panic: __rw_wlock_hard: recursing but non-recursive rw sctp-info @ /syzkaller/managers/main/kernel/sys/netinet/sctp_pcb.

1 view
Skip to first unread message

syzbot

unread,
Sep 8, 2021, 6:08:31 AM9/8/21
to syzkaller-f...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 4ccbbe5f0689 top(1): indicate how to reset grep string
git tree: https://github.com/freebsd/freebsd-src.git main
console output: https://syzkaller.appspot.com/x/log.txt?x=11d1e769300000
dashboard link: https://syzkaller.appspot.com/bug?extid=a1b6cef257ad145b7187

Unfortunately, I don't have any reproducer for this issue yet.

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+a1b6ce...@syzkaller.appspotmail.com

panic: __rw_wlock_hard: recursing but non-recursive rw sctp-info @ /syzkaller/managers/main/kernel/sys/netinet/sctp_pcb.c:1856

cpuid = 1
time = 1631095668
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0xc7/frame 0xfffffe00a74e61f0
kdb_backtrace() at kdb_backtrace+0xd3/frame 0xfffffe00a74e6350
vpanic() at vpanic+0x2c5/frame 0xfffffe00a74e6430
panic() at panic+0xb5/frame 0xfffffe00a74e64f0
__rw_wlock_hard() at __rw_wlock_hard+0x119e/frame 0xfffffe00a74e6650
_rw_wlock_cookie() at _rw_wlock_cookie+0x1d4/frame 0xfffffe00a74e6720
sctp_swap_inpcb_for_listen() at sctp_swap_inpcb_for_listen+0xf8/frame 0xfffffe00a74e67b0
sctp_listen() at sctp_listen+0x614/frame 0xfffffe00a74e68e0
solisten() at solisten+0xd2/frame 0xfffffe00a74e6930
kern_listen() at kern_listen+0x158/frame 0xfffffe00a74e69f0
amd64_syscall() at amd64_syscall+0x425/frame 0xfffffe00a74e6bf0
fast_syscall_common() at fast_syscall_common+0xf8/frame 0xfffffe00a74e6bf0
--- syscall (198, FreeBSD ELF64, nosys), rip = 0x289eea, rsp = 0x7fffdfffdf08, rbp = 0x7fffdfffdf70 ---
KDB: enter: panic
[ thread pid 3430 tid 103998 ]
Stopped at kdb_enter+0x6b: movq $0,0x28e217a(%rip)
db>
db> set $lines = 0
db> set $maxwidth = 0
db> show registers
cs 0x20
ds 0x3b
es 0x3b
fs 0x13
gs 0x1b
ss 0x28
rax 0x12
rcx 0x676238b408ad0f20
rdx 0x40001
rbx 0
rsp 0xfffffe00a74e6330
rbp 0xfffffe00a74e6350
rsi 0
rdi 0xfffffe009e43ad68
r8 0x3
r9 0xfffffe00a74e5e68
r10 0
r11 0xfffffe00a7957e10
r12 0xfffffe00a7957900
r13 0xfffffe00a74e6301
r14 0xffffffff82c79420 .str.18
r15 0xffffffff82c79420 .str.18
rip 0xffffffff817abf3b kdb_enter+0x6b
rflags 0x46
kdb_enter+0x6b: movq $0,0x28e217a(%rip)
db> show proc
Process 3430 (syz-executor.3) at 0xfffffe00a7bf4000:
state: NORMAL
uid: 0 gids: 0, 0, 5
parent: pid 787 at 0xfffffe0058b29538
ABI: FreeBSD ELF64
flag: 0x10000080 flag2: 0
arguments: /root/syz-executor.3
reaper: 0xfffffe0053d58538 reapsubtree: 1
sigparent: 20
vmspace: 0xfffffe00a81973e0
(map 0xfffffe00a81973e0)
(map.pmap 0xfffffe00a81974a0)
(pmap 0xfffffe00a8197500)
threads: 2
103100 RunQ syz-executor.3
103998 Run CPU 1 syz-executor.3
db> ps
pid ppid pgrp uid state wmesg wchan cmd
3432 786 786 0 R syz-executor.2
3431 3426 436 0 R CPU 0 sh
3430 787 787 0 R (threaded) syz-executor.3
103100 RunQ syz-executor.3
103998 Run CPU 1 syz-executor.3
3429 1 3429 0 Ss select 0xfffffe00a7cb5d40 dhclient
3426 3416 436 0 S wait 0xfffffe00a8142538 dhclient
3423 783 783 0 R (threaded) syz-executor.1
102812 RunQ syz-executor.1
103993 S uwait 0xfffffe00a223f380 syz-executor.1
103995 S uwait 0xfffffe00a7c06000 syz-executor.1
103996 S uwait 0xfffffe00a73c6280 syz-executor.1
3416 436 436 0 S wait 0xfffffe00a802ca70 sh
3404 1 3404 65 Ss select 0xfffffe00a22683c0 dhclient
2801 1 786 0 S uwait 0xfffffe009e9d7280 syz-executor.2
2795 1 782 0 S uwait 0xfffffe00a7959a00 syz-executor.0
2792 1 786 0 S uwait 0xfffffe00a79cd880 syz-executor.2
2789 1 783 0 S uwait 0xfffffe00a73c6680 syz-executor.1
2788 1 782 0 S uwait 0xfffffe00a7959200 syz-executor.0
2781 1 783 0 S uwait 0xfffffe00a223f280 syz-executor.1
2777 1 783 0 S uwait 0xfffffe00a223f480 syz-executor.1
2776 1 782 0 S uwait 0xfffffe00a229b700 syz-executor.0
2775 1 786 0 S uwait 0xfffffe00a7959d00 syz-executor.2
2771 1 787 0 S uwait 0xfffffe005876ba80 syz-executor.3
2769 1 782 0 S uwait 0xfffffe005876b480 syz-executor.0
2765 1 2765 0 Ss select 0xfffffe0058af56c0 dhclient
2762 1 2762 0 Ss select 0xfffffe009e483f40 dhclient
2743 1 2743 65 Ss select 0xfffffe0058af55c0 dhclient
2739 1 787 0 S uwait 0xfffffe00a223f980 syz-executor.3
2737 1 782 0 S uwait 0xfffffe00a79cdd00 syz-executor.0
2733 1 787 0 S uwait 0xfffffe00a7959400 syz-executor.3
2729 1 782 0 S uwait 0xfffffe00a79cdb80 syz-executor.0
2724 1 782 0 S uwait 0xfffffe00a229b600 syz-executor.0
2720 1 782 0 S uwait 0xfffffe009e9d7c80 syz-executor.0
2144 1 2144 0 Ss select 0xfffffe0058af5e40 dhclient
2136 1 2136 0 Ss select 0xfffffe009e483cc0 dhclient
2085 1 2085 65 Ss select 0xfffffe0058af5ec0 dhclient
1593 1 783 0 S uwait 0xfffffe005893b100 syz-executor.1
1587 1 787 0 S uwait 0xfffffe009e9d7080 syz-executor.3
1584 1 783 0 S uwait 0xfffffe009e9d7980 syz-executor.1
1583 1 787 0 S uwait 0xfffffe00a7959f00 syz-executor.3
1577 1 787 0 S uwait 0xfffffe00a229b500 syz-executor.3
1576 1 783 0 S uwait 0xfffffe00a223fb80 syz-executor.1
1575 1 782 0 S uwait 0xfffffe00a223fa80 syz-executor.0
1572 1 786 0 S uwait 0xfffffe009e9d7880 syz-executor.2
1569 1 783 0 S uwait 0xfffffe00a229b900 syz-executor.1
1568 1 787 0 S uwait 0xfffffe009e9d7380 syz-executor.3
1567 1 782 0 S uwait 0xfffffe00a229b100 syz-executor.0
1566 1 786 0 S uwait 0xfffffe00a223f880 syz-executor.2
1563 1 787 0 S uwait 0xfffffe009e9d7780 syz-executor.3
1562 1 783 0 S uwait 0xfffffe00a73c6780 syz-executor.1
1557 1 786 0 S uwait 0xfffffe00a229bf00 syz-executor.2
1556 1 782 0 S uwait 0xfffffe00a223fe80 syz-executor.0
1555 1 787 0 S uwait 0xfffffe00a73c6880 syz-executor.3
1553 1 782 0 S uwait 0xfffffe009e9d7580 syz-executor.0
1551 1 783 0 S uwait 0xfffffe00a223fc80 syz-executor.1
1548 1 787 0 S uwait 0xfffffe00a229b800 syz-executor.3
1545 1 786 0 S uwait 0xfffffe00a229ba00 syz-executor.2
1543 1 787 0 S uwait 0xfffffe009e9d7480 syz-executor.3
1542 1 786 0 S uwait 0xfffffe009e9d7a80 syz-executor.2
1539 1 786 0 S uwait 0xfffffe00a73c6e80 syz-executor.2
1538 1 787 0 S uwait 0xfffffe00a73c6a80 syz-executor.3
1537 1 782 0 S uwait 0xfffffe00a73c6980 syz-executor.0
1531 1 782 0 S uwait 0xfffffe005893b180 syz-executor.0
1502 1 787 0 S uwait 0xfffffe00a223f780 syz-executor.3
1495 1 787 0 S uwait 0xfffffe00a229b000 syz-executor.3
1489 1 787 0 S uwait 0xfffffe009e9d7d80 syz-executor.3
1480 1 787 0 S uwait 0xfffffe00a73c6b80 syz-executor.3
1477 1 787 0 S uwait 0xfffffe009e9d7b80 syz-executor.3
1174 1 1174 0 Ss select 0xfffffe00a22685c0 dhclient
1171 1 1171 0 Ss select 0xfffffe00a22647c0 dhclient
999 0 0 0 DL aiordy 0xfffffe00a727d000 [aiod4]
998 0 0 0 DL aiordy 0xfffffe00a727d538 [aiod3]
997 0 0 0 DL aiordy 0xfffffe00a727da70 [aiod2]
996 0 0 0 DL aiordy 0xfffffe00a7273538 [aiod1]
787 780 787 0 Ss nanslp 0xffffffff8405af81 syz-executor.3
786 780 786 0 Rs syz-executor.2
783 780 783 0 Ss nanslp 0xffffffff8405af81 syz-executor.1
782 780 782 0 Rs syz-executor.0
780 778 778 0 S (threaded) syz-fuzzer
100115 S uwait 0xfffffe005838f300 syz-fuzzer
100119 S uwait 0xfffffe005893b700 syz-fuzzer
100120 S uwait 0xfffffe009e9d7e80 syz-fuzzer
100121 S kqread 0xfffffe0058869600 syz-fuzzer
100122 S uwait 0xfffffe005876b100 syz-fuzzer
100123 S uwait 0xfffffe005876b200 syz-fuzzer
100124 S uwait 0xfffffe0057015a00 syz-fuzzer
100126 S uwait 0xfffffe005893bf00 syz-fuzzer
100127 S uwait 0xfffffe005893be00 syz-fuzzer
778 776 778 0 Ss pause 0xfffffe009e9b45e8 csh
776 694 776 0 Ss select 0xfffffe009e483b40 sshd
760 1 760 0 Ss+ ttyin 0xfffffe0057003cb0 getty
759 1 759 0 Ss+ ttyin 0xfffffe00575f14b0 getty
758 1 758 0 Ss+ ttyin 0xfffffe00575f1cb0 getty
757 1 757 0 Ss+ ttyin 0xfffffe00583f44b0 getty
756 1 756 0 Ss+ ttyin 0xfffffe00583f4cb0 getty
755 1 755 0 Ss+ ttyin 0xfffffe00583f04b0 getty
754 1 754 0 Ss+ ttyin 0xfffffe00583f0cb0 getty
753 1 753 0 Ss+ ttyin 0xfffffe005839b4b0 getty
752 1 752 0 Ss+ ttyin 0xfffffe005839bcb0 getty
698 1 698 0 Ss nanslp 0xffffffff8405af81 cron
694 1 694 0 Ss select 0xfffffe005740b8c0 sshd
507 1 507 0 Ss select 0xfffffe0058af50c0 syslogd
436 1 436 0 Ss wait 0xfffffe005893da70 devd
435 1 435 65 Ss select 0xfffffe0058af53c0 dhclient
350 1 350 0 Ss select 0xfffffe005740bb40 dhclient
347 1 347 0 Ss select 0xfffffe0058af54c0 dhclient
23 0 0 0 DL syncer 0xffffffff84183360 [syncer]
22 0 0 0 DL vlruwt 0xfffffe0058763a70 [vnlru]
21 0 0 0 DL (threaded) [bufdaemon]
100085 D qsleep 0xffffffff84181060 [bufdaemon]
100088 D - 0xffffffff83411f80 [bufspacedaemon-0]
100100 D sdflush 0xfffffe00588214e8 [/ worker]
20 0 0 0 DL psleep 0xffffffff841b9580 [vmdaemon]
19 0 0 0 DL (threaded) [pagedaemon]
100083 D psleep 0xffffffff841ad0b8 [dom0]
100089 D launds 0xffffffff841ad0c4 [laundry: dom0]
100090 D umarcl 0xffffffff81eaea40 [uma]
18 0 0 0 DL - 0xffffffff83e120a0 [rand_harvestq]
17 0 0 0 DL waiting 0xffffffff84892580 [sctp_iterator]
16 0 0 0 DL pftm 0xffffffff84d98e20 [pf purge]
15 0 0 0 DL - 0xffffffff8417c280 [soaiod4]
9 0 0 0 DL - 0xffffffff8417c280 [soaiod3]
8 0 0 0 DL - 0xffffffff8417c280 [soaiod2]
7 0 0 0 DL - 0xffffffff8417c280 [soaiod1]
6 0 0 0 DL (threaded) [cam]
100048 D - 0xffffffff83c97840 [doneq0]
100049 D - 0xffffffff83c977c0 [async]
100082 D - 0xffffffff83c97640 [scanner]
14 0 0 0 DL seqstat 0xfffffe0056abac88 [sequencer 00]
5 0 0 0 DL crypto_ 0xfffffe00541b8d80 [crypto returns 1]
4 0 0 0 DL crypto_ 0xfffffe00541b8d30 [crypto returns 0]
3 0 0 0 DL crypto_ 0xffffffff841a7160 [crypto]
13 0 0 0 DL (threaded) [geom]
100039 D - 0xffffffff8402e540 [g_event]
100040 D - 0xffffffff8402e580 [g_up]
100041 D - 0xffffffff8402e5c0 [g_down]
2 0 0 0 DL (threaded) [KTLS]
100029 D - 0xfffffe00081f6d00 [thr_0]
100030 D - 0xfffffe00081f6d80 [thr_1]
100031 D - 0xffffffff8417d608 [alloc_0]
12 0 0 0 WL (threaded) [intr]
100011 I [swi6: task queue]
100012 I [swi6: Giant taskq]
100014 I [swi5: fast taskq]
100032 I [swi1: netisr 0]
100033 I [swi3: vm]
100034 I [swi4: clock (0)]
100035 I [swi4: clock (1)]
100036 I [swi1: hpts]
100037 I [swi1: hpts]
100050 I [irq24: virtio_pci0]
100051 I [irq25: virtio_pci0]
100052 I [irq26: virtio_pci0]
100053 I [irq27: virtio_pci0]
100054 I [irq28: virtio_pci1]
100055 I [irq29: virtio_pci1]
100056 I [irq30: virtio_pci1]
100057 I [irq31: virtio_pci1]
100058 I [irq32: virtio_pci1]
100063 I [irq10: virtio_pci2]
100065 I [irq1: atkbd0]
100066 I [irq12: psm0]
100067 I [swi0: uart uart++]
100075 I [swi1: pf send]
11 0 0 0 RL (threaded) [idle]
100003 CanRun [idle: cpu0]
100004 CanRun [idle: cpu1]
1 0 1 0 SLs wait 0xfffffe0053d58538 [init]
10 0 0 0 DL audit_w 0xffffffff841a8100 [audit]
0 0 0 0 DLs (threaded) [kernel]
100000 D swapin 0xffffffff8402f440 [swapper]
100005 D - 0xfffffe00081f8900 [softirq_0]
100006 D - 0xfffffe00081f8700 [softirq_1]
100007 D - 0xfffffe00081f8500 [if_io_tqg_0]
100008 D - 0xfffffe00081f8300 [if_io_tqg_1]
100009 D - 0xfffffe00081f8100 [if_config_tqg_0]
100010 D - 0xfffffe0053df4e00 [deferred_unmount ta]
100013 D - 0xfffffe0053df4800 [thread taskq]
100015 D - 0xfffffe0053df4400 [linuxkpi_irq_wq]
100016 D - 0xfffffe0053df4200 [kqueue_ctx taskq]
100017 D - 0xfffffe0053df4000 [pci_hp taskq]
100018 D - 0xfffffe0053dfed00 [aiod_kick taskq]
100019 D - 0xfffffe0053dfeb00 [inm_free taskq]
100020 D - 0xfffffe0053dfe900 [in6m_free taskq]
100021 D - 0xfffffe0053dfe700 [linuxkpi_short_wq_0]
100022 D - 0xfffffe0053dfe700 [linuxkpi_short_wq_1]
100023 D - 0xfffffe0053dfe700 [linuxkpi_short_wq_2]
100024 D - 0xfffffe0053dfe700 [linuxkpi_short_wq_3]
100025 D - 0xfffffe0053dfe200 [linuxkpi_long_wq_0]
100026 D - 0xfffffe0053dfe200 [linuxkpi_long_wq_1]
100027 D - 0xfffffe0053dfe200 [linuxkpi_long_wq_2]
100028 D - 0xfffffe0053dfe200 [linuxkpi_long_wq_3]
100038 D - 0xfffffe0053e08200 [firmware taskq]
100042 D - 0xfffffe005418fc00 [crypto_0]
100043 D - 0xfffffe005418fc00 [crypto_1]
100059 D - 0xfffffe0056eb6b00 [vtnet0 rxq 0]
100060 D - 0xfffffe0056eb6a00 [vtnet0 txq 0]
100061 D - 0xfffffe0056eb6900 [vtnet0 rxq 1]
100062 D - 0xfffffe0056eb6800 [vtnet0 txq 1]
100064 D vtbslp 0xfffffe0056ee3400 [virtio_balloon]
100068 D - 0xfffffe0057016800 [mca taskq]
100073 D - 0xffffffff82c803a0 [deadlkres]
100077 D - 0xfffffe0057401a00 [acpi_task_0]
100078 D - 0xfffffe0057401a00 [acpi_task_1]
100079 D - 0xfffffe0057401a00 [acpi_task_2]
100081 D - 0xfffffe005418f400 [CAM taskq]
db> show all locks
Process 3430 (syz-executor.3) thread 0xfffffe00a7957900 (103998)
exclusive sleep mutex so_rcv (so_rcv) r = 0 (0xfffffe00a818ece0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:930
exclusive sleep mutex so_snd (so_snd) r = 0 (0xfffffe00a818eca0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:929
exclusive sx so_rcv_sx (so_rcv_sx) r = 0 (0xfffffe00a818ecc0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:925
exclusive sx so_snd_sx (so_snd_sx) r = 0 (0xfffffe00a818ec80) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:923
exclusive sleep mutex socket (socket) r = 0 (0xfffffe00a818eb40) locked @ /syzkaller/managers/main/kernel/sys/netinet/sctp_usrreq.c:7211
exclusive rw sctp-info (sctp-info) r = 0 (0xfffffe00081b7320) locked @ /syzkaller/managers/main/kernel/sys/netinet/sctp_usrreq.c:7204
db> show malloc
Type InUse MemUse Requests
pf_hash 5 11524K 5
devbuf 4217 4339K 4245
tcp_hpts 6 3201K 6
sysctloid 34389 2031K 34460
vtbuf 24 1968K 46
kobj 326 1304K 485
newblk 45 1035K 4070
vfscache 3 1025K 3
filedesc 114 906K 4931
pcb 243 769K 6148
inodedep 75 540K 2664
subproc 246 513K 3579
ufs_quota 1 512K 1
vfs_hash 1 512K 1
callout 2 512K 2
intr 4 472K 4
vmem 3 274K 5
acpica 1674 184K 55623
vnet_data 1 168K 1
tidhash 3 141K 3
linker 355 140K 383
pagedep 26 135K 2440
tfo_ccache 1 128K 1
sctp_stro 109 109K 1204
DEVFS1 108 108K 125
sem 4 106K 4
sctp_atcl 241 91K 4100
bus 986 80K 3488
mtx_pool 2 72K 2
BPF 38 71K 38
syncache 1 68K 1
acpitask 1 64K 1
ddb_capture 1 64K 1
module 509 64K 509
umtx 484 61K 484
kdtrace 326 60K 7432
temp 36 35K 2476
hostcache 1 32K 1
shm 1 32K 8
DEVFS3 127 32K 137
msg 4 30K 4
gtaskqueue 18 26K 18
kbdmux 6 22K 6
DEVFS_RULE 56 20K 56
ifaddr 69 20K 71
routetbl 134 19K 457
ufs_mount 4 17K 5
proc 3 17K 3
tty 16 16K 16
ithread 99 16K 99
sctp_atky 350 15K 5686
lltable 46 15K 98
bus-sc 34 15K 1693
KTRACE 100 13K 100
sctp_timw 49 13K 49
ifnet 7 13K 7
ether_multi 152 13K 162
ksem 31 12K 114
kenv 95 12K 95
eventhandler 133 12K 133
dirrem 44 11K 2553
pf_rule 6 11K 63
CAM queue 5 11K 1528
sctp_stri 20 10K 252
GEOM 61 10K 490
rman 84 10K 425
kqueue 118 10K 3444
DEVFSP 144 9K 477
in6_multi 65 9K 65
bmsafemap 3 9K 2691
UART 12 9K 12
devstat 4 9K 4
freework 33 9K 3014
rpc 2 8K 2
shmfd 1 8K 14
pfs_vncache 1 8K 1
pfs_nodes 20 8K 20
audit_evclass 237 8K 295
lockf 65 8K 608
pwddesc 116 8K 3433
taskqueue 63 7K 63
cred 25 7K 280
sglist 5 7K 5
CAM DEV 3 6K 510
plimit 24 6K 409
freefile 46 6K 2494
pf_ifnet 13 5K 42
ufs_dirhash 24 5K 24
UMA 270 5K 270
xform 68 5K 549
vt 11 5K 11
session 33 5K 47
pf_table 2 4K 15
memdesc 1 4K 1
MCA 32 4K 32
evdev 4 4K 4
kcovinfo 64 4K 68
sctp_athm 241 4K 4216
acpisem 28 4K 28
sctp_map 218 4K 2384
hhook 15 4K 17
selfd 49 4K 41018
proc-args 53 3K 666
terminal 11 3K 11
newdirblk 20 3K 2414
ip6opt 10 3K 46
select 18 3K 168
uidinfo 3 3K 38
local_apic 1 2K 1
io_apic 1 2K 1
fpukern_ctx 2 2K 2
freeblks 8 2K 2495
ipsec-saq 2 2K 2
ip6ndp 12 2K 13
pf_osfp 15 2K 15
sctp_ifa 13 2K 14
Unitno 27 2K 47
CAM XPT 22 2K 543
inpcbpolicy 48 2K 1907
in_multi 6 2K 8
ipsecpolicy 2 2K 2
acpidev 20 2K 20
msi 9 2K 9
clone 9 2K 9
tun 7 2K 7
softdep 1 1K 1
mkdir 8 1K 4828
indirdep 4 1K 419
sahead 1 1K 1
secasvar 1 1K 1
nhops 6 1K 8
vnodemarker 2 1K 76
NFSD session 1 1K 1
osd 40 1K 842
diradd 7 1K 2593
CAM periph 4 1K 271
ipsec 3 1K 3
sctp_ifn 6 1K 14
mld 6 1K 6
igmp 6 1K 6
toponodes 6 1K 6
isadev 6 1K 6
mount 16 1K 89
pci_link 10 1K 10
crypto 4 1K 75
encap_export_host 12 1K 12
procdesc 5 1K 18
pfil 4 1K 4
cdev 2 1K 2
chacha20random 1 1K 1
NFSD lckfile 1 1K 1
NFSD V4client 1 1K 1
DEVFS 9 1K 10
vnodes 1 1K 1
CAM SIM 2 1K 2
ktls 1 1K 6
feeder 7 1K 7
tcpfunc 3 1K 3
loginclass 3 1K 6
prison 6 1K 6
lkpikmalloc 5 1K 6
aesni_data 2 1K 2
nexusdev 8 1K 8
apmdev 1 1K 1
atkbddev 2 1K 2
CAM dev queue 2 1K 2
CAM I/O Scheduler 1 1K 1
CAM path 4 1K 1034
pmchooks 1 1K 1
soname 4 1K 6483
sctp_vrf 1 1K 1
vnet 1 1K 1
entropy 2 1K 41
acpiintr 1 1K 1
pmc 1 1K 1
filecaps 4 1K 109
cpus 2 1K 2
vnet_data_free 1 1K 1
Per-cpu 1 1K 1
p1003.1b 1 1K 1
pf_altq 0 0K 0
pf_temp 0 0K 0
mqdata 0 0K 0
tcp_do 0 0K 0
tcp_fsb 0 0K 229
cubic data 0 0K 0
chd data 0 0K 0
dctcp data 0 0K 5
cdg data 0 0K 0
htcp data 0 0K 4
sctp_mcore 0 0K 0
sctp_socko 0 0K 1929
sctp_iter 0 0K 14
sctp_mvrf 0 0K 0
sctp_cpal 0 0K 4
sctp_cmsg 0 0K 0
sctp_stre 0 0K 0
sctp_athi 0 0K 0
sctp_a_it 0 0K 10
sctp_aadr 0 0K 0
vegas data 0 0K 2
NFSCL diroff 0 0K 0
NEWdirectio 0 0K 0
madt_table 0 0K 2
smartpqi 0 0K 0
NEWNFSnode 0 0K 0
NFSCL lck 0 0K 0
NFSCL lckown 0 0K 0
NFSCL client 0 0K 0
NFSCL deleg 0 0K 0
NFSCL open 0 0K 0
NFSCL owner 0 0K 0
NFS fh 0 0K 0
iavf 0 0K 0
ixl 0 0K 0
NFS req 0 0K 0
NFSD usrgroup 0 0K 0
NFSD string 0 0K 0
NFSD V4lock 0 0K 0
NFSD V4state 0 0K 0
ice-resmgr 0 0K 0
ice-osdep 0 0K 0
ice 0 0K 0
axgbe 0 0K 0
NFSD srvcache 0 0K 0
msdosfs_fat 0 0K 0
msdosfs_mount 0 0K 0
msdosfs_node 0 0K 0
DEVFS4 0 0K 0
xen_intr 0 0K 0
DEVFS2 0 0K 0
gntdev 0 0K 0
xen_hvm 0 0K 0
legacydrv 0 0K 0
qpidrv 0 0K 0
privcmd_dev 0 0K 0
evtchn_dev 0 0K 0
dmar_idpgtbl 0 0K 0
dmar_dom 0 0K 0
dmar_ctx 0 0K 0
xenstore 0 0K 0
ciss_data 0 0K 0
BACKLIGHT 0 0K 0
isci 0 0K 0
iommu_dmamap 0 0K 0
xnb 0 0K 0
hyperv_socket 0 0K 0
bxe_ilt 0 0K 0
xbbd 0 0K 0
xenbus 0 0K 0
xbd 0 0K 0
Balloon 0 0K 0
sysmouse 0 0K 0
vm_fictitious 0 0K 0
vtfont 0 0K 0
ath_hal 0 0K 0
athdev 0 0K 0
ata_pci 0 0K 0
ata_dma 0 0K 0
ata_generic 0 0K 0
amr 0 0K 0
pvscsi 0 0K 0
scsi_da 0 0K 69
UMAHash 0 0K 0
ata_da 0 0K 0
vm_pgdata 0 0K 0
jblocks 0 0K 0
savedino 0 0K 1879
sentinel 0 0K 0
jfsync 0 0K 0
jtrunc 0 0K 0
sbdep 0 0K 36
jsegdep 0 0K 0
jseg 0 0K 0
jfreefrag 0 0K 0
jfreeblk 0 0K 0
jnewblk 0 0K 0
jmvref 0 0K 0
jremref 0 0K 0
jaddref 0 0K 0
freedep 0 0K 0
freefrag 0 0K 2
allocindir 0 0K 0
allocdirect 0 0K 0
ufs_trim 0 0K 0
mactemp 0 0K 0
audit_trigger 0 0K 0
audit_pipe_presel 0 0K 0
audit_pipeent 0 0K 0
audit_pipe 0 0K 0
audit_evname 0 0K 0
audit_bsm 0 0K 0
audit_gidset 0 0K 0
audit_text 0 0K 0
audit_path 0 0K 0
audit_data 0 0K 0
audit_cred 0 0K 0
scsi_ch 0 0K 0
scsi_cd 0 0K 0
AHCI driver 0 0K 0
USBdev 0 0K 0
USB 0 0K 0
agp 0 0K 0
nvme_da 0 0K 0
ktls_ocf 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5E_TLS 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EN 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5DUMP 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
seq_file 0 0K 0
radix 0 0K 0
idr 0 0K 0
lkpifw 0 0K 0
NLM 0 0K 0
ipsec-spdcache 0 0K 0
ipsec-reg 0 0K 0
ipsec-misc 0 0K 0
ipsecrequest 0 0K 0
ip6_msource 0 0K 0
ip6_moptions 0 0K 4
in6_mfilter 0 0K 0
frag6 0 0K 0
tcplog 0 0K 0
tcp_hwpace 0 0K 0
acpipwr 0 0K 0
acpi_perf 0 0K 0
LRO 0 0K 0
newreno data 0 0K 0
ip_msource 0 0K 0
ip_moptions 0 0K 0
in_mfilter 0 0K 0
ipid 0 0K 0
80211scan 0 0K 0
80211ratectl 0 0K 0
80211power 0 0K 0
80211nodeie 0 0K 0
80211node 0 0K 0
80211mesh_gt 0 0K 0
80211mesh_rt 0 0K 0
80211perr 0 0K 0
80211prep 0 0K 0
80211preq 0 0K 0
80211dfs 0 0K 0
80211crypto 0 0K 0
80211vap 0 0K 0
iflib 0 0K 0
vlan 0 0K 0
gif 0 0K 0
ifdescr 0 0K 0
zlib 0 0K 0
fadvise 0 0K 0
VN POLL 0 0K 0
twsbuf 0 0K 0
statfs 0 0K 2593
namei_tracker 0 0K 0
export_host 0 0K 0
cl_savebuf 0 0K 2
twe_commands 0 0K 0
twa_commands 0 0K 0
tcp_log_dev 0 0K 95
midi buffers 0 0K 0
mixer 0 0K 0
ac97 0 0K 0
hdacc 0 0K 0
hdac 0 0K 0
hdaa 0 0K 0
acpicmbat 0 0K 0
SIIS driver 0 0K 0
CAM CCB 0 0K 523
PUC 0 0K 0
ppbusdev 0 0K 0
agtiapi_MemAlloc malloc 0 0K 0
biobuf 0 0K 0
aios 0 0K 0
lio 0 0K 0
acl 0 0K 0
osti_cacheable 0 0K 0
mbuf_tag 0 0K 125
tempbuff 0 0K 0
tempbuff 0 0K 0
ag_tgt_map_t malloc 0 0K 0
ag_slr_map_t malloc 0 0K 0
lDevFlags * malloc 0 0K 0
tiDeviceHandle_t * malloc 0 0K 0
ag_portal_data_t malloc 0 0K 0
ag_device_t malloc 0 0K 0
STLock malloc 0 0K 0
CCB List 0 0K 0
sr_iov 0 0K 0
OCS 0 0K 0
OCS 0 0K 0
nvme 0 0K 0
nvd 0 0K 0
netmap 0 0K 0
mwldev 0 0K 0
MVS driver 0 0K 0
CAM ccb queue 0 0K 0
mrsasbuf 0 0K 0
mpt_user 0 0K 0
mps_user 0 0K 0
accf 0 0K 0
pts 0 0K 0
iov 0 0K 17334
ioctlops 0 0K 603
eventfd 0 0K 0
Witness 0 0K 0
stack 0 0K 0
MPSSAS 0 0K 0
mps 0 0K 0
mpr_user 0 0K 0
MPRSAS 0 0K 0
mpr 0 0K 0
mfibuf 0 0K 0
sbuf 0 0K 288
md_sectors 0 0K 0
firmware 0 0K 0
compressor 0 0K 0
md_disk 0 0K 0
SWAP 0 0K 0
malodev 0 0K 0
LED 0 0K 0
sysctltmp 0 0K 765
sysctl 0 0K 3
ekcd 0 0K 0
dumper 0 0K 0
sendfile 0 0K 0
rctl 0 0K 0
ix_sriov 0 0K 0
aacraidcam 0 0K 0
aacraid_buf 0 0K 0
ix 0 0K 0
ipsbuf 0 0K 0
cache 0 0K 0
iirbuf 0 0K 0
prison_racct 0 0K 0
Fail Points 0 0K 0
sigio 0 0K 1
filedesc_to_leader 0 0K 0
pwd 0 0K 0
tty console 0 0K 0
aaccam 0 0K 0
aacbuf 0 0K 0
zstd 0 0K 0
XZ_DEC 0 0K 0
nvlist 0 0K 0
SCSI ENC 0 0K 0
SCSI sa 0 0K 0
scsi_pass 0 0K 0
isofs_node 0 0K 0
isofs_mount 0 0K 0
tr_raid5_data 0 0K 0
tr_raid1e_data 0 0K 0
tr_raid1_data 0 0K 0
tr_raid0_data 0 0K 0
tr_concat_data 0 0K 0
md_sii_data 0 0K 0
md_promise_data 0 0K 0
md_nvidia_data 0 0K 0
md_jmicron_data 0 0K 0
md_intel_data 0 0K 0
md_ddf_data 0 0K 0
raid_data 0 0K 72
geom_flashmap 0 0K 0
tmpfs dir 0 0K 0
tmpfs name 0 0K 0
tmpfs mount 0 0K 0
NFS FHA 0 0K 0
newnfsmnt 0 0K 0
newnfsclient_req 0 0K 0
NFSCL layrecall 0 0K 0
NFSCL session 0 0K 0
NFSCL sockreq 0 0K 0
NFSCL devinfo 0 0K 0
NFSCL flayout 0 0K 0
NFSCL layout 0 0K 0
NFSD rollback 0 0K 0
db> show uma
Zone Size Used Free Requests Sleeps Bucket Total Mem XFree
mbuf_jumbo_page 4096 8323 986 37771 0 254 38129664 0
tcp_log 416 0 14895 238536 0 254 6196320 0
pbuf 2624 0 957 0 0 2 2511168 0
mbuf 256 8920 665 460331 0 254 2453760 0
ertt_txseginfo 40 41634 10987 272685 0 254 2104840 0
malloc-4096 4096 444 3 4024 0 2 1830912 0
malloc-384 384 4243 327 6867 0 30 1754880 0
BUF TRIE 144 194 11566 1772 0 62 1693440 0
malloc-128 128 11642 45 12354 0 126 1495936 0
mbuf_cluster 2048 690 2 690 0 254 1417216 0
UMA Slabs 0 112 10787 10 10787 0 126 1209264 0
RADIX NODE 144 7485 182 86309 0 62 1104048 0
vmem btag 56 19518 113 19518 0 254 1099336 0
malloc-16384 16384 56 5 2463 0 1 999424 0
tcp_bbr_map 128 1329 4468 90097 0 126 742016 0
FFS inode 1160 572 30 3066 0 8 698320 0
VM OBJECT 264 1919 61 51807 0 30 522720 0
256 Bucket 2048 235 17 15468 0 8 516096 0
THREAD 1808 209 33 3998 0 8 437536 0
MAP ENTRY 96 4274 262 196699 0 126 435456 0
malloc-65536 65536 6 0 6 0 1 393216 0
lkpimm 168 1 2327 1 0 62 391104 0
lkpicurr 168 2 2326 2 0 62 391104 0
VNODE 448 610 65 3106 0 30 302400 0
malloc-64 64 4602 60 11640 0 254 298368 0
sctp_asoc 2288 109 21 1192 0 254 297440 0
malloc-32768 32768 1 7 61 0 1 262144 0
malloc-256 256 474 546 11836 0 62 261120 0
malloc-2048 2048 110 16 2749 0 8 258048 0
VMSPACE 2544 89 7 3407 0 4 244224 0
malloc-16 16 14443 307 17897 0 254 236000 0
DEVCTL 1024 11 209 153 0 0 225280 0
malloc-65536 65536 1 2 183 0 1 196608 0
malloc-65536 65536 1 2 137 0 1 196608 0
malloc-32768 32768 0 6 230 0 1 196608 0
UMA Zones 768 242 2 242 0 16 187392 0
malloc-32 32 5598 198 6398 0 254 185472 0
mbuf_packet 256 154 536 10824 0 254 176640 0
PROC 1336 115 14 3432 0 8 172344 0
sctp_ep 1272 112 23 2741 0 254 171720 0
malloc-128 128 1209 62 30791 0 126 162688 0
malloc-128 128 1218 22 5625 0 126 158720 0
FFS2 dinode 256 572 28 3066 0 62 153600 0
filedesc0 1072 116 17 3433 0 8 142576 0
malloc-1024 1024 133 3 150 0 16 139264 0
S VFS Cache 104 1012 314 3622 0 126 137904 0
malloc-1024 1024 110 22 1193 0 16 135168 0
socket 960 73 67 6041 0 254 134400 0
malloc-65536 65536 0 2 45 0 1 131072 0
malloc-256 256 46 464 1975 0 62 130560 0
malloc-384 384 274 56 4185 0 30 126720 0
clpbuf 2624 0 48 70 0 16 125952 0
malloc-256 256 107 358 5216 0 62 119040 0
ksiginfo 112 114 930 629 0 126 116928 0
128 Bucket 1024 83 28 1741 0 16 113664 0
malloc-32768 32768 1 2 131 0 1 98304 0
sctp_raddr 736 109 23 1510 0 254 97152 0
malloc-8192 8192 9 2 110 0 1 90112 0
g_bio 408 0 220 14356 0 30 89760 0
UMA Kegs 384 227 6 227 0 30 89472 0
malloc-8192 8192 8 2 10 0 1 81920 0
malloc-256 256 200 100 8554 0 62 76800 0
malloc-4096 4096 17 0 17 0 2 69632 0
tcpcb 1080 36 27 831 0 254 68040 0
malloc-65536 65536 1 0 1 0 1 65536 0
malloc-4096 4096 14 2 27 0 2 65536 0
malloc-2048 2048 13 17 660 0 8 61440 0
tcp_inpcb 496 38 82 831 0 254 59520 0
malloc-128 128 79 386 2726 0 126 59520 0
malloc-8192 8192 4 3 32 0 1 57344 0
64 Bucket 512 90 22 4115 0 30 57344 0
malloc-384 384 137 3 242 0 30 53760 0
32 Bucket 256 66 129 7847 0 62 49920 0
malloc-16384 16384 3 0 3 0 1 49152 0
malloc-16384 16384 1 2 161 0 1 49152 0
malloc-2048 2048 2 22 575 0 8 49152 0
malloc-1024 1024 10 34 1776 0 16 45056 0
tcp_bbr_pcb 832 32 22 425 0 16 44928 0
malloc-64 64 517 176 1647 0 254 44352 0
malloc-4096 4096 8 2 10 0 2 40960 0
pcpu-8 8 4796 324 5734 0 254 40960 0
Files 80 381 119 16927 0 126 40000 0
da_ccb 544 0 70 3705 0 16 38080 0
TURNSTILE 136 243 30 243 0 62 37128 0
DIRHASH 1024 34 2 34 0 16 36864 0
NAMEI 1024 0 36 25754 0 16 36864 0
malloc-256 256 112 23 662 0 62 34560 0
pipe 744 23 22 563 0 16 33480 0
malloc-32768 32768 1 0 1 0 1 32768 0
malloc-16384 16384 2 0 17 0 1 32768 0
pcpu-64 64 487 25 487 0 254 32768 0
malloc-64 64 159 345 4045 0 254 32256 0
malloc-128 128 61 187 334 0 126 31744 0
malloc-256 256 65 55 643 0 62 30720 0
malloc-4096 4096 3 4 3228 0 2 28672 0
KNOTE 160 28 147 23033 0 62 28000 0
SLEEPQUEUE 88 243 45 243 0 126 25344 0
malloc-4096 4096 4 2 7 0 2 24576 0
malloc-64 64 292 86 1243 0 254 24192 0
16 Bucket 144 64 104 478 0 62 24192 0
ttyinq 160 135 15 300 0 62 24000 0
udplite_inpcb 496 0 48 811 0 254 23808 0
malloc-128 128 93 93 2936 0 126 23808 0
sctp_chunk 152 113 43 555 0 254 23712 0
ttyoutq 256 72 18 160 0 62 23040 0
malloc-384 384 56 4 58 0 30 23040 0
malloc-2048 2048 2 8 282 0 8 20480 0
malloc-2048 2048 5 5 18 0 8 20480 0
malloc-2048 2048 8 2 55 0 8 20480 0
PWD 32 67 563 2495 0 254 20160 0
malloc-64 64 238 77 609 0 254 20160 0
Mountpoints 2752 2 5 2 0 4 19264 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-1024 1024 8 8 25 0 16 16384 0
malloc-512 512 20 12 252 0 30 16384 0
malloc-64 64 188 64 1513 0 254 16128 0
malloc-32 32 88 416 1833 0 254 16128 0
malloc-32 32 256 248 4173 0 254 16128 0
malloc-32 32 169 335 8203 0 254 16128 0
vtnet_tx_hdr 24 0 668 141815 0 254 16032 0
8 Bucket 80 45 155 1367 0 126 16000 0
malloc-128 128 71 53 2686 0 126 15872 0
malloc-128 128 53 71 346 0 126 15872 0
itimer 352 0 44 102 0 30 15488 0
unpcb 256 20 40 1358 0 254 15360 0
malloc-384 384 22 18 362 0 30 15360 0
malloc-256 256 29 31 364 0 62 15360 0
tcp_rack_pcb 832 0 18 229 0 16 14976 0
malloc-2048 2048 3 3 194 0 8 12288 0
malloc-1024 1024 8 4 191 0 16 12288 0
malloc-1024 1024 7 5 15 0 16 12288 0
malloc-512 512 10 14 21 0 30 12288 0
malloc-512 512 5 19 138 0 30 12288 0
malloc-64 64 96 93 57075 0 254 12096 0
udp_inpcb 496 6 18 218 0 254 11904 0
kenv 258 15 30 1046 0 30 11610 0
routing nhops 256 27 18 34 0 62 11520 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-2048 2048 2 2 4 0 8 8192 0
malloc-1024 1024 2 6 31 0 16 8192 0
malloc-1024 1024 1 7 21 0 16 8192 0
malloc-512 512 0 16 131 0 30 8192 0
malloc-512 512 8 8 8 0 30 8192 0
rtentry 176 30 16 34 0 62 8096 0
tcptw 88 2 90 6 0 254 8096 0
PGRP 88 33 59 64 0 126 8096 0
rl_entry 40 92 110 92 0 254 8080 0
sctp_stream_msg_out 112 35 37 234 0 254 8064 0
sctp_laddr 48 60 108 1427 0 254 8064 0
tcp_rack_map 112 0 72 362 0 126 8064 0
udpcb 32 6 246 1029 0 254 8064 0
ktls_session 192 5 37 5 0 62 8064 0
ertt 72 36 76 831 0 126 8064 0
malloc-64 64 59 67 450 0 254 8064 0
malloc-32 32 122 130 315 0 254 8064 0
malloc-32 32 56 196 112 0 254 8064 0
malloc-32 32 53 199 290 0 254 8064 0
malloc-32 32 17 235 132 0 254 8064 0
4 Bucket 48 5 163 122 0 254 8064 0
2 Bucket 32 60 192 944 0 254 8064 0
malloc-16 16 0 500 7 0 254 8000 0
malloc-16 16 25 475 725 0 254 8000 0
malloc-16 16 57 443 2089 0 254 8000 0
malloc-16 16 287 213 5144 0 254 8000 0
malloc-16 16 39 461 212 0 254 8000 0
malloc-16 16 289 211 25550 0 254 8000 0
malloc-16 16 4 496 1402 0 254 8000 0
ripcb 496 4 12 47 0 254 7936 0
sctp_readq 152 0 52 119 0 254 7904 0
AIO 208 0 38 31 0 62 7904 0
cryptop 280 0 28 18 0 30 7840 0
AIOCB 552 0 14 24 0 16 7728 0
malloc-256 256 13 17 877 0 62 7680 0
FPU_save_area 832 1 8 1 0 16 7488 0
cpuset 104 8 54 8 0 126 6448 0
epoch_record pcpu 256 4 12 4 0 62 4096 0
malloc-4096 4096 0 1 1 0 2 4096 0
malloc-4096 4096 0 1 3 0 2 4096 0
malloc-512 512 0 8 1 0 30 4096 0
malloc-512 512 5 3 5 0 30 4096 0
malloc-512 512 0 8 1 0 30 4096 0
pcpu-16 16 7 249 7 0 254 4096 0
hostcache 64 2 61 2 0 254 4032 0
syncache 168 0 24 4 0 254 4032 0
AIOP 32 4 122 4 0 254 4032 0
UMA Slabs 1 176 9 13 9 0 62 3872 0
malloc-384 384 0 10 1 0 30 3840 0
malloc-384 384 2 8 2 0 30 3840 0
malloc-384 384 1 9 1 0 30 3840 0
mqnode 416 3 6 3 0 30 3744 0
KMAP ENTRY 96 12 27 14 0 0 3744 0
vmem 1856 1 1 1 0 8 3712 0
SMR CPU 32

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

syzbot

unread,
Sep 8, 2021, 9:21:37 AM9/8/21
to syzkaller-f...@googlegroups.com
syzbot has found a reproducer for the following issue on:

HEAD commit: 4ccbbe5f0689 top(1): indicate how to reset grep string
git tree: https://github.com/freebsd/freebsd-src.git main
console output: https://syzkaller.appspot.com/x/log.txt?x=12b355cd300000
dashboard link: https://syzkaller.appspot.com/bug?extid=a1b6cef257ad145b7187
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=10933eb5300000

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+a1b6ce...@syzkaller.appspotmail.com

panic: __rw_wlock_hard: recursing but non-recursive rw sctp-info @ /syzkaller/managers/main/kernel/sys/netinet/sctp_pcb.c:1856

cpuid = 0
time = 1631107114
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0xc7/frame 0xfffffe009bedc1f0
kdb_backtrace() at kdb_backtrace+0xd3/frame 0xfffffe009bedc350
vpanic() at vpanic+0x2c5/frame 0xfffffe009bedc430
panic() at panic+0xb5/frame 0xfffffe009bedc4f0
__rw_wlock_hard() at __rw_wlock_hard+0x119e/frame 0xfffffe009bedc650
_rw_wlock_cookie() at _rw_wlock_cookie+0x1d4/frame 0xfffffe009bedc720
sctp_swap_inpcb_for_listen() at sctp_swap_inpcb_for_listen+0xf8/frame 0xfffffe009bedc7b0
sctp_listen() at sctp_listen+0x614/frame 0xfffffe009bedc8e0
solisten() at solisten+0xd2/frame 0xfffffe009bedc930
kern_listen() at kern_listen+0x158/frame 0xfffffe009bedc9f0
amd64_syscall() at amd64_syscall+0x425/frame 0xfffffe009bedcbf0
fast_syscall_common() at fast_syscall_common+0xf8/frame 0xfffffe009bedcbf0
--- syscall (198, FreeBSD ELF64, nosys), rip = 0x289eea, rsp = 0x7fffffffe2f8, rbp = 0x7fffffffe360 ---
KDB: enter: panic
[ thread pid 816 tid 100111 ]
Stopped at kdb_enter+0x6b: movq $0,0x28e217a(%rip)
db>
db> set $lines = 0
db> set $maxwidth = 0
db> show registers
cs 0x20
ds 0x3b
es 0x3b
fs 0x13
gs 0x1b
ss 0x28
rax 0x12
rcx 0x4cb90cf232881498
rdx 0xdffff7c000000000
rbx 0
rsp 0xfffffe009bedc330
rbp 0xfffffe009bedc350
rsi 0x1
rdi 0xffffffff8408b740 cov_trace_pc
r8 0x3
r9 0xfffffe009bedbe68
r10 0
r11 0xfffffe009e4506f0
r12 0xfffffe009e4501e0
r13 0xfffffe009bedc301
r14 0xffffffff82c79420 .str.18
r15 0xffffffff82c79420 .str.18
rip 0xffffffff817abf3b kdb_enter+0x6b
rflags 0x46
kdb_enter+0x6b: movq $0,0x28e217a(%rip)
db> show proc
Process 816 (syz-executor.0) at 0xfffffe009e441000:
state: NORMAL
uid: 0 gids: 0, 0, 5
parent: pid 787 at 0xfffffe0058936538
ABI: FreeBSD ELF64
flag: 0x10000000 flag2: 0
arguments: /root/syz-executor.0
reaper: 0xfffffe0053d58538 reapsubtree: 1
sigparent: 20
vmspace: 0xfffffe009e9f53e0
(map 0xfffffe009e9f53e0)
(map.pmap 0xfffffe009e9f54a0)
(pmap 0xfffffe009e9f5500)
threads: 1
100111 Run CPU 0 syz-executor.0
db> ps
pid ppid pgrp uid state wmesg wchan cmd
817 796 436 0 R CPU 1 sh
816 787 787 0 R CPU 0 syz-executor.0
796 790 436 0 S piperd 0xfffffe009e9dc5d0 sh
790 436 436 0 S wait 0xfffffe009e517538 sh
787 785 787 0 Rs syz-executor.0
785 783 783 0 S (threaded) syz-execprog
100102 S uwait 0xfffffe0057015000 syz-execprog
100122 S uwait 0xfffffe005876b000 syz-execprog
100123 S uwait 0xfffffe005876b100 syz-execprog
100124 S kqread 0xfffffe005886e500 syz-execprog
100125 S uwait 0xfffffe005876b600 syz-execprog
100126 S uwait 0xfffffe00588c2c00 syz-execprog
100127 S uwait 0xfffffe00588c2200 syz-execprog
100128 S uwait 0xfffffe0057015a00 syz-execprog
100129 S uwait 0xfffffe005876b480 syz-execprog
783 781 783 0 Ss pause 0xfffffe00587630b0 csh
781 694 781 0 Ss select 0xfffffe009e9d6ec0 sshd
760 1 760 0 Ss+ ttyin 0xfffffe0057003cb0 getty
759 1 759 0 Ss+ ttyin 0xfffffe00575f14b0 getty
758 1 758 0 Ss+ ttyin 0xfffffe00575f1cb0 getty
757 1 757 0 Ss+ ttyin 0xfffffe00583f44b0 getty
756 1 756 0 Ss+ ttyin 0xfffffe00583f4cb0 getty
755 1 755 0 Ss+ ttyin 0xfffffe00583f04b0 getty
754 1 754 0 Ss+ ttyin 0xfffffe00583f0cb0 getty
753 1 753 0 Ss+ ttyin 0xfffffe005839b4b0 getty
752 1 752 0 Ss+ ttyin 0xfffffe005839bcb0 getty
750 1 24 0 S+ piperd 0xfffffe00588b05d0 logger
749 748 24 0 S+ nanslp 0xffffffff8405af81 sleep
748 1 24 0 S+ wait 0xfffffe0058936a70 sh
698 1 698 0 Ss nanslp 0xffffffff8405af81 cron
694 1 694 0 Ss select 0xfffffe005740b4c0 sshd
507 1 507 0 Ss select 0xfffffe0058af2640 syslogd
436 1 436 0 Ss wait 0xfffffe0058936000 devd
435 1 435 65 Ss select 0xfffffe0058af29c0 dhclient
350 1 350 0 Ss select 0xfffffe005740b7c0 dhclient
347 1 347 0 Ss select 0xfffffe0058af2940 dhclient
23 0 0 0 DL syncer 0xffffffff84183360 [syncer]
22 0 0 0 DL vlruwt 0xfffffe0058763a70 [vnlru]
21 0 0 0 DL (threaded) [bufdaemon]
100085 D qsleep 0xffffffff84181060 [bufdaemon]
100088 D - 0xffffffff83411f80 [bufspacedaemon-0]
100101 D sdflush 0xfffffe00588284e8 [/ worker]
20 0 0 0 DL psleep 0xffffffff841b9580 [vmdaemon]
19 0 0 0 DL (threaded) [pagedaemon]
100083 D psleep 0xffffffff841ad0b8 [dom0]
100089 D launds 0xffffffff841ad0c4 [laundry: dom0]
100090 D umarcl 0xffffffff81eaea40 [uma]
18 0 0 0 DL - 0xffffffff83e120a0 [rand_harvestq]
17 0 0 0 DL waiting 0xffffffff84cc7580 [sctp_iterator]
16 0 0 0 DL pftm 0xffffffff849ade20 [pf purge]
Process 817 (sh) thread 0xfffffe0058766e40 (100108)
shared sx vm map (user) (vm map (user)) r = 0 (0xfffffe009e54e440) locked @ /syzkaller/managers/main/kernel/sys/vm/vm_map.c:4935
Process 816 (syz-executor.0) thread 0xfffffe009e4501e0 (100111)
exclusive sleep mutex so_rcv (so_rcv) r = 0 (0xfffffe0058928ce0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:930
exclusive sleep mutex so_snd (so_snd) r = 0 (0xfffffe0058928ca0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:929
exclusive sx so_rcv_sx (so_rcv_sx) r = 0 (0xfffffe0058928cc0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:925
exclusive sx so_snd_sx (so_snd_sx) r = 0 (0xfffffe0058928c80) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:923
exclusive sleep mutex socket (socket) r = 0 (0xfffffe0058928b40) locked @ /syzkaller/managers/main/kernel/sys/netinet/sctp_usrreq.c:7211
exclusive rw sctp-info (sctp-info) r = 0 (0xfffffe00081ba7e8) locked @ /syzkaller/managers/main/kernel/sys/netinet/sctp_usrreq.c:7204
db> show malloc
Type InUse MemUse Requests
pf_hash 5 11524K 5
devbuf 4217 4339K 4242
tcp_hpts 6 3201K 6
sysctloid 34389 2031K 34460
vtbuf 24 1968K 46
kobj 326 1304K 485
newblk 586 1171K 600
vfscache 3 1025K 3
pcb 27 541K 83
inodedep 55 533K 77
ufs_quota 1 512K 1
vfs_hash 1 512K 1
callout 2 512K 2
intr 4 472K 4
subproc 109 226K 876
acpica 1674 184K 55623
vnet_data 1 168K 1
vmem 3 146K 4
tidhash 3 141K 3
linker 355 140K 383
pagedep 17 132K 21
tfo_ccache 1 128K 1
sem 4 106K 4
DEVFS1 105 105K 116
bus 986 80K 3488
mtx_pool 2 72K 2
syncache 1 68K 1
acpitask 1 64K 1
ddb_capture 1 64K 1
module 509 64K 509
kdtrace 183 37K 950
filedesc 5 37K 17
umtx 286 36K 286
temp 23 33K 1718
hostcache 1 32K 1
shm 1 32K 1
DEVFS3 124 31K 134
msg 4 30K 4
gtaskqueue 18 26K 18
kbdmux 6 22K 6
DEVFS_RULE 56 20K 56
BPF 11 18K 11
ufs_mount 4 17K 5
proc 3 17K 3
tty 16 16K 16
ithread 99 16K 99
bus-sc 34 15K 1693
ifaddr 39 13K 41
KTRACE 100 13K 100
kenv 95 12K 95
eventhandler 133 12K 133
routetbl 62 11K 222
CAM queue 5 11K 1528
GEOM 61 10K 490
rman 84 10K 425
bmsafemap 2 9K 44
UART 12 9K 12
devstat 4 9K 4
ksem 1 8K 1
rpc 2 8K 2
shmfd 1 8K 1
pfs_vncache 1 8K 1
pfs_nodes 20 8K 20
audit_evclass 237 8K 295
taskqueue 63 7K 63
ifnet 4 7K 4
sglist 5 7K 5
CAM DEV 3 6K 510
cred 23 6K 234
lltable 19 6K 19
kqueue 53 6K 822
ether_multi 68 6K 78
ufs_dirhash 24 5K 24
plimit 18 5K 329
UMA 270 5K 270
in6_multi 35 5K 35
dirrem 17 5K 28
vt 11 5K 11
memdesc 1 4K 1
MCA 32 4K 32
evdev 4 4K 4
diradd 31 4K 42
pf_ifnet 7 4K 10
acpisem 28 4K 28
hhook 15 4K 17
pwddesc 51 4K 818
terminal 11 3K 11
session 21 3K 32
uidinfo 3 3K 8
proc-args 42 3K 516
local_apic 1 2K 1
io_apic 1 2K 1
fpukern_ctx 2 2K 2
ipsec-saq 2 2K 2
Unitno 27 2K 41
CAM XPT 22 2K 543
lockf 15 2K 22
selfd 24 2K 9419
mkdir 10 2K 22
ipsecpolicy 2 2K 2
acpidev 20 2K 20
msi 9 2K 9
clone 9 2K 9
softdep 1 1K 1
indirdep 4 1K 4
sahead 1 1K 1
secasvar 1 1K 1
vnodemarker 2 1K 8
NFSD session 1 1K 1
ip6ndp 6 1K 7
sctp_ifa 7 1K 8
newdirblk 7 1K 11
CAM periph 4 1K 271
select 7 1K 29
ipsec 3 1K 3
sctp_atcl 2 1K 2
in_multi 3 1K 5
nhops 6 1K 6
toponodes 6 1K 6
isadev 6 1K 6
mount 16 1K 89
pci_link 10 1K 10
crypto 4 1K 4
encap_export_host 12 1K 12
pfil 4 1K 4
cdev 2 1K 2
sctp_ifn 3 1K 8
mld 3 1K 3
igmp 3 1K 3
chacha20random 1 1K 1
osd 7 1K 18
tun 4 1K 4
DEVFSP 5 1K 10
inpcbpolicy 10 1K 153
NFSD lckfile 1 1K 1
NFSD V4client 1 1K 1
DEVFS 9 1K 10
vnodes 1 1K 1
CAM SIM 2 1K 2
ktls 1 1K 1
feeder 7 1K 7
tcpfunc 3 1K 3
loginclass 3 1K 7
prison 6 1K 6
lkpikmalloc 5 1K 6
aesni_data 2 1K 2
nexusdev 8 1K 8
apmdev 1 1K 1
atkbddev 2 1K 2
CAM dev queue 2 1K 2
xform 2 1K 49
CAM I/O Scheduler 1 1K 1
CAM path 4 1K 1034
procdesc 1 1K 6
pmchooks 1 1K 1
soname 4 1K 3482
filecaps 4 1K 66
sctp_vrf 1 1K 1
sctp_atky 2 1K 2
vnet 1 1K 1
entropy 2 1K 38
acpiintr 1 1K 1
pmc 1 1K 1
sctp_athm 2 1K 2
cpus 2 1K 2
vnet_data_free 1 1K 1
Per-cpu 1 1K 1
freework 1 1K 26
p1003.1b 1 1K 1
mqdata 0 0K 0
vegas data 0 0K 0
sctp_mcore 0 0K 0
sctp_socko 0 0K 2
sctp_iter 0 0K 6
sctp_mvrf 0 0K 0
sctp_timw 0 0K 0
sctp_cpal 0 0K 0
sctp_cmsg 0 0K 0
sctp_stre 0 0K 0
sctp_athi 0 0K 0
sctp_a_it 0 0K 6
sctp_aadr 0 0K 0
sctp_stro 0 0K 0
sctp_stri 0 0K 0
sctp_map 0 0K 0
cdg data 0 0K 0
cubic data 0 0K 0
pf_table 0 0K 0
pf_rule 0 0K 0
pf_altq 0 0K 0
pf_osfp 0 0K 0
pf_temp 0 0K 0
tcp_do 0 0K 0
tcp_fsb 0 0K 0
htcp data 0 0K 0
dctcp data 0 0K 0
chd data 0 0K 0
savedino 0 0K 15
sentinel 0 0K 0
jfsync 0 0K 0
jtrunc 0 0K 0
sbdep 0 0K 2
jsegdep 0 0K 0
jseg 0 0K 0
jfreefrag 0 0K 0
jfreeblk 0 0K 0
jnewblk 0 0K 0
jmvref 0 0K 0
jremref 0 0K 0
jaddref 0 0K 0
freedep 0 0K 0
freefile 0 0K 9
freeblks 0 0K 25
freefrag 0 0K 1
ip6opt 0 0K 3
ip6_msource 0 0K 0
ip6_moptions 0 0K 0
statfs 0 0K 195
namei_tracker 0 0K 0
export_host 0 0K 0
cl_savebuf 0 0K 2
twe_commands 0 0K 0
twa_commands 0 0K 0
tcp_log_dev 0 0K 0
midi buffers 0 0K 0
mixer 0 0K 0
ac97 0 0K 0
hdacc 0 0K 0
hdac 0 0K 0
hdaa 0 0K 0
acpicmbat 0 0K 0
SIIS driver 0 0K 0
CAM CCB 0 0K 523
PUC 0 0K 0
ppbusdev 0 0K 0
agtiapi_MemAlloc malloc 0 0K 0
biobuf 0 0K 0
aios 0 0K 0
lio 0 0K 0
acl 0 0K 0
osti_cacheable 0 0K 0
mbuf_tag 0 0K 44
tempbuff 0 0K 0
tempbuff 0 0K 0
ag_tgt_map_t malloc 0 0K 0
ag_slr_map_t malloc 0 0K 0
lDevFlags * malloc 0 0K 0
tiDeviceHandle_t * malloc 0 0K 0
ag_portal_data_t malloc 0 0K 0
ag_device_t malloc 0 0K 0
STLock malloc 0 0K 0
CCB List 0 0K 0
sr_iov 0 0K 0
OCS 0 0K 0
OCS 0 0K 0
nvme 0 0K 0
nvd 0 0K 0
netmap 0 0K 0
mwldev 0 0K 0
MVS driver 0 0K 0
CAM ccb queue 0 0K 0
mrsasbuf 0 0K 0
mpt_user 0 0K 0
mps_user 0 0K 0
accf 0 0K 0
pts 0 0K 0
iov 0 0K 13873
ioctlops 0 0K 89
eventfd 0 0K 0
Witness 0 0K 0
stack 0 0K 0
MPSSAS 0 0K 0
mps 0 0K 0
mpr_user 0 0K 0
MPRSAS 0 0K 0
mpr 0 0K 0
mfibuf 0 0K 0
sbuf 0 0K 288
md_sectors 0 0K 0
firmware 0 0K 0
compressor 0 0K 0
md_disk 0 0K 0
SWAP 0 0K 0
malodev 0 0K 0
LED 0 0K 0
sysctltmp 0 0K 666
sysctl 0 0K 3
ekcd 0 0K 0
dumper 0 0K 0
sendfile 0 0K 0
rctl 0 0K 0
ix_sriov 0 0K 0
aacraidcam 0 0K 0
aacraid_buf 0 0K 0
ix 0 0K 0
ipsbuf 0 0K 0
cache 0 0K 0
iirbuf 0 0K 0
kcovinfo 0 0K 0
mbuf_jumbo_page 4096 8320 996 13617 0 254 38158336 0
pbuf 2624 0 989 0 0 2 2595136 0
mbuf 256 8581 989 16426 0 254 2449920 0
BUF TRIE 144 176 11584 443 0 62 1693440 0
malloc-384 384 4223 17 4246 0 30 1628160 0
malloc-4096 4096 378 3 1304 0 2 1560576 0
malloc-128 128 11560 34 11628 0 126 1484032 0
UMA Slabs 0 112 10116 33 10116 0 126 1136688 0
vmem btag 56 15421 106 15421 0 254 869512 0
FFS inode 1160 505 13 514 0 8 600880 0
RADIX NODE 144 3190 165 22200 0 62 483120 0
malloc-65536 65536 6 0 6 0 1 393216 0
lkpimm 168 1 2327 1 0 62 391104 0
lkpicurr 168 2 2326 2 0 62 391104 0
malloc-64 64 4401 135 6133 0 254 290304 0
VM OBJECT 264 966 39 13242 0 30 265320 0
THREAD 1808 131 12 131 0 8 258544 0
256 Bucket 2048 108 14 10810 0 8 249856 0
VNODE 448 537 12 548 0 30 245952 0
malloc-256 256 933 12 1751 0 62 241920 0
malloc-16 16 14225 275 15513 0 254 232000 0
DEVCTL 1024 4 216 132 0 0 225280 0
malloc-65536 65536 1 2 51 0 1 196608 0
malloc-65536 65536 1 2 137 0 1 196608 0
UMA Zones 768 242 2 242 0 16 187392 0
malloc-32 32 5598 72 6389 0 254 181440 0
malloc-128 128 1211 29 25985 0 126 158720 0
malloc-1024 1024 130 6 141 0 16 139264 0
malloc-128 128 1020 34 5252 0 126 134912 0
FFS2 dinode 256 505 20 514 0 62 134400 0
malloc-65536 65536 0 2 8 0 1 131072 0
ksiginfo 112 40 1004 66 0 126 116928 0
MAP ENTRY 96 970 248 39892 0 126 116928 0
S VFS Cache 104 982 71 1020 0 126 109512 0
malloc-32768 32768 1 2 131 0 1 98304 0
UMA Kegs 384 227 6 227 0 30 89472 0
VMSPACE 2544 28 5 796 0 4 83952 0
malloc-8192 8192 9 1 110 0 1 81920 0
malloc-8192 8192 8 2 10 0 1 81920 0
PROC 1336 50 7 817 0 8 76152 0
filedesc0 1072 51 12 818 0 8 67536 0
mbuf_cluster 2048 30 2 30 0 254 65536 0
malloc-65536 65536 1 0 1 0 1 65536 0
g_bio 408 0 160 4485 0 30 65280 0
malloc-4096 4096 14 1 27 0 2 61440 0
128 Bucket 1024 38 21 619 0 16 60416 0
malloc-8192 8192 4 3 32 0 1 57344 0
malloc-2048 2048 9 19 559 0 8 57344 0
malloc-16384 16384 3 0 3 0 1 49152 0
malloc-16384 16384 2 1 17 0 1 49152 0
malloc-16384 16384 1 2 161 0 1 49152 0
malloc-16384 16384 2 1 8 0 1 49152 0
malloc-2048 2048 2 22 575 0 8 49152 0
malloc-1024 1024 10 34 1480 0 16 45056 0
malloc-64 64 517 176 1620 0 254 44352 0
32 Bucket 256 47 118 6342 0 62 42240 0
clpbuf 2624 0 16 18 0 16 41984 0
DIRHASH 1024 34 6 34 0 16 40960 0
malloc-4096 4096 8 2 10 0 2 40960 0
NAMEI 1024 0 36 12625 0 16 36864 0
pcpu-8 8 4347 261 4407 0 254 36864 0
malloc-32768 32768 1 0 1 0 1 32768 0
malloc-32768 32768 1 0 1 0 1 32768 0
pcpu-64 64 487 25 487 0 254 32768 0
64 Bucket 512 55 9 1259 0 30 32768 0
malloc-128 128 63 185 323 0 126 31744 0
socket 960 21 11 1364 0 254 30720 0
malloc-384 384 60 10 92 0 30 26880 0
da_ccb 544 0 49 1232 0 16 26656 0
malloc-64 64 94 284 1469 0 254 24192 0
ttyinq 160 135 15 300 0 62 24000 0
ttyoutq 256 72 18 160 0 62 23040 0
malloc-256 256 71 19 252 0 62 23040 0
TURNSTILE 136 144 24 144 0 62 22848 0
pipe 744 12 18 303 0 16 22320 0
malloc-4096 4096 5 0 5 0 2 20480 0
malloc-4096 4096 3 2 830 0 2 20480 0
malloc-2048 2048 10 0 10 0 8 20480 0
malloc-64 64 217 98 279 0 254 20160 0
Mountpoints 2752 2 5 2 0 4 19264 0
malloc-384 384 44 6 46 0 30 19200 0
malloc-256 256 42 33 305 0 62 19200 0
malloc-256 256 46 29 111 0 62 19200 0
SLEEPQUEUE 88 144 48 144 0 126 16896 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-2048 2048 3 5 16 0 8 16384 0
malloc-1024 1024 8 8 12 0 16 16384 0
16 Bucket 144 39 73 287 0 62 16128 0
udp_inpcb 496 6 26 142 0 254 15872 0
malloc-384 384 22 18 362 0 30 15360 0
malloc-256 256 35 25 385 0 62 15360 0
tcpcb 1080 3 11 7 0 254 15120 0
malloc-4096 4096 3 0 3 0 2 12288 0
malloc-2048 2048 3 3 194 0 8 12288 0
malloc-1024 1024 8 4 185 0 16 12288 0
malloc-1024 1024 7 5 7 0 16 12288 0
ertt_txseginfo 40 0 303 236 0 254 12120 0
malloc-64 64 69 120 23031 0 254 12096 0
malloc-32 32 88 290 563 0 254 12096 0
malloc-32 32 80 298 3988 0 254 12096 0
Files 80 90 60 6850 0 126 12000 0
8 Bucket 80 36 114 668 0 126 12000 0
malloc-128 128 69 24 107 0 126 11904 0
kenv 258 15 30 1032 0 30 11610 0
unpcb 256 8 37 1190 0 254 11520 0
malloc-384 384 20 10 20 0 30 11520 0
malloc-256 256 22 23 133 0 62 11520 0
malloc-256 256 36 9 343 0 62 11520 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-4096 4096 0 2 3 0 2 8192 0
malloc-2048 2048 3 1 3 0 8 8192 0
malloc-2048 2048 3 1 3 0 8 8192 0
malloc-2048 2048 2 2 4 0 8 8192 0
malloc-1024 1024 2 6 11 0 16 8192 0
malloc-512 512 4 12 4 0 30 8192 0
malloc-512 512 0 16 129 0 30 8192 0
malloc-512 512 5 11 70 0 30 8192 0
malloc-512 512 8 8 8 0 30 8192 0
rtentry 176 17 29 21 0 62 8096 0
PGRP 88 21 71 32 0 126 8096 0
rl_entry 40 33 169 33 0 254 8080 0
sctp_laddr 48 1 167 7 0 254 8064 0
udpcb 32 6 246 142 0 254 8064 0
ertt 72 3 109 7 0 126 8064 0
PWD 32 12 240 103 0 254 8064 0
malloc-64 64 49 77 326 0 254 8064 0
malloc-64 64 26 100 36 0 254 8064 0
malloc-64 64 96 30 124 0 254 8064 0
malloc-32 32 61 191 217 0 254 8064 0
malloc-32 32 41 211 57 0 254 8064 0
malloc-32 32 22 230 60 0 254 8064 0
malloc-32 32 47 205 163 0 254 8064 0
malloc-32 32 17 235 32 0 254 8064 0
4 Bucket 48 5 163 53 0 254 8064 0
2 Bucket 32 49 203 510 0 254 8064 0
vtnet_tx_hdr 24 0 334 1891 0 254 8016 0
KNOTE 160 8 42 54 0 62 8000 0
malloc-16 16 25 475 96 0 254 8000 0
malloc-16 16 45 455 296 0 254 8000 0
malloc-16 16 12 488 30 0 254 8000 0
malloc-16 16 36 464 175 0 254 8000 0
malloc-16 16 286 214 25539 0 254 8000 0
malloc-16 16 4 496 8 0 254 8000 0
tcp_inpcb 496 3 13 7 0 254 7936 0
malloc-128 128 43 19 191 0 126 7936 0
malloc-128 128 33 29 49 0 126 7936 0
malloc-128 128 29 33 184 0 126 7936 0
routing nhops 256 14 16 21 0 62 7680 0
mbuf_packet 256 0 30 105 0 254 7680 0
malloc-256 256 8 22 519 0 62 7680 0
FPU_save_area 832 1 8 1 0 16 7488 0
cpuset 104 8 54 8 0 126 6448 0
epoch_record pcpu 256 4 12 4 0 62 4096 0
malloc-4096 4096 0 1 1 0 2 4096 0
malloc-1024 1024 1 3 1 0 16 4096 0
malloc-1024 1024 1 3 1 0 16 4096 0
malloc-512 512 0 8 1 0 30 4096 0
malloc-512 512 5 3 5 0 30 4096 0
malloc-512 512 0 8 1 0 30 4096 0
pcpu-16 16 7 249 7 0 254 4096 0
hostcache 64 1 62 1 0 254 4032 0
syncache 168 0 24 5 0 254 4032 0
malloc-16 16 0 250 7 0 254 4000 0
ripcb 496 1 7 4 0 254 3968 0
UMA Slabs 1 176 8 14 8 0 62 3872 0
malloc-384 384 0 10 1 0 30 3840 0
malloc-384 384 2 8 2 0 30 3840 0
malloc-384 384 1 9 1 0 30 3840 0
sctp_ep 1272 2 1 2 0 254 3816 0
mqnode 416 3 6 3 0 30 3744 0
KMAP ENTRY 96 12 27 14 0 0 3744 0
vmem 1856 1 1 1 0 8 3712 0
SMR CPU 32 3 60 3 0 254 2016 0
SMR SHARED 24 3 60 3 0 254 1512 0
FFS1 dinode 128 0 0 0 0 126 0 0
ada_ccb 272 0 0 0 0 30 0 0
swblk 136 0 0 0 0 62 0 0
swpctrie 144 0 0 0 0 62 0 0
cdg_qdiffsample 16 0 0 0 0 254 0 0
sctp_asconf_ack 48 0 0 0 0 254 0 0
sctp_asconf 40 0 0 0 0 254 0 0
sctp_stream_msg_out 112 0 0 0 0 254 0 0
sctp_readq 152 0 0 0 0 254 0 0
sctp_chunk 152 0 0 0 0 254 0 0
sctp_raddr 736 0 0 0 0 254 0 0
sctp_asoc 2288 0 0 0 0 254 0 0
pf state scrubs 40 0 0 0 0 254 0 0
pf frag entries 40 0 0 0 0 254 0 0
pf frags 248 0 0 0 0 62 0 0
pf table entries 160 0 0 0 0 62 0 0
pf table entry counters 64 0 0 0 0 254 0 0
pf source nodes 136 0 0 0 0 254 0 0
pf state keys 88 0 0 0 0 126 0 0
pf states 312 0 0 0 0 254 0 0
pf tags 104 0 0 0 0 126 0 0
pf mtags 48 0 0 0 0 254 0 0
tcp_bbr_pcb 832 0 0 0 0 16 0 0
tcp_bbr_map 128 0 0 0 0 126 0 0
tcp_rack_pcb 832 0 0 0 0 16 0 0
tcp_rack_map 112 0 0 0 0 126 0 0
udplite_inpcb 496 0 0 0 0 254 0 0
tcp_log_node 120 0 0 0 0 126 0 0
tcp_log_bucket 176 0 0 0 0 62 0 0
tcp_log 416 0 0 0 0 254 0 0
tcpreass 48 0 0 0 0 254 0 0
tfo_ccache_entries 80 0 0 0 0 126 0 0
tfo 4 0 0 0 0 254 0 0
sackhole 32 0 0 0 0 254 0 0
tcptw 88 0 0 0 0 254 0 0
ipq 56 0 0 0 0 254 0 0
IPsec SA lft_c 16 0 0 0 0 254 0 0
itimer 352 0 0 0 0 30 0 0
AIOLIO 272 0 0 0 0 30 0 0
AIOCB 552 0 0 0 0 16 0 0
AIOP 32 0 0 0 0 254 0 0
AIO 208 0 0 0 0 62 0 0
mqnotifier 216 0 0 0 0 62 0 0
mvdata 64 0 0 0 0 254 0 0
mqueue 248 0 0 0 0 62 0 0
TMPFS node 224 0 0 0 0 62 0 0
NCLNODE 592 0 0 0 0 16 0 0
LTS VFS Cache 360 0 0 0 0 30 0 0
L VFS Cache 320 0 0 0 0 30 0 0
STS VFS Cache 144 0 0 0 0 62 0 0
cryptop 280 0 0 0 0 30 0 0
linux_dma_object 24 0 0 0 0 254 0 0
linux_dma_pctrie 144 0 0 0 0 62 0 0
IOMMU_MAP_ENTRY 120 0 0 0 0 126 0 0
ktls_session 192 0 0 0 0 62 0 0
mbuf_jumbo_16k 16384 0 0 0 0 254 0 0
mbuf_jumbo_9k 9216 0 0 0 0 254 0 0
audit_record 1280 0 0 0 0 8 0 0
domainset 40 0 0 0 0 254 0 0
MAC labels 40 0 0 0 0 254 0 0
vnpbuf 2624 0 0 0 0 64 0 0
mdpbuf 2624 0 0 0 0 3 0 0
nfspbuf 2624 0 0 0 0 16 0 0
swwbuf 2624 0 0 0 0 8 0 0
swrbuf 2624 0 0 0 0 16 0 0
umtx_shm 88 0 0 0 0 126 0 0
umtx pi 96 0 0 0 0 126 0 0
rangeset pctrie nodes 144 0 0 0 0 62 0 0
malloc-65536 65536 0 0 0 0 1 0 0
malloc-65536 65536 0 0 0 0 1 0 0
malloc-65536 65536 0 0 0 0 1 0 0
malloc-32768 32768 0 0 0 0 1 0 0
malloc-32768 32768 0 0 0 0 1 0 0
malloc-32768 32768 0 0 0 0 1 0 0
malloc-32768 32768 0 0 0 0 1 0 0
malloc-32768 32768 0 0 0 0 1 0 0
mall

syzbot

unread,
Sep 8, 2021, 9:34:26 AM9/8/21
to syzkaller-f...@googlegroups.com
syzbot has found a reproducer for the following issue on:

HEAD commit: 4ccbbe5f0689 top(1): indicate how to reset grep string
git tree: https://github.com/freebsd/freebsd-src.git main
console output: https://syzkaller.appspot.com/x/log.txt?x=1164d463300000
dashboard link: https://syzkaller.appspot.com/bug?extid=a1b6cef257ad145b7187
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=14ea508b300000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=16448bdb300000

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+a1b6ce...@syzkaller.appspotmail.com

login: panic: __rw_wlock_hard: recursing but non-recursive rw sctp-info @ /syzkaller/managers/main/kernel/sys/netinet/sctp_pcb.c:1856

cpuid = 0
time = 1631107910
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0xc7/frame 0xfffffe009be7a1f0
kdb_backtrace() at kdb_backtrace+0xd3/frame 0xfffffe009be7a350
vpanic() at vpanic+0x2c5/frame 0xfffffe009be7a430
panic() at panic+0xb5/frame 0xfffffe009be7a4f0
__rw_wlock_hard() at __rw_wlock_hard+0x119e/frame 0xfffffe009be7a650
_rw_wlock_cookie() at _rw_wlock_cookie+0x1d4/frame 0xfffffe009be7a720
sctp_swap_inpcb_for_listen() at sctp_swap_inpcb_for_listen+0xf8/frame 0xfffffe009be7a7b0
sctp_listen() at sctp_listen+0x614/frame 0xfffffe009be7a8e0
solisten() at solisten+0xd2/frame 0xfffffe009be7a930
kern_listen() at kern_listen+0x158/frame 0xfffffe009be7a9f0
amd64_syscall() at amd64_syscall+0x425/frame 0xfffffe009be7abf0
fast_syscall_common() at fast_syscall_common+0xf8/frame 0xfffffe009be7abf0
--- syscall (0, FreeBSD ELF64, nosys), rip = 0x2b3d0a, rsp = 0x7fffffffea68, rbp = 0x7fffffffea80 ---
KDB: enter: panic
[ thread pid 785 tid 100101 ]
Stopped at kdb_enter+0x6b: movq $0,0x28e217a(%rip)
db>
db> set $lines = 0
db> set $maxwidth = 0
db> show registers
cs 0x20
ds 0x3b
es 0x3b
fs 0x13
gs 0x1b
ss 0x28
rax 0x12
rcx 0x3c17f4a2ae7adf91
rdx 0xdffff7c000000000
rbx 0
rsp 0xfffffe009be7a330
rbp 0xfffffe009be7a350
rsi 0x1
rdi 0xffffffff8408b740 cov_trace_pc
r8 0x3
r9 0xfffffe009be79e68
r10 0
r11 0xfffffe005891ac30
r12 0xfffffe005891a720
r13 0xfffffe009be7a301
r14 0xffffffff82c79420 .str.18
r15 0xffffffff82c79420 .str.18
rip 0xffffffff817abf3b kdb_enter+0x6b
rflags 0x46
kdb_enter+0x6b: movq $0,0x28e217a(%rip)
db> show proc
Process 785 (syz-executor3443948) at 0xfffffe0058b16a70:
state: NORMAL
uid: 0 gids: 0, 0, 5
parent: pid 783 at 0xfffffe0058b16538
ABI: FreeBSD ELF64
flag: 0x10004000 flag2: 0
arguments: ./syz-executor344394860
reaper: 0xfffffe0053d58538 reapsubtree: 1
sigparent: 20
vmspace: 0xfffffe009e99b9f0
(map 0xfffffe009e99b9f0)
(map.pmap 0xfffffe009e99bab0)
(pmap 0xfffffe009e99bb10)
threads: 1
100101 Run CPU 0 syz-executor3443948
db> ps
pid ppid pgrp uid state wmesg wchan cmd
785 783 783 0 R CPU 0 syz-executor3443948
783 781 783 0 Ss pause 0xfffffe0058b165e8 csh
781 694 781 0 Ss select 0xfffffe009e486b40 sshd
760 1 760 0 Ss+ ttyin 0xfffffe0057003cb0 getty
759 1 759 0 Ss+ ttyin 0xfffffe00575f14b0 getty
758 1 758 0 Ss+ ttyin 0xfffffe00575f1cb0 getty
757 1 757 0 Ss+ ttyin 0xfffffe00583f44b0 getty
756 1 756 0 Ss+ ttyin 0xfffffe00583f4cb0 getty
755 1 755 0 Ss+ ttyin 0xfffffe00583f04b0 getty
754 1 754 0 Ss+ ttyin 0xfffffe00583f0cb0 getty
753 1 753 0 Ss+ ttyin 0xfffffe005839b4b0 getty
752 1 752 0 Ss+ ttyin 0xfffffe005839bcb0 getty
750 1 24 0 S+ piperd 0xfffffe009e4525d0 logger
749 748 24 0 S+ nanslp 0xffffffff8405af81 sleep
748 1 24 0 S+ wait 0xfffffe009e4bc538 sh
698 1 698 0 Ss nanslp 0xffffffff8405af81 cron
694 1 694 0 Ss select 0xfffffe009e486e40 sshd
507 1 507 0 Ss select 0xfffffe0058aea3c0 syslogd
436 1 436 0 Ss select 0xfffffe0058aea840 devd
435 1 435 65 Ss select 0xfffffe0058aea640 dhclient
350 1 350 0 Ss select 0xfffffe0058aea4c0 dhclient
347 1 347 0 Ss select 0xfffffe0058aea8c0 dhclient
23 0 0 0 DL syncer 0xffffffff84183360 [syncer]
22 0 0 0 DL vlruwt 0xfffffe0058763a70 [vnlru]
21 0 0 0 DL (threaded) [bufdaemon]
100085 D qsleep 0xffffffff84181060 [bufdaemon]
100088 D - 0xffffffff83411f80 [bufspacedaemon-0]
100099 D sdflush 0xfffffe00588260e8 [/ worker]
20 0 0 0 DL psleep 0xffffffff841b9580 [vmdaemon]
19 0 0 0 DL (threaded) [pagedaemon]
100083 D psleep 0xffffffff841ad0b8 [dom0]
100089 D launds 0xffffffff841ad0c4 [laundry: dom0]
100090 D umarcl 0xffffffff81eaea40 [uma]
18 0 0 0 DL - 0xffffffff83e120a0 [rand_harvestq]
17 0 0 0 DL waiting 0xffffffff84d0b580 [sctp_iterator]
16 0 0 0 DL pftm 0xffffffff84751e20 [pf purge]
100004 Run CPU 1 [idle: cpu1]
Process 785 (syz-executor3443948) thread 0xfffffe005891a720 (100101)
exclusive sleep mutex so_rcv (so_rcv) r = 0 (0xfffffe0058923920) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:930
exclusive sleep mutex so_snd (so_snd) r = 0 (0xfffffe00589238e0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:929
exclusive sx so_rcv_sx (so_rcv_sx) r = 0 (0xfffffe0058923900) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:925
exclusive sx so_snd_sx (so_snd_sx) r = 0 (0xfffffe00589238c0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:923
exclusive sleep mutex socket (socket) r = 0 (0xfffffe0058923780) locked @ /syzkaller/managers/main/kernel/sys/netinet/sctp_usrreq.c:7211
exclusive rw sctp-info (sctp-info) r = 0 (0xfffffe00081ba7f0) locked @ /syzkaller/managers/main/kernel/sys/netinet/sctp_usrreq.c:7204
db> show malloc
Type InUse MemUse Requests
pf_hash 5 11524K 5
devbuf 4217 4339K 4242
tcp_hpts 6 3201K 6
sysctloid 34389 2031K 34460
vtbuf 24 1968K 46
kobj 326 1304K 485
newblk 708 1201K 720
vfscache 3 1025K 3
pcb 27 541K 81
inodedep 49 530K 71
ufs_quota 1 512K 1
vfs_hash 1 512K 1
callout 2 512K 2
intr 4 472K 4
subproc 98 204K 838
acpica 1674 184K 55623
vnet_data 1 168K 1
vmem 3 146K 4
tidhash 3 141K 3
linker 355 140K 383
pagedep 14 132K 18
tfo_ccache 1 128K 1
sem 4 106K 4
DEVFS1 104 104K 113
bus 986 80K 3488
mtx_pool 2 72K 2
syncache 1 68K 1
acpitask 1 64K 1
ddb_capture 1 64K 1
module 509 64K 509
umtx 264 33K 264
temp 18 33K 1616
kdtrace 165 33K 905
hostcache 1 32K 1
shm 1 32K 1
DEVFS3 123 31K 133
msg 4 30K 4
gtaskqueue 18 26K 18
kbdmux 6 22K 6
DEVFS_RULE 56 20K 56
BPF 10 18K 10
ufs_mount 4 17K 5
proc 3 17K 3
tty 16 16K 16
ithread 99 16K 99
bus-sc 34 15K 1693
KTRACE 100 13K 100
kenv 95 12K 95
eventhandler 133 12K 133
ifaddr 30 12K 32
routetbl 50 11K 176
CAM queue 5 11K 1528
GEOM 61 10K 490
rman 84 10K 425
bmsafemap 4 9K 40
UART 12 9K 12
devstat 4 9K 4
ksem 1 8K 1
rpc 2 8K 2
shmfd 1 8K 1
pfs_vncache 1 8K 1
pfs_nodes 20 8K 20
audit_evclass 237 8K 295
taskqueue 63 7K 63
sglist 5 7K 5
CAM DEV 3 6K 510
cred 23 6K 234
ufs_dirhash 24 5K 24
UMA 270 5K 270
dirrem 17 5K 28
plimit 17 5K 322
vt 11 5K 11
ifnet 3 5K 3
memdesc 1 4K 1
MCA 32 4K 32
evdev 4 4K 4
filedesc 1 4K 1
acpisem 28 4K 28
hhook 15 4K 17
ether_multi 40 4K 50
diradd 25 4K 36
lltable 11 4K 11
pf_ifnet 5 3K 6
in6_multi 25 3K 25
kqueue 46 3K 788
pwddesc 46 3K 786
terminal 11 3K 11
session 20 3K 31
uidinfo 3 3K 8
local_apic 1 2K 1
io_apic 1 2K 1
fpukern_ctx 2 2K 2
ipsec-saq 2 2K 2
selfd 27 2K 10877
proc-args 39 2K 488
Unitno 27 2K 39
CAM XPT 22 2K 543
lockf 15 2K 22
ipsecpolicy 2 2K 2
acpidev 20 2K 20
msi 9 2K 9
clone 9 2K 9
softdep 1 1K 1
sahead 1 1K 1
secasvar 1 1K 1
vnodemarker 2 1K 8
NFSD session 1 1K 1
CAM periph 4 1K 271
select 7 1K 29
ipsec 3 1K 3
sctp_atcl 2 1K 2
indirdep 3 1K 3
nhops 6 1K 6
toponodes 6 1K 6
isadev 6 1K 6
mount 16 1K 89
pci_link 10 1K 10
sctp_ifa 5 1K 6
crypto 4 1K 4
ip6ndp 4 1K 5
encap_export_host 12 1K 12
newdirblk 4 1K 8
mkdir 4 1K 16
in_multi 2 1K 4
pfil 4 1K 4
cdev 2 1K 2
chacha20random 1 1K 1
osd 7 1K 18
inpcbpolicy 10 1K 137
sctp_ifn 2 1K 6
NFSD lckfile 1 1K 1
NFSD V4client 1 1K 1
DEVFSP 4 1K 9
DEVFS 9 1K 10
mld 2 1K 2
igmp 2 1K 2
vnodes 1 1K 1
CAM SIM 2 1K 2
ktls 1 1K 1
feeder 7 1K 7
tcpfunc 3 1K 3
loginclass 3 1K 7
prison 6 1K 6
lkpikmalloc 5 1K 6
aesni_data 2 1K 2
nexusdev 8 1K 8
apmdev 1 1K 1
atkbddev 2 1K 2
CAM dev queue 2 1K 2
xform 2 1K 49
CAM I/O Scheduler 1 1K 1
CAM path 4 1K 1034
procdesc 1 1K 6
pmchooks 1 1K 1
soname 4 1K 3473
filecaps 4 1K 66
tun 3 1K 3
sctp_vrf 1 1K 1
sctp_atky 2 1K 2
vnet 1 1K 1
entropy 2 1K 35
acpiintr 1 1K 1
pmc 1 1K 1
sctp_athm 2 1K 2
cpus 2 1K 2
vnet_data_free 1 1K 1
Per-cpu 1 1K 1
freework 1 1K 26
p1003.1b 1 1K 1
sctp_mcore 0 0K 0
sctp_socko 0 0K 2
sctp_iter 0 0K 4
sctp_mvrf 0 0K 0
sctp_timw 0 0K 0
sctp_cpal 0 0K 0
sctp_cmsg 0 0K 0
sctp_stre 0 0K 0
sctp_athi 0 0K 0
sctp_a_it 0 0K 4
sctp_aadr 0 0K 0
sctp_stro 0 0K 0
sctp_stri 0 0K 0
sctp_map 0 0K 0
dctcp data 0 0K 0
cdg data 0 0K 0
chd data 0 0K 0
cubic data 0 0K 0
mqdata 0 0K 0
vegas data 0 0K 0
tcp_do 0 0K 0
tcp_fsb 0 0K 0
pf_table 0 0K 0
pf_rule 0 0K 0
pf_altq 0 0K 0
pf_osfp 0 0K 0
pf_temp 0 0K 0
htcp data 0 0K 0
savedino 0 0K 15
sentinel 0 0K 0
jfsync 0 0K 0
jtrunc 0 0K 0
sbdep 0 0K 2
jsegdep 0 0K 0
jseg 0 0K 0
jfreefrag 0 0K 0
jfreeblk 0 0K 0
jnewblk 0 0K 0
jmvref 0 0K 0
jremref 0 0K 0
jaddref 0 0K 0
freedep 0 0K 0
freefile 0 0K 9
freeblks 0 0K 25
freefrag 0 0K 1
ip6opt 0 0K 3
ip6_msource 0 0K 0
ip6_moptions 0 0K 0
statfs 0 0K 195
namei_tracker 0 0K 0
export_host 0 0K 0
cl_savebuf 0 0K 3
twe_commands 0 0K 0
twa_commands 0 0K 0
tcp_log_dev 0 0K 0
midi buffers 0 0K 0
mixer 0 0K 0
ac97 0 0K 0
hdacc 0 0K 0
hdac 0 0K 0
hdaa 0 0K 0
acpicmbat 0 0K 0
SIIS driver 0 0K 0
CAM CCB 0 0K 523
PUC 0 0K 0
ppbusdev 0 0K 0
agtiapi_MemAlloc malloc 0 0K 0
biobuf 0 0K 0
aios 0 0K 0
lio 0 0K 0
acl 0 0K 0
osti_cacheable 0 0K 0
mbuf_tag 0 0K 27
tempbuff 0 0K 0
tempbuff 0 0K 0
ag_tgt_map_t malloc 0 0K 0
ag_slr_map_t malloc 0 0K 0
lDevFlags * malloc 0 0K 0
tiDeviceHandle_t * malloc 0 0K 0
ag_portal_data_t malloc 0 0K 0
ag_device_t malloc 0 0K 0
STLock malloc 0 0K 0
CCB List 0 0K 0
sr_iov 0 0K 0
OCS 0 0K 0
OCS 0 0K 0
nvme 0 0K 0
nvd 0 0K 0
netmap 0 0K 0
mwldev 0 0K 0
MVS driver 0 0K 0
CAM ccb queue 0 0K 0
mrsasbuf 0 0K 0
mpt_user 0 0K 0
mps_user 0 0K 0
accf 0 0K 0
pts 0 0K 0
iov 0 0K 13645
ioctlops 0 0K 86
eventfd 0 0K 0
Witness 0 0K 0
stack 0 0K 0
MPSSAS 0 0K 0
mps 0 0K 0
mpr_user 0 0K 0
MPRSAS 0 0K 0
mpr 0 0K 0
mfibuf 0 0K 0
sbuf 0 0K 288
md_sectors 0 0K 0
firmware 0 0K 0
compressor 0 0K 0
md_disk 0 0K 0
SWAP 0 0K 0
malodev 0 0K 0
LED 0 0K 0
sysctltmp 0 0K 658
sysctl 0 0K 3
ekcd 0 0K 0
dumper 0 0K 0
sendfile 0 0K 0
rctl 0 0K 0
ix_sriov 0 0K 0
aacraidcam 0 0K 0
aacraid_buf 0 0K 0
ix 0 0K 0
ipsbuf 0 0K 0
cache 0 0K 0
iirbuf 0 0K 0
kcovinfo 0 0K 0
mbuf_jumbo_page 4096 8320 985 14529 0 254 38113280 0
pbuf 2624 0 989 0 0 2 2595136 0
mbuf 256 8578 992 17372 0 254 2449920 0
BUF TRIE 144 184 11576 501 0 62 1693440 0
malloc-384 384 4217 13 4240 0 30 1624320 0
malloc-4096 4096 373 4 1272 0 2 1544192 0
malloc-128 128 11557 37 11624 0 126 1484032 0
UMA Slabs 0 112 10092 21 10092 0 126 1132656 0
vmem btag 56 15357 26 15357 0 254 861448 0
FFS inode 1160 499 12 508 0 8 592760 0
RADIX NODE 144 3033 154 21145 0 62 458928 0
malloc-65536 65536 6 0 6 0 1 393216 0
lkpimm 168 1 2327 1 0 62 391104 0
lkpicurr 168 2 2326 2 0 62 391104 0
malloc-64 64 4391 82 6069 0 254 286272 0
malloc-256 256 1043 22 1846 0 62 272640 0
256 Bucket 2048 109 15 10912 0 8 253952 0
VNODE 448 529 20 540 0 30 245952 0
VM OBJECT 264 891 39 12699 0 30 245520 0
THREAD 1808 118 14 118 0 8 238656 0
malloc-16 16 14225 275 15513 0 254 232000 0
DEVCTL 1024 0 220 126 0 0 225280 0
malloc-65536 65536 1 2 47 0 1 196608 0
malloc-65536 65536 1 2 137 0 1 196608 0
UMA Zones 768 242 2 242 0 16 187392 0
malloc-32 32 5598 72 6389 0 254 181440 0
malloc-128 128 1205 35 25979 0 126 158720 0
malloc-1024 1024 129 3 138 0 16 135168 0
malloc-128 128 998 25 5202 0 126 130944 0
FFS2 dinode 256 499 11 508 0 62 130560 0
ksiginfo 112 35 1009 50 0 126 116928 0
MAP ENTRY 96 836 340 38044 0 126 112896 0
S VFS Cache 104 966 48 1004 0 126 105456 0
malloc-32768 32768 1 2 131 0 1 98304 0
malloc-8192 8192 9 2 110 0 1 90112 0
UMA Kegs 384 227 6 227 0 30 89472 0
VMSPACE 2544 23 7 764 0 4 76320 0
malloc-8192 8192 8 1 10 0 1 73728 0
PROC 1336 45 6 785 0 8 68136 0
mbuf_cluster 2048 30 2 30 0 254 65536 0
malloc-65536 65536 1 0 1 0 1 65536 0
malloc-65536 65536 0 1 8 0 1 65536 0
g_bio 408 0 160 4462 0 30 65280 0
malloc-4096 4096 14 1 27 0 2 61440 0
filedesc0 1072 46 10 786 0 8 60032 0
malloc-8192 8192 4 3 32 0 1 57344 0
malloc-2048 2048 7 19 551 0 8 53248 0
128 Bucket 1024 39 12 608 0 16 52224 0
malloc-16384 16384 3 0 3 0 1 49152 0
malloc-16384 16384 1 2 161 0 1 49152 0
malloc-2048 2048 2 22 575 0 8 49152 0
malloc-1024 1024 10 34 1427 0 16 45056 0
malloc-64 64 517 176 1620 0 254 44352 0
32 Bucket 256 45 120 6634 0 62 42240 0
clpbuf 2624 0 16 22 0 16 41984 0
DIRHASH 1024 34 6 34 0 16 40960 0
NAMEI 1024 0 36 12231 0 16 36864 0
malloc-4096 4096 8 1 10 0 2 36864 0
pcpu-8 8 4233 375 4261 0 254 36864 0
da_ccb 544 0 63 1236 0 16 34272 0
malloc-32768 32768 1 0 1 0 1 32768 0
malloc-32768 32768 1 0 1 0 1 32768 0
malloc-16384 16384 2 0 17 0 1 32768 0
pcpu-64 64 487 25 487 0 254 32768 0
64 Bucket 512 57 7 1273 0 30 32768 0
malloc-128 128 63 154 322 0 126 27776 0
malloc-384 384 54 16 83 0 30 26880 0
malloc-256 256 67 38 246 0 62 26880 0
malloc-2048 2048 10 2 10 0 8 24576 0
malloc-64 64 88 290 1394 0 254 24192 0
ttyinq 160 135 15 300 0 62 24000 0
socket 960 20 4 1335 0 254 23040 0
ttyoutq 256 72 18 160 0 62 23040 0
TURNSTILE 136 133 35 133 0 62 22848 0
malloc-4096 4096 5 0 5 0 2 20480 0
malloc-4096 4096 3 2 830 0 2 20480 0
malloc-64 64 215 100 277 0 254 20160 0
Mountpoints 2752 2 5 2 0 4 19264 0
malloc-384 384 41 9 43 0 30 19200 0
malloc-256 256 40 35 303 0 62 19200 0
malloc-256 256 46 29 111 0 62 19200 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-1024 1024 8 8 12 0 16 16384 0
malloc-384 384 22 18 362 0 30 15360 0
malloc-256 256 30 30 372 0 62 15360 0
tcpcb 1080 3 11 7 0 254 15120 0
pipe 744 7 13 284 0 16 14880 0
SLEEPQUEUE 88 133 27 133 0 126 14080 0
malloc-4096 4096 3 0 3 0 2 12288 0
malloc-2048 2048 3 3 12 0 8 12288 0
malloc-2048 2048 3 3 194 0 8 12288 0
malloc-2048 2048 2 4 4 0 8 12288 0
malloc-1024 1024 8 4 185 0 16 12288 0
malloc-1024 1024 7 5 7 0 16 12288 0
ertt_txseginfo 40 1 302 271 0 254 12120 0
malloc-64 64 48 141 305 0 254 12096 0
malloc-64 64 72 117 24265 0 254 12096 0
malloc-32 32 88 290 605 0 254 12096 0
malloc-32 32 78 300 3964 0 254 12096 0
16 Bucket 144 37 47 290 0 62 12096 0
Files 80 73 77 6582 0 126 12000 0
8 Bucket 80 37 113 405 0 126 12000 0
udp_inpcb 496 6 18 126 0 254 11904 0
malloc-128 128 51 42 89 0 126 11904 0
malloc-128 128 29 64 184 0 126 11904 0
kenv 258 15 30 1030 0 30 11610 0
malloc-384 384 16 14 16 0 30 11520 0
malloc-256 256 18 27 121 0 62 11520 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-2048 2048 3 1 3 0 8 8192 0
malloc-2048 2048 3 1 3 0 8 8192 0
malloc-1024 1024 2 6 10 0 16 8192 0
malloc-512 512 4 12 4 0 30 8192 0
malloc-512 512 0 16 127 0 30 8192 0
malloc-512 512 5 11 70 0 30 8192 0
malloc-512 512 8 8 8 0 30 8192 0
rtentry 176 13 33 17 0 62 8096 0
PGRP 88 20 72 31 0 126 8096 0
rl_entry 40 28 174 28 0 254 8080 0
sctp_laddr 48 0 168 4 0 254 8064 0
udpcb 32 6 246 126 0 254 8064 0
ertt 72 3 109 7 0 126 8064 0
PWD 32 10 242 100 0 254 8064 0
malloc-64 64 15 111 25 0 254 8064 0
malloc-64 64 94 32 121 0 254 8064 0
malloc-32 32 50 202 200 0 254 8064 0
malloc-32 32 36 216 52 0 254 8064 0
malloc-32 32 17 235 55 0 254 8064 0
malloc-32 32 46 206 143 0 254 8064 0
malloc-32 32 17 235 32 0 254 8064 0
4 Bucket 48 5 163 44 0 254 8064 0
2 Bucket 32 44 208 498 0 254 8064 0
vtnet_tx_hdr 24 0 334 1953 0 254 8016 0
KNOTE 160 0 50 8 0 62 8000 0
malloc-16 16 0 500 7 0 254 8000 0
malloc-16 16 25 475 96 0 254 8000 0
malloc-16 16 41 459 281 0 254 8000 0
malloc-16 16 11 489 27 0 254 8000 0
malloc-16 16 35 465 174 0 254 8000 0
malloc-16 16 286 214 25539 0 254 8000 0
malloc-16 16 4 496 7 0 254 8000 0
ripcb 496 1 15 4 0 254 7936 0
tcp_inpcb 496 3 13 7 0 254 7936 0
malloc-128 128 39 23 165 0 126 7936 0
malloc-128 128 32 30 48 0 126 7936 0
routing nhops 256 10 20 17 0 62 7680 0
unpcb 256 7 23 1179 0 254 7680 0
mbuf_packet 256 0 30 93 0 254 7680 0
malloc-256 256 26 4 327 0 62 7680 0
FPU_save_area 832 1 8 1 0 16 7488 0
cpuset 104 8 54 8 0 126 6448 0
epoch_record pcpu 256 4 12 4 0 62 4096 0
malloc-4096 4096 0 1 1 0 2 4096 0
malloc-4096 4096 0 1 3 0 2 4096 0
malloc-1024 1024 1 3 1 0 16 4096 0
malloc-1024 1024 1 3 1 0 16 4096 0
malloc-512 512 0 8 1 0 30 4096 0
malloc-512 512 5 3 5 0 30 4096 0
malloc-512 512 0 8 1 0 30 4096 0
pcpu-16 16 7 249 7 0 254 4096 0
hostcache 64 1 62 1 0 254 4032 0
syncache 168 0 24 5 0 254 4032 0
UMA Slabs 1 176 8 14 8 0 62 3872 0
malloc-384 384 0 10 1 0 30 3840 0
malloc-384 384 2 8 2 0 30 3840 0
malloc-384 384 1 9 1 0 30 3840 0
malloc-256 256 7 8 518 0 62 3840 0
sctp_ep 1272 2 1 2 0 254 3816 0
mqnode 416 3 6 3 0 30 3744 0
KMAP ENTRY 96 12 27 14 0 0 3744 0
vmem 1856 1 1 1 0 8 3712 0
SMR CPU 32 3 60 3 0 254 2016 0
SMR SHARED 24 3 60 3 0 254 1512 0
FFS1 dinode 128 0 0 0 0 126 0 0
ada_ccb 272 0 0 0 0 30 0 0
swblk 136 0 0 0 0 62 0 0
swpctrie 144 0 0 0 0 62 0 0
malloc-16384 16384 0 0 0 0 1 0 0
malloc-16384 16384 0 0 0 0 1 0 0
malloc-16384 16384 0 0 0 0 1 0 0
malloc-8192 8192 0 0 0 0 1 0 0
malloc-512 512 0 0 0 0 30 0 0
pcpu-32 32 0 0 0 0 254 0 0
pcpu-4 4 0 0 0 0 254 0 0
fakepg 104 0 0 0 0 126 0 0
UMA Hash 256 0 0 0 0 62 0 0

Reply all
Reply to author
Forward
0 new messages