* [Qestion] Hit a WARN_ON_ONCE in try_to_unmap_one when runing syzkaller
@ 2019-03-12 16:03 zhong jiang
2019-03-14 6:27 ` Naoya Horiguchi
0 siblings, 1 reply; 5+ messages in thread
From: zhong jiang @ 2019-03-12 16:03 UTC (permalink / raw)
To: Minchan Kim, Michal Hocko, Vlastimil Babka, Naoya Horiguchi,
linux-arm-kernel@lists.infradead.org
Cc: Linux Memory Management List, LKML
[-- Attachment #1: Type: text/plain, Size: 2207 bytes --]
Hi,
I hit the following issue when running syzkaller in arm64. It is hardly to reproduce the issue by the attached log.
[ 206.633857] Injecting memory failure for pfn 0x38c7e0 at process virtual address 0x201e0000
[ 206.766875] WARNING: CPU: 1 PID: 738 at mm/rmap.c:1571 try_to_unmap_one+0x1004/0x17d8
[ 206.768476] Kernel panic - not syncing: panic_on_warn set ...
[ 206.768476]
[ 206.769981] CPU: 1 PID: 738 Comm: syz-executor.0 Not tainted 4.19.27 #9
[ 206.771510] Hardware name: linux,dummy-virt (DT)
[ 206.772673] Call trace:
[ 206.773230] dump_backtrace+0x0/0x3c0
[ 206.774021] show_stack+0x28/0x38
[ 206.774761] dump_stack+0x120/0x188
[ 206.775483] panic+0x21c/0x48c
[ 206.776152] __warn+0x280/0x2cc
[ 206.776838] report_bug+0x1c8/0x2c8
[ 206.777612] bug_handler+0x8c/0x178
[ 206.778394] call_break_hook+0x238/0x338
[ 206.779410] brk_handler+0x3c/0xe8
[ 206.780186] do_debug_exception+0x12c/0x378
[ 206.781059] el1_dbg+0x18/0x84
[ 206.781732] try_to_unmap_one+0x1004/0x17d8
[ 206.782624] rmap_walk_anon+0x2b4/0x7a8
[ 206.783454] rmap_walk+0xfc/0x180
[ 206.784165] try_to_unmap+0x290/0x360
[ 206.784946] hwpoison_user_mappings.isra.5+0x5ec/0x1478
[ 206.786045] memory_failure+0x8c0/0xf00
[ 206.786872] __arm64_sys_madvise+0xc90/0x1278
[ 206.787786] el0_svc_handler+0x13c/0x308
[ 206.788626] el0_svc+0x8/0xc
[ 206.791030] SMP: stopping secondary CPUs
[ 206.792168] Dumping ftrace buffer:
[ 206.796278] (ftrace buffer empty)
[ 206.797065] Kernel Offset: disabled
[ 206.797811] CPU features: 0x0,a1806000
[ 206.798625] Memory Limit: none
[ 206.800300] Rebooting in 86400 seconds..
Minchan has changed the conditon check from BUG_ON to WARN_ON_ONCE in try_to_unmap_one.
However, It is still an abnormal condition when PageSwapBacked is not equal to PageSwapCache.
But Is there any case it will meet the conditon in the mainline.
It is assumed that PageSwapBacked(page) is true in the anonymous page, This is to say, PageSwapcache
is false. however, That is impossible because we will update the pte for hwpoison entry.
Because page is locked , Its page flags should not be changed except for PageSwapBacked.
Thanks,
zhong jiang
[-- Warning: decoded text below may be mangled, UTF-8 assumed --]
[-- Attachment #2: reproduce.txt --]
[-- Type: text/plain; charset="gb18030"; name="reproduce.txt", Size: 94845 bytes --]
[ 16.918386] random: sshd: uninitialized urandom read (32 bytes read)
[ 17.159274] random: fast init done
[ 18.025596] urandom_read: 1 callbacks suppressed
[ 18.025610] random: sshd: uninitialized urandom read (32 bytes read)
[ 18.039828] random: sshd: uninitialized urandom read (32 bytes read)
[ 18.429823] random: sshd: uninitialized urandom read (32 bytes read)
Warning: Permanently added '[localhost]:38995' (ECDSA) to the list of known hosts.
2019/03/11 11:34:22 fuzzer started
2019/03/11 11:34:23 dialing manager at 10.0.2.10:39705
2019/03/11 11:34:24 syscalls: 1
2019/03/11 11:34:24 code coverage: enabled
2019/03/11 11:34:24 comparison tracing: CONFIG_KCOV_ENABLE_COMPARISONS is not enabled
2019/03/11 11:34:24 extra coverage: extra coverage is not supported by the kernel
2019/03/11 11:34:24 setuid sandbox: enabled
2019/03/11 11:34:24 namespace sandbox: enabled
2019/03/11 11:34:24 Android sandbox: /sys/fs/selinux/policy does not exist
2019/03/11 11:34:24 fault injection: enabled
2019/03/11 11:34:24 leak checking: KMEMLEAK disabled: increase CONFIG_DEBUG_KMEMLEAK_EARLY_LOG_SIZE or unset CONFIG_DEBUG_KMEMLEAK_DEFAULT_OFF
2019/03/11 11:34:24 net packet injection: /dev/net/tun does not exist
2019/03/11 11:34:24 net device setup: enabled
[ 111.797207] random: crng init done
11:37:24 executing program 1:
r0 = openat$zero(0xffffffffffffff9c, &(0x7f0000000000)='/dev/zero\x00', 0x80, 0x0)
ioctl$TIOCNOTTY(r0, 0x5422)
syncfs(r0)
ioctl$KDGKBENT(r0, 0x4b46, &(0x7f0000000040)={0x80000000, 0x0, 0x3a})
r1 = accept4$packet(r0, &(0x7f0000000080)={0x11, 0x0, 0x0, 0x1, 0x0, 0x6, @random}, &(0x7f00000000c0)=0x14, 0x80800)
getsockopt$inet6_IPV6_XFRM_POLICY(r0, 0x29, 0x23, &(0x7f0000000100)={{{@in6=@dev, @in=@loopback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r2=>0x0}}, {{@in6=@mcast2}, 0x0, @in=@multicast2}}, &(0x7f0000000200)=0xe8)
fallocate(r0, 0x0, 0x4, 0xfffffffffffff80a)
r3 = openat$vcs(0xffffffffffffff9c, &(0x7f0000000240)='/dev/vcs\x00', 0x2001, 0x0)
munlockall()
fcntl$F_SET_RW_HINT(r1, 0x40c, &(0x7f0000000280)=0x3)
setsockopt$packet_fanout_data(r0, 0x107, 0x16, &(0x7f0000000300)={0x2, &(0x7f00000002c0)=[{0x4, 0x7, 0x1, 0x8}, {0x1ff, 0x0, 0x10001}]}, 0x10)
r4 = syz_genetlink_get_family_id$ipvs(&(0x7f0000000380)='IPVS\x00')
sendmsg$IPVS_CMD_ZERO(r3, &(0x7f0000000440)={&(0x7f0000000340)={0x10, 0x0, 0x0, 0x808081}, 0xc, &(0x7f0000000400)={&(0x7f00000003c0)={0x1c, r4, 0x208, 0x70bd28, 0x25dfdbff, {}, [@IPVS_CMD_ATTR_TIMEOUT_TCP={0x8, 0x4, 0x7fff}]}, 0x1c}, 0x1, 0x0, 0x0, 0x4000}, 0x4)
ioctl$sock_inet6_SIOCSIFADDR(r3, 0x8916, &(0x7f0000000480)={@dev={0xfe, 0x80, [], 0x1d}, 0x7a, r2})
r5 = semget(0x2, 0x2, 0x40)
semctl$SEM_INFO(r5, 0x4, 0x13, &(0x7f00000004c0)=""/87)
getsockopt$inet6_int(r0, 0x29, 0xa, &(0x7f0000000540), &(0x7f0000000580)=0x4)
setsockopt$sock_attach_bpf(r3, 0x1, 0x32, &(0x7f00000005c0)=r3, 0x4)
semctl$SETALL(r5, 0x0, 0x11, &(0x7f0000000600)=[0x1, 0x1000, 0x6, 0xffffffff7fffffff, 0xfd31, 0x4])
r6 = ioctl$LOOP_CTL_GET_FREE(r0, 0x4c82)
ioctl$LOOP_CTL_ADD(r0, 0x4c80, r6)
ioctl$TIOCGETD(r0, 0x5424, &(0x7f0000000640))
mbind(&(0x7f0000ffc000/0x3000)=nil, 0x3000, 0x0, &(0x7f0000000680)=0x8000, 0x800, 0x1)
fremovexattr(r3, &(0x7f00000006c0)=@random={'os2.', 'IPVS\x00'})
r7 = getpid()
sched_getscheduler(r7)
getpeername$packet(r0, &(0x7f0000000700), &(0x7f0000000740)=0x14)
ioctl$KDENABIO(r0, 0x4b36)
read(r0, &(0x7f0000000780)=""/217, 0xd9)
bpf$BPF_TASK_FD_QUERY(0x14, &(0x7f00000008c0)={r7, r0, 0x0, 0x3, &(0x7f0000000880)='\xf9)\x00', <r8=>0xffffffffffffffff}, 0x30)
bpf$BPF_PROG_GET_FD_BY_ID(0xd, &(0x7f0000000900)=r8, 0x4)
11:37:24 executing program 0:
r0 = socket$unix(0x1, 0x5, 0x0)
prctl$PR_SET_MM_EXE_FILE(0x23, 0xd, r0)
ioctl$EXT4_IOC_PRECACHE_EXTENTS(r0, 0x6612)
r1 = syz_open_procfs(0xffffffffffffffff, &(0x7f0000000000)='net/ip_mr_vif\x00')
getsockopt$inet6_mreq(0xffffffffffffffff, 0x29, 0x1c, &(0x7f0000000040)={@remote, <r2=>0x0}, &(0x7f0000000080)=0x14)
clock_gettime(0x0, &(0x7f0000000100)={<r3=>0x0, <r4=>0x0})
sendmsg$can_bcm(r1, &(0x7f0000000200)={&(0x7f00000000c0)={0x1d, r2}, 0x10, &(0x7f00000001c0)={&(0x7f0000000140)={0x49dc9f34214eb8f3, 0x40, 0x6, {r3, r4/1000+30000}, {}, {0x1, 0x4, 0x1}, 0x1, @can={{0x2, 0x3, 0x1f, 0x1}, 0x6, 0x2, 0x0, 0x0, "8962b21d35500069"}}, 0x48}, 0x1, 0x0, 0x0, 0x20000000}, 0x80c0)
fsetxattr$security_capability(r0, &(0x7f0000000240)='security.capability\x00', &(0x7f0000000280)=@v2={0x2000000, [{0xb55, 0x9}, {0x6, 0x5}]}, 0x14, 0x2)
ioctl$PERF_EVENT_IOC_SET_OUTPUT(r1, 0x2405, r1)
r5 = fcntl$getown(r1, 0x9)
sched_getattr(r5, &(0x7f00000002c0), 0x30, 0x0)
preadv(r0, &(0x7f00000018c0)=[{&(0x7f0000000300)=""/4096, 0x1000}, {&(0x7f0000001300)=""/245, 0xf5}, {&(0x7f0000001400)=""/153, 0x99}, {&(0x7f00000014c0)=""/29, 0x1d}, {&(0x7f0000001500)=""/196, 0xc4}, {&(0x7f0000001600)=""/249, 0xf9}, {&(0x7f0000001700)=""/34, 0x22}, {&(0x7f0000001740)}, {&(0x7f0000001780)=""/224, 0xe0}, {&(0x7f0000001880)}], 0xa, 0x35)
ioctl$sock_proto_private(r0, 0x89e0, &(0x7f0000001980)="73d6724b49388578d0fef95d1bdf0ed82aedcdfcc54fa529c303adf8368e0f7fd89292e4215431b952d0eb919d38beb6c0df7f35b31142ae1822ff8244f9994c88ef0668f2d489189dd88c7d9a1b1a7471ad1f7f4928bf80c42a7e5d04f784916a56b29dcd333e58d9e5014c469c0458c9b57248aa7c895511008eecb2b7a37af45b6b54b9cf5177adb6e2c0ba8bdcc9")
ioctl$EXT4_IOC_PRECACHE_EXTENTS(r0, 0x6612)
fgetxattr(r1, &(0x7f0000001a40)=@known='system.posix_acl_default\x00', &(0x7f0000001a80)=""/240, 0xf0)
pread64(r1, &(0x7f0000001b80)=""/254, 0xfe, 0x0)
ioctl$TIOCCBRK(r1, 0x5428)
getsockopt$inet_IP_XFRM_POLICY(r1, 0x0, 0x11, &(0x7f0000001cc0)={{{@in6=@empty, @in=@empty, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r6=>0x0}}, {{@in=@initdev}, 0x0, @in=@multicast2}}, &(0x7f0000001dc0)=0xe8)
fsetxattr$security_capability(r0, &(0x7f0000001c80)='security.capability\x00', &(0x7f0000001e00)=@v3={0x3000000, [{0x4, 0x2}, {0x401, 0x9}], r6}, 0x18, 0x1)
prctl$PR_GET_TIMERSLACK(0x1e)
connect$inet6(r1, &(0x7f0000001e40)={0xa, 0x4e22, 0x0, @empty, 0x5a72}, 0x1c)
getsockopt$IP_VS_SO_GET_DAEMON(r1, 0x0, 0x487, &(0x7f0000001e80), &(0x7f0000001ec0)=0x30)
fcntl$setstatus(r0, 0x4, 0x400)
r7 = syz_genetlink_get_family_id$tipc(&(0x7f0000001f40)='TIPC\x00')
sendmsg$TIPC_CMD_GET_MEDIA_NAMES(r1, &(0x7f0000002000)={&(0x7f0000001f00)={0x10, 0x0, 0x0, 0x10000000}, 0xc, &(0x7f0000001fc0)={&(0x7f0000001f80)={0x1c, r7, 0x10, 0x70bd26, 0x25dfdbfd, {}, ["", "", "", ""]}, 0x1c}}, 0x4000000)
fanotify_mark(r1, 0x66, 0x1000, r1, &(0x7f0000002040)='./file0\x00')
recvfrom(r0, &(0x7f0000002080)=""/194, 0xc2, 0x20, &(0x7f0000002180)=@nfc={0x27, 0x1, 0x1, 0x5}, 0x80)
ioctl$PIO_UNISCRNMAP(r1, 0x4b6a, &(0x7f0000002200)="062ca5abb65244a4d75558adb39770f220982d90bdafba1808cb91a017b8bf607a3618bded6ba6f63605ccc8243c2a507e13a303ca75a4daa69202604bbd98620227fa8bf146a66228daa0ab0109a05fcf97d4258da54d4d39721ae35e7901146bbacece671b914d8a233343af560bddfba8562ac7c5f9f5455f4471367900587086696b2d06789734f23c744f2c1aa5116b6c6076d890f3")
timer_create(0x5, &(0x7f0000002480)={0x0, 0x3e, 0x1, @thr={&(0x7f00000022c0)="fc91203135c2d6d7bb8a4af9a4c72110652df089f49695eeccefa73d33bdc4929b4a2a809ec96f66d57372dcec96ba19f31705df4a18d432f1f31e9ef522d6215947acf83403acbf286a17cdf48c53ad12457d42efb0eeceb0efe97dd95c8d760dcf80a1bfe5fbcdb54a476ac643797d678a5da484fff2aa23b0a5d805b00fbd8adc7b4403c1550096d78b436afcb3ec", &(0x7f0000002380)="2888ece277d44e5fcab4645e92f0c3761419b52881a9baee98c69599ec6682e2814d83aa479f7d3fcc502b03b1b4869931f9f54d085a8846a1adbc5df722b39803b213746a4862752e0aba102f0ea1f6701dd009f8d9d9a8fc04e1f82aff0cf0efaf570c6e41aecf0766ce9bd715bc1c5f13141d62da215d6ea0f2707c50e7aa7a8a830278aef7f2f5a70236e2b8c7f68e67d567017abe8b08b9af31d90258c152047072e81c3ba1f1b7e3d94ec0d970385124c95c7df96c3ff8f4802f83d4bc8f4fd60b24c772f5bcee82ae87044fb125d1758909ecd585ceb5ef5dbb8719fc9df0a67046801072b4a6823399feb46a1f"}}, &(0x7f00000024c0)=<r8=>0x0)
timer_settime(r8, 0x0, &(0x7f0000002500)={{}, {0x0, 0x989680}}, &(0x7f0000002540))
[ 201.087994] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready
[ 201.095452] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready
11:37:25 executing program 0:
r0 = bpf$PROG_LOAD(0x5, &(0x7f0000000300)={0x4, 0x4, &(0x7f0000000180)=@framed={{}, [@jmp={0x5, 0x0, 0xd}]}, &(0x7f0000000000)='syzkaller\x00', 0x8000, 0x210, &(0x7f0000000200)=""/199}, 0x48)
r1 = syz_open_dev$vcsn(&(0x7f0000000080)='/dev/vcs#\x00', 0x6eb2, 0x20000)
getsockopt$inet6_mreq(0xffffffffffffffff, 0x29, 0x1f, &(0x7f00000000c0)={@ipv4={[], [], @empty}, <r2=>0x0}, &(0x7f0000000100)=0x14)
setsockopt$inet6_IPV6_PKTINFO(r1, 0x29, 0x32, &(0x7f00000001c0)={@mcast1, r2}, 0x14)
accept(r1, &(0x7f0000000380)=@pppol2tp={0x18, 0x1, {0x0, 0xffffffffffffffff, {0x2, 0x0, @multicast1}}}, &(0x7f0000000400)=0x80)
bpf$BPF_PROG_TEST_RUN(0xa, &(0x7f0000000140)={r0, 0x0, 0xe, 0x0, &(0x7f0000000040)="4b660fa20a4fa44c9bcb684b60cc", 0x0}, 0x28)
11:37:25 executing program 1:
r0 = shmget$private(0x0, 0x4000, 0x0, &(0x7f0000000000/0x4000)=nil)
pipe2(&(0x7f0000000040)={<r1=>0xffffffffffffffff, <r2=>0xffffffffffffffff}, 0x10000)
setsockopt$netlink_NETLINK_RX_RING(r1, 0x10e, 0x6, &(0x7f0000000080)={0x7, 0x100000000, 0x7, 0x5}, 0x10)
getsockopt$SO_COOKIE(r1, 0x1, 0x39, &(0x7f00000000c0), &(0x7f0000000100)=0x8)
setsockopt$packet_buf(r2, 0x107, 0x1f, &(0x7f0000000180)="3f8bee8335eae13282", 0x9)
shmat(r0, &(0x7f0000000000/0x3000)=nil, 0x7000)
ioctl$TIOCGPGRP(r2, 0x540f, &(0x7f0000000140)=<r3=>0x0)
ioprio_set$pid(0x2, r3, 0x5)
r4 = socket$netlink(0x10, 0x3, 0x0)
syz_genetlink_get_family_id$tipc2(&(0x7f0000000000)='TIPCv2\x00')
setsockopt$SO_BINDTODEVICE(r4, 0x1, 0x19, &(0x7f00000005c0), 0x10)
11:37:25 executing program 0:
timer_settime(0x0, 0x0, &(0x7f0000000000)={{}, {0x77359400}}, 0x0)
r0 = shmget$private(0x0, 0x2000, 0x260, &(0x7f0000ffe000/0x2000)=nil)
r1 = fcntl$dupfd(0xffffffffffffff9c, 0x0, 0xffffffffffffffff)
mknodat(r1, &(0x7f0000000040)='./file0\x00', 0x8200, 0x1)
shmctl$SHM_LOCK(r0, 0xb)
11:37:25 executing program 1:
r0 = syz_open_dev$vcsa(&(0x7f0000000000)='/dev/vcsa#\x00', 0x6, 0x48000)
getsockopt$IP6T_SO_GET_REVISION_MATCH(r0, 0x29, 0x44, &(0x7f0000000040)={'icmp6\x00'}, &(0x7f00000000c0)=0x1e)
r1 = fanotify_init(0x0, 0x0)
r2 = openat(0xffffffffffffff9c, &(0x7f0000000080)='.\x00', 0x0, 0x0)
mkdirat(r2, &(0x7f0000000180)='./file1\x00', 0x0)
mount$9p_fd(0x0, &(0x7f0000000500)='./file1\x00', &(0x7f0000000540)='9p\x00', 0x0, &(0x7f00000006c0)={'trans=fd,', {'rfdno', 0x3d, r2}, 0x2c, {'wfdno', 0x3d, r1}})
11:37:25 executing program 0:
prctl$PR_GET_NO_NEW_PRIVS(0x27)
r0 = socket$nl_xfrm(0x10, 0x3, 0x6)
sendmsg$nl_xfrm(r0, &(0x7f0000000440)={0x0, 0x0, &(0x7f0000000400)={&(0x7f00000001c0)=@newpolicy={0xfc, 0x13, 0x401, 0x0, 0x0, {{@in=@remote, @in=@local, 0x0, 0x0, 0x0, 0x0, 0xa}}, [@tmpl={0x44, 0x5, [{{@in6=@dev}, 0x0, @in=@multicast1}]}]}, 0xfc}}, 0x0)
r1 = openat$md(0xffffffffffffff9c, &(0x7f0000000000)='/dev/md0\x00', 0x0, 0x0)
ioctl$BLKREPORTZONE(r1, 0xc0101282, &(0x7f0000000040)={0x29a22bd1, 0x4, 0x0, [{0x4, 0x7, 0x9, 0x10001, 0x3, 0x2, 0x7}, {0x0, 0x3, 0x5, 0x0, 0x9, 0xf86, 0x5}, {0x4, 0x8, 0x4, 0x400, 0x6, 0x100, 0x9ef}, {0x3, 0xf2, 0x8, 0x5, 0x9, 0x7, 0x6}]})
11:37:25 executing program 0:
capset(&(0x7f00000004c0)={0x20080522}, &(0x7f0000000500))
setxattr$security_ima(&(0x7f0000000040)='./file1\x00', &(0x7f0000000080)='security.ima\x00', &(0x7f0000000100)=@v2={0x3, 0x1, 0x6, 0x0, 0xb3, "bed1d945efcbc5b086767770f660db1c0a99fa03602b4565464d891671041750705ed8030cafdb5b4f892ed9615a87cebd719dbb74c48190807f32620f18e70f8dd551b71ab8bdbd96695c2aa1b9d5646b1f9075549e5cbfa107139cb9f14bdbab83417a2468de14839dcc69bc538352c7059f0bd94829815be4a44123b05c00213de6d902f8ca0e11e9ffb785b47ff1bd9f7153da4e01dba361ca3152e2ddbe376aceb27fa3bf6b77c80e43c0be67dd6e545a"}, 0xbd, 0x1)
r0 = openat(0xffffffffffffff9c, &(0x7f0000000200)='.\x00', 0x0, 0x0)
mkdirat(r0, &(0x7f00000000c0)='./file1\x00', 0x800003c)
mount$bpf(0x0, &(0x7f0000000000)='./file1\x00', 0x0, 0x0, 0x0)
11:37:25 executing program 0:
r0 = socket$nl_xfrm(0x10, 0x3, 0x6)
ioctl$FS_IOC_FSGETXATTR(r0, 0x801c581f, &(0x7f0000000000)={0x1f, 0x1, 0x8000, 0x100, 0x3eac3129})
sendmsg$nl_xfrm(r0, &(0x7f00000001c0)={0x0, 0x0, &(0x7f0000000180)={&(0x7f0000000080)=@newsa={0xf0, 0x10, 0x1, 0x0, 0x0, {{@in6=@mcast1, @in6=@initdev, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xa0}, {@in=@broadcast}, @in=@multicast2, {}, {}, {}, 0x0, 0x0, 0x2}}, 0xf0}}, 0x0)
11:37:26 executing program 0:
timer_create(0xb, 0x0, &(0x7f0000000140))
timer_settime(0x0, 0x0, 0x0, 0x0)
r0 = openat(0xffffffffffffff9c, &(0x7f00000000c0)='./file0\x00', 0x0, 0x0)
mkdirat(r0, &(0x7f0000000500)='./file1\x00', 0x0)
symlinkat(&(0x7f0000000040)='./file1\x00', r0, &(0x7f0000000140)='./file0\x00')
r1 = openat(r0, &(0x7f0000000000)='./file0\x00', 0x0, 0x0)
renameat(r0, &(0x7f0000002040)='./file0\x00', r1, &(0x7f0000002080)='./file0\x00')
11:37:26 executing program 1:
r0 = socket$nl_route(0x10, 0x3, 0x0)
openat$vga_arbiter(0xffffffffffffff9c, &(0x7f0000000000)='/dev/vga_arbiter\x00', 0x40001, 0x0)
sendmsg$nl_generic(r0, &(0x7f00000000c0)={0x0, 0x0, &(0x7f0000000100)={&(0x7f0000000040)={0x1, 0x11, 0x70b, 0x0, 0x2, {0x3}}, 0x14}}, 0x0)
11:37:26 executing program 0:
msgget(0x3, 0x10)
msgget(0x0, 0x10)
r0 = msgget$private(0x0, 0x10a)
msgctl$MSG_STAT(r0, 0xb, &(0x7f0000000100)=""/98)
11:37:26 executing program 1:
clock_gettime(0xb, &(0x7f0000000080))
r0 = syz_open_dev$usbmon(&(0x7f0000000280)='/dev/usbmon#\x00', 0x2, 0x40)
accept4$packet(r0, &(0x7f00000002c0)={0x11, 0x0, 0x0, 0x1, 0x0, 0x6, @broadcast}, &(0x7f0000000300)=0x14, 0x0)
r1 = openat$vfio(0xffffffffffffff9c, 0x0, 0x0, 0x0)
ioctl$KDDISABIO(r1, 0x4b37)
timer_create(0xb, 0x0, &(0x7f0000000140))
timer_settime(0x0, 0x0, 0x0, 0x0)
r2 = openat$loop_ctrl(0xffffffffffffff9c, &(0x7f0000000000)='/dev/loop-control\x00', 0x0, 0x0)
ioctl$LOOP_CTL_GET_FREE(r2, 0x4c82)
utimensat(0xffffffffffffffff, 0x0, 0x0, 0x0)
timer_create(0xb, 0x0, 0x0)
sendmsg$TIPC_CMD_SHOW_PORTS(0xffffffffffffffff, 0x0, 0x4)
timer_settime(0x0, 0x0, &(0x7f0000000000)={{}, {0x77359400}}, 0x0)
socket$packet(0x11, 0x0, 0x300)
sendto$inet6(0xffffffffffffffff, 0x0, 0x327, 0x0, 0x0, 0x0)
ioctl$IOC_PR_CLEAR(0xffffffffffffffff, 0x401070cd, 0x0)
syz_open_dev$vcsa(&(0x7f0000000140)='/dev/vcsa#\x00', 0x9, 0x0)
ioctl$LOOP_CTL_REMOVE(r2, 0x4c81, 0x0)
semctl$GETVAL(0x0, 0x1, 0xc, 0x0)
io_setup(0x8e4, &(0x7f0000000040)=<r3=>0x0)
io_pgetevents(r3, 0x80000001, 0x6, &(0x7f0000000180)=[{}, {}, {}, {}, {}, {}], &(0x7f00000000c0), &(0x7f0000000240)={&(0x7f0000000100)={0x1}, 0x8})
11:37:26 executing program 0:
r0 = openat$vga_arbiter(0xffffffffffffff9c, &(0x7f0000000440)='/dev/vga_arbiter\x00', 0x6000, 0x0)
setsockopt$inet_mreq(r0, 0x0, 0x23, &(0x7f0000000480)={@multicast2, @rand_addr=0x2}, 0x8)
r1 = socket$inet_tcp(0x2, 0x1, 0x0)
setsockopt$inet_tcp_TCP_REPAIR(r1, 0x6, 0x13, &(0x7f00000000c0)=0x1, 0x4)
connect$inet(r1, &(0x7f0000000000)={0x2, 0x0, @remote}, 0x10)
setsockopt$inet_tcp_TCP_REPAIR_QUEUE(r1, 0x6, 0x14, &(0x7f0000000040)=0x2, 0x4)
sendmmsg(r1, &(0x7f0000006900)=[{{0x0, 0x0, &(0x7f00000023c0)=[{&(0x7f00000013c0)="1d", 0x1}], 0x1}}], 0x1, 0x0)
getsockopt$IPT_SO_GET_INFO(r1, 0x0, 0x40, &(0x7f0000000100)={'mangle\x00'}, &(0x7f0000000080)=0x54)
recvfrom(r1, 0x0, 0xfffffc52, 0x3a, 0x0, 0x0)
11:37:26 executing program 0:
timer_create(0x9, &(0x7f0000000000)={0x0, 0x0, 0x80000000000001, @thr={0x0, 0x0}}, &(0x7f0000001100)=<r0=>0x0)
timer_settime(0x0, 0x0, &(0x7f0000000000)={{0x0, 0x989680}, {0x0, 0x1c9c380}}, 0x0)
openat$vcs(0xffffffffffffff9c, &(0x7f00000000c0)='/dev/vcs\x00', 0x10080, 0x0)
timer_settime(r0, 0x1, &(0x7f0000000040)={{0x0, 0x1c9c380}, {0x0, 0x1c9c380}}, &(0x7f0000000080))
timer_settime(0x0, 0x0, 0x0, &(0x7f0000000200))
openat$rtc(0xffffffffffffff9c, &(0x7f0000000100)='/dev/rtc0\x00', 0x4000, 0x0)
11:37:26 executing program 0:
r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000100)={0x7, 0x4, 0x100, 0x7, 0x0, 0xffffffffffffffff, 0xfffffffffffffffe}, 0x2c)
bpf$MAP_GET_NEXT_KEY(0x4, &(0x7f0000000040)={r0, 0xffffffffffffffff, 0x0}, 0x18)
11:37:27 executing program 0:
syz_open_procfs(0xffffffffffffffff, &(0x7f0000000000)='mountinfo\x00')
r0 = openat$random(0xffffffffffffff9c, &(0x7f0000000040)='/dev/urandom\x00', 0x0, 0x0)
write$binfmt_elf32(r0, &(0x7f0000000080)={{0x7f, 0x45, 0x4c, 0x46, 0x7d5f, 0x9, 0x2, 0x4, 0x7f, 0x3, 0x6, 0x6, 0x177, 0x38, 0x2b0, 0x400, 0xf3b, 0x20, 0x2, 0x7, 0x3f, 0xb3}, [{0x70000004, 0x8, 0x4, 0xfffffffffffffffb, 0x5, 0x3f, 0x1ff, 0x2}], "08a3a09b6154be97621a4dc602e0663e4d6f2c"}, 0x6b)
11:37:27 executing program 1:
r0 = bpf$MAP_CREATE(0x0, &(0x7f0000000080)={0xa, 0x1, 0x1000, 0x9, 0x0, 0x1}, 0x2c)
r1 = socket$inet_tcp(0x2, 0x1, 0x0)
setsockopt$inet_int(r1, 0x0, 0x5, &(0x7f0000000100)=0x6, 0x4)
r2 = getuid()
setfsuid(r2)
bpf$BPF_GET_MAP_INFO(0xf, &(0x7f0000000040)={r0, 0x28, &(0x7f0000000000)={0x0, <r3=>0x0}}, 0x10)
bpf$BPF_MAP_GET_FD_BY_ID(0xe, &(0x7f00000000c0)={r3, 0x0, 0x8}, 0xc)
11:37:27 executing program 0:
lsetxattr$security_smack_entry(&(0x7f0000000180)='./file0\x00', &(0x7f0000000200)='security.SMACK64MMAP\x00', &(0x7f0000000240)='ppp1: \x00', 0x7, 0x1)
r0 = openat(0xffffffffffffff9c, &(0x7f0000000080)='.\x00', 0x0, 0x0)
mkdirat(r0, &(0x7f00000002c0)='./file2\x00', 0x0)
symlinkat(&(0x7f0000000040)='./file1\x00', r0, &(0x7f0000000140)='./file0\x00')
r1 = openat(r0, &(0x7f0000000000)='./file0\x00', 0x0, 0x0)
mknodat(r1, &(0x7f00000000c0)='./file0\x00', 0x490, 0x4)
fsetxattr$system_posix_acl(r1, &(0x7f00000001c0)='system.posix_acl_default\x00', &(0x7f0000000300)=ANY=[@ANYBLOB="02000000010002000000ce80000010002000100000002000000000000000000000000000b8d8ec56c87ce9f362e97059dba7927fda4ad5d7b8def0e878636db149e76e534cf02b9cd8b3adc214bf04df86991081a2ef003503988bf3fa9f552fd416dcd8c23678aac5ee9cadb0d1af32bd3975c1aa86fa574d1ea9fc844e24ada74bb0a7752f1f23c098ce038741ee26f05df058638bda029e32da7546ac6dd04c2901850d84e21265bf49aedbcd2c9f2cb50f2a3a9ba5bc8a726501fc4398757f9ea63b82768b1fa3"], 0x24, 0x0)
listxattr(&(0x7f0000000280)='./file1\x00', 0x0, 0xc4f73b8bb010cf62)
11:37:27 executing program 1:
move_pages(0x0, 0x1, &(0x7f0000000040)=[&(0x7f00001b6000/0x1000)=nil], 0x0, 0x0, 0x0)
clone(0x0, 0x0, 0x0, 0x0, 0x0)
r0 = getpid()
get_robust_list(r0, &(0x7f00000001c0)=&(0x7f0000000180)={0x0, 0x0, &(0x7f0000000080)={&(0x7f0000000000)}}, &(0x7f0000000200)=0x18)
madvise(&(0x7f0000204000/0x1000)=nil, 0x1000, 0xa)
prctl$PR_GET_NAME(0x10, &(0x7f00000000c0)=""/145)
11:37:27 executing program 0:
timer_create(0xb, 0x0, &(0x7f00000000c0))
syz_genetlink_get_family_id$tipc2(0x0)
timer_settime(0x0, 0x0, &(0x7f0000000000)={{}, {0x77359400}}, 0x0)
r0 = openat(0xffffffffffffff9c, &(0x7f0000000000)='./file0\x00', 0x80000040, 0x0)
setsockopt$inet_msfilter(r0, 0x0, 0x29, &(0x7f0000000040)={@remote, @multicast2, 0x1, 0x2, [@remote, @initdev={0xac, 0x1e, 0x0, 0x0}]}, 0x18)
ioctl$FS_IOC_GETFSMAP(r0, 0xc0c0583b, &(0x7f0000000180)={0x0, 0x0, 0x0, 0x0, [], [{}, {0xffffffffffffffff}]})
11:37:27 executing program 1:
timer_create(0xb, 0x0, &(0x7f0000000140))
r0 = openat$snapshot(0xffffffffffffff9c, &(0x7f0000000000)='/dev/snapshot\x00', 0x430200, 0x0)
getsockopt$inet_tcp_int(r0, 0x6, 0x27, &(0x7f0000000180), &(0x7f00000001c0)=0x4)
sync_file_range(0xffffffffffffffff, 0x0, 0x0, 0x4)
mlockall(0x1)
write$binfmt_aout(r0, &(0x7f0000000040)=ANY=[@ANYBLOB="92447722d2f7e5fd81d76ec3"], 0xc)
socketpair$nbd(0x1, 0x1, 0x0, 0x0)
prctl$PR_GET_PDEATHSIG(0x2, &(0x7f0000000080))
getegid()
ioctl$EXT4_IOC_MOVE_EXT(r0, 0xc028660f, &(0x7f0000000200)={0x0, r0, 0x3f, 0x8, 0x100, 0x6})
r1 = socket$packet(0x11, 0x0, 0x300)
madvise(&(0x7f000091c000/0x2000)=nil, 0x2000, 0x0)
accept$packet(r1, &(0x7f00000000c0)={0x11, 0x0, 0x0, 0x1, 0x0, 0x6, @link_local}, &(0x7f0000000100)=0x14)
socket$inet6_udp(0xa, 0x2, 0x0)
11:37:27 executing program 0:
r0 = syz_open_procfs(0x0, &(0x7f0000001480)='smaps\x00')
readv(r0, &(0x7f00000052c0)=[{&(0x7f00000014c0)=""/4096, 0x1000}], 0x1)
pread64(r0, 0x0, 0xffffffffffffff98, 0x0)
r1 = getpid()
getsockopt$inet6_IPV6_XFRM_POLICY(r0, 0x29, 0x23, &(0x7f0000002980)={{{@in=@empty, @in6=@mcast2, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r2=>0x0}}, {{@in=@remote}}}, &(0x7f0000001400)=0xe8)
getresgid(&(0x7f0000001440), &(0x7f0000002a80), &(0x7f0000002ac0)=<r3=>0x0)
bpf$BPF_TASK_FD_QUERY(0x14, &(0x7f0000002b40)={<r4=>0x0, r0, 0x0, 0x6, &(0x7f0000002b00)='smaps\x00'}, 0x30)
getsockopt$inet6_IPV6_XFRM_POLICY(r0, 0x29, 0x23, &(0x7f0000002b80)={{{@in6=@local, @in=@broadcast, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r5=>0x0}}, {{@in6=@loopback}, 0x0, @in6=@mcast2}}, &(0x7f0000002c80)=0xe8)
r6 = getgid()
r7 = getpgid(0xffffffffffffffff)
getsockopt$inet_IP_IPSEC_POLICY(r0, 0x0, 0x10, &(0x7f0000002cc0)={{{@in6=@dev, @in=@local, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r8=>0x0}}, {{@in=@multicast2}, 0x0, @in=@initdev}}, &(0x7f0000002dc0)=0xe8)
r9 = getgid()
r10 = getpgid(0xffffffffffffffff)
getsockopt$inet6_IPV6_IPSEC_POLICY(r0, 0x29, 0x22, &(0x7f0000002e00)={{{@in6=@ipv4={[], [], @remote}, @in6=@loopback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r11=>0x0}}, {{@in6=@initdev}, 0x0, @in6=@mcast2}}, &(0x7f0000002f00)=0xe8)
getsockopt$sock_cred(r0, 0x1, 0x11, &(0x7f0000002f40)={0x0, 0x0, <r12=>0x0}, &(0x7f0000002f80)=0xc)
ioctl$sock_FIOGETOWN(r0, 0x8903, &(0x7f00000047c0)=<r13=>0x0)
getsockopt$inet_IP_XFRM_POLICY(r0, 0x0, 0x11, &(0x7f0000004800)={{{@in=@local, @in=@broadcast, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r14=>0x0}}, {{@in6}, 0x0, @in6=@local}}, &(0x7f0000004900)=0xe8)
getresgid(&(0x7f0000004940)=<r15=>0x0, &(0x7f0000004980), &(0x7f00000049c0))
bpf$BPF_TASK_FD_QUERY(0x14, &(0x7f0000004a40)={<r16=>0xffffffffffffffff, r0, 0x0, 0x2, &(0x7f0000004a00)='+\x00'}, 0x30)
getsockopt$inet6_IPV6_IPSEC_POLICY(r0, 0x29, 0x22, &(0x7f0000004a80)={{{@in6=@remote, @in=@broadcast, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r17=>0x0}}, {{@in6=@remote}, 0x0, @in=@multicast2}}, &(0x7f0000004b80)=0xe8)
getgroups(0x4, &(0x7f0000004bc0)=[0x0, <r18=>0xee00, 0xffffffffffffffff, 0xee00])
ioctl$TIOCGPGRP(r0, 0x540f, &(0x7f0000004c00)=<r19=>0x0)
getsockopt$inet6_IPV6_IPSEC_POLICY(r0, 0x29, 0x22, &(0x7f0000004c40)={{{@in=@multicast2, @in6=@empty, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r20=>0x0}}, {{@in=@broadcast}}}, &(0x7f0000004d40)=0xe8)
r21 = getgid()
bpf$BPF_TASK_FD_QUERY(0x14, &(0x7f0000004dc0)={<r22=>0x0, r0, 0x0, 0x1, &(0x7f0000004d80)='\x00', 0xffffffffffffffff}, 0x30)
getresuid(&(0x7f0000004e00)=<r23=>0x0, &(0x7f0000004e40), &(0x7f0000004e80))
getsockopt$sock_cred(r0, 0x1, 0x11, &(0x7f0000004ec0)={0x0, 0x0, <r24=>0x0}, &(0x7f0000004f00)=0xc)
bpf$BPF_TASK_FD_QUERY(0x14, &(0x7f0000004f80)={<r25=>0x0, r0, 0x0, 0x6, &(0x7f0000004f40)='smaps\x00', 0xffffffffffffffff}, 0x30)
getsockopt$inet6_IPV6_IPSEC_POLICY(r0, 0x29, 0x22, &(0x7f0000004fc0)={{{@in6=@remote, @in=@remote, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r26=>0x0}}, {{@in6=@dev}, 0x0, @in=@initdev}}, &(0x7f00000050c0)=0xe8)
r27 = getgid()
sendmmsg$unix(r0, &(0x7f0000005200)=[{&(0x7f0000000180)=@abs={0x0, 0x0, 0x4e24}, 0x6e, &(0x7f00000028c0)=[{&(0x7f0000000200)="f37ccf006ca89ac574d4cae9bc5c650a54e5a20476c38a5e7e33a171407a3e64a61a6f3b499046ab45fe47464b98ceb8f2", 0x31}, {&(0x7f0000000240)="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", 0x1000}, {&(0x7f0000001240)="8ad8a0a8241fae2dcc4d69260a65a52eb74f310d003c6fc3caa28b21f417960d2ee8a83fb760463abef9216a2beacb0d388b287d5fb2a1b6063c35cb76e91c224e344443e5729b82caba93ee723393df43ac7fed91c144a982e1d5b8921b4735a4d6d01fdf19b23334fcf86c40f221d8559ea664f0d982ee41c0ed8bea4b491409f5ec451564249b4a41b5086ebd5a31371631160718c447e7437aa4800767f2f152657bbb7e9d59f954776f39477a944dd6c908f3625f0420cb0a7a6af802", 0xbf}, {&(0x7f0000001300)="13efe23f1ef936de9420016e5d698befd45d726cb3ccf5791393c711215743b51578c9f09fc9f8f15c1695c40fac155a6dd4a89ced579b45810ca63c53f41920ec97ac773e9de23edd3486337b04c587b7c6777353185d9aea702a7a71154931de02ac9d84e02557859e0c1eb350ad8a03c6", 0x72}, {&(0x7f0000001380)="bca7a28711f673f374afe29de0c919b3ecb411bc6433b3a83b84221bf779ed28fea93b783a769f2bc53f43ee470d35375e3a64504a90639399d98bc4811ec6b4655b0219f12b769fd5bde55791269d5ce10d6db4e3a7599746a919cb4e21da3e7cd8de8f4c4832252665392e39deb60aea1313fb10821b3176e439b8ee9232", 0x7f}, {&(0x7f00000024c0)="415dc2f8a7569906e4a9c94d3ead0ccdd6c2ad5b47e76ac199b4d1c4eea7493b7f0296299ea9c76a8a9410f3d2d869d646228f41138522acfc1fba9bdf8532f6899328ae4f66567533b61f8a067518999533f3ca02b42c974dac49d91cff60b96828ded70fcc24da1cfebd6fb02ffd0363db0fcc428756bf333475a85f317c04b503192d63bb2760b1e0f650653a6bf56d99a5c106b4a6a58a441cedbfb6b690b31cc2a1cf73321324cb3f17281af54c126182a01bcde3157151ef837cf90101c58644612771c1", 0xc7}, {&(0x7f00000025c0)="7be26401725e7c6d44dcf684d860e663b744c753621d43392bccc47be67aed5cb0c0bd5d09366bcc027fdc1168d2e426c0fa23608ccce8cc8e2cc950d64cb5599708456563fabfae9eb5197fac38ad489aa3cf2defccbb61adf9a45bf160aedeca36e98af28af088715384cfe0de9ca09b29b719bfac51eba297a90576751178db3838397e866df8cc7029e4b42d3f3ba981ea0b96e4a40f9eeccdfdac9fab3d8e88f816363f4d882a4d35795814af79702a237d247617f7a220ee9acb0bd5acfd654829296d61cc98dd", 0xca}, {&(0x7f0000002700)="82cd8588923ebcd6b1777940e215fbcdc69122f1932c5c98f56ee7a2f61cd339bacbeb42b26a40789036838cfc11301715f474fd8d085d1e598663926215771e4b84482efb6221a914e68e63b7d06b34bafec62cd0f8b30874daa86cdf75ffff0895e5d69ee8bb0644afa643a1aaa251acc12c33f531819af01c335cf1bf6229611136775ebcabc16613b1d91554ef3c92903e6f37ffb13a5c819e090690eb050a2bfc00a4746662d01a3cd0a378aa341a0cd57f5233a22cd3a8626dbec91feab02dff0b0d673601c0e430f073c7c2ea99", 0xd1}, {&(0x7f0000002800)="e82ff6d86ca6526ae5d337be45547c027d304151b642e3b2c8f6fde3e2a8bf6c43038c546b98a738b6a61046c72b8f47ddea7a1fb301897ae84493850538ed108f0857566be56a44439741921b73dbfb0e938c15011e4cbfb1c341ae55b8895bf3e26744dc6b4650ce8468f04b49691d5dbf8461d35d9f91f61e3dd7d02b7b999336ce1716ae8c4f", 0x88}], 0x9, &(0x7f0000002fc0)=ANY=[@ANYBLOB="18000000002000000000000001000000", @ANYRES32=r0, @ANYBLOB="0000000020000000000000000100000002000000", @ANYRES32=r1, @ANYRES32=r2, @ANYRES32=r3, @ANYBLOB="0000000020000000000000000100000002000000", @ANYRES32=r4, @ANYRES32=r5, @ANYRES32=r6, @ANYBLOB="0000000020000000000000000100000002000000", @ANYRES32=r7, @ANYRES32=r8, @ANYRES32=r9, @ANYBLOB="0000000020000000000000000100000002000000", @ANYRES32=r10, @ANYRES32=r11, @ANYRES32=r12, @ANYBLOB="0000000018000000000000000100000001000000", @ANYRES32=r0, @ANYRES32=r0], 0xb0, 0x90}, {&(0x7f0000003080)=@file={0x1, './file0\x00'}, 0x6e, &(0x7f0000004240)=[{&(0x7f0000003100)="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", 0x1000}, {&(0x7f0000004100)="4e91f32fd1ccaeff2c22bc6803b13e3237face79751111df67cc64d33612c6a56a40e58c5794ef6de57a4db2a01ab8d31afcef4d83ddfbcc1e", 0x39}, {&(0x7f0000004140)="c44cbe78583700f4fbfb77a4c95f708819059225537bb1dcd96c5aceecfcb4bf1abee5d06023ca187785da8a02fee4f3a44a74c7be3daf416880cc6cfa848d3ed3a4a89555902f3ff2d3ecba0625b30e7c9d3b270c1445f6e130452031c3a4", 0x5f}, {&(0x7f00000041c0)="b8914c333c922dd6a2f554f2e733af1e31e531fe75f345fef348fe3289e1b9c6b7f0ad09a946b516f922d2d7396f8e833160e629f0daa5fa37bcdbf5ab4186eaf23af183f3bd39a793bc65aa0da45b66c4", 0x51}], 0x4, 0x0, 0x0, 0x81}, {&(0x7f0000004280)=@abs={0x1, 0x0, 0x4e20}, 0x6e, &(0x7f0000004740)=[{&(0x7f0000004300)="3f0162dc7a3df8b0b3493c7f4187e8f51780067fa655881f5fefab7d27bffefa3201339355b7a3bcdc0d3b6d31ddece43f331c4b13c94731f1c7c0f5314a71004f16185904adf8fb72315c4326792fa5b076696853248fe78b39a46c5b08392495855d6b70fc0449598a9d54c1a9c967f6f6af3fb6d07b9d9f42e7010c3f49ca8890f7e8ef92f9a8057f29fef37c52b9f71f33aa8dc7ed8c6ac4f20fddcd8beed70049697c69f80f39cfc180bfa38097b83af5fb55df841d5d69c335c09aff25", 0xc0}, {&(0x7f00000043c0)="51896ff096324c42d0473f8a42b81bd778d7c71cb6ecaf68a6c3da4ce57b6198e675c6b8f26bbdd8dbd13651736335ac457cae19b688cd7fd10510e35410b065b4614e95668e57ba14c9c32e570bd4a5a6b0b50a249b909a598edb703034", 0x5e}, {&(0x7f0000004440)="0a04ef0a709360bf579a1a57ee7c376367481ccb0ad44cc3a5b2e820634074b10b827e61d4734af1d01c66b38cb90f3645289b314903258b14f3272fd1d333d26b0463c11f85081ee16c1a198b62e931a283c3aab49a702aab5699364d714362dfd0884fb89b323585ea3b16e918f557ad3c5072013d7f1efaeef4f682", 0x7d}, {&(0x7f00000044c0)="c3935912dfe676cee94a285adad3b409833a4ec96f5c9adaf8457e0a99b71fe89fa0534bdc9b19059e40676b20cd099c252e1786ebc37b82c21b2c4448decee6f4750244c301f45f87f3206d163f06e221c67f493f9ef96a08a7d847c7551cdff49bdfffe88642721603042b53433a476d27058613980001cadfbc5129e30d143533e66a0bc58074fe89132c0c2a5b1503f4f72afbf4871df8ff2dd7bd998adcbfcd0d87984f72ce41aa3050ad07a6f87c73eee40cb4d7a163d5dda6", 0xbc}, {&(0x7f0000004580)="8a743dd84f7b86826613fce83fb0d853d927f324c2b1ca0330dee0664d1bbff53ee8453fa0b7ef07a107973bd86969bc572c27017a167990637ff7ea8b2d0171fa04a537c2a45d80a5972994a56decbfe4e1537ae44c8453d2d7236ebddf383f25068883a7540db05c84c1ac740049f6d5b81b3ef28ec49c2645e70beffb17b6f92e1ed61d0515c16fff14d424647c885bade2016c09", 0x96}, {&(0x7f0000004640)="2d13e2f76d60a9824b1ad6b819011fb90e893f9182bd5172be79b93c69abbc020c15294ca8b194c3b65ebd38d2566848405421746d015be5db52ead21a746b444f4b6e8f8da510d0dbbce762e8d4cf58534a72910c69de078ad8849554172077de25fe410013bb074712da7c3bc7c9a064922de97a5996463f7e6274df15df1142832d1dee83555ddd17fe9456128a5acaf83755ca52225c8705114a7403b3ad54f0b79e18dd1ac7d9aa89d6ed616a6180e6aa77443c37b6229fd680c5c9e99499bf596678a0bf2be944149a6a54a2343ef2", 0xd2}], 0x6, &(0x7f0000005300)=ANY=[@ANYBLOB="200000e3ce461a495c71d8", @ANYRES32=r13, @ANYRES32=r14, @ANYRES32=r15, @ANYBLOB="0000000020000000000000000100000002000000", @ANYRES32=r16, @ANYRES32=r17, @ANYRES32=r18, @ANYBLOB="0000000020000000000000000100000002000000", @ANYRES32=r19, @ANYRES32=r20, @ANYRES32=r21, @ANYBLOB="00001a0018000000000000000100000001000000", @ANYRES32=r0, @ANYBLOB="0000000020000000000000000100000002000000", @ANYRES32=r22, @ANYRES32=r23, @ANYRES32=r24, @ANYBLOB="0000000030000000000000000100000001000000", @ANYRES32=r0, @ANYRES32=r0, @ANYRES32=r0, @ANYRES32=r0, @ANYRES32=r0, @ANYRES32=r0, @ANYRES32=r0, @ANYRES32=r0, @ANYBLOB="200000000000000001000000020000005b1d8c134cf50a4870b541413853c60f60d9ab0194233f765e0c5204535a75a9f6424e637d61d0ab7cd8c8eceabebdbdd83f3890fde6db9795331088ed856a447d8408e9a25c4aa062c2980105196626e5090000006e141e491e63f804e1a5a4d928209b", @ANYRES32=r25, @ANYRES32=r26, @ANYRES32=r27, @ANYBLOB='\x00\x00\x00\x00'], 0xe8, 0x80}], 0x3, 0x40000)
fcntl$getown(r0, 0x9)
ioctl$BLKPBSZGET(r0, 0x127b, &(0x7f0000000100))
r28 = shmget(0x2, 0x1000, 0x900, &(0x7f0000ffd000/0x1000)=nil)
shmctl$IPC_RMID(r28, 0x0)
readv(r0, &(0x7f00000026c0)=[{&(0x7f0000000000)=""/234, 0xea}], 0x1)
11:37:27 executing program 0:
r0 = socket$alg(0x26, 0x5, 0x0)
r1 = socket$nl_xfrm(0x10, 0x3, 0x6)
setsockopt$netlink_NETLINK_RX_RING(r1, 0x10e, 0x6, 0x0, 0x0)
bind$alg(r0, &(0x7f00000000c0)={0x26, 'hash\x00', 0x0, 0x0, 'sha224\x00'}, 0x58)
r2 = accept4$alg(r0, 0x0, 0x0, 0x800)
r3 = dup(r2)
syz_open_dev$vcsn(&(0x7f0000000000)='/dev/vcs#\x00', 0x2, 0x0)
timer_settime(0x0, 0x0, &(0x7f0000000080)={{0x0, 0x989680}, {0x77359400}}, 0x0)
write$P9_RSYMLINK(r3, &(0x7f0000000000)={0x14}, 0xfffffe74)
prctl$PR_MCE_KILL_GET(0x22)
11:37:28 executing program 1:
r0 = socket$packet(0x11, 0x3, 0x300)
r1 = accept(r0, &(0x7f0000000000)=@can, &(0x7f0000000080)=0x80)
accept4$alg(r1, 0x0, 0x0, 0x80800)
read$alg(r1, &(0x7f00000000c0)=""/119, 0x77)
11:37:28 executing program 0:
r0 = openat(0xffffffffffffff9c, &(0x7f0000000080)='./file0\x00', 0x42, 0x0)
ioctl$FS_IOC_SETFLAGS(r0, 0x40086602, &(0x7f0000000180)=0x671)
ioctl$EXT4_IOC_SWAP_BOOT(r0, 0x6611)
r1 = syz_genetlink_get_family_id$tipc(&(0x7f0000000040)='TIPC\x00')
getpeername$inet6(r0, &(0x7f0000000300)={0xa, 0x0, 0x0, @local}, &(0x7f0000000340)=0x1c)
r2 = getpid()
ptrace$cont(0x7, r2, 0x3, 0x10001)
ioctl$PIO_SCRNMAP(r0, 0x4b41, &(0x7f0000000500)="c425d5ac22715673b1f5b79df5b009722be939d720e43a8958a75a90776e72ffa8a2aeec5dc9d4342012df3d7dc364ab667be314e3efad48d78b2dd1881e96123cfb70e8fe2317a54ed3cceefcae6ed93e519a04b3616ae481708e3eefd125a0b6bb92794b4ec6a2872471eaa307b18a949432bfba83dc7a5cd34c091b49f3ddd84d3403797ad099d8aaa19cc1e476d62c06e9e7a270c25359896a033e32975d1dbaad094c0b84c37cc21ffac33c817285f2e92c9c4105db9431de2d7628d4d466136a561a3b469cf3925d469d6677ded6ae8d9678f5dbffad20058f56129dd52b2882f9438f30669214a4e2e4e9c3600d5b48")
sendmsg$TIPC_CMD_SET_NETID(r0, &(0x7f00000002c0)={&(0x7f0000000200)={0x10, 0x0, 0x0, 0x100400}, 0xc, &(0x7f0000000280)={&(0x7f0000000240)={0x24, r1, 0x200, 0x70bd29, 0x25dfdbfb, {{}, 0x0, 0x800b, 0x0, {0x8, 0x2, 0xffffffffffff735a}}, ["", "", ""]}, 0x24}, 0x1, 0x0, 0x0, 0x4000}, 0x4000041)
sendmsg$TIPC_CMD_SET_LINK_TOL(r0, &(0x7f00000001c0)={&(0x7f0000000000)={0x10, 0x0, 0x0, 0x24000}, 0xc, &(0x7f0000000140)={&(0x7f0000000380)=ANY=[@ANYBLOB="68020000", @ANYRES16=r1, @ANYBLOB="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"], 0x68}, 0x1, 0x0, 0x0, 0x4}, 0xfdbc54c3e184bcab)
11:37:28 executing program 1:
getsockopt$EBT_SO_GET_INFO(0xffffffffffffffff, 0x0, 0x80, 0x0, 0x0)
madvise(&(0x7f0000153000/0x4000)=nil, 0x4000, 0x2)
timer_create(0xb, 0x0, &(0x7f0000000140))
clone(0x0, 0x0, 0x0, 0x0, 0x0)
r0 = syz_open_dev$mice(&(0x7f0000000040)='/dev/input/mice\x00', 0x0, 0x20000)
getsockopt$IP_VS_SO_GET_TIMEOUT(r0, 0x0, 0x486, &(0x7f0000000080), &(0x7f00000000c0)=0xc)
r1 = getpgid(0x0)
timer_settime(0x0, 0x0, &(0x7f0000000000)={{}, {0x77359400}}, 0x0)
process_vm_writev(r1, &(0x7f00000002c0)=[{&(0x7f0000000180)=""/97, 0x61}], 0x1, &(0x7f0000001800)=[{&(0x7f0000000240)=""/23, 0xfffffd85}, {0x0}, {0x0}], 0x2be, 0x0)
11:37:28 executing program 0:
getsockopt$inet_IP_IPSEC_POLICY(0xffffffffffffff9c, 0x0, 0x10, &(0x7f00000032c0)={{{@in=@empty, @in6=@empty}}, {{@in=@initdev}}}, &(0x7f00000003c0)=0xe8)
getsockopt$inet6_IPV6_IPSEC_POLICY(0xffffffffffffff9c, 0x29, 0x22, &(0x7f00000033c0)={{{@in6=@mcast2, @in=@empty, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r0=>0x0, <r1=>0x0}}, {{@in6=@mcast1}}}, &(0x7f0000000400)=0xe8)
r2 = geteuid()
setresuid(r1, r2, r2)
r3 = openat$dir(0xffffffffffffff9c, &(0x7f0000000500)='./file0\x00', 0x80000000442fe, 0x0)
r4 = dup(r3)
r5 = syz_genetlink_get_family_id$team(&(0x7f0000000040)='team\x00')
getsockopt$inet_mreqn(r4, 0x0, 0x23, &(0x7f0000000080)={@rand_addr, @multicast2, <r6=>0x0}, &(0x7f00000000c0)=0xc)
ioctl$sock_SIOCGIFINDEX(r4, 0x8933, &(0x7f0000000180)={'vl\x80n0\x00\x00\x00\x00\x10\x00', <r7=>r6})
getpeername$packet(r4, &(0x7f0000000340)={0x11, 0x0, <r8=>0x0, 0x1, 0x0, 0x6, @dev}, &(0x7f0000000380)=0x14)
getsockopt$inet6_mreq(r4, 0x29, 0x1c, &(0x7f0000000440)={@ipv4={[], [], @multicast2}, <r9=>0x0}, &(0x7f0000000480)=0x14)
ioctl$sock_SIOCGIFINDEX(r4, 0x8933, &(0x7f0000002dc0)={'dummy0\x00', <r10=>r0})
ioctl$ifreq_SIOCGIFINDEX_team(r4, 0x8933, &(0x7f0000000580)={'team0\x00', <r11=>0x0})
getsockopt$inet6_mreq(r4, 0x29, 0x1c, &(0x7f00000005c0)={@empty, <r12=>0x0}, &(0x7f0000000600)=0x14)
r13 = accept(r4, &(0x7f0000000640)=@xdp={0x2c, 0x0, <r14=>0x0}, &(0x7f00000006c0)=0x80)
recvmmsg(r4, &(0x7f0000002b00)=[{{&(0x7f0000000700)=@xdp={0x2c, 0x0, <r15=>0x0}, 0x80, &(0x7f0000001b80)=[{&(0x7f0000000780)=""/241, 0xf1}, {&(0x7f0000000880)=""/4096, 0x1000}, {&(0x7f0000001880)=""/196, 0xc4}, {&(0x7f0000001980)}, {&(0x7f00000019c0)=""/132, 0x84}, {&(0x7f0000001a80)=""/19, 0x13}, {&(0x7f0000001ac0)=""/136, 0x88}], 0x7, &(0x7f0000001c00)=""/219, 0xdb}, 0x9}, {{&(0x7f0000001d00)=@nl=@unspec, 0x80, &(0x7f0000001f40)=[{&(0x7f0000001d80)=""/136, 0x88}, {&(0x7f0000001e40)=""/220, 0xdc}], 0x2, &(0x7f0000001f80)=""/251, 0xfb}, 0x4}, {{&(0x7f0000002080)=@generic, 0x80, &(0x7f0000002240)=[{&(0x7f0000002100)=""/152, 0x98}, {&(0x7f00000021c0)=""/23, 0x17}, {&(0x7f0000002200)=""/48, 0x30}], 0x3, &(0x7f0000002280)=""/113, 0x71}, 0xff}, {{&(0x7f0000002300)=@nfc_llcp, 0x80, &(0x7f0000002480)=[{&(0x7f0000002380)=""/33, 0x21}, {&(0x7f00000023c0)=""/186, 0xba}], 0x2, &(0x7f00000024c0)=""/106, 0x6a}, 0x8001}, {{&(0x7f0000002540)=@isdn, 0x80, &(0x7f0000002840)=[{&(0x7f00000025c0)=""/3, 0x3}, {&(0x7f0000002600)=""/253, 0xfd}, {&(0x7f0000002700)=""/52, 0x34}, {&(0x7f0000002740)=""/107, 0x6b}, {&(0x7f00000027c0)=""/10, 0xa}, {&(0x7f0000002800)=""/63, 0x3f}], 0x6, &(0x7f00000028c0)=""/114, 0x72}, 0x4}, {{0x0, 0x0, &(0x7f0000002a80)=[{&(0x7f0000002940)=""/214, 0xd6}, {&(0x7f0000002a40)}], 0x2, &(0x7f0000002ac0)=""/8, 0x8}}], 0x6, 0x2100, 0x0)
getsockopt$inet6_mreq(r4, 0x29, 0x1f, &(0x7f0000004680)={@rand_addr, <r16=>0x0}, &(0x7f00000046c0)=0x14)
getsockopt$inet_mreqn(r4, 0x0, 0x23, &(0x7f00000004c0)={@broadcast, @rand_addr, <r17=>0x0}, &(0x7f0000004740)=0xc)
sendmsg$can_raw(r4, &(0x7f0000002d40)={&(0x7f0000002a40)={0x1d, r14}, 0x10, &(0x7f0000002d00)={&(0x7f0000002c80)=@canfd={{0x4, 0x1ea, 0x7fff, 0x3ff}, 0x3e, 0x2, 0x0, 0x0, "44e4ce31b37da0eb568737c048ecdc4739f513cd4054cb8c618b77cb6e3216eeebf7a5a932239b91071cf6ffa2e4e4491f0f5fbc94061c77aeac75f1043d6d54"}, 0x48}, 0x1, 0x0, 0x0, 0x40000}, 0x20000080)
getsockopt$inet_IP_XFRM_POLICY(r4, 0x0, 0x11, &(0x7f0000004780)={{{@in6=@mcast1, @in6=@mcast2, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r18=>0x0}}, {{@in6=@remote}, 0x0, @in=@local}}, &(0x7f0000004880)=0xe8)
accept$packet(r4, &(0x7f00000048c0)={0x11, 0x0, <r19=>0x0, 0x1, 0x0, 0x6, @broadcast}, &(0x7f0000004900)=0x14)
openat$full(0xffffffffffffff9c, &(0x7f0000000100)='/dev/full\x00', 0x88a01, 0x0)
ioctl$ifreq_SIOCGIFINDEX_vcan(r4, 0x8933, &(0x7f0000004ac0)={'vcan0\x00', <r20=>0x0})
sendmsg$TEAM_CMD_OPTIONS_SET(r4, &(0x7f0000005100)={&(0x7f0000000000)={0x10, 0x0, 0x0, 0x40000000}, 0xc, &(0x7f00000050c0)={&(0x7f00000034c0)=ANY=[@ANYBLOB="bc050000", @ANYRES16=r5, @ANYBLOB="000126bd7000fbdbdf250100000008000100", @ANYRES32=r6, @ANYBLOB="b401020044000100240001006d6f6465000000000000000000000000000000000000000000000000000000000800030005000000140004006163746976656261636b7570000000003c000100240001006c625f74785f6d6574686f64000000000000000000000000000000000000000008000300050000000c00040068617368000000003800010024000100616374697665706f727400000000000000000000000000000000000000000000080003000300000008000400", @ANYRES32=r7, @ANYBLOB="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", @ANYRES32=r8, @ANYBLOB="38000100240001006d636173745f72656a6f696e5f636f756e740000000000000000000000000000080003000300000008000400000000004c000100240001006270665f686173685f66756e6300000000000000000000000000000000000000080003000b0000001c00040000001f03ff7f0000010100000600000053060537010001003c00010024000100757365725f6c696e6b75705f656e61626c65640000000000000000000000000008000300060000000400040008000600", @ANYRES32=r9, @ANYBLOB="08000100", @ANYRES32=r10, @ANYBLOB="7400020038000100240001006d636173745f72656a6f696e5f636f756e740000000000000000000000000000080003000300000008000400ff7f000038000100240001006d636173745f72656a6f696e5f636f756e7400000000000000000000000000000800030003000000080004000000000008000100", @ANYRES32=r11, @ANYBLOB="7800020074000100240001006270665f686173685f66756e6300000000000000000000000000000000000000080003000b00000044000400ab00010403000000070003060500000004001f22080000000700003f000000000000ffff0700000009000008050000000200ff0009000000f8ff55010500000008000100", @ANYRES32=r12, @ANYBLOB="400102003c00010024000100757365725f6c696e6b75705f656e61626c65640000000000000000000000000008000300060000000400040008000600", @ANYRES32=r14, @ANYBLOB="400001002401000000625f74785f686173685f746f5f6b27e0287826c93a1839cc29b448b35a706f7070696e6700006057042b6b11a9a62aa6f1a690ae5cc166a6c34010d3e5f225283eec37e892568f951e14098b050617ce9b8cc09d0e91ddc81c05f9297cca10e0b03e5b7aa4ab16d209e66476eb8b0fa9a46f8a3cd17eba7b930eadd31f4eba8985e973d188cebb3006fdceb40103152353bf6dfde5846a08", @ANYRES32=r15, @ANYBLOB="080007000000000040000100240001006c625f74785f686173685f746f5f706f72745f6d617070696e67000000000000080003000300000008000400", @ANYRES32=r16, @ANYBLOB="080007000000000040000100240001007072696f72697479000000000000000000000000000000000000000000000000080003000e000000080004000100000008000600", @ANYRES32=r17, @ANYBLOB="40000100240001006c625f74785f686173685f746f5f706f72745f6d617070696e67000000000000080003000300000008000400", @ANYRES32=r18, @ANYBLOB="080007000000000008000100", @ANYRES32=r19, @ANYBLOB="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", @ANYRES32=r20, @ANYBLOB="38000100240001006d636173745f72656a6f696e5f696e74657276616c00000000000000000000000800030003000000080004000000000040000100240001006d6f6465000000000000000000000000000000000000000000000000000000000800030005000000100004006c6f616462616c616e636500"], 0x5bc}, 0x1, 0x0, 0x0, 0x10}, 0x4000)
r21 = syz_genetlink_get_family_id$tipc2(&(0x7f00000001c0)='TIPCv2\x00')
sendmsg$TIPC_NL_UDP_GET_REMOTEIP(r13, &(0x7f0000000300)={&(0x7f0000000140)={0x10, 0x0, 0x0, 0x200}, 0xc, &(0x7f00000002c0)={&(0x7f0000000200)=ANY=[@ANYBLOB="b0000000", @ANYRES16=r21, @ANYBLOB="05032cbd7000fbdbdf2516000000500004000c00010073797a30000000001400e4000008000300010000002c0007000800040001000000080002000700000008000300c72f00000800020037190000080001001100000030000200080001000601000004000400080002000700000008000100ff000000080001000300000008000200a70000001c00060008000100d9c80000080001000700000008000100ff0f000000000000000000"], 0xb0}, 0x1, 0x0, 0x0, 0x8000}, 0x4)
r22 = openat(r3, &(0x7f0000000540)='./file0\x00', 0x220800, 0x100)
write$P9_RUNLINKAT(r22, &(0x7f0000001980)={0x7, 0x4d, 0x2}, 0x7)
fallocate(r3, 0xfffffffffffffffd, 0x0, 0x4)
11:37:28 executing program 0:
perf_event_open$cgroup(&(0x7f0000000040)={0x0, 0x70, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xc98518eb4aca605a, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x3, 0x0, @perf_bp={0x0}, 0x0, 0x0, 0x4}, 0xffffffffffffffff, 0x0, 0xffffffffffffffff, 0x0)
ioctl$TIOCGSID(0xffffffffffffffff, 0x5429, &(0x7f0000000000)=<r0=>0x0)
ptrace(0x4207, r0)
capset(&(0x7f00000000c0)={0x200f1526, r0}, &(0x7f0000000100)={0x7, 0x5, 0x0, 0xe03, 0x3ff, 0xd2f})
11:37:28 executing program 0:
r0 = socket$inet6_udplite(0xa, 0x2, 0x88)
write$P9_RCLUNK(r0, &(0x7f0000000800)={0x7, 0x79, 0x1}, 0x7)
setsockopt$inet6_IPV6_FLOWLABEL_MGR(r0, 0x29, 0x20, &(0x7f0000000300)={@mcast2}, 0x24)
r1 = getpid()
getsockopt$inet6_IPV6_IPSEC_POLICY(r0, 0x29, 0x22, &(0x7f0000000500)={{{@in6, @in=@initdev, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r2=>0x0}}, {{@in6}, 0x0, @in6=@mcast2}}, &(0x7f0000000600)=0xe8)
getsockopt$sock_cred(r0, 0x1, 0x11, &(0x7f0000000640)={0x0, 0x0, <r3=>0x0}, &(0x7f0000000680)=0xc)
fcntl$getownex(r0, 0x10, &(0x7f0000000840)={0x0, <r4=>0x0})
r5 = getuid()
getgroups(0x7, &(0x7f0000000700)=[0xee01, 0xee00, 0xee00, 0x0, <r6=>0xffffffffffffffff, 0x0, 0x0])
sendmmsg$unix(0xffffffffffffffff, &(0x7f00000007c0)=[{&(0x7f0000000040)=@file={0x0, './file0\x00'}, 0x6e, &(0x7f0000000480)=[{&(0x7f00000000c0)="ff3df6ece7ac8922f6ac13018c8146caea757a92f40dba4470514dd5f26c9688a8597bd6b718a4a3", 0x28}, {&(0x7f0000000100)="79c8912a5afdcf39a2ce34beb26274dbe53f7bc5db83e8bcaa268e37404fd21c59d7b80bfc141b14059d7e45264942a1a9c53036e9d4478e2edb2a01a216b4420ac6aa66d8d494ba46301adc71ff65641e16cff70039", 0x56}, {&(0x7f0000000180)="d1e3f292e3602e523081e36c82ffa121a871207eec4a88", 0x17}, {&(0x7f00000001c0)="9afe6d09d8804157de158064a0ea508f94a4ad3b062250cbe6a9784e47c87219f19258b38dc28af830152af4d14b674e79faa16a321de41f6e591c3ba978fc87b6dae4fc94bfa0eba3be47bcef4688fd95f03377a003375cfd17cd8a5cae0e02d189b265c9ac9f746e5fc8013852f2162bb0bf192ce9c1afa007ba0587c91c40317e6728e2d0184fe8fe9f8f0791bac09d49064845d15defd9ed908b088f6edc5e6baec85b9b2d46002ce47863c6dce425f7fe1e7ac3c71c8eda24331b3c693675a0033093c2b2136f4a64b697cddd75959977df1a2640c6fff856f6f3d0dbd57ef32d2f5f6cea70e8cd89ce29aed798f166ef93931fdfdfa89ee4", 0xfb}, {&(0x7f00000002c0)="92101e7e3621c632c2ea104d4573d18528a163704c8e25989cda347d70abc3077231cbc352136d62e08fef00ec1dd02c38164e63bfc58ab494d055cd", 0x3c}, {&(0x7f0000000340)="763219c290d13dd5fe3a184e41c42c4697b65280bbc4528b737547cbb8a34f9cd3e850c35a162b96f5a3bb7e8302ab43b4fffcbd691fa9a734f4c7f39baf807681b1f9a0951efdb2a9ebe38559af008df959991852cd51edec85016768abbd722eb46b32e49dc52b27b77d870cc367f279cd1fe87f8f4fdda0bf84bffeb31d0831cdb00d2435f50b6170513f84863834a8beb00160167dc287cf6c57df9cb18c893974fd3df2f2b6d23fe46aafb9ac6fbc62062f7cc266d22ea0a8224a4265b468299c73744fac3ebaae1720f77001ca12", 0xd1}, {&(0x7f0000000440)="33994a2764b00811598fe71c96", 0xd}], 0x7, &(0x7f0000000740)=[@cred={0x20, 0x1, 0x2, r1, r2, r3}, @cred={0x20, 0x1, 0x2, r4, r5, r6}, @rights={0x28, 0x1, 0x1, [r0, r0, r0, r0, r0, r0]}], 0x68, 0x40000}], 0x1, 0x8001)
11:37:28 executing program 1:
r0 = socket$nl_xfrm(0x10, 0x3, 0x6)
getuid()
getsockopt$inet_pktinfo(0xffffffffffffffff, 0x0, 0x8, &(0x7f0000000380)={0x0, @initdev, @local}, &(0x7f00000003c0)=0xc)
getsockopt$inet_IP_XFRM_POLICY(r0, 0x0, 0x11, &(0x7f0000000400)={{{@in=@loopback, @in=@initdev}}, {{@in=@multicast1}, 0x0, @in6=@loopback}}, &(0x7f0000000500)=0xe8)
getuid()
getsockopt$inet6_IPV6_XFRM_POLICY(0xffffffffffffff9c, 0x29, 0x23, &(0x7f0000000640)={{{@in=@initdev, @in6, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r1=>0x0}}, {{@in=@empty}, 0x0, @in6=@remote}}, &(0x7f0000000740)=0xe8)
getsockopt$sock_cred(r0, 0x1, 0x11, &(0x7f0000000780)={0x0, <r2=>0x0}, &(0x7f00000007c0)=0xc)
ioctl$sock_SIOCGIFINDEX(r0, 0x8933, &(0x7f0000000ac0)={'hsr0\x00', <r3=>0x0})
getsockopt$inet_IP_IPSEC_POLICY(0xffffffffffffffff, 0x0, 0x10, &(0x7f0000000b00)={{{@in=@multicast2, @in6=@loopback, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, <r4=>0x0}}, {{@in=@dev}, 0x0, @in6=@mcast1}}, &(0x7f0000000c00)=0xe8)
sendmsg$nl_xfrm(r0, &(0x7f0000000200)={0x0, 0x0, &(0x7f00000002c0)={&(0x7f0000000c40)=@updpolicy={0x1cc, 0x19, 0x100, 0x70bd2d, 0x25dfdbfe, {{@in6=@empty, @in=@loopback, 0x4e22, 0x4, 0x4e21, 0xfffffffffffffff8, 0xa, 0xf79250d2332f9425, 0xa0, 0x2b, r1, r2}, {0x8, 0x7f, 0xf0, 0x100000000, 0x3, 0x3, 0xcf14, 0xbaa}, {0x0, 0x4, 0x9, 0xffffffffffff6268}, 0x6, 0x6e6bb3, 0x1, 0x0, 0xaf63d7bf34294e0c, 0x2}, [@sa={0xe4, 0x6, {{@in=@rand_addr=0xab53, @in6=@mcast1, 0x4e20, 0x78d, 0x4e22, 0x0, 0xa, 0xa0, 0xa0, 0x2c, r3, r4}, {@in=@multicast2, 0x4d4}, @in6=@mcast1, {0x4, 0x6, 0x1, 0x5, 0x4, 0x7ff, 0x3, 0x3}, {0x7, 0x8, 0x53, 0x42}, {0x8, 0x6, 0xd20}, 0x70bd2b, 0x3500, 0xa, 0x4, 0x7fff, 0xa}}, @sec_ctx={0x30, 0x8, {0x29, 0x8, 0x1, 0x8, 0x21, "473a5628a7ba9dcd19b4c6faadf3ee3cd41d6a4ad612335cc66d8f4e7b2ca23cf1"}}]}, 0x1cc}}, 0x0)
r5 = openat$vcs(0xffffffffffffff9c, &(0x7f0000000000)='/dev/vcs\x00', 0x20000, 0x0)
r6 = syz_genetlink_get_family_id$ipvs(&(0x7f0000000080)='IPVS\x00')
sendmsg$IPVS_CMD_GET_DAEMON(r5, &(0x7f0000000180)={&(0x7f0000000040)={0x10, 0x0, 0x0, 0x200000}, 0xc, &(0x7f0000000140)={&(0x7f00000000c0)={0x58, r6, 0x20, 0x70bd27, 0x100000001, {}, [@IPVS_CMD_ATTR_TIMEOUT_UDP={0x8, 0x6, 0x100}, @IPVS_CMD_ATTR_DAEMON={0x3c, 0x3, [@IPVS_DAEMON_ATTR_SYNC_MAXLEN={0x8, 0x4, 0xfffffffffffffffc}, @IPVS_DAEMON_ATTR_SYNC_MAXLEN={0x8, 0x4, 0x3}, @IPVS_DAEMON_ATTR_STATE={0x8, 0x1, 0x1}, @IPVS_DAEMON_ATTR_SYNC_ID={0x8, 0x3, 0x3}, @IPVS_DAEMON_ATTR_MCAST_GROUP={0x8, 0x5, @loopback}, @IPVS_DAEMON_ATTR_MCAST_TTL={0x8, 0x8, 0x3}, @IPVS_DAEMON_ATTR_STATE={0x8, 0x1, 0x2}]}]}, 0x58}, 0x1, 0x0, 0x0, 0x10}, 0x20000040)
eventfd2(0x400, 0x1)
11:37:28 executing program 0:
r0 = socket$inet6_udp(0xa, 0x2, 0x0)
connect$inet6(r0, &(0x7f0000000080)={0xa, 0x0, 0x0, @remote, 0x3}, 0x1c)
getsockopt$inet6_int(r0, 0x29, 0xc8, 0x0, &(0x7f00000000c0)=0x1d7)
11:37:28 executing program 1:
syz_open_dev$vcsn(&(0x7f0000000000)='/dev/vcs#\x00', 0x1, 0x2e903a80d3a1323)
r0 = openat$vfio(0xffffffffffffff9c, &(0x7f0000000080)='/dev/vfio/vfio\x00', 0x1, 0x0)
bpf$MAP_CREATE(0x0, &(0x7f0000000040)={0x3, 0x8, 0x4, 0x26bc, 0x0, r0}, 0x2c)
11:37:28 executing program 0:
futex(0x0, 0x85, 0x0, 0x0, 0x0, 0x4a000001)
r0 = openat$hwrng(0xffffffffffffff9c, &(0x7f0000000000)='/dev/hwrng\x00', 0x10000, 0x0)
r1 = syz_genetlink_get_family_id$ipvs(&(0x7f0000000080)='IPVS\x00')
sendmsg$IPVS_CMD_ZERO(r0, &(0x7f00000001c0)={&(0x7f0000000040), 0xc, &(0x7f0000000180)={&(0x7f00000000c0)={0xc0, r1, 0x0, 0x70bd2c, 0x25dfdbfe, {}, [@IPVS_CMD_ATTR_TIMEOUT_UDP={0x8, 0x6, 0x80}, @IPVS_CMD_ATTR_DAEMON={0x14, 0x3, [@IPVS_DAEMON_ATTR_MCAST_PORT={0x8, 0x7, 0x4e21}, @IPVS_DAEMON_ATTR_MCAST_TTL={0x8, 0x8, 0x4}]}, @IPVS_CMD_ATTR_TIMEOUT_UDP={0x8}, @IPVS_CMD_ATTR_SERVICE={0x28, 0x1, [@IPVS_SVC_ATTR_TIMEOUT={0x8, 0x8, 0xffffffffffff8d70}, @IPVS_SVC_ATTR_ADDR={0x14, 0x3, @ipv6=@initdev={0xfe, 0x88, [], 0x0, 0x0}}, @IPVS_SVC_ATTR_PROTOCOL={0x8, 0x2, 0x3a}]}, @IPVS_CMD_ATTR_TIMEOUT_TCP_FIN={0x8, 0x5, 0x8001}, @IPVS_CMD_ATTR_SERVICE={0x24, 0x1, [@IPVS_SVC_ATTR_NETMASK={0x8, 0x9, 0x2}, @IPVS_SVC_ATTR_TIMEOUT={0x8, 0x8, 0x7ff}, @IPVS_SVC_ATTR_PORT={0x8, 0x4, 0x4e23}, @IPVS_SVC_ATTR_PORT={0x8, 0x4, 0x4e20}]}, @IPVS_CMD_ATTR_DAEMON={0x2c, 0x3, [@IPVS_DAEMON_ATTR_MCAST_GROUP={0x8, 0x5, @rand_addr=0x40}, @IPVS_DAEMON_ATTR_MCAST_PORT={0x8, 0x7, 0x4e24}, @IPVS_DAEMON_ATTR_MCAST_TTL={0x8, 0x8, 0x10000}, @IPVS_DAEMON_ATTR_SYNC_ID={0x8, 0x3, 0x1}, @IPVS_DAEMON_ATTR_MCAST_PORT={0x8, 0x7, 0x4e21}]}, @IPVS_CMD_ATTR_TIMEOUT_UDP={0x8, 0x6, 0x12a}]}, 0xc0}, 0x1, 0x0, 0x0, 0x20000000}, 0x4)
11:37:28 executing program 1:
r0 = openat$hwrng(0xffffffffffffff9c, &(0x7f0000000000)='/dev/hwrng\x00', 0x0, 0x0)
ioctl$UFFDIO_COPY(r0, 0xc028aa03, &(0x7f0000000040)={&(0x7f0000002000/0x4000)=nil, &(0x7f0000001000/0x4000)=nil, 0x4000, 0x1})
r1 = syz_open_procfs(0x0, &(0x7f0000000080)='smaps\x00')
shmat(0x0, &(0x7f0000000000/0x3000)=nil, 0x7000)
lseek(r1, 0x200000000000000, 0x0)
11:37:28 executing program 0:
r0 = userfaultfd(0x80000)
ioctl$EXT4_IOC_GROUP_ADD(r0, 0x40286608, &(0x7f0000000100)={0x10, 0x3, 0xf6d0, 0x400, 0x2, 0x80000000})
r1 = openat$vga_arbiter(0xffffffffffffff9c, &(0x7f00000000c0)='/dev/vga_arbiter\x00', 0x40800, 0x0)
ioctl$RTC_PIE_ON(r1, 0x7005)
r2 = openat$md(0xffffffffffffff9c, &(0x7f0000000000)='/dev/md0\x00', 0x0, 0x0)
clone(0x0, 0x0, 0x0, 0x0, 0x0)
ioctl$BLKGETSIZE(r2, 0x1260, &(0x7f0000000040))
write$binfmt_misc(r2, &(0x7f00000002c0)=ANY=[@ANYBLOB="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"], 0xb3)
r3 = accept$inet(0xffffffffffffffff, &(0x7f0000001740)={0x2, 0x0, @loopback}, &(0x7f0000001780)=0x10)
sendmsg(r3, &(0x7f0000002bc0)={&(0x7f00000017c0)=@x25={0x9, @null=' \x00'}, 0x80, &(0x7f0000002b40)=[{&(0x7f0000001840)="d92bccd7b2c03c06011fba0cd24dd008aeab64203c37eabeec05d850a17e8b36974d6a3451db60dd00ed0821a428efe7817208ccff31e767be9f97898e2af1b06f63b0e71ae2dcb9fac416e2b8bb098221f3a136111ad05ab60a628eda9b1f2d106cca34b0dec9b7c97a51646195768088d7bf823473b07d488eda4fc78efce60d9b136d61258d5a4a5d404a1543a0ea0ccd93da03b6d9663d1ec355838c0d9bf0bed410f1af01766915860f66340a5cdc2212f1ba19e330f67a3c0beada5bdae1fc4035e60ee01240f2cd76cc14fbc25b9e19110c499b713ff7da03e63e9451d741ce5b332a331b92e5ca79a7d3a1a9ba43a764059d76e6b083964bef6cf4cf40dbc5e00af6c64170786136c90042604cc3e3d0d03926f82614431dfce7cba953e68bb6e0ed7d3ce53a45b0d421ab7bc66d6e13d42c0f50dba727b7f30c6850221051e1c0f6b4e1719f14292b94b541d5e5156ea12f0203120e986c2005a33411f1da290934060758167d041846fa1dbd7036cff1ac7cb7fe7c322e63a4a45897216ad36663994e3afe0607086f351a0b68c5b240518c48fabff3076a08e5c99b3714fe15f466eab0c49e74736e9fc0f03f9bd69b8762c7e6fc7f6a092b61186bffdbf45713cd0fdd0937cc8591e6c9cb8f9ce28fa1d01986b30ed0bb445760b70bc179d5b10f3dd5607e83c7b6d9c4ff3356378daaa52105f15e90797bc5ceef06bdde15c2417071da88d7171cbe526e90a8e78f6c6ac99dee1bc63f2a742d207166590f0ae4d45eae962592039006e8f4c48c7021479f3c6a591f274f6275e83f79fd6372d91237bb9a0e84f4b5f037611e5d2f637689f11ef63686e8ee8f6ca1bcc72fde360422cc1b6bb9f00d52e076111660f4f2f30d31661f82a37c916b28a588ab52897ca5079dd757528b26cb9fee6a054dca58edd2879431fa20a47dbc50e0941d0a870c11a1acc3738b06bc3c6e2518e64f1cf41253780f929cb02cba734bb5653f2b413861e0ff80aceaf02b820f670891159db759fe5a8278f365dffcfe071dfc1a77c7fd24135c2e642d4be6c530af184c5c98b6020fd452ca83d44348e68e210f378c00c5c583d8a2f102f878f8f8f238eaade573b173f79f4fafc68ff6707eaabc6b64e7da3becd0cb398273a3ab7b24cb39b17d6427556848b64ff8b6a43cd98507e300f3c8f81db98fa47e9bda598a96cd07897a78c4f5ccfc412953f6a5e7015355c036c9493a5250718d0055d65c1865ea1753859a61396c2cf104dd31d82d52e23a412d1e43ffd93b79b5bba26524ccbf91e4c0a3ad371d80ae60ba2f3cf702fbb328e73bf58a922af10f97201d96a57dc1b167a89df89765785a1feea73372166bbe09b05a20638a65f7311d3da77466c584a4d9430c5bffe9730156cc14a3bf616e8f9c835c2a913d4f9465f7da6bce682df925c99c4249fcba9699c810fa0c2970af9542091eaaded04855070cb6f60af0279c43a2ccf64f8cc507d041227a6b04983cc22eeb915531c689055ecb3b202c319ba4dc8db25725b2e851854abc78333dec549b9eeddca35cc642cae3985c7cb897e724776eb941dd4aca651ea51fa638cb328675e3d196bdc043d51d1994eaabf669abb9a98197e529350aae8b7c1be48b8255fdf89d124c7c6d4286720989a3a3078278d79feb8fcdd920bedb438599b0db0e557ab012d743215bed38829b1776a797465a59d0459b43e9b11137b2bfb9891309aec66c4d12fbd99a91990f3b9b1b83c5eb35b780aec245454bbe180fcba5e3fac504373e59449f9b37f15b8f341a3fac0b255a5a1b72097b1792dbb800e2060a6762e209b38edb63721cbc0d60c1fd7d6a60440f74973f6d96f68a9d128c6f24dc5e581edba4889b21d4ed7c8ca1a22ae998732de101cc5bef4f7d5a96c9efc253e2073dfe44e93b4ccc4d86076f28dfe6d46bc46bfdcecba85de0545a88ea1cef66b2341534784b9157929dd81ae14c04d94114687cae3a05f4cfd77cc2a32e2d4c2d1309f46ebc2befa4704cd339a4f6ae424f250274258765d282c15c9727f77279441a63a7284855bc498f7dd7507fcea7b7be4575b0ae6f4be552c9f709d45bafa6a2b3a9d3c964bd4c20f2f540fbb3a39d25404ebbd5d2c62e7e9bf5be3fa1f05ae5d38f04d6307ebbbd02c264a926be667a51469a4e60d89785bead6a9e1abd7a77b118873dc9f98455f87a6c82c181d0b1e600f2cf31266d67802487e36192614c1b0ca6321b9b63e11ee76e0e4f5faeeaef4847fc90648a00e8cc3368392cd825bb6c9bc31c48a224320b38be0d78a0060f3ef664bd7be2c9118ed3beb71cc0cc78b3c5d599857d98fc55e06c7c2bba055657f2b696efcf60060672a236a0cb19c647ea5b31266b7b584f558652ff15648e3f2b345f2c90c4e8712781990b0891f0e50c82031d696ae5d405e0394fc30f80824c47ef8e877b15f2bb21158b67fa94628f45991a424ffe82a18b6b40d8dcac623450e44848cf76f0eede0eff200b67c6c1c55f766a350114cc5e2b31be3306926a475bc92f97cc583c14bbfd0288d53f7f1dea784f3e1c0507c46e6058be616229beef88b20d69022832ef0f94cc8a80928bde6cc189ea4610bd9be24024916158644a2b6609c419ad73458db9f3898b8038581f98a44094d759c294474b2e37832d9fd548852b3d729ba1162c2ee273b11221cadba4c68ff93402c691580be54abc603797090821313ec49a065f8df278c7a4127b710331f00b156382cce622363ad88cbc346a1aa2388d90fe5a4ec98bf782e53400edc858fbec5d770660bb8e6a625878f25401c46b936e64f887cb14a3da8d66a25d61f794632af4e3a9cf688315709705f22cafeeb87f4acd4a698d23f554951b081be69d205e2422808d4e2697e137c7cc280c3ed86f4c22db2fdbc003a559ac6e1cd70bbb72bc48fd86edee69d0ca183626d9637315020b67352b8d7b3ba9a503a9fedbd68d34d41a455665520ceb5d7ea985b2aef5c814b3963788e306e968cb28c3d331ac080a3a24dae111efa45751aa33f2163d0cf963b5744c27232b41ff97bf341d71c7122fd542e3388e315cc84e725ac66313ad64b2176658c418b6f1762f819e7385f6a7d4ef082b2e13643e36992938ee883d3881e553837bb1ee3fa3d9b0b12e970d99442e487365af468fc1860f18ad29efb9269128f0dff17547356d40974d73bb507a81aa93a9ee6da9d0032d352e43ba2b932a99a980ebef5447b302edcee4d90c769eec5086197e8d309c7fa829ef15088c0f5244014b1d9bd209458e9b7fcca42776ca4f8b216e9f293eed96236d50ab8ccb8609ab1fc89bd8b245a44bf1af6d9b8610d6c40b2095f1880cdaf7989c9bdb0ab5dcbd42ec714a08b0e36c29cea61edd9352129db5c0083d7fd03434de49b941c459612ec15c596fa1536efb6d5b8d7363d5d931944327caae44b13e5293c261214ffa171ca2d90b0d3d0787a50ebd176291becdddd09ee9740f58660e81270d4728c4d353f915905cbd8039b774bcaf8528cc00dc2bb23f7ac7dd5d79814b574f134e0975d588f588d6aa0635d404e2f15f88e9f996797431db9eac00adc94226bd0f1bf19f99db1991b7fb2adc62ce032665b5560af7804193eb2932a3976d20d285870746e62b89dc1f2f4fd197f772aabdf3a01e5f3e9cb3f2940797b8cb5158b62e7ed096bea1178a071620130fe0f7a0b011f54bc66ac5ef193c19fbbf7b656be0133b7b8fa96aff1a1829e902a29614840f157d89e0202f8e04fd81dfe138abbf0bd29813f9f28d7d326437a8ab94237a65e736bde2b6557a62a3871bef9f7f7f353e4103a03b78855997e927b42d3b5895c5288bb902051b3b3b4645fa687b27980593711b211862a0335b081f37cc1c25fe2c08a699c9799d6ce909d6a9530d0073ebe75cec8ff08c4ec32e8fde44abd1c347e3bcece9576ae7ec6a3ab5773edb6fc6fa12a4609454d59cd16e54d073592839c213071af533abc2b5517ed754f5f9e3a8316f2af9c377d1e0e08581cb16c9ccf64437050ee97562bfe7529b323bd58ba0d5ea27aee48119635efa4724d84ed4c4f3d05b4532aa4aadb961e3900559a84db439a9c825b2b7e810027fea6d43d8fa37d25a1522a5393b47a3e2311fe11ec3177b9ffc332c744b2f6d591a5f351185aa1c5fdd28bf2fbeb257b3ec153d9a7b622ea805e8fe2a97f1b3aa9f1427c64edd97d4152035a29f03717028c9e0cdd96f262bd4c25a18d9970d0631e8a04212425055f6ac5a75206180658d787e6dce5b159437d42be04cdeb0dbe851273e9a2b0d2ae1834eb0e47e8af5614eabcf5520c4738e6528ff4efcf982540e79593a0a6a0b6e167be2e4f93228246c6eb895809341d16aef5a48de1e7eb380a8385d6f0ecca47a0ece21f32f8ff7a19fbe55ccee3d3be3ed58531f6f3c94c8b449bc7b7497275badc33f216d1538c3712aed55abcb852294784dd31e17399afdd9e9e0a063dc6bbd1fd8bb96898630546f62d75701aae6ba9dabe60497834f7f1fbb770a10a793ebf8c5a4e59cd7eaf6f3b39c352375fe3bcf10b65208c5e1600405405147e41ee4bea5fc5d94bedb90b66fb9ddb1ed3f0a37443517f57f3d4769adf99eb430d2433afa1143cd120481b43c04cfcd885ae40320b585faca75ae3c4f84b18ff7da5c46cfec5e2f1027932bded6a49383786d766412b9e28b267636895826e0afc9ab6dfab777201a5aa2eb755c22cdaca27284021cc64e4d2299775f2f490ddf3d53f931f1322b7e276b90954afefe59f33e3d5e0038db61bbe9827b41b546a823cf57930997ae17048eaf5c61db09ebfdf87f3294f2e16f61fd343ef470a0fe30e54acaccaa730d337da60a590b9a26533d9d005e3d629f4ffc4ab499dd65ea20487a84fe8136d258da1ff5a59eb8f528ad4f56c0eb097426bebae783f77a561f49e9887299e30d1e89aeb83eea196c96d6cccfa87b470102b38bed4213f2d49378457ee8184815615c0a8129999be75c478f69686b5d2c4715065e5863adf5478aa3b577697110080f2a9e7e2cb778f505f3378397fe4437ede10876aabab4b81b0c7ad583e2ac6bf44fa5af84faa20ae2850508bea809bb9db42ec6b2187a061792e6828153c7cc9067d374c381e10a1d9fd7e1cc1a7da66505bca274df82a8a323bbe8f599290c8b3ea33fb544abd0221e548c8bebbd915ec9b9c76c4a1f67e0dd7964bc164ede1a93b4d235410aee8b2d29e84a5df3b56cdb151926af1535225e9130ed34033e0e5117a3d61849d8789c99f43a16ff86a2979a693cc614a2ecec71c4d624cde650ab10924e7d9deb9896bca789d37d0bf8738f59a1c6842ab6ae8765310278567215624443bdd88f30242b827f9b98948017828c3a402ed3540c334e044347233bc8a3937cd9ac31169a59087f2e52710c146aefc511d65cb4abf0951755d9d4ed5d9be62897f9bef0604291ca021ff3d5a2494464b4cde544dc9749d5d0ac8a70d9b9fe933a735f0937476b7d4cc87508e0ec8403ba5c3d50ed8c3610dd4210d144db6135f858f01f073675cb81c0a0431496c91f640d573e1cd5cbada6465f7dd425dc9518ec91ece2f93fb30a39e75579c2fedf147f5de7bd1f5b14c9855f45012514187fa25372805fc90b4ef0ecc18a93cde97f3b182f0ba530a3511a8d35fff9757328c30d221e8163a54585cb1b8f9f80334dae82356363661a9606fbb103cc9bf3c81ac1c8b70cc4c8d15274a126af3faa2edd2109b522adb951f372b4", 0x1000}, {&(0x7f0000002840)="442f69dc23abcd1f57796906dd234b9b0ed3f9f51b9f0df2eb8d4ddc1fc45254", 0x20}, {&(0x7f0000002880)="ac2884536bdd19588c5fdba0aed8fd2a71046f485adae0647bfe57cce2df4c111474ad4502a60218c190ce321dac8982fd02bfaeb0dd8d54d79fa65e193c7cb0613188712334541430f2dabb861beab074fd99dcb95777edb4efe8c41bc4c16eefdc43249373b662e414ac9ad7f5101f0324d2647b927bd6ca4f28ed8580c01e9cfdbf9eec769170ea6502a49af39a2845772e695563345a7b2b64ca4811954f5d378398301c61", 0xa7}, {&(0x7f0000002940)="efc665bf938fa3eb9b833e7af423a05ed061d5c13d3c3aaf5e4baec40d4c73d6c71cf24a08fd3c2059e7f9f9cb1060c6b8ca8658f30656bda3a95cc3b8d8960a4fdff9e659d256c89470a4432560bab1edb69a18abbe92", 0x57}, {&(0x7f00000029c0)="97c56898454faf1df41b8d5d5e5ab0e9846e5570caa2c220e36cb18d5b9630f2c8f57275e49380e306230e206621a8fb4945ee25548a3461aff658bb98985cc72ddf30fe60eb", 0x46}, {&(0x7f0000002a40)="2a12d8650c211d89790d29028d8dc1e31e14a8a1d43f2aa7bc776bc357392d29cf91a7b3", 0x24}, {&(0x7f0000002a80)="fa642041d2bdcdaa2d12686f293a6b3ee1c75bf1deaa3badf140dcfe6f8a89f6aec9b8a2422e4163da924c8b474cada334d623d59e90c22de9ad1eec8e7a0c4f45d763c0604d7dcc5c7eac257b85e4db3748b4db791920ce40ea409b24f7cfba6077496d9274fcdb3472ec5c6fbc7f23f348e9b8d1eb5986b305940c366263d34dadde450e9503c45321a966", 0x8c}], 0x7}, 0x4000)
ioctl$RTC_SET_TIME(r1, 0x4024700a, &(0x7f0000000140)={0x19, 0x2, 0x12, 0x4, 0xb, 0x0, 0x0, 0x12a, 0x1})
ioctl$BLKROGET(r2, 0x125e, &(0x7f0000000080))
11:37:29 executing program 0:
r0 = socket$inet_tcp(0x2, 0x1, 0x0)
setsockopt$inet_tcp_TCP_REPAIR(r0, 0x6, 0x13, &(0x7f00000001c0)=0x1, 0x4)
connect$inet(r0, &(0x7f0000000000)={0x2, 0x0, @remote}, 0x10)
setsockopt$inet_tcp_TCP_REPAIR_WINDOW(r0, 0x6, 0x1d, &(0x7f0000000080)={0x0, 0xff, 0xe4d2}, 0x14)
setsockopt$inet_tcp_TCP_REPAIR(r0, 0x6, 0x13, &(0x7f0000000040)=0xffffffffffffffff, 0x236)
r1 = fcntl$dupfd(r0, 0x0, r0)
sendmsg$TIPC_CMD_ENABLE_BEARER(r1, &(0x7f0000000300)={0x0, 0x0, &(0x7f0000000780)={&(0x7f0000000280)=ANY=[@ANYBLOB], 0x1}}, 0x8890)
write$P9_RRENAME(r1, &(0x7f00000000c0)={0x7}, 0x7)
11:37:29 executing program 1:
r0 = socket$unix(0x1, 0x5, 0x0)
bind$unix(r0, &(0x7f00000004c0)=@file={0x1, './file0\x00'}, 0x6e)
listen(r0, 0x0)
r1 = socket$unix(0x1, 0x2000000004, 0x0)
fcntl$dupfd(r0, 0x0, r1)
mount$9p_fd(0x0, &(0x7f0000000080)='./file0\x00', &(0x7f00000000c0)='9p\x00', 0x0, 0x0)
accept$packet(r0, &(0x7f0000001200)={0x11, 0x0, 0x0, 0x1, 0x0, 0x6, @random}, &(0x7f0000001240)=0x14)
connect$unix(r1, &(0x7f0000000000)=@file={0x1, './file0\x00'}, 0x6e)
11:37:29 executing program 0:
timer_create(0xb, 0x0, &(0x7f0000000140)=<r0=>0x0)
timer_gettime(r0, &(0x7f0000000700))
timer_settime(0x0, 0x0, &(0x7f0000000000)={{0x0, 0x989680}, {0x77359400}}, 0x0)
r1 = socket$inet_udp(0x2, 0x2, 0x0)
ioctl$sock_SIOCBRADDBR(r1, 0x89a0, &(0x7f0000000580)='ifb0\x00')
r2 = openat$snapshot(0xffffffffffffff9c, &(0x7f0000000200)='/dev/snapshot\x00', 0x4000, 0x0)
ioctl$RTC_PLL_GET(r2, 0x80207011, &(0x7f00000002c0))
r3 = openat$rtc(0xffffffffffffff9c, &(0x7f0000000600)='/dev/rtc0\x00', 0x1, 0x0)
ioctl$KDSKBMETA(r3, 0x4b63, &(0x7f0000000640)=0x7)
io_setup(0x7, &(0x7f0000000240)=<r4=>0x0)
ioctl$sock_inet_SIOCGIFBRDADDR(r1, 0x8919, &(0x7f0000000100)={'nr0\x00', {0x2, 0x4e22, @dev={0xac, 0x14, 0x14, 0x28}}})
io_getevents(r4, 0x8, 0x5, &(0x7f0000000400)=[{}, {}, {}, {}, {}], &(0x7f0000000280))
socket$inet_udplite(0x2, 0x2, 0x88)
ioctl$sock_inet_SIOCADDRT(r1, 0x890b, &(0x7f0000000080)={0x0, {0x2, 0x4e24, @initdev}, {0x2, 0x0, @dev}, {0x2, 0x0, @multicast2}, 0x97, 0x0, 0x0, 0x0, 0x0, 0x0, 0x81, 0x4})
ioctl$sock_inet_SIOCADDRT(r1, 0x890b, &(0x7f0000000180)={0x0, {0x2, 0x4e21, @initdev}, {0x2, 0x4e24, @broadcast}, {0x2, 0x4e22, @broadcast}, 0xffffffffffffffff, 0x0, 0x0, 0x0, 0x0, 0x0, 0x1000100000000, 0x1000, 0x80})
r5 = openat$autofs(0xffffffffffffff9c, &(0x7f0000000540)='/dev/autofs\x00', 0x20107, 0x0)
getsockopt$IP6T_SO_GET_ENTRIES(r5, 0x29, 0x41, &(0x7f0000000300)=ANY=[@ANYBLOB="00000000050000000000000000000000120000000000ed00000004000000000000000000000000000069ccd9533839152c5ef51c7f071a94aacdc55ce9057b24f813e32e77da8423f88f430f794371b8a7b6a00a83f5375da4a4f236a3f8754a409c00f448c15117add204f6568ba8cb9e6dd2fe862f04e981ca3c1e7e6bf81b6cbb2cccd272d663000001001775f70dd2b90b2cc108efdf26b3f07e3af6e119677f320820333812a23eb13300d8c55c5102da3afb7927734f179a11aaac0bede56f841233733c129873fd1e58498533bcb8bb49c70064e8fc8e8abd5cf7ce3615443da0eec20d6f0b8af933b1259d7b821c839c60dc"], 0x0)
getsockopt$inet_mreqn(r1, 0x0, 0x24, &(0x7f0000000ac0)={@multicast1, @initdev, <r6=>0x0}, &(0x7f0000000b00)=0xc)
setsockopt$inet6_mreq(r3, 0x29, 0x1c, &(0x7f0000000b40)={@initdev={0xfe, 0x88, [], 0x1, 0x0}, r6}, 0x14)
r7 = gettid()
socket$can_bcm(0x1d, 0x2, 0x2)
prlimit64(r7, 0x0, &(0x7f0000000040)={0xfffffffffffffff8, 0x3}, &(0x7f0000000680))
lsetxattr$security_evm(&(0x7f00000004c0)='./file0\x00', &(0x7f0000000500)='security.evm\x00', &(0x7f0000000740)=ANY=[@ANYBLOB="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"], 0x1, 0x1)
ioctl$IOC_PR_RELEASE(r5, 0x401070ca, &(0x7f00000006c0)={0x8, 0x46, 0x1})
11:37:29 executing program 0:
timer_create(0xb, 0x0, &(0x7f0000000040)=<r0=>0x0)
r1 = dup3(0xffffffffffffff9c, 0xffffffffffffffff, 0x0)
timer_settime(0x0, 0x0, 0x0, 0x0)
openat$zero(0xffffffffffffff9c, 0x0, 0x2, 0x0)
syz_mount_image$cifs(&(0x7f00000000c0)='cifs\x00', &(0x7f0000000100)='./file0\x00', 0x7f, 0x4, &(0x7f0000000500)=[{&(0x7f0000000240)="feb50bf1cd3ca49a44fd8c708c2585e0557bbd96dae3f0a510298a1669ec1a4e5c2c8c683e93fd80ada1cdcdbd6a1cb44ac854c529184cbe1a6dc28de8b832e10f0afd87fdb653d846ff725dc2751d7f398c508743a38c3eb8ea5f208f3f7cae258ab866ee4ce521b8b11f88ae6eaa22ed5843e19503a0ddaaf04867a9873d94af3f6eea5c10f2fa4fa09b1f14a767aebbb2db49952942d5be1877b2bd8d6453d8f7e3e1327d2699b65ae68f76e83980d3f7148edb5f3d941002bcb606c31ed336f6f696", 0xc4, 0x5}, {&(0x7f0000000140)="7d58df8ad5f0328c476db3ba543116af956fbe3f2a8f1d60e9cdf4a9c01ad09f603833aa30b48184ebf73d7544484a251bc109245070accf7a0baf20f5b2c07dc930d99e3a9f3a13a5f7b07ab09fe7b4a2d8b7014dca0a0889bea487eece767982fd95ec93b77e06d1ed282827e3c199c1f6d8c5ff33cb09af71d3168db4bfd261dc9eed164d60143df25125447e61ca2a45f3814a5270f880586a8914c128", 0x9f, 0x401}, {&(0x7f0000000340)="5a7b3a27f2d6ef9fb90a30e4d450defa338aee3ad7ea9540b74498528d96a24c76acdcb9f31043de298b468f6306b98374c76a93e18ab6778f0a6bd69acba1e3c24c14fcc5532f733b7f266512c6541e99c897786321a05185daf9e223870bb0a4966ce87ea9c1fac5dc24e6642ea6bd3c65d8cae19e74ec22b740bd888f343bc2bbf44e356377cc5ae589eef0715f609314f0102b03eca7", 0x98, 0xffff}, {&(0x7f0000000400)="d44f14a39705d93fbebe020c6a8beca53c7a758a5d9475c36ed44851fd9ddcb0c501a0bc710131b1e7d6ff1b021c4f0b1950f9506f309c0f7962b3a9c3dcb446b7e056d856ff4228ac4762ebcb5951e17a97eb6a420ad15650cbd4d6c60f06d264480f9a3e4b3e6e374d4e5ef1333ad6ee78bad593a4bd5c2327e42e9da5a4244cd7ac5445ac22286f777a6298942a4a2c00b500f282a1a09ea8c6c9ef5640c61754a84bcbead707ce861afb248308d10f3135b57672b721a92a48536a0935b39d697523536907fa0c188d9162f6f50db48867371e45e10f6d43d3a21709f053", 0xe0, 0x100000001}], 0x2080000, &(0x7f00000005c0)='TIPCv2\x00')
getsockopt$IPT_SO_GET_ENTRIES(r1, 0x0, 0x41, &(0x7f0000000600)={'filter\x00', 0xc1, "e885ee3cf25284212ebfa2ae62e8c459343bb8016a2b9900113683321f4993f33ff6d25a59f7cea7a00c29e482aefed76f5d86a9a56ec2bb8d11626ae59106b49d860746498e95419a954b5d199db223559257c0f5d8d60898d3c973024a820226dfff4992f4478a51f7ada90d52189ee1ce99c477eb37de11b7cd3b0423e005ddf80427ff16a09d962d65b334e92618faa65515f763656014170dfec75c8ec7c2add21c9b51453362bdade7941ff31839e7d79931a0686973d0350907d14bc1ce"}, &(0x7f0000000700)=0xe5)
r2 = openat(0xffffffffffffff9c, &(0x7f0000000080)='./file0\x00', 0x42, 0x0)
timer_settime(r0, 0x1, &(0x7f0000000740)={{0x0, 0x1c9c380}, {0x0, 0x989680}}, 0x0)
getsockopt$inet6_int(r1, 0x29, 0x4e, 0x0, 0x0)
ioctl$EXT4_IOC_SETFLAGS(r2, 0x40086602, &(0x7f0000000000)=0xc011)
write$eventfd(r2, &(0x7f0000000200), 0xffffffc8)
syz_genetlink_get_family_id$tipc2(&(0x7f0000000580)='TIPCv2\x00')
timer_create(0x0, 0x0, 0x0)
timer_settime(0x0, 0x0, &(0x7f0000000000)={{0x0, 0x1c9c380}, {0x77359400}}, 0x0)
socket$inet6_udp(0xa, 0x2, 0x0)
ftruncate(r2, 0x0)
ioctl$sock_inet_tcp_SIOCOUTQ(0xffffffffffffffff, 0x5411, &(0x7f0000000080))
11:37:29 executing program 0:
r0 = getuid()
r1 = socket(0x7, 0x803, 0xfdba)
ioctl$sock_SIOCGIFINDEX(0xffffffffffffff9c, 0x8933, &(0x7f0000000040)={'syzkaller0\x00', <r2=>0x0})
ioctl$sock_inet6_SIOCDELRT(r1, 0x890c, &(0x7f0000000080)={@remote, @empty, @rand_addr="7e56a3163bbe7f5ec618a7a9e04268b4", 0x6, 0xffffffffffffffc1, 0x400, 0x0, 0x6, 0x2040000, r2})
setreuid(0x0, r0)
r3 = msgget$private(0x0, 0x2)
r4 = getgid()
r5 = getegid()
bpf$BPF_TASK_FD_QUERY(0x14, &(0x7f0000000180)={<r6=>0xffffffffffffffff, 0xffffffffffffff9c, 0x0, 0xb, &(0x7f0000000000)='eth0*+V&{,\x00', 0xffffffffffffffff}, 0x30)
r7 = getpgid(0x0)
msgctl$IPC_SET(r3, 0x1, &(0x7f00000001c0)={{0x1, r0, r4, r0, r5, 0x40, 0x4}, 0x0, 0x3, 0x8, 0x10001, 0x5, 0x4, r6, r7})
r8 = syz_open_procfs$namespace(0x0, &(0x7f0000000100)='ns/ipc\x00\'@\xba;\xe2A;\xa6\xb4\xb2?mVU/<\xf4\b\x93\xcb\xfd\xc6\f\xb7\xb0aqP\xe96\xbd\x9c?\xd6\x9e\x89\x98N,\x86\f\xda\xbc\x90\xc3\r\xc1>\xb9^\xfa\x98\xa2\x9fon\xf9\x1c\x9d\r\x15\x1c')
dup(r8)
setns(r8, 0x20000000)
11:37:29 executing program 0:
r0 = perf_event_open(&(0x7f0000000100)={0x0, 0x70, 0x0, 0x0, 0x0, 0x0, 0x0, 0x1, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0xccd, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, 0x0, @perf_bp={0x0}}, 0x0, 0x0, 0xffffffffffffffff, 0x0)
ioctl$PERF_EVENT_IOC_ENABLE(r0, 0x2400, 0x5)
ioctl$PERF_EVENT_IOC_PERIOD(r0, 0x40082404, &(0x7f0000000040)=0x1ff)
11:37:29 executing program 1:
r0 = socket$alg(0x26, 0x5, 0x0)
bind$alg(r0, &(0x7f0000000040)={0x26, 'rng\x00', 0x0, 0x0, 'drbg_pr_hmac_sha512\x00'}, 0x58)
setsockopt$ALG_SET_KEY(r0, 0x117, 0x1, 0x0, 0x10168)
r1 = fcntl$dupfd(r0, 0x0, r0)
ioctl$sock_SIOCGPGRP(r0, 0x8904, &(0x7f0000000000)=<r2=>0x0)
write$P9_RGETLOCK(r1, &(0x7f00000000c0)={0x32, 0x37, 0x2, {0x0, 0x1, 0x9, r2, 0x14, 'drbg_pr_hmac_sha512\x00'}}, 0x32)
11:37:30 executing program 1:
r0 = request_key(&(0x7f0000000140)='encrypted\x00', &(0x7f0000000180)={'syz', 0x3}, &(0x7f00000002c0)='bdev\x00', 0xfffffffffffffff9)
ioctl$TIOCGPGRP(0xffffffffffffffff, 0x540f, &(0x7f0000000380)=<r1=>0x0)
prctl$PR_SET_PTRACER(0x59616d61, r1)
r2 = openat$vcs(0xffffffffffffff9c, &(0x7f0000000200)='/dev/vcs\x00', 0x10000, 0x0)
ioctl$EXT4_IOC_MIGRATE(r2, 0x6609)
fsetxattr$trusted_overlay_redirect(r2, &(0x7f0000000240)='trusted.overlay.redirect\x00', &(0x7f0000000280)='./file0\x00', 0x8, 0x2)
add_key$keyring(&(0x7f00000000c0)='keyring\x00', &(0x7f0000000100)={'syz', 0x0}, 0x0, 0x0, r0)
ioctl$KDSKBMODE(r2, 0x4b45, &(0x7f0000000080)=0x9)
openat$cgroup_root(0xffffffffffffff9c, &(0x7f00000003c0)='.\x0fcgroup\xdanet/3yz1\xecK\xb1\x8a\xbe\x04\x00\x00\x00>\xbb\x98\x05\x00\x00\x00n\xa6Z\x9f\x82\fN\x8a>\x04\xc7\x883\x88\xcd\xf6F/', 0x200002, 0x0)
bpf$BPF_TASK_FD_QUERY(0x14, &(0x7f0000000040)={0x0, <r3=>0xffffffffffffffff, 0x0, 0x2, &(0x7f0000000000)='@\x00'}, 0x30)
ioctl$PERF_EVENT_IOC_DISABLE(r3, 0x2401, 0x3)
lsetxattr$security_evm(&(0x7f00000001c0)='./file0\x00', &(0x7f0000000300)='security.evm\x00', &(0x7f0000000340)=@md5={0x1, "7499c1077bf2491ceb7c3ec2505c3f7e"}, 0x11, 0x2)
[ 206.403225] perf: interrupt took too long (2728 > 2500), lowering kernel.perf_event_max_sample_rate to 73250
[ 206.405650] perf: interrupt took too long (22441 > 3410), lowering kernel.perf_event_max_sample_rate to 8750
[ 206.408272] perf: interrupt took too long (42683 > 28051), lowering kernel.perf_event_max_sample_rate to 4500
[ 206.410816] perf: interrupt took too long (61038 > 53353), lowering kernel.perf_event_max_sample_rate to 3250
[ 206.413169] perf: interrupt took too long (80088 > 76297), lowering kernel.perf_event_max_sample_rate to 2250
[ 206.415998] perf: interrupt took too long (100675 > 100110), lowering kernel.perf_event_max_sample_rate to 1750
11:37:30 executing program 1:
mlockall(0x6)
r0 = socket$inet6_tcp(0xa, 0x1, 0x0)
ioctl$sock_inet6_tcp_SIOCATMARK(r0, 0x8905, &(0x7f0000000000))
setsockopt$sock_void(r0, 0x1, 0x1b, 0x0, 0x0)
ioctl$sock_ifreq(r0, 0x89a2, &(0x7f0000000340)={'bridge0\x00', @ifru_settings={0x1, 0x0, @raw_hdlc=0x0}})
[ 206.422228] perf: interrupt took too long (126205 > 125843), lowering kernel.perf_event_max_sample_rate to 1500
[ 206.430009] perf: interrupt took too long (157884 > 157756), lowering kernel.perf_event_max_sample_rate to 1250
[ 206.438569] perf: interrupt took too long (198023 > 197355), lowering kernel.perf_event_max_sample_rate to 1000
11:37:30 executing program 0:
syz_open_procfs(0x0, &(0x7f0000000040)='numa_maps\x00')
mprotect(&(0x7f0000007000/0x1000)=nil, 0x1000, 0x0)
madvise(&(0x7f0000005000/0x3000)=nil, 0x3000, 0x8)
madvise(&(0x7f00001e0000/0x2000)=nil, 0x2000, 0x64)
io_setup(0x200, &(0x7f0000000000)=<r0=>0x0)
io_pgetevents(r0, 0xfff, 0x2, &(0x7f0000000080)=[{}, {}], &(0x7f00000000c0)={0x0, 0x989680}, 0x0)
keyctl$KEYCTL_PKEY_QUERY(0x18, 0x0, 0x0, 0x0, 0x0)
11:37:30 executing program 1:
r0 = socket$inet6_udplite(0xa, 0x2, 0x88)
socket$inet6_tcp(0xa, 0x1, 0x0)
sendto$inet6(r0, 0x0, 0x0, 0x8000, &(0x7f0000001000)={0xa, 0x4e20, 0x0, @remote}, 0x1c)
sendto$inet6(r0, 0x0, 0x0, 0x1, &(0x7f0000000000)={0xa, 0x0, 0x0, @empty, 0x1}, 0x1c)
pipe2(&(0x7f0000000040), 0x90800)
11:37:30 executing program 1:
r0 = socket$alg(0x26, 0x5, 0x0)
r1 = syz_open_procfs(0xffffffffffffffff, &(0x7f0000000040)='net/snmp6\x00')
bind$alg(r0, &(0x7f0000000180)={0x26, 'hash\x00', 0x0, 0x0, 'digest_null\x00'}, 0x24c)
r2 = accept4$alg(r0, 0x0, 0x0, 0xfffffffffffffffc)
setsockopt$ALG_SET_KEY(r0, 0x117, 0x1, 0x0, 0x0)
ioctl$FIONREAD(r1, 0x541b, &(0x7f0000000000))
sendfile(r0, r1, 0x0, 0x6)
sendfile(r2, r1, 0x0, 0x5)
ioctl$FS_IOC_SET_ENCRYPTION_POLICY(r0, 0x800c6613, &(0x7f0000000080)={0x0, @aes256, 0x2, "d77d0a9371116ea2"})
ioctl$KDSKBLED(r1, 0x4b65, 0x5)
11:37:30 executing program 1:
r0 = fanotify_init(0x3, 0x41c03)
r1 = syz_open_dev$usbmon(&(0x7f0000000080)='/dev/usbmon#\x00', 0x10000, 0x80)
setsockopt$inet_tcp_TLS_TX(r1, 0x6, 0x1, &(0x7f00000000c0), 0x4)
writev(r0, &(0x7f00000011c0)=[{&(0x7f0000000000)="bb", 0x1}], 0x1)
read(r0, &(0x7f0000000040)=""/13, 0xd)
[ 206.633857] Injecting memory failure for pfn 0x38c7e0 at process virtual address 0x201e0000
[ 206.766875] WARNING: CPU: 1 PID: 738 at mm/rmap.c:1571 try_to_unmap_one+0x1004/0x17d8
[ 206.768476] Kernel panic - not syncing: panic_on_warn set ...
[ 206.768476]
[ 206.769981] CPU: 1 PID: 738 Comm: syz-executor.0 Not tainted 4.19.27 #9
[ 206.771510] Hardware name: linux,dummy-virt (DT)
[ 206.772673] Call trace:
[ 206.773230] dump_backtrace+0x0/0x3c0
[ 206.774021] show_stack+0x28/0x38
[ 206.774761] dump_stack+0x120/0x188
[ 206.775483] panic+0x21c/0x48c
[ 206.776152] __warn+0x280/0x2cc
[ 206.776838] report_bug+0x1c8/0x2c8
[ 206.777612] bug_handler+0x8c/0x178
[ 206.778394] call_break_hook+0x238/0x338
[ 206.779410] brk_handler+0x3c/0xe8
[ 206.780186] do_debug_exception+0x12c/0x378
[ 206.781059] el1_dbg+0x18/0x84
[ 206.781732] try_to_unmap_one+0x1004/0x17d8
[ 206.782624] rmap_walk_anon+0x2b4/0x7a8
[ 206.783454] rmap_walk+0xfc/0x180
[ 206.784165] try_to_unmap+0x290/0x360
[ 206.784946] hwpoison_user_mappings.isra.5+0x5ec/0x1478
[ 206.786045] memory_failure+0x8c0/0xf00
[ 206.786872] __arm64_sys_madvise+0xc90/0x1278
[ 206.787786] el0_svc_handler+0x13c/0x308
[ 206.788626] el0_svc+0x8/0xc
[ 206.791030] SMP: stopping secondary CPUs
[ 206.792168] Dumping ftrace buffer:
[ 206.796278] (ftrace buffer empty)
[ 206.797065] Kernel Offset: disabled
[ 206.797811] CPU features: 0x0,a1806000
[ 206.798625] Memory Limit: none
[ 206.800300] Rebooting in 86400 seconds..
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: [Qestion] Hit a WARN_ON_ONCE in try_to_unmap_one when runing syzkaller
2019-03-12 16:03 [Qestion] Hit a WARN_ON_ONCE in try_to_unmap_one when runing syzkaller zhong jiang
@ 2019-03-14 6:27 ` Naoya Horiguchi
0 siblings, 0 replies; 5+ messages in thread
From: Naoya Horiguchi @ 2019-03-14 6:27 UTC (permalink / raw)
To: zhong jiang
Cc: Minchan Kim, LKML, Michal Hocko, Linux Memory Management List,
Vlastimil Babka, linux-arm-kernel@lists.infradead.org
Hi,
On Wed, Mar 13, 2019 at 12:03:20AM +0800, zhong jiang wrote:
...
>
> Minchan has changed the conditon check from BUG_ON to WARN_ON_ONCE in try_to_unmap_one.
> However, It is still an abnormal condition when PageSwapBacked is not equal to PageSwapCache.
>
> But Is there any case it will meet the conditon in the mainline.
>
> It is assumed that PageSwapBacked(page) is true in the anonymous page, This is to say, PageSwapcache
> is false. however, That is impossible because we will update the pte for hwpoison entry.
>
> Because page is locked , Its page flags should not be changed except for PageSwapBacked
try_to_unmap_one() from hwpoison_user_mappings() could reach the
WARN_ON_ONCE() only if TTU_IGNORE_HWPOISON is set, because PageHWPoison()
is set at the beginning of memory_failure().
Clearing TTU_IGNORE_HWPOISON might happen on the following two paths:
static bool hwpoison_user_mappings(struct page *p, unsigned long pfn,
int flags, struct page **hpagep)
{
...
if (PageSwapCache(p)) {
pr_err("Memory failure: %#lx: keeping poisoned page in swap cache\n",
pfn);
ttu |= TTU_IGNORE_HWPOISON;
}
...
mapping = page_mapping(hpage);
if (!(flags & MF_MUST_KILL) && !PageDirty(hpage) && mapping &&
mapping_cap_writeback_dirty(mapping)) {
if (page_mkclean(hpage)) {
SetPageDirty(hpage);
} else {
kill = 0;
ttu |= TTU_IGNORE_HWPOISON;
pr_info("Memory failure: %#lx: corrupted page was clean: dropped without side effects\n",
pfn);
}
}
...
unmap_success = try_to_unmap(hpage, ttu);
...
So either of the above "ttu |= TTU_IGNORE_HWPOISON" should be executed.
I'm not sure which one, but both paths show printk messages, so if you
could have kernel message log, that might help ...
Thanks,
Naoya Horiguchi
_______________________________________________
linux-arm-kernel mailing list
linux-arm-kernel@lists.infradead.org
http://lists.infradead.org/mailman/listinfo/linux-arm-kernel
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: [Qestion] Hit a WARN_ON_ONCE in try_to_unmap_one when runing syzkaller
@ 2019-03-14 6:27 ` Naoya Horiguchi
0 siblings, 0 replies; 5+ messages in thread
From: Naoya Horiguchi @ 2019-03-14 6:27 UTC (permalink / raw)
To: zhong jiang
Cc: Minchan Kim, Michal Hocko, Vlastimil Babka,
linux-arm-kernel@lists.infradead.org,
Linux Memory Management List, LKML
Hi,
On Wed, Mar 13, 2019 at 12:03:20AM +0800, zhong jiang wrote:
...
>
> Minchan has changed the conditon check from BUG_ON to WARN_ON_ONCE in try_to_unmap_one.
> However, It is still an abnormal condition when PageSwapBacked is not equal to PageSwapCache.
>
> But Is there any case it will meet the conditon in the mainline.
>
> It is assumed that PageSwapBacked(page) is true in the anonymous page, This is to say, PageSwapcache
> is false. however, That is impossible because we will update the pte for hwpoison entry.
>
> Because page is locked , Its page flags should not be changed except for PageSwapBacked
try_to_unmap_one() from hwpoison_user_mappings() could reach the
WARN_ON_ONCE() only if TTU_IGNORE_HWPOISON is set, because PageHWPoison()
is set at the beginning of memory_failure().
Clearing TTU_IGNORE_HWPOISON might happen on the following two paths:
static bool hwpoison_user_mappings(struct page *p, unsigned long pfn,
int flags, struct page **hpagep)
{
...
if (PageSwapCache(p)) {
pr_err("Memory failure: %#lx: keeping poisoned page in swap cache\n",
pfn);
ttu |= TTU_IGNORE_HWPOISON;
}
...
mapping = page_mapping(hpage);
if (!(flags & MF_MUST_KILL) && !PageDirty(hpage) && mapping &&
mapping_cap_writeback_dirty(mapping)) {
if (page_mkclean(hpage)) {
SetPageDirty(hpage);
} else {
kill = 0;
ttu |= TTU_IGNORE_HWPOISON;
pr_info("Memory failure: %#lx: corrupted page was clean: dropped without side effects\n",
pfn);
}
}
...
unmap_success = try_to_unmap(hpage, ttu);
...
So either of the above "ttu |= TTU_IGNORE_HWPOISON" should be executed.
I'm not sure which one, but both paths show printk messages, so if you
could have kernel message log, that might help ...
Thanks,
Naoya Horiguchi
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: [Qestion] Hit a WARN_ON_ONCE in try_to_unmap_one when runing syzkaller
2019-03-14 6:27 ` Naoya Horiguchi
@ 2019-03-14 7:54 ` zhong jiang
-1 siblings, 0 replies; 5+ messages in thread
From: zhong jiang @ 2019-03-14 7:54 UTC (permalink / raw)
To: Naoya Horiguchi
Cc: Minchan Kim, Hugh Dickins, LKML, Michal Hocko,
Linux Memory Management List, Vlastimil Babka,
linux-arm-kernel@lists.infradead.org
On 2019/3/14 14:27, Naoya Horiguchi wrote:
> Hi,
>
> On Wed, Mar 13, 2019 at 12:03:20AM +0800, zhong jiang wrote:
> ...
>> Minchan has changed the conditon check from BUG_ON to WARN_ON_ONCE in try_to_unmap_one.
>> However, It is still an abnormal condition when PageSwapBacked is not equal to PageSwapCache.
>>
>> But Is there any case it will meet the conditon in the mainline.
>>
>> It is assumed that PageSwapBacked(page) is true in the anonymous page, This is to say, PageSwapcache
>> is false. however, That is impossible because we will update the pte for hwpoison entry.
>>
>> Because page is locked , Its page flags should not be changed except for PageSwapBacked
> try_to_unmap_one() from hwpoison_user_mappings() could reach the
> WARN_ON_ONCE() only if TTU_IGNORE_HWPOISON is set, because PageHWPoison()
> is set at the beginning of memory_failure().
>
> Clearing TTU_IGNORE_HWPOISON might happen on the following two paths:
>
> static bool hwpoison_user_mappings(struct page *p, unsigned long pfn,
> int flags, struct page **hpagep)
> {
> ...
>
> if (PageSwapCache(p)) {
> pr_err("Memory failure: %#lx: keeping poisoned page in swap cache\n",
> pfn);
> ttu |= TTU_IGNORE_HWPOISON;
> }
> ...
>
> mapping = page_mapping(hpage);
> if (!(flags & MF_MUST_KILL) && !PageDirty(hpage) && mapping &&
> mapping_cap_writeback_dirty(mapping)) {
> if (page_mkclean(hpage)) {
> SetPageDirty(hpage);
> } else {
> kill = 0;
> ttu |= TTU_IGNORE_HWPOISON;
> pr_info("Memory failure: %#lx: corrupted page was clean: dropped without side effects\n",
> pfn);
> }
> }
> ...
>
> unmap_success = try_to_unmap(hpage, ttu);
> ...
>
> So either of the above "ttu |= TTU_IGNORE_HWPOISON" should be executed.
> I'm not sure which one, but both paths show printk messages, so if you
> could have kernel message log, that might help ...
Thank you for your response.
Unfortunately, I lost the printk log. I was looking for it before and support us for further analysis.
It's very weird to get there. Assume that TTU_IGNORE_HWPOSISON is set. There is the two case.
First, PageSwapCache is set and page has been locked. Theoretically WARN_ON_ONCE should not be triggered.
Second, We should assume the page belongs to file page.:-(
I will go on reproducing the issue and get the printk message log.
Thanks
zhong jiang
> Thanks,
> Naoya Horiguchi
>
> .
>
_______________________________________________
linux-arm-kernel mailing list
linux-arm-kernel@lists.infradead.org
http://lists.infradead.org/mailman/listinfo/linux-arm-kernel
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: [Qestion] Hit a WARN_ON_ONCE in try_to_unmap_one when runing syzkaller
@ 2019-03-14 7:54 ` zhong jiang
0 siblings, 0 replies; 5+ messages in thread
From: zhong jiang @ 2019-03-14 7:54 UTC (permalink / raw)
To: Naoya Horiguchi
Cc: Minchan Kim, Michal Hocko, Vlastimil Babka,
linux-arm-kernel@lists.infradead.org,
Linux Memory Management List, LKML, Hugh Dickins
On 2019/3/14 14:27, Naoya Horiguchi wrote:
> Hi,
>
> On Wed, Mar 13, 2019 at 12:03:20AM +0800, zhong jiang wrote:
> ...
>> Minchan has changed the conditon check from BUG_ON to WARN_ON_ONCE in try_to_unmap_one.
>> However, It is still an abnormal condition when PageSwapBacked is not equal to PageSwapCache.
>>
>> But Is there any case it will meet the conditon in the mainline.
>>
>> It is assumed that PageSwapBacked(page) is true in the anonymous page, This is to say, PageSwapcache
>> is false. however, That is impossible because we will update the pte for hwpoison entry.
>>
>> Because page is locked , Its page flags should not be changed except for PageSwapBacked
> try_to_unmap_one() from hwpoison_user_mappings() could reach the
> WARN_ON_ONCE() only if TTU_IGNORE_HWPOISON is set, because PageHWPoison()
> is set at the beginning of memory_failure().
>
> Clearing TTU_IGNORE_HWPOISON might happen on the following two paths:
>
> static bool hwpoison_user_mappings(struct page *p, unsigned long pfn,
> int flags, struct page **hpagep)
> {
> ...
>
> if (PageSwapCache(p)) {
> pr_err("Memory failure: %#lx: keeping poisoned page in swap cache\n",
> pfn);
> ttu |= TTU_IGNORE_HWPOISON;
> }
> ...
>
> mapping = page_mapping(hpage);
> if (!(flags & MF_MUST_KILL) && !PageDirty(hpage) && mapping &&
> mapping_cap_writeback_dirty(mapping)) {
> if (page_mkclean(hpage)) {
> SetPageDirty(hpage);
> } else {
> kill = 0;
> ttu |= TTU_IGNORE_HWPOISON;
> pr_info("Memory failure: %#lx: corrupted page was clean: dropped without side effects\n",
> pfn);
> }
> }
> ...
>
> unmap_success = try_to_unmap(hpage, ttu);
> ...
>
> So either of the above "ttu |= TTU_IGNORE_HWPOISON" should be executed.
> I'm not sure which one, but both paths show printk messages, so if you
> could have kernel message log, that might help ...
Thank you for your response.
Unfortunately, I lost the printk log. I was looking for it before and support us for further analysis.
It's very weird to get there. Assume that TTU_IGNORE_HWPOSISON is set. There is the two case.
First, PageSwapCache is set and page has been locked. Theoretically WARN_ON_ONCE should not be triggered.
Second, We should assume the page belongs to file page.:-(
I will go on reproducing the issue and get the printk message log.
Thanks
zhong jiang
> Thanks,
> Naoya Horiguchi
>
> .
>
^ permalink raw reply [flat|nested] 5+ messages in thread
end of thread, other threads:[~2019-03-14 7:54 UTC | newest]
Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2019-03-12 16:03 [Qestion] Hit a WARN_ON_ONCE in try_to_unmap_one when runing syzkaller zhong jiang
2019-03-14 6:27 ` Naoya Horiguchi
2019-03-14 6:27 ` Naoya Horiguchi
2019-03-14 7:54 ` zhong jiang
2019-03-14 7:54 ` zhong jiang
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.