last executing test programs: 2m34.237069186s ago: executing program 4 (id=3179): bpf$BPF_BTF_LOAD(0x12, &(0x7f0000001c40)={0x0, &(0x7f0000000000)=""/254, 0x0, 0xfe, 0x9, 0x1000, 0x0, @void, @value}, 0x28) 2m33.613475407s ago: executing program 4 (id=3180): r0 = syz_open_pts(0xffffffffffffffff, 0x181080) ioctl$TIOCGSERIAL(r0, 0x541e, &(0x7f0000000400)={0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, &(0x7f0000000000)=""/38}) setsockopt$SO_VM_SOCKETS_BUFFER_SIZE(0xffffffffffffffff, 0x28, 0x0, &(0x7f0000000040)=0x101, 0x8) socket$packet(0x11, 0x3, 0x300) r1 = socket$inet_udp(0x2, 0x2, 0x0) getsockopt$inet_buf(r1, 0x0, 0x30, 0x0, &(0x7f0000000180)=0x90) sendmsg$nl_route(0xffffffffffffffff, 0x0, 0x4040) bpf$PROG_LOAD(0x5, 0x0, 0x0) open(0x0, 0x30000, 0x1b0) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x281}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000180)=0x4) sched_setaffinity(0x0, 0x8, &(0x7f0000000200)=0x400000bce) r2 = socket$pppl2tp(0x18, 0x1, 0x1) r3 = socket$inet6_udp(0xa, 0x2, 0x0) connect$pppl2tp(r2, &(0x7f00000002c0)=@pppol2tpin6={0x18, 0x1, {0x0, r3, 0x8, 0x0, 0x0, 0x0, {0xa, 0x0, 0x0, @rand_addr=' \x01\x00'}}}, 0x32) r4 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r4, &(0x7f0000019680)=""/102392, 0x18ff8) r5 = openat$ttyS3(0xffffffffffffff9c, &(0x7f0000000480), 0x112d80, 0x0) r6 = openat$procfs(0xffffffffffffff9c, &(0x7f0000000000)='/proc/stat\x00', 0x0, 0x0) r7 = socket$igmp(0x2, 0x3, 0x2) ioctl$sock_SIOCETHTOOL(r7, 0x8993, &(0x7f0000001440)={'bond0\x00', &(0x7f00000000c0)=@ethtool_link_settings={0x1, 0x8, 0x0, 0x0, 0x0, 0x3, 0x6, 0x0, 0x0, 0x5, [0xbff, 0x0, 0x0, 0x1, 0x0, 0x0, 0x0, 0xfffffffe]}}) sendfile(r5, r6, 0x0, 0x20000023896) getsockopt$inet_mreqn(r7, 0x0, 0x24, &(0x7f0000000100)={@local, @empty, 0x0}, &(0x7f00000004c0)=0xc) bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000240)={0x0, 0x6a, &(0x7f0000000080)=ANY=[@ANYRESOCT=r5, @ANYRES32=r4], 0x0, 0x2, 0x0, 0x0, 0x0, 0x1e, '\x00', r8, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$PROG_LOAD(0x5, &(0x7f0000000340)={0x1d, 0x4, &(0x7f00000002c0)=ANY=[@ANYBLOB="18020000fcffffef0000000000000000850000005d0000019500000000000000"], &(0x7f0000000280)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x8, '\x00', 0x0, @lsm=0x2b, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) ioctl$PPPIOCSFLAGS1(r6, 0x40047459, &(0x7f0000000300)=0x8000540) r9 = fanotify_init(0x20, 0x1000) fanotify_mark(r9, 0x1, 0x1, 0xffffffffffffff9c, &(0x7f0000000080)='./file0\x00') syz_open_pts(r0, 0x80000) 2m29.684435221s ago: executing program 4 (id=3186): r0 = openat$binderfs(0xffffffffffffff9c, &(0x7f0000000300)='./binderfs/binder0\x00', 0x0, 0x0) ioctl$BINDER_SET_CONTEXT_MGR_EXT(r0, 0x4018620d, &(0x7f0000000100)={0x73622a85, 0x0, 0x2}) r1 = openat$binderfs(0xffffffffffffff9c, &(0x7f0000000200)='./binderfs/binder0\x00', 0x0, 0x0) dup3(r1, r0, 0x0) ioctl$BINDER_WRITE_READ(r1, 0xc0306201, &(0x7f0000000540)={0x10, 0x0, &(0x7f0000000440)=[@request_death], 0x1, 0x0, &(0x7f00000004c0)="f4"}) ioctl$BINDER_WRITE_READ(r0, 0xc0306201, &(0x7f0000000040)={0xc, 0x0, &(0x7f00000002c0)=[@dead_binder_done={0x40086310, 0xfc}], 0x0, 0x0, 0x0}) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000480), 0xffffffffffffffff) r4 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r5 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000080), r4) ioctl$sock_SIOCGIFINDEX_802154(r4, 0x8933, &(0x7f0000000140)={'wpan0\x00', 0x0}) sendmsg$NL802154_CMD_DEL_SEC_DEVKEY(r4, &(0x7f0000000e40)={0x0, 0x0, &(0x7f0000000240)={&(0x7f0000000500)=ANY=[@ANYBLOB='l\x00\x00\x00', @ANYRES16=r5, @ANYBLOB="010025bd7000fbdbdf251e00000008000300", @ANYRES32=r6, @ANYBLOB="50002f800c0002000203aaaaaaaaaaaa0c000380080001000200000034000380080001"], 0x6c}, 0x1, 0x0, 0x0, 0x20000041}, 0x80) sendmsg$NL802154_CMD_NEW_SEC_KEY(r2, &(0x7f0000000200)={&(0x7f0000000000)={0x10, 0x0, 0x0, 0x2000}, 0xc, &(0x7f00000001c0)={&(0x7f0000000280)=ANY=[@ANYBLOB="4c010000", @ANYRES16=r3, @ANYBLOB="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", @ANYRES32=r6, @ANYBLOB="0c0006000200000002000000"], 0x14c}, 0x1, 0x0, 0x0, 0x44000}, 0x24044081) 2m28.73554865s ago: executing program 4 (id=3190): r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f00000013c0)={0x18, 0x3, &(0x7f0000000080)=ANY=[@ANYBLOB='\x00'/16], &(0x7f0000000000)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) r1 = openat$dsp(0xffffffffffffff9c, &(0x7f0000000000), 0x42, 0x0) write$dsp(r1, &(0x7f00000001c0)="5cba91a4", 0xffffffd9) ioctl$SNDCTL_DSP_SYNC(r1, 0x5001, 0x0) r2 = openat$vim2m(0xffffffffffffff9c, &(0x7f0000000100), 0x2, 0x0) ioctl$vim2m_VIDIOC_ENUM_FMT(r2, 0xc0405602, &(0x7f0000000140)={0xffffffff, 0x2, 0x3, "6e64478d00b9bec2724a8c2ed255226d64edf93e97ff18534098aedb007d519f", 0x38414261}) io_uring_setup(0x523f, &(0x7f0000009a80)={0x0, 0x25d1, 0x400, 0x0, 0x210}) ioctl$SNDCTL_DSP_SPEED(r1, 0xc0045002, &(0x7f0000000040)=0x2) close_range(r1, 0xffffffffffffffff, 0x0) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000000c0)={&(0x7f0000000040)='contention_end\x00', r0}, 0x18) 2m27.794481865s ago: executing program 4 (id=3193): prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8e}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r0 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x6) bpf$BPF_BTF_LOAD(0x12, &(0x7f0000002340)={&(0x7f0000003700)=ANY=[@ANYBLOB="9feb010018000000000000001c0000001c0000000400000002000000020000060400000002000000f02400000e00000102f9000000005f"], 0x0, 0x38, 0x0, 0x9, 0x3, 0x0, @void, @value}, 0x28) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@file={0x0, './file0/file0\x00'}, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sendmsg$IPSET_CMD_CREATE(0xffffffffffffffff, &(0x7f0000000040)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000600)={0x44, 0x2, 0x6, 0x801, 0x0, 0x0, {}, [@IPSET_ATTR_REVISION={0x5}, @IPSET_ATTR_SETNAME={0x9, 0x2, 'syz1\x00'}, @IPSET_ATTR_DATA={0xc, 0x7, 0x0, 0x1, [@IPSET_ATTR_BUCKETSIZE={0x5, 0x15, 0x7f}]}, @IPSET_ATTR_FAMILY={0x5, 0x5, 0xa}, @IPSET_ATTR_PROTOCOL={0x5, 0x1, 0x6}]}, 0x44}}, 0x0) lstat(&(0x7f0000000cc0)='./file0/file0\x00', &(0x7f0000000d00)={0x0, 0x0, 0x0, 0x0, 0x0}) getgroups(0x1, &(0x7f0000000d80)=[0xee00]) getsockopt$inet6_IPV6_IPSEC_POLICY(0xffffffffffffffff, 0x29, 0x22, &(0x7f0000000dc0)={{{@in=@local, @in6=@mcast2, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}}, {{@in6=@private1}, 0x0, @in=@private}}, &(0x7f0000000ec0)=0xe8) r6 = getgid() r7 = bpf$PROG_LOAD(0x5, &(0x7f00000054c0)={0x3, 0x16, &(0x7f0000000980)=ANY=[@ANYBLOB="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"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @sched_cls, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) lstat(&(0x7f0000000000)='./file0\x00', &(0x7f0000000040)={0x0, 0x0, 0x0, 0x0, 0x0}) r9 = openat$fuse(0xffffffffffffff9c, &(0x7f00000001c0), 0x42, 0x0) read$FUSE(r9, &(0x7f0000008340)={0x2020, 0x0, 0x0, 0x0, 0x0}, 0x2020) fchown(r7, r8, r10) getsockopt$inet6_IPV6_XFRM_POLICY(0xffffffffffffffff, 0x29, 0x23, &(0x7f0000001400)={{{@in=@dev, @in=@local, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}}, {{@in6=@dev}, 0x0, @in6=@private2}}, &(0x7f0000001500)=0xe8) syz_fuse_handle_req(0xffffffffffffffff, &(0x7f0000003740)="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", 0x2000, &(0x7f0000001680)={&(0x7f0000000300)={0x50, 0xffffffffffffffda, 0x7, {0x7, 0x2b, 0x9af, 0x80080, 0x6, 0x2, 0x8000, 0x0, 0x0, 0x0, 0x10, 0x9}}, &(0x7f00000001c0)={0x18, 0x0, 0x6e, {0xdf}}, &(0x7f0000000280)={0x18, 0x0, 0x3, {0x7}}, &(0x7f0000000380)={0x18, 0xfffffffffffffff5, 0x7fff, {0x1}}, &(0x7f00000003c0)={0x18, 0x0, 0x1ff, {0x2}}, &(0x7f0000000400)={0x28, 0x0, 0x3, {{0x5, 0x8c2b}}}, &(0x7f00000004c0)={0x60, 0x0, 0x401, {{0x100, 0xfffffffffffffffd, 0x6, 0xffffffffffffffff, 0x101, 0x7ff, 0x0, 0x6}}}, &(0x7f0000000540)={0x18, 0x0, 0x0, {0x2f077398}}, &(0x7f0000000840)=ANY=[@ANYBLOB="14000000daffffff01000080000000002b2d2800d7cc7cefb5fb25e9559c83d127699cfbfd698d451814376a2c6dea84aa6d6a3115ac8037d7232e36ed0d5f03e2356c0a1d8eae71a23a7e6b5a7456510d0768f5dca1d6e1a5f8698afd68a9e64ea0e5b3aafe04de2c0275fda054e8a16905e99eaf08a6a9"], &(0x7f00000005c0)={0x20, 0xfffffffffffffff5, 0x1, {0x0, 0x1}}, &(0x7f00000007c0)={0x78, 0x0, 0x6, {0x9, 0x5, 0x0, {0x0, 0x2000000000000, 0x1, 0x7, 0xffffffffffffffff, 0x76c9f5ea, 0x4, 0x2, 0xc, 0x6000, 0x5, 0x0, 0x0, 0x6, 0x1}}}, &(0x7f00000008c0)={0x90, 0x0, 0x0, {0x6, 0x2, 0x8c0f, 0x0, 0x6, 0x1000, {0x0, 0x8001, 0xfffffffffffffffb, 0xfffffffffffffff8, 0x1, 0xb, 0x1, 0x1, 0x5, 0x4000, 0x4, 0x0, 0x0, 0xa}}}, &(0x7f0000000680)=ANY=[@ANYBLOB="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"], &(0x7f0000000f00)={0x3d8, 0xfffffffffffffff5, 0xb92d00000000, [{{0x5, 0x0, 0x5, 0xb3, 0x100, 0x8, {0x1, 0x454, 0x900, 0x49, 0x3, 0x1c7, 0x0, 0x9, 0xca, 0x6000, 0x4, 0x0, 0xffffffffffffffff, 0x8000, 0x2}}, {0x2, 0x8, 0xd, 0xddc, 'hash:ip,port\x00'}}, {{0x5, 0x0, 0x3, 0x8000000000000001, 0x7f, 0x3, {0x4, 0x0, 0xdc8e, 0x1, 0x4, 0x6, 0x4, 0x6, 0x2, 0x4000, 0xda, 0x0, 0xffffffffffffffff, 0x40000007, 0x80000000}}, {0x5, 0x3, 0x5, 0xd, '/(:^}'}}, {{0x4, 0x2, 0x9, 0xb, 0x3ff, 0xba8, {0x0, 0x5, 0x8001, 0x80000000, 0x5f, 0xb2, 0xb210, 0x1, 0x8, 0x6000, 0x1, 0x0, 0x0, 0x4, 0x5}}, {0x5, 0x6, 0x5, 0xc, 'syz1\x00'}}, {{0x0, 0x1, 0xff, 0x4ea, 0x8, 0x8, {0x4, 0xf, 0xfe6, 0xffffffffffffffff, 0x80, 0xfff, 0x9, 0x401, 0x10, 0x2000, 0xeba0, 0x0, 0x0, 0x9e}}, {0x5, 0xffffffffffffffff, 0x1, 0x3, '\x00'}}, {{0x5, 0x0, 0x1, 0x6, 0x6, 0x6, {0x0, 0x3, 0x1, 0x400, 0xc57f, 0xc0, 0x4b, 0x8, 0xeb, 0x1000, 0xfffff801, r3, r4, 0x2, 0xfffffffd}}, {0x2, 0x9, 0x5, 0x2, 'syz1\x00'}}, {{0x6, 0x1, 0x8000, 0x10000, 0x8, 0x2, {0x0, 0x0, 0x4bbf, 0x7, 0xffffffffffffffff, 0x7, 0xffff7cf0, 0x31bc4, 0x8, 0xf000, 0x3, r5, r6, 0x10, 0x1}}, {0x5, 0xd6, 0x1, 0x5, '\x00'}}]}, &(0x7f0000001300)={0xa0, 0xfffffffffffffff5, 0x4, {{0x5, 0x3, 0x1000, 0xe82c, 0x6b, 0x4, {0x3, 0x8, 0x2, 0x4d, 0x4, 0x2, 0x0, 0x71, 0x4, 0x4000, 0x8, 0xffffffffffffffff, r10, 0x4, 0x78c5}}, {0x0, 0x8}}}, &(0x7f00000013c0)={0x20, 0x0, 0x5, {0x7, 0x4, 0x10000, 0x2}}, &(0x7f0000001540)={0x130, 0xffffffffffffffda, 0x8, {0x0, 0x3, 0x0, '\x00', {0x100, 0x5, 0x3000000000, 0xf9b, r11, 0xee01, 0x1000, '\x00', 0x7ff, 0x8, 0x6, 0x7ff, {0x8000000000000001, 0x1}, {0x9, 0x5}, {0x5, 0x7d33}, {0x0, 0x2}, 0x8e95, 0x3, 0x8, 0x7}}}}) r12 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="19000000040000000800000008000000000000"], 0x50) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="180000000000000000000000000001b518110000", @ANYRES32=r12, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x2b, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000080)='sched_switch\x00'}, 0x10) r13 = syz_open_dev$usbfs(&(0x7f0000000480), 0x76, 0x160341) ioctl$USBDEVFS_IOCTL(r13, 0xc0105512, &(0x7f0000000200)) ioctl$USBDEVFS_IOCTL(r13, 0xc0105512, &(0x7f0000000000)=@usbdevfs_connect) 2m26.655095761s ago: executing program 4 (id=3194): syz_fuse_handle_req(0xffffffffffffffff, 0x0, 0x0, 0x0) r0 = openat$sysfs(0xffffffffffffff9c, &(0x7f0000000040)='/sys/power/wakeup_count', 0x0, 0x0) sendmmsg$inet6(r0, 0x0, 0x0, 0x0) read$FUSE(0xffffffffffffffff, &(0x7f0000000880)={0x2020, 0x0, 0x0}, 0x2020) write$FUSE_INIT(r0, &(0x7f0000000200)={0x50, 0x0, r1, {0x7, 0x2b, 0xffffff4a, 0x20000000, 0x5, 0x7, 0x3, 0x3, 0x0, 0x0, 0x1, 0x89}}, 0x50) r2 = socket$nl_route(0x10, 0x3, 0x0) r3 = socket$inet_tcp(0x2, 0x1, 0x0) ioctl$sock_SIOCGIFINDEX(r3, 0x8933, &(0x7f0000000180)={'syz_tun\x00', 0x0}) sendmsg$nl_route(r2, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000040)={&(0x7f00000000c0)=ANY=[@ANYBLOB="200000001100010100"/20, @ANYRES32=r4], 0x20}}, 0x0) r5 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000380)={0x11, 0x4, &(0x7f00000002c0)=ANY=[@ANYBLOB="1801000000000000000000000000ea04850000005000000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x39, '\x00', r4, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000140)={&(0x7f0000000040)='sched_switch\x00', r5}, 0x10) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) openat$dsp(0xffffffffffffff9c, &(0x7f00000001c0), 0x400, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000380)={0x8, 0x100008b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000000)=0x7) openat$sequencer(0xffffffffffffff9c, &(0x7f0000000280), 0x0, 0x0) r6 = syz_open_dev$sndmidi(&(0x7f00000004c0), 0x2, 0x141102) writev(r6, &(0x7f0000000840)=[{&(0x7f00000002c0)="94", 0xf000}, {0x0}], 0x2) socket$nl_generic(0x10, 0x3, 0x10) r7 = syz_open_dev$cec(&(0x7f0000000000), 0x0, 0x0) ioctl$CEC_ADAP_S_LOG_ADDRS(r7, 0xc05c6104, &(0x7f0000000040)={"846bb400", 0xffff, 0x6, 0x2, 0x5, 0x0, "f1842cc3e94627219cca0000fe3100", "000416e2", "0400", '\x00 \x00 ', ["90000000060000000800", "aafed6a34c8acf2f5a867243", "000000ff0000000000000020", "000200"]}) syz_usb_connect(0x0, 0x5f, 0x0, 0x0) ioctl$IOMMU_IOAS_ALLOC(0xffffffffffffffff, 0x3b81, 0x0) mmap$IORING_OFF_SQ_RING(&(0x7f0000400000/0xc00000)=nil, 0xc00000, 0x3000002, 0x5d031, 0xffffffffffffffff, 0x0) r8 = syz_open_dev$sg(&(0x7f0000000000), 0x0, 0x401) ioctl$BLKTRACESETUP(r8, 0xc0481273, &(0x7f0000000b40)={'\x00', 0x8, 0x15555555, 0xc, 0xfffffffffffffffd, 0x59c}) ioctl$SG_BLKTRACETEARDOWN(r8, 0x1276, 0x20000000) madvise(&(0x7f00000ec000/0x800000)=nil, 0x800000, 0x17) madvise(&(0x7f0000000000/0x600000)=nil, 0x60005f, 0x3) 2m11.457041354s ago: executing program 32 (id=3194): syz_fuse_handle_req(0xffffffffffffffff, 0x0, 0x0, 0x0) r0 = openat$sysfs(0xffffffffffffff9c, &(0x7f0000000040)='/sys/power/wakeup_count', 0x0, 0x0) sendmmsg$inet6(r0, 0x0, 0x0, 0x0) read$FUSE(0xffffffffffffffff, &(0x7f0000000880)={0x2020, 0x0, 0x0}, 0x2020) write$FUSE_INIT(r0, &(0x7f0000000200)={0x50, 0x0, r1, {0x7, 0x2b, 0xffffff4a, 0x20000000, 0x5, 0x7, 0x3, 0x3, 0x0, 0x0, 0x1, 0x89}}, 0x50) r2 = socket$nl_route(0x10, 0x3, 0x0) r3 = socket$inet_tcp(0x2, 0x1, 0x0) ioctl$sock_SIOCGIFINDEX(r3, 0x8933, &(0x7f0000000180)={'syz_tun\x00', 0x0}) sendmsg$nl_route(r2, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000040)={&(0x7f00000000c0)=ANY=[@ANYBLOB="200000001100010100"/20, @ANYRES32=r4], 0x20}}, 0x0) r5 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000380)={0x11, 0x4, &(0x7f00000002c0)=ANY=[@ANYBLOB="1801000000000000000000000000ea04850000005000000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x39, '\x00', r4, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000140)={&(0x7f0000000040)='sched_switch\x00', r5}, 0x10) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) openat$dsp(0xffffffffffffff9c, &(0x7f00000001c0), 0x400, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000380)={0x8, 0x100008b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000000)=0x7) openat$sequencer(0xffffffffffffff9c, &(0x7f0000000280), 0x0, 0x0) r6 = syz_open_dev$sndmidi(&(0x7f00000004c0), 0x2, 0x141102) writev(r6, &(0x7f0000000840)=[{&(0x7f00000002c0)="94", 0xf000}, {0x0}], 0x2) socket$nl_generic(0x10, 0x3, 0x10) r7 = syz_open_dev$cec(&(0x7f0000000000), 0x0, 0x0) ioctl$CEC_ADAP_S_LOG_ADDRS(r7, 0xc05c6104, &(0x7f0000000040)={"846bb400", 0xffff, 0x6, 0x2, 0x5, 0x0, "f1842cc3e94627219cca0000fe3100", "000416e2", "0400", '\x00 \x00 ', ["90000000060000000800", "aafed6a34c8acf2f5a867243", "000000ff0000000000000020", "000200"]}) syz_usb_connect(0x0, 0x5f, 0x0, 0x0) ioctl$IOMMU_IOAS_ALLOC(0xffffffffffffffff, 0x3b81, 0x0) mmap$IORING_OFF_SQ_RING(&(0x7f0000400000/0xc00000)=nil, 0xc00000, 0x3000002, 0x5d031, 0xffffffffffffffff, 0x0) r8 = syz_open_dev$sg(&(0x7f0000000000), 0x0, 0x401) ioctl$BLKTRACESETUP(r8, 0xc0481273, &(0x7f0000000b40)={'\x00', 0x8, 0x15555555, 0xc, 0xfffffffffffffffd, 0x59c}) ioctl$SG_BLKTRACETEARDOWN(r8, 0x1276, 0x20000000) madvise(&(0x7f00000ec000/0x800000)=nil, 0x800000, 0x17) madvise(&(0x7f0000000000/0x600000)=nil, 0x60005f, 0x3) 41.804672434s ago: executing program 2 (id=3430): bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f00000013c0)={0x18, 0x3, &(0x7f0000000080)=ANY=[@ANYBLOB='\x00'/16], &(0x7f0000000000)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) r0 = openat$dsp(0xffffffffffffff9c, &(0x7f0000000000), 0x42, 0x0) write$dsp(r0, &(0x7f00000001c0)="5cba91a4", 0xffffffd9) ioctl$SNDCTL_DSP_SPEED(r0, 0xc0045002, &(0x7f0000000040)=0x2) 40.058456192s ago: executing program 2 (id=3438): r0 = socket$nl_generic(0x10, 0x3, 0x10) r1 = syz_genetlink_get_family_id$ethtool(&(0x7f0000001880), 0xffffffffffffffff) sendmsg$ETHTOOL_MSG_LINKMODES_GET(r0, &(0x7f0000001400)={0x0, 0x0, &(0x7f0000000000)={&(0x7f00000001c0)={0x2c, r1, 0x1, 0x0, 0x0, {0xa}, [@HEADER={0x18, 0x1, 0x0, 0x1, [@ETHTOOL_A_HEADER_DEV_NAME={0x14, 0x2, 'macvtap0\x00'}]}]}, 0x2c}}, 0x0) r2 = landlock_create_ruleset(&(0x7f0000000080)={0x8100, 0x1, 0x3}, 0x18, 0x1) landlock_restrict_self(r2, 0x0) r3 = openat$pfkey(0xffffffffffffff9c, &(0x7f0000000040), 0x181640, 0x0) bind$inet6(r3, &(0x7f0000000000)={0xa, 0x4e20, 0x5, @ipv4={'\x00', '\xff\xff', @multicast2}, 0x7ff}, 0x1c) 39.020608095s ago: executing program 2 (id=3442): r0 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000240)={0x11, 0x3, &(0x7f0000000040)=ANY=[@ANYBLOB="1800000000000400000000000000000095"], &(0x7f0000000080)='syzkaller\x00', 0x0, 0x0, 0x0, 0x0, 0x60, '\x00', 0x0, 0x0, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000200)={&(0x7f00000004c0)='contention_begin\x00', r0, 0x0, 0x2}, 0x18) r1 = ioctl$KVM_CREATE_VM(0xffffffffffffffff, 0xae01, 0x0) r2 = ioctl$KVM_CREATE_VCPU(r1, 0xae41, 0x0) r3 = ioctl$KVM_CREATE_VCPU(r1, 0xae41, 0x2) ioctl$KVM_SET_MSRS(r3, 0x4008ae89, &(0x7f00000000c0)=ANY=[@ANYBLOB="01000000000000002100004000000000ff"]) ioctl$KVM_RUN(r2, 0xae80, 0x0) ioctl$KVM_RUN(r3, 0xae80, 0x0) 38.168834182s ago: executing program 2 (id=3446): r0 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000040), 0x2, 0x0) r1 = ioctl$KVM_CREATE_VM(r0, 0xae01, 0x0) r2 = ioctl$KVM_CREATE_VCPU(r1, 0xae41, 0x0) ioctl$KVM_SET_MSRS(r2, 0x4008ae89, &(0x7f0000000080)={0x1, 0x0, [{0x482, 0x0, 0xfff9fffe0401e172}]}) 36.872664785s ago: executing program 2 (id=3449): bpf$BPF_BTF_LOAD(0x12, &(0x7f0000001c40)={&(0x7f0000000300)={{0xeb9f, 0x1, 0x0, 0x18, 0x0, 0x18, 0x18, 0x7, [@struct={0x5, 0x1, 0x0, 0xf, 0x0, 0x3, [{0x6, 0x5, 0x6}]}]}, {0x0, [0x0, 0x61, 0x0, 0x61, 0x61]}}, 0x0, 0x37, 0x0, 0x9, 0x1000, 0x0, @void, @value}, 0x28) 36.764233453s ago: executing program 2 (id=3450): r0 = openat$tun(0xffffffffffffff9c, &(0x7f0000000080), 0x1c1341, 0x0) ioctl$TUNSETIFF(r0, 0x400454ca, &(0x7f00000000c0)={'syzkaller0\x00', 0x84aebfbd6349b7f2}) r1 = openat$tun(0xffffffffffffff9c, &(0x7f0000000400), 0x0, 0x0) close(r1) r2 = socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$tipc(&(0x7f0000000200), 0xffffffffffffffff) sendmsg$TIPC_CMD_ENABLE_BEARER(r2, &(0x7f00000002c0)={0x0, 0x0, &(0x7f0000000280)={&(0x7f0000000680)=ANY=[@ANYBLOB='8\x00\x00', @ANYRES16=r3, @ANYBLOB="010000000d0000000000010000000000000001410000001c001700000000000000006574683a73797a6b616c6c657230"], 0x38}}, 0x0) r4 = syz_open_dev$vim2m(&(0x7f00000000c0), 0x7, 0x2) ioctl$vim2m_VIDIOC_ENUM_FMT(r4, 0xc0405602, &(0x7f0000000000)={0x52, 0x1, 0x2, "f83bebf45608e255d91c5debf11c7fffffffffffffff000400080000e9feff00", 0x31324d59}) ioctl$SIOCSIFHWADDR(r1, 0x8914, &(0x7f0000002280)={'syzkaller0\x00', @multicast}) writev(r0, &(0x7f00000001c0)=[{&(0x7f0000000000)="89e7ee2c7cdad9b4b47380c988ca", 0x140}], 0x1) 21.400951749s ago: executing program 33 (id=3450): r0 = openat$tun(0xffffffffffffff9c, &(0x7f0000000080), 0x1c1341, 0x0) ioctl$TUNSETIFF(r0, 0x400454ca, &(0x7f00000000c0)={'syzkaller0\x00', 0x84aebfbd6349b7f2}) r1 = openat$tun(0xffffffffffffff9c, &(0x7f0000000400), 0x0, 0x0) close(r1) r2 = socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$tipc(&(0x7f0000000200), 0xffffffffffffffff) sendmsg$TIPC_CMD_ENABLE_BEARER(r2, &(0x7f00000002c0)={0x0, 0x0, &(0x7f0000000280)={&(0x7f0000000680)=ANY=[@ANYBLOB='8\x00\x00', @ANYRES16=r3, @ANYBLOB="010000000d0000000000010000000000000001410000001c001700000000000000006574683a73797a6b616c6c657230"], 0x38}}, 0x0) r4 = syz_open_dev$vim2m(&(0x7f00000000c0), 0x7, 0x2) ioctl$vim2m_VIDIOC_ENUM_FMT(r4, 0xc0405602, &(0x7f0000000000)={0x52, 0x1, 0x2, "f83bebf45608e255d91c5debf11c7fffffffffffffff000400080000e9feff00", 0x31324d59}) ioctl$SIOCSIFHWADDR(r1, 0x8914, &(0x7f0000002280)={'syzkaller0\x00', @multicast}) writev(r0, &(0x7f00000001c0)=[{&(0x7f0000000000)="89e7ee2c7cdad9b4b47380c988ca", 0x140}], 0x1) 13.528692624s ago: executing program 1 (id=3492): openat$smackfs_netlabel(0xffffffffffffff9c, &(0x7f0000000180), 0x2, 0x0) socketpair$unix(0x1, 0x1, 0x0, &(0x7f00000003c0)) openat$kvm(0xffffffffffffff9c, &(0x7f00000004c0), 0x0, 0x0) r0 = socket$inet6_tcp(0xa, 0x1, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) r1 = getpid() sched_setscheduler(r1, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) lseek(r0, 0xffff, 0x3) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f000057eff8)=@abs={0x0, 0x0, 0x4e23}, 0x6e) sendmmsg$unix(r3, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r2, &(0x7f00000000c0), 0x10106, 0x2, 0x0) r4 = bpf$PROG_LOAD(0x5, &(0x7f0000000300)={0x11, 0xb, 0x0, &(0x7f0000000040)='GPL\x00', 0x0, 0x0, 0x0, 0x41000, 0x0, '\x00', 0x0, @fallback=0x3a, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x2000000, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f00000001c0)={&(0x7f0000000180)='sched_switch\x00', r4}, 0x10) sendmsg$inet(0xffffffffffffffff, 0x0, 0x40084) r5 = socket$pppl2tp(0x18, 0x1, 0x1) r6 = socket$inet6_udp(0xa, 0x2, 0x0) connect$pppl2tp(r5, &(0x7f0000000040)=@pppol2tpv3={0x18, 0x1, {0x3, r6, {0x2, 0x0, @multicast2}, 0x2}}, 0x2e) r7 = syz_open_dev$video(&(0x7f0000000040), 0x7, 0x0) ioctl$VIDIOC_ENUMINPUT(r7, 0xc050561a, &(0x7f0000000200)={0x0, "80a246be445c94f43a16d380ec570000aa2e5a00000000000300", 0x3, 0x0, 0x5, 0x7, 0x606020a, 0x2}) sched_setscheduler(0x0, 0x2, 0x0) setsockopt$inet6_tcp_int(r0, 0x6, 0xc, &(0x7f0000000000)=0x7, 0x4) io_uring_enter(0xffffffffffffffff, 0x567, 0x0, 0x0, 0x0, 0x0) r8 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f0000000200)='blkio.bfq.io_service_bytes\x00', 0x275a, 0x0) setsockopt$inet6_tcp_TCP_CONGESTION(r8, 0x6, 0xd, &(0x7f00000002c0)='vegas\x00', 0x6) sendmsg$ETHTOOL_MSG_COALESCE_SET(0xffffffffffffffff, 0x0, 0x0) write$binfmt_misc(r8, 0x0, 0x0) 12.232789017s ago: executing program 1 (id=3494): capset(&(0x7f0000000080)={0x20071026}, &(0x7f0000000040)={0x200000, 0x200003, 0x0, 0x0, 0x3}) prctl$PR_SET_SYSCALL_USER_DISPATCH_ON(0x3b, 0x1, 0xffffffffbfffe9cc, 0xc, &(0x7f0000000000)) pipe2(&(0x7f00000000c0)={0xffffffffffffffff, 0xffffffffffffffff}, 0x800) fcntl$setpipe(r0, 0x407, 0x2000000) r1 = syz_open_dev$tty1(0xc, 0x4, 0x1) ioctl$KDGKBSENT(r1, 0x4b48, 0x0) 11.39693634s ago: executing program 5 (id=3497): r0 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000000), 0x0, 0x0) write$FUSE_INIT(0xffffffffffffffff, &(0x7f0000000040)={0x50, 0x0, 0x0, {0x7, 0x1f, 0x0, 0x10408}}, 0x50) r1 = openat$kvm(0xffffffffffffff9c, &(0x7f00000004c0), 0x0, 0x0) r2 = ioctl$KVM_CREATE_VM(r1, 0xae01, 0x0) sched_setattr(0x0, &(0x7f0000000100)={0x38, 0x0, 0x24, 0x0, 0x0, 0x0, 0x2, 0xfffffffffffffffe, 0x200, 0x2}, 0x0) ioctl$KVM_SET_USER_MEMORY_REGION(r2, 0x4020ae46, &(0x7f0000000400)={0x0, 0x0, 0x0, 0x20002000, &(0x7f0000000000/0x2000)=nil}) ioctl$KVM_CREATE_IRQCHIP(r2, 0xae60) ioctl$KVM_CREATE_PIT2(r2, 0x4040ae77, &(0x7f0000000000)) r3 = ioctl$KVM_CREATE_VCPU(r2, 0xae41, 0x0) ioctl$KVM_SET_PIT(0xffffffffffffffff, 0x8048ae66, &(0x7f00000000c0)={[{0x0, 0x8, 0x0, 0x0, 0x3, 0xa5, 0xbd, 0xf9, 0xa9, 0x4, 0x0, 0x0, 0x40000000}, {0x8, 0x5, 0xfc, 0x3, 0x41, 0x0, 0x0, 0x2, 0x6, 0xff, 0x0, 0x2, 0x6}, {0x1003fe, 0x9, 0x0, 0xfd, 0x20, 0x5, 0xb3, 0x0, 0x3, 0xfe, 0x80, 0xf6, 0xb82e}], 0x9}) ioctl$KVM_RUN(r3, 0xae80, 0x0) syz_kvm_setup_cpu$x86(0xffffffffffffffff, 0xffffffffffffffff, &(0x7f0000fe8000/0x18000)=nil, &(0x7f0000000140)=[@text32={0x20, &(0x7f0000000180)="66ba4300b006ee0f01c40f009b27000000b9800000c00f3235008000000f30b80e0000000f23d80f21f835800000a00f23f8c9b9490300000f60b932c00a000000328fe858b660002fb90d090000b800680000ba000000000f30", 0x5a}], 0x1, 0x0, 0x0, 0x0) ioctl$KVM_RUN(r3, 0xae80, 0x0) r4 = ioctl$KVM_CREATE_VM(r0, 0xae01, 0x0) r5 = ioctl$KVM_CREATE_VCPU(r4, 0xae41, 0x4) ioctl$KVM_SET_MSRS(r5, 0x4008ae89, &(0x7f0000000240)=ANY=[@ANYBLOB="01000000000000008804"]) 11.344669037s ago: executing program 1 (id=3498): sendmsg$nl_route_sched(0xffffffffffffffff, 0x0, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r0 = openat$kvm(0xffffffffffffff9c, &(0x7f0000000200), 0x8000, 0x0) r1 = ioctl$KVM_CREATE_VM(r0, 0xae01, 0x0) r2 = memfd_create(&(0x7f0000000100)='\vem\xda\x99R@m\xfc\xfe\x9b#*\xff', 0x0) write(r2, &(0x7f0000000040)="0600", 0x2) sendfile(r2, r2, &(0x7f0000001000), 0xffff) mmap(&(0x7f0000000000/0x7000)=nil, 0x7000, 0x80000000004, 0x11, r2, 0x0) r3 = ioctl$KVM_CREATE_VCPU(r1, 0xae41, 0x2) ioctl$KVM_GET_VCPU_EVENTS(r3, 0x4048aecb, &(0x7f00000000c0)) r4 = syz_open_dev$vim2m(&(0x7f0000000000), 0x7f, 0x2) ioctl$vim2m_VIDIOC_S_FMT(r4, 0xc0d05605, &(0x7f0000000140)={0x1, @pix={0x0, 0x0, 0x56555958}}) r5 = getpid() syz_init_net_socket$bt_hci(0x1f, 0x3, 0x1) r6 = syz_init_net_socket$bt_l2cap(0x1f, 0x2, 0x0) bind$bt_l2cap(r6, &(0x7f0000000480)={0x1f, 0x21, @none, 0x0, 0x1}, 0xe) sched_setscheduler(r5, 0x2, &(0x7f0000000200)=0x6) ioctl$DRM_IOCTL_SET_CLIENT_CAP(0xffffffffffffffff, 0x4010640d, &(0x7f0000000000)={0x3, 0x2}) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeef, 0x8031, 0xffffffffffffffff, 0x0) connect$unix(0xffffffffffffffff, &(0x7f000057eff8)=@file={0x0, './file0\x00'}, 0x6e) sendmmsg$unix(0xffffffffffffffff, 0x0, 0x0, 0x0) sched_setaffinity(r5, 0x8, &(0x7f0000000240)=0x2) recvmmsg(0xffffffffffffffff, 0x0, 0x0, 0x2, 0x0) sendmsg$nl_route(0xffffffffffffffff, &(0x7f00000002c0)={0x0, 0x0, &(0x7f0000000100)={&(0x7f0000000240)=@newlink={0x20, 0x10, 0x401, 0x0, 0x0, {0x0, 0x0, 0x0, 0x0, 0x8003, 0x10000}}, 0x20}, 0x1, 0x0, 0x0, 0x40}, 0x0) r7 = socket$kcm(0x2d, 0x2, 0x0) ioctl$sock_kcm_SIOCKCMCLONE(r7, 0x89e2, &(0x7f0000000100)={r7}) madvise(&(0x7f0000907000/0x1000)=nil, 0x1000, 0xb) 8.99272137s ago: executing program 5 (id=3501): r0 = seccomp$SECCOMP_SET_MODE_FILTER_LISTENER(0x1, 0x0, &(0x7f00000000c0)={0x1, &(0x7f0000000080)=[{0x6, 0x0, 0x0, 0x7fff0000}]}) r1 = fanotify_init(0x200, 0x0) fanotify_mark(r1, 0x1, 0x40000030, r0, 0x0) socketpair$unix(0x1, 0x1, 0x0, &(0x7f00000002c0)={0xffffffffffffffff, 0xffffffffffffffff}) splice(r2, 0x0, r0, 0x0, 0x38fff, 0x100000000000000) write$binfmt_elf64(r3, &(0x7f0000000200)=ANY=[], 0xfffffe3e) 8.992215685s ago: executing program 3 (id=3502): r0 = openat$dsp(0xffffffffffffff9c, &(0x7f0000000000), 0x42, 0x0) write$dsp(r0, &(0x7f00000001c0)="5cba91a4", 0xffffffd9) ioctl$SNDCTL_DSP_SYNC(r0, 0x5001, 0x0) io_uring_setup(0x523f, &(0x7f0000009a80)={0x0, 0x25d1, 0x400, 0x0, 0x210}) ioctl$SNDCTL_DSP_SPEED(r0, 0xc0045002, &(0x7f0000000040)=0x2) close_range(r0, 0xffffffffffffffff, 0x0) 8.905840958s ago: executing program 1 (id=3503): r0 = openat$binderfs(0xffffffffffffff9c, &(0x7f0000000300)='./binderfs/binder0\x00', 0x0, 0x0) r1 = openat$binderfs(0xffffffffffffff9c, &(0x7f0000000200)='./binderfs/binder0\x00', 0x0, 0x0) ioctl$BINDER_WRITE_READ(r1, 0xc0306201, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000400), 0x0, 0x0, 0x0}) dup3(r1, r0, 0x0) ioctl$BINDER_WRITE_READ(r1, 0xc0306201, &(0x7f0000000540)={0x10, 0x0, &(0x7f0000000440)=[@request_death], 0x1, 0x0, &(0x7f00000004c0)="f4"}) ioctl$BINDER_WRITE_READ(r0, 0xc0306201, &(0x7f0000000040)={0xc, 0x0, &(0x7f00000002c0)=[@dead_binder_done={0x40086310, 0xfc}], 0x0, 0x0, 0x0}) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000480), 0xffffffffffffffff) r4 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r5 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000080), r4) ioctl$sock_SIOCGIFINDEX_802154(r4, 0x8933, &(0x7f0000000140)={'wpan0\x00', 0x0}) sendmsg$NL802154_CMD_DEL_SEC_DEVKEY(r4, &(0x7f0000000e40)={0x0, 0x0, &(0x7f0000000240)={&(0x7f0000000500)=ANY=[@ANYBLOB='l\x00\x00\x00', @ANYRES16=r5, @ANYBLOB="010025bd7000fbdbdf251e00000008000300", @ANYRES32=r6, @ANYBLOB="50002f800c0002000203aaaaaaaaaaaa0c000380080001000200000034000380080001"], 0x6c}, 0x1, 0x0, 0x0, 0x20000041}, 0x80) sendmsg$NL802154_CMD_NEW_SEC_KEY(r2, &(0x7f0000000200)={&(0x7f0000000000)={0x10, 0x0, 0x0, 0x2000}, 0xc, &(0x7f00000001c0)={&(0x7f0000000280)=ANY=[@ANYBLOB="4c010000", @ANYRES16=r3, @ANYBLOB="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", @ANYRES32=r6, @ANYBLOB="0c0006000200000002000000"], 0x14c}, 0x1, 0x0, 0x0, 0x44000}, 0x24044081) 8.742597882s ago: executing program 0 (id=3504): ioctl$SNDRV_TIMER_IOCTL_SELECT(0xffffffffffffffff, 0x40345410, &(0x7f0000000400)={{0x1, 0x3, 0x2}}) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x7, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x6) r0 = getpid() fcntl$setstatus(0xffffffffffffffff, 0x4, 0x0) sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x4) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r2, &(0x7f00000bd000), 0x318, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) syz_80211_join_ibss(0x0, &(0x7f0000000080)=@default_ibss_ssid, 0x6, 0x0) bpf$BPF_LINK_CREATE(0x1c, 0x0, 0x0) r3 = bpf$PROG_LOAD(0x5, &(0x7f00000054c0)={0x16, 0x16, &(0x7f0000000240)=ANY=[@ANYBLOB="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"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @flow_dissector, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) bpf$BPF_LINK_CREATE(0xa, &(0x7f0000000340)={r3, 0xffffffffffffffff, 0x24, 0x7, @val=@netkit={@void, @value}}, 0x1c) r4 = socket$inet6_icmp_raw(0xa, 0x3, 0x3a) setsockopt$SO_BINDTODEVICE(r4, 0x1, 0x19, &(0x7f00000001c0)='syz_tun\x00', 0x10) r5 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$IPSET_CMD_CREATE(r5, &(0x7f0000000100)={0x0, 0x0, &(0x7f0000000600)={&(0x7f0000000000)={0x4c, 0x2, 0x6, 0x201, 0x0, 0x0, {}, [@IPSET_ATTR_PROTOCOL={0x5}, @IPSET_ATTR_DATA={0x14, 0x7, 0x0, 0x1, [@IPSET_ATTR_BUCKETSIZE={0x5, 0x15, 0x1}, @IPSET_ATTR_HASHSIZE={0x8}]}, @IPSET_ATTR_REVISION={0x5}, @IPSET_ATTR_TYPENAME={0x12, 0x3, 'hash:net,port\x00'}]}, 0x4c}, 0x1, 0x0, 0x0, 0xc040}, 0x0) syz_emit_ethernet(0x6e, &(0x7f0000000300)={@broadcast, @empty, @void, {@ipv6={0x86dd, @icmpv6={0x0, 0x6, "028df7", 0x38, 0x3a, 0x0, @initdev={0xfe, 0x88, '\x00', 0x0, 0x0}, @mcast2, {[], @time_exceed={0x2, 0x0, 0x0, 0x0, '\x00', {0x0, 0x6, '\x00', 0x0, 0x3a, 0x0, @private1={0xfc, 0x1, '\x00', 0x1}, @loopback={0x0, 0xffffac1414aa}, [], "1e520b4c955ee12e"}}}}}}}, 0x0) syz_80211_inject_frame(&(0x7f00000000c0), 0x0, 0x36) sched_setaffinity(0x0, 0xfffffffffffffc33, &(0x7f0000000280)=0x2) 7.593638486s ago: executing program 1 (id=3505): r0 = socket$nl_generic(0x10, 0x3, 0x10) r1 = socket$nl_netfilter(0x10, 0x3, 0xc) r2 = openat$tun(0xffffffffffffff9c, &(0x7f0000000000), 0x40241, 0x0) r3 = creat(0x0, 0x0) syz_emit_vhci(0x0, 0x8) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000180)=0x3) write$RDMA_USER_CM_CMD_CREATE_ID(0xffffffffffffffff, &(0x7f0000000040)={0x0, 0x18, 0xfa00, {0x0, &(0x7f0000000080)={0xffffffffffffffff}, 0x13f, 0x9}}, 0x20) write$RDMA_USER_CM_CMD_SET_OPTION(0xffffffffffffffff, &(0x7f00000000c0)={0xe, 0x18, 0xfa00, @id_tos={0x0, r4, 0x0, 0x3}}, 0x20) sched_setaffinity(0x0, 0x8, &(0x7f00000000c0)=0xa) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r5 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r5, &(0x7f0000032680)=""/102400, 0x19000) r6 = syz_open_dev$cec(&(0x7f0000000040), 0x0, 0x0) ioctl$CEC_S_MODE(r6, 0x40046109, &(0x7f0000000300)=0xd0) r7 = semget$private(0x0, 0x207, 0x53) write$RDMA_USER_CM_CMD_LISTEN(r3, 0x0, 0x0) semctl$GETALL(r7, 0x0, 0xd, &(0x7f0000000040)=""/119) r8 = userfaultfd(0x80001) ioctl$UFFDIO_API(r8, 0xc018aa3f, &(0x7f0000000080)={0xaa, 0x1}) ioctl$UFFDIO_WRITEPROTECT(r8, 0xc020aa08, 0x0) ioctl$UFFDIO_COPY(r8, 0xc028aa05, &(0x7f00000000c0)={&(0x7f0000ffc000/0x2000)=nil, &(0x7f0000ffb000/0x2000)=nil, 0x2000, 0x3}) clock_settime(0x0, &(0x7f0000000040)={0x77359400}) ioctl$TUNSETIFF(r2, 0x400454ca, &(0x7f0000000200)={'syzkaller1\x00', 0xc201}) ioctl$SIOCSIFHWADDR(0xffffffffffffffff, 0x8914, &(0x7f0000000040)={'syzkaller1\x00'}) write$tun(r2, &(0x7f00000000c0)={@val={0x3, 0x800}, @val={0x1, 0x0, 0x0, 0x0, 0x14}, @ipv4=@icmp={{0x5, 0x4, 0x0, 0x0, 0x30, 0x1400, 0x0, 0x0, 0x1, 0x0, @initdev={0xac, 0x1e, 0x0, 0x0}, @local}, @dest_unreach={0x4, 0x0, 0x0, 0x0, 0x0, 0x0, {0x5, 0x4, 0x0, 0x0, 0x0, 0x64, 0x0, 0x0, 0x11, 0x0, @local, @loopback}}}}, 0x3e) sendmsg$NFT_BATCH(r1, &(0x7f000000c2c0)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000003a80)=ANY=[@ANYBLOB="140000001000010000000000000000000000000a20000000000a01010000000000000000050000000900010073797a30000000005c000000030a01030000000000000000050000000900010073797a30000000000900030073797a320000000008000a400000000328000480080002400000"], 0xa4}}, 0x0) sendmsg$nl_generic(r0, &(0x7f0000000080)={0x0, 0x0, &(0x7f0000000140)={&(0x7f0000000a40)={0x14, 0x36, 0x301, 0x70bd25, 0x25dfdbff, {0xd}}, 0x14}, 0x1, 0x0, 0x0, 0x8004000}, 0x0) 7.593063049s ago: executing program 3 (id=3506): r0 = syz_open_dev$vim2m(&(0x7f0000000000), 0x800, 0x2) ioctl$vim2m_VIDIOC_S_CTRL(r0, 0xc008561c, &(0x7f0000000040)={0xf0f024}) r1 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000200)={0x18, 0x4, &(0x7f0000000300)=ANY=[@ANYBLOB="18010000000000000000000000000000850000006d00000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000080)={0x0, r1}, 0x18) open(&(0x7f00000000c0)='./file0\x00', 0x40c2, 0x0) socket$inet_tcp(0x2, 0x1, 0x0) openat$ptp0(0xffffffffffffff9c, &(0x7f0000000140), 0x2001, 0x0) clock_adjtime(0xffffffd3, &(0x7f0000000340)={0x6}) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x88}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000240)=0x7) r2 = getpid() sched_setscheduler(r2, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r3, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r4, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r3, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000000)=0x6) open_by_handle_at(0xffffffffffffffff, 0x0, 0x1) r5 = syz_init_net_socket$netrom(0x6, 0x5, 0x0) connect$netrom(r5, &(0x7f0000000300)={{0x6, @default, 0x1}, [@default, @default, @null, @null, @remote={0xcc, 0xcc, 0xcc, 0xcc, 0xcc, 0xcc, 0x1}, @null, @rose={0xbb, 0xbb, 0xbb, 0x1, 0x0}, @bcast]}, 0x48) unshare(0x26020480) chdir(0x0) open(&(0x7f0000000180)='./bus\x00', 0x14957e, 0x0) poll(&(0x7f0000000600)=[{r5, 0x48}], 0x1, 0x400) ioctl$vim2m_VIDIOC_S_FMT(r0, 0xc0d05605, &(0x7f0000000200)={0x2, @vbi={0x9, 0x7, 0x80000000, 0x34524742, [0x1001, 0x7], [0x9, 0xfff], 0x108}}) 7.592609569s ago: executing program 5 (id=3507): prlimit64(0x0, 0xe, &(0x7f00000003c0)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000180)=0x3) sched_setaffinity(0x0, 0x0, 0x0) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) r0 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r0, &(0x7f0000019680)=""/102392, 0x18ff8) r1 = syz_open_dev$ptys(0xc, 0x3, 0x0) r2 = syz_open_dev$vim2m(&(0x7f0000000040), 0x8, 0x2) ioctl$vim2m_VIDIOC_G_FMT(r2, 0xc0d05604, 0x0) r3 = socket$igmp(0x2, 0x3, 0x2) setsockopt$MRT_ADD_MFC(r3, 0x0, 0xcc, &(0x7f0000000080)={@rand_addr=0x64010100, @broadcast, 0x0, "2634784b05261d387c92f3e19a9027b3dac700e20100", 0x0, 0x3, 0x2005, 0xf6}, 0x3c) setsockopt$MRT_ADD_MFC(r3, 0x0, 0xcc, &(0x7f0000000280)={@private, @private=0xa010101, 0x0, "aaa517d60f2811d48c8a2cc60c4380bc23bd0f4eb500", 0x0, 0x0, 0x0, 0x7}, 0x3c) setsockopt$MRT_ADD_MFC_PROXY(r3, 0x0, 0xd2, &(0x7f0000000040)={@initdev={0xac, 0x1e, 0x1, 0x0}, @initdev={0xac, 0x1e, 0x0, 0x0}, 0x0, "005c2beeb0801bd73cbf6461644cf36dfc15ea5603000000000000009aae714d", 0x4, 0x0, 0x5a7a}, 0x3c) setsockopt$MRT_ADD_MFC_PROXY(r3, 0x0, 0xd2, &(0x7f0000000200)={@dev, @multicast1, 0x0, "05888ee9654ce5db9229e6a1f0a3c9505e2ebbbc3d341ad6ad352965b867e20b"}, 0x3c) setsockopt$MRT_FLUSH(r3, 0x0, 0xd4, &(0x7f0000000240)=0xa, 0x4) ioctl$VT_ACTIVATE(r1, 0x5606, 0x6) name_to_handle_at(0xffffffffffffff9c, &(0x7f0000000080)='./file0\x00', &(0x7f00000000c0)=ANY=[@ANYBLOB], 0x0, 0x0) openat$binfmt(0xffffffffffffff9c, 0x0, 0x41, 0x1ff) bpf$PROG_LOAD(0x5, &(0x7f0000000300)={0xf, 0x4, &(0x7f0000000300)=ANY=[], &(0x7f0000003ff6)='GPL\x00', 0x2, 0xc3, &(0x7f000000cf3d)=""/195, 0x0, 0x0, '\x00', 0x0, @cgroup_device, 0xffffffffffffffff, 0x8, &(0x7f0000000000), 0x8, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) r4 = openat$sysfs(0xffffffffffffff9c, &(0x7f00000002c0)='/sys/power/resume', 0x149a82, 0x240) chdir(&(0x7f0000000540)='./cgroup\x00') setresuid(0x0, 0xee01, 0xffffffffffffffff) write$cgroup_int(r4, &(0x7f0000000000)=0xfe8e, 0x12) ioctl$sock_ipv6_tunnel_SIOCGETTUNNEL(r4, 0x89f0, &(0x7f00000000c0)={'syztnl2\x00', &(0x7f0000000040)={'syztnl2\x00', 0x0, 0x52, 0x3, 0xda, 0x0, 0x2, @private1={0xfc, 0x1, '\x00', 0x1}, @private2={0xfc, 0x2, '\x00', 0x1}, 0x20, 0x10, 0x101, 0x2}}) bpf$MAP_CREATE_TAIL_CALL(0x0, &(0x7f0000000100)=ANY=[@ANYBLOB="0300000004000000040000000a00000000000000", @ANYRES32, @ANYBLOB="0300000000", @ANYRES32=r5, @ANYRES32=r4], 0x50) sendmmsg$inet(0xffffffffffffffff, &(0x7f0000006740)=[{{0x0, 0x0, 0x0}}], 0x1, 0x81) socket$nl_xfrm(0x10, 0x3, 0x6) r6 = openat$sndtimer(0xffffffffffffff9c, &(0x7f0000002100), 0x109000) fchdir(r6) 6.545061084s ago: executing program 0 (id=3508): ioperm(0x7fff, 0x80000000000f0, 0x100000081) r0 = syz_open_procfs(0x0, &(0x7f0000000000)='ns\x00') r1 = socket(0x10, 0xa, 0x4) recvmsg(r1, &(0x7f0000000b80)={&(0x7f00000001c0)=@rc={0x1f, @fixed}, 0x80, &(0x7f0000000980)=[{0x0}, {&(0x7f0000000300)=""/178, 0xb2}, {0x0}, {0x0, 0xffffffffffffff00}, {&(0x7f0000000480)=""/29, 0x1d}, {&(0x7f0000000780)=""/182, 0xb6}, {&(0x7f0000000880)=""/35, 0x23}, {&(0x7f00000008c0)=""/181, 0xb5}], 0x8, &(0x7f0000000b00)=""/66, 0x42}, 0x0) syz_genetlink_get_family_id$ethtool(&(0x7f0000000840), 0xffffffffffffffff) r2 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$NFT_BATCH(r2, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000000)={&(0x7f0000000500)=ANY=[@ANYBLOB="140000001000010000000000000000000100000a20000000000a0104000000000000000001000003090001007379ecf3ffff00002c000000030a01010000000000000000010000000900010073077a30000000000900030073797a320000000008000000060a010400008750867f6a5c42e60deb0000000000000100000008050040000000003c000480001400028008000340000000000800044000000022140001800c0001006269747769736500040002800900010073797a3021000000140000001100010000008b97d25a5ea97fbbfe1395ccc217cac06d0700"/231], 0xd8}}, 0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) r3 = openat$procfs(0xffffffffffffff9c, &(0x7f0000000380)='/proc/sysvipc/sem\x00', 0x0, 0x0) ioctl$sock_ipv4_tunnel_SIOCCHGTUNNEL(r3, 0x89f3, &(0x7f0000000100)={'syztnl1\x00', &(0x7f0000000d80)={'sit0\x00', 0x0, 0x1, 0x80, 0x8000, 0x8, {{0xf, 0x4, 0x2, 0x5, 0x3c, 0x64, 0x0, 0xf9, 0x29, 0x0, @remote, @multicast1, {[@generic={0x83, 0xd, "ffee3018a89b202259552b"}, @timestamp={0x44, 0x8, 0xc1, 0x0, 0x0, [0x6]}, @ssrr={0x89, 0x13, 0x22, [@multicast2, @local, @multicast2, @loopback]}]}}}}}) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x2, 0x0) openat$sequencer(0xffffffffffffff9c, &(0x7f0000000300), 0x0, 0x0) unshare(0x20000400) openat$qrtrtun(0xffffffffffffff9c, &(0x7f0000000040), 0x8002) bpf$BPF_GET_MAP_INFO(0xf, &(0x7f00000001c0)={0xffffffffffffffff, 0x58}, 0x10) r4 = syz_open_dev$sndmidi(&(0x7f00000004c0), 0x2, 0x141102) writev(r4, &(0x7f0000000840)=[{&(0x7f00000002c0)="94", 0xf000}, {0x0}], 0x2) mount(&(0x7f0000000040)=@loop={'/dev/loop', 0x0}, &(0x7f00000000c0)='./cgroup\x00', &(0x7f0000000080)='hfsplus\x00', 0x0, 0x0) mount(&(0x7f0000000040)=@nullb, &(0x7f0000000000)='./cgroup\x00', &(0x7f0000000080)='cramfs\x00', 0x2a00000, 0x0) r5 = socket$kcm(0x10, 0x2, 0x10) sendmsg$kcm(r5, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000480)=[{&(0x7f0000000000)="1400000010003507d25a806f8c6394f90324fc60", 0x14}], 0x1}, 0x0) recvmsg$kcm(r5, &(0x7f0000000040)={0x0, 0x0, &(0x7f0000000400)=[{&(0x7f0000001fc0)=""/4096, 0x1000}], 0x1}, 0x0) sendmsg$inet(0xffffffffffffffff, &(0x7f0000000d40)={0x0, 0x0, 0x0, 0x0, &(0x7f0000000a40)=ANY=[@ANYBLOB="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", @ANYRES32=0x0, @ANYBLOB="ac1414aa00000000000000001400000000000018000000000200000000000000000000001c000000000000000000000008000000", @ANYRES32=0x0, @ANYBLOB="7f0000017f00000a0000000800"/28, @ANYRES32, @ANYBLOB="7f000001ac141400000000011c0e0000000000000000000007006fc946f1f569c01801"], 0x230}, 0x0) r6 = socket$kcm(0x10, 0x3, 0x10) sendmsg$kcm(r6, &(0x7f0000000000)={0x0, 0xffffff0a, &(0x7f0000000080)=[{&(0x7f0000000040)="c018030033000b12d25a80648c2594f90124fc60100c03400f000000053582c137153e370248078000f01700d1bd", 0x33fe0}], 0x1}, 0x0) ioctl$VHOST_SET_VRING_BASE(r0, 0x4008af12, 0x0) 6.443322019s ago: executing program 3 (id=3509): prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8e}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r0 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x6) bpf$BPF_BTF_LOAD(0x12, &(0x7f0000002340)={&(0x7f0000003700)=ANY=[@ANYBLOB="9feb010018000000000000001c0000001c0000000400000002000000020000060400000002000000f02400000e00000102f9000000005f"], 0x0, 0x38, 0x0, 0x9, 0x3, 0x0, @void, @value}, 0x28) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@file={0x0, './file0/file0\x00'}, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sendmsg$IPSET_CMD_CREATE(0xffffffffffffffff, &(0x7f0000000040)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000600)={0x40, 0x2, 0x6, 0x801, 0x0, 0x0, {}, [@IPSET_ATTR_REVISION={0x5}, @IPSET_ATTR_DATA={0xc, 0x7, 0x0, 0x1, [@IPSET_ATTR_BUCKETSIZE={0x5, 0x15, 0x7f}]}, @IPSET_ATTR_FAMILY={0x5, 0x5, 0xa}, @IPSET_ATTR_PROTOCOL={0x5, 0x1, 0x6}, @IPSET_ATTR_FAMILY={0x5, 0x5, 0x1}]}, 0x40}}, 0x0) lstat(0x0, 0x0) getgroups(0x1, &(0x7f0000000d80)=[0xee00]) getsockopt$inet6_IPV6_IPSEC_POLICY(0xffffffffffffffff, 0x29, 0x22, &(0x7f0000000dc0)={{{@in=@local, @in6=@mcast2, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}}, {{@in6=@private1}, 0x0, @in=@private}}, &(0x7f0000000ec0)=0xe8) r5 = getgid() r6 = bpf$PROG_LOAD(0x5, &(0x7f00000054c0)={0x3, 0x16, &(0x7f0000000980)=ANY=[@ANYBLOB="61124c00000000006113500000000000bf2000000000000007000000080000002d030100000000009500000c000000006926000000000000bf67000000000000150600000fff070056060000200000006a0200000ee60000bf050000000000003d350000000000006507000002000000070700004a0000000f75000000000000bf54000000000000070400000400f9ff6d53010000000000840400000000000073720000000000009500000000000000db13d5d8b741f2cdaabc8383caf56b8c2b84a8d09535a157f9005bd38addaa65b925cd3ded85d3cdd66d9c79f0529d045625b8b9e2a095d2c51ef45c5588ec78c7f32946b17cecfe54c53ab530c58b67851b7e0e82452a083b98a6aa766401047d150203b0417edef332233b081df18961d6822d133bf72a4de1c2ea17f04537fc211576846ac629d1d93265ba474580047a9dc88de358ce795731891a2031de4e09740c64e5306f991ed4785a9773a433e0db9c1a7d4ab9d658ce9cfdb4db3bed62bcb2bc91ddcdfac2e6d4421c49fb6641cbf56914e76702f673b586c700e3806f825f1d0da2a304e06543b56d35235d7897a7fe912971aab876022e96f5143b6234f5a6b701690b07fb664b44e22b72e843e7cf55f394cf75d1cd57c9150bfb98cc45b3fde43e42e150d4a2fddd9a9767748ca3522443097c55dc97c09d38485b18ad2cff787338bab324336f50c97b751f2ed2c4281858b428d1b2c1194b06f9bb7ffcc95c1bcfc5540f9574f20e7f513a2a7c5dad90e7d479724d69fa0c0bf97af1231a49ea166f743279d240e2e6f01d8704f313d68b16198be5f6a50e9e0fd20893b2922df566d2622edee5000000000000000000d91c6da09fa7cdbbf16d4780d8c2401c55aff772aced3ff966ff76d796c171f5f7a31e1b14b0c0c712c0fdd2710f37a3d15710d68e7326a7db043c57784bd9bdb047db75"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @sched_cls, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) lstat(&(0x7f0000000000)='./file0\x00', &(0x7f0000000040)={0x0, 0x0, 0x0, 0x0, 0x0}) r8 = openat$fuse(0xffffffffffffff9c, &(0x7f00000001c0), 0x42, 0x0) read$FUSE(r8, &(0x7f0000008340)={0x2020, 0x0, 0x0, 0x0, 0x0}, 0x2020) fchown(r6, r7, r9) getsockopt$inet6_IPV6_XFRM_POLICY(0xffffffffffffffff, 0x29, 0x23, &(0x7f0000001400)={{{@in=@dev, @in=@local, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}}, {{@in6=@dev}, 0x0, @in6=@private2}}, &(0x7f0000001500)=0xe8) syz_fuse_handle_req(0xffffffffffffffff, &(0x7f0000003740)="20cfc9adbfe4f594fa2459bfcf591a6771f5bc45f0345aabe73d0771b1fb7fadea59b5125e4d776c80d5003448b269fdccd4684213e2eb42bc138bd1ed5915efd850c50e9a866821328b31f07a29bba8aa04cdb494baede1752b78084ae2830df8e2834d3edf70ad529833b3fd1eac8da3ed209c9b2d736c0f3a555ff94204440151fe8fbf721d0a5cb6ddcf5fad3a5caa11e4b83262a5b7024a2a1c3592a82e6096b0d1c5fd1348a1191e1dd212a8e40deb840fcc6b8c49aeeee98019fa7c2c167a73d6e527efe79b0d8a2e7060382667de53ec5217b87597f17575ca8c8b01434a74cc7fd339ba7526fd7806841052c3ba8baedfbe41185169359552acc4553c46ac89233195fbaba6572cac6484336085698fcd8cc21ff323f8bb1a2e2881814a66ed128b9ffe573266e29da5854e9988b622b93f92b736688f526e9caa4f8e53f1bf1d5c8a6369197603082894085e2e0a8015353c90ac885fe700d354f043435a1ba3f5b0c4cc608f247c47895195593fee4ddd195d9b76d6aad60574e30674511d932e06488796baf983a78c723320d0afc56c5ffdaa73c764d4018a09f63e28e2af0b7cfd6db1e147d3309653d500009741bb1270b690f6ca97e9e8eb733977ea3ab78d8f44aa14af87c62f2895bed2d8b5ccade5c0e7c9fe4c8506aafc41a06042016e06215f4f50982f97fe26c7259f1393ae2be9e574e0559240df7d5b909ec010fbf71bf6d00808e5a777c10bd0cdfc8c73b17780062cb12263af032153a88c771b2dd80088869fa17954e35a7d14ecb2d6d6db9681a2a195036e6730650e68ea3717f58f9cfb3b57a639f39eae6ebca439b7804abe879e2575b5d827dbca640ac937b506482e401a3bc5e5ff894a50fea19802d4d2411ffbf473ab4a6b9e3bc54999329baa1e5c3f0340b76fb764ff7f70c35b1267a752999665c3f82e6a362e8d9289db63418e8fa9340dc3f3bc9c9dedf229e6b92c29573e8e36584d3e77b1696409ea44f4e844768bd894d61217ae239dc9990a0df18b0a3179934e914bd3d6099c9eb728ac86e2b0bbe1f9d3c3e7b871514c7b85e3415df794d698eb9d27db4f44070347f3fe774eca016b5c094c5aaae60476ea038412bdf135e1b6f5eb730fbe01af778ce949cb8e570ea6bf44edb31f4d7553132aa3bc9f5727fde8266c4cfcd80f8826b1e8c728f2df45cdaa0389812a24efa800ace37f9f27d2a051a0e55dd8766aeb2259d53b41b7a9562629bd5aadc1625d699cbc104ced9cd5f0fcf9ca68b670e7a54a8efc616d25ddce7d8002c2ed19bb068f9293a92ed4c189e3daddd11670cfe7a2f594cd7843a073bf3a1be8c26315e27fec7868df96b24c62b953b80b3573b3a8d3e875479b1c900f04dadf941afa5d277dff2ab16a411ef6ab3383938eb57efd3e514a4313fdabd1817c63028b293690d8efe3c3a9de40e5252333934fb6799533f8956ed9a6af9892e03bd29b30dbe9ea8841eca61397db9e55fab3feb033ada77cc30e9783a2d133f68800fbfc9294460c2fb850a72e4a0e126e9e0e83aa29c983c5f73b909651553271b9651a67916523b8909f56c9a11e7f51332cd44f786eee506c245e130318656405288d4fd25df78ee94321715401bee3346004d6be80178d60da4eacc6d7904c0b5705ea13b1bf6270d51014e6720f9ebe2970614082304217ea79fb4164249b59b496459d7a1c7097dc4e6aaa74416317037e50a865ec02b22f9454e5648e26fa2b316826531e54148261662a42a085fef15afd9edfecb68fb1eab2e152be9b2be6274be3c03680b579428b3d5a5cdfa5911bd36b9e9ce3a05f46cc330e0cdd5fbda7f408cb8c46d4e58b1014a17c242fbae0a766c27f5e5403543734a5385f08a48abb64263bca55596a5aab6dd1adb0ac82de43502706027b38609f9c5a8ef3824fe1a2bea01cb095626ce6965d36b9ad6491b55c678e149aebb0738822f63c36b1e60d6aa3d006610fd223c11a15db9111d61a61b40535a9880e24734f3337488ba7935ed83e8a4900bbf8c2b0a0d43209eeb23ca49ea73d7f149d679c348e662a1d44bf215815b83c1ae19f3c9b0645d7ef1bd8bcd319ee037728052202c5756d1b0db8b1d99e881f904db0cc4496e2d07cf722b58b79f150dee62c048d9eb9f7e98f31881b8b513acd8cbe24d40cfbcdc940778eaec456ec01c658421f42ba749bc0e4067b7a52aca88686c71713d2704fc8f140d3e2f0769a15ee81113f2918072566ec31c996214be26828cbedbd2288fab6717ede53043bdb28d0d439dae312b63333ebafe1bc1e85c2cfeedda9fce4149b530ff55744fafec7d130d1e9894d7c3e9e53342831c74fc982d6f5ed695e8e892eb1678a04e106194a1a11d724a61d27906c56ddd7d21c36e2ee42baf2b4711623cf7a1ae052112a346905ef999b53d5f4343dfd0721331db9d06162b6a28b320f8d7c73cb3f32460342c39394a94c1266a5173a5f5779e6e85763c94c2b9b244512b4ec35e568ddfcd89c9ccde42eb68425608a063650f6cbc2b60f1b386bc074a006044c7c32b05a7d88a2406a435de7268b12c1977607bc5a22c10a1c01ace6b8aa0fa6910c14acc142453b97a3e64555564357a1dcb5747f029926b6e7111c7be2b348039da10454b214090649303726f821df42953707756655ad4eb05316d44af6adef2c91a02eac849e05afa0e128f58167589c7bec01eab291f010fc9df2578960656c87288b7a7fa9ce85c954830bd2e4af4ed8c7fac793b668f6442d92e88f3d766e77c5d571919b95721132d364dc86c6e96f61ed1769804ff7bb6309cf29ae7ba95513f5061349c30c2f0316ef8c46ee014d5cded3d56aaf0a01189c4e9f4984cbc91a209fef70df897363d05bb4a82da8187dd10aa58a7f20d2552c63e09ea49eed2b5929e12d60f78d188958431f2d1b6f4c60c35f915b42ff3101158e8ae99c980a81d090dc18d5b2868541caa0f442d95843a412c132ba5971be46a7213dcde1421339fa83b6e8702da7cd1d81d4c1c175104f7fdd4a7ed8dffb7ce522a59bd8574a30daf06d33b7ce9127f79e3376f3a9b3011dd467f6f074c4186b1c7c471d8c2b2a03b9b656fc2d668978d443cd955315499d08a385f64833d6100ebfd71fac00d5aaa66d9b2a2fdd73a4adc3393e66a27f6d76b030c621282ba9d7858eba9f32d7a0b7fd8d950e983201f1fd442c2c08e37071d84d3ae06aa1f36d4c084c676db6f87c88d69b6d6f7a267266bbadb85cda91a3e2f6ad43ddeb3b06b958dd8283c0a440de541507932a6a02d1c157be8cbcdf83b893071b95fd248352741eb110f45709de6ea9a5483c74e603cf85ef6e4b1cbb773c1bc53a7176af08d13eb1f5df71f7efe93f7ed2494dde723499a3f9235532ef765c1133ac1999b3851c3ffeb290ea20a765ff6a0e3e7c98ac5733790b3bf7f11a197079a0ce89ab4823b5ebf83cb5784d3b45ca07700df831bc9d8ec550b9a1c87278101ad17c72e4d1e9052a52a451d4bd1d4054b553a4f7df95135582f957c0b2fe7ad32194da55d96c13271e72265111ee16aa930273007abb89e46890c7f92a88652293665d856cb8a7888c3ff7a1a2beec3d85a3bc24cf462e006c6072cd042d56feb79ce1de808229ee762616f42981a8ba7202ef28b9ca99ed41f43899b81fd6bcd8e5ac27d54cc49f06a28fe8961e0a214313849fd0fd85e65f0713e08646f4e885f9b1cdeaa58e5dbcfc45eb9feb20ef1aa458204f10bc9a69f017c13e6be2b3e8f17c605ff2ccda50b5297c8fe66a76cb47b523d27c025d44ec2d20d96714f998271931b7d9030ae753cca4a09fb14340c2cb84a16659feb96e6fd1bffa8c7228addada74cfd7884807a111f51a452d9ba53e335ae13985089c2229b3b89a26775bee7c4e2ac5ed46f02c0e8e43257172550bcefe8d6d30fc856816c6d60782c6104a908da6e68d9e1ee6c4269111def6d734f3d98201449030c5eee9d594fc4b457bdbd1d01cd9a7d9fc9cfde2a1faac7bd61f44220297642757dc1552ac5291f790aac7eca13aa43e81cda75152d7aed529d953dd303511def0cac801bffe8f8f1cd1063eb47d62e7deaf4df5c01a5aecb45e85468020009ef3f22e7dd65cf5d3fc35a2d2d161db48452dc8d1964cb6bab2d31eecafac5d0948319724e38ef91dbbd3d4e2715a67235ad7c522a388df9cf79e2025251fc55f8fe769db1127f3489409369645cbf5a958af509243d9509be2747d6df32cba377efe2229c65fc64f2b5a725894ca70294488291ec7d8a20f0846b0c83500e4380a467e08e3f3fa1d9d2f84e985a9e575d3a45c91dd778fbf42072e1b6b37463fe6593d37abe25a69bc06dcdfac54e9e204820b292a4a4fef3d5b70e4259ed3fe9aae9a77b5c38f86d0b08b574a21098a7969cb2bfc3f5404f80b6651d109ca6c38ac560d73e53e0c5b9691fb66bd75087f9288b53e45a24bb4eb18353f20ded4b4e3dca3f478b73cca34e1af34f74717921d74d637485ee5fbb6003cc0125513e1fe4c9f8e6e3262e18720e38cb54fedf1df50a24627a27ebd8cd159c8d0617b03e01eb90a29829069e144af82e11c0b4a2fd28aca2bcc4b69e31af330afbb0c6b961a33452bcaccfb42664a4843e2e4b30ee58c9f92a67b72fdd775b6d8b69e491def3d175fffbc41bf1fb3d31d53b0dcabe5304b23b5c5a13e95dde73f185546939ee90306256a99b6d705a4b43ee851dc7483644788999c16e81665b4f10b0cb83ba550a1a63e6c8c8536d26c8f000d29f2c0e927189b55ce3df98846a672a13f3fd2adc34f9f9585b14cde7028b1305f3d67eb6abd72ff3418923ff6ed3af669681db2898b1d2785bc340fe6fada70b1c57e9ea0f38d5b0e57e346991f9ef4a86f2028c940ef90c3a3a1766451d7e1894f9e773c445c3c356550189d933fb8bae010a0d5b7be4fc4ca85d62ab83f2a51d6ded3651536eeef28c5cf83800ffe78ada9e6c0fec8810bb6eb540cf7013a3467b180fce57d9f1a2e16f6a64d2b164b32c81b99b0624f46e048cf1dfb10760e3f93c6f7fbf75b61e545d3997de3984687f7573e6c4acfd8d4dba9dce870049725e2c253a108de1724ca325eebbde774053be22b96b4f30f6f7ce0d5dd359335d7027df2b1ae841c55bb36b6a499468b31d5b4e444b5cad9b8c3a26dbb7a16fed01c4a3d8291a6c3a11c8325b00f0b6d96e94a46d37979dc13c5e728d8f2bc029392680179c978986ae2d2e2e494890b297b412e27c43ee766a1044f249807bfd36c607dcd38faf61474ab41d089843796c384b5489ff2cd30cb0d8da613d1406f1e5543206baa67f909a6b5fe6d2307f4ca578ba1df6acf9e5dbd179b132c724fe5f245a5fa7f814876feaa20d9ff86d3f51fb25ec704bffdbacb45943f0a66ed79f0be186dee21a0a8193099fef194c84abc488765d8a0106727f0a4c7136bd15122238ad52eeacc058b65e953071fca6b0d8d1f9d4a44616c0e15439fcbcc01a5cd89a709b2ca842555967427538272ef617daff26ea4d028d98a6780452cbb7cf969aae6f360b7a002bbc3020db4e7d32270a71c487dc945d1c20d01ec7ff0fa30d3df708f61f3787ad834e4abf7a7e3330e40e656fdce3c4e61e2f1be7bcc13a25ac97d927ce0eee8abc2c5d74792812fb01d62beab43f3e5d3f301e8c29f822e412848d30b6070c1fbc89d7c395e21a8e16047f1669b09efa1906f1fe885936b4b19fceec2b3e4f6dcb58fbb9c9377ae333536bd2323bedb4f8101624f254a32630e9afd690f16585f854cfaeb768e4ea77c6731b9a777d2d170c34fc7729cafd27e76540065e0eba700a340c014b81220ec0ce1e4d52011836624876ed04a67f30abfb7795a58125b4159eafe951c3f7eebf74f9212534350a7ea36931538e65d740a5453e9a4c1566d00c7cc2313bb66b479bfc73b607dea2cc79a3396aa26c47885336c48fca3bc7ff576f2bad325c787d280feded34e580dc71982fa25d6e5bdc403abb905f3f2fb297def5180f7e70f94564b3f835ca426d8c4a863ddbeb242c4265fc8c71895e3fe6e7eabe9c802bba125e7d047999aed849f10ccc62321abd9e05b486eebd436197b4963c7c2930f57e45464b8341a75bd4f8f08f3f57b6b2f2dd297ce00abd90539f912aa007b0301682e341da3fe73568d6a09ccd16e1327cf2bc24d2cd13f93ca4492ca2750b1e946f35e23f786bb2c158fa507fdb71a6c8d2a5bd3ca325d65aa5b64effdc6bb0f7eb433269ea69b4cbfd87785da57ecda18ef3a2c84dc4f987effded2806dc34caa65bb1094661d806b981e4637463ce2638bccc7c5663e33e6659ea4384661c2ca95d95612e75c4bc17797885ccdd0399d0524336ac27f614a8c725ca285d72c68d3d4928f5a724056396c4beaa1ce02f40deb413f1fa7348dac7b864d65ce8a42f0a4998a2697cf7d5f79dbbca8724b03185f4a1fce7f997c47f3ffd5630801d7ae9896d0cec6f495485c06218c10a2d4c4424c64f6e04c04e11038a412de2adb70c57ca2f3adc2c7d87b40ec28c3d60cc89ff6186b9cf090eb8bb2ae32b6048e6b34b2eebc415e7b50d8fe15414d9fabf9d85400ad1576c9a907533a32eed78fb1e937234c34bfb4d0a696530c61b9788eca8c8523f395373666c52d57bf1e93bf660dfef4a09f60f19b8da4ffe4184d1045a6b894095e418050306624521dc739acde4a2b8ac5a2b6b006984205183b25eeecb2534047495694d70647c41fccb059688412acb5f560c458b9168f2b80527896e8fd5a3a0d7a4c28b19e1b8eca306e682c6be641672456a24ac5eb01f78aed4856091b0dc137329fa2447bf349e1ecada22d95991c766cc9e492280bad90b48b88cbf744e3e6c853ed312067ed13479ef18acfa4f568becfeae6d7058aa438dd1286f11b4173c24443a7cae8bddd10399006f03b005cb2afd4590b9760d6da208624d6bda7df189a91249831f40fb20d6f756b6406d29dfdcfa6621baa277fe9e3fd516db9c77aa611560ec9e7adab6e8af97a80ff40023834407e8f4a550d93df3d886ae4f3bbc3de56e82a0bab333d2d73c11feee6874ee88191df47230d7610a791352106a6adcc545184cd6f4b8c924d9f001fc0dc6e2ff322dc0f07dcdd44d3ab2ab4d33245c67d633a903b620cfc067ec6d32bc0846eed807f1997f733cf6a9fcda606c88ee8ab87b597d0e1ff2fb354dc8459c08f6c737e18f86e155770228ee0258ed20e4ebcbf91de812243e5fb0c4d7d5031b2f5bc331574d85486be98bf5c5070ee0c35b87019f52e3dc204a9556f7bba4f7fecb5f2cd011d272f07109f6c82f35c8713dc5ae245f86daaee4d186b0504e53a27a2c66cf5375c16034fc27046170a4110add03d8b6fa422dc90bf1946340867ced52d1a9287a3c4da26e90b6c8bf3b16aeb450cfa7f07fb4f219c04bbbcf1d0042bf69423e40033eb43ea8ac9f53ac281d6592091305a31c344674606c79df9ba2d0dca1297fbd1af86e3d636868609c6ee11b59c7614dad2e4730b1b5060d744aa95b04ad6e21ba10664bf46245b27a9c00b47b9c675425f5a304183560c61d1eec4c3db85bc935370fa9e331831c6d730924ac851d699691cd88340eae68c24dee83fe357180b41403619c8ca78e351114afe45e24081f2a4da2681a71338d121ba68a4e37794cc1fb617a7ae59f2c368a93cafedcbca5d9da9bbe3eebd411a3ce70773f984f676e691fc51cd57d36b4809b4803dd54da1d3f4b7d805e6f527e7b35ae1c44db6a8ceac008c08794b0e98beeaf7a2c034caca62e9681e3bc70a7582a6e3d49f8e2025de44e3d45783f49d5ceaa3d5f16fa957a7f05d66f30968e4f10348101a3d2e14b2200e806dae50c8f6f578be0686cb2a07e31739bebb4a457e5c0aa909f4185a4f57ffd6143e2e2dd4a15c7e140f8e632653a6ce7243a83aa0536ac63d86eaf18f51482a04d8b52372913327114fe1f2701a5f108760baf90da251a52e1b6d14478d56732fad098718797a46631511c0060945884ee7d0d19164953d1610eb9171802d4936fce459d6513885e2a74721fc3b71673dc6654280a1abc4443bedec7dce49b6fc0bfdd9cdc689963d6af283340e4d83804d8f9f5d7e8cd5c494e660304528c7111cad9801a8891f865160fe3e27badb8866010166bf081fd2c7456937e4dcc4a64ea36558c89f517f8edc3991e348c80f7e25bb0a5221ffecf5bf6bc8ee0767a703b739227d72ec33f7cded2ef85516e83c837de3897c1c82e0adb435736e0aea28a6905178db12a55915b45e0b13f0a7196a24c1f8855db2005278eeef48e190f41a015a3183c5f800cb52379518e523bf06c3ee85292ff9c1d5c5c9a7a0e5194d4fcbaea918667f0100e02063deb74b74579f38634f5d61051c76804d2da0aff7a7db194a2a0a80766a1bd3f5d739ab08eaa91cb2d7f518361741bf3054a22e14f6f88c49f2815dae58c56fbdb9304221eae518b11da2a17faa299cfcd9c666d15eda9ea360cd56b738c087b1ec3b00e23d6800a58b01b353711716e5d514ce4bceaa3d15add4ea2f64ee251ad39905c08a8b6dcbc22348f5746d36e3b09f9b7bc72e6f8a90f74d8dc8b322a0f3ee5dceeb6a940441bfa3dcc679edbb01cf61f6d54168db2b3d514cab0f9d9d92aad2f59e2836354d7aa1c67ff3f841e06b739bb6c70f64ce76cc5b57fa694b563cebf9d90b05a3429e0226147e73451686947387fdb8664330b5c4ecdca8e1e05fa06492cd27b953225a985b50371f3af2f679a12c4095e1646df06842c9271ba0e45832472e841167916b67fa6d1c1fdc12602c5d3b4fd9e844fa28875c1f40db03e80e039addee219ccac3a053c631e8dd4ca9035f93f781b7b33fb132e28527ad37a3ef3f33e177dd4148aa41b4fb2337e53c14ba382a6ea8fb746e52884d12db338e4f4be8daf20fd81be1bd6fd0d0a503995851f661ff8d3a78a87c836630ed2b1a24acfc60548b33eef8f94a68050a0a67ec131e24c81103db04a1a897893563f83b0170fafe0596b6e2f47a6238f9765af6f1d586cc097dff10d6400aefea9856c11a3164bb6c8bc61fe970b3fd3fa233fb88788f7595d0134377c95cfec218f16b863582c6106378215017eccb8847f4e44603cbf87c704cba5b4b10e10b609e6225c6f29364bf6956321208ac95fe5a8d78b24a09685dbe9f908601439b18231ae2657fd2aa1abff22ffd045a2952b4bcadb3446e229dabe404317e7c5c34ebe266aff05986d32ac0ff6082351f5413bd3a6a3e62ed485d1ca019eda62b228e58c6912d43a4bf3c349ea62b7b27d12b1a993e6a37a0689d8b9f769f13f28fe9b2096e98037f386315a5554acd024c06b9c80dc9b60bc4f475aae58668e8477367919f1fd71b821af2ea76bd65d5040d3551ae44e52e6984dcfdc81467f88401c7c1b3f9cec27deb35f387e0a56ab1c7c64caa29b249343fe9c0dc5e10cc2b0dc8ffca3833525b4a01fe7898bef5975a5946b273d313bb7315bfe2c1bec126702a1a947d6cbefb6345fb3bb6837dc227adc7f33dbfefbbbad2a1884ff3a66e0a5f30bb504d2f7cdb32e5a70c96b72316dc812595349697f768d3105ca5bebc20dc7600d69f067eede2043f2474f5fe612c7848135d4aef16f4e71b00678d519c41414bd2cfce5542cb38bff50007577fc9a89f7a723dcd479953df822e6436d5c6f8886007026409f152d15f7c609c92484501f050b6bfea96f72a7df705a53b45ecaa85a7f8546f3529a509bd4e245b2da0bb0ec7d290f06d7a378998986353591e2ba054bd4a4b424bce99ba6b92dc52be23b386093b2667b95ab8ced184d674c2acffb5e6372d383428e2681b331721e6239349362e60eba99502ce21edd35bc941b07869c99e6790211aba341b1c6100a16087eabe0c3a86052aa01cd48442de2baea94bb6dba34355858f96d96a93d7c030e61d43c052fb41a6cfaea88e9c1203eca6970fb9477fc0dbe4ecb3a166df41f8520f5338482d142030d5936086f26bdc771db3454807efc79665e8df15f48b543a2d8df4d2513a0391192a72612f2772258cfcc076965839ac8018f382793cf682a4ad480d22d04dbcb14b7ef9f7365b7623e17fe9f67a609d4c186276af2a0c72ef56710f4e174c34dfdc7d22becefeb2870fc48f14a5b3b16ac47eec97896341bd5bd5ebb8eae18b4a5545e6c1572632bf6d50ccbc0328bb1ad73e9e828b630b7adaacd81eba91cab08e9aa8c006fbafcc51204a6267fad8d22f23250a0e26dfe2eea69b30a489133e36e3dd14fa702305d5f300c267ab9452e49ad0ec08def7dd8aa09b80a16552baa4a16a5d0ff383426844becb94009b670801d44f85d7ff610b257829417e9d0b5cddbcfa5daeb74e73983384e4989ef2fd4127792f2acb33d885e7d056e36d046f470fd045d884b708bfd9795ed0bab52f07f387c45c08bc83649386f3fdf869a1f469824fdbfd0091904d4c474543ba1278f7410b93a56539d56604f7e1edeee85aa4c181fadbc73221aacf4418538c5fa625c238403c80cfa8186e97d317e73f8a7674f79065a5c64c28bc17674227dd9d8ae7b1a7dcf2a90348f63afb2d60561d2a4807335c5fe90fd67d2778e0ee0cbb3a64cecece3fbdbe9a82ebff933c25884250ab63e4292e30f169c95ef5a61b89a200c781795e2c3cad5b7b357d1928585c7debbdc42f0bc3d4c4620a8085d1c5888df1592ab1a254ee54cd6321893a63cb15fffd41c9ff73b59a44fcb3b827bdde5d5be499755aae1f39ae85b572773f205328d875810f7bc83c56e579476e021fcf012bf6c7775abb1b1f2d7e6344cc19f7736af41875cbe45362d7eaab0b07d3ab7ba2eb5138dabe616d771ad71a996a621d83b158ab81dc56cc8d47d6cefd4e3016bb2768bc0573e4d2d5317effc1d64d345ecd3840453e70a843542fdac204b36b7a3513eed46ff90ad3188da6d695c04328cbbe7192fac256d74745c3cccc55557a23b2d1f95deeca5c58bc6b2e7a08638155de044cd240359c6a57ba1220cbb3ec203fff19e9dc4b54a84aeb014af927fa40e7aff8f9b183364f5557c7dae8e0f6379edce3e18f562dbb0e1f7a858e89a0257bd2ecb6554ea63550ac5f6eda3cdedf306f9ba35a24583be99c05d2d8cd7ee96e695b7086e543d7990d472b283120b60021abfc6aa1a89f1de8d8602fc2846d5f0b3525501bbb948764181b9ecf73ccff3deef525d2ffe34689c701305a32f05eea6c5ea2fa0c6a18194212998ce9b689de925232393a92b61dddcd93099a723027967fd1b58d8b6185f2499aaa3d1a519dd4cc316ea1adf5244445538f697bc6a33b21b63e4e8e2b059d17a054e88e0493d797f1a444c630a0678d4e50304156d37bc8a1061de9b86391f0b3499f0224861cbb69144c83a9e23186175c1992e78c27d601438d7c85e776e9fca104eceaebf8ef33adb196a5728210e11c3c5620adb2610908361bc7ca5adf545c58dfe2396d6ea155e2e25bd9efb0193d20080e6160046db819ff56723e069a5947dd15ab16b6ebbb635d00", 0x2000, &(0x7f0000001680)={&(0x7f0000000300)={0x50, 0xffffffffffffffda, 0x7, {0x7, 0x2b, 0x9af, 0x80080, 0x6, 0x2, 0x8000, 0x0, 0x0, 0x0, 0x10, 0x9}}, &(0x7f00000001c0)={0x18, 0x0, 0x6e, {0xdf}}, &(0x7f0000000280)={0x18, 0x0, 0x3, {0x7}}, &(0x7f0000000380)={0x18, 0xfffffffffffffff5, 0x7fff, {0x1}}, &(0x7f00000003c0)={0x18, 0x0, 0x1ff, {0x2}}, &(0x7f0000000400)={0x28, 0x0, 0x3, {{0x5, 0x8c2b}}}, &(0x7f00000004c0)={0x60, 0x0, 0x401, {{0x100, 0xfffffffffffffffd, 0x6, 0xffffffffffffffff, 0x101, 0x7ff, 0x0, 0x6}}}, &(0x7f0000000540)={0x18, 0x0, 0x0, {0x2f077398}}, &(0x7f0000000840)=ANY=[@ANYBLOB="14000000daffffff01000080000000002b2d2800d7cc7cefb5fb25e9559c83d127699cfbfd698d451814376a2c6dea84aa6d6a3115ac8037d7232e36ed0d5f03e2356c0a1d8eae71a23a7e6b5a7456510d0768f5dca1d6e1a5f8698afd68a9e64ea0e5b3aafe04de2c0275fda054e8a16905e99eaf08a6a9"], &(0x7f00000005c0)={0x20, 0xfffffffffffffff5, 0x1, {0x0, 0x1}}, &(0x7f00000007c0)={0x78, 0x0, 0x6, {0x9, 0x5, 0x0, {0x0, 0x2000000000000, 0x1, 0x7, 0xffffffffffffffff, 0x76c9f5ea, 0x4, 0x2, 0xc, 0x6000, 0x5, 0x0, 0x0, 0x6, 0x1}}}, &(0x7f00000008c0)={0x90, 0x0, 0x0, {0x6, 0x2, 0x8c0f, 0x0, 0x6, 0x1000, {0x0, 0x8001, 0xfffffffffffffffb, 0xfffffffffffffff8, 0x1, 0xb, 0x1, 0x1, 0x5, 0x4000, 0x4, 0x0, 0x0, 0xa}}}, &(0x7f0000000680)=ANY=[@ANYBLOB="18010000feffffff07000000000000000300000000000000090000000000000004ff5f3d81c5823a430000000000000047504c00000000000200000000000000040000000000000000000000fdffffff0600000000000000080000000000000000b90000000000200000000000148900000000000002000000060000002e5d0000000000000600000000000000030000000000000002000000000100004081000000000000040000000000000001000000000000002a000000010000002a2d2be240275e622b2a0000000000000000000000000000060000000000000015000000080000002f6465762bc2711a5aaf2f6275732f7573622f3030232f303023000000000400000000000000020000000000000200bb8a2d91dff4938ba73c113c7888048dbeef2d716e000000"], &(0x7f0000000f00)={0x3d8, 0xfffffffffffffff5, 0xb92d00000000, [{{0x5, 0x0, 0x5, 0xb3, 0x100, 0x8, {0x1, 0x454, 0x900, 0x49, 0x3, 0x1c7, 0x0, 0x9, 0xca, 0x6000, 0x4, 0x0, 0xffffffffffffffff, 0x8000, 0x2}}, {0x2, 0x8, 0xd, 0xddc, 'hash:ip,port\x00'}}, {{0x5, 0x0, 0x3, 0x8000000000000001, 0x7f, 0x3, {0x4, 0x0, 0xdc8e, 0x1, 0x4, 0x6, 0x4, 0x6, 0x2, 0x4000, 0xda, 0x0, 0xffffffffffffffff, 0x40000007, 0x80000000}}, {0x5, 0x3, 0x5, 0xd, '/(:^}'}}, {{0x4, 0x2, 0x9, 0xb, 0x3ff, 0xba8, {0x0, 0x5, 0x8001, 0x80000000, 0x5f, 0xb2, 0xb210, 0x1, 0x8, 0x6000, 0x1, 0x0, 0x0, 0x4, 0x5}}, {0x5, 0x6, 0x5, 0xc, 'syz1\x00'}}, {{0x0, 0x1, 0xff, 0x4ea, 0x8, 0x8, {0x4, 0xf, 0xfe6, 0xffffffffffffffff, 0x80, 0xfff, 0x9, 0x401, 0x10, 0x2000, 0xeba0, 0x0, 0x0, 0x9e}}, {0x5, 0xffffffffffffffff, 0x1, 0x3, '\x00'}}, {{0x5, 0x0, 0x1, 0x6, 0x6, 0x6, {0x0, 0x3, 0x1, 0x400, 0xc57f, 0xc0, 0x4b, 0x8, 0xeb, 0x1000, 0xfffff801, 0x0, r3, 0x2, 0xfffffffd}}, {0x2, 0x9, 0x5, 0x2, 'syz1\x00'}}, {{0x6, 0x1, 0x8000, 0x10000, 0x8, 0x2, {0x0, 0x0, 0x4bbf, 0x7, 0xffffffffffffffff, 0x7, 0xffff7cf0, 0x31bc4, 0x8, 0xf000, 0x3, r4, r5, 0x10, 0x1}}, {0x5, 0xd6, 0x1, 0x5, '\x00'}}]}, &(0x7f0000001300)={0xa0, 0xfffffffffffffff5, 0x4, {{0x5, 0x3, 0x1000, 0xe82c, 0x6b, 0x4, {0x3, 0x8, 0x2, 0x4d, 0x4, 0x2, 0x0, 0x71, 0x4, 0x4000, 0x8, 0xffffffffffffffff, r9, 0x4, 0x78c5}}, {0x0, 0x8}}}, &(0x7f00000013c0)={0x20, 0x0, 0x5, {0x7, 0x4, 0x10000, 0x2}}, &(0x7f0000001540)={0x130, 0xffffffffffffffda, 0x8, {0x0, 0x3, 0x0, '\x00', {0x100, 0x5, 0x3000000000, 0xf9b, r10, 0xee01, 0x1000, '\x00', 0x7ff, 0x8, 0x6, 0x7ff, {0x8000000000000001, 0x1}, {0x9, 0x5}, {0x5, 0x7d33}, {0x0, 0x2}, 0x8e95, 0x3, 0x8, 0x7}}}}) r11 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="19000000040000000800000008000000000000"], 0x50) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="180000000000000000000000000001b518110000", @ANYRES32=r11, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x2b, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000080)='sched_switch\x00'}, 0x10) r12 = syz_open_dev$usbfs(&(0x7f0000000480), 0x76, 0x160341) ioctl$USBDEVFS_IOCTL(r12, 0xc0105512, &(0x7f0000000200)) ioctl$USBDEVFS_IOCTL(r12, 0xc0105512, &(0x7f0000000000)=@usbdevfs_connect) 4.974147891s ago: executing program 3 (id=3510): bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000200)={0x18, 0x4, &(0x7f00000002c0)=ANY=[@ANYBLOB="18010000000000000000000000000000850000006d00000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x41100, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) prlimit64(0x0, 0xe, &(0x7f0000000180)={0x8, 0x88}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000240)=0x7) r0 = getpid() sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@abs={0x0, 0x0, 0x4e24}, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) pread64(0xffffffffffffffff, &(0x7f00000001c0)=""/73, 0x49, 0x400000000000000) sched_setscheduler(0x0, 0x2, &(0x7f0000000000)=0x6) sendmsg$NFNL_MSG_CTHELPER_NEW(0xffffffffffffffff, &(0x7f0000002a40)={0x0, 0x0, 0x0, 0x1, 0x0, 0x0, 0x48000}, 0x4000) r3 = socket$packet(0x11, 0x2, 0x300) ioctl$sock_SIOCGIFINDEX(r3, 0x8933, &(0x7f0000000000)={'veth0_to_bond\x00', 0x0}) bpf$BPF_MAP_CONST_STR_FREEZE(0x16, &(0x7f0000000480), 0x4) bpf$PROG_LOAD(0x5, &(0x7f0000000380)={0x6, 0x18, 0x0, &(0x7f0000000600)='GPL\x00', 0x6, 0x0, 0x0, 0x40f00, 0x0, '\x00', r4, @fallback=0x33, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xfffffffd, @void, @value}, 0x94) r5 = socket$inet6(0xa, 0x1, 0x84) shutdown(r5, 0x0) r6 = openat$full(0xffffffffffffff9c, &(0x7f0000000000), 0x101002, 0x0) writev(r6, &(0x7f0000000040)=[{&(0x7f0000000300)="d9192e", 0x3}], 0x1) setsockopt$sock_linger(r5, 0x1, 0xd, &(0x7f0000000040)={0x1, 0xffffffff}, 0x8) sendto$inet6(r5, &(0x7f0000000100)="bc", 0x1, 0x0, &(0x7f00000000c0)={0xa, 0x4e20, 0x0, @loopback, 0x1}, 0x1c) 4.792192638s ago: executing program 0 (id=3511): r0 = syz_genetlink_get_family_id$nl80211(0x0, 0xffffffffffffffff) ioctl$sock_SIOCGIFINDEX_80211(0xffffffffffffffff, 0x8933, 0x0) socket$key(0xf, 0x3, 0x2) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) r1 = getpid() sched_setscheduler(r1, 0x2, &(0x7f0000000200)=0x5) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r2, &(0x7f000057eff8)=@abs={0x0, 0x0, 0x4e1c}, 0x6e) sendmmsg$unix(r3, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r2, &(0x7f00000000c0), 0x10106, 0x2, 0x0) getrlimit(0x7, &(0x7f00000000c0)) sendmsg$inet(0xffffffffffffffff, 0x0, 0x20044818) openat$fb0(0xffffffffffffff9c, 0x0, 0x109000, 0x0) r4 = socket$inet6_sctp(0xa, 0x5, 0x84) setsockopt(r4, 0x84, 0x7f, &(0x7f00000006c0)="0a0000000980ffff4f8c76a9d0ed4d99f91fdf60a1b1582c67e6849e5f7a413efc9bf2fd1053f5f64e9bf695bd684f5af3a427d1b93dd79505f7bdb7f6d720299c398a36318f4ec230875b1d6349413a6ac760b41dba7ad345c93ece0380bc66b0654388eca56eb12e68df1105a2161a61490bf2790c1460fec83275d32ef3799f085ee20247cd07e2292cdca9808480575d21d117d0f8156f33bea90857597652ca7c731ff51d476d1a8a92913acc9354202c75d7f3f925d2db7ba64fd9d56b4fcae5bf53ecc9e1c4e77ade3b260410d0fa632900000000000000", 0xdb) sendmsg$nl_route_sched(0xffffffffffffffff, &(0x7f0000000300)={0x0, 0x0, &(0x7f00000002c0)={0x0}, 0x1, 0x0, 0x0, 0x4008000}, 0x0) ioctl$vim2m_VIDIOC_ENUM_FRAMESIZES(0xffffffffffffffff, 0xc02c564a, &(0x7f0000000000)={0x0, 0x100b, 0x1, @stepwise={0x3}}) r5 = openat$smackfs_load(0xffffffffffffff9c, &(0x7f00000001c0)='/sys/fs/smackfs/load2\x00', 0x2, 0x0) write$smackfs_load(r5, 0x0, 0x0) socket$igmp(0x2, 0x3, 0x2) socket$nl_generic(0x10, 0x3, 0x10) r6 = socket$nl_route(0x10, 0x3, 0x0) sendmsg$nl_route(r6, &(0x7f0000000680)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000500)=ANY=[@ANYBLOB="380000001800010000000000000000000a000000000000000000", @ANYRES32, @ANYBLOB="06001500070000000c00168008000100", @ANYRES64], 0x38}}, 0x10) sendmsg$NL80211_CMD_SET_INTERFACE(0xffffffffffffffff, &(0x7f0000000100)={0x0, 0x0, &(0x7f0000000140)={&(0x7f0000000180)=ANY=[@ANYBLOB='$\x00\x00\x00', @ANYRES16=r0, @ANYBLOB="05000000ff0002230ab88ed582b508000300", @ANYRES32], 0x24}}, 0x48000) 3.922966933s ago: executing program 3 (id=3512): syz_usb_connect(0x1, 0x2d, 0x0, 0x0) ioctl$sock_SIOCGIFINDEX(0xffffffffffffffff, 0x8933, &(0x7f0000000080)={'bond_slave_1\x00'}) socket$nl_route(0x10, 0x3, 0x0) socket$netlink(0x10, 0x3, 0x0) r0 = socket(0x10, 0x803, 0x0) sendmsg$nl_route_sched(r0, &(0x7f00000003c0)={0x0, 0x0, &(0x7f0000000380)={0x0}, 0x1, 0x0, 0x0, 0x8000}, 0x0) time(0x0) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x80000100008b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000200)=0x3) prctl$PR_SCHED_CORE(0x3e, 0x1, 0x0, 0x1, 0x0) ioperm(0x0, 0x3, 0x2) sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x400000bce) r1 = syz_open_dev$MSR(&(0x7f00000001c0), 0x0, 0x0) read$msr(r1, &(0x7f0000019680)=""/102392, 0x18ff8) futex(&(0x7f000000cffc)=0x1, 0x6, 0x0, 0x0, 0x0, 0x0) futex(0x0, 0x5, 0x7fe, 0x0, 0x0, 0x0) r2 = openat$procfs(0xffffffffffffff9c, &(0x7f0000000040)='/proc/cgroups\x00', 0x0, 0x0) preadv(r2, &(0x7f0000000080)=[{0x0}], 0x1, 0x8001, 0x0) ioctl$VIDIOC_S_FBUF(r2, 0x4030560b, &(0x7f0000000280)={0x1, 0x0, &(0x7f0000000340), {0xc, 0x1, 0x48524742, 0x9, 0xaf, 0x3, 0x6, 0xc29}}) getsockname$packet(r0, &(0x7f0000000100)={0x11, 0x0, 0x0, 0x1, 0x0, 0x6, @broadcast}, &(0x7f0000000200)=0x2ba) socket(0x1, 0x803, 0x0) socket$netlink(0x10, 0x3, 0x0) r3 = socket$packet(0x11, 0x3, 0x300) r4 = bpf$PROG_LOAD(0x5, &(0x7f0000000040)={0x6, 0x5, &(0x7f0000000000)=ANY=[@ANYBLOB="18020000090000000000000040000000850000002c000000850000000800000095"], &(0x7f0000000140)='GPL\x00', 0x0, 0x0, 0x0, 0x41000, 0x0, '\x00', 0x0, @xdp, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x400, @void, @value}, 0x94) bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000400)={r4, 0x27, 0xe, 0x0, &(0x7f00000002c0)="0300f977030ffa030000004256fd", 0x0, 0x0, 0xf2ffffff, 0x0, 0x0, 0x0, 0x0, 0x2}, 0x50) getsockname$packet(r3, &(0x7f0000000100)={0x11, 0x0, 0x0, 0x1, 0x0, 0x6, @broadcast}, &(0x7f0000000200)) 2.130624071s ago: executing program 0 (id=3513): r0 = syz_open_dev$vim2m(&(0x7f0000000000), 0x800, 0x2) ioctl$vim2m_VIDIOC_S_CTRL(r0, 0xc008561c, &(0x7f0000000040)={0xf0f024}) r1 = bpf$BPF_PROG_RAW_TRACEPOINT_LOAD(0x5, &(0x7f0000000200)={0x18, 0x4, &(0x7f0000000300)=ANY=[@ANYBLOB="18010000000000000000000000000000850000006d00000095"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, 0x2, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000080)={&(0x7f0000000000)='sched_switch\x00', r1}, 0x18) open(0x0, 0x40c2, 0x0) socket$inet_tcp(0x2, 0x1, 0x0) openat$ptp0(0xffffffffffffff9c, &(0x7f0000000140), 0x2001, 0x0) clock_adjtime(0xffffffd3, &(0x7f0000000340)={0x6}) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x88}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000240)=0x7) r2 = getpid() sched_setscheduler(r2, 0x2, &(0x7f0000000200)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r3, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r4, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r3, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000000)=0x6) open_by_handle_at(0xffffffffffffffff, 0x0, 0x1) r5 = syz_init_net_socket$netrom(0x6, 0x5, 0x0) connect$netrom(r5, &(0x7f0000000300)={{0x6, @default, 0x1}, [@default, @default, @null, @null, @remote={0xcc, 0xcc, 0xcc, 0xcc, 0xcc, 0xcc, 0x1}, @null, @rose={0xbb, 0xbb, 0xbb, 0x1, 0x0}, @bcast]}, 0x48) unshare(0x26020480) chdir(0x0) open(&(0x7f0000000180)='./bus\x00', 0x14957e, 0x0) poll(&(0x7f0000000600)=[{r5, 0x48}], 0x1, 0x400) ioctl$vim2m_VIDIOC_S_FMT(r0, 0xc0d05605, &(0x7f0000000200)={0x2, @vbi={0x9, 0x7, 0x80000000, 0x34524742, [0x1001, 0x7], [0x9, 0xfff], 0x108}}) 1.940417979s ago: executing program 5 (id=3514): mkdirat(0xffffffffffffff9c, &(0x7f0000000280)='./file0\x00', 0x0) r0 = openat$fuse(0xffffffffffffff9c, &(0x7f00000000c0), 0x42, 0x0) mount$fuse(0x0, &(0x7f00000020c0)='./file0\x00', &(0x7f0000002100), 0x0, &(0x7f0000002140)=ANY=[@ANYBLOB='fd=', @ANYRESHEX=r0, @ANYBLOB=',rootmode=00000000000000000040000,user_id=', @ANYRESDEC=0x0, @ANYBLOB=',group_id', @ANYRESDEC=0x0]) read$FUSE(r0, &(0x7f000000ddc0)={0x2020, 0x0, 0x0, 0x0, 0x0}, 0x2020) mkdir(&(0x7f0000000180)='./file0/../file0/file0\x00', 0x0) write$FUSE_INIT(r0, &(0x7f0000004200)={0x50, 0x0, r1, {0x7, 0x24, 0x0, 0x41046100, 0xffff, 0x0, 0xf7, 0x0, 0x0, 0x0, 0x1}}, 0x50) syz_fuse_handle_req(r0, &(0x7f00000021c0)="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", 0x2000, &(0x7f0000006d00)={0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, &(0x7f0000006780)={0x90, 0x0, 0x7, {0x0, 0x0, 0x20000000, 0x4, 0xfffffffd, 0x0, {0xffffffffffffffff, 0x4, 0x7, 0x0, 0x5, 0x3, 0x2, 0x0, 0x0, 0xc000, 0x0, r2, 0x0, 0x403}}}, 0x0, 0x0, 0x0, 0x0, 0x0}) syz_fuse_handle_req(r0, &(0x7f0000004280)="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", 0x2000, &(0x7f00000002c0)={0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, &(0x7f0000000540)={0x90, 0x0, 0xe81, {0x6, 0x3, 0x2, 0x800000000400000, 0x81, 0x0, {0x1, 0x0, 0x80000000000, 0x80000000004, 0x400000000000, 0x6, 0x0, 0xfffffffd, 0x1, 0x4000, 0x4000000, r2, r3, 0x0, 0x5}}}, 0x0, 0x0, 0x0, 0x0, 0x0}) 1.11027891s ago: executing program 0 (id=3515): socket$inet6_sctp(0xa, 0x1, 0x84) r0 = openat$dir(0xffffffffffffff9c, &(0x7f0000000100)='.\x00', 0x0, 0x0) r1 = fanotify_init(0x200, 0x0) fanotify_mark(0xffffffffffffffff, 0x20, 0x1a, r0, 0x0) fanotify_mark(r1, 0x1, 0x4800003e, r0, 0x0) prctl$PR_SET_SECCOMP(0x16, 0x2, &(0x7f0000000180)={0x1, &(0x7f0000000040)=[{0x200000000006, 0x0, 0x0, 0x7ffc0002}]}) prlimit64(0x0, 0xe, &(0x7f0000000180)={0x8, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x8) r2 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r2, 0x2, &(0x7f0000000100)=0x7) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r3, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r4, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r3, &(0x7f00000000c0), 0x10106, 0x2, 0x0) keyctl$KEYCTL_PKEY_ENCRYPT(0x19, &(0x7f0000000300), 0x0, &(0x7f0000000440), 0x0) r5 = socket$inet6_tcp(0xa, 0x1, 0x0) r6 = socket$alg(0x26, 0x5, 0x0) bind$alg(r6, &(0x7f0000000040)={0x26, 'hash\x00', 0x0, 0x0, 'sha1-avx\x00'}, 0x58) r7 = accept4(r6, 0x0, 0x0, 0x0) sendmsg$kcm(r7, &(0x7f00000001c0)={0x0, 0x0, &(0x7f0000000240)=[{0x0}, {&(0x7f0000001140)="ae250674274558348de8cfc0aa5f51f0bb0d0d0c341a385b8b38a84c0a852f1b3d03ce8ab02629f635b62774d78c6b80e88b76", 0x33}, {&(0x7f0000000640)="a449e38000"/16, 0x10}, {&(0x7f00000000c0)="b307d82055e7920a39", 0x9}, {0x0}, {&(0x7f0000000580)="8a73980e5a9650566a640429be9dbd1d0be80973b9ae90817e95582a80569d9929fc592fdee0a4faf89aa8f1ce48adbd95fd37", 0x33}, {&(0x7f00000004c0)="0b7eb3645f2517077f25fc2fe8690fc4a85187563d819459c5b1a1cbbfebe5dee64e728887e5ac0b5bea937097901820abe5daada14d7f1c2db5157340bcd555b469f2428210a6a72dcaf29c320992cddb9074f0ce33b16d45ce3a068128d5cdb0c704403add16e6dfafe5fc0384b5739e917e426aff88d833beaa67e7b0000da64b7d224a46288a5f47a7c7a9869900000000000000004d179542c9b69ca90143930a5a", 0xa4}, {&(0x7f00000003c0)}], 0x8}, 0x4000000) setsockopt$inet6_tcp_TCP_CONGESTION(r5, 0x6, 0xd, &(0x7f0000000000)='dctcp\x00', 0x6) bind$inet6(r5, &(0x7f0000d84000)={0xa, 0x2, 0x0, @loopback, 0x7}, 0x1c) setsockopt$inet6_tcp_int(r5, 0x6, 0x2000000000000022, &(0x7f0000000200)=0x1, 0x4) sendto$inet6(r5, &(0x7f0000000040)="008cda", 0x3, 0x20000045, &(0x7f00000002c0)={0xa, 0x2, 0x395, @empty}, 0x1c) setsockopt$inet6_tcp_TCP_CONGESTION(r5, 0x6, 0xd, 0x0, 0x0) shutdown(r5, 0x1) socket$nl_route(0x10, 0x3, 0x0) 1.099658003s ago: executing program 1 (id=3516): r0 = openat$binderfs(0xffffffffffffff9c, &(0x7f0000000300)='./binderfs/binder0\x00', 0x0, 0x0) r1 = openat$binderfs(0xffffffffffffff9c, &(0x7f0000000200)='./binderfs/binder0\x00', 0x0, 0x0) ioctl$BINDER_WRITE_READ(r1, 0xc0306201, &(0x7f0000000080)={0x8, 0x0, &(0x7f0000000400)=[@increfs], 0x0, 0x0, 0x0}) dup3(r1, r0, 0x0) ioctl$BINDER_WRITE_READ(r1, 0xc0306201, &(0x7f0000000540)={0x0, 0x0, 0x0, 0x1, 0x0, &(0x7f00000004c0)="f4"}) ioctl$BINDER_WRITE_READ(r0, 0xc0306201, &(0x7f0000000040)={0xc, 0x0, &(0x7f00000002c0)=[@dead_binder_done={0x40086310, 0xfc}], 0x0, 0x0, 0x0}) r2 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r3 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000480), 0xffffffffffffffff) r4 = syz_init_net_socket$nl_generic(0x10, 0x3, 0x10) r5 = syz_genetlink_get_family_id$nl802154(&(0x7f0000000080), r4) ioctl$sock_SIOCGIFINDEX_802154(r4, 0x8933, &(0x7f0000000140)={'wpan0\x00', 0x0}) sendmsg$NL802154_CMD_DEL_SEC_DEVKEY(r4, &(0x7f0000000e40)={0x0, 0x0, &(0x7f0000000240)={&(0x7f0000000500)=ANY=[@ANYBLOB='l\x00\x00\x00', @ANYRES16=r5, @ANYBLOB="010025bd7000fbdbdf251e00000008000300", @ANYRES32=r6, @ANYBLOB="50002f800c0002000203aaaaaaaaaaaa0c000380080001000200000034000380080001"], 0x6c}, 0x1, 0x0, 0x0, 0x20000041}, 0x80) sendmsg$NL802154_CMD_NEW_SEC_KEY(r2, &(0x7f0000000200)={&(0x7f0000000000)={0x10, 0x0, 0x0, 0x2000}, 0xc, &(0x7f00000001c0)={&(0x7f0000000280)=ANY=[@ANYBLOB="4c010000", @ANYRES16=r3, @ANYBLOB="00082dbd7000fedbdf25170000002401308060000180050002000000000008000400000000002400038006000300a0aa000008000200010000000800020001000000060003000000000008000100000000000c00038006000100030000000c0005000000000000000000050002000200000020000180080004000900000008000100000000000c0005000400000000000000240003000f3d37f349de8778ed04172e41d9ea15aed88b3791b9a6ed39668a53157da9b4050002000800000024000300c923fd3587f9dc618f23ad2b2cf309d2fa79b27792e0d4da271a0509072fecf124000300de4cfc9d3d1a9cb5d87cc0a0262b1e69aa66f8794bde4cb95782389576761e4f24000300127ab8afe9d44745a545c2b46b89239185d69dc9bdfa36ff67adce08dd2d7ec46c15ed1ea3a004534a050002000100000008000300d4c20d3a2a15fa1f9913f15da62cdc78f2925482", @ANYRES32=r6, @ANYBLOB="0c0006000200000002000000"], 0x14c}, 0x1, 0x0, 0x0, 0x44000}, 0x24044081) 831.86822ms ago: executing program 5 (id=3517): epoll_create1(0x0) r0 = creat(&(0x7f00000001c0)='./bus\x00', 0x4e) close(r0) r1 = mmap$KVM_VCPU(&(0x7f0000ffb000/0x2000)=nil, 0x930, 0x1000002, 0x4018831, 0xffffffffffffffff, 0x0) r2 = userfaultfd(0x80801) ioctl$UFFDIO_REGISTER(r2, 0xc020aa00, &(0x7f0000000040)={{&(0x7f0000ffa000/0x3000)=nil, 0x3000}, 0x1}) syz_memcpy_off$KVM_EXIT_HYPERCALL(r1, 0x20, &(0x7f0000000000)="1eb3bf65654102f4af4d221c8bd458d1e7cbdaf3657d0f34e790c85bdba7931791f6d15c3e681411f7a496c0dace6a3c242f5b016f64b4ef8a9cedaf6bec340dee49474360b24cb8", 0x0, 0x48) unshare(0x22020600) write$uinput_user_dev(0xffffffffffffffff, &(0x7f0000000400)={'syz0\x00', {0x3, 0x2, 0x6, 0xfffa}, 0x3a, [0x8000, 0xc95a, 0xf, 0x8, 0x80, 0x82, 0x3, 0x80000000, 0x20000006, 0x4d, 0x6, 0x20005d, 0x9, 0x5, 0xffff2d37, 0xffffff01, 0x6, 0x3, 0x0, 0x5, 0x4, 0x0, 0x7, 0x8001, 0x1, 0x24, 0xd, 0x7, 0x0, 0xfffffffb, 0xe661, 0x4, 0x7, 0x1, 0x8, 0x4c74, 0x80000000, 0x242, 0x3, 0xe, 0x10, 0x80008071, 0x7, 0x11400, 0x1, 0x7, 0x8, 0xfffffffa, 0x8c, 0x6, 0xffff, 0x0, 0x5, 0x4, 0x8008, 0x400, 0x80, 0x0, 0x5, 0x6, 0x8, 0x4, 0x1, 0x40], [0x10000007, 0x9, 0x8000012f, 0x2008004, 0x3, 0xfffffff3, 0x129432e6, 0xc8, 0xf9, 0xe, 0xffbffffb, 0x6c7, 0x9, 0xfffffffc, 0x3, 0x0, 0x0, 0x5, 0x2f, 0xe, 0x312, 0x78, 0xea4, 0x0, 0x4, 0x9, 0x7fff, 0x6, 0x5, 0x401, 0x6, 0x1, 0xff, 0x5, 0x7, 0x5f2e, 0xd, 0x4e2, 0x2, 0x4, 0xb, 0x4, 0x9, 0x8, 0x9, 0x6, 0x47, 0x8000, 0x1, 0xfe000000, 0xffff, 0x2, 0x4, 0x40000009, 0x3, 0x3, 0x9, 0x1, 0x3, 0x8, 0x81, 0x48c93690, 0x42, 0x3], [0x7, 0x408, 0x7, 0x5, 0xfffffffe, 0x100, 0x8d2, 0x9, 0xc, 0x7fff, 0x0, 0x5, 0xb, 0x4, 0x5, 0x5, 0x0, 0x1f0, 0x5, 0x8, 0x86, 0x3, 0x303c, 0x3e7, 0xb, 0x5, 0x2, 0x8, 0x3, 0x20000008, 0x4, 0x6d01, 0x6, 0x38, 0x800003, 0x240, 0x80, 0x4, 0x4, 0x2950bfaf, 0x1000, 0xa6, 0x7, 0xa9, 0x5, 0x6, 0xac8, 0x3, 0x2, 0x3, 0x7ff, 0x12b, 0x4, 0x1, 0xa, 0x0, 0x5, 0x1c, 0x3, 0x3, 0x10002006, 0x80a2ed, 0x4, 0x3c484551], [0x9, 0x6, 0x7, 0xb, 0x5, 0x93a, 0x5, 0x6, 0x0, 0xb9, 0xce6, 0x1ff, 0x2, 0x57, 0x5, 0x80000001, 0x101, 0x10000, 0x2000004, 0x7fff, 0xffff, 0xa620, 0x2, 0x5, 0x1, 0x2, 0x14c, 0x60a7, 0x6, 0x16, 0xffffffff, 0x80000000, 0x5, 0x4, 0xc8, 0xfffffff9, 0xfffff000, 0x10000, 0x0, 0x7e, 0x100, 0x9602, 0x100007, 0xaf, 0x5, 0x6, 0x226, 0x5, 0x5, 0x8, 0x30b1d693, 0xa1f, 0xf40, 0x20007, 0x1, 0x6c1b, 0x0, 0x4, 0x5, 0xb1e, 0xd7, 0x6, 0xffff3441, 0xfff]}, 0x45c) ppoll(&(0x7f00000000c0)=[{}, {}], 0x20000000000000dc, 0x0, 0x0, 0x0) 45.170377ms ago: executing program 3 (id=3518): ioctl$SNDRV_TIMER_IOCTL_SELECT(0xffffffffffffffff, 0x40345410, &(0x7f0000000400)={{0x1, 0x3, 0x2}}) prlimit64(0x0, 0xe, &(0x7f0000000140)={0x7, 0x8b}, 0x0) sched_setscheduler(0x0, 0x2, &(0x7f0000000080)=0x6) r0 = getpid() fcntl$setstatus(0xffffffffffffffff, 0x4, 0x0) sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x4) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@abs, 0x6e) sendmmsg$unix(r2, &(0x7f00000bd000), 0x318, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) syz_80211_join_ibss(0x0, &(0x7f0000000080)=@default_ibss_ssid, 0x6, 0x0) bpf$BPF_LINK_CREATE(0x1c, 0x0, 0x0) r3 = bpf$PROG_LOAD(0x5, &(0x7f00000054c0)={0x16, 0x16, &(0x7f0000000240)=ANY=[@ANYBLOB="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"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @flow_dissector, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) bpf$BPF_LINK_CREATE(0xa, &(0x7f0000000340)={r3, 0xffffffffffffffff, 0x24, 0x7, @val=@netkit={@void, @value}}, 0x1c) r4 = socket$inet6_icmp_raw(0xa, 0x3, 0x3a) setsockopt$SO_BINDTODEVICE(r4, 0x1, 0x19, &(0x7f00000001c0)='syz_tun\x00', 0x10) r5 = socket$nl_netfilter(0x10, 0x3, 0xc) sendmsg$IPSET_CMD_CREATE(r5, &(0x7f0000000100)={0x0, 0x0, &(0x7f0000000600)={&(0x7f0000000000)={0x4c, 0x2, 0x6, 0x201, 0x0, 0x0, {}, [@IPSET_ATTR_PROTOCOL={0x5}, @IPSET_ATTR_DATA={0x14, 0x7, 0x0, 0x1, [@IPSET_ATTR_BUCKETSIZE={0x5, 0x15, 0x1}, @IPSET_ATTR_HASHSIZE={0x8}]}, @IPSET_ATTR_REVISION={0x5}, @IPSET_ATTR_TYPENAME={0x12, 0x3, 'hash:net,port\x00'}]}, 0x4c}, 0x1, 0x0, 0x0, 0xc040}, 0x0) syz_emit_ethernet(0x6e, &(0x7f0000000300)={@broadcast, @empty, @void, {@ipv6={0x86dd, @icmpv6={0x0, 0x6, "028df7", 0x38, 0x3a, 0x0, @initdev={0xfe, 0x88, '\x00', 0x0, 0x0}, @mcast2, {[], @time_exceed={0x2, 0x0, 0x0, 0x0, '\x00', {0x0, 0x6, '\x00', 0x0, 0x3a, 0x0, @private1={0xfc, 0x1, '\x00', 0x1}, @loopback={0x0, 0xffffac1414aa}, [], "1e520b4c955ee12e"}}}}}}}, 0x0) syz_80211_inject_frame(&(0x7f00000000c0), 0x0, 0x36) sched_setaffinity(0x0, 0xfffffffffffffc33, &(0x7f0000000280)=0x2) 44.388848ms ago: executing program 0 (id=3519): r0 = openat$ttynull(0xffffffffffffff9c, &(0x7f0000000000), 0x103902, 0x0) ioctl$TCXONC(r0, 0x540a, 0x0) ioctl$TCSETSW(r0, 0x5403, &(0x7f0000000bc0)={0x2, 0x1ff, 0x3, 0x8, 0x6, "ff08085d22742cecf8275189a730ac3d10f849"}) fsetxattr$security_ima(0xffffffffffffffff, &(0x7f0000000000), 0x0, 0xffffff3e, 0x2) r1 = creat(&(0x7f0000000280)='./file0\x00', 0xecf86c37d53049cc) pipe2$9p(&(0x7f00000001c0)={0xffffffffffffffff, 0xffffffffffffffff}, 0x0) write$P9_RVERSION(r3, &(0x7f0000000300)=ANY=[@ANYBLOB="1500000065ffff017f000e0800395032303030"], 0x15) write$FUSE_BMAP(0xffffffffffffffff, &(0x7f0000000000)={0x18, 0x0, 0x0, {0x3b9}}, 0x18) write$FUSE_DIRENTPLUS(0xffffffffffffffff, &(0x7f00000003c0)=ANY=[@ANYBLOB="b0"], 0xb0) write$FUSE_GETXATTR(0xffffffffffffffff, &(0x7f00000000c0)={0x18}, 0x18) getsockopt$inet_IP_IPSEC_POLICY(r1, 0x0, 0x10, &(0x7f0000000440)={{{@in6=@private2, @in=@empty, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}}, {{@in=@multicast1}, 0x0, @in6=@remote}}, &(0x7f0000000040)=0xe8) mount$9p_fd(0x0, &(0x7f0000000400)='./file0\x00', &(0x7f0000000080), 0x1010410, &(0x7f0000000100)={'trans=fd,', {'rfdno', 0x3d, r1}, 0x2c, {'wfdno', 0x3d, r2}, 0x2c, {[{@noextend}, {@directio}, {@noxattr}, {@access_uid={'access', 0x3d, r4}}, {@mmap}, {@noextend}]}}) r5 = openat$cgroup_ro(0xffffffffffffff9c, &(0x7f0000000340)='blkio.bfq.time_recursive\x00', 0x275a, 0x0) write$binfmt_script(r5, &(0x7f0000000100), 0x208e24b) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0x2, 0x28011, r5, 0x0) preadv(r5, &(0x7f00000015c0)=[{&(0x7f0000000080)=""/124, 0xffffff23}], 0x3e, 0x0, 0x0) r6 = userfaultfd(0x80001) ioctl$UFFDIO_API(r6, 0xc018aa3f, &(0x7f00000000c0)) ioctl$UFFDIO_REGISTER(r6, 0xc020aa00, &(0x7f0000000140)={{&(0x7f00000e2000/0xc00000)=nil, 0xc00000}, 0x1}) ioctl$UFFDIO_REGISTER(r6, 0xc020aa04, &(0x7f0000000000)={{&(0x7f00000e2000/0xc00000)=nil, 0xc00000}, 0x0, 0x2}) syz_clone(0x640c7000, 0x0, 0x0, 0x0, 0x0, 0x0) r7 = openat$fuse(0xffffffffffffff9c, &(0x7f0000000040), 0x42, 0x0) mount$fuse(0x0, &(0x7f0000000100)='./file0\x00', &(0x7f0000002100), 0x280449c, &(0x7f0000002140)={{'fd', 0x3d, r7}, 0x2c, {'rootmode', 0x3d, 0x4000}}) read$FUSE(r7, &(0x7f00000093c0)={0x2020, 0x0, 0x0}, 0x2020) write$FUSE_INIT(r7, &(0x7f0000004200)={0x50, 0x0, r8, {0x7, 0x1f, 0x0, 0x2066012}}, 0x50) write$FUSE_IOCTL(r5, &(0x7f0000000180)={0x20, 0x0, r8, {0x2, 0x111ce6b44c31ba06, 0x2c1, 0xff}}, 0x20) r9 = openat(0xffffffffffffff9c, &(0x7f000000c380)='./file0\x00', 0x20842, 0x22) close_range(r9, r0, 0x2) writev(r9, 0x0, 0x0) chmod(&(0x7f0000000080)='./file0\x00', 0x1) 0s ago: executing program 5 (id=3520): prlimit64(0x0, 0xe, &(0x7f0000000140)={0x8, 0x8e}, 0x0) sched_setscheduler(0x0, 0x1, &(0x7f0000000080)=0x7) r0 = getpid() sched_setaffinity(0x0, 0x8, &(0x7f00000002c0)=0x2) sched_setscheduler(r0, 0x2, &(0x7f0000000200)=0x6) bpf$BPF_BTF_LOAD(0x12, &(0x7f0000002340)={&(0x7f0000003700)=ANY=[@ANYBLOB="9feb010018000000000000001c0000001c0000000400000002000000020000060400000002000000f02400000e00000102f9000000005f"], 0x0, 0x38, 0x0, 0x9, 0x3, 0x0, @void, @value}, 0x28) mmap(&(0x7f0000000000/0xb36000)=nil, 0xb36000, 0xb635773f06ebbeee, 0x8031, 0xffffffffffffffff, 0x0) socketpair$unix(0x1, 0x2, 0x0, &(0x7f0000000200)={0xffffffffffffffff, 0xffffffffffffffff}) connect$unix(r1, &(0x7f000057eff8)=@file={0x0, './file0/file0\x00'}, 0x6e) sendmmsg$unix(r2, &(0x7f0000000000), 0x651, 0x0) recvmmsg(r1, &(0x7f00000000c0), 0x10106, 0x2, 0x0) sendmsg$IPSET_CMD_CREATE(0xffffffffffffffff, &(0x7f0000000040)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000600)={0x40, 0x2, 0x6, 0x801, 0x0, 0x0, {}, [@IPSET_ATTR_REVISION={0x5}, @IPSET_ATTR_DATA={0xc, 0x7, 0x0, 0x1, [@IPSET_ATTR_BUCKETSIZE={0x5, 0x15, 0x7f}]}, @IPSET_ATTR_FAMILY={0x5, 0x5, 0xa}, @IPSET_ATTR_PROTOCOL={0x5, 0x1, 0x6}, @IPSET_ATTR_FAMILY={0x5, 0x5, 0x1}]}, 0x40}}, 0x0) lstat(0x0, 0x0) getgroups(0x1, &(0x7f0000000d80)=[0xee00]) getsockopt$inet6_IPV6_IPSEC_POLICY(0xffffffffffffffff, 0x29, 0x22, &(0x7f0000000dc0)={{{@in=@local, @in6=@mcast2, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}}, {{@in6=@private1}, 0x0, @in=@private}}, &(0x7f0000000ec0)=0xe8) r5 = getgid() r6 = bpf$PROG_LOAD(0x5, &(0x7f00000054c0)={0x3, 0x16, &(0x7f0000000980)=ANY=[@ANYBLOB="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"], &(0x7f0000000100)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @sched_cls, 0xffffffffffffffff, 0x8, 0x0, 0x0, 0x10, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x10, 0x0, @void, @value}, 0x48) lstat(&(0x7f0000000000)='./file0\x00', &(0x7f0000000040)={0x0, 0x0, 0x0, 0x0, 0x0}) r8 = openat$fuse(0xffffffffffffff9c, &(0x7f00000001c0), 0x42, 0x0) read$FUSE(r8, &(0x7f0000008340)={0x2020, 0x0, 0x0, 0x0, 0x0}, 0x2020) fchown(r6, r7, r9) getsockopt$inet6_IPV6_XFRM_POLICY(0xffffffffffffffff, 0x29, 0x23, &(0x7f0000001400)={{{@in=@dev, @in=@local, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0}}, {{@in6=@dev}, 0x0, @in6=@private2}}, &(0x7f0000001500)=0xe8) syz_fuse_handle_req(0xffffffffffffffff, &(0x7f0000003740)="20cfc9adbfe4f594fa2459bfcf591a6771f5bc45f0345aabe73d0771b1fb7fadea59b5125e4d776c80d5003448b269fdccd4684213e2eb42bc138bd1ed5915efd850c50e9a866821328b31f07a29bba8aa04cdb494baede1752b78084ae2830df8e2834d3edf70ad529833b3fd1eac8da3ed209c9b2d736c0f3a555ff94204440151fe8fbf721d0a5cb6ddcf5fad3a5caa11e4b83262a5b7024a2a1c3592a82e6096b0d1c5fd1348a1191e1dd212a8e40deb840fcc6b8c49aeeee98019fa7c2c167a73d6e527efe79b0d8a2e7060382667de53ec5217b87597f17575ca8c8b01434a74cc7fd339ba7526fd7806841052c3ba8baedfbe41185169359552acc4553c46ac89233195fbaba6572cac6484336085698fcd8cc21ff323f8bb1a2e2881814a66ed128b9ffe573266e29da5854e9988b622b93f92b736688f526e9caa4f8e53f1bf1d5c8a6369197603082894085e2e0a8015353c90ac885fe700d354f043435a1ba3f5b0c4cc608f247c47895195593fee4ddd195d9b76d6aad60574e30674511d932e06488796baf983a78c723320d0afc56c5ffdaa73c764d4018a09f63e28e2af0b7cfd6db1e147d3309653d500009741bb1270b690f6ca97e9e8eb733977ea3ab78d8f44aa14af87c62f2895bed2d8b5ccade5c0e7c9fe4c8506aafc41a06042016e06215f4f50982f97fe26c7259f1393ae2be9e574e0559240df7d5b909ec010fbf71bf6d00808e5a777c10bd0cdfc8c73b17780062cb12263af032153a88c771b2dd80088869fa17954e35a7d14ecb2d6d6db9681a2a195036e6730650e68ea3717f58f9cfb3b57a639f39eae6ebca439b7804abe879e2575b5d827dbca640ac937b506482e401a3bc5e5ff894a50fea19802d4d2411ffbf473ab4a6b9e3bc54999329baa1e5c3f0340b76fb764ff7f70c35b1267a752999665c3f82e6a362e8d9289db63418e8fa9340dc3f3bc9c9dedf229e6b92c29573e8e36584d3e77b1696409ea44f4e844768bd894d61217ae239dc9990a0df18b0a3179934e914bd3d6099c9eb728ac86e2b0bbe1f9d3c3e7b871514c7b85e3415df794d698eb9d27db4f44070347f3fe774eca016b5c094c5aaae60476ea038412bdf135e1b6f5eb730fbe01af778ce949cb8e570ea6bf44edb31f4d7553132aa3bc9f5727fde8266c4cfcd80f8826b1e8c728f2df45cdaa0389812a24efa800ace37f9f27d2a051a0e55dd8766aeb2259d53b41b7a9562629bd5aadc1625d699cbc104ced9cd5f0fcf9ca68b670e7a54a8efc616d25ddce7d8002c2ed19bb068f9293a92ed4c189e3daddd11670cfe7a2f594cd7843a073bf3a1be8c26315e27fec7868df96b24c62b953b80b3573b3a8d3e875479b1c900f04dadf941afa5d277dff2ab16a411ef6ab3383938eb57efd3e514a4313fdabd1817c63028b293690d8efe3c3a9de40e5252333934fb6799533f8956ed9a6af9892e03bd29b30dbe9ea8841eca61397db9e55fab3feb033ada77cc30e9783a2d133f68800fbfc9294460c2fb850a72e4a0e126e9e0e83aa29c983c5f73b909651553271b9651a67916523b8909f56c9a11e7f51332cd44f786eee506c245e130318656405288d4fd25df78ee94321715401bee3346004d6be80178d60da4eacc6d7904c0b5705ea13b1bf6270d51014e6720f9ebe2970614082304217ea79fb4164249b59b496459d7a1c7097dc4e6aaa74416317037e50a865ec02b22f9454e5648e26fa2b316826531e54148261662a42a085fef15afd9edfecb68fb1eab2e152be9b2be6274be3c03680b579428b3d5a5cdfa5911bd36b9e9ce3a05f46cc330e0cdd5fbda7f408cb8c46d4e58b1014a17c242fbae0a766c27f5e5403543734a5385f08a48abb64263bca55596a5aab6dd1adb0ac82de43502706027b38609f9c5a8ef3824fe1a2bea01cb095626ce6965d36b9ad6491b55c678e149aebb0738822f63c36b1e60d6aa3d006610fd223c11a15db9111d61a61b40535a9880e24734f3337488ba7935ed83e8a4900bbf8c2b0a0d43209eeb23ca49ea73d7f149d679c348e662a1d44bf215815b83c1ae19f3c9b0645d7ef1bd8bcd319ee037728052202c5756d1b0db8b1d99e881f904db0cc4496e2d07cf722b58b79f150dee62c048d9eb9f7e98f31881b8b513acd8cbe24d40cfbcdc940778eaec456ec01c658421f42ba749bc0e4067b7a52aca88686c71713d2704fc8f140d3e2f0769a15ee81113f2918072566ec31c996214be26828cbedbd2288fab6717ede53043bdb28d0d439dae312b63333ebafe1bc1e85c2cfeedda9fce4149b530ff55744fafec7d130d1e9894d7c3e9e53342831c74fc982d6f5ed695e8e892eb1678a04e106194a1a11d724a61d27906c56ddd7d21c36e2ee42baf2b4711623cf7a1ae052112a346905ef999b53d5f4343dfd0721331db9d06162b6a28b320f8d7c73cb3f32460342c39394a94c1266a5173a5f5779e6e85763c94c2b9b244512b4ec35e568ddfcd89c9ccde42eb68425608a063650f6cbc2b60f1b386bc074a006044c7c32b05a7d88a2406a435de7268b12c1977607bc5a22c10a1c01ace6b8aa0fa6910c14acc142453b97a3e64555564357a1dcb5747f029926b6e7111c7be2b348039da10454b214090649303726f821df42953707756655ad4eb05316d44af6adef2c91a02eac849e05afa0e128f58167589c7bec01eab291f010fc9df2578960656c87288b7a7fa9ce85c954830bd2e4af4ed8c7fac793b668f6442d92e88f3d766e77c5d571919b95721132d364dc86c6e96f61ed1769804ff7bb6309cf29ae7ba95513f5061349c30c2f0316ef8c46ee014d5cded3d56aaf0a01189c4e9f4984cbc91a209fef70df897363d05bb4a82da8187dd10aa58a7f20d2552c63e09ea49eed2b5929e12d60f78d188958431f2d1b6f4c60c35f915b42ff3101158e8ae99c980a81d090dc18d5b2868541caa0f442d95843a412c132ba5971be46a7213dcde1421339fa83b6e8702da7cd1d81d4c1c175104f7fdd4a7ed8dffb7ce522a59bd8574a30daf06d33b7ce9127f79e3376f3a9b3011dd467f6f074c4186b1c7c471d8c2b2a03b9b656fc2d668978d443cd955315499d08a385f64833d6100ebfd71fac00d5aaa66d9b2a2fdd73a4adc3393e66a27f6d76b030c621282ba9d7858eba9f32d7a0b7fd8d950e983201f1fd442c2c08e37071d84d3ae06aa1f36d4c084c676db6f87c88d69b6d6f7a267266bbadb85cda91a3e2f6ad43ddeb3b06b958dd8283c0a440de541507932a6a02d1c157be8cbcdf83b893071b95fd248352741eb110f45709de6ea9a5483c74e603cf85ef6e4b1cbb773c1bc53a7176af08d13eb1f5df71f7efe93f7ed2494dde723499a3f9235532ef765c1133ac1999b3851c3ffeb290ea20a765ff6a0e3e7c98ac5733790b3bf7f11a197079a0ce89ab4823b5ebf83cb5784d3b45ca07700df831bc9d8ec550b9a1c87278101ad17c72e4d1e9052a52a451d4bd1d4054b553a4f7df95135582f957c0b2fe7ad32194da55d96c13271e72265111ee16aa930273007abb89e46890c7f92a88652293665d856cb8a7888c3ff7a1a2beec3d85a3bc24cf462e006c6072cd042d56feb79ce1de808229ee762616f42981a8ba7202ef28b9ca99ed41f43899b81fd6bcd8e5ac27d54cc49f06a28fe8961e0a214313849fd0fd85e65f0713e08646f4e885f9b1cdeaa58e5dbcfc45eb9feb20ef1aa458204f10bc9a69f017c13e6be2b3e8f17c605ff2ccda50b5297c8fe66a76cb47b523d27c025d44ec2d20d96714f998271931b7d9030ae753cca4a09fb14340c2cb84a16659feb96e6fd1bffa8c7228addada74cfd7884807a111f51a452d9ba53e335ae13985089c2229b3b89a26775bee7c4e2ac5ed46f02c0e8e43257172550bcefe8d6d30fc856816c6d60782c6104a908da6e68d9e1ee6c4269111def6d734f3d98201449030c5eee9d594fc4b457bdbd1d01cd9a7d9fc9cfde2a1faac7bd61f44220297642757dc1552ac5291f790aac7eca13aa43e81cda75152d7aed529d953dd303511def0cac801bffe8f8f1cd1063eb47d62e7deaf4df5c01a5aecb45e85468020009ef3f22e7dd65cf5d3fc35a2d2d161db48452dc8d1964cb6bab2d31eecafac5d0948319724e38ef91dbbd3d4e2715a67235ad7c522a388df9cf79e2025251fc55f8fe769db1127f3489409369645cbf5a958af509243d9509be2747d6df32cba377efe2229c65fc64f2b5a725894ca70294488291ec7d8a20f0846b0c83500e4380a467e08e3f3fa1d9d2f84e985a9e575d3a45c91dd778fbf42072e1b6b37463fe6593d37abe25a69bc06dcdfac54e9e204820b292a4a4fef3d5b70e4259ed3fe9aae9a77b5c38f86d0b08b574a21098a7969cb2bfc3f5404f80b6651d109ca6c38ac560d73e53e0c5b9691fb66bd75087f9288b53e45a24bb4eb18353f20ded4b4e3dca3f478b73cca34e1af34f74717921d74d637485ee5fbb6003cc0125513e1fe4c9f8e6e3262e18720e38cb54fedf1df50a24627a27ebd8cd159c8d0617b03e01eb90a29829069e144af82e11c0b4a2fd28aca2bcc4b69e31af330afbb0c6b961a33452bcaccfb42664a4843e2e4b30ee58c9f92a67b72fdd775b6d8b69e491def3d175fffbc41bf1fb3d31d53b0dcabe5304b23b5c5a13e95dde73f185546939ee90306256a99b6d705a4b43ee851dc7483644788999c16e81665b4f10b0cb83ba550a1a63e6c8c8536d26c8f000d29f2c0e927189b55ce3df98846a672a13f3fd2adc34f9f9585b14cde7028b1305f3d67eb6abd72ff3418923ff6ed3af669681db2898b1d2785bc340fe6fada70b1c57e9ea0f38d5b0e57e346991f9ef4a86f2028c940ef90c3a3a1766451d7e1894f9e773c445c3c356550189d933fb8bae010a0d5b7be4fc4ca85d62ab83f2a51d6ded3651536eeef28c5cf83800ffe78ada9e6c0fec8810bb6eb540cf7013a3467b180fce57d9f1a2e16f6a64d2b164b32c81b99b0624f46e048cf1dfb10760e3f93c6f7fbf75b61e545d3997de3984687f7573e6c4acfd8d4dba9dce870049725e2c253a108de1724ca325eebbde774053be22b96b4f30f6f7ce0d5dd359335d7027df2b1ae841c55bb36b6a499468b31d5b4e444b5cad9b8c3a26dbb7a16fed01c4a3d8291a6c3a11c8325b00f0b6d96e94a46d37979dc13c5e728d8f2bc029392680179c978986ae2d2e2e494890b297b412e27c43ee766a1044f249807bfd36c607dcd38faf61474ab41d089843796c384b5489ff2cd30cb0d8da613d1406f1e5543206baa67f909a6b5fe6d2307f4ca578ba1df6acf9e5dbd179b132c724fe5f245a5fa7f814876feaa20d9ff86d3f51fb25ec704bffdbacb45943f0a66ed79f0be186dee21a0a8193099fef194c84abc488765d8a0106727f0a4c7136bd15122238ad52eeacc058b65e953071fca6b0d8d1f9d4a44616c0e15439fcbcc01a5cd89a709b2ca842555967427538272ef617daff26ea4d028d98a6780452cbb7cf969aae6f360b7a002bbc3020db4e7d32270a71c487dc945d1c20d01ec7ff0fa30d3df708f61f3787ad834e4abf7a7e3330e40e656fdce3c4e61e2f1be7bcc13a25ac97d927ce0eee8abc2c5d74792812fb01d62beab43f3e5d3f301e8c29f822e412848d30b6070c1fbc89d7c395e21a8e16047f1669b09efa1906f1fe885936b4b19fceec2b3e4f6dcb58fbb9c9377ae333536bd2323bedb4f8101624f254a32630e9afd690f16585f854cfaeb768e4ea77c6731b9a777d2d170c34fc7729cafd27e76540065e0eba700a340c014b81220ec0ce1e4d52011836624876ed04a67f30abfb7795a58125b4159eafe951c3f7eebf74f9212534350a7ea36931538e65d740a5453e9a4c1566d00c7cc2313bb66b479bfc73b607dea2cc79a3396aa26c47885336c48fca3bc7ff576f2bad325c787d280feded34e580dc71982fa25d6e5bdc403abb905f3f2fb297def5180f7e70f94564b3f835ca426d8c4a863ddbeb242c4265fc8c71895e3fe6e7eabe9c802bba125e7d047999aed849f10ccc62321abd9e05b486eebd436197b4963c7c2930f57e45464b8341a75bd4f8f08f3f57b6b2f2dd297ce00abd90539f912aa007b0301682e341da3fe73568d6a09ccd16e1327cf2bc24d2cd13f93ca4492ca2750b1e946f35e23f786bb2c158fa507fdb71a6c8d2a5bd3ca325d65aa5b64effdc6bb0f7eb433269ea69b4cbfd87785da57ecda18ef3a2c84dc4f987effded2806dc34caa65bb1094661d806b981e4637463ce2638bccc7c5663e33e6659ea4384661c2ca95d95612e75c4bc17797885ccdd0399d0524336ac27f614a8c725ca285d72c68d3d4928f5a724056396c4beaa1ce02f40deb413f1fa7348dac7b864d65ce8a42f0a4998a2697cf7d5f79dbbca8724b03185f4a1fce7f997c47f3ffd5630801d7ae9896d0cec6f495485c06218c10a2d4c4424c64f6e04c04e11038a412de2adb70c57ca2f3adc2c7d87b40ec28c3d60cc89ff6186b9cf090eb8bb2ae32b6048e6b34b2eebc415e7b50d8fe15414d9fabf9d85400ad1576c9a907533a32eed78fb1e937234c34bfb4d0a696530c61b9788eca8c8523f395373666c52d57bf1e93bf660dfef4a09f60f19b8da4ffe4184d1045a6b894095e418050306624521dc739acde4a2b8ac5a2b6b006984205183b25eeecb2534047495694d70647c41fccb059688412acb5f560c458b9168f2b80527896e8fd5a3a0d7a4c28b19e1b8eca306e682c6be641672456a24ac5eb01f78aed4856091b0dc137329fa2447bf349e1ecada22d95991c766cc9e492280bad90b48b88cbf744e3e6c853ed312067ed13479ef18acfa4f568becfeae6d7058aa438dd1286f11b4173c24443a7cae8bddd10399006f03b005cb2afd4590b9760d6da208624d6bda7df189a91249831f40fb20d6f756b6406d29dfdcfa6621baa277fe9e3fd516db9c77aa611560ec9e7adab6e8af97a80ff40023834407e8f4a550d93df3d886ae4f3bbc3de56e82a0bab333d2d73c11feee6874ee88191df47230d7610a791352106a6adcc545184cd6f4b8c924d9f001fc0dc6e2ff322dc0f07dcdd44d3ab2ab4d33245c67d633a903b620cfc067ec6d32bc0846eed807f1997f733cf6a9fcda606c88ee8ab87b597d0e1ff2fb354dc8459c08f6c737e18f86e155770228ee0258ed20e4ebcbf91de812243e5fb0c4d7d5031b2f5bc331574d85486be98bf5c5070ee0c35b87019f52e3dc204a9556f7bba4f7fecb5f2cd011d272f07109f6c82f35c8713dc5ae245f86daaee4d186b0504e53a27a2c66cf5375c16034fc27046170a4110add03d8b6fa422dc90bf1946340867ced52d1a9287a3c4da26e90b6c8bf3b16aeb450cfa7f07fb4f219c04bbbcf1d0042bf69423e40033eb43ea8ac9f53ac281d6592091305a31c344674606c79df9ba2d0dca1297fbd1af86e3d636868609c6ee11b59c7614dad2e4730b1b5060d744aa95b04ad6e21ba10664bf46245b27a9c00b47b9c675425f5a304183560c61d1eec4c3db85bc935370fa9e331831c6d730924ac851d699691cd88340eae68c24dee83fe357180b41403619c8ca78e351114afe45e24081f2a4da2681a71338d121ba68a4e37794cc1fb617a7ae59f2c368a93cafedcbca5d9da9bbe3eebd411a3ce70773f984f676e691fc51cd57d36b4809b4803dd54da1d3f4b7d805e6f527e7b35ae1c44db6a8ceac008c08794b0e98beeaf7a2c034caca62e9681e3bc70a7582a6e3d49f8e2025de44e3d45783f49d5ceaa3d5f16fa957a7f05d66f30968e4f10348101a3d2e14b2200e806dae50c8f6f578be0686cb2a07e31739bebb4a457e5c0aa909f4185a4f57ffd6143e2e2dd4a15c7e140f8e632653a6ce7243a83aa0536ac63d86eaf18f51482a04d8b52372913327114fe1f2701a5f108760baf90da251a52e1b6d14478d56732fad098718797a46631511c0060945884ee7d0d19164953d1610eb9171802d4936fce459d6513885e2a74721fc3b71673dc6654280a1abc4443bedec7dce49b6fc0bfdd9cdc689963d6af283340e4d83804d8f9f5d7e8cd5c494e660304528c7111cad9801a8891f865160fe3e27badb8866010166bf081fd2c7456937e4dcc4a64ea36558c89f517f8edc3991e348c80f7e25bb0a5221ffecf5bf6bc8ee0767a703b739227d72ec33f7cded2ef85516e83c837de3897c1c82e0adb435736e0aea28a6905178db12a55915b45e0b13f0a7196a24c1f8855db2005278eeef48e190f41a015a3183c5f800cb52379518e523bf06c3ee85292ff9c1d5c5c9a7a0e5194d4fcbaea918667f0100e02063deb74b74579f38634f5d61051c76804d2da0aff7a7db194a2a0a80766a1bd3f5d739ab08eaa91cb2d7f518361741bf3054a22e14f6f88c49f2815dae58c56fbdb9304221eae518b11da2a17faa299cfcd9c666d15eda9ea360cd56b738c087b1ec3b00e23d6800a58b01b353711716e5d514ce4bceaa3d15add4ea2f64ee251ad39905c08a8b6dcbc22348f5746d36e3b09f9b7bc72e6f8a90f74d8dc8b322a0f3ee5dceeb6a940441bfa3dcc679edbb01cf61f6d54168db2b3d514cab0f9d9d92aad2f59e2836354d7aa1c67ff3f841e06b739bb6c70f64ce76cc5b57fa694b563cebf9d90b05a3429e0226147e73451686947387fdb8664330b5c4ecdca8e1e05fa06492cd27b953225a985b50371f3af2f679a12c4095e1646df06842c9271ba0e45832472e841167916b67fa6d1c1fdc12602c5d3b4fd9e844fa28875c1f40db03e80e039addee219ccac3a053c631e8dd4ca9035f93f781b7b33fb132e28527ad37a3ef3f33e177dd4148aa41b4fb2337e53c14ba382a6ea8fb746e52884d12db338e4f4be8daf20fd81be1bd6fd0d0a503995851f661ff8d3a78a87c836630ed2b1a24acfc60548b33eef8f94a68050a0a67ec131e24c81103db04a1a897893563f83b0170fafe0596b6e2f47a6238f9765af6f1d586cc097dff10d6400aefea9856c11a3164bb6c8bc61fe970b3fd3fa233fb88788f7595d0134377c95cfec218f16b863582c6106378215017eccb8847f4e44603cbf87c704cba5b4b10e10b609e6225c6f29364bf6956321208ac95fe5a8d78b24a09685dbe9f908601439b18231ae2657fd2aa1abff22ffd045a2952b4bcadb3446e229dabe404317e7c5c34ebe266aff05986d32ac0ff6082351f5413bd3a6a3e62ed485d1ca019eda62b228e58c6912d43a4bf3c349ea62b7b27d12b1a993e6a37a0689d8b9f769f13f28fe9b2096e98037f386315a5554acd024c06b9c80dc9b60bc4f475aae58668e8477367919f1fd71b821af2ea76bd65d5040d3551ae44e52e6984dcfdc81467f88401c7c1b3f9cec27deb35f387e0a56ab1c7c64caa29b249343fe9c0dc5e10cc2b0dc8ffca3833525b4a01fe7898bef5975a5946b273d313bb7315bfe2c1bec126702a1a947d6cbefb6345fb3bb6837dc227adc7f33dbfefbbbad2a1884ff3a66e0a5f30bb504d2f7cdb32e5a70c96b72316dc812595349697f768d3105ca5bebc20dc7600d69f067eede2043f2474f5fe612c7848135d4aef16f4e71b00678d519c41414bd2cfce5542cb38bff50007577fc9a89f7a723dcd479953df822e6436d5c6f8886007026409f152d15f7c609c92484501f050b6bfea96f72a7df705a53b45ecaa85a7f8546f3529a509bd4e245b2da0bb0ec7d290f06d7a378998986353591e2ba054bd4a4b424bce99ba6b92dc52be23b386093b2667b95ab8ced184d674c2acffb5e6372d383428e2681b331721e6239349362e60eba99502ce21edd35bc941b07869c99e6790211aba341b1c6100a16087eabe0c3a86052aa01cd48442de2baea94bb6dba34355858f96d96a93d7c030e61d43c052fb41a6cfaea88e9c1203eca6970fb9477fc0dbe4ecb3a166df41f8520f5338482d142030d5936086f26bdc771db3454807efc79665e8df15f48b543a2d8df4d2513a0391192a72612f2772258cfcc076965839ac8018f382793cf682a4ad480d22d04dbcb14b7ef9f7365b7623e17fe9f67a609d4c186276af2a0c72ef56710f4e174c34dfdc7d22becefeb2870fc48f14a5b3b16ac47eec97896341bd5bd5ebb8eae18b4a5545e6c1572632bf6d50ccbc0328bb1ad73e9e828b630b7adaacd81eba91cab08e9aa8c006fbafcc51204a6267fad8d22f23250a0e26dfe2eea69b30a489133e36e3dd14fa702305d5f300c267ab9452e49ad0ec08def7dd8aa09b80a16552baa4a16a5d0ff383426844becb94009b670801d44f85d7ff610b257829417e9d0b5cddbcfa5daeb74e73983384e4989ef2fd4127792f2acb33d885e7d056e36d046f470fd045d884b708bfd9795ed0bab52f07f387c45c08bc83649386f3fdf869a1f469824fdbfd0091904d4c474543ba1278f7410b93a56539d56604f7e1edeee85aa4c181fadbc73221aacf4418538c5fa625c238403c80cfa8186e97d317e73f8a7674f79065a5c64c28bc17674227dd9d8ae7b1a7dcf2a90348f63afb2d60561d2a4807335c5fe90fd67d2778e0ee0cbb3a64cecece3fbdbe9a82ebff933c25884250ab63e4292e30f169c95ef5a61b89a200c781795e2c3cad5b7b357d1928585c7debbdc42f0bc3d4c4620a8085d1c5888df1592ab1a254ee54cd6321893a63cb15fffd41c9ff73b59a44fcb3b827bdde5d5be499755aae1f39ae85b572773f205328d875810f7bc83c56e579476e021fcf012bf6c7775abb1b1f2d7e6344cc19f7736af41875cbe45362d7eaab0b07d3ab7ba2eb5138dabe616d771ad71a996a621d83b158ab81dc56cc8d47d6cefd4e3016bb2768bc0573e4d2d5317effc1d64d345ecd3840453e70a843542fdac204b36b7a3513eed46ff90ad3188da6d695c04328cbbe7192fac256d74745c3cccc55557a23b2d1f95deeca5c58bc6b2e7a08638155de044cd240359c6a57ba1220cbb3ec203fff19e9dc4b54a84aeb014af927fa40e7aff8f9b183364f5557c7dae8e0f6379edce3e18f562dbb0e1f7a858e89a0257bd2ecb6554ea63550ac5f6eda3cdedf306f9ba35a24583be99c05d2d8cd7ee96e695b7086e543d7990d472b283120b60021abfc6aa1a89f1de8d8602fc2846d5f0b3525501bbb948764181b9ecf73ccff3deef525d2ffe34689c701305a32f05eea6c5ea2fa0c6a18194212998ce9b689de925232393a92b61dddcd93099a723027967fd1b58d8b6185f2499aaa3d1a519dd4cc316ea1adf5244445538f697bc6a33b21b63e4e8e2b059d17a054e88e0493d797f1a444c630a0678d4e50304156d37bc8a1061de9b86391f0b3499f0224861cbb69144c83a9e23186175c1992e78c27d601438d7c85e776e9fca104eceaebf8ef33adb196a5728210e11c3c5620adb2610908361bc7ca5adf545c58dfe2396d6ea155e2e25bd9efb0193d20080e6160046db819ff56723e069a5947dd15ab16b6ebbb635d00", 0x2000, &(0x7f0000001680)={&(0x7f0000000300)={0x50, 0xffffffffffffffda, 0x7, {0x7, 0x2b, 0x9af, 0x80080, 0x6, 0x2, 0x8000, 0x0, 0x0, 0x0, 0x10, 0x9}}, &(0x7f00000001c0)={0x18, 0x0, 0x6e, {0xdf}}, &(0x7f0000000280)={0x18, 0x0, 0x3, {0x7}}, &(0x7f0000000380)={0x18, 0xfffffffffffffff5, 0x7fff, {0x1}}, &(0x7f00000003c0)={0x18, 0x0, 0x1ff, {0x2}}, &(0x7f0000000400)={0x28, 0x0, 0x3, {{0x5, 0x8c2b}}}, &(0x7f00000004c0)={0x60, 0x0, 0x401, {{0x100, 0xfffffffffffffffd, 0x6, 0xffffffffffffffff, 0x101, 0x7ff, 0x0, 0x6}}}, &(0x7f0000000540)={0x18, 0x0, 0x0, {0x2f077398}}, &(0x7f0000000840)=ANY=[@ANYBLOB="14000000daffffff01000080000000002b2d2800d7cc7cefb5fb25e9559c83d127699cfbfd698d451814376a2c6dea84aa6d6a3115ac8037d7232e36ed0d5f03e2356c0a1d8eae71a23a7e6b5a7456510d0768f5dca1d6e1a5f8698afd68a9e64ea0e5b3aafe04de2c0275fda054e8a16905e99eaf08a6a9"], &(0x7f00000005c0)={0x20, 0xfffffffffffffff5, 0x1, {0x0, 0x1}}, &(0x7f00000007c0)={0x78, 0x0, 0x6, {0x9, 0x5, 0x0, {0x0, 0x2000000000000, 0x1, 0x7, 0xffffffffffffffff, 0x76c9f5ea, 0x4, 0x2, 0xc, 0x6000, 0x5, 0x0, 0x0, 0x6, 0x1}}}, &(0x7f00000008c0)={0x90, 0x0, 0x0, {0x6, 0x2, 0x8c0f, 0x0, 0x6, 0x1000, {0x0, 0x8001, 0xfffffffffffffffb, 0xfffffffffffffff8, 0x1, 0xb, 0x1, 0x1, 0x5, 0x4000, 0x4, 0x0, 0x0, 0xa}}}, &(0x7f0000000680)=ANY=[@ANYBLOB="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"], &(0x7f0000000f00)={0x3d8, 0xfffffffffffffff5, 0xb92d00000000, [{{0x5, 0x0, 0x5, 0xb3, 0x100, 0x8, {0x1, 0x454, 0x900, 0x49, 0x3, 0x1c7, 0x0, 0x9, 0xca, 0x6000, 0x4, 0x0, 0xffffffffffffffff, 0x8000, 0x2}}, {0x2, 0x8, 0xd, 0xddc, 'hash:ip,port\x00'}}, {{0x5, 0x0, 0x3, 0x8000000000000001, 0x7f, 0x3, {0x4, 0x0, 0xdc8e, 0x1, 0x4, 0x6, 0x4, 0x6, 0x2, 0x4000, 0xda, 0x0, 0xffffffffffffffff, 0x40000007, 0x80000000}}, {0x5, 0x3, 0x5, 0xd, '/(:^}'}}, {{0x4, 0x2, 0x9, 0xb, 0x3ff, 0xba8, {0x0, 0x5, 0x8001, 0x80000000, 0x5f, 0xb2, 0xb210, 0x1, 0x8, 0x6000, 0x1, 0x0, 0x0, 0x4, 0x5}}, {0x5, 0x6, 0x5, 0xc, 'syz1\x00'}}, {{0x0, 0x1, 0xff, 0x4ea, 0x8, 0x8, {0x4, 0xf, 0xfe6, 0xffffffffffffffff, 0x80, 0xfff, 0x9, 0x401, 0x10, 0x2000, 0xeba0, 0x0, 0x0, 0x9e}}, {0x5, 0xffffffffffffffff, 0x1, 0x3, '\x00'}}, {{0x5, 0x0, 0x1, 0x6, 0x6, 0x6, {0x0, 0x3, 0x1, 0x400, 0xc57f, 0xc0, 0x4b, 0x8, 0xeb, 0x1000, 0xfffff801, 0x0, r3, 0x2, 0xfffffffd}}, {0x2, 0x9, 0x5, 0x2, 'syz1\x00'}}, {{0x6, 0x1, 0x8000, 0x10000, 0x8, 0x2, {0x0, 0x0, 0x4bbf, 0x7, 0xffffffffffffffff, 0x7, 0xffff7cf0, 0x31bc4, 0x8, 0xf000, 0x3, r4, r5, 0x10, 0x1}}, {0x5, 0xd6, 0x1, 0x5, '\x00'}}]}, &(0x7f0000001300)={0xa0, 0xfffffffffffffff5, 0x4, {{0x5, 0x3, 0x1000, 0xe82c, 0x6b, 0x4, {0x3, 0x8, 0x2, 0x4d, 0x4, 0x2, 0x0, 0x71, 0x4, 0x4000, 0x8, 0xffffffffffffffff, r9, 0x4, 0x78c5}}, {0x0, 0x8}}}, &(0x7f00000013c0)={0x20, 0x0, 0x5, {0x7, 0x4, 0x10000, 0x2}}, &(0x7f0000001540)={0x130, 0xffffffffffffffda, 0x8, {0x0, 0x3, 0x0, '\x00', {0x100, 0x5, 0x3000000000, 0xf9b, r10, 0xee01, 0x1000, '\x00', 0x7ff, 0x8, 0x6, 0x7ff, {0x8000000000000001, 0x1}, {0x9, 0x5}, {0x5, 0x7d33}, {0x0, 0x2}, 0x8e95, 0x3, 0x8, 0x7}}}}) r11 = bpf$MAP_CREATE(0x0, &(0x7f00000009c0)=ANY=[@ANYBLOB="19000000040000000800000008000000000000"], 0x50) bpf$PROG_LOAD(0x5, &(0x7f00000000c0)={0x11, 0xc, &(0x7f0000000440)=ANY=[@ANYBLOB="180000000000000000000000000001b518110000", @ANYRES32=r11, @ANYBLOB="0000000000000000b7080000000000007b8af8ff00000000bfa200000000000007020000f8ffffffb703000008000000b704000000000000850000000100000095"], &(0x7f0000000240)='GPL\x00', 0x0, 0x0, 0x0, 0x0, 0x0, '\x00', 0x0, @fallback=0x2b, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @void, @value}, 0x94) bpf$BPF_RAW_TRACEPOINT_OPEN(0x11, &(0x7f0000000000)={&(0x7f0000000080)='sched_switch\x00'}, 0x10) r12 = syz_open_dev$usbfs(&(0x7f0000000480), 0x76, 0x160341) ioctl$USBDEVFS_IOCTL(r12, 0xc0105512, &(0x7f0000000200)) ioctl$USBDEVFS_IOCTL(r12, 0xc0105512, &(0x7f0000000000)=@usbdevfs_connect) kernel console output (not intermixed with test programs): 00 [ 1078.376229][ T5878] usb 4-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1078.443539][ T5878] usb 4-1: Product: syz [ 1078.482092][ T5878] usb 4-1: Manufacturer: syz [ 1078.501305][ T5878] usb 4-1: SerialNumber: syz [ 1078.678790][ T5878] usb 4-1: config 0 descriptor?? [ 1079.213971][ T5878] usb-storage 4-1:0.0: USB Mass Storage device detected [ 1079.535636][ T5878] usb 4-1: USB disconnect, device number 45 [ 1079.803922][ T30] audit: type=1326 audit(2000000051.280:481): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1079.893455][ T30] audit: type=1326 audit(2000000051.280:482): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1080.015877][ T30] audit: type=1326 audit(2000000051.280:483): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=302 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1080.569452][ T30] audit: type=1326 audit(2000000051.280:484): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1080.596257][ T30] audit: type=1326 audit(2000000051.280:485): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1080.628271][ T30] audit: type=1326 audit(2000000051.280:486): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=144 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.363742][ T30] audit: type=1326 audit(2000000051.280:487): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.413758][ T30] audit: type=1326 audit(2000000051.280:488): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.510259][ T30] audit: type=1326 audit(2000000051.280:489): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=6 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.572835][ T30] audit: type=1326 audit(2000000051.280:490): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.616905][ T30] audit: type=1326 audit(2000000051.280:491): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.673951][ T30] audit: type=1326 audit(2000000051.280:492): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=39 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.730474][ T30] audit: type=1326 audit(2000000051.280:493): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.761253][ T30] audit: type=1326 audit(2000000051.280:494): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.784407][ T10] usb 4-1: new high-speed USB device number 46 using dummy_hcd [ 1081.815557][ T30] audit: type=1326 audit(2000000051.280:495): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=203 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.840226][ T30] audit: type=1326 audit(2000000051.280:496): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=16198 comm="syz.0.2922" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fefdb38e969 code=0x7ffc0000 [ 1081.953825][ T10] usb 4-1: Using ep0 maxpacket: 32 [ 1081.971211][ T10] usb 4-1: config 0 has an invalid interface number: 67 but max is 0 [ 1081.999633][ T10] usb 4-1: config 0 has no interface number 0 [ 1082.134749][ T10] usb 4-1: New USB device found, idVendor=0424, idProduct=9901, bcdDevice=c2.57 [ 1082.206868][ T10] usb 4-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1082.296771][ T10] usb 4-1: Product: syz [ 1082.337325][ T10] usb 4-1: Manufacturer: syz [ 1082.415628][ T10] usb 4-1: SerialNumber: syz [ 1082.495952][ T10] usb 4-1: config 0 descriptor?? [ 1082.550000][ T10] smsc95xx v2.0.0 [ 1083.076219][T16232] xt_CT: You must specify a L4 protocol and not use inversions on it [ 1083.903568][ T10] smsc95xx 4-1:0.67 (unnamed net_device) (uninitialized): Failed to read reg index 0x00000030: -32 [ 1083.933147][ T10] smsc95xx 4-1:0.67 (unnamed net_device) (uninitialized): Error reading E2P_CMD [ 1084.745101][T16242] xt_HMARK: spi-set and port-set can't be combined [ 1085.933849][ T10] smsc95xx 4-1:0.67 (unnamed net_device) (uninitialized): Failed to write reg index 0x00000104: -71 [ 1085.962068][ T10] smsc95xx 4-1:0.67: probe with driver smsc95xx failed with error -71 [ 1086.007555][ T10] usb 4-1: USB disconnect, device number 46 [ 1086.598839][T16267] fuse: Bad value for 'fd' [ 1086.978942][T16253] Bluetooth: hci5: Opcode 0x0c1a failed: -4 [ 1086.986676][T16253] Bluetooth: hci5: Opcode 0x0406 failed: -4 [ 1087.020895][T16253] Bluetooth: hci5: Opcode 0x0406 failed: -4 [ 1087.173906][T10658] Bluetooth: hci3: unexpected cc 0x0c03 length: 249 > 1 [ 1087.183603][T10658] Bluetooth: hci3: unexpected cc 0x1003 length: 249 > 9 [ 1087.193350][T10658] Bluetooth: hci3: unexpected cc 0x1001 length: 249 > 9 [ 1087.204354][T10658] Bluetooth: hci3: unexpected cc 0x0c23 length: 249 > 4 [ 1087.275859][T10658] Bluetooth: hci3: unexpected cc 0x0c38 length: 249 > 2 [ 1087.447383][T16277] netlink: 4 bytes leftover after parsing attributes in process `syz.2.2942'. [ 1087.507196][T16277] netlink: 12 bytes leftover after parsing attributes in process `syz.2.2942'. [ 1087.945613][ T8716] netdevsim netdevsim0 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1088.433078][T10658] Bluetooth: hci5: command 0x0c1a tx timeout [ 1088.454766][T16264] lo speed is unknown, defaulting to 1000 [ 1089.463846][T10658] Bluetooth: hci3: command tx timeout [ 1090.276484][ T8716] netdevsim netdevsim0 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1090.778979][T10658] Bluetooth: hci5: command 0x0c1a tx timeout [ 1090.786840][T16301] netlink: 8 bytes leftover after parsing attributes in process `syz.1.2947'. [ 1090.795884][T16301] netlink: 8 bytes leftover after parsing attributes in process `syz.1.2947'. [ 1090.806419][T16301] netlink: 'syz.1.2947': attribute type 5 has an invalid length. [ 1091.027969][T16281] IPv6: sit2: Disabled Multicast RS [ 1091.088268][ T8716] netdevsim netdevsim0 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1091.238713][ T8716] netdevsim netdevsim0 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1091.504627][T10658] Bluetooth: hci3: command tx timeout [ 1092.713575][ T8716] bridge_slave_1: left allmulticast mode [ 1092.743440][ T8716] bridge_slave_1: left promiscuous mode [ 1092.765473][ T8716] bridge0: port 2(bridge_slave_1) entered disabled state [ 1092.799889][ T8716] bridge_slave_0: left allmulticast mode [ 1092.809119][ T8716] bridge_slave_0: left promiscuous mode [ 1092.822423][ T8716] bridge0: port 1(bridge_slave_0) entered disabled state [ 1092.866157][T10658] Bluetooth: hci5: command 0x0c1a tx timeout [ 1093.593996][T10658] Bluetooth: hci3: command tx timeout [ 1094.236470][T16264] chnl_net:caif_netlink_parms(): no params data found [ 1094.419175][ T8716] tipc: Left network mode [ 1095.072906][T16264] bridge0: port 1(bridge_slave_0) entered blocking state [ 1095.099138][T16264] bridge0: port 1(bridge_slave_0) entered disabled state [ 1095.109944][T16264] bridge_slave_0: entered allmulticast mode [ 1095.125764][T16264] bridge_slave_0: entered promiscuous mode [ 1095.140345][T16264] bridge0: port 2(bridge_slave_1) entered blocking state [ 1095.149018][T16264] bridge0: port 2(bridge_slave_1) entered disabled state [ 1095.157127][T16264] bridge_slave_1: entered allmulticast mode [ 1095.169602][T16264] bridge_slave_1: entered promiscuous mode [ 1095.664046][T10658] Bluetooth: hci3: command tx timeout [ 1095.999120][T16264] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 1096.135670][T16264] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 1100.152876][T16396] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1100.609608][ T8716] team0: left promiscuous mode [ 1100.630636][ T8716] team_slave_0: left promiscuous mode [ 1100.645571][ T8716] team_slave_1: left promiscuous mode [ 1100.655446][T16419] netlink: 104 bytes leftover after parsing attributes in process `syz.2.2979'. [ 1100.796719][ T8716] hsr_slave_0: left promiscuous mode [ 1100.802870][ T8716] hsr_slave_1: left promiscuous mode [ 1100.811166][ T8716] batman_adv: batadv0: Interface deactivated: batadv_slave_0 [ 1100.831375][ T8716] batman_adv: batadv0: Removing interface: batadv_slave_0 [ 1100.852445][ T8716] batman_adv: batadv0: Interface deactivated: batadv_slave_1 [ 1100.927028][ T8716] batman_adv: batadv0: Removing interface: batadv_slave_1 [ 1101.167957][T16426] Can't find a SQUASHFS superblock on nullb0 [ 1101.280430][ T5880] usb 4-1: new high-speed USB device number 47 using dummy_hcd [ 1101.517887][ T8716] veth1_macvtap: left promiscuous mode [ 1101.523666][ T8716] veth0_macvtap: left promiscuous mode [ 1101.535196][ T5880] usb 4-1: New USB device found, idVendor=046d, idProduct=0870, bcdDevice=61.47 [ 1101.545114][ T8716] veth1_vlan: left promiscuous mode [ 1101.554495][ T8716] veth0_vlan: left promiscuous mode [ 1101.559910][ T5880] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1101.597310][ T5880] usb 4-1: config 0 descriptor?? [ 1101.608817][ T5880] gspca_main: STV06xx-2.14.0 probing 046d:0870 [ 1102.256966][T16416] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 1102.280704][T16416] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 1103.341799][ T5880] usb 4-1: USB disconnect, device number 47 [ 1103.841835][ T8716] team0 (unregistering): Port device team_slave_1 removed [ 1103.915033][ T8716] team0 (unregistering): Port device team_slave_0 removed [ 1105.007102][T16457] FAULT_INJECTION: forcing a failure. [ 1105.007102][T16457] name failslab, interval 1, probability 0, space 0, times 0 [ 1105.022901][T16457] CPU: 1 UID: 0 PID: 16457 Comm: syz.3.2989 Not tainted 6.15.0-rc7-syzkaller #0 PREEMPT(full) [ 1105.022925][T16457] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 1105.022936][T16457] Call Trace: [ 1105.022944][T16457] [ 1105.022953][T16457] dump_stack_lvl+0x189/0x250 [ 1105.022986][T16457] ? __pfx_dump_stack_lvl+0x10/0x10 [ 1105.023027][T16457] ? __pfx__printk+0x10/0x10 [ 1105.023081][T16457] ? __pfx___might_resched+0x10/0x10 [ 1105.023130][T16457] ? fs_reclaim_acquire+0x7d/0x100 [ 1105.023159][T16457] should_fail_ex+0x414/0x560 [ 1105.023187][T16457] should_failslab+0xa8/0x100 [ 1105.023209][T16457] __kmalloc_noprof+0xcb/0x4f0 [ 1105.023238][T16457] ? tomoyo_mount_permission+0x27a/0x970 [ 1105.023263][T16457] ? tomoyo_encode+0x28b/0x550 [ 1105.023295][T16457] tomoyo_encode+0x28b/0x550 [ 1105.023326][T16457] ? tomoyo_mount_permission+0x27a/0x970 [ 1105.023353][T16457] tomoyo_mount_permission+0x331/0x970 [ 1105.023382][T16457] ? stack_depot_save_flags+0x40/0x910 [ 1105.023406][T16457] ? __pfx_tomoyo_mount_permission+0x10/0x10 [ 1105.023497][T16457] security_sb_mount+0xec/0x350 [ 1105.023533][T16457] path_mount+0xbc/0xfe0 [ 1105.023562][T16457] ? user_path_at+0x44/0x60 [ 1105.023584][T16457] ? kmem_cache_free+0x192/0x3f0 [ 1105.023627][T16457] __se_sys_mount+0x317/0x410 [ 1105.023655][T16457] ? __pfx___se_sys_mount+0x10/0x10 [ 1105.023680][T16457] ? do_syscall_64+0xba/0x210 [ 1105.023705][T16457] ? __x64_sys_mount+0x20/0xc0 [ 1105.023728][T16457] do_syscall_64+0xf6/0x210 [ 1105.023756][T16457] ? clear_bhb_loop+0x60/0xb0 [ 1105.023781][T16457] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 1105.023801][T16457] RIP: 0033:0x7fdc7618e969 [ 1105.023820][T16457] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 1105.023838][T16457] RSP: 002b:00007fdc77094038 EFLAGS: 00000246 ORIG_RAX: 00000000000000a5 [ 1105.023860][T16457] RAX: ffffffffffffffda RBX: 00007fdc763b5fa0 RCX: 00007fdc7618e969 [ 1105.023876][T16457] RDX: 0000200000000200 RSI: 00002000000001c0 RDI: 0000000000000000 [ 1105.023897][T16457] RBP: 00007fdc77094090 R08: 0000200000000440 R09: 0000000000000000 [ 1105.023910][T16457] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 1105.023923][T16457] R13: 0000000000000000 R14: 00007fdc763b5fa0 R15: 00007fff825a7d78 [ 1105.023956][T16457] [ 1105.254912][ C1] vkms_vblank_simulate: vblank timer overrun [ 1105.917340][T16264] team0: Port device team_slave_0 added [ 1106.008546][T16264] team0: Port device team_slave_1 added [ 1106.372409][T16472] netdevsim netdevsim1 netdevsim1: Unsupported IPsec algorithm [ 1107.346008][T16264] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 1107.366652][T16264] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1107.517296][T16264] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 1107.614682][T16264] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 1107.621712][T16264] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1108.213783][T16264] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 1109.245919][T16264] hsr_slave_0: entered promiscuous mode [ 1109.252621][T16264] hsr_slave_1: entered promiscuous mode [ 1109.401715][T16264] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 1109.428795][T16507] overlayfs: failed to clone upperpath [ 1109.429949][T16264] Cannot create hsr debugfs directory [ 1110.061622][T16516] hub 8-0:1.0: USB hub found [ 1110.066764][T16516] hub 8-0:1.0: 1 port detected [ 1111.050505][T16532] xt_CT: You must specify a L4 protocol and not use inversions on it [ 1111.726224][T16543] netlink: 16 bytes leftover after parsing attributes in process `syz.1.3009'. [ 1111.737425][T16543] netlink: 60 bytes leftover after parsing attributes in process `syz.1.3009'. [ 1111.847458][ T24] usb 3-1: new high-speed USB device number 57 using dummy_hcd [ 1111.855192][ T5880] usb 4-1: new high-speed USB device number 48 using dummy_hcd [ 1112.156550][ T24] usb 3-1: Using ep0 maxpacket: 32 [ 1112.385478][ T5880] usb 4-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1112.424430][ T24] usb 3-1: config 0 has an invalid interface number: 106 but max is 0 [ 1112.458047][ T5880] usb 4-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 1112.469130][ T24] usb 3-1: config 0 has no interface number 0 [ 1112.489160][ T24] usb 3-1: config 0 interface 106 has no altsetting 0 [ 1112.513718][ T5880] usb 4-1: New USB device found, idVendor=1e7d, idProduct=30d4, bcdDevice= 0.00 [ 1112.522778][ T5880] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1112.537579][ T24] usb 3-1: New USB device found, idVendor=0421, idProduct=6901, bcdDevice=2d.1d [ 1112.547641][ T24] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1112.561910][ T5880] usb 4-1: config 0 descriptor?? [ 1112.574128][ T24] usb 3-1: Product: syz [ 1112.578322][ T24] usb 3-1: Manufacturer: syz [ 1112.582930][ T24] usb 3-1: SerialNumber: syz [ 1112.614311][ T24] usb 3-1: config 0 descriptor?? [ 1112.635400][ T24] cdc_phonet 3-1:0.106: probe with driver cdc_phonet failed with error -22 [ 1112.857693][ T24] usb 3-1: USB disconnect, device number 57 [ 1112.890519][T16566] openvswitch: netlink: Key 32 has unexpected len 20 expected 2 [ 1113.002392][T16264] netdevsim netdevsim0 netdevsim0: renamed from eth0 [ 1113.011889][ T5880] arvo 0003:1E7D:30D4.0023: unknown main item tag 0x0 [ 1113.026006][ T5880] arvo 0003:1E7D:30D4.0023: unknown main item tag 0x0 [ 1113.032978][ T5880] arvo 0003:1E7D:30D4.0023: unknown main item tag 0x0 [ 1113.040120][ T5880] arvo 0003:1E7D:30D4.0023: unknown main item tag 0x0 [ 1113.059272][ T5880] arvo 0003:1E7D:30D4.0023: unknown main item tag 0x0 [ 1113.061770][T16264] netdevsim netdevsim0 netdevsim1: renamed from eth1 [ 1113.071109][ T5880] arvo 0003:1E7D:30D4.0023: unknown main item tag 0x0 [ 1113.081168][ T5880] arvo 0003:1E7D:30D4.0023: unknown main item tag 0x0 [ 1113.096902][ T5880] arvo 0003:1E7D:30D4.0023: hidraw0: USB HID v0.00 Device [HID 1e7d:30d4] on usb-dummy_hcd.3-1/input0 [ 1113.098355][T16264] netdevsim netdevsim0 netdevsim2: renamed from eth2 [ 1113.140701][T16264] netdevsim netdevsim0 netdevsim3: renamed from eth3 [ 1113.383534][T16264] 8021q: adding VLAN 0 to HW filter on device bond0 [ 1113.398778][T16580] netlink: 12 bytes leftover after parsing attributes in process `syz.1.3018'. [ 1113.430147][T16580] netlink: 12 bytes leftover after parsing attributes in process `syz.1.3018'. [ 1113.441685][ T5880] usb 4-1: USB disconnect, device number 48 [ 1113.446665][T16264] 8021q: adding VLAN 0 to HW filter on device team0 [ 1113.492225][ T8716] bridge0: port 1(bridge_slave_0) entered blocking state [ 1113.499417][ T8716] bridge0: port 1(bridge_slave_0) entered forwarding state [ 1113.660807][ T8716] bridge0: port 2(bridge_slave_1) entered blocking state [ 1113.668016][ T8716] bridge0: port 2(bridge_slave_1) entered forwarding state [ 1114.455011][T16589] netlink: 12 bytes leftover after parsing attributes in process `syz.1.3020'. [ 1114.872463][T16612] ipt_REJECT: TCP_RESET invalid for non-tcp [ 1114.891334][T16609] netlink: 304 bytes leftover after parsing attributes in process `syz.3.3027'. [ 1115.553260][T16264] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 1115.599011][T16628] netdevsim netdevsim3 netdevsim0: entered promiscuous mode [ 1115.623696][T16628] netdevsim netdevsim3 netdevsim0: entered allmulticast mode [ 1115.628835][T16630] usb usb7: Requested nonsensical USBDEVFS_URB_SHORT_NOT_OK. [ 1115.669256][ T1297] ieee802154 phy1 wpan1: encryption failed: -22 [ 1115.697270][T16264] veth0_vlan: entered promiscuous mode [ 1115.756809][T16264] veth1_vlan: entered promiscuous mode [ 1116.609761][T16264] veth0_macvtap: entered promiscuous mode [ 1116.620553][T16264] veth1_macvtap: entered promiscuous mode [ 1116.673261][T16647] netlink: 8 bytes leftover after parsing attributes in process `syz.4.3033'. [ 1116.730826][T16264] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 1116.776873][T16264] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 1116.833265][T16264] netdevsim netdevsim0 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 1116.842956][T16264] netdevsim netdevsim0 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 1116.852036][T16264] netdevsim netdevsim0 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 1116.861161][T16264] netdevsim netdevsim0 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 1117.585926][ T53] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1117.597466][T16669] netdevsim netdevsim2: Direct firmware load for ..€ failed with error -2 [ 1117.609738][T16672] netlink: 8 bytes leftover after parsing attributes in process `syz.1.3041'. [ 1117.616054][T16669] netdevsim netdevsim2: Falling back to sysfs fallback for: ..€ [ 1117.620756][T16672] netlink: 20 bytes leftover after parsing attributes in process `syz.1.3041'. [ 1117.643711][ T53] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1117.705306][ T53] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1117.730454][ T53] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1117.738497][ T5880] usb 5-1: new full-speed USB device number 47 using dummy_hcd [ 1117.760635][T16679] tipc: Started in network mode [ 1117.768994][T16679] tipc: Node identity 00000000000000000000000000000001, cluster identity 4711 [ 1117.780367][T16679] tipc: Enabled bearer , priority 10 [ 1117.894164][ T5880] usb 5-1: device descriptor read/64, error -71 [ 1118.064349][ T5811] usb 4-1: new full-speed USB device number 49 using dummy_hcd [ 1118.154521][ T5880] usb 5-1: new full-speed USB device number 48 using dummy_hcd [ 1118.238144][ T5811] usb 4-1: unable to get BOS descriptor or descriptor too short [ 1118.265961][ T5811] usb 4-1: not running at top speed; connect to a high speed hub [ 1118.304821][ T5880] usb 5-1: device descriptor read/64, error -71 [ 1118.312086][ T5811] usb 4-1: config 129 has an invalid interface number: 28 but max is 0 [ 1118.324145][ T5811] usb 4-1: config 129 has an invalid descriptor of length 0, skipping remainder of the config [ 1118.349015][ T5811] usb 4-1: config 129 has no interface number 0 [ 1118.369290][ T5811] usb 4-1: config 129 interface 28 altsetting 250 endpoint 0xC has invalid wMaxPacketSize 0 [ 1118.408162][ T5811] usb 4-1: config 129 interface 28 altsetting 250 has 1 endpoint descriptor, different from the interface descriptor's value: 2 [ 1118.462941][ T5880] usb usb5-port1: attempt power cycle [ 1118.475319][ T5811] usb 4-1: config 129 interface 28 has no altsetting 0 [ 1118.515257][ T5811] usb 4-1: New USB device found, idVendor=108c, idProduct=0159, bcdDevice=db.57 [ 1118.546669][ T5811] usb 4-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1118.573698][ T5811] usb 4-1: Product: syz [ 1118.593878][ T5811] usb 4-1: Manufacturer: syz [ 1118.613690][ T5811] usb 4-1: SerialNumber: syz [ 1118.745776][T16709] netlink: 8 bytes leftover after parsing attributes in process `syz.2.3050'. [ 1118.818583][ T5880] usb 5-1: new full-speed USB device number 49 using dummy_hcd [ 1118.864711][ T5880] usb 5-1: device descriptor read/8, error -71 [ 1118.877655][T16681] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 1118.916073][ T5878] tipc: Node number set to 1 [ 1118.934312][T16681] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 1118.943037][ T5826] Bluetooth: hci0: unexpected cc 0x0c03 length: 249 > 1 [ 1118.949722][T16708] bridge0: entered allmulticast mode [ 1118.956321][ T5826] Bluetooth: hci0: unexpected cc 0x1003 length: 249 > 9 [ 1118.966020][ T5811] etas_es58x 4-1:129.28: Starting syz syz (Serial Number syz) [ 1118.994989][ T5811] usb 4-1: USB disconnect, device number 49 [ 1119.021057][ T5826] Bluetooth: hci0: unexpected cc 0x1001 length: 249 > 9 [ 1119.084289][ T5826] Bluetooth: hci0: unexpected cc 0x0c23 length: 249 > 4 [ 1119.092097][ T5826] Bluetooth: hci0: unexpected cc 0x0c38 length: 249 > 2 [ 1119.153736][ T5880] usb 5-1: new full-speed USB device number 50 using dummy_hcd [ 1119.204230][ T5880] usb 5-1: device descriptor read/8, error -71 [ 1119.232876][T16717] lo speed is unknown, defaulting to 1000 [ 1119.490126][ T5880] usb usb5-port1: unable to enumerate USB device [ 1120.111885][T16737] ip6tnl1: entered promiscuous mode [ 1120.117407][T16737] ip6tnl1: entered allmulticast mode [ 1120.124002][T16737] team0: Device ip6tnl1 is of different type [ 1120.424437][T16717] chnl_net:caif_netlink_parms(): no params data found [ 1121.184143][ T5826] Bluetooth: hci0: command tx timeout [ 1121.249683][T16717] bridge0: port 1(bridge_slave_0) entered blocking state [ 1121.271321][T16717] bridge0: port 1(bridge_slave_0) entered disabled state [ 1121.290222][T16717] bridge_slave_0: entered allmulticast mode [ 1121.310801][T16717] bridge_slave_0: entered promiscuous mode [ 1121.336433][T16717] bridge0: port 2(bridge_slave_1) entered blocking state [ 1121.358019][T16717] bridge0: port 2(bridge_slave_1) entered disabled state [ 1121.365629][T16717] bridge_slave_1: entered allmulticast mode [ 1121.383261][T16717] bridge_slave_1: entered promiscuous mode [ 1121.537669][T16717] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 1121.580341][T16717] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 1121.659100][T16717] team0: Port device team_slave_0 added [ 1121.671868][T16717] team0: Port device team_slave_1 added [ 1121.738739][T16717] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 1121.746070][T16717] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1121.785901][ T978] usb 4-1: new full-speed USB device number 50 using dummy_hcd [ 1121.787150][ T5878] usb 5-1: new high-speed USB device number 51 using dummy_hcd [ 1121.794232][T16717] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 1121.815719][T16717] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 1121.822749][T16717] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1121.849035][T16717] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 1122.066391][ T978] usb 4-1: config 0 has an invalid interface number: 69 but max is 0 [ 1122.080048][ T978] usb 4-1: config 0 has no interface number 0 [ 1122.093836][ T978] usb 4-1: config 0 interface 69 altsetting 0 endpoint 0x8 has invalid maxpacket 1023, setting to 64 [ 1122.099694][ T5878] usb 5-1: config 48 has an invalid descriptor of length 0, skipping remainder of the config [ 1122.107129][ T978] usb 4-1: config 0 interface 69 altsetting 0 endpoint 0x82 has an invalid bInterval 0, changing to 10 [ 1122.129685][ T978] usb 4-1: config 0 interface 69 altsetting 0 endpoint 0x82 has invalid maxpacket 43776, setting to 64 [ 1122.152139][ T978] usb 4-1: New USB device found, idVendor=0c4b, idProduct=0100, bcdDevice=d7.ca [ 1122.210826][T16717] hsr_slave_0: entered promiscuous mode [ 1122.311627][T16717] hsr_slave_1: entered promiscuous mode [ 1122.349859][ T978] usb 4-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1122.381742][T16717] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 1122.423038][ T978] usb 4-1: Product: syz [ 1122.470288][T16717] Cannot create hsr debugfs directory [ 1122.480910][ T978] usb 4-1: Manufacturer: syz [ 1122.523418][ T978] usb 4-1: SerialNumber: syz [ 1122.733029][ T978] usb 4-1: config 0 descriptor?? [ 1122.841780][T16791] raw-gadget.1 gadget.3: fail, usb_ep_enable returned -22 [ 1122.862078][T16791] raw-gadget.1 gadget.3: fail, usb_ep_enable returned -22 [ 1122.894992][ T978] cyberjack 4-1:0.69: Reiner SCT Cyberjack USB card reader converter detected [ 1122.970491][ T5878] usb 5-1: config 48 interface 0 altsetting 98 endpoint 0x4 has invalid wMaxPacketSize 0 [ 1122.974790][ T978] usb 4-1: Reiner SCT Cyberjack USB card reader converter now attached to ttyUSB0 [ 1122.980397][ T5878] usb 5-1: config 48 interface 0 altsetting 98 bulk endpoint 0x4 has invalid maxpacket 0 [ 1123.014128][ T5878] usb 5-1: config 48 interface 0 altsetting 98 has 1 endpoint descriptor, different from the interface descriptor's value: 3 [ 1123.040395][ T5878] usb 5-1: config 48 interface 0 has no altsetting 0 [ 1123.059440][ T5878] usb 5-1: New USB device found, idVendor=1784, idProduct=0006, bcdDevice=bb.2f [ 1123.083738][ T5878] usb 5-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1123.100993][ T5878] usb 5-1: Product: syz [ 1123.114618][ T5878] usb 5-1: Manufacturer: syz [ 1123.129421][ T5878] usb 5-1: SerialNumber: syz [ 1123.263935][ T5826] Bluetooth: hci0: command tx timeout [ 1123.344003][ T5811] usb 1-1: new high-speed USB device number 61 using dummy_hcd [ 1123.560011][ T5811] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1123.670506][ T5811] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 1123.774797][ T5811] usb 1-1: config 0 interface 0 altsetting 0 has 1 endpoint descriptor, different from the interface descriptor's value: 21 [ 1123.918434][ T5811] usb 1-1: New USB device found, idVendor=047f, idProduct=ffff, bcdDevice= 0.00 [ 1124.043298][ T5811] usb 1-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1124.545326][T16814] loop6: detected capacity change from 0 to 524287999 [ 1124.571018][ T5811] usb 1-1: config 0 descriptor?? [ 1124.591552][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1124.650887][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1124.718213][ T5878] usb 5-1: USB disconnect, device number 51 [ 1124.766066][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1124.814428][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1124.822956][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1124.869019][T16717] netdevsim netdevsim1 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1124.895942][T16825] netlink: 104 bytes leftover after parsing attributes in process `syz.2.3069'. [ 1124.903842][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1124.933284][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1124.967202][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1125.003775][T16411] ldm_validate_partition_table(): Disk read failed. [ 1125.010491][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1125.097358][T16411] Buffer I/O error on dev loop6, logical block 0, async page read [ 1125.129728][T16411] Dev loop6: unable to read RDB block 0 [ 1125.146373][T16411] loop6: unable to read partition table [ 1125.156862][T16717] netdevsim netdevsim1 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1125.169485][T16810] block device autoloading is deprecated and will be removed. [ 1125.195638][T16811] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 1125.224547][T16810] syz.0.3068: attempt to access beyond end of device [ 1125.224547][T16810] md0: rw=2048, sector=0, nr_sectors = 8 limit=0 [ 1125.269082][T16811] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 1125.343965][ T5826] Bluetooth: hci0: command tx timeout [ 1125.398263][T16835] netlink: 36 bytes leftover after parsing attributes in process `syz.4.3072'. [ 1125.410250][ T24] usb 4-1: USB disconnect, device number 50 [ 1125.676550][ T5811] plantronics 0003:047F:FFFF.0024: unbalanced delimiter at end of report description [ 1125.705815][ T24] cyberjack ttyUSB0: Reiner SCT Cyberjack USB card reader converter now disconnected from ttyUSB0 [ 1125.728111][ T5811] plantronics 0003:047F:FFFF.0024: parse failed [ 1125.818414][ T5811] plantronics 0003:047F:FFFF.0024: probe with driver plantronics failed with error -22 [ 1125.846045][T16840] netlink: 8 bytes leftover after parsing attributes in process `syz.3.3073'. [ 1125.858480][ T24] cyberjack 4-1:0.69: device disconnected [ 1125.915212][T16717] netdevsim netdevsim1 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1125.968229][ T5811] usb 1-1: USB disconnect, device number 61 [ 1125.994436][T16831] netlink: 8 bytes leftover after parsing attributes in process `syz.2.3071'. [ 1126.601393][T16852] netlink: 20 bytes leftover after parsing attributes in process `syz.2.3075'. [ 1127.420895][T16717] netdevsim netdevsim1 netdevsim0: renamed from eth0 [ 1127.423916][ T5826] Bluetooth: hci0: command tx timeout [ 1127.485465][T16717] netdevsim netdevsim1 netdevsim1: renamed from eth1 [ 1127.535173][T16717] netdevsim netdevsim1 netdevsim2: renamed from eth2 [ 1127.693688][ T5878] usb 5-1: new high-speed USB device number 52 using dummy_hcd [ 1127.734359][T16717] netdevsim netdevsim1 netdevsim3: renamed from eth3 [ 1127.947286][ T5878] usb 5-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 1128.616310][ T5878] usb 5-1: New USB device found, idVendor=045e, idProduct=0283, bcdDevice=99.0b [ 1128.669414][ T5878] usb 5-1: New USB device strings: Mfr=1, Product=228, SerialNumber=2 [ 1128.739750][ T5878] usb 5-1: Product: syz [ 1128.767657][ T5878] usb 5-1: Manufacturer: syz [ 1128.850857][T16878] Cannot find add_set index 0 as target [ 1128.983201][ T5878] usb 5-1: SerialNumber: syz [ 1129.269828][ T5878] usb 5-1: config 0 descriptor?? [ 1129.315787][T16717] 8021q: adding VLAN 0 to HW filter on device bond0 [ 1129.322612][ T5878] snd-usb-audio 5-1:0.0: probe with driver snd-usb-audio failed with error -22 [ 1129.362058][T16717] 8021q: adding VLAN 0 to HW filter on device team0 [ 1129.416000][T16721] udevd[16721]: error opening ATTR{/sys/devices/platform/dummy_hcd.4/usb5/5-1/5-1:0.0/sound/card3/controlC3/../uevent} for writing: No such file or directory [ 1129.622423][T16884] netlink: 36 bytes leftover after parsing attributes in process `syz.0.3085'. [ 1129.756790][ T8722] bridge0: port 1(bridge_slave_0) entered blocking state [ 1129.763949][ T8722] bridge0: port 1(bridge_slave_0) entered forwarding state [ 1130.059989][ T8722] bridge0: port 2(bridge_slave_1) entered blocking state [ 1130.067211][ T8722] bridge0: port 2(bridge_slave_1) entered forwarding state [ 1130.202386][ T5878] usb 5-1: USB disconnect, device number 52 [ 1131.011618][T16717] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network [ 1132.483722][ T978] usb 1-1: new high-speed USB device number 62 using dummy_hcd [ 1132.633448][T16717] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 1132.664132][ T978] usb 1-1: Using ep0 maxpacket: 32 [ 1132.757171][ T5880] usb 5-1: new high-speed USB device number 53 using dummy_hcd [ 1132.789291][ T978] usb 1-1: config 0 has an invalid interface number: 2 but max is 0 [ 1132.824046][ T978] usb 1-1: config 0 has no interface number 0 [ 1132.902202][T16914] input: syz0 as /devices/virtual/input/input31 [ 1133.273734][ T5880] usb 5-1: Using ep0 maxpacket: 16 [ 1133.395545][ T978] usb 1-1: config 0 interface 2 altsetting 2 endpoint 0x4 has invalid maxpacket 512, setting to 64 [ 1133.412046][ T5880] usb 5-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 1133.419549][ T978] usb 1-1: config 0 interface 2 altsetting 2 endpoint 0x82 has invalid wMaxPacketSize 0 [ 1133.445677][ T5880] usb 5-1: config 0 has 1 interface, different from the descriptor's value: 2 [ 1133.455003][ T5880] usb 5-1: New USB device found, idVendor=05d8, idProduct=810a, bcdDevice=92.b8 [ 1133.464344][ T5880] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1133.475523][T16717] veth0_vlan: entered promiscuous mode [ 1133.504916][ T5880] usb 5-1: config 0 descriptor?? [ 1133.532690][T16717] veth1_vlan: entered promiscuous mode [ 1133.550166][ T5880] dvb-usb: found a 'Artec T1 USB2.0' in warm state. [ 1133.573933][ T978] usb 1-1: config 0 interface 2 altsetting 2 bulk endpoint 0x82 has invalid maxpacket 0 [ 1133.595069][ T978] usb 1-1: config 0 interface 2 has no altsetting 0 [ 1133.615983][ T5880] dvb-usb: bulk message failed: -22 (3/0) [ 1133.616096][ T978] usb 1-1: New USB device found, idVendor=086a, idProduct=0003, bcdDevice=f0.3f [ 1133.640326][ T978] usb 1-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1133.664617][ T978] usb 1-1: Product: syz [ 1133.666425][ T5880] dvb-usb: will pass the complete MPEG2 transport stream to the software demuxer. [ 1133.670934][ T978] usb 1-1: Manufacturer: syz [ 1133.702506][ T5880] dvbdev: DVB: registering new adapter (Artec T1 USB2.0) [ 1133.723779][ T978] usb 1-1: SerialNumber: syz [ 1133.728468][ T5880] usb 5-1: media controller created [ 1133.729149][T16717] veth0_macvtap: entered promiscuous mode [ 1133.878869][ T978] usb 1-1: config 0 descriptor?? [ 1133.897149][T16717] veth1_macvtap: entered promiscuous mode [ 1134.216234][T16717] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 1134.230599][T16717] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 1134.251528][ T5880] dvbdev: dvb_create_media_entity: media entity 'dvb-demux' registered. [ 1134.252097][T16717] netdevsim netdevsim1 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 1134.280242][T16717] netdevsim netdevsim1 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 1134.289510][ T978] usb 1-1: Quirk or no altset; falling back to MIDI 1.0 [ 1134.300605][ T978] usb 1-1: invalid MIDI out EP 0 [ 1134.331018][T16717] netdevsim netdevsim1 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 1134.383668][T16717] netdevsim netdevsim1 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 1134.408592][ T5880] dvb-usb: bulk message failed: -22 (6/0) [ 1134.436891][ T5880] dvb-usb: no frontend was attached by 'Artec T1 USB2.0' [ 1134.510872][T16927] syz.0.3096: attempt to access beyond end of device [ 1134.510872][T16927] loop0: rw=2048, sector=2, nr_sectors = 1 limit=0 [ 1134.524318][T16927] hfsplus: unable to find HFS+ superblock [ 1134.540881][T16927] MTD: Attempt to mount non-MTD device "/dev/nullb0" [ 1134.549851][T16927] cramfs: wrong magic [ 1134.573348][T16927] netlink: 'syz.0.3096': attribute type 3 has an invalid length. [ 1134.581287][T16927] netlink: 'syz.0.3096': attribute type 1 has an invalid length. [ 1134.589204][T16927] netlink: 191172 bytes leftover after parsing attributes in process `syz.0.3096'. [ 1135.563864][ T5880] input: IR-receiver inside an USB DVB receiver as /devices/platform/dummy_hcd.4/usb5/5-1/input/input32 [ 1135.590291][ T5880] dvb-usb: schedule remote query interval to 150 msecs. [ 1135.597818][ T5880] dvb-usb: Artec T1 USB2.0 successfully initialized and connected. [ 1135.627210][ T5880] usb 5-1: USB disconnect, device number 53 [ 1135.725822][ T978] snd-usb-audio 1-1:0.2: probe with driver snd-usb-audio failed with error -22 [ 1136.199395][ T978] usb 1-1: USB disconnect, device number 62 [ 1136.235200][ T5880] dvb-usb: Artec T1 USB2.0 successfully deinitialized and disconnected. [ 1136.419211][T16411] udevd[16411]: error opening ATTR{/sys/devices/platform/dummy_hcd.0/usb1/1-1/1-1:0.2/sound/card3/controlC3/../uevent} for writing: No such file or directory [ 1136.526319][ T8718] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1136.553775][ T8718] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1136.648223][ T8722] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1136.663929][ T5880] usb 5-1: new high-speed USB device number 54 using dummy_hcd [ 1136.676545][ T8722] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1136.756169][ T5881] kernel write not supported for file /input/mouse0 (pid: 5881 comm: kworker/0:3) [ 1136.813746][ T978] usb 3-1: new high-speed USB device number 58 using dummy_hcd [ 1136.827283][ T5880] usb 5-1: New USB device found, idVendor=046d, idProduct=0870, bcdDevice=61.47 [ 1136.842683][ T5880] usb 5-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1136.863399][ T5880] usb 5-1: config 0 descriptor?? [ 1136.871859][T16960] netlink: 4 bytes leftover after parsing attributes in process `syz.1.3046'. [ 1136.893238][ T5880] gspca_main: STV06xx-2.14.0 probing 046d:0870 [ 1137.175554][ T978] usb 3-1: New USB device found, idVendor=20b7, idProduct=1540, bcdDevice=b7.5a [ 1137.188234][ T978] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1137.199892][T16966] IPv6: Can't replace route, no match found [ 1137.245293][ T978] usb 3-1: Product: syz [ 1137.249493][ T978] usb 3-1: Manufacturer: syz [ 1137.255126][ T978] usb 3-1: SerialNumber: syz [ 1137.270946][ T978] usb 3-1: config 0 descriptor?? [ 1137.320933][T16933] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 1137.333163][T16933] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 1137.797814][ T978] usb 3-1: Firmware version (0.0) predates our first public release. [ 1137.820375][T16971] usb usb8: usbfs: process 16971 (syz.0.3106) did not claim interface 0 before use [ 1138.462343][ T978] usb 3-1: Please update to version 0.2 or newer [ 1138.588353][ T5880] gspca_stv06xx: I2C: Read error writing address: -71 [ 1138.618800][ T5880] usb 5-1: USB disconnect, device number 54 [ 1138.837636][T16980] netlink: 28 bytes leftover after parsing attributes in process `syz.3.3110'. [ 1139.630169][ T5811] usb 3-1: USB disconnect, device number 58 [ 1139.949313][ T30] kauditd_printk_skb: 14 callbacks suppressed [ 1139.949333][ T30] audit: type=1400 audit(2000000003.980:511): lsm=SMACK fn=smk_ipv6_check action=denied subject="_" object="]-{" requested=w pid=17009 comm="syz.1.3121" daddr=::ffff:127.0.0.1 [ 1140.781314][T17027] input: syz1 as /devices/virtual/input/input33 [ 1140.792610][T10658] Bluetooth: hci4: unexpected cc 0x0c03 length: 249 > 1 [ 1140.803046][T10658] Bluetooth: hci4: unexpected cc 0x1003 length: 249 > 9 [ 1140.891996][T10658] Bluetooth: hci4: unexpected cc 0x1001 length: 249 > 9 [ 1140.901524][T10658] Bluetooth: hci4: unexpected cc 0x0c23 length: 249 > 4 [ 1140.909112][T10658] Bluetooth: hci4: unexpected cc 0x0c38 length: 249 > 2 [ 1141.029184][T17029] lo speed is unknown, defaulting to 1000 [ 1141.581815][T17029] chnl_net:caif_netlink_parms(): no params data found [ 1142.397246][T17029] bridge0: port 1(bridge_slave_0) entered blocking state [ 1142.447313][T17029] bridge0: port 1(bridge_slave_0) entered disabled state [ 1142.454710][T17029] bridge_slave_0: entered allmulticast mode [ 1142.462692][T17029] bridge_slave_0: entered promiscuous mode [ 1142.471785][T17029] bridge0: port 2(bridge_slave_1) entered blocking state [ 1142.479152][T17029] bridge0: port 2(bridge_slave_1) entered disabled state [ 1142.488643][T17029] bridge_slave_1: entered allmulticast mode [ 1142.497557][T17029] bridge_slave_1: entered promiscuous mode [ 1142.560677][T17029] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 1142.576967][T17029] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 1142.648434][T17029] team0: Port device team_slave_0 added [ 1142.659582][T17029] team0: Port device team_slave_1 added [ 1142.708380][T17029] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 1142.719283][T17029] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1142.745649][T17029] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 1142.761430][ T5919] usb 1-1: new high-speed USB device number 63 using dummy_hcd [ 1142.765344][T17029] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 1142.777269][T17029] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1142.814824][T17029] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 1142.825843][ T5811] usb 3-1: new high-speed USB device number 59 using dummy_hcd [ 1142.863470][T17029] hsr_slave_0: entered promiscuous mode [ 1142.871176][T17029] hsr_slave_1: entered promiscuous mode [ 1142.877781][T17029] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 1142.886035][T17029] Cannot create hsr debugfs directory [ 1142.945785][T10658] Bluetooth: hci4: command tx timeout [ 1142.965696][ T5919] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1142.978380][ T5919] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 1142.984480][ T5811] usb 3-1: Using ep0 maxpacket: 16 [ 1142.989158][ T5919] usb 1-1: New USB device found, idVendor=27b8, idProduct=01ed, bcdDevice= 0.00 [ 1143.002237][ T5811] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1143.009565][ T5919] usb 1-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1143.018180][ T5811] usb 3-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 1143.032597][ T5811] usb 3-1: New USB device found, idVendor=05ac, idProduct=8241, bcdDevice= 0.00 [ 1143.043846][ T24] usb 2-1: new high-speed USB device number 34 using dummy_hcd [ 1143.054346][ T5919] usb 1-1: config 0 descriptor?? [ 1143.057398][ T5811] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1143.073376][ T5811] usb 3-1: config 0 descriptor?? [ 1143.126463][T17029] netdevsim netdevsim4 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1143.205565][ T24] usb 2-1: Using ep0 maxpacket: 32 [ 1143.214387][ T24] usb 2-1: config 4 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1143.225593][ T24] usb 2-1: config 4 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 1143.239165][ T24] usb 2-1: New USB device found, idVendor=046d, idProduct=c314, bcdDevice= 0.40 [ 1143.248518][ T24] usb 2-1: New USB device strings: Mfr=255, Product=255, SerialNumber=0 [ 1143.256972][ T24] usb 2-1: Product: syz [ 1143.260596][T17029] netdevsim netdevsim4 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1143.261147][ T24] usb 2-1: Manufacturer: syz [ 1143.298263][ T24] hub 2-1:4.0: USB hub found [ 1143.318209][T17085] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 1143.344204][T17085] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 1143.396095][T17029] netdevsim netdevsim4 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1143.493204][ T5919] usbhid 1-1:0.0: can't add hid device: -71 [ 1143.513387][ T5919] usbhid 1-1:0.0: probe with driver usbhid failed with error -71 [ 1143.551119][ T5919] usb 1-1: USB disconnect, device number 63 [ 1143.580666][ T5811] appleir 0003:05AC:8241.0025: No inputs registered, leaving [ 1143.592124][ T24] hub 2-1:4.0: 4 ports detected [ 1143.597520][ T24] hub 2-1:4.0: insufficient power available to use all downstream ports [ 1143.608809][T17029] netdevsim netdevsim4 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1143.611506][ T5811] appleir 0003:05AC:8241.0025: hiddev0,hidraw0: USB HID v0.00 Device [HID 05ac:8241] on usb-dummy_hcd.2-1/input0 [ 1144.182680][ T24] hub 2-1:4.0: hub_hub_status failed (err = -71) [ 1144.189164][ T24] hub 2-1:4.0: config failed, can't get hub status (err -71) [ 1144.202968][ T978] usb 3-1: USB disconnect, device number 59 [ 1144.224617][ T24] usb 2-1: USB disconnect, device number 34 [ 1144.500011][T17098] netlink: 8 bytes leftover after parsing attributes in process `syz.0.3147'. [ 1144.905232][T17095] fido_id[17095]: Failed to open report descriptor at '/sys/devices/platform/dummy_hcd.2/usb3/report_descriptor': No such file or directory [ 1145.023748][T10658] Bluetooth: hci4: command tx timeout [ 1145.072895][T17029] netdevsim netdevsim4 netdevsim0: renamed from eth0 [ 1145.096836][T17029] netdevsim netdevsim4 netdevsim1: renamed from eth1 [ 1145.326042][T17029] netdevsim netdevsim4 netdevsim2: renamed from eth2 [ 1146.072524][T17106] hub 8-0:1.0: USB hub found [ 1146.080079][T17106] hub 8-0:1.0: 1 port detected [ 1146.195024][T17102] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1146.826967][T17029] netdevsim netdevsim4 netdevsim3: renamed from eth3 [ 1147.079022][T17029] 8021q: adding VLAN 0 to HW filter on device bond0 [ 1147.111101][T10658] Bluetooth: hci4: command tx timeout [ 1147.120293][T17029] 8021q: adding VLAN 0 to HW filter on device team0 [ 1147.149887][ T3577] bridge0: port 1(bridge_slave_0) entered blocking state [ 1147.157089][ T3577] bridge0: port 1(bridge_slave_0) entered forwarding state [ 1147.179555][ T3495] bridge0: port 2(bridge_slave_1) entered blocking state [ 1147.186759][ T3495] bridge0: port 2(bridge_slave_1) entered forwarding state [ 1147.334208][ T978] usb 4-1: new high-speed USB device number 51 using dummy_hcd [ 1147.431969][T17128] SET target dimension over the limit! [ 1147.937102][ T978] usb 4-1: config 0 interface 0 altsetting 251 endpoint 0x9 has invalid wMaxPacketSize 0 [ 1147.961095][ T978] usb 4-1: config 0 interface 0 has no altsetting 0 [ 1148.023915][ T978] usb 4-1: New USB device found, idVendor=045e, idProduct=0283, bcdDevice=99.0b [ 1148.043490][ T978] usb 4-1: New USB device strings: Mfr=1, Product=228, SerialNumber=2 [ 1148.067534][ T978] usb 4-1: Product: syz [ 1148.081891][ T978] usb 4-1: Manufacturer: syz [ 1148.087208][ T978] usb 4-1: SerialNumber: syz [ 1148.130494][ T978] usb 4-1: config 0 descriptor?? [ 1148.158431][T17138] sctp: [Deprecated]: syz.0.3157 (pid 17138) Use of struct sctp_assoc_value in delayed_ack socket option. [ 1148.158431][T17138] Use struct sctp_sack_info instead [ 1148.170913][ T978] usb 4-1: selecting invalid altsetting 0 [ 1148.954850][ T24] usb 2-1: new high-speed USB device number 35 using dummy_hcd [ 1149.203206][T10658] Bluetooth: hci4: command tx timeout [ 1149.668408][ T978] usb 4-1: USB disconnect, device number 51 [ 1149.697003][T17029] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 1149.810273][ T24] usb 2-1: New USB device found, idVendor=1a86, idProduct=7522, bcdDevice=35.36 [ 1149.885588][T16582] udevd[16582]: error opening ATTR{/sys/devices/platform/dummy_hcd.3/usb4/4-1/4-1:0.0/sound/card3/controlC3/../uevent} for writing: No such file or directory [ 1149.902484][ T24] usb 2-1: New USB device strings: Mfr=223, Product=2, SerialNumber=3 [ 1149.930337][ T24] usb 2-1: Product: syz [ 1149.943866][ T24] usb 2-1: Manufacturer: syz [ 1149.980471][ T24] usb 2-1: SerialNumber: syz [ 1150.004466][T17161] pimreg: entered allmulticast mode [ 1150.013024][ T24] usb 2-1: config 0 descriptor?? [ 1150.035722][ T24] ch341 2-1:0.0: ch341-uart converter detected [ 1150.038998][T17163] pimreg: left allmulticast mode [ 1150.572487][T17131] netlink: 'syz.1.3155': attribute type 1 has an invalid length. [ 1150.771054][T17131] netlink: 'syz.1.3155': attribute type 3 has an invalid length. [ 1150.959106][T17131] netlink: 224 bytes leftover after parsing attributes in process `syz.1.3155'. [ 1151.190874][ T24] usb 2-1: failed to send control message: -71 [ 1151.227794][ T24] ch341-uart ttyUSB0: probe with driver ch341-uart failed with error -71 [ 1151.312719][ T24] usb 2-1: USB disconnect, device number 35 [ 1151.352833][ T24] ch341 2-1:0.0: device disconnected [ 1151.512471][T17029] veth0_vlan: entered promiscuous mode [ 1151.546629][T17029] veth1_vlan: entered promiscuous mode [ 1151.587856][ T978] usb 3-1: new high-speed USB device number 60 using dummy_hcd [ 1151.628444][T17029] veth0_macvtap: entered promiscuous mode [ 1151.713154][T17029] veth1_macvtap: entered promiscuous mode [ 1152.172175][T17029] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 1152.187950][T17176] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1152.213207][T17029] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 1152.245352][T17029] netdevsim netdevsim4 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 1152.257864][T17029] netdevsim netdevsim4 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 1152.272522][T17029] netdevsim netdevsim4 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 1152.285911][T17029] netdevsim netdevsim4 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 1152.298546][ T978] usb 3-1: New USB device found, idVendor=09e1, idProduct=5121, bcdDevice=40.c1 [ 1152.315535][ T978] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1152.333733][ T978] usb 3-1: Product: syz [ 1152.338021][ T978] usb 3-1: Manufacturer: syz [ 1152.342628][ T978] usb 3-1: SerialNumber: syz [ 1152.406118][ T978] usb 3-1: config 0 descriptor?? [ 1152.444930][ T8720] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1152.467480][ T8720] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1152.590880][ T13] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1152.642612][ T13] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1153.066389][ T30] audit: type=1804 audit(2000000017.080:512): pid=17193 uid=0 auid=4294967295 ses=4294967295 subj=_ op=invalid_pcr cause=open_writers comm="syz.1.3167" name="/newroot/15/file0/file0" dev="ramfs" ino=51890 res=1 errno=0 [ 1153.145226][ T978] int51x1 3-1:0.0: probe with driver int51x1 failed with error -22 [ 1153.360426][ T24] usb 3-1: USB disconnect, device number 60 [ 1153.678294][T17206] netlink: 36 bytes leftover after parsing attributes in process `syz.4.3113'. [ 1153.760496][T17204] IPv6: RTM_NEWROUTE with no NLM_F_CREATE or NLM_F_REPLACE [ 1153.767810][T17204] IPv6: NLM_F_CREATE should be set when creating new route [ 1153.976157][ T5880] usb 1-1: new high-speed USB device number 64 using dummy_hcd [ 1154.187015][ T5880] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1154.243724][ T5880] usb 1-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 1154.302525][ T5880] usb 1-1: New USB device found, idVendor=256c, idProduct=006d, bcdDevice= 0.00 [ 1154.335542][ T5880] usb 1-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1154.380445][ T5880] usb 1-1: config 0 descriptor?? [ 1154.463449][T17218] netlink: 8 bytes leftover after parsing attributes in process `syz.1.3172'. [ 1154.673909][T17220] syzkaller0: entered promiscuous mode [ 1154.686269][T17220] syzkaller0: entered allmulticast mode [ 1155.089669][ T5826] Bluetooth: hci1: unexpected cc 0x0c03 length: 249 > 1 [ 1155.109305][ T5826] Bluetooth: hci1: unexpected cc 0x1003 length: 249 > 9 [ 1155.123731][ T5826] Bluetooth: hci1: unexpected cc 0x1001 length: 249 > 9 [ 1155.309019][ T5826] Bluetooth: hci1: unexpected cc 0x0c23 length: 249 > 4 [ 1155.322175][ T5826] Bluetooth: hci1: unexpected cc 0x0c38 length: 249 > 2 [ 1156.421812][ T5880] usb 1-1: string descriptor 0 read error: -71 [ 1156.429441][ T5880] uclogic 0003:256C:006D.0026: failed retrieving string descriptor #200: -71 [ 1156.443062][ T5880] uclogic 0003:256C:006D.0026: failed retrieving pen parameters: -71 [ 1156.451415][ T5880] uclogic 0003:256C:006D.0026: failed probing pen v2 parameters: -71 [ 1156.459626][ T5880] uclogic 0003:256C:006D.0026: failed probing parameters: -71 [ 1156.467551][ T5880] uclogic 0003:256C:006D.0026: probe with driver uclogic failed with error -71 [ 1156.480291][ T5880] usb 1-1: USB disconnect, device number 64 [ 1156.746124][ T30] audit: type=1400 audit(2000000020.800:513): lsm=SMACK fn=smk_ipv6_check action=denied subject="_" object="]-{" requested=w pid=17235 comm="syz.0.3176" [ 1157.300614][T17230] lo speed is unknown, defaulting to 1000 [ 1157.469224][T10658] Bluetooth: hci1: command tx timeout [ 1158.128570][T17238] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1159.503708][T10658] Bluetooth: hci1: command tx timeout [ 1160.144073][T17230] chnl_net:caif_netlink_parms(): no params data found [ 1160.180538][ T30] audit: type=1326 audit(2000000024.230:514): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1160.327141][ T30] audit: type=1326 audit(2000000024.230:515): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1160.806101][ T30] audit: type=1326 audit(2000000024.250:516): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=302 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1161.245193][T17266] hub 8-0:1.0: USB hub found [ 1161.251954][T17266] hub 8-0:1.0: 1 port detected [ 1161.411792][ T30] audit: type=1326 audit(2000000024.250:517): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1161.677945][ T30] audit: type=1326 audit(2000000024.250:518): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1161.701438][T10658] Bluetooth: hci1: command tx timeout [ 1161.701472][ T30] audit: type=1326 audit(2000000024.260:519): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=144 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1161.729558][ T30] audit: type=1326 audit(2000000024.260:520): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1161.975999][ T30] audit: type=1326 audit(2000000024.260:521): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1161.998266][ T30] audit: type=1326 audit(2000000024.260:522): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=6 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1162.020051][ T30] audit: type=1326 audit(2000000024.260:523): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17259 comm="syz.3.3183" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1162.232117][T17275] hub 8-0:1.0: USB hub found [ 1162.238197][T17275] hub 8-0:1.0: 1 port detected [ 1162.979407][T17230] bridge0: port 1(bridge_slave_0) entered blocking state [ 1162.999211][T17230] bridge0: port 1(bridge_slave_0) entered disabled state [ 1163.008873][T17230] bridge_slave_0: entered allmulticast mode [ 1163.030018][T17230] bridge_slave_0: entered promiscuous mode [ 1163.059213][T17230] bridge0: port 2(bridge_slave_1) entered blocking state [ 1163.073464][T17230] bridge0: port 2(bridge_slave_1) entered disabled state [ 1163.087608][T17230] bridge_slave_1: entered allmulticast mode [ 1163.096763][T17230] bridge_slave_1: entered promiscuous mode [ 1163.153818][ T5811] usb 2-1: new full-speed USB device number 36 using dummy_hcd [ 1163.525053][ T5811] usb 2-1: device descriptor read/64, error -71 [ 1163.528896][T17230] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 1163.540788][ T5919] usb 4-1: new high-speed USB device number 52 using dummy_hcd [ 1163.549299][T17296] xt_CHECKSUM: CHECKSUM should be avoided. If really needed, restrict with "-p udp" and only use in OUTPUT [ 1163.775587][T10658] Bluetooth: hci1: command tx timeout [ 1163.782038][T17230] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 1163.791783][ T5811] usb 2-1: new full-speed USB device number 37 using dummy_hcd [ 1163.865985][ T5919] usb 4-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1163.876995][ T5919] usb 4-1: config 0 interface 0 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 1163.913740][ T5919] usb 4-1: New USB device found, idVendor=256c, idProduct=006d, bcdDevice= 0.00 [ 1163.942603][T17230] team0: Port device team_slave_0 added [ 1163.949302][ T5919] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1163.965000][ T5811] usb 2-1: device descriptor read/64, error -71 [ 1163.998820][T17230] team0: Port device team_slave_1 added [ 1164.008797][ T5919] usb 4-1: config 0 descriptor?? [ 1164.158371][ T5811] usb usb2-port1: attempt power cycle [ 1164.188442][T17230] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 1164.201103][T17230] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1164.357125][T17303] hub 8-0:1.0: USB hub found [ 1164.363940][T17303] hub 8-0:1.0: 1 port detected [ 1164.512519][T17230] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 1165.030218][T17230] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 1165.037460][T17230] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1165.064116][T17230] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 1165.076373][ T5811] usb 2-1: new full-speed USB device number 38 using dummy_hcd [ 1165.117694][T17299] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1165.203717][ T5811] usb 2-1: device descriptor read/8, error -71 [ 1165.248054][T17230] hsr_slave_0: entered promiscuous mode [ 1165.255399][T17230] hsr_slave_1: entered promiscuous mode [ 1165.261664][T17230] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 1165.269616][T17230] Cannot create hsr debugfs directory [ 1165.533705][ T5811] usb 2-1: new full-speed USB device number 39 using dummy_hcd [ 1167.648119][ T5919] usb 4-1: string descriptor 0 read error: -71 [ 1167.709343][ T5811] usb 2-1: device descriptor read/8, error -71 [ 1168.049382][ T5919] uclogic 0003:256C:006D.0027: failed retrieving string descriptor #200: -71 [ 1168.118768][ T5919] uclogic 0003:256C:006D.0027: failed retrieving pen parameters: -71 [ 1168.166350][ T5919] uclogic 0003:256C:006D.0027: failed probing pen v2 parameters: -71 [ 1168.230682][ T5919] uclogic 0003:256C:006D.0027: failed probing parameters: -71 [ 1168.284172][ T5919] uclogic 0003:256C:006D.0027: probe with driver uclogic failed with error -71 [ 1168.398118][ T5919] usb 4-1: USB disconnect, device number 52 [ 1168.434080][ T5811] usb usb2-port1: unable to enumerate USB device [ 1168.481039][T17316] overlayfs: missing 'lowerdir' [ 1169.529462][T17230] netdevsim netdevsim2 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1169.563944][ T5919] usb 4-1: new high-speed USB device number 53 using dummy_hcd [ 1169.734760][ T5919] usb 4-1: Using ep0 maxpacket: 16 [ 1169.744383][T17230] netdevsim netdevsim2 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1169.765907][ T5919] usb 4-1: config 0 interface 0 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1169.794076][ T5919] usb 4-1: New USB device found, idVendor=04d8, idProduct=00dd, bcdDevice= 0.00 [ 1169.835610][ T5919] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1169.877911][ T5919] usb 4-1: config 0 descriptor?? [ 1169.955933][T17230] netdevsim netdevsim2 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1170.200031][T17340] Invalid logical block size (100663296) [ 1170.207821][T17230] netdevsim netdevsim2 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1170.298958][ T5919] mcp2221 0003:04D8:00DD.0028: USB HID v0.05 Device [HID 04d8:00dd] on usb-dummy_hcd.3-1/input0 [ 1171.303926][ T5919] usb 4-1: USB disconnect, device number 53 [ 1171.363521][T17346] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1171.516311][T17230] netdevsim netdevsim2 netdevsim0: renamed from eth0 [ 1171.557406][T17230] netdevsim netdevsim2 netdevsim1: renamed from eth1 [ 1171.579654][T17230] netdevsim netdevsim2 netdevsim2: renamed from eth2 [ 1171.619784][T17230] netdevsim netdevsim2 netdevsim3: renamed from eth3 [ 1172.536888][T17230] 8021q: adding VLAN 0 to HW filter on device bond0 [ 1172.610725][T17365] siw: device registration error -23 [ 1173.158961][T17230] 8021q: adding VLAN 0 to HW filter on device team0 [ 1173.298523][ T3495] bridge0: port 1(bridge_slave_0) entered blocking state [ 1173.305845][ T3495] bridge0: port 1(bridge_slave_0) entered forwarding state [ 1173.356345][ T3495] bridge0: port 2(bridge_slave_1) entered blocking state [ 1173.363470][ T3495] bridge0: port 2(bridge_slave_1) entered forwarding state [ 1173.731675][T17377] netlink: 8 bytes leftover after parsing attributes in process `syz.1.3211'. [ 1174.222732][T17230] hsr0: Slave A (hsr_slave_0) is not up; please bring it up to get a fully working HSR network [ 1174.238581][T17230] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network [ 1174.313836][T17377] platform regulatory.0: loading /lib/firmware/regulatory.db failed with error -12 [ 1174.323283][T17377] platform regulatory.0: Direct firmware load for regulatory.db failed with error -12 [ 1174.328601][ T30] kauditd_printk_skb: 22 callbacks suppressed [ 1174.328619][ T30] audit: type=1800 audit(2000000005.600:546): pid=17377 uid=0 auid=4294967295 ses=4294967295 subj=_ op=collect_data cause=failed comm="syz.1.3211" name="regulatory.db" dev="sda1" ino=448 res=0 errno=0 [ 1174.333996][T17377] platform regulatory.0: Falling back to sysfs fallback for: regulatory.db [ 1176.090257][T17398] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1176.102128][T17230] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 1176.148053][ T5919] usb 1-1: new high-speed USB device number 65 using dummy_hcd [ 1176.280004][T17230] veth0_vlan: entered promiscuous mode [ 1176.310982][T17230] veth1_vlan: entered promiscuous mode [ 1176.325621][ T5919] usb 1-1: config 0 has an invalid interface number: 1 but max is 0 [ 1176.360622][ T5919] usb 1-1: config 0 has no interface number 0 [ 1176.389456][ T5919] usb 1-1: config 0 interface 1 altsetting 0 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1176.404251][ T5919] usb 1-1: config 0 interface 1 altsetting 0 endpoint 0x81 has invalid wMaxPacketSize 0 [ 1176.414572][ T5919] usb 1-1: New USB device found, idVendor=04d9, idProduct=a055, bcdDevice= 0.18 [ 1176.425908][T17230] veth0_macvtap: entered promiscuous mode [ 1176.438314][T17230] veth1_macvtap: entered promiscuous mode [ 1176.444873][ T5919] usb 1-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1176.474414][ T5919] usb 1-1: config 0 descriptor?? [ 1176.485282][T17230] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 1176.516108][T17230] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 1176.536108][T17230] netdevsim netdevsim2 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 1176.546641][T17230] netdevsim netdevsim2 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 1176.556712][T17230] netdevsim netdevsim2 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 1176.565987][T17230] netdevsim netdevsim2 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 1176.825746][ T12] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1176.874948][ T12] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1176.931532][ T12] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1176.940601][ T12] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1177.042690][ T5919] input: HID 04d9:a055 as /devices/platform/dummy_hcd.0/usb1/1-1/1-1:0.1/0003:04D9:A055.0029/input/input34 [ 1177.124020][ T1297] ieee802154 phy1 wpan1: encryption failed: -22 [ 1177.964857][T17403] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 1178.048573][T17403] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 1178.243499][ T5919] holtek_kbd 0003:04D9:A055.0029: input,hidraw0: USB HID v0.00 Keyboard [HID 04d9:a055] on usb-dummy_hcd.0-1/input1 [ 1178.509659][ T5919] usb 1-1: USB disconnect, device number 65 [ 1179.048780][T17423] fido_id[17423]: Failed to open report descriptor at '/sys/devices/platform/dummy_hcd.0/usb1/1-1/report_descriptor': No such file or directory [ 1179.318580][T17430] netlink: 'syz.2.3225': attribute type 24 has an invalid length. [ 1179.853981][T17434] netlink: 28 bytes leftover after parsing attributes in process `syz.0.3227'. [ 1179.893810][T17434] netlink: 28 bytes leftover after parsing attributes in process `syz.0.3227'. [ 1180.935191][T17434] team0: entered promiscuous mode [ 1180.940323][T17434] team_slave_0: entered promiscuous mode [ 1180.989355][T17434] team_slave_1: entered promiscuous mode [ 1181.085708][T17434] bond0: entered promiscuous mode [ 1181.090930][T17434] bond_slave_0: entered promiscuous mode [ 1181.098300][T17434] bond_slave_1: entered promiscuous mode [ 1181.107017][T17434] 8021q: adding VLAN 0 to HW filter on device hsr1 [ 1182.354536][T17467] netlink: 104 bytes leftover after parsing attributes in process `syz.1.3237'. [ 1182.384131][ T5826] Bluetooth: hci0: command tx timeout [ 1184.477578][T17488] netlink: 'syz.0.3242': attribute type 29 has an invalid length. [ 1184.528660][T17488] netlink: 'syz.0.3242': attribute type 29 has an invalid length. [ 1184.596646][T17493] netlink: 'syz.0.3242': attribute type 29 has an invalid length. [ 1184.637280][T10658] Bluetooth: hci2: unexpected cc 0x0c03 length: 249 > 1 [ 1184.644018][T17488] netlink: 'syz.0.3242': attribute type 29 has an invalid length. [ 1184.648221][T10658] Bluetooth: hci2: unexpected cc 0x1003 length: 249 > 9 [ 1184.660598][T10658] Bluetooth: hci2: unexpected cc 0x1001 length: 249 > 9 [ 1184.668606][T10658] Bluetooth: hci2: unexpected cc 0x0c23 length: 249 > 4 [ 1184.676482][T10658] Bluetooth: hci2: unexpected cc 0x0c38 length: 249 > 2 [ 1184.949885][T17492] lo speed is unknown, defaulting to 1000 [ 1185.285446][T17503] FAULT_INJECTION: forcing a failure. [ 1185.285446][T17503] name fail_usercopy, interval 1, probability 0, space 0, times 0 [ 1185.350021][T17503] CPU: 0 UID: 0 PID: 17503 Comm: syz.3.3246 Not tainted 6.15.0-rc7-syzkaller #0 PREEMPT(full) [ 1185.350047][T17503] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 1185.350058][T17503] Call Trace: [ 1185.350066][T17503] [ 1185.350075][T17503] dump_stack_lvl+0x189/0x250 [ 1185.350101][T17503] ? __lock_acquire+0xaac/0xd20 [ 1185.350128][T17503] ? __pfx_dump_stack_lvl+0x10/0x10 [ 1185.350168][T17503] ? __pfx__printk+0x10/0x10 [ 1185.350197][T17503] ? __might_fault+0xb0/0x130 [ 1185.350237][T17503] should_fail_ex+0x414/0x560 [ 1185.350261][T17503] _copy_from_user+0x2d/0xb0 [ 1185.350288][T17503] __sys_bpf+0x1ed/0x860 [ 1185.350334][T17503] ? __pfx___sys_bpf+0x10/0x10 [ 1185.350370][T17503] ? ksys_write+0x1f0/0x250 [ 1185.350395][T17503] ? rcu_is_watching+0x15/0xb0 [ 1185.350433][T17503] __x64_sys_bpf+0x7c/0x90 [ 1185.350465][T17503] do_syscall_64+0xf6/0x210 [ 1185.350490][T17503] ? clear_bhb_loop+0x60/0xb0 [ 1185.350512][T17503] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 1185.350529][T17503] RIP: 0033:0x7fdc7618e969 [ 1185.350545][T17503] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 1185.350560][T17503] RSP: 002b:00007fdc77094038 EFLAGS: 00000246 ORIG_RAX: 0000000000000141 [ 1185.350624][T17503] RAX: ffffffffffffffda RBX: 00007fdc763b5fa0 RCX: 00007fdc7618e969 [ 1185.350640][T17503] RDX: 0000000000000020 RSI: 0000200000000300 RDI: 0000000000000004 [ 1185.350651][T17503] RBP: 00007fdc77094090 R08: 0000000000000000 R09: 0000000000000000 [ 1185.350662][T17503] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 1185.350673][T17503] R13: 0000000000000000 R14: 00007fdc763b5fa0 R15: 00007fff825a7d78 [ 1185.350700][T17503] [ 1186.783711][T10658] Bluetooth: hci2: command tx timeout [ 1187.351505][T17520] overlayfs: missing 'workdir' [ 1188.577522][T17521] bridge1: entered promiscuous mode [ 1188.582925][T17521] bridge1: entered allmulticast mode [ 1188.863708][T10658] Bluetooth: hci2: command tx timeout [ 1190.019713][T17492] chnl_net:caif_netlink_parms(): no params data found [ 1190.470554][T17542] netlink: 4 bytes leftover after parsing attributes in process `syz.3.3256'. [ 1190.557564][T17543] netlink: 28 bytes leftover after parsing attributes in process `syz.2.3254'. [ 1190.604000][T17546] netlink: 8 bytes leftover after parsing attributes in process `syz.2.3254'. [ 1190.900987][T17492] bridge0: port 1(bridge_slave_0) entered blocking state [ 1190.943864][T10658] Bluetooth: hci2: command tx timeout [ 1191.069361][T17492] bridge0: port 1(bridge_slave_0) entered disabled state [ 1191.087125][T17492] bridge_slave_0: entered allmulticast mode [ 1191.101659][T17492] bridge_slave_0: entered promiscuous mode [ 1191.624850][T17492] bridge0: port 2(bridge_slave_1) entered blocking state [ 1191.639480][T17492] bridge0: port 2(bridge_slave_1) entered disabled state [ 1191.653809][T17492] bridge_slave_1: entered allmulticast mode [ 1191.661356][T17492] bridge_slave_1: entered promiscuous mode [ 1192.711100][T17492] bond0: (slave bond_slave_0): Enslaving as an active interface with an up link [ 1192.871528][T17492] bond0: (slave bond_slave_1): Enslaving as an active interface with an up link [ 1193.063905][T10658] Bluetooth: hci2: command tx timeout [ 1193.400931][T17568] netlink: 'syz.0.3260': attribute type 10 has an invalid length. [ 1193.714259][T17568] team0: Device lo is loopback device. Loopback devices can't be added as a team port [ 1193.763750][T17568] A link change request failed with some changes committed already. Interface lo may have been left with an inconsistent configuration, please check. [ 1194.816683][T17492] team0: Port device team_slave_0 added [ 1194.840397][T17492] team0: Port device team_slave_1 added [ 1195.277793][T17492] batman_adv: batadv0: Adding interface: batadv_slave_0 [ 1195.308284][T17492] batman_adv: batadv0: The MTU of interface batadv_slave_0 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1195.463553][T17492] batman_adv: batadv0: Not using interface batadv_slave_0 (retrying later): interface not active [ 1195.561821][T17492] batman_adv: batadv0: Adding interface: batadv_slave_1 [ 1195.759669][T17600] sctp: [Deprecated]: syz.2.3267 (pid 17600) Use of struct sctp_assoc_value in delayed_ack socket option. [ 1195.759669][T17600] Use struct sctp_sack_info instead [ 1196.585155][ T24] usb 2-1: new high-speed USB device number 40 using dummy_hcd [ 1196.594882][T17492] batman_adv: batadv0: The MTU of interface batadv_slave_1 is too small (1500) to handle the transport of batman-adv packets. Packets going over this interface will be fragmented on layer2 which could impact the performance. Setting the MTU to 1560 would solve the problem. [ 1197.187624][T17492] batman_adv: batadv0: Not using interface batadv_slave_1 (retrying later): interface not active [ 1197.487639][ T24] usb 2-1: config 1 interface 0 altsetting 2 bulk endpoint 0x1 has invalid maxpacket 64 [ 1197.559389][ T24] usb 2-1: config 1 interface 0 altsetting 2 bulk endpoint 0x82 has invalid maxpacket 64 [ 1197.595558][T17614] netlink: 8 bytes leftover after parsing attributes in process `syz.0.3270'. [ 1197.610844][ T24] usb 2-1: config 1 interface 0 has no altsetting 0 [ 1197.631082][T17614] netlink: 'syz.0.3270': attribute type 9 has an invalid length. [ 1197.658661][ T24] usb 2-1: New USB device found, idVendor=0525, idProduct=a4a8, bcdDevice= 0.40 [ 1197.676259][T17492] hsr_slave_0: entered promiscuous mode [ 1197.691634][T17492] hsr_slave_1: entered promiscuous mode [ 1197.708217][T17492] debugfs: Directory 'hsr0' with parent 'hsr' already present! [ 1197.726078][T17492] Cannot create hsr debugfs directory [ 1197.740134][ T24] usb 2-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1197.774652][T17614] macvlan2: entered allmulticast mode [ 1197.788689][T17614] veth0_macvtap: entered allmulticast mode [ 1197.804965][ T24] usb 2-1: Product: syz [ 1197.826820][T17619] netlink: 60 bytes leftover after parsing attributes in process `syz.2.3271'. [ 1197.835952][ T24] usb 2-1: Manufacturer: 読घᨹ⇳둾呙å­ã¢‚緎ࢗꈪ⃺㕼⴮슑觾ä±â•¡ã¢ á¢ëŒŒäš‰è­á€…䙃愤圷ã°î¢‡ê¹çŒ½à²†à¥¨ìŸ•翶轴楧贲ꊸ൩뙩 [ 1197.872640][T17618] netlink: 60 bytes leftover after parsing attributes in process `syz.2.3271'. [ 1197.932957][ T24] usb 2-1: SerialNumber: syz [ 1198.003518][T17590] raw-gadget.0 gadget.1: fail, usb_ep_enable returned -22 [ 1198.152879][T17590] raw-gadget.0 gadget.1: fail, usb_ep_enable returned -22 [ 1198.394572][ T24] usblp 2-1:1.0: usblp0: USB Bidirectional printer dev 40 if 0 alt 2 proto 2 vid 0x0525 pid 0xA4A8 [ 1198.691400][ T24] usb 2-1: USB disconnect, device number 40 [ 1199.665590][ T24] usblp0: removed [ 1199.748975][T17641] vxcan0: tx drop: invalid sa for name 0x0000000000000400 [ 1200.874271][T17492] netdevsim netdevsim5 netdevsim0: renamed from eth0 [ 1200.928382][T17492] netdevsim netdevsim5 netdevsim1: renamed from eth1 [ 1201.038542][T17492] netdevsim netdevsim5 netdevsim2: renamed from eth2 [ 1201.706461][T17492] netdevsim netdevsim5 netdevsim3: renamed from eth3 [ 1201.823828][ T5919] usb 4-1: new high-speed USB device number 54 using dummy_hcd [ 1201.993661][ T5919] usb 4-1: Using ep0 maxpacket: 8 [ 1202.013072][ T5919] usb 4-1: New USB device found, idVendor=04a5, idProduct=3003, bcdDevice=3a.b2 [ 1202.040487][ T5919] usb 4-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1202.066553][ T5919] usb 4-1: Product: syz [ 1202.086575][ T5919] usb 4-1: Manufacturer: syz [ 1202.168299][ T5919] usb 4-1: SerialNumber: syz [ 1202.191623][ T5919] usb 4-1: config 0 descriptor?? [ 1202.328409][T17492] 8021q: adding VLAN 0 to HW filter on device bond0 [ 1202.430223][T17492] 8021q: adding VLAN 0 to HW filter on device team0 [ 1203.133796][ T53] bridge0: port 1(bridge_slave_0) entered blocking state [ 1203.141025][ T53] bridge0: port 1(bridge_slave_0) entered forwarding state [ 1203.156902][ T53] bridge0: port 2(bridge_slave_1) entered blocking state [ 1203.164106][ T53] bridge0: port 2(bridge_slave_1) entered forwarding state [ 1203.622794][ T5919] gspca_main: sunplus-2.14.0 probing 04a5:3003 [ 1203.669965][ T5919] gspca_sunplus: reg_w_riv err -71 [ 1203.718113][ T5919] sunplus 4-1:0.0: probe with driver sunplus failed with error -71 [ 1203.824065][ T5919] usb 4-1: USB disconnect, device number 54 [ 1203.969181][T17694] xt_CT: No such helper "snmp" [ 1204.189751][T17492] 8021q: adding VLAN 0 to HW filter on device batadv0 [ 1204.234122][ T5881] usb 1-1: new high-speed USB device number 66 using dummy_hcd [ 1204.397859][ T5919] usb 3-1: new high-speed USB device number 61 using dummy_hcd [ 1204.745396][ T5881] usb 1-1: config 0 has an invalid interface number: 199 but max is 1 [ 1204.755220][ T5881] usb 1-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 1204.783795][ T5881] usb 1-1: config 0 has no interface number 1 [ 1204.800582][ T5919] usb 3-1: config 3 has an invalid interface number: 56 but max is 0 [ 1204.816523][ T5881] usb 1-1: config 0 interface 199 altsetting 0 endpoint 0xA has invalid wMaxPacketSize 0 [ 1204.828331][ T5919] usb 3-1: config 3 has no interface number 0 [ 1204.850746][ T5919] usb 3-1: config 3 interface 56 has no altsetting 0 [ 1204.869329][ T5881] usb 1-1: config 0 interface 0 altsetting 0 has an invalid descriptor for endpoint zero, skipping [ 1204.882209][ T5919] usb 3-1: New USB device found, idVendor=03f0, idProduct=2101, bcdDevice=80.cc [ 1204.897216][ T5919] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1205.334135][ T5881] usb 1-1: New USB device found, idVendor=0002, idProduct=0000, bcdDevice= 0.00 [ 1205.343239][ T5881] usb 1-1: New USB device strings: Mfr=0, Product=0, SerialNumber=3 [ 1205.353832][ T5919] usb 3-1: Product: syz [ 1205.359106][ T5919] usb 3-1: Manufacturer: syz [ 1205.369260][ T5919] usb 3-1: SerialNumber: syz [ 1205.379375][ T5881] usb 1-1: SerialNumber: syz [ 1205.440594][ T5881] usb 1-1: config 0 descriptor?? [ 1205.448563][ T5881] usb 1-1: Found UVC 0.00 device (0002:0000) [ 1205.493157][ T5881] usb 1-1: No valid video chain found. [ 1205.541387][T17712] overlayfs: failed to resolve './file0': -2 [ 1205.622741][ T5919] safe_serial 3-1:3.56: safe_serial converter detected [ 1205.714668][ T5919] usb 3-1: safe_serial converter now attached to ttyUSB0 [ 1205.778285][ T5881] usb 1-1: USB disconnect, device number 66 [ 1205.797653][ T5919] usb 3-1: USB disconnect, device number 61 [ 1205.896411][ T5919] safe_serial ttyUSB0: safe_serial converter now disconnected from ttyUSB0 [ 1206.014880][ T5919] safe_serial 3-1:3.56: device disconnected [ 1208.755244][T17492] veth0_vlan: entered promiscuous mode [ 1208.810195][T17492] veth1_vlan: entered promiscuous mode [ 1209.020503][T17735] syzkaller0: entered promiscuous mode [ 1209.062710][T17735] syzkaller0: entered allmulticast mode [ 1209.903873][ T5826] Bluetooth: hci3: command 0x0406 tx timeout [ 1209.904012][T17750] 9pnet_fd: Insufficient options for proto=fd [ 1211.052431][ T30] audit: type=1400 audit(2000000000.680:547): lsm=SMACK fn=smk_ipv6_check action=denied subject="_" object="]-{" requested=w pid=17762 comm="syz.2.3302" daddr=::ffff:172.20.20.170 dest=20004 [ 1211.873663][ T24] usb 3-1: new full-speed USB device number 62 using dummy_hcd [ 1212.077883][ T24] usb 3-1: config 0 has an invalid interface number: 93 but max is 0 [ 1212.119831][ T24] usb 3-1: config 0 has no interface number 0 [ 1212.154414][ T24] usb 3-1: New USB device found, idVendor=10b8, idProduct=1bb4, bcdDevice=34.65 [ 1212.165392][ T24] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1212.173513][ T24] usb 3-1: Product: syz [ 1212.193306][ T24] usb 3-1: Manufacturer: syz [ 1212.198234][ T24] usb 3-1: SerialNumber: syz [ 1212.221417][ T24] usb 3-1: config 0 descriptor?? [ 1212.453741][ T24] dvb-usb: found a 'DiBcom TFE7090PVR reference design' in warm state. [ 1212.477385][ T24] dvb-usb: will use the device's hardware PID filter (table count: 32). [ 1212.516273][ T24] dvbdev: DVB: registering new adapter (DiBcom TFE7090PVR reference design) [ 1212.541434][ T24] usb 3-1: media controller created [ 1212.564161][ T24] dvbdev: dvb_create_media_entity: media entity 'dvb-demux' registered. [ 1212.750743][ T24] DVB: Unable to find symbol dib7000p_attach() [ 1212.783166][ T24] dvb-usb: no frontend was attached by 'DiBcom TFE7090PVR reference design' [ 1212.793388][ T24] dvb-usb: will use the device's hardware PID filter (table count: 32). [ 1212.802673][ T24] dvbdev: DVB: registering new adapter (DiBcom TFE7090PVR reference design) [ 1212.814002][ T24] usb 3-1: media controller created [ 1212.838699][ T24] dvbdev: dvb_create_media_entity: media entity 'dvb-demux' registered. [ 1212.863854][ T24] dib0700: the master dib7090 has to be initialized first [ 1212.873763][ T24] dvb-usb: no frontend was attached by 'DiBcom TFE7090PVR reference design' [ 1213.035495][ T24] rc_core: IR keymap rc-dib0700-rc5 not found [ 1213.042982][ T24] Registered IR keymap rc-empty [ 1213.104152][ T24] dvb-usb: could not initialize remote control. [ 1213.131104][ T24] dvb-usb: DiBcom TFE7090PVR reference design successfully initialized and connected. [ 1213.177258][ T24] usb 3-1: USB disconnect, device number 62 [ 1213.208057][ T24] dvb-usb: DiBcom TFE7090PVR reference design successfully deinitialized and disconnected. [ 1214.793446][ T5952] usb 3-1: new high-speed USB device number 63 using dummy_hcd [ 1215.013741][ T5952] usb 3-1: Using ep0 maxpacket: 16 [ 1215.069911][ T5952] usb 3-1: config 0 interface 0 altsetting 2 endpoint 0x81 has an invalid bInterval 0, changing to 7 [ 1215.113857][ T5952] usb 3-1: config 0 interface 0 altsetting 2 endpoint 0x81 has invalid wMaxPacketSize 0 [ 1215.164475][ T5952] usb 3-1: config 0 interface 0 has no altsetting 0 [ 1215.171199][ T5952] usb 3-1: New USB device found, idVendor=05ac, idProduct=0247, bcdDevice= 0.00 [ 1215.213657][ T5952] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1215.244003][ T5952] usb 3-1: config 0 descriptor?? [ 1215.672769][ T5952] apple 0003:05AC:0247.002A: unexpected long global item [ 1215.754272][ T5952] apple 0003:05AC:0247.002A: parse failed [ 1215.774006][ T5952] apple 0003:05AC:0247.002A: probe with driver apple failed with error -22 [ 1215.937711][T17779] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 1215.963787][T17779] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 1215.998593][T17779] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 1216.032468][T17779] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 1216.108300][ T5952] usb 3-1: USB disconnect, device number 63 [ 1218.644479][ T8722] bridge_slave_0: left allmulticast mode [ 1218.650368][ T8722] bridge_slave_0: left promiscuous mode [ 1218.681738][ T8722] bridge0: port 1(bridge_slave_0) entered disabled state [ 1218.690499][T17790] sctp: [Deprecated]: syz.3.3309 (pid 17790) Use of struct sctp_assoc_value in delayed_ack socket option. [ 1218.690499][T17790] Use struct sctp_sack_info instead [ 1219.578797][T17795] sctp: [Deprecated]: syz.0.3310 (pid 17795) Use of struct sctp_assoc_value in delayed_ack socket option. [ 1219.578797][T17795] Use struct sctp_sack_info instead [ 1221.355460][ T8722] bond0 (unregistering): left allmulticast mode [ 1221.373729][ T8722] bond_slave_0: left allmulticast mode [ 1221.379290][ T8722] bond_slave_1: left allmulticast mode [ 1221.414340][ T8722] bond0 (unregistering): left promiscuous mode [ 1221.424181][ T8722] bond_slave_0: left promiscuous mode [ 1221.429756][ T8722] bond_slave_1: left promiscuous mode [ 1221.505952][ T8722] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 1221.544630][ T8722] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 1221.584903][ T8722] bond0 (unregistering): Released all slaves [ 1221.625128][ T8722] bond1 (unregistering): Released all slaves [ 1221.692531][ T8722] bond2 (unregistering): Released all slaves [ 1222.059527][ T8722] bond3 (unregistering): Released all slaves [ 1222.429570][T17492] veth0_macvtap: entered promiscuous mode [ 1222.477343][T17813] input: syz1 as /devices/virtual/input/input36 [ 1222.515026][T17492] veth1_macvtap: entered promiscuous mode [ 1222.651490][T17492] batman_adv: batadv0: Interface activated: batadv_slave_0 [ 1222.741182][ T8722] IPVS: stopping backup sync thread 13714 ... [ 1222.768094][T17492] batman_adv: batadv0: Interface activated: batadv_slave_1 [ 1223.902454][T17818] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1224.208703][T17492] netdevsim netdevsim5 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0 [ 1224.303750][T17492] netdevsim netdevsim5 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0 [ 1224.332334][T17492] netdevsim netdevsim5 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0 [ 1224.361829][T17492] netdevsim netdevsim5 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0 [ 1224.689915][T17833] hub 8-0:1.0: USB hub found [ 1224.696460][T17833] hub 8-0:1.0: 1 port detected [ 1225.606367][ T30] audit: type=1326 audit(2000000000.070:548): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1225.959871][ T30] audit: type=1326 audit(2000000000.070:549): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1226.028881][ T30] audit: type=1326 audit(2000000000.070:550): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=302 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1226.194191][ T30] audit: type=1326 audit(2000000000.070:551): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1226.225309][T17845] sctp: [Deprecated]: syz.2.3323 (pid 17845) Use of struct sctp_assoc_value in delayed_ack socket option. [ 1226.225309][T17845] Use struct sctp_sack_info instead [ 1226.261696][ T30] audit: type=1326 audit(2000000000.070:552): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1226.341968][ T30] audit: type=1326 audit(2000000000.070:553): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=144 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1226.431076][ T30] audit: type=1326 audit(2000000000.070:554): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1227.033088][ T30] audit: type=1326 audit(2000000000.070:555): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1227.054968][ T30] audit: type=1326 audit(2000000000.070:556): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=6 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1227.091723][ T30] audit: type=1326 audit(2000000000.070:557): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=17834 comm="syz.1.3321" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1227.616837][T17853] hub 8-0:1.0: USB hub found [ 1227.621805][T17853] hub 8-0:1.0: 1 port detected [ 1227.754287][T17856] fuse: Bad value for 'group_id' [ 1227.759277][T17856] fuse: Bad value for 'group_id' [ 1227.768962][ T8722] mac80211_hwsim hwsim4 wlan0 (unregistering): left allmulticast mode [ 1228.030814][T17859] overlayfs: upper fs does not support tmpfile. [ 1228.353720][ T10] usb 2-1: new high-speed USB device number 41 using dummy_hcd [ 1228.510242][T17868] xt_CT: You must specify a L4 protocol and not use inversions on it [ 1228.755650][ T10] usb 2-1: config 0 has an invalid descriptor of length 0, skipping remainder of the config [ 1228.792283][ T10] usb 2-1: config 0 interface 0 has no altsetting 0 [ 1228.829384][ T10] usb 2-1: New USB device found, idVendor=10fd, idProduct=1513, bcdDevice=7e.ce [ 1228.853704][ T10] usb 2-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1228.871797][ T10] usb 2-1: Product: syz [ 1228.876306][ T10] usb 2-1: Manufacturer: syz [ 1228.880929][ T10] usb 2-1: SerialNumber: syz [ 1228.903147][ T8722] hsr_slave_0: left promiscuous mode [ 1229.084054][ T10] usb 2-1: config 0 descriptor?? [ 1229.097476][ T10] dvb-usb: found a 'MSI DIGI VOX mini II DVB-T USB2.0' in warm state. [ 1229.101836][ T8722] hsr_slave_1: left promiscuous mode [ 1229.628670][ T10] dvb-usb: will pass the complete MPEG2 transport stream to the software demuxer. [ 1229.650925][ T10] dvbdev: DVB: registering new adapter (MSI DIGI VOX mini II DVB-T USB2.0) [ 1229.665547][ T10] usb 2-1: media controller created [ 1229.706120][ T10] dvbdev: dvb_create_media_entity: media entity 'dvb-demux' registered. [ 1230.103956][ T8722] veth1_macvtap: left promiscuous mode [ 1230.315678][ T8722] veth0_macvtap: left promiscuous mode [ 1230.331620][ T8722] veth1_vlan: left promiscuous mode [ 1231.076325][T17893] Can't find a SQUASHFS superblock on nullb0 [ 1232.028234][ T10] DVB: Unable to find symbol tda10046_attach() [ 1232.068005][ T10] dvb-usb: no frontend was attached by 'MSI DIGI VOX mini II DVB-T USB2.0' [ 1232.093902][T17903] fuse: Bad value for 'group_id' [ 1232.102398][ T10] dvb-usb: MSI DIGI VOX mini II DVB-T USB2.0 successfully initialized and connected. [ 1232.120173][T17903] fuse: Bad value for 'group_id' [ 1232.148025][ T10] dvb_usb_m920x 2-1:0.0: probe with driver dvb_usb_m920x failed with error -71 [ 1232.187528][ T10] usb 2-1: USB disconnect, device number 41 [ 1234.661326][ T8722] team0 (unregistering): Port device team_slave_1 removed [ 1234.952534][ T8722] team0 (unregistering): Port device team_slave_0 removed [ 1235.014362][T17925] netlink: 8 bytes leftover after parsing attributes in process `syz.3.3341'. [ 1235.023380][T17925] netlink: 20 bytes leftover after parsing attributes in process `syz.3.3341'. [ 1235.783917][ T24] usb 1-1: new high-speed USB device number 67 using dummy_hcd [ 1236.013905][ T24] usb 1-1: Using ep0 maxpacket: 16 [ 1236.068492][ T24] usb 1-1: New USB device found, idVendor=06be, idProduct=a232, bcdDevice=33.f3 [ 1236.101184][ T24] usb 1-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1236.117625][ T24] usb 1-1: Product: syz [ 1236.121858][ T24] usb 1-1: Manufacturer: syz [ 1236.133798][ T24] usb 1-1: SerialNumber: syz [ 1236.144224][ T24] usb 1-1: config 0 descriptor?? [ 1236.283962][ T3467] wlan0: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1236.311109][ T3467] wlan0: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1236.459399][T17924] netlink: 60 bytes leftover after parsing attributes in process `syz.3.3341'. [ 1236.554945][T17925] geneve2: entered promiscuous mode [ 1236.579816][T17925] geneve2: entered allmulticast mode [ 1236.596677][ T24] dvb-usb: found a 'AME DTV-5100 USB2.0 DVB-T' in warm state. [ 1236.638286][ T24] dvb-usb: will pass the complete MPEG2 transport stream to the software demuxer. [ 1236.681278][T17932] netlink: 8 bytes leftover after parsing attributes in process `syz.2.3343'. [ 1236.684543][ T24] dvbdev: DVB: registering new adapter (AME DTV-5100 USB2.0 DVB-T) [ 1236.756798][ T24] usb 1-1: media controller created [ 1237.657107][ T24] dvbdev: dvb_create_media_entity: media entity 'dvb-demux' registered. [ 1237.689315][ T8720] wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 [ 1237.733954][ T8720] wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 [ 1237.919059][T17943] MTD: Attempt to mount non-MTD device "/dev/nullb0" [ 1237.927890][T17943] cramfs: wrong magic [ 1237.957541][T17943] netlink: 'syz.2.3345': attribute type 3 has an invalid length. [ 1237.965426][T17943] netlink: 'syz.2.3345': attribute type 1 has an invalid length. [ 1237.973291][T17943] netlink: 191172 bytes leftover after parsing attributes in process `syz.2.3345'. [ 1238.283779][ T24] zl10353_read_register: readreg error (reg=127, ret==0) [ 1238.883795][ T24] dvb-usb: no frontend was attached by 'AME DTV-5100 USB2.0 DVB-T' [ 1238.891775][ T24] dvb-usb: AME DTV-5100 USB2.0 DVB-T successfully initialized and connected. [ 1239.054788][ T10] usb 1-1: USB disconnect, device number 67 [ 1239.071607][ T1297] ieee802154 phy1 wpan1: encryption failed: -22 [ 1239.146300][ T10] dvb-usb: AME DTV-5100 USB2.0 DVB-T successfully deinitialized and disconnected. [ 1239.311244][T17947] syz.1.3346: attempt to access beyond end of device [ 1239.311244][T17947] loop1: rw=2048, sector=2, nr_sectors = 1 limit=0 [ 1239.324942][T17947] hfsplus: unable to find HFS+ superblock [ 1239.344510][T17947] MTD: Attempt to mount non-MTD device "/dev/nullb0" [ 1239.364242][T17947] cramfs: wrong magic [ 1239.406903][T17947] netlink: 'syz.1.3346': attribute type 3 has an invalid length. [ 1239.414821][T17947] netlink: 'syz.1.3346': attribute type 1 has an invalid length. [ 1239.422625][T17947] netlink: 191172 bytes leftover after parsing attributes in process `syz.1.3346'. [ 1239.569785][T17950] fuse: Bad value for 'group_id' [ 1239.584022][ T5878] usb 3-1: new high-speed USB device number 64 using dummy_hcd [ 1240.133865][ C1] raw-gadget.0 gadget.2: ignoring, device is not running [ 1240.150350][T17950] fuse: Bad value for 'group_id' [ 1240.285428][ T5878] usb 3-1: device descriptor read/64, error -32 [ 1240.678022][T17958] hub 8-0:1.0: USB hub found [ 1240.686337][T17958] hub 8-0:1.0: 1 port detected [ 1241.139839][ T5878] usb 3-1: new high-speed USB device number 65 using dummy_hcd [ 1241.140262][ T8722] IPVS: stop unused estimator thread 0... [ 1241.305202][T17959] iommufd_mock iommufd_mock0: Adding to iommu group 0 [ 1241.416816][T17959] netlink: 'syz.5.3231': attribute type 16 has an invalid length. [ 1241.425166][T17959] netlink: 'syz.5.3231': attribute type 3 has an invalid length. [ 1241.433062][T17959] netlink: 64066 bytes leftover after parsing attributes in process `syz.5.3231'. [ 1241.776891][ T5878] usb 3-1: Using ep0 maxpacket: 32 [ 1241.784201][ T5878] usb 3-1: New USB device found, idVendor=0b89, idProduct=0007, bcdDevice=ef.64 [ 1241.809020][ T5878] usb 3-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 1241.871351][ T5878] usb 3-1: config 0 descriptor?? [ 1241.945035][ T5878] as10x_usb: device has been detected [ 1242.007383][ T5878] dvbdev: DVB: registering new adapter (nBox DVB-T Dongle) [ 1242.351379][ T5878] usb 3-1: DVB: registering adapter 4 frontend 0 (nBox DVB-T Dongle)... [ 1242.449130][T17976] program syz.1.3353 is using a deprecated SCSI ioctl, please convert it to SG_IO [ 1242.529578][ T5878] as10x_usb: error during firmware upload part1 [ 1242.704458][ T5878] Registered device nBox DVB-T Dongle [ 1242.726465][ T5878] usb 3-1: USB disconnect, device number 65 [ 1242.867388][ T5878] Unregistered device nBox DVB-T Dongle [ 1242.879327][ T5878] as10x_usb: device has been disconnected [ 1242.971197][T17982] FAULT_INJECTION: forcing a failure. [ 1242.971197][T17982] name failslab, interval 1, probability 0, space 0, times 0 [ 1243.026048][T17982] CPU: 1 UID: 0 PID: 17982 Comm: syz.2.3355 Not tainted 6.15.0-rc7-syzkaller #0 PREEMPT(full) [ 1243.026076][T17982] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 1243.026087][T17982] Call Trace: [ 1243.026095][T17982] [ 1243.026104][T17982] dump_stack_lvl+0x189/0x250 [ 1243.026138][T17982] ? __pfx_dump_stack_lvl+0x10/0x10 [ 1243.026168][T17982] ? __pfx__printk+0x10/0x10 [ 1243.026201][T17982] ? __pfx___might_resched+0x10/0x10 [ 1243.026232][T17982] should_fail_ex+0x414/0x560 [ 1243.026256][T17982] should_failslab+0xa8/0x100 [ 1243.026275][T17982] __kmalloc_node_track_caller_noprof+0xcc/0x4e0 [ 1243.026304][T17982] ? smk_parse_smack+0x1b1/0x1f0 [ 1243.026329][T17982] ? lockdep_hardirqs_on+0x9c/0x150 [ 1243.026356][T17982] kstrndup+0x80/0x160 [ 1243.026380][T17982] smk_parse_smack+0x1b1/0x1f0 [ 1243.026410][T17982] smk_import_entry+0x20/0x1d0 [ 1243.026438][T17982] smk_fill_rule+0xb6/0x630 [ 1243.026459][T17982] smk_parse_long_rule+0xbc3/0xee0 [ 1243.026484][T17982] ? __pfx_smk_parse_long_rule+0x10/0x10 [ 1243.026515][T17982] smk_write_rules_list+0x239/0x370 [ 1243.026538][T17982] ? __pfx_smk_write_change_rule+0x10/0x10 [ 1243.026562][T17982] vfs_write+0x27e/0xa90 [ 1243.026595][T17982] ? __pfx_vfs_write+0x10/0x10 [ 1243.026621][T17982] ? __fget_files+0x2a/0x420 [ 1243.026642][T17982] ? __fget_files+0x3a0/0x420 [ 1243.026657][T17982] ? __fget_files+0x2a/0x420 [ 1243.026682][T17982] ksys_write+0x145/0x250 [ 1243.026705][T17982] ? rcu_is_watching+0x15/0xb0 [ 1243.026732][T17982] ? __pfx_ksys_write+0x10/0x10 [ 1243.026759][T17982] ? do_syscall_64+0xba/0x210 [ 1243.026786][T17982] do_syscall_64+0xf6/0x210 [ 1243.026810][T17982] ? clear_bhb_loop+0x60/0xb0 [ 1243.026832][T17982] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 1243.026850][T17982] RIP: 0033:0x7f3e4258e969 [ 1243.026865][T17982] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 1243.026881][T17982] RSP: 002b:00007f3e4345c038 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 1243.026918][T17982] RAX: ffffffffffffffda RBX: 00007f3e427b5fa0 RCX: 00007f3e4258e969 [ 1243.026932][T17982] RDX: 000000000000000d RSI: 0000200000000140 RDI: 0000000000000003 [ 1243.026943][T17982] RBP: 00007f3e4345c090 R08: 0000000000000000 R09: 0000000000000000 [ 1243.026955][T17982] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 [ 1243.026967][T17982] R13: 0000000000000000 R14: 00007f3e427b5fa0 R15: 00007ffe294f4ac8 [ 1243.026997][T17982] [ 1243.959295][T17989] mkiss: ax0: crc mode is auto. [ 1244.167017][T17997] input: syz0 as /devices/virtual/input/input37 [ 1244.325830][ T5878] usb 4-1: new high-speed USB device number 55 using dummy_hcd [ 1244.333875][ C1] raw-gadget.0 gadget.3: ignoring, device is not running [ 1244.463712][ T5878] usb 4-1: device descriptor read/64, error -32 [ 1244.494605][T17996] Falling back ldisc for ttyS3. [ 1244.714223][ T5878] usb 4-1: new high-speed USB device number 56 using dummy_hcd [ 1244.946297][ T5878] usb 4-1: config 1 has an invalid descriptor of length 0, skipping remainder of the config [ 1245.251927][ T5878] usb 4-1: config 1 has 1 interface, different from the descriptor's value: 3 [ 1245.449427][ T5878] usb 4-1: New USB device found, idVendor=08b7, idProduct=0000, bcdDevice= 0.00 [ 1245.535780][ T5878] usb 4-1: New USB device strings: Mfr=0, Product=0, SerialNumber=3 [ 1245.581987][ T5878] usb 4-1: SerialNumber: syz [ 1245.830932][ T5878] usb 4-1: 0:2 : does not exist [ 1245.837456][T17986] Bluetooth: hci0: command 0x0406 tx timeout [ 1245.967537][T18021] netlink: 28 bytes leftover after parsing attributes in process `syz.2.3365'. [ 1245.980067][T18021] netlink: 8 bytes leftover after parsing attributes in process `syz.2.3365'. [ 1246.564124][ T5878] usb 4-1: USB disconnect, device number 56 [ 1246.770431][T18027] netlink: 'syz.0.3367': attribute type 4 has an invalid length. [ 1246.933725][ T10] usb 1-1: new high-speed USB device number 68 using dummy_hcd [ 1248.005742][T17929] udevd[17929]: error opening ATTR{/sys/devices/platform/dummy_hcd.3/usb4/4-1/4-1:1.0/sound/card3/controlC3/../uevent} for writing: No such file or directory [ 1248.713818][ T5878] usb 6-1: new full-speed USB device number 2 using dummy_hcd [ 1248.915787][ T5878] usb 6-1: unable to get BOS descriptor or descriptor too short [ 1248.924184][ T5878] usb 6-1: not running at top speed; connect to a high speed hub [ 1248.940886][ T5878] usb 6-1: config 129 has an invalid interface number: 145 but max is 0 [ 1248.970005][ T5878] usb 6-1: config 129 has no interface number 0 [ 1248.993823][ T24] usb 3-1: new high-speed USB device number 66 using dummy_hcd [ 1249.012651][ T5878] usb 6-1: config 129 interface 145 has no altsetting 0 [ 1249.091749][ T5878] usb 6-1: New USB device found, idVendor=0644, idProduct=800f, bcdDevice= d.2f [ 1249.137905][ T5878] usb 6-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1249.173774][ T24] usb 3-1: Using ep0 maxpacket: 16 [ 1249.182497][ T5878] usb 6-1: Product: syz [ 1249.192557][ T24] usb 3-1: config 8 has an invalid interface number: 131 but max is 0 [ 1249.208334][ T5878] usb 6-1: Manufacturer: syz [ 1249.213978][ T24] usb 3-1: config 8 has no interface number 0 [ 1249.220529][ T5878] usb 6-1: SerialNumber: syz [ 1249.227369][ T24] usb 3-1: config 8 interface 131 altsetting 8 bulk endpoint 0x5 has invalid maxpacket 16 [ 1249.299724][ T24] usb 3-1: config 8 interface 131 has no altsetting 0 [ 1249.333191][ T24] usb 3-1: New USB device found, idVendor=0742, idProduct=2009, bcdDevice=3f.90 [ 1249.376119][ T24] usb 3-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1249.429334][ T24] usb 3-1: Product: syz [ 1249.454983][ T24] usb 3-1: Manufacturer: syz [ 1249.478956][T18040] UDC core: USB Raw Gadget: couldn't find an available UDC or it's busy [ 1249.501150][ T24] usb 3-1: SerialNumber: syz [ 1249.528954][T18040] misc raw-gadget: fail, usb_gadget_register_driver returned -16 [ 1249.562091][T18049] raw-gadget.1 gadget.2: fail, usb_ep_enable returned -22 [ 1249.864259][ T5878] usb 6-1: USB disconnect, device number 2 [ 1251.947049][T18069] netlink: 28 bytes leftover after parsing attributes in process `syz.5.3379'. [ 1252.714577][ T5880] usb 4-1: new high-speed USB device number 57 using dummy_hcd [ 1253.020913][ T5880] usb 4-1: config 0 has an invalid interface number: 235 but max is 0 [ 1253.058331][ T5880] usb 4-1: config 0 has no interface number 0 [ 1253.114321][ T5880] usb 4-1: config 0 interface 235 altsetting 0 bulk endpoint 0x87 has invalid maxpacket 1024 [ 1253.156164][ T5880] usb 4-1: New USB device found, idVendor=eb1a, idProduct=2800, bcdDevice=8c.f6 [ 1253.156422][T18071] netlink: 'syz.5.3380': attribute type 2 has an invalid length. [ 1253.201684][ T5880] usb 4-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1253.225330][ T5880] usb 4-1: Product: syz [ 1253.251623][ T5880] usb 4-1: Manufacturer: syz [ 1253.269123][ T5880] usb 4-1: SerialNumber: syz [ 1253.307882][ T5880] usb 4-1: config 0 descriptor?? [ 1253.338336][T18071] þ: entered promiscuous mode [ 1253.348565][T18065] raw-gadget.0 gadget.3: fail, usb_ep_enable returned -22 [ 1253.378761][ T24] HFC-S_USB 3-1:8.131: probe with driver HFC-S_USB failed with error -5 [ 1253.473211][ T24] usb 3-1: USB disconnect, device number 66 [ 1253.756139][ T5919] usb 4-1: USB disconnect, device number 57 [ 1253.803500][T18080] input: syz1 as /devices/virtual/input/input38 [ 1254.355614][T18093] hub 8-0:1.0: USB hub found [ 1254.361641][T18093] hub 8-0:1.0: 1 port detected [ 1254.805567][T18094] tipc: Started in network mode [ 1254.821811][T18094] tipc: Node identity 1ac4d2b3b489, cluster identity 4711 [ 1254.973284][T18094] tipc: Enabled bearer , priority 0 [ 1255.098003][T18085] tipc: Disabling bearer [ 1255.374298][T18106] netlink: 28 bytes leftover after parsing attributes in process `syz.1.3390'. [ 1256.575446][T18112] fuse: Bad value for 'rootmode' [ 1256.673646][ T5919] usb 4-1: new high-speed USB device number 58 using dummy_hcd [ 1257.403001][ T5919] usb 4-1: Using ep0 maxpacket: 32 [ 1257.555763][ T5919] usb 4-1: config 0 has an invalid interface number: 37 but max is 0 [ 1257.582305][ T5919] usb 4-1: config 0 has no interface number 0 [ 1257.897206][T18134] hub 8-0:1.0: USB hub found [ 1257.904354][T18134] hub 8-0:1.0: 1 port detected [ 1258.315918][T18135] MTD: Attempt to mount non-MTD device "/dev/nullb0" [ 1258.324925][T18135] cramfs: wrong magic [ 1258.339344][T18135] netlink: 'syz.2.3399': attribute type 3 has an invalid length. [ 1258.347571][T18135] netlink: 'syz.2.3399': attribute type 1 has an invalid length. [ 1258.355654][T18135] netlink: 191172 bytes leftover after parsing attributes in process `syz.2.3399'. [ 1258.765336][ T5919] usb 4-1: New USB device found, idVendor=3277, idProduct=0072, bcdDevice=a5.f4 [ 1258.790033][ T5919] usb 4-1: New USB device strings: Mfr=1, Product=2, SerialNumber=3 [ 1258.803622][ T5919] usb 4-1: Product: syz [ 1258.808014][ T5919] usb 4-1: Manufacturer: syz [ 1258.812622][ T5919] usb 4-1: SerialNumber: syz [ 1258.833801][ T5919] usb 4-1: config 0 descriptor?? [ 1258.847039][ T5919] usb 4-1: Found UVC 0.00 device syz (3277:0072) [ 1258.853416][ T5919] usb 4-1: No valid video chain found. [ 1259.513176][T18148] netlink: 28 bytes leftover after parsing attributes in process `syz.5.3405'. [ 1259.607133][T18149] netlink: 4 bytes leftover after parsing attributes in process `syz.1.3406'. [ 1260.576374][T18149] IPv6: Can't replace route, no match found [ 1260.714755][ T978] usb 4-1: USB disconnect, device number 58 [ 1260.781497][T18155] tipc: Started in network mode [ 1260.832983][T18155] tipc: Node identity 080211000001, cluster identity 4711 [ 1260.879233][T18155] tipc: Enabled bearer , priority 0 [ 1260.905783][T18157] mac80211_hwsim hwsim21 syzkaller0: entered promiscuous mode [ 1260.967119][T18157] mac80211_hwsim hwsim21 syzkaller0: entered allmulticast mode [ 1261.313170][ T978] usb 2-1: new full-speed USB device number 42 using dummy_hcd [ 1261.383941][T18168] netlink: 28 bytes leftover after parsing attributes in process `syz.3.3412'. [ 1261.393509][T18168] netlink: 8 bytes leftover after parsing attributes in process `syz.3.3412'. [ 1261.473867][ T978] usb 2-1: device descriptor read/64, error -71 [ 1261.751128][T18174] hub 8-0:1.0: USB hub found [ 1261.758081][T18174] hub 8-0:1.0: 1 port detected [ 1262.161977][ T5919] tipc: Node number set to 134418688 [ 1262.415216][ T978] usb 2-1: new full-speed USB device number 43 using dummy_hcd [ 1262.646206][ T978] usb 2-1: device descriptor read/64, error -71 [ 1263.294816][ T978] usb usb2-port1: attempt power cycle [ 1263.402123][T18185] SET target dimension over the limit! [ 1263.944330][ T978] usb 2-1: new full-speed USB device number 44 using dummy_hcd [ 1264.148709][T18195] hub 8-0:1.0: USB hub found [ 1264.155327][T18195] hub 8-0:1.0: 1 port detected [ 1264.675949][ T978] usb 2-1: device descriptor read/8, error -71 [ 1265.866812][T18202] netlink: 28 bytes leftover after parsing attributes in process `syz.2.3419'. [ 1266.373829][T17986] Bluetooth: hci4: command 0x0406 tx timeout [ 1270.079710][ T12] bond0 (unregistering): left promiscuous mode [ 1270.098773][ T12] bond0 (unregistering): Released all slaves [ 1270.120286][ T12] bond1 (unregistering): Released all slaves [ 1270.182398][T18214] tipc: Enabling of bearer rejected, failed to enable media [ 1270.204395][ T12] : left promiscuous mode [ 1270.321838][T18226] netlink: 28 bytes leftover after parsing attributes in process `syz.3.3426'. [ 1270.542309][ T12] tipc: Disabling bearer [ 1270.569456][ T12] tipc: Left network mode [ 1270.801784][T18251] fuse: Unknown parameter 'grou00000000000000000000' [ 1271.669170][ T30] kauditd_printk_skb: 56 callbacks suppressed [ 1271.669188][ T30] audit: type=1400 audit(2000000003.280:614): lsm=SMACK fn=smk_ipv6_check action=denied subject="_" object="]-{" requested=w pid=18254 comm="syz.5.3436" dest=20004 [ 1272.541848][T18264] netlink: 104 bytes leftover after parsing attributes in process `syz.1.3437'. [ 1272.577053][T18263] netlink: 28 bytes leftover after parsing attributes in process `syz.3.3435'. [ 1273.479471][T18282] netlink: 8 bytes leftover after parsing attributes in process `syz.3.3441'. [ 1273.647863][T18278] netlink: 28 bytes leftover after parsing attributes in process `syz.3.3441'. [ 1273.814287][T18292] netlink: 212376 bytes leftover after parsing attributes in process `syz.0.3445'. [ 1273.848061][T18292] netlink: 16 bytes leftover after parsing attributes in process `syz.0.3445'. [ 1274.561682][ T12] team0: left promiscuous mode [ 1274.869462][ T12] hsr_slave_0: left promiscuous mode [ 1274.918805][ T12] hsr_slave_1: left promiscuous mode [ 1274.934500][T18300] fuse: Unknown parameter 'grou00000000000000000000' [ 1275.501137][ T12] veth0_macvtap: left promiscuous mode [ 1275.529443][ T12] veth1_vlan: left promiscuous mode [ 1275.548724][ T12] veth0_vlan: left promiscuous mode [ 1276.642690][T18320] input: syz1 as /devices/virtual/input/input40 [ 1277.001708][T18325] netlink: 20 bytes leftover after parsing attributes in process `syz.5.3455'. [ 1277.010925][T18325] netlink: 20 bytes leftover after parsing attributes in process `syz.5.3455'. [ 1277.024957][T18325] netlink: 204 bytes leftover after parsing attributes in process `syz.5.3455'. [ 1279.530645][T18315] netlink: 28 bytes leftover after parsing attributes in process `syz.0.3451'. [ 1279.767645][T18308] syzkaller0: entered promiscuous mode [ 1279.793655][T18308] syzkaller0: entered allmulticast mode [ 1279.830374][T18329] lo speed is unknown, defaulting to 1000 [ 1280.009707][ T5880] usb 1-1: new high-speed USB device number 69 using dummy_hcd [ 1280.059313][T18345] fuse: Unknown parameter 'grou00000000000000000000' [ 1280.183674][ T5880] usb 1-1: device descriptor read/64, error -71 [ 1280.303112][T18348] xt_CT: You must specify a L4 protocol and not use inversions on it [ 1280.834404][ T5880] usb 1-1: new high-speed USB device number 70 using dummy_hcd [ 1280.894430][T18351] syz.3.3463: attempt to access beyond end of device [ 1280.894430][T18351] loop3: rw=2048, sector=2, nr_sectors = 1 limit=0 [ 1280.908521][T18351] hfsplus: unable to find HFS+ superblock [ 1280.920449][T18351] MTD: Attempt to mount non-MTD device "/dev/nullb0" [ 1280.931900][T18351] cramfs: wrong magic [ 1280.953369][T18351] netlink: 'syz.3.3463': attribute type 3 has an invalid length. [ 1280.961298][T18351] netlink: 'syz.3.3463': attribute type 1 has an invalid length. [ 1280.969232][T18351] netlink: 191172 bytes leftover after parsing attributes in process `syz.3.3463'. [ 1281.743845][ T5880] usb 1-1: device descriptor read/64, error -71 [ 1281.814086][T17986] Bluetooth: hci1: command 0x0406 tx timeout [ 1281.975515][ T5880] usb usb1-port1: attempt power cycle [ 1282.057263][T18356] sctp: [Deprecated]: syz.5.3464 (pid 18356) Use of struct sctp_assoc_value in delayed_ack socket option. [ 1282.057263][T18356] Use struct sctp_sack_info instead [ 1282.326682][ T5880] usb 1-1: new high-speed USB device number 71 using dummy_hcd [ 1282.864604][ T5880] usb 1-1: device descriptor read/8, error -71 [ 1284.816251][ T30] audit: type=1326 audit(2000000016.450:615): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1284.889400][ T30] audit: type=1326 audit(2000000016.450:616): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1285.079128][ T30] audit: type=1326 audit(2000000016.460:617): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=302 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1285.721214][ T30] audit: type=1326 audit(2000000016.460:618): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1285.743974][ T30] audit: type=1326 audit(2000000016.460:619): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1285.853691][ T30] audit: type=1326 audit(2000000016.500:620): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=144 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1285.903676][ T30] audit: type=1326 audit(2000000016.500:621): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1285.994587][ T30] audit: type=1326 audit(2000000016.500:622): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1286.028188][ T30] audit: type=1326 audit(2000000016.500:623): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=6 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1286.056673][ T30] audit: type=1326 audit(2000000016.500:624): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18371 comm="syz.3.3468" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fdc7618e969 code=0x7ffc0000 [ 1286.357752][T18378] FAULT_INJECTION: forcing a failure. [ 1286.357752][T18378] name fail_page_alloc, interval 1, probability 0, space 0, times 0 [ 1286.371708][T18378] CPU: 1 UID: 0 PID: 18378 Comm: syz.3.3470 Not tainted 6.15.0-rc7-syzkaller #0 PREEMPT(full) [ 1286.371726][T18378] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 1286.371734][T18378] Call Trace: [ 1286.371758][T18378] [ 1286.371764][T18378] dump_stack_lvl+0x189/0x250 [ 1286.371791][T18378] ? __pfx_dump_stack_lvl+0x10/0x10 [ 1286.371811][T18378] ? __pfx__printk+0x10/0x10 [ 1286.371834][T18378] ? fs_reclaim_acquire+0x7d/0x100 [ 1286.371857][T18378] should_fail_ex+0x414/0x560 [ 1286.371875][T18378] prepare_alloc_pages+0x213/0x610 [ 1286.371902][T18378] __alloc_frozen_pages_noprof+0x123/0x370 [ 1286.371923][T18378] ? __pfx___alloc_frozen_pages_noprof+0x10/0x10 [ 1286.371946][T18378] ? policy_nodemask+0x27c/0x720 [ 1286.371972][T18378] alloc_pages_mpol+0x232/0x4a0 [ 1286.371998][T18378] folio_alloc_mpol_noprof+0x39/0x70 [ 1286.372022][T18378] shmem_alloc_and_add_folio+0x447/0xf60 [ 1286.372042][T18378] ? filemap_get_entry+0xad/0x2f0 [ 1286.372064][T18378] ? filemap_get_entry+0xad/0x2f0 [ 1286.372084][T18378] ? filemap_get_entry+0xad/0x2f0 [ 1286.372110][T18378] ? shmem_huge_global_enabled+0x174/0x3a0 [ 1286.372131][T18378] ? __pfx_shmem_alloc_and_add_folio+0x10/0x10 [ 1286.372148][T18378] ? shmem_allowable_huge_orders+0x414/0x420 [ 1286.372173][T18378] shmem_get_folio_gfp+0x597/0x15f0 [ 1286.372208][T18378] shmem_fault+0x179/0x390 [ 1286.372228][T18378] __do_fault+0x135/0x390 [ 1286.372246][T18378] __handle_mm_fault+0x363e/0x5380 [ 1286.372281][T18378] ? __pfx___handle_mm_fault+0x10/0x10 [ 1286.372312][T18378] ? follow_page_pte+0x888/0x13c0 [ 1286.372332][T18378] handle_mm_fault+0x2d5/0x7f0 [ 1286.372353][T18378] ? vma_is_secretmem+0xd/0x50 [ 1286.372371][T18378] __get_user_pages+0x16f0/0x2a40 [ 1286.372399][T18378] ? mt_find+0x15c/0x5f0 [ 1286.372431][T18378] ? __pfx___get_user_pages+0x10/0x10 [ 1286.372459][T18378] populate_vma_page_range+0x26b/0x340 [ 1286.372483][T18378] ? __pfx_populate_vma_page_range+0x10/0x10 [ 1286.372502][T18378] ? apply_vma_lock_flags+0x344/0x3c0 [ 1286.372524][T18378] ? down_read+0x1ad/0x2e0 [ 1286.372546][T18378] __mm_populate+0x24c/0x380 [ 1286.372568][T18378] ? __pfx___mm_populate+0x10/0x10 [ 1286.372590][T18378] ? up_write+0x1c4/0x420 [ 1286.372608][T18378] do_mlock+0x625/0x740 [ 1286.372632][T18378] ? __pfx_do_mlock+0x10/0x10 [ 1286.372651][T18378] ? fput+0xa0/0xd0 [ 1286.372667][T18378] ? ksys_write+0x1f0/0x250 [ 1286.372696][T18378] __x64_sys_mlock+0x60/0x70 [ 1286.372714][T18378] do_syscall_64+0xf6/0x210 [ 1286.372734][T18378] ? clear_bhb_loop+0x60/0xb0 [ 1286.372751][T18378] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 1286.372765][T18378] RIP: 0033:0x7fdc7618e969 [ 1286.372778][T18378] Code: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 a8 ff ff ff f7 d8 64 89 01 48 [ 1286.372791][T18378] RSP: 002b:00007fdc77094038 EFLAGS: 00000246 ORIG_RAX: 0000000000000095 [ 1286.372807][T18378] RAX: ffffffffffffffda RBX: 00007fdc763b5fa0 RCX: 00007fdc7618e969 [ 1286.372818][T18378] RDX: 0000000000000000 RSI: 0000000000800000 RDI: 0000200000000000 [ 1286.372827][T18378] RBP: 00007fdc77094090 R08: 0000000000000000 R09: 0000000000000000 [ 1286.372837][T18378] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000002 [ 1286.372845][T18378] R13: 0000000000000000 R14: 00007fdc763b5fa0 R15: 00007fff825a7d78 [ 1286.372867][T18378] [ 1287.911922][T18393] netlink: 'syz.3.3473': attribute type 2 has an invalid length. [ 1288.081917][T18394] netlink: 32 bytes leftover after parsing attributes in process `syz.3.3473'. [ 1288.155584][T18391] syz.3.3473 (18391): drop_caches: 2 [ 1288.220253][T18391] syz.3.3473 (18391): drop_caches: 2 [ 1290.791200][T18405] hub 8-0:1.0: USB hub found [ 1290.797303][T18405] hub 8-0:1.0: 1 port detected [ 1292.086094][T18402] netlink: 28 bytes leftover after parsing attributes in process `syz.5.3475'. [ 1292.208972][T18415] hub 8-0:1.0: USB hub found [ 1292.215364][T18415] hub 8-0:1.0: 1 port detected [ 1294.626083][ T30] kauditd_printk_skb: 17 callbacks suppressed [ 1294.626100][ T30] audit: type=1326 audit(2000000003.040:642): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1294.802996][ T30] audit: type=1326 audit(2000000003.040:643): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1294.825712][ T30] audit: type=1326 audit(2000000003.040:644): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=302 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1294.870964][ T30] audit: type=1326 audit(2000000003.040:645): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1294.895853][T18435] sctp: [Deprecated]: syz.5.3485 (pid 18435) Use of struct sctp_assoc_value in delayed_ack socket option. [ 1294.895853][T18435] Use struct sctp_sack_info instead [ 1295.522665][ T30] audit: type=1326 audit(2000000003.040:646): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1295.549970][ T30] audit: type=1326 audit(2000000003.040:647): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=144 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1295.801885][ T30] audit: type=1326 audit(2000000003.040:648): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1295.990333][ T30] audit: type=1326 audit(2000000003.040:649): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1296.079157][ T30] audit: type=1326 audit(2000000003.040:650): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=39 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1296.208702][ T30] audit: type=1326 audit(2000000003.040:651): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18431 comm="syz.1.3484" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7fddd418e969 code=0x7ffc0000 [ 1297.322785][T18456] syz.3.3491: attempt to access beyond end of device [ 1297.322785][T18456] loop3: rw=2048, sector=2, nr_sectors = 1 limit=0 [ 1297.337001][T18456] hfsplus: unable to find HFS+ superblock [ 1297.347954][T18456] MTD: Attempt to mount non-MTD device "/dev/nullb0" [ 1297.356760][T18456] cramfs: wrong magic [ 1297.374612][T18456] netlink: 'syz.3.3491': attribute type 3 has an invalid length. [ 1297.382631][T18456] netlink: 'syz.3.3491': attribute type 1 has an invalid length. [ 1297.391139][T18456] netlink: 191172 bytes leftover after parsing attributes in process `syz.3.3491'. [ 1298.405715][T17986] Bluetooth: hci1: unexpected cc 0x0c03 length: 249 > 1 [ 1298.436402][T17986] Bluetooth: hci1: unexpected cc 0x1003 length: 249 > 9 [ 1298.445744][T17986] Bluetooth: hci1: unexpected cc 0x1001 length: 249 > 9 [ 1298.455141][T17986] Bluetooth: hci1: unexpected cc 0x0c23 length: 249 > 4 [ 1298.463060][T17986] Bluetooth: hci1: unexpected cc 0x0c38 length: 249 > 2 [ 1298.781098][ T8716] netdevsim netdevsim2 netdevsim3 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1299.767276][ C0] vcan0: j1939_tp_rxtimer: 0xffff888031983400: rx timeout, send abort [ 1299.777021][ C0] vcan0: j1939_xtp_rx_abort_one: 0xffff888031983400: 0x2f000: (3) A timeout occurred and this is the connection abort to close the session. [ 1299.991272][ T1297] ieee802154 phy1 wpan1: encryption failed: -22 [ 1300.150339][ T8716] netdevsim netdevsim2 netdevsim2 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1300.188670][T18460] lo speed is unknown, defaulting to 1000 [ 1300.282916][T18479] afs: Unknown parameter 'audit' [ 1300.371570][ T8716] netdevsim netdevsim2 netdevsim1 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1300.567622][T17986] Bluetooth: hci1: command tx timeout [ 1302.001633][ T8716] netdevsim netdevsim2 netdevsim0 (unregistering): unset [1, 0] type 2 family 0 port 6081 - 0 [ 1302.417546][T18495] netlink: 28 bytes leftover after parsing attributes in process `syz.0.3500'. [ 1302.623640][T17986] Bluetooth: hci1: command tx timeout [ 1303.017461][T18460] chnl_net:caif_netlink_parms(): no params data found [ 1303.057350][ T8716] bridge_slave_1: left allmulticast mode [ 1303.080345][ T8716] bridge_slave_1: left promiscuous mode [ 1303.124310][ T8716] bridge0: port 2(bridge_slave_1) entered disabled state [ 1303.288402][ T8716] bridge_slave_0: left allmulticast mode [ 1303.327395][ T8716] bridge_slave_0: left promiscuous mode [ 1303.925975][ T8716] bridge0: port 1(bridge_slave_0) entered disabled state [ 1303.945713][T18515] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1305.157235][T17986] Bluetooth: hci1: command tx timeout [ 1305.398753][T18535] netlink: 28 bytes leftover after parsing attributes in process `syz.1.3505'. [ 1305.929621][T18538] syz.0.3508: attempt to access beyond end of device [ 1305.929621][T18538] loop0: rw=2048, sector=2, nr_sectors = 1 limit=0 [ 1305.942789][T18538] hfsplus: unable to find HFS+ superblock [ 1305.949548][T18538] MTD: Attempt to mount non-MTD device "/dev/nullb0" [ 1305.956686][T18538] cramfs: wrong magic [ 1305.963071][T18538] netlink: 'syz.0.3508': attribute type 3 has an invalid length. [ 1305.970924][T18538] netlink: 'syz.0.3508': attribute type 1 has an invalid length. [ 1305.978716][T18538] netlink: 191172 bytes leftover after parsing attributes in process `syz.0.3508'. [ 1306.093764][T18543] hub 8-0:1.0: USB hub found [ 1306.100324][T18543] hub 8-0:1.0: 1 port detected [ 1307.192905][T17986] Bluetooth: hci2: command 0x0406 tx timeout [ 1307.199319][T17986] Bluetooth: hci1: command tx timeout [ 1309.370855][ T8716] bond0 (unregistering): (slave bond_slave_0): Releasing backup interface [ 1309.409579][ T8716] bond0 (unregistering): (slave bond_slave_1): Releasing backup interface [ 1309.437264][ T8716] bond0 (unregistering): Released all slaves [ 1309.501873][T18554] netlink: 28 bytes leftover after parsing attributes in process `syz.0.3511'. [ 1310.648207][T18564] fuse: Unknown parameter 'group_id00000000000000000000' [ 1310.691969][ T30] kauditd_printk_skb: 17 callbacks suppressed [ 1310.691981][ T30] audit: type=1326 audit(2000000005.380:669): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1311.457788][ T30] audit: type=1326 audit(2000000005.380:670): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1311.534766][ T30] audit: type=1326 audit(2000000005.430:671): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=302 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1311.745179][ T30] audit: type=1326 audit(2000000005.430:672): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1311.807749][ T30] audit: type=1326 audit(2000000005.430:673): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1311.846250][ T30] audit: type=1326 audit(2000000005.430:674): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=144 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1311.886605][ T30] audit: type=1326 audit(2000000005.430:675): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1312.358178][T18591] hub 8-0:1.0: USB hub found [ 1312.365421][T18591] hub 8-0:1.0: 1 port detected [ 1312.961751][ T31] INFO: task syz.4.3194:17309 blocked for more than 143 seconds. [ 1313.017863][ T31] Not tainted 6.15.0-rc7-syzkaller #0 [ 1313.043696][ T30] audit: type=1326 audit(2000000005.430:676): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1313.086915][T18578] mac80211_hwsim: wmediumd released netlink socket, switching to perfect channel medium [ 1313.553682][ T31] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs" disables this message. [ 1313.562475][ T31] task:syz.4.3194 state:D stack:27512 pid:17309 tgid:17305 ppid:17029 task_flags:0x400040 flags:0x00004004 [ 1313.713563][ T31] Call Trace: [ 1313.716592][ T30] audit: type=1326 audit(2000000005.430:677): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=39 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1313.716912][ T31] [ 1313.778753][ T30] audit: type=1326 audit(2000000005.430:678): auid=4294967295 uid=0 gid=0 ses=4294967295 subj=_ pid=18565 comm="syz.0.3515" exe="/root/syz-executor" sig=0 arch=c000003e syscall=202 compat=0 ip=0x7f003b18e969 code=0x7ffc0000 [ 1313.823567][ T31] __schedule+0x168f/0x4c70 [ 1313.832744][ T31] ? schedule+0x165/0x360 [ 1313.844565][ T31] ? __pfx___schedule+0x10/0x10 [ 1313.874006][ T31] ? schedule+0x91/0x360 [ 1313.907073][ T31] schedule+0x165/0x360 [ 1313.923566][ T31] schedule_preempt_disabled+0x13/0x30 [ 1313.949398][ T31] __mutex_lock+0x724/0xe80 [ 1313.963692][ T31] ? __mutex_lock+0x51b/0xe80 [ 1313.984836][ T31] ? blk_trace_remove+0x20/0x40 [ 1314.007163][ T31] ? __pfx___mutex_lock+0x10/0x10 [ 1314.049929][ T31] ? __pfx_tomoyo_path_number_perm+0x10/0x10 [ 1314.067682][ T31] ? rcu_is_watching+0x15/0xb0 [ 1314.079514][ T31] blk_trace_remove+0x20/0x40 [ 1314.092002][ T31] sg_ioctl+0x47b/0x2230 [ 1314.105395][ T31] ? smack_file_ioctl+0x24a/0x340 [ 1314.174069][ T31] ? __pfx_sg_ioctl+0x10/0x10 [ 1314.184099][ T31] ? security_file_ioctl+0x278/0x2d0 [ 1314.201071][ T31] ? bpf_lsm_file_ioctl+0x9/0x20 [ 1314.212776][ T31] ? __pfx_sg_ioctl+0x10/0x10 [ 1314.236995][ T31] __se_sys_ioctl+0xf9/0x170 [ 1314.270805][ T31] do_syscall_64+0xf6/0x210 [ 1314.295376][ T31] ? clear_bhb_loop+0x60/0xb0 [ 1314.319995][ T31] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 1314.333408][ T31] RIP: 0033:0x7fa0e098e969 [ 1314.338710][ T31] RSP: 002b:00007fa0de3b2038 EFLAGS: 00000246 ORIG_RAX: 0000000000000010 [ 1314.350560][ T31] RAX: ffffffffffffffda RBX: 00007fa0e0bb6240 RCX: 00007fa0e098e969 [ 1314.359267][ T31] RDX: 0000000020000000 RSI: 0000000000001276 RDI: 000000000000000b [ 1314.371720][ T31] RBP: 00007fa0e0a10ab1 R08: 0000000000000000 R09: 0000000000000000 [ 1314.383400][ T31] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 [ 1314.392360][ T31] R13: 0000000000000001 R14: 00007fa0e0bb6240 R15: 00007ffe40965a38 [ 1314.407925][ T31] [ 1314.415289][ T31] [ 1314.415289][ T31] Showing all locks held in the system: [ 1314.434018][ T31] 1 lock held by khungtaskd/31: [ 1314.447796][ T31] #0: ffffffff8df3dee0 (rcu_read_lock){....}-{1:3}, at: debug_show_all_locks+0x2e/0x180 [ 1314.511007][ T31] 3 locks held by kworker/u8:4/66: [ 1314.552202][ T31] #0: ffff88801a089148 ((wq_completion)events_unbound){+.+.}-{0:0}, at: process_scheduled_works+0x9b1/0x17a0 [ 1314.576992][ T31] #1: ffffc90001567c60 ((linkwatch_work).work){+.+.}-{0:0}, at: process_scheduled_works+0x9ec/0x17a0 [ 1314.620413][ T31] #2: ffffffff8f2e8588 (rtnl_mutex){+.+.}-{4:4}, at: linkwatch_event+0xe/0x60 [ 1314.654804][ T31] 3 locks held by kworker/u8:9/3495: [ 1314.660121][ T31] #0: ffff8880b88399d8 (&rq->__lock){-.-.}-{2:2}, at: raw_spin_rq_lock_nested+0xad/0x140 [ 1314.710902][ T31] #1: ffff8880b8923b08 (&per_cpu_ptr(group->pcpu, cpu)->seq){-.-.}-{0:0}, at: psi_task_switch+0x39e/0x6d0 [ 1314.753308][ T31] #2: ffff88804bf00768 (&rdev->wiphy.mtx){+.+.}-{4:4}, at: cfg80211_wiphy_work+0xc4/0x460 [ 1314.788370][ T31] 2 locks held by getty/5583: [ 1314.793088][ T31] #0: ffff8880307150a0 (&tty->ldisc_sem){++++}-{0:0}, at: tty_ldisc_ref_wait+0x25/0x70 [ 1314.803241][ T31] #1: ffffc900036e32f0 (&ldata->atomic_read_lock){+.+.}-{4:4}, at: n_tty_read+0x43e/0x1400 [ 1314.813737][ T31] 6 locks held by kworker/u8:14/8716: [ 1314.819135][ T31] #0: ffff88801aef3948 ((wq_completion)netns){+.+.}-{0:0}, at: process_scheduled_works+0x9b1/0x17a0 [ 1314.830635][ T31] #1: ffffc9000b86fc60 (net_cleanup_work){+.+.}-{0:0}, at: process_scheduled_works+0x9ec/0x17a0 [ 1314.842039][ T31] #2: ffffffff8f2dba50 (pernet_ops_rwsem){++++}-{4:4}, at: cleanup_net+0x145/0xbd0 [ 1314.851794][ T31] #3: ffffffff8f2e8588 (rtnl_mutex){+.+.}-{4:4}, at: wiphy_unregister+0x244/0xae0 [ 1314.861407][ T31] #4: ffff888069350768 (&rdev->wiphy.mtx){+.+.}-{4:4}, at: wiphy_unregister+0x24e/0xae0 [ 1314.871644][ T31] #5: ffffffff8df439b8 (rcu_state.exp_mutex){+.+.}-{4:4}, at: synchronize_rcu_expedited+0x2f4/0x730 [ 1314.882862][ T31] 3 locks held by syz.4.3194/17308: [ 1314.888298][ T31] 1 lock held by syz.4.3194/17309: [ 1314.893748][ T31] #0: ffff8880253ecd58 (&q->debugfs_mutex){+.+.}-{4:4}, at: blk_trace_remove+0x20/0x40 [ 1314.903789][ T31] 1 lock held by syz-executor/18460: [ 1314.909089][ T31] #0: ffffffff8f2e8588 (rtnl_mutex){+.+.}-{4:4}, at: rtnl_newlink+0x8db/0x1c70 [ 1314.919109][ T31] 2 locks held by syz.0.3519/18587: [ 1314.924690][ T31] #0: ffffffff8f2dba50 (pernet_ops_rwsem){++++}-{4:4}, at: copy_net_ns+0x317/0x590 [ 1314.935167][ T31] #1: ffffffff8f2e8588 (rtnl_mutex){+.+.}-{4:4}, at: register_netdevice_notifier_net+0x1a/0xa0 [ 1314.949478][ T31] 1 lock held by cmp/18603: [ 1314.962782][ T31] [ 1314.990876][T18460] bridge0: port 1(bridge_slave_0) entered blocking state [ 1315.008201][ T31] ============================================= [ 1315.008201][ T31] [ 1315.016801][T18460] bridge0: port 1(bridge_slave_0) entered disabled state [ 1315.039397][ T31] NMI backtrace for cpu 0 [ 1315.039411][ T31] CPU: 0 UID: 0 PID: 31 Comm: khungtaskd Not tainted 6.15.0-rc7-syzkaller #0 PREEMPT(full) [ 1315.039431][ T31] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 1315.039442][ T31] Call Trace: [ 1315.039450][ T31] [ 1315.039457][ T31] dump_stack_lvl+0x189/0x250 [ 1315.039484][ T31] ? __wake_up_klogd+0xd9/0x110 [ 1315.039506][ T31] ? __pfx_dump_stack_lvl+0x10/0x10 [ 1315.039529][ T31] ? __pfx__printk+0x10/0x10 [ 1315.039567][ T31] nmi_cpu_backtrace+0x39e/0x3d0 [ 1315.039590][ T31] ? __pfx_nmi_cpu_backtrace+0x10/0x10 [ 1315.039617][ T31] ? _printk+0xcf/0x120 [ 1315.039647][ T31] ? __pfx__printk+0x10/0x10 [ 1315.039676][ T31] ? __pfx_nmi_raise_cpu_backtrace+0x10/0x10 [ 1315.039696][ T31] nmi_trigger_cpumask_backtrace+0x17a/0x300 [ 1315.039717][ T31] watchdog+0xfee/0x1030 [ 1315.039740][ T31] ? watchdog+0x1de/0x1030 [ 1315.039769][ T31] kthread+0x711/0x8a0 [ 1315.039791][ T31] ? __pfx_watchdog+0x10/0x10 [ 1315.039811][ T31] ? __pfx_kthread+0x10/0x10 [ 1315.039832][ T31] ? __pfx_kthread+0x10/0x10 [ 1315.039851][ T31] ? _raw_spin_unlock_irq+0x23/0x50 [ 1315.039871][ T31] ? lockdep_hardirqs_on+0x9c/0x150 [ 1315.039893][ T31] ? __pfx_kthread+0x10/0x10 [ 1315.039911][ T31] ret_from_fork+0x4b/0x80 [ 1315.039927][ T31] ? __pfx_kthread+0x10/0x10 [ 1315.039947][ T31] ret_from_fork_asm+0x1a/0x30 [ 1315.039986][ T31] [ 1315.039993][ T31] Sending NMI from CPU 0 to CPUs 1: [ 1315.163880][T18460] bridge_slave_0: entered allmulticast mode [ 1315.164744][ C1] NMI backtrace for cpu 1 [ 1315.164758][ C1] CPU: 1 UID: 0 PID: 18460 Comm: syz-executor Not tainted 6.15.0-rc7-syzkaller #0 PREEMPT(full) [ 1315.164777][ C1] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 1315.164786][ C1] RIP: 0010:io_serial_out+0x7c/0xc0 [ 1315.164810][ C1] Code: e7 88 fc 44 89 f9 d3 e5 49 83 c6 40 4c 89 f0 48 c1 e8 03 42 80 3c 20 00 74 08 4c 89 f7 e8 bc bb e8 fc 41 03 2e 89 d8 89 ea ee <5b> 41 5c 41 5e 41 5f 5d c3 cc cc cc cc cc 44 89 f9 80 e1 07 38 c1 [ 1315.164829][ C1] RSP: 0018:ffffc9000361e650 EFLAGS: 00000002 [ 1315.164843][ C1] RAX: 0000000000000031 RBX: 0000000000000031 RCX: 0000000000000000 [ 1315.164853][ C1] RDX: 00000000000003f8 RSI: 0000000000000000 RDI: 0000000000000020 [ 1315.164862][ C1] RBP: 00000000000003f8 R08: ffff888024518237 R09: 1ffff110048a3046 [ 1315.164873][ C1] R10: dffffc0000000000 R11: ffffffff85370970 R12: dffffc0000000000 [ 1315.164884][ C1] R13: ffffffff9981cc43 R14: ffffffff99b21a00 R15: 0000000000000000 [ 1315.164894][ C1] FS: 0000555586b9f500(0000) GS:ffff8881261f6000(0000) knlGS:0000000000000000 [ 1315.164907][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1315.164917][ C1] CR2: 0000555559fe35c8 CR3: 00000001e57ea000 CR4: 00000000003526f0 [ 1315.164930][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1315.164939][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 1315.164948][ C1] Call Trace: [ 1315.164955][ C1] [ 1315.164963][ C1] serial8250_console_write+0x140d/0x1ba0 [ 1315.164990][ C1] ? __pfx_serial8250_console_write+0x10/0x10 [ 1315.165009][ C1] ? console_flush_all+0x13a/0xc40 [ 1315.165028][ C1] ? console_flush_all+0x13a/0xc40 [ 1315.165046][ C1] ? do_raw_spin_unlock+0x122/0x240 [ 1315.165062][ C1] ? console_flush_all+0x13a/0xc40 [ 1315.165075][ C1] ? console_flush_all+0x13a/0xc40 [ 1315.165091][ C1] console_flush_all+0x728/0xc40 [ 1315.165119][ C1] ? console_flush_all+0x13a/0xc40 [ 1315.165137][ C1] ? __pfx_console_flush_all+0x10/0x10 [ 1315.165157][ C1] ? is_printk_cpu_sync_owner+0x32/0x40 [ 1315.165176][ C1] console_unlock+0xc4/0x270 [ 1315.165190][ C1] ? __pfx_console_unlock+0x10/0x10 [ 1315.165211][ C1] ? vprintk_emit+0x360/0x7a0 [ 1315.165224][ C1] ? vprintk_emit+0x587/0x7a0 [ 1315.165237][ C1] ? vprintk_emit+0x444/0x7a0 [ 1315.165248][ C1] ? vprintk_emit+0x444/0x7a0 [ 1315.165261][ C1] vprintk_emit+0x5b7/0x7a0 [ 1315.165273][ C1] ? vprintk_emit+0x444/0x7a0 [ 1315.165286][ C1] ? __pfx_vprintk_emit+0x10/0x10 [ 1315.165300][ C1] ? __lock_acquire+0xaac/0xd20 [ 1315.165321][ C1] ? __lock_acquire+0xaac/0xd20 [ 1315.165343][ C1] _printk+0xcf/0x120 [ 1315.165369][ C1] ? __pfx__printk+0x10/0x10 [ 1315.165392][ C1] ? __netdev_printk+0x365/0x4d0 [ 1315.165409][ C1] netdev_info+0x10a/0x160 [ 1315.165424][ C1] ? __pfx_ib_device_get_by_netdev+0x10/0x10 [ 1315.165438][ C1] ? hsr_netdev_notify+0x2a0/0xb60 [ 1315.165462][ C1] ? __pfx_netdev_info+0x10/0x10 [ 1315.165479][ C1] ? ip6_route_dev_notify+0x9a/0x5b0 [ 1315.165495][ C1] ? notifier_call_chain+0x3bf/0x3e0 [ 1315.165512][ C1] netif_set_allmulti+0x1b8/0x380 [ 1315.165534][ C1] dev_set_allmulti+0x12b/0x260 [ 1315.165554][ C1] br_add_if+0x313/0xec0 [ 1315.165569][ C1] ? finish_task_switch+0x266/0x950 [ 1315.165592][ C1] do_set_master+0x533/0x6d0 [ 1315.165614][ C1] do_setlink+0xd47/0x40d0 [ 1315.165638][ C1] ? __pfx_do_setlink+0x10/0x10 [ 1315.165655][ C1] ? do_raw_spin_lock+0x121/0x290 [ 1315.165676][ C1] ? lockdep_hardirqs_on+0x9c/0x150 [ 1315.165694][ C1] ? _raw_spin_unlock_irqrestore+0xad/0x110 [ 1315.165711][ C1] ? __pfx__raw_spin_unlock_irqrestore+0x10/0x10 [ 1315.165730][ C1] ? rcu_is_watching+0x15/0xb0 [ 1315.165753][ C1] ? __mutex_lock+0xa6d/0xe80 [ 1315.165771][ C1] ? __mutex_lock+0x51b/0xe80 [ 1315.165792][ C1] ? rtnl_newlink+0x8db/0x1c70 [ 1315.165810][ C1] ? __pfx___mutex_lock+0x10/0x10 [ 1315.165832][ C1] ? ns_capable+0x8a/0xf0 [ 1315.165855][ C1] ? rtnl_link_get_net_capable+0x16a/0x350 [ 1315.165875][ C1] rtnl_newlink+0x160b/0x1c70 [ 1315.165897][ C1] ? __pfx_rtnl_newlink+0x10/0x10 [ 1315.165917][ C1] ? __lock_acquire+0xaac/0xd20 [ 1315.165938][ C1] ? __lock_acquire+0xaac/0xd20 [ 1315.165959][ C1] ? __lock_acquire+0xaac/0xd20 [ 1315.165984][ C1] ? __lock_acquire+0xaac/0xd20 [ 1315.166010][ C1] ? is_bpf_text_address+0x26/0x2b0 [ 1315.166032][ C1] ? is_bpf_text_address+0x292/0x2b0 [ 1315.166051][ C1] ? is_bpf_text_address+0x26/0x2b0 [ 1315.166071][ C1] ? kernel_text_address+0xa5/0xe0 [ 1315.166090][ C1] ? __kernel_text_address+0xd/0x40 [ 1315.166114][ C1] ? __lock_acquire+0xaac/0xd20 [ 1315.166143][ C1] ? __pfx_rtnl_newlink+0x10/0x10 [ 1315.166159][ C1] rtnetlink_rcv_msg+0x7cf/0xb70 [ 1315.166175][ C1] ? kasan_save_track+0x4f/0x80 [ 1315.166196][ C1] ? rtnetlink_rcv_msg+0x1ab/0xb70 [ 1315.166211][ C1] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 1315.166228][ C1] ? __lock_acquire+0xaac/0xd20 [ 1315.166252][ C1] netlink_rcv_skb+0x21c/0x490 [ 1315.166269][ C1] ? __pfx_rtnetlink_rcv_msg+0x10/0x10 [ 1315.166286][ C1] ? __pfx_netlink_rcv_skb+0x10/0x10 [ 1315.166311][ C1] ? netlink_deliver_tap+0x2e/0x1b0 [ 1315.166327][ C1] ? netlink_deliver_tap+0x2e/0x1b0 [ 1315.166345][ C1] netlink_unicast+0x758/0x8d0 [ 1315.166366][ C1] netlink_sendmsg+0x805/0xb30 [ 1315.166387][ C1] ? __pfx_netlink_sendmsg+0x10/0x10 [ 1315.166408][ C1] ? bpf_lsm_socket_sendmsg+0x9/0x20 [ 1315.166424][ C1] ? __pfx_netlink_sendmsg+0x10/0x10 [ 1315.166441][ C1] __sock_sendmsg+0x219/0x270 [ 1315.166457][ C1] __sys_sendto+0x3bd/0x520 [ 1315.166476][ C1] ? __pfx___sys_sendto+0x10/0x10 [ 1315.166500][ C1] ? fput_close_sync+0x119/0x200 [ 1315.166521][ C1] ? dnotify_flush+0x1db/0x5e0 [ 1315.166536][ C1] ? __pfx_fput_close_sync+0x10/0x10 [ 1315.166555][ C1] __x64_sys_sendto+0xde/0x100 [ 1315.166574][ C1] do_syscall_64+0xf6/0x210 [ 1315.166594][ C1] ? clear_bhb_loop+0x60/0xb0 [ 1315.166611][ C1] entry_SYSCALL_64_after_hwframe+0x77/0x7f [ 1315.166625][ C1] RIP: 0033:0x7fcc9a1907fc [ 1315.166638][ C1] Code: 2a 5f 02 00 44 8b 4c 24 2c 4c 8b 44 24 20 89 c5 44 8b 54 24 28 48 8b 54 24 18 b8 2c 00 00 00 48 8b 74 24 10 8b 7c 24 08 0f 05 <48> 3d 00 f0 ff ff 77 34 89 ef 48 89 44 24 08 e8 70 5f 02 00 48 8b [ 1315.166650][ C1] RSP: 002b:00007ffeae62dc00 EFLAGS: 00000293 ORIG_RAX: 000000000000002c [ 1315.166665][ C1] RAX: ffffffffffffffda RBX: 00007fcc9aee4620 RCX: 00007fcc9a1907fc [ 1315.166676][ C1] RDX: 0000000000000028 RSI: 00007fcc9aee4670 RDI: 0000000000000003 [ 1315.166686][ C1] RBP: 0000000000000000 R08: 00007ffeae62dc54 R09: 000000000000000c [ 1315.166695][ C1] R10: 0000000000000000 R11: 0000000000000293 R12: 0000000000000003 [ 1315.166704][ C1] R13: 0000000000000000 R14: 00007fcc9aee4670 R15: 0000000000000000 [ 1315.166721][ C1] [ 1315.196271][ T31] Kernel panic - not syncing: hung_task: blocked tasks [ 1315.196290][ T31] CPU: 0 UID: 0 PID: 31 Comm: khungtaskd Not tainted 6.15.0-rc7-syzkaller #0 PREEMPT(full) [ 1315.196312][ T31] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 05/07/2025 [ 1315.196324][ T31] Call Trace: [ 1315.196333][ T31] [ 1315.196342][ T31] dump_stack_lvl+0x99/0x250 [ 1315.196380][ T31] ? __asan_memcpy+0x40/0x70 [ 1315.196406][ T31] ? __pfx_dump_stack_lvl+0x10/0x10 [ 1315.196431][ T31] ? __pfx__printk+0x10/0x10 [ 1315.196472][ T31] panic+0x2db/0x790 [ 1315.196502][ T31] ? __pfx_panic+0x10/0x10 [ 1315.196524][ T31] ? tick_nohz_tick_stopped+0x86/0xb0 [ 1315.196559][ T31] ? preempt_schedule_thunk+0x16/0x30 [ 1315.196580][ T31] ? nmi_trigger_cpumask_backtrace+0x2b6/0x300 [ 1315.196608][ T31] watchdog+0x102d/0x1030 [ 1315.196633][ T31] ? watchdog+0x1de/0x1030 [ 1315.196663][ T31] kthread+0x711/0x8a0 [ 1315.196689][ T31] ? __pfx_watchdog+0x10/0x10 [ 1315.196711][ T31] ? __pfx_kthread+0x10/0x10 [ 1315.196734][ T31] ? __pfx_kthread+0x10/0x10 [ 1315.196755][ T31] ? _raw_spin_unlock_irq+0x23/0x50 [ 1315.196776][ T31] ? lockdep_hardirqs_on+0x9c/0x150 [ 1315.196800][ T31] ? __pfx_kthread+0x10/0x10 [ 1315.196821][ T31] ret_from_fork+0x4b/0x80 [ 1315.196838][ T31] ? __pfx_kthread+0x10/0x10 [ 1315.196860][ T31] ret_from_fork_asm+0x1a/0x30 [ 1315.196902][ T31] [ 1315.199291][ T31] Kernel Offset: disabled