From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mail-ot1-f80.google.com (mail-ot1-f80.google.com [209.85.210.80]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 1F9A91E2614 for ; Fri, 19 Jun 2026 13:54:16 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=209.85.210.80 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1781877258; cv=none; b=j/GxQVkZF9knI/iS1e1i2yGRAzPGxHD6Woa2BfujIrdMNUWCaCCStgDOD4v9c1ssiorMU2iWbM6FlZf8e7Bq2a6/kFpxqjaQEhsSMV7rMlVAClRzr6i/E2nooK+9T4XQzN8OLpMgNmZLZxEkxFar/Mg2z5LM32+ns71X6o4R7DI= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1781877258; c=relaxed/simple; bh=tS9fUhKgQm15SFcNh20Mouj3pGnDYzgejTzLXy/iPDU=; h=MIME-Version:Date:In-Reply-To:Message-ID:Subject:From:To:Cc: Content-Type; b=F46o+P9EeOzyRJGjIqJS6u7LLj309lqHBhVqnEiNuOxtMM/4Aj1wE/qAa3AW8XVZ7E1xGVY91SFvGUaaGoWgkbQs1ttG/yYuu826VzEDDhynoWHYKJKKP0pZ6Ac2vHxaH55VI2jPbF2yC96KckyE9S3HHvIGYSjjnJkOqD1NnUw= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dmarc=fail (p=none dis=none) header.from=syzkaller.appspotmail.com; spf=pass smtp.mailfrom=M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com; arc=none smtp.client-ip=209.85.210.80 Authentication-Results: smtp.subspace.kernel.org; dmarc=fail (p=none dis=none) header.from=syzkaller.appspotmail.com Authentication-Results: smtp.subspace.kernel.org; spf=pass smtp.mailfrom=M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com Received: by mail-ot1-f80.google.com with SMTP id 46e09a7af769-7e71adbb398so3925850a34.3 for ; Fri, 19 Jun 2026 06:54:16 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1781877256; x=1782482056; h=content-transfer-encoding:cc:to:from:subject:message-id:in-reply-to :date:mime-version:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=tS9fUhKgQm15SFcNh20Mouj3pGnDYzgejTzLXy/iPDU=; b=nz73ljwT02yjMk22nRxfL0gs23/NU/rnHwjosAZR7NxXXrv3l2cwYtqHa8eLjMriln qimwiTyf9zqv60H7oAGPxxqy05kQgxw3AyVnoKSfgpERQxsyiShbv/zaMpvaufV5Li2R SO3icEe9Eh9MGMu6zhLF3o1SteGmQhLHooWCxK/WVKGHoloX0yXZhslew7eQSN2ubTjZ sMYwmzelna1DtyTio4g+lOCT5GockqAFKWLswSMKlkjtu1DtCAlp4I2HpZRtl70kUbmC 6/Up94NL7b4MBWvND1WQy8mOnXxpwEjoLIr/BSrWROPB3Bg1Umfj9cNmGVwd+NYyqXtp ImRQ== X-Forwarded-Encrypted: i=1; AFNElJ91QK4djdWB1rJg3IULLSO15waNDbvUDfe1dSlmkbMsSV4DbWEjd+BNBHTkS44+ouSZmwY4jJnLFmkHq/Y=@vger.kernel.org X-Gm-Message-State: AOJu0YzBmeQpCHomUtkGFSxolV3wu/9g9l+aV/yLoji9bKmuU1RLd96c WsT+yXai/fLoYcVZrrzR7wNnydS1kmdCC/WnqrdKz8DS12yaUWwvZghc79z6KHm8HpZzCbJcrwR KKU3T6nhPwM6KLZz0GtQCG6OjFJuznofr5HDr3h5+gAfK/s4Qze5BC9doB0w= Precedence: bulk X-Mailing-List: linux-kernel@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: MIME-Version: 1.0 X-Received: by 2002:a05:6808:13c4:b0:48a:3f80:ee5c with SMTP id 5614622812f47-48a3f80fb5fmr778255b6e.23.1781877256155; Fri, 19 Jun 2026 06:54:16 -0700 (PDT) Date: Fri, 19 Jun 2026 06:54:16 -0700 In-Reply-To: <6485c75e-8ce6-4de5-aed7-7ada081bbc1en@googlegroups.com> X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <6a354a08.ff649fcc.e25e.0003.GAE@google.com> Subject: Re: [syzbot] [bpf?] KMSAN: uninit-value in __arg_track_join From: syzbot To: tejasmutalikdesai@gmail.com Cc: syzkaller-bugs@googlegroups.com, tejasmutalikdesai@gmail.com, linux-kernel@vger.kernel.org Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable > #syz test: https://github.com/Tejas-MD/linux.git fix-branch This crash does not have a reproducer. I cannot test it. > On Saturday, May 30, 2026 at 1:32:23=E2=80=AFAM UTC+5:30 syzbot wrote: > >> Hello, >> >> syzbot found the following issue on: >> >> HEAD commit: d60ec36cab33 Merge tag 'mm-hotfixes-stable-2026-05-25-16-2.= . >> git tree: upstream >> console output: https://syzkaller.appspot.com/x/log.txt?x=3D116ac6ec5800= 00 >> kernel config: https://syzkaller.appspot.com/x/.config?x=3D334b75e012487= 335 >> dashboard link:=20 >> https://syzkaller.appspot.com/bug?extid=3D0098eed2cc898cdd672f >> compiler: Debian clang version 21.1.8=20 >> (++20251221033036+2078da43e25a-1~exp1~20251221153213.50), Debian LLD 21.= 1.8 >> userspace arch: i386 >> >> Unfortunately, I don't have any reproducer for this issue yet. >> >> Downloadable assets: >> disk image:=20 >> https://storage.googleapis.com/syzbot-assets/7e228ea8db12/disk-d60ec36c.= raw.xz >> vmlinux:=20 >> https://storage.googleapis.com/syzbot-assets/83407360a5fe/vmlinux-d60ec3= 6c.xz >> kernel image:=20 >> https://storage.googleapis.com/syzbot-assets/9e10d0866b6f/bzImage-d60ec3= 6c.xz >> >> IMPORTANT: if you fix the issue, please add the following tag to the=20 >> commit: >> Reported-by: syzbot+0098ee...@syzkaller.appspotmail.com >> >> =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D >> BUG: KMSAN: uninit-value in __arg_track_join+0x15a/0x810=20 >> kernel/bpf/liveness.c:743 >> __arg_track_join+0x15a/0x810 kernel/bpf/liveness.c:743 >> arg_track_join+0x186/0x870 kernel/bpf/liveness.c:784 >> compute_subprog_args kernel/bpf/liveness.c:1623 [inline] >> analyze_subprog+0x3eb0/0xff30 kernel/bpf/liveness.c:1799 >> bpf_compute_subprog_arg_access+0x3ee/0x2370 kernel/bpf/liveness.c:1937 >> bpf_compute_live_registers+0xfdb/0x3090 kernel/bpf/liveness.c:2149 >> bpf_check+0x5bcb/0x9360 kernel/bpf/verifier.c:20065 >> bpf_prog_load+0x28d2/0x2d00 kernel/bpf/syscall.c:3082 >> __sys_bpf+0x8e0/0xee0 kernel/bpf/syscall.c:6274 >> __do_sys_bpf kernel/bpf/syscall.c:6387 [inline] >> __se_sys_bpf kernel/bpf/syscall.c:6385 [inline] >> __ia32_sys_bpf+0xa4/0xf0 kernel/bpf/syscall.c:6385 >> ia32_sys_call+0x33e7/0x4360=20 >> arch/x86/include/generated/asm/syscalls_32.h:358 >> do_syscall_32_irqs_on arch/x86/entry/syscall_32.c:83 [inline] >> __do_fast_syscall_32+0x195/0x470 arch/x86/entry/syscall_32.c:307 >> do_fast_syscall_32+0x37/0x80 arch/x86/entry/syscall_32.c:332 >> do_SYSENTER_32+0x1f/0x30 arch/x86/entry/syscall_32.c:370 >> entry_SYSENTER_compat_after_hwframe+0x84/0x8e >> >> Local variable old created at: >> arg_track_join+0x86/0x870 kernel/bpf/liveness.c:783 >> compute_subprog_args kernel/bpf/liveness.c:1623 [inline] >> analyze_subprog+0x3eb0/0xff30 kernel/bpf/liveness.c:1799 >> >> CPU: 0 UID: 0 PID: 18676 Comm: syz.0.5880 Tainted: G W syzkaller #0=20 >> PREEMPT(lazy)=20 >> Tainted: [W]=3DWARN >> Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS= =20 >> Google 04/18/2026 >> =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D >> >> >> --- >> This report is generated by a bot. It may contain errors. >> See https://goo.gl/tpsmEJ for more information about syzbot. >> syzbot engineers can be reached at syzk...@googlegroups.com. >> >> syzbot will keep track of this issue. See: >> https://goo.gl/tpsmEJ#status for how to communicate with syzbot. >> >> If the report is already addressed, let syzbot know by replying with: >> #syz fix: exact-commit-title >> >> If you want to overwrite report's subsystems, reply with: >> #syz set subsystems: new-subsystem >> (See the list of subsystem names on the web dashboard) >> >> If the report is a duplicate of another one, reply with: >> #syz dup: exact-subject-of-another-report >> >> If you want to undo deduplication, reply with: >> #syz undup >> > > --=20 > You received this message because you are subscribed to the Google Groups= "syzkaller-bugs" group. > To unsubscribe from this group and stop receiving emails from it, send an= email to syzkaller-bugs+unsubscribe@googlegroups.com. > To view this discussion visit https://groups.google.com/d/msgid/syzkaller= -bugs/6485c75e-8ce6-4de5-aed7-7ada081bbc1en%40googlegroups.com.