From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by smtp.lore.kernel.org (Postfix) with ESMTP id 95927C83F09 for ; Tue, 8 Jul 2025 23:51:45 +0000 (UTC) Received: by kanga.kvack.org (Postfix) id B14296B008A; Tue, 8 Jul 2025 19:51:44 -0400 (EDT) Received: by kanga.kvack.org (Postfix, from userid 40) id AEBC66B008C; Tue, 8 Jul 2025 19:51:44 -0400 (EDT) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id A286A6B0092; Tue, 8 Jul 2025 19:51:44 -0400 (EDT) X-Delivered-To: linux-mm@kvack.org Received: from relay.hostedemail.com (smtprelay0017.hostedemail.com [216.40.44.17]) by kanga.kvack.org (Postfix) with ESMTP id 944F06B008A for ; Tue, 8 Jul 2025 19:51:44 -0400 (EDT) Received: from smtpin12.hostedemail.com (a10.router.float.18 [10.200.18.1]) by unirelay07.hostedemail.com (Postfix) with ESMTP id 4859616026B for ; Tue, 8 Jul 2025 23:51:44 +0000 (UTC) X-FDA: 83642747328.12.9E6E87B Received: from mail-qt1-f181.google.com (mail-qt1-f181.google.com [209.85.160.181]) by imf26.hostedemail.com (Postfix) with ESMTP id 7F150140007 for ; Tue, 8 Jul 2025 23:51:42 +0000 (UTC) Authentication-Results: imf26.hostedemail.com; dkim=pass header.d=google.com header.s=20230601 header.b="REr/YQ8a"; dmarc=pass (policy=reject) header.from=google.com; spf=pass (imf26.hostedemail.com: domain of surenb@google.com designates 209.85.160.181 as permitted sender) smtp.mailfrom=surenb@google.com ARC-Seal: i=1; s=arc-20220608; d=hostedemail.com; t=1752018702; a=rsa-sha256; cv=none; b=QB/dKBoNaYVU7j/rh30WwUWGZAF9BtBLkMWIywhdbpb4W6cnH2sGNaIPK2xUR0DDuDbiky szWfLYxewbG4pt/4QsU4mGJ32bbtIFsor2qJKEhcWZ/8L4Jnzk3S4a4Xgr4OvOO3rmdxOS RtJ05zBYIRUmpoRFr6+aqEigjpeuGHk= ARC-Authentication-Results: i=1; imf26.hostedemail.com; dkim=pass header.d=google.com header.s=20230601 header.b="REr/YQ8a"; dmarc=pass (policy=reject) header.from=google.com; spf=pass (imf26.hostedemail.com: domain of surenb@google.com designates 209.85.160.181 as permitted sender) smtp.mailfrom=surenb@google.com ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=hostedemail.com; s=arc-20220608; t=1752018702; h=from:from:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:mime-version:mime-version: content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references:dkim-signature; bh=fcogKvWsheYKoq8ewdiLtu7cwyh48ck6nDeYdrXjpcU=; b=lHYEW7dx5kwq5omqWqPtk+YGBejyMPTotnWcJ+mIY9CqAyW1hfgxgvybL94R/xWPRrcO2O yOwuiqPETmNZSxEOjynyS1FMLZdd2K13PQNgv98BDKMNom1cARxJAhq6zByxVDPljXKtNW aLzb8EbXJnbtDcnGEhApRgsIz/xGSrI= Received: by mail-qt1-f181.google.com with SMTP id d75a77b69052e-4a58197794eso48751cf.1 for ; Tue, 08 Jul 2025 16:51:42 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20230601; t=1752018701; x=1752623501; darn=kvack.org; h=content-transfer-encoding:to:subject:message-id:date:from :in-reply-to:references:mime-version:from:to:cc:subject:date :message-id:reply-to; bh=fcogKvWsheYKoq8ewdiLtu7cwyh48ck6nDeYdrXjpcU=; b=REr/YQ8a+p2N3m5nDg5h+YXRgcCM+HNzen0USfmEaul8gzmMwsxjKyg49159aWhDLL yqo6d2wSzSghbg/FbkLieRb7pFDMMff48G0WolLlXIhEeh0fZ1DXbQgGYXcQ+DaJK/rV ujpcuww2l2+CdZSb/thx8bNELy7+o65p1X9jWY4rr9O6SJ0rmSyWfa6U4/KQlDsf49Xw PqAvUzUHdyB4S61biNa3aPs42P9uSBjeUmqoXhbe7WjZCN9h/pJCZA7Cxuk7OSwViLYA e/qNDLB1VMRgAUdkQ9Mnz+7Od60GjOlUyvnIZIhRKj2jK2uZ1yys9BQgqpLFgSrn5ovQ 6fWg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1752018701; x=1752623501; h=content-transfer-encoding:to:subject:message-id:date:from :in-reply-to:references:mime-version:x-gm-message-state:from:to:cc :subject:date:message-id:reply-to; bh=fcogKvWsheYKoq8ewdiLtu7cwyh48ck6nDeYdrXjpcU=; b=nq2cjwo2sdBPfLG8auJ56EYFHySd2rq11eTyrZZgtfcTI1doJ7/pJmk7FeT2az7T7K 56HGRvE919balHKa7+Rq878t0fPYyi3yn9iekAMuCrLMh464wsSVqgSa6crnbw2aVhXC Mz5Yjn8yq1FiJtEEZH1Nml077KHVluXEwa3II75UbyfFjLkgkxFl9k/6F1lHPy0jrwB7 ZMpP9nu2D851DNgDhpd3GDRU6m27wAp7xGwRouFAvte4fcwIV36fHKGBq8QorpHbSvHj yyDXcs2zF4baoj7Qzp0Ubfx8jeWvK76CumEwXm1+OJpCmuQVuWcB7Enx2IHfU5PGFF4g aLrA== X-Forwarded-Encrypted: i=1; AJvYcCU4W/tq2XmDl+eJbgg9R9qcxZ0cRo3/9snv/RVoMZLByrXCRbQUn2GhFy5rvs5uDOxLoThlu4lyGg==@kvack.org X-Gm-Message-State: AOJu0Yyg2IRhnfmyR1mqIh+eckbPZ8+qq7na3G2w3CIIfl52U8fnl5Q7 oML/ZzKkxyFUVpykZxFs/YaXsUoJYdrNZrzubZAV4SQfR/fTwfanlc851f1EK3T3+PSoyWqbQj9 Wja3/w/PAh4IHw1UPHfss1lgV2Qb5kB7AHn84pdpv X-Gm-Gg: ASbGncsxbpYuWa8M8YGUehkQAP70YWM/Vo1mGlgGUp8bHoppYLsKXsgfcdjI3ZUFvuP MnUi9xbSSkqMpgNNBs/kAz6aHI087y2Y5vGPjZKgO3BIkfxil78k1R/UpTmS/4fI4ZXW9lj+j4t TW/ZHVRk1QHdQ47LpWaA6UzjNzefenkbvPJf1DHNlVFKM0qNhWSPjW X-Google-Smtp-Source: AGHT+IH5ZRX1UHL+BsFfEl3cPQK5B93EBscOPBUjTsG2NUTxvohxsio1Dc1gBo7FZrOdHKGC/6m/6HBSMMbKQeOXcMI= X-Received: by 2002:a05:622a:8389:b0:4a9:a4ef:35d3 with SMTP id d75a77b69052e-4a9de1106c0mr633231cf.7.1752018700978; Tue, 08 Jul 2025 16:51:40 -0700 (PDT) MIME-Version: 1.0 References: <686d5adb.050a0220.1ffab7.0019.GAE@google.com> <6mw4p4shg6myw5a677hkvhzytsnfa2e5zb7zpe6kcqlfjglmol@pzwcbowwy2v5> In-Reply-To: <6mw4p4shg6myw5a677hkvhzytsnfa2e5zb7zpe6kcqlfjglmol@pzwcbowwy2v5> From: Suren Baghdasaryan Date: Tue, 8 Jul 2025 16:51:29 -0700 X-Gm-Features: Ac12FXxa9sXsu1ybpB3tJFLXtDRK1pfBrBFB5o1ZkKawju9k2T2yCdL4OdDSm_A Message-ID: Subject: Re: [syzbot] [mm?] WARNING: lock held when returning to user space in lock_next_vma To: "Liam R. Howlett" , Suren Baghdasaryan , syzbot , akpm@linux-foundation.org, linux-kernel@vger.kernel.org, linux-mm@kvack.org, lorenzo.stoakes@oracle.com, shakeel.butt@linux.dev, syzkaller-bugs@googlegroups.com, vbabka@suse.cz Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Rspamd-Queue-Id: 7F150140007 X-Stat-Signature: 8n4nw99dzrxhg3zwrg966yrkkdcz67f5 X-Rspam-User: X-Rspamd-Server: rspam10 X-HE-Tag: 1752018702-964787 X-HE-Meta: U2FsdGVkX1+CzOhUoMbxL9P9rIAm3qTittH+L9a09vDl1rPu+8t/4M3OVZqQ4aqrpGnJ7nE4jXAVymbEblbufFkh+4Xpu+9hSQuCKmAGmlPLqCbrqlYt661XKaUd3fZ2zEL6IdJfD+ldT1PJjktvNPv8h1Dv+WFVr7Ijjj5IWrv9WSAVRapNw+z4j3Ui+h6+LIy1y9i8lbiz4JIpHa8FcOtDpmK8H5vrkG4pkShMHTzk4VcyY9+Zru5xIlwysUC0e0pgpdaqVZLRRA9SM0RUtRmi/xo/eDMWkosAHPzXdRngZlZrnqEAwMnMmQJu6VgBzknJM6QZJmj5Lel1Drzt/g+UrGfPATcr+ZPhWjDi04FMAQ89DWzseITTevyuduvZy32gFOYKfiqoDvhDUAjB1CTS28YPa7l8qN5wahLJ6Gc84GbfK2eF+MtJPtyGndoJapwI5L4dOnkGo50DclWRj7jcsAMWGZdWGXlM2Ulgdiq+wrcZJ8rKOWdH1sBd+thMZVWaXt3Nbdwm5fCcJuGMHxh8cVmUD79QES9Um7F+w/hC+cxhDph72XUR8ZIziE5EVNW4H3IVBZlCqDOVPXpcCZYucfW9p+olukzdB1ecxsV6Tk1o0OmCGR5yXfiuNu53aCM8pXcQcS1IRgPvy4J97+/t5UcCZbTuxeGjgEcIXh0SvR1i0U/3N+S81/oXmQgvuMjQacX3bAPwwmpBMCJLik+OAW3px47ADDTiQX0/2Kd3Y6bqTQlyqWqnAxw5gSqiECnn2znoQzSSNoPNupU6je7KowfbkyCMm42Khd8OJtkiE6vsTkYN6fqofq4Lr+K6oYM3MJiK8vXGIsBIxQRglGve4b568rugDfJVUjOhpFqAmhkidd7o0SmrOYGlcl6MyKnX0MAaLQ9VvY5f9tYJnqD8HcXVLiE8qwun7qIOaJHJLovABVZz5djXRqkU7+x2x3yLH/1/fKkdf89DyQG socn+3kZ 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 X-Bogosity: Ham, tests=bogofilter, spamicity=0.000000, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: List-Subscribe: List-Unsubscribe: On Tue, Jul 8, 2025 at 4:15=E2=80=AFPM Liam R. Howlett wrote: > > * Suren Baghdasaryan [250708 18:19]: > > On Tue, Jul 8, 2025 at 10:52=E2=80=AFAM syzbot > > wrote: > > > > > > Hello, > > > > > > syzbot found the following issue on: > > > > > > HEAD commit: 26ffb3d6f02c Add linux-next specific files for 202507= 04 > > > git tree: linux-next > > > console output: https://syzkaller.appspot.com/x/log.txt?x=3D1719df705= 80000 > > > kernel config: https://syzkaller.appspot.com/x/.config?x=3D1e4f88512= ae53408 > > > dashboard link: https://syzkaller.appspot.com/bug?extid=3D80011ad33ee= c39e6ce42 > > > compiler: Debian clang version 20.1.7 (++20250616065708+6146a88= f6049-1~exp1~20250616065826.132), Debian LLD 20.1.7 > > > syz repro: https://syzkaller.appspot.com/x/repro.syz?x=3D1124abd= 4580000 > > > C reproducer: https://syzkaller.appspot.com/x/repro.c?x=3D1099df705= 80000 > > > > > > Downloadable assets: > > > disk image: https://storage.googleapis.com/syzbot-assets/fd5569903143= /disk-26ffb3d6.raw.xz > > > vmlinux: https://storage.googleapis.com/syzbot-assets/1b0c9505c543/vm= linux-26ffb3d6.xz > > > kernel image: https://storage.googleapis.com/syzbot-assets/9d864c72be= d1/bzImage-26ffb3d6.xz > > > > > > IMPORTANT: if you fix the issue, please add the following tag to the = commit: > > > Reported-by: syzbot+80011ad33eec39e6ce42@syzkaller.appspotmail.com > > > > > > =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D > > > WARNING: lock held when returning to user space! > > > 6.16.0-rc4-next-20250704-syzkaller #0 Not tainted > > > ------------------------------------------------ > > > syz.0.22/6068 is leaving the kernel with locks still held! > > > 1 lock held by syz.0.22/6068: > > > #0: ffff8880792a3588 (vm_lock){++++}-{0:0}, at: lock_next_vma+0x146/= 0xdc0 mm/mmap_lock.c:220 > > > > Hmm. I must be missing an unlock_vma() somewhere but I don't see it > > yet. Will try the reproducer. > > The last one was against v5 patches, is this v6? Oh, good point. Let me check that. Thanks!