Received: by 2002:a05:6a10:22f:0:0:0:0 with SMTP id 15csp167485pxk; Thu, 24 Sep 2020 02:29:22 -0700 (PDT) X-Google-Smtp-Source: ABdhPJybDmc+rw3CWxsLTmtwNABd9BlyuVXmJVMJswNjED2yyud/nu1v4B/Y0NCxiGupXTks0GBn X-Received: by 2002:a17:906:71c9:: with SMTP id i9mr63663ejk.250.1600939762526; Thu, 24 Sep 2020 02:29:22 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1600939762; cv=none; d=google.com; s=arc-20160816; b=pfD4+u9WgdVE/8OPg75HzaKHvOMKr6JTs8vXqSlEIEza0BMJtks16F2KfLcfd2+N90 K7j5ok5MNagDzu4VqHp/x98p7FjN59N4MRkE9qJjTV4ELjAno3mMrfcM/+QNxDUR0lNw 4FHlHs0JEvw7QwpkQU4ux680RWCsadlncZnH4EKO1Wd8slmw6JGVd/DGTidlNIPatGkB Zoaoa4ocuB45Ijv/LUGnQLYVPRxhAVss7qDqC+5x5r66YI8TYzYc+Pg/0HSDyRXihSDs Q0APw9HdBoAb3q8zYn/qqMLDQHWU9NuCMKgUXdD8UeUN80FeXtEYt/Pt1QH5PbShueNj qpdg== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:to:from:subject:message-id:date:mime-version; bh=KwtKvUDMcxdYzs6ADf81+0YwKHEm5MaqSDUuSHizkg8=; b=BhVSEIdEHv/r6xxYfGpsG+JgGC8uw8VUskWhWC+6lLGvSuhVTXYYfeTPbw6SPxCXnF 4tyyKXGZE9AIYSPHu6lqeAsB9A6Zxja6kD8XtJ68LYdufnAD17rKjW2l8Ii59XbXTWkw +jlnhgO+0fzPV1f+0fRalj9ZdSpJi/zYjO7fooP2eNWSTy78Rruoc0RE2yA81PBkcgwP d5jQoZk7Aen4D78n9+i6KYRcpwzd7EovX7qyfNs7LnKSihVUgu6AWc7wUn4dwzryPD3q 3JX5dFJ8MLK1sgirPF71FRo3OsZzk5Di+8zGoI94P22uMbbq53VYjFm8oXj9mRCaQCQS I8xg== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-wireless-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-wireless-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id u18si1980464edf.140.2020.09.24.02.28.58; Thu, 24 Sep 2020 02:29:22 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-wireless-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-wireless-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-wireless-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1727199AbgIXJ2I (ORCPT + 99 others); Thu, 24 Sep 2020 05:28:08 -0400 Received: from mail-io1-f78.google.com ([209.85.166.78]:40334 "EHLO mail-io1-f78.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1727368AbgIXJ00 (ORCPT ); Thu, 24 Sep 2020 05:26:26 -0400 Received: by mail-io1-f78.google.com with SMTP id f8so1939308iow.7 for ; Thu, 24 Sep 2020 02:26:25 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:date:message-id:subject:from:to; bh=KwtKvUDMcxdYzs6ADf81+0YwKHEm5MaqSDUuSHizkg8=; b=omOMmfIyZ4iqzBr9GptFqLeEe4mytGerWs7QLG69x25L3BfZ7/fX4EhLjMpW/i4dk9 /tqo4EMWW69EjXKMuzvqqnKgZ2g174vN+nr1HMe7BzumkvHUCs+edGusTBESbRHitqca +MJbeAZ4thhfKaKikIz97sb7vhdWtRvbTCg5haV5QUSH8nAriRD9JjGxA6Hh2mJr0VSd gxvvV+JoFQo6bywW1nydk/Y+8KvskyVsdlT64JYhSgyog4Iof6YKNyImIwy7NNkZGNYR meKp+heCB36LuW6q0wt6kaZmEOB4XaSPELCUoKKetfLN85nU4WJQgaetxKldc84q8oV9 PiGA== X-Gm-Message-State: AOAM530hj9OpoUKfk3JDRj1nIQJhBtADqa51qNE1qeXCwDzd1h/O0dEF +WrM3q5H4TQ5PNH+WFJ6jyn+PHB91zHijxIoRE0RRNvmNkcD MIME-Version: 1.0 X-Received: by 2002:a02:7fcf:: with SMTP id r198mr2783772jac.24.1600939585536; Thu, 24 Sep 2020 02:26:25 -0700 (PDT) Date: Thu, 24 Sep 2020 02:26:25 -0700 X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <0000000000004d87c705b00bcb0a@google.com> Subject: WARNING in sta_info_insert_rcu From: syzbot To: davem@davemloft.net, johannes@sipsolutions.net, kuba@kernel.org, linux-kernel@vger.kernel.org, linux-wireless@vger.kernel.org, netdev@vger.kernel.org, syzkaller-bugs@googlegroups.com Content-Type: text/plain; charset="UTF-8" Precedence: bulk List-ID: X-Mailing-List: linux-wireless@vger.kernel.org Hello, syzbot found the following issue on: HEAD commit: eff48dde Merge tag 'trace-v5.9-rc5' of git://git.kernel.or.. git tree: upstream console output: https://syzkaller.appspot.com/x/log.txt?x=17b4e8e3900000 kernel config: https://syzkaller.appspot.com/x/.config?x=5f4c828c9e3cef97 dashboard link: https://syzkaller.appspot.com/bug?extid=ef4ca92d9d6f5ba2f880 compiler: gcc (GCC) 10.1.0-syz 20200507 syz repro: https://syzkaller.appspot.com/x/repro.syz?x=167e5707900000 C reproducer: https://syzkaller.appspot.com/x/repro.c?x=1765b19b900000 Bisection is inconclusive: the issue happens on the oldest tested release. bisection log: https://syzkaller.appspot.com/x/bisect.txt?x=10341dab900000 final oops: https://syzkaller.appspot.com/x/report.txt?x=12341dab900000 console output: https://syzkaller.appspot.com/x/log.txt?x=14341dab900000 IMPORTANT: if you fix the issue, please add the following tag to the commit: Reported-by: syzbot+ef4ca92d9d6f5ba2f880@syzkaller.appspotmail.com wlan1: Created IBSS using preconfigured BSSID 50:50:50:50:50:50 wlan1: Creating new IBSS network, BSSID 50:50:50:50:50:50 ------------[ cut here ]------------ WARNING: CPU: 0 PID: 72 at net/mac80211/sta_info.c:529 sta_info_insert_check net/mac80211/sta_info.c:529 [inline] WARNING: CPU: 0 PID: 72 at net/mac80211/sta_info.c:529 sta_info_insert_rcu+0x27a/0x2ba0 net/mac80211/sta_info.c:707 Kernel panic - not syncing: panic_on_warn set ... CPU: 0 PID: 72 Comm: kworker/u4:3 Not tainted 5.9.0-rc6-syzkaller #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 Workqueue: phy4 ieee80211_iface_work Call Trace: __dump_stack lib/dump_stack.c:77 [inline] dump_stack+0x198/0x1fd lib/dump_stack.c:118 panic+0x382/0x7fb kernel/panic.c:231 __warn.cold+0x20/0x4b kernel/panic.c:600 report_bug+0x1bd/0x210 lib/bug.c:198 handle_bug+0x38/0x90 arch/x86/kernel/traps.c:234 exc_invalid_op+0x14/0x40 arch/x86/kernel/traps.c:254 asm_exc_invalid_op+0x12/0x20 arch/x86/include/asm/idtentry.h:536 RIP: 0010:sta_info_insert_check net/mac80211/sta_info.c:529 [inline] RIP: 0010:sta_info_insert_rcu+0x27a/0x2ba0 net/mac80211/sta_info.c:707 Code: 24 e8 3a 79 b8 f9 0f b6 85 50 ff ff ff 31 ff 83 e0 01 41 89 c7 89 c6 e8 44 75 b8 f9 45 84 ff 0f 84 c5 00 00 00 e8 16 79 b8 f9 <0f> 0b 41 bd ea ff ff ff e8 09 79 b8 f9 48 8b bd 30 ff ff ff e8 ed RSP: 0018:ffffc90001017958 EFLAGS: 00010293 RAX: 0000000000000000 RBX: ffff888093338c00 RCX: ffffffff87bdc51c RDX: ffff8880a9394040 RSI: ffffffff87bdc52a RDI: 0000000000000001 RBP: ffffc90001017aa0 R08: 0000000000000000 R09: ffff88809333925f R10: 0000000000000000 R11: 0000000000000000 R12: 00000000500177e9 R13: ffff8880a8916048 R14: ffff8880a8916000 R15: 0000000000000001 ieee80211_ibss_finish_sta+0x212/0x390 net/mac80211/ibss.c:592 ieee80211_ibss_work+0x2c7/0xe80 net/mac80211/ibss.c:1699 ieee80211_iface_work+0x7d2/0x8f0 net/mac80211/iface.c:1438 process_one_work+0x94c/0x1670 kernel/workqueue.c:2269 worker_thread+0x64c/0x1120 kernel/workqueue.c:2415 kthread+0x3b5/0x4a0 kernel/kthread.c:292 ret_from_fork+0x1f/0x30 arch/x86/entry/entry_64.S:294 Kernel Offset: disabled Rebooting in 86400 seconds.. --- This report is generated by a bot. It may contain errors. See https://goo.gl/tpsmEJ for more information about syzbot. syzbot engineers can be reached at syzkaller@googlegroups.com. syzbot will keep track of this issue. See: https://goo.gl/tpsmEJ#status for how to communicate with syzbot. For information about bisection process see: https://goo.gl/tpsmEJ#bisection syzbot can test patches for this issue, for details see: https://goo.gl/tpsmEJ#testing-patches