Hello,
syzbot found the following issue on:
HEAD commit: a27328ea3927 bhyve: Suppress unimplemented MSR related war..
git tree: freebsd-src
console output:
https://syzkaller.appspot.com/x/log.txt?x=1156fc4c580000
dashboard link:
https://syzkaller.appspot.com/bug?extid=82abb72f86704ee3d57f
Unfortunately, I don't have any reproducer for this issue yet.
IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by:
syzbot+82abb7...@syzkaller.appspotmail.com
SYZFAIL: SIGBUS
pc-offset:0xffffffff217cdfe1 pc:0xdeadbeef addr:0x0 code=65537 (errno 9: Bad file descriptor)
Connection to 10.128.0.238 closed by remote host.
FreeBSD/amd64 (ci-freebsd-main-8.us-central1-b.c.syzkaller.internal) (ttyu0)
login: if_delmulti_locked: detaching ifnet instance 0xfffffe0059d23000
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d23000
set $lines = 0
pid 736 (sh), jid 0, uid 0: exited on signal 10 (core dumped)
Password:pid 338 (dhclient), jid 0, uid 0: exited on signal 10 (core dumped)
pid 740 (getty), jid 0, uid 0: exited on signal 10 (core dumped)
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d23000
pid 918 (syz-executor), tap0: tun/tap protocol violation, non-controlling process closed last.
ifaddr cache = 0xfffffe006e72f300 is deleted
tap0: link state changed to DOWN
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d24000
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d24000
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d24000
2025-03-25T15:23:06.444905+00:00 ci-freebsd-main-8.us-central1-b.c.syzkaller.internal init 934 - - fatal signal: Bus error
pid 931 (sh), jid 0, uid 0: exited on signal 10 (core dumped)
pid 424 (devd), jid 0, uid 0: exited on signal 10 (core dumped)
pid 741 (getty), jid 0, uid 0: exited on signal 10 (core dumped)
pid 816 (dhclient), jid 0, uid 0: exited on signal 10 (core dumped)
if_delmulti_locked: detaching ifnet instance 0xfffffe0008bd6000
if_delmulti_locked: detaching ifnet instance 0xfffffe0008bd6000
if_delmulti_locked: detaching ifnet instance 0xfffffe0008bd6000
pid 742 (getty), jid 0, uid 0: exited on signal 10 (core dumped)
pid 335 (dhclient), jid 0, uid 0: exited on signal 10 (core dumped)
pid 932 (login), jid 0, uid 0: exited on signal 10 (core dumped)
pid 743 (getty), jid 0, uid 0: exited on signal 10 (core dumped)
FreeBSD/amd64 (ci-freebsd-main-8.us-central1-b.c.syzkaller.internal) (ttyu0)
login: if_delmulti_locked: detaching ifnet instance 0xfffffe0059d23000
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d23000
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d23000
pid 745 (getty), jid 0, uid 0: exited on signal 10 (core dumped)
pid 744 (getty), jid 0, uid 0: exited on signal 10 (core dumped)
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d24000
pid 747 (getty), jid 0, uid 0: exited on signal 10 (core dumped)
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d24000
if_delmulti_locked: detaching ifnet instance 0xfffffe0059d24000
pid 933 (getty), jid 0, uid 0: exited on signal 10 (core dumped)
show registers
Password:
Login incorrect
login: ps
Password:
Login incorrect
login: show malloc
Password:
Login incorrect
login:
---
This report is generated by a bot. It may contain errors.
See
https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at
syzk...@googlegroups.com.
syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.
If the report is already addressed, let syzbot know by replying with:
#syz fix: exact-commit-title
If you want to overwrite report's subsystems, reply with:
#syz set subsystems: new-subsystem
(See the list of subsystem names on the web dashboard)
If the report is a duplicate of another one, reply with:
#syz dup: exact-subject-of-another-report
If you want to undo deduplication, reply with:
#syz undup