Hello,
syzbot found the following crash on:
HEAD commit: 85eaade9 Fix integer overflow in r346386.
git tree: freebsd
console output:
https://syzkaller.appspot.com/x/log.txt?x=13a2226ca00000
dashboard link:
https://syzkaller.appspot.com/bug?extid=b6e4f2443e0010b59b2c
Unfortunately, I don't have any reproducer for this crash yet.
IMPORTANT: if you fix the bug, please add the following tag to the commit:
Reported-by:
syzbot+b6e4f2...@syzkaller.appspotmail.com
panic: vm_page_free_prep: freeing wired page 0xfffff8007e26d468
cpuid = 0
time = 43
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0x47/frame
0xfffffe001faa4620
vpanic() at vpanic+0x1e0/frame 0xfffffe001faa4680
panic() at panic+0x43/frame 0xfffffe001faa46e0
vm_page_free_prep() at vm_page_free_prep+0x341/frame 0xfffffe001faa4710
vm_page_free_toq() at vm_page_free_toq+0x1b/frame 0xfffffe001faa4740
unlock_and_deallocate() at unlock_and_deallocate+0x96/frame
0xfffffe001faa4770
vm_fault_hold() at vm_fault_hold+0x2275/frame 0xfffffe001faa48e0
vm_fault() at vm_fault+0xad/frame 0xfffffe001faa4920
trap_pfault() at trap_pfault+0x399/frame 0xfffffe001faa4990
trap() at trap+0x93a/frame 0xfffffe001faa4ab0
calltrap() at calltrap+0x8/frame 0xfffffe001faa4ab0
--- trap 0xc, rip = 0x48415a, rsp = 0x7fffffffeaa8, rbp = 0x760660 ---
KDB: enter: panic
[ thread pid 1825 tid 100488 ]
Stopped at kdb_enter+0x6a: movq $0,kdb_why
---
This bug is generated by a bot. It may contain errors.
See
https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at
syzk...@googlegroups.com.
syzbot will keep track of this bug report. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.