panic: bad group arg size NUM, should be <= NUM for &prog.GroupArg{ArgCommon:prog.ArgCommon{ref:0x2de, dir:0x0}, Inner:[

5 views
Skip to first unread message

syzbot

unread,
Sep 28, 2022, 12:27:43 AM9/28/22
to syzkaller-a...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 871bb50ab5b1 Merge tag 'android12-5.4.210_r00' into androi..
git tree: android12-5.4
console output: https://syzkaller.appspot.com/x/log.txt?x=12e85ca8880000
kernel config: https://syzkaller.appspot.com/x/.config?x=850b2093aca6d9b1
dashboard link: https://syzkaller.appspot.com/bug?extid=74c85ae22f7c5c7d762c
compiler: Debian clang version 13.0.1-++20220126092033+75e33f71c2da-1~exp1~20220126212112.63, GNU ld (GNU Binutils for Debian) 2.35.2

Unfortunately, I don't have any reproducer for this issue yet.

Downloadable assets:
disk image: https://storage.googleapis.com/cccdaf5cbb71/disk-871bb50a.raw.xz
vmlinux: https://storage.googleapis.com/943fbf74f28b/vmlinux-871bb50a.xz

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+74c85a...@syzkaller.appspotmail.com

syz_mount_image$vfat(&(0x7f00000002c0), &(0x7f0000000940)='./file0\x00', 0x8118, 0x0, &(0x7f00000004c0), 0x28184c0, &(0x7f0000000980)=ANY=[@ANYBLOB='nonumtail\x00\x00\x00harset=default,check=normal,iocharset=utf8,utf8=1,utf8=0,shortname=lowkr,usefree,\x00'], 0x0)
panic: bad group arg size 48, should be <= 0 for &prog.GroupArg{ArgCommon:prog.ArgCommon{ref:0x2de, dir:0x0}, Inner:[]prog.Arg{}} type "array"

goroutine 30 [running]:
github.com/google/syzkaller/prog.foreachArgImpl({0x8b4158, 0xc013c34e60}, 0xc010bf7600, 0xc002fb5d00)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:157 +0x5d9
github.com/google/syzkaller/prog.foreachArgImpl({0x8b4198, 0xc0158fe960}, 0xc010bf7600, 0xc00053dd00)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:164 +0x337
github.com/google/syzkaller/prog.ForeachArg(0xc0158f1a90, 0x0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:123 +0x105
github.com/google/syzkaller/prog.(*Prog).MutateWithHints(0xc0103132c0, 0x0, 0xc014db56b0, 0xc00053dd80)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/hints.go:78 +0xaa
main.(*Proc).executeHintSeed(0xc0103132c0, 0x2a0, 0x0)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:248 +0xd2
main.(*Proc).smashInput(0xc0103132c0, 0xc015bfc470)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:214 +0x88
main.(*Proc).loop(0xc0103132c0)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:78 +0x125
created by main.main
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:307 +0x15a5


---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

nogikh

unread,
Sep 30, 2022, 11:14:06 AM9/30/22
to syzkaller-android-bugs
#syz invalid

syzbot

unread,
Sep 30, 2022, 11:14:09 AM9/30/22
to 'nogikh' via syzkaller-android-bugs, syzkaller-a...@googlegroups.com
> #syz invalid

I see the command but can't find the corresponding bug.
Please resend the email to syzbo...@syzkaller.appspotmail.com address
that is the sender of the bug report (also present in the Reported-by tag).
>> <http://github.com/google/syzkaller/prog.foreachArgImpl(%7B0x8b4158>,
>> 0xc013c34e60}, 0xc010bf7600, 0xc002fb5d00)
>> /syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:157
>> +0x5d9
>> github.com/google/syzkaller/prog.foreachArgImpl({0x8b4198
>> <http://github.com/google/syzkaller/prog.foreachArgImpl(%7B0x8b4198>,
> --
> You received this message because you are subscribed to the Google Groups "syzkaller-android-bugs" group.
> To unsubscribe from this group and stop receiving emails from it, send an email to syzkaller-android...@googlegroups.com.
> To view this discussion on the web visit https://groups.google.com/d/msgid/syzkaller-android-bugs/e029e793-9d0b-43c3-aefb-0824abb72b07n%40googlegroups.com.

Aleksandr Nogikh

unread,
Sep 30, 2022, 11:14:47 AM9/30/22
to syzbot, syzkaller-a...@googlegroups.com
#syz invalid
> --
> You received this message because you are subscribed to the Google Groups "syzkaller-android-bugs" group.
> To unsubscribe from this group and stop receiving emails from it, send an email to syzkaller-android...@googlegroups.com.
> To view this discussion on the web visit https://groups.google.com/d/msgid/syzkaller-android-bugs/0000000000008f11e505e9b52e82%40google.com.
Reply all
Reply to author
Forward
0 new messages