fatal error: fault

4 views
Skip to first unread message

syzbot

unread,
Feb 22, 2023, 9:09:05 AM2/22/23
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: d04379de99fe s/jumo/jumbo/ in comments.
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=123d2544c80000
kernel config: https://syzkaller.appspot.com/x/.config?x=1420f906d33d9f1f
dashboard link: https://syzkaller.appspot.com/bug?extid=dbdc113ca171f3129ef7
compiler: g++ (Debian 10.2.1-6) 10.2.1 20210110

Unfortunately, I don't have any reproducer for this issue yet.

Downloadable assets:
disk image: https://storage.googleapis.com/syzbot-assets/8b979afc34dc/disk-d04379de.raw.xz
netbsd.gdb: https://storage.googleapis.com/syzbot-assets/df752ccdb1c2/netbsd-d04379de.gdb.xz

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+dbdc11...@syzkaller.appspotmail.com

fatal error: fault
00:00:19 executing program 5:
mkdir(&(0x7f0000000000)='./file0\x00', 0x0)
__mount50(&(0x7f00000000c0)='fdesc\x00', &(0x7f0000000100)='./file0/../file0\x00', 0x0, 0x0, 0x0)
unmount(&(0x7f0000000080)='./file0/../file0\x00', 0x0)

[ 1128.9065210] WARNING: module error: vfs load failed for `compat_sysv_14', error 2
[signal SIGSEGV: segmentation violation code=0x1 addr=0x7f7fcf6b2000 pc=0x553237]

goroutine 14 [running]:
runtime.throw({0xb05967, 0x5})
/usr/local/go/src/runtime/panic.go:1198 +0x74 fp=0xc000818680 sp=0xc000818650 pc=0x438b34
runtime.sigpanic()
/usr/local/go/src/runtime/signal_unix.go:742 +0x3cf fp=0xc0008186e0 sp=0xc000818680 pc=0x450def
encoding/binary.littleEndian.PutUint64(...)
/usr/local/go/src/encoding/binary/binary.go:91
github.com/google/syzkaller/prog.(*execContext).write(0xc0008199b8, 0x1)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/encodingexec.go:254 +0x37 fp=0xc000818700 sp=0xc0008186e0 pc=0x553237
github.com/google/syzkaller/prog.(*execContext).writeConstArg(0xc0008199b8, 0x1, 0x2, 0x0, 0x0, 0x0, 0x0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/encodingexec.go:314 +0x85 fp=0xc000818720 sp=0xc000818700 pc=0x553f25
github.com/google/syzkaller/prog.(*execContext).writeArg(0xc0008199b8, {0xbf0138, 0xc000aa9a40})
/syzkaller/gopath/src/github.com/google/syzkaller/prog/encodingexec.go:263 +0x4ca fp=0xc000818820 sp=0xc000818720 pc=0x55378a
github.com/google/syzkaller/prog.(*execContext).writeCopyin.func1({0xbf0138, 0xc000aa9a40}, 0xc000e8e540)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/encodingexec.go:172 +0x396 fp=0xc0008188a0 sp=0xc000818820 pc=0x5526f6
github.com/google/syzkaller/prog.foreachArgImpl({0xbf0138, 0xc000aa9a40}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:134 +0x122 fp=0xc000818a30 sp=0xc0008188a0 pc=0x53be62
github.com/google/syzkaller/prog.foreachArgImpl({0xbf01b8, 0xc0004de060}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:151 +0x86f fp=0xc000818bc0 sp=0xc000818a30 pc=0x53c5af
github.com/google/syzkaller/prog.foreachArgImpl({0xbf01b8, 0xc0004de080}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:151 +0x86f fp=0xc000818d50 sp=0xc000818bc0 pc=0x53c5af
github.com/google/syzkaller/prog.foreachArgImpl({0xbf01b8, 0xc0004de0a0}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:151 +0x86f fp=0xc000818ee0 sp=0xc000818d50 pc=0x53c5af
github.com/google/syzkaller/prog.foreachArgImpl({0xbf01b8, 0xc0004de0c0}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:151 +0x86f fp=0xc000819070 sp=0xc000818ee0 pc=0x53c5af
github.com/google/syzkaller/prog.foreachArgImpl({0xbf01b8, 0xc0004de0e0}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:151 +0x86f fp=0xc000819200 sp=0xc000819070 pc=0x53c5af
github.com/google/syzkaller/prog.foreachArgImpl({0xbf01b8, 0xc0004de100}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:151 +0x86f fp=0xc000819390 sp=0xc000819200 pc=0x53c5af
github.com/google/syzkaller/prog.foreachArgImpl({0xbf01b8, 0xc0004de120}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:151 +0x86f fp=0xc000819520 sp=0xc000819390 pc=0x53c5af
github.com/google/syzkaller/prog.foreachArgImpl({0xbf01b8, 0xc0004de140}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:151 +0x86f fp=0xc0008196b0 sp=0xc000819520 pc=0x53c5af
github.com/google/syzkaller/prog.foreachArgImpl({0xbf01f8, 0xc000aa67b0}, 0xc000e8e540, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:168 +0x38d fp=0xc000819840 sp=0xc0008196b0 pc=0x53c0cd
github.com/google/syzkaller/prog.ForeachArg(0xc0009f9590, 0xc0008198a0)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/analysis.go:127 +0x12a fp=0xc000819890 sp=0xc000819840 pc=0x53bd0a
github.com/google/syzkaller/prog.(*execContext).writeCopyin(0xc0008199b8, 0xc0009f9590)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/encodingexec.go:153 +0x55 fp=0xc0008198c0 sp=0xc000819890 pc=0x552335
github.com/google/syzkaller/prog.(*execContext).serializeCall(0xc0008199b8, 0xc0009f9590)
/syzkaller/gopath/src/github.com/google/syzkaller/prog/encodingexec.go:88 +0x4d fp=0xc000819950 sp=0xc0008198c0 pc=0x551d8d
github.com/google/syzkaller/prog.(*Prog).SerializeForExec(0xc000e5b940, {0x7f7fcf6ae000, 0x400000, 0x400000})
/syzkaller/gopath/src/github.com/google/syzkaller/prog/encodingexec.go:76 +0x1b8 fp=0xc000819b60 sp=0xc000819950 pc=0x551c58
github.com/google/syzkaller/pkg/ipc.(*Env).Exec(0xc0004845a0, 0xc0003d2240, 0xc000e5b940)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:258 +0x65 fp=0xc000819c48 sp=0xc000819b60 pc=0x9ae5a5
main.(*Proc).executeRaw(0xc00051cbc0, 0xc0003d2240, 0xc000e5b940, 0x1)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:328 +0x1e5 fp=0xc000819d68 sp=0xc000819c48 pc=0x9bec65
main.(*Proc).execute(0xc00051cbc0, 0xc0003d2240, 0xc000e5b940, 0x0, 0x1)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:255 +0x6a fp=0xc000819e98 sp=0xc000819d68 pc=0x9be32a
main.(*Proc).executeAndCollide(0xc00051cbc0, 0xc0003d2240, 0xc000e5b940, 0x0, 0x1)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:284 +0x57 fp=0xc000819ee0 sp=0xc000819e98 pc=0x9be877
main.(*Proc).loop(0xc00051cbc0)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:97 +0x51e fp=0xc000819fd8 sp=0xc000819ee0 pc=0x9bcc9e
runtime.goexit()
/usr/local/go/src/runtime/asm_amd64.s:1581 +0x1 fp=0xc000819fe0 sp=0xc000819fd8 pc=0x46d4c1
created by main.main
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:310 +0x1d86

goroutine 1 [select]:
main.(*Fuzzer).pollLoop(0xc000162000)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:385 +0x11d
main.main()
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:313 +0x1f4b

goroutine 6 [select]:
go.opencensus.io/stats/view.(*worker).start(0xc0000d9080)
/syzkaller/gopath/src/github.com/google/syzkaller/vendor/go.opencensus.io/stats/view/worker.go:276 +0xec
created by go.opencensus.io/stats/view.init.0
/syzkaller/gopath/src/github.com/google/syzkaller/vendor/go.opencensus.io/stats/view/worker.go:34 +0x76

goroutine 10 [chan receive, 18 minutes]:
github.com/google/syzkaller/pkg/osutil.HandleInterrupts.func1(0xc00007e0c0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/osutil/osutil_unix.go:79 +0xbe
created by github.com/google/syzkaller/pkg/osutil.HandleInterrupts
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/osutil/osutil_unix.go:76 +0x3f

goroutine 11 [chan receive, 18 minutes]:
main.main.func1(0xc00007e0c0)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:182 +0x34
created by main.main
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:180 +0x6a5

goroutine 20 [syscall, 18 minutes]:
os/signal.signal_recv()
/usr/local/go/src/runtime/sigqueue.go:169 +0xab
os/signal.loop()
/usr/local/go/src/os/signal/signal_unix.go:24 +0x25
created by os/signal.Notify.func1.1
/usr/local/go/src/os/signal/signal.go:151 +0x3a

goroutine 21 [IO wait]:
internal/poll.runtime_pollWait(0x7f7fd0f9f1d8, 0x72)
/usr/local/go/src/runtime/netpoll.go:229 +0xa6
internal/poll.(*pollDesc).wait(0xc0000d8998, 0x72, 0x0)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:84 +0x45
internal/poll.(*pollDesc).waitRead(...)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:89
internal/poll.(*FD).Read(0xc0000d8980, {0xc000472000, 0x1000, 0x1000})
[ 1129.0271105] WARNING: module error: vfs load failed for `compat_sysv_14', error 2
[ 1129.0974528] WARNING: module error: vfs load failed for `compat_sysv_14', error 2
/usr/local/go/src/internal/poll/fd_unix.go:167 +0x255
net.(*netFD).Read(0xc0000d8980, {0xc000472000, 0x1000, 0x1000})
/usr/local/go/src/net/fd_posix.go:56 +0x4f
net.(*conn).Read(0xc00000f700, {0xc000472000, 0x1000, 0x1000})
/usr/local/go/src/net/net.go:183 +0x65
bufio.(*Reader).fill(0xc0004868a0)
/usr/local/go/src/bufio/bufio.go:101 +0x125
bufio.(*Reader).ReadByte(0xc0004868a0)
/usr/local/go/src/bufio/bufio.go:253 +0x39
compress/flate.(*decompressor).moreBits(0xc0000f8000)
/usr/local/go/src/compress/flate/inflate.go:696 +0x37
compress/flate.(*decompressor).nextBlock(0xc0000f8000)
/usr/local/go/src/compress/flate/inflate.go:303 +0x36
compress/flate.(*decompressor).Read(0xc0000f8000, {0xc000110000, 0x1000, 0x1000})
/usr/local/go/src/compress/flate/inflate.go:347 +0x79
github.com/google/syzkaller/pkg/rpctype.(*flateConn).Read(0xc000482d50, {0xc000110000, 0x1000, 0x1000})
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/rpctype/rpc.go:136 +0x51
bufio.(*Reader).Read(0xc000486900, {0xc00048e1b0, 0x1, 0x9})
/usr/local/go/src/bufio/bufio.go:227 +0x225
io.ReadAtLeast({0xbdba80, 0xc000486900}, {0xc00048e1b0, 0x1, 0x9}, 0x1)
/usr/local/go/src/io/io.go:328 +0xba
io.ReadFull(...)
/usr/local/go/src/io/io.go:347
encoding/gob.decodeUintReader({0xbdba80, 0xc000486900}, {0xc00048e1b0, 0x9, 0x9})
/usr/local/go/src/encoding/gob/decode.go:120 +0x6f
encoding/gob.(*Decoder).recvMessage(0xc0004a4180)
/usr/local/go/src/encoding/gob/decoder.go:81 +0x57
encoding/gob.(*Decoder).decodeTypeSequence(0xc0004a4180, 0x0)
/usr/local/go/src/encoding/gob/decoder.go:143 +0x45
encoding/gob.(*Decoder).DecodeValue(0xc0004a4180, {0xa03200, 0xc0004831a0, 0x16})
/usr/local/go/src/encoding/gob/decoder.go:214 +0x17c
encoding/gob.(*Decoder).Decode(0xc0004a4180, {0xa03200, 0xc0004831a0})
/usr/local/go/src/encoding/gob/decoder.go:191 +0x187
net/rpc.(*gobClientCodec).ReadResponseHeader(0xc000483140, 0xc0004831a0)
/usr/local/go/src/net/rpc/client.go:228 +0x45
net/rpc.(*Client).input(0xc0004869c0)
/usr/local/go/src/net/rpc/client.go:109 +0xd2
created by net/rpc.NewClientWithCodec
/usr/local/go/src/net/rpc/client.go:206 +0xa7

goroutine 13 [runnable]:
sync.runtime_notifyListWait(0xc000490e90, 0x792)
/usr/local/go/src/runtime/sema.go:513 +0x159
sync.(*Cond).Wait(0xc000490e80)
/usr/local/go/src/sync/cond.go:56 +0x9b
github.com/google/syzkaller/pkg/ipc.(*Gate).Enter(0xc000490ec0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/gate.go:34 +0x4e
main.(*Proc).executeRaw(0xc00051cb80, 0xc00048ea40, 0xc00089ba80, 0x8)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:322 +0x89
main.(*Proc).executeAndCollide(0xc00051cb80, 0xc0003d2240, 0xc000e8c680, 0x0, 0x1)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:292 +0xaf
main.(*Proc).loop(0xc00051cb80)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:97 +0x51e
created by main.main
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:310 +0x1d86

goroutine 15 [runnable]:
sync.runtime_notifyListWait(0xc000490e90, 0x793)
/usr/local/go/src/runtime/sema.go:513 +0x159
sync.(*Cond).Wait(0xc000490e80)
/usr/local/go/src/sync/cond.go:56 +0x9b
github.com/google/syzkaller/pkg/ipc.(*Gate).Enter(0xc000490ec0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/gate.go:34 +0x4e
main.(*Proc).executeRaw(0xc00051ce00, 0xc00048eb28, 0xc000de9e80, 0x3)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:322 +0x89
main.(*Proc).triageInput(0xc00051ce00, 0xc000f00ba0)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:127 +0x496
main.(*Proc).loop(0xc00051ce00)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:74 +0x13e
created by main.main
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:310 +0x1d86

goroutine 16 [runnable]:
sync.runtime_notifyListWait(0xc000490e90, 0x790)
/usr/local/go/src/runtime/sema.go:513 +0x159
sync.(*Cond).Wait(0xc000490e80)
/usr/local/go/src/sync/cond.go:56 +0x9b
github.com/google/syzkaller/pkg/ipc.(*Gate).Enter(0xc000490ec0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/gate.go:34 +0x4e
main.(*Proc).executeRaw(0xc00051ce40, 0xc00048f480, 0xc000de9700, 0x8)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:322 +0x89
main.(*Proc).executeAndCollide(0xc00051ce40, 0xc0003d2240, 0xc000bff740, 0x0, 0x1)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:292 +0xaf
main.(*Proc).loop(0xc00051ce40)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:97 +0x51e
created by main.main
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:310 +0x1d86

goroutine 7576 [IO wait]:
internal/poll.runtime_pollWait(0x7f7fd0f9e9b0, 0x72)
/usr/local/go/src/runtime/netpoll.go:229 +0xa6
internal/poll.(*pollDesc).wait(0xc000f01758, 0x72, 0x1)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:84 +0x45
internal/poll.(*pollDesc).waitRead(...)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:89
internal/poll.(*FD).Read(0xc000f01740, {0xc0009e7720, 0xe8e0, 0xe8e0})
/usr/local/go/src/internal/poll/fd_unix.go:167 +0x255
os.(*File).read(...)
/usr/local/go/src/os/file_posix.go:32
os.(*File).Read(0xc00000f7f8, {0xc0009e7720, 0xe8e0, 0xe8e0})
/usr/local/go/src/os/file.go:119 +0x85
github.com/google/syzkaller/pkg/ipc.makeCommand.func2(0xc00000f7f8, 0xc0002a4150)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:630 +0xb8
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:624 +0xac8

goroutine 33 [runnable]:
internal/poll.runtime_pollWait(0x7f7fd0f02308, 0x72)
/usr/local/go/src/runtime/netpoll.go:229 +0xa6
internal/poll.(*pollDesc).wait(0xc000e36498, 0x72, 0x1)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:84 +0x45
internal/poll.(*pollDesc).waitRead(...)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:89
internal/poll.(*FD).Read(0xc000e36480, {0xc0007de0e0, 0xc, 0xc})
/usr/local/go/src/internal/poll/fd_unix.go:167 +0x255
os.(*File).read(...)
/usr/local/go/src/os/file_posix.go:32
os.(*File).Read(0xc000492890, {0xc0007de0e0, 0xc, 0xc})
/usr/local/go/src/os/file.go:119 +0x85
io.ReadAtLeast({0xbde2c0, 0xc000492890}, {0xc0007de0e0, 0xc, 0xc}, 0xc)
/usr/local/go/src/io/io.go:328 +0xba
io.ReadFull(...)
/usr/local/go/src/io/io.go:347
github.com/google/syzkaller/pkg/ipc.(*command).exec(0xc0002a42a0, 0xc00048f810, {0x0, 0x0, 0x0})
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:787 +0x6b2
github.com/google/syzkaller/pkg/ipc.(*Env).Exec(0xc000484750, 0xc00048f810, 0xc000f0a700)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:287 +0x325
main.(*Proc).executeRaw(0xc00051ce80, 0xc00048f810, 0xc000f0a700, 0x8)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:328 +0x1e5
main.(*Proc).executeAndCollide(0xc00051ce80, 0xc0003d2240, 0xc000de8640, 0x0, 0x1)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:292 +0xaf
main.(*Proc).loop(0xc00051ce80)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:97 +0x51e
created by main.main
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:310 +0x1d86

goroutine 7864 [syscall]:
syscall.Syscall6(0x1e1, 0x0, 0x35e, 0x0, 0x10020, 0x0, 0x0)
/usr/local/go/src/syscall/asm_unix_amd64.s:40 +0x5
os.(*Process).blockUntilWaitable(0xc00093c330)
/usr/local/go/src/os/wait_wait6.go:31 +0x65
os.(*Process).wait(0xc00093c330)
/usr/local/go/src/os/exec_unix.go:23 +0x39
os.(*Process).Wait(...)
/usr/local/go/src/os/exec.go:132
os/exec.(*Cmd).Wait(0xc00020da20)
/usr/local/go/src/os/exec/exec.go:507 +0x67
github.com/google/syzkaller/pkg/ipc.makeCommand.func3(0xc000492830, 0xc0002a42a0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:653 +0x33
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:652 +0xc79

goroutine 7839 [syscall]:
syscall.Syscall6(0x1e1, 0x0, 0x62ac, 0x0, 0x10020, 0x0, 0x0)
/usr/local/go/src/syscall/asm_unix_amd64.s:40 +0x5
os.(*Process).blockUntilWaitable(0xc000038cf0)
/usr/local/go/src/os/wait_wait6.go:31 +0x65
os.(*Process).wait(0xc000038cf0)
/usr/local/go/src/os/exec_unix.go:23 +0x39
os.(*Process).Wait(...)
/usr/local/go/src/os/exec.go:132
os/exec.(*Cmd).Wait(0xc0004c6000)
/usr/local/go/src/os/exec/exec.go:507 +0x67
github.com/google/syzkaller/pkg/ipc.makeCommand.func3(0xc00000f8b0, 0xc0002a40e0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:653 +0x33
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:652 +0xc79

goroutine 39 [runnable]:
syscall.Syscall(0x4, 0x1, 0xc000302a00, 0xe4)
/usr/local/go/src/syscall/asm_unix_amd64.s:20 +0x5
syscall.write(0x1, {0xc000302a00, 0xe4, 0x1500})
/usr/local/go/src/syscall/zsyscall_netbsd_amd64.go:1180 +0x5f
syscall.Write(...)
/usr/local/go/src/syscall/syscall_unix.go:214
internal/poll.ignoringEINTRIO(...)
/usr/local/go/src/internal/poll/fd_unix.go:582
internal/poll.(*FD).Write(0xc0000720c0, {0xc000302a00, 0xe4, 0x1500})
/usr/local/go/src/internal/poll/fd_unix.go:275 +0x365
os.(*File).write(...)
/usr/local/go/src/os/file_posix.go:49
os.(*File).Write(0xc00000e018, {0xc000302a00, 0xe4, 0x1500})
/usr/local/go/src/os/file.go:176 +0x91
fmt.Fprintf({0xbde2e0, 0xc00000e018}, {0xb2c6e9, 0x28}, {0xc000013b08, 0x5, 0x5})
/usr/local/go/src/fmt/print.go:205 +0xa5
fmt.Printf(...)
/usr/local/go/src/fmt/print.go:213
main.(*Proc).logProgram(0xc00051d8c0, 0xc00048fcd8, 0xc000dca280)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:363 +0x785
main.(*Proc).executeRaw(0xc00051d8c0, 0xc00048fcd8, 0xc000dca280, 0x3)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:325 +0xe5
main.(*Proc).triageInput(0xc00051d8c0, 0xc0007b4de0)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:127 +0x496
main.(*Proc).loop(0xc00051d8c0)
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/proc.go:74 +0x13e
created by main.main
/syzkaller/gopath/src/github.com/google/syzkaller/syz-fuzzer/fuzzer.go:310 +0x1d86

goroutine 7740 [syscall]:
syscall.Syscall6(0x1c1, 0x3b7c, 0xc00031ae6c, 0x0, 0xc000ace480, 0x0, 0x0)
/usr/local/go/src/syscall/asm_unix_amd64.s:40 +0x5
syscall.wait4(0x3b7c, 0xc00031ae6c, 0x0, 0xc000ace480)
/usr/local/go/src/syscall/zsyscall_netbsd_amd64.go:35 +0x78
syscall.Wait4(0x3b7c, 0xc00031aebc, 0x0, 0xc000ace480)
/usr/local/go/src/syscall/syscall_bsd.go:145 +0x51
os.(*Process).wait(0xc000e103c0)
/usr/local/go/src/os/exec_unix.go:44 +0x131
os.(*Process).Wait(...)
/usr/local/go/src/os/exec.go:132
os/exec.(*Cmd).Wait(0xc0004c62c0)
/usr/local/go/src/os/exec/exec.go:507 +0x67
github.com/google/syzkaller/pkg/ipc.makeCommand.func3(0xc000492938, 0xc0003781c0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:653 +0x33
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:652 +0xc79

goroutine 7863 [IO wait]:
internal/poll.runtime_pollWait(0x7f7fd0f9eb80, 0x72)
/usr/local/go/src/runtime/netpoll.go:229 +0xa6
internal/poll.(*pollDesc).wait(0xc000e363d8, 0x72, 0x1)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:84 +0x45
internal/poll.(*pollDesc).waitRead(...)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:89
internal/poll.(*FD).Read(0xc000e363c0, {0xc000e12000, 0x20000, 0x20000})
/usr/local/go/src/internal/poll/fd_unix.go:167 +0x255
os.(*File).read(...)
/usr/local/go/src/os/file_posix.go:32
os.(*File).Read(0xc000492830, {0xc000e12000, 0x20000, 0x20000})
/usr/local/go/src/os/file.go:119 +0x85
github.com/google/syzkaller/pkg/ipc.makeCommand.func2(0xc000492830, 0xc0002a42a0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:630 +0xb8
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:624 +0xac8

goroutine 7739 [IO wait]:
internal/poll.runtime_pollWait(0x7f7fd0f9e7e0, 0x72)
/usr/local/go/src/runtime/netpoll.go:229 +0xa6
internal/poll.(*pollDesc).wait(0xc000f003d8, 0x72, 0x1)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:84 +0x45
internal/poll.(*pollDesc).waitRead(...)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:89
internal/poll.(*FD).Read(0xc000f003c0, {0xc000b0a1c0, 0x1de40, 0x1de40})
/usr/local/go/src/internal/poll/fd_unix.go:167 +0x255
os.(*File).read(...)
/usr/local/go/src/os/file_posix.go:32
os.(*File).Read(0xc000492938, {0xc000b0a1c0, 0x1de40, 0x1de40})
/usr/local/go/src/os/file.go:119 +0x85
github.com/google/syzkaller/pkg/ipc.makeCommand.func2(0xc000492938, 0xc0003781c0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:630 +0xb8
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:624 +0xac8

goroutine 7838 [IO wait]:
internal/poll.runtime_pollWait(0x7f7fd0f9f0f0, 0x72)
/usr/local/go/src/runtime/netpoll.go:229 +0xa6
internal/poll.(*pollDesc).wait(0xc00077b818, 0x72, 0x1)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:84 +0x45
internal/poll.(*pollDesc).waitRead(...)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:89
internal/poll.(*FD).Read(0xc00077b800, {0xc000b48000, 0x20000, 0x20000})
/usr/local/go/src/internal/poll/fd_unix.go:167 +0x255
os.(*File).read(...)
/usr/local/go/src/os/file_posix.go:32
os.(*File).Read(0xc00000f8b0, {0xc000b48000, 0x20000, 0x20000})
/usr/local/go/src/os/file.go:119 +0x85
github.com/google/syzkaller/pkg/ipc.makeCommand.func2(0xc00000f8b0, 0xc0002a40e0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:630 +0xb8
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:624 +0xac8

goroutine 7717 [syscall]:
syscall.Syscall6(0x1c1, 0x6c2b, 0xc0000bbe6c, 0x0, 0xc000c422d0, 0x0, 0x0)
/usr/local/go/src/syscall/asm_unix_amd64.s:40 +0x5
syscall.wait4(0x6c2b, 0xc0000bbe6c, 0x0, 0xc000c422d0)
/usr/local/go/src/syscall/zsyscall_netbsd_amd64.go:35 +0x78
syscall.Wait4(0x6c2b, 0xc0000bbebc, 0x0, 0xc000c422d0)
/usr/local/go/src/syscall/syscall_bsd.go:145 +0x51
os.(*Process).wait(0xc000e10570)
/usr/local/go/src/os/exec_unix.go:44 +0x131
os.(*Process).Wait(...)
/usr/local/go/src/os/exec.go:132
os/exec.(*Cmd).Wait(0xc00020c6e0)
/usr/local/go/src/os/exec/exec.go:507 +0x67
github.com/google/syzkaller/pkg/ipc.makeCommand.func3(0xc0004928f8, 0xc0002a4000)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:653 +0x33
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:652 +0xc79

goroutine 7716 [IO wait]:
internal/poll.runtime_pollWait(0x7f7fd0f9e610, 0x72)
/usr/local/go/src/runtime/netpoll.go:229 +0xa6
internal/poll.(*pollDesc).wait(0xc000e85158, 0x72, 0x1)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:84 +0x45
internal/poll.(*pollDesc).waitRead(...)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:89
internal/poll.(*FD).Read(0xc000e85140, {0xc000b28000, 0x20000, 0x20000})
/usr/local/go/src/internal/poll/fd_unix.go:167 +0x255
os.(*File).read(...)
/usr/local/go/src/os/file_posix.go:32
os.(*File).Read(0xc0004928f8, {0xc000b28000, 0x20000, 0x20000})
/usr/local/go/src/os/file.go:119 +0x85
github.com/google/syzkaller/pkg/ipc.makeCommand.func2(0xc0004928f8, 0xc0002a4000)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:630 +0xb8
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:624 +0xac8

goroutine 7818 [IO wait]:
internal/poll.runtime_pollWait(0x7f7fd0f02220, 0x72)
/usr/local/go/src/runtime/netpoll.go:229 +0xa6
internal/poll.(*pollDesc).wait(0xc00105ebb8, 0x72, 0x1)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:84 +0x45
internal/poll.(*pollDesc).waitRead(...)
/usr/local/go/src/internal/poll/fd_poll_runtime.go:89
internal/poll.(*FD).Read(0xc00105eba0, {0xc000c4c3a0, 0x1dc60, 0x1dc60})
/usr/local/go/src/internal/poll/fd_unix.go:167 +0x255
os.(*File).read(...)
/usr/local/go/src/os/file_posix.go:32
os.(*File).Read(0xc00000ef10, {0xc000c4c3a0, 0x1dc60, 0x1dc60})
/usr/local/go/src/os/file.go:119 +0x85
github.com/google/syzkaller/pkg/ipc.makeCommand.func2(0xc00000ef10, 0xc000378230)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:630 +0xb8
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:624 +0xac8

goroutine 7586 [syscall]:
syscall.Syscall6(0x1c1, 0x6229, 0xc00015366c, 0x0, 0xc000c42120, 0x0, 0x0)
/usr/local/go/src/syscall/asm_unix_amd64.s:40 +0x5
syscall.wait4(0x6229, 0xc00015366c, 0x0, 0xc000c42120)
/usr/local/go/src/syscall/zsyscall_netbsd_amd64.go:35 +0x78
syscall.Wait4(0x6229, 0xc0001536bc, 0x0, 0xc000c42120)
/usr/local/go/src/syscall/syscall_bsd.go:145 +0x51
os.(*Process).wait(0xc000039050)
/usr/local/go/src/os/exec_unix.go:44 +0x131
os.(*Process).Wait(...)
/usr/local/go/src/os/exec.go:132
os/exec.(*Cmd).Wait(0xc00020dce0)
/usr/local/go/src/os/exec/exec.go:507 +0x67
github.com/google/syzkaller/pkg/ipc.makeCommand.func3(0xc00000f7f8, 0xc0002a4150)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:653 +0x33
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:652 +0xc79

goroutine 7852 [select]:
github.com/google/syzkaller/pkg/ipc.(*command).exec.func1(0xc0002a42a0, 0xc000b88540, 0xc000b884e0)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:772 +0x9f
created by github.com/google/syzkaller/pkg/ipc.(*command).exec
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:770 +0x28f

goroutine 7805 [syscall]:
syscall.Syscall6(0x1c1, 0x3cda, 0xc00015066c, 0x0, 0xc000c425a0, 0x0, 0x0)
/usr/local/go/src/syscall/asm_unix_amd64.s:40 +0x5
syscall.wait4(0x3cda, 0xc00015066c, 0x0, 0xc000c425a0)
/usr/local/go/src/syscall/zsyscall_netbsd_amd64.go:35 +0x78
syscall.Wait4(0x3cda, 0xc0001506bc, 0x0, 0xc000c425a0)
/usr/local/go/src/syscall/syscall_bsd.go:145 +0x51
os.(*Process).wait(0xc00093c030)
/usr/local/go/src/os/exec_unix.go:44 +0x131
os.(*Process).Wait(...)
/usr/local/go/src/os/exec.go:132
os/exec.(*Cmd).Wait(0xc0004c6580)
/usr/local/go/src/os/exec/exec.go:507 +0x67
github.com/google/syzkaller/pkg/ipc.makeCommand.func3(0xc00000ef10, 0xc000378230)
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:653 +0x33
created by github.com/google/syzkaller/pkg/ipc.makeCommand
/syzkaller/gopath/src/github.com/google/syzkaller/pkg/ipc/ipc.go:652 +0xc79


---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

syzbot

unread,
Sep 14, 2023, 5:46:10 AM9/14/23
to syzkaller-...@googlegroups.com
Auto-closing this bug as obsolete.
Crashes did not happen for a while, no reproducer and no activity.
Reply all
Reply to author
Forward
0 new messages