Received: by 2002:a05:6358:3188:b0:123:57c1:9b43 with SMTP id q8csp5943944rwd; Sun, 18 Jun 2023 23:12:31 -0700 (PDT) X-Google-Smtp-Source: ACHHUZ62FWhdq/sHeiXqZR4ncxBJqetSAEahyO6vLlWClhlnQ03ze6C+Ur/A9ZMuFTf0zYtAWqtd X-Received: by 2002:a67:bc17:0:b0:440:9347:30ae with SMTP id t23-20020a67bc17000000b00440934730aemr1307396vsn.1.1687155151185; Sun, 18 Jun 2023 23:12:31 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1687155151; cv=none; d=google.com; s=arc-20160816; b=t/I6tzNaMAfoarYJP+CSLyAH/VJCK+io106qcI2gWGnXn2nxkKI/snuRr5NFfRLV9Z Txq3OqZbEUPsXlIJscqatT0mLh6xSO+PzxbDWAxrHqfvpLf17y676QPNQ7uNpVKU80sj tpBTzctUCGG48rChdTy5vuVdRheuNygpOMPEeVA13aakewCXguIMb4FCwjN+Zm0S2Gdl ERULowSKDVajCmsxqnrRqaYIgiS9wd9v6vC+4pF/EwzJp0p2MPtB7FfT2/GM6CjasJdt v9/Y2I/jXHoGoZRXBk1YLnMxfCqaDlQhxD/OB3TFPOJgrTyjS1ikbWWS1vvkzbkCPMzD F1rg== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:cc:to:subject:message-id:date:from:in-reply-to :references:mime-version:dkim-signature; bh=+l56EVhv3DJvNU1IQjzDjseQEvnEEKyVbt3cN52claY=; b=Qm+6/kvatw9cY9O2hrnob7u5oy/+UImGZN2ZEi6u7AbWSzSQZMiZYUzIQCzmdz3pCM s42MAu1VCbX8ika/Rcq4uBSb6tT5EqXFv8d+MGxIHSdA+c2Hbu5VpFnvGp2eRKrpBPIP uzIWULBmNKuUmmhwyyhLT1f4zyjaPwY9FjnzA/HhhEmcTVrW4DsOrAjDefppjOeWOZ7v Coagsj4HNFp6VQ0aNlbXiN+X8/3uWINd5sj+1Rdh3GV68b7x8KFp87ryl0VWz8hnMs9I wiVqgluQwUGAXwn4p7PpYhAdjvABL0URXS2TqFPVX0+JTlq8UFwA5jkpylhyfzeWK8KI IbIQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@google.com header.s=20221208 header.b="F/kNBWEE"; spf=pass (google.com: domain of linux-bluetooth-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-bluetooth-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id a2-20020a637f02000000b005307d9f387esi6396393pgd.536.2023.06.18.23.12.08; Sun, 18 Jun 2023 23:12:31 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-bluetooth-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; dkim=pass header.i=@google.com header.s=20221208 header.b="F/kNBWEE"; spf=pass (google.com: domain of linux-bluetooth-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-bluetooth-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S229843AbjFSGKf (ORCPT + 99 others); Mon, 19 Jun 2023 02:10:35 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:36968 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S229602AbjFSGKf (ORCPT ); Mon, 19 Jun 2023 02:10:35 -0400 Received: from mail-lf1-x135.google.com (mail-lf1-x135.google.com [IPv6:2a00:1450:4864:20::135]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 17C06DA for ; Sun, 18 Jun 2023 23:10:33 -0700 (PDT) Received: by mail-lf1-x135.google.com with SMTP id 2adb3069b0e04-4f85fa03cd9so3030e87.1 for ; Sun, 18 Jun 2023 23:10:33 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20221208; t=1687155031; x=1689747031; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=+l56EVhv3DJvNU1IQjzDjseQEvnEEKyVbt3cN52claY=; b=F/kNBWEEgaE+8lZUPTIARp5HRaAoZ3OJ/XgML6vdgc6EtwY5p58wPd7kV++KSKFm4b OyFBJALpf5kDPATAbF5lTZpwdyu8JFxTuRi+4mcLd7Guw1jwIhL298AzYLOSzwyjpcFs diNAyNdCsjpLeq6GebJUxF9gkklqRHhSUKMHppwtT677LSlbWJNIV/RdCVO8WNFa+K36 OgZIXUfm9t/cUUrLLTNJVyCLnRJeUoJ+PQMpUk/s6c2YsiD1uPs7ajY4/f44OtoctmS2 w1T49dUAe0bYDleIE21DH/ZQZYp4NMlzFH7d4LkOKrbpxy5b2bL//xP4GGVLpTB7e7dF p7Lg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1687155031; x=1689747031; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=+l56EVhv3DJvNU1IQjzDjseQEvnEEKyVbt3cN52claY=; b=IQA3yKb5wFhYqON24uwnkSBo0e4DRLT/PwE4HhvGf2oghX4y/ITrU9HKtINareLuc5 kRiTyN9jFNxQIASGGYAGSA0lHNmcpdkPUfXzeWj8pVMmg/9A/QopsbxjkudAUkM5tEoF UT8sIzfu8qmjRAaFrwMQpM+0RV8Bk2ywHpufQcezeprPt/ZWWUxb37yzOzUMwiK8OMsk sQZLz+i5jHLGlovF6RG6MmGySpxxSvGJXCi8MyCybYCLNdPAAsb5OzoyCrzzLqItzb9b 2BBrEDu+eWulMjMBAqIQgELVTVFzTHw3k0eLhvyNvQaBqhnKP5Ij1MPu614CP87wOtCY QcOw== X-Gm-Message-State: AC+VfDziNA8tm9tmH3YE4o2N/A9D4j1iCNYbSUlQvTGSYMdHGCPzUSnq L+OmjhILOrtcdjn0wM/y5pM4dwgdtug/fRGXqzi+IA== X-Received: by 2002:ac2:5450:0:b0:4f2:7840:e534 with SMTP id d16-20020ac25450000000b004f27840e534mr267987lfn.0.1687155031253; Sun, 18 Jun 2023 23:10:31 -0700 (PDT) MIME-Version: 1.0 References: <00000000000098289005dc17b71b@google.com> <00000000000051087405fe4092cc@google.com> In-Reply-To: <00000000000051087405fe4092cc@google.com> From: Dmitry Vyukov Date: Mon, 19 Jun 2023 08:10:19 +0200 Message-ID: Subject: Re: [syzbot] [bluetooth?] possible deadlock in sco_conn_del To: syzbot Cc: davem@davemloft.net, edumazet@google.com, fgheet255t@gmail.com, hdanton@sina.com, johan.hedberg@gmail.com, josephsih@chromium.org, kuba@kernel.org, linux-bluetooth@vger.kernel.org, linux-kernel@vger.kernel.org, lrh2000@pku.edu.cn, luiz.dentz@gmail.com, luiz.von.dentz@intel.com, marcel@holtmann.org, netdev@vger.kernel.org, pabeni@redhat.com, syzkaller-bugs@googlegroups.com, yinghsu@chromium.org Content-Type: text/plain; charset="UTF-8" X-Spam-Status: No, score=-15.1 required=5.0 tests=BAYES_00,DKIMWL_WL_MED, DKIM_SIGNED,DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF, ENV_AND_HDR_SPF_MATCH,RCVD_IN_DNSWL_NONE,SORTED_RECIPS,SPF_HELO_NONE, SPF_PASS,T_SCC_BODY_TEXT_LINE,USER_IN_DEF_DKIM_WL,USER_IN_DEF_SPF_WL autolearn=no autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-bluetooth@vger.kernel.org On Fri, 16 Jun 2023 at 17:09, syzbot wrote: > > syzbot suspects this issue was fixed by commit: > > commit a2ac591cb4d83e1f2d4b4adb3c14b2c79764650a > Author: Ruihan Li > Date: Wed May 3 13:39:36 2023 +0000 > > Bluetooth: Fix UAF in hci_conn_hash_flush again > > bisection log: https://syzkaller.appspot.com/x/bisect.txt?x=13755717280000 > start commit: e4cf7c25bae5 Merge tag 'kbuild-fixes-v6.2' of git://git.ke.. > git tree: upstream > kernel config: https://syzkaller.appspot.com/x/.config?x=555d27e379d75ff1 > dashboard link: https://syzkaller.appspot.com/bug?extid=b825d87fe2d043e3e652 > syz repro: https://syzkaller.appspot.com/x/repro.syz?x=10052058480000 > C reproducer: https://syzkaller.appspot.com/x/repro.c?x=1190687c480000 > > If the result looks correct, please mark the issue as fixed by replying with: > > #syz fix: Bluetooth: Fix UAF in hci_conn_hash_flush again > > For information about bisection process see: https://goo.gl/tpsmEJ#bisection Looks reasonable: #syz fix: Bluetooth: Fix UAF in hci_conn_hash_flush again