 4 callbacks suppressed [ 981.423200][ T30] audit: type=1400 audit(1742016201.111:2000): avc: denied { mount } for pid=16240 comm="syz.2.2821" name="/" dev="securityfs" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:security_t tclass=filesystem permissive=1 [ 981.731700][ T30] audit: type=1400 audit(1742016201.671:2001): avc: denied { read } for pid=16255 comm="syz.1.2822" name="loop-control" dev="devtmpfs" ino=646 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:loop_control_device_t tclass=chr_file permissive=1 [ 981.807284][ T30] audit: type=1400 audit(1742016201.671:2002): avc: denied { open } for pid=16255 comm="syz.1.2822" path="/dev/loop-control" dev="devtmpfs" ino=646 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:loop_control_device_t tclass=chr_file permissive=1 [ 983.986706][ T30] audit: type=1400 audit(1742016203.921:2003): avc: denied { create } for pid=16255 comm="syz.1.2822" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=caif_socket permissive=1 [ 984.515051][ T30] audit: type=1400 audit(1742016203.981:2004): avc: denied { setopt } for pid=16255 comm="syz.1.2822" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=caif_socket permissive=1 [ 984.647175][ T30] audit: type=1400 audit(1742016204.471:2005): avc: denied { lock } for pid=16253 comm="syz.3.2823" path="socket:[47176]" dev="sockfs" ino=47176 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 985.096577][T16286] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 985.112937][T16286] netlink: 'syz.4.2829': attribute type 10 has an invalid length. [ 985.504377][T16293] fuse: Unknown parameter 'user_i00000000000000000000' [ 986.309204][T16291] syz.3.2828: attempt to access beyond end of device [ 986.309204][T16291] nbd3: rw=0, sector=1, nr_sectors = 1 limit=0 [ 986.323535][T16291] VFS: could not find a valid V7 on nbd3. [ 987.661974][ T30] audit: type=1400 audit(1742016207.521:2006): avc: denied { ioctl } for pid=16298 comm="syz.5.2832" path="/dev/loop-control" dev="devtmpfs" ino=646 ioctlcmd=0x4c82 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:loop_control_device_t tclass=chr_file permissive=1 [ 987.688248][ C1] vkms_vblank_simulate: vblank timer overrun [ 989.193621][ T30] audit: type=1400 audit(1742016209.131:2007): avc: denied { getopt } for pid=16311 comm="syz.5.2836" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=ax25_socket permissive=1 [ 989.339619][ T30] audit: type=1400 audit(1742016209.191:2008): avc: denied { create } for pid=16311 comm="syz.5.2836" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=isdn_socket permissive=1 [ 990.231739][ T30] audit: type=1400 audit(1742016209.231:2009): avc: denied { getopt } for pid=16311 comm="syz.5.2836" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=isdn_socket permissive=1 [ 990.535804][T16332] netlink: set zone limit has 8 unknown bytes [ 990.627375][ T30] audit: type=1400 audit(1742016210.511:2010): avc: denied { listen } for pid=16327 comm="syz.2.2841" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 992.122157][ T30] audit: type=1400 audit(1742016210.511:2011): avc: denied { accept } for pid=16327 comm="syz.2.2841" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=smc_socket permissive=1 [ 993.219824][T16345] lo speed is unknown, defaulting to 1000 [ 993.416003][ T30] audit: type=1400 audit(1742016213.351:2012): avc: denied { write } for pid=16348 comm="syz.5.2844" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=pppox_socket permissive=1 [ 993.892249][ T30] audit: type=1400 audit(1742016213.831:2013): avc: denied { nlmsg_write } for pid=16351 comm="syz.4.2846" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_tcpdiag_socket permissive=1 [ 994.143769][T16358] Bluetooth: hci5: Frame reassembly failed (-84) [ 996.757894][ T5133] Bluetooth: hci5: Opcode 0x1003 failed: -110 [ 996.840037][ T30] audit: type=1400 audit(1742016216.151:2014): avc: denied { name_bind } for pid=16370 comm="syz.5.2851" src=20000 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:port_t tclass=rawip_socket permissive=1 [ 996.922051][ T5865] usb 5-1: new high-speed USB device number 23 using dummy_hcd [ 997.719556][ T5865] usb 5-1: unable to get BOS descriptor or descriptor too short [ 997.961005][ T30] audit: type=1400 audit(1742016217.881:2015): avc: denied { mount } for pid=16388 comm="syz.5.2855" name="/" dev="configfs" ino=212 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:configfs_t tclass=filesystem permissive=1 [ 998.490684][ T5865] usb 5-1: config 2 has an invalid interface number: 15 but max is 0 [ 998.547146][ T5865] usb 5-1: config 2 has no interface number 0 [ 998.644800][ T30] audit: type=1400 audit(1742016217.891:2016): avc: denied { search } for pid=16388 comm="syz.5.2855" name="/" dev="configfs" ino=212 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:configfs_t tclass=dir permissive=1 [ 998.668632][ T30] audit: type=1400 audit(1742016217.891:2017): avc: denied { read } for pid=16388 comm="syz.5.2855" name="/" dev="configfs" ino=212 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:configfs_t tclass=dir permissive=1 [ 998.692258][ T5865] usb 5-1: config 2 interface 15 has no altsetting 0 [ 998.704501][ T5865] usb 5-1: string descriptor 0 read error: -71 [ 998.710759][ T5865] usb 5-1: New USB device found, idVendor=082d, idProduct=0200, bcdDevice=7a.a5 [ 998.728288][ T5865] usb 5-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 998.731274][ T30] audit: type=1400 audit(1742016217.891:2018): avc: denied { open } for pid=16388 comm="syz.5.2855" path="/" dev="configfs" ino=212 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:configfs_t tclass=dir permissive=1 [ 998.742414][ T5865] usb 5-1: can't set config #2, error -71 [ 999.069202][ T5865] usb 5-1: USB disconnect, device number 23 [ 999.517454][ T30] audit: type=1400 audit(1742016219.291:2019): avc: denied { create } for pid=16395 comm="syz.3.2856" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=x25_socket permissive=1 [ 999.603093][ T30] audit: type=1400 audit(1742016219.301:2020): avc: denied { listen } for pid=16395 comm="syz.3.2856" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=x25_socket permissive=1 [ 999.647484][ T30] audit: type=1400 audit(1742016219.581:2021): avc: denied { map } for pid=16395 comm="syz.3.2856" path="/dev/nullb0" dev="devtmpfs" ino=696 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:device_t tclass=blk_file permissive=1 [ 999.768859][ T30] audit: type=1400 audit(1742016219.581:2022): avc: denied { execute } for pid=16395 comm="syz.3.2856" path="/dev/nullb0" dev="devtmpfs" ino=696 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:device_t tclass=blk_file permissive=1 [ 999.793044][ T30] audit: type=1400 audit(1742016219.581:2023): avc: denied { ioctl } for pid=16395 comm="syz.3.2856" path="/dev/nullb0" dev="devtmpfs" ino=696 ioctlcmd=0x125d scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:device_t tclass=blk_file permissive=1 [ 1003.591417][ T30] audit: type=1400 audit(1742016223.501:2024): avc: denied { map } for pid=16436 comm="syz.1.2867" path="/dev/null" dev="devtmpfs" ino=5 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:null_device_t tclass=chr_file permissive=1 [ 1004.035161][ T30] audit: type=1800 audit(1742016223.971:2025): pid=16442 uid=0 auid=4294967295 ses=4294967295 subj=root:sysadm_r:sysadm_t op=collect_data cause=failed comm="syz.1.2867" name="SYSV00000000" dev="hugetlbfs" ino=4 res=0 errno=0 [ 1004.210679][T16442] lo speed is unknown, defaulting to 1000 [ 1007.834491][ T30] audit: type=1400 audit(1742016227.621:2026): avc: denied { bind } for pid=16465 comm="syz.1.2874" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=nfc_socket permissive=1 [ 1010.771504][ T30] audit: type=1400 audit(1742016230.671:2027): avc: denied { listen } for pid=16490 comm="syz.2.2879" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=bluetooth_socket permissive=1 [ 1013.276249][ T30] audit: type=1400 audit(1742016233.101:2028): avc: denied { listen } for pid=16505 comm="syz.2.2883" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=unix_dgram_socket permissive=1 [ 1014.092029][T16505] block nbd2: shutting down sockets [ 1014.272601][ T30] audit: type=1400 audit(1742016234.201:2029): avc: denied { getopt } for pid=16518 comm="syz.2.2884" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=packet_socket permissive=1 [ 1014.337609][T16522] dccp_invalid_packet: invalid packet type [ 1014.400674][ T30] audit: type=1800 audit(1742016234.331:2030): pid=16523 uid=0 auid=4294967295 ses=4294967295 subj=root:sysadm_r:sysadm_t op=collect_data cause=failed(directio) comm="syz.5.2885" name="file1" dev="tmpfs" ino=985 res=0 errno=0 [ 1015.813238][T16543] lo speed is unknown, defaulting to 1000 [ 1016.556194][T16551] input: syz1 as /devices/virtual/input/input41 [ 1016.699074][T16551] syz.3.2888: attempt to access beyond end of device [ 1016.699074][T16551] loop3: rw=0, sector=0, nr_sectors = 1 limit=0 [ 1016.713148][T16551] (syz.3.2888,16551,0):ocfs2_get_sector:1714 ERROR: status = -5 [ 1016.720863][T16551] (syz.3.2888,16551,0):ocfs2_sb_probe:753 ERROR: status = -5 [ 1016.728434][T16551] (syz.3.2888,16551,0):ocfs2_fill_super:989 ERROR: superblock probe failed! [ 1016.737357][T16551] (syz.3.2888,16551,0):ocfs2_fill_super:1177 ERROR: status = -5 [ 1017.252961][T16555] veth0_vlan: entered allmulticast mode [ 1018.152904][T16541] batadv_slave_1: entered promiscuous mode [ 1018.158843][T16541] batadv_slave_1: left promiscuous mode [ 1018.238895][T16558] netlink: 24 bytes leftover after parsing attributes in process `syz.1.2889'. [ 1020.180278][ T30] audit: type=1400 audit(1742016240.101:2031): avc: denied { setopt } for pid=16560 comm="syz.2.2893" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=llc_socket permissive=1 [ 1020.231156][ T52] usb 2-1: new high-speed USB device number 21 using dummy_hcd [ 1022.042731][T16586] overlayfs: overlapping lowerdir path [ 1022.119875][ T5133] Bluetooth: hci2: unexpected cc 0x0c03 length: 249 > 1 [ 1022.582059][ T5133] Bluetooth: hci2: unexpected cc 0x1003 length: 249 > 9 [ 1022.678187][T16591] sp0: Synchronizing with TNC [ 1022.745808][T16591] lo speed is unknown, defaulting to 1000 [ 1022.881221][ T5133] Bluetooth: hci2: unexpected cc 0x1001 length: 249 > 9 [ 1022.982766][T10406] Bluetooth: hci2: unexpected cc 0x0c23 length: 249 > 4 [ 1022.991390][T10406] Bluetooth: hci2: unexpected cc 0x0c25 length: 249 > 3 [ 1023.001046][T10406] Bluetooth: hci2: unexpected cc 0x0c38 length: 249 > 2 [ 1023.052303][T16360] Bluetooth: hci2: unexpected cc 0x0c03 length: 249 > 1 [ 1023.059942][T16360] Bluetooth: hci2: unexpected cc 0x1003 length: 249 > 9 [ 1023.068582][T16360] Bluetooth: hci2: unexpected cc 0x1001 length: 249 > 9 [ 1023.076570][T16360] Bluetooth: hci2: unexpected cc 0x0c23 length: 249 > 4 [ 1023.087892][T16360] Bluetooth: hci2: unexpected cc 0x0c25 length: 249 > 3 [ 1023.095356][T16360] Bluetooth: hci2: unexpected cc 0x0c38 length: 249 > 2 [ 1023.255552][T16587] lo speed is unknown, defaulting to 1000 [ 1023.271123][ T30] audit: type=1400 audit(1742016243.071:2032): avc: denied { mounton } for pid=16587 comm="syz-executor" path="/" dev="sda1" ino=2 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:root_t tclass=dir permissive=1 [ 1026.045543][T10406] Bluetooth: hci2: command tx timeout [ 1026.052570][ T30] audit: type=1400 audit(1742016245.291:2033): avc: denied { setopt } for pid=16610 comm="syz.2.2903" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_tcpdiag_socket permissive=1 [ 1026.099927][T16616] overlayfs: fs on './file0' does not support file handles, falling back to index=off,nfs_export=off. [ 1026.111015][T16616] overlayfs: fs on './file0' does not support file handles, falling back to xino=off. [ 1026.950342][T16587] chnl_net:caif_netlink_parms(): no params data found [ 1027.068755][ T30] audit: type=1400 audit(1742016246.991:2034): avc: denied { unmount } for pid=5816 comm="syz-executor" scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:sysfs_t tclass=filesystem permissive=1 [ 1028.131223][T16360] Bluetooth: hci2: command tx timeout [ 1029.093122][T16631] platform regulatory.0: Direct firmware load for regulatory.db failed with error -2 [ 1029.103182][T16631] platform regulatory.0: Falling back to sysfs fallback for: regulatory.db [ 1029.231673][T16640] IPVS: set_ctl: invalid protocol: 2 224.0.0.1:20003 [ 1029.527048][T16587] bridge0: port 1(bridge_slave_0) entered blocking state [ 1029.925250][T16587] bridge0: port 1(bridge_slave_0) entered disabled state [ 1029.971299][T16587] bridge_slave_0: entered allmulticast mode [ 1029.998650][T16587] bridge_slave_0: entered promiscuous mode [ 1030.029392][T16587] bridge0: port 2(bridge_slave_1) entered blocking state [ 1030.040556][T16587] bridge0: port 2(bridge_slave_1) entered disabled state [ 1030.056014][T16587] bridge_slave_1: entered allmulticast mode [ 1030.069764][T16587] bridge_slave_1: entered promiscuous mode [ 1030.271293][T10406] Bluetooth: hci2: command tx timeout [ 1030.444905][T16647] netlink: 4 bytes leftover after parsing attributes in process `syz.1.2911'. [ 1030.447164][T16587] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 1030.450182][T16587] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 1031.301211][T16654] netlink: 'syz.5.2912': attribute type 5 has an invalid length. [ 1031.301248][T16654] netlink: 40 bytes leftover after parsing attributes in process `syz.5.2912'. [ 1031.312954][T16654] SET target dimension over the limit! [ 1031.562272][T16587] team0: Port device team_slave_0 added [ 1032.457391][T10406] Bluetooth: hci2: command 0x0419 tx timeout [ 1032.459497][T16587] team0: Port device team_slave_1 added [ 1034.252790][T16668] netlink: 'syz.1.2916': attribute type 4 has an invalid length. [ 1034.272373][ T30] audit: type=1400 audit(1742016254.181:2035): avc: denied { wake_alarm } for pid=16662 comm="syz.1.2916" capability=35 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=capability2 permissive=1 [ 1034.394620][T16587] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 1034.415546][T16587] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1034.441490][ C0] vkms_vblank_simulate: vblank timer overrun [ 1034.731282][T16360] Bluetooth: hci2: command 0x0419 tx timeout [ 1034.771655][T16587] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 1035.005492][T16587] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 1035.027632][T16587] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1035.200706][T16685] siw: device registration error -23 [ 1035.513478][T16587] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 1035.657041][T16681] sp0: Synchronizing with TNC [ 1035.839634][ T30] audit: type=1400 audit(1742016255.771:2036): avc: denied { create } for pid=16683 comm="syz.3.2920" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_crypto_socket permissive=1 [ 1036.240187][ T30] audit: type=1400 audit(1742016255.771:2037): avc: denied { write } for pid=16683 comm="syz.3.2920" path="socket:[48010]" dev="sockfs" ino=48010 scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_crypto_socket permissive=1 [ 1036.267196][T16681] bridge0: port 4(erspan0) entered disabled state [ 1036.336430][ T30] audit: type=1400 audit(1742016256.271:2038): avc: denied { create } for pid=16696 comm="syz.3.2922" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=ieee802154_socket permissive=1 [ 1036.359936][T16681] A link change request failed with some changes committed already. Interface caif0 may have been left with an inconsistent configuration, please check. [ 1036.801344][T16701] netlink: 8 bytes leftover after parsing attributes in process `syz.3.2922'. [ 1037.467265][T16701] tty tty27: ldisc open failed (-12), clearing slot 26 [ 1037.484723][ T30] audit: type=1400 audit(1742016256.301:2039): avc: denied { bind } for pid=16696 comm="syz.3.2922" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=ieee802154_socket permissive=1 [ 1037.505919][T16587] hsr_slave_0: entered promiscuous mode [ 1037.513574][T16587] hsr_slave_1: entered promiscuous mode [ 1037.541835][T16587] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 1037.563465][T16587] Cannot create hsr debugfs directory [ 1038.744985][T16689] sp0: Synchronizing with TNC [ 1038.765131][T16707] fuse: Unknown parameter '0x0000000000000003' [ 1039.785418][T16716] netlink: 8 bytes leftover after parsing attributes in process `syz.5.2923'. [ 1039.857571][ T30] audit: type=1400 audit(1742016259.231:2040): avc: denied { nlmsg_read } for pid=16711 comm="syz.1.2925" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_xfrm_socket permissive=1 [ 1040.847335][ T30] audit: type=1400 audit(1742016260.741:2041): avc: denied { accept } for pid=16727 comm="syz.5.2926" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=dccp_socket permissive=1 [ 1042.179086][T16587] 8021q: adding VLAN 0 to HW filter on device bond0 [ 1042.190700][T16747] syzkaller0: entered allmulticast mode [ 1042.525066][T16752] Can't find ip_set type hash:ip,port,ne\ [ 1042.985858][T16740] syzkaller0: left allmulticast mode [ 1043.062646][T16587] 8021q: adding VLAN 0 to HW filter on device team0 [ 1043.077155][T16745] siw: device registration error -23 [ 1043.106304][T15296] bridge0: port 1(bridge_slave_0) entered blocking state [ 1043.113470][T15296] bridge0: port 1(bridge_slave_0) entered forwarding state [ 1043.188656][ T30] audit: type=1400 audit(1742016263.121:2042): avc: denied { bind } for pid=16761 comm="syz.1.2934" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=dccp_socket permissive=1 [ 1043.244909][ T30] audit: type=1400 audit(1742016263.121:2043): avc: denied { name_bind } for pid=16761 comm="syz.1.2934" src=20000 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:port_t tclass=dccp_socket permissive=1 [ 1043.254826][T14276] bridge0: port 2(bridge_slave_1) entered blocking state [ 1043.272918][T14276] bridge0: port 2(bridge_slave_1) entered forwarding state [ 1044.152775][ T30] audit: type=1400 audit(1742016263.121:2044): avc: denied { node_bind } for pid=16761 comm="syz.1.2934" saddr=::ffff:172.20.20.170 src=20000 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:node_t tclass=dccp_socket permissive=1 [ 1044.176001][ C1] vkms_vblank_simulate: vblank timer overrun [ 1044.427207][T16587] hsr0: Slave A (hsr_slave_0) is not up; please bring it up to get a fully working HSR network [ 1044.461934][T16587] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network [ 1044.667327][ T30] audit: type=1400 audit(1742016264.591:2045): avc: denied { connect } for pid=16767 comm="syz.2.2935" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 1044.802901][T16763] netlink: 8 bytes leftover after parsing attributes in process `syz.1.2934'. [ 1044.813360][T16763] netlink: 8 bytes leftover after parsing attributes in process `syz.1.2934'. [ 1044.892520][T16587] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 1045.053540][ T30] audit: type=1400 audit(1742016264.961:2046): avc: denied { read } for pid=16767 comm="syz.2.2935" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=rds_socket permissive=1 [ 1046.161287][ T52] usb 6-1: new low-speed USB device number 10 using dummy_hcd [ 1046.385977][T16789] ALSA: mixer_oss: invalid OSS volume '' [ 1046.500943][T16587] veth0_vlan: entered promiscuous mode [ 1046.587171][T16587] veth1_vlan: entered promiscuous mode [ 1046.722143][ T52] usb 6-1: device descriptor read/64, error -71 [ 1047.411137][ T52] usb 6-1: new low-speed USB device number 11 using dummy_hcd [ 1047.816287][T16587] veth0_macvtap: entered promiscuous mode [ 1047.825971][T16587] veth1_macvtap: entered promiscuous mode [ 1047.862020][T16587] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 1047.913788][ T52] usb 6-1: device descriptor read/64, error -71 [ 1047.921143][T16587] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 1048.040174][T16587] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 1048.062295][T16587] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 1048.072428][T16587] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3e) already exists on: batadv_slave_0 [ 1048.083295][T16587] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 1048.094457][T16587] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 1048.105457][T16587] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 1048.195436][ T52] usb usb6-port1: attempt power cycle [ 1048.212624][T16587] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 1048.230538][T16587] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 1048.397421][T16587] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 1048.408152][T16587] batman_adv: The newly added mac address (aa:aa:aa:aa:aa:3f) already exists on: batadv_slave_1 [ 1048.418959][T16587] batman_adv: It is strongly recommended to keep mac addresses unique to avoid problems! [ 1048.474096][T16587] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 1048.848351][ T30] audit: type=1400 audit(1742016268.781:2047): avc: denied { create } for pid=16812 comm="syz.2.2942" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=netlink_nflog_socket permissive=1 [ 1049.383694][ T30] audit: type=1400 audit(1742016269.321:2048): avc: denied { getopt } for pid=16819 comm="syz.1.2944" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=xdp_socket permissive=1 [ 1050.452973][T15278] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1050.461782][T15278] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1050.854770][ T30] audit: type=1400 audit(1742016270.731:2049): avc: denied { read } for pid=16815 comm="syz.5.2943" scontext=root:sysadm_r:sysadm_t tcontext=root:sysadm_r:sysadm_t tclass=x25_socket permissive=1 [ 1051.138108][T14276] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1051.167972][T14276] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1051.377073][ T30] audit: type=1400 audit(1742016271.141:2050): avc: denied { mounton } for pid=16587 comm="syz-executor" path="/root/syzkaller.fFPPBB/syz-tmp" dev="sda1" ino=1952 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:user_home_t tclass=dir permissive=1 [ 1052.284107][ T30] audit: type=1400 audit(1742016271.151:2051): avc: denied { mounton } for pid=16587 comm="syz-executor" path="/root/syzkaller.fFPPBB/syz-tmp/newroot/sys/kernel/debug" dev="debugfs" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:debugfs_t tclass=dir permissive=1 [ 1052.439081][ T30] audit: type=1400 audit(1742016271.151:2052): avc: denied { mounton } for pid=16587 comm="syz-executor" path="/root/syzkaller.fFPPBB/syz-tmp/newroot/proc/sys/fs/binfmt_misc" dev="proc" ino=50341 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:sysctl_fs_t tclass=dir permissive=1 [ 1052.523769][ T30] audit: type=1400 audit(1742016271.361:2053): avc: denied { mounton } for pid=16587 comm="syz-executor" path="/dev/gadgetfs" dev="devtmpfs" ino=2728 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:device_t tclass=dir permissive=1 [ 1052.720438][ T30] audit: type=1400 audit(1742016271.371:2054): avc: denied { mount } for pid=16587 comm="syz-executor" name="/" dev="gadgetfs" ino=5925 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:nfs_t tclass=filesystem permissive=1 [ 1052.743127][ T30] audit: type=1400 audit(1742016272.421:2055): avc: denied { mounton } for pid=16587 comm="syz-executor" path="/sys/fs/fuse/connections" dev="fusectl" ino=1 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:fusefs_t tclass=dir permissive=1 [ 1053.729555][ T30] audit: type=1400 audit(1742016272.901:2056): avc: denied { execute } for pid=16849 comm="syz.2.2950" dev="hugetlbfs" ino=49658 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:hugetlbfs_t tclass=file permissive=1 [ 1053.774653][ T30] audit: type=1400 audit(1742016272.901:2057): avc: denied { execute_no_trans } for pid=16849 comm="syz.2.2950" path=2F6D656D66643A202864656C6574656429 dev="hugetlbfs" ino=49658 scontext=root:sysadm_r:sysadm_t tcontext=root:object_r:hugetlbfs_t tclass=file permissive=1 [ 1054.322776][ T52] usb 3-1: new high-speed USB device number 24 using dummy_hcd [ 1054.342125][ T30] audit: type=1400 audit(1742016272.921:2058): avc: denied { mounton } for pid=16849 comm="syz.2.2950" path="/579/file0" dev="configfs" ino=212 scontext=root:sysadm_r:sysadm_t tcontext=system_u:object_r:configfs_t tclass=dir permissive=1 [ 1054.581276][ T52] usb 3-1: Using ep0 maxpacket: 16 [ 1054.588330][ T52] usb 3-1: config 0 interface 0 altsetting 0 has an endpoint descriptor with address 0xF3, changing to 0x83 [ 1054.608295][ T52] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x83 has invalid wMaxPacketSize 0 [ 1054.652290][ T52] usb 3-1: New USB device found, idVendor=2040, idProduct=0264, bcdDevice=4e.d1 [ 1054.671272][ T52] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1054.679280][ T52] usb 3-1: Product: syz [ 1159.645136][ C1] rcu: INFO: rcu_preempt detected stalls on CPUs/tasks: [ 1159.652115][ C1] rcu: 0-...!: (1 GPs behind) idle=94e4/1/0x4000000000000000 softirq=59331/59332 fqs=3 [ 1159.663450][ C1] rcu: Tasks blocked on level-0 rcu_node (CPUs 0-1): P10/1:b..l [ 1159.671190][ C1] rcu: (detected by 1, t=10502 jiffies, g=51653, q=272 ncpus=2) [ 1159.678899][ C1] Sending NMI from CPU 1 to CPUs 0: [ 1159.678923][ C0] NMI backtrace for cpu 0 [ 1159.678933][ C0] CPU: 0 UID: 0 PID: 15288 Comm: kworker/u8:33 Not tainted 6.14.0-rc6-syzkaller-00202-ga29967be967e #0 [ 1159.678947][ C0] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025 [ 1159.678956][ C0] Workqueue: bat_events batadv_nc_worker [ 1159.678978][ C0] RIP: 0010:mark_lock+0x0/0xc60 [ 1159.678997][ C0] Code: 86 00 e9 18 fe ff ff 48 c7 c7 30 98 62 90 e8 c7 b0 86 00 e9 a9 fe ff ff 66 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 <55> 48 89 e5 41 57 41 56 41 89 d6 48 ba 00 00 00 00 00 fc ff df 41 [ 1159.679009][ C0] RSP: 0018:ffffc90000007b30 EFLAGS: 00000002 [ 1159.679019][ C0] RAX: 000000000000000c RBX: ffff88807a93afa2 RCX: 1ffffffff2def49b [ 1159.679027][ C0] RDX: 0000000000000008 RSI: ffff88807a93af80 RDI: ffff88807a93a440 [ 1159.679036][ C0] RBP: 000000000000004e R08: 0000000000000000 R09: fffffbfff2dd8bd1 [ 1159.679044][ C0] R10: ffffffff96ec5e8f R11: 0000000000000003 R12: ffff88807a93af79 [ 1159.679053][ C0] R13: ffff88807a93a440 R14: 0000000000000003 R15: ffff88807a93af80 [ 1159.679062][ C0] FS: 0000000000000000(0000) GS:ffff8880b8600000(0000) knlGS:0000000000000000 [ 1159.679076][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1159.679085][ C0] CR2: 00007f62139a7bac CR3: 000000006588c000 CR4: 00000000003526f0 [ 1159.679093][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1159.679101][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1159.679109][ C0] Call Trace: [ 1159.679115][ C0] [ 1159.679121][ C0] ? nmi_cpu_backtrace+0x1d8/0x390 [ 1159.679137][ C0] ? nmi_cpu_backtrace_handler+0xc/0x20 [ 1159.679154][ C0] ? nmi_handle+0x1ac/0x5d0 [ 1159.679172][ C0] ? __pfx_mark_lock+0x10/0x10 [ 1159.679188][ C0] ? default_do_nmi+0x6a/0x160 [ 1159.679200][ C0] ? exc_nmi+0x170/0x1e0 [ 1159.679211][ C0] ? end_repeat_nmi+0xf/0x53 [ 1159.679231][ C0] ? __pfx_mark_lock+0x10/0x10 [ 1159.679248][ C0] ? __pfx_mark_lock+0x10/0x10 [ 1159.679264][ C0] ? __pfx_mark_lock+0x10/0x10 [ 1159.679280][ C0] [ 1159.679284][ C0] [ 1159.679288][ C0] __lock_acquire+0x9f1/0x3c40 [ 1159.679306][ C0] ? __pfx___lock_acquire+0x10/0x10 [ 1159.679323][ C0] ? __pfx___lock_acquire+0x10/0x10 [ 1159.679341][ C0] ? lock_acquire.part.0+0x11b/0x380 [ 1159.679359][ C0] lock_acquire.part.0+0x11b/0x380 [ 1159.679376][ C0] ? advance_sched+0xd8/0xc60 [ 1159.679390][ C0] ? __pfx_lock_acquire.part.0+0x10/0x10 [ 1159.679407][ C0] ? rcu_is_watching+0x12/0xc0 [ 1159.679421][ C0] ? trace_lock_acquire+0x14e/0x1f0 [ 1159.679435][ C0] ? advance_sched+0xd8/0xc60 [ 1159.679447][ C0] ? lock_acquire+0x2f/0xb0 [ 1159.679463][ C0] ? advance_sched+0xd8/0xc60 [ 1159.679475][ C0] ? __pfx_advance_sched+0x10/0x10 [ 1159.679487][ C0] _raw_spin_lock+0x2e/0x40 [ 1159.679504][ C0] ? advance_sched+0xd8/0xc60 [ 1159.679515][ C0] advance_sched+0xd8/0xc60 [ 1159.679528][ C0] ? timerqueue_del+0x83/0x150 [ 1159.679547][ C0] ? do_raw_spin_unlock+0x172/0x230 [ 1159.679560][ C0] ? __pfx_advance_sched+0x10/0x10 [ 1159.679571][ C0] __hrtimer_run_queues+0x20a/0xae0 [ 1159.679588][ C0] ? __pfx___hrtimer_run_queues+0x10/0x10 [ 1159.679600][ C0] ? read_tsc+0x9/0x20 [ 1159.679616][ C0] hrtimer_interrupt+0x392/0x8e0 [ 1159.679633][ C0] __sysvec_apic_timer_interrupt+0x10f/0x400 [ 1159.679653][ C0] sysvec_apic_timer_interrupt+0x9f/0xc0 [ 1159.679668][ C0] [ 1159.679671][ C0] [ 1159.679676][ C0] asm_sysvec_apic_timer_interrupt+0x1a/0x20 [ 1159.679693][ C0] RIP: 0010:lock_release+0x3e5/0x6f0 [ 1159.679711][ C0] Code: 7e 83 f8 01 0f 85 fe 01 00 00 9c 58 f6 c4 02 0f 85 e9 01 00 00 48 f7 04 24 00 02 00 00 74 01 fb 48 b8 00 00 00 00 00 fc ff df <48> 01 c3 48 c7 03 00 00 00 00 c7 43 08 00 00 00 00 48 8b 84 24 88 [ 1159.679722][ C0] RSP: 0018:ffffc900107cfa60 EFLAGS: 00000206 [ 1159.679731][ C0] RAX: dffffc0000000000 RBX: 1ffff920020f9f4e RCX: ffffc900107cfab0 [ 1159.679740][ C0] RDX: 1ffff1100f5275e4 RSI: ffffffff8b6cff80 RDI: ffffffff8bd36ba0 [ 1159.679748][ C0] RBP: 7f59bb6b3c30b2f3 R08: 0000000000000000 R09: fffffbfff20c4ca2 [ 1159.679756][ C0] R10: ffffffff90626517 R11: 0000000000000002 R12: 0000000000000002 [ 1159.679764][ C0] R13: 0000000000000003 R14: ffff88807a93af28 R15: ffff88807a93a440 [ 1159.679776][ C0] ? batadv_nc_worker+0x887/0x1060 [ 1159.679794][ C0] ? __pfx_lock_release+0x10/0x10 [ 1159.679810][ C0] ? trace_lock_acquire+0x14e/0x1f0 [ 1159.679825][ C0] ? lock_acquire+0x2f/0xb0 [ 1159.679840][ C0] ? batadv_nc_worker+0x164/0x1060 [ 1159.679858][ C0] batadv_nc_worker+0x88c/0x1060 [ 1159.679877][ C0] ? __pfx_batadv_nc_worker+0x10/0x10 [ 1159.679894][ C0] ? rcu_is_watching+0x12/0xc0 [ 1159.679906][ C0] ? trace_lock_acquire+0x14e/0x1f0 [ 1159.679920][ C0] ? process_one_work+0x921/0x1ba0 [ 1159.679937][ C0] ? lock_acquire+0x2f/0xb0 [ 1159.679952][ C0] ? process_one_work+0x921/0x1ba0 [ 1159.679968][ C0] process_one_work+0x9c5/0x1ba0 [ 1159.679987][ C0] ? __pfx_batadv_nc_worker+0x10/0x10 [ 1159.680004][ C0] ? __pfx_process_one_work+0x10/0x10 [ 1159.680022][ C0] ? assign_work+0x1a0/0x250 [ 1159.680038][ C0] worker_thread+0x6c8/0xf00 [ 1159.680055][ C0] ? __kthread_parkme+0x148/0x220 [ 1159.680069][ C0] ? __pfx_worker_thread+0x10/0x10 [ 1159.680085][ C0] kthread+0x3af/0x750 [ 1159.680100][ C0] ? __pfx_kthread+0x10/0x10 [ 1159.680114][ C0] ? lock_acquire+0x2f/0xb0 [ 1159.680131][ C0] ? __pfx_kthread+0x10/0x10 [ 1159.680146][ C0] ret_from_fork+0x45/0x80 [ 1159.680162][ C0] ? __pfx_kthread+0x10/0x10 [ 1159.680176][ C0] ret_from_fork_asm+0x1a/0x30 [ 1159.680194][ C0] [ 1159.680918][ C1] task:kworker/0:1 state:R running task stack:21312 pid:10 tgid:10 ppid:2 task_flags:0x4208060 flags:0x00004000 [ 1160.235351][ C1] Workqueue: events_power_efficient gc_worker [ 1160.241428][ C1] Call Trace: [ 1160.244701][ C1] [ 1160.247633][ C1] __schedule+0xf43/0x5890 [ 1160.252049][ C1] ? __pfx___schedule+0x10/0x10 [ 1160.256897][ C1] ? __pfx_mark_lock+0x10/0x10 [ 1160.261669][ C1] ? __pfx___schedule+0x10/0x10 [ 1160.266514][ C1] ? mark_lock+0xb5/0xc60 [ 1160.270844][ C1] ? __pfx___lock_acquire+0x10/0x10 [ 1160.276046][ C1] ? mark_held_locks+0x9f/0xe0 [ 1160.280813][ C1] preempt_schedule_irq+0x51/0x90 [ 1160.285836][ C1] irqentry_exit+0x36/0x90 [ 1160.290249][ C1] asm_sysvec_apic_timer_interrupt+0x1a/0x20 [ 1160.296230][ C1] RIP: 0010:gc_worker+0x2d6/0x16a0 [ 1160.301340][ C1] Code: 00 00 48 c7 c7 48 14 63 90 e8 96 05 1a f8 9c 5b 81 e3 00 02 00 00 31 ff 48 89 de e8 94 40 3d f8 48 85 db 58 0f 85 a7 0f 00 00 55 45 3d f8 8b 1d 2f 67 e6 06 89 dd 31 ff 83 e5 01 89 ee e8 e1 [ 1160.320944][ C1] RSP: 0018:ffffc900000f7b58 EFLAGS: 00000293 [ 1160.327006][ C1] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffff897cb822 [ 1160.334990][ C1] RDX: ffff88801d2d0000 RSI: ffffffff897cb831 RDI: 0000000000000007 [ 1160.342954][ C1] RBP: 0000000000040000 R08: 0000000000000007 R09: 0000000000000000 [ 1160.350917][ C1] R10: 0000000000000000 R11: 0000000000000003 R12: ffffffff9ac3874c [ 1160.358878][ C1] R13: 000000000001070d R14: dffffc0000000000 R15: 0000000000001770 [ 1160.366850][ C1] ? gc_worker+0xdf2/0x16a0 [ 1160.371358][ C1] ? gc_worker+0xe01/0x16a0 [ 1160.375866][ C1] ? gc_worker+0xe01/0x16a0 [ 1160.380388][ C1] ? __pfx_lock_acquire.part.0+0x10/0x10 [ 1160.386050][ C1] ? __pfx_gc_worker+0x10/0x10 [ 1160.390824][ C1] ? process_one_work+0x921/0x1ba0 [ 1160.395936][ C1] ? lock_acquire+0x2f/0xb0 [ 1160.400436][ C1] ? process_one_work+0x921/0x1ba0 [ 1160.405552][ C1] process_one_work+0x9c5/0x1ba0 [ 1160.410499][ C1] ? __pfx_gc_worker+0x10/0x10 [ 1160.415272][ C1] ? __pfx_process_one_work+0x10/0x10 [ 1160.420649][ C1] ? assign_work+0x1a0/0x250 [ 1160.425242][ C1] worker_thread+0x6c8/0xf00 [ 1160.429840][ C1] ? __pfx_worker_thread+0x10/0x10 [ 1160.434950][ C1] kthread+0x3af/0x750 [ 1160.439019][ C1] ? __pfx_kthread+0x10/0x10 [ 1160.443606][ C1] ? lock_acquire+0x2f/0xb0 [ 1160.448116][ C1] ? __pfx_kthread+0x10/0x10 [ 1160.452703][ C1] ret_from_fork+0x45/0x80 [ 1160.457116][ C1] ? __pfx_kthread+0x10/0x10 [ 1160.461705][ C1] ret_from_fork_asm+0x1a/0x30 [ 1160.466500][ C1] [ 1160.469517][ C1] rcu: rcu_preempt kthread starved for 10496 jiffies! g51653 f0x0 RCU_GP_WAIT_FQS(5) ->state=0x0 ->cpu=1 [ 1160.480706][ C1] rcu: Unless rcu_preempt kthread gets sufficient CPU time, OOM is now expected behavior. [ 1160.490676][ C1] rcu: RCU grace-period kthread stack dump: [ 1160.496552][ C1] task:rcu_preempt state:R running task stack:28248 pid:18 tgid:18 ppid:2 task_flags:0x208040 flags:0x00004000 [ 1160.510055][ C1] Call Trace: [ 1160.513329][ C1] [ 1160.516257][ C1] __schedule+0xf43/0x5890 [ 1160.520670][ C1] ? __pfx___lock_acquire+0x10/0x10 [ 1160.525880][ C1] ? __pfx___schedule+0x10/0x10 [ 1160.530728][ C1] ? schedule+0x298/0x350 [ 1160.535055][ C1] ? __pfx_lock_release+0x10/0x10 [ 1160.540081][ C1] ? lock_acquire+0x2f/0xb0 [ 1160.544582][ C1] ? schedule+0x1fd/0x350 [ 1160.548909][ C1] schedule+0xe7/0x350 [ 1160.552973][ C1] schedule_timeout+0x124/0x280 [ 1160.557819][ C1] ? __pfx_schedule_timeout+0x10/0x10 [ 1160.563186][ C1] ? __pfx_process_timeout+0x10/0x10 [ 1160.568474][ C1] ? _raw_spin_unlock_irqrestore+0x3b/0x80 [ 1160.574278][ C1] ? prepare_to_swait_event+0xf3/0x470 [ 1160.579739][ C1] rcu_gp_fqs_loop+0x1eb/0xb00 [ 1160.584508][ C1] ? __pfx_rcu_gp_fqs_loop+0x10/0x10 [ 1160.589797][ C1] ? rcu_gp_init+0xc82/0x1630 [ 1160.594474][ C1] ? _raw_spin_unlock_irq+0x2e/0x50 [ 1160.599678][ C1] rcu_gp_kthread+0x271/0x380 [ 1160.604355][ C1] ? __pfx_rcu_gp_kthread+0x10/0x10 [ 1160.609554][ C1] ? lockdep_hardirqs_on+0x7c/0x110 [ 1160.614753][ C1] ? __kthread_parkme+0x148/0x220 [ 1160.619770][ C1] ? __pfx_rcu_gp_kthread+0x10/0x10 [ 1160.624984][ C1] kthread+0x3af/0x750 [ 1160.629052][ C1] ? __pfx_kthread+0x10/0x10 [ 1160.633642][ C1] ? __pfx_kthread+0x10/0x10 [ 1160.638229][ C1] ret_from_fork+0x45/0x80 [ 1160.642642][ C1] ? __pfx_kthread+0x10/0x10 [ 1160.647229][ C1] ret_from_fork_asm+0x1a/0x30 [ 1160.652000][ C1] [ 1160.655009][ C1] rcu: Stack dump where RCU GP kthread last ran: [ 1160.661321][ C1] CPU: 1 UID: 0 PID: 16830 Comm: syz.1.2944 Not tainted 6.14.0-rc6-syzkaller-00202-ga29967be967e #0 [ 1160.672068][ C1] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/12/2025 [ 1160.682114][ C1] RIP: 0010:smp_call_function_many_cond+0x4c6/0x12c0 [ 1160.688784][ C1] Code: 0c 00 85 ed 74 4d 48 b8 00 00 00 00 00 fc ff df 4d 89 fc 4c 89 fd 49 c1 ec 03 83 e5 07 49 01 c4 83 c5 03 e8 ac 0e 0c 00 f3 90 <41> 0f b6 04 24 40 38 c5 7c 08 84 c0 0f 85 e8 0b 00 00 8b 43 08 31 [ 1160.708470][ C1] RSP: 0018:ffffc9000532f820 EFLAGS: 00000293 [ 1160.714534][ C1] RAX: 0000000000000000 RBX: ffff8880b8646a00 RCX: ffffffff81ade3da [ 1160.722507][ C1] RDX: ffff888035574880 RSI: ffffffff81ade3b4 RDI: 0000000000000005 [ 1160.730473][ C1] RBP: 0000000000000003 R08: 0000000000000005 R09: 0000000000000000 [ 1160.738435][ C1] R10: 0000000000000001 R11: 0000000000000001 R12: ffffed10170c8d41 [ 1160.746398][ C1] R13: 0000000000000001 R14: ffff8880b873fe80 R15: ffff8880b8646a08 [ 1160.754360][ C1] FS: 0000000000000000(0000) GS:ffff8880b8700000(0000) knlGS:0000000000000000 [ 1160.763284][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1160.769862][ C1] CR2: 0000001b2ee11ff8 CR3: 00000000792f2000 CR4: 00000000003526f0 [ 1160.777826][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1160.785788][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1160.793748][ C1] Call Trace: [ 1160.797018][ C1] [ 1160.799855][ C1] ? rcu_check_gp_kthread_starvation+0x31b/0x450 [ 1160.806177][ C1] ? do_raw_spin_unlock+0x172/0x230 [ 1160.811370][ C1] ? rcu_sched_clock_irq+0x247a/0x3310 [ 1160.816829][ C1] ? timekeeping_advance+0x72e/0xa90 [ 1160.822199][ C1] ? __pfx_rcu_sched_clock_irq+0x10/0x10 [ 1160.827826][ C1] ? __asan_memcpy+0x3c/0x60 [ 1160.832416][ C1] ? cgroup_rstat_updated+0x2a/0xb20 [ 1160.837701][ C1] ? rcu_is_watching+0x12/0xc0 [ 1160.842461][ C1] ? update_process_times+0x178/0x2d0 [ 1160.847838][ C1] ? __pfx_update_process_times+0x10/0x10 [ 1160.853555][ C1] ? __pfx_tick_nohz_handler+0x10/0x10 [ 1160.859025][ C1] ? update_wall_time+0x1c/0x40 [ 1160.863875][ C1] ? tick_nohz_handler+0x376/0x530 [ 1160.868984][ C1] ? __pfx_tick_nohz_handler+0x10/0x10 [ 1160.874436][ C1] ? __hrtimer_run_queues+0x5fb/0xae0 [ 1160.879810][ C1] ? __pfx___hrtimer_run_queues+0x10/0x10 [ 1160.885524][ C1] ? read_tsc+0x9/0x20 [ 1160.889599][ C1] ? hrtimer_interrupt+0x392/0x8e0 [ 1160.894713][ C1] ? __sysvec_apic_timer_interrupt+0x10f/0x400 [ 1160.900870][ C1] ? sysvec_apic_timer_interrupt+0x9f/0xc0 [ 1160.906672][ C1] [ 1160.909593][ C1] [ 1160.912516][ C1] ? asm_sysvec_apic_timer_interrupt+0x1a/0x20 [ 1160.918679][ C1] ? smp_call_function_many_cond+0x4ea/0x12c0 [ 1160.924738][ C1] ? smp_call_function_many_cond+0x4c4/0x12c0 [ 1160.930799][ C1] ? smp_call_function_many_cond+0x4c6/0x12c0 [ 1160.936881][ C1] ? __pfx_flush_tlb_func+0x10/0x10 [ 1160.942077][ C1] on_each_cpu_cond_mask+0x40/0x90 [ 1160.947197][ C1] flush_tlb_mm_range+0x271/0x4a0 [ 1160.952216][ C1] ? __pfx_flush_tlb_mm_range+0x10/0x10 [ 1160.957761][ C1] tlb_finish_mmu+0x3c9/0x7b0 [ 1160.962453][ C1] exit_mmap+0x40e/0xba0 [ 1160.966709][ C1] ? __pfx_exit_mmap+0x10/0x10 [ 1160.971487][ C1] ? __pfx_mark_lock+0x10/0x10 [ 1160.976272][ C1] __mmput+0x12a/0x410 [ 1160.980343][ C1] mmput+0x62/0x70 [ 1160.984066][ C1] do_exit+0x9ba/0x2d70 [ 1160.988227][ C1] ? get_signal+0x8f7/0x26c0 [ 1160.992819][ C1] ? __pfx_do_exit+0x10/0x10 [ 1160.997413][ C1] do_group_exit+0xd3/0x2a0 [ 1161.001910][ C1] get_signal+0x24ed/0x26c0 [ 1161.006427][ C1] ? __fget_files+0x40/0x3a0 [ 1161.011014][ C1] ? __pfx_get_signal+0x10/0x10 [ 1161.015873][ C1] arch_do_signal_or_restart+0x90/0x7e0 [ 1161.021416][ C1] ? __pfx_arch_do_signal_or_restart+0x10/0x10 [ 1161.027573][ C1] ? __pfx___x64_sys_recvmmsg+0x10/0x10 [ 1161.033127][ C1] syscall_exit_to_user_mode+0x150/0x2a0 [ 1161.038757][ C1] do_syscall_64+0xda/0x250 [ 1161.043261][ C1] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 1161.049151][ C1] RIP: 0033:0x7fda9158d169 [ 1161.053558][ C1] Code: Unable to access opcode bytes at 0x7fda9158d13f. [ 1161.060563][ C1] RSP: 002b:00007fda92362038 EFLAGS: 00000246 ORIG_RAX: 000000000000012b [ 1161.068969][ C1] RAX: 0000000000010106 RBX: 00007fda917a6160 RCX: 00007fda9158d169 [ 1161.076934][ C1] RDX: 0000000000010106 RSI: 00004000000000c0 RDI: 0000000000000005 [ 1161.084899][ C1] RBP: 00007fda9160e2a0 R08: 0000000000000000 R09: 0000000000000000 [ 1161.092863][ C1] R10: 0000000000000002 R11: 0000000000000246 R12: 0000000000000000 [ 1161.100825][ C1] R13: 0000000000000000 R14: 00007fda917a6160 R15: 00007ffcb178e778 [ 1161.108799][ C1]