From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1752865AbeBSNca (ORCPT ); Mon, 19 Feb 2018 08:32:30 -0500 Received: from mail-pg0-f48.google.com ([74.125.83.48]:35299 "EHLO mail-pg0-f48.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1752745AbeBSNc2 (ORCPT ); Mon, 19 Feb 2018 08:32:28 -0500 X-Google-Smtp-Source: AH8x227DIj4mmdV+ULrFn7k6PV5UnlI6WS9cA9pXcsqfkvM4opdgkIbyVpOMAR6q9CGbO80SY2W3pP9jJJNguZVRdJQ= MIME-Version: 1.0 In-Reply-To: References: <001a1143e44e58485f05655fa8ae@google.com> From: Dmitry Vyukov Date: Mon, 19 Feb 2018 14:32:06 +0100 Message-ID: Subject: Re: BUG: sleeping function called from invalid context at net/core/sock.c:LINE (3) To: Jon Maloy Cc: Kirill Tkhai , syzbot , Ying Xue , Andrei Vagin , David Miller , "Eric W. Biederman" , Florian Westphal , LKML , netdev , Nicolas Dichtel , "roman.kapl@sysgo.com" , "syzkaller-bugs@googlegroups.com" , "tipc-discussion@lists.sourceforge.net" Content-Type: text/plain; charset="UTF-8" Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Mon, Feb 19, 2018 at 2:23 PM, Jon Maloy wrote: > I don't understand this one. tipc_topsrv_stop() can only be trigged from a user doing rmmod(), and I double checked that this is running in user mode. > How does the call chain you are reporting occur? Hi Jon, Please see the original syzbot report, it includes all known information about the bug (including a reproducer program): https://groups.google.com/forum/#!topic/syzkaller-bugs/jWAs6YWMp9g >> -----Original Message----- >> From: Kirill Tkhai [mailto:ktkhai@virtuozzo.com] >> Sent: Saturday, February 17, 2018 23:23 >> To: Dmitry Vyukov ; syzbot >> ; Jon Maloy >> ; Ying Xue >> Cc: Andrei Vagin ; David Miller >> ; Eric W. Biederman ; >> Florian Westphal ; LKML ; >> netdev ; Nicolas Dichtel >> ; roman.kapl@sysgo.com; syzkaller- >> bugs@googlegroups.com; tipc-discussion@lists.sourceforge.net >> Subject: Re: BUG: sleeping function called from invalid context at >> net/core/sock.c:LINE (3) >> >> On 17.02.2018 11:15, Dmitry Vyukov wrote: >> > On Sat, Feb 17, 2018 at 4:00 AM, syzbot >> > wrote: >> >> Hello, >> >> >> >> syzbot hit the following crash on net-next commit >> >> 65bd449c32c2745df61913ab54087e77f9d9b70d (Fri Feb 16 20:26:35 2018 >> >> +0000) Merge branch 'tipc-de-generealize-topology-server' >> > >> > +tipc maintainers >> >> This looks to be caused by commit 0ef897be12b8 >> "tipc: separate topology server listener socket from subcsriber sockets" >> >> Thanks, >> Kirill