panic: Assertion uio->uio_resid < NUM failed at /syzkaller/managers/main/kernel/sys/netlink/netlink_domain.c:LINE

2 views
Skip to first unread message

syzbot

unread,
Sep 27, 2025, 10:26:33 AM (6 days ago) Sep 27
to syzkaller-f...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: ceb5792d1e2e OptionalObsoleteFiles.inc: Add more ATF libra..
git tree: freebsd-src
console output: https://syzkaller.appspot.com/x/log.txt?x=147a12e2580000
dashboard link: https://syzkaller.appspot.com/bug?extid=194f95f2c5fdffef1ef5

Unfortunately, I don't have any reproducer for this issue yet.

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+194f95...@syzkaller.appspotmail.com

panic: Assertion uio->uio_resid < 0 failed at /syzkaller/managers/main/kernel/sys/netlink/netlink_domain.c:808
cpuid = 0
time = 1758983155
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0xc6/frame 0xfffffe0056e58490
kdb_backtrace() at kdb_backtrace+0xd0/frame 0xfffffe0056e585f0
vpanic() at vpanic+0x257/frame 0xfffffe0056e587b0
panic() at panic+0xb5/frame 0xfffffe0056e58870
nl_soreceive() at nl_soreceive+0xc3b/frame 0xfffffe0056e589b0
soreceive() at soreceive+0xd8/frame 0xfffffe0056e58a10
kern_recvit() at kern_recvit+0x521/frame 0xfffffe0056e58bd0
sys_recvfrom() at sys_recvfrom+0x208/frame 0xfffffe0056e58d10
amd64_syscall() at amd64_syscall+0x4e2/frame 0xfffffe0056e58f30
fast_syscall_common() at fast_syscall_common+0xf8/frame 0xfffffe0056e58f30
--- syscall (198, FreeBSD ELF64, __syscall), rip = 0x3a52ba, rsp = 0x825cf7f08, rbp = 0x825cf7f80 ---
KDB: enter: panic
[ thread pid 854 tid 100198 ]
Stopped at kdb_enter+0x6e: movq $0,0x259e087(%rip)
db>
db> set $lines = 0
db> set $maxwidth = 0
db> show registers
cs 0x20
ds 0x3b
es 0x3b
fs 0x13
gs 0x1b
ss 0x28
rax 0x12
rcx 0xfffffe006ea00000
rdx 0x7ffff
rbx 0xffffffff8280aee0 .str.27
rsp 0xfffffe0056e585d0
rbp 0xfffffe0056e585f0
rsi 0x80001
rdi 0xffffffff816457a9 printf+0x149
r8 0
r9 0xffffffff
r10 0x3
r11 0xfffffe0054122550
r12 0xfffffe0054122000
r13 0xfffffffffffffffe
r14 0xffffffff8280aee0 .str.27
r15 0
rip 0xffffffff8162eb8e kdb_enter+0x6e
rflags 0x46
kdb_enter+0x6e: movq $0,0x259e087(%rip)
db> show proc
Process 854 (syz-executor) at 0xfffffe00540e0018:
state: NORMAL
uid: 0 gid: 0 supp gids: 0, 5
parent: pid 764 at 0xfffffe00540ab570
ABI: FreeBSD ELF64
flag: 0x10100080 flag2: 0x1
arguments: ./syz-executor exec
reaper: 0xfffffe0007809010 reapsubtree: 1
sigparent: 20
vmspace: 0xfffffe000780fdb0
(map 0xfffffe000780fdb0)
(map.pmap 0xfffffe000780fe50)
(pmap 0xfffffe000780fec0)
threads: 2
100117 RunQ syz-executor
100198 Run CPU 0 syz-executor
db> ps
pid ppid pgrp uid state wmesg wchan cmd
857 763 763 0 R (threaded) syz-executor
100196 RunQ syz-executor
100203 RunQ syz-executor
100204 S uwait 0xfffffe006df97b00 syz-executor
856 765 765 0 R (threaded) syz-executor
100172 RunQ syz-executor
100202 L *umtxql 0xfffffe00079f8f00 syz-executor
854 764 764 0 R (threaded) syz-executor
100117 RunQ syz-executor
100198 Run CPU 0 syz-executor
851 766 766 0 R (threaded) syz-executor
100113 Run CPU 1 syz-executor
100192 RunQ syz-executor
100193 S uwait 0xfffffe00584e9480 syz-executor
843 1 766 0 S uwait 0xfffffe006df97700 syz-executor
839 0 0 0 DL (threaded) [KTLS]
100130 D - 0xfffffe0058567700 [thr_0]
100170 D - 0xfffffe0058567780 [thr_1]
100171 D - 0xffffffff83cbf6a8 [reclaim_0]
833 1 763 0 S uwait 0xfffffe0057d94700 syz-executor
832 1 765 60928 S uwait 0xfffffe006df97900 syz-executor
830 1 764 0 S uwait 0xfffffe0057d94b80 syz-executor
827 1 763 0 S uwait 0xfffffe006df99180 syz-executor
822 814 822 0 Ss select 0xfffffe0058612240 dhclient
818 1 818 0 Ss select 0xfffffe00586132c0 dhclient
814 795 423 65 S select 0xfffffe0057de09c0 dhclient
807 0 0 0 DL aiordy 0xfffffe00540e7ac0 [aiod4]
806 0 0 0 DL aiordy 0xfffffe00540df568 [aiod3]
804 0 0 0 DL aiordy 0xfffffe00540e8018 [aiod2]
803 0 0 0 DL aiordy 0xfffffe00540dfac0 [aiod1]
795 423 423 0 S wait 0xfffffe00540deab8 sh
766 762 766 0 S nanslp 0xffffffff83badc80 syz-executor
765 762 765 0 R syz-executor
764 762 764 0 S nanslp 0xffffffff83badc80 syz-executor
763 762 763 0 S nanslp 0xffffffff83badc80 syz-executor
762 760 760 0 S select 0xfffffe0057df7840 syz-executor
760 758 760 0 Ss sigsusp 0xfffffe00540e5b60 csh
758 681 758 0 Ss select 0xfffffe0057df79c0 sshd
747 1 747 0 Ss+ ttyin 0xfffffe0058279cb0 getty
746 1 746 0 Ss+ ttyin 0xfffffe005862f0b0 getty
745 1 745 0 Ss+ ttyin 0xfffffe005862f4b0 getty
744 1 744 0 Ss+ ttyin 0xfffffe005862f8b0 getty
743 1 743 0 Ss+ ttyin 0xfffffe005862fcb0 getty
742 1 742 0 Ss+ ttyin 0xfffffe00586300b0 getty
741 1 741 0 Ss+ ttyin 0xfffffe00586304b0 getty
740 1 740 0 Ss+ ttyin 0xfffffe00586308b0 getty
739 1 739 0 Ss+ ttyin 0xfffffe0058630cb0 getty
737 1 17 0 S+ piperd 0xfffffe006b440700 logger
736 735 17 0 S+ nanslp 0xffffffff83badc80 sleep
735 1 17 0 S+ wait 0xfffffe00540e6008 sh
685 1 685 0 Ss nanslp 0xffffffff83badc80 cron
681 1 681 0 Ss select 0xfffffe0057ddbdc0 sshd
494 1 494 0 Ss select 0xfffffe0057ddbe40 syslogd
423 1 423 0 Ss wait 0xfffffe00540a8ab0 devd
422 1 422 65 Ss select 0xfffffe0057de0140 dhclient
337 1 337 0 Ss select 0xfffffe0057ddbf40 dhclient
334 1 334 0 Ss select 0xfffffe00586136c0 dhclient
16 0 0 0 DL syncer 0xffffffff83ccb8a0 [syncer]
15 0 0 0 DL vlruwt 0xfffffe000780a018 [vnlru]
14 0 0 0 DL (threaded) [bufdaemon]
100079 D psleep 0xffffffff83cc9de0 [bufdaemon]
100080 D - 0xffffffff83001ec0 [bufspacedaemon-0]
100093 D sdflush 0xfffffe0058278ce8 [/ worker]
9 0 0 0 DL psleep 0xffffffff83d14d40 [vmdaemon]
8 0 0 0 DL (threaded) [pagedaemon]
100077 D psleep 0xffffffff83cfae08 [dom0]
100081 D launds 0xffffffff83cfae14 [laundry: dom0]
100082 D umarcl 0xffffffff81e154d0 [uma]
7 0 0 0 DL - 0xffffffff839265f8 [rand_harvestq]
6 0 0 0 DL pftm 0xffffffff84497f20 [pf purge]
5 0 0 0 DL waiting 0xffffffff84905700 [sctp_iterator]
4 0 0 0 DL (threaded) [cam]
100045 D - 0xffffffff838f0340 [doneq0]
100046 D - 0xffffffff838f02c0 [async]
100075 D - 0xffffffff838f0140 [scanner]
3 0 0 0 DL (threaded) [crypto]
100042 D crypto_ 0xffffffff83cf66e0 [crypto]
100043 D crypto_ 0xfffffe0053ee4d30 [crypto returns 0]
100044 D crypto_ 0xfffffe0053ee4d80 [crypto returns 1]
13 0 0 0 DL (threaded) [geom]
100037 D - 0xffffffff83b56660 [g_event]
100038 D - 0xffffffff83b56680 [g_up]
100039 D - 0xffffffff83b566a0 [g_down]
2 0 0 0 RL (threaded) [clock]
100031 I [clock (0)]
100032 CanRun [clock (1)]
12 0 0 0 WL (threaded) [intr]
100013 I [swi6: task queue]
100014 I [swi6: Giant taskq]
100016 I [swi5: fast taskq]
100033 I [swi1: netisr 0]
100034 I [swi1: hpts]
100035 I [swi1: hpts]
100047 I [irq24: virtio_pci0]
100048 I [irq25: virtio_pci0]
100049 I [irq26: virtio_pci0]
100050 I [irq27: virtio_pci0]
100051 I [irq28: virtio_pci1]
100052 I [irq29: virtio_pci1]
100053 I [irq30: virtio_pci1]
100054 I [irq31: virtio_pci1]
100055 I [irq32: virtio_pci1]
100060 I [irq10: virtio_pci2]
100062 I [irq1: atkbd0]
100063 I [irq12: psm0]
100064 I [swi0: uart uart++]
100068 I [swi1: pf send]
11 0 0 0 RL (threaded) [idle]
100003 CanRun [idle: cpu0]
100004 CanRun [idle: cpu1]
1 0 1 0 SLs wait 0xfffffe0007809010 [init]
10 0 0 0 DL audit_w 0xffffffff83cf7180 [audit]
0 0 0 0 DLs (threaded) [kernel]
100000 D parked 0xffffffff84c54ff0 [swapper]
100005 D - 0xfffffe0053ea0100 [softirq_0]
100006 D - 0xfffffe0053ea0000 [softirq_1]
100007 D - 0xfffffe0053e9fe00 [if_io_tqg_0]
100008 D - 0xfffffe0053e9fd00 [if_io_tqg_1]
100009 D - 0xfffffe0053e9fc00 [if_config_tqg_0]
100010 D - 0xfffffe000776aa00 [kqueue_ctx taskq]
100011 D - 0xfffffe000776a900 [jail_remove taskq]
100012 D - 0xfffffe000776a800 [bus taskq]
100015 D - 0xfffffe000776a500 [thread taskq]
100017 D - 0xfffffe000776a300 [aiod_kick taskq]
100018 D - 0xfffffe000776a200 [deferred_unmount ta]
100019 D - 0xfffffe000776a100 [inm_free taskq]
100020 D - 0xfffffe000776a000 [in6m_free taskq]
100021 D - 0xfffffe0007769e00 [linuxkpi_irq_wq]
100022 D - 0xfffffe0007769d00 [linuxkpi_short_wq_0]
100023 D - 0xfffffe0007769d00 [linuxkpi_short_wq_1]
100024 D - 0xfffffe0007769d00 [linuxkpi_short_wq_2]
100025 D - 0xfffffe0007769d00 [linuxkpi_short_wq_3]
100026 D - 0xfffffe0007769c00 [linuxkpi_long_wq_0]
100027 D - 0xfffffe0007769c00 [linuxkpi_long_wq_1]
100028 D - 0xfffffe0007769c00 [linuxkpi_long_wq_2]
100029 D - 0xfffffe0007769c00 [linuxkpi_long_wq_3]
100036 D - 0xfffffe0007769a00 [firmware taskq]
100040 D - 0xfffffe0007769900 [crypto_0]
100041 D - 0xfffffe0007769900 [crypto_1]
100056 D - 0xfffffe0057de6d00 [vtnet0 rxq 0]
100057 D - 0xfffffe0057de6c00 [vtnet0 txq 0]
100058 D - 0xfffffe0057de6b00 [vtnet0 rxq 1]
100059 D - 0xfffffe0057de6a00 [vtnet0 txq 1]
100061 D vtbslp 0xfffffe0057de0380 [virtio_balloon]
100065 D - 0xffffffff8280f5c1 [deadlkres]
100069 D - 0xfffffe00593fd500 [acpi_task_0]
100070 D - 0xfffffe00593fd500 [acpi_task_1]
100071 D - 0xfffffe00593fd500 [acpi_task_2]
100073 D - 0xfffffe000776ab00 [mca taskq]
100074 D - 0xfffffe0007769700 [CAM taskq]
100076 D - 0xfffffe000776c500 [ipsec_offload]
100199 D - 0xfffffe006b6b1900 [netlink_socket (PID]
db> show all locks
Process 856 (syz-executor) thread 0xfffffe0054114000 (100172)
exclusive sleep mutex umtxql (umtxql) r = 0 (0xffffffff83bbe150) locked @ /syzkaller/managers/main/kernel/sys/kern/kern_umtx.c:1313
Process 854 (syz-executor) thread 0xfffffe0054122000 (100198)
exclusive sx so_rcv_sx (so_rcv_sx) r = 0 (0xfffffe006b4d51c0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:4835
Process 851 (syz-executor) thread 0xfffffe0054120780 (100192)
exclusive lockmgr ufs (ufs) r = 0 (0xfffffe006b497228) locked @ /syzkaller/managers/main/kernel/sys/kern/vfs_vnops.c:1313
db> show malloc
Type InUse MemUse Requests
pf_hash 6 12804K 6
linker 384 5188K 595
tcp_hpts 7 4801K 7
devbuf 4187 4324K 4212
sysctloid 35338 2082K 35413
vtbuf 24 1968K 46
kobj 331 1324K 497
newblk 12 1027K 607
vfscache 3 1025K 3
pcb 27 671K 77
inodedep 26 522K 155
ufs_quota 1 512K 1
vfs_hash 1 512K 1
callout 2 512K 2
intr 4 472K 4
subproc 139 274K 938
vnet_data 2 224K 2
acpitask 1 224K 1
filedesc 28 217K 141
KTRACE 100 200K 100
acpica 1674 184K 54450
vmem 5 144K 6
tidhash 3 141K 3
pagedep 15 132K 65
tfo_ccache 1 128K 1
IP reass 1 128K 1
sem 4 106K 4
DEVFS1 106 106K 123
gtaskqueue 18 98K 18
bus 1005 82K 5097
mtx_pool 3 74K 3
syncache 1 68K 1
NFSD srvcache 3 68K 3
module 523 66K 525
ddb_capture 1 64K 1
kdtrace 201 39K 1066
umtx 288 36K 288
BPF 22 36K 28
hostcache 1 32K 1
shm 1 32K 2
DEVFS3 125 32K 135
msg 4 30K 4
kbdmux 6 28K 6
temp 31 21K 1872
DEVFS_RULE 56 20K 56
ifaddr 67 19K 69
LRO 18 19K 18
ufs_mount 4 17K 5
proc 3 17K 3
tty 16 16K 16
routetbl 130 16K 410
ithread 90 15K 90
bus-sc 34 15K 1660
lltable 45 14K 45
eventhandler 163 14K 163
ether_multi 157 13K 172
ifnet 7 13K 7
kenv 95 12K 95
GEOM 49 11K 431
CAM queue 5 11K 1528
rman 82 10K 447
plimit 25 10K 340
cred 25 10K 195
shmfd 4 10K 5
rpc 8 9K 8
in6_multi 65 9K 65
bmsafemap 2 9K 120
devstat 4 9K 4
UART 12 9K 12
ksem 1 8K 1
pfs_vncache 1 8K 1
audit_evclass 240 8K 306
taskqueue 72 8K 75
kqueue 76 8K 926
sglist 6 7K 6
CAM DEV 3 6K 510
pfs_nodes 22 6K 22
ufs_dirhash 24 5K 24
UMA 270 5K 270
pf_ifnet 10 5K 19
vt 11 5K 11
memdesc 1 4K 1
MCA 32 4K 32
evdev 4 4K 4
pwddesc 61 4K 863
acpisem 28 4K 28
selfd 48 3K 43258
DEVFSP 46 3K 62
terminal 11 3K 11
session 22 3K 33
proc-args 87 3K 1902
acpidev 20 3K 20
netlink 3 3K 74
uidinfo 4 3K 10
lockf 22 3K 41
hhook 8 3K 10
clone 9 3K 9
kcovinfo 36 3K 36
local_apic 1 2K 1
io_apic 1 2K 1
ipsec-saq 2 2K 2
ip6ndp 12 2K 13
in_multi 7 2K 10
Unitno 30 2K 52
sctp_ifa 13 2K 14
diradd 13 2K 111
CAM XPT 22 2K 543
dirrem 6 2K 92
tun 4 2K 4
toponodes 6 2K 6
ipsecpolicy 2 2K 2
select 11 2K 38
msi 9 2K 9
softdep 1 1K 1
sahead 1 1K 1
secasvar 1 1K 1
nhops 6 1K 8
vnodemarker 2 1K 14
NFSD session 1 1K 1
CC Mem 7 1K 32
CAM periph 4 1K 271
sctp_ifn 6 1K 14
ipsec 3 1K 3
newdirblk 6 1K 49
mld 6 1K 6
igmp 6 1K 6
pfil 6 1K 6
isadev 6 1K 8
inpcbpolicy 23 1K 204
mount 16 1K 198
pci_link 10 1K 10
osd 12 1K 48
crypto 4 1K 16
encap_export_host 12 1K 12
freefile 4 1K 69
indirdep 2 1K 25
cdev 2 1K 2
lkpikmalloc 8 1K 9
counter_rate 13 1K 13
sctp_atcl 1 1K 7
mkdir 3 1K 98
chacha20random 1 1K 1
biobuf 1 1K 1
vnodes 1 1K 1
ktls 1 1K 8
procdesc 2 1K 8
NFSD lckfile 1 1K 1
NFSD V4client 1 1K 1
DEVFS 9 1K 10
CAM SIM 2 1K 2
feeder 7 1K 7
frag6 2 1K 2
tcpfunc 3 1K 3
ip_moptions 3 1K 5
loginclass 3 1K 5
prison 6 1K 6
cryptodev 2 1K 54
nexusdev 8 1K 8
apmdev 1 1K 1
atkbddev 2 1K 2
aio 4 1K 4
soname 5 1K 3349
iov 2 1K 13627
pmchooks 1 1K 1
filecaps 5 1K 72
CAM path 4 1K 1034
CAM dev queue 2 1K 2
CAM I/O Scheduler 1 1K 1
in_mfilter 2 1K 4
sctp_vrf 1 1K 1
freework 1 1K 86
ip6_msource 1 1K 1
ip_msource 1 1K 2
vnet 1 1K 1
pmc 1 1K 1
entropy 2 1K 33
acpiintr 1 1K 1
sctp_atky 1 1K 7
cpus 2 1K 2
vnet_data_free 1 1K 1
Per-cpu 1 1K 1
sctp_athm 1 1K 7
p1003.1b 1 1K 1
sctp_mcore 0 0K 0
sctp_socko 0 0K 3
sctp_iter 0 0K 12
sctp_mvrf 0 0K 0
sctp_timw 0 0K 0
sctp_cpal 0 0K 0
sctp_cmsg 0 0K 0
sctp_stre 0 0K 0
sctp_athi 0 0K 0
sctp_a_it 0 0K 12
sctp_aadr 0 0K 0
sctp_stro 0 0K 0
sctp_stri 0 0K 0
sctp_map 0 0K 0
ipcomp 0 0K 0
esp 0 0K 0
ah 0 0K 0
tcp_pcm_rack 0 0K 0
tcp_do_rack 0 0K 0
tcp_fsb_rack 0 0K 0
pf_table 0 0K 0
pf 0 0K 0
pf_rule 0 0K 0
pf_altq 0 0K 0
pf_osfp 0 0K 0
pf_krule_item 0 0K 0
pf_temp 0 0K 0
mqdata 0 0K 0
filemon 0 0K 1
madt_table 0 0K 2
smartpqi 0 0K 0
ixl 0 0K 0
ice-resmgr 0 0K 0
ice-osdep 0 0K 0
ice 0 0K 0
iavf 0 0K 0
axgbe 0 0K 0
fpukern_ctx 0 0K 0
xen_intr 0 0K 0
xen_hvm 0 0K 0
legacydrv 0 0K 0
NMI handlers 0 0K 0
bounce 0 0K 0
busdma 0 0K 0
qpidrv 0 0K 0
dmar_idpgtbl 0 0K 0
dmar_dom 0 0K 0
dmar_ctx 0 0K 0
amdiommu_dom 0 0K 0
amdiommu_ctx 0 0K 0
isci 0 0K 0
iommu_dmamap 0 0K 0
hyperv_socket 0 0K 0
bxe_ilt 0 0K 0
aesni_data 0 0K 4
xenbus 0 0K 0
vm_fictitious 0 0K 0
UMAHash 0 0K 0
vm_pgdata 0 0K 0
jblocks 0 0K 0
savedino 0 0K 37
sentinel 0 0K 0
jfsync 0 0K 0
jtrunc 0 0K 0
sbdep 0 0K 5
jsegdep 0 0K 0
jseg 0 0K 0
jfreefrag 0 0K 0
jfreeblk 0 0K 0
jnewblk 0 0K 0
jmvref 0 0K 0
jremref 0 0K 0
jaddref 0 0K 0
freedep 0 0K 0
freeblks 0 0K 59
freefrag 0 0K 6
allocindir 0 0K 0
allocdirect 0 0K 0
ufs_trim 0 0K 0
mactemp 0 0K 0
audit_trigger 0 0K 0
audit_pipe_presel 0 0K 0
audit_pipeent 0 0K 0
audit_pipe 0 0K 0
audit_evname 0 0K 0
audit_bsm 0 0K 0
audit_gidset 0 0K 0
audit_text 0 0K 0
audit_path 0 0K 0
audit_data 0 0K 0
audit_cred 0 0K 0
ktls_ocf 0 0K 2
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5E_TLS_RX 0 0K 0
MLX5EEPROM 0 0K 0
MLX5E_TLS 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EN 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5DUMP 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
MLX5EEPROM 0 0K 0
simple_attr 0 0K 0
seq_file 0 0K 0
lkpiskb 0 0K 0
radix 0 0K 0
idr 0 0K 0
lkpindev 0 0K 0
lkpimhi 0 0K 0
lkpifw 0 0K 0
lkpi80211 0 0K 0
NLM 0 0K 0
ipsec-spdcache 0 0K 0
ipsec-reg 0 0K 0
ipsec-misc 0 0K 0
ipsecrequest 0 0K 0
ip6opt 0 0K 6
ip6_moptions 0 0K 1
in6_mfilter 0 0K 2
tcplog 0 0K 0
tcp_hwpace 0 0K 0
ipid 0 0K 0
80211scan 0 0K 0
80211ratectl 0 0K 0
80211power 0 0K 0
80211nodeie 0 0K 0
80211node 0 0K 0
80211mesh_gt 0 0K 0
80211mesh_rt 0 0K 0
80211perr 0 0K 0
80211prep 0 0K 0
80211preq 0 0K 0
80211dfs 0 0K 0
80211crypto 0 0K 0
80211vap 0 0K 0
iflib 0 0K 0
vlan 0 0K 0
gif 0 0K 0
ifdescr 0 0K 0
zlib 0 0K 22
fadvise 0 0K 1
VN POLL 0 0K 1
statfs 0 0K 183
namei_tracker 0 0K 0
inotify 0 0K 6
export_host 0 0K 0
cl_savebuf 0 0K 10
lio 0 0K 3
acl 0 0K 0
mbuf_tag 0 0K 0
accf 0 0K 0
pts 0 0K 0
timerfd 0 0K 0
ioctlops 0 0K 101
eventfd 0 0K 1
Witness 0 0K 0
stack 0 0K 0
sbuf 0 0K 196
firmware 0 0K 0
compressor 0 0K 0
SWAP 0 0K 0
sysctltmp 0 0K 655
sysctl 0 0K 3
ekcd 0 0K 0
dumper 0 0K 0
sendfile 0 0K 0
rctl 0 0K 0
cache 0 0K 0
jaildesc 0 0K 0
prison_racct 0 0K 0
Fail Points 0 0K 0
sigio 0 0K 1
filedesc_to_leader 0 0K 0
pwd 0 0K 0
tty console 0 0K 0
boottrace 0 0K 0
isofs_node 0 0K 0
isofs_mount 0 0K 0
tr_raid5_data 0 0K 0
tr_raid1e_data 0 0K 0
tr_raid1_data 0 0K 0
tr_raid0_data 0 0K 0
tr_concat_data 0 0K 0
md_sii_data 0 0K 0
md_promise_data 0 0K 0
md_nvidia_data 0 0K 0
md_jmicron_data 0 0K 0
md_intel_data 0 0K 0
md_ddf_data 0 0K 0
raid_data 0 0K 72
geom_flashmap 0 0K 0
tmpfs dir 0 0K 0
tmpfs name 0 0K 0
tmpfs mount 0 0K 0
tmpfs extattr 0 0K 0
NFS FHA 0 0K 0
newnfsmnt 0 0K 0
newnfsclient_req 0 0K 0
NFSCL layrecall 0 0K 0
NFSCL session 0 0K 0
NFSCL sockreq 0 0K 0
NFSCL devinfo 0 0K 0
NFSCL flayout 0 0K 0
NFSCL layout 0 0K 0
NFSD rollback 0 0K 0
NFSCL diroff 0 0K 0
NEWNFSnode 0 0K 0
NFSCL lck 0 0K 0
NFSCL lckown 0 0K 0
NFSCL client 0 0K 0
NFSCL deleg 0 0K 0
NFSCL open 0 0K 0
NFSCL owner 0 0K 0
NFS fh 0 0K 0
NFS req 0 0K 0
NFSD usrgroup 0 0K 0
NFSD string 0 0K 0
NFSD V4lock 0 0K 0
NFSD V4state 0 0K 0
msdosfs_fat 0 0K 0
msdosfs_mount 0 0K 0
msdosfs_node 0 0K 0
DEVFS4 0 0K 0
DEVFS2 0 0K 0
gntdev 0 0K 0
privcmd_dev 0 0K 0
evtchn_dev 0 0K 0
xenstore 0 0K 0
xnb 0 0K 0
xen_acpi 0 0K 0
xbbd 0 0K 0
xbd 0 0K 0
Balloon 0 0K 0
sysmouse 0 0K 0
vtfont 0 0K 0
pvscsi 0 0K 0
USBdev 0 0K 0
USB 0 0K 0
ufshci 0 0K 0
twsbuf 0 0K 0
tcp_log_dev 0 0K 2
midi buffers 0 0K 0
mixer 0 0K 0
ac97 0 0K 0
hdacc 0 0K 0
hdac 0 0K 0
hdaa 0 0K 0
SIIS driver 0 0K 0
PUC 0 0K 0
ppbusdev 0 0K 0
sr_iov 0 0K 0
OCS 0 0K 0
OCS 0 0K 0
nvme 0 0K 0
nvd 0 0K 0
netmap 0 0K 0
mwldev 0 0K 0
MVS driver 0 0K 0
mpi3mrbuf 0 0K 0
mrsasbuf 0 0K 0
mpt_user 0 0K 0
mps_user 0 0K 0
MPSSAS 0 0K 0
mps 0 0K 0
mpr_user 0 0K 0
MPRSAS 0 0K 0
mpr 0 0K 0
mfibuf 0 0K 0
md_sectors 0 0K 0
md_disk 0 0K 0
malodev 0 0K 0
LED 0 0K 0
ix_sriov 0 0K 0
ix 0 0K 0
ipsbuf 0 0K 0
ciss_data 0 0K 0
BACKLIGHT 0 0K 0
ath_hal 0 0K 0
athdev 0 0K 0
ata_pci 0 0K 0
ata_dma 0 0K 0
ata_generic 0 0K 0
AHCI driver 0 0K 0
agp 0 0K 0
acpipwr 0 0K 0
acpi_perf 0 0K 0
acpicmbat 0 0K 0
aacraidcam 0 0K 0
aacraid_buf 0 0K 0
aaccam 0 0K 0
aacbuf 0 0K 0
zstd 0 0K 0
XZ_DEC 0 0K 0
nvlist 0 0K 175
SCSI ENC 0 0K 0
SCSI sa 0 0K 0
scsi_pass 0 0K 0
scsi_da 0 0K 70
ata_da 0 0K 0
scsi_ch 0 0K 0
scsi_cd 0 0K 0
nvme_da 0 0K 0
CAM CCB 0 0K 523
CAM ccb queue 0 0K 0
db> show uma
Zone Size Used Free Requests Sleeps Bucket Total Mem XFree
mbuf_jumbo_page 4096 8334 1064 12923 0 254 38494208 0
tcp_log 416 6439 419 14899 0 254 2852928 0
mbuf 256 8651 1011 21475 0 254 2473472 0
BUF TRIE 152 315 11489 667 0 62 1794208 0
malloc-384 384 4140 30 4159 0 30 1601280 0
malloc-128 128 11618 100 11631 0 126 1499904 0
malloc-4096 4096 334 4 581 0 2 1384448 0
UMA Slabs 0 112 10955 19 10955 0 126 1229088 0
RADIX NODE 152 7155 250 29132 0 62 1125560 0
mbuf_cluster 2048 508 0 508 0 254 1040384 0
malloc-65536 65536 14 1 18 0 1 983040 0
vmem btag 56 16714 101 16714 0 254 941640 0
FFS inode 1168 531 29 601 0 8 654080 0
sctp_ep 1152 1 510 7 0 254 588672 0
pbuf 2624 0 202 0 0 2 530048 0
socket 1024 38 470 1428 0 254 520192 0
lkpicurr 168 2 3094 2 0 62 520128 0
256 Bucket 2048 131 29 1080 0 8 327680 0
VM OBJECT 248 1181 131 13792 0 62 325376 0
malloc-4096 4096 71 3 868 0 2 303104 0
VNODE 440 569 97 641 0 30 293040 0
malloc-16384 16384 13 4 68 0 1 278528 0
THREAD 1860 139 5 204 0 8 267840 0
malloc-64 64 3882 213 3890 0 254 262080 0
malloc-2048 2048 108 12 355 0 8 245760 0
malloc-16 16 14561 439 14634 0 254 240000 0
DEVCTL 1024 20 200 148 0 0 225280 0
UMA Zones 768 242 2 242 0 16 187392 0
malloc-32 32 5352 318 5397 0 254 181440 0
malloc-128 128 1227 168 25641 0 126 178560 0
lkpimm 56 1 3095 1 0 254 173376 0
unpcb 320 11 505 1183 0 254 165120 0
malloc-32768 32768 2 3 15 0 1 163840 0
MAP ENTRY 96 1426 212 43702 0 126 157248 0
malloc-1024 1024 118 26 303 0 16 147456 0
FFS2 dinode 256 531 39 601 0 62 145920 0
malloc-256 256 76 494 803 0 62 145920 0
FPU_save_area 832 141 21 244 0 16 134784 0
S VFS Cache 104 1036 251 1135 0 126 133848 0
malloc-65536 65536 0 2 62 0 1 131072 0
malloc-65536 65536 0 2 110 0 1 131072 0
malloc-65536 65536 2 0 2 0 1 131072 0
malloc-65536 65536 1 1 9 0 1 131072 0
mbuf_packet 256 4 504 198 0 254 130048 0
ksiginfo 112 54 990 81 0 126 116928 0
malloc-128 128 685 214 4056 0 126 115072 0
malloc-16384 16384 5 2 10 0 1 114688 0
malloc-2048 2048 6 50 1039 0 8 114688 0
PROC 1368 60 17 860 0 8 105336 0
ertt_txseginfo 40 1 2625 2629 0 254 105040 0
malloc-128 128 625 150 1364 0 126 99200 0
malloc-32768 32768 3 0 3 0 1 98304 0
malloc-8192 8192 8 3 13 0 1 90112 0
malloc-8192 8192 9 2 92 0 1 90112 0
UMA Kegs 384 228 5 228 0 30 89472 0
syncache 168 1 527 4 0 254 88704 0
g_bio 408 0 210 5501 0 30 85680 0
128 Bucket 1024 52 31 253 0 16 84992 0
filedesc0 1072 61 16 863 0 8 82544 0
malloc-4096 4096 15 5 213 0 2 81920 0
malloc-4096 4096 12 6 500 0 2 73728 0
malloc-64 64 812 259 2443 0 254 68544 0
malloc-64 64 654 417 44942 0 254 68544 0
malloc-32768 32768 2 0 2 0 1 65536 0
malloc-1024 1024 26 38 558 0 16 65536 0
64 Bucket 512 83 45 1814 0 30 65536 0
malloc-256 256 156 99 982 0 62 65280 0
malloc-256 256 153 102 578 0 62 65280 0
malloc-256 256 185 70 305 0 62 65280 0
malloc-384 384 71 79 539 0 30 57600 0
tcp_bbr_map 128 0 403 337 0 126 51584 0
malloc-256 256 38 157 281 0 62 49920 0
32 Bucket 256 69 126 380 0 62 49920 0
DIRHASH 1024 34 14 34 0 16 49152 0
NAMEI 1024 0 48 13005 0 16 49152 0
da_ccb 544 0 84 1481 0 16 45696 0
tcp_inpcb 1304 9 24 31 0 8 43032 0
pcpu-8 8 4752 368 4951 0 254 40960 0
VMSPACE 584 40 30 841 0 16 40880 0
pipe 736 22 33 297 0 16 40480 0
udp_inpcb 408 10 80 158 0 30 36720 0
malloc-64 64 25 542 13566 0 254 36288 0
malloc-64 64 32 535 52 0 254 36288 0
malloc-64 64 221 346 1056 0 254 36288 0
malloc-64 64 70 497 947 0 254 36288 0
malloc-128 128 18 261 165 0 126 35712 0
malloc-128 128 9 270 83 0 126 35712 0
malloc-128 128 122 157 601 0 126 35712 0
malloc-128 128 29 250 290 0 126 35712 0
routing nhops 256 27 108 35 0 62 34560 0
ttyoutq 256 72 63 160 0 62 34560 0
malloc-384 384 72 18 78 0 30 34560 0
malloc-384 384 84 6 84 0 30 34560 0
malloc-256 256 27 108 451 0 62 34560 0
malloc-256 256 3 132 147 0 62 34560 0
malloc-256 256 17 118 285 0 62 34560 0
malloc-32768 32768 0 1 120 0 1 32768 0
malloc-32768 32768 0 1 3 0 1 32768 0
malloc-16384 16384 1 1 191 0 1 32768 0
malloc-2048 2048 0 16 13 0 8 32768 0
malloc-2048 2048 2 14 2 0 8 32768 0
malloc-2048 2048 9 7 37 0 8 32768 0
malloc-2048 2048 3 13 49 0 8 32768 0
malloc-2048 2048 10 6 34 0 8 32768 0
malloc-2048 2048 8 8 10 0 8 32768 0
malloc-1024 1024 3 29 45 0 16 32768 0
malloc-1024 1024 17 15 1013 0 16 32768 0
malloc-1024 1024 2 30 6 0 16 32768 0
malloc-1024 1024 3 29 8 0 16 32768 0
malloc-512 512 0 64 110 0 30 32768 0
malloc-512 512 14 50 33 0 30 32768 0
malloc-512 512 0 64 14 0 30 32768 0
malloc-512 512 2 62 50 0 30 32768 0
malloc-512 512 10 54 31 0 30 32768 0
malloc-512 512 2 62 18 0 30 32768 0
malloc-512 512 5 59 12 0 30 32768 0
pcpu-64 64 501 11 501 0 254 32768 0
tcp_bbr_pcb 896 0 36 2 0 16 32256 0
ttyinq 160 135 65 300 0 62 32000 0
tcp_log_id_node 120 2 262 2 0 126 31680 0
PGRP 120 26 238 37 0 126 31680 0
sctp_laddr 48 0 588 12 0 254 28224 0
malloc-32 32 353 529 4231 0 254 28224 0
16 Bucket 144 64 132 365 0 62 28224 0
4 Bucket 48 6 582 7 0 254 28224 0
AIO 208 1 132 10 0 62 27664 0
TURNSTILE 136 145 44 145 0 62 25704 0
cpuset 200 8 120 14 0 62 25600 0
malloc-8192 8192 3 0 3 0 1 24576 0
malloc-4096 4096 3 3 44 0 2 24576 0
tcp_log_id_bucket 176 2 136 2 0 62 24288 0
PWD 40 24 582 130 0 254 24240 0
rtentry 168 30 114 35 0 62 24192 0
Files 80 196 104 7044 0 126 24000 0
8 Bucket 80 50 250 295 0 126 24000 0
itimer 352 0 66 2 0 30 23232 0
malloc-384 384 1 59 2 0 30 23040 0
malloc-384 384 12 48 12 0 30 23040 0
malloc-384 384 28 32 547 0 30 23040 0
ripcb 376 6 54 15 0 30 22560 0
Mountpoints 2816 2 6 4 0 4 22528 0
SLEEPQUEUE 88 145 111 145 0 126 22528 0
clpbuf 2624 0 8 25 0 4 20992 0
hostcache 64 1 314 1 0 254 20160 0
ertt 72 7 273 31 0 126 20160 0
malloc-64 64 3 312 3 0 254 20160 0
malloc-32 32 66 564 390 0 254 20160 0
malloc-32 32 22 608 141 0 254 20160 0
malloc-32 32 156 474 1470 0 254 20160 0
malloc-32 32 60 570 90 0 254 20160 0
malloc-32 32 130 500 138 0 254 20160 0
malloc-32 32 16 614 20 0 254 20160 0
2 Bucket 32 60 570 358 0 254 20160 0
KNOTE 160 2 123 24 0 62 20000 0
cryptop 280 0 70 2 0 30 19600 0
AIOCB 552 1 34 10 0 16 19320 0
ktls_session 256 0 75 2 0 62 19200 0
vmem 1856 2 7 2 0 8 16704 0
epoch_record pcpu 256 4 60 4 0 62 16384 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-16384 16384 0 1 1 0 1 16384 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-8192 8192 0 2 22 0 1 16384 0
malloc-8192 8192 2 0 2 0 1 16384 0
malloc-4096 4096 1 3 6 0 2 16384 0
malloc-1024 1024 0 16 1 0 16 16384 0
malloc-1024 1024 2 14 2 0 16 16384 0
malloc-512 512 2 30 2 0 30 16384 0
SMR CPU 32 8 503 8 0 254 16352 0
vtnet_tx_hdr 24 0 668 3866 0 254 16032 0
malloc-16 16 514 486 3484 0 254 16000 0
kenv 258 17 43 1067 0 30 15480 0
mqnode 416 3 33 3 0 30 14976 0
domainset 40 0 315 5 0 254 12600 0
SMR SHARED 24 8 503 8 0 254 12264 0
malloc-16 16 45 705 1415 0 254 12000 0
malloc-16 16 10 740 16 0 254 12000 0
malloc-16 16 41 709 109 0 254 12000 0
malloc-16 16 46 704 25126 0 254 12000 0
malloc-16 16 16 734 18 0 254 12000 0
malloc-16 16 8 742 17 0 254 12000 0
L VFS Cache 320 0 36 1 0 30 11520 0
malloc-384 384 1 29 2 0 30 11520 0
AIOLIO 272 0 42 3 0 30 11424 0
malloc-8192 8192 0 1 26 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-4096 4096 0 2 7 0 2 8192 0
pcpu-16 16 8 504 8 0 254 8192 0
UMA Slabs 1 176 9 13 9 0 62 3872 0
KMAP ENTRY 96 12 27 22 0 0 3744 0
FFS1 dinode 128 0 0 0 0 126 0 0
ada_ccb 272 0 0 0 0 30 0 0
swblk 136 0 0 0 0 62 0 0
swpctrie 152 0 0 0 0 62 0 0
cdg_qdiffsample 16 0 0 0 0 254 0 0
pf state scrubs 40 0 0 0 0 254 0 0
pf frag entries 40 0 0 0 0 254 0 0
pf fragment node 72 0 0 0 0 126 0 0
pf frags 232 0 0 0 0 62 0 0
pf table entries 160 0 0 0 0 254 0 0
pf table entry counters 64 0 0 0 0 254 0 0
pf Ethernet anchors 1240 0 0 0 0 64 0 0
pf anchors 1664 0 0 0 0 64 0 0
pf UDP mappings 104 0 0 0 0 126 0 0
pf source nodes 152 0 0 0 0 254 0 0
pf state keys 88 0 0 0 0 126 0 0
pf states 384 0 0 0 0 254 0 0
pf tags 104 0 0 0 0 126 0 0
pf mtags 184 0 0 0 0 62 0 0
tcp_rack_pcb 1088 0 0 0 0 8 0 0
tcp_rack_map 128 0 0 0 0 126 0 0
tfo_ccache_entries 80 0 0 0 0 126 0 0
tfo 4 0 0 0 0 254 0 0
sackhole 32 0 0 0 0 254 0 0
ipq 56 0 0 0 0 254 0 0
sctp_asconf_ack 48 0 0 0 0 254 0 0
sctp_asconf 40 0 0 0 0 254 0 0
sctp_stream_msg_out 112 0 0 0 0 254 0 0
sctp_readq 152 0 0 0 0 254 0 0
sctp_chunk 152 0 0 0 0 254 0 0
sctp_raddr 736 0 0 0 0 254 0 0
sctp_asoc 2256 0 0 0 0 254 0 0
tcpreass 48 0 0 0 0 254 0 0
udplite_inpcb 408 0 0 0 0 30 0 0
IPsec SA lft_c 16 0 0 0 0 254 0 0
mqnotifier 216 0 0 0 0 62 0 0
mvdata 64 0 0 0 0 254 0 0
mqueue 248 0 0 0 0 62 0 0
TMPFS node 240 0 0 0 0 62 0 0
NCLNODE 608 0 0 0 0 16 0 0
LTS VFS Cache 360 0 0 0 0 30 0 0
STS VFS Cache 144 0 0 0 0 62 0 0
linux_dma_object 32 0 0 0 0 254 0 0
linux_dma_pctrie 152 0 0 0 0 62 0 0
IOMMU_MAP_ENTRY 112 0 0 0 0 126 0 0
skbuff 1808 0 0 0 0 8 0 0
mbuf_jumbo_16k 16384 0 0 0 0 254 0 0
mbuf_jumbo_9k 9216 0 0 0 0 254 0 0
audit_record 1280 0 0

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

If the report is already addressed, let syzbot know by replying with:
#syz fix: exact-commit-title

If you want to overwrite report's subsystems, reply with:
#syz set subsystems: new-subsystem
(See the list of subsystem names on the web dashboard)

If the report is a duplicate of another one, reply with:
#syz dup: exact-subject-of-another-report

If you want to undo deduplication, reply with:
#syz undup

syzbot

unread,
Sep 27, 2025, 11:24:36 AM (6 days ago) Sep 27
to syzkaller-f...@googlegroups.com
syzbot has found a reproducer for the following issue on:

HEAD commit: ceb5792d1e2e OptionalObsoleteFiles.inc: Add more ATF libra..
git tree: freebsd-src
console output: https://syzkaller.appspot.com/x/log.txt?x=10d282e2580000
dashboard link: https://syzkaller.appspot.com/bug?extid=194f95f2c5fdffef1ef5
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=14d282e2580000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=12ce12e2580000

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+194f95...@syzkaller.appspotmail.com

panic: Assertion uio->uio_resid < 0 failed at /syzkaller/managers/main/kernel/sys/netlink/netlink_domain.c:808
cpuid = 1
time = 1758986595
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0xc6/frame 0xfffffe0056da2490
kdb_backtrace() at kdb_backtrace+0xd0/frame 0xfffffe0056da25f0
vpanic() at vpanic+0x257/frame 0xfffffe0056da27b0
panic() at panic+0xb5/frame 0xfffffe0056da2870
nl_soreceive() at nl_soreceive+0xc3b/frame 0xfffffe0056da29b0
soreceive() at soreceive+0xd8/frame 0xfffffe0056da2a10
kern_recvit() at kern_recvit+0x521/frame 0xfffffe0056da2bd0
sys_recvfrom() at sys_recvfrom+0x208/frame 0xfffffe0056da2d10
amd64_syscall() at amd64_syscall+0x4e2/frame 0xfffffe0056da2f30
fast_syscall_common() at fast_syscall_common+0xf8/frame 0xfffffe0056da2f30
--- syscall (198, FreeBSD ELF64, __syscall), rip = 0x3a52ba, rsp = 0x8236d8f08, rbp = 0x8236d8f80 ---
KDB: enter: panic
[ thread pid 860 tid 100145 ]
Stopped at kdb_enter+0x6e: movq $0,0x259e087(%rip)
db>
db> set $lines = 0
db> set $maxwidth = 0
db> show registers
cs 0x20
ds 0x3b
es 0x3b
fs 0x13
gs 0x1b
ss 0x28
rax 0x12
rcx 0xfffffe0002bf1850
rdx 0xdffff7c000000000
rbx 0xffffffff8280aee0 .str.27
rsp 0xfffffe0056da25d0
rbp 0xfffffe0056da25f0
rsi 0
rdi 0xffffffff830004e8 panicstr
r8 0
r9 0xffffffff
r10 0x3
r11 0xfffffe0054112550
r12 0xfffffe0054112000
r13 0xfffffffffffffffd
r14 0xffffffff8280aee0 .str.27
r15 0
rip 0xffffffff8162eb8e kdb_enter+0x6e
rflags 0x46
kdb_enter+0x6e: movq $0,0x259e087(%rip)
db> show proc
Process 860 (syz-executor) at 0xfffffe00540d5008:
state: NORMAL
uid: 0 gid: 0 supp gids: 0, 5
parent: pid 832 at 0xfffffe0054101000
ABI: FreeBSD ELF64
flag: 0x10000080 flag2: 0
arguments: ./syz-executor exec
reaper: 0xfffffe0007809010 reapsubtree: 1
sigparent: 20
vmspace: 0xfffffe005410edb0
(map 0xfffffe005410edb0)
(map.pmap 0xfffffe005410ee50)
(pmap 0xfffffe005410eec0)
threads: 2
100105 RunQ syz-executor
100145 Run CPU 1 syz-executor
db> ps
pid ppid pgrp uid state wmesg wchan cmd
865 838 838 0 RV syz-executor
864 851 423 0 R ifconfig
862 824 824 0 RE CPU 0 ifconfig
860 832 832 0 R (threaded) syz-executor
100105 RunQ syz-executor
100145 Run CPU 1 syz-executor
851 423 423 0 S piperd 0xfffffe006de3b000 sh
838 773 838 0 D ppwait 0xfffffe00540d4a58 syz-executor
834 773 834 0 R syz-executor
832 773 832 0 S nanslp 0xffffffff83badc80 syz-executor
824 773 824 0 S wait 0xfffffe00540a5558 syz-executor
773 772 770 0 S select 0xfffffe0058612f40 syz-executor
772 770 770 0 S (threaded) syz-execprog
100116 S uwait 0xfffffe00584ea400 syz-execprog
100117 S uwait 0xfffffe00584ea500 syz-execprog
100118 S uwait 0xfffffe0057d01500 syz-execprog
100119 S uwait 0xfffffe006df07380 syz-execprog
100120 S kqread 0xfffffe006b6dc600 syz-execprog
100121 S uwait 0xfffffe00584e9780 syz-execprog
100122 S uwait 0xfffffe00584e9880 syz-execprog
770 768 770 0 Ss sigsusp 0xfffffe00540f1620 csh
768 681 768 0 Ss select 0xfffffe00586138c0 sshd
747 1 747 0 Ss+ ttyin 0xfffffe0058279cb0 getty
746 1 746 0 Ss+ ttyin 0xfffffe005862f4b0 getty
745 1 745 0 Ss+ ttyin 0xfffffe005862f8b0 getty
744 1 744 0 Ss+ ttyin 0xfffffe0058278cb0 getty
743 1 743 0 Ss+ ttyin 0xfffffe005862fcb0 getty
742 1 742 0 Ss+ ttyin 0xfffffe00586300b0 getty
741 1 741 0 Ss+ ttyin 0xfffffe00586304b0 getty
740 1 740 0 Ss+ ttyin 0xfffffe00586308b0 getty
739 1 739 0 Ss+ ttyin 0xfffffe0058630cb0 getty
737 1 17 0 S+ piperd 0xfffffe006de3bb80 logger
736 735 17 0 S+ nanslp 0xffffffff83badc80 sleep
735 1 17 0 S+ wait 0xfffffe00540a7ac0 sh
685 1 685 0 Ss nanslp 0xffffffff83badc81 cron
681 1 681 0 Ss select 0xfffffe00586137c0 sshd
494 1 494 0 Ss select 0xfffffe00586136c0 syslogd
423 1 423 0 Ss wait 0xfffffe00540a6ab8 devd
422 1 422 65 Ss select 0xfffffe0058613740 dhclient
337 1 337 0 Ss select 0xfffffe0058613540 dhclient
334 1 334 0 Ss select 0xfffffe0057ddbec0 dhclient
16 0 0 0 DL syncer 0xffffffff83ccb8a0 [syncer]
15 0 0 0 DL vlruwt 0xfffffe000780a018 [vnlru]
14 0 0 0 DL (threaded) [bufdaemon]
100079 D psleep 0xffffffff83cc9de0 [bufdaemon]
100082 D - 0xffffffff83001ec0 [bufspacedaemon-0]
100094 D sdflush 0xfffffe005862e0e8 [/ worker]
9 0 0 0 DL psleep 0xffffffff83d14d40 [vmdaemon]
8 0 0 0 DL (threaded) [pagedaemon]
100077 D psleep 0xffffffff83cfae08 [dom0]
100080 D launds 0xffffffff83cfae14 [laundry: dom0]
100081 D umarcl 0xffffffff81e154d0 [uma]
7 0 0 0 DL - 0xffffffff839265f8 [rand_harvestq]
6 0 0 0 DL pftm 0xffffffff84515f20 [pf purge]
5 0 0 0 DL waiting 0xffffffff84913700 [sctp_iterator]
4 0 0 0 DL (threaded) [cam]
100045 D - 0xffffffff838f0340 [doneq0]
100046 D - 0xffffffff838f02c0 [async]
100075 D - 0xffffffff838f0140 [scanner]
3 0 0 0 DL (threaded) [crypto]
100042 D crypto_ 0xffffffff83cf66e0 [crypto]
100043 D crypto_ 0xfffffe0053ee4d30 [crypto returns 0]
100044 D crypto_ 0xfffffe0053ee4d80 [crypto returns 1]
13 0 0 0 DL (threaded) [geom]
100037 D - 0xffffffff83b56660 [g_event]
100038 D - 0xffffffff83b56680 [g_up]
100039 D - 0xffffffff83b566a0 [g_down]
2 0 0 0 WL (threaded) [clock]
100031 I [clock (0)]
100032 I [clock (1)]
100065 D - 0xffffffff8280f5c0 [deadlkres]
100069 D - 0xfffffe00593fd500 [acpi_task_0]
100070 D - 0xfffffe00593fd500 [acpi_task_1]
100071 D - 0xfffffe00593fd500 [acpi_task_2]
100073 D - 0xfffffe000776ab00 [mca taskq]
100074 D - 0xfffffe0007769700 [CAM taskq]
100076 D - 0xfffffe00593fd400 [ipsec_offload]
100146 D - 0xfffffe00593fbe00 [netlink_socket (PID]
863 834 834 0 Z ifconfig
db> show all locks
Process 860 (syz-executor) thread 0xfffffe0054112000 (100145)
exclusive sx so_rcv_sx (so_rcv_sx) r = 0 (0xfffffe006b746dc0) locked @ /syzkaller/managers/main/kernel/sys/kern/uipc_socket.c:4835
db> show malloc
Type InUse MemUse Requests
pf_hash 6 12804K 6
linker 384 5188K 498
tcp_hpts 7 4801K 7
devbuf 4187 4324K 4212
sysctloid 35125 2070K 35200
vtbuf 24 1968K 46
newblk 1905 1500K 1963
kobj 331 1324K 495
vfscache 3 1025K 3
pcb 24 669K 52
inodedep 102 550K 127
ufs_quota 1 512K 1
vfs_hash 1 512K 1
callout 2 512K 2
intr 4 472K 4
subproc 117 226K 933
vnet_data 2 224K 2
acpitask 1 224K 1
KTRACE 100 200K 100
acpica 1674 184K 54444
vmem 5 144K 6
tidhash 3 141K 3
pagedep 47 140K 62
tfo_ccache 1 128K 1
IP reass 1 128K 1
sem 4 106K 4
DEVFS1 106 106K 126
filedesc 14 105K 141
gtaskqueue 18 98K 18
bus 1000 82K 5086
mtx_pool 3 74K 3
syncache 1 68K 1
NFSD srvcache 3 68K 3
module 523 66K 523
ddb_capture 1 64K 1
kdtrace 183 37K 1013
umtx 272 34K 272
hostcache 1 32K 1
shm 1 32K 1
DEVFS3 125 32K 136
msg 4 30K 4
kbdmux 6 28K 6
routetbl 149 24K 452
temp 31 21K 1967
DEVFS_RULE 56 20K 56
LRO 18 19K 20
BPF 14 19K 23
ifaddr 65 18K 77
ufs_mount 4 17K 5
proc 3 17K 3
tty 16 16K 16
ithread 90 15K 90
bus-sc 34 15K 1657
eventhandler 163 14K 163
ifnet 7 13K 8
lltable 39 12K 47
kenv 95 12K 95
netlink 7 11K 88
ether_multi 129 11K 167
GEOM 49 11K 431
CAM queue 5 11K 1528
rman 82 10K 437
rpc 8 9K 8
mkdir 70 9K 102
cred 23 9K 283
bmsafemap 3 9K 93
plimit 22 9K 459
devstat 4 9K 4
UART 12 9K 12
ksem 1 8K 1
shmfd 1 8K 1
pfs_vncache 1 8K 1
audit_evclass 240 8K 306
taskqueue 72 8K 72
diradd 58 8K 89
in6_multi 55 8K 65
dirrem 27 7K 47
sglist 6 7K 6
CAM DEV 3 6K 510
kqueue 54 6K 872
pfs_nodes 22 6K 22
ufs_dirhash 24 5K 24
newdirblk 37 5K 51
pf_ifnet 11 5K 24
UMA 268 5K 268
vt 11 5K 11
memdesc 1 4K 1
MCA 32 4K 32
evdev 4 4K 4
acpisem 28 4K 28
pwddesc 48 3K 866
proc-args 81 3K 2000
terminal 11 3K 11
selfd 41 3K 29120
indirdep 10 3K 10
session 20 3K 50
acpidev 20 3K 20
hhook 8 3K 10
clone 9 3K 9
uidinfo 3 3K 9
local_apic 1 2K 1
io_apic 1 2K 1
ipsec-saq 2 2K 2
Unitno 30 2K 56
lockf 16 2K 30
ip6ndp 11 2K 14
CAM XPT 22 2K 543
sctp_ifa 12 2K 15
in_multi 6 2K 9
tun 4 2K 5
toponodes 6 2K 6
freefile 11 2K 20
ipsecpolicy 2 2K 2
msi 9 2K 9
softdep 1 1K 1
sahead 1 1K 1
secasvar 1 1K 1
nhops 6 1K 8
vnodemarker 2 1K 8
select 8 1K 35
NFSD session 1 1K 1
CAM periph 4 1K 271
sctp_ifn 6 1K 15
ipsec 3 1K 3
mld 6 1K 7
CC Mem 6 1K 13
igmp 6 1K 7
pfil 6 1K 6
isadev 6 1K 6
mount 16 1K 89
pci_link 10 1K 10
crypto 4 1K 4
encap_export_host 12 1K 12
osd 11 1K 30
cdev 2 1K 2
DEVFSP 8 1K 46
lkpikmalloc 8 1K 9
inpcbpolicy 13 1K 189
counter_rate 13 1K 13
chacha20random 1 1K 1
biobuf 1 1K 1
freework 2 1K 37
freeblks 1 1K 36
vnodes 1 1K 1
NFSD lckfile 1 1K 1
NFSD V4client 1 1K 1
DEVFS 9 1K 10
CAM SIM 2 1K 2
feeder 7 1K 7
tcpfunc 3 1K 3
loginclass 3 1K 7
prison 6 1K 6
cryptodev 2 1K 49
nexusdev 8 1K 8
apmdev 1 1K 1
atkbddev 2 1K 2
soname 5 1K 3407
procdesc 1 1K 8
pmchooks 1 1K 1
CAM path 4 1K 1034
CAM dev queue 2 1K 2
CAM I/O Scheduler 1 1K 1
filecaps 4 1K 72
sctp_vrf 1 1K 1
vnet 1 1K 1
pmc 1 1K 1
entropy 2 1K 58
acpiintr 1 1K 1
cpus 2 1K 2
vnet_data_free 1 1K 1
Per-cpu 1 1K 1
p1003.1b 1 1K 1
sctp_mcore 0 0K 0
sctp_socko 0 0K 0
sctp_iter 0 0K 11
sctp_mvrf 0 0K 0
sctp_timw 0 0K 0
sctp_cpal 0 0K 0
sctp_cmsg 0 0K 0
sctp_stre 0 0K 0
sctp_athi 0 0K 0
sctp_athm 0 0K 0
sctp_atky 0 0K 0
sctp_atcl 0 0K 0
sctp_a_it 0 0K 11
sctp_aadr 0 0K 0
sctp_stro 0 0K 0
sctp_stri 0 0K 0
sctp_map 0 0K 0
filemon 0 0K 0
tcp_pcm_rack 0 0K 0
tcp_do_rack 0 0K 0
tcp_fsb_rack 0 0K 0
mqdata 0 0K 0
pf_table 0 0K 0
pf 0 0K 0
pf_rule 0 0K 0
pf_altq 0 0K 0
pf_osfp 0 0K 0
pf_krule_item 0 0K 0
pf_temp 0 0K 0
ipcomp 0 0K 0
esp 0 0K 0
ah 0 0K 0
aesni_data 0 0K 0
xenbus 0 0K 0
vm_fictitious 0 0K 0
UMAHash 0 0K 0
vm_pgdata 0 0K 0
jblocks 0 0K 0
savedino 0 0K 15
sentinel 0 0K 0
jfsync 0 0K 0
jtrunc 0 0K 0
sbdep 0 0K 2
jsegdep 0 0K 0
jseg 0 0K 0
jfreefrag 0 0K 0
jfreeblk 0 0K 0
jnewblk 0 0K 0
jmvref 0 0K 0
jremref 0 0K 0
jaddref 0 0K 0
freedep 0 0K 0
freefrag 0 0K 35
allocindir 0 0K 0
allocdirect 0 0K 0
ufs_trim 0 0K 0
mactemp 0 0K 0
audit_trigger 0 0K 0
audit_pipe_presel 0 0K 0
audit_pipeent 0 0K 0
audit_pipe 0 0K 0
audit_evname 0 0K 0
audit_bsm 0 0K 0
audit_gidset 0 0K 0
audit_text 0 0K 0
audit_path 0 0K 0
audit_data 0 0K 0
audit_cred 0 0K 0
ktls_ocf 0 0K 0
ipsec-misc 0 0K 2
ipsecrequest 0 0K 0
ip6opt 0 0K 3
ip6_msource 0 0K 0
ip6_moptions 0 0K 0
in6_mfilter 0 0K 0
frag6 0 0K 0
tcplog 0 0K 0
tcp_hwpace 0 0K 0
ip_msource 0 0K 0
ip_moptions 0 0K 0
in_mfilter 0 0K 0
ipid 0 0K 0
80211scan 0 0K 0
80211ratectl 0 0K 0
80211power 0 0K 0
80211nodeie 0 0K 0
80211node 0 0K 0
80211mesh_gt 0 0K 0
80211mesh_rt 0 0K 0
80211perr 0 0K 0
80211prep 0 0K 0
80211preq 0 0K 0
80211dfs 0 0K 0
80211crypto 0 0K 0
80211vap 0 0K 0
iflib 0 0K 0
vlan 0 0K 0
gif 0 0K 0
ifdescr 0 0K 0
zlib 0 0K 20
fadvise 0 0K 0
VN POLL 0 0K 0
statfs 0 0K 196
namei_tracker 0 0K 0
inotify 0 0K 0
export_host 0 0K 0
cl_savebuf 0 0K 32
aio 0 0K 0
lio 0 0K 0
acl 0 0K 0
mbuf_tag 0 0K 0
ktls 0 0K 0
accf 0 0K 0
pts 0 0K 0
timerfd 0 0K 0
iov 0 0K 15519
ioctlops 0 0K 100
eventfd 0 0K 0
Witness 0 0K 0
stack 0 0K 0
sbuf 0 0K 190
firmware 0 0K 0
compressor 0 0K 0
SWAP 0 0K 0
sysctltmp 0 0K 722
sysctl 0 0K 3
ekcd 0 0K 0
dumper 0 0K 0
sendfile 0 0K 0
rctl 0 0K 0
cache 0 0K 0
kcovinfo 0 0K 30
tcp_log_dev 0 0K 0
nvlist 0 0K 0
SCSI ENC 0 0K 0
SCSI sa 0 0K 0
scsi_pass 0 0K 0
scsi_da 0 0K 70
ata_da 0 0K 0
scsi_ch 0 0K 0
scsi_cd 0 0K 0
nvme_da 0 0K 0
CAM CCB 0 0K 523
CAM ccb queue 0 0K 0
db> show uma
Zone Size Used Free Requests Sleeps Bucket Total Mem XFree
mbuf_jumbo_page 4096 8320 1078 25004 0 254 38494208 0
mbuf 256 8590 1072 33632 0 254 2473472 0
tcp_log 416 725 4612 9253 0 254 2220192 0
BUF TRIE 152 310 11494 1022 0 62 1794208 0
malloc-384 384 4140 30 4153 0 30 1601280 0
malloc-128 128 11546 48 11560 0 126 1484032 0
malloc-4096 4096 334 2 577 0 2 1376256 0
UMA Slabs 0 112 10934 4 10934 0 126 1225056 0
mbuf_cluster 2048 508 0 508 0 254 1040384 0
malloc-65536 65536 14 1 17 0 1 983040 0
vmem btag 56 16405 50 16405 0 254 921480 0
RADIX NODE 152 4514 1149 28835 0 62 860776 0
FFS inode 1168 560 28 580 0 8 686784 0
socket 1024 23 485 1408 0 254 520192 0
lkpicurr 168 2 3094 2 0 62 520128 0
pbuf 2624 0 198 0 0 2 519552 0
malloc-256 256 1965 30 2153 0 62 510720 0
256 Bucket 2048 134 10 1094 0 8 294912 0
VM OBJECT 248 1041 143 14258 0 62 293632 0
VNODE 440 597 69 620 0 30 293040 0
malloc-4096 4096 56 10 876 0 2 270336 0
malloc-64 64 3856 239 3861 0 254 262080 0
THREAD 1860 132 4 146 0 8 252960 0
malloc-2048 2048 107 13 348 0 8 245760 0
malloc-16 16 14468 282 14537 0 254 236000 0
malloc-2048 2048 6 106 1038 0 8 229376 0
DEVCTL 1024 23 197 161 0 0 225280 0
UMA Zones 768 240 4 240 0 16 187392 0
malloc-32 32 5322 348 5366 0 254 181440 0
malloc-16384 16384 6 5 61 0 1 180224 0
malloc-128 128 1221 174 25603 0 126 178560 0
lkpimm 56 1 3095 1 0 254 173376 0
unpcb 320 8 508 1192 0 254 165120 0
FFS2 dinode 256 560 70 580 0 62 161280 0
malloc-1024 1024 117 27 304 0 16 147456 0
MAP ENTRY 96 1113 399 45000 0 126 145152 0
S VFS Cache 104 1018 269 1070 0 126 133848 0
malloc-65536 65536 0 2 70 0 1 131072 0
malloc-65536 65536 0 2 110 0 1 131072 0
malloc-65536 65536 2 0 2 0 1 131072 0
malloc-65536 65536 1 1 9 0 1 131072 0
mbuf_packet 256 0 508 233 0 254 130048 0
FPU_save_area 832 134 10 5279 0 16 119808 0
ksiginfo 112 48 996 5158 0 126 116928 0
malloc-128 128 720 179 4007 0 126 115072 0
malloc-128 128 697 202 1368 0 126 115072 0
malloc-32768 32768 3 0 3 0 1 98304 0
malloc-32768 32768 2 1 13 0 1 98304 0
PROC 1368 49 17 865 0 8 90288 0
malloc-8192 8192 9 2 92 0 1 90112 0
UMA Kegs 384 227 6 227 0 30 89472 0
syncache 168 0 528 6 0 254 88704 0
128 Bucket 1024 43 40 294 0 16 84992 0
malloc-16384 16384 5 0 7 0 1 81920 0
malloc-4096 4096 15 5 240 0 2 81920 0
filedesc0 1072 48 22 866 0 8 75040 0
malloc-384 384 138 42 631 0 30 69120 0
malloc-64 64 785 286 2481 0 254 68544 0
malloc-64 64 572 499 30775 0 254 68544 0
malloc-32768 32768 0 2 120 0 1 65536 0
malloc-32768 32768 2 0 2 0 1 65536 0
malloc-8192 8192 8 0 9 0 1 65536 0
malloc-1024 1024 26 38 557 0 16 65536 0
malloc-256 256 203 52 957 0 62 65280 0
malloc-256 256 150 105 543 0 62 65280 0
malloc-256 256 182 73 255 0 62 65280 0
g_bio 408 0 150 5211 0 30 61200 0
malloc-4096 4096 12 2 495 0 2 57344 0
32 Bucket 256 62 133 1704 0 62 49920 0
DIRHASH 1024 34 14 34 0 16 49152 0
NAMEI 1024 0 48 13507 0 16 49152 0
malloc-16384 16384 1 2 191 0 1 49152 0
64 Bucket 512 83 13 2396 0 30 49152 0
malloc-384 384 73 47 73 0 30 46080 0
pcpu-8 8 4726 394 5048 0 254 40960 0
VMSPACE 584 32 38 850 0 16 40880 0
pipe 736 20 35 351 0 16 40480 0
udp_inpcb 408 6 84 171 0 30 36720 0
malloc-64 64 21 546 15435 0 254 36288 0
malloc-64 64 31 536 51 0 254 36288 0
malloc-64 64 203 364 1054 0 254 36288 0
malloc-64 64 63 504 979 0 254 36288 0
malloc-128 128 18 261 166 0 126 35712 0
malloc-128 128 15 264 61 0 126 35712 0
malloc-128 128 133 146 612 0 126 35712 0
malloc-128 128 27 252 290 0 126 35712 0
routing nhops 256 24 111 36 0 62 34560 0
ttyoutq 256 72 63 160 0 62 34560 0
malloc-384 384 70 20 77 0 30 34560 0
malloc-384 384 25 65 628 0 30 34560 0
malloc-256 256 29 106 498 0 62 34560 0
malloc-256 256 5 130 75 0 62 34560 0
malloc-256 256 46 89 244 0 62 34560 0
malloc-256 256 17 118 286 0 62 34560 0
malloc-2048 2048 10 6 28 0 8 32768 0
malloc-2048 2048 3 13 53 0 8 32768 0
malloc-2048 2048 12 4 44 0 8 32768 0
malloc-2048 2048 8 8 9 0 8 32768 0
malloc-1024 1024 3 29 43 0 16 32768 0
malloc-1024 1024 17 15 1073 0 16 32768 0
malloc-1024 1024 2 30 6 0 16 32768 0
malloc-1024 1024 3 29 9 0 16 32768 0
malloc-1024 1024 2 30 2 0 16 32768 0
malloc-512 512 0 64 110 0 30 32768 0
malloc-512 512 13 51 18 0 30 32768 0
malloc-512 512 0 64 20 0 30 32768 0
malloc-512 512 2 62 49 0 30 32768 0
malloc-512 512 12 52 32 0 30 32768 0
malloc-512 512 2 62 8 0 30 32768 0
malloc-512 512 3 61 6 0 30 32768 0
pcpu-64 64 501 11 501 0 254 32768 0
ertt_txseginfo 40 0 808 639 0 254 32320 0
ttyinq 160 135 65 300 0 62 32000 0
PGRP 120 24 240 69 0 126 31680 0
clpbuf 2624 0 12 73 0 4 31488 0
sctp_laddr 48 2 586 15 0 254 28224 0
malloc-32 32 351 531 4183 0 254 28224 0
16 Bucket 144 47 149 352 0 62 28224 0
4 Bucket 48 5 583 12 0 254 28224 0
da_ccb 544 0 49 1533 0 16 26656 0
TURNSTILE 136 137 52 137 0 62 25704 0
cpuset 200 7 121 7 0 62 25600 0
malloc-8192 8192 3 0 3 0 1 24576 0
malloc-4096 4096 5 1 59 0 2 24576 0
PWD 40 15 591 133 0 254 24240 0
rtentry 168 27 117 36 0 62 24192 0
Files 80 119 181 7416 0 126 24000 0
8 Bucket 80 50 250 314 0 126 24000 0
tcp_inpcb 1304 6 12 13 0 8 23472 0
malloc-384 384 1 59 2 0 30 23040 0
malloc-384 384 12 48 12 0 30 23040 0
malloc-384 384 1 59 2 0 30 23040 0
ripcb 376 1 59 5 0 30 22560 0
SLEEPQUEUE 88 137 119 137 0 126 22528 0
hostcache 64 1 314 1 0 254 20160 0
ertt 72 6 274 13 0 126 20160 0
malloc-64 64 3 312 3 0 254 20160 0
malloc-32 32 56 574 407 0 254 20160 0
malloc-32 32 15 615 137 0 254 20160 0
malloc-32 32 151 479 1310 0 254 20160 0
malloc-32 32 55 575 86 0 254 20160 0
malloc-32 32 126 504 141 0 254 20160 0
malloc-32 32 16 614 20 0 254 20160 0
2 Bucket 32 54 576 339 0 254 20160 0
KNOTE 160 6 119 138 0 62 20000 0
vmem 1856 2 7 2 0 8 16704 0
epoch_record pcpu 256 4 60 4 0 62 16384 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-16384 16384 1 0 1 0 1 16384 0
malloc-8192 8192 2 0 2 0 1 16384 0
malloc-2048 2048 0 8 12 0 8 16384 0
malloc-2048 2048 2 6 2 0 8 16384 0
malloc-1024 1024 0 16 1 0 16 16384 0
malloc-512 512 2 30 2 0 30 16384 0
SMR CPU 32 8 503 8 0 254 16352 0
malloc-16 16 510 490 3482 0 254 16000 0
kenv 258 17 43 1068 0 30 15480 0
mqnode 416 3 33 3 0 30 14976 0
SMR SHARED 24 8 503 8 0 254 12264 0
malloc-16 16 38 712 1459 0 254 12000 0
malloc-16 16 9 741 16 0 254 12000 0
malloc-16 16 41 709 100 0 254 12000 0
malloc-16 16 45 705 25023 0 254 12000 0
malloc-16 16 16 734 19 0 254 12000 0
malloc-16 16 7 743 9 0 254 12000 0
Mountpoints 2816 2 2 2 0 4 11264 0
malloc-8192 8192 0 1 26 0 1 8192 0
malloc-8192 8192 0 1 20 0 1 8192 0
malloc-8192 8192 1 0 1 0 1 8192 0
malloc-4096 4096 0 2 4 0 2 8192 0
malloc-4096 4096 1 1 4 0 2 8192 0
vtnet_tx_hdr 24 0 334 6796 0 254 8016 0
pcpu-16 16 4 252 4 0 254 4096 0
UMA Slabs 1 176 9 13 9 0 62 3872 0
KMAP ENTRY 96 12 27 14 0 0 3744 0
FFS1 dinode 128 0 0 0 0 126 0 0
ada_ccb 272 0 0 0 0 30 0 0
swblk 136 0 0 0 0 62 0 0
swpctrie 152 0 0 0 0 62 0 0
cdg_qdiffsample 16 0 0 0 0 254 0 0
pf state scrubs 40 0 0 0 0 254 0 0
pf frag entries 40 0 0 0 0 254 0 0
pf fragment node 72 0 0 0 0 126 0 0
pf frags 232 0 0 0 0 62 0 0
pf table entries 160 0 0 0 0 254 0 0
pf table entry counters 64 0 0 0 0 254 0 0
pf Ethernet anchors 1240 0 0 0 0 64 0 0
pf anchors 1664 0 0 0 0 64 0 0
pf UDP mappings 104 0 0 0 0 126 0 0
pf source nodes 152 0 0 0 0 254 0 0
pf state keys 88 0 0 0 0 126 0 0
pf states 384 0 0 0 0 254 0 0
pf tags 104 0 0 0 0 126 0 0
pf mtags 184 0 0 0 0 62 0 0
tcp_rack_pcb 1088 0 0 0 0 8 0 0
tcp_rack_map 128 0 0 0 0 126 0 0
tcp_bbr_pcb 896 0 0 0 0 16 0 0
tcp_bbr_map 128 0 0 0 0 126 0 0
tfo_ccache_entries 80 0 0 0 0 126 0 0
tfo 4 0 0 0 0 254 0 0
sackhole 32 0 0 0 0 254 0 0
ipq 56 0 0 0 0 254 0 0
sctp_asconf_ack 48 0 0 0 0 254 0 0
sctp_asconf 40 0 0 0 0 254 0 0
sctp_stream_msg_out 112 0 0 0 0 254 0 0
sctp_readq 152 0 0 0 0 254 0 0
sctp_chunk 152 0 0 0 0 254 0 0
sctp_raddr 736 0 0 0 0 254 0 0
sctp_asoc 2256 0 0 0 0 254 0 0
sctp_ep 1152 0 0 0 0 254 0 0
tcp_log_id_node 120 0 0 0 0 126 0 0
tcp_log_id_bucket 176 0 0 0 0 62 0 0
tcpreass 48 0 0 0 0 254 0 0
udplite_inpcb 408 0 0 0 0 30 0 0
IPsec SA lft_c 16 0 0 0 0 254 0 0
itimer 352 0 0 0 0 30 0 0
AIOLIO 272 0 0 0 0 30 0 0
AIOCB 552 0 0 0 0 16 0 0
AIO 208 0 0 0 0 62 0 0
mqnotifier 216 0 0 0 0 62 0 0
mvdata 64 0 0 0 0 254 0 0
mqueue 248 0 0 0 0 62 0 0
TMPFS node 240 0 0 0 0 62 0 0
NCLNODE 608 0 0 0 0 16 0 0
LTS VFS Cache 360 0 0 0 0 30 0 0
L VFS Cache 320 0 0 0 0 30 0 0
STS VFS Cache 144 0 0 0 0 62 0 0
cryptop 280 0 0 0 0 30 0 0
linux_dma_object 32 0 0 0 0 254 0 0
linux_dma_pctrie 152 0 0 0 0 62 0 0
IOMMU_MAP_ENTRY 112 0 0 0 0 126 0 0
skbuff 1808 0 0 0 0 8 0 0
mbuf_jumbo_16k 16384 0 0 0 0 254 0 0
mbuf_jumbo_9k 9216 0 0 0 0 254 0 0
audit_record 1280 0 0 0 0 8 0 0
domainset 40 0 0 0 0 254 0 0
MAC labels 40 0 0 0 0 254 0 0
vnpbuf 2624 0 0 0 0 16 0 0
nfspbuf 2624 0 0 0 0 4 0 0
swwbuf 2624 0 0 0 0 2 0 0
swrbuf 2624 0 0 0 0 4 0 0
umtx_shm 88 0 0 0 0 126 0 0
umtx pi 96 0 0 0 0 126 0 0
rangeset pctrie nodes 152 0 0 0 0 62 0 0
rl_entry 48 0 0 0 0 254 0 0
malloc-65536 65536 0 0 0 0 1 0 0
malloc-65536 65536 0 0 0 0 1 0 0
malloc-65536 65536 0 0 0 0 1 0 0
malloc-32768 32768 0 0 0 0 1 0 0
malloc-32768 32768 0 0 0 0 1 0 0
malloc-32768 32768 0 0 0 0 1 0 0
malloc-32768 32768 0 0 0 0 1 0 0
malloc-16384 16384 0 0 0 0 1 0 0
malloc-16384 16384 0 0 0 0 1 0 0
malloc-16384 16384 0 0 0

---
If you want syzbot to run the reproducer, reply with:
#syz test: git://repo/address.git branch-or-commit-hash
If you attach or paste a git patch, syzbot will apply it before testing.
Reply all
Reply to author
Forward
0 new messages