On Fri, Apr 06, 2018 at 03:33:36PM +0200, Dmitry Vyukov wrote: > On Fri, Apr 6, 2018 at 3:24 PM, syzbot > <syzbot+75397ee3df5c70164154@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote: > > Unfortunately, I don't have any reproducer for this crash yet. > > Interesting type of bug, I think we see this for the first time. Can you focus syzbot to try to find a reproducer? This seems to be produced by calling mount() with a pathname that's somewhere between, say, 3950 & 4100 bytes long from a compat 32-bit task.