Hello bluetooth maintainers/developers, This is a 31-day syzbot report for the bluetooth subsystem. All related reports/information can be found at: https://syzkaller.appspot.com/upstream/s/bluetooth During the period, 10 new issues were detected and 1 were fixed. In total, 53 issues are still open and 64 have been fixed so far. Some of the still happening issues: Ref Crashes Repro Title <1> 21879 Yes possible deadlock in rfcomm_sk_state_change https://syzkaller.appspot.com/bug?extid=d7ce59b06b3eb14fd218 <2> 13079 Yes possible deadlock in rfcomm_dlc_exists https://syzkaller.appspot.com/bug?extid=b69a625d06e8ece26415 <3> 5305 Yes WARNING in hci_conn_timeout https://syzkaller.appspot.com/bug?extid=2446dd3cb07277388db6 <4> 3382 Yes KASAN: slab-use-after-free Read in __hci_req_sync https://syzkaller.appspot.com/bug?extid=27209997e4015fb4702e <5> 3246 Yes WARNING in call_timer_fn https://syzkaller.appspot.com/bug?extid=6fb78d577e89e69602f9 <6> 680 Yes general protection fault in skb_release_data (2) https://syzkaller.appspot.com/bug?extid=ccfa5775bc1bda21ddd1 <7> 411 Yes KASAN: slab-use-after-free Read in sk_skb_reason_drop https://syzkaller.appspot.com/bug?extid=f115fcf7e49b2ebc902d <8> 250 Yes general protection fault in lock_sock_nested https://syzkaller.appspot.com/bug?extid=d3ccfb78a0dc16ffebe3 <9> 249 Yes KASAN: slab-use-after-free Write in sco_sock_timeout https://syzkaller.appspot.com/bug?extid=4c0d0c4cde787116d465 <10> 120 Yes KASAN: slab-use-after-free Read in skb_release_head_state https://syzkaller.appspot.com/bug?extid=d863bc2d28ef7ff42984 --- This report is generated by a bot. It may contain errors. See https://goo.gl/tpsmEJ for more information about syzbot. syzbot engineers can be reached at syzkaller@xxxxxxxxxxxxxxxx. To disable reminders for individual bugs, reply with the following command: #syz set <Ref> no-reminders To change bug's subsystems, reply with: #syz set <Ref> subsystems: new-subsystem You may send multiple commands in a single email message.