netbsd boot error: UBSan: Undefined Behavior in AcpiNsRootInitialize

0 views
Skip to first unread message

syzbot

unread,
May 25, 2021, 1:26:22 PM5/25/21
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 1245af71 The long lines test is now expected to pass
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=1494d2ddd00000
kernel config: https://syzkaller.appspot.com/x/.config?x=1420f906d33d9f1f
dashboard link: https://syzkaller.appspot.com/bug?extid=91187f4e33436ce83e56
compiler: g++ (Debian 10.2.1-6) 10.2.1 20210110

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+91187f...@syzkaller.appspotmail.com

[ 1.0000030] panic: UBSan: Undefined Behavior in /syzkaller/managers/ci2-netbsd-kubsan/kernel/sys/external/bsd/acpica/dist/namespace/nsaccess.c:146:19, load of misaligned address 0xffffffff840822f2 for type 'UINT32' which requires 4 byte alignment

[ 1.0000030] cpu0: Begin traceback...
[ 1.0000030] vpanic() at netbsd:vpanic+0x2d0 sys/kern/subr_prf.c:290
[ 1.0000030] isAlreadyReported() at netbsd:isAlreadyReported
[ 1.0000030] HandleTypeMismatch() at netbsd:HandleTypeMismatch+0xfc sys/../common/lib/libc/misc/ubsan.c:432
[ 1.0000030] AcpiNsRootInitialize() at netbsd:AcpiNsRootInitialize+0x6fb sys/external/bsd/acpica/dist/namespace/nsaccess.c:146
[ 1.0000030] AcpiInitializeSubsystem() at netbsd:AcpiInitializeSubsystem+0x77 sys/external/bsd/acpica/dist/utilities/utxfinit.c:119
[ 1.0000030] acpi_probe() at netbsd:acpi_probe+0x44 sys/dev/acpi/acpi.c:273
[ 1.0000030] mainbus_attach() at netbsd:mainbus_attach+0x13f x86_cpubus_attach sys/arch/x86/x86/mainbus.c:175 [inline]
[ 1.0000030] mainbus_attach() at netbsd:mainbus_attach+0x13f sys/arch/x86/x86/mainbus.c:229
[ 1.0000030] config_vattach() at netbsd:config_vattach+0x4b8 sys/kern/subr_autoconf.c:1763
[ 1.0000030] config_attach() at netbsd:config_attach+0x58 sys/kern/subr_autoconf.c:1786
[ 1.0000030] config_rootfound() at netbsd:config_rootfound+0x4a sys/kern/subr_autoconf.c:1290
[ 1.0000030] cpu_configure() at netbsd:cpu_configure+0x58 sys/arch/amd64/amd64/autoconf.c:112
[ 1.0000030] main() at netbsd:main+0x452 sys/kern/init_main.c:556
[ 1.0000030] cpu0: End traceback...
[ 1.0000030] fatal breakpoint trap in supervisor mode
[ 1.0000030] trap type 1 code 0 rip 0xffffffff80221a95 cs 0x8 rflags 0x202 cr2 0 ilevel 0x8 rsp 0xffffffff86864710
[ 1.0000030] curlwp 0xffffffff85f5f2c0 pid 0.0 lowest kstack 0xffffffff8685f2c0
Stopped in pid 0.0 (system) at netbsd:breakpoint+0x5: leave
breakpoint() at netbsd:breakpoint+0x5
db_panic() at netbsd:db_panic+0xec sys/ddb/db_panic.c:67
vpanic() at netbsd:vpanic+0x2d0 sys/kern/subr_prf.c:290
isAlreadyReported() at netbsd:isAlreadyReported
HandleTypeMismatch() at netbsd:HandleTypeMismatch+0xfc sys/../common/lib/libc/misc/ubsan.c:432
AcpiNsRootInitialize() at netbsd:AcpiNsRootInitialize+0x6fb sys/external/bsd/acpica/dist/namespace/nsaccess.c:146
AcpiInitializeSubsystem() at netbsd:AcpiInitializeSubsystem+0x77 sys/external/bsd/acpica/dist/utilities/utxfinit.c:119
acpi_probe() at netbsd:acpi_probe+0x44 sys/dev/acpi/acpi.c:273
mainbus_attach() at netbsd:mainbus_attach+0x13f x86_cpubus_attach sys/arch/x86/x86/mainbus.c:175 [inline]
mainbus_attach() at netbsd:mainbus_attach+0x13f sys/arch/x86/x86/mainbus.c:229
config_vattach() at netbsd:config_vattach+0x4b8 sys/kern/subr_autoconf.c:1763
config_attach() at netbsd:config_attach+0x58 sys/kern/subr_autoconf.c:1786
config_rootfound() at netbsd:config_rootfound+0x4a sys/kern/subr_autoconf.c:1290
cpu_configure() at netbsd:cpu_configure+0x58 sys/arch/amd64/amd64/autoconf.c:112
main() at netbsd:main+0x452 sys/kern/init_main.c:556
ds 3f00
es 46d0
fs 4720
gs 10
rdi 0
rsi 1
rbp ffffffff86864710
rbx 1
--db_more--


---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.
Reply all
Reply to author
Forward
0 new messages