[syzbot] Monthly bluetooth report (Oct 2023)

From: syzbot
Date: Mon Oct 02 2023 - 08:39:12 EST


Hello bluetooth maintainers/developers,

This is a 31-day syzbot report for the bluetooth subsystem.
All related reports/information can be found at:
https://syzkaller.appspot.com/upstream/s/bluetooth

During the period, 5 new issues were detected and 0 were fixed.
In total, 25 issues are still open and 57 have been fixed so far.

Some of the still happening issues:

Ref Crashes Repro Title
<1> 9857 Yes possible deadlock in rfcomm_sk_state_change
https://syzkaller.appspot.com/bug?extid=d7ce59b06b3eb14fd218
<2> 4764 Yes WARNING in hci_conn_timeout
https://syzkaller.appspot.com/bug?extid=2446dd3cb07277388db6
<3> 3667 Yes possible deadlock in rfcomm_dlc_exists
https://syzkaller.appspot.com/bug?extid=b69a625d06e8ece26415
<4> 3091 Yes BUG: sleeping function called from invalid context in hci_cmd_sync_submit
https://syzkaller.appspot.com/bug?extid=e7be5be00de0c3c2d782
<5> 740 Yes KASAN: slab-use-after-free Read in hci_send_acl
https://syzkaller.appspot.com/bug?extid=a0c80b06ae2cb8895bc4
<6> 247 Yes WARNING in call_timer_fn
https://syzkaller.appspot.com/bug?extid=6fb78d577e89e69602f9
<7> 145 Yes possible deadlock in hci_dev_do_close
https://syzkaller.appspot.com/bug?extid=4e3a76c5c505a3f49083
<8> 119 No possible deadlock in hci_unregister_dev
https://syzkaller.appspot.com/bug?extid=c933391d8e4089f1f53e
<9> 69 No possible deadlock in discov_off
https://syzkaller.appspot.com/bug?extid=f047480b1e906b46a3f4
<10> 40 Yes KASAN: slab-use-after-free Write in __sco_sock_close
https://syzkaller.appspot.com/bug?extid=dec4d528fb7a7c5d8ce3

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzkaller@xxxxxxxxxxxxxxxx.

To disable reminders for individual bugs, reply with the following command:
#syz set <Ref> no-reminders

To change bug's subsystems, reply with:
#syz set <Ref> subsystems: new-subsystem

You may send multiple commands in a single email message.