[syzbot] Monthly bluetooth report (Feb 2025)

From: syzbot
Date: Mon Feb 17 2025 - 07:44:29 EST


Hello bluetooth maintainers/developers,

This is a 31-day syzbot report for the bluetooth subsystem.
All related reports/information can be found at:
https://syzkaller.appspot.com/upstream/s/bluetooth

During the period, 6 new issues were detected and 0 were fixed.
In total, 58 issues are still open and 79 have already been fixed.

Some of the still happening issues:

Ref Crashes Repro Title
<1> 27541 Yes KASAN: slab-use-after-free Read in l2cap_unregister_user
https://syzkaller.appspot.com/bug?extid=14b6d57fb728e27ce23c
<2> 5842 Yes WARNING in call_timer_fn
https://syzkaller.appspot.com/bug?extid=6fb78d577e89e69602f9
<3> 943 Yes general protection fault in lock_sock_nested
https://syzkaller.appspot.com/bug?extid=d3ccfb78a0dc16ffebe3
<4> 702 Yes general protection fault in skb_release_data (2)
https://syzkaller.appspot.com/bug?extid=ccfa5775bc1bda21ddd1
<5> 242 Yes WARNING in hci_conn_timeout (2)
https://syzkaller.appspot.com/bug?extid=fc4b5b2477d4ca272907
<6> 214 Yes KASAN: slab-use-after-free Read in force_devcd_write
https://syzkaller.appspot.com/bug?extid=bc71245e56f06e3127b7
<7> 182 Yes WARNING: ODEBUG bug in hci_release_dev (2)
https://syzkaller.appspot.com/bug?extid=b170dbf55520ebf5969a
<8> 137 Yes KASAN: slab-use-after-free Read in l2cap_recv_frame
https://syzkaller.appspot.com/bug?extid=5c915dc5dd417b83b348
<9> 132 No WARNING in l2cap_chan_del
https://syzkaller.appspot.com/bug?extid=3272785b7a1fc9b510f6
<10> 115 Yes BUG: sleeping function called from invalid context in lock_sock_nested (3)
https://syzkaller.appspot.com/bug?extid=55cd5225f71c5cff7f6f

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzkaller@xxxxxxxxxxxxxxxx.

To disable reminders for individual bugs, reply with the following command:
#syz set <Ref> no-reminders

To change bug's subsystems, reply with:
#syz set <Ref> subsystems: new-subsystem

You may send multiple commands in a single email message.