[....] Starting enhanced syslogd: rsyslogd[ 17.005786] audit: type=1400 audit(1520516714.267:5): avc: denied { syslog } for pid=4098 comm="rsyslogd" capability=34 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 [?25l[?1c7[ ok 8[?25h[?0c. [....] Starting periodic command scheduler: cron[?25l[?1c7[ ok 8[?25h[?0c. Starting mcstransd: [....] Starting file context maintaining daemon: restorecond[?25l[?1c7[ ok 8[?25h[?0c. [....] Starting OpenBSD Secure Shell server: sshd[?25l[?1c7[ ok 8[?25h[?0c. Debian GNU/Linux 7 syzkaller ttyS0 syzkaller login: [ 23.295973] audit: type=1400 audit(1520516720.557:6): avc: denied { map } for pid=4238 comm="bash" path="/bin/bash" dev="sda1" ino=1457 scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=system_u:object_r:file_t:s0 tclass=file permissive=1 Warning: Permanently added '10.128.0.48' (ECDSA) to the list of known hosts. [ 184.150068] audit: type=1400 audit(1520516881.411:7): avc: denied { map } for pid=4254 comm="syzkaller888997" path="/root/syzkaller888997320" dev="sda1" ino=16481 scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_home_t:s0 tclass=file permissive=1 [ 184.167269] IPVS: ftp: loaded support on port[0] = 21 net.ipv6.conf.syz_tun.accept_dad = 0 net.ipv6.conf.syz_tun.accept_dad = 0 net.ipv6.conf.syz_tun.router_solicitations = 0 [ 184.176044] audit: type=1400 audit(1520516881.412:8): avc: denied { sys_admin } for pid=4262 comm="syzkaller888997" capability=21 scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tclass=cap_userns permissive=1 [ 184.200576] IPVS: ftp: loaded support on port[0] = 21 [ 184.215269] audit: type=1400 audit(1520516881.474:9): avc: denied { net_admin } for pid=4264 comm="syzkaller888997" capability=12 scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tclass=cap_userns permissive=1 [ 184.233321] IPVS: ftp: loaded support on port[0] = 21 net.ipv6.conf.syz_tun.router_solicitations = 0 net.ipv6.conf.syz_tun.accept_dad = 0 [ 184.268785] IPVS: ftp: loaded support on port[0] = 21 net.ipv6.conf.syz_tun.accept_dad = 0 net.ipv6.conf.syz_tun.router_solicitations = 0 net.ipv6.conf.syz_tun.router_solicitations = 0 [ 184.306475] IPVS: ftp: loaded support on port[0] = 21 net.ipv6.conf.syz_tun.accept_dad = 0 [ 184.351868] IPVS: ftp: loaded support on port[0] = 21 net.ipv6.conf.syz_tun.router_solicitations = 0 net.ipv6.conf.syz_tun.accept_dad = 0 [ 184.410597] IPVS: ftp: loaded support on port[0] = 21 net.ipv6.conf.syz_tun.router_solicitations = 0 net.ipv6.conf.syz_tun.accept_dad = 0 [ 184.457288] IPVS: ftp: loaded support on port[0] = 21 net.ipv6.conf.syz_tun.router_solicitations = 0 net.ipv6.conf.syz_tun.accept_dad = 0 net.ipv6.conf.syz_tun.router_solicitations = 0 RTNETLINK answers: File exists RTNETLINK answers: File exists RTNETLINK answers: File exists RTNETLINK answers: File exists RTNETLINK answers: File exists RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: File exists RTNETLINK answers: File exists RTNETLINK answers: Operation not supported RTNETLINK answers: File exists RTNETLINK answers: Operation not supported [ 185.058088] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready RTNETLINK answers: No buffer space available RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported [ 185.160172] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready RTNETLINK answers: Operation not supported RTNETLINK answers: No buffer space available [ 185.217687] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready [ 185.224755] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready RTNETLINK answers: No buffer space available RTNETLINK answers: No buffer space available RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported [ 185.394279] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready [ 185.421635] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready [ 185.434777] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: No buffer space available RTNETLINK answers: No buffer space available RTNETLINK answers: No buffer space available RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported [ 185.516874] IPv6: ADDRCONF(NETDEV_UP): bridge0: link is not ready RTNETLINK answers: No buffer space available RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Invalid argument RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Operation not supported RTNETLINK answers: Invalid argument RTNETLINK answers: Operation not supported RTNETLINK answers: Operation not supported RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Operation not supported RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument RTNETLINK answers: Invalid argument [ 186.659588] IPv6: ADDRCONF(NETDEV_UP): bond0: link is not ready [ 186.665716] 8021q: adding VLAN 0 to HW filter on device bond0 RTNETLINK answers: Invalid argument [ 186.759547] IPv6: ADDRCONF(NETDEV_UP): bond0: link is not ready [ 186.765683] 8021q: adding VLAN 0 to HW filter on device bond0 [ 186.779982] IPv6: ADDRCONF(NETDEV_UP): bond0: link is not ready [ 186.786193] 8021q: adding VLAN 0 to HW filter on device bond0 [ 186.873606] IPv6: ADDRCONF(NETDEV_UP): bond0: link is not ready [ 186.879752] 8021q: adding VLAN 0 to HW filter on device bond0 [ 186.945228] IPv6: ADDRCONF(NETDEV_UP): veth0: link is not ready [ 186.996640] IPv6: ADDRCONF(NETDEV_UP): veth0: link is not ready [ 187.038940] IPv6: ADDRCONF(NETDEV_UP): veth0: link is not ready [ 187.098589] IPv6: ADDRCONF(NETDEV_UP): veth0: link is not ready [ 187.132865] IPv6: ADDRCONF(NETDEV_UP): bond0: link is not ready [ 187.139107] 8021q: adding VLAN 0 to HW filter on device bond0 [ 187.169780] IPv6: ADDRCONF(NETDEV_UP): bond0: link is not ready [ 187.176031] 8021q: adding VLAN 0 to HW filter on device bond0 [ 187.217724] IPv6: ADDRCONF(NETDEV_UP): veth1: link is not ready [ 187.223944] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 187.234916] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready executing program [ 187.255555] audit: type=1400 audit(1520516884.517:10): avc: denied { sys_chroot } for pid=4265 comm="syzkaller888997" capability=18 scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tclass=cap_userns permissive=1 [ 187.261309] IPv6: ADDRCONF(NETDEV_UP): bond0: link is not ready [ 187.286243] 8021q: adding VLAN 0 to HW filter on device bond0 executing program executing program [ 187.316644] IPv6: ADDRCONF(NETDEV_UP): veth1: link is not ready [ 187.323413] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 187.333787] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready executing program executing program executing program [ 187.364419] IPv6: ADDRCONF(NETDEV_UP): veth1: link is not ready [ 187.370753] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 187.384478] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready executing program executing program executing program executing program [ 187.409630] IPv6: ADDRCONF(NETDEV_UP): veth1: link is not ready [ 187.419055] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 187.435047] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready [ 187.456000] IPv6: ADDRCONF(NETDEV_UP): veth0: link is not ready executing program executing program executing program executing program executing program executing program executing program [ 187.474958] IPv6: ADDRCONF(NETDEV_UP): veth0: link is not ready executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program [ 187.569276] IPv6: ADDRCONF(NETDEV_UP): veth0: link is not ready executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program [ 187.639857] IPv6: ADDRCONF(NETDEV_UP): bond0: link is not ready [ 187.646189] 8021q: adding VLAN 0 to HW filter on device bond0 [ 187.653990] IPv6: ADDRCONF(NETDEV_UP): veth1: link is not ready [ 187.661323] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 187.669966] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready executing program executing program executing program executing program executing program [ 187.724511] IPv6: ADDRCONF(NETDEV_UP): veth1: link is not ready [ 187.730791] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 187.746937] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready [ 187.757440] IPv6: ADDRCONF(NETDEV_UP): veth1: link is not ready executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program [ 187.772607] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 187.788609] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program [ 187.888481] IPv6: ADDRCONF(NETDEV_UP): veth0: link is not ready executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program [ 188.038099] IPv6: ADDRCONF(NETDEV_UP): veth1: link is not ready [ 188.044283] IPv6: ADDRCONF(NETDEV_CHANGE): veth1: link becomes ready [ 188.051371] IPv6: ADDRCONF(NETDEV_CHANGE): veth0: link becomes ready executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program [ 189.437588] kasan: CONFIG_KASAN_INLINE enabled [ 189.442307] kasan: GPF could be caused by NULL-ptr deref or user memory access [ 189.449706] general protection fault: 0000 [#1] SMP KASAN [ 189.455228] Dumping ftrace buffer: [ 189.458749] (ftrace buffer empty) [ 189.462447] Modules linked in: [ 189.465626] CPU: 0 PID: 6876 Comm: syzkaller888997 Not tainted 4.16.0-rc4+ #346 [ 189.473052] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 [ 189.482397] RIP: 0010:rdma_reject+0x37/0x220 executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program [ 189.486783] RSP: 0018:ffff8801b50bf8f8 EFLAGS: 00010206 [ 189.492132] RAX: dffffc0000000000 RBX: 1ffff10036a17f29 RCX: ffffffff841bb25f [ 189.499392] RDX: 0000000000000078 RSI: ffff8801b50bf970 RDI: 00000000000003c0 [ 189.506647] RBP: ffff8801b50bf928 R08: 0000000000000000 R09: 0000000000000000 [ 189.513899] R10: ffffffff88613380 R11: 0000000000000000 R12: 0000000000000000 [ 189.521154] R13: ffff8801b50bfaa8 R14: ffff8801b50bf970 R15: 0000000000000000 [ 189.528413] FS: 00007f7d987bc700(0000) GS:ffff8801db200000(0000) knlGS:0000000000000000 [ 189.536621] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 189.542488] CR2: 00000000006de0f8 CR3: 00000001bf0e0006 CR4: 00000000001606f0 [ 189.550240] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 189.557498] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 189.564752] Call Trace: [ 189.567337] ucma_reject+0x149/0x220 [ 189.571050] ? ucma_disconnect+0x150/0x150 [ 189.575302] ? kasan_check_write+0x14/0x20 [ 189.579531] ucma_write+0x2d6/0x3d0 [ 189.583146] ? ucma_disconnect+0x150/0x150 [ 189.587366] ? ucma_resolve_route+0x1a0/0x1a0 [ 189.591850] ? handle_mm_fault+0x35b/0xb10 [ 189.596079] ? ucma_resolve_route+0x1a0/0x1a0 [ 189.600560] __vfs_write+0xef/0x970 [ 189.604183] ? rcu_note_context_switch+0x710/0x710 [ 189.609100] ? kernel_read+0x120/0x120 [ 189.612974] ? __might_sleep+0x95/0x190 [ 189.616946] ? _cond_resched+0x14/0x30 [ 189.620823] ? __inode_security_revalidate+0xd9/0x130 [ 189.626007] ? avc_policy_seqno+0x9/0x20 [ 189.630061] ? selinux_file_permission+0x82/0x460 [ 189.634897] ? security_file_permission+0x89/0x1e0 [ 189.639823] ? rw_verify_area+0xe5/0x2b0 [ 189.643875] ? __fdget_raw+0x20/0x20 [ 189.647586] vfs_write+0x189/0x510 [ 189.651119] SyS_write+0xef/0x220 [ 189.654560] ? SyS_read+0x220/0x220 [ 189.658178] ? do_syscall_64+0xb7/0x940 [ 189.662140] ? SyS_read+0x220/0x220 [ 189.665755] do_syscall_64+0x281/0x940 [ 189.669631] ? __do_page_fault+0xc90/0xc90 [ 189.673856] ? _raw_spin_unlock_irq+0x27/0x70 [ 189.678341] ? finish_task_switch+0x1c1/0x7e0 [ 189.682839] ? syscall_return_slowpath+0x550/0x550 [ 189.687775] ? syscall_return_slowpath+0x2ac/0x550 [ 189.692693] ? prepare_exit_to_usermode+0x350/0x350 [ 189.697700] ? entry_SYSCALL_64_after_hwframe+0x52/0xb7 [ 189.703056] ? trace_hardirqs_off_thunk+0x1a/0x1c [ 189.707894] entry_SYSCALL_64_after_hwframe+0x42/0xb7 [ 189.713070] RIP: 0033:0x4489a9 [ 189.716248] RSP: 002b:00007f7d987bbda8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 189.723939] RAX: ffffffffffffffda RBX: 0000000000700024 RCX: 00000000004489a9 [ 189.731193] RDX: 0000000000000008 RSI: 00000000200003c0 RDI: 0000000000000003 executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program executing program [ 189.738447] RBP: 0000000000700020 R08: 0000000000000000 R09: 0000000000000000 [ 189.745704] R10: 0000000000000000 R11: 0000000000000246 R12: 006d635f616d6472 [ 189.752969] R13: 2f646e6162696e69 R14: 666e692f7665642f R15: 0000000000000001 [ 189.760240] Code: 49 89 ff 53 41 89 d4 49 89 f6 48 83 ec 08 e8 b1 53 55 fd 49 8d bf c0 03 00 00 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 <80> 3c 02 00 0f 85 a0 01 00 00 4d 8b af c0 03 00 00 4d 85 ed 0f [ 189.779413] RIP: rdma_reject+0x37/0x220 RSP: ffff8801b50bf8f8 [ 189.785734] ---[ end trace edcac9dcf5a05d54 ]--- [ 189.790506] Kernel panic - not syncing: Fatal exception [ 189.796263] Dumping ftrace buffer: [ 189.799776] (ftrace buffer empty) [ 189.803455] Kernel Offset: disabled [ 189.807051] Rebooting in 86400 seconds..