Warning: Permanently added '10.128.0.126' (ED25519) to the list of known hosts. [ 75.383375][ T56] Bluetooth: hci0: unexpected cc 0x0c03 length: 249 > 1 [ 75.391027][ T56] Bluetooth: hci0: unexpected cc 0x1003 length: 249 > 9 [ 75.398900][ T56] Bluetooth: hci0: unexpected cc 0x1001 length: 249 > 9 [ 75.407291][ T56] Bluetooth: hci0: unexpected cc 0x0c23 length: 249 > 4 [ 75.419937][ T56] Bluetooth: hci0: unexpected cc 0x0c38 length: 249 > 2 executing program executing program [ 75.561264][ T5142] ================================================================== [ 75.569365][ T5142] BUG: KASAN: vmalloc-out-of-bounds in hci_devcd_dump+0x142/0x240 [ 75.577212][ T5142] Read of size 140 at addr ffffc90000ade000 by task kworker/u9:1/5142 [ 75.585364][ T5142] [ 75.587683][ T5142] CPU: 1 UID: 0 PID: 5142 Comm: kworker/u9:1 Not tainted 6.15.0-rc4-syzkaller-00147-gebd297a2affa #0 PREEMPT(full) [ 75.587701][ T5142] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/19/2025 [ 75.587710][ T5142] Workqueue: hci0 hci_devcd_rx [ 75.587732][ T5142] Call Trace: [ 75.587737][ T5142] [ 75.587744][ T5142] dump_stack_lvl+0x116/0x1f0 [ 75.587764][ T5142] print_report+0xc3/0x670 [ 75.587779][ T5142] ? __virt_addr_valid+0x5e/0x590 [ 75.587796][ T5142] ? hci_devcd_dump+0x142/0x240 [ 75.587810][ T5142] kasan_report+0xe0/0x110 [ 75.587824][ T5142] ? hci_devcd_dump+0x142/0x240 [ 75.587840][ T5142] kasan_check_range+0xef/0x1a0 [ 75.587861][ T5142] __asan_memcpy+0x23/0x60 [ 75.587873][ T5142] hci_devcd_dump+0x142/0x240 [ 75.587889][ T5142] hci_devcd_rx+0xa25/0x1780 [ 75.587905][ T5142] ? __pfx_hci_devcd_rx+0x10/0x10 [ 75.587921][ T5142] ? debug_object_deactivate+0x1ec/0x3a0 [ 75.587941][ T5142] ? rcu_is_watching+0x12/0xc0 [ 75.587954][ T5142] process_one_work+0x9cc/0x1b70 [ 75.587976][ T5142] ? __pfx_process_one_work+0x10/0x10 [ 75.587997][ T5142] ? assign_work+0x1a0/0x250 [ 75.588014][ T5142] worker_thread+0x6c8/0xf10 [ 75.588034][ T5142] ? __kthread_parkme+0x19e/0x250 [ 75.588049][ T5142] ? __pfx_worker_thread+0x10/0x10 [ 75.588067][ T5142] kthread+0x3c2/0x780 [ 75.588084][ T5142] ? __pfx_kthread+0x10/0x10 [ 75.588099][ T5142] ? __pfx_kthread+0x10/0x10 [ 75.588115][ T5142] ? __pfx_kthread+0x10/0x10 [ 75.588131][ T5142] ? __pfx_kthread+0x10/0x10 [ 75.588147][ T5142] ? rcu_is_watching+0x12/0xc0 [ 75.588158][ T5142] ? __pfx_kthread+0x10/0x10 [ 75.588174][ T5142] ret_from_fork+0x45/0x80 [ 75.588193][ T5142] ? __pfx_kthread+0x10/0x10 [ 75.588209][ T5142] ret_from_fork_asm+0x1a/0x30 [ 75.588231][ T5142] [ 75.588235][ T5142] [ 75.763123][ T5142] The buggy address ffffc90000ade000 belongs to a vmalloc virtual mapping [ 75.771609][ T5142] Memory state around the buggy address: [ 75.777227][ T5142] ffffc90000addf00: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 [ 75.785279][ T5142] ffffc90000addf80: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 [ 75.793329][ T5142] >ffffc90000ade000: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 [ 75.801374][ T5142] ^ [ 75.805426][ T5142] ffffc90000ade080: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 [ 75.813475][ T5142] ffffc90000ade100: f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 f8 [ 75.821522][ T5142] ================================================================== [ 75.829854][ T5142] Kernel panic - not syncing: KASAN: panic_on_warn set ... [ 75.837056][ T5142] CPU: 1 UID: 0 PID: 5142 Comm: kworker/u9:1 Not tainted 6.15.0-rc4-syzkaller-00147-gebd297a2affa #0 PREEMPT(full) [ 75.849204][ T5142] Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/19/2025 [ 75.859249][ T5142] Workqueue: hci0 hci_devcd_rx [ 75.864018][ T5142] Call Trace: [ 75.867288][ T5142] [ 75.870211][ T5142] dump_stack_lvl+0x3d/0x1f0 [ 75.874809][ T5142] panic+0x71c/0x800 [ 75.878707][ T5142] ? __pfx_panic+0x10/0x10 [ 75.883121][ T5142] ? mark_held_locks+0x49/0x80 [ 75.887886][ T5142] ? preempt_schedule_thunk+0x16/0x30 [ 75.893258][ T5142] ? hci_devcd_dump+0x142/0x240 [ 75.898109][ T5142] ? preempt_schedule_common+0x44/0xc0 [ 75.903565][ T5142] ? check_panic_on_warn+0x1f/0xb0 [ 75.908679][ T5142] ? hci_devcd_dump+0x142/0x240 [ 75.913523][ T5142] check_panic_on_warn+0xab/0xb0 [ 75.918458][ T5142] end_report+0x107/0x170 [ 75.922781][ T5142] kasan_report+0xee/0x110 [ 75.927194][ T5142] ? hci_devcd_dump+0x142/0x240 [ 75.932042][ T5142] kasan_check_range+0xef/0x1a0 [ 75.936890][ T5142] __asan_memcpy+0x23/0x60 [ 75.941301][ T5142] hci_devcd_dump+0x142/0x240 [ 75.945976][ T5142] hci_devcd_rx+0xa25/0x1780 [ 75.950563][ T5142] ? __pfx_hci_devcd_rx+0x10/0x10 [ 75.955590][ T5142] ? debug_object_deactivate+0x1ec/0x3a0 [ 75.961223][ T5142] ? rcu_is_watching+0x12/0xc0 [ 75.965986][ T5142] process_one_work+0x9cc/0x1b70 [ 75.970930][ T5142] ? __pfx_process_one_work+0x10/0x10 [ 75.976306][ T5142] ? assign_work+0x1a0/0x250 [ 75.980917][ T5142] worker_thread+0x6c8/0xf10 [ 75.985513][ T5142] ? __kthread_parkme+0x19e/0x250 [ 75.990536][ T5142] ? __pfx_worker_thread+0x10/0x10 [ 75.995650][ T5142] kthread+0x3c2/0x780 [ 75.999719][ T5142] ? __pfx_kthread+0x10/0x10 [ 76.004311][ T5142] ? __pfx_kthread+0x10/0x10 [ 76.008898][ T5142] ? __pfx_kthread+0x10/0x10 [ 76.013488][ T5142] ? __pfx_kthread+0x10/0x10 [ 76.018077][ T5142] ? rcu_is_watching+0x12/0xc0 [ 76.022840][ T5142] ? __pfx_kthread+0x10/0x10 [ 76.027431][ T5142] ret_from_fork+0x45/0x80 [ 76.031856][ T5142] ? __pfx_kthread+0x10/0x10 [ 76.036446][ T5142] ret_from_fork_asm+0x1a/0x30 [ 76.041224][ T5142] [ 76.044366][ T5142] Kernel Offset: disabled [ 76.048678][ T5142] Rebooting in 86400 seconds..