Reminder: 36 open syzbot bugs in "net/bpf" subsystem

From: Eric Biggers
Date: Wed Jul 03 2019 - 02:01:22 EST


[This email was generated by a script. Let me know if you have any suggestions
to make it better, or if you want it re-generated with the latest status.]

Of the currently open syzbot reports against the upstream kernel, I've manually
marked 36 of them as possibly being bugs in the "net/bpf" subsystem. I've
listed these reports below, sorted by an algorithm that tries to list first the
reports most likely to be still valid, important, and actionable.

Of these 36 bugs, 8 were seen in mainline in the last week.

Of these 36 bugs, 12 were bisected to commits from the following people:

John Fastabend <john.fastabend@xxxxxxxxx>
Daniel Borkmann <daniel@xxxxxxxxxxxxx>
Alexei Starovoitov <ast@xxxxxx>

If you believe a bug is no longer valid, please close the syzbot report by
sending a '#syz fix', '#syz dup', or '#syz invalid' command in reply to the
original thread, as explained at https://goo.gl/tpsmEJ#status

If you believe I misattributed a bug to the "net/bpf" subsystem, please let me
know, and if possible forward the report to the correct people or mailing list.

Here are the bugs:

--------------------------------------------------------------------------------
Title: WARNING in bpf_jit_free
Last occurred: 0 days ago
Reported: 351 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=d04f9c2ec11ab2678f7427795ff5170cb9eb2220
Original thread: https://lkml.kernel.org/lkml/000000000000e92d1805711f5552@xxxxxxxxxx/T/#u

This bug has a C reproducer.

syzbot has bisected this bug, but I think the bisection result is incorrect.

The original thread for this bug received 5 replies; the last was 21 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+2ff1e7cb738fd3c41113@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000e92d1805711f5552@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: BUG: unable to handle kernel paging request in bpf_prog_kallsyms_add
Last occurred: 0 days ago
Reported: 295 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=97f89d84d528e4f5150dcfbdeb97347bc8471e96
Original thread: https://lkml.kernel.org/lkml/0000000000009417ef0575802d44@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

The original thread for this bug received 2 replies; the last was 120 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+c827a78260579449ad39@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/0000000000009417ef0575802d44@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: use-after-free Read in sk_psock_unlink
Last occurred: 1 day ago
Reported: 249 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=d691981726208716cc7aec231fb915e27763d662
Original thread: https://lkml.kernel.org/lkml/000000000000fd342e05791cc86f@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

syzbot has bisected this bug, but I think the bisection result is incorrect.

The original thread for this bug received 1 reply, 41 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+3acd9f67a6a15766686e@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000fd342e05791cc86f@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: kernel panic: corrupted stack end in corrupted
Last occurred: 1 day ago
Reported: 12 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=1ee6edc829856a31fccb0c66cab50d2de0863f96
Original thread: https://lkml.kernel.org/lkml/00000000000097ca41058bc129cc@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit e9db4ef6bf4ca9894bb324c76e01b8f1a16b2650
Author: John Fastabend <john.fastabend@xxxxxxxxx>
Date: Sat Jun 30 13:17:47 2018 +0000

  bpf: sockhash fix omitted bucket lock in sock_close

The original thread for this bug has received 1 reply, 12 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+b764c7ca388222ddfb17@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread, which had activity only 12 days ago. For the git send-email command to
use, or tips on how to reply if the thread isn't in your mailbox, see the "Reply
instructions" at https://lkml.kernel.org/r/00000000000097ca41058bc129cc@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: WARNING in bpf_prog_kallsyms_find
Last occurred: 0 days ago
Reported: 56 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=40b0c218e639f1d882b86abff2549cfe11c5101e
Original thread: https://lkml.kernel.org/lkml/000000000000a8fa360588580820@xxxxxxxxxx/T/#u

This bug has a C reproducer.

No one has replied to the original thread for this bug yet.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+89d1ce6e80218a6192d8@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000a8fa360588580820@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: kernel panic: corrupted stack end in dput
Last occurred: 2 days ago
Reported: 1 day ago
Branches: net
Dashboard link: https://syzkaller.appspot.com/bug?id=84982a1f2b31c5239596ed6f436db8696418e233
Original thread: https://lkml.kernel.org/lkml/000000000000a5d3cb058c9a64f0@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit e9db4ef6bf4ca9894bb324c76e01b8f1a16b2650
Author: John Fastabend <john.fastabend@xxxxxxxxx>
Date: Sat Jun 30 13:17:47 2018 +0000

  bpf: sockhash fix omitted bucket lock in sock_close

The original thread for this bug has received 1 reply, 9 hours ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+d88a977731a9888db7ba@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread, which had activity only 9 hours ago. For the git send-email command to
use, or tips on how to reply if the thread isn't in your mailbox, see the "Reply
instructions" at https://lkml.kernel.org/r/000000000000a5d3cb058c9a64f0@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: kernel panic: stack is corrupted in validate_chain
Last occurred: 7 days ago
Reported: 7 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=947c912ab7a1a9e3500b2cc279ba12f9be813d25
Original thread: https://lkml.kernel.org/lkml/000000000000c7a272058c2cde21@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit e9db4ef6bf4ca9894bb324c76e01b8f1a16b2650
Author: John Fastabend <john.fastabend@xxxxxxxxx>
Date: Sat Jun 30 13:17:47 2018 +0000

  bpf: sockhash fix omitted bucket lock in sock_close

No one has replied to the original thread for this bug yet.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+6ba34346b252f2d497c7@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread. For the git send-email command to use, or tips on how to reply if the
thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000c7a272058c2cde21@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: use-after-free Read in corrupted (3)
Last occurred: 6 days ago
Reported: 6 days ago
Branches: net-next
Dashboard link: https://syzkaller.appspot.com/bug?id=5a60c112b10202cbf01ef00c3e912c160ad17b87
Original thread: https://lkml.kernel.org/lkml/000000000000f4f847058c387616@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit e9db4ef6bf4ca9894bb324c76e01b8f1a16b2650
Author: John Fastabend <john.fastabend@xxxxxxxxx>
Date: Sat Jun 30 13:17:47 2018 +0000

  bpf: sockhash fix omitted bucket lock in sock_close

No one has replied to the original thread for this bug yet.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+8a821b383523654227bf@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread. For the git send-email command to use, or tips on how to reply if the
thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000f4f847058c387616@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: slab-out-of-bounds Read in class_equal
Last occurred: 0 days ago
Reported: 38 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=d299ab18d8295ac16f481e28f727e3aa0e01a1cf
Original thread: https://lkml.kernel.org/lkml/00000000000016cb560589b9c7c4@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

The original thread for this bug has received 1 reply, 37 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+3d04999521633dceb439@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/00000000000016cb560589b9c7c4@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: memory leak in sock_hash_update_common
Last occurred: 1 day ago
Reported: 41 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=9992588b3bbe2617f62f41b1162af9fc8ea4829c
Original thread: https://lkml.kernel.org/lkml/000000000000fa662405897c0774@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

No one has replied to the original thread for this bug yet.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+30c7a1fc662026545124@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000fa662405897c0774@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: use-after-free Write in validate_chain
Last occurred: 1 day ago
Reported: 11 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=e73b1b9f0fb147bf4b79e9f6fe7a465abd9256c5
Original thread: https://lkml.kernel.org/lkml/0000000000000c4e3e058bd5008d@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

No one has replied to the original thread for this bug yet.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+55c548ad445cef6063ab@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread. For the git send-email command to use, or tips on how to reply if the
thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/0000000000000c4e3e058bd5008d@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: slab-out-of-bounds Read in usage_accumulate
Last occurred: 7 days ago
Reported: 26 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=53d11b9bbe4e2149cb3cc4cbe56068aa8202f079
Original thread: https://lkml.kernel.org/lkml/000000000000454279058aa80535@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit e9db4ef6bf4ca9894bb324c76e01b8f1a16b2650
Author: John Fastabend <john.fastabend@xxxxxxxxx>
Date: Sat Jun 30 13:17:47 2018 +0000

  bpf: sockhash fix omitted bucket lock in sock_close

The original thread for this bug has received 1 reply, 26 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+b0d730107e2ca6cb952f@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000454279058aa80535@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: BUG: unable to handle kernel NULL pointer dereference in corrupted (4)
Last occurred: 8 days ago
Reported: 7 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=6751daddb34d9d52970e2c252b87564bf6876fbd
Original thread: https://lkml.kernel.org/lkml/000000000000c3bb59058c2cdef2@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit e9db4ef6bf4ca9894bb324c76e01b8f1a16b2650
Author: John Fastabend <john.fastabend@xxxxxxxxx>
Date: Sat Jun 30 13:17:47 2018 +0000

  bpf: sockhash fix omitted bucket lock in sock_close

No one has replied to the original thread for this bug yet.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+4b5d77fdf765668f9eba@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread. For the git send-email command to use, or tips on how to reply if the
thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000c3bb59058c2cdef2@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: general protection fault in rb_next (3)
Last occurred: 17 days ago
Reported: 15 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=18230564bca6dbde79a399755fefaca3a974f0c0
Original thread: https://lkml.kernel.org/lkml/0000000000003f07fe058b803013@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit e9db4ef6bf4ca9894bb324c76e01b8f1a16b2650
Author: John Fastabend <john.fastabend@xxxxxxxxx>
Date: Sat Jun 30 13:17:47 2018 +0000

  bpf: sockhash fix omitted bucket lock in sock_close

No one has replied to the original thread for this bug yet.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+ab4c44191771d56c4eda@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/0000000000003f07fe058b803013@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: slab-out-of-bounds Write in validate_chain
Last occurred: 1 day ago
Reported: 11 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=af95641bc8a50769fceae59ec58e8e35ea052914
Original thread: https://lkml.kernel.org/lkml/000000000000e672c6058bd7ee45@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

The original thread for this bug has received 2 replies; the last was 6 days
ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+8893700724999566d6a9@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread, which had activity only 6 days ago. For the git send-email command to
use, or tips on how to reply if the thread isn't in your mailbox, see the "Reply
instructions" at https://lkml.kernel.org/r/000000000000e672c6058bd7ee45@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: general protection fault in rb_erase (2)
Last occurred: 27 days ago
Reported: 180 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=562d6c89d913184d9ed9bef5eec82105d71d2dc5
Original thread: https://lkml.kernel.org/lkml/0000000000008ab3c0057e8b747f@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit e9db4ef6bf4ca9894bb324c76e01b8f1a16b2650
Author: John Fastabend <john.fastabend@xxxxxxxxx>
Date: Sat Jun 30 13:17:47 2018 +0000

  bpf: sockhash fix omitted bucket lock in sock_close

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+e8c40862180d8949d624@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/0000000000008ab3c0057e8b747f@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: slab-out-of-bounds Read in corrupted (2)
Last occurred: 26 days ago
Reported: 26 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=9360900ac995e4ff25dea7f3ac939652b1f716e1
Original thread: https://lkml.kernel.org/lkml/0000000000004945f1058aa80556@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit d40b0116c94bd8fc2b63aae35ce8e66bb53bba42
Author: Daniel Borkmann <daniel@xxxxxxxxxxxxx>
Date: Thu Aug 16 19:49:08 2018 +0000

  bpf, sockmap: fix leakage of smap_psock_map_entry

The original thread for this bug has received 1 reply, 26 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+9a901acbc447313bfe3e@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/0000000000004945f1058aa80556@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: WARNING in is_bpf_text_address
Last occurred: 0 days ago
Reported: 11 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=2386340f7a641010bb1e17228d1e9319592c01ba
Original thread: https://lkml.kernel.org/lkml/00000000000000ac4f058bd50039@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

The original thread for this bug has received 2 replies; the last was 1 day ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+bd3bba6ff3fcea7a6ec6@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread, which had activity only 1 day ago. For the git send-email command to
use, or tips on how to reply if the thread isn't in your mailbox, see the "Reply
instructions" at https://lkml.kernel.org/r/00000000000000ac4f058bd50039@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: BUG: unable to handle kernel paging request in tls_prots
Last occurred: 6 days ago
Reported: 6 days ago
Branches: net
Dashboard link: https://syzkaller.appspot.com/bug?id=8de86ced049e882cd68c3ef51cc69c634d8aeb7c
Original thread: https://lkml.kernel.org/lkml/000000000000d7bcbb058c3758a1@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

No one has replied to the original thread for this bug yet.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+4207c7f3a443366d8aa2@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread. For the git send-email command to use, or tips on how to reply if the
thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000d7bcbb058c3758a1@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: BUG: unable to handle kernel paging request in cpuacct_account_field
Last occurred: 12 days ago
Reported: 11 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=8155f45b63050b3a24f5e9091005488492d48461
Original thread: https://lkml.kernel.org/lkml/00000000000008f38a058bd500b9@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

The original thread for this bug has received 1 reply, 10 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+a952f743523593b39174@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread, which had activity only 10 days ago. For the git send-email command to
use, or tips on how to reply if the thread isn't in your mailbox, see the "Reply
instructions" at https://lkml.kernel.org/r/00000000000008f38a058bd500b9@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: BUG: unable to handle kernel paging request in __do_softirq
Last occurred: 14 days ago
Reported: 13 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=a0772f3c173c018b078174c3108eb00078c5818b
Original thread: https://lkml.kernel.org/lkml/00000000000017c9e2058baf4825@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

The original thread for this bug has received 1 reply, 13 days ago.

I believe that syzbot originally sent this report to the wrong people.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+0b224895cb9454584de1@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread, which had activity only 13 days ago. For the git send-email command to
use, or tips on how to reply if the thread isn't in your mailbox, see the "Reply
instructions" at https://lkml.kernel.org/r/00000000000017c9e2058baf4825@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: BUG: unable to handle kernel paging request in hrtimer_interrupt
Last occurred: 14 days ago
Reported: 13 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=fe68b600c03d48b14a769e379d1cda8704ffe9cb
Original thread: https://lkml.kernel.org/lkml/0000000000001c03bf058baf488a@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

The original thread for this bug has received 1 reply, 13 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+037e18398ba8c655a652@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread, which had activity only 13 days ago. For the git send-email command to
use, or tips on how to reply if the thread isn't in your mailbox, see the "Reply
instructions" at https://lkml.kernel.org/r/0000000000001c03bf058baf488a@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: general protection fault in mm_update_next_owner
Last occurred: 24 days ago
Reported: 24 days ago
Branches: net
Dashboard link: https://syzkaller.appspot.com/bug?id=eaeca1c76639c47820399a4478080ebcf931c489
Original thread: https://lkml.kernel.org/lkml/000000000000a802e6058ad4bc53@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit e9db4ef6bf4ca9894bb324c76e01b8f1a16b2650
Author: John Fastabend <john.fastabend@xxxxxxxxx>
Date: Sat Jun 30 13:17:47 2018 +0000

  bpf: sockhash fix omitted bucket lock in sock_close

The original thread for this bug has received 2 replies; the last was 21 days
ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+f625baafb9a1c4bfc3f6@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000a802e6058ad4bc53@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: WARNING: kernel stack frame pointer has bad value (2)
Last occurred: 14 days ago
Reported: 351 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=02a32f98a4e3b5a2ed6929aabdd28dd1618b9c03
Original thread: https://lkml.kernel.org/lkml/0000000000000956640571197f98@xxxxxxxxxx/T/#u

This bug has a C reproducer.

The original thread for this bug received 1 reply, 351 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+903cdd6bce9a6eb832a4@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/0000000000000956640571197f98@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: use-after-free Read in bpf_prog_kallsyms_del
Last occurred: 182 days ago
Reported: 260 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=55d929463ecf8859c0c4836a4f8f004cfec28cf7
Original thread: https://lkml.kernel.org/lkml/0000000000001d985405783e8aee@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit f4d7e40a5b7157e1329c3c5b10f60d8289fc2941
Author: Alexei Starovoitov <ast@xxxxxx>
Date: Fri Dec 15 01:55:06 2017 +0000

  bpf: introduce function calls (verification)

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+10cffda23c81a3ff1088@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/0000000000001d985405783e8aee@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: WARNING in mark_lock
Last occurred: 12 days ago
Reported: 8 days ago
Branches: linux-next
Dashboard link: https://syzkaller.appspot.com/bug?id=cff2f292a776c2e85f65789d6a62a8c3b640aa98
Original thread: https://lkml.kernel.org/lkml/0000000000005aedf1058c1bf7e8@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

The original thread for this bug has received 8 replies; the last was 1 day ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+a861f52659ae2596492b@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please reply to the original
thread, which had activity only 1 day ago. For the git send-email command to
use, or tips on how to reply if the thread isn't in your mailbox, see the "Reply
instructions" at https://lkml.kernel.org/r/0000000000005aedf1058c1bf7e8@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: use-after-free Read in bpf_prog_kallsyms_add
Last occurred: 61 days ago
Reported: 295 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=0d9e7892096514a76e429ff8353aca183dac6e73
Original thread: https://lkml.kernel.org/lkml/000000000000ebd44005758029c2@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+ac0311cfc9e80cd2e0e8@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000ebd44005758029c2@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: slab-out-of-bounds Read in sock_hash_ctx_update_elem
Last occurred: 337 days ago
Reported: 337 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=4387b587226bb5f873bcf7dc8febc50c2dd3c540
Original thread: https://lkml.kernel.org/lkml/000000000000cc883b05723824b2@xxxxxxxxxx/T/#u

This bug has a C reproducer.

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+4207b2e0c72d65cc775d@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000cc883b05723824b2@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: KASAN: use-after-free Read in psock_map_pop
Last occurred: 252 days ago
Reported: 295 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=931ba7ed06ce22b5933fbc3992e6377a889d3ceb
Original thread: https://lkml.kernel.org/lkml/0000000000008cc5260575802d0d@xxxxxxxxxx/T/#u

This bug has a C reproducer.

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+5bbe234204453085d43e@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/0000000000008cc5260575802d0d@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: general protection fault in bpf_tcp_close (2)
Last occurred: 312 days ago
Reported: 356 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=50e6f582ccc13e995abdad2ecdefed35f91bebad
Original thread: https://lkml.kernel.org/lkml/00000000000054fd6b0570be9fa8@xxxxxxxxxx/T/#u

This bug has a C reproducer.

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+339037020e772651f1d8@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/00000000000054fd6b0570be9fa8@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: general protection fault in smap_list_hash_remove
Last occurred: 344 days ago
Reported: 363 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=293f48c6a63935b5872fac5eafff89a15518864e
Original thread: https://lkml.kernel.org/lkml/000000000000b0e80905702dcf6f@xxxxxxxxxx/T/#u

This bug has a C reproducer.

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+b912ba691bb508925d72@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000b0e80905702dcf6f@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: BUG: unable to handle kernel paging request in bpf_prog_kallsyms_find
Last occurred: 151 days ago
Reported: 226 days ago
Branches: bpf-next and linux-next
Dashboard link: https://syzkaller.appspot.com/bug?id=a1c27d97870876dcccbac41a965e46f672fc3855
Original thread: https://lkml.kernel.org/lkml/000000000000b99324057af4dabb@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

This bug was bisected to:

commit f4d7e40a5b7157e1329c3c5b10f60d8289fc2941
Author: Alexei Starovoitov <ast@xxxxxx>
Date: Fri Dec 15 01:55:06 2017 +0000

  bpf: introduce function calls (verification)

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+66d6b1d3055f1d9ee4f3@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000b99324057af4dabb@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: WARNING in bpf_prog_kallsyms_add
Last occurred: 180 days ago
Reported: 179 days ago
Branches: Mainline
Dashboard link: https://syzkaller.appspot.com/bug?id=b658eb696c8279d9951a4ceea79efba8a1d12467
Original thread: https://lkml.kernel.org/lkml/000000000000f302fc057ea3b499@xxxxxxxxxx/T/#u

This bug has a syzkaller reproducer only.

syzbot has bisected this bug, but I think the bisection result is incorrect.

The original thread for this bug received 2 replies; the last was 98 days ago.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+987e48d84abddbe2506d@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/000000000000f302fc057ea3b499@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: WARNING: suspicious RCU usage in trace_call_bpf
Last occurred: 285 days ago
Reported: 302 days ago
Branches: Mainline and others
Dashboard link: https://syzkaller.appspot.com/bug?id=b4ec822cd97ffa2800cd27429997e0c8ea82331d
Original thread: https://lkml.kernel.org/lkml/00000000000072d3ab0574f40f80@xxxxxxxxxx/T/#u

This bug has a C reproducer.

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+1c843dc17610ca4c764f@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/00000000000072d3ab0574f40f80@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: WARNING in bpf_base_func_proto
Last occurred: 34 days ago
Reported: 32 days ago
Branches: bpf
Dashboard link: https://syzkaller.appspot.com/bug?id=5157126acdd38b1aedd23aeea5a3cfc26e16ce79
Original thread: https://lkml.kernel.org/lkml/0000000000002ea227058a2b28a4@xxxxxxxxxx/T/#u

Unfortunately, this bug does not have a reproducer.

No one has replied to the original thread for this bug yet.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+5b595d1c2cd4d7d0f521@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/0000000000002ea227058a2b28a4@xxxxxxxxxx

--------------------------------------------------------------------------------
Title: INFO: rcu detected stall in sys_bpf
Last occurred: 65 days ago
Reported: 97 days ago
Branches: bpf and linux-next
Dashboard link: https://syzkaller.appspot.com/bug?id=8a99735caa3c5e2b342382d6731db9da1a18aefd
Original thread: https://lkml.kernel.org/lkml/00000000000012a28e058517a481@xxxxxxxxxx/T/#u

Unfortunately, this bug does not have a reproducer.

No one replied to the original thread for this bug.

If you fix this bug, please add the following tag to the commit:
Reported-by: syzbot+c70685d9eac9589eaffc@xxxxxxxxxxxxxxxxxxxxxxxxx

If you send any email or patch for this bug, please consider replying to the
original thread. For the git send-email command to use, or tips on how to reply
if the thread isn't in your mailbox, see the "Reply instructions" at
https://lkml.kernel.org/r/00000000000012a28e058517a481@xxxxxxxxxx