Re: [syzbot] [f2fs?] kernel BUG in f2fs_write_end_io (2)

From: syzbot

Date: Thu May 14 2026 - 20:07:15 EST


Hello,

syzbot has tested the proposed patch but the reproducer is still triggering an issue:
kernel BUG in f2fs_write_end_io

f2fs-dbg: WRITE end_io: index=11 footer_nid=0 ino=0 rc=-117
------------[ cut here ]------------
kernel BUG at fs/f2fs/data.c:397!
Oops: invalid opcode: 0000 [#1] SMP KASAN PTI
CPU: 0 UID: 0 PID: 15 Comm: ksoftirqd/0 Not tainted syzkaller #0 PREEMPT_{RT,(full)}
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/18/2026
RIP: 0010:f2fs_write_end_io+0x193e/0x1970 fs/f2fs/data.c:397
Code: c6 e0 3c 9b 8b e8 02 e5 f6 fc 90 0f 0b e8 8a c9 93 fd 4c 89 e7 48 c7 c6 00 3e 9b 8b e8 eb e4 f6 fc 90 0f 0b e8 73 c9 93 fd 90 <0f> 0b e8 6b c9 93 fd 48 8b 3c 24 48 c7 c6 e0 3c 9b 8b e8 cb e4 f6
RSP: 0018:ffffc90000147b08 EFLAGS: 00010246
RAX: ffffffff8430cfed RBX: 0000000000001000 RCX: ffff88801cee9ec0
RDX: 0000000000000100 RSI: 0000000000000000 RDI: 0000000000000100
RBP: dffffc0000000000 R08: 0000000000000000 R09: 0000000000000100
R10: dffffc0000000000 R11: fffff52000028f11 R12: ffffea0000a312c0
R13: 0000000000001000 R14: 000000000000000b R15: 0000000000000000
FS: 0000000000000000(0000) GS:ffff888126174000(0000) knlGS:0000000000000000
CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
CR2: 00007fa3d3ae7dac CR3: 0000000037e5c000 CR4: 00000000003526f0
Call Trace:
<TASK>
blk_update_request+0x57e/0xe60 block/blk-mq.c:1016
blk_mq_end_request+0x3e/0x70 block/blk-mq.c:1178
blk_complete_reqs block/blk-mq.c:1253 [inline]
blk_done_softirq+0x10a/0x160 block/blk-mq.c:1258
handle_softirqs+0x1de/0x6d0 kernel/softirq.c:622
run_ksoftirqd+0x52/0x180 kernel/softirq.c:1076
smpboot_thread_fn+0x541/0xa50 kernel/smpboot.c:160
kthread+0x388/0x470 kernel/kthread.c:436
ret_from_fork+0x514/0xb70 arch/x86/kernel/process.c:158
ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:245
</TASK>
Modules linked in:
---[ end trace 0000000000000000 ]---
RIP: 0010:f2fs_write_end_io+0x193e/0x1970 fs/f2fs/data.c:397
Code: c6 e0 3c 9b 8b e8 02 e5 f6 fc 90 0f 0b e8 8a c9 93 fd 4c 89 e7 48 c7 c6 00 3e 9b 8b e8 eb e4 f6 fc 90 0f 0b e8 73 c9 93 fd 90 <0f> 0b e8 6b c9 93 fd 48 8b 3c 24 48 c7 c6 e0 3c 9b 8b e8 cb e4 f6
RSP: 0018:ffffc90000147b08 EFLAGS: 00010246
RAX: ffffffff8430cfed RBX: 0000000000001000 RCX: ffff88801cee9ec0
RDX: 0000000000000100 RSI: 0000000000000000 RDI: 0000000000000100
RBP: dffffc0000000000 R08: 0000000000000000 R09: 0000000000000100
R10: dffffc0000000000 R11: fffff52000028f11 R12: ffffea0000a312c0
R13: 0000000000001000 R14: 000000000000000b R15: 0000000000000000
FS: 0000000000000000(0000) GS:ffff888126174000(0000) knlGS:0000000000000000
CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
CR2: 00007fa3d3ae7dac CR3: 0000000037e5c000 CR4: 00000000003526f0


Tested on:

commit: 66182ca8 Merge tag 'net-7.1-rc4' of git://git.kernel.o..
git tree: upstream
console output: https://syzkaller.appspot.com/x/log.txt?x=10c5e996580000
kernel config: https://syzkaller.appspot.com/x/.config?x=f2e8ebfec4636d32
dashboard link: https://syzkaller.appspot.com/bug?extid=4af46ee83100e99bce09
compiler: Debian clang version 21.1.8 (++20251221033036+2078da43e25a-1~exp1~20251221153213.50), Debian LLD 21.1.8
patch: https://syzkaller.appspot.com/x/patch.diff?x=1105e996580000