[<prev] [next>] [day] [month] [year] [list]
Message-ID: <6901bb3c.050a0220.3344a1.0410.GAE@google.com>
Date: Tue, 28 Oct 2025 23:59:08 -0700
From: syzbot <syzbot+ded9116588a7b73c34bc@...kaller.appspotmail.com>
To: dmantipov@...dex.ru, linux-kernel@...r.kernel.org, 
	syzkaller-bugs@...glegroups.com
Subject: Re: [syzbot] [ocfs2?] general protection fault in ocfs2_prepare_dir_for_insert
 (2)
Hello,
syzbot tried to test the proposed patch but the build/boot failed:
EV_CHANGE): bridge0: link becomes ready
[   70.519322][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bridge: link becomes ready
[   70.530517][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): bridge_slave_1: link becomes ready
[   70.544647][ T3064] bridge0: port 2(bridge_slave_1) entered blocking state
[   70.550487][ T3064] bridge0: port 2(bridge_slave_1) entered forwarding state
[   70.571038][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_bond: link becomes ready
[   70.589277][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_bond: link becomes ready
[   70.609215][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_team: link becomes ready
[   70.622557][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_0: link becomes ready
[   70.645088][ T5642] hsr0: Slave A (hsr_slave_0) is not up; please bring it up to get a fully working HSR network
[   70.659370][ T5642] hsr0: Slave B (hsr_slave_1) is not up; please bring it up to get a fully working HSR network
[   70.680648][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): team0: link becomes ready
[   70.693499][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_team: link becomes ready
[   70.710380][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): team_slave_1: link becomes ready
[   70.729176][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_hsr: link becomes ready
[   70.735975][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_0: link becomes ready
[   70.748332][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_hsr: link becomes ready
[   70.755431][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): hsr_slave_1: link becomes ready
[   70.767133][ T3064] IPv6: ADDRCONF(NETDEV_CHANGE): hsr0: link becomes ready
[   70.851896][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan1: link becomes ready
[   70.858310][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): vxcan0: link becomes ready
[   70.903168][ T5642] 8021q: adding VLAN 0 to HW filter on device batadv0
[   70.924407][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_virt_wifi: link becomes ready
[   70.939773][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_virt_wifi: link becomes ready
[   70.965961][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_vlan: link becomes ready
[   70.979808][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_vlan: link becomes ready
[   70.990815][ T5642] device veth0_vlan entered promiscuous mode
[   71.009168][ T5642] device veth1_vlan entered promiscuous mode
[   71.020626][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): macvlan0: link becomes ready
[   71.027572][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): vlan0: link becomes ready
[   71.034919][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): vlan1: link becomes ready
[   71.050903][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_macvtap: link becomes ready
[   71.069164][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_macvtap: link becomes ready
[   71.077341][ T5642] device veth0_macvtap entered promiscuous mode
[   71.091361][ T5642] device veth1_macvtap entered promiscuous mode
[   71.114348][ T5642] batman_adv: batadv0: Interface activated: batadv_slave_0
[   71.129562][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): macvtap0: link becomes ready
[   71.149254][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): macsec0: link becomes ready
[   71.174019][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_0: link becomes ready
[   71.182444][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): veth0_to_batadv: link becomes ready
[   71.192075][ T5642] batman_adv: batadv0: Interface activated: batadv_slave_1
[   71.199436][ T5552] Bluetooth: hci0: command 0x0409 tx timeout
[   71.207401][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): batadv_slave_1: link becomes ready
[   71.216600][   T18] IPv6: ADDRCONF(NETDEV_CHANGE): veth1_to_batadv: link becomes ready
[   71.225130][ T5642] netdevsim netdevsim0 netdevsim0: set [1, 0] type 2 family 0 port 6081 - 0
[   71.232611][ T5642] netdevsim netdevsim0 netdevsim1: set [1, 0] type 2 family 0 port 6081 - 0
[   71.240594][ T5642] netdevsim netdevsim0 netdevsim2: set [1, 0] type 2 family 0 port 6081 - 0
[   71.247798][ T5642] netdevsim netdevsim0 netdevsim3: set [1, 0] type 2 family 0 port 6081 - 0
[   71.261221][   T18] ================================================================================
[   71.269106][   T18] UBSAN: signed-integer-overflow in ./arch/x86/include/asm/atomic.h:165:11
[   71.276219][   T18] -2019885640 + -807740059 cannot be represented in type 'int'
[   71.283786][   T18] CPU: 0 PID: 18 Comm: kworker/u2:1 Not tainted syzkaller #0
[   71.289828][   T18] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014
[   71.298954][   T18] Workqueue: wg-kex-wg0 wg_packet_handshake_send_worker
[   71.304794][   T18] Call Trace:
[   71.307563][   T18]  dump_stack+0xfd/0x16e
[   71.311161][   T18]  ubsan_epilogue+0xa/0x30
[   71.314861][   T18]  handle_overflow+0x192/0x1b0
[   71.318888][   T18]  ? prandom_u32+0x217/0x260
[   71.322642][   T18]  ip_idents_reserve+0x14a/0x170
[   71.326669][   T18]  __ip_select_ident+0xe4/0x1c0
[   71.330707][   T18]  iptunnel_xmit+0x468/0x850
[   71.334195][   T18]  udp_tunnel_xmit_skb+0x1ba/0x290
[   71.339230][   T18]  send4+0x5d4/0xaf0
[   71.342867][   T18]  wg_socket_send_skb_to_peer+0xcd/0x1c0
[   71.347693][   T18]  wg_packet_handshake_send_worker+0x16b/0x280
[   71.352663][   T18]  process_one_work+0x85e/0xff0
[   71.356884][   T18]  worker_thread+0xa9b/0x1430
[   71.360897][   T18]  ? rcu_lock_release+0x20/0x20
[   71.364935][   T18]  kthread+0x386/0x410
[   71.368482][   T18]  ? rcu_lock_release+0x20/0x20
[   71.372390][   T18]  ? kthread_blkcg+0xd0/0xd0
[   71.375781][   T18]  ret_from_fork+0x1f/0x30
[   71.379566][   T18] ================================================================================
[   71.387217][   T18] Kernel panic - not syncing: UBSAN: panic_on_warn set ...
[   71.393104][   T18] CPU: 0 PID: 18 Comm: kworker/u2:1 Not tainted syzkaller #0
[   71.399114][   T18] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2~bpo12+1 04/01/2014
[   71.408160][   T18] Workqueue: wg-kex-wg0 wg_packet_handshake_send_worker
[   71.414156][   T18] Call Trace:
[   71.417188][   T18]  dump_stack+0xfd/0x16e
[   71.420967][   T18]  panic+0x2f0/0x9c0
[   71.424430][   T18]  check_panic_on_warn+0x95/0xe0
[   71.428743][   T18]  handle_overflow+0x192/0x1b0
[   71.432930][   T18]  ? prandom_u32+0x217/0x260
[   71.436898][   T18]  ip_idents_reserve+0x14a/0x170
[   71.441112][   T18]  __ip_select_ident+0xe4/0x1c0
[   71.445312][   T18]  iptunnel_xmit+0x468/0x850
[   71.449115][   T18]  udp_tunnel_xmit_skb+0x1ba/0x290
[   71.453280][   T18]  send4+0x5d4/0xaf0
[   71.456201][   T18]  wg_socket_send_skb_to_peer+0xcd/0x1c0
[   71.460527][   T18]  wg_packet_handshake_send_worker+0x16b/0x280
[   71.465615][   T18]  process_one_work+0x85e/0xff0
[   71.469572][   T18]  worker_thread+0xa9b/0x1430
[   71.473324][   T18]  ? rcu_lock_release+0x20/0x20
[   71.477283][   T18]  kthread+0x386/0x410
[   71.480523][   T18]  ? rcu_lock_release+0x20/0x20
[   71.484387][   T18]  ? kthread_blkcg+0xd0/0xd0
[   71.488208][   T18]  ret_from_fork+0x1f/0x30
[   71.492146][   T18] Kernel Offset: disabled
[   71.495730][   T18] Rebooting in 86400 seconds..
VM DIAGNOSIS:
06:58:23  Registers:
info registers vcpu 0
CPU#0
RAX=0000000000000035 RBX=0000000000000035 RCX=0000000000000000 RDX=00000000000003f8
RSI=0000000000000000 RDI=0000000000000020 RBP=00000000000003f8 RSP=ffffc900004474e0
R8 =dffffc0000000000 R9 =fffff52000088e9e R10=fffff52000088e9e R11=ffffffff83f79a10
R12=dffffc0000000000 R13=1ffffffff2acda63 R14=ffffffff96156de0 R15=0000000000000000
RIP=ffffffff83f79a88 RFL=00000002 [-------] CPL=0 II=0 A20=1 SMM=0 HLT=0
ES =0000 0000000000000000 ffffffff 00c00000
CS =0010 0000000000000000 ffffffff 00a09b00 DPL=0 CS64 [-RA]
SS =0018 0000000000000000 ffffffff 00c09300 DPL=0 DS   [-WA]
DS =0000 0000000000000000 ffffffff 00c00000
FS =0000 0000000000000000 ffffffff 00c00000
GS =0000 ffff888020600000 ffffffff 00c00000
LDT=0000 0000000000000000 ffffffff 00c00000
TR =0040 fffffe0000003000 00004087 00008b00 DPL=0 TSS64-busy
GDT=     fffffe0000001000 0000007f
IDT=     fffffe0000000000 00000fff
CR0=80050033 CR2=000055ec27667138 CR3=0000000043634000 CR4=00350ef0
DR0=0000000000000000 DR1=0000000000000000 DR2=0000000000000000 DR3=0000000000000000 
DR6=00000000fffe0ff0 DR7=0000000000000400
EFER=0000000000000d01
FCW=037f FSW=0000 [ST=0] FTW=00 MXCSR=00001f80
FPR0=0000000000000000 0000 FPR1=0000000000000000 0000
FPR2=0000000000000000 0000 FPR3=0000000000000000 0000
FPR4=0000000000000000 0000 FPR5=0000000000000000 0000
FPR6=0000000000000000 0000 FPR7=0000000000000000 0000
Opmask00=0000000040410888 Opmask01=0000000000000fff Opmask02=00000000ffffffef Opmask03=0000000000000000
Opmask04=0000000000000000 Opmask05=0000000000000000 Opmask06=0000000000000000 Opmask07=0000000000000000
ZMM00=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 f355cd647307d4c2 51d4b723dcb325af
ZMM01=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 26195827148f8856 4d1b0056103add89
ZMM02=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 2c6ab98a59c84769 0c19a67f179cb7b0
ZMM03=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 98f8c731bc7af26e 50572e4e173ad50d
ZMM04=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 00000000ffffffff 00000000000000b4
ZMM05=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000034
ZMM06=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 23b200baf12ac9b1 29de2f777b44f240
ZMM07=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 cf80a9126fe300a7 0000000000000000
ZMM08=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 18ccb5714dc74210 2bba947427f4907b
ZMM09=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 3173397400000000 1cc648d34cadc558
ZMM10=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 aaf6f61383f4a386 0071d80388ad288b
ZMM11=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 8923c588afb379c3 f77fbc576435674e
ZMM12=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM13=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM14=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 a54ff53a3c6ef372 bb67ae856a09e667
ZMM15=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 5be0cd191f83d9ab 9b05688c510e527f
ZMM16=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM17=0000000000000000 0000000000000000 0000000000000000 0000000000000000 2525252525252525 2525252525252525 2525252525252525 2525252525252525
ZMM18=0000000000000000 0000000000000000 0000000000000000 0000000000000000 00306e6170737265 0030657267367069 00306c6e74367069 00306974765f3670
ZMM19=0000000000000000 0000000000000000 0000000000000000 0000000000000000 6900306974765f70 6900306c6e757400 3074697300326777 0031677700306777
ZMM20=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM21=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM22=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM23=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM24=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM25=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM26=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM27=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM28=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM29=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM30=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
ZMM31=0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000 0000000000000000
syzkaller build log:
go env (err=<nil>)
AR='ar'
CC='gcc'
CGO_CFLAGS='-O2 -g'
CGO_CPPFLAGS=''
CGO_CXXFLAGS='-O2 -g'
CGO_ENABLED='1'
CGO_FFLAGS='-O2 -g'
CGO_LDFLAGS='-O2 -g'
CXX='g++'
GCCGO='gccgo'
GO111MODULE='auto'
GOAMD64='v1'
GOARCH='amd64'
GOAUTH='netrc'
GOBIN=''
GOCACHE='/syzkaller/.cache/go-build'
GOCACHEPROG=''
GODEBUG=''
GOENV='/syzkaller/.config/go/env'
GOEXE=''
GOEXPERIMENT=''
GOFIPS140='off'
GOFLAGS=''
GOGCCFLAGS='-fPIC -m64 -pthread -Wl,--no-gc-sections -fmessage-length=0 -ffile-prefix-map=/tmp/go-build2970195748=/tmp/go-build -gno-record-gcc-switches'
GOHOSTARCH='amd64'
GOHOSTOS='linux'
GOINSECURE=''
GOMOD='/syzkaller/jobs/linux/gopath/src/github.com/google/syzkaller/go.mod'
GOMODCACHE='/syzkaller/jobs/linux/gopath/pkg/mod'
GONOPROXY=''
GONOSUMDB=''
GOOS='linux'
GOPATH='/syzkaller/jobs/linux/gopath'
GOPRIVATE=''
GOPROXY='https://proxy.golang.org,direct'
GOROOT='/usr/local/go'
GOSUMDB='sum.golang.org'
GOTELEMETRY='local'
GOTELEMETRYDIR='/syzkaller/.config/go/telemetry'
GOTMPDIR=''
GOTOOLCHAIN='auto'
GOTOOLDIR='/usr/local/go/pkg/tool/linux_amd64'
GOVCS=''
GOVERSION='go1.24.4'
GOWORK=''
PKG_CONFIG='pkg-config'
git status (err=<nil>)
HEAD detached at 6b6b5f21aad
nothing to commit, working tree clean
tput: No value for $TERM and no -T specified
tput: No value for $TERM and no -T specified
Makefile:31: run command via tools/syz-env for best compatibility, see:
Makefile:32: https://github.com/google/syzkaller/blob/master/docs/contributing.md#using-syz-env
go list -f '{{.Stale}}' ./sys/syz-sysgen | grep -q false || go install ./sys/syz-sysgen
make .descriptions
tput: No value for $TERM and no -T specified
tput: No value for $TERM and no -T specified
Makefile:31: run command via tools/syz-env for best compatibility, see:
Makefile:32: https://github.com/google/syzkaller/blob/master/docs/contributing.md#using-syz-env
bin/syz-sysgen
touch .descriptions
GOOS=linux GOARCH=amd64 go build -ldflags="-s -w -X github.com/google/syzkaller/prog.GitRevision=6b6b5f21aadcc3fc3ccd91da0b782a4307229d70 -X github.com/google/syzkaller/prog.gitRevisionDate=20250604-135810"  -o ./bin/linux_amd64/syz-execprog github.com/google/syzkaller/tools/syz-execprog
mkdir -p ./bin/linux_amd64
g++ -o ./bin/linux_amd64/syz-executor executor/executor.cc \
	-m64 -O2 -pthread -Wall -Werror -Wparentheses -Wunused-const-variable -Wframe-larger-than=16384 -Wno-stringop-overflow -Wno-array-bounds -Wno-format-overflow -Wno-unused-but-set-variable -Wno-unused-command-line-argument -static-pie -std=c++17 -I. -Iexecutor/_include   -DGOOS_linux=1 -DGOARCH_amd64=1 \
	-DHOSTGOOS_linux=1 -DGIT_REVISION=\"6b6b5f21aadcc3fc3ccd91da0b782a4307229d70\"
/usr/bin/ld: /tmp/ccWtMwwi.o: in function `Connection::Connect(char const*, char const*)':
executor.cc:(.text._ZN10Connection7ConnectEPKcS1_[_ZN10Connection7ConnectEPKcS1_]+0x104): warning: Using 'gethostbyname' in statically linked applications requires at runtime the shared libraries from the glibc version used for linking
Error text is too large and was truncated, full error text is at:
https://syzkaller.appspot.com/x/error.txt?x=12476704580000
Tested on:
commit:         d3d0b4e2 Linux 5.10.245
git tree:       https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git linux-5.10.y
kernel config:  https://syzkaller.appspot.com/x/.config?x=d82f68054e55cf8c
dashboard link: https://syzkaller.appspot.com/bug?extid=ded9116588a7b73c34bc
compiler:       Debian clang version 20.1.8 (++20250708063551+0c9f909b7976-1~exp1~20250708183702.136), Debian LLD 20.1.8
patch:          https://syzkaller.appspot.com/x/patch.diff?x=102bf614580000
Powered by blists - more mailing lists
 
