Fatal trap 9: general protection fault while in kernel mode (3)

10 views
Skip to first unread message

syzbot

unread,
Aug 27, 2020, 11:34:16 PM8/27/20
to syzkaller-f...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: dedce290 Fix tiny style nit.
git tree: freebsd
console output: https://syzkaller.appspot.com/x/log.txt?x=113d93b6900000
dashboard link: https://syzkaller.appspot.com/bug?extid=d161eb1acc81082d40d7

Unfortunately, I don't have any reproducer for this issue yet.

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+d161eb...@syzkaller.appspotmail.com

Fatal trap 9: general protection fault while in kernel mode
cpuid = 1; apic id = 01
instruction pointer = 0x20:0xffffffff82ce46af
stack pointer = 0x28:0xfffffe002e8185e0
frame pointer = 0x28:0xfffffe002e8187b0
code segment = base 0x0, limit 0xfffff, type 0x1b
= DPL 0, pres 1, long 1, def32 0, gran 1
processor eflags = interrupt enabled, resume, IOPL = 0
current process = 1003 (syz-executor.2)
trap number = 9
panic: general protection fault
cpuid = 0
time = 1598585574
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0x47/frame 0xfffffe002e8182b0
vpanic() at vpanic+0x1c7/frame 0xfffffe002e818310
panic() at panic+0x43/frame 0xfffffe002e818370
sendmsg$inet6_sctp(r2, &(0x7f0000000740)={&(0x7f0000000100)=@in6={0x1c, 0x1c, 0x3, 0x0, @local={0xfe, 0x80, [], 0x0}}, 0x1c, &(0x7f00000006c0)=[{&(0x7f0000000580)="11a7280dc987aeddc56f7ff9534ebd6ffd89c43a4e594d84f3c514a8d8374575059b7ae2e735e47e36c2277c8da219b032ee545249910ef1cc10225093d9411a8dbb7574320689016ca5145590e990eb0a15a85b8f2c8dc5b6ddf2d24efd1b3a020b8379ce727bbcdbc7a8a5cfe4f97079dbfe450f76377334416a6d572e7fbb1d8775cc94845e083a2bb91e38c2e4b592", 0x91}, {&(0x7f00000009c0)="6418c7516c9fc34a4499c79838bb379f6e24a2a8d01a7a25cc2225c95d7bd95a06ffbfba3131650db72fa4d79a651f72908f02090000006ee03492c09f606af3c3a9d2c2f8ae89258c99052bce1bf94839104f71acbe600694f8c7ec08eea0d8797b93cf9e0acd45d9f357f9e93c5c5e7c76af23054716bfb840ca13cd2b7d0002f8900c6d4cee97ce4ef651753454a5401bd35413e073dfcb0278104ff9f57e4b05d359b45a64fbade473b295c89c879eaa605e02223c8426ca3635e2b00289dfaf1abfea202a416142c85cce1343390c7e2ae836b82001f8d2c2111200d9c3e6b108f4435bbf0de277d03c13c8eac80000000000008f0e402f51cb3fba9d0549ea15fbdf9f251cc56a2f2d983fae36a00f7d4420d3c95370445f597248e26387900286928c156bba45438a502e01ad043e3a1f394838c0c1ae6441c66c5e9831c62f25027df14f7b1a2bfbf391ff7c50ba539117750b37b0828dc3b468781555c8064a7ccf16c757203a35fce4a6eb895108ee719ad3897cd773e293769fde40ce76f29ac8bcf347c22eb5b5684b7a71efc3", 0x193}, {&(0x7f0000000340)="6f85c7d09432172c12109cb90268d18765540b1b4c510486ebca7c644489a000166e27fafc1656adc0b646b7adc26f26f78903203a53a476fc9bdea12130c968e2a0444da118e9d47f03382d33cd6f5bbf25df4946edec6de9e744e076ecfc71cb4a97493716b4fe5abc316a99e3d8eb9d42a4d447ab0b157820dfd7768b1e9575fd820e536b22091bb6c47c917fe4c4d5b4162ccbd6caf51ddbdb04d5f37e9ece95ff14b00ed663c4ba7c5ff02283143e2302ec8b8deabccdb6f9b61f49b5f8b6a7cb", 0xc3}, {&(0x7f0000000880)="69cda40a78a3c52c4a02c16551b9216fd4b5a282301b27e70d71e4a930ff5bb5c3c2b4e51f74904e94b45b743ef084dab015e878d07b2551313ea482c906be7131ef518f7ac1b5e140da5c8505d61180c1169a24e3615ee752061cab4e66f21fec16c7b5dc600e47d8a00e0ab4370c9caada54a3b2e4d6c2d6398101fb1901cad211d3cc91f24372928d0a97d2d7ed3dd2193a99be1ccddb32a79fe6cdbdf2286c3a827208dac5c452d5f52c995a217ae87ef8d60984176c58a69a0363913573758c382e0e949941a016a37667eed1d3be5cf27ce486ab1c9256eba7e18f44e10f01e6369c399e5d57e72cc255949e91aafd5b71c5b091da", 0xf8}], 0x4}, 0x0)
sendto(0xffffffffffffffff, 0x0, 0x0, 0x0, &(0x7f0000000000)=@in={0x10, 0x2, 0x3}, 0x10)
sendto$inet(r0, &(0x7f0000000000)="45d0169612ec8227e2163d4bda794e87d481db118480566d0b88672d1f1c16b7e3431217f519924bc949", 0x2a, 0x80, &(0x7f0000000140)={0x10, 0x2, 0x3, @rand_addr=0x5}, 0x10)
connect$inet(r0, &(0x7f00000000c0)={0x10, 0x2, 0x0, @rand_addr=0x5871f6e6}, 0x10)
sendmsg$inet6_sctp(r0, &(0x7f0000000740)={&(0x7f0000000100)=@in6={0x1c, 0x1c, 0x3, 0x0, @local={0xfe, 0x80, [], 0x0}}, 0x1c, &(0x7f00000006c0)=[{&(0x7f0000000580)="11a7", 0x2}], 0x1}, 0x0)
accept4(r0, &(0x7f0000000b80)=ANY=[@ANYBLOB="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"], &(0x7f00000001c0)=0x3e, 0x30000000)

03:32:54 executing program 1:
shutdown(0xffffffffffffffff, 0x0)
r0 = socket$inet6_sctp(0x1c, 0x1, 0x84)
connect$inet6(r0, &(0x7f0000000180)={0xffffffffffffff5f, 0x1c, 0x2, 0x0, @loopback}, 0x1c)
setsockopt$inet6_sctp_SCTP_EXPLICIT_EOR(r0, 0x84, 0x1b, &(0x7f00000002c0)=0x3, 0x4)
sendto(r0, &(0x7f0000000380)="a31be1788e589b3859f3bbdd7ef751239731b2904ad04eb7dc37c695f6055ca836547e7b6cc37dae2ae4770894673c896593241c563e08690535eb3b7f197dda4454b4424f7ff9f9fe4eacefa6d4b1619dd90b977cd98216c97b2eb39f02de0faee70beca3663c2e6cc51da2b48b4b3949cc145a50620fd565b97c5ca0eafca4c913731416baccae89e26801069478a3eea845f7c2cb4893e583524526e3eb73a2e4f111cf405fef99c2a1eb2c96705688c8c76ba166d22320076269d21c52bb5e86437d6c654442f6d845e200240000f01d29f6d3748325405650177fc360d7edb1fb7a74382b4734939ceec9b0bf7dc419e2774ca2719c30", 0xfffffcaa, 0x20000, &(0x7f0000000140)=@in={0x10, 0x2, 0x2, @broadcast}, 0x10)
setsockopt$inet6_sctp_SCTP_ADD_STREAMS(r0, 0x84, 0x903, &(0x7f0000000080)={0x0, 0x0, 0x4}, 0x8)

03:32:54 executing program 1:
shutdown(0xffffffffffffffff, 0x0)
r0 = socket$inet6_sctp(0x1c, 0x1, 0x84)
connect$inet6(r0, &(0x7f0000000180)={0xffffffffffffff5f, 0x1c, 0x2, 0x0, @loopback}, 0x1c)
setsockopt$inet6_sctp_SCTP_EXPLICIT_EOR(r0, 0x84, 0x1b, &(0x7f00000002c0)=0x3, 0x4)
sendto(r0, &(0x7f0000000380)="a31be1788e589b3859f3bbdd7ef751239731b2904ad04eb7dc37c695f6055ca836547e7b6cc37dae2ae4770894673c896593241c563e08690535eb3b7f197dda4454b4424f7ff9f9fe4eacefa6d4b1619dd90b977cd98216c97b2eb39f02de0faee70beca3663c2e6cc51da2b48b4b3949cc145a50620fd565b97c5ca0eafca4c913731416baccae89e26801069478a3eea845f7c2cb4893e583524526e3eb73a2e4f111cf405fef99c2a1eb2c96705688c8c76ba166d22320076269d21c52bb5e86437d6c654442f6d845e200240000f01d29f6d3748325405650177fc360d7edb1fb7a74382b4734939ceec9b0bf7dc419e2774ca2719c30", 0xfffffcaa, 0x20000, &(0x7f0000000140)=@in={0x10, 0x2, 0x2, @broadcast}, 0x10)
setsockopt$inet6_sctp_SCTP_ADD_STREAMS(r0, 0x84, 0x903, &(0x7f0000000080)={0x0, 0x0, 0x4}, 0x8)

03:32:54 executing program 1:
shutdown(0xffffffffffffffff, 0x0)
r0 = socket$inet6_sctp(0x1c, 0x1, 0x84)
connect$inet6(r0, &(0x7f0000000180)={0xffffffffffffff5f, 0x1c, 0x2, 0x0, @loopback}, 0x1c)
setsockopt$inet6_sctp_SCTP_EXPLICIT_EOR(r0, 0x84, 0x1b, &(0x7f00000002c0)=0x3, 0x4)
sendto(r0, &(0x7f0000000380)="a31be1788e589b3859f3bbdd7ef751239731b2904ad04eb7dc37c695f6055ca836547e7b6cc37dae2ae4770894673c896593241c563e08690535eb3b7f197dda4454b4424f7ff9f9fe4eacefa6d4b1619dd90b977cd98216c97b2eb39f02de0faee70beca3663c2e6cc51da2b48b4b3949cc145a50620fd565b97c5ca0eafca4c913731416baccae89e26801069478a3eea845f7c2cb4893e583524526e3eb73a2e4f111cf405fef99c2a1eb2c96705688c8c76ba166d22320076269d21c52bb5e86437d6c654442f6d845e200240000f01d29f6d3748325405650177fc360d7edb1fb7a74382b4734939ceec9b0bf7dc419e2774ca2719c30", 0xfffffcaa, 0x20000, &(0x7f0000000140)=@in={0x10, 0x2, 0x2, @broadcast}, 0x10)
setsockopt$inet6_sctp_SCTP_ADD_STREAMS(r0, 0x84, 0x903, &(0x7f0000000080)={0x0, 0x0, 0x4}, 0x8)

03:32:54 executing program 1:
shutdown(0xffffffffffffffff, 0x0)
bind(0xffffffffffffffff, &(0x7f0000000000)=@in6={0x1c, 0x1c, 0x2, 0x0, @empty}, 0x1c)
connect$inet6(0xffffffffffffffff, &(0x7f0000000180)={0xffffffffffffff5f, 0x1c, 0x2, 0x0, @loopback}, 0x1c)
setsockopt$inet6_sctp_SCTP_EXPLICIT_EOR(0xffffffffffffffff, 0x84, 0x1b, &(0x7f00000002c0)=0x3, 0x4)
sendto(0xffffffffffffffff, &(0x7f0000000380)="a31be1788e589b3859f3bbdd7ef751239731b2904ad04eb7dc37c695f6055ca836547e7b6cc37dae2ae4770894673c896593241c563e08690535eb3b7f197dda4454b4424f7ff9f9fe4eacefa6d4b1619dd90b977cd98216c97b2eb39f02de0faee70beca3663c2e6cc51da2b48b4b3949cc145a50620fd565b97c5ca0eafca4c913731416baccae89e26801069478a3eea845f7c2cb4893e583524526e3eb73a2e4f111cf405fef99c2a1eb2c96705688c8c76ba166d22320076269d21c52bb5e86437d6c654442f6d845e200240000f01d29f6d3748325405650177fc360d7edb1fb7a74382b4734939ceec9b0bf7dc419e2774ca2719c30", 0xfffffcaa, 0x20000, &(0x7f0000000140)=@in={0x10, 0x2, 0x2, @broadcast}, 0x10)
setsockopt$inet6_sctp_SCTP_ADD_STREAMS(0xffffffffffffffff, 0x84, 0x903, &(0x7f0000000080)={0x0, 0x0, 0x4}, 0x8)

03:32:54 executing program 1:
shutdown(0xffffffffffffffff, 0x0)
bind(0xffffffffffffffff, &(0x7f0000000000)=@in6={0x1c, 0x1c, 0x2, 0x0, @empty}, 0x1c)
connect$inet6(0xffffffffffffffff, &(0x7f0000000180)={0xffffffffffffff5f, 0x1c, 0x2, 0x0, @loopback}, 0x1c)
setsockopt$inet6_sctp_SCTP_EXPLICIT_EOR(0xffffffffffffffff, 0x84, 0x1b, &(0x7f00000002c0)=0x3, 0x4)
sendto(0xffffffffffffffff, &(0x7f0000000380)="a31be1788e589b3859f3bbdd7ef751239731b2904ad04eb7dc37c695f6055ca836547e7b6cc37dae2ae4770894673c896593241c563e08690535eb3b7f197dda4454b4424f7ff9f9fe4eacefa6d4b1619dd90b977cd98216c97b2eb39f02de0faee70beca3663c2e6cc51da2b48b4b3949cc145a50620fd565b97c5ca0eafca4c913731416baccae89e26801069478a3eea845f7c2cb4893e583524526e3eb73a2e4f111cf405fef99c2a1eb2c96705688c8c76ba166d22320076269d21c52bb5e86437d6c654442f6d845e200240000f01d29f6d3748325405650177fc360d7edb1fb7a74382b4734939ceec9b0bf7dc419e2774ca2719c30", 0xfffffcaa, 0x20000, &(0x7f0000000140)=@in={0x10, 0x2, 0x2, @broadcast}, 0x10)
setsockopt$inet6_sctp_SCTP_ADD_STREAMS(0xffffffffffffffff, 0x84, 0x903, &(0x7f0000000080)={0x0, 0x0, 0x4}, 0x8)

trap_fatal() at trap_fatal+0x4cd/frame 0xfffffe002e8183f0
trap() at trap+0xf7/frame 0xfffffe002e818510
calltrap() at calltrap+0x8/frame 0xfffffe002e818510
--- trap 0x9, rip = 0xffffffff82ce46af, rsp = 0xfffffe002e8185e0, rbp = 0xfffffe002e8187b0 ---
sctp_lower_sosend() at sctp_lower_sosend+0x53df/frame 0xfffffe002e8187b0
sctp_sosend() at sctp_sosend+0x4fc/frame 0xfffffe002e8188e0
sosend() at sosend+0xc6/frame 0xfffffe002e818950
kern_sendit() at kern_sendit+0x34b/frame 0xfffffe002e818a00
sendit() at sendit+0x226/frame 0xfffffe002e818a60
sys_sendto() at sys_sendto+0x5c/frame 0xfffffe002e818ac0
amd64_syscall() at amd64_syscall+0x262/frame 0xfffffe002e818bf0
fast_syscall_common() at fast_syscall_common+0xf8/frame 0xfffffe002e818bf0
--- syscall (198, FreeBSD ELF64, nosys), rip = 0x28283a, rsp = 0x7fffdfffdf08, rbp = 0x7fffdfffdf70 ---
KDB: enter: panic
[ thread pid 1003 tid 100485 ]
Stopped at kdb_enter+0x67: movq $0,0x14886e6(%rip)
db>
db> set $lines = 0
db> set $maxwidth = 0
db> show registers
cs 0x20
ds 0x3b ll+0x1a
es 0x3b ll+0x1a
fs 0x13
gs 0x1b
ss 0x28 ll+0x7
rax 0x12
rcx 0xfffffe002d600000
rdx 0x3ffff
rbx 0
rsp 0xfffffe002e818290
rbp 0xfffffe002e8182b0
rsi 0x40001
rdi 0xffffffff810d8b96 vprintf+0x176
r8 0
r9 0xffffffff
r10 0
r11 0xfffffe00265b5110
r12 0xffffffff82068ef0 ddb_dbbe
r13 0
r14 0xffffffff8192e57d
r15 0xffffffff8192e57d
rip 0xffffffff810cd797 kdb_enter+0x67
rflags 0x86 ll+0x65
kdb_enter+0x67: movq $0,0x14886e6(%rip)
db> show proc
Process 1003 (syz-executor.2) at 0xfffff80004cf3a40:
state: NORMAL
uid: 0 gids: 0, 0, 5
parent: pid 958 at 0xfffff80004d86a40
ABI: FreeBSD ELF64
arguments: /root/syz-executor.2
reaper: 0xfffff80004304000 reapsubtree: 1
sigparent: 20
vmspace: 0xfffffe00265b1000
(map 0xfffffe00265b1000)
(map.pmap 0xfffffe00265b10c0)
(pmap 0xfffffe00265b1120)
threads: 3
100084 S nanslp 0xffffffff825295e1 syz-executor.2
100485 Run CPU 0 syz-executor.2
100489 S uwait 0xfffff80004a9de00 syz-executor.2
db> ps
pid ppid pgrp uid state wmesg wchan cmd
1003 958 958 0 R (threaded) syz-executor.2
100084 S nanslp 0xffffffff825295e1 syz-executor.2
100485 Run CPU 0 syz-executor.2
100489 S uwait 0xfffff80004a9de00 syz-executor.2
1001 774 774 0 S (threaded) syz-executor.3
100106 S nanslp 0xffffffff825295e1 syz-executor.3
100481 S connec 0xfffff80004e454b0 syz-executor.3
100483 S uwait 0xfffff80004a9dd00 syz-executor.3
999 991 991 0 S (threaded) syz-executor.0
100131 S nanslp 0xffffffff825295e1 syz-executor.0
100479 S connec 0xfffff80004e4a4b0 syz-executor.0
100484 S uwait 0xfffff80004aa0300 syz-executor.0
991 768 991 0 Ss nanslp 0xffffffff825295e1 syz-executor.0
958 768 958 0 Ss nanslp 0xffffffff825295e1 syz-executor.2
957 951 957 0 Ss select 0xfffff80004a9d640 dhclient
954 1 954 0 Ss select 0xfffff80004e24bc0 dhclient
951 944 424 65 S select 0xfffff80004d574c0 dhclient
944 424 424 0 S wait 0xfffff80004d95000 sh
798 768 798 0 Ss piperd 0xfffff80004cfcbe0 syz-executor.1
774 768 774 0 Ss nanslp 0xffffffff825295e1 syz-executor.3
768 766 766 0 S (threaded) syz-fuzzer
100079 S uwait 0xfffff80004538d00 syz-fuzzer
100112 S uwait 0xfffff80004d57c80 syz-fuzzer
100113 S uwait 0xfffff80004d57d80 syz-fuzzer
100114 S uwait 0xfffff80004d57e80 syz-fuzzer
100115 S uwait 0xfffff80004a9fa80 syz-fuzzer
100116 S uwait 0xfffff800193b7000 syz-fuzzer
100117 S kqread 0xfffff80004c62800 syz-fuzzer
100118 S uwait 0xfffff800193b7100 syz-fuzzer
100119 S uwait 0xfffff800193b7200 syz-fuzzer
766 764 766 0 Ss pause 0xfffff800195125c8 csh
764 682 764 0 Ss select 0xfffff800040f6d40 sshd
748 1 748 0 Ss+ ttyin 0xfffff80004862cb0 getty
747 1 747 0 Ss+ ttyin 0xfffff80004bd30b0 getty
746 1 746 0 Ss+ ttyin 0xfffff80004bd34b0 getty
745 1 745 0 Ss+ ttyin 0xfffff80004bd38b0 getty
744 1 744 0 Ss+ ttyin 0xfffff80004bd3cb0 getty
743 1 743 0 Ss+ ttyin 0xfffff80004bd60b0 getty
742 1 742 0 Ss+ ttyin 0xfffff80004bd64b0 getty
741 1 741 0 Ss+ ttyin 0xfffff80004bd68b0 getty
740 1 740 0 Ss+ ttyin 0xfffff80004bd6cb0 getty
686 1 686 0 Ss nanslp 0xffffffff825295e1 cron
682 1 682 0 Ss select 0xfffff800193b77c0 sshd
495 1 495 0 Ds bo_wwai 0xfffff80019441f00 syslogd
424 1 424 0 Ss wait 0xfffff80004cf6520 devd
423 1 423 65 Ss select 0xfffff80004aa0ac0 dhclient
338 1 338 0 Ss select 0xfffff80004538640 dhclient
335 1 335 0 Ss select 0xfffff80004aa0ec0 dhclient
23 0 0 0 DL vlruwt 0xfffff800043cb520 [vnlru]
22 0 0 0 DL syncer 0xffffffff826166e8 [syncer]
21 0 0 0 DL (threaded) [bufdaemon]
100070 D qsleep 0xffffffff82615a30 [bufdaemon]
100073 D - 0xffffffff8200aa00 [bufspacedaemon-0]
100086 D sdflush 0xfffff8000485fce8 [/ worker]
20 0 0 0 DL psleep 0xffffffff8263cc48 [vmdaemon]
19 0 0 0 DL (threaded) [pagedaemon]
100068 D psleep 0xffffffff826310f8 [dom0]
100074 D launds 0xffffffff82631104 [laundry: dom0]
100075 D umarcl 0xffffffff814d1360 [uma]
18 0 0 0 DL - 0xffffffff8235d208 [rand_harvestq]
17 0 0 0 DL waiting 0xffffffff82d482f8 [sctp_iterator]
16 0 0 0 DL pftm 0xffffffff82e41390 [pf purge]
15 0 0 0 DL - 0xffffffff8261502c [soaiod4]
9 0 0 0 DL - 0xffffffff8261502c [soaiod3]
8 0 0 0 DL - 0xffffffff8261502c [soaiod2]
7 0 0 0 DL - 0xffffffff8261502c [soaiod1]
6 0 0 0 DL (threaded) [cam]
100034 D - 0xffffffff82234f40 [doneq0]
100067 D - 0xffffffff82234e10 [scanner]
5 0 0 0 DL crypto_ 0xfffff800043c8090 [crypto returns 1]
4 0 0 0 DL crypto_ 0xfffff800043c8030 [crypto returns 0]
3 0 0 0 DL crypto_ 0xffffffff8262e5e0 [crypto]
14 0 0 0 DL seqstat 0xfffff800043a5c88 [sequencer 00]
13 0 0 0 DL (threaded) [geom]
100025 D - 0xffffffff82508550 [g_event]
100026 D - 0xffffffff82508558 [g_up]
100027 D - 0xffffffff82508560 [g_down]
2 0 0 0 DL (threaded) [KTLS]
100018 D - 0xfffff80004331800 [thr_0]
100019 D - 0xfffff80004331880 [thr_1]
12 0 0 0 RL (threaded) [intr]
100012 I [swi5: fast taskq]
100016 I [swi6: task queue]
100017 I [swi6: Giant taskq]
100020 I [swi4: clock (0)]
100021 I [swi4: clock (1)]
100022 I [swi1: netisr 0]
100023 I [swi3: vm]
100035 I [irq24: virtio_pci0]
100036 I [irq25: virtio_pci0]
100037 I [irq26: virtio_pci0]
100038 I [irq27: virtio_pci0]
100039 I [irq28: virtio_pci1]
100040 I [irq29: virtio_pci1]
100041 I [irq30: virtio_pci1]
100042 I [irq31: virtio_pci1]
100043 I [irq32: virtio_pci1]
100048 I [irq10: virtio_pci2]
100050 I [irq1: atkbd0]
100051 I [irq12: psm0]
100052 I [swi0: uart uart++]
100060 I [swi1: pf send]
100076 Run CPU 1 [swi1: hpts]
100077 I [swi1: hpts]
11 0 0 0 RL (threaded) [idle]
100003 CanRun [idle: cpu0]
100004 CanRun [idle: cpu1]
1 0 1 0 SLs wait 0xfffff80004304000 [init]
10 0 0 0 DL audit_w 0xffffffff8262eb00 [audit]
0 0 0 0 DLs (threaded) [kernel]
100000 D swapin 0xffffffff82508af0 [swapper]
100005 D - 0xfffff800040e3100 [softirq_0]
100006 D - 0xfffff800040e2d00 [softirq_1]
100007 D - 0xfffff800040e2c00 [if_io_tqg_0]
100008 D - 0xfffff800040e2b00 [if_io_tqg_1]
100009 D - 0xfffff800040e2a00 [if_config_tqg_0]
100010 D - 0xfffff80004334100 [in6m_free taskq]
100011 D - 0xfffff80004334000 [thread taskq]
100013 D - 0xfffff80004331d00 [inm_free taskq]
100014 D - 0xfffff80004331c00 [kqueue_ctx taskq]
100015 D - 0xfffff80004331b00 [aiod_kick taskq]
100024 D - 0xfffff80004331700 [firmware taskq]
100029 D - 0xfffff80004331600 [crypto_0]
100030 D - 0xfffff80004331600 [crypto_1]
100044 D - 0xfffff80004331300 [vtnet0 rxq 0]
100045 D - 0xfffff80004331200 [vtnet0 txq 0]
100046 D - 0xfffff80004331100 [vtnet0 rxq 1]
100047 D - 0xfffff80004331000 [vtnet0 txq 1]
100049 D vtbslp 0xfffff800045aba00 [virtio_balloon]
100053 D - 0xfffff80004332c00 [mca taskq]
100058 D - 0xffffffff81cd3db0 [deadlkres]
100063 D - 0xfffff80004af2000 [acpi_task_0]
100064 D - 0xfffff80004af2000 [acpi_task_1]
100065 D - 0xfffff80004af2000 [acpi_task_2]
100066 D - 0xfffff80004331400 [CAM taskq]
db> show all locks
Process 1003 (syz-executor.2) thread 0xfffffe00265b4c00 (100485)
exclusive sleep mutex sctp-send-tcb (tcbs) r = 0 (0xfffffe002ea7f1c0) locked @ /syzkaller/managers/main/kernel/sys/netinet/sctp_output.c:13130
Process 495 (syslogd) thread 0xfffffe00245dd700 (100089)
exclusive lockmgr ufs (ufs) r = 0 (0xfffff80019441e00) locked @ /syzkaller/managers/main/kernel/sys/kern/vfs_syscalls.c:3468
Process 12 (intr) thread 0xfffffe00245bfc00 (100076)
exclusive sleep mutex tcp_hpts_lck (hpts) r = 0 (0xfffff80004c3c300) locked @ /syzkaller/managers/main/kernel/sys/netinet/tcp_hpts.c:1819
db> show malloc
Type InUse MemUse Requests
pf_hash 5 11524K 5
devbuf 4214 4854K 4242
tcp_hpts 5 3201K 5
vtbuf 24 1968K 46
sysctloid 28062 1637K 28126
kobj 335 1340K 494
newblk 19 1029K 2888
vfscache 4 1025K 4
pcb 29 539K 253
inodedep 36 530K 321
ufs_quota 1 512K 1
vfs_hash 1 512K 1
callout 2 512K 2
intr 4 472K 4
subproc 127 253K 1081
acpica 1674 185K 52414
vnet_data 1 168K 1
filedesc 20 137K 336
pagedep 16 132K 163
tfo_ccache 1 128K 1
sem 4 106K 4
DEVFS1 105 105K 122
linker 254 99K 311
bus 1003 80K 3382
mtx_pool 2 72K 2
syncache 1 68K 1
acpitask 1 64K 1
ddb_capture 1 64K 1
module 505 64K 505
umtx 306 39K 306
BPF 22 36K 38
kdtrace 177 35K 2445
temp 35 33K 2254
hostcache 1 32K 1
shm 1 32K 1
DEVFS3 124 31K 134
msg 4 30K 4
ifaddr 82 29K 90
DEVFS_RULE 56 27K 56
vmem 3 26K 4
gtaskqueue 18 26K 18
kbdmux 6 22K 6
lltable 46 17K 71
ufs_mount 5 17K 6
proc 3 17K 3
tty 16 16K 16
tidhash 1 16K 1
ithread 99 16K 99
ether_multi 172 14K 307
bus-sc 30 14K 1405
KTRACE 100 13K 100
ifnet 7 13K 7
kenv 92 12K 92
eventhandler 132 12K 132
in6_multi 89 11K 162
pfs_nodes 20 10K 20
GEOM 60 10K 489
rman 82 10K 423
bmsafemap 2 9K 264
UART 12 9K 12
devstat 4 9K 4
rpc 2 8K 2
shmfd 1 8K 3
pfs_vncache 1 8K 1
audit_evclass 233 8K 291
CAM DEV 3 6K 510
kqueue 56 6K 1012
vt 11 6K 11
cred 22 6K 221
sctp_timw 21 6K 21
plimit 21 6K 434
sglist 5 6K 5
CAM queue 5 6K 1528
taskqueue 48 6K 48
dirrem 19 5K 155
ufs_dirhash 24 5K 24
DEVFSP 72 5K 170
pf_ifnet 10 5K 21
UMA 250 5K 250
memdesc 1 4K 1
MCA 32 4K 32
evdev 4 4K 4
kcovinfo 64 4K 153
routetbl 22 4K 37
select 27 4K 27
hhook 13 4K 13
session 25 4K 44
pgrp 25 4K 44
lockf 28 3K 77
acpisem 22 3K 22
terminal 11 3K 11
proc-args 44 3K 660
freefile 18 3K 150
uidinfo 3 3K 7
sctp_ifa 17 3K 34
mkdir 17 3K 256
ip6ndp 13 3K 31
local_apic 1 2K 1
io_apic 1 2K 1
CAM CCB 1 2K 5803
ipsec-saq 2 2K 2
Unitno 29 2K 46
diradd 13 2K 210
CAM XPT 22 2K 543
sctp_atcl 3 2K 118
in_multi 6 2K 12
newdirblk 11 2K 128
ipsecpolicy 2 2K 2
acpidev 20 2K 20
msi 9 2K 9
freework 5 2K 402
clone 9 2K 9
tun 7 2K 7
sctp_stro 1 1K 54
softdep 1 1K 1
freeblks 4 1K 166
sahead 1 1K 1
secasvar 1 1K 1
vnodemarker 2 1K 62
NFSD session 1 1K 1
CAM periph 4 1K 271
sctp_ifn 6 1K 34
ipsec 3 1K 3
mld 6 1K 6
igmp 6 1K 6
nhops 6 1K 6
toponodes 6 1K 6
isadev 6 1K 6
mount 16 1K 89
pci_link 10 1K 10
encap_export_host 12 1K 12
crypto 3 1K 3
sctp_stri 1 1K 44
indirdep 2 1K 369
pfil 4 1K 4
chacha20random 1 1K 1
CAM SIM 2 1K 2
cdev 2 1K 2
inpcbpolicy 12 1K 615
osd 3 1K 9
vnodes 1 1K 1
ktls 1 1K 1
NFSD lckfile 1 1K 1
NFSD V4client 1 1K 1
DEVFS 9 1K 10
feeder 7 1K 7
sctp_atky 4 1K 174
loginclass 3 1K 6
prison 6 1K 6
soname 7 1K 6169
CAM dev queue 2 1K 2
CAM I/O Scheduler 1 1K 1
apmdev 1 1K 1
atkbddev 2 1K 2
CAM path 4 1K 1034
tcpfunc 2 1K 2
pmchooks 1 1K 1
nexusdev 5 1K 5
sctp_vrf 1 1K 1
entropy 2 1K 45
vnet 1 1K 1
acpiintr 1 1K 1
pmc 1 1K 1
sctp_athm 3 1K 140
sctp_map 2 1K 68
cpus 2 1K 2
vnet_data_free 1 1K 1
Per-cpu 1 1K 1
filecaps 2 1K 84
p1003.1b 1 1K 1
pf_table 0 0K 2
pf_rule 0 0K 2
pf_altq 0 0K 0
pf_osfp 0 0K 0
pf_temp 0 0K 0
sctp_mcore 0 0K 0
sctp_socko 0 0K 78
sctp_iter 0 0K 27
sctp_mvrf 0 0K 0
sctp_cpal 0 0K 0
sctp_cmsg 0 0K 0
sctp_stre 0 0K 0
sctp_athi 0 0K 0
sctp_a_it 0 0K 27
sctp_aadr 0 0K 0
ath_hal 0 0K 0
madt_table 0 0K 2
athdev 0 0K 0
ata_pci 0 0K 0
ata_dma 0 0K 0
ata_generic 0 0K 0
amr 0 0K 0
scsi_da 0 0K 69
ata_da 0 0K 0
pvscsi 0 0K 0
smartpqi 0 0K 0
scsi_ch 0 0K 0
scsi_cd 0 0K 0
USBdev 0 0K 0
USB 0 0K 0
AHCI driver 0 0K 0
agp 0 0K 0
iavf 0 0K 0
ixl 0 0K 0
nvme_da 0 0K 0
acpipwr 0 0K 0
twsbuf 0 0K 0
twe_commands 0 0K 0
twa_commands 0 0K 0
tcp_log_dev 0 0K 0
ice-resmgr 0 0K 0
ice-osdep 0 0K 0
ice 0 0K 0
fpukern_ctx 0 0K 0
midi buffers 0 0K 0
xen_intr 0 0K 0
mixer 0 0K 0
xen_hvm 0 0K 0
legacydrv 0 0K 0
qpidrv 0 0K 0
ac97 0 0K 0
hdacc 0 0K 0
dmar_idpgtbl 0 0K 0
dmar_dom 0 0K 0
dmar_ctx 0 0K 0
hdac 0 0K 0
hdaa 0 0K 0
acpi_perf 0 0K 0
isci 0 0K 0
iommu_dmamap 0 0K 0
hyperv_socket 0 0K 0
bxe_ilt 0 0K 0
xenbus 0 0K 0
acpicmbat 0 0K 0
SIIS driver 0 0K 0
vm_fictitious 0 0K 0
PUC 0 0K 0
ppbusdev 0 0K 0
agtiapi_MemAlloc malloc 0 0K 0
osti_cacheable 0 0K 0
tempbuff 0 0K 0
tempbuff 0 0K 0
UMAHash 0 0K 0
ag_tgt_map_t malloc 0 0K 0
ag_slr_map_t malloc 0 0K 0
vm_pgdata 0 0K 0
jblocks 0 0K 0
savedino 0 0K 122
sentinel 0 0K 0
jfsync 0 0K 0
jtrunc 0 0K 0
sbdep 0 0K 28
jsegdep 0 0K 0
jseg 0 0K 0
jfreefrag 0 0K 0
jfreeblk 0 0K 0
jnewblk 0 0K 0
jmvref 0 0K 0
jremref 0 0K 0
jaddref 0 0K 0
freedep 0 0K 0
freefrag 0 0K 11
allocindir 0 0K 0
allocdirect 0 0K 0
ufs_trim 0 0K 0
mactemp 0 0K 0
audit_trigger 0 0K 0
audit_pipe_presel 0 0K 0
audit_pipeent 0 0K 0
audit_pipe 0 0K 0
audit_evname 0 0K 0
audit_bsm 0 0K 0
audit_gidset 0 0K 0
audit_text 0 0K 0
audit_path 0 0K 0
audit_data 0 0K 0
audit_cred 0 0K 0
xform 0 0K 0
lDevFlags * malloc 0 0K 0
NLM 0 0K 0
ipsec-spdcache 0 0K 0
ipsec-reg 0 0K 0
ipsec-misc 0 0K 0
ipsecrequest 0 0K 0
ip6opt 0 0K 3
ip6_msource 0 0K 0
ip6_moptions 0 0K 0
in6_mfilter 0 0K 0
frag6 0 0K 0
tcplog 0 0K 0
tiDeviceHandle_t * malloc 0 0K 0
LRO 0 0K 0
newreno data 0 0K 0
ip_msource 0 0K 0
ip_moptions 0 0K 0
in_mfilter 0 0K 0
ipid 0 0K 0
80211scan 0 0K 0
80211ratectl 0 0K 0
80211power 0 0K 0
80211nodeie 0 0K 0
80211node 0 0K 0
80211mesh_gt 0 0K 0
80211mesh_rt 0 0K 0
80211perr 0 0K 0
80211prep 0 0K 0
80211preq 0 0K 0
80211dfs 0 0K 0
80211crypto 0 0K 0
80211vap 0 0K 0
iflib 0 0K 0
vlan 0 0K 0
gif 0 0K 0
ifdescr 0 0K 0
zlib 0 0K 0
fadvise 0 0K 0
ag_portal_data_t malloc 0 0K 0
statfs 0 0K 288
export_host 0 0K 0
cl_savebuf 0 0K 3
ag_device_t malloc 0 0K 0
STLock malloc 0 0K 0
CCB List 0 0K 0
sr_iov 0 0K 0
OCS 0 0K 0
OCS 0 0K 0
nvme 0 0K 0
nvd 0 0K 0
netmap 0 0K 0
mwldev 0 0K 0
MVS driver 0 0K 0
CAM ccb queue 0 0K 0
mrsasbuf 0 0K 0
mpt_user 0 0K 0
mps_user 0 0K 0
biobuf 0 0K 0
aios 0 0K 0
lio 0 0K 0
acl 0 0K 0
MPSSAS 0 0K 0
mbuf_tag 0 0K 279
accf 0 0K 0
pts 0 0K 0
iov 0 0K 15188
ioctlops 0 0K 168
Witness 0 0K 0
stack 0 0K 0
mps 0 0K 0
mpr_user 0 0K 0
MPRSAS 0 0K 0
mpr 0 0K 0
mfibuf 0 0K 0
md_sectors 0 0K 0
sbuf 0 0K 288
md_disk 0 0K 0
firmware 0 0K 0
compressor 0 0K 0
malodev 0 0K 0
SWAP 0 0K 0
LED 0 0K 0
sysctltmp 0 0K 659
sysctl 0 0K 1
ekcd 0 0K 0
dumper 0 0K 0
sendfile 0 0K 0
rctl 0 0K 0
ix_sriov 0 0K 0
aacraidcam 0 0K 0
ix 0 0K 0
ipsbuf 0 0K 0
iirbuf 0 0K 0
cache 0 0K 0
aacraid_buf 0 0K 0
prison_racct 0 0K 0
Fail Points 0 0K 0
sigio 0 0K 1
filedesc_to_leader 0 0K 0
pwd 0 0K 0
tty console 0 0K 0
aaccam 0 0K 0
aacbuf 0 0K 0
zstd 0 0K 0
nvlist 0 0K 0
SCSI ENC 0 0K 0
SCSI sa 0 0K 0
isofs_node 0 0K 0
isofs_mount 0 0K 0
tr_raid5_data 0 0K 0
tr_raid1e_data 0 0K 0
tr_raid1_data 0 0K 0
tr_raid0_data 0 0K 0
tr_concat_data 0 0K 0
md_sii_data 0 0K 0
md_promise_data 0 0K 0
md_nvidia_data 0 0K 0
md_jmicron_data 0 0K 0
md_intel_data 0 0K 0
md_ddf_data 0 0K 0
raid_data 0 0K 72
geom_flashmap 0 0K 0
tmpfs name 0 0K 0
tmpfs mount 0 0K 0
NFS FHA 0 0K 0
newnfsmnt 0 0K 0
newnfsclient_req 0 0K 0
NFSCL layrecall 0 0K 0
NFSCL session 0 0K 0
NFSCL sockreq 0 0K 0
NFSCL devinfo 0 0K 0
NFSCL flayout 0 0K 0
NFSCL layout 0 0K 0
NFSD rollback 0 0K 0
NFSCL diroffdiroff 0 0K 0
NEWdirectio 0 0K 0
NEWNFSnode 0 0K 0
NFSCL lck 0 0K 0
NFSCL lckown 0 0K 0
NFSCL client 0 0K 0
NFSCL deleg 0 0K 0
NFSCL open 0 0K 0
NFSCL owner 0 0K 0
NFS fh 0 0K 0
NFS req 0 0K 0
NFSD usrgroup 0 0K 0
NFSD string 0 0K 0
NFSD V4lock 0 0K 0
NFSD V4state 0 0K 0
NFSD srvcache 0 0K 0
msdosfs_fat 0 0K 0
msdosfs_mount 0 0K 0
msdosfs_node 0 0K 0
DEVFS4 0 0K 0
DEVFS2 0 0K 0
gntdev 0 0K 0
privcmd_dev 0 0K 0
evtchn_dev 0 0K 0
xenstore 0 0K 0
scsi_pass 0 0K 0
ciss_data 0 0K 0
xnb 0 0K 0
xbbd 0 0K 0
xbd 0 0K 0
Balloon 0 0K 0
sysmouse 0 0K 0
vtfont 0 0K 0
db> show uma
Zone Size Used Free Requests Sleeps Bucket Total Mem XFree
mbuf_cluster 2048 9780 126 9780 0 254 20287488 0
mbuf_jumbo_page 4096 455 2085 12470 0 254 10403840 0
65536 65536 0 110 241 0 1 7208960 0
32768 32768 0 112 112 0 1 3670016 0
mbuf_packet 256 8197 1455 933044 0 254 2470912 0
16384 16384 4 134 143 0 1 2260992 0
RADIX NODE 144 14718 623 115322 0 62 2209104 0
512 512 4122 54 4128 0 30 2138112 0
BUF TRIE 144 390 13078 4312 0 62 1939392 0
4096 4096 335 3 502 0 2 1384448 0
128 128 9248 207 9345 0 126 1210240 0
sctp_asoc 2288 1 509 34 0 254 1166880 0
UMA Slabs 0 112 9598 8 9598 0 126 1075872 0
mbuf 256 930 3143 522661 0 254 1042688 0
pbuf 832 0 953 0 0 2 792896 0
8192 8192 8 77 117 0 1 696320 0
sctp_ep 1280 1 509 62 0 254 652800 0
tcpcb 1040 8 509 49 0 254 537680 0
socket 960 26 482 1856 0 254 487680 0
256 Bucket 2048 177 15 2052 0 8 393216 0
sctp_raddr 736 1 516 40 0 254 380512 0
VM OBJECT 264 1132 68 17019 0 30 316800 0
VNODE 496 567 65 721 0 30 313472 0
tcp_bbr_map 128 1991 303 7988 0 126 293632 0
2048 2048 8 128 6634 0 8 278528 0
THREAD 1792 130 23 490 0 8 274176 0
4096 4096 13 52 92 0 2 266240 0
65536 65536 4 0 4 0 1 262144 0
ripcb 488 2 510 18 0 254 249856 0
udplite_inpcb 488 0 512 335 0 254 249856 0
tcp_inpcb 488 8 504 49 0 254 249856 0
udp_inpcb 488 2 510 213 0 254 249856 0
4096 4096 54 6 1008 0 2 245760 0
256 256 287 643 5685 0 62 238080 0
64 64 2957 382 3161 0 254 213696 0
32768 32768 0 6 318 0 1 196608 0
16384 16384 7 5 163 0 1 196608 0
g_bio 408 4 476 20866 0 30 195840 0
128 128 1279 240 30757 0 126 194432 0
16 16 11811 189 12385 0 254 192000 0
512 512 4 340 434 0 30 176128 0
UMA Zones 768 225 2 225 0 16 174336 0
MAP ENTRY 96 1304 334 53167 0 126 157248 0
1024 1024 11 141 1442 0 16 155648 0
32 32 4443 219 5319 0 254 149184 0
vmem btag 56 2414 238 2414 0 254 148512 0
FFS2 dinode 256 530 40 681 0 62 145920 0
128 128 986 99 2134 0 126 138880 0
65536 65536 2 0 2 0 1 131072 0
65536 65536 2 0 2 0 1 131072 0
1024 1024 105 23 127 0 16 131072 0
unpcb 256 11 499 1137 0 254 130560 0
ksiginfo 112 46 998 1224 0 126 116928 0
FFS inode 160 530 170 682 0 62 112000 0
VMSPACE 2536 31 11 986 0 4 106512 0
S VFS Cache 104 619 395 1385 0 126 105456 0
PROC 1312 53 19 1007 0 8 94464 0
128 Bucket 1024 51 32 293 0 16 84992 0
filedesc0 1080 54 23 1008 0 8 83160 0
UMA Kegs 384 211 5 211 0 30 82944 0
2048 2048 11 29 59 0 8 81920 0
sctp_readq 152 0 520 13 0 254 79040 0
sctp_chunk 152 2 518 789 0 254 79040 0
512 512 98 54 443 0 30 77824 0
64 Bucket 512 80 56 2103 0 30 69632 0
64 64 546 525 1796 0 254 68544 0
64 64 535 536 16155 0 254 68544 0
128 128 344 183 653 0 126 67456 0
65536 65536 1 0 1 0 1 65536 0
65536 65536 0 1 8 0 1 65536 0
32768 32768 2 0 2 0 1 65536 0
1024 1024 7 57 148 0 16 65536 0
512 512 93 27 94 0 30 61440 0
4096 4096 11 3 408 0 2 57344 0
256 256 77 133 898 0 62 53760 0
clpbuf 832 0 64 1547 0 16 53248 0
256 256 151 44 250 0 62 49920 0
32 Bucket 256 63 132 672 0 62 49920 0
DIRHASH 1024 34 14 34 0 16 49152 0
NAMEI 1024 0 48 14981 0 16 49152 0
16384 16384 3 0 3 0 1 49152 0
4096 4096 11 1 11 0 2 49152 0
512 512 46 50 54 0 30 49152 0
512 512 19 77 686 0 30 49152 0
syncache 168 0 264 4 0 254 44352 0
pipe 760 20 30 356 0 16 38000 0
64 pcpu 8 4167 441 4272 0 254 36864 0
selfd 64 47 520 6798 0 254 36288 0
64 64 92 475 214 0 254 36288 0
64 64 78 489 1062 0 254 36288 0
64 64 188 379 241 0 254 36288 0
64 64 36 531 415 0 254 36288 0
128 128 38 241 58 0 126 35712 0
128 128 27 252 145 0 126 35712 0
128 128 136 143 189 0 126 35712 0
128 128 13 266 390 0 126 35712 0
routing nhops 256 15 120 61 0 62 34560 0
ttyoutq 256 72 63 160 0 62 34560 0
256 256 14 121 92 0 62 34560 0
256 256 37 98 37 0 62 34560 0
256 256 38 97 700 0 62 34560 0
256 256 61 74 750 0 62 34560 0
256 256 13 122 357 0 62 34560 0
32768 32768 1 0 1 0 1 32768 0
8192 8192 4 0 4 0 1 32768 0
8192 8192 3 1 5 0 1 32768 0
4096 4096 6 2 10 0 2 32768 0
2048 2048 0 16 34 0 8 32768 0
2048 2048 1 15 3 0 8 32768 0
2048 2048 5 11 5 0 8 32768 0
2048 2048 6 10 203 0 8 32768 0
1024 1024 2 30 9 0 16 32768 0
1024 1024 17 15 17 0 16 32768 0
1024 1024 6 26 73 0 16 32768 0
1024 1024 12 20 12 0 16 32768 0
512 512 1 63 50 0 30 32768 0
512 512 23 41 61 0 30 32768 0
mt_stats_zone 64 445 67 445 0 254 32768 0
sctp_stream_msg_out 112 1 287 14 0 254 32256 0
2 Bucket 32 298 710 9516 0 254 32256 0
KNOTE 160 28 172 49086 0 62 32000 0
ttyinq 160 135 65 300 0 62 32000 0
Files 80 191 209 8790 0 126 32000 0
tcp_bbr_pcb 832 3 33 18 0 16 29952 0
cpuset 104 7 272 7 0 126 29016 0
pf tags 104 0 273 2 0 126 28392 0
sctp_laddr 48 0 588 46 0 254 28224 0
hostcache 96 1 293 1 0 254 28224 0
32 32 308 574 406 0 254 28224 0
4 Bucket 48 45 543 9077 0 254 28224 0
8 Bucket 80 50 300 21765 0 126 28000 0
TURNSTILE 136 154 35 154 0 62 25704 0
rtentry 176 33 105 61 0 62 24288 0
rl_entry 40 57 549 57 0 254 24240 0
Mountpoints 2816 2 6 2 0 4 22528 0
SLEEPQUEUE 88 154 102 154 0 126 22528 0
udpcb 32 2 628 548 0 254 20160 0
PWD 32 18 612 215 0 254 20160 0
64 64 1 314 2 0 254 20160 0
32 32 13 617 23 0 254 20160 0
32 32 17 613 622 0 254 20160 0
32 32 63 567 933 0 254 20160 0
32 32 92 538 4120 0 254 20160 0
32 32 43 587 244 0 254 20160 0
16 Bucket 144 62 78 5222 0 62 20160 0
procdesc 136 2 143 12 0 62 19720 0
epoch_record pcpu 256 4 60 4 0 62 16384 0
16384 16384 1 0 1 0 1 16384 0
8192 8192 2 0 2 0 1 16384 0
8192 8192 1 1 3 0 1 16384 0
8192 8192 2 0 2 0 1 16384 0
4096 4096 2 2 291 0 2 16384 0
2048 2048 1 7 1 0 8 16384 0
2048 2048 2 6 2 0 8 16384 0
1024 1024 7 9 7 0 16 16384 0
rentr 24 0 668 16 0 254 16032 0
vtnet_tx_hdr 24 1 667 477896 0 254 16032 0
mt_zone 24 445 223 445 0 254 16032 0
KMAP ENTRY 96 12 153 12 0 126 15840 0
kenv 258 3 57 1005 0 30 15480 0
FPU_save_area 832 1 17 1 0 16 14976 0
vmem 1856 1 7 1 0 8 14848 0
32 32 97 281 206 0 254 12096 0
16 16 25 725 64 0 254 12000 0
16 16 303 447 498 0 254 12000 0
16 16 24 726 31 0 254 12000 0
16 16 194 556 1364 0 254 12000 0
16 16 24 726 24063 0 254 12000 0
16 16 7 743 86 0 254 12000 0
8192 8192 1 0 1 0 1 8192 0
SMR CPU 32 2 253 2 0 254 8160 0
16 16 0 500 4 0 254 8000 0
SMR SHARED 24 2 253 2 0 254 6120 0
UMA Slabs 1 176 9 13 9 0 62 3872 0
int pcpu 4 34 478 34 0 254 2048 0
FFS1 dinode 128 0 0 0 0 126 0 0
swblk 136 0 0 0 0 62 0 0
swpctrie 144 0 0 0 0 62 0 0
sctp_asconf_ack 48 0 0 0 0 254 0 0
sctp_asconf 40 0 0 0 0 254 0 0
pf state scrubs 40 0 0 0 0 254

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

Mark Johnston

unread,
Sep 9, 2021, 9:03:50 AM9/9/21
to syzbot, syzkaller-f...@googlegroups.com
#syz dup: panic: Bad list head ADDR first->prev != head
Reply all
Reply to author
Forward
0 new messages