From: sanan.hasanou@gmail.com
To: slava@dubeyko.com, glaubitz@physik.fu-berlin.de,
frank.li@vivo.com, linux-fsdevel@vger.kernel.org,
linux-kernel@vger.kernel.org
Cc: syzkaller@googlegroups.com, contact@pgazz.com
Subject: kernel BUG at hfs_write_inode [verbose debug info unavailable]
Date: Fri, 26 Jun 2026 14:13:36 -0700 (PDT) [thread overview]
Message-ID: <6a3eeb80.c68533e6.3320fc.f244@mx.google.com> (raw)
Good day, dear maintainers,
We found a bug using a modified version of syzkaller.
Kernel Branch: 7.0-rc1
Kernel Config: <https://drive.google.com/open?id=173DLEAEPKPhhR1TcqofdnkLpdoK7PMFl>
Reproducer: <https://drive.google.com/open?id=1CqxzPCkagwu-C1x-19rSi9hAPdorJFHY>
Thank you!
Best regards,
Sanan Hasanov
------------[ cut here ]------------
Kernel BUG at hfs_write_inode+0x8b1/0x8c0 [verbose]
Oops: invalid opcode: 0000 [#1] SMP KASAN
CPU: 0 UID: 0 PID: 52148 Comm: kworker/u8:18 Tainted: G L 7.0.0-rc1 #1 PREEMPT(full)
Tainted: [L]=SOFTLOCKUP
Hardware name: QEMU Ubuntu 24.04 PC v2 (i440FX + PIIX, arch_caps fix, 1996), BIOS 1.16.3-debian-1.16.3-2 04/01/2014
Workqueue: writeback wb_workfn (flush-7:7)
RIP: 0010:hfs_write_inode+0x8b1/0x8c0 fs/hfs/inode.c:474
Code: ff e9 c5 fd ff ff 44 89 f1 80 e1 07 80 c1 03 38 c1 0f 8c 61 fe ff ff 4c 89 f7 e8 4a 02 85 ff e9 54 fe ff ff e8 d0 d2 18 ff 90 <0f> 0b 66 66 66 66 2e 0f 1f 84 00 00 00 00 00 f3 0f 1e fa 0f 1f 44
RSP: 0018:ffffc900107e72c0 EFLAGS: 00010293
RAX: ffffffff82a97f00 RBX: ffff88805491a520 RCX: ffff88801ccc2700
RDX: 0000000000000000 RSI: ffffffff8eb6dc00 RDI: 0000000000000000
RBP: ffffc900107e7450 R08: ffff88801ccc2700 R09: 0000000000000003
R10: 0000000000000004 R11: 0000000000000000 R12: 1ffff920020fce5c
R13: dffffc0000000000 R14: 0000000000000000 R15: ffff88805491a4e0
FS: 0000000000000000(0000) GS:ffff8880d98df000(0000) knlGS:0000000000000000
CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
CR2: 00007f80878c4e78 CR3: 00000000476ce000 CR4: 00000000000006f0
Call Trace:
<TASK>
write_inode fs/fs-writeback.c:1581 [inline]
__writeback_single_inode+0x56f/0x870 fs/fs-writeback.c:1812
writeback_sb_inodes+0x73b/0x1110 fs/fs-writeback.c:2040
wb_writeback+0x3fa/0x690 fs/fs-writeback.c:2226
wb_do_writeback fs/fs-writeback.c:2373 [inline]
wb_workfn+0x3db/0xef0 fs/fs-writeback.c:2413
process_one_work kernel/workqueue.c:3275 [inline]
process_scheduled_works+0x811/0xf10 kernel/workqueue.c:3358
worker_thread+0x9c1/0xeb0 kernel/workqueue.c:3439
kthread+0x3c1/0x4d0 kernel/kthread.c:467
ret_from_fork+0x608/0xc40 arch/x86/kernel/process.c:158
ret_from_fork_asm+0x11/0x20 arch/x86/entry/entry_64.S:245
</TASK>
Modules linked in:
---[ end trace 0000000000000000 ]---
RIP: 0010:hfs_write_inode+0x8b1/0x8c0 fs/hfs/inode.c:474
Code: ff e9 c5 fd ff ff 44 89 f1 80 e1 07 80 c1 03 38 c1 0f 8c 61 fe ff ff 4c 89 f7 e8 4a 02 85 ff e9 54 fe ff ff e8 d0 d2 18 ff 90 <0f> 0b 66 66 66 66 2e 0f 1f 84 00 00 00 00 00 f3 0f 1e fa 0f 1f 44
RSP: 0018:ffffc900107e72c0 EFLAGS: 00010293
RAX: ffffffff82a97f00 RBX: ffff88805491a520 RCX: ffff88801ccc2700
RDX: 0000000000000000 RSI: ffffffff8eb6dc00 RDI: 0000000000000000
RBP: ffffc900107e7450 R08: ffff88801ccc2700 R09: 0000000000000003
R10: 0000000000000004 R11: 0000000000000000 R12: 1ffff920020fce5c
R13: dffffc0000000000 R14: 0000000000000000 R15: ffff88805491a4e0
FS: 0000000000000000(0000) GS:ffff8880d99df000(0000) knlGS:0000000000000000
CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
CR2: 00007ffdb2c2dff0 CR3: 000000003181d000 CR4: 00000000000006f0
<<<<<<<<<<<<<<< tail report >>>>>>>>>>>>>>>
Oops: invalid opcode: 0000 [#1] SMP KASAN
CPU: 0 UID: 0 PID: 52148 Comm: kworker/u8:18 Tainted: G L 7.0.0-rc1 #1 PREEMPT(full)
Tainted: [L]=SOFTLOCKUP
Hardware name: QEMU Ubuntu 24.04 PC v2 (i440FX + PIIX, arch_caps fix, 1996), BIOS 1.16.3-debian-1.16.3-2 04/01/2014
Workqueue: writeback wb_workfn (flush-7:7)
RIP: 0010:hfs_write_inode+0x8b1/0x8c0
Code: ff e9 c5 fd ff ff 44 89 f1 80 e1 07 80 c1 03 38 c1 0f 8c 61 fe ff ff 4c 89 f7 e8 4a 02 85 ff e9 54 fe ff ff e8 d0 d2 18 ff 90 <0f> 0b 66 66 66 66 2e 0f 1f 84 00 00 00 00 00 f3 0f 1e fa 0f 1f 44
RSP: 0018:ffffc900107e72c0 EFLAGS: 00010293
RAX: ffffffff82a97f00 RBX: ffff88805491a520 RCX: ffff88801ccc2700
RDX: 0000000000000000 RSI: ffffffff8eb6dc00 RDI: 0000000000000000
RBP: ffffc900107e7450 R08: ffff88801ccc2700 R09: 0000000000000003
R10: 0000000000000004 R11: 0000000000000000 R12: 1ffff920020fce5c
R13: dffffc0000000000 R14: 0000000000000000 R15: ffff88805491a4e0
FS: 0000000000000000(0000) GS:ffff8880d98df000(0000) knlGS:0000000000000000
CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
CR2: 00007f80878c4e78 CR3: 00000000476ce000 CR4: 00000000000006f0
Call Trace:
<TASK>
__writeback_single_inode+0x56f/0x870
writeback_sb_inodes+0x73b/0x1110
wb_writeback+0x3fa/0x690
wb_workfn+0x3db/0xef0
process_scheduled_works+0x811/0xf10
worker_thread+0x9c1/0xeb0
kthread+0x3c1/0x4d0
ret_from_fork+0x608/0xc40
ret_from_fork_asm+0x11/0x20
</TASK>
Modules linked in:
---[ end trace 0000000000000000 ]---
RIP: 0010:hfs_write_inode+0x8b1/0x8c0
Code: ff e9 c5 fd ff ff 44 89 f1 80 e1 07 80 c1 03 38 c1 0f 8c 61 fe ff ff 4c 89 f7 e8 4a 02 85 ff e9 54 fe ff ff e8 d0 d2 18 ff 90 <0f> 0b 66 66 66 66 2e 0f 1f 84 00 00 00 00 00 f3 0f 1e fa 0f 1f 44
RSP: 0018:ffffc900107e72c0 EFLAGS: 00010293
RAX: ffffffff82a97f00 RBX: ffff88805491a520 RCX: ffff88801ccc2700
RDX: 0000000000000000 RSI: ffffffff8eb6dc00 RDI: 0000000000000000
RBP: ffffc900107e7450 R08: ffff88801ccc2700 R09: 0000000000000003
R10: 0000000000000004 R11: 0000000000000000 R12: 1ffff920020fce5c
R13: dffffc0000000000 R14: 0000000000000000 R15: ffff88805491a4e0
FS: 0000000000000000(0000) GS:ffff8880d99df000(0000) knlGS:0000000000000000
CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
CR2: 00007ffdb2c2dff0 CR3: 000000003181d000 CR4: 00000000000006f0
<<<<<<<<<<<<<<< tail report >>>>>>>>>>>>>>>
next reply other threads:[~2026-06-26 21:13 UTC|newest]
Thread overview: 2+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-06-26 21:13 sanan.hasanou [this message]
2026-06-26 21:44 ` kernel BUG at hfs_write_inode [verbose debug info unavailable] Matthew Wilcox
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=6a3eeb80.c68533e6.3320fc.f244@mx.google.com \
--to=sanan.hasanou@gmail.com \
--cc=contact@pgazz.com \
--cc=frank.li@vivo.com \
--cc=glaubitz@physik.fu-berlin.de \
--cc=linux-fsdevel@vger.kernel.org \
--cc=linux-kernel@vger.kernel.org \
--cc=slava@dubeyko.com \
--cc=syzkaller@googlegroups.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox