Hello, syzbot found the following issue on:
HEAD commit: fc39fb56917b Merge tag 'jfs-6.13' of github.com:kleikamp/l.. git tree: upstream console+strace: https://syzkaller.appspot.com/x/log.txt?x=1346bec0580000 kernel config: https://syzkaller.appspot.com/x/.config?x=1a5c320d506b5745 dashboard link: https://syzkaller.appspot.com/bug?extid=ed52fb987e4b52cbfad9 compiler: Debian clang version 15.0.6, GNU ld (GNU Binutils for Debian) 2.40 syz repro: https://syzkaller.appspot.com/x/repro.syz?x=16565b78580000 C reproducer: https://syzkaller.appspot.com/x/repro.c?x=1746bec0580000 Downloadable assets: disk image: https://storage.googleapis.com/syzbot-assets/c35bd17a0dc5/disk-fc39fb56.raw.xz vmlinux: https://storage.googleapis.com/syzbot-assets/900f3f8ce653/vmlinux-fc39fb56.xz kernel image: https://storage.googleapis.com/syzbot-assets/fae5edad1eaf/bzImage-fc39fb56.xz mounted in repro: https://storage.googleapis.com/syzbot-assets/989b3cf7acff/mount_0.gz IMPORTANT: if you fix the issue, please add the following tag to the commit: Reported-by: [email protected] ===================================================== BUG: KMSAN: uninit-value in bkey_unpack_pos fs/bcachefs/bkey.h:463 [inline] BUG: KMSAN: uninit-value in rw_aux_tree_set+0x4d2/0x580 fs/bcachefs/bset.c:494 bkey_unpack_pos fs/bcachefs/bkey.h:463 [inline] rw_aux_tree_set+0x4d2/0x580 fs/bcachefs/bset.c:494 rw_aux_tree_insert_entry+0x6c3/0x970 fs/bcachefs/bset.c:913 bch2_bset_fix_lookup_table+0xecc/0x13e0 bch2_bset_insert+0x1621/0x19f0 fs/bcachefs/bset.c:1015 bch2_btree_bset_insert_key+0xf4e/0x2b60 fs/bcachefs/btree_trans_commit.c:217 bch2_btree_insert_key_leaf+0x276/0x1050 fs/bcachefs/btree_trans_commit.c:300 bch2_trans_commit_write_locked fs/bcachefs/btree_trans_commit.c:820 [inline] do_bch2_trans_commit fs/bcachefs/btree_trans_commit.c:900 [inline] __bch2_trans_commit+0xaf5e/0xd190 fs/bcachefs/btree_trans_commit.c:1121 bch2_trans_commit fs/bcachefs/btree_update.h:184 [inline] btree_update_nodes_written fs/bcachefs/btree_update_interior.c:723 [inline] btree_interior_update_work+0x2080/0x4870 fs/bcachefs/btree_update_interior.c:861 process_one_work kernel/workqueue.c:3229 [inline] process_scheduled_works+0xae0/0x1c40 kernel/workqueue.c:3310 worker_thread+0xea7/0x14f0 kernel/workqueue.c:3391 kthread+0x3e2/0x540 kernel/kthread.c:389 ret_from_fork+0x6d/0x90 arch/x86/kernel/process.c:147 ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:244 Uninit was created at: ___kmalloc_large_node+0x22c/0x370 mm/slub.c:4219 __kmalloc_large_node_noprof+0x3f/0x1e0 mm/slub.c:4236 __do_kmalloc_node mm/slub.c:4252 [inline] __kmalloc_node_noprof+0x9d6/0xf50 mm/slub.c:4270 __kvmalloc_node_noprof+0xc0/0x2d0 mm/util.c:658 btree_node_data_alloc fs/bcachefs/btree_cache.c:153 [inline] __bch2_btree_node_mem_alloc+0x2be/0xa80 fs/bcachefs/btree_cache.c:198 bch2_fs_btree_cache_init+0x4e4/0xb50 fs/bcachefs/btree_cache.c:653 bch2_fs_alloc fs/bcachefs/super.c:917 [inline] bch2_fs_open+0x4d3a/0x5b40 fs/bcachefs/super.c:2065 bch2_fs_get_tree+0x983/0x22d0 fs/bcachefs/fs.c:2157 vfs_get_tree+0xb1/0x5a0 fs/super.c:1814 do_new_mount+0x71f/0x15e0 fs/namespace.c:3507 path_mount+0x742/0x1f10 fs/namespace.c:3834 do_mount fs/namespace.c:3847 [inline] __do_sys_mount fs/namespace.c:4057 [inline] __se_sys_mount+0x722/0x810 fs/namespace.c:4034 __x64_sys_mount+0xe4/0x150 fs/namespace.c:4034 x64_sys_call+0x39bf/0x3c30 arch/x86/include/generated/asm/syscalls_64.h:166 do_syscall_x64 arch/x86/entry/common.c:52 [inline] do_syscall_64+0xcd/0x1e0 arch/x86/entry/common.c:83 entry_SYSCALL_64_after_hwframe+0x77/0x7f CPU: 0 UID: 0 PID: 13 Comm: kworker/u8:1 Not tainted 6.12.0-syzkaller-05676-gfc39fb56917b #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 10/30/2024 Workqueue: btree_update btree_interior_update_work ===================================================== --- This report is generated by a bot. It may contain errors. See https://goo.gl/tpsmEJ for more information about syzbot. syzbot engineers can be reached at [email protected]. syzbot will keep track of this issue. See: https://goo.gl/tpsmEJ#status for how to communicate with syzbot. If the report is already addressed, let syzbot know by replying with: #syz fix: exact-commit-title If you want syzbot to run the reproducer, reply with: #syz test: git://repo/address.git branch-or-commit-hash If you attach or paste a git patch, syzbot will apply it before testing. If you want to overwrite report's subsystems, reply with: #syz set subsystems: new-subsystem (See the list of subsystem names on the web dashboard) If the report is a duplicate of another one, reply with: #syz dup: exact-subject-of-another-report If you want to undo deduplication, reply with: #syz undup
