[....] Starting enhanced syslogd: rsyslogd[ 16.166534] audit: type=1400 audit(1518206221.423:5): avc: denied { syslog } for pid=4011 comm="rsyslogd" capability=34 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 [?25l[?1c7[ ok 8[?25h[?0c. Starting mcstransd: [....] Starting periodic command scheduler: cron[?25l[?1c7[ ok 8[?25h[?0c. [....] Starting file context maintaining daemon: restorecond[?25l[?1c7[ ok 8[?25h[?0c. [....] Starting OpenBSD Secure Shell server: sshd[?25l[?1c7[ ok 8[?25h[?0c. Debian GNU/Linux 7 syzkaller ttyS0 syzkaller login: [ 18.848398] audit: type=1400 audit(1518206224.105:6): avc: denied { map } for pid=4151 comm="bash" path="/bin/bash" dev="sda1" ino=1457 scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=system_u:object_r:file_t:s0 tclass=file permissive=1 Warning: Permanently added '10.128.0.60' (ECDSA) to the list of known hosts. executing program [ 25.137264] audit: type=1400 audit(1518206230.393:7): avc: denied { map } for pid=4164 comm="syzkaller756462" path="/root/syzkaller756462794" dev="sda1" ino=16481 scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=unconfined_u:object_r:user_home_t:s0 tclass=file permissive=1 [ 25.139813] [ 25.163204] audit: type=1400 audit(1518206230.395:8): avc: denied { create } for pid=4164 comm="syzkaller756462" scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tclass=netlink_generic_socket permissive=1 [ 25.164866] ============================= [ 25.188744] audit: type=1400 audit(1518206230.396:9): avc: denied { write } for pid=4164 comm="syzkaller756462" scontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tcontext=unconfined_u:system_r:insmod_t:s0-s0:c0.c1023 tclass=netlink_generic_socket permissive=1 [ 25.216639] WARNING: suspicious RCU usage [ 25.220930] 4.15.0+ #221 Not tainted [ 25.224645] ----------------------------- [ 25.228797] net/tipc/bearer.c:177 suspicious rcu_dereference_protected() usage! [ 25.236240] [ 25.236240] other info that might help us debug this: [ 25.236240] [ 25.244387] [ 25.244387] rcu_scheduler_active = 2, debug_locks = 1 [ 25.251059] 2 locks held by syzkaller756462/4164: [ 25.255904] #0: (cb_lock){++++}, at: [<000000003bb01113>] genl_rcv+0x19/0x40 [ 25.263289] #1: (genl_mutex){+.+.}, at: [<000000002e321e71>] genl_rcv_msg+0x115/0x140 [ 25.271441] [ 25.271441] stack backtrace: [ 25.275954] CPU: 0 PID: 4164 Comm: syzkaller756462 Not tainted 4.15.0+ #221 [ 25.283039] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 [ 25.292369] Call Trace: [ 25.294928] dump_stack+0x194/0x257 [ 25.298528] ? arch_local_irq_restore+0x53/0x53 [ 25.303179] lockdep_rcu_suspicious+0x123/0x170 [ 25.307822] tipc_bearer_find+0x2b4/0x3b0 [ 25.311942] ? tipc_media_addr_printf+0x3a0/0x3a0 [ 25.316769] tipc_nl_compat_link_set+0x329/0x9f0 [ 25.321501] tipc_nl_compat_doit+0x15b/0x670 [ 25.325883] ? security_capable+0x8e/0xc0 [ 25.330003] ? tipc_nl_compat_link_stat_dump+0x3000/0x3000 [ 25.335599] ? ns_capable_common+0xcf/0x160 [ 25.339891] ? ns_capable+0x22/0x30 [ 25.343491] ? __netlink_ns_capable+0xe1/0x120 [ 25.348052] tipc_nl_compat_recv+0x1135/0x18f0 [ 25.352608] ? tipc_nl_compat_doit+0x670/0x670 [ 25.357159] ? tipc_nl_node_dump+0x1290/0x1290 [ 25.361709] ? tipc_nl_compat_bearer_enable+0x5c0/0x5c0 [ 25.367052] ? __save_stack_trace+0x7e/0xd0 [ 25.371376] genl_family_rcv_msg+0x7b7/0xfb0 [ 25.375761] ? genl_rcv+0x40/0x40 [ 25.379186] ? lock_downgrade+0x980/0x980 [ 25.383311] ? lock_release+0xa40/0xa40 [ 25.387262] ? __lock_is_held+0xb6/0x140 [ 25.391305] ? netlink_deliver_tap+0x2e9/0xf90 [ 25.395866] genl_rcv_msg+0xb2/0x140 [ 25.399553] netlink_rcv_skb+0x14b/0x380 [ 25.403585] ? genl_family_rcv_msg+0xfb0/0xfb0 [ 25.408141] ? netlink_ack+0xa10/0xa10 [ 25.411996] ? genl_rcv+0x19/0x40 [ 25.415423] ? netlink_skb_destructor+0x1d0/0x1d0 [ 25.420241] ? selinux_nlmsg_lookup+0x32b/0x430 [ 25.424885] genl_rcv+0x28/0x40 [ 25.428135] netlink_unicast+0x4c4/0x6b0 [ 25.432172] ? netlink_attachskb+0x8a0/0x8a0 [ 25.436558] ? security_netlink_send+0x81/0xb0 [ 25.441116] netlink_sendmsg+0xa4a/0xe60 [ 25.445155] ? netlink_unicast+0x6b0/0x6b0 [ 25.449366] ? security_socket_sendmsg+0x89/0xb0 [ 25.454092] ? netlink_unicast+0x6b0/0x6b0 [ 25.458300] sock_sendmsg+0xca/0x110 [ 25.461989] ___sys_sendmsg+0x767/0x8b0 [ 25.465946] ? copy_msghdr_from_user+0x590/0x590 [ 25.470684] ? __do_page_fault+0x5f7/0xc90 [ 25.474890] ? lock_downgrade+0x980/0x980 [ 25.479027] ? __fget_light+0x297/0x380 [ 25.482982] ? fget_raw+0x20/0x20 [ 25.486408] ? __handle_mm_fault+0x3ce0/0x3ce0 [ 25.490961] ? vmacache_find+0x5f/0x280 [ 25.494921] ? up_read+0x1a/0x40 [ 25.498260] ? __do_page_fault+0x3d6/0xc90 [ 25.502463] ? get_unused_fd_flags+0x190/0x190 [ 25.507043] ? __fdget+0x18/0x20 [ 25.510394] __sys_sendmsg+0xe5/0x210 [ 25.514165] ? __sys_sendmsg+0xe5/0x210 [ 25.518121] ? SyS_shutdown+0x290/0x290 [ 25.522074] ? __do_page_fault+0xc90/0xc90 [ 25.526285] ? fd_install+0x4d/0x60 [ 25.529894] ? trace_hardirqs_on_caller+0x421/0x5c0 [ 25.534900] SyS_sendmsg+0x2d/0x50 [ 25.538416] entry_SYSCALL_64_fastpath+0x29/0xa0 [ 25.543142] RIP: 0033:0x43fd69 [ 25.546301] RSP: 002b:00007fff09979378 EFLAGS: 00000203 ORIG_RAX: 000000000000002e [ 25.553978] RAX: ffffffffffffffda RBX: 00000000004002c8 RCX: 000000000043fd69 [ 25.561220] RDX: 0000000000000000 RSI: 0000000020003000 RDI: 0000000000000003 [ 25.568460] RBP: 00000000006ca018 R08: 0000000000000000 R09: 0000000000000000 [ 25.575707] R10: 0000000000000000 R11: 0000000000000203 R12: 0000000000401690 [ 25.582957] R13: 0000000000401720 R14: 0000000000000000 R15: 0000000