assert failed: sa->sa_len <= sizeof(ifr.ifr_ifru)

4 views
Skip to first unread message

syzbot

unread,
Mar 24, 2023, 12:42:46 PM3/24/23
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 141185f67e84 Pass B_PHYS when reading from device. Xbd(4)..
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=177d8e46c80000
kernel config: https://syzkaller.appspot.com/x/.config?x=739e57438eb9ed9e
dashboard link: https://syzkaller.appspot.com/bug?extid=fb4e112846e31bc4c09d
compiler: Debian clang version 15.0.7

Unfortunately, I don't have any reproducer for this issue yet.

Downloadable assets:
disk image: https://storage.googleapis.com/syzbot-assets/5e46e0e7d7f1/disk-141185f6.raw.xz
netbsd.gdb: https://storage.googleapis.com/syzbot-assets/711e17324b52/netbsd-141185f6.gdb.xz

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+fb4e11...@syzkaller.appspotmail.com

[ 138.6831981] panic: kernel diagnostic assertion "sa->sa_len <= sizeof(ifr.ifr_ifru)" failed: file "/syzkaller/managers/ci2-netbsd-kmsan/kernel/sys/net/if.c", line 3698
[ 138.7045243] cpu0: Begin traceback...
[ 138.7331652] vpanic() at netbsd:vpanic+0xc9d
[ 138.8131708] kern_assert() at netbsd:kern_assert+0x228
[ 138.8931648] doifioctl() at netbsd:doifioctl+0x1369 sys/net/if.c:3463
[ 138.9731943] soo_ioctl() at netbsd:soo_ioctl+0xd7f
[ 139.0531690] sys_ioctl() at netbsd:sys_ioctl+0xd84 sys/kern/sys_generic.c:675
[ 139.1331701] sys___syscall() at netbsd:sys___syscall+0x2c6 sys/kern/sys_syscall.c:90
[ 139.2131638] syscall() at netbsd:syscall+0x60c sy_invoke sys/sys/syscallvar.h:94 [inline]
[ 139.2131638] syscall() at netbsd:syscall+0x60c sys/arch/x86/x86/syscall.c:138
[ 139.2331843] --- syscall (number 54 via SYS_syscall) ---
[ 139.2531746] netbsd:syscall+0x60c:
[ 139.2531746] cpu0: End traceback...
[ 139.2655149] fatal breakpoint trap in supervisor mode
[ 139.2655149] trap type 1 code 0 rip 0xffffffff8023675d cs 0x8 rflags 0x282 cr2 0x78c479cd6e04 ilevel 0x5 rsp 0xffff9000c7adb670
[ 139.2817511] curlwp 0xffff900013986300 pid 1606.1742 lowest kstack 0xffff9000c7ad42c0
Stopped in pid 1606.1742 (syz-executor.0) at netbsd:breakpoint+0x5: leave
?
breakpoint() at netbsd:breakpoint+0x5
vpanic() at netbsd:vpanic+0xc9d
kern_assert() at netbsd:kern_assert+0x228
doifioctl() at netbsd:doifioctl+0x1369 sys/net/if.c:3463
soo_ioctl() at netbsd:soo_ioctl+0xd7f
sys_ioctl() at netbsd:sys_ioctl+0xd84 sys/kern/sys_generic.c:675
sys___syscall() at netbsd:sys___syscall+0x2c6 sys/kern/sys_syscall.c:90
syscall() at netbsd:syscall+0x60c sy_invoke sys/sys/syscallvar.h:94 [inline]
syscall() at netbsd:syscall+0x60c sys/arch/x86/x86/syscall.c:138
--- syscall (number 54 via SYS_syscall) ---
netbsd:syscall+0x60c:
Panic string: kernel diagnostic assertion "sa->sa_len <= sizeof(ifr.ifr_ifru)" failed: file "/syzkaller/managers/ci2-netbsd-kmsan/kernel/sys/net/if.c", line 3698
PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
4052 4052 2 0 0 ffff9000139a4780 syz-executor.3
648 648 2 0 0 ffff9000139a4bc0 syz-executor.1
1747 3935 2 0 0 ffff900013c5f080 syz-executor.2
1747 2901 2 0 0 ffff900013986740 syz-executor.2
1747 1747 2 1 10000000 ffff900013b8d040 syz-executor.2
3897 1238 2 0 0 ffff900013b8d8c0 syz-executor.4
3897 1613 2 0 0 ffff90001372fac0 syz-executor.4
3897 3897 2 1 10000000 ffff90001372f680 syz-executor.4
1225 1225 2 0 0 ffff90001372f240 syz-executor.5
1606 >1742 7 0 40100 ffff900013986300 syz-executor.0
1606 1606 2 1 10040000 ffff900013b8d480 syz-executor.0
552 552 3 0 180 ffff900013986b80 syz-executor.2 parked
656 656 3 0 180 ffff9000139a4340 syz-executor.1 nanoslp
2494 >2494 7 1 140 ffff9000136bea80 syz-executor.3
3417 3417 3 0 180 ffff9000138252c0 syz-executor.0 nanoslp
3416 3416 3 0 180 ffff90001350d580 syz-executor.2 nanoslp
3839 3839 3 1 180 ffff9000136261c0 syz-executor.1 parked
3382 3382 3 1 180 ffff9000136be640 syz-executor.1 parked
3686 3686 3 1 180 ffff9000136be200 syz-executor.1 parked
3308 2337 4 0 1000100 ffff900013472540 syz-executor.4
3308 3232 4 0 1000180 ffff9000138096c0 syz-executor.4 parked
3308 3308 4 0 11000000 ffff900013809280 syz-executor.4
2997 2997 3 1 180 ffff9000135a4180 syz-executor.3 parked
2611 2611 3 0 180 ffff900013825b40 syz-executor.3 parked
2517 2517 3 1 180 ffff900013825700 syz-executor.3 parked
2985 2985 3 0 180 ffff90001350d9c0 syz-executor.5 nanoslp
2619 2619 3 0 180 ffff900013626600 syz-executor.4 nanoslp
1231 1207 3 0 180 ffff900013626a40 syz-fuzzer parked
1231 1199 3 0 180 ffff9000135a4a00 syz-fuzzer parked
1231 1204 3 0 180 ffff9000135a45c0 syz-fuzzer wait
1231 1245 3 0 180 ffff90001350d140 syz-fuzzer kqueue
1231 802 3 1 180 ffff900013472100 syz-fuzzer wait
1231 829 3 1 180 ffff900012c85940 syz-fuzzer wait
1231 1244 3 1 180 ffff900012c85500 syz-fuzzer wait
1231 1243 3 1 180 ffff900012c850c0 syz-fuzzer parked
1231 1223 3 1 180 ffff900012bc7900 syz-fuzzer wait
1231 449 3 1 180 ffff900012bc74c0 syz-fuzzer parked
1231 1226 3 0 180 ffff900012bc7080 syz-fuzzer wait
1231 1229 3 1 180 ffff9000122efb00 syz-fuzzer parked
1231 1231 3 0 180 ffff9000122ef6c0 syz-fuzzer parked
1080 1080 3 1 180 ffff90001237f2c0 sshd select
1082 1082 3 0 180 ffff9000122ef280 getty nanoslp
1222 1222 3 1 180 ffff900012b998c0 getty nanoslp
1106 1106 3 0 180 ffff9000121eeac0 getty nanoslp
1216 1216 3 1 1c0 ffff9000121eb200 getty ttyraw
1107 1107 3 1 180 ffff90001250d300 sshd select
1096 1096 3 1 180 ffff900012b99480 powerd kqueue
700 700 3 0 180 ffff9000125d6780 syslogd kqueue
746 746 3 0 180 ffff900012b99040 dhcpcd poll
745 745 3 0 180 ffff90001250d740 dhcpcd poll
585 585 3 0 180 ffff90001237f700 dhcpcd poll
598 598 3 0 180 ffff9000125d6bc0 dhcpcd poll
487 487 3 0 180 ffff9000125d6340 dhcpcd poll
292 292 3 0 180 ffff90001237fb40 dhcpcd poll
485 485 3 1 180 ffff90001250db80 dhcpcd poll
1 1 3 1 180 ffff900011ecf100 init wait
0 549 5 0 200 ffff900013809b00 (zombie)
0 686 3 0 200 ffff9000121eb640 physiod physiod
0 196 3 0 200 ffff9000121ee680 pooldrain pooldrain
0 195 3 0 200 ffff9000121ee240 ioflush syncer
0 194 3 1 200 ffff9000121eba80 pgdaemon pgdaemon
0 167 3 0 200 ffff90001215ba40 usb7 usbevt
0 172 3 1 200 ffff90001215b600 usb6 usbevt
0 170 3 0 200 ffff90001215b1c0 usb5 usbevt
0 168 3 1 200 ffff90001212ca00 usb4 usbevt
0 166 3 0 200 ffff90001212c5c0 usb3 usbevt
0 165 3 0 200 ffff90001212c180 usb2 usbevt
0 31 3 0 200 ffff9000120769c0 usb1 usbevt
0 63 3 1 200 ffff900012076580 usb0 usbevt
0 126 3 1 200 ffff900012076140 usbtask-dr usbtsk
0 125 3 1 200 ffff900011ecf980 usbtask-hc usbtsk
0 124 3 0 200 ffff9000103f5b00 swwreboot swwreboot
0 123 3 0 200 ffff900011ecf540 npfgc0 npfgcw
0 122 3 1 200 ffff900011ec1940 rt_free rt_free
0 121 3 1 200 ffff900011ec1500 unpgc unpgc
0 120 3 0 200 ffff900011ec10c0 key_timehandler key_timehandler
0 119 3 1 200 ffff900011ebc900 icmp6_wqinput/1 icmp6_wqinput
0 118 3 0 200 ffff900011ebc4c0 icmp6_wqinput/0 icmp6_wqinput
0 117 3 1 200 ffff900011ebc080 nd6_timer nd6_timer
0 116 3 1 200 ffff900011ce0bc0 carp6_wqinput/1 carp6_wqinput
0 115 3 0 200 ffff900011ce0780 carp6_wqinput/0 carp6_wqinput
0 114 3 1 200 ffff900011ce0340 carp_wqinput/1 carp_wqinput
0 113 3 0 200 ffff900011e9b8c0 carp_wqinput/0 carp_wqinput
0 112 3 1 200 ffff900011e9b480 icmp_wqinput/1 icmp_wqinput
0 111 3 0 200 ffff900011cddb80 icmp_wqinput/0 icmp_wqinput
0 110 3 0 200 ffff900011cdd740 rt_timer rt_timer
0 109 3 0 200 ffff900011e9b040 vmem_rehash vmem_rehash
0 100 3 0 200 ffff900011cdd300 entbutler entropy
0 99 3 1 200 ffff9000117e0b40 viomb balloon
0 98 3 1 200 ffff9000117e0700 vioif0_txrx/1 vioif0_txrx
0 97 3 0 200 ffff9000117e02c0 vioif0_txrx/0 vioif0_txrx
0 30 3 0 200 ffff9000103f56c0 scsibus0 sccomp
0 29 3 0 200 ffff9000103f5280 pms0 pmsreset
0 28 3 1 200 ffff9000103daac0 xcall/1 xcall
0 27 1 1 200 ffff9000103da680 softser/1
0 26 1 1 200 ffff9000103da240 softclk/1
0 25 1 1 200 ffff9000103d8a80 softbio/1
0 24 1 1 200 ffff9000103d8640 softnet/1
0 23 1 1 201 ffff9000103d8200 idle/1
0 22 3 0 200 ffff90000f1f4a40 lnxsyswq lnxsyswq
0 21 3 0 200 ffff90000f1f4600 lnxubdwq lnxubdwq
0 20 3 0 200 ffff90000f1f41c0 lnxpwrwq lnxpwrwq
0 19 3 0 200 ffff90000f1f2a00 lnxlngwq lnxlngwq
0 18 3 0 200 ffff90000f1f25c0 lnxhipwq lnxhipwq
0 17 3 0 200 ffff90000f1f2180 lnxrcugc lnxrcugc
0 16 3 0 200 ffff90000f1ec9c0 sysmon smtaskq
0 15 3 1 200 ffff90000f1ec580 pmfsuspend pmfsuspend
0 14 3 0 200 ffff90000f1ec140 pmfevent pmfevent
0 13 3 0 200 ffff90000f1e9980 sopendfree sopendfr
0 12 3 0 200 ffff90000f1e9540 ifwdog ifwdog
0 11 3 0 200 ffff90000f1e9100 iflnkst iflnkst
0 10 3 0 200 ffff90000f1df940 nfssilly nfssilly
0 9 3 0 200 ffff90000f1df500 vdrain vdrain
0 8 3 1 200 ffff90000f1df0c0 modunload mod_unld
0 7 3 0 200 ffff90000ebdb900 xcall/0 xcall
0 6 1 0 200 ffff90000ebdb4c0 softser/0
0 5 1 0 200 ffff90000ebdb080 softclk/0
0 4 1 0 200 ffff90000ebd98c0 softbio/0
0 3 1 0 200 ffff90000ebd9480 softnet/0
0 2 1 0 201 ffff90000ebd9040 idle/0
0 0 3 0 200 ffffffff8686a200 swapper uvm
[Locks tracked through LWPs]

****** LWP 648.648 (syz-executor.1) @ 0xffff9000139a4bc0, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:pmap_ctor+0xc0 sys/arch/x86/x86/pmap.c:2860)
lock address : ffff900013746c40
type : sleep/adaptive
initialized : netbsd:pmap_ctor+0xc0
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff9000139a4bc0 last held: 0xffff9000139a4bc0
last locked* : netbsd:pmap_enter_ma+0x11ce
unlocked : netbsd:pmap_enter_ma+0x6f3f
owner field : 0xffff9000139a4bc0 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 1747.1747 (syz-executor.2) @ 0xffff900013b8d040, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:pmap_ctor+0xc0 sys/arch/x86/x86/pmap.c:2860)
lock address : ffff900013746700
type : sleep/adaptive
initialized : netbsd:pmap_ctor+0xc0
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff900013b8d040 last held: 0xffff900013b8d040
last locked* : netbsd:pmap_enter_ma+0x11ce
unlocked : netbsd:pmap_extract+0x72d
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 1225.1225 (syz-executor.5) @ 0xffff90001372f240, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:uvmspace_fork+0x3e4 uvm_map_setup sys/uvm/uvm_map.c:4789 [inline])
* Lock 0 (initialized at netbsd:uvmspace_fork+0x3e4 uvmspace_init sys/uvm/uvm_map.c:4132 [inline])
* Lock 0 (initialized at netbsd:uvmspace_fork+0x3e4 uvmspace_alloc sys/uvm/uvm_map.c:4111 [inline])
* Lock 0 (initialized at netbsd:uvmspace_fork+0x3e4 sys/uvm/uvm_map.c:4588)
lock address : ffff9000139ad460
type : sleep/adaptive
initialized : netbsd:uvmspace_fork+0x3e4
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90001372f240 last held: 0xffff90001372f240
last locked* : netbsd:vm_map_lock+0x57
unlocked : netbsd:uvm_fault_internal+0x669e
owner/count : 0xffff90001372f240 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 3308.3232 (syz-executor.4) @ 0xffff9000138096c0, l_stat=4

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff9000138096c0 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 745.745 (dhcpcd) @ 0xffff90001250d740, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90001250d740 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 585.585 (dhcpcd) @ 0xffff90001237f700, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90001237f700 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 292.292 (dhcpcd) @ 0xffff90001237fb40, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90001237fb40 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 485.485 (dhcpcd) @ 0xffff90001250db80, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff90001250db80 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.26 (softclk/1) @ 0xffff9000103da240, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff9000103da240 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xffff90000f1e9100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90000f1e9100 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.0 (swapper) @ 0xffffffff8686a200, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffffff8686a200 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

******* Locks held on cpu0:

* Lock 0 (initialized at netbsd:kprintf_init+0xdc sys/kern/subr_prf.c:155)
lock address : netbsd:kprintf_mtx
type : spin
initialized : netbsd:kprintf_init+0xdc
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff900013986300 last held: 0xffff900013986300
last locked* : netbsd:vpanic+0x624
unlocked : netbsd:aprint_error_internal+0x3c8
owner field : 0x0000000000000800 wait/spin: 0/1

PAGE FLAG PQ UOBJECT UANON
0xffff900000017180 0001 00000000 0x0 0x0
0xffff900000017200 0041 00000000 0x0 0x0
0xffff900000017280 0041 00000000 0x0 0x0
0xffff900000017300 0041 00000000 0x0 0x0
0xffff900000017380 0041 00000000 0x0 0x0
0xffff900000017400 0041 00000000 0x0 0x0
0xffff900000017480 0041 00000000 0x0 0x0
0xffff900000017500 0041 00000000 0x0 0x0
0xffff900000017580 0041 00000000 0x0 0x0
0xffff900000017600 0041 00000000 0x0 0x0
0xffff900000017680 0041 00000000 0x0 0x0
0xffff900000017700 0041 00000000 0x0 0x0
0xffff900000017780 0041 00000000 0x0 0x0
0xffff900000017800 0041 00000000 0x0 0x0
0xffff900000017880 0041 00000000 0x0 0x0
0xffff900000017900 0041 00000000 0x0 0x0
0xffff900000017980 0041 00000000 0x0 0x0
0xffff900000017a00 0041 00000000 0x0 0x0
0xffff900000017a80 0041 00000000 0x0 0x0
0xffff900000017b00 0041 00000000 0x0 0x0
0xffff900000017b80 0041 00000000 0x0 0x0
0xffff900000017c00 0041 00000000 0x0 0x0
0xffff900000017c80 0041 00000000 0x0 0x0
0xffff900000017d00 0041 00000000 0x0 0x0
0xffff900000017d80 0041 00000000 0x0 0x0
0xffff900000017e00 0041 00000000 0x0 0x0
0xffff900000017e80 0041 00000000 0x0 0x0
0xffff900000017f00 0041 00000000 0x0 0x0
0xffff900000017f80 0041 00000000 0x0 0x0
0xffff900000018000 0041 00000000 0x0 0x0
0xffff900000018080 0041 00000000 0x0 0x0
0xffff900000018100 0041 00000000 0x0 0x0
0xffff900000018180 0041 00000000 0x0 0x0
0xffff900000018200 0041 00000000 0x0 0x0
0xffff900000018280 0041 00000000 0x0 0x0
0xffff900000018300 0041 00000000 0x0 0x0
0xffff900000018380 0041 00000000 0x0 0x0
0xffff900000018400 0041 00000000 0x0 0x0
0xffff900000018480 0041 00000000 0x0 0x0
0xffff900000018500 0041 00000000 0x0 0x0
0xffff900000018580 0041 00000000 0x0 0x0
0xffff900000018600 0041 00000000 0x0 0x0
0xffff900000018680 0041 00000000 0x0 0x0
0xffff900000018700 0041 00000000 0x0 0x0
0xffff900000018780 0041 00000000 0x0 0x0
0xffff900000018800 0041 00000000 0x0 0x0
0xffff900000018880 0041 00000000 0x0 0x0
0xffff900000018900 0041 00000000 0x0 0x0
0xffff900000018980 0041 00000000 0x0 0x0
0xffff900000018a00 0041 00000000 0x0 0x0
0xffff900000018a80 0041 00000000 0x0 0x0
0xffff900000018b00 0041 00000000 0x0 0x0
0xffff900000018b80 0041 00000000 0x0 0x0
0xffff900000018c00 0041 00000000 0x0 0x0
0xffff900000018c80 0041 00000000 0x0 0x0
0xffff900000018d00 0041 00000000 0x0 0x0
0xffff900000018d80 0041 00000000 0x0 0x0
0xffff900000018e00 0041 00000000 0x0 0x0
0xffff900000018e80 0041 00000000 0x0 0x0
0xffff900000018f00 0041 00000000 0x0 0x0
0xffff900000018f80 0041 00000000 0x0 0x0
0xffff900000019000 0041 00000000 0x0 0x0
0xffff900000019080 0041 00000000 0x0 0x0
0xffff900000019100 0041 00000000 0x0 0x0
0xffff900000019180 0041 00000000 0x0 0x0
0xffff900000019200 0041 00000000 0x0 0x0
0xffff900000019280 0041 00000000 0x0 0x0
0xffff900000019300 0041 00000000 0x0 0x0
0xffff900000019380 0041 00000000 0x0 0x0
0xffff900000019400 0041 00000000 0x0 0x0
0xffff900000019480 0041 00000000 0x0 0x0
0xffff900000019500 0041 00000000 0x0 0x0
0xffff900000019580 0041 00000000 0x0 0x0
0xffff900000019600 0041 00000000 0x0 0x0
0xffff900000019680 0041 00000000 0x0 0x0
0xffff900000019700 0041 00000000 0x0 0x0
0xffff900000019780 0041 00000000 0x0 0x0
0xffff900000019800 0041 00000000 0x0 0x0
0xffff900000019880 0041 00000000 0x0 0x0
0xffff900000019900 0041 00000000 0x0 0x0
0xffff900000019980 0041 00000000 0x0 0x0
0xffff900000019a00 0041 00000000 0x0 0x0
0xffff900000019a80 0041 00000000 0x0 0x0
0xffff900000019b00 0041 00000000 0x0 0x0
0xffff900000019b80 0041 00000000 0x0 0x0
0xffff900000019c00 0041 00000000 0x0 0x0
0xffff900000019c80 0041 00000000 0x0 0x0
0xffff900000019d00 0041 00000000 0x0 0x0
0xffff900000019d80 0041 00000000 0x0 0x0
0xffff900000019e00 0041 00000000 0x0 0x0
0xffff900000019e80 0041 00000000 0x0 0x0
0xffff900000019f00 0041 00000000 0x0 0x0
0xffff900000019f80 0041 00000000 0x0 0x0
0xffff90000001a000 0041 00000000 0x0 0x0
0xffff90000001a080 0041 00000000 0x0 0x0
0xffff90000001a100 0041 00000000 0x0 0x0
0xffff90000001a180 0041 00000000 0x0 0x0
0xffff90000001a200 0041 00000000 0x0 0x0
0xffff90000001a280 0041 00000000 0x0 0x0
0xffff90000001a300 0041 00000000 0x0 0x0
0xffff90000001a380 0041 00000000 0x0 0x0
0xffff90000001a400 0041 00000000 0x0 0x0
0xffff90000001a480 0041 00000000 0x0 0x0
0xffff90000001a500 0041 00000000 0x0 0x0
0xffff90000001a580 0041 00000000 0x0 0x0
0xffff90000001a600 0041 00000000 0x0 0x0
0xffff90000001a680 0041 00000000 0x0 0x0
0xffff90000001a700 0041 00000000 0x0 0x0
0xffff90000001a780 0041 00000000 0x0 0x0
0xffff90000001a800 0041 00000000 0x0 0x0
0xffff90000001a880 0041 00000000 0x0 0x0
0xffff90000001a900 0041 00000000 0x0 0x0
0xffff90000001a980 0041 00000000 0x0 0x0
0xffff90000001aa00 0041 00000000 0x0 0x0
0xffff90000001aa80 0041 00000000 0x0 0x0
0xffff90000001ab00 0041 00000000 0x0 0x0
0xffff90000001ab80 0041 00000000 0x0 0x0
0xffff90000001ac00 0041 00000000 0x0 0x0
0xffff90000001ac80 0041 00000000 0x0 0x0
0xffff90000001ad00 0041 00000000 0x0 0x0
0xffff90000001ad80 0041 00000000 0x0 0x0
0xffff90000001ae00 0041 00000000 0x0 0x0
0xffff90000001ae80 0041 00000000 0x0 0x0
0xffff90000001af00 0041 00000000 0x0 0x0
0xffff90000001af80 0041 00000000 0x0 0x0
0xffff90000001b000 0041 00000000 0x0 0x0
0xffff90000001b080 0041 00000000 0x0 0x0
0xffff90000001b100 0041 00000000 0x0 0x0
0xffff90000001b180 0041 00000000 0x0 0x0
0xffff90000001b200 0041 00000000 0x0 0x0
0xffff90000001b280 0041 00000000 0x0 0x0
0xffff90000001b300 0041 00000000 0x0 0x0
0xffff90000001b380 0041 00000000 0x0 0x0
0xffff90000001b400 0041 00000000 0x0 0x0
0xffff90000001b480 0041 00000000 0x0 0x0
0xffff90000001b500 0041 00000000 0x0 0x0
0xffff90000001b580 0041 00000000 0x0 0x0
0xffff90000001b600 0041 00000000 0x0 0x0
0xffff90000001b680 0041 00000000 0x0 0x0
0xffff90000001b700 0041 00000000 0x0 0x0
0xffff90000001b780 0041 00000000 0x0 0x0
0xffff90000001b800 0041 00000000 0x0 0x0
0xffff90000001b880 0041 00000000 0x0 0x0
0xffff90000001b900 0041 00000000 0x0 0x0
0xffff90000001b980 0041 00000000 0x0 0x0
0xffff90000001ba00 0041 00000000 0x0 0x0
0xffff90000001ba80 0041 00000000 0x0 0x0
0xffff90000001bb00 0041 00000000 0x0 0x0
0xffff90000001bb80 0041 00000000 0x0 0x0
0xffff90000001bc00 0041 00000000 0x0 0x0
0xffff90000001bc80 0041 00000000 0x0 0x0
0xffff90000001bd00 0041 00000000 0x0 0x0
0xffff90000001bd80 0041 00000000 0x0 0x0
0xffff90000001be00 0041 00000000 0x0 0x0
0xffff90000001be80 0041 00000000 0x0 0x0
0xffff90000001bf00 0041 00000000 0x0 0x0
0xffff90000001bf80 0041 00000000 0x0 0x0
0xffff90000001c000 0041 00000000 0x0 0x0
0xffff90000001c080 0041 00000000 0x0 0x0
0xffff90000001c100 0041 00000000 0x0 0x0
0xffff90000001c180 0041 00000000 0x0 0x0
0xffff90000001c200 0041 00000000 0x0 0x0
0xffff90000001c280 0041 00000000 0x0 0x0
0xffff90000001c300 0041 00000000 0x0 0x0
0xffff90000001c380 0041 00000000 0x0 0x0
0xffff90000001c400 0041 00000000 0x0 0x0
0xffff90000001c480 0041 00000000 0x0 0x0
0xffff90000001c500 0041 00000000 0x0 0x0
0xffff90000001c580 0041 00000000 0x0 0x0
0xffff90000001c600 0041 00000000 0x0 0x0
0xffff90000001c680 0041 00000000 0x0 0x0
0xffff90000001c700 0041 00000000 0x0 0x0
0xffff90000001c780 0001 00000000 0x0 0x0
0xffff90000001c800 0001 00000000 0x0 0x0
0xffff90000001c880 0001 00000000 0x0 0x0
0xffff90000001c900 0001 00000000 0x0 0x0
0xffff90000001c980 0001 00000000 0x0 0x0
0xffff90000001ca00 0001 00000000 0x0 0x0
0xffff90000001ca80 0001 00000000 0x0 0x0
0xffff90000001cb00 0001 00000000 0x0 0x0
0xffff90000001cb80 0001 00000000 0x0 0x0
0xffff90000001cc00 0001 00000000 0x0 0x0
0xffff90000001cc80 0001 00000000 0x0 0x0
0xffff90000001cd00 0001 00000000 0x0 0x0
0xffff90000001cd80 0001 00000000 0x0 0x0
0xffff90000001ce00 0001 00000000 0x0 0x0
0xffff90000001ce80 0001 00000000 0x0 0x0
0xffff90000001cf00 0001 00000000 0x0 0x0
0xffff90000001cf80 0001 00000000 0x0 0x0
0xffff90000001d000 0001 00000000 0x0 0x0
0xffff90000001d080 0001 00000000 0x0 0x0
0xffff90000001d100 0001 00000000 0x0 0x0
0xffff90000001d180 0001 00000000 0x0 0x0
0xffff90000001d200 0001 00000000 0x0 0x0
0xffff90000001d280 0001 00000000 0x0 0x0
0xffff90000001d300 0001 00000000 0x0 0x0
0xffff90000001d380 0001 00000000 0x0 0x0
0xffff90000001d400 0001 00000000 0x0 0x0
0xffff90000001d480 0001 00000000 0x0 0x0
0xffff90000001d500 0001 00000000 0x0 0x0
0xffff90000001d580 0001 00000000 0x0 0x0
0xffff90000001d600 0001 00000000 0x0 0x0
0xffff90000001d680 0001 00000000 0x0 0x0
0xffff90000001d700 0001 00000000 0x0 0x0
0xffff90000001d780 0001 00000000 0x0 0x0
0xffff90000001d800 0001 00000000 0x0 0x0
0xffff90000001d880 0001 00000000 0x0 0x0
0xffff90000001d900 0001 00000000 0x0 0x0
0xffff90000001d980 0001 00000000 0x0 0x0
0xffff90000001da00 0001 00000000 0x0 0x0
0xffff90000001da80 0001 00000000 0x0 0x0
0xffff90000001db00 0001 00000000 0x0 0x0
0xffff90000001db80 0001 00000000 0x0 0x0
0xffff90000001dc00 0001 00000000 0x0 0x0
0xffff90000001dc80 0001 00000000 0x0 0x0
0xffff90000001dd00 0001 00000000 0x0 0x0
0xffff90000001dd80 0001 00000000 0x0 0x0
0xffff90000001de00 0001 00000000 0x0 0x0
0xffff90000001de80 0001 00000000 0x0 0x0
0xffff90000001df00 0001 00000000 0x0 0x0
0xffff90000001df80 0001 00000000 0x0 0x0
0xffff90000001e000 0001 00000000 0x0 0x0
0xffff90000001e080 0001 00000000 0x0 0x0
0xffff90000001e100 0001 00000000 0x0 0x0
0xffff90000001e180 0001 00000000 0x0 0x0
0xffff90000001e200 0001 00000000 0x0 0x0
0xffff90000001e280 0001 00000000 0x0 0x0
0xffff90000001e300 0001 00000000 0x0 0x0
0xffff90000001e380 0001 00000000 0x0 0x0
0xffff90000001e400 0001 00000000 0x0 0x0
0xffff90000001e480 0001 00000000 0x0 0x0
0xffff90000001e500 0001 00000000 0x0 0x0
0xffff90000001e580 0001 00000000 0x0 0x0
0xffff90000001e600 0001 00000000 0x0 0x0
0xffff90000001e680 0001 00000000 0x0 0x0
0xffff90000001e700 0001 00000000 0x0 0x0
0xffff90000001e780 0001 00000000 0x0 0x0
0xffff90000001e800 0001 00000000 0x0 0x0
0xffff90000001e880 0001 00000000 0x0 0x0
0xffff90000001e900 0001 00000000 0x0 0x0
0xffff90000001e980 0001 00000000 0x0 0x0
0xffff90000001ea00 0001 00000000 0x0 0x0
0xffff90000001ea80 0001 00000000 0x0 0x0
0xffff90000001eb00 0001 00000000 0x0 0x0
0xffff90000001eb80 0001 00000000 0x0 0x0
0xffff90000001ec00 0001 00000000 0x0 0x0
0xffff90000001ec80 0001 00000000 0x0 0x0
0xffff90000001ed00 0001 00000000 0x0 0x0
0xffff90000001ed80 0001 00000000 0x0 0x0
0xffff90000001ee00 0001 00000000 0x0 0x0
0xffff90000001ee80 0001 00000000 0x0 0x0
0xffff90000001ef00 0001 00000000 0x0 0x0
0xffff90000001ef80 0001 00000000 0x0 0x0
0xffff90000001f000 0001 00000000 0x0 0x0
0xffff90000001f080 0001 00000000 0x0 0x0
0xffff90000001f100 0001 00000000 0x0 0x0
0xffff90000001f180 0001 00000000 0x0 0x0
0xffff90000001f200 0001 00000000 0x0 0x0
0xffff90000001f280 0001 00000000 0x0 0x0
0xffff90000001f300 0001 00000000 0x0 0x0
0xffff90000001f380 0001 00000000 0x0 0x0
0xffff90000001f400 0001 00000000 0x0 0x0
0xffff90000001f480 0001 00000000 0x0 0x0
0xffff90000001f500 0001 00000000 0x0 0x0
0xffff90000001f580 0001 00000000 0x0 0x0
0xffff90000001f600 0001 00000000 0x0 0x0
0xffff90000001f680 0001 00000000 0x0 0x0
0xffff90000001f700 0001 00000000 0x0 0x0
0xffff90000001f780 0001 00000000 0x0 0x0
0xffff90000001f800 0001 00000000 0x0 0x0
0xffff90000001f880 0001 00000000 0x0 0x0
0xffff90000001f900 0001 00000000 0x0 0x0
0xffff90000001f980 0001 00000000 0x0 0x0
0xffff90000001fa00 0001 00000000 0x0 0x0
0xffff90000001fa80 0001 00000000 0x0 0x0
0xffff90000001fb00 0001 00000000 0x0 0x0
0xffff90000001fb80 0001 00000000 0x0 0x0
0xffff90000001fc00 0001 00000000 0x0 0x0
0xffff90000001fc80 0001 00000000 0x0 0x0
0xffff90000001fd00 0001 00000000 0x0 0x0
0xffff90000001fd80 0001 00000000 0x0 0x0
0xffff90000001fe00 0001 00000000 0x0 0x0
0xffff90000001fe80 0001 00000000 0x0 0x0
0xffff90000001ff00 0001 00000000 0x0 0x0
0xffff90000001ff80 0001 00000000 0x0 0x0
0xffff900000020000 0001 00000000 0x0 0x0
0xffff900000020080 0001 00000000 0x0 0x0
0xffff900000020100 0001 00000000 0x0 0x0
0xffff900000020180 0001 00000000 0x0 0x0
0xffff900000020200 0001 00000000 0x0 0x0
0xffff900000020280 0001 00000000 0x0 0x0
0xffff900000020300 0001 00000000 0x0 0x0
0xffff900000020380 0001 00000000 0x0 0x0
0xffff900000020400 0001 00000000 0x0 0x0
0xffff900000020480 0001 00000000 0x0 0x0
0xffff900000020500 0001 00000000 0x0 0x0
0xffff900000020580 0001 00000000 0x0 0x0
0xffff900000020600 0001 00000000 0x0 0x0
0xffff900000020680 0001 00000000 0x0 0x0
0xffff900000020700 0001 00000000 0x0 0x0
0xffff900000020780 0001 00000000 0x0 0x0
0xffff900000020800 0001 00000000 0x0 0x0
0xffff900000020880 0001 00000000 0x0 0x0
0xffff900000020900 0001 00000000 0x0 0x0
0xffff900000020980 0001 00000000 0x0 0x0
0xffff900000020a00 0001 00000000 0x0 0x0
0xffff900000020a80 0001 00000000 0x0 0x0
0xffff900000020b00 0001 00000000 0x0 0x0
0xffff900000020b80 0001 00000000 0x0 0x0
0xffff900000020c00 0001 00000000 0x0 0x0
0xffff900000020c80 0001 00000000 0x0 0x0
0xffff900000020d00 0001 00000000 0x0 0x0
0xffff900000020d80 0001 00000000 0x0 0x0
0xffff900000020e00 0001 00000000 0x0 0x0
0xffff900000020e80 0001 00000000 0x0 0x0
0xffff900000020f00 0001 00000000 0x0 0x0
0xffff900000020f80 0001 00000000 0x0 0x0
0xffff900000021000 0001 00000000 0x0 0x0
0xffff900000021080 0001 00000000 0x0 0x0
0xffff900000021100 0001 00000000 0x0 0x0
0xffff900000021180 0001 00000000 0x0 0x0
0xffff900000021200 0001 00000000 0x0 0x0
0xffff900000021280 0001 00000000 0x0 0x0
0xffff900000021300 0001 00000000 0x0 0x0
0xffff900000021380 0001 00000000 0x0 0x0
0xffff900000021400 0001 00000000 0x0 0x0
0xffff900000021480 0001 00000000 0x0 0x0
0xffff900000021500 0001 00000000 0x0 0x0
0xffff900000021580 0001 00000000 0x0 0x0
0xffff900000021600 0001 00000000 0x0 0x0
0xffff900000021680 0001 00000000 0x0 0x0
0xffff900000021700 0001 00000000 0x0 0x0
0xffff900000021780 0001 00000000 0x0 0x0
0xffff900000021800 0001 00000000 0x0 0x0
0xffff900000021880 0001 00000000 0x0 0x0
0xffff900000021900 0001 00000000 0x0 0x0
0xffff900000021980 0001 00000000 0x0 0x0
0xffff900000021a00 0001 00000000 0x0 0x0
0xffff900000021a80 0001 00000000 0x0 0x0
0xffff900000021b00 0001 00000000 0x0 0x0
0xffff900000021b80 0001 00000000 0x0 0x0
0xffff900000021c00 0001 00000000 0x0 0x0
0xffff900000021c80 0001 00000000 0x0 0x0
0xffff900000021d00 0001 00000000 0x0 0x0
0xffff900000021d80 0001 00000000 0x0 0x0
0xffff900000021e00 0001 00000000 0x0 0x0
0xffff900000021e80 0001 00000000 0x0 0x0
0xffff900000021f00 0001 00000000 0x0 0x0
0xffff900000021f80 0001 00000000 0x0 0x0
0xffff900000022000 0001 00000000 0x0 0x0
0xffff900000022080 0001 00000000 0x0 0x0
0xffff900000022100 0001 00000000 0x0 0x0
0xffff900000022180 0001 00000000 0x0 0x0
0xffff900000022200 0001 00000000 0x0 0x0
0xffff900000022280 0001 00000000 0x0 0x0
0xffff900000022300 0001 00000000 0x0 0x0
0xffff900000022380 0001 00000000 0x0 0x0
0xffff900000022400 0001 00000000 0x0 0x0
0xffff900000022480 0001 00000000 0x0 0x0
0xffff900000022500 0001 00000000 0x0 0x0
0xffff900000022580 0001 00000000 0x0 0x0
0xffff900000022600 0001 00000000 0x0 0x0
0xffff900000022680 0001 00000000 0x0 0x0
0xffff900000022700 0001 00000000 0x0 0x0
0xffff900000022780 0001 00000000 0x0 0x0
0xffff900000022800 0001 00000000 0x0 0x0
0xffff900000022880 0001 00000000 0x0 0x0
0xffff900000022900 0001 00000000 0x0 0x0
0xffff900000022980 0001 00000000 0x0 0x0
0xffff900000022a00 0001 00000000 0x0 0x0
0xffff900000022a80 0001 00000000 0x0 0x0
0xffff900000022b00 0001 00000000 0x0 0x0
0xffff900000022b80 0001 00000000 0x0 0x0
0xffff900000022c00 0001 00000000 0x0 0x0
0xffff900000022c80 0001 00000000 0x0 0x0
0xffff900000022d00 0001 00000000 0x0 0x0
0xffff900000022d80 0001 00000000 0x0 0x0
0xffff900000022e00 0001 00000000 0x0 0x0
0xffff900000022e80 0001 00000000 0x0 0x0
0xffff900000022f00 0001 00000000 0x0 0x0
0xffff900000022f80 0001 00000000 0x0 0x0
0xffff900000023000 0001 00000000 0x0 0x0
0xffff900000023080 0001 00000000 0x0 0x0
0xffff900000023100 0001 00000000 0x0 0x0
0xffff900000023180 0001 00000000 0x0 0x0
0xffff900000023200 0001 00000000 0x0 0x0
0xffff900000023280 0001 00000000 0x0 0x0
0xffff900000023300 0001 00000000 0x0 0x0
0xffff900000023380 0001 00000000 0x0 0x0
0xffff900000023400 0001 00000000 0x0 0x0
0xffff900000023480 0001 00000000 0x0 0x0
0xffff900000023500 0001 00000000 0x0 0x0
0xffff900000023580 0001 00000000 0x0 0x0
0xffff900000023600 0001 00000000 0x0 0x0
0xffff900000023680 0001 00000000 0x0 0x0
0xffff900000023700 0001 00000000 0x0 0x0
0xffff900000023780 0001 00000000 0x0 0x0
0xffff900000023800 0001 00000000 0x0 0x0
0xffff900000023880 0001 00000000 0x0 0x0
0xffff900000023900 0001 00000000 0x0 0x0
0xffff900000023980 0001 00000000 0x0 0x0
0xffff900000023a00 0001 00000000 0x0 0x0
0xffff900000023a80 0001 00000000 0x0 0x0
0xffff900000023b00 0001 00000000 0x0 0x0
0xffff900000023b80 0001 00000000 0x0 0x0
0xffff900000023c00 0001 00000000 0x0 0x0
0xffff900000023c80 0001 00000000 0x0 0x0
0xffff900000023d00 0001 00000000 0x0 0x0
0xffff900000023d80 0001 00000000 0x0 0x0
0xffff900000023e00 0001 00000000 0x0 0x0
0xffff900000023e80 0001 00000000 0x0 0x0
0xffff900000023f00 0001 00000000 0x0 0x0
0xffff900000023f80 0001 00000000 0x0 0x0
0xffff900000024000 0001 00000000 0x0 0x0
0xffff900000024080 0001 00000000 0x0 0x0
0xffff900000024100 0001 00000000 0x0 0x0
0xffff900000024180 0001 00000000 0x0 0x0
0xffff900000024200 0001 00000000 0x0 0x0
0xffff900000024280 0001 00000000 0x0 0x0
0xffff900000024300 0001 00000000 0x0 0x0
0xffff900000024380 0001 00000000 0x0 0x0
0xffff900000024400 0001 00000000 0x0 0x0
0xffff900000024480 0001 00000000 0x0 0x0
0xffff900000024500 0001 00000000 0x0 0x0
0xffff900000024580 0001 00000000 0x0 0x0
0xffff900000024600 0001 00000000 0x0 0x0
0xffff900000024680 0001 00000000 0x0 0x0
0xffff900000024700 0001 00000000 0x0 0x0
0xffff900000024780 0001 00000000 0x0 0x0
0xffff900000024800 0001 00000000 0x0 0x0
0xffff900000024880 0001 00000000 0x0 0x0
0xffff900000024900 0001 00000000 0x0 0x0
0xffff900000024980 0001 00000000 0x0 0x0
0xffff900000024a00 0001 00000000 0x0 0x0
0xffff900000024a80 0001 00000000 0x0 0x0
0xffff900000024b00 0001 00000000 0x0 0x0
0xffff900000024b80 0001 00000000 0x0 0x0
0xffff900000024c00 0001 00000000 0x0 0x0
0xffff900000024c80 0001 00000000 0x0 0x0
0xffff900000024d00 0001 00000000 0x0 0x0
0xffff900000024d80 0001 00000000 0x0 0x0
0xffff900000024e00 0001 00000000 0x0 0x0
0xffff900000024e80 0001 00000000 0x0 0x0
0xffff900000024f00 0001 00000000 0x0 0x0
0xffff900000024f80 0001 00000000 0x0 0x0
0xffff900000025000 0001 00000000 0x0 0x0
0xffff900000025080 0001 00000000 0x0 0x0
0xffff900000025100 0001 00000000 0x0 0x0
0xffff900000025180 0001 00000000 0x0 0x0
0xffff900000025200 0001 00000000 0x0 0x0
0xffff900000025280 0001 00000000 0x0 0x0
0xffff900000025300 0001 00000000 0x0 0x0
0xffff900000025380 0001 00000000 0x0 0x0
0xffff900000025400 0001 00000000 0x0 0x0
0xffff900000025480 0001 00000000 0x0 0x0
0xffff900000025500 0001 00000000 0x0 0x0
0xffff900000025580 0001 00000000 0x0 0x0
0xffff900000025600 0001 00000000 0x0 0x0
0xffff900000025680 0001 00000000 0x0 0x0
0xffff900000025700 0001 00000000 0x0 0x0
0xffff900000025780 0001 00000000 0x0 0x0
0xffff900000025800 0001 00000000 0x0 0x0
0xffff900000025880 0001 00000000 0x0 0x0
0xffff900000025900 0001 00000000 0x0 0x0
0xffff900000025980 0001 00000000 0x0 0x0
0xffff900000025a00 0001 00000000 0x0 0x0
0xffff900000025a80 0001 00000000 0x0 0x0
0xffff900000025b00 0001 00000000 0x0 0x0
0xffff900000025b80 0001 00000000 0x0 0x0
0xffff900000025c00 0001 00000000 0x0 0x0
0xffff900000025c80 0001 00000000 0x0 0x0
0xffff900000025d00 0001 00000000 0x0 0x0
0xffff900000025d80 0001 00000000 0x0 0x0
0xffff900000025e00 0001 00000000 0x0 0x0
0xffff900000025e80 0001 00000000 0x0 0x0
0xffff900000025f00 0001 00000000 0x0 0x0
0xffff900000025f80 0001 00000000 0x0 0x0
0xffff900000026000 0001 00000000 0x0 0x0
0xffff900000026080 0001 00000000 0x0 0x0
0xffff900000026100 0001 00000000 0x0 0x0
0xffff900000026180 0001 00000000 0x0 0x0
0xffff900000026200 0001 00000000 0x0 0x0
0xffff900000026280 0001 00000000 0x0 0x0
0xffff900000026300 0001 00000000 0x0 0x0
0xffff900000026380 0001 00000000 0x0 0x0
0xffff900000026400 0001 00000000 0x0 0x0
0xffff900000026480 0001 00000000 0x0 0x0
0xffff900000026500 0001 00000000 0x0 0x0
0xffff900000026580 0001 00000000 0x0 0x0
0xffff900000026600 0001 00000000 0x0 0x0
0xffff900000026680 0001 00000000 0x0 0x0
0xffff900000026700 0001 00000000 0x0 0x0
0xffff900000026780 0001 00000000 0x0 0x0
0xffff900000026800 0001 00000000 0x0 0x0
0xffff900000026880 0001 00000000 0x0 0x0
0xffff900000026900 0001 00000000 0x0 0x0
0xffff900000026980 0001 00000000 0x0 0x0
0xffff900000026a00 0001 00000000 0x0 0x0
0xffff900000026a80 0001 00000000 0x0 0x0
0xffff900000026b00 0001 00000000 0x0 0x0
0xffff900000026b80 0001 00000000 0x0 0x0
0xffff900000026c00 0001 00000000 0x0 0x0
0xffff900000026c80 0001 00000000 0x0 0x0
0xffff900000026d00 0001 00000000 0x0 0x0
0xffff900000026d80 0001 00000000 0x0 0x0
0xffff900000026e00 0001 00000000 0x0 0x0
0xffff900000026e80 0001 00000000 0x0 0x0
0xffff900000026f00 0001 00000000 0x0 0x0
0xffff900000026f80 0001 00000000 0x0 0x0
0xffff900000027000 0001 00000000 0x0 0x0
0xffff900000027080 0001 00000000 0x0 0x0
0xffff900000027100 0001 00000000 0x0 0x0
0xffff900000027180 0001 00000000 0x0 0x0
0xffff900000027200 0001 00000000 0x0 0x0
0xffff900000027280 0001 00000000 0x0 0x0
0xffff900000027300 0001 00000000 0x0 0x0
0xffff900000027380 0001 00000000 0x0 0x0
0xffff900000027400 0001 00000000 0x0 0x0
0xffff900000027480 0001 00000000 0x0 0x0
0xffff900000027500 0001 00000000 0x0 0x0
0xffff900000027580 0001 00000000 0x0 0x0
0xffff900000027600 0001 00000000 0x0 0x0
0xffff900000027680 0001 00000000 0x0 0x0
0xffff900000027700 0001 00000000 0x0 0x0
0xffff900000027780 0001 00000000 0x0 0x0
0xffff900000027800 0001 00000000 0x0 0x0
0xffff900000027880 0001 00000000 0x0 0x0
0xffff900000027900 0001 00000000 0x0 0x0
0xffff900000027980 0001 00000000 0x0 0x0
0xffff900000027a00 0001 00000000 0x0 0x0
0xffff900000027a80 0001 00000000 0x0 0x0
0xffff900000027b00 0001 00000000 0x0 0x0
0xffff900000027b80 0001 00000000 0x0 0x0
0xffff900000027c00 0001 00000000 0x0 0x0
0xffff900000027c80 0001 00000000 0x0 0x0
0xffff900000027d00 0001 00000000 0x0 0x0
0xffff900000027d80 0001 00000000 0x0 0x0
0xffff900000027e00 0001 00000000 0x0 0x0
0xffff900000027e80 0001 00000000 0x0 0x0
0xffff900000027f00 0001 00000000 0x0 0x0
0xffff900000027f80 0001 00000000 0x0 0x0
0xffff900000028000 0001 00000000 0x0 0x0
0xffff900000028080 0001 00000000 0x0 0x0
0xffff900000028100 0001 00000000 0x0 0x0
0xffff900000028180 0001 00000000 0x0 0x0
0xffff900000028200 0001 00000000 0x0 0x0
0xffff900000028280 0001 00000000 0x0 0x0
0xffff900000028300 0001 00000000 0x0 0x0
0xffff900000028380 0001 00000000 0x0 0x0
0xffff900000028400 0001 00000000 0x0 0x0
0xffff900000028480 0001 00000000 0x0 0x0
0xffff900000028500 0001 00000000 0x0 0x0
0xffff900000028580 0001 00000000 0x0 0x0
0xffff900000028600 0001 00000000 0x0 0x0
0xffff900000028680 0001 00000000 0x0 0x0
0xffff900000028700 0001 00000000 0x0 0x0
0xffff900000028780 0001 00000000 0x0 0x0
0xffff900000028800 0001 00000000 0x0 0x0
0xffff900000028880 0001 00000000 0x0 0x0
0xffff900000028900 0001 00000000 0x0 0x0
0xffff900000028980 0001 00000000 0x0 0x0
0xffff900000028a00 0001 00000000 0x0 0x0
0xffff900000028a80 0001 00000000 0x0 0x0
0xffff900000028b00 0001 00000000 0x0 0x0
0xffff900000028b80 0001 00000000 0x0 0x0
0xffff900000028c00 0001 00000000 0x0 0x0
0xffff900000028c80 0001 00000000 0x0 0x0
0xffff900000028d00 0001 00000000 0x0 0x0
0xffff900000028d80 0001 00000000 0x0 0x0
0xffff900000028e00 0001 00000000 0x0 0x0
0xffff900000028e80 0001 00000000 0x0 0x0
0xffff900000028f00 0001 00000000 0x0 0x0
0xffff900000028f80 0001 00000000 0x0 0x0
0xffff900000029000 0001 00000000 0x0 0x0
0xffff900000029080 0001 00000000 0x0 0x0
0xffff900000029100 0001 00000000 0x0 0x0
0xffff900000029180 0001 00000000 0x0 0x0
0xffff900000029200 0001 00000000 0x0 0x0
0xffff900000029280 0001 00000000 0x0 0x0
0xffff900000029300 0001 00000000 0x0 0x0
0xffff900000029380 0001 00000000 0x0 0x0
0xffff900000029400 0001 00000000 0x0 0x0
0xffff900000029480 0001 00000000 0x0 0x0
0xffff900000029500 0001 00000000 0x0 0x0
0xffff900000029580 0001 00000000 0x0 0x0
0xffff900000029600 0001 00000000 0x0 0x0
0xffff900000029680 0001 00000000 0x0 0x0
0xffff900000029700 0001 00000000 0x0 0x0
0xffff900000029780 0001 00000000 0x0 0x0
0xffff900000029800 0001 00000000 0x0 0x0
0xffff900000029880 0001 00000000 0x0 0x0
0xffff900000029900 0001 00000000 0x0 0x0
0xffff900000029980 0001 00000000 0x0 0x0
0xffff900000029a00 0001 00000000 0x0 0x0
0xffff900000029a80 0001 00000000 0x0 0x0
0xffff900000029b00 0001 00000000 0x0 0x0
0xffff900000029b80 0001 00000000 0x0 0x0
0xffff900000029c00 0001 00000000 0x0 0x0
0xffff900000029c80 0001 00000000 0x0 0x0
0xffff900000029d00 0001 00000000 0x0 0x0
0xffff900000029d80 0001 00000000 0x0 0x0
0xffff900000029e00 0001 00000000 0x0 0x0
0xffff900000029e80 0001 00000000 0x0 0x0
0xffff900000029f00 0001 00000000 0x0 0x0
0xffff900000029f80 0001 00000000 0x0 0x0
0xffff90000002a000 0001 00000000 0x0 0x0
0xffff90000002a080 0001 00000000 0x0 0x0
0xffff90000002a100 0001 00000000 0x0 0x0
0xffff90000002a180 0001 00000000 0x0 0x0
0xffff90000002a200 0001 00000000 0x0 0x0
0xffff90000002a280 0001 00000000 0x0 0x0
0xffff90000002a300 0001 00000000 0x0 0x0
0xffff90000002a380 0001 00000000 0x0 0x0
0xffff90000002a400 0001 00000000 0x0 0x0
0xffff90000002a480 0001 00000000 0x0 0x0
0xffff90000002a500 0001 00000000 0x0 0x0
0xffff90000002a580 0001 00000000 0x0 0x0
0xffff90000002a600 0001 00000000 0x0 0x0
0xffff90000002a680 0001 00000000 0x0 0x0
0xffff90000002a700 0001 00000000 0x0 0x0
0xffff90000002a780 0001 00000000 0x0 0x0
0xffff90000002a800 0001 00000000 0x0 0x0
0xffff90000002a880 0001 00000000 0x0 0x0
0xffff90000002a900 0001 00000000 0x0 0x0
0xffff90000002a980 0001 00000000 0x0 0x0
0xffff90000002aa00 0001 00000000 0x0 0x0
0xffff90000002aa80 0001 00000000 0x0 0x0
0xffff90000002ab00 0001 00000000 0x0 0x0
0xffff90000002ab80 0001 00000000 0x0 0x0
0xffff90000002ac00 0001 00000000 0x0 0x0
0xffff90000002ac80 0001 00000000 0x0 0x0
0xffff90000002ad00 0001 00000000 0x0 0x0
0xffff90000002ad80 0001 00000000 0x0 0x0
0xffff90000002ae00 0001 00000000 0x0 0x0
0xffff90000002ae80 0001 00000000 0x0 0x0
0xffff90000002af00 0001 00000000 0x0 0x0
0xffff90000002af80 0001 00000000 0x0 0x0
0xffff90000002b000 0001 00000000 0x0 0x0
0xffff90000002b080 0001 00000000 0x0 0x0
0xffff90000002b100 0001 00000000 0x0 0x0
0xffff90000002b180 0001 00000000 0x0 0x0
0xffff90000002b200 0001 00000000 0x0 0x0
0xffff90000002b280 0001 00000000 0x0 0x0
0xffff90000002b300 0001 00000000 0x0 0x0
0xffff90000002b380 0001 00000000 0x0 0x0
0xffff90000002b400 0001 00000000 0x0 0x0
0xffff90000002b480 0001 00000000 0x0 0x0
0xffff90000002b500 0001 00000000 0x0 0x0
0xffff90000002

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

syzbot

unread,
Mar 24, 2023, 1:36:50 PM3/24/23
to syzkaller-...@googlegroups.com
syzbot has found a reproducer for the following issue on:

HEAD commit: 141185f67e84 Pass B_PHYS when reading from device. Xbd(4)..
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=10f1140ec80000
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=167f67a1c80000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=124149cec80000

Downloadable assets:
disk image: https://storage.googleapis.com/syzbot-assets/5e46e0e7d7f1/disk-141185f6.raw.xz
netbsd.gdb: https://storage.googleapis.com/syzbot-assets/711e17324b52/netbsd-141185f6.gdb.xz

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+fb4e11...@syzkaller.appspotmail.com

[ 54.0988340] panic: kernel diagnostic assertion "sa->sa_len <= sizeof(ifr.ifr_ifru)" failed: file "/syzkaller/managers/ci2-netbsd-kmsan/kernel/sys/net/if.c", line 3698
[ 54.1188162] cpu1: Begin traceback...
[ 54.1488171] vpanic() at netbsd:vpanic+0xc9d
[ 54.2188164] kern_assert() at netbsd:kern_assert+0x228
[ 54.2888243] doifioctl() at netbsd:doifioctl+0x1369 sys/net/if.c:3463
[ 54.3588192] soo_ioctl() at netbsd:soo_ioctl+0xd7f
[ 54.4288204] sys_ioctl() at netbsd:sys_ioctl+0xd84 sys/kern/sys_generic.c:675
[ 54.4988201] sys_syscall() at netbsd:sys_syscall+0x2c5 sys/kern/sys_syscall.c:90
[ 54.5688191] syscall() at netbsd:syscall+0x60c sy_invoke sys/sys/syscallvar.h:94 [inline]
[ 54.5688191] syscall() at netbsd:syscall+0x60c sys/arch/x86/x86/syscall.c:138
[ 54.5888299] --- syscall (number 54 via SYS_syscall) ---
[ 54.6088197] netbsd:syscall+0x60c:
[ 54.6188198] cpu1: End traceback...
[ 54.6188198] fatal breakpoint trap in supervisor mode
[ 54.6188198] trap type 1 code 0 rip 0xffffffff8023675d cs 0x8 rflags 0x282 cr2 0x7f600143ed30 ilevel 0x5 rsp 0xffff9900c7aa2670
[ 54.6388208] curlwp 0xffff9900133f2540 pid 1246.1246 lowest kstack 0xffff9900c7a9b2c0
Stopped in pid 1246.1246 (syz-executor2756) at netbsd:breakpoint+0x5: leave
?
breakpoint() at netbsd:breakpoint+0x5
vpanic() at netbsd:vpanic+0xc9d
kern_assert() at netbsd:kern_assert+0x228
doifioctl() at netbsd:doifioctl+0x1369 sys/net/if.c:3463
soo_ioctl() at netbsd:soo_ioctl+0xd7f
sys_ioctl() at netbsd:sys_ioctl+0xd84 sys/kern/sys_generic.c:675
sys_syscall() at netbsd:sys_syscall+0x2c5 sys/kern/sys_syscall.c:90
syscall() at netbsd:syscall+0x60c sy_invoke sys/sys/syscallvar.h:94 [inline]
syscall() at netbsd:syscall+0x60c sys/arch/x86/x86/syscall.c:138
--- syscall (number 54 via SYS_syscall) ---
netbsd:syscall+0x60c:
Panic string: kernel diagnostic assertion "sa->sa_len <= sizeof(ifr.ifr_ifru)" failed: file "/syzkaller/managers/ci2-netbsd-kmsan/kernel/sys/net/if.c", line 3698
PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
1244 1244 2 0 0 ffff9900133f2980 syz-executor2756
1246 >1246 7 1 40000 ffff9900133f2540 syz-executor2756
991 991 2 1 40000 ffff9900133f2100 syz-executor2756
1245 1245 2 0 0 ffff990012c53940 syz-executor2756
1241 1241 2 0 0 ffff990012c53500 syz-executor2756
930 930 2 0 0 ffff990012c530c0 syz-executor2756
829 829 2 0 40000 ffff990012b668c0 syz-executor2756
1239 1239 2 0 140 ffff990012b66480 syz-executor2756
1103 1103 3 1 180 ffff990012b66040 syz-executor2756 nanoslp
449 449 3 1 180 ffff990012b94900 syz-executor2756 nanoslp
942 942 3 0 40180 ffff9900122ecb00 syz-executor2756 nanoslp
1233 1233 3 1 180 ffff9900122ec6c0 sshd select
1223 1223 3 0 180 ffff990012b94080 getty nanoslp
1151 1151 3 1 180 ffff9900121eeac0 getty nanoslp
1225 1225 3 0 180 ffff9900122ec280 getty nanoslp
1184 1184 3 1 1c0 ffff9900121eb200 getty ttyraw
978 978 3 1 180 ffff990012527300 sshd select
1088 1088 3 1 180 ffff9900125a4780 powerd kqueue
699 699 3 0 180 ffff990012b944c0 syslogd kqueue
746 746 3 1 180 ffff99001237d700 dhcpcd poll
745 745 3 1 180 ffff990012527740 dhcpcd poll
582 582 3 0 180 ffff99001237d2c0 dhcpcd poll
620 620 3 1 180 ffff9900125a4bc0 dhcpcd poll
487 487 3 0 180 ffff9900125a4340 dhcpcd poll
292 292 3 0 180 ffff99001237db40 dhcpcd poll
485 485 3 0 180 ffff990012527b80 dhcpcd poll
1 1 3 1 180 ffff990011e67100 init wait
0 852 3 0 200 ffff9900121eb640 physiod physiod
0 > 195 7 0 240 ffff9900121ee240 ioflush
0 196 3 0 200 ffff9900121ee680 pooldrain pooldrain
0 194 3 1 200 ffff9900121eba80 pgdaemon pgdaemon
0 170 3 1 200 ffff99001215ba40 usb7 usbevt
0 169 3 1 200 ffff99001215b600 usb6 usbevt
0 168 3 0 200 ffff99001215b1c0 usb5 usbevt
0 167 3 1 200 ffff99001212ca00 usb4 usbevt
0 166 3 0 200 ffff99001212c5c0 usb3 usbevt
0 165 3 1 200 ffff99001212c180 usb2 usbevt
0 31 3 1 200 ffff9900120769c0 usb1 usbevt
0 63 3 0 200 ffff990012076580 usb0 usbevt
0 126 3 1 200 ffff990012076140 usbtask-dr usbtsk
0 125 3 1 200 ffff990011e67980 usbtask-hc usbtsk
0 124 3 0 200 ffff9900103f5b00 swwreboot swwreboot
0 123 3 1 200 ffff990011e67540 npfgc0 npfgcw
0 122 3 1 200 ffff990011e59940 rt_free rt_free
0 121 3 1 200 ffff990011e59500 unpgc unpgc
0 120 3 0 200 ffff990011e590c0 key_timehandler key_timehandler
0 119 3 1 200 ffff990011e55900 icmp6_wqinput/1 icmp6_wqinput
0 118 3 0 200 ffff990011e554c0 icmp6_wqinput/0 icmp6_wqinput
0 117 3 0 200 ffff990011e55080 nd6_timer nd6_timer
0 116 3 1 200 ffff990011e508c0 carp6_wqinput/1 carp6_wqinput
0 115 3 0 200 ffff990011e50480 carp6_wqinput/0 carp6_wqinput
0 114 3 1 200 ffff990011e50040 carp_wqinput/1 carp_wqinput
0 113 3 0 200 ffff990011e46bc0 carp_wqinput/0 carp_wqinput
0 112 3 1 200 ffff990011e46780 icmp_wqinput/1 icmp_wqinput
0 111 3 0 200 ffff990011e46340 icmp_wqinput/0 icmp_wqinput
0 110 3 0 200 ffff990011cddb80 rt_timer rt_timer
0 109 3 1 200 ffff990011cdd740 vmem_rehash vmem_rehash
0 100 3 0 200 ffff990011cdd300 entbutler entropy
0 99 3 1 200 ffff9900117e0b40 viomb balloon
0 98 3 1 200 ffff9900117e0700 vioif0_txrx/1 vioif0_txrx
0 97 3 0 200 ffff9900117e02c0 vioif0_txrx/0 vioif0_txrx
0 30 3 0 200 ffff9900103f56c0 scsibus0 sccomp
0 29 3 0 200 ffff9900103f5280 pms0 pmsreset
0 28 3 1 200 ffff9900103daac0 xcall/1 xcall
0 27 1 1 200 ffff9900103da680 softser/1
0 26 1 1 200 ffff9900103da240 softclk/1
0 25 1 1 200 ffff9900103d8a80 softbio/1
0 24 1 1 200 ffff9900103d8640 softnet/1
0 23 1 1 201 ffff9900103d8200 idle/1
0 22 3 0 200 ffff99000f1f4a40 lnxsyswq lnxsyswq
0 21 3 0 200 ffff99000f1f4600 lnxubdwq lnxubdwq
0 20 3 0 200 ffff99000f1f41c0 lnxpwrwq lnxpwrwq
0 19 3 0 200 ffff99000f1f2a00 lnxlngwq lnxlngwq
0 18 3 0 200 ffff99000f1f25c0 lnxhipwq lnxhipwq
0 17 3 1 200 ffff99000f1f2180 lnxrcugc lnxrcugc
0 16 3 0 200 ffff99000f1ec9c0 sysmon smtaskq
0 15 3 0 200 ffff99000f1ec580 pmfsuspend pmfsuspend
0 14 3 1 200 ffff99000f1ec140 pmfevent pmfevent
0 13 3 0 200 ffff99000f1e9980 sopendfree sopendfr
0 12 3 0 200 ffff99000f1e9540 ifwdog ifwdog
0 11 3 0 200 ffff99000f1e9100 iflnkst iflnkst
0 10 3 0 200 ffff99000f1df940 nfssilly nfssilly
0 9 3 0 200 ffff99000f1df500 vdrain vdrain
0 8 3 0 200 ffff99000f1df0c0 modunload mod_unld
0 7 3 0 200 ffff99000ebdb900 xcall/0 xcall
0 6 1 0 200 ffff99000ebdb4c0 softser/0
0 5 1 0 200 ffff99000ebdb080 softclk/0
0 4 1 0 200 ffff99000ebd98c0 softbio/0
0 3 1 0 200 ffff99000ebd9480 softnet/0
0 2 1 0 201 ffff99000ebd9040 idle/0
0 0 3 0 200 ffffffff8686a200 swapper uvm
[Locks tracked through LWPs]

****** LWP 1246.1246 (syz-executor2756) @ 0xffff9900133f2540, l_stat=7

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff9900133f2540 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 991.991 (syz-executor2756) @ 0xffff9900133f2100, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff9900133f2100 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 1245.1245 (syz-executor2756) @ 0xffff990012c53940, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:pmap_ctor+0xc0 sys/arch/x86/x86/pmap.c:2860)
lock address : ffff990012b8ea80
type : sleep/adaptive
initialized : netbsd:pmap_ctor+0xc0
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff990012c53940 last held: 0xffff990012c53940
last locked* : netbsd:pmap_enter_ma+0x11ce
unlocked : netbsd:pmap_enter_ma+0x6f3f
owner field : 0xffff990012c53940 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 1241.1241 (syz-executor2756) @ 0xffff990012c53500, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:lwp_ctl_alloc+0x3b9 sys/kern/kern_lwp.c:1859)
lock address : ffff99001330bf00
type : sleep/adaptive
initialized : netbsd:lwp_ctl_alloc+0x3b9
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff990012c53500 last held: 0xffff990012c53500
last locked* : netbsd:lwp_ctl_alloc+0x55f
unlocked : 0
owner field : 0xffff990012c53500 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at netbsd:uvmspace_fork+0x3e4 uvm_map_setup sys/uvm/uvm_map.c:4789 [inline])
* Lock 1 (initialized at netbsd:uvmspace_fork+0x3e4 uvmspace_init sys/uvm/uvm_map.c:4132 [inline])
* Lock 1 (initialized at netbsd:uvmspace_fork+0x3e4 uvmspace_alloc sys/uvm/uvm_map.c:4111 [inline])
* Lock 1 (initialized at netbsd:uvmspace_fork+0x3e4 sys/uvm/uvm_map.c:4588)
lock address : ffff9900133e4050
type : sleep/adaptive
initialized : netbsd:uvmspace_fork+0x3e4
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff990012c53500 last held: 0xffff990012c53500
last locked* : netbsd:uvm_map_prepare+0xd7f
unlocked : netbsd:uvm_fault_upper_enter+0x161a
owner/count : 0xffff990012c53500 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 829.829 (syz-executor2756) @ 0xffff990012b668c0, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff990012b668c0 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 745.745 (dhcpcd) @ 0xffff990012527740, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff990012527740 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 582.582 (dhcpcd) @ 0xffff99001237d2c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff99001237d2c0 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 292.292 (dhcpcd) @ 0xffff99001237db40, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff99001237db40 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 485.485 (dhcpcd) @ 0xffff990012527b80, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff990012527b80 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xffff99000f1e9100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff99000f1e9100 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.5 (softclk/0) @ 0xffff99000ebdb080, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff99000ebdb080 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.0 (swapper) @ 0xffffffff8686a200, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x43 sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x43
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffffff8686a200 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

******* Locks held on cpu1:

* Lock 0 (initialized at netbsd:kprintf_init+0xdc sys/kern/subr_prf.c:155)
lock address : netbsd:kprintf_mtx
type : spin
initialized : netbsd:kprintf_init+0xdc
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff9900133f2540 last held: 0xffff9900133f2540
last locked* : netbsd:vpanic+0x624
unlocked : netbsd:printf+0x2ce
owner field : 0x0000000000000800 wait/spin: 0/1

PAGE FLAG PQ UOBJECT UANON
0xffff990000017180 0001 00000000 0x0 0x0
0xffff990000017200 0041 00000000 0x0 0x0
0xffff990000017280 0041 00000000 0x0 0x0
0xffff990000017300 0041 00000000 0x0 0x0
0xffff990000017380 0041 00000000 0x0 0x0
0xffff990000017400 0041 00000000 0x0 0x0
0xffff990000017480 0041 00000000 0x0 0x0
0xffff990000017500 0041 00000000 0x0 0x0
0xffff990000017580 0041 00000000 0x0 0x0
0xffff990000017600 0041 00000000 0x0 0x0
0xffff990000017680 0041 00000000 0x0 0x0
0xffff990000017700 0041 00000000 0x0 0x0
0xffff990000017780 0041 00000000 0x0 0x0
0xffff990000017800 0041 00000000 0x0 0x0
0xffff990000017880 0041 00000000 0x0 0x0
0xffff990000017900 0041 00000000 0x0 0x0
0xffff990000017980 0041 00000000 0x0 0x0
0xffff990000017a00 0041 00000000 0x0 0x0
0xffff990000017a80 0041 00000000 0x0 0x0
0xffff990000017b00 0041 00000000 0x0 0x0
0xffff990000017b80 0041 00000000 0x0 0x0
0xffff990000017c00 0041 00000000 0x0 0x0
0xffff990000017c80 0041 00000000 0x0 0x0
0xffff990000017d00 0041 00000000 0x0 0x0
0xffff990000017d80 0041 00000000 0x0 0x0
0xffff990000017e00 0041 00000000 0x0 0x0
0xffff990000017e80 0041 00000000 0x0 0x0
0xffff990000017f00 0041 00000000 0x0 0x0
0xffff990000017f80 0041 00000000 0x0 0x0
0xffff990000018000 0041 00000000 0x0 0x0
0xffff990000018080 0041 00000000 0x0 0x0
0xffff990000018100 0041 00000000 0x0 0x0
0xffff990000018180 0041 00000000 0x0 0x0
0xffff990000018200 0041 00000000 0x0 0x0
0xffff990000018280 0041 00000000 0x0 0x0
0xffff990000018300 0041 00000000 0x0 0x0
0xffff990000018380 0041 00000000 0x0 0x0
0xffff990000018400 0041 00000000 0x0 0x0
0xffff990000018480 0041 00000000 0x0 0x0
0xffff990000018500 0041 00000000 0x0 0x0
0xffff990000018580 0041 00000000 0x0 0x0
0xffff990000018600 0041 00000000 0x0 0x0
0xffff990000018680 0041 00000000 0x0 0x0
0xffff990000018700 0041 00000000 0x0 0x0
0xffff990000018780 0041 00000000 0x0 0x0
0xffff990000018800 0041 00000000 0x0 0x0
0xffff990000018880 0041 00000000 0x0 0x0
0xffff990000018900 0041 00000000 0x0 0x0
0xffff990000018980 0041 00000000 0x0 0x0
0xffff990000018a00 0041 00000000 0x0 0x0
0xffff990000018a80 0041 00000000 0x0 0x0
0xffff990000018b00 0041 00000000 0x0 0x0
0xffff990000018b80 0041 00000000 0x0 0x0
0xffff990000018c00 0041 00000000 0x0 0x0
0xffff990000018c80 0041 00000000 0x0 0x0
0xffff990000018d00 0041 00000000 0x0 0x0
0xffff990000018d80 0041 00000000 0x0 0x0
0xffff990000018e00 0041 00000000 0x0 0x0
0xffff990000018e80 0041 00000000 0x0 0x0
0xffff990000018f00 0041 00000000 0x0 0x0
0xffff990000018f80 0041 00000000 0x0 0x0
0xffff990000019000 0041 00000000 0x0 0x0
0xffff990000019080 0041 00000000 0x0 0x0
0xffff990000019100 0041 00000000 0x0 0x0
0xffff990000019180 0041 00000000 0x0 0x0
0xffff990000019200 0041 00000000 0x0 0x0
0xffff990000019280 0041 00000000 0x0 0x0
0xffff990000019300 0041 00000000 0x0 0x0
0xffff990000019380 0041 00000000 0x0 0x0
0xffff990000019400 0041 00000000 0x0 0x0
0xffff990000019480 0041 00000000 0x0 0x0
0xffff990000019500 0041 00000000 0x0 0x0
0xffff990000019580 0041 00000000 0x0 0x0
0xffff990000019600 0041 00000000 0x0 0x0
0xffff990000019680 0041 00000000 0x0 0x0
0xffff990000019700 0041 00000000 0x0 0x0
0xffff990000019780 0041 00000000 0x0 0x0
0xffff990000019800 0041 00000000 0x0 0x0
0xffff990000019880 0041 00000000 0x0 0x0
0xffff990000019900 0041 00000000 0x0 0x0
0xffff990000019980 0041 00000000 0x0 0x0
0xffff990000019a00 0041 00000000 0x0 0x0
0xffff990000019a80 0041 00000000 0x0 0x0
0xffff990000019b00 0041 00000000 0x0 0x0
0xffff990000019b80 0041 00000000 0x0 0x0
0xffff990000019c00 0041 00000000 0x0 0x0
0xffff990000019c80 0041 00000000 0x0 0x0
0xffff990000019d00 0041 00000000 0x0 0x0
0xffff990000019d80 0041 00000000 0x0 0x0
0xffff990000019e00 0041 00000000 0x0 0x0
0xffff990000019e80 0041 00000000 0x0 0x0
0xffff990000019f00 0041 00000000 0x0 0x0
0xffff990000019f80 0041 00000000 0x0 0x0
0xffff99000001a000 0041 00000000 0x0 0x0
0xffff99000001a080 0041 00000000 0x0 0x0
0xffff99000001a100 0041 00000000 0x0 0x0
0xffff99000001a180 0041 00000000 0x0 0x0
0xffff99000001a200 0041 00000000 0x0 0x0
0xffff99000001a280 0041 00000000 0x0 0x0
0xffff99000001a300 0041 00000000 0x0 0x0
0xffff99000001a380 0041 00000000 0x0 0x0
0xffff99000001a400 0041 00000000 0x0 0x0
0xffff99000001a480 0041 00000000 0x0 0x0
0xffff99000001a500 0041 00000000 0x0 0x0
0xffff99000001a580 0041 00000000 0x0 0x0
0xffff99000001a600 0041 00000000 0x0 0x0
0xffff99000001a680 0041 00000000 0x0 0x0
0xffff99000001a700 0041 00000000 0x0 0x0
0xffff99000001a780 0041 00000000 0x0 0x0
0xffff99000001a800 0041 00000000 0x0 0x0
0xffff99000001a880 0041 00000000 0x0 0x0
0xffff99000001a900 0041 00000000 0x0 0x0
0xffff99000001a980 0041 00000000 0x0 0x0
0xffff99000001aa00 0041 00000000 0x0 0x0
0xffff99000001aa80 0041 00000000 0x0 0x0
0xffff99000001ab00 0041 00000000 0x0 0x0
0xffff99000001ab80 0041 00000000 0x0 0x0
0xffff99000001ac00 0041 00000000 0x0 0x0
0xffff99000001ac80 0041 00000000 0x0 0x0
0xffff99000001ad00 0041 00000000 0x0 0x0
0xffff99000001ad80 0041 00000000 0x0 0x0
0xffff99000001ae00 0041 00000000 0x0 0x0
0xffff99000001ae80 0041 00000000 0x0 0x0
0xffff99000001af00 0041 00000000 0x0 0x0
0xffff99000001af80 0041 00000000 0x0 0x0
0xffff99000001b000 0041 00000000 0x0 0x0
0xffff99000001b080 0041 00000000 0x0 0x0
0xffff99000001b100 0041 00000000 0x0 0x0
0xffff99000001b180 0041 00000000 0x0 0x0
0xffff99000001b200 0041 00000000 0x0 0x0
0xffff99000001b280 0041 00000000 0x0 0x0
0xffff99000001b300 0041 00000000 0x0 0x0
0xffff99000001b380 0041 00000000 0x0 0x0
0xffff99000001b400 0041 00000000 0x0 0x0
0xffff99000001b480 0041 00000000 0x0 0x0
0xffff99000001b500 0041 00000000 0x0 0x0
0xffff99000001b580 0041 00000000 0x0 0x0
0xffff99000001b600 0041 00000000 0x0 0x0
0xffff99000001b680 0041 00000000 0x0 0x0
0xffff99000001b700 0041 00000000 0x0 0x0
0xffff99000001b780 0041 00000000 0x0 0x0
0xffff99000001b800 0041 00000000 0x0 0x0
0xffff99000001b880 0041 00000000 0x0 0x0
0xffff99000001b900 0041 00000000 0x0 0x0
0xffff99000001b980 0041 00000000 0x0 0x0
0xffff99000001ba00 0041 00000000 0x0 0x0
0xffff99000001ba80 0041 00000000 0x0 0x0
0xffff99000001bb00 0041 00000000 0x0 0x0
0xffff99000001bb80 0041 00000000 0x0 0x0
0xffff99000001bc00 0041 00000000 0x0 0x0
0xffff99000001bc80 0041 00000000 0x0 0x0
0xffff99000001bd00 0041 00000000 0x0 0x0
0xffff99000001bd80 0041 00000000 0x0 0x0
0xffff99000001be00 0041 00000000 0x0 0x0
0xffff99000001be80 0041 00000000 0x0 0x0
0xffff99000001bf00 0041 00000000 0x0 0x0
0xffff99000001bf80 0041 00000000 0x0 0x0
0xffff99000001c000 0041 00000000 0x0 0x0
0xffff99000001c080 0041 00000000 0x0 0x0
0xffff99000001c100 0041 00000000 0x0 0x0
0xffff99000001c180 0041 00000000 0x0 0x0
0xffff99000001c200 0041 00000000 0x0 0x0
0xffff99000001c280 0041 00000000 0x0 0x0
0xffff99000001c300 0041 00000000 0x0 0x0
0xffff99000001c380 0041 00000000 0x0 0x0
0xffff99000001c400 0041 00000000 0x0 0x0
0xffff99000001c480 0041 00000000 0x0 0x0
0xffff99000001c500 0041 00000000 0x0 0x0
0xffff99000001c580 0041 00000000 0x0 0x0
0xffff99000001c600 0041 00000000 0x0 0x0
0xffff99000001c680 0041 00000000 0x0 0x0
0xffff99000001c700 0041 00000000 0x0 0x0
0xffff99000001c780 0001 00000000 0x0 0x0
0xffff99000001c800 0001 00000000 0x0 0x0
0xffff99000001c880 0001 00000000 0x0 0x0
0xffff99000001c900 0001 00000000 0x0 0x0
0xffff99000001c980 0001 00000000 0x0 0x0
0xffff99000001ca00 0001 00000000 0x0 0x0
0xffff99000001ca80 0001 00000000 0x0 0x0
0xffff99000001cb00 0001 00000000 0x0 0x0
0xffff99000001cb80 0001 00000000 0x0 0x0
0xffff99000001cc00 0001 00000000 0x0 0x0
0xffff99000001cc80 0001 00000000 0x0 0x0
0xffff99000001cd00 0001 00000000 0x0 0x0
0xffff99000001cd80 0001 00000000 0x0 0x0
0xffff99000001ce00 0001 00000000 0x0 0x0
0xffff99000001ce80 0001 00000000 0x0 0x0
0xffff99000001cf00 0001 00000000 0x0 0x0
0xffff99000001cf80 0001 00000000 0x0 0x0
0xffff99000001d000 0001 00000000 0x0 0x0
0xffff99000001d080 0001 00000000 0x0 0x0
0xffff99000001d100 0001 00000000 0x0 0x0
0xffff99000001d180 0001 00000000 0x0 0x0
0xffff99000001d200 0001 00000000 0x0 0x0
0xffff99000001d280 0001 00000000 0x0 0x0
0xffff99000001d300 0001 00000000 0x0 0x0
0xffff99000001d380 0001 00000000 0x0 0x0
0xffff99000001d400 0001 00000000 0x0 0x0
0xffff99000001d480 0001 00000000 0x0 0x0
0xffff99000001d500 0001 00000000 0x0 0x0
0xffff99000001d580 0001 00000000 0x0 0x0
0xffff99000001d600 0001 00000000 0x0 0x0
0xffff99000001d680 0001 00000000 0x0 0x0
0xffff99000001d700 0001 00000000 0x0 0x0
0xffff99000001d780 0001 00000000 0x0 0x0
0xffff99000001d800 0001 00000000 0x0 0x0
0xffff99000001d880 0001 00000000 0x0 0x0
0xffff99000001d900 0001 00000000 0x0 0x0
0xffff99000001d980 0001 00000000 0x0 0x0
0xffff99000001da00 0001 00000000 0x0 0x0
0xffff99000001da80 0001 00000000 0x0 0x0
0xffff99000001db00 0001 00000000 0x0 0x0
0xffff99000001db80 0001 00000000 0x0 0x0
0xffff99000001dc00 0001 00000000 0x0 0x0
0xffff99000001dc80 0001 00000000 0x0 0x0
0xffff99000001dd00 0001 00000000 0x0 0x0
0xffff99000001dd80 0001 00000000 0x0 0x0
0xffff99000001de00 0001 00000000 0x0 0x0
0xffff99000001de80 0001 00000000 0x0 0x0
0xffff99000001df00 0001 00000000 0x0 0x0
0xffff99000001df80 0001 00000000 0x0 0x0
0xffff99000001e000 0001 00000000 0x0 0x0
0xffff99000001e080 0001 00000000 0x0 0x0
0xffff99000001e100 0001 00000000 0x0 0x0
0xffff99000001e180 0001 00000000 0x0 0x0
0xffff99000001e200 0001 00000000 0x0 0x0
0xffff99000001e280 0001 00000000 0x0 0x0
0xffff99000001e300 0001 00000000 0x0 0x0
0xffff99000001e380 0001 00000000 0x0 0x0
0xffff99000001e400 0001 00000000 0x0 0x0
0xffff99000001e480 0001 00000000 0x0 0x0
0xffff99000001e500 0001 00000000 0x0 0x0
0xffff99000001e580 0001 00000000 0x0 0x0
0xffff99000001e600 0001 00000000 0x0 0x0
0xffff99000001e680 0001 00000000 0x0 0x0
0xffff99000001e700 0001 00000000 0x0 0x0
0xffff99000001e780 0001 00000000 0x0 0x0
0xffff99000001e800 0001 00000000 0x0 0x0
0xffff99000001e880 0001 00000000 0x0 0x0
0xffff99000001e900 0001 00000000 0x0 0x0
0xffff99000001e980 0001 00000000 0x0 0x0
0xffff99000001ea00 0001 00000000 0x0 0x0
0xffff99000001ea80 0001 00000000 0x0 0x0
0xffff99000001eb00 0001 00000000 0x0 0x0
0xffff99000001eb80 0001 00000000 0x0 0x0
0xffff99000001ec00 0001 00000000 0x0 0x0
0xffff99000001ec80 0001 00000000 0x0 0x0
0xffff99000001ed00 0001 00000000 0x0 0x0
0xffff99000001ed80 0001 00000000 0x0 0x0
0xffff99000001ee00 0001 00000000 0x0 0x0
0xffff99000001ee80 0001 00000000 0x0 0x0
0xffff99000001ef00 0001 00000000 0x0 0x0
0xffff99000001ef80 0001 00000000 0x0 0x0
0xffff99000001f000 0001 00000000 0x0 0x0
0xffff99000001f080 0001 00000000 0x0 0x0
0xffff99000001f100 0001 00000000 0x0 0x0
0xffff99000001f180 0001 00000000 0x0 0x0
0xffff99000001f200 0001 00000000 0x0 0x0
0xffff99000001f280 0001 00000000 0x0 0x0
0xffff99000001f300 0001 00000000 0x0 0x0
0xffff99000001f380 0001 00000000 0x0 0x0
0xffff99000001f400 0001 00000000 0x0 0x0
0xffff99000001f480 0001 00000000 0x0 0x0
0xffff99000001f500 0001 00000000 0x0 0x0
0xffff99000001f580 0001 00000000 0x0 0x0
0xffff99000001f600 0001 00000000 0x0 0x0
0xffff99000001f680 0001 00000000 0x0 0x0
0xffff99000001f700 0001 00000000 0x0 0x0
0xffff99000001f780 0001 00000000 0x0 0x0
0xffff99000001f800 0001 00000000 0x0 0x0
0xffff99000001f880 0001 00000000 0x0 0x0
0xffff99000001f900 0001 00000000 0x0 0x0
0xffff99000001f980 0001 00000000 0x0 0x0
0xffff99000001fa00 0001 00000000 0x0 0x0
0xffff99000001fa80 0001 00000000 0x0 0x0
0xffff99000001fb00 0001 00000000 0x0 0x0
0xffff99000001fb80 0001 00000000 0x0 0x0
0xffff99000001fc00 0001 00000000 0x0 0x0
0xffff99000001fc80 0001 00000000 0x0 0x0
0xffff99000001fd00 0001 00000000 0x0 0x0
0xffff99000001fd80 0001 00000000 0x0 0x0
0xffff99000001fe00 0001 00000000 0x0 0x0
0xffff99000001fe80 0001 00000000 0x0 0x0
0xffff99000001ff00 0001 00000000 0x0 0x0
0xffff99000001ff80 0001 00000000 0x0 0x0
0xffff990000020000 0001 00000000 0x0 0x0
0xffff990000020080 0001 00000000 0x0 0x0
0xffff990000020100 0001 00000000 0x0 0x0
0xffff990000020180 0001 00000000 0x0 0x0
0xffff990000020200 0001 00000000 0x0 0x0
0xffff990000020280 0001 00000000 0x0 0x0
0xffff990000020300 0001 00000000 0x0 0x0
0xffff990000020380 0001 00000000 0x0 0x0
0xffff990000020400 0001 00000000 0x0 0x0
0xffff990000020480 0001 00000000 0x0 0x0
0xffff990000020500 0001 00000000 0x0 0x0
0xffff990000020580 0001 00000000 0x0 0x0
0xffff990000020600 0001 00000000 0x0 0x0
0xffff990000020680 0001 00000000 0x0 0x0
0xffff990000020700 0001 00000000 0x0 0x0
0xffff990000020780 0001 00000000 0x0 0x0
0xffff990000020800 0001 00000000 0x0 0x0
0xffff990000020880 0001 00000000 0x0 0x0
0xffff990000020900 0001 00000000 0x0 0x0
0xffff990000020980 0001 00000000 0x0 0x0
0xffff990000020a00 0001 00000000 0x0 0x0
0xffff990000020a80 0001 00000000 0x0 0x0
0xffff990000020b00 0001 00000000 0x0 0x0
0xffff990000020b80 0001 00000000 0x0 0x0
0xffff990000020c00 0001 00000000 0x0 0x0
0xffff990000020c80 0001 00000000 0x0 0x0
0xffff990000020d00 0001 00000000 0x0 0x0
0xffff990000020d80 0001 00000000 0x0 0x0
0xffff990000020e00 0001 00000000 0x0 0x0
0xffff990000020e80 0001 00000000 0x0 0x0
0xffff990000020f00 0001 00000000 0x0 0x0
0xffff990000020f80 0001 00000000 0x0 0x0
0xffff990000021000 0001 00000000 0x0 0x0
0xffff990000021080 0001 00000000 0x0 0x0
0xffff990000021100 0001 00000000 0x0 0x0
0xffff990000021180 0001 00000000 0x0 0x0
0xffff990000021200 0001 00000000 0x0 0x0
0xffff990000021280 0001 00000000 0x0 0x0
0xffff990000021300 0001 00000000 0x0 0x0
0xffff990000021380 0001 00000000 0x0 0x0
0xffff990000021400 0001 00000000 0x0 0x0
0xffff990000021480 0001 00000000 0x0 0x0
0xffff990000021500 0001 00000000 0x0 0x0
0xffff990000021580 0001 00000000 0x0 0x0
0xffff990000021600 0001 00000000 0x0 0x0
0xffff990000021680 0001 00000000 0x0 0x0
0xffff990000021700 0001 00000000 0x0 0x0
0xffff990000021780 0001 00000000 0x0 0x0
0xffff990000021800 0001 00000000 0x0 0x0
0xffff990000021880 0001 00000000 0x0 0x0
0xffff990000021900 0001 00000000 0x0 0x0
0xffff990000021980 0001 00000000 0x0 0x0
0xffff990000021a00 0001 00000000 0x0 0x0
0xffff990000021a80 0001 00000000 0x0 0x0
0xffff990000021b00 0001 00000000 0x0 0x0
0xffff990000021b80 0001 00000000 0x0 0x0
0xffff990000021c00 0001 00000000 0x0 0x0
0xffff990000021c80 0001 00000000 0x0 0x0
0xffff990000021d00 0001 00000000 0x0 0x0
0xffff990000021d80 0001 00000000 0x0 0x0
0xffff990000021e00 0001 00000000 0x0 0x0
0xffff990000021e80 0001 00000000 0x0 0x0
0xffff990000021f00 0001 00000000 0x0 0x0
0xffff990000021f80 0001 00000000 0x0 0x0
0xffff990000022000 0001 00000000 0x0 0x0
0xffff990000022080 0001 00000000 0x0 0x0
0xffff990000022100 0001 00000000 0x0 0x0
0xffff990000022180 0001 00000000 0x0 0x0
0xffff990000022200 0001 00000000 0x0 0x0
0xffff990000022280 0001 00000000 0x0 0x0
0xffff990000022300 0001 00000000 0x0 0x0
0xffff990000022380 0001 00000000 0x0 0x0
0xffff990000022400 0001 00000000 0x0 0x0
0xffff990000022480 0001 00000000 0x0 0x0
0xffff990000022500 0001 00000000 0x0 0x0
0xffff990000022580 0001 00000000 0x0 0x0
0xffff990000022600 0001 00000000 0x0 0x0
0xffff990000022680 0001 00000000 0x0 0x0
0xffff990000022700 0001 00000000 0x0 0x0
0xffff990000022780 0001 00000000 0x0 0x0
0xffff990000022800 0001 00000000 0x0 0x0
0xffff990000022880 0001 00000000 0x0 0x0
0xffff990000022900 0001 00000000 0x0 0x0
0xffff990000022980 0001 00000000 0x0 0x0
0xffff990000022a00 0001 00000000 0x0 0x0
0xffff990000022a80 0001 00000000 0x0 0x0
0xffff990000022b00 0001 00000000 0x0 0x0
0xffff990000022b80 0001 00000000 0x0 0x0
0xffff990000022c00 0001 00000000 0x0 0x0
0xffff990000022c80 0001 00000000 0x0 0x0
0xffff990000022d00 0001 00000000 0x0 0x0
0xffff990000022d80 0001 00000000 0x0 0x0
0xffff990000022e00 0001 00000000 0x0 0x0
0xffff990000022e80 0001 00000000 0x0 0x0
0xffff990000022f00 0001 00000000 0x0 0x0
0xffff990000022f80 0001 00000000 0x0 0x0
0xffff990000023000 0001 00000000 0x0 0x0
0xffff990000023080 0001 00000000 0x0 0x0
0xffff990000023100 0001 00000000 0x0 0x0
0xffff990000023180 0001 00000000 0x0 0x0
0xffff990000023200 0001 00000000 0x0 0x0
0xffff990000023280 0001 00000000 0x0 0x0
0xffff990000023300 0001 00000000 0x0 0x0
0xffff990000023380 0001 00000000 0x0 0x0
0xffff990000023400 0001 00000000 0x0 0x0
0xffff990000023480 0001 00000000 0x0 0x0
0xffff990000023500 0001 00000000 0x0 0x0
0xffff990000023580 0001 00000000 0x0 0x0
0xffff990000023600 0001 00000000 0x0 0x0
0xffff990000023680 0001 00000000 0x0 0x0
0xffff990000023700 0001 00000000 0x0 0x0
0xffff990000023780 0001 00000000 0x0 0x0
0xffff990000023800 0001 00000000 0x0 0x0
0xffff990000023880 0001 00000000 0x0 0x0
0xffff990000023900 0001 00000000 0x0 0x0
0xffff990000023980 0001 00000000 0x0 0x0
0xffff990000023a00 0001 00000000 0x0 0x0
0xffff990000023a80 0001 00000000 0x0 0x0
0xffff990000023b00 0001 00000000 0x0 0x0
0xffff990000023b80 0001 00000000 0x0 0x0
0xffff990000023c00 0001 00000000 0x0 0x0
0xffff990000023c80 0001 00000000 0x0 0x0
0xffff990000023d00 0001 00000000 0x0 0x0
0xffff990000023d80 0001 00000000 0x0 0x0
0xffff990000023e00 0001 00000000 0x0 0x0
0xffff990000023e80 0001 00000000 0x0 0x0
0xffff990000023f00 0001 00000000 0x0 0x0
0xffff990000023f80 0001 00000000 0x0 0x0
0xffff990000024000 0001 00000000 0x0 0x0
0xffff990000024080 0001 00000000 0x0 0x0
0xffff990000024100 0001 00000000 0x0 0x0
0xffff990000024180 0001 00000000 0x0 0x0
0xffff990000024200 0001 00000000 0x0 0x0
0xffff990000024280 0001 00000000 0x0 0x0
0xffff990000024300 0001 00000000 0x0 0x0
0xffff990000024380 0001 00000000 0x0 0x0
0xffff990000024400 0001 00000000 0x0 0x0
0xffff990000024480 0001 00000000 0x0 0x0
0xffff990000024500 0001 00000000 0x0 0x0
0xffff990000024580 0001 00000000 0x0 0x0
0xffff990000024600 0001 00000000 0x0 0x0
0xffff990000024680 0001 00000000 0x0 0x0
0xffff990000024700 0001 00000000 0x0 0x0
0xffff990000024780 0001 00000000 0x0 0x0
0xffff990000024800 0001 00000000 0x0 0x0
0xffff990000024880 0001 00000000 0x0 0x0
0xffff990000024900 0001 00000000 0x0 0x0
0xffff990000024980 0001 00000000 0x0 0x0
0xffff990000024a00 0001 00000000 0x0 0x0
0xffff990000024a80 0001 00000000 0x0 0x0
0xffff990000024b00 0001 00000000 0x0 0x0
0xffff990000024b80 0001 00000000 0x0 0x0
0xffff990000024c00 0001 00000000 0x0 0x0
0xffff990000024c80 0001 00000000 0x0 0x0
0xffff990000024d00 0001 00000000 0x0 0x0
0xffff990000024d80 0001 00000000 0x0 0x0
0xffff990000024e00 0001 00000000 0x0 0x0
0xffff990000024e80 0001 00000000 0x0 0x0
0xffff990000024f00 0001 00000000 0x0 0x0
0xffff990000024f80 0001 00000000 0x0 0x0
0xffff990000025000 0001 00000000 0x0 0x0
0xffff990000025080 0001 00000000 0x0 0x0
0xffff990000025100 0001 00000000 0x0 0x0
0xffff990000025180 0001 00000000 0x0 0x0
0xffff990000025200 0001 00000000 0x0 0x0
0xffff990000025280 0001 00000000 0x0 0x0
0xffff990000025300 0001 00000000 0x0 0x0
0xffff990000025380 0001 00000000 0x0 0x0
0xffff990000025400 0001 00000000 0x0 0x0
0xffff990000025480 0001 00000000 0x0 0x0
0xffff990000025500 0001 00000000 0x0 0x0
0xffff990000025580 0001 00000000 0x0 0x0
0xffff990000025600 0001 00000000 0x0 0x0
0xffff990000025680 0001 00000000 0x0 0x0
0xffff990000025700 0001 00000000 0x0 0x0
0xffff990000025780 0001 00000000 0x0 0x0
0xffff990000025800 0001 00000000 0x0 0x0
0xffff990000025880 0001 00000000 0x0 0x0
0xffff990000025900 0001 00000000 0x0 0x0
0xffff990000025980 0001 00000000 0x0 0x0
0xffff990000025a00 0001 00000000 0x0 0x0
0xffff990000025a80 0001 00000000 0x0 0x0
0xffff990000025b00 0001 00000000 0x0 0x0
0xffff990000025b80 0001 00000000 0x0 0x0
0xffff990000025c00 0001 00000000 0x0 0x0
0xffff990000025c80 0001 00000000 0x0 0x0
0xffff990000025d00 0001 00000000 0x0 0x0
0xffff990000025d80 0001 00000000 0x0 0x0
0xffff990000025e00 0001 00000000 0x0 0x0
0xffff990000025e80 0001 00000000 0x0 0x0
0xffff990000025f00 0001 00000000 0x0 0x0
0xffff990000025f80 0001 00000000 0x0 0x0
0xffff990000026000 0001 00000000 0x0 0x0
0xffff990000026080 0001 00000000 0x0 0x0
0xffff990000026100 0001 00000000 0x0 0x0
0xffff990000026180 0001 00000000 0x0 0x0
0xffff990000026200 0001 00000000 0x0 0x0
0xffff990000026280 0001 00000000 0x0 0x0
0xffff990000026300 0001 00000000 0x0 0x0
0xffff990000026380 0001 00000000 0x0 0x0
0xffff990000026400 0001 00000000 0x0 0x0
0xffff990000026480 0001 00000000 0x0 0x0
0xffff990000026500 0001 00000000 0x0 0x0
0xffff990000026580 0001 00000000 0x0 0x0
0xffff990000026600 0001 00000000 0x0 0x0
0xffff990000026680 0001 00000000 0x0 0x0
0xffff990000026700 0001 00000000 0x0 0x0
0xffff990000026780 0001 00000000 0x0 0x0
0xffff990000026800 0001 00000000 0x0 0x0
0xffff990000026880 0001 00000000 0x0 0x0
0xffff990000026900 0001 00000000 0x0 0x0
0xffff990000026980 0001 00000000 0x0 0x0
0xffff990000026a00 0001 00000000 0x0 0x0
0xffff990000026a80 0001 00000000 0x0 0x0
0xffff990000026b00 0001 00000000 0x0 0x0
0xffff990000026b80 0001 00000000 0x0 0x0
0xffff990000026c00 0001 00000000 0x0 0x0
0xffff990000026c80 0001 00000000 0x0 0x0
0xffff990000026d00 0001 00000000 0x0 0x0
0xffff990000026d80 0001 00000000 0x0 0x0
0xffff990000026e00 0001 00000000 0x0 0x0
0xffff990000026e80 0001 00000000 0x0 0x0
0xffff990000026f00 0001 00000000 0x0 0x0
0xffff990000026f80 0001 00000000 0x0 0x0
0xffff990000027000 0001 00000000 0x0 0x0
0xffff990000027080 0001 00000000 0x0 0x0
0xffff990000027100 0001 00000000 0x0 0x0
0xffff990000027180 0001 00000000 0x0 0x0
0xffff990000027200 0001 00000000 0x0 0x0
0xffff990000027280 0001 00000000 0x0 0x0
0xffff990000027300 0001 00000000 0x0 0x0
0xffff990000027380 0001 00000000 0x0 0x0
0xffff990000027400 0001 00000000 0x0 0x0
0xffff990000027480 0001 00000000 0x0 0x0
0xffff990000027500 0001 00000000 0x0 0x0
0xffff990000027580 0001 00000000 0x0 0x0
0xffff990000027600 0001 00000000 0x0 0x0
0xffff990000027680 0001 00000000 0x0 0x0
0xffff990000027700 0001 00000000 0x0 0x0
0xffff990000027780 0001 00000000 0x0 0x0
0xffff990000027800 0001 00000000 0x0 0x0
0xffff990000027880 0001 00000000 0x0 0x0
0xffff990000027900 0001 00000000 0x0 0x0
0xffff990000027980 0001 00000000 0x0 0x0
0xffff990000027a00 0001 00000000 0x0 0x0
0xffff990000027a80 0001 00000000 0x0 0x0
0xffff990000027b00 0001 00000000 0x0 0x0
0xffff990000027b80 0001 00000000 0x0 0x0
0xffff990000027c00 0001 00000000 0x0 0x0
0xffff990000027c80 0001 00000000 0x0 0x0
0xffff990000027d00 0001 00000000 0x0 0x0
0xffff990000027d80 0001 00000000 0x0 0x0
0xffff990000027e00 0001 00000000 0x0 0x0
0xffff990000027e80 0001 00000000 0x0 0x0
0xffff990000027f00 0001 00000000 0x0 0x0
0xffff990000027f80 0001 00000000 0x0 0x0
0xffff990000028000 0001 00000000 0x0 0x0
0xffff990000028080 0001 00000000 0x0 0x0
0xffff990000028100 0001 00000000 0x0 0x0
0xffff990000028180 0001 00000000 0x0 0x0
0xffff990000028200 0001 00000000 0x0 0x0
0xffff990000028280 0001 00000000 0x0 0x0
0xffff990000028300 0001 00000000 0x0 0x0
0xffff990000028380 0001 00000000 0x0 0x0
0xffff990000028400 0001 00000000 0x0 0x0
0xffff990000028480 0001 00000000 0x0 0x0
0xffff990000028500 0001 00000000 0x0 0x0
0xffff990000028580 0001 00000000 0x0 0x0
0xffff990000028600 0001 00000000 0x0 0x0
0xffff990000028680 0001 00000000 0x0 0x0
0xffff990000028700 0001 00000000 0x0 0x0
0xffff990000028780 0001 00000000 0x0 0x0
0xffff990000028800 0001 00000000 0x0 0x0
0xffff990000028880 0001 00000000 0x0 0x0
0xffff990000028900 0001 00000000 0x0 0x0
0xffff990000028980 0001 00000000 0x0 0x0
0xffff990000028a00 0001 00000000 0x0 0x0
0xffff990000028a80 0001 00000000 0x0 0x0
0xffff990000028b00 0001 00000000 0x0 0x0
0xffff990000028b80 0001 00000000 0x0 0x0
0xffff990000028c00 0001 00000000 0x0 0x0
0xffff990000028c80 0001 00000000 0x0 0x0
0xffff990000028d00 0001 00000000 0x0 0x0
0xffff990000028d80 0001 00000000 0x0 0x0
0xffff990000028e00 0001 00000000 0x0 0x0
0xffff990000028e80 0001 00000000 0x0 0x0
0xffff990000028f00 0001 00000000 0x0 0x0
0xffff990000028f80 0001 00000000 0x0 0x0
0xffff990000029000 0001 00000000 0x0 0x0
0xffff990000029080 0001 00000000 0x0 0x0
0xffff990000029100 0001 00000000 0x0 0x0
0xffff990000029180 0001 00000000 0x0 0x0
0xffff990000029200 0001 00000000 0x0 0x0
0xffff990000029280 0001 00000000 0x0 0x0
0xffff990000029300 0001 00000000 0x0 0x0
0xffff990000029380 0001 00000000 0x0 0x0
0xffff990000029400 0001 00000000 0x0 0x0
0xffff990000029480 0001 00000000 0x0 0x0
0xffff990000029500 0001 00000000 0x0 0x0
0xffff990000029580 0001 00000000 0x0 0x0
0xffff990000029600 0001 00000000 0x0 0x0
0xffff990000029680 0001 00000000 0x0 0x0
0xffff990000029700 0001 00000000 0x0 0x0
0xffff990000029780 0001 00000000 0x0 0x0
0xffff990000029800 0001 00000000 0x0 0x0
0xffff990000029880 0001 00000000 0x0 0x0
0xffff990000029900 0001 00000000 0x0 0x0
0xffff990000029980 0001 00000000 0x0 0x0
0xffff990000029a00 0001 00000000 0x0 0x0
0xffff990000029a80 0001 00000000 0x0 0x0
0xffff990000029b00 0001 00000000 0x0 0x0
0xffff990000029b80 0001 00000000 0x0 0x0
0xffff990000029c00 0001 00000000 0x0 0x0
0xffff990000029c80 0001 00000000 0x0 0x0
0xffff990000029d00 0001 00000000 0x0 0x0
0xffff990000029d80 0001 00000000 0x0 0x0
0xffff990000029e00 0001 00000000 0x0 0x0
0xffff990000029e80 0001 00000000 0x0 0x0
0xffff990000029f00 0001 00000000 0x0 0x0
0xffff990000029f80 0001 00000000 0x0 0x0
0xffff99000002a000 0001 00000000 0x0 0x0
0xffff99000002a080 0001 00000000 0x0 0x0
0xffff99000002a100 0001 00000000 0x0 0x0
0xffff99000002a180 0001 00000000 0x0 0x0
0xffff99000002a200 0001 00000000 0x0 0x0
0xffff99000002a280 0001 00000000 0x0 0x0
0xffff99000002a300 0001 00000000 0x0 0x0
0xffff99000002a380 0001 00000000 0x0 0x0
0xffff99000002a400 0001 00000000 0x0 0x0
0xffff99000002a480 0001 00000000 0x0 0x0
0xffff99000002a500 0001 00000000 0x0 0x0
0xffff99000002a580 0001 00000000 0x0 0x0
0xffff99000002a600 0001 00000000 0x0 0x0
0xffff99000002a680 0001 00000000 0x0 0x0
0xffff99000002a700 0001 00000000 0x0 0x0
0xffff99000002a780 0001 00000000 0x0 0x0
0xffff99000002a800 0001 00000000 0x0 0x0
0xffff99000002a880 0001 00000000 0x0 0x0
0xffff99000002a900 0001 00000000 0x0 0x0
0xffff99000002a980 0001 00000000 0x0 0x0
0xffff99000002aa00 0001 00000000 0x0 0x0
0xffff99000002aa80 0001 00000000 0x0 0x0
0xffff99000002ab00 0001 00000000 0x0 0x0
0xffff99000002ab80 0001 00000000 0x0 0x0
0xffff99000002ac00 0001 00000000 0x0 0x0
0xffff99000002ac80 0001 00000000 0x0 0x0
0xffff99000002ad00 0001 00000000 0x0 0x0
0xffff99000002ad80 0001 00000000 0x0 0x0
0xffff99000002ae00 0001 00000000 0x0 0x0
0xffff99000002ae80 0001 00000000 0x0 0x0
0xffff99000002af00 0001 00000000 0x0 0x0
0xffff99000002af80 0001 00000000 0x0 0x0
0xffff99000002b000 0001 00000000 0x0 0x0
0xffff99000002b080 0001 00000000 0x0 0x0
0xffff99000002b100 0001 00000000 0x0 0x0
0xffff99000002b180 0001 00000000 0x0 0x0
0xffff99000002b200 0001 00000000 0x0 0x0
0xffff99000002b280 0001 00000000 0x0 0x0
0xffff99000002b300 0001 00000000 0x0 0x0
0xffff99000002b380 0001 00000000 0x0 0x0
0xffff99000002b400 0001 00000000 0x0 0x0
0xffff99000002b480 0001 00000000 0x0 0x0
0xffff99000002b500 0001 00000000 0x0 0x0
0xffff99000002b580 0001 00000000 0x0 0x0
0xffff99000002b600 0001 00000000 0x0 0x0
0xffff99000002b680 0001 00000000 0x0 0x0
0xffff99000002b700 0001 00000000 0x0 0x0
0xffff99000002b780 0001 00000000 0x0 0x0
0xffff99000002b800 0001 00000000 0x0 0x0
0xffff99000002b880 0001 00000000 0x0 0x0
0xffff99000002b900 0001 00000000 0x0 0x0
0xffff99000002b980 0001 00000000 0x0 0x0
0xffff99000002ba00 0001 00000000 0x0 0x0
0xffff99000002ba80 0001 00000000 0x0 0x0
0xffff99000002bb00 0001 00000000 0x0

syzbot

unread,
Mar 30, 2023, 9:44:26 AM3/30/23
to rias...@netbsd.org, syzkaller-...@googlegroups.com
Hello,

syzbot has tested the proposed patch but the reproducer is still triggering an issue:
panic: sockaddr_checklen: ADDR bad len af=NUM socklen=NUM len=NUM [atalk: NUM.NUM]

login: [ 53.1536944] panic: sockaddr_checklen: 0xfffffebd42236c08 bad len af=16 socklen=172 len=16 [atalk: 0.0]

[ 53.1536944] cpu0: Begin traceback...
[ 53.1736823] vpanic() at netbsd:vpanic+0x2f2 sys/kern/subr_prf.c:291
[ 53.2336832] panic() at netbsd:panic+0x49 sys/kern/subr_prf.c:1049
[ 53.2936826] sockaddr_checklen() at netbsd:sockaddr_checklen+0x23d sys/kern/uipc_domain.c:305
[ 53.3436839] sockaddr_dup() at netbsd:sockaddr_dup+0x8b sys/kern/uipc_domain.c:402
[ 53.3936826] rt_setgate() at netbsd:rt_setgate+0x5c sys/net/route.c:1329
[ 53.4336815] rtrequest1() at netbsd:rtrequest1+0x64e sys/net/route.c:1238
[ 53.4836832] rtrequest() at netbsd:rtrequest+0x6b sys/net/route.c:1067
[ 53.5236851] aa_dosingleroute() at netbsd:aa_dosingleroute+0x150 sys/netatalk/at_control.c:822
[ 53.5736820] at_ifinit() at netbsd:at_ifinit+0xf42 aa_addsingleroute sys/netatalk/at_control.c:766 [inline]
[ 53.5736820] at_ifinit() at netbsd:at_ifinit+0xf42 sys/netatalk/at_control.c:639
[ 53.6136847] at_control() at netbsd:at_control+0x3e0 sys/netatalk/at_control.c:312
[ 53.6636817] ddp_ioctl_wrapper() at netbsd:ddp_ioctl_wrapper+0x34 ddp_ioctl sys/netatalk/ddp_usrreq.c:442 [inline]
[ 53.6636817] ddp_ioctl_wrapper() at netbsd:ddp_ioctl_wrapper+0x34 sys/netatalk/ddp_usrreq.c:620
[ 53.7136870] compat_ifioctl() at netbsd:compat_ifioctl+0x26a sys/compat/common/if_43.c:274
[ 53.7536834] doifioctl() at netbsd:doifioctl+0x20a0 sys/net/if.c:3585
[ 53.8036860] soo_ioctl() at netbsd:soo_ioctl+0x29c sys/kern/sys_socket.c:210
[ 53.8536853] sys_ioctl() at netbsd:sys_ioctl+0xd88 sys/kern/sys_generic.c:675
[ 53.8936835] sys___syscall() at netbsd:sys___syscall+0x1e4 sy_call sys/sys/syscallvar.h:65 [inline]
[ 53.8936835] sys___syscall() at netbsd:sys___syscall+0x1e4 sys/kern/sys_syscall.c:90
[ 53.9436857] syscall() at netbsd:syscall+0x2da sy_call sys/sys/syscallvar.h:65 [inline]
[ 53.9436857] syscall() at netbsd:syscall+0x2da sy_invoke sys/sys/syscallvar.h:94 [inline]
[ 53.9436857] syscall() at netbsd:syscall+0x2da sys/arch/x86/x86/syscall.c:138
[ 53.9642879] --- syscall (number 54 via SYS_syscall) ---
[ 53.9736796] netbsd:syscall+0x2da:
[ 53.9842865] cpu0: End traceback...
[ 53.9842865] fatal breakpoint trap in supervisor mode
[ 53.9939653] trap type 1 code 0 rip 0xffffffff80235375 cs 0x8 rflags 0x246 cr2 0xc000352000 ilevel 0x6 rsp 0xffffd78248314330
[ 54.0050643] curlwp 0xfffffebd3f33c600 pid 1358.1354 lowest kstack 0xffffd782483102c0
Stopped in pid 1358.1354 (syz-executor.4) at netbsd:breakpoint+0x5: leave
?
breakpoint() at netbsd:breakpoint+0x5
db_panic() at netbsd:db_panic+0xec sys/ddb/db_panic.c:69
vpanic() at netbsd:vpanic+0x2f2 sys/kern/subr_prf.c:291
panic() at netbsd:panic+0x49 sys/kern/subr_prf.c:1049
sockaddr_checklen() at netbsd:sockaddr_checklen+0x23d sys/kern/uipc_domain.c:305
sockaddr_dup() at netbsd:sockaddr_dup+0x8b sys/kern/uipc_domain.c:402
rt_setgate() at netbsd:rt_setgate+0x5c sys/net/route.c:1329
rtrequest1() at netbsd:rtrequest1+0x64e sys/net/route.c:1238
rtrequest() at netbsd:rtrequest+0x6b sys/net/route.c:1067
aa_dosingleroute() at netbsd:aa_dosingleroute+0x150 sys/netatalk/at_control.c:822
at_ifinit() at netbsd:at_ifinit+0xf42 aa_addsingleroute sys/netatalk/at_control.c:766 [inline]
at_ifinit() at netbsd:at_ifinit+0xf42 sys/netatalk/at_control.c:639
at_control() at netbsd:at_control+0x3e0 sys/netatalk/at_control.c:312
ddp_ioctl_wrapper() at netbsd:ddp_ioctl_wrapper+0x34 ddp_ioctl sys/netatalk/ddp_usrreq.c:442 [inline]
ddp_ioctl_wrapper() at netbsd:ddp_ioctl_wrapper+0x34 sys/netatalk/ddp_usrreq.c:620
compat_ifioctl() at netbsd:compat_ifioctl+0x26a sys/compat/common/if_43.c:274
doifioctl() at netbsd:doifioctl+0x20a0 sys/net/if.c:3585
soo_ioctl() at netbsd:soo_ioctl+0x29c sys/kern/sys_socket.c:210
sys_ioctl() at netbsd:sys_ioctl+0xd88 sys/kern/sys_generic.c:675
sys___syscall() at netbsd:sys___syscall+0x1e4 sy_call sys/sys/syscallvar.h:65 [inline]
sys___syscall() at netbsd:sys___syscall+0x1e4 sys/kern/sys_syscall.c:90
syscall() at netbsd:syscall+0x2da sy_call sys/sys/syscallvar.h:65 [inline]
syscall() at netbsd:syscall+0x2da sy_invoke sys/sys/syscallvar.h:94 [inline]
syscall() at netbsd:syscall+0x2da sys/arch/x86/x86/syscall.c:138
--- syscall (number 54 via SYS_syscall) ---
netbsd:syscall+0x2da:
Panic string: sockaddr_checklen: 0xfffffebd42236c08 bad len af=16 socklen=172 len=16 [atalk: 0.0]

PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
1361 1361 2 0 0 fffffebd3d9bb6c0 syz-execprog
325 325 2 0 0 fffffebd3ed588c0 syz-executor.1
1358 1203 2 0 0 fffffebd3f3f5ac0 syz-executor.4
1358 1023 2 0 0 fffffebd3d9bb280 syz-executor.4
1358 >1354 7 0 100 fffffebd3f33c600 syz-executor.4
1358 1358 2 1 10000000 fffffebd3daee2c0 syz-executor.4
1209 1209 2 1 140 fffffebd3eb11980 syz-executor.4
1357 1357 3 1 180 fffffebd3ea04580 syz-executor.2 pipe_rd
1382 >1382 7 1 140 fffffebd3ea04140 syz-executor.1
1204 336 3 1 0 fffffebd3eb11100 syz-execprog tstile
1204 1243 3 1 180 fffffebd3de65340 syz-execprog wait
1204 1247 3 1 180 fffffebd3eb11540 syz-execprog wait
1204 332 3 0 180 fffffebd3f4cfa00 syz-execprog wait
1204 331 3 0 180 fffffebd3ea049c0 syz-execprog parked
1204 1312 3 1 180 fffffebd3f4cf180 syz-execprog parked
1204 1259 3 0 180 fffffebd3d6adac0 syz-execprog parked
1204 1212 3 1 180 fffffebd3dcbf300 syz-execprog parked
1204 1323 3 1 180 fffffebd3f4cf5c0 syz-execprog parked
1204 1324 3 0 180 fffffebd3d66f200 syz-execprog nanoslp
1204 1204 2 0 0 fffffebd3f33ca40 syz-execprog
1210 1210 3 0 40180 fffffebd3f3f5240 sshd select
1223 1223 3 0 180 fffffebd3f33c1c0 getty nanoslp
1225 1225 3 0 180 fffffebd3f472200 getty nanoslp
1222 1222 3 1 180 fffffebd3f472640 getty nanoslp
1216 1216 3 1 1c0 fffffebd3d9bbb00 getty ttyraw
951 951 3 0 180 fffffebd3f3f5680 sshd select
1096 1096 3 0 180 fffffebd3f472a80 powerd kqueue
702 702 3 0 180 fffffebd3ed58040 syslogd kqueue
600 600 3 0 180 fffffebd3e9c1080 dhcpcd poll
558 558 3 0 180 fffffebd3ed58480 dhcpcd poll
746 746 3 1 180 fffffebd3daee700 dhcpcd poll
599 599 3 0 180 fffffebd3dcbf740 dhcpcd poll
292 292 3 0 180 fffffebd3de65780 dhcpcd poll
485 485 3 0 180 fffffebd3daeeb40 dhcpcd poll
291 291 3 1 180 fffffebd3dcbfb80 dhcpcd poll
1 1 3 0 180 fffffebd35463980 init wait
0 734 3 0 200 fffffebd3d66f640 physiod physiod
0 196 3 1 200 fffffebd3d6ad680 pooldrain pooldrain
0 195 3 0 200 fffffebd3d6ad240 ioflush syncer
0 194 3 0 200 fffffebd3d66fa80 pgdaemon pgdaemon
0 170 3 1 200 fffffebd3b5afa40 usb7 usbevt
0 169 3 1 200 fffffebd3b5af600 usb6 usbevt
0 168 3 1 200 fffffebd3b5af1c0 usb5 usbevt
0 167 3 1 200 fffffebd38552a00 usb4 usbevt
0 166 3 1 200 fffffebd385525c0 usb3 usbevt
0 165 3 1 200 fffffebd38552180 usb2 usbevt
0 31 3 1 200 fffffebd354bd9c0 usb1 usbevt
0 63 3 1 200 fffffebd354bd580 usb0 usbevt
0 126 3 1 200 fffffebd352f0740 usbtask-dr usbtsk
0 125 3 1 200 fffffebd352f0b80 usbtask-hc usbtsk
0 124 3 0 200 fffffebd338a1b00 swwreboot swwreboot
0 123 3 0 200 fffffebd354bd140 npfgc0 npfgcw
0 122 3 1 200 fffffebd35463540 rt_free rt_free
0 121 3 1 200 fffffebd35463100 unpgc unpgc
0 120 3 0 200 fffffebd3545e940 key_timehandler key_timehandler
0 119 3 1 200 fffffebd3545e500 icmp6_wqinput/1 icmp6_wqinput
0 118 3 0 200 fffffebd3545e0c0 icmp6_wqinput/0 icmp6_wqinput
0 117 3 0 200 fffffebd35441900 nd6_timer nd6_timer
0 116 3 1 200 fffffebd354414c0 carp6_wqinput/1 carp6_wqinput
0 115 3 0 200 fffffebd35441080 carp6_wqinput/0 carp6_wqinput
0 114 3 1 200 fffffebd354248c0 carp_wqinput/1 carp_wqinput
0 113 3 0 200 fffffebd35424480 carp_wqinput/0 carp_wqinput
0 112 3 1 200 fffffebd35424040 icmp_wqinput/1 icmp_wqinput
0 111 3 0 200 fffffebd353e7bc0 icmp_wqinput/0 icmp_wqinput
0 110 3 0 200 fffffebd353e7340 rt_timer rt_timer
0 109 3 0 200 fffffebd353e7780 vmem_rehash vmem_rehash
0 100 3 0 200 fffffebd352f0300 entbutler entropy
0 99 3 0 200 fffffebd34d50b40 viomb balloon
0 98 3 1 200 fffffebd34d50700 vioif0_txrx/1 vioif0_txrx
0 97 3 0 200 fffffebd34d502c0 vioif0_txrx/0 vioif0_txrx
0 30 3 1 200 fffffebd338a16c0 scsibus0 sccomp
0 29 3 0 200 fffffebd338a1280 pms0 pmsreset
0 28 3 1 200 fffffebd337acac0 xcall/1 xcall
0 27 1 1 200 fffffebd337ac680 softser/1
0 26 1 1 200 fffffebd337ac240 softclk/1
0 25 1 1 200 fffffebd33787a80 softbio/1
0 24 1 1 200 fffffebd33787640 softnet/1
0 23 1 1 201 fffffebd33787200 idle/1
0 22 3 0 200 fffffebe61b2da40 lnxsyswq lnxsyswq
0 21 3 0 200 fffffebe61b2d600 lnxubdwq lnxubdwq
0 20 3 0 200 fffffebe61b2d1c0 lnxpwrwq lnxpwrwq
0 19 3 1 200 fffffebe61b34a00 lnxlngwq lnxlngwq
0 18 3 1 200 fffffebe61b345c0 lnxhipwq lnxhipwq
0 17 3 1 200 fffffebe61b34180 lnxrcugc lnxrcugc
0 16 3 0 200 fffffebe61b539c0 sysmon smtaskq
0 15 3 1 200 fffffebe61b53580 pmfsuspend pmfsuspend
0 14 3 0 200 fffffebe61b53140 pmfevent pmfevent
0 13 3 1 200 fffffebe61b5e980 sopendfree sopendfr
0 12 3 0 200 fffffebe61b5e540 ifwdog ifwdog
0 11 3 0 200 fffffebe61b5e100 iflnkst iflnkst
0 10 3 1 200 fffffebe62b93940 nfssilly nfssilly
0 9 3 0 200 fffffebe62b93500 vdrain vdrain
0 8 3 1 200 fffffebe62b930c0 modunload mod_unld
0 7 3 0 200 fffffebe62bba900 xcall/0 xcall
0 6 1 0 200 fffffebe62bba4c0 softser/0
0 5 1 0 200 fffffebe62bba080 softclk/0
0 4 1 0 200 fffffebe62be98c0 softbio/0
0 3 1 0 200 fffffebe62be9480 softnet/0
0 2 1 0 201 fffffebe62be9040 idle/0
0 0 3 0 200 ffffffff86742d00 swapper uvm
[Locks tracked through LWPs]

****** LWP 325.325 (syz-executor.1) @ 0xfffffebd3ed588c0, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:pmap_ctor+0x6d sys/arch/x86/x86/pmap.c:2860)
lock address : fffffebd3547f380
type : sleep/adaptive
initialized : netbsd:pmap_ctor+0x6d
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffffebd3ed588c0 last held: 0xfffffebd3ed588c0
last locked* : netbsd:pmap_extract+0xdb
unlocked : netbsd:pmap_enter_ma+0xb24
owner field : 0xfffffebd3ed588c0 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 1358.1354 (syz-executor.4) @ 0xfffffebd3f33c600, l_stat=7

*** Locks held:

* Lock 0 (initialized at netbsd:if_initialize+0x36d sys/net/if.c:762)
lock address : fffffebe63069600
type : sleep/adaptive
initialized : netbsd:if_initialize+0x36d
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffffebd3f33c600 last held: 0xfffffebd3f33c600
last locked* : netbsd:doifioctl+0x5c7
unlocked : netbsd:doifioctl+0x7e6
owner field : 0xfffffebd3f33c600 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffffebd3f33c600 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 1204.336 (syz-execprog) @ 0xfffffebd3eb11100, l_stat=3

*** Locks held:

* Lock 0 (initialized at netbsd:uvmspace_alloc+0x339 uvm_map_setup sys/uvm/uvm_map.c:4788 [inline])
* Lock 0 (initialized at netbsd:uvmspace_alloc+0x339 uvmspace_init sys/uvm/uvm_map.c:4131 [inline])
* Lock 0 (initialized at netbsd:uvmspace_alloc+0x339 sys/uvm/uvm_map.c:4110)
lock address : fffffebd3de47b50
type : sleep/adaptive
initialized : netbsd:uvmspace_alloc+0x339
shared holds : 0 exclusive: 1
shares wanted: 1 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xfffffebd3eb11100 last held: 0xfffffebd3eb11100
last locked* : netbsd:vm_map_lock+0x146
unlocked : netbsd:uvm_fault_upper_enter+0x473
owner/count : 0x0000000000000020 flags : 0x0000000000000003
Turnstile:
=> 0 waiting readers:
=> 1 waiting writers: 0xfffffebd3eb11100

*** Locks wanted:

* Lock 0 (initialized at netbsd:amap_alloc1+0x30a sys/uvm/uvm_amap.c:167)
lock address : fffffebd400a5880
type : sleep/adaptive
initialized : netbsd:amap_alloc1+0x30a
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 1
relevant cpu : 1 last held: 1
relevant lwp : 0xfffffebd3eb11100 last held: 000000000000000000
last locked : netbsd:uvm_fault_internal+0x75d
unlocked* : netbsd:uvm_fault_upper_enter+0x454
owner/count : 000000000000000000 flags : 000000000000000000
Turnstile: no active turnstile for this lock.

****** LWP 1204.1204 (syz-execprog) @ 0xfffffebd3f33ca40, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:uvmspace_alloc+0x339 uvm_map_setup sys/uvm/uvm_map.c:4788 [inline])
* Lock 0 (initialized at netbsd:uvmspace_alloc+0x339 uvmspace_init sys/uvm/uvm_map.c:4131 [inline])
* Lock 0 (initialized at netbsd:uvmspace_alloc+0x339 sys/uvm/uvm_map.c:4110)
lock address : fffffebd3de47b50
type : sleep/adaptive
initialized : netbsd:uvmspace_alloc+0x339
shared holds : 0 exclusive: 1
shares wanted: 1 exclusive: 0
relevant cpu : 0 last held: 1
relevant lwp : 0xfffffebd3f33ca40 last held: 0xfffffebd3eb11100
last locked* : netbsd:vm_map_lock+0x146
unlocked : netbsd:uvm_fault_upper_enter+0x473
owner/count : 0x0000000000000020 flags : 0x0000000000000003
Turnstile:
=> 0 waiting readers:
=> 1 waiting writers: 0xfffffebd3eb11100

****** LWP 558.558 (dhcpcd) @ 0xfffffebd3ed58480, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffffebd3ed58480 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 746.746 (dhcpcd) @ 0xfffffebd3daee700, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xfffffebd3daee700 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 485.485 (dhcpcd) @ 0xfffffebd3daeeb40, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffffebd3daeeb40 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 291.291 (dhcpcd) @ 0xfffffebd3dcbfb80, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xfffffebd3dcbfb80 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.26 (softclk/1) @ 0xfffffebd337ac240, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xfffffebd337ac240 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xfffffebe61b5e100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffffebe61b5e100 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.0 (swapper) @ 0xffffffff86742d00, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffffff86742d00 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

******* Locks held on cpu0:

* Lock 0 (initialized at netbsd:main+0x106 sys/kern/init_main.c:303)
lock address : netbsd:kernel_lock
type : spin
initialized : netbsd:main+0x106
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffffebd3f33c600 last held: 0xfffffebd3f33c600
last locked* : netbsd:doifioctl+0x1fd0
unlocked : netbsd:kevent1+0x2132
curcpu holds : 2 wanted by: 000000000000000000

* Lock 1 (initialized at netbsd:kprintf_init+0x72 sys/kern/subr_prf.c:155)
lock address : netbsd:kprintf_mtx
type : spin
initialized : netbsd:kprintf_init+0x72
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffffebd3f33c600 last held: 0xfffffebd3f33c600
last locked* : netbsd:kprintf_lock+0x50
unlocked : netbsd:kprintf_unlock+0x70
owner field : 0x0000000000000800 wait/spin: 0/1

PAGE FLAG PQ UOBJECT UANON
0xffffd78000007180 0045 00000000 0x0 0x0
0xffffd78000007200 0045 00000000 0x0 0x0
0xffffd78000007280 0045 00000000 0x0 0x0
0xffffd78000007300 0045 00000000 0x0 0x0
0xffffd78000007380 0045 00000000 0x0 0x0
0xffffd78000007400 0045 00000000 0x0 0x0
0xffffd78000007480 0045 00000000 0x0 0x0
0xffffd78000007500 0045 00000000 0x0 0x0
0xffffd78000007580 0045 00000000 0x0 0x0
0xffffd78000007600 0045 00000000 0x0 0x0
0xffffd78000007680 0041 00000000 0x0 0x0
0xffffd78000007700 0041 00000000 0x0 0x0
0xffffd78000007780 0041 00000000 0x0 0x0
0xffffd78000007800 0041 00000000 0x0 0x0
0xffffd78000007880 0045 00000000 0x0 0x0
0xffffd78000007900 0045 00000000 0x0 0x0
0xffffd78000007980 0041 00000000 0x0 0x0
0xffffd78000007a00 0041 00000000 0x0 0x0
0xffffd78000007a80 0041 00000000 0x0 0x0
0xffffd78000007b00 0041 00000000 0x0 0x0
0xffffd78000007b80 0041 00000000 0x0 0x0
0xffffd78000007c00 0041 00000000 0x0 0x0
0xffffd78000007c80 0041 00000000 0x0 0x0
0xffffd78000007d00 0041 00000000 0x0 0x0
0xffffd78000007d80 0041 00000000 0x0 0x0
0xffffd78000007e00 0041 00000000 0x0 0x0
0xffffd78000007e80 0041 00000000 0x0 0x0
0xffffd78000007f00 0041 00000000 0x0 0x0
0xffffd78000007f80 0041 00000000 0x0 0x0
0xffffd78000008000 0041 00000000 0x0 0x0
0xffffd78000008080 0041 00000000 0x0 0x0
0xffffd78000008100 0041 00000000 0x0 0x0
0xffffd78000008180 0041 00000000 0x0 0x0
0xffffd78000008200 0041 00000000 0x0 0x0
0xffffd78000008280 0041 00000000 0x0 0x0
0xffffd78000008300 0041 00000000 0x0 0x0
0xffffd78000008380 0041 00000000 0x0 0x0
0xffffd78000008400 0041 00000000 0x0 0x0
0xffffd78000008480 0041 00000000 0x0 0x0
0xffffd78000008500 0041 00000000 0x0 0x0
0xffffd78000008580 0041 00000000 0x0 0x0
0xffffd78000008600 0045 00000000 0x0 0x0
0xffffd78000008680 0041 00000000 0x0 0x0
0xffffd78000008700 0041 00000000 0x0 0x0
0xffffd78000008780 0041 00000000 0x0 0x0
0xffffd78000008800 0045 00000000 0x0 0x0
0xffffd78000008880 0041 00000000 0x0 0x0
0xffffd78000008900 0041 00000000 0x0 0x0
0xffffd78000008980 0041 00000000 0x0 0x0
0xffffd78000008a00 0041 00000000 0x0 0x0
0xffffd78000008a80 0041 00000000 0x0 0x0
0xffffd78000008b00 0041 00000000 0x0 0x0
0xffffd78000008b80 0041 00000000 0x0 0x0
0xffffd78000008c00 0041 00000000 0x0 0x0
0xffffd78000008c80 0041 00000000 0x0 0x0
0xffffd78000008d00 0041 00000000 0x0 0x0
0xffffd78000008d80 0041 00000000 0x0 0x0
0xffffd78000008e00 0041 00000000 0x0 0x0
0xffffd78000008e80 0041 00000000 0x0 0x0
0xffffd78000008f00 0041 00000000 0x0 0x0
0xffffd78000008f80 0041 00000000 0x0 0x0
0xffffd78000009000 0041 00000000 0x0 0x0
0xffffd78000009080 0041 00000000 0x0 0x0
0xffffd78000009100 0041 00000000 0x0 0x0
0xffffd78000009180 0041 00000000 0x0 0x0
0xffffd78000009200 0041 00000000 0x0 0x0
0xffffd78000009280 0041 00000000 0x0 0x0
0xffffd78000009300 0041 00000000 0x0 0x0
0xffffd78000009380 0041 00000000 0x0 0x0
0xffffd78000009400 0041 00000000 0x0 0x0
0xffffd78000009480 0045 00000000 0x0 0x0
0xffffd78000009500 0041 00000000 0x0 0x0
0xffffd78000009580 0041 00000000 0x0 0x0
0xffffd78000009600 0041 00000000 0x0 0x0
0xffffd78000009680 0041 00000000 0x0 0x0
0xffffd78000009700 0041 00000000 0x0 0x0
0xffffd78000009780 0041 00000000 0x0 0x0
0xffffd78000009800 0041 00000000 0x0 0x0
0xffffd78000009880 0041 00000000 0x0 0x0
0xffffd78000009900 0041 00000000 0x0 0x0
0xffffd78000009980 0041 00000000 0x0 0x0
0xffffd78000009a00 0041 00000000 0x0 0x0
0xffffd78000009a80 0045 00000000 0x0 0x0
0xffffd78000009b00 0041 00000000 0x0 0x0
0xffffd78000009b80 0041 00000000 0x0 0x0
0xffffd78000009c00 0041 00000000 0x0 0x0
0xffffd78000009c80 0041 00000000 0x0 0x0
0xffffd78000009d00 0041 00000000 0x0 0x0
0xffffd78000009d80 0041 00000000 0x0 0x0
0xffffd78000009e00 0041 00000000 0x0 0x0
0xffffd78000009e80 0041 00000000 0x0 0x0
0xffffd78000009f00 0041 00000000 0x0 0x0
0xffffd78000009f80 0041 00000000 0x0 0x0
0xffffd7800000a000 0041 00000000 0x0 0x0
0xffffd7800000a080 0041 00000000 0x0 0x0
0xffffd7800000a100 0041 00000000 0x0 0x0
0xffffd7800000a180 0041 00000000 0x0 0x0
0xffffd7800000a200 0041 00000000 0x0 0x0
0xffffd7800000a280 0041 00000000 0x0 0x0
0xffffd7800000a300 0041 00000000 0x0 0x0
0xffffd7800000a380 0041 00000000 0x0 0x0
0xffffd7800000a400 0041 00000000 0x0 0x0
0xffffd7800000a480 0041 00000000 0x0 0x0
0xffffd7800000a500 0041 00000000 0x0 0x0
0xffffd7800000a580 0041 00000000 0x0 0x0
0xffffd7800000a600 0041 00000000 0x0 0x0
0xffffd7800000a680 0041 00000000 0x0 0x0
0xffffd7800000a700 0041 00000000 0x0 0x0
0xffffd7800000a780 0041 00000000 0x0 0x0
0xffffd7800000a800 0041 00000000 0x0 0x0
0xffffd7800000a880 0041 00000000 0x0 0x0
0xffffd7800000a900 0041 00000000 0x0 0x0
0xffffd7800000a980 0041 00000000 0x0 0x0
0xffffd7800000aa00 0041 00000000 0x0 0x0
0xffffd7800000aa80 0041 00000000 0x0 0x0
0xffffd7800000ab00 0041 00000000 0x0 0x0
0xffffd7800000ab80 0041 00000000 0x0 0x0
0xffffd7800000ac00 0041 00000000 0x0 0x0
0xffffd7800000ac80 0041 00000000 0x0 0x0
0xffffd7800000ad00 0041 00000000 0x0 0x0
0xffffd7800000ad80 0041 00000000 0x0 0x0
0xffffd7800000ae00 0041 00000000 0x0 0x0
0xffffd7800000ae80 0045 00000000 0x0 0x0
0xffffd7800000af00 0045 00000000 0x0 0x0
0xffffd7800000af80 0045 00000000 0x0 0x0
0xffffd7800000b000 0041 00000000 0x0 0x0
0xffffd7800000b080 0041 00000000 0x0 0x0
0xffffd7800000b100 0041 00000000 0x0 0x0
0xffffd7800000b180 0045 00000000 0x0 0x0
0xffffd7800000b200 0041 00000000 0x0 0x0
0xffffd7800000b280 0045 00000000 0x0 0x0
0xffffd7800000b300 0045 00000000 0x0 0x0
0xffffd7800000b380 0045 00000000 0x0 0x0
0xffffd7800000b400 0041 00000000 0x0 0x0
0xffffd7800000b480 0041 00000000 0x0 0x0
0xffffd7800000b500 0045 00000000 0x0 0x0
0xffffd7800000b580 0045 00000000 0x0 0x0
0xffffd7800000b600 0045 00000000 0x0 0x0
0xffffd7800000b680 0045 00000000 0x0 0x0
0xffffd7800000b700 0045 00000000 0x0 0x0
0xffffd7800000b780 0045 00000000 0x0 0x0
0xffffd7800000b800 0045 00000000 0x0 0x0
0xffffd7800000b880 0041 00000000 0x0 0x0
0xffffd7800000b900 0045 00000000 0x0 0x0
0xffffd7800000b980 0045 00000000 0x0 0x0
0xffffd7800000ba00 0045 00000000 0x0 0x0
0xffffd7800000ba80 0045 00000000 0x0 0x0
0xffffd7800000bb00 0045 00000000 0x0 0x0
0xffffd7800000bb80 0045 00000000 0x0 0x0
0xffffd7800000bc00 0045 00000000 0x0 0x0
0xffffd7800000bc80 0041 00000000 0x0 0x0
0xffffd7800000bd00 0045 00000000 0x0 0x0
0xffffd7800000bd80 0045 00000000 0x0 0x0
0xffffd7800000be00 0045 00000000 0x0 0x0
0xffffd7800000be80 0045 00000000 0x0 0x0
0xffffd7800000bf00 0045 00000000 0x0 0x0
0xffffd7800000bf80 0045 00000000 0x0 0x0
0xffffd7800000c000 0045 00000000 0x0 0x0
0xffffd7800000c080 0041 00000000 0x0 0x0
0xffffd7800000c100 0045 00000000 0x0 0x0
0xffffd7800000c180 0045 00000000 0x0 0x0
0xffffd7800000c200 0045 00000000 0x0 0x0
0xffffd7800000c280 0045 00000000 0x0 0x0
0xffffd7800000c300 0045 00000000 0x0 0x0
0xffffd7800000c380 0045 00000000 0x0 0x0
0xffffd7800000c400 0045 00000000 0x0 0x0
0xffffd7800000c480 0045 00000000 0x0 0x0
0xffffd7800000c500 0045 00000000 0x0 0x0
0xffffd7800000c580 0045 00000000 0x0 0x0
0xffffd7800000c600 0045 00000000 0x0 0x0
0xffffd7800000c680 0045 00000000 0x0 0x0
0xffffd7800000c700 0041 00000000 0x0 0x0
0xffffd7800000c780 0041 00000000 0x0 0x0
0xffffd7800000c800 0045 00000000 0x0 0x0
0xffffd7800000c880 0045 00000000 0x0 0x0
0xffffd7800000c900 0045 00000000 0x0 0x0
0xffffd7800000c980 0045 00000000 0x0 0x0
0xffffd7800000ca00 0045 00000000 0x0 0x0
0xffffd7800000ca80 0041 00000000 0x0 0x0
0xffffd7800000cb00 0041 00000000 0x0 0x0
0xffffd7800000cb80 0041 00000000 0x0 0x0
0xffffd7800000cc00 0045 00000000 0x0 0x0
0xffffd7800000cc80 0045 00000000 0x0 0x0
0xffffd7800000cd00 0045 00000000 0x0 0x0
0xffffd7800000cd80 0041 00000000 0x0 0x0
0xffffd7800000ce00 0045 00000000 0x0 0x0
0xffffd7800000ce80 0041 00000000 0x0 0x0
0xffffd7800000cf00 0041 00000000 0x0 0x0
0xffffd7800000cf80 0041 00000000 0x0 0x0
0xffffd7800000d000 0041 00000000 0x0 0x0
0xffffd7800000d080 0045 00000000 0x0 0x0
0xffffd7800000d100 0041 00000000 0x0 0x0
0xffffd7800000d180 0041 00000000 0x0 0x0
0xffffd7800000d200 0041 00000000 0x0 0x0
0xffffd7800000d280 0041 00000000 0x0 0x0
0xffffd7800000d300 0045 00000000 0x0 0x0
0xffffd7800000d380 0041 00000000 0x0 0x0
0xffffd7800000d400 0041 00000000 0x0 0x0
0xffffd7800000d480 0045 00000000 0x0 0x0
0xffffd7800000d500 0041 00000000 0x0 0x0
0xffffd7800000d580 0041 00000000 0x0 0x0
0xffffd7800000d600 0041 00000000 0x0 0x0
0xffffd7800000d680 0045 00000000 0x0 0x0
0xffffd7800000d700 0041 00000000 0x0 0x0
0xffffd7800000d780 0045 00000000 0x0 0x0
0xffffd7800000d800 0041 00000000 0x0 0x0
0xffffd7800000d880 0045 00000000 0x0 0x0
0xffffd7800000d900 0041 00000000 0x0 0x0
0xffffd7800000d980 0041 00000000 0x0 0x0
0xffffd7800000da00 0041 00000000 0x0 0x0
0xffffd7800000da80 0041 00000000 0x0 0x0
0xffffd7800000db00 0045 00000000 0x0 0x0
0xffffd7800000db80 0045 00000000 0x0 0x0
0xffffd7800000dc00 0041 00000000 0x0 0x0
0xffffd7800000dc80 0041 00000000 0x0 0x0
0xffffd7800000dd00 0041 00000000 0x0 0x0
0xffffd7800000dd80 0041 00000000 0x0 0x0
0xffffd7800000de00 0041 00000000 0x0 0x0
0xffffd7800000de80 0041 00000000 0x0 0x0
0xffffd7800000df00 0045 00000000 0x0 0x0
0xffffd7800000df80 0045 00000000 0x0 0x0
0xffffd7800000e000 0045 00000000 0x0 0x0
0xffffd7800000e080 0041 00000000 0x0 0x0
0xffffd7800000e100 0041 00000000 0x0 0x0
0xffffd7800000e180 0045 00000000 0x0 0x0
0xffffd7800000e200 0041 00000000 0x0 0x0
0xffffd7800000e280 0045 00000000 0x0 0x0
0xffffd7800000e300 0045 00000000 0x0 0x0
0xffffd7800000e380 0041 00000000 0x0 0x0
0xffffd7800000e400 0045 00000000 0x0 0x0
0xffffd7800000e480 0041 00000000 0x0 0x0
0xffffd7800000e500 0045 00000000 0x0 0x0
0xffffd7800000e580 0041 00000000 0x0 0x0
0xffffd7800000e600 0045 00000000 0x0 0x0
0xffffd7800000e680 0041 00000000 0x0 0x0
0xffffd7800000e700 0041 00000000 0x0 0x0
0xffffd7800000e780 0041 00000000 0x0 0x0
0xffffd7800000e800 0045 00000000 0x0 0x0
0xffffd7800000e880 0041 00000000 0x0 0x0
0xffffd7800000e900 0041 00000000 0x0 0x0
0xffffd7800000e980 0041 00000000 0x0 0x0
0xffffd7800000ea00 0041 00000000 0x0 0x0
0xffffd7800000ea80 0045 00000000 0x0 0x0
0xffffd7800000eb00 0041 00000000 0x0 0x0
0xffffd7800000eb80 0045 00000000 0x0 0x0
0xffffd7800000ec00 0041 00000000 0x0 0x0
0xffffd7800000ec80 0045 00000000 0x0 0x0
0xffffd7800000ed00 0041 00000000 0x0 0x0
0xffffd7800000ed80 0041 00000000 0x0 0x0
0xffffd7800000ee00 0041 00000000 0x0 0x0
0xffffd7800000ee80 0041 00000000 0x0 0x0
0xffffd7800000ef00 0041 00000000 0x0 0x0
0xffffd7800000ef80 0041 00000000 0x0 0x0
0xffffd7800000f000 0041 00000000 0x0 0x0
0xffffd7800000f080 0045 00000000 0x0 0x0
0xffffd7800000f100 0041 00000000 0x0 0x0
0xffffd7800000f180 0041 00000000 0x0 0x0
0xffffd7800000f200 0041 00000000 0x0 0x0
0xffffd7800000f280 0045 00000000 0x0 0x0
0xffffd7800000f300 0041 00000000 0x0 0x0
0xffffd7800000f380 0041 00000000 0x0 0x0
0xffffd7800000f400 0045 00000000 0x0 0x0
0xffffd7800000f480 0041 00000000 0x0 0x0
0xffffd7800000f500 0041 00000000 0x0 0x0
0xffffd7800000f580 0041 00000000 0x0 0x0
0xffffd7800000f600 0041 00000000 0x0 0x0
0xffffd7800000f680 0041 00000000 0x0 0x0
0xffffd7800000f700 0041 00000000 0x0 0x0
0xffffd7800000f780 0041 00000000 0x0 0x0
0xffffd7800000f800 0041 00000000 0x0 0x0
0xffffd7800000f880 0045 00000000 0x0 0x0
0xffffd7800000f900 0041 00000000 0x0 0x0
0xffffd7800000f980 0045 00000000 0x0 0x0
0xffffd7800000fa00 0041 00000000 0x0 0x0
0xffffd7800000fa80 0041 00000000 0x0 0x0
0xffffd7800000fb00 0041 00000000 0x0 0x0
0xffffd7800000fb80 0041 00000000 0x0 0x0
0xffffd7800000fc00 0045 00000000 0x0 0x0
0xffffd7800000fc80 0041 00000000 0x0 0x0
0xffffd7800000fd00 0045 00000000 0x0 0x0
0xffffd7800000fd80 0041 00000000 0x0 0x0
0xffffd7800000fe00 0041 00000000 0x0 0x0
0xffffd7800000fe80 0041 00000000 0x0 0x0
0xffffd7800000ff00 0041 00000000 0x0 0x0
0xffffd7800000ff80 0041 00000000 0x0 0x0
0xffffd78000010000 0041 00000000 0x0 0x0
0xffffd78000010080 0045 00000000 0x0 0x0
0xffffd78000010100 0041 00000000 0x0 0x0
0xffffd78000010180 0045 00000000 0x0 0x0
0xffffd78000010200 0045 00000000 0x0 0x0
0xffffd78000010280 0041 00000000 0x0 0x0
0xffffd78000010300 0041 00000000 0x0 0x0
0xffffd78000010380 0041 00000000 0x0 0x0
0xffffd78000010400 0041 00000000 0x0 0x0
0xffffd78000010480 0041 00000000 0x0 0x0
0xffffd78000010500 0045 00000000 0x0 0x0
0xffffd78000010580 0041 00000000 0x0 0x0
0xffffd78000010600 0041 00000000 0x0 0x0
0xffffd78000010680 0045 00000000 0x0 0x0
0xffffd78000010700 0041 00000000 0x0 0x0
0xffffd78000010780 0041 00000000 0x0 0x0
0xffffd78000010800 0041 00000000 0x0 0x0
0xffffd78000010880 0041 00000000 0x0 0x0
0xffffd78000010900 0041 00000000 0x0 0x0
0xffffd78000010980 0045 00000000 0x0 0x0
0xffffd78000010a00 0045 00000000 0x0 0x0
0xffffd78000010a80 0041 00000000 0x0 0x0
0xffffd78000010b00 0041 00000000 0x0 0x0
0xffffd78000010b80 0041 00000000 0x0 0x0
0xffffd78000010c00 0041 00000000 0x0 0x0
0xffffd78000010c80 0045 00000000 0x0 0x0
0xffffd78000010d00 0041 00000000 0x0 0x0
0xffffd78000010d80 0041 00000000 0x0 0x0
0xffffd78000010e00 0041 00000000 0x0 0x0
0xffffd78000010e80 0045 00000000 0x0 0x0
0xffffd78000010f00 0041 00000000 0x0 0x0
0xffffd78000010f80 0041 00000000 0x0 0x0
0xffffd78000011000 0041 00000000 0x0 0x0
0xffffd78000011080 0041 00000000 0x0 0x0
0xffffd78000011100 0041 00000000 0x0 0x0
0xffffd78000011180 0041 00000000 0x0 0x0
0xffffd78000011200 0045 00000000 0x0 0x0
0xffffd78000011280 0041 00000000 0x0 0x0
0xffffd78000011300 0041 00000000 0x0 0x0
0xffffd78000011380 0041 00000000 0x0 0x0
0xffffd78000011400 0041 00000000 0x0 0x0
0xffffd78000011480 0045 00000000 0x0 0x0
0xffffd78000011500 0045 00000000 0x0 0x0
0xffffd78000011580 0041 00000000 0x0 0x0
0xffffd78000011600 0041 00000000 0x0 0x0
0xffffd78000011680 0041 00000000 0x0 0x0
0xffffd78000011700 0045 00000000 0x0 0x0
0xffffd78000011780 0045 00000000 0x0 0x0
0xffffd78000011800 0041 00000000 0x0 0x0
0xffffd78000011880 0041 00000000 0x0 0x0
0xffffd78000011900 0041 00000000 0x0 0x0
0xffffd78000011980 0041 00000000 0x0 0x0
0xffffd78000011a00 0041 00000000 0x0 0x0
0xffffd78000011a80 0041 00000000 0x0 0x0
0xffffd78000011b00 0041 00000000 0x0 0x0
0xffffd78000011b80 0041 00000000 0x0 0x0
0xffffd78000011c00 0041 00000000 0x0 0x0
0xffffd78000011c80 0041 00000000 0x0 0x0
0xffffd78000011d00 0041 00000000 0x0 0x0
0xffffd78000011d80 0041 00000000 0x0 0x0
0xffffd78000011e00 0045 00000000 0x0 0x0
0xffffd78000011e80 0041 00000000 0x0 0x0
0xffffd78000011f00 0041 00000000 0x0 0x0
0xffffd78000011f80 0041 00000000 0x0 0x0
0xffffd78000012000 0041 00000000 0x0 0x0
0xffffd78000012080 0041 00000000 0x0 0x0
0xffffd78000012100 0045 00000000 0x0 0x0
0xffffd78000012180 0045 00000000 0x0 0x0
0xffffd78000012200 0041 00000000 0x0 0x0
0xffffd78000012280 0045 00000000 0x0 0x0
0xffffd78000012300 0041 00000000 0x0 0x0
0xffffd78000012380 0041 00000000 0x0 0x0
0xffffd78000012400 0041 00000000 0x0 0x0
0xffffd78000012480 0041 00000000 0x0 0x0
0xffffd78000012500 0041 00000000 0x0 0x0
0xffffd78000012580 0041 00000000 0x0 0x0
0xffffd78000012600 0041 00000000 0x0 0x0
0xffffd78000012680 0041 00000000 0x0 0x0
0xffffd78000012700 0041 00000000 0x0 0x0
0xffffd78000012780 0041 00000000 0x0 0x0
0xffffd78000012800 0041 00000000 0x0 0x0
0xffffd78000012880 0041 00000000 0x0 0x0
0xffffd78000012900 0041 00000000 0x0 0x0
0xffffd78000012980 0041 00000000 0x0 0x0
0xffffd78000012a00 0041 00000000 0x0 0x0
0xffffd78000012a80 0041 00000000 0x0 0x0
0xffffd78000012b00 0041 00000000 0x0 0x0
0xffffd78000012b80 0041 00000000 0x0 0x0
0xffffd78000012c00 0041 00000000 0x0 0x0
0xffffd78000012c80 0041 00000000 0x0 0x0
0xffffd78000012d00 0041 00000000 0x0 0x0
0xffffd78000012d80 0041 00000000 0x0 0x0
0xffffd78000012e00 0041 00000000 0x0 0x0
0xffffd78000012e80 0041 00000000 0x0 0x0
0xffffd78000012f00 0041 00000000 0x0 0x0
0xffffd78000012f80 0041 00000000 0x0 0x0
0xffffd78000013000 0041 00000000 0x0 0x0
0xffffd78000013080 0045 00000000 0x0 0x0
0xffffd78000013100 0001 00000000 0x0 0x0
0xffffd78000013180 0001 00000000 0x0 0x0
0xffffd78000013200 0001 00000000 0x0 0x0
0xffffd78000013280 0001 00000000 0x0 0x0
0xffffd78000013300 0001 00000000 0x0 0x0
0xffffd78000013380 0001 00000000 0x0 0x0
0xffffd78000013400 0001 00000000 0x0 0x0
0xffffd78000013480 0001 00000000 0x0 0x0
0xffffd78000013500 0001 00000000 0x0 0x0
0xffffd78000013580 0001 00000000 0x0 0x0
0xffffd78000013600 0001 00000000 0x0 0x0
0xffffd78000013680 0001 00000000 0x0 0x0
0xffffd78000013700 0001 00000000 0x0 0x0
0xffffd78000013780 0001 00000000 0x0 0x0
0xffffd78000013800 0001 00000000 0x0 0x0
0xffffd78000013880 0001 00000000 0x0 0x0
0xffffd78000013900 0001 00000000 0x0 0x0
0xffffd78000013980 0001 00000000 0x0 0x0
0xffffd78000013a00 0001 00000000 0x0 0x0
0xffffd78000013a80 0001 00000000 0x0 0x0
0xffffd78000013b00 0001 00000000 0x0 0x0
0xffffd78000013b80 0001 00000000 0x0 0x0
0xffffd78000013c00 0001 00000000 0x0 0x0
0xffffd78000013c80 0001 00000000 0x0 0x0
0xffffd78000013d00 0001 00000000 0x0 0x0
0xffffd78000013d80 0001 00000000 0x0 0x0
0xffffd78000013e00 0001 00000000 0x0 0x0
0xffffd78000013e80 0001 00000000 0x0 0x0
0xffffd78000013f00 0001 00000000 0x0 0x0
0xffffd78000013f80 0001 00000000 0x0 0x0
0xffffd78000014000 0001 00000000 0x0 0x0
0xffffd78000014080 0001 00000000 0x0 0x0
0xffffd78000014100 0001 00000000 0x0 0x0
0xffffd78000014180 0001 00000000 0x0 0x0
0xffffd78000014200 0001 00000000 0x0 0x0
0xffffd78000014280 0001 00000000 0x0 0x0
0xffffd78000014300 0001 00000000 0x0 0x0
0xffffd78000014380 0001 00000000 0x0 0x0
0xffffd78000014400 0001 00000000 0x0 0x0
0xffffd78000014480 0001 00000000 0x0 0x0
0xffffd78000014500 0001 00000000 0x0 0x0
0xffffd78000014580 0001 00000000 0x0 0x0
0xffffd78000014600 0001 00000000 0x0 0x0
0xffffd78000014680 0001 00000000 0x0 0x0
0xffffd78000014700 0001 00000000 0x0 0x0
0xffffd78000014780 0001 00000000 0x0 0x0
0xffffd78000014800 0001 00000000 0x0 0x0
0xffffd78000014880 0001 00000000 0x0 0x0
0xffffd78000014900 0001 00000000 0x0 0x0
0xffffd78000014980 0001 00000000 0x0 0x0
0xffffd78000014a00 0001 00000000 0x0 0x0
0xffffd78000014a80 0001 00000000 0x0 0x0
0xffffd78000014b00 0001 00000000 0x0 0x0
0xffffd78000014b80 0001 00000000 0x0 0x0
0xffffd78000014c00 0041 00000000 0x0 0x0
0xffffd78000014c80 0041 00000000 0x0 0x0
0xffffd78000014d00 0041 00000000 0x0 0x0
0xffffd78000014d80 0041 00000000 0x0 0x0
0xffffd78000014e00 0041 00000000 0x0 0x0
0xffffd78000014e80 0041 00000000 0x0 0x0
0xffffd78000014f00 0041 00000000 0x0 0x0
0xffffd78000014f80 0041 00000000 0x0 0x0
0xffffd78000015000 0041 00000000 0x0 0x0
0xffffd78000015080 0041 00000000 0x0 0x0
0xffffd78000015100 0041 00000000 0x0 0x0
0xffffd78000015180 0041 00000000 0x0 0x0
0xffffd78000015200 0041 00000000 0x0 0x0
0xffffd78000015280 0041 00000000 0x0 0x0
0xffffd78000015300 0041 00000000 0x0 0x0
0xffffd78000015380 0041 00000000 0x0 0x0
0xffffd78000015400 0041 00000000 0x0 0x0
0xffffd78000015480 0041 00000000 0x0 0x0
0xffffd78000015500 0041 00000000 0x0 0x0
0xffffd78000015580 0041 00000000 0x0 0x0
0xffffd78000015600 0041 00000000 0x0 0x0
0xffffd78000015680 0041 00000000 0x0 0x0
0xffffd78000015700 0041 00000000 0x0 0x0
0xffffd78000015780 0041 00000000 0x0 0x0
0xffffd78000015800 0041 00000000 0x0 0x0
0xffffd78000015880 0041 00000000 0x0 0x0
0xffffd78000015900 0041 00000000 0x0 0x0
0xffffd78000015980 0041 00000000 0x0 0x0
0xffffd78000015a00 0041 00000000 0x0 0x0
0xffffd78000015a80 0041 00000000 0x0 0x0
0xffffd78000015b00 0041 00000000 0x0 0x0
0xffffd78000015b80 0041 00000000 0x0 0x0
0xffffd78000015c00 0041 00000000 0x0 0x0
0xffffd78000015c80 0041 00000000 0x0 0x0
0xffffd78000015d00 0041 00000000 0x0 0x0
0xffffd78000015d80 0041 00000000 0x0 0x0
0xffffd78000015e00 0041 00000000 0x0 0x0
0xffffd78000015e80 0041 00000000 0x0 0x0
0xffffd78000015f00 0041 00000000 0x0 0x0
0xffffd78000015f80 0041 00000000 0x0 0x0
0xffffd78000016000 0041 00000000 0x0 0x0
0xffffd78000016080 0041 00000000 0x0 0x0
0xffffd78000016100 0001 00000000 0x0 0x0
0xffffd78000016180 0001 00000000 0x0 0x0
0xffffd78000016200 0001 00000000 0x0 0x0
0xffffd78000016280 0001 00000000 0x0 0x0
0xffffd78000016300 0001 00000000 0x0 0x0
0xffffd78000016380 0001 00000000 0x0 0x0
0xffffd78000016400 0001 00000000 0x0 0x0
0xffffd78000016480 0001 00000000 0x0 0x0
0xffffd78000016500 0001 00000000 0x0 0x0
0xffffd78000016580 0001 00000000 0x0 0x0
0xffffd78000016600 0001 00000000 0x0 0x0
0xffffd78000016680 0001 00000000 0x0 0x0
0xffffd78000016700 0001 00000000 0x0 0x0
0xffffd78000016780 0001 00000000 0x0 0x0
0xffffd78000016800 0001 00000000 0x0 0x0
0xffffd78000016880 0001 00000000 0x0 0x0
0xffffd78000016900 0001 00000000 0x0 0x0
0xffffd78000016980 0001 00000000 0x0 0x0
0xffffd78000016a00 0001 00000000 0x0 0x0
0xffffd78000016a80 0001 00000000 0x0 0x0
0xffffd78000016b00 0001 00000000 0x0 0x0
0xffffd78000016b80 0001 00000000 0x0 0x0
0xffffd78000016c00 0001 00000000 0x0 0x0
0xffffd78000016c80 0001 00000000 0x0 0x0
0xffffd78000016d00 0001 00000000 0x0 0x0
0xffffd78000016d80 0001 00000000 0x0 0x0
0xffffd78000016e00 0001 00000000 0x0 0x0
0xffffd78000016e80 0001 00000000 0x0 0x0
0xffffd78000016f00 0001 00000000 0x0 0x0
0xffffd78000016f80 0001 00000000 0x0 0x0
0xffffd78000017000 0001 00000000 0x0 0x0
0xffffd78000017080 0001 00000000 0x0 0x0
0xffffd78000017100 0001 00000000 0x0 0x0
0xffffd78000017180 0001 00000000 0x0 0x0
0xffffd78000017200 0001 00000000 0x0 0x0
0xffffd78000017280 0001 00000000 0x0 0x0
0xffffd78000017300 0001 00000000 0x0 0x0
0xffffd78000017380 0001 00000000 0x0 0x0
0xffffd78000017400 0001 00000000 0x0 0x0
0xffffd78000017480 0001 00000000 0x0 0x0
0xffffd78000017500 0001 00000000 0x0 0x0
0xffffd78000017580 0001 00000000 0x0 0x0
0xffffd78000017600 0001 00000000 0x0 0x0
0xffffd78000017680 0001 00000000 0x0 0x0
0xffffd78000017700 0001 00000000 0x0 0x0
0xffffd78000017780 0001 00000000 0x0 0x0
0xffffd78000017800 0001 00000000 0x0 0x0
0xffffd78000017880 0001 00000000 0x0 0x0
0xffffd78000017900 0001 00000000 0x0 0x0
0xffffd78000017980 0001 00000000 0x0 0x0
0xffffd78000017a00 0001 00000000 0x0 0x0
0xffffd78000017a80 0001 00000000 0x0 0x0
0xffffd78000017b00 0001 00000000 0x0 0x0
0xffffd78000017b80 0001 00000000 0x0 0x0
0xffffd78000017c00 0041 00000000 0x0 0x0
0xffffd78000017c80 0041 00000000 0x0 0x0
0xffffd78000017d00 0041 00000000 0x0 0x0
0xffffd78000017d80 0041 00000000 0x0 0x0
0xffffd78000017e00 0041 00000000 0x0 0x0
0xffffd78000017e80 0041 00000000 0x0 0x0
0xffffd78000017f00 0041 00000000 0x0 0x0
0xffffd78000017f80 0041 00000000 0x0 0x0
0xffffd78000018000 0041 00000000 0x0 0x0
0xffffd78000018080 0041 00000000 0x0 0x0
0xffffd78000018100 0041 00000000 0x0 0x0
0xffffd78000018180 0041 00000000 0x0 0x0
0xffffd78000018200 0041 00000000 0x0 0x0
0xffffd78000018280 0041 00000000 0x0 0x0
0xffffd78000018300 0041 00000000 0x0 0x0
0xffffd78000018380 0041 00000000 0x0 0x0
0xffffd78000018400 0041 00000000 0x0 0x0
0xffffd78000018480 0041 00000000 0x0 0x0
0xffffd78000018500 0041 00000000 0x0 0x0
0xffffd78000018580 0041 00000000 0x0 0x0
0xffffd78000018600 0041 00000000 0x0 0x0
0xffffd78000018680 0041 00000000 0x0 0x0
0xffffd78000018700 0041 00000000 0x0 0x0
0xffffd78000018780 0041 00000000 0x0 0x0
0xffffd78000018800 0041 00000000 0x0 0x0
0xffffd78000018880 0041 00000000 0x0 0x0
0xffffd78000018900 0041 00000000 0x0 0x0
0xffffd78000018980 0041 00000000 0x0 0x0
0xffffd78000018a00 0041 00000000 0x0 0x0
0xffffd78000018a80 0041 00000000 0x0 0x0
0xffffd78000018b00 0041 00000000 0x0 0x0
0xffffd78000018b80 0041 00000000 0x0 0x0
0xffffd78000018c00 0041 00000000 0x0 0x0
0xffffd78000018c80 0041 00000000 0x0 0x0
0xffffd78000018d00 0041 00000000 0x0 0x0
0xffffd78000018d80 0041 00000000 0x0 0x0
0xffffd78000018e00 0041 00000000 0x0 0x0
0xffffd78000018e80 0041 00000000 0x0 0x0
0xffffd78000018f00 0041 00000000 0x0 0x0
0xffffd78000018f80 0041 00000000 0x0 0x0
0xffffd78000019000 0041 00000000 0x0 0x0
0xffffd78000019080 0041 00000000 0x0 0x0
0xffffd78000019100 0001 00000000 0x0 0x0
0xffffd78000019180 0001 00000000 0x0 0x0
0xffffd78000019200 0001 00000000 0x0 0x0
0xffffd78000019280 0001 00000000 0x0 0x0
0xffffd78000019300 0001 00000000 0x0 0x0
0xffffd78000019380 0001 00000000 0x0 0x0
0xffffd78000019400 0001 00000000 0x0 0x0
0xffffd78000019480 0001 00000000 0x0 0x0
0xffffd78000019500 0001 00000000 0x0 0x0
0xffffd78000019580 0001 00000000 0x0 0x0
0xffffd78000019600 0001 00000000 0x0 0x0
0xffffd78000019680 0001 00000000 0x0 0x0
0xffffd78000019700 0001 00000000 0x0 0x0
0xffffd78000019780 0001 00000000 0x0 0x0
0xffffd78000019800 0001 00000000 0x0 0x0
0xffffd78000019880 0001 00000000 0x0 0x0
0xffffd78000019900 0001 00000000 0x0 0x0
0xffffd78000019980 0001 00000000 0x0 0x0
0xffffd78000019a00 0001 00000000 0x0 0x0
0xffffd78000019a80 0001 00000000 0x0 0x0
0xffffd78000019b00 0001 00000000 0x0 0x0
0xffffd78000019b80 0001 00000000 0x0 0x0
0xffffd78000019c00 0001 00000000 0x0 0x0
0xffffd78000019c80 0001 00000000 0x0 0x0
0xffffd78000019d00 0001 00000000 0x0 0x0
0xffffd78000019d80 0001 00000000 0x0 0x0
0xffffd78000019e00 0001 00000000 0x0 0x0
0xffffd78000019e80 0001 00000000 0x0 0x0
0xffffd78000019f00 0001 00000000 0x0 0x0
0xffffd78000019f80 0001 00000000 0x0 0x0
0xffffd7800001a000 0001 00000000 0x0 0x0
0xffffd7800001a080 0001 00000000 0x0 0x0
0xffffd7800001a100 0

Tested on:

commit: 6b3eeaf3 systat(1): try to give this page a quick face..
git tree: https://github.com/NetBSD/src trunk
console output: https://syzkaller.appspot.com/x/log.txt?x=11f2647dc80000
kernel config: https://syzkaller.appspot.com/x/.config?x=1420f906d33d9f1f
dashboard link: https://syzkaller.appspot.com/bug?extid=fb4e112846e31bc4c09d
compiler: g++ (Debian 10.2.1-6) 10.2.1 20210110
patch: https://syzkaller.appspot.com/x/patch.diff?x=11fd5a2ec80000

syzbot

unread,
Mar 30, 2023, 10:20:22 AM3/30/23
to rias...@netbsd.org, syzkaller-...@googlegroups.com
Hello,

syzbot has tested the proposed patch and the reproducer did not trigger any issue:

Reported-and-tested-by: syzbot+fb4e11...@syzkaller.appspotmail.com

Tested on:

commit: 6b3eeaf3 systat(1): try to give this page a quick face..
git tree: https://github.com/NetBSD/src trunk
console output: https://syzkaller.appspot.com/x/log.txt?x=1019cca5c80000
kernel config: https://syzkaller.appspot.com/x/.config?x=1420f906d33d9f1f
dashboard link: https://syzkaller.appspot.com/bug?extid=fb4e112846e31bc4c09d
compiler: g++ (Debian 10.2.1-6) 10.2.1 20210110
patch: https://syzkaller.appspot.com/x/patch.diff?x=1111af15c80000

Note: testing is done by a robot and is best-effort only.
Reply all
Reply to author
Forward
0 new messages