page fault in __asan_load8 (5)

8 views
Skip to first unread message

syzbot

unread,
Jul 7, 2022, 5:27:25 AM7/7/22
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 00db161ce6c4 lint: do not warn about 'may lose accuracy' i..
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=17c40350080000
kernel config: https://syzkaller.appspot.com/x/.config?x=fab579639ba4bf0a
dashboard link: https://syzkaller.appspot.com/bug?extid=19b1bf83e5481273eafc
compiler: g++ (Debian 10.2.1-6) 10.2.1 20210110

Unfortunately, I don't have any reproducer for this issue yet.

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+19b1bf...@syzkaller.appspotmail.com

[ 151.9998216] fatal page fault in supervisor mode
[ 151.9998216] trap type 6 code 0 rip 0xffffffff81b85a3b cs 0x8 rflags 0x10283 cr2 0xffff900000000001 ilevel 0 rsp 0xffffbe01a6ead3f0
[ 152.0098137] curlwp 0xffffbe00133c96c0 pid 8660.1166 lowest kstack 0xffffbe01a6ea62c0
kernel: page fault trap, code=0
Stopped in pid 8660.1166 (syz-executor.4) at netbsd:__asan_load8+0x6c: movzbl 0(%rax),%r8d
?
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_1byte_isvalid sys/kern/subr_asan.c:310 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_2byte_isvalid sys/kern/subr_asan.c:323 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_4byte_isvalid sys/kern/subr_asan.c:343 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_8byte_isvalid sys/kern/subr_asan.c:363 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_check sys/kern/subr_asan.c:420 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c sys/kern/subr_asan.c:1207
compat_ifconf() at netbsd:compat_ifconf+0xd2 sys/compat/common/uipc_syscalls_40.c:44
doifioctl() at netbsd:doifioctl+0x1b8 sys/net/if.c:3394
soo_ioctl() at netbsd:soo_ioctl+0x3c7 sys/kern/sys_socket.c:210
sys_ioctl() at netbsd:sys_ioctl+0x1d1 sys/kern/sys_generic.c:673
sys___syscall() at netbsd:sys___syscall+0x10e sy_call sys/sys/syscallvar.h:65 [inline]
sys___syscall() at netbsd:sys___syscall+0x10e sys/kern/sys_syscall.c:90
syscall() at netbsd:syscall+0x25a sy_call sys/sys/syscallvar.h:65 [inline]
syscall() at netbsd:syscall+0x25a sy_invoke sys/sys/syscallvar.h:94 [inline]
syscall() at netbsd:syscall+0x25a sys/arch/x86/x86/syscall.c:138
--- syscall (number 54 via SYS_syscall) ---
netbsd:syscall+0x25a:
Panic string: (null)
PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
8662 1019 3 1 180 ffffbe0012ca8140 syz-executor.1 parked
8662 8662 2 0 10000000 ffffbe0013445500 syz-executor.1
8660 >1166 7 1 100 ffffbe00133c96c0 syz-executor.4
8660 8660 2 0 10000000 ffffbe0012c83080 syz-executor.4
9169 9169 2 0 0 ffffbe0012c9d540 syz-executor.3
7739 7739 3 0 180 ffffbe0012cc91c0 syz-executor.5 parked
8378 8378 3 0 180 ffffbe0012c9d100 syz-executor.5 parked
1454 1454 3 0 180 ffffbe0013425bc0 syz-executor.5 parked
930 930 3 1 180 ffffbe00140190c0 syz-executor.5 parked
7991 7991 3 1 180 ffffbe0013e15680 syz-executor.5 parked
1964 1964 3 0 180 ffffbe0013425340 syz-executor.1 parked
732 732 3 0 180 ffffbe0013e15240 syz-executor.3 nanoslp
1107 1107 2 0 40 ffffbe0013dbaa80 syz-executor.5
1151 1151 3 0 180 ffffbe0013dba640 syz-executor.4 nanoslp
1130 1130 3 1 180 ffffbe0013caea40 syz-executor.2 nanoslp
1075 1075 3 1 180 ffffbe0013cae600 syz-executor.1 nanoslp
1220 1220 2 0 40 ffffbe0012a9f900 syz-executor.0
1192 972 3 0 180 ffffbe0013dba200 syz-fuzzer parked
1192 1224 3 1 180 ffffbe0013ca6a00 syz-fuzzer parked
1192 1223 3 1 180 ffffbe0013ca65c0 syz-fuzzer kqueue
1192 1194 3 1 180 ffffbe0013ca6180 syz-fuzzer parked
1192 1222 3 0 180 ffffbe00134749c0 syz-fuzzer parked
1192 1221 3 1 180 ffffbe0013474580 syz-fuzzer parked
1192 1084 3 0 180 ffffbe0013474140 syz-fuzzer parked
1192 >1078 7 0 140 ffffbe00133b6ac0 syz-fuzzer
1192 1192 3 1 180 ffffbe0012a63040 syz-fuzzer parked
1085 1085 3 1 180 ffffbe0012a63480 sshd select
1070 1070 3 1 180 ffffbe00133b6240 getty nanoslp
1073 1073 3 0 180 ffffbe0013391a40 getty nanoslp
1074 1074 3 0 180 ffffbe001341bb80 getty nanoslp
1252 1252 3 0 1c0 ffffbe00126cb040 getty ttyraw
926 926 3 1 180 ffffbe0013391600 sshd select
941 941 3 0 180 ffffbe0012cf16c0 powerd kqueue
688 688 3 0 180 ffffbe00133c9b00 syslogd kqueue
547 547 3 0 180 ffffbe0012bfdac0 dhcpcd poll
546 546 3 1 180 ffffbe0012c834c0 dhcpcd poll
600 600 3 1 180 ffffbe0012bfd680 dhcpcd poll
587 587 3 1 180 ffffbe0012c4d300 dhcpcd poll
289 289 3 0 180 ffffbe0012d82080 dhcpcd poll
288 288 3 0 180 ffffbe0012d6c8c0 dhcpcd poll
351 351 3 1 180 ffffbe0012d6c480 dhcpcd poll
1 1 3 0 180 ffffbe00126fd9c0 init wait
0 396 3 0 200 ffffbe0012cc9600 ktrace ktrwait
0 394 5 0 200 ffffbe0012c5abc0 (zombie)
0 939 3 0 200 ffffbe0012974ac0 physiod physiod
0 194 3 0 200 ffffbe001298bb00 pooldrain pooldrain
0 193 3 0 200 ffffbe001298b6c0 ioflush syncer
0 192 3 1 200 ffffbe001298b280 pgdaemon pgdaemon
0 169 3 1 200 ffffbe0012974240 usb7 usbevt
0 167 3 0 200 ffffbe001292ea80 usb6 usbevt
0 165 3 0 200 ffffbe001292e640 usb5 usbevt
0 164 3 1 200 ffffbe001292e200 usb4 usbevt
0 31 3 1 200 ffffbe00128e0a40 usb3 usbevt
0 63 3 0 200 ffffbe00128e0600 usb2 usbevt
0 126 3 0 200 ffffbe00128e01c0 usb1 usbevt
0 125 3 1 200 ffffbe0012871a00 usb0 usbevt
0 124 3 0 200 ffffbe00128715c0 usbtask-dr usbtsk
0 123 3 0 200 ffffbe00120b66c0 usbtask-hc usbtsk
0 122 3 0 200 ffffbe0012871180 npfgc0 npfgcw
0 121 3 0 200 ffffbe00126fd580 rt_free rt_free
0 120 3 0 200 ffffbe00126fd140 unpgc unpgc
0 119 3 0 200 ffffbe00126f6980 key_timehandler key_timehandler
0 118 3 1 200 ffffbe00126f6540 icmp6_wqinput/1 icmp6_wqinput
0 117 3 0 200 ffffbe00126f6100 icmp6_wqinput/0 icmp6_wqinput
0 116 3 0 200 ffffbe00126ed940 nd6_timer nd6_timer
0 115 3 1 200 ffffbe00126ed500 carp6_wqinput/1 carp6_wqinput
0 114 3 0 200 ffffbe00126ed0c0 carp6_wqinput/0 carp6_wqinput
0 113 3 1 200 ffffbe00126de900 carp_wqinput/1 carp_wqinput
0 112 3 0 200 ffffbe00126de4c0 carp_wqinput/0 carp_wqinput
0 111 3 1 200 ffffbe00126de080 icmp_wqinput/1 icmp_wqinput
0 110 3 0 200 ffffbe00126cb8c0 icmp_wqinput/0 icmp_wqinput
0 109 3 0 200 ffffbe00126cabc0 rt_timer rt_timer
0 108 3 0 200 ffffbe00126cb480 vmem_rehash vmem_rehash
0 99 3 0 200 ffffbe00120bbb40 entbutler entropy
0 98 3 0 200 ffffbe00120bb700 viomb balloon
0 97 3 1 200 ffffbe00120bb2c0 vioif0_txrx/1 vioif0_txrx
0 96 3 0 200 ffffbe00120b6b00 vioif0_txrx/0 vioif0_txrx
0 29 3 0 200 ffffbe00120b6280 scsibus0 sccomp
0 28 3 0 200 ffffbe0010cbaac0 pms0 pmsreset
0 27 3 1 200 ffffbe0010cba680 xcall/1 xcall
0 26 1 1 200 ffffbe0010cba240 softser/1
0 25 1 1 200 ffffbe0010cb9a80 softclk/1
0 24 1 1 200 ffffbe0010cb9640 softbio/1
0 23 1 1 200 ffffbe0010cb9200 softnet/1
0 22 1 1 201 ffffbe000fb55a40 idle/1
0 21 3 0 200 ffffbe000fb55600 lnxsyswq lnxsyswq
0 20 3 0 200 ffffbe000fb551c0 lnxubdwq lnxubdwq
0 19 3 0 200 ffffbe000fb54a00 lnxpwrwq lnxpwrwq
0 18 3 0 200 ffffbe000fb545c0 lnxlngwq lnxlngwq
0 17 3 0 200 ffffbe000fb54180 lnxhipwq lnxhipwq
0 16 3 0 200 ffffbe000fb4b9c0 lnxrcugc lnxrcugc
0 15 3 0 200 ffffbe000fb4b580 sysmon smtaskq
0 14 3 0 200 ffffbe000fb4b140 pmfsuspend pmfsuspend
0 13 3 0 200 ffffbe000fb48980 pmfevent pmfevent
0 12 3 0 200 ffffbe000fb48540 sopendfree sopendfr
0 11 3 0 200 ffffbe000fb48100 iflnkst iflnkst
0 10 3 0 200 ffffbe000fb3c940 nfssilly nfssilly
0 9 3 0 200 ffffbe000fb3c500 vdrain vdrain
0 8 3 1 200 ffffbe000fb3c0c0 modunload mod_unld
0 7 3 0 200 ffffbe000fb33900 xcall/0 xcall
0 6 1 0 200 ffffbe000fb334c0 softser/0
0 5 1 0 200 ffffbe000fb33080 softclk/0
0 4 1 0 200 ffffbe000fb318c0 softbio/0
0 3 1 0 200 ffffbe000fb31480 softnet/0
0 2 1 0 201 ffffbe000fb31040 idle/0
0 0 3 0 200 ffffffff83341700 swapper uvm
[Locks tracked through LWPs]

****** LWP 1107.1107 (syz-executor.5) @ 0xffffbe0013dbaa80, l_stat=2

*** Locks held:

* Lock 0 (initialized at uvmspace_alloc)
lock address : 0xffffbe00134778e8 type : sleep/adaptive
initialized : 0xffffffff81a78bd7
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffbe0013dbaa80 last held: 0xffffbe0013dbaa80
last locked* : 0xffffffff81a6fb04 unlocked : 0xffffffff81a5f547
owner/count : 0xffffbe0013dbaa80 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted:

* Lock 0 (initialized at amap_ctor)
lock address : 0xffffbe0013dd0940 type : sleep/adaptive
initialized : 0xffffffff81a50e0b
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 1
relevant cpu : 0 last held: 1
relevant lwp : 0xffffbe0013dbaa80 last held: 000000000000000000
last locked : 0xffffffff81a562e2 unlocked*: 0xffffffff81a56385
owner/count : 000000000000000000 flags : 000000000000000000
Turnstile: no active turnstile for this lock.

****** LWP 1220.1220 (syz-executor.0) @ 0xffffbe0012a9f900, l_stat=2

*** Locks held:

* Lock 0 (initialized at amap_ctor)
lock address : 0xffffbe0013cb69c0 type : sleep/adaptive
initialized : 0xffffffff81a50e0b
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffbe0012a9f900 last held: 0xffffbe0012a9f900
last locked* : 0xffffffff81a61ae4 unlocked : 0xffffffff81a5f526
owner/count : 0xffffbe0012a9f900 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted:

* Lock 0 (initialized at pmap_ctor)
lock address : 0xffffbe0012a43b80 type : sleep/adaptive
initialized : 0xffffffff80950139
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 1
relevant cpu : 0 last held: 0
relevant lwp : 0xffffbe0012a9f900 last held: 000000000000000000
last locked : 0xffffffff8094fd9a unlocked*: 0xffffffff80950001
owner field : 0xffffbe0012a9f900 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 546.546 (dhcpcd) @ 0xffffbe0012c834c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffbe0012c834c0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 600.600 (dhcpcd) @ 0xffffbe0012bfd680, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffbe0012bfd680 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 288.288 (dhcpcd) @ 0xffffbe0012d6c8c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffbe0012d6c8c0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 351.351 (dhcpcd) @ 0xffffbe0012d6c480, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffbe0012d6c480 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.25 (softclk/1) @ 0xffffbe0010cb9a80, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffbe0010cb9a80 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xffffbe000fb48100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffbe000fb48100 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.0 (swapper) @ 0xffffffff83341700, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffffff83341700 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

PAGE FLAG PQ UOBJECT UANON
0xffffbe0000017180 0041 00000000 0x0 0x0
0xffffbe0000017200 0041 00000000 0x0 0x0
0xffffbe0000017280 0041 00000000 0x0 0x0
0xffffbe0000017300 0041 00000000 0x0 0x0
0xffffbe0000017380 0041 00000000 0x0 0x0
0xffffbe0000017400 0041 00000000 0x0 0x0
0xffffbe0000017480 0041 00000000 0x0 0x0
0xffffbe0000017500 0041 00000000 0x0 0x0
0xffffbe0000017580 0041 00000000 0x0 0x0
0xffffbe0000017600 0041 00000000 0x0 0x0
0xffffbe0000017680 0041 00000000 0x0 0x0
0xffffbe0000017700 0041 00000000 0x0 0x0
0xffffbe0000017780 0041 00000000 0x0 0x0
0xffffbe0000017800 0041 00000000 0x0 0x0
0xffffbe0000017880 0041 00000000 0x0 0x0
0xffffbe0000017900 0041 00000000 0x0 0x0
0xffffbe0000017980 0041 00000000 0x0 0x0
0xffffbe0000017a00 0041 00000000 0x0 0x0
0xffffbe0000017a80 0041 00000000 0x0 0x0
0xffffbe0000017b00 0041 00000000 0x0 0x0
0xffffbe0000017b80 0041 00000000 0x0 0x0
0xffffbe0000017c00 0041 00000000 0x0 0x0
0xffffbe0000017c80 0041 00000000 0x0 0x0
0xffffbe0000017d00 0041 00000000 0x0 0x0
0xffffbe0000017d80 0041 00000000 0x0 0x0
0xffffbe0000017e00 0041 00000000 0x0 0x0
0xffffbe0000017e80 0041 00000000 0x0 0x0
0xffffbe0000017f00 0041 00000000 0x0 0x0
0xffffbe0000017f80 0041 00000000 0x0 0x0
0xffffbe0000018000 0041 00000000 0x0 0x0
0xffffbe0000018080 0041 00000000 0x0 0x0
0xffffbe0000018100 0041 00000000 0x0 0x0
0xffffbe0000018180 0041 00000000 0x0 0x0
0xffffbe0000018200 0041 00000000 0x0 0x0
0xffffbe0000018280 0041 00000000 0x0 0x0
0xffffbe0000018300 0041 00000000 0x0 0x0
0xffffbe0000018380 0041 00000000 0x0 0x0
0xffffbe0000018400 0041 00000000 0x0 0x0
0xffffbe0000018480 0041 00000000 0x0 0x0
0xffffbe0000018500 0041 00000000 0x0 0x0
0xffffbe0000018580 0041 00000000 0x0 0x0
0xffffbe0000018600 0041 00000000 0x0 0x0
0xffffbe0000018680 0041 00000000 0x0 0x0
0xffffbe0000018700 0041 00000000 0x0 0x0
0xffffbe0000018780 0041 00000000 0x0 0x0
0xffffbe0000018800 0041 00000000 0x0 0x0
0xffffbe0000018880 0041 00000000 0x0 0x0
0xffffbe0000018900 0041 00000000 0x0 0x0
0xffffbe0000018980 0041 00000000 0x0 0x0
0xffffbe0000018a00 0041 00000000 0x0 0x0
0xffffbe0000018a80 0041 00000000 0x0 0x0
0xffffbe0000018b00 0041 00000000 0x0 0x0
0xffffbe0000018b80 0041 00000000 0x0 0x0
0xffffbe0000018c00 0041 00000000 0x0 0x0
0xffffbe0000018c80 0041 00000000 0x0 0x0
0xffffbe0000018d00 0041 00000000 0x0 0x0
0xffffbe0000018d80 0041 00000000 0x0 0x0
0xffffbe0000018e00 0041 00000000 0x0 0x0
0xffffbe0000018e80 0041 00000000 0x0 0x0
0xffffbe0000018f00 0041 00000000 0x0 0x0
0xffffbe0000018f80 0041 00000000 0x0 0x0
0xffffbe0000019000 0041 00000000 0x0 0x0
0xffffbe0000019080 0041 00000000 0x0 0x0
0xffffbe0000019100 0041 00000000 0x0 0x0
0xffffbe0000019180 0041 00000000 0x0 0x0
0xffffbe0000019200 0041 00000000 0x0 0x0
0xffffbe0000019280 0041 00000000 0x0 0x0
0xffffbe0000019300 0041 00000000 0x0 0x0
0xffffbe0000019380 0041 00000000 0x0 0x0
0xffffbe0000019400 0041 00000000 0x0 0x0
0xffffbe0000019480 0041 00000000 0x0 0x0
0xffffbe0000019500 0041 00000000 0x0 0x0
0xffffbe0000019580 0041 00000000 0x0 0x0
0xffffbe0000019600 0041 00000000 0x0 0x0
0xffffbe0000019680 0041 00000000 0x0 0x0
0xffffbe0000019700 0041 00000000 0x0 0x0
0xffffbe0000019780 0041 00000000 0x0 0x0
0xffffbe0000019800 0041 00000000 0x0 0x0
0xffffbe0000019880 0041 00000000 0x0 0x0
0xffffbe0000019900 0041 00000000 0x0 0x0
0xffffbe0000019980 0041 00000000 0x0 0x0
0xffffbe0000019a00 0041 00000000 0x0 0x0
0xffffbe0000019a80 0041 00000000 0x0 0x0
0xffffbe0000019b00 0041 00000000 0x0 0x0
0xffffbe0000019b80 0041 00000000 0x0 0x0
0xffffbe0000019c00 0041 00000000 0x0 0x0
0xffffbe0000019c80 0041 00000000 0x0 0x0
0xffffbe0000019d00 0041 00000000 0x0 0x0
0xffffbe0000019d80 0041 00000000 0x0 0x0
0xffffbe0000019e00 0041 00000000 0x0 0x0
0xffffbe0000019e80 0041 00000000 0x0 0x0
0xffffbe0000019f00 0041 00000000 0x0 0x0
0xffffbe0000019f80 0041 00000000 0x0 0x0
0xffffbe000001a000 0041 00000000 0x0 0x0
0xffffbe000001a080 0041 00000000 0x0 0x0
0xffffbe000001a100 0041 00000000 0x0 0x0
0xffffbe000001a180 0041 00000000 0x0 0x0
0xffffbe000001a200 0041 00000000 0x0 0x0
0xffffbe000001a280 0041 00000000 0x0 0x0
0xffffbe000001a300 0041 00000000 0x0 0x0
0xffffbe000001a380 0041 00000000 0x0 0x0
0xffffbe000001a400 0041 00000000 0x0 0x0
0xffffbe000001a480 0041 00000000 0x0 0x0
0xffffbe000001a500 0041 00000000 0x0 0x0
0xffffbe000001a580 0041 00000000 0x0 0x0
0xffffbe000001a600 0041 00000000 0x0 0x0
0xffffbe000001a680 0041 00000000 0x0 0x0
0xffffbe000001a700 0041 00000000 0x0 0x0
0xffffbe000001a780 0041 00000000 0x0 0x0
0xffffbe000001a800 0041 00000000 0x0 0x0
0xffffbe000001a880 0041 00000000 0x0 0x0
0xffffbe000001a900 0041 00000000 0x0 0x0
0xffffbe000001a980 0041 00000000 0x0 0x0
0xffffbe000001aa00 0041 00000000 0x0 0x0
0xffffbe000001aa80 0041 00000000 0x0 0x0
0xffffbe000001ab00 0041 00000000 0x0 0x0
0xffffbe000001ab80 0041 00000000 0x0 0x0
0xffffbe000001ac00 0041 00000000 0x0 0x0
0xffffbe000001ac80 0041 00000000 0x0 0x0
0xffffbe000001ad00 0041 00000000 0x0 0x0
0xffffbe000001ad80 0041 00000000 0x0 0x0
0xffffbe000001ae00 0041 00000000 0x0 0x0
0xffffbe000001ae80 0041 00000000 0x0 0x0
0xffffbe000001af00 0041 00000000 0x0 0x0
0xffffbe000001af80 0041 00000000 0x0 0x0
0xffffbe000001b000 0041 00000000 0x0 0x0
0xffffbe000001b080 0041 00000000 0x0 0x0
0xffffbe000001b100 0041 00000000 0x0 0x0
0xffffbe000001b180 0041 00000000 0x0 0x0
0xffffbe000001b200 0041 00000000 0x0 0x0
0xffffbe000001b280 0041 00000000 0x0 0x0
0xffffbe000001b300 0041 00000000 0x0 0x0
0xffffbe000001b380 0041 00000000 0x0 0x0
0xffffbe000001b400 0041 00000000 0x0 0x0
0xffffbe000001b480 0041 00000000 0x0 0x0
0xffffbe000001b500 0041 00000000 0x0 0x0
0xffffbe000001b580 0041 00000000 0x0 0x0
0xffffbe000001b600 0041 00000000 0x0 0x0
0xffffbe000001b680 0041 00000000 0x0 0x0
0xffffbe000001b700 0041 00000000 0x0 0x0
0xffffbe000001b780 0041 00000000 0x0 0x0
0xffffbe000001b800 0041 00000000 0x0 0x0
0xffffbe000001b880 0041 00000000 0x0 0x0
0xffffbe000001b900 0041 00000000 0x0 0x0
0xffffbe000001b980 0041 00000000 0x0 0x0
0xffffbe000001ba00 0041 00000000 0x0 0x0
0xffffbe000001ba80 0001 00000000 0x0 0x0
0xffffbe000001bb00 0001 00000000 0x0 0x0
0xffffbe000001bb80 0001 00000000 0x0 0x0
0xffffbe000001bc00 0001 00000000 0x0 0x0
0xffffbe000001bc80 0001 00000000 0x0 0x0
0xffffbe000001bd00 0001 00000000 0x0 0x0
0xffffbe000001bd80 0001 00000000 0x0 0x0
0xffffbe000001be00 0001 00000000 0x0 0x0
0xffffbe000001be80 0001 00000000 0x0 0x0
0xffffbe000001bf00 0001 00000000 0x0 0x0
0xffffbe000001bf80 0001 00000000 0x0 0x0
0xffffbe000001c000 0001 00000000 0x0 0x0
0xffffbe000001c080 0001 00000000 0x0 0x0
0xffffbe000001c100 0001 00000000 0x0 0x0
0xffffbe000001c180 0001 00000000 0x0 0x0
0xffffbe000001c200 0001 00000000 0x0 0x0
0xffffbe000001c280 0001 00000000 0x0 0x0
0xffffbe000001c300 0001 00000000 0x0 0x0
0xffffbe000001c380 0001 00000000 0x0 0x0
0xffffbe000001c400 0001 00000000 0x0 0x0
0xffffbe000001c480 0001 00000000 0x0 0x0
0xffffbe000001c500 0001 00000000 0x0 0x0
0xffffbe000001c580 0001 00000000 0x0 0x0
0xffffbe000001c600 0001 00000000 0x0 0x0
0xffffbe000001c680 0001 00000000 0x0 0x0
0xffffbe000001c700 0001 00000000 0x0 0x0
0xffffbe000001c780 0001 00000000 0x0 0x0
0xffffbe000001c800 0001 00000000 0x0 0x0
0xffffbe000001c880 0001 00000000 0x0 0x0
0xffffbe000001c900 0001 00000000 0x0 0x0
0xffffbe000001c980 0001 00000000 0x0 0x0
0xffffbe000001ca00 0001 00000000 0x0 0x0
0xffffbe000001ca80 0001 00000000 0x0 0x0
0xffffbe000001cb00 0001 00000000 0x0 0x0
0xffffbe000001cb80 0001 00000000 0x0 0x0
0xffffbe000001cc00 0001 00000000 0x0 0x0
0xffffbe000001cc80 0001 00000000 0x0 0x0
0xffffbe000001cd00 0001 00000000 0x0 0x0
0xffffbe000001cd80 0001 00000000 0x0 0x0
0xffffbe000001ce00 0001 00000000 0x0 0x0
0xffffbe000001ce80 0001 00000000 0x0 0x0
0xffffbe000001cf00 0001 00000000 0x0 0x0
0xffffbe000001cf80 0001 00000000 0x0 0x0
0xffffbe000001d000 0001 00000000 0x0 0x0
0xffffbe000001d080 0001 00000000 0x0 0x0
0xffffbe000001d100 0001 00000000 0x0 0x0
0xffffbe000001d180 0001 00000000 0x0 0x0
0xffffbe000001d200 0001 00000000 0x0 0x0
0xffffbe000001d280 0001 00000000 0x0 0x0
0xffffbe000001d300 0001 00000000 0x0 0x0
0xffffbe000001d380 0001 00000000 0x0 0x0
0xffffbe000001d400 0001 00000000 0x0 0x0
0xffffbe000001d480 0001 00000000 0x0 0x0
0xffffbe000001d500 0001 00000000 0x0 0x0
0xffffbe000001d580 0001 00000000 0x0 0x0
0xffffbe000001d600 0001 00000000 0x0 0x0
0xffffbe000001d680 0001 00000000 0x0 0x0
0xffffbe000001d700 0001 00000000 0x0 0x0
0xffffbe000001d780 0001 00000000 0x0 0x0
0xffffbe000001d800 0001 00000000 0x0 0x0
0xffffbe000001d880 0001 00000000 0x0 0x0
0xffffbe000001d900 0001 00000000 0x0 0x0
0xffffbe000001d980 0001 00000000 0x0 0x0
0xffffbe000001da00 0001 00000000 0x0 0x0
0xffffbe000001da80 0001 00000000 0x0 0x0
0xffffbe000001db00 0001 00000000 0x0 0x0
0xffffbe000001db80 0001 00000000 0x0 0x0
0xffffbe000001dc00 0001 00000000 0x0 0x0
0xffffbe000001dc80 0001 00000000 0x0 0x0
0xffffbe000001dd00 0001 00000000 0x0 0x0
0xffffbe000001dd80 0001 00000000 0x0 0x0
0xffffbe000001de00 0001 00000000 0x0 0x0
0xffffbe000001de80 0001 00000000 0x0 0x0
0xffffbe000001df00 0001 00000000 0x0 0x0
0xffffbe000001df80 0001 00000000 0x0 0x0
0xffffbe000001e000 0001 00000000 0x0 0x0
0xffffbe000001e080 0001 00000000 0x0 0x0
0xffffbe000001e100 0001 00000000 0x0 0x0
0xffffbe000001e180 0001 00000000 0x0 0x0
0xffffbe000001e200 0001 00000000 0x0 0x0
0xffffbe000001e280 0001 00000000 0x0 0x0
0xffffbe000001e300 0001 00000000 0x0 0x0
0xffffbe000001e380 0001 00000000 0x0 0x0
0xffffbe000001e400 0001 00000000 0x0 0x0
0xffffbe000001e480 0001 00000000 0x0 0x0
0xffffbe000001e500 0001 00000000 0x0 0x0
0xffffbe000001e580 0001 00000000 0x0 0x0
0xffffbe000001e600 0001 00000000 0x0 0x0
0xffffbe000001e680 0001 00000000 0x0 0x0
0xffffbe000001e700 0001 00000000 0x0 0x0
0xffffbe000001e780 0001 00000000 0x0 0x0
0xffffbe000001e800 0001 00000000 0x0 0x0
0xffffbe000001e880 0001 00000000 0x0 0x0
0xffffbe000001e900 0001 00000000 0x0 0x0
0xffffbe000001e980 0001 00000000 0x0 0x0
0xffffbe000001ea00 0001 00000000 0x0 0x0
0xffffbe000001ea80 0001 00000000 0x0 0x0
0xffffbe000001eb00 0001 00000000 0x0 0x0
0xffffbe000001eb80 0001 00000000 0x0 0x0
0xffffbe000001ec00 0001 00000000 0x0 0x0
0xffffbe000001ec80 0001 00000000 0x0 0x0
0xffffbe000001ed00 0001 00000000 0x0 0x0
0xffffbe000001ed80 0001 00000000 0x0 0x0
0xffffbe000001ee00 0001 00000000 0x0 0x0
0xffffbe000001ee80 0001 00000000 0x0 0x0
0xffffbe000001ef00 0001 00000000 0x0 0x0
0xffffbe000001ef80 0001 00000000 0x0 0x0
0xffffbe000001f000 0001 00000000 0x0 0x0
0xffffbe000001f080 0001 00000000 0x0 0x0
0xffffbe000001f100 0001 00000000 0x0 0x0
0xffffbe000001f180 0001 00000000 0x0 0x0
0xffffbe000001f200 0001 00000000 0x0 0x0
0xffffbe000001f280 0001 00000000 0x0 0x0
0xffffbe000001f300 0001 00000000 0x0 0x0
0xffffbe000001f380 0001 00000000 0x0 0x0
0xffffbe000001f400 0001 00000000 0x0 0x0
0xffffbe000001f480 0001 00000000 0x0 0x0
0xffffbe000001f500 0001 00000000 0x0 0x0
0xffffbe000001f580 0001 00000000 0x0 0x0
0xffffbe000001f600 0001 00000000 0x0 0x0
0xffffbe000001f680 0001 00000000 0x0 0x0
0xffffbe000001f700 0001 00000000 0x0 0x0
0xffffbe000001f780 0001 00000000 0x0 0x0
0xffffbe000001f800 0001 00000000 0x0 0x0
0xffffbe000001f880 0001 00000000 0x0 0x0
0xffffbe000001f900 0001 00000000 0x0 0x0
0xffffbe000001f980 0001 00000000 0x0 0x0
0xffffbe000001fa00 0001 00000000 0x0 0x0
0xffffbe000001fa80 0001 00000000 0x0 0x0
0xffffbe000001fb00 0001 00000000 0x0 0x0
0xffffbe000001fb80 0001 00000000 0x0 0x0
0xffffbe000001fc00 0001 00000000 0x0 0x0
0xffffbe000001fc80 0001 00000000 0x0 0x0
0xffffbe000001fd00 0001 00000000 0x0 0x0
0xffffbe000001fd80 0001 00000000 0x0 0x0
0xffffbe000001fe00 0001 00000000 0x0 0x0
0xffffbe000001fe80 0001 00000000 0x0 0x0
0xffffbe000001ff00 0001 00000000 0x0 0x0
0xffffbe000001ff80 0001 00000000 0x0 0x0
0xffffbe0000020000 0001 00000000 0x0 0x0
0xffffbe0000020080 0001 00000000 0x0 0x0
0xffffbe0000020100 0001 00000000 0x0 0x0
0xffffbe0000020180 0001 00000000 0x0 0x0
0xffffbe0000020200 0001 00000000 0x0 0x0
0xffffbe0000020280 0001 00000000 0x0 0x0
0xffffbe0000020300 0001 00000000 0x0 0x0
0xffffbe0000020380 0001 00000000 0x0 0x0
0xffffbe0000020400 0001 00000000 0x0 0x0
0xffffbe0000020480 0001 00000000 0x0 0x0
0xffffbe0000020500 0001 00000000 0x0 0x0
0xffffbe0000020580 0001 00000000 0x0 0x0
0xffffbe0000020600 0001 00000000 0x0 0x0
0xffffbe0000020680 0001 00000000 0x0 0x0
0xffffbe0000020700 0001 00000000 0x0 0x0
0xffffbe0000020780 0001 00000000 0x0 0x0
0xffffbe0000020800 0001 00000000 0x0 0x0
0xffffbe0000020880 0001 00000000 0x0 0x0
0xffffbe0000020900 0001 00000000 0x0 0x0
0xffffbe0000020980 0001 00000000 0x0 0x0
0xffffbe0000020a00 0001 00000000 0x0 0x0
0xffffbe0000020a80 0001 00000000 0x0 0x0
0xffffbe0000020b00 0001 00000000 0x0 0x0
0xffffbe0000020b80 0001 00000000 0x0 0x0
0xffffbe0000020c00 0001 00000000 0x0 0x0
0xffffbe0000020c80 0001 00000000 0x0 0x0
0xffffbe0000020d00 0001 00000000 0x0 0x0
0xffffbe0000020d80 0001 00000000 0x0 0x0
0xffffbe0000020e00 0001 00000000 0x0 0x0
0xffffbe0000020e80 0001 00000000 0x0 0x0
0xffffbe0000020f00 0001 00000000 0x0 0x0
0xffffbe0000020f80 0001 00000000 0x0 0x0
0xffffbe0000021000 0001 00000000 0x0 0x0
0xffffbe0000021080 0001 00000000 0x0 0x0
0xffffbe0000021100 0001 00000000 0x0 0x0
0xffffbe0000021180 0001 00000000 0x0 0x0
0xffffbe0000021200 0001 00000000 0x0 0x0
0xffffbe0000021280 0001 00000000 0x0 0x0
0xffffbe0000021300 0001 00000000 0x0 0x0
0xffffbe0000021380 0001 00000000 0x0 0x0
0xffffbe0000021400 0001 00000000 0x0 0x0
0xffffbe0000021480 0001 00000000 0x0 0x0
0xffffbe0000021500 0001 00000000 0x0 0x0
0xffffbe0000021580 0001 00000000 0x0 0x0
0xffffbe0000021600 0001 00000000 0x0 0x0
0xffffbe0000021680 0001 00000000 0x0 0x0
0xffffbe0000021700 0001 00000000 0x0 0x0
0xffffbe0000021780 0001 00000000 0x0 0x0
0xffffbe0000021800 0001 00000000 0x0 0x0
0xffffbe0000021880 0001 00000000 0x0 0x0
0xffffbe0000021900 0001 00000000 0x0 0x0
0xffffbe0000021980 0001 00000000 0x0 0x0
0xffffbe0000021a00 0001 00000000 0x0 0x0
0xffffbe0000021a80 0001 00000000 0x0 0x0
0xffffbe0000021b00 0001 00000000 0x0 0x0
0xffffbe0000021b80 0001 00000000 0x0 0x0
0xffffbe0000021c00 0001 00000000 0x0 0x0
0xffffbe0000021c80 0001 00000000 0x0 0x0
0xffffbe0000021d00 0001 00000000 0x0 0x0
0xffffbe0000021d80 0001 00000000 0x0 0x0
0xffffbe0000021e00 0001 00000000 0x0 0x0
0xffffbe0000021e80 0001 00000000 0x0 0x0
0xffffbe0000021f00 0001 00000000 0x0 0x0
0xffffbe0000021f80 0001 00000000 0x0 0x0
0xffffbe0000022000 0001 00000000 0x0 0x0
0xffffbe0000022080 0001 00000000 0x0 0x0
0xffffbe0000022100 0001 00000000 0x0 0x0
0xffffbe0000022180 0001 00000000 0x0 0x0
0xffffbe0000022200 0001 00000000 0x0 0x0
0xffffbe0000022280 0001 00000000 0x0 0x0
0xffffbe0000022300 0001 00000000 0x0 0x0
0xffffbe0000022380 0001 00000000 0x0 0x0
0xffffbe0000022400 0001 00000000 0x0 0x0
0xffffbe0000022480 0001 00000000 0x0 0x0
0xffffbe0000022500 0001 00000000 0x0 0x0
0xffffbe0000022580 0001 00000000 0x0 0x0
0xffffbe0000022600 0001 00000000 0x0 0x0
0xffffbe0000022680 0001 00000000 0x0 0x0
0xffffbe0000022700 0001 00000000 0x0 0x0
0xffffbe0000022780 0001 00000000 0x0 0x0
0xffffbe0000022800 0001 00000000 0x0 0x0
0xffffbe0000022880 0001 00000000 0x0 0x0
0xffffbe0000022900 0001 00000000 0x0 0x0
0xffffbe0000022980 0001 00000000 0x0 0x0
0xffffbe0000022a00 0001 00000000 0x0 0x0
0xffffbe0000022a80 0001 00000000 0x0 0x0
0xffffbe0000022b00 0001 00000000 0x0 0x0
0xffffbe0000022b80 0001 00000000 0x0 0x0
0xffffbe0000022c00 0001 00000000 0x0 0x0
0xffffbe0000022c80 0001 00000000 0x0 0x0
0xffffbe0000022d00 0001 00000000 0x0 0x0
0xffffbe0000022d80 0001 00000000 0x0 0x0
0xffffbe0000022e00 0001 00000000 0x0 0x0
0xffffbe0000022e80 0001 00000000 0x0 0x0
0xffffbe0000022f00 0001 00000000 0x0 0x0
0xffffbe0000022f80 0001 00000000 0x0 0x0
0xffffbe0000023000 0001 00000000 0x0 0x0
0xffffbe0000023080 0001 00000000 0x0 0x0
0xffffbe0000023100 0001 00000000 0x0 0x0
0xffffbe0000023180 0001 00000000 0x0 0x0
0xffffbe0000023200 0001 00000000 0x0 0x0
0xffffbe0000023280 0001 00000000 0x0 0x0
0xffffbe0000023300 0001 00000000 0x0 0x0
0xffffbe0000023380 0001 00000000 0x0 0x0
0xffffbe0000023400 0001 00000000 0x0 0x0
0xffffbe0000023480 0001 00000000 0x0 0x0
0xffffbe0000023500 0001 00000000 0x0 0x0
0xffffbe0000023580 0001 00000000 0x0 0x0
0xffffbe0000023600 0001 00000000 0x0 0x0
0xffffbe0000023680 0001 00000000 0x0 0x0
0xffffbe0000023700 0001 00000000 0x0 0x0
0xffffbe0000023780 0001 00000000 0x0 0x0
0xffffbe0000023800 0001 00000000 0x0 0x0
0xffffbe0000023880 0001 00000000 0x0 0x0
0xffffbe0000023900 0001 00000000 0x0 0x0
0xffffbe0000023980 0001 00000000 0x0 0x0
0xffffbe0000023a00 0001 00000000 0x0 0x0
0xffffbe0000023a80 0001 00000000 0x0 0x0
0xffffbe0000023b00 0001 00000000 0x0 0x0
0xffffbe0000023b80 0001 00000000 0x0 0x0
0xffffbe0000023c00 0001 00000000 0x0 0x0
0xffffbe0000023c80 0001 00000000 0x0 0x0
0xffffbe0000023d00 0001 00000000 0x0 0x0
0xffffbe0000023d80 0001 00000000 0x0 0x0
0xffffbe0000023e00 0001 00000000 0x0 0x0
0xffffbe0000023e80 0001 00000000 0x0 0x0
0xffffbe0000023f00 0001 00000000 0x0 0x0
0xffffbe0000023f80 0001 00000000 0x0 0x0
0xffffbe0000024000 0001 00000000 0x0 0x0
0xffffbe0000024080 0001 00000000 0x0 0x0
0xffffbe0000024100 0001 00000000 0x0 0x0
0xffffbe0000024180 0001 00000000 0x0 0x0
0xffffbe0000024200 0001 00000000 0x0 0x0
0xffffbe0000024280 0001 00000000 0x0 0x0
0xffffbe0000024300 0001 00000000 0x0 0x0
0xffffbe0000024380 0001 00000000 0x0 0x0
0xffffbe0000024400 0001 00000000 0x0 0x0
0xffffbe0000024480 0001 00000000 0x0 0x0
0xffffbe0000024500 0001 00000000 0x0 0x0
0xffffbe0000024580 0001 00000000 0x0 0x0
0xffffbe0000024600 0001 00000000 0x0 0x0
0xffffbe0000024680 0001 00000000 0x0 0x0
0xffffbe0000024700 0001 00000000 0x0 0x0
0xffffbe0000024780 0001 00000000 0x0 0x0
0xffffbe0000024800 0001 00000000 0x0 0x0
0xffffbe0000024880 0001 00000000 0x0 0x0
0xffffbe0000024900 0001 00000000 0x0 0x0
0xffffbe0000024980 0001 00000000 0x0 0x0
0xffffbe0000024a00 0001 00000000 0x0 0x0
0xffffbe0000024a80 0001 00000000 0x0 0x0
0xffffbe0000024b00 0001 00000000 0x0 0x0
0xffffbe0000024b80 0001 00000000 0x0 0x0
0xffffbe0000024c00 0001 00000000 0x0 0x0
0xffffbe0000024c80 0001 00000000 0x0 0x0
0xffffbe0000024d00 0001 00000000 0x0 0x0
0xffffbe0000024d80 0001 00000000 0x0 0x0
0xffffbe0000024e00 0001 00000000 0x0 0x0
0xffffbe0000024e80 0001 00000000 0x0 0x0
0xffffbe0000024f00 0001 00000000 0x0 0x0
0xffffbe0000024f80 0001 00000000 0x0 0x0
0xffffbe0000025000 0001 00000000 0x0 0x0
0xffffbe0000025080 0001 00000000 0x0 0x0
0xffffbe0000025100 0001 00000000 0x0 0x0
0xffffbe0000025180 0001 00000000 0x0 0x0
0xffffbe0000025200 0001 00000000 0x0 0x0
0xffffbe0000025280 0001 00000000 0x0 0x0
0xffffbe0000025300 0001 00000000 0x0 0x0
0xffffbe0000025380 0001 00000000 0x0 0x0
0xffffbe0000025400 0001 00000000 0x0 0x0
0xffffbe0000025480 0001 00000000 0x0 0x0
0xffffbe0000025500 0001 00000000 0x0 0x0
0xffffbe0000025580 0001 00000000 0x0 0x0
0xffffbe0000025600 0001 00000000 0x0 0x0
0xffffbe0000025680 0001 00000000 0x0 0x0
0xffffbe0000025700 0001 00000000 0x0 0x0
0xffffbe0000025780 0001 00000000 0x0 0x0
0xffffbe0000025800 0001 00000000 0x0 0x0
0xffffbe0000025880 0001 00000000 0x0 0x0
0xffffbe0000025900 0001 00000000 0x0 0x0
0xffffbe0000025980 0001 00000000 0x0 0x0
0xffffbe0000025a00 0001 00000000 0x0 0x0
0xffffbe0000025a80 0001 00000000 0x0 0x0
0xffffbe0000025b00 0001 00000000 0x0 0x0
0xffffbe0000025b80 0001 00000000 0x0 0x0
0xffffbe0000025c00 0001 00000000 0x0 0x0
0xffffbe0000025c80 0001 00000000 0x0 0x0
0xffffbe0000025d00 0001 00000000 0x0 0x0
0xffffbe0000025d80 0001 00000000 0x0 0x0
0xffffbe0000025e00 0001 00000000 0x0 0x0
0xffffbe0000025e80 0001 00000000 0x0 0x0
0xffffbe0000025f00 0001 00000000 0x0 0x0
0xffffbe0000025f80 0001 00000000 0x0 0x0
0xffffbe0000026000 0001 00000000 0x0 0x0
0xffffbe0000026080 0001 00000000 0x0 0x0
0xffffbe0000026100 0001 00000000 0x0 0x0
0xffffbe0000026180 0001 00000000 0x0 0x0
0xffffbe0000026200 0001 00000000 0x0 0x0
0xffffbe0000026280 0001 00000000 0x0 0x0
0xffffbe0000026300 0001 00000000 0x0 0x0
0xffffbe0000026380 0001 00000000 0x0 0x0
0xffffbe0000026400 0001 00000000 0x0 0x0
0xffffbe0000026480 0001 00000000 0x0 0x0
0xffffbe0000026500 0001 00000000 0x0 0x0
0xffffbe0000026580 0001 00000000 0x0 0x0
0xffffbe0000026600 0001 00000000 0x0 0x0
0xffffbe0000026680 0001 00000000 0x0 0x0
0xffffbe0000026700 0001 00000000 0x0 0x0
0xffffbe0000026780 0001 00000000 0x0 0x0
0xffffbe0000026800 0001 00000000 0x0 0x0
0xffffbe0000026880 0001 00000000 0x0 0x0
0xffffbe0000026900 0001 00000000 0x0 0x0
0xffffbe0000026980 0001 00000000 0x0 0x0
0xffffbe0000026a00 0001 00000000 0x0 0x0
0xffffbe0000026a80 0001 00000000 0x0 0x0
0xffffbe0000026b00 0001 00000000 0x0 0x0
0xffffbe0000026b80 0001 00000000 0x0 0x0
0xffffbe0000026c00 0001 00000000 0x0 0x0
0xffffbe0000026c80 0001 00000000 0x0 0x0
0xffffbe0000026d00 0001 00000000 0x0 0x0
0xffffbe0000026d80 0001 00000000 0x0 0x0
0xffffbe0000026e00 0001 00000000 0x0 0x0
0xffffbe0000026e80 0001 00000000 0x0 0x0
0xffffbe0000026f00 0001 00000000 0x0 0x0
0xffffbe0000026f80 0001 00000000 0x0 0x0
0xffffbe0000027000 0001 00000000 0x0 0x0
0xffffbe0000027080 0001 00000000 0x0 0x0
0xffffbe0000027100 0001 00000000 0x0 0x0
0xffffbe0000027180 0001 00000000 0x0 0x0
0xffffbe0000027200 0001 00000000 0x0 0x0
0xffffbe0000027280 0001 00000000 0x0 0x0
0xffffbe0000027300 0001 00000000 0x0 0x0
0xffffbe0000027380 0001 00000000 0x0 0x0
0xffffbe0000027400 0001 00000000 0x0 0x0
0xffffbe0000027480 0001 00000000 0x0 0x0
0xffffbe0000027500 0001 00000000 0x0 0x0
0xffffbe0000027580 0001 00000000 0x0 0x0
0xffffbe0000027600 0001 00000000 0x0 0x0
0xffffbe0000027680 0001 00000000 0x0 0x0
0xffffbe0000027700 0001 00000000 0x0 0x0
0xffffbe0000027780 0001 00000000 0x0 0x0
0xffffbe0000027800 0001 00000000 0x0 0x0
0xffffbe0000027880 0001 00000000 0x0 0x0
0xffffbe0000027900 0001 00000000 0x0 0x0
0xffffbe0000027980 0001 00000000 0x0 0x0
0xffffbe0000027a00 0001 00000000 0x0 0x0
0xffffbe0000027a80 0001 00000000 0x0 0x0
0xffffbe0000027b00 0001 00000000 0x0 0x0
0xffffbe0000027b80 0001 00000000 0x0 0x0
0xffffbe0000027c00 0001 00000000 0x0 0x0
0xffffbe0000027c80 0001 00000000 0x0 0x0
0xffffbe0000027d00 0001 00000000 0x0 0x0
0xffffbe0000027d80 0001 00000000 0x0 0x0
0xffffbe0000027e00 0001 00000000 0x0 0x0
0xffffbe0000027e80 0001 00000000 0x0 0x0
0xffffbe0000027f00 0001 00000000 0x0 0x0
0xffffbe0000027f80 0001 00000000 0x0 0x0
0xffffbe0000028000 0001 00000000 0x0 0x0
0xffffbe0000028080 0001 00000000 0x0 0x0
0xffffbe0000028100 0001 00000000 0x0 0x0
0xffffbe0000028180 0001 00000000 0x0 0x0
0xffffbe0000028200 0001 00000000 0x0 0x0
0xffffbe0000028280 0001 00000000 0x0 0x0
0xffffbe0000028300 0001 00000000 0x0 0x0
0xffffbe0000028380 0001 00000000 0x0 0x0
0xffffbe0000028400 0001 00000000 0x0 0x0
0xffffbe0000028480 0001 00000000 0x0 0x0
0xffffbe0000028500 0001 00000000 0x0 0x0
0xffffbe0000028580 0001 00000000 0x0 0x0
0xffffbe0000028600 0001 00000000 0x0 0x0
0xffffbe0000028680 0001 00000000 0x0 0x0
0xffffbe0000028700 0001 00000000 0x0 0x0
0xffffbe0000028780 0001 00000000 0x0 0x0
0xffffbe0000028800 0001 00000000 0x0 0x0
0xffffbe0000028880 0001 00000000 0x0 0x0
0xffffbe0000028900 0001 00000000 0x0 0x0
0xffffbe0000028980 0001 00000000 0x0 0x0
0xffffbe0000028a00 0001 00000000 0x0 0x0
0xffffbe0000028a80 0001 00000000 0x0 0x0
0xffffbe0000028b00 0001 00000000 0x0 0x0
0xffffbe0000028b80 0001 00000000 0x0 0x0
0xffffbe0000028c00 0001 00000000 0x0 0x0
0xffffbe0000028c80 0001 00000000 0x0 0x0
0xffffbe0000028d00 0001 00000000 0x0 0x0
0xffffbe0000028d80 0001 00000000 0x0 0x0
0xffffbe0000028e00 0001 00000000 0x0 0x0
0xffffbe0000028e80 0001 00000000 0x0 0x0
0xffffbe0000028f00 0001 00000000 0x0 0x0
0xffffbe0000028f80 0001 00000000 0x0 0x0
0xffffbe0000029000 0001 00000000 0x0 0x0
0xffffbe0000029080 0001 00000000 0x0 0x0
0xffffbe0000029100 0001 00000000 0x0 0x0
0xffffbe0000029180 0001 00000000 0x0 0x0
0xffffbe0000029200 0001 00000000 0x0 0x0
0xffffbe0000029280 0001 00000000 0x0 0x0
0xffffbe0000029300 0001 00000000 0x0 0x0
0xffffbe0000029380 0001 00000000 0x0 0x0
0xffffbe0000029400 0001 00000000 0x0 0x0
0xffffbe0000029480 0001 00000000 0x0 0x0
0xffffbe0000029500 0001 00000000 0x0 0x0
0xffffbe0000029580 0001 00000000 0x0 0x0
0xffffbe0000029600 0001 00000000 0x0 0x0
0xffffbe0000029680 0001 00000000 0x0 0x0
0xffffbe0000029700 0001 00000000 0x0 0x0
0xffffbe0000029780 0001 00000000 0x0 0x0
0xffffbe0000029800 0001 00000000 0x0 0x0
0xffffbe0000029880 0001 00000000 0x0 0x0
0xffffbe0000029900 0001 00000000 0x0 0x0
0xffffbe0000029980 0001 00000000 0x0 0x0
0xffffbe0000029a00 0001 00000000 0x0 0x0
0xffffbe0000029a80 0001 00000000 0x0 0x0
0xffffbe0000029b00 0001 00000000 0x0 0x0
0xffffbe0000029b80 0001 00000000 0x0 0x0
0xffffbe0000029c00 0001 00000000 0x0 0x0
0xffffbe0000029c80 0001 00000000 0x0 0x0
0xffffbe0000029d00 0001 00000000 0x0 0x0
0xffffbe0000029d80 0001 00000000 0x0 0x0
0xffffbe0000029e00 0001 00000000 0x0 0x0
0xffffbe0000029e80 0001 00000000 0x0 0x0
0xffffbe0000029f00 0001 00000000 0x0 0x0
0xffffbe0000029f80 0001 00000000 0x0 0x0
0xffffbe000002a000 0001 00000000 0x0 0x0
0xffffbe000002a080 0001 00000000 0x0 0x0
0xffffbe000002a100 0001 00000000 0x0 0x0
0xffffbe000002a180 0001 00000000 0x0 0x0
0xffffbe000002a200 0001 00000000 0x0 0x0
0xffffbe000002a280 0001 00000000 0x0 0x0
0xffffbe000002a300 0001 00000000 0x0 0x0
0xffffbe000002a380 0001 00000000 0x0 0x0
0xffffbe000002a400 0001 00000000 0x0 0x0
0xffffbe000002a480 0001 00000000 0x0 0x0
0xffffbe000002a500 0001 00000000 0x0 0x0
0xffffbe000002a580 0001 00000000 0x0 0x0
0xffffbe000002a600 0001 00000000 0x0 0x0
0xffffbe000002a680 0001 00000000 0x0 0x0
0xffffbe000002a700 0001 00000000 0x0 0x0
0xffffbe000002a780 0001 00000000 0x0 0x0
0xffffbe000002a800 0001 00000000 0x0 0x0
0xffffbe000002a880 0001 00000000 0x0 0x0
0xffffbe000002a900 0001 00000000 0x0 0x0
0xffffbe000002a980 0001 00000000 0x0 0x0
0xffffbe000002aa00 0001 00000000 0x0 0x0
0xffffbe000002aa80 0001 00000000 0x0 0x0
0xffffbe000002ab00 0001 00000000 0x0 0x0
0xffffbe000002ab80 0001 00000000 0x0 0x0
0xffffbe000002ac00 0001 00000000 0x0 0x0
0xffffbe000002ac80 0001 00000000 0x0 0x0
0xffffbe000002ad00 0001 00000000 0x0 0x0
0xffffbe000002ad80 0001 00000000 0x0 0x0
0xffffbe000002ae00 0001 00000000 0x0 0x0
0xffffbe000002ae80 0001 00000000 0x0 0x0
0xffffbe000002af00 0001 00000000 0x0 0x0
0xffffbe000002af80 0001 00000000 0x0 0x0
0xffffbe000002b000 0001 00000000 0x0 0x0
0xffffbe000002b080 0001 00000000 0x0 0x0
0xffffbe000002b100 0001 00000000 0x0 0x0
0xffffbe000002b180 0001 00000000 0x0 0x0
0xffffbe000002b200 0001 00000000 0x0 0x0
0xffffbe000002b280 0001 00000000 0x0 0x0
0xffffbe000002b300 0001 00000000 0x0 0x0
0xffffbe000002b380 0001 00000000 0x0 0x0
0xffffbe000002b400 0001 00000000 0x0 0x0
0xffffbe000002b480 0001 00000000 0x0 0x0
0xffffbe000002b500 0001 00000000 0x0 0x0
0xffffbe000002b580 0001 00000000 0x0 0x0
0xffffbe000002b600 0001 00000000 0x0 0x0
0xffffbe000002b680 0001 00000000 0x0 0x0
0xffffbe000002b700 0001 00000000 0x0 0x0
0xffffbe000002b780 0001 00000000 0x0 0x0
0xffffbe000002b800 0001 00000000 0x0 0x0
0xffffbe000002b880 0001 00000000 0x0 0x0
0xffffbe000002b900 0001 00000000 0x0 0x0
0xffffbe000002b980 0001 00000000 0x0 0x0
0xffffbe000002ba00 0001 00000000 0x0 0x0
0xffffbe000002ba80 0001 00000000 0x0 0x0
0xffffbe000002bb00 0001 00000000 0x0 0x0
0xffffbe000002bb80 0001 00000000 0x0 0x0
0xffffbe000002bc00 0001 00000000 0x0 0x0
0xffffbe000002bc80 0001 00000000 0x0 0x0
0xffffbe000002bd00 0001 00000000 0x0 0x0
0xffffbe000002bd80 0001 00000000 0x0 0x0
0xffffbe000002be00 0001 00000000 0x0 0x0
0xffffbe000002be80 0001 00000000 0x0 0x0
0xffffbe000002bf00 0001 00000000 0x0 0x0
0xffffbe000002bf80 0001 00000000 0x0 0x0
0xffffbe000002c000 0001 00000000 0x0 0x0
0xffffbe000002c080 0001 00000000 0x0 0x0
0xffffbe000002c100 0001 00000000 0x0 0x0
0xffffbe000002c180 0001 00000000 0x0 0x0
0xffffbe000002c200 0001 00000000 0x0 0x0
0xffffbe000002c280 0001 00000000 0x0 0x0
0xffffbe000002c300 0001 00000000 0x0 0x0
0xffffbe000002c380 0001 00000000 0x0 0x0
0xffffbe000002c400 0001 00000000 0x0 0x0
0xffffbe000002c480 0001 00000000 0x0 0x0
0xffffbe000002c500 0001 00000000 0x0 0x0
0xffffbe000002c580 0001 00000000 0x0 0x0
0xffffbe000002c600 0001 00000000 0x0 0x0
0xffffbe000002c680 0001 00000000 0x0 0x0
0xffffbe000002c700 0001 00000000 0x0 0x0
0xffffbe000002c780 0001 00000000 0x0 0x0
0xffffbe000002c800 0001 00000000 0x0 0x0
0xffffbe000002c880 0001 00000000 0x0 0x0
0xffffbe000002c900 0001 00000000

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

syzbot

unread,
Jul 7, 2022, 5:37:20 AM7/7/22
to syzkaller-...@googlegroups.com
syzbot has found a reproducer for the following issue on:

HEAD commit: 00db161ce6c4 lint: do not warn about 'may lose accuracy' i..
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=12715d68080000
kernel config: https://syzkaller.appspot.com/x/.config?x=fab579639ba4bf0a
dashboard link: https://syzkaller.appspot.com/bug?extid=19b1bf83e5481273eafc
compiler: g++ (Debian 10.2.1-6) 10.2.1 20210110
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=16ede6f0080000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=1185220c080000

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+19b1bf...@syzkaller.appspotmail.com

[ 50.5019408] fatal page fault in supervisor mode
[ 50.5119393] uvm_fault(0xffffae8013cd40a8, 0xffff900000000000, 1) -> e
[ 50.5119393] trap type 6 code 0 rip 0xffffffff81b85a3b cs 0x8 rflags 0x10283 cr2 0xffff900000000001 ilevel 0 rsp 0xffffae819db273f0
[ 50.5219380] uvm_fault(0xffffae8013cd4368, 0xffff900000000000, 1) -> e
[ 50.5219380] curlwp 0xffffae8013cc11c0 pid 1224.1224 lowest kstack 0xffffae819db202c0
[ 50.53769k1er2n] e l:in pasgupee rfavuislotr trmaopd,e c
otdrae=p0 [
Stopped in pid 1224.1224 (syz-executor2661) at netbsd:__asan_load8+0x6c: movzbl 0(%rax),%r8d
?
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_1byte_isvalid sys/kern/subr_asan.c:310 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_2byte_isvalid sys/kern/subr_asan.c:323 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_4byte_isvalid sys/kern/subr_asan.c:343 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_8byte_isvalid sys/kern/subr_asan.c:363 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c kasan_shadow_check sys/kern/subr_asan.c:420 [inline]
__asan_load8() at netbsd:__asan_load8+0x6c sys/kern/subr_asan.c:1207
compat_ifconf() at netbsd:compat_ifconf+0xd2 sys/compat/common/uipc_syscalls_40.c:44
doifioctl() at netbsd:doifioctl+0x1b8 sys/net/if.c:3394
soo_ioctl() at netbsd:soo_ioctl+0x3c7 sys/kern/sys_socket.c:210
sys_ioctl() at netbsd:sys_ioctl+0x1d1 sys/kern/sys_generic.c:673
sys_syscall() at netbsd:sys_syscall+0x10e sy_call sys/sys/syscallvar.h:65 [inline]
sys_syscall() at netbsd:sys_syscall+0x10e sys/kern/sys_syscall.c:90
syscall() at netbsd:syscall+0x25a sy_call sys/sys/syscallvar.h:65 [inline]
syscall() at netbsd:syscall+0x25a sy_invoke sys/sys/syscallvar.h:94 [inline]
syscall() at netbsd:syscall+0x25a sys/arch/x86/x86/syscall.c:138
--- syscall (number 54 via SYS_syscall) ---
netbsd:syscall+0x25a:
Panic string: (null)
PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
1082 1082 2 0 0 ffffae8013cec640 syz-executor2661
1000 1000 2 0 0 ffffae8013cec200 syz-executor2661
987 987 2 0 0 ffffae8013cc1a40 syz-executor2661
989 989 2 0 0 ffffae8013cc1600 syz-executor2661
1224 >1224 7 1 0 ffffae8013cc11c0 syz-executor2661
422 422 3 0 180 ffffae8013c34a00 syz-executor2661 nanoslp
1129 1129 3 1 180 ffffae8013c345c0 syz-executor2661 nanoslp
1195 1195 3 0 180 ffffae80133b4680 syz-executor2661 nanoslp
1220 >1220 7 0 0 ffffae80133b4240 syz-executor2661
820 820 3 1 180 ffffae8013392a40 syz-executor2661 nanoslp
1223 1223 3 1 180 ffffae8013392600 syz-executor2661 nanoslp
1222 1222 3 1 180 ffffae801341bb80 syz-executor2661 nanoslp
1084 1084 3 0 180 ffffae8012b490c0 syz-executor2661 nanoslp
965 965 3 1 40180 ffffae8012aa3900 sshd select
1068 1068 3 0 180 ffffae80126c8300 getty nanoslp
1073 1073 3 0 180 ffffae8012d02700 getty nanoslp
1074 1074 3 0 180 ffffae80126cb040 getty nanoslp
1258 1258 3 0 1c0 ffffae80134749c0 getty ttyraw
926 926 3 0 180 ffffae801337f5c0 sshd select
942 942 3 1 180 ffffae801339c200 powerd kqueue
687 687 3 1 180 ffffae80133b4ac0 syslogd kqueue
547 547 3 0 180 ffffae8012c00ac0 dhcpcd poll
546 546 3 1 180 ffffae8012c854c0 dhcpcd poll
600 600 3 1 180 ffffae8012c00680 dhcpcd poll
587 587 3 0 180 ffffae8012c51300 dhcpcd poll
289 289 3 0 180 ffffae8012d85080 dhcpcd poll
288 288 3 0 180 ffffae8012d6c8c0 dhcpcd poll
351 351 3 1 180 ffffae8012d6c480 dhcpcd poll
1 1 3 0 180 ffffae80128549c0 init wait
0 819 3 0 200 ffffae8012974ac0 physiod physiod
0 194 3 0 200 ffffae801298bb00 pooldrain pooldrain
0 193 3 0 200 ffffae801298b6c0 ioflush syncer
0 192 3 1 200 ffffae801298b280 pgdaemon pgdaemon
0 169 3 1 200 ffffae8012974240 usb7 usbevt
0 167 3 1 200 ffffae801292ea80 usb6 usbevt
0 165 3 1 200 ffffae801292e640 usb5 usbevt
0 164 3 1 200 ffffae801292e200 usb4 usbevt
0 31 3 1 200 ffffae80128e0a40 usb3 usbevt
0 63 3 1 200 ffffae80128e0600 usb2 usbevt
0 126 3 1 200 ffffae80128e01c0 usb1 usbevt
0 125 3 1 200 ffffae8012871a00 usb0 usbevt
0 124 3 1 200 ffffae80128715c0 usbtask-dr usbtsk
0 123 3 1 200 ffffae80120b66c0 usbtask-hc usbtsk
0 122 3 0 200 ffffae8012871180 npfgc0 npfgcw
0 121 3 1 200 ffffae8012854580 rt_free rt_free
0 120 3 1 200 ffffae8012854140 unpgc unpgc
0 119 3 0 200 ffffae80126f9980 key_timehandler key_timehandler
0 118 3 1 200 ffffae80126f9540 icmp6_wqinput/1 icmp6_wqinput
0 117 3 0 200 ffffae80126f9100 icmp6_wqinput/0 icmp6_wqinput
0 116 3 0 200 ffffae80126ee940 nd6_timer nd6_timer
0 115 3 1 200 ffffae80126ee500 carp6_wqinput/1 carp6_wqinput
0 114 3 0 200 ffffae80126ee0c0 carp6_wqinput/0 carp6_wqinput
0 113 3 1 200 ffffae80126df900 carp_wqinput/1 carp_wqinput
0 112 3 0 200 ffffae80126df4c0 carp_wqinput/0 carp_wqinput
0 111 3 1 200 ffffae80126df080 icmp_wqinput/1 icmp_wqinput
0 110 3 0 200 ffffae80126cb8c0 icmp_wqinput/0 icmp_wqinput
0 109 3 0 200 ffffae80126cb480 rt_timer rt_timer
0 108 3 0 200 ffffae80126cabc0 vmem_rehash vmem_rehash
0 99 3 0 200 ffffae80120bbb40 entbutler entropy
0 98 3 1 200 ffffae80120bb700 viomb balloon
0 97 3 1 200 ffffae80120bb2c0 vioif0_txrx/1 vioif0_txrx
0 96 3 0 200 ffffae80120b6b00 vioif0_txrx/0 vioif0_txrx
0 29 3 0 200 ffffae80120b6280 scsibus0 sccomp
0 28 3 0 200 ffffae8010cbaac0 pms0 pmsreset
0 27 3 1 200 ffffae8010cba680 xcall/1 xcall
0 26 1 1 200 ffffae8010cba240 softser/1
0 25 1 1 200 ffffae8010cb9a80 softclk/1
0 24 1 1 200 ffffae8010cb9640 softbio/1
0 23 1 1 200 ffffae8010cb9200 softnet/1
0 22 1 1 201 ffffae800fb55a40 idle/1
0 21 3 0 200 ffffae800fb55600 lnxsyswq lnxsyswq
0 20 3 0 200 ffffae800fb551c0 lnxubdwq lnxubdwq
0 19 3 0 200 ffffae800fb54a00 lnxpwrwq lnxpwrwq
0 18 3 0 200 ffffae800fb545c0 lnxlngwq lnxlngwq
0 17 3 1 200 ffffae800fb54180 lnxhipwq lnxhipwq
0 16 3 1 200 ffffae800fb4b9c0 lnxrcugc lnxrcugc
0 15 3 0 200 ffffae800fb4b580 sysmon smtaskq
0 14 3 0 200 ffffae800fb4b140 pmfsuspend pmfsuspend
0 13 3 0 200 ffffae800fb48980 pmfevent pmfevent
0 12 3 0 200 ffffae800fb48540 sopendfree sopendfr
0 11 3 0 200 ffffae800fb48100 iflnkst iflnkst
0 10 3 0 200 ffffae800fb3c940 nfssilly nfssilly
0 9 3 0 200 ffffae800fb3c500 vdrain vdrain
0 8 3 0 200 ffffae800fb3c0c0 modunload mod_unld
0 7 3 0 200 ffffae800fb33900 xcall/0 xcall
0 6 1 0 200 ffffae800fb334c0 softser/0
0 5 1 0 200 ffffae800fb33080 softclk/0
0 4 1 0 200 ffffae800fb318c0 softbio/0
0 3 1 0 200 ffffae800fb31480 softnet/0
0 2 1 0 201 ffffae800fb31040 idle/0
0 0 3 0 200 ffffffff83341700 swapper uvm
[Locks tracked through LWPs]

****** LWP 989.989 (syz-executor2661) @ 0xffffae8013cc1600, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at uvmspace_alloc)
lock address : 0xffffae8013477e68 type : sleep/adaptive
initialized : 0xffffffff81a78bd7
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 1
relevant cpu : 0 last held: 65535
relevant lwp : 0xffffae8013cc1600 last held: 000000000000000000
last locked : 0xffffffff81a615a0 unlocked*: 0xffffffff81a64647
owner/count : 000000000000000000 flags : 000000000000000000
Turnstile: no active turnstile for this lock.

****** LWP 1220.1220 (syz-executor2661) @ 0xffffae80133b4240, l_stat=7

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at loginit)
lock address : 0xffffffff835864a0 type : spin
initialized : 0xffffffff81bb59f2
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 1
relevant cpu : 0 last held: 0
relevant lwp : 0xffffae80133b4240 last held: 000000000000000000
last locked : 0xffffffff81bb5dcb unlocked*: 0xffffffff81bb5c7c
owner field : 0x0000000000010600 wait/spin: 0/1

****** LWP 546.546 (dhcpcd) @ 0xffffae8012c854c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffae8012c854c0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 600.600 (dhcpcd) @ 0xffffae8012c00680, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffae8012c00680 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 288.288 (dhcpcd) @ 0xffffae8012d6c8c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffae8012d6c8c0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 351.351 (dhcpcd) @ 0xffffae8012d6c480, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffae8012d6c480 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xffffae800fb48100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffae800fb48100 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.5 (softclk/0) @ 0xffffae800fb33080, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffae800fb33080 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.0 (swapper) @ 0xffffffff83341700, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12681
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffffff83341700 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

******* Locks held on cpu0:

* Lock 0 (initialized at kprintf_init)
lock address : 0xffffffff8358aea0 type : spin
initialized : 0xffffffff81bc48f5
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffae80133b4240 last held: 0xffffae80133b4240
last locked* : 0xffffffff81bc93cd unlocked : 0xffffffff81bc49c4
owner field : 0x0000000000010800 wait/spin: 0/1

PAGE FLAG PQ UOBJECT UANON
0xffffae8000017180 0041 00000000 0x0 0x0
0xffffae8000017200 0041 00000000 0x0 0x0
0xffffae8000017280 0041 00000000 0x0 0x0
0xffffae8000017300 0041 00000000 0x0 0x0
0xffffae8000017380 0041 00000000 0x0 0x0
0xffffae8000017400 0041 00000000 0x0 0x0
0xffffae8000017480 0041 00000000 0x0 0x0
0xffffae8000017500 0041 00000000 0x0 0x0
0xffffae8000017580 0041 00000000 0x0 0x0
0xffffae8000017600 0041 00000000 0x0 0x0
0xffffae8000017680 0041 00000000 0x0 0x0
0xffffae8000017700 0041 00000000 0x0 0x0
0xffffae8000017780 0041 00000000 0x0 0x0
0xffffae8000017800 0041 00000000 0x0 0x0
0xffffae8000017880 0041 00000000 0x0 0x0
0xffffae8000017900 0041 00000000 0x0 0x0
0xffffae8000017980 0041 00000000 0x0 0x0
0xffffae8000017a00 0041 00000000 0x0 0x0
0xffffae8000017a80 0041 00000000 0x0 0x0
0xffffae8000017b00 0041 00000000 0x0 0x0
0xffffae8000017b80 0041 00000000 0x0 0x0
0xffffae8000017c00 0041 00000000 0x0 0x0
0xffffae8000017c80 0041 00000000 0x0 0x0
0xffffae8000017d00 0041 00000000 0x0 0x0
0xffffae8000017d80 0041 00000000 0x0 0x0
0xffffae8000017e00 0041 00000000 0x0 0x0
0xffffae8000017e80 0041 00000000 0x0 0x0
0xffffae8000017f00 0041 00000000 0x0 0x0
0xffffae8000017f80 0041 00000000 0x0 0x0
0xffffae8000018000 0041 00000000 0x0 0x0
0xffffae8000018080 0041 00000000 0x0 0x0
0xffffae8000018100 0041 00000000 0x0 0x0
0xffffae8000018180 0041 00000000 0x0 0x0
0xffffae8000018200 0041 00000000 0x0 0x0
0xffffae8000018280 0041 00000000 0x0 0x0
0xffffae8000018300 0041 00000000 0x0 0x0
0xffffae8000018380 0041 00000000 0x0 0x0
0xffffae8000018400 0041 00000000 0x0 0x0
0xffffae8000018480 0041 00000000 0x0 0x0
0xffffae8000018500 0041 00000000 0x0 0x0
0xffffae8000018580 0041 00000000 0x0 0x0
0xffffae8000018600 0041 00000000 0x0 0x0
0xffffae8000018680 0041 00000000 0x0 0x0
0xffffae8000018700 0041 00000000 0x0 0x0
0xffffae8000018780 0041 00000000 0x0 0x0
0xffffae8000018800 0041 00000000 0x0 0x0
0xffffae8000018880 0041 00000000 0x0 0x0
0xffffae8000018900 0041 00000000 0x0 0x0
0xffffae8000018980 0041 00000000 0x0 0x0
0xffffae8000018a00 0041 00000000 0x0 0x0
0xffffae8000018a80 0041 00000000 0x0 0x0
0xffffae8000018b00 0041 00000000 0x0 0x0
0xffffae8000018b80 0041 00000000 0x0 0x0
0xffffae8000018c00 0041 00000000 0x0 0x0
0xffffae8000018c80 0041 00000000 0x0 0x0
0xffffae8000018d00 0041 00000000 0x0 0x0
0xffffae8000018d80 0041 00000000 0x0 0x0
0xffffae8000018e00 0041 00000000 0x0 0x0
0xffffae8000018e80 0041 00000000 0x0 0x0
0xffffae8000018f00 0041 00000000 0x0 0x0
0xffffae8000018f80 0041 00000000 0x0 0x0
0xffffae8000019000 0041 00000000 0x0 0x0
0xffffae8000019080 0041 00000000 0x0 0x0
0xffffae8000019100 0041 00000000 0x0 0x0
0xffffae8000019180 0041 00000000 0x0 0x0
0xffffae8000019200 0041 00000000 0x0 0x0
0xffffae8000019280 0041 00000000 0x0 0x0
0xffffae8000019300 0041 00000000 0x0 0x0
0xffffae8000019380 0041 00000000 0x0 0x0
0xffffae8000019400 0041 00000000 0x0 0x0
0xffffae8000019480 0041 00000000 0x0 0x0
0xffffae8000019500 0041 00000000 0x0 0x0
0xffffae8000019580 0041 00000000 0x0 0x0
0xffffae8000019600 0041 00000000 0x0 0x0
0xffffae8000019680 0041 00000000 0x0 0x0
0xffffae8000019700 0041 00000000 0x0 0x0
0xffffae8000019780 0041 00000000 0x0 0x0
0xffffae8000019800 0041 00000000 0x0 0x0
0xffffae8000019880 0041 00000000 0x0 0x0
0xffffae8000019900 0041 00000000 0x0 0x0
0xffffae8000019980 0041 00000000 0x0 0x0
0xffffae8000019a00 0041 00000000 0x0 0x0
0xffffae8000019a80 0041 00000000 0x0 0x0
0xffffae8000019b00 0041 00000000 0x0 0x0
0xffffae8000019b80 0041 00000000 0x0 0x0
0xffffae8000019c00 0041 00000000 0x0 0x0
0xffffae8000019c80 0041 00000000 0x0 0x0
0xffffae8000019d00 0041 00000000 0x0 0x0
0xffffae8000019d80 0041 00000000 0x0 0x0
0xffffae8000019e00 0041 00000000 0x0 0x0
0xffffae8000019e80 0041 00000000 0x0 0x0
0xffffae8000019f00 0041 00000000 0x0 0x0
0xffffae8000019f80 0041 00000000 0x0 0x0
0xffffae800001a000 0041 00000000 0x0 0x0
0xffffae800001a080 0041 00000000 0x0 0x0
0xffffae800001a100 0041 00000000 0x0 0x0
0xffffae800001a180 0041 00000000 0x0 0x0
0xffffae800001a200 0041 00000000 0x0 0x0
0xffffae800001a280 0041 00000000 0x0 0x0
0xffffae800001a300 0041 00000000 0x0 0x0
0xffffae800001a380 0041 00000000 0x0 0x0
0xffffae800001a400 0041 00000000 0x0 0x0
0xffffae800001a480 0041 00000000 0x0 0x0
0xffffae800001a500 0041 00000000 0x0 0x0
0xffffae800001a580 0041 00000000 0x0 0x0
0xffffae800001a600 0041 00000000 0x0 0x0
0xffffae800001a680 0041 00000000 0x0 0x0
0xffffae800001a700 0041 00000000 0x0 0x0
0xffffae800001a780 0041 00000000 0x0 0x0
0xffffae800001a800 0041 00000000 0x0 0x0
0xffffae800001a880 0041 00000000 0x0 0x0
0xffffae800001a900 0041 00000000 0x0 0x0
0xffffae800001a980 0041 00000000 0x0 0x0
0xffffae800001aa00 0041 00000000 0x0 0x0
0xffffae800001aa80 0041 00000000 0x0 0x0
0xffffae800001ab00 0041 00000000 0x0 0x0
0xffffae800001ab80 0041 00000000 0x0 0x0
0xffffae800001ac00 0041 00000000 0x0 0x0
0xffffae800001ac80 0041 00000000 0x0 0x0
0xffffae800001ad00 0041 00000000 0x0 0x0
0xffffae800001ad80 0041 00000000 0x0 0x0
0xffffae800001ae00 0041 00000000 0x0 0x0
0xffffae800001ae80 0041 00000000 0x0 0x0
0xffffae800001af00 0041 00000000 0x0 0x0
0xffffae800001af80 0041 00000000 0x0 0x0
0xffffae800001b000 0041 00000000 0x0 0x0
0xffffae800001b080 0041 00000000 0x0 0x0
0xffffae800001b100 0041 00000000 0x0 0x0
0xffffae800001b180 0041 00000000 0x0 0x0
0xffffae800001b200 0041 00000000 0x0 0x0
0xffffae800001b280 0041 00000000 0x0 0x0
0xffffae800001b300 0041 00000000 0x0 0x0
0xffffae800001b380 0041 00000000 0x0 0x0
0xffffae800001b400 0041 00000000 0x0 0x0
0xffffae800001b480 0041 00000000 0x0 0x0
0xffffae800001b500 0041 00000000 0x0 0x0
0xffffae800001b580 0041 00000000 0x0 0x0
0xffffae800001b600 0041 00000000 0x0 0x0
0xffffae800001b680 0041 00000000 0x0 0x0
0xffffae800001b700 0041 00000000 0x0 0x0
0xffffae800001b780 0041 00000000 0x0 0x0
0xffffae800001b800 0041 00000000 0x0 0x0
0xffffae800001b880 0041 00000000 0x0 0x0
0xffffae800001b900 0041 00000000 0x0 0x0
0xffffae800001b980 0041 00000000 0x0 0x0
0xffffae800001ba00 0041 00000000 0x0 0x0
0xffffae800001ba80 0001 00000000 0x0 0x0
0xffffae800001bb00 0001 00000000 0x0 0x0
0xffffae800001bb80 0001 00000000 0x0 0x0
0xffffae800001bc00 0001 00000000 0x0 0x0
0xffffae800001bc80 0001 00000000 0x0 0x0
0xffffae800001bd00 0001 00000000 0x0 0x0
0xffffae800001bd80 0001 00000000 0x0 0x0
0xffffae800001be00 0001 00000000 0x0 0x0
0xffffae800001be80 0001 00000000 0x0 0x0
0xffffae800001bf00 0001 00000000 0x0 0x0
0xffffae800001bf80 0001 00000000 0x0 0x0
0xffffae800001c000 0001 00000000 0x0 0x0
0xffffae800001c080 0001 00000000 0x0 0x0
0xffffae800001c100 0001 00000000 0x0 0x0
0xffffae800001c180 0001 00000000 0x0 0x0
0xffffae800001c200 0001 00000000 0x0 0x0
0xffffae800001c280 0001 00000000 0x0 0x0
0xffffae800001c300 0001 00000000 0x0 0x0
0xffffae800001c380 0001 00000000 0x0 0x0
0xffffae800001c400 0001 00000000 0x0 0x0
0xffffae800001c480 0001 00000000 0x0 0x0
0xffffae800001c500 0001 00000000 0x0 0x0
0xffffae800001c580 0001 00000000 0x0 0x0
0xffffae800001c600 0001 00000000 0x0 0x0
0xffffae800001c680 0001 00000000 0x0 0x0
0xffffae800001c700 0001 00000000 0x0 0x0
0xffffae800001c780 0001 00000000 0x0 0x0
0xffffae800001c800 0001 00000000 0x0 0x0
0xffffae800001c880 0001 00000000 0x0 0x0
0xffffae800001c900 0001 00000000 0x0 0x0
0xffffae800001c980 0001 00000000 0x0 0x0
0xffffae800001ca00 0001 00000000 0x0 0x0
0xffffae800001ca80 0001 00000000 0x0 0x0
0xffffae800001cb00 0001 00000000 0x0 0x0
0xffffae800001cb80 0001 00000000 0x0 0x0
0xffffae800001cc00 0001 00000000 0x0 0x0
0xffffae800001cc80 0001 00000000 0x0 0x0
0xffffae800001cd00 0001 00000000 0x0 0x0
0xffffae800001cd80 0001 00000000 0x0 0x0
0xffffae800001ce00 0001 00000000 0x0 0x0
0xffffae800001ce80 0001 00000000 0x0 0x0
0xffffae800001cf00 0001 00000000 0x0 0x0
0xffffae800001cf80 0001 00000000 0x0 0x0
0xffffae800001d000 0001 00000000 0x0 0x0
0xffffae800001d080 0001 00000000 0x0 0x0
0xffffae800001d100 0001 00000000 0x0 0x0
0xffffae800001d180 0001 00000000 0x0 0x0
0xffffae800001d200 0001 00000000 0x0 0x0
0xffffae800001d280 0001 00000000 0x0 0x0
0xffffae800001d300 0001 00000000 0x0 0x0
0xffffae800001d380 0001 00000000 0x0 0x0
0xffffae800001d400 0001 00000000 0x0 0x0
0xffffae800001d480 0001 00000000 0x0 0x0
0xffffae800001d500 0001 00000000 0x0 0x0
0xffffae800001d580 0001 00000000 0x0 0x0
0xffffae800001d600 0001 00000000 0x0 0x0
0xffffae800001d680 0001 00000000 0x0 0x0
0xffffae800001d700 0001 00000000 0x0 0x0
0xffffae800001d780 0001 00000000 0x0 0x0
0xffffae800001d800 0001 00000000 0x0 0x0
0xffffae800001d880 0001 00000000 0x0 0x0
0xffffae800001d900 0001 00000000 0x0 0x0
0xffffae800001d980 0001 00000000 0x0 0x0
0xffffae800001da00 0001 00000000 0x0 0x0
0xffffae800001da80 0001 00000000 0x0 0x0
0xffffae800001db00 0001 00000000 0x0 0x0
0xffffae800001db80 0001 00000000 0x0 0x0
0xffffae800001dc00 0001 00000000 0x0 0x0
0xffffae800001dc80 0001 00000000 0x0 0x0
0xffffae800001dd00 0001 00000000 0x0 0x0
0xffffae800001dd80 0001 00000000 0x0 0x0
0xffffae800001de00 0001 00000000 0x0 0x0
0xffffae800001de80 0001 00000000 0x0 0x0
0xffffae800001df00 0001 00000000 0x0 0x0
0xffffae800001df80 0001 00000000 0x0 0x0
0xffffae800001e000 0001 00000000 0x0 0x0
0xffffae800001e080 0001 00000000 0x0 0x0
0xffffae800001e100 0001 00000000 0x0 0x0
0xffffae800001e180 0001 00000000 0x0 0x0
0xffffae800001e200 0001 00000000 0x0 0x0
0xffffae800001e280 0001 00000000 0x0 0x0
0xffffae800001e300 0001 00000000 0x0 0x0
0xffffae800001e380 0001 00000000 0x0 0x0
0xffffae800001e400 0001 00000000 0x0 0x0
0xffffae800001e480 0001 00000000 0x0 0x0
0xffffae800001e500 0001 00000000 0x0 0x0
0xffffae800001e580 0001 00000000 0x0 0x0
0xffffae800001e600 0001 00000000 0x0 0x0
0xffffae800001e680 0001 00000000 0x0 0x0
0xffffae800001e700 0001 00000000 0x0 0x0
0xffffae800001e780 0001 00000000 0x0 0x0
0xffffae800001e800 0001 00000000 0x0 0x0
0xffffae800001e880 0001 00000000 0x0 0x0
0xffffae800001e900 0001 00000000 0x0 0x0
0xffffae800001e980 0001 00000000 0x0 0x0
0xffffae800001ea00 0001 00000000 0x0 0x0
0xffffae800001ea80 0001 00000000 0x0 0x0
0xffffae800001eb00 0001 00000000 0x0 0x0
0xffffae800001eb80 0001 00000000 0x0 0x0
0xffffae800001ec00 0001 00000000 0x0 0x0
0xffffae800001ec80 0001 00000000 0x0 0x0
0xffffae800001ed00 0001 00000000 0x0 0x0
0xffffae800001ed80 0001 00000000 0x0 0x0
0xffffae800001ee00 0001 00000000 0x0 0x0
0xffffae800001ee80 0001 00000000 0x0 0x0
0xffffae800001ef00 0001 00000000 0x0 0x0
0xffffae800001ef80 0001 00000000 0x0 0x0
0xffffae800001f000 0001 00000000 0x0 0x0
0xffffae800001f080 0001 00000000 0x0 0x0
0xffffae800001f100 0001 00000000 0x0 0x0
0xffffae800001f180 0001 00000000 0x0 0x0
0xffffae800001f200 0001 00000000 0x0 0x0
0xffffae800001f280 0001 00000000 0x0 0x0
0xffffae800001f300 0001 00000000 0x0 0x0
0xffffae800001f380 0001 00000000 0x0 0x0
0xffffae800001f400 0001 00000000 0x0 0x0
0xffffae800001f480 0001 00000000 0x0 0x0
0xffffae800001f500 0001 00000000 0x0 0x0
0xffffae800001f580 0001 00000000 0x0 0x0
0xffffae800001f600 0001 00000000 0x0 0x0
0xffffae800001f680 0001 00000000 0x0 0x0
0xffffae800001f700 0001 00000000 0x0 0x0
0xffffae800001f780 0001 00000000 0x0 0x0
0xffffae800001f800 0001 00000000 0x0 0x0
0xffffae800001f880 0001 00000000 0x0 0x0
0xffffae800001f900 0001 00000000 0x0 0x0
0xffffae800001f980 0001 00000000 0x0 0x0
0xffffae800001fa00 0001 00000000 0x0 0x0
0xffffae800001fa80 0001 00000000 0x0 0x0
0xffffae800001fb00 0001 00000000 0x0 0x0
0xffffae800001fb80 0001 00000000 0x0 0x0
0xffffae800001fc00 0001 00000000 0x0 0x0
0xffffae800001fc80 0001 00000000 0x0 0x0
0xffffae800001fd00 0001 00000000 0x0 0x0
0xffffae800001fd80 0001 00000000 0x0 0x0
0xffffae800001fe00 0001 00000000 0x0 0x0
0xffffae800001fe80 0001 00000000 0x0 0x0
0xffffae800001ff00 0001 00000000 0x0 0x0
0xffffae800001ff80 0001 00000000 0x0 0x0
0xffffae8000020000 0001 00000000 0x0 0x0
0xffffae8000020080 0001 00000000 0x0 0x0
0xffffae8000020100 0001 00000000 0x0 0x0
0xffffae8000020180 0001 00000000 0x0 0x0
0xffffae8000020200 0001 00000000 0x0 0x0
0xffffae8000020280 0001 00000000 0x0 0x0
0xffffae8000020300 0001 00000000 0x0 0x0
0xffffae8000020380 0001 00000000 0x0 0x0
0xffffae8000020400 0001 00000000 0x0 0x0
0xffffae8000020480 0001 00000000 0x0 0x0
0xffffae8000020500 0001 00000000 0x0 0x0
0xffffae8000020580 0001 00000000 0x0 0x0
0xffffae8000020600 0001 00000000 0x0 0x0
0xffffae8000020680 0001 00000000 0x0 0x0
0xffffae8000020700 0001 00000000 0x0 0x0
0xffffae8000020780 0001 00000000 0x0 0x0
0xffffae8000020800 0001 00000000 0x0 0x0
0xffffae8000020880 0001 00000000 0x0 0x0
0xffffae8000020900 0001 00000000 0x0 0x0
0xffffae8000020980 0001 00000000 0x0 0x0
0xffffae8000020a00 0001 00000000 0x0 0x0
0xffffae8000020a80 0001 00000000 0x0 0x0
0xffffae8000020b00 0001 00000000 0x0 0x0
0xffffae8000020b80 0001 00000000 0x0 0x0
0xffffae8000020c00 0001 00000000 0x0 0x0
0xffffae8000020c80 0001 00000000 0x0 0x0
0xffffae8000020d00 0001 00000000 0x0 0x0
0xffffae8000020d80 0001 00000000 0x0 0x0
0xffffae8000020e00 0001 00000000 0x0 0x0
0xffffae8000020e80 0001 00000000 0x0 0x0
0xffffae8000020f00 0001 00000000 0x0 0x0
0xffffae8000020f80 0001 00000000 0x0 0x0
0xffffae8000021000 0001 00000000 0x0 0x0
0xffffae8000021080 0001 00000000 0x0 0x0
0xffffae8000021100 0001 00000000 0x0 0x0
0xffffae8000021180 0001 00000000 0x0 0x0
0xffffae8000021200 0001 00000000 0x0 0x0
0xffffae8000021280 0001 00000000 0x0 0x0
0xffffae8000021300 0001 00000000 0x0 0x0
0xffffae8000021380 0001 00000000 0x0 0x0
0xffffae8000021400 0001 00000000 0x0 0x0
0xffffae8000021480 0001 00000000 0x0 0x0
0xffffae8000021500 0001 00000000 0x0 0x0
0xffffae8000021580 0001 00000000 0x0 0x0
0xffffae8000021600 0001 00000000 0x0 0x0
0xffffae8000021680 0001 00000000 0x0 0x0
0xffffae8000021700 0001 00000000 0x0 0x0
0xffffae8000021780 0001 00000000 0x0 0x0
0xffffae8000021800 0001 00000000 0x0 0x0
0xffffae8000021880 0001 00000000 0x0 0x0
0xffffae8000021900 0001 00000000 0x0 0x0
0xffffae8000021980 0001 00000000 0x0 0x0
0xffffae8000021a00 0001 00000000 0x0 0x0
0xffffae8000021a80 0001 00000000 0x0 0x0
0xffffae8000021b00 0001 00000000 0x0 0x0
0xffffae8000021b80 0001 00000000 0x0 0x0
0xffffae8000021c00 0001 00000000 0x0 0x0
0xffffae8000021c80 0001 00000000 0x0 0x0
0xffffae8000021d00 0001 00000000 0x0 0x0
0xffffae8000021d80 0001 00000000 0x0 0x0
0xffffae8000021e00 0001 00000000 0x0 0x0
0xffffae8000021e80 0001 00000000 0x0 0x0
0xffffae8000021f00 0001 00000000 0x0 0x0
0xffffae8000021f80 0001 00000000 0x0 0x0
0xffffae8000022000 0001 00000000 0x0 0x0
0xffffae8000022080 0001 00000000 0x0 0x0
0xffffae8000022100 0001 00000000 0x0 0x0
0xffffae8000022180 0001 00000000 0x0 0x0
0xffffae8000022200 0001 00000000 0x0 0x0
0xffffae8000022280 0001 00000000 0x0 0x0
0xffffae8000022300 0001 00000000 0x0 0x0
0xffffae8000022380 0001 00000000 0x0 0x0
0xffffae8000022400 0001 00000000 0x0 0x0
0xffffae8000022480 0001 00000000 0x0 0x0
0xffffae8000022500 0001 00000000 0x0 0x0
0xffffae8000022580 0001 00000000 0x0 0x0
0xffffae8000022600 0001 00000000 0x0 0x0
0xffffae8000022680 0001 00000000 0x0 0x0
0xffffae8000022700 0001 00000000 0x0 0x0
0xffffae8000022780 0001 00000000 0x0 0x0
0xffffae8000022800 0001 00000000 0x0 0x0
0xffffae8000022880 0001 00000000 0x0 0x0
0xffffae8000022900 0001 00000000 0x0 0x0
0xffffae8000022980 0001 00000000 0x0 0x0
0xffffae8000022a00 0001 00000000 0x0 0x0
0xffffae8000022a80 0001 00000000 0x0 0x0
0xffffae8000022b00 0001 00000000 0x0 0x0
0xffffae8000022b80 0001 00000000 0x0 0x0
0xffffae8000022c00 0001 00000000 0x0 0x0
0xffffae8000022c80 0001 00000000 0x0 0x0
0xffffae8000022d00 0001 00000000 0x0 0x0
0xffffae8000022d80 0001 00000000 0x0 0x0
0xffffae8000022e00 0001 00000000 0x0 0x0
0xffffae8000022e80 0001 00000000 0x0 0x0
0xffffae8000022f00 0001 00000000 0x0 0x0
0xffffae8000022f80 0001 00000000 0x0 0x0
0xffffae8000023000 0001 00000000 0x0 0x0
0xffffae8000023080 0001 00000000 0x0 0x0
0xffffae8000023100 0001 00000000 0x0 0x0
0xffffae8000023180 0001 00000000 0x0 0x0
0xffffae8000023200 0001 00000000 0x0 0x0
0xffffae8000023280 0001 00000000 0x0 0x0
0xffffae8000023300 0001 00000000 0x0 0x0
0xffffae8000023380 0001 00000000 0x0 0x0
0xffffae8000023400 0001 00000000 0x0 0x0
0xffffae8000023480 0001 00000000 0x0 0x0
0xffffae8000023500 0001 00000000 0x0 0x0
0xffffae8000023580 0001 00000000 0x0 0x0
0xffffae8000023600 0001 00000000 0x0 0x0
0xffffae8000023680 0001 00000000 0x0 0x0
0xffffae8000023700 0001 00000000 0x0 0x0
0xffffae8000023780 0001 00000000 0x0 0x0
0xffffae8000023800 0001 00000000 0x0 0x0
0xffffae8000023880 0001 00000000 0x0 0x0
0xffffae8000023900 0001 00000000 0x0 0x0
0xffffae8000023980 0001 00000000 0x0 0x0
0xffffae8000023a00 0001 00000000 0x0 0x0
0xffffae8000023a80 0001 00000000 0x0 0x0
0xffffae8000023b00 0001 00000000 0x0 0x0
0xffffae8000023b80 0001 00000000 0x0 0x0
0xffffae8000023c00 0001 00000000 0x0 0x0
0xffffae8000023c80 0001 00000000 0x0 0x0
0xffffae8000023d00 0001 00000000 0x0 0x0
0xffffae8000023d80 0001 00000000 0x0 0x0
0xffffae8000023e00 0001 00000000 0x0 0x0
0xffffae8000023e80 0001 00000000 0x0 0x0
0xffffae8000023f00 0001 00000000 0x0 0x0
0xffffae8000023f80 0001 00000000 0x0 0x0
0xffffae8000024000 0001 00000000 0x0 0x0
0xffffae8000024080 0001 00000000 0x0 0x0
0xffffae8000024100 0001 00000000 0x0 0x0
0xffffae8000024180 0001 00000000 0x0 0x0
0xffffae8000024200 0001 00000000 0x0 0x0
0xffffae8000024280 0001 00000000 0x0 0x0
0xffffae8000024300 0001 00000000 0x0 0x0
0xffffae8000024380 0001 00000000 0x0 0x0
0xffffae8000024400 0001 00000000 0x0 0x0
0xffffae8000024480 0001 00000000 0x0 0x0
0xffffae8000024500 0001 00000000 0x0 0x0
0xffffae8000024580 0001 00000000 0x0 0x0
0xffffae8000024600 0001 00000000 0x0 0x0
0xffffae8000024680 0001 00000000 0x0 0x0
0xffffae8000024700 0001 00000000 0x0 0x0
0xffffae8000024780 0001 00000000 0x0 0x0
0xffffae8000024800 0001 00000000 0x0 0x0
0xffffae8000024880 0001 00000000 0x0 0x0
0xffffae8000024900 0001 00000000 0x0 0x0
0xffffae8000024980 0001 00000000 0x0 0x0
0xffffae8000024a00 0001 00000000 0x0 0x0
0xffffae8000024a80 0001 00000000 0x0 0x0
0xffffae8000024b00 0001 00000000 0x0 0x0
0xffffae8000024b80 0001 00000000 0x0 0x0
0xffffae8000024c00 0001 00000000 0x0 0x0
0xffffae8000024c80 0001 00000000 0x0 0x0
0xffffae8000024d00 0001 00000000 0x0 0x0
0xffffae8000024d80 0001 00000000 0x0 0x0
0xffffae8000024e00 0001 00000000 0x0 0x0
0xffffae8000024e80 0001 00000000 0x0 0x0
0xffffae8000024f00 0001 00000000 0x0 0x0
0xffffae8000024f80 0001 00000000 0x0 0x0
0xffffae8000025000 0001 00000000 0x0 0x0
0xffffae8000025080 0001 00000000 0x0 0x0
0xffffae8000025100 0001 00000000 0x0 0x0
0xffffae8000025180 0001 00000000 0x0 0x0
0xffffae8000025200 0001 00000000 0x0 0x0
0xffffae8000025280 0001 00000000 0x0 0x0
0xffffae8000025300 0001 00000000 0x0 0x0
0xffffae8000025380 0001 00000000 0x0 0x0
0xffffae8000025400 0001 00000000 0x0 0x0
0xffffae8000025480 0001 00000000 0x0 0x0
0xffffae8000025500 0001 00000000 0x0 0x0
0xffffae8000025580 0001 00000000 0x0 0x0
0xffffae8000025600 0001 00000000 0x0 0x0
0xffffae8000025680 0001 00000000 0x0 0x0
0xffffae8000025700 0001 00000000 0x0 0x0
0xffffae8000025780 0001 00000000 0x0 0x0
0xffffae8000025800 0001 00000000 0x0 0x0
0xffffae8000025880 0001 00000000 0x0 0x0
0xffffae8000025900 0001 00000000 0x0 0x0
0xffffae8000025980 0001 00000000 0x0 0x0
0xffffae8000025a00 0001 00000000 0x0 0x0
0xffffae8000025a80 0001 00000000 0x0 0x0
0xffffae8000025b00 0001 00000000 0x0 0x0
0xffffae8000025b80 0001 00000000 0x0 0x0
0xffffae8000025c00 0001 00000000 0x0 0x0
0xffffae8000025c80 0001 00000000 0x0 0x0
0xffffae8000025d00 0001 00000000 0x0 0x0
0xffffae8000025d80 0001 00000000 0x0 0x0
0xffffae8000025e00 0001 00000000 0x0 0x0
0xffffae8000025e80 0001 00000000 0x0 0x0
0xffffae8000025f00 0001 00000000 0x0 0x0
0xffffae8000025f80 0001 00000000 0x0 0x0
0xffffae8000026000 0001 00000000 0x0 0x0
0xffffae8000026080 0001 00000000 0x0 0x0
0xffffae8000026100 0001 00000000 0x0 0x0
0xffffae8000026180 0001 00000000 0x0 0x0
0xffffae8000026200 0001 00000000 0x0 0x0
0xffffae8000026280 0001 00000000 0x0 0x0
0xffffae8000026300 0001 00000000 0x0 0x0
0xffffae8000026380 0001 00000000 0x0 0x0
0xffffae8000026400 0001 00000000 0x0 0x0
0xffffae8000026480 0001 00000000 0x0 0x0
0xffffae8000026500 0001 00000000 0x0 0x0
0xffffae8000026580 0001 00000000 0x0 0x0
0xffffae8000026600 0001 00000000 0x0 0x0
0xffffae8000026680 0001 00000000 0x0 0x0
0xffffae8000026700 0001 00000000 0x0 0x0
0xffffae8000026780 0001 00000000 0x0 0x0
0xffffae8000026800 0001 00000000 0x0 0x0
0xffffae8000026880 0001 00000000 0x0 0x0
0xffffae8000026900 0001 00000000 0x0 0x0
0xffffae8000026980 0001 00000000 0x0 0x0
0xffffae8000026a00 0001 00000000 0x0 0x0
0xffffae8000026a80 0001 00000000 0x0 0x0
0xffffae8000026b00 0001 00000000 0x0 0x0
0xffffae8000026b80 0001 00000000 0x0 0x0
0xffffae8000026c00 0001 00000000 0x0 0x0
0xffffae8000026c80 0001 00000000 0x0 0x0
0xffffae8000026d00 0001 00000000 0x0 0x0
0xffffae8000026d80 0001 00000000 0x0 0x0
0xffffae8000026e00 0001 00000000 0x0 0x0
0xffffae8000026e80 0001 00000000 0x0 0x0
0xffffae8000026f00 0001 00000000 0x0 0x0
0xffffae8000026f80 0001 00000000 0x0 0x0
0xffffae8000027000 0001 00000000 0x0 0x0
0xffffae8000027080 0001 00000000 0x0 0x0
0xffffae8000027100 0001 00000000 0x0 0x0
0xffffae8000027180 0001 00000000 0x0 0x0
0xffffae8000027200 0001 00000000 0x0 0x0
0xffffae8000027280 0001 00000000 0x0 0x0
0xffffae8000027300 0001 00000000 0x0 0x0
0xffffae8000027380 0001 00000000 0x0 0x0
0xffffae8000027400 0001 00000000 0x0 0x0
0xffffae8000027480 0001 00000000 0x0 0x0
0xffffae8000027500 0001 00000000 0x0 0x0
0xffffae8000027580 0001 00000000 0x0 0x0
0xffffae8000027600 0001 00000000 0x0 0x0
0xffffae8000027680 0001 00000000 0x0 0x0
0xffffae8000027700 0001 00000000 0x0 0x0
0xffffae8000027780 0001 00000000 0x0 0x0
0xffffae8000027800 0001 00000000 0x0 0x0
0xffffae8000027880 0001 00000000 0x0 0x0
0xffffae8000027900 0001 00000000 0x0 0x0
0xffffae8000027980 0001 00000000 0x0 0x0
0xffffae8000027a00 0001 00000000 0x0 0x0
0xffffae8000027a80 0001 00000000 0x0 0x0
0xffffae8000027b00 0001 00000000 0x0 0x0
0xffffae8000027b80 0001 00000000 0x0 0x0
0xffffae8000027c00 0001 00000000 0x0 0x0
0xffffae8000027c80 0001 00000000 0x0 0x0
0xffffae8000027d00 0001 00000000 0x0 0x0
0xffffae8000027d80 0001 00000000 0x0 0x0
0xffffae8000027e00 0001 00000000 0x0 0x0
0xffffae8000027e80 0001 00000000 0x0 0x0
0xffffae8000027f00 0001 00000000 0x0 0x0
0xffffae8000027f80 0001 00000000 0x0 0x0
0xffffae8000028000 0001 00000000 0x0 0x0
0xffffae8000028080 0001 00000000 0x0 0x0
0xffffae8000028100 0001 00000000 0x0 0x0
0xffffae8000028180 0001 00000000 0x0 0x0
0xffffae8000028200 0001 00000000 0x0 0x0
0xffffae8000028280 0001 00000000 0x0 0x0
0xffffae8000028300 0001 00000000 0x0 0x0
0xffffae8000028380 0001 00000000 0x0 0x0
0xffffae8000028400 0001 00000000 0x0 0x0
0xffffae8000028480 0001 00000000 0x0 0x0
0xffffae8000028500 0001 00000000 0x0 0x0
0xffffae8000028580 0001 00000000 0x0 0x0
0xffffae8000028600 0001 00000000 0x0 0x0
0xffffae8000028680 0001 00000000 0x0 0x0
0xffffae8000028700 0001 00000000 0x0 0x0
0xffffae8000028780 0001 00000000 0x0 0x0
0xffffae8000028800 0001 00000000 0x0 0x0
0xffffae8000028880 0001 00000000 0x0 0x0
0xffffae8000028900 0001 00000000 0x0 0x0
0xffffae8000028980 0001 00000000 0x0 0x0
0xffffae8000028a00 0001 00000000 0x0 0x0
0xffffae8000028a80 0001 00000000 0x0 0x0
0xffffae8000028b00 0001 00000000 0x0 0x0
0xffffae8000028b80 0001 00000000 0x0 0x0
0xffffae8000028c00 0001 00000000 0x0 0x0
0xffffae8000028c80 0001 00000000 0x0 0x0
0xffffae8000028d00 0001 00000000 0x0 0x0
0xffffae8000028d80 0001 00000000 0x0 0x0
0xffffae8000028e00 0001 00000000 0x0 0x0
0xffffae8000028e80 0001 00000000 0x0 0x0
0xffffae8000028f00 0001 00000000 0x0 0x0
0xffffae8000028f80 0001 00000000 0x0 0x0
0xffffae8000029000 0001 00000000 0x0 0x0
0xffffae8000029080 0001 00000000 0x0 0x0
0xffffae8000029100 0001 00000000 0x0 0x0
0xffffae8000029180 0001 00000000 0x0 0x0
0xffffae8000029200 0001 00000000 0x0 0x0
0xffffae8000029280 0001 00000000 0x0 0x0
0xffffae8000029300 0001 00000000 0x0 0x0
0xffffae8000029380 0001 00000000 0x0 0x0
0xffffae8000029400 0001 00000000 0x0 0x0
0xffffae8000029480 0001 00000000 0x0 0x0
0xffffae8000029500 0001 00000000 0x0 0x0
0xffffae8000029580 0001 00000000 0x0 0x0
0xffffae8000029600 0001 00000000 0x0 0x0
0xffffae8000029680 0001 00000000 0x0 0x0
0xffffae8000029700 0001 00000000 0x0 0x0
0xffffae8000029780 0001 00000000 0x0 0x0
0xffffae8000029800 0001 00000000 0x0 0x0
0xffffae8000029880 0001 00000000 0x0 0x0
0xffffae8000029900 0001 00000000 0x0 0x0
0xffffae8000029980 0001 00000000 0x0 0x0
0xffffae8000029a00 0001 00000000 0x0 0x0
0xffffae8000029a80 0001 00000000 0x0 0x0
0xffffae8000029b00 0001 00000000 0x0 0x0
0xffffae8000029b80 0001 00000000 0x0 0x0
0xffffae8000029c00 0001 00000000 0x0 0x0
0xffffae8000029c80 0001 00000000 0x0 0x0
0xffffae8000029d00 0001 00000000 0x0 0x0
0xffffae8000029d80 0001 00000000 0x0 0x0
0xffffae8000029e00 0001 00000000 0x0 0x0
0xffffae8000029e80 0001 00000000 0x0 0x0
0xffffae8000029f00 0001 00000000 0x0 0x0
0xffffae8000029f80 0001 00000000 0x0 0x0
0xffffae800002a000 0001 00000000 0x0 0x0
0xffffae800002a080 0001 00000000 0x0 0x0
0xffffae800002a100 0001 00000000 0x0 0x0
0xffffae800002a180 0001 00000000 0x0 0x0
0xffffae800002a200 0001 00000000 0x0 0x0
0xffffae800002a280 0001 00000000 0x0 0x0
0xffffae800002a300 0001 00000000 0x0 0x0
0xffffae800002a380 0001 00000000 0x0 0x0
0xffffae800002a400 0001 00000000 0x0 0x0
0xffffae800002a480 0001 00000000 0x0 0x0
0xffffae800002a500 0001 00000000 0x0 0x0
0xffffae800002a580 0001 00000000 0x0 0x0
0xffffae800002a600 0001 00000000 0x0 0x0
0xffffae800002a680 0001 00000000 0x0 0x0
0xffffae800002a700 0001 00000000 0x0 0x0
0xffffae800002a780 0001 00000000 0x0 0x0
0xffffae800002a800 0001 00000000 0x0 0x0
0xffffae800002a880 0001 00000000 0x0 0x0
0xffffae800002a900 0001 00000000 0x0 0x0
0xffffae800002a980 0001 00000000 0x0 0x0
0xffffae800002aa00 0001 00000000 0x0 0x0
0xffffae800002aa80 0001 00000000 0x0 0x0
0xffffae800002ab00 0001 00000000 0x0 0x0
0xffffae800002ab80 0001 00000000 0x0 0x0
0xffffae800002ac00 0001 00000000 0x0 0x0
0xffffae800002ac80 0001 00000000 0x0 0x0
0xffffae800002ad00 0001 00000000 0x0 0x0
0xffffae800002ad80 0001 00000000 0x0 0x0
0xffffae800002ae00 0001 00000000 0x0 0x0
0xffffae800002ae80 0001 00000000 0x0 0x0
0xffffae800002af00 0001 00000000 0x0 0x0
0xffffae800002af80 0001 00000000 0x0 0x0
0xffffae800002b000 0001 00000000 0x0 0x0
0xffffae800002b080 0001 00000000 0x0 0x0
0xffffae800002b100 0001 00000000 0x0 0x0
0xffffae800002b180 0001 00000000 0x0 0x0
0xffffae800002b200 0001 00000000 0x0 0x0
0xffffae800002b280 0001 00000000 0x0 0x0
0xffffae800002b300 0001 00000000 0x0 0x0
0xffffae800002b380 0001 00000000 0x0 0x0
0xffffae800002b400 0001 00000000 0x0 0x0
0xffffae800002b480 0001 00000000 0x0 0x0
0xffffae800002b500 0001 00000000 0x0 0x0
0xffffae800002b580 0001 00000000 0x0 0x0
0xffffae800002b600 0001 00000000 0x0 0x0
0xffffae800002b680 0001 00000000 0x0 0x0
0xffffae800002b700 0001 00000000 0x0 0x0
0xffffae800002b780 0001 00000000 0x0 0x0
0xffffae800002b800 0001 00000000 0x0 0x0
0xffffae800002b880 0001 00000000 0x0 0x0
0xffffae800002b900 0001 00000000 0x0 0x0
0xffffae800002b980 0001 00000000 0x0 0x0
0xffffae800002ba00 0001 00000000 0x0 0x0
0xffffae800002ba80 0001 00000000 0x0 0x0
0xffffae800002bb00 0001 00000000 0x0 0x0
0xffffae800002bb80 0001 00000000 0x0 0x0
0xffffae800002bc00 0001 00000000 0x0 0x0
0xffffae800002bc80 0001 00000000 0x0 0x0
0xffffae800002bd00 0001 00000000 0x0 0x0
0xffffae800002bd80 0001 00000000 0x0 0x0
0xffffae800002be00 0001 00000000 0x0 0x0
0xffffae800002be80 0001 00000000 0x0 0x0
0xffffae800002bf00 0001 00000000 0x0 0x0
0xffffae800002bf80 0001 00000000 0x0 0x0
0xffffae800002c000 0001 00000000 0x0 0x0
0xffffae800002c080 0001 00000000 0x0 0x0
0xffffae800002c100 0001 00000000 0x0 0x0
0xffffae800002c180 0001 00000000 0x0 0x0
0xffffae800002c200 0001 00000000 0x0 0x0
0xffffae800002c280 0001 00000000 0x0 0x0
0xffffae800002c300 0001 00000000 0x0 0x0
0xffffae800002c380 0001 00000000 0x0 0x0
0xffffae800002c400 0001 00000000 0x0 0x0
0xffffae800002c480 0001 00000000 0x0 0x0
0xffffae800002c500 0001 00000000 0x0 0x0
0xffffae800002c580 0001 00000000 0x0 0x0
0xffffae800002c600 0001 00000000 0x0 0x0
0xffffae800002c680 0001 00000000 0x0 0x0
0xffffae800002c700 0001 00000000 0x0 0x0
0xffffae800002c780 0001 00000000 0x0 0x0
0xffffae800002c800 0001 00000000 0x0 0x0
0xffffae800002c880 0001 00000000 0x0 0x0
0xffffae800002c900 0001 00000000 0x0 0x0
0xffffae800002c980 0001 00000000 0x0 0x0
0xffffae800002ca00 0001 00000000 0x0 0x0
0xffffae800002ca80 0001 00000000 0x0 0x0
0xffffae800002cb00 0001 00000000 0x0 0x0
0xffffae800002cb80 0001 00000000 0x0 0x0
0xffffae800002cc00 0001 00000000 0x0 0x0
0xffffae800002cc80 0001 00000000 0x0 0x0
0xffffae800002cd00 0001 00000000 0x0 0x0
0xffffae800002cd80 0001 00000000 0x0 0x0
0xffffae800002ce00 0001 00000000 0x0 0x0
0xffffae800002ce80 0001 00000000 0x0 0x0
0xffffae800002cf00 0001 00000000 0x0 0x0
0xffffae800002cf80 0001 00000000 0x0 0x0
0xffffae800002d000 0001 00000000 0x0 0x0
0xffffae800002d080 0001 00000000 0x0 0x0
0xffffae800002d100 0001 00000000 0x0 0x0
0xffffae800002d180 0001 00000000 0x0 0x0
0xffffae800002d200 0001 00000000 0x0 0x0
0xffffae800002d280 0001 00000000 0x0 0x0
0xffffae800002d300 0001 00000000 0x0 0x0
0xffffae800002d380 0001 00000000 0x0

syzbot

unread,
Jul 7, 2022, 10:36:12 AM7/7/22
to rias...@netbsd.org, syzkaller-...@googlegroups.com
Hello,

syzbot has tested the proposed patch but the reproducer is still triggering an issue:
page fault in __asan_load1

[ 61.7808149] fatal page fault in supervisor mode
[ 61.7808149] trap type 6 code 0 rip 0xffffffff81b85454 cs 0x8 rflags 0x10287 cr2 0xffff900000000000 ilevel 0 rsp 0xffffa5819dc195a0
[ 61.8000551] curlwp 0xffffa58013d20b00 pid 1205.1214 lowest kstack 0xffffa5819dc122c0
kernel: page fault trap, code=0
Stopped in pid 1205.1214 (syz-executor.0) at netbsd:__asan_load1+0x50: movzbl 0(%rax),%r8d
?
__asan_load1() at netbsd:__asan_load1+0x50 kasan_shadow_1byte_isvalid sys/kern/subr_asan.c:310 [inline]
__asan_load1() at netbsd:__asan_load1+0x50 kasan_shadow_check sys/kern/subr_asan.c:411 [inline]
__asan_load1() at netbsd:__asan_load1+0x50 sys/kern/subr_asan.c:1204
if_get() at netbsd:if_get+0x90 sys/net/if.c:2859
doifioctl() at netbsd:doifioctl+0x478 sys/net/if.c:3454
soo_ioctl() at netbsd:soo_ioctl+0x3c7 sys/kern/sys_socket.c:210
sys_ioctl() at netbsd:sys_ioctl+0x1d1 sys/kern/sys_generic.c:673
sys___syscall() at netbsd:sys___syscall+0x10e sy_call sys/sys/syscallvar.h:65 [inline]
sys___syscall() at netbsd:sys___syscall+0x10e sys/kern/sys_syscall.c:90
syscall() at netbsd:syscall+0x25a sy_call sys/sys/syscallvar.h:65 [inline]
syscall() at netbsd:syscall+0x25a sy_invoke sys/sys/syscallvar.h:94 [inline]
syscall() at netbsd:syscall+0x25a sys/arch/x86/x86/syscall.c:138
--- syscall (number 54 via SYS_syscall) ---
netbsd:syscall+0x25a:
Panic string: (null)
PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
1320 1320 2 1 0 ffffa58013d5fb40 syz-executor.1
1210 1210 2 0 0 ffffa58013d5f700 syz-executor.4
1241 1241 2 1 0 ffffa58013d5f2c0 syz-executor.5
1205 >1214 7 0 100 ffffa58013d20b00 syz-executor.0
1205 1205 2 0 10000000 ffffa58013d206c0 syz-executor.0
1207 >1207 7 1 0 ffffa58013d20280 syz-executor.3
1209 1209 2 1 140 ffffa58013d04ac0 syz-executor.5
323 323 3 0 40180 ffffa58013d04680 syz-executor.4 nanoslp
334 334 3 0 40180 ffffa58013d04240 syz-executor.1 nanoslp
1221 1221 2 1 40100 ffffa58013cf3a80 syz-executor.2
329 329 3 0 180 ffffa58012b88580 syz-executor.0 nanoslp
1186 1254 3 0 180 ffffa58013cf3640 syz-execprog parked
1186 1204 3 0 180 ffffa58013cf3200 syz-execprog parked
1186 1208 3 0 180 ffffa58012b889c0 syz-execprog parked
1186 330 2 0 100 ffffa58012b88140 syz-execprog
1186 1243 3 0 180 ffffa58012b66980 syz-execprog parked
1186 1200 3 0 180 ffffa58012b66540 syz-execprog parked
1186 1129 3 0 180 ffffa58012c0bb00 syz-execprog parked
1186 827 3 0 180 ffffa58012b66100 syz-execprog kqueue
1186 1196 3 1 1c0 ffffa58012b46500 syz-execprog parked
1186 1235 3 0 180 ffffa58012b460c0 syz-execprog parked
1186 1237 3 0 180 ffffa58012bb35c0 syz-execprog nanoslp
1186 1186 3 1 40180 ffffa58012be8640 syz-execprog parked
1239 1239 3 1 180 ffffa58012bd0600 sshd select
1070 1070 3 0 180 ffffa5801338fa40 getty nanoslp
1073 1073 3 1 180 ffffa5801339da80 getty nanoslp
1074 1074 3 0 180 ffffa5801339d640 getty nanoslp
1252 1252 3 1 1c0 ffffa580126cb040 getty ttyraw
926 926 3 1 180 ffffa5801338f600 sshd select
941 941 3 0 180 ffffa58012cf16c0 powerd kqueue
687 687 3 0 180 ffffa580133c6b00 syslogd kqueue
602 602 3 0 180 ffffa58012bfeac0 dhcpcd poll
547 547 3 0 180 ffffa58012c82900 dhcpcd poll
464 464 3 0 180 ffffa58012bfe680 dhcpcd poll
587 587 3 1 180 ffffa58012c4e300 dhcpcd poll
289 289 3 1 180 ffffa58012d84080 dhcpcd poll
288 288 3 0 180 ffffa58012d6b8c0 dhcpcd poll
351 351 3 1 180 ffffa58012d6b480 dhcpcd poll
1 1 3 0 180 ffffa580128559c0 init wait
0 847 3 0 200 ffffa58012974ac0 physiod physiod
0 194 3 1 200 ffffa5801298bb00 pooldrain pooldrain
0 193 3 0 200 ffffa5801298b6c0 ioflush syncer
0 192 3 0 200 ffffa5801298b280 pgdaemon pgdaemon
0 169 3 1 200 ffffa58012974240 usb7 usbevt
0 167 3 1 200 ffffa5801292ea80 usb6 usbevt
0 165 3 1 200 ffffa5801292e640 usb5 usbevt
0 164 3 1 200 ffffa5801292e200 usb4 usbevt
0 31 3 1 200 ffffa580128e0a40 usb3 usbevt
0 63 3 1 200 ffffa580128e0600 usb2 usbevt
0 126 3 1 200 ffffa580128e01c0 usb1 usbevt
0 125 3 1 200 ffffa58012871a00 usb0 usbevt
0 124 3 1 200 ffffa580128715c0 usbtask-dr usbtsk
0 123 3 1 200 ffffa580120b66c0 usbtask-hc usbtsk
0 122 3 1 200 ffffa58012871180 npfgc0 npfgcw
0 121 3 1 200 ffffa58012855580 rt_free rt_free
0 120 3 1 200 ffffa58012855140 unpgc unpgc
0 119 3 0 200 ffffa580126fa980 key_timehandler key_timehandler
0 118 3 1 200 ffffa580126fa540 icmp6_wqinput/1 icmp6_wqinput
0 117 3 0 200 ffffa580126fa100 icmp6_wqinput/0 icmp6_wqinput
0 116 3 0 200 ffffa580126ef940 nd6_timer nd6_timer
0 115 3 1 200 ffffa580126ef500 carp6_wqinput/1 carp6_wqinput
0 114 3 0 200 ffffa580126ef0c0 carp6_wqinput/0 carp6_wqinput
0 113 3 1 200 ffffa580126e1900 carp_wqinput/1 carp_wqinput
0 112 3 0 200 ffffa580126e14c0 carp_wqinput/0 carp_wqinput
0 111 3 1 200 ffffa580126e1080 icmp_wqinput/1 icmp_wqinput
0 110 3 0 200 ffffa580126cb8c0 icmp_wqinput/0 icmp_wqinput
0 109 3 0 200 ffffa580126cb480 rt_timer rt_timer
0 108 3 1 200 ffffa580126cabc0 vmem_rehash vmem_rehash
0 99 3 0 200 ffffa580120bbb40 entbutler entropy
0 98 3 1 200 ffffa580120bb700 viomb balloon
0 97 3 1 200 ffffa580120bb2c0 vioif0_txrx/1 vioif0_txrx
0 96 3 0 200 ffffa580120b6b00 vioif0_txrx/0 vioif0_txrx
0 29 3 0 200 ffffa580120b6280 scsibus0 sccomp
0 28 3 0 200 ffffa58010cbaac0 pms0 pmsreset
0 27 3 1 200 ffffa58010cba680 xcall/1 xcall
0 26 1 1 200 ffffa58010cba240 softser/1
0 25 1 1 200 ffffa58010cb9a80 softclk/1
0 24 1 1 200 ffffa58010cb9640 softbio/1
0 23 1 1 200 ffffa58010cb9200 softnet/1
0 22 1 1 201 ffffa5800fb55a40 idle/1
0 21 3 0 200 ffffa5800fb55600 lnxsyswq lnxsyswq
0 20 3 0 200 ffffa5800fb551c0 lnxubdwq lnxubdwq
0 19 3 0 200 ffffa5800fb54a00 lnxpwrwq lnxpwrwq
0 18 3 0 200 ffffa5800fb545c0 lnxlngwq lnxlngwq
0 17 3 0 200 ffffa5800fb54180 lnxhipwq lnxhipwq
0 16 3 0 200 ffffa5800fb4b9c0 lnxrcugc lnxrcugc
0 15 3 0 200 ffffa5800fb4b580 sysmon smtaskq
0 14 3 0 200 ffffa5800fb4b140 pmfsuspend pmfsuspend
0 13 3 0 200 ffffa5800fb48980 pmfevent pmfevent
0 12 3 0 200 ffffa5800fb48540 sopendfree sopendfr
0 11 3 1 200 ffffa5800fb48100 iflnkst iflnkst
0 10 3 0 200 ffffa5800fb3c940 nfssilly nfssilly
0 9 3 0 200 ffffa5800fb3c500 vdrain vdrain
0 8 3 0 200 ffffa5800fb3c0c0 modunload mod_unld
0 7 3 0 200 ffffa5800fb33900 xcall/0 xcall
0 6 1 0 200 ffffa5800fb334c0 softser/0
0 5 1 0 200 ffffa5800fb33080 softclk/0
0 4 1 0 200 ffffa5800fb318c0 softbio/0
0 3 1 0 200 ffffa5800fb31480 softnet/0
0 2 1 0 201 ffffa5800fb31040 idle/0
0 0 3 0 200 ffffffff83341700 swapper uvm
[Locks tracked through LWPs]

****** LWP 1320.1320 (syz-executor.1) @ 0xffffa58013d5fb40, l_stat=2

*** Locks held:

* Lock 0 (initialized at amap_ctor)
lock address : 0xffffa58013d21300 type : sleep/adaptive
initialized : 0xffffffff81a50dfb
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffa58013d5fb40 last held: 0xffffa58013d5fb40
last locked* : 0xffffffff81a61ad4 unlocked : 0xffffffff81a5f516
owner/count : 0xffffa58013d5fb40 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at pmap_ctor)
lock address : 0xffffa58013d5a580 type : sleep/adaptive
initialized : 0xffffffff80950139
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffa58013d5fb40 last held: 0xffffa58013d5fb40
last locked* : 0xffffffff80951f6c unlocked : 0xffffffff80952980
owner field : 0xffffa58013d5fb40 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

* Lock 2 (initialized at pmap_ctor)
lock address : 0xffffa58013d5a588 type : sleep/adaptive
initialized : 0xffffffff80950145
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffa58013d5fb40 last held: 0xffffa58013d5fb40
last locked* : 0xffffffff80952f40 unlocked : 0xffffffff8095304e
owner/count : 0xffffa58013d5fb40 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 1241.1241 (syz-executor.5) @ 0xffffa58013d5f2c0, l_stat=2

*** Locks held:

* Lock 0 (initialized at pmap_ctor)
lock address : 0xffffa58013d5a180 type : sleep/adaptive
initialized : 0xffffffff80950139
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffa58013d5f2c0 last held: 0xffffa58013d5f2c0
last locked* : 0xffffffff80951f6c unlocked : 0xffffffff80952980
owner field : 0xffffa58013d5f2c0 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 1205.1214 (syz-executor.0) @ 0xffffa58013d20b00, l_stat=7

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12671
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffa58013d20b00 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 1207.1207 (syz-executor.3) @ 0xffffa58013d20280, l_stat=7

*** Locks held:

* Lock 0 (initialized at vcache_alloc)
lock address : 0xffffa58013d35c40 type : sleep/adaptive
initialized : 0xffffffff81ca6fb0
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffa58013d20280 last held: 0xffffa58013d20280
last locked* : 0xffffffff81cdcf96 unlocked : 0xffffffff81cdcff8
owner/count : 0xffffa58013d20280 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at vcache_alloc)
lock address : 0xffffa58013d35ec0 type : sleep/adaptive
initialized : 0xffffffff81ca6fb0
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffa58013d20280 last held: 0xffffa58013d20280
last locked* : 0xffffffff81cdcf96 unlocked : 000000000000000000
owner/count : 0xffffa58013d20280 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 1221.1221 (syz-executor.2) @ 0xffffa58013cf3a80, l_stat=2

*** Locks held:

* Lock 0 (initialized at vcache_alloc)
lock address : 0xffffa58013cfe700 type : sleep/adaptive
initialized : 0xffffffff81ca6fb0
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffa58013cf3a80 last held: 0xffffa58013cf3a80
last locked* : 0xffffffff81cdcf96 unlocked : 0xffffffff81cdcff8
owner/count : 0xffffa58013cf3a80 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 547.547 (dhcpcd) @ 0xffffa58012c82900, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12671
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffa58012c82900 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 464.464 (dhcpcd) @ 0xffffa58012bfe680, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12671
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffa58012bfe680 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 288.288 (dhcpcd) @ 0xffffa58012d6b8c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12671
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffa58012d6b8c0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 351.351 (dhcpcd) @ 0xffffa58012d6b480, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12671
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffa58012d6b480 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xffffa5800fb48100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12671
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffa5800fb48100 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.5 (softclk/0) @ 0xffffa5800fb33080, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12671
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffa5800fb33080 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.0 (swapper) @ 0xffffffff83341700, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff83480540 type : sleep/adaptive
initialized : 0xffffffff81b12671
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffffff83341700 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

******* Locks held on cpu1:

* Lock 0 (initialized at main)
lock address : 0xffffffff83480440 type : spin
initialized : 0xffffffff81f6458e
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffa58013d20280 last held: 0xffffa58013d20280
last locked* : 0xffffffff80268f1c unlocked : 0xffffffff8093cb24
curcpu holds : 0 wanted by: 000000000000000000

PAGE FLAG PQ UOBJECT UANON
0xffffa58000017180 0041 00000000 0x0 0x0
0xffffa58000017200 0041 00000000 0x0 0x0
0xffffa58000017280 0041 00000000 0x0 0x0
0xffffa58000017300 0041 00000000 0x0 0x0
0xffffa58000017380 0041 00000000 0x0 0x0
0xffffa58000017400 0041 00000000 0x0 0x0
0xffffa58000017480 0041 00000000 0x0 0x0
0xffffa58000017500 0041 00000000 0x0 0x0
0xffffa58000017580 0041 00000000 0x0 0x0
0xffffa58000017600 0041 00000000 0x0 0x0
0xffffa58000017680 0041 00000000 0x0 0x0
0xffffa58000017700 0041 00000000 0x0 0x0
0xffffa58000017780 0041 00000000 0x0 0x0
0xffffa58000017800 0041 00000000 0x0 0x0
0xffffa58000017880 0041 00000000 0x0 0x0
0xffffa58000017900 0041 00000000 0x0 0x0
0xffffa58000017980 0041 00000000 0x0 0x0
0xffffa58000017a00 0041 00000000 0x0 0x0
0xffffa58000017a80 0041 00000000 0x0 0x0
0xffffa58000017b00 0041 00000000 0x0 0x0
0xffffa58000017b80 0041 00000000 0x0 0x0
0xffffa58000017c00 0041 00000000 0x0 0x0
0xffffa58000017c80 0041 00000000 0x0 0x0
0xffffa58000017d00 0041 00000000 0x0 0x0
0xffffa58000017d80 0041 00000000 0x0 0x0
0xffffa58000017e00 0041 00000000 0x0 0x0
0xffffa58000017e80 0041 00000000 0x0 0x0
0xffffa58000017f00 0041 00000000 0x0 0x0
0xffffa58000017f80 0041 00000000 0x0 0x0
0xffffa58000018000 0041 00000000 0x0 0x0
0xffffa58000018080 0041 00000000 0x0 0x0
0xffffa58000018100 0041 00000000 0x0 0x0
0xffffa58000018180 0041 00000000 0x0 0x0
0xffffa58000018200 0041 00000000 0x0 0x0
0xffffa58000018280 0041 00000000 0x0 0x0
0xffffa58000018300 0041 00000000 0x0 0x0
0xffffa58000018380 0041 00000000 0x0 0x0
0xffffa58000018400 0041 00000000 0x0 0x0
0xffffa58000018480 0041 00000000 0x0 0x0
0xffffa58000018500 0041 00000000 0x0 0x0
0xffffa58000018580 0041 00000000 0x0 0x0
0xffffa58000018600 0041 00000000 0x0 0x0
0xffffa58000018680 0041 00000000 0x0 0x0
0xffffa58000018700 0041 00000000 0x0 0x0
0xffffa58000018780 0041 00000000 0x0 0x0
0xffffa58000018800 0041 00000000 0x0 0x0
0xffffa58000018880 0041 00000000 0x0 0x0
0xffffa58000018900 0041 00000000 0x0 0x0
0xffffa58000018980 0041 00000000 0x0 0x0
0xffffa58000018a00 0041 00000000 0x0 0x0
0xffffa58000018a80 0041 00000000 0x0 0x0
0xffffa58000018b00 0041 00000000 0x0 0x0
0xffffa58000018b80 0041 00000000 0x0 0x0
0xffffa58000018c00 0041 00000000 0x0 0x0
0xffffa58000018c80 0041 00000000 0x0 0x0
0xffffa58000018d00 0041 00000000 0x0 0x0
0xffffa58000018d80 0041 00000000 0x0 0x0
0xffffa58000018e00 0041 00000000 0x0 0x0
0xffffa58000018e80 0041 00000000 0x0 0x0
0xffffa58000018f00 0041 00000000 0x0 0x0
0xffffa58000018f80 0041 00000000 0x0 0x0
0xffffa58000019000 0041 00000000 0x0 0x0
0xffffa58000019080 0041 00000000 0x0 0x0
0xffffa58000019100 0041 00000000 0x0 0x0
0xffffa58000019180 0041 00000000 0x0 0x0
0xffffa58000019200 0041 00000000 0x0 0x0
0xffffa58000019280 0041 00000000 0x0 0x0
0xffffa58000019300 0041 00000000 0x0 0x0
0xffffa58000019380 0041 00000000 0x0 0x0
0xffffa58000019400 0041 00000000 0x0 0x0
0xffffa58000019480 0041 00000000 0x0 0x0
0xffffa58000019500 0041 00000000 0x0 0x0
0xffffa58000019580 0041 00000000 0x0 0x0
0xffffa58000019600 0041 00000000 0x0 0x0
0xffffa58000019680 0041 00000000 0x0 0x0
0xffffa58000019700 0041 00000000 0x0 0x0
0xffffa58000019780 0041 00000000 0x0 0x0
0xffffa58000019800 0041 00000000 0x0 0x0
0xffffa58000019880 0041 00000000 0x0 0x0
0xffffa58000019900 0041 00000000 0x0 0x0
0xffffa58000019980 0041 00000000 0x0 0x0
0xffffa58000019a00 0041 00000000 0x0 0x0
0xffffa58000019a80 0041 00000000 0x0 0x0
0xffffa58000019b00 0041 00000000 0x0 0x0
0xffffa58000019b80 0041 00000000 0x0 0x0
0xffffa58000019c00 0041 00000000 0x0 0x0
0xffffa58000019c80 0041 00000000 0x0 0x0
0xffffa58000019d00 0041 00000000 0x0 0x0
0xffffa58000019d80 0041 00000000 0x0 0x0
0xffffa58000019e00 0041 00000000 0x0 0x0
0xffffa58000019e80 0041 00000000 0x0 0x0
0xffffa58000019f00 0041 00000000 0x0 0x0
0xffffa58000019f80 0041 00000000 0x0 0x0
0xffffa5800001a000 0041 00000000 0x0 0x0
0xffffa5800001a080 0041 00000000 0x0 0x0
0xffffa5800001a100 0041 00000000 0x0 0x0
0xffffa5800001a180 0041 00000000 0x0 0x0
0xffffa5800001a200 0041 00000000 0x0 0x0
0xffffa5800001a280 0041 00000000 0x0 0x0
0xffffa5800001a300 0041 00000000 0x0 0x0
0xffffa5800001a380 0041 00000000 0x0 0x0
0xffffa5800001a400 0041 00000000 0x0 0x0
0xffffa5800001a480 0041 00000000 0x0 0x0
0xffffa5800001a500 0041 00000000 0x0 0x0
0xffffa5800001a580 0041 00000000 0x0 0x0
0xffffa5800001a600 0041 00000000 0x0 0x0
0xffffa5800001a680 0041 00000000 0x0 0x0
0xffffa5800001a700 0041 00000000 0x0 0x0
0xffffa5800001a780 0041 00000000 0x0 0x0
0xffffa5800001a800 0041 00000000 0x0 0x0
0xffffa5800001a880 0041 00000000 0x0 0x0
0xffffa5800001a900 0041 00000000 0x0 0x0
0xffffa5800001a980 0041 00000000 0x0 0x0
0xffffa5800001aa00 0041 00000000 0x0 0x0
0xffffa5800001aa80 0041 00000000 0x0 0x0
0xffffa5800001ab00 0041 00000000 0x0 0x0
0xffffa5800001ab80 0041 00000000 0x0 0x0
0xffffa5800001ac00 0041 00000000 0x0 0x0
0xffffa5800001ac80 0041 00000000 0x0 0x0
0xffffa5800001ad00 0041 00000000 0x0 0x0
0xffffa5800001ad80 0041 00000000 0x0 0x0
0xffffa5800001ae00 0041 00000000 0x0 0x0
0xffffa5800001ae80 0041 00000000 0x0 0x0
0xffffa5800001af00 0041 00000000 0x0 0x0
0xffffa5800001af80 0041 00000000 0x0 0x0
0xffffa5800001b000 0041 00000000 0x0 0x0
0xffffa5800001b080 0041 00000000 0x0 0x0
0xffffa5800001b100 0041 00000000 0x0 0x0
0xffffa5800001b180 0041 00000000 0x0 0x0
0xffffa5800001b200 0041 00000000 0x0 0x0
0xffffa5800001b280 0041 00000000 0x0 0x0
0xffffa5800001b300 0041 00000000 0x0 0x0
0xffffa5800001b380 0041 00000000 0x0 0x0
0xffffa5800001b400 0041 00000000 0x0 0x0
0xffffa5800001b480 0041 00000000 0x0 0x0
0xffffa5800001b500 0041 00000000 0x0 0x0
0xffffa5800001b580 0041 00000000 0x0 0x0
0xffffa5800001b600 0041 00000000 0x0 0x0
0xffffa5800001b680 0041 00000000 0x0 0x0
0xffffa5800001b700 0041 00000000 0x0 0x0
0xffffa5800001b780 0041 00000000 0x0 0x0
0xffffa5800001b800 0041 00000000 0x0 0x0
0xffffa5800001b880 0041 00000000 0x0 0x0
0xffffa5800001b900 0041 00000000 0x0 0x0
0xffffa5800001b980 0041 00000000 0x0 0x0
0xffffa5800001ba00 0041 00000000 0x0 0x0
0xffffa5800001ba80 0001 00000000 0x0 0x0
0xffffa5800001bb00 0001 00000000 0x0 0x0
0xffffa5800001bb80 0001 00000000 0x0 0x0
0xffffa5800001bc00 0001 00000000 0x0 0x0
0xffffa5800001bc80 0001 00000000 0x0 0x0
0xffffa5800001bd00 0001 00000000 0x0 0x0
0xffffa5800001bd80 0001 00000000 0x0 0x0
0xffffa5800001be00 0001 00000000 0x0 0x0
0xffffa5800001be80 0001 00000000 0x0 0x0
0xffffa5800001bf00 0001 00000000 0x0 0x0
0xffffa5800001bf80 0001 00000000 0x0 0x0
0xffffa5800001c000 0001 00000000 0x0 0x0
0xffffa5800001c080 0001 00000000 0x0 0x0
0xffffa5800001c100 0001 00000000 0x0 0x0
0xffffa5800001c180 0001 00000000 0x0 0x0
0xffffa5800001c200 0001 00000000 0x0 0x0
0xffffa5800001c280 0001 00000000 0x0 0x0
0xffffa5800001c300 0001 00000000 0x0 0x0
0xffffa5800001c380 0001 00000000 0x0 0x0
0xffffa5800001c400 0001 00000000 0x0 0x0
0xffffa5800001c480 0001 00000000 0x0 0x0
0xffffa5800001c500 0001 00000000 0x0 0x0
0xffffa5800001c580 0001 00000000 0x0 0x0
0xffffa5800001c600 0001 00000000 0x0 0x0
0xffffa5800001c680 0001 00000000 0x0 0x0
0xffffa5800001c700 0001 00000000 0x0 0x0
0xffffa5800001c780 0001 00000000 0x0 0x0
0xffffa5800001c800 0001 00000000 0x0 0x0
0xffffa5800001c880 0001 00000000 0x0 0x0
0xffffa5800001c900 0001 00000000 0x0 0x0
0xffffa5800001c980 0001 00000000 0x0 0x0
0xffffa5800001ca00 0001 00000000 0x0 0x0
0xffffa5800001ca80 0001 00000000 0x0 0x0
0xffffa5800001cb00 0001 00000000 0x0 0x0
0xffffa5800001cb80 0001 00000000 0x0 0x0
0xffffa5800001cc00 0001 00000000 0x0 0x0
0xffffa5800001cc80 0001 00000000 0x0 0x0
0xffffa5800001cd00 0001 00000000 0x0 0x0
0xffffa5800001cd80 0001 00000000 0x0 0x0
0xffffa5800001ce00 0001 00000000 0x0 0x0
0xffffa5800001ce80 0001 00000000 0x0 0x0
0xffffa5800001cf00 0001 00000000 0x0 0x0
0xffffa5800001cf80 0001 00000000 0x0 0x0
0xffffa5800001d000 0001 00000000 0x0 0x0
0xffffa5800001d080 0001 00000000 0x0 0x0
0xffffa5800001d100 0001 00000000 0x0 0x0
0xffffa5800001d180 0001 00000000 0x0 0x0
0xffffa5800001d200 0001 00000000 0x0 0x0
0xffffa5800001d280 0001 00000000 0x0 0x0
0xffffa5800001d300 0001 00000000 0x0 0x0
0xffffa5800001d380 0001 00000000 0x0 0x0
0xffffa5800001d400 0001 00000000 0x0 0x0
0xffffa5800001d480 0001 00000000 0x0 0x0
0xffffa5800001d500 0001 00000000 0x0 0x0
0xffffa5800001d580 0001 00000000 0x0 0x0
0xffffa5800001d600 0001 00000000 0x0 0x0
0xffffa5800001d680 0001 00000000 0x0 0x0
0xffffa5800001d700 0001 00000000 0x0 0x0
0xffffa5800001d780 0001 00000000 0x0 0x0
0xffffa5800001d800 0001 00000000 0x0 0x0
0xffffa5800001d880 0001 00000000 0x0 0x0
0xffffa5800001d900 0001 00000000 0x0 0x0
0xffffa5800001d980 0001 00000000 0x0 0x0
0xffffa5800001da00 0001 00000000 0x0 0x0
0xffffa5800001da80 0001 00000000 0x0 0x0
0xffffa5800001db00 0001 00000000 0x0 0x0
0xffffa5800001db80 0001 00000000 0x0 0x0
0xffffa5800001dc00 0001 00000000 0x0 0x0
0xffffa5800001dc80 0001 00000000 0x0 0x0
0xffffa5800001dd00 0001 00000000 0x0 0x0
0xffffa5800001dd80 0001 00000000 0x0 0x0
0xffffa5800001de00 0001 00000000 0x0 0x0
0xffffa5800001de80 0001 00000000 0x0 0x0
0xffffa5800001df00 0001 00000000 0x0 0x0
0xffffa5800001df80 0001 00000000 0x0 0x0
0xffffa5800001e000 0001 00000000 0x0 0x0
0xffffa5800001e080 0001 00000000 0x0 0x0
0xffffa5800001e100 0001 00000000 0x0 0x0
0xffffa5800001e180 0001 00000000 0x0 0x0
0xffffa5800001e200 0001 00000000 0x0 0x0
0xffffa5800001e280 0001 00000000 0x0 0x0
0xffffa5800001e300 0001 00000000 0x0 0x0
0xffffa5800001e380 0001 00000000 0x0 0x0
0xffffa5800001e400 0001 00000000 0x0 0x0
0xffffa5800001e480 0001 00000000 0x0 0x0
0xffffa5800001e500 0001 00000000 0x0 0x0
0xffffa5800001e580 0001 00000000 0x0 0x0
0xffffa5800001e600 0001 00000000 0x0 0x0
0xffffa5800001e680 0001 00000000 0x0 0x0
0xffffa5800001e700 0001 00000000 0x0 0x0
0xffffa5800001e780 0001 00000000 0x0 0x0
0xffffa5800001e800 0001 00000000 0x0 0x0
0xffffa5800001e880 0001 00000000 0x0 0x0
0xffffa5800001e900 0001 00000000 0x0 0x0
0xffffa5800001e980 0001 00000000 0x0 0x0
0xffffa5800001ea00 0001 00000000 0x0 0x0
0xffffa5800001ea80 0001 00000000 0x0 0x0
0xffffa5800001eb00 0001 00000000 0x0 0x0
0xffffa5800001eb80 0001 00000000 0x0 0x0
0xffffa5800001ec00 0001 00000000 0x0 0x0
0xffffa5800001ec80 0001 00000000 0x0 0x0
0xffffa5800001ed00 0001 00000000 0x0 0x0
0xffffa5800001ed80 0001 00000000 0x0 0x0
0xffffa5800001ee00 0001 00000000 0x0 0x0
0xffffa5800001ee80 0001 00000000 0x0 0x0
0xffffa5800001ef00 0001 00000000 0x0 0x0
0xffffa5800001ef80 0001 00000000 0x0 0x0
0xffffa5800001f000 0001 00000000 0x0 0x0
0xffffa5800001f080 0001 00000000 0x0 0x0
0xffffa5800001f100 0001 00000000 0x0 0x0
0xffffa5800001f180 0001 00000000 0x0 0x0
0xffffa5800001f200 0001 00000000 0x0 0x0
0xffffa5800001f280 0001 00000000 0x0 0x0
0xffffa5800001f300 0001 00000000 0x0 0x0
0xffffa5800001f380 0001 00000000 0x0 0x0
0xffffa5800001f400 0001 00000000 0x0 0x0
0xffffa5800001f480 0001 00000000 0x0 0x0
0xffffa5800001f500 0001 00000000 0x0 0x0
0xffffa5800001f580 0001 00000000 0x0 0x0
0xffffa5800001f600 0001 00000000 0x0 0x0
0xffffa5800001f680 0001 00000000 0x0 0x0
0xffffa5800001f700 0001 00000000 0x0 0x0
0xffffa5800001f780 0001 00000000 0x0 0x0
0xffffa5800001f800 0001 00000000 0x0 0x0
0xffffa5800001f880 0001 00000000 0x0 0x0
0xffffa5800001f900 0001 00000000 0x0 0x0
0xffffa5800001f980 0001 00000000 0x0 0x0
0xffffa5800001fa00 0001 00000000 0x0 0x0
0xffffa5800001fa80 0001 00000000 0x0 0x0
0xffffa5800001fb00 0001 00000000 0x0 0x0
0xffffa5800001fb80 0001 00000000 0x0 0x0
0xffffa5800001fc00 0001 00000000 0x0 0x0
0xffffa5800001fc80 0001 00000000 0x0 0x0
0xffffa5800001fd00 0001 00000000 0x0 0x0
0xffffa5800001fd80 0001 00000000 0x0 0x0
0xffffa5800001fe00 0001 00000000 0x0 0x0
0xffffa5800001fe80 0001 00000000 0x0 0x0
0xffffa5800001ff00 0001 00000000 0x0 0x0
0xffffa5800001ff80 0001 00000000 0x0 0x0
0xffffa58000020000 0001 00000000 0x0 0x0
0xffffa58000020080 0001 00000000 0x0 0x0
0xffffa58000020100 0001 00000000 0x0 0x0
0xffffa58000020180 0001 00000000 0x0 0x0
0xffffa58000020200 0001 00000000 0x0 0x0
0xffffa58000020280 0001 00000000 0x0 0x0
0xffffa58000020300 0001 00000000 0x0 0x0
0xffffa58000020380 0001 00000000 0x0 0x0
0xffffa58000020400 0001 00000000 0x0 0x0
0xffffa58000020480 0001 00000000 0x0 0x0
0xffffa58000020500 0001 00000000 0x0 0x0
0xffffa58000020580 0001 00000000 0x0 0x0
0xffffa58000020600 0001 00000000 0x0 0x0
0xffffa58000020680 0001 00000000 0x0 0x0
0xffffa58000020700 0001 00000000 0x0 0x0
0xffffa58000020780 0001 00000000 0x0 0x0
0xffffa58000020800 0001 00000000 0x0 0x0
0xffffa58000020880 0001 00000000 0x0 0x0
0xffffa58000020900 0001 00000000 0x0 0x0
0xffffa58000020980 0001 00000000 0x0 0x0
0xffffa58000020a00 0001 00000000 0x0 0x0
0xffffa58000020a80 0001 00000000 0x0 0x0
0xffffa58000020b00 0001 00000000 0x0 0x0
0xffffa58000020b80 0001 00000000 0x0 0x0
0xffffa58000020c00 0001 00000000 0x0 0x0
0xffffa58000020c80 0001 00000000 0x0 0x0
0xffffa58000020d00 0001 00000000 0x0 0x0
0xffffa58000020d80 0001 00000000 0x0 0x0
0xffffa58000020e00 0001 00000000 0x0 0x0
0xffffa58000020e80 0001 00000000 0x0 0x0
0xffffa58000020f00 0001 00000000 0x0 0x0
0xffffa58000020f80 0001 00000000 0x0 0x0
0xffffa58000021000 0001 00000000 0x0 0x0
0xffffa58000021080 0001 00000000 0x0 0x0
0xffffa58000021100 0001 00000000 0x0 0x0
0xffffa58000021180 0001 00000000 0x0 0x0
0xffffa58000021200 0001 00000000 0x0 0x0
0xffffa58000021280 0001 00000000 0x0 0x0
0xffffa58000021300 0001 00000000 0x0 0x0
0xffffa58000021380 0001 00000000 0x0 0x0
0xffffa58000021400 0001 00000000 0x0 0x0
0xffffa58000021480 0001 00000000 0x0 0x0
0xffffa58000021500 0001 00000000 0x0 0x0
0xffffa58000021580 0001 00000000 0x0 0x0
0xffffa58000021600 0001 00000000 0x0 0x0
0xffffa58000021680 0001 00000000 0x0 0x0
0xffffa58000021700 0001 00000000 0x0 0x0
0xffffa58000021780 0001 00000000 0x0 0x0
0xffffa58000021800 0001 00000000 0x0 0x0
0xffffa58000021880 0001 00000000 0x0 0x0
0xffffa58000021900 0001 00000000 0x0 0x0
0xffffa58000021980 0001 00000000 0x0 0x0
0xffffa58000021a00 0001 00000000 0x0 0x0
0xffffa58000021a80 0001 00000000 0x0 0x0
0xffffa58000021b00 0001 00000000 0x0 0x0
0xffffa58000021b80 0001 00000000 0x0 0x0
0xffffa58000021c00 0001 00000000 0x0 0x0
0xffffa58000021c80 0001 00000000 0x0 0x0
0xffffa58000021d00 0001 00000000 0x0 0x0
0xffffa58000021d80 0001 00000000 0x0 0x0
0xffffa58000021e00 0001 00000000 0x0 0x0
0xffffa58000021e80 0001 00000000 0x0 0x0
0xffffa58000021f00 0001 00000000 0x0 0x0
0xffffa58000021f80 0001 00000000 0x0 0x0
0xffffa58000022000 0001 00000000 0x0 0x0
0xffffa58000022080 0001 00000000 0x0 0x0
0xffffa58000022100 0001 00000000 0x0 0x0
0xffffa58000022180 0001 00000000 0x0 0x0
0xffffa58000022200 0001 00000000 0x0 0x0
0xffffa58000022280 0001 00000000 0x0 0x0
0xffffa58000022300 0001 00000000 0x0 0x0
0xffffa58000022380 0001 00000000 0x0 0x0
0xffffa58000022400 0001 00000000 0x0 0x0
0xffffa58000022480 0001 00000000 0x0 0x0
0xffffa58000022500 0001 00000000 0x0 0x0
0xffffa58000022580 0001 00000000 0x0 0x0
0xffffa58000022600 0001 00000000 0x0 0x0
0xffffa58000022680 0001 00000000 0x0 0x0
0xffffa58000022700 0001 00000000 0x0 0x0
0xffffa58000022780 0001 00000000 0x0 0x0
0xffffa58000022800 0001 00000000 0x0 0x0
0xffffa58000022880 0001 00000000 0x0 0x0
0xffffa58000022900 0001 00000000 0x0 0x0
0xffffa58000022980 0001 00000000 0x0 0x0
0xffffa58000022a00 0001 00000000 0x0 0x0
0xffffa58000022a80 0001 00000000 0x0 0x0
0xffffa58000022b00 0001 00000000 0x0 0x0
0xffffa58000022b80 0001 00000000 0x0 0x0
0xffffa58000022c00 0001 00000000 0x0 0x0
0xffffa58000022c80 0001 00000000 0x0 0x0
0xffffa58000022d00 0001 00000000 0x0 0x0
0xffffa58000022d80 0001 00000000 0x0 0x0
0xffffa58000022e00 0001 00000000 0x0 0x0
0xffffa58000022e80 0001 00000000 0x0 0x0
0xffffa58000022f00 0001 00000000 0x0 0x0
0xffffa58000022f80 0001 00000000 0x0 0x0
0xffffa58000023000 0001 00000000 0x0 0x0
0xffffa58000023080 0001 00000000 0x0 0x0
0xffffa58000023100 0001 00000000 0x0 0x0
0xffffa58000023180 0001 00000000 0x0 0x0
0xffffa58000023200 0001 00000000 0x0 0x0
0xffffa58000023280 0001 00000000 0x0 0x0
0xffffa58000023300 0001 00000000 0x0 0x0
0xffffa58000023380 0001 00000000 0x0 0x0
0xffffa58000023400 0001 00000000 0x0 0x0
0xffffa58000023480 0001 00000000 0x0 0x0
0xffffa58000023500 0001 00000000 0x0 0x0
0xffffa58000023580 0001 00000000 0x0 0x0
0xffffa58000023600 0001 00000000 0x0 0x0
0xffffa58000023680 0001 00000000 0x0 0x0
0xffffa58000023700 0001 00000000 0x0 0x0
0xffffa58000023780 0001 00000000 0x0 0x0
0xffffa58000023800 0001 00000000 0x0 0x0
0xffffa58000023880 0001 00000000 0x0 0x0
0xffffa58000023900 0001 00000000 0x0 0x0
0xffffa58000023980 0001 00000000 0x0 0x0
0xffffa58000023a00 0001 00000000 0x0 0x0
0xffffa58000023a80 0001 00000000 0x0 0x0
0xffffa58000023b00 0001 00000000 0x0 0x0
0xffffa58000023b80 0001 00000000 0x0 0x0
0xffffa58000023c00 0001 00000000 0x0 0x0
0xffffa58000023c80 0001 00000000 0x0 0x0
0xffffa58000023d00 0001 00000000 0x0 0x0
0xffffa58000023d80 0001 00000000 0x0 0x0
0xffffa58000023e00 0001 00000000 0x0 0x0
0xffffa58000023e80 0001 00000000 0x0 0x0
0xffffa58000023f00 0001 00000000 0x0 0x0
0xffffa58000023f80 0001 00000000 0x0 0x0
0xffffa58000024000 0001 00000000 0x0 0x0
0xffffa58000024080 0001 00000000 0x0 0x0
0xffffa58000024100 0001 00000000 0x0 0x0
0xffffa58000024180 0001 00000000 0x0 0x0
0xffffa58000024200 0001 00000000 0x0 0x0
0xffffa58000024280 0001 00000000 0x0 0x0
0xffffa58000024300 0001 00000000 0x0 0x0
0xffffa58000024380 0001 00000000 0x0 0x0
0xffffa58000024400 0001 00000000 0x0 0x0
0xffffa58000024480 0001 00000000 0x0 0x0
0xffffa58000024500 0001 00000000 0x0 0x0
0xffffa58000024580 0001 00000000 0x0 0x0
0xffffa58000024600 0001 00000000 0x0 0x0
0xffffa58000024680 0001 00000000 0x0 0x0
0xffffa58000024700 0001 00000000 0x0 0x0
0xffffa58000024780 0001 00000000 0x0 0x0
0xffffa58000024800 0001 00000000 0x0 0x0
0xffffa58000024880 0001 00000000 0x0 0x0
0xffffa58000024900 0001 00000000 0x0 0x0
0xffffa58000024980 0001 00000000 0x0 0x0
0xffffa58000024a00 0001 00000000 0x0 0x0
0xffffa58000024a80 0001 00000000 0x0 0x0
0xffffa58000024b00 0001 00000000 0x0 0x0
0xffffa58000024b80 0001 00000000 0x0 0x0
0xffffa58000024c00 0001 00000000 0x0 0x0
0xffffa58000024c80 0001 00000000 0x0 0x0
0xffffa58000024d00 0001 00000000 0x0 0x0
0xffffa58000024d80 0001 00000000 0x0 0x0
0xffffa58000024e00 0001 00000000 0x0 0x0
0xffffa58000024e80 0001 00000000 0x0 0x0
0xffffa58000024f00 0001 00000000 0x0 0x0
0xffffa58000024f80 0001 00000000 0x0 0x0
0xffffa58000025000 0001 00000000 0x0 0x0
0xffffa58000025080 0001 00000000 0x0 0x0
0xffffa58000025100 0001 00000000 0x0 0x0
0xffffa58000025180 0001 00000000 0x0 0x0
0xffffa58000025200 0001 00000000 0x0 0x0
0xffffa58000025280 0001 00000000 0x0 0x0
0xffffa58000025300 0001 00000000 0x0 0x0
0xffffa58000025380 0001 00000000 0x0 0x0
0xffffa58000025400 0001 00000000 0x0 0x0
0xffffa58000025480 0001 00000000 0x0 0x0
0xffffa58000025500 0001 00000000 0x0 0x0
0xffffa58000025580 0001 00000000 0x0 0x0
0xffffa58000025600 0001 00000000 0x0 0x0
0xffffa58000025680 0001 00000000 0x0 0x0
0xffffa58000025700 0001 00000000 0x0 0x0
0xffffa58000025780 0001 00000000 0x0 0x0
0xffffa58000025800 0001 00000000 0x0 0x0
0xffffa58000025880 0001 00000000 0x0 0x0
0xffffa58000025900 0001 00000000 0x0 0x0
0xffffa58000025980 0001 00000000 0x0 0x0
0xffffa58000025a00 0001 00000000 0x0 0x0
0xffffa58000025a80 0001 00000000 0x0 0x0
0xffffa58000025b00 0001 00000000 0x0 0x0
0xffffa58000025b80 0001 00000000 0x0 0x0
0xffffa58000025c00 0001 00000000 0x0 0x0
0xffffa58000025c80 0001 00000000 0x0 0x0
0xffffa58000025d00 0001 00000000 0x0 0x0
0xffffa58000025d80 0001 00000000 0x0 0x0
0xffffa58000025e00 0001 00000000 0x0 0x0
0xffffa58000025e80 0001 00000000 0x0 0x0
0xffffa58000025f00 0001 00000000 0x0 0x0
0xffffa58000025f80 0001 00000000 0x0 0x0
0xffffa58000026000 0001 00000000 0x0 0x0
0xffffa58000026080 0001 00000000 0x0 0x0
0xffffa58000026100 0001 00000000 0x0 0x0
0xffffa58000026180 0001 00000000 0x0 0x0
0xffffa58000026200 0001 00000000 0x0 0x0
0xffffa58000026280 0001 00000000 0x0 0x0
0xffffa58000026300 0001 00000000 0x0 0x0
0xffffa58000026380 0001 00000000 0x0 0x0
0xffffa58000026400 0001 00000000 0x0 0x0
0xffffa58000026480 0001 00000000 0x0 0x0
0xffffa58000026500 0001 00000000 0x0 0x0
0xffffa58000026580 0001 00000000 0x0 0x0
0xffffa58000026600 0001 00000000 0x0 0x0
0xffffa58000026680 0001 00000000 0x0 0x0
0xffffa58000026700 0001 00000000 0x0 0x0
0xffffa58000026780 0001 00000000 0x0 0x0
0xffffa58000026800 0001 00000000 0x0 0x0
0xffffa58000026880 0001 00000000 0x0 0x0
0xffffa58000026900 0001 00000000 0x0 0x0
0xffffa58000026980 0001 00000000 0x0 0x0
0xffffa58000026a00 0001 00000000 0x0 0x0
0xffffa58000026a80 0001 00000000 0x0 0x0
0xffffa58000026b00 0001 00000000 0x0 0x0
0xffffa58000026b80 0001 00000000 0x0 0x0
0xffffa58000026c00 0001 00000000 0x0 0x0
0xffffa58000026c80 0001 00000000 0x0 0x0
0xffffa58000026d00 0001 00000000 0x0 0x0
0xffffa58000026d80 0001 00000000 0x0 0x0
0xffffa58000026e00 0001 00000000 0x0 0x0
0xffffa58000026e80 0001 00000000 0x0 0x0
0xffffa58000026f00 0001 00000000 0x0 0x0
0xffffa58000026f80 0001 00000000 0x0 0x0
0xffffa58000027000 0001 00000000 0x0 0x0
0xffffa58000027080 0001 00000000 0x0 0x0
0xffffa58000027100 0001 00000000 0x0 0x0
0xffffa58000027180 0001 00000000 0x0 0x0
0xffffa58000027200 0001 00000000 0x0 0x0
0xffffa58000027280 0001 00000000 0x0 0x0
0xffffa58000027300 0001 00000000 0x0 0x0
0xffffa58000027380 0001 00000000 0x0 0x0
0xffffa58000027400 0001 00000000 0x0 0x0
0xffffa58000027480 0001 00000000 0x0 0x0
0xffffa58000027500 0001 00000000 0x0 0x0
0xffffa58000027580 0001 00000000 0x0 0x0
0xffffa58000027600 0001 00000000 0x0 0x0
0xffffa58000027680 0001 00000000 0x0 0x0
0xffffa58000027700 0001 00000000 0x0 0x0
0xffffa58000027780 0001 00000000 0x0 0x0
0xffffa58000027800 0001 00000000 0x0 0x0
0xffffa58000027880 0001 00000000 0x0 0x0
0xffffa58000027900 0001 00000000 0x0 0x0
0xffffa58000027980 0001 00000000 0x0 0x0
0xffffa58000027a00 0001 00000000 0x0 0x0
0xffffa58000027a80 0001 00000000 0x0 0x0
0xffffa58000027b00 0001 00000000 0x0 0x0
0xffffa58000027b80 0001 00000000 0x0 0x0
0xffffa58000027c00 0001 00000000 0x0 0x0
0xffffa58000027c80 0001 00000000 0x0 0x0
0xffffa58000027d00 0001 00000000 0x0 0x0
0xffffa58000027d80 0001 00000000 0x0 0x0
0xffffa58000027e00 0001 00000000 0x0 0x0
0xffffa58000027e80 0001 00000000 0x0 0x0
0xffffa58000027f00 0001 00000000 0x0 0x0
0xffffa58000027f80 0001 00000000 0x0 0x0
0xffffa58000028000 0001 00000000 0x0 0x0
0xffffa58000028080 0001 00000000 0x0 0x0
0xffffa58000028100 0001 00000000 0x0 0x0
0xffffa58000028180 0001 00000000 0x0 0x0
0xffffa58000028200 0001 00000000 0x0 0x0
0xffffa58000028280 0001 00000000 0x0 0x0
0xffffa58000028300 0001 00000000 0x0 0x0
0xffffa58000028380 0001 00000000 0x0 0x0
0xffffa58000028400 0001 00000000 0x0 0x0
0xffffa58000028480 0001 00000000 0x0 0x0
0xffffa58000028500 0001 00000000 0x0 0x0
0xffffa58000028580 0001 00000000 0x0 0x0
0xffffa58000028600 0001 00000000 0x0 0x0
0xffffa58000028680 0001 00000000 0x0 0x0
0xffffa58000028700 0001 00000000 0x0 0x0
0xffffa58000028780 0001 00000000 0x0 0x0
0xffffa58000028800 0001 00000000 0x0 0x0
0xffffa58000028880 0001 00000000 0x0 0x0
0xffffa58000028900 0001 00000000 0x0 0x0
0xffffa58000028980 0001 00000000 0x0 0x0
0xffffa58000028a00 0001 00000000 0x0 0x0
0xffffa58000028a80 0001 00000000 0x0 0x0
0xffffa58000028b00 0001 00000000 0x0 0x0
0xffffa58000028b80 0001 00000000 0x0 0x0
0xffffa58000028c00 0001 00000000 0x0 0x0
0xffffa58000028c80 0001 00000000 0x0 0x0
0xffffa58000028d00 0001 00000000 0x0 0x0
0xffffa58000028d80 0001 00000000 0x0 0x0
0xffffa58000028e00 0001 00000000 0x0 0x0
0xffffa58000028e80 0001 00000000 0x0 0x0
0xffffa58000028f00 0001 00000000 0x0 0x0
0xffffa58000028f80 0001 00000000 0x0 0x0
0xffffa58000029000 0001 00000000 0x0 0x0
0xffffa58000029080 0001 00000000 0x0 0x0
0xffffa58000029100 0001 00000000 0x0 0x0
0xffffa58000029180 0001 00000000 0x0 0x0
0xffffa58000029200 0001 00000000 0x0 0x0
0xffffa58000029280 0001 00000000 0x0 0x0
0xffffa58000029300 0001 00000000 0x0 0x0
0xffffa58000029380 0001 00000000 0x0 0x0
0xffffa58000029400 0001 00000000 0x0 0x0
0xffffa58000029480 0001 00000000 0x0 0x0
0xffffa58000029500 0001 00000000 0x0 0x0
0xffffa58000029580 0001 00000000 0x0 0x0
0xffffa58000029600 0001 00000000 0x0 0x0
0xffffa58000029680 0001 00000000 0x0 0x0
0xffffa58000029700 0001 00000000 0x0 0x0
0xffffa58000029780 0001 00000000 0x0 0x0
0xffffa58000029800 0001 00000000 0x0 0x0
0xffffa58000029880 0001 00000000 0x0 0x0
0xffffa58000029900 0001 00000000 0x0 0x0
0xffffa58000029980 0001 00000000 0x0 0x0
0xffffa58000029a00 0001 00000000 0x0 0x0
0xffffa58000029a80 0001 00000000 0x0 0x0
0xffffa58000029b00 0001 00000000 0x0 0x0
0xffffa58000029b80 0001 00000000 0x0 0x0
0xffffa58000029c00 0001 00000000 0x0 0x0
0xffffa58000029c80 0001 00000000 0x0 0x0
0xffffa58000029d00 0001 00000000 0x0 0x0
0xffffa58000029d80 0001 00000000 0x0 0x0
0xffffa58000029e00 0001 00000000 0x0 0x0
0xffffa58000029e80 0001 00000000 0x0 0x0
0xffffa58000029f00 0001 00000000 0x0 0x0
0xffffa58000029f80 0001 00000000 0x0 0x0
0xffffa5800002a000 0001 00000000 0x0 0x0
0xffffa5800002a080 0001 00000000 0x0 0x0
0xffffa5800002a100 0001 00000000 0x0 0x0
0xffffa5800002a180 0001 00000000 0x0 0x0
0xffffa5800002a200 0001 00000000 0x0 0x0
0xffffa5800002a280 0001 00000000 0x0 0x0
0xffffa5800002a300 0001 00000000 0x0 0x0
0xffffa5800002a380 0001 00000000 0x0 0x0
0xffffa5800002a400 0001 00000000 0x0 0x0
0xffffa5800002a480 0001 00000000 0x0 0x0
0xffffa5800002a500 0001 00000000 0x0 0x0
0xffffa5800002a580 0001 00000000 0x0 0x0
0xffffa5800002a600 0001 00000000 0x0 0x0
0xffffa5800002a680 0001 00000000 0x0 0x0
0xffffa5800002a700 0001 00000000 0x0 0x0
0xffffa5800002a780 0001 00000000 0x0 0x0
0xffffa5800002a800 0001 00000000 0x0 0x0
0xffffa5800002a880 0001 00000000 0x0 0x0
0xffffa5800002a900 0001 00000000 0x0 0x0
0xffffa5800002a980 0001 00000000 0x0 0x0
0xffffa5800002aa00 0001 00000000 0x0 0x0
0xffffa5800002aa80 0001 00000000 0x0 0x0
0xffffa5800002ab00 0001 00000000 0x0 0x0
0xffffa5800002ab80 0001 00000000 0x0 0x0
0xffffa5800002ac00 0001 00000000 0x0 0x0
0xffffa5800002ac80 0001 00000000 0x0 0x0
0xffffa5800002ad00 0001 00000000 0x0 0x0
0xffffa5800002ad80 0001 00000000 0x0 0x0
0xffffa5800002ae00 0001 00000000 0x0 0x0
0xffffa5800002ae80 0001 00000000 0x0 0x0
0xffffa5800002af00 0001 00000000 0x0 0x0
0xffffa5800002af80 0001 00000000 0x0 0x0
0xffffa5800002b000 0001 00000000 0x0 0x0
0xffffa5800002b080 0001 00000000 0x0 0x0
0xffffa5800002b100 0001 00000000 0x0 0x0
0xffffa5800002b180 0001 00000000 0x0 0x0
0xffffa5800002b200 0001 00000000 0x0 0x0
0xffffa5800002b280 0001 00000000 0x0 0x0
0xffffa5800002b300 0001 00000000 0x0 0x0
0xffffa5800002b380 0001 00000000 0x0 0x0
0xffffa5800002b400 0001 00000000 0x0 0x0
0xffffa5800002b480 0001 00000000 0x0 0x0
0xffffa5800002b500 0001 00000000 0x0 0x0
0xffffa5800002b580 0001 00000000 0x0 0x0
0xffffa5800002b600 0001 00000000 0x0 0x0
0xffffa5800002b680 0001 00000000 0x0 0x0
0xffffa5800002b700 0001 00000000 0x0 0x0
0xffffa5800002b780 0001 00000000 0x0 0x0
0xffffa5800002b800 00

Tested on:

commit: bd84a082 Add PRIuVSIZE
git tree: https://github.com/NetBSD/src trunk
console output: https://syzkaller.appspot.com/x/log.txt?x=17895d68080000
kernel config: https://syzkaller.appspot.com/x/.config?x=fab579639ba4bf0a
dashboard link: https://syzkaller.appspot.com/bug?extid=19b1bf83e5481273eafc
compiler: g++ (Debian 10.2.1-6) 10.2.1 20210110
patch: https://syzkaller.appspot.com/x/patch.diff?x=156da358080000

syzbot

unread,
Jul 7, 2022, 12:53:12 PM7/7/22
to rias...@netbsd.org, syzkaller-...@googlegroups.com
Hello,

syzbot tried to test the proposed patch but the build/boot failed:

\ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | +1519808/ - \ | / - [1518792\ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | +991434/ - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | / - \ | ]=0x3665890
/ - \ | / - \ | / - \ | / - \ | / - \ | / - \ | Loading /var/db/entropy-file
[ 1.0000000] cpu_rng: rdrand/rdseed
[ 1.0000000] entropy: ready
[ 1.0000000] entropy: entering seed from bootloader with 256 bits of entropy
[ 1.0000000] ksyms: checking .text
[ 1.0000000] ksyms: checking .rodata.hotpatch
[ 1.0000000] ksyms: checking .rodata
[ 1.0000000] ksyms: checking .eh_frame
[ 1.0000000] ksyms: checking link_set_x86_hotpatch_descriptors
[ 1.0000000] ksyms: checking link_set_sdt_argtypes_set
[ 1.0000000] ksyms: checking link_set_sdt_probes_set
[ 1.0000000] ksyms: checking link_set_sdt_providers_set
[ 1.0000000] ksyms: checking link_set_modules
[ 1.0000000] ksyms: checking link_set_sysctl_funcs
[ 1.0000000] ksyms: checking link_set_acpi_device_calls
[ 1.0000000] ksyms: checking link_set_evcnts
[ 1.0000000] ksyms: checking link_set_linux_module_param_desc
[ 1.0000000] ksyms: checking link_set_linux_module_param_info
[ 1.0000000] ksyms: checking link_set_domains
[ 1.0000000] ksyms: checking link_set_ieee80211_funcs
[ 1.0000000] ksyms: checking link_set_ah_chips
[ 1.0000000] ksyms: checking link_set_ah_rfs
[ 1.0000000] ksyms: checking link_set_dkwedge_methods
[ 1.0000000] ksyms: checking link_set_prop_linkpools
[ 1.0000000] ksyms: checking .data
[ 1.0000000] ksyms: checking .dtors
[ 1.0000000] ksyms: checking .data.cacheline_aligned
[ 1.0000000] ksyms: checking .data.read_mostly
[ 1.0000000] ksyms: checking .bss
[ 1.0000000] ksyms: checking .note.netbsd.ident
[ 1.0000000] ksyms: checking .note.Xen
[ 1.0000000] ksyms: checking .ident
[ 1.0000000] ksyms: checking .comment
[ 1.0000000] ksyms: checking .gnu_debuglink
[ 1.0000000] ksyms: checking .symtab
[ 1.0000000] ksyms: checking .strtab
[ 1.0000000] ksyms: checking .shstrtab
[ 1.0000000] Loaded initial symtab at 0xffffffff83600af8, strtab at 0xffffffff837737c0, # entries 63283
[ 1.0000000] Copyright (c) 1996, 1997, 1998, 1999, 2000, 2001, 2002, 2003, 2004, 2005,
[ 1.0000000] 2006, 2007, 2008, 2009, 2010, 2011, 2012, 2013, 2014, 2015, 2016, 2017,
[ 1.0000000] 2018, 2019, 2020, 2021, 2022
[ 1.0000000] The NetBSD Foundation, Inc. All rights reserved.
[ 1.0000000] Copyright (c) 1982, 1986, 1989, 1991, 1993
[ 1.0000000] The Regents of the University of California. All rights reserved.

[ 1.0000000] NetBSD 9.99.98 (GENERIC_SYZKALLER) #0: Thu Jul 7 16:42:49 UTC 2022
[ 1.0000000] root@ci2:/syzkaller/jobs/netbsd/kernel/sys/arch/amd64/compile/obj/GENERIC_SYZKALLER
[ 1.0000000] total memory = 8191 MB
[ 1.0000000] avail memory = 7088 MB
[ 1.0000030] mainbus0 (root)
[ 1.0000030] ACPI: RSDP 0x00000000000F2740 000014 (v00 Google)
[ 1.0000030] ACPI: RSDT 0x00000000BFFFFF90 000038 (v01 Google GOOGRSDT 00000001 GOOG 00000001)
[ 1.0000030] ACPI: FACP 0x00000000BFFFF330 0000F4 (v02 Google GOOGFACP 00000001 GOOG 00000001)
[ 1.0000030] ACPI: DSDT 0x00000000BFFFD8C0 001A64 (v01 Google GOOGDSDT 00000001 GOOG 00000001)
[ 1.0000030] ACPI: FACS 0x00000000BFFFD880 000040
[ 1.0000030] ACPI: SRAT 0x00000000BFFFFE60 0000C8 (v03 Google GOOGSRAT 00000001 GOOG 00000001)
[ 1.0000030] ACPI: APIC 0x00000000BFFFFDB0 000076 (v05 Google GOOGAPIC 00000001 GOOG 00000001)
[ 1.0000030] ACPI: SSDT 0x00000000BFFFF430 000980 (v01 Google GOOGSSDT 00000001 GOOG 00000001)
[ 1.0000030] ACPI: WAET 0x00000000BFFFFE30 000028 (v01 Google GOOGWAET 00000001 GOOG 00000001)
[ 1.0000030] ACPI: 2 ACPI AML tables successfully acquired and loaded
[ 1.0000030] ioapic0 at mainbus0 apid 0
[ 1.0000030] cpu0 at mainbus0 apid 0
[ 1.0000030] cpu0: Intel(R) Xeon(R) CPU @ 2.20GHz, id 0x406f0
[ 1.0000030] cpu0: node 0, package 0, core 0, smt 0
[ 1.0000030] cpu1 at mainbus0 apid 1
[ 1.0000030] cpu1: Intel(R) Xeon(R) CPU @ 2.20GHz, id 0x406f0
[ 1.0000030] cpu1: node 0, package 0, core 0, smt 1
[ 1.0000030] acpi0 at mainbus0: Intel ACPICA 20211217
[ 1.0000030] acpi0: fixed power button present
[ 1.0000030] acpi0: fixed sleep button present
[ 1.0292182] pckbc1 at acpi0 (KBD, PNP0303) (kbd port): io 0x60,0x64 irq 1
[ 1.0292182] pckbc2 at acpi0 (MOU, PNP0F13) (aux port): irq 12
[ 1.0292182] com0 at acpi0 (COM1, PNP0501-1): io 0x3f8-0x3ff irq 4
[ 1.0292182] com: ns16550a, 16-byte FIFO
[ 1.0292182] com0: console
[ 1.0292182] com1 at acpi0 (COM2, PNP0501-2): io 0x2f8-0x2ff irq 3
[ 1.0292182] com1: ns16550a, 16-byte FIFO
[ 1.0292182] com2 at acpi0 (COM3, PNP0501-3): io 0x3e8-0x3ef irq 6
[ 1.0292182] com2: ns16550a, 16-byte FIFO
[ 1.0292182] com3 at acpi0 (COM4, PNP0501-4): io 0x2e8-0x2ef irq 7
[ 1.0292182] com3: ns16550a, 16-byte FIFO
[ 1.0292182] PEVT (QEMU0001) at acpi0 not configured
[ 1.0292182] ACPI: Enabled 16 GPEs in block 00 to 0F
[ 1.0292182] pckbd0 at pckbc1 (kbd slot)
[ 1.0292182] pckbc1: using irq 1 for kbd slot
[ 1.0292182] wskbd0 at pckbd0 mux 1
[ 1.0292182] pms0 at pckbc1 (aux slot)
[ 1.0292182] pckbc1: using irq 12 for aux slot
[ 1.0292182] wsmouse0 at pms0 mux 0
[ 1.0292182] pci0 at mainbus0 bus 0: configuration mode 1
[ 1.0292182] pchb0 at pci0 dev 0 function 0: Intel 82441FX (PMC) PCI and Memory Controller (rev. 0x02)
[ 1.0292182] pcib0 at pci0 dev 1 function 0: Intel 82371AB (PIIX4) PCI-ISA Bridge (rev. 0x03)
[ 1.0292182] piixpm0 at pci0 dev 1 function 3: Intel 82371AB (PIIX4) Power Management Controller (rev. 0x03)
[ 1.0292182] piixpm0: SMBus disabled
[ 1.0292182] virtio0 at pci0 dev 3 function 0
[ 1.0292182] virtio0: SCSI device (rev. 0x00)
[ 1.0292182] vioscsi0 at virtio0: features: 0
[ 1.0292182] vioscsi0: cmd_per_lun 256 qsize 8192 seg_max 64 max_target 253 max_lun 1
[ 1.0292182] virtio0: config interrupting at msix0 vec 0
[ 1.0292182] virtio0: queues interrupting at msix0 vec 1
[ 1.0292182] scsibus0 at vioscsi0: 254 targets, 2 luns per target
[ 1.0292182] virtio1 at pci0 dev 4 function 0
[ 1.0292182] virtio1: network device (rev. 0x00)
[ 1.0292182] vioif0 at virtio1: features: 0x20030020<EVENT_IDX,CTRL_VQ,STATUS,MAC>
[ 1.0292182] vioif0: Ethernet address 42:01:0a:80:0a:2d
[ 1.0292182] virtio1: config interrupting at msix1 vec 0
[ 1.0292182] virtio1: queues interrupting at msix1 vec 1
[ 1.0292182] genfb0 at pci0 dev 5 function 0: vendor 1ae0 product a002 (rev. 0x01)
[ 1.0292182] virtio2 at pci0 dev 6 function 0
[ 1.0292182] virtio2: memory balloon device (rev. 0x00)
[ 1.0292182] viomb0 at virtio2: features: 0x1<MUST_TELL_HOST>
[ 1.0292182] virtio2: interrupting at ioapic0 pin 10
[ 1.0292182] virtio3 at pci0 dev 7 function 0
[ 1.0292182] virtio3: entropy device (rev. 0x00)
[ 1.0292182] viornd0 at virtio3: features: 0
[ 1.0292182] virtio3: interrupting at ioapic0 pin 11
[ 1.0292182] isa0 at pcib0
[ 1.0292182] attimer0 at isa0 port 0x40-0x43
[ 1.0292182] pcppi0 at isa0 port 0x61
[ 1.0292182] spkr0 at pcppi0: PC Speaker
[ 1.0292182] wsbell at spkr0 not configured
[ 1.0292182] midi0 at pcppi0: PC speaker
[ 1.0292182] sysbeep0 at pcppi0
[ 1.0292182] attimer0: attached to pcppi0
[ 1.0292182] acpicpu0 at cpu0: ACPI CPU
[ 1.0292182] acpicpu1 at cpu1: ACPI CPU
[ 1.8906908] cpu0 has 2 core siblings: cpu1 cpu0
[ 1.9013069] cpu0 has 2 pkg siblings: cpu1 cpu0
[ 1.9013069] cpu0 has 1 1st siblings: cpu0
[ 1.9109171] cpu0 first in package: cpu0
[ 1.9109171] cpu1 has 2 core siblings: cpu0 cpu1
[ 1.9109171] cpu1 has 2 pkg siblings: cpu0 cpu1
[ 1.9229915] cpu1 has 1 1st siblings: cpu0
[ 1.9229915] cpu1 first in package: cpu0
[ 2.0838371] sd0 at scsibus0 target 1 lun 0: <Google, PersistentDisk, 1> disk fixed
[ 2.1022157] sd0: fabricating a geometry
[ 2.1022157] sd0: 2048 MB, 2048 cyl, 64 head, 32 sec, 512 bytes/sect x 4194304 sectors
[ 2.1222465] sd0: fabricating a geometry
[ 2.1322123] dk0 at sd0: "49b813d1-8009-4c4f-b3e1-2cc288366ecc", 2097085 blocks at 64, type: ffs
[ 2.1422303] dk1 at sd0: "2a5f9479-33b7-499d-8cc4-f8d9ae0937b7", 2097119 blocks at 2097152, type: swap
[ 2.1522095] sd0: async, 8-bit transfers, tagged queueing
[ 2.6522070] usb0 at vhci0: USB revision 2.0
[ 2.6722555] uhub0 at usb0: NetBSD (0x0000) VHCI root hub (0x0000), class 9/0, rev 2.00/1.00, addr 1
[ 3.0722258] usb1 at vhci1: USB revision 2.0
[ 3.0922412] uhub1 at usb1: NetBSD (0x0000) VHCI root hub (0x0000), class 9/0, rev 2.00/1.00, addr 1
[ 3.4722188] usb2 at vhci2: USB revision 2.0
[ 3.5022362] uhub2 at usb2: NetBSD (0x0000) VHCI root hub (0x0000), class 9/0, rev 2.00/1.00, addr 1
[ 3.8922200] usb3 at vhci3: USB revision 2.0
[ 3.9122409] uhub3 at usb3: NetBSD (0x0000) VHCI root hub (0x0000), class 9/0, rev 2.00/1.00, addr 1
[ 4.2922026] usb4 at vhci4: USB revision 2.0
[ 4.3122362] uhub4 at usb4: NetBSD (0x0000) VHCI root hub (0x0000), class 9/0, rev 2.00/1.00, addr 1
[ 4.6922009] usb5 at vhci5: USB revision 2.0
[ 4.7222204] uhub5 at usb5: NetBSD (0x0000) VHCI root hub (0x0000), class 9/0, rev 2.00/1.00, addr 1
[ 5.1021993] usb6 at vhci6: USB revision 2.0
[ 5.1322309] uhub6 at usb6: NetBSD (0x0000) VHCI root hub (0x0000), class 9/0, rev 2.00/1.00, addr 1
[ 5.5221987] usb7 at vhci7: USB revision 2.0
[ 5.5522378] uhub7 at usb7: NetBSD (0x0000) VHCI root hub (0x0000), class 9/0, rev 2.00/1.00, addr 1
[ 5.6122391] boot device: sd0
[ 5.6122391] root on dk0 dumps on dk1
[ 5.6221953] dump_misc_init: max_paddr = 0x240000000
[ 5.6326701] mountroot: trying lfs...
[ 5.6421949] mountroot: trying ffs...
[ 5.6722132] root file system type: ffs
[ 5.6859918] kern.module.path=/stand/amd64/9.99.98/modules
[ 5.6933026] clock: unknown CMOS layout
[ 5.7622390] init: copying out path `/sbin/init' 11
Thu Jul 7 16:46:37 UTC 2022
Fast boot: skipping disk checks.
[ 7.3021889] /dev/dk0: file system not clean (fs_clean=0x4); please fsck(8)
[ 7.3021889] /dev/dk0: lost blocks 0 files 0
swapctl: setting dump device to /dev/dk1
swapctl: adding /dev/dk1 as swap device at priority 0
Starting file system checks:
Loaded entropy from /var/db/entropy-file.
Setting tty flags.
Setting sysctl variables:
ddb.onpanic: 1 -> 1
ddb.commandonenter: trace;show registers -> "show registers;bt;show panic;ps;show all locks;show all pages;show all pools"
ddb.lines: 24 -> 0
ddb.maxwidth: 80 -> 0
Starting network.
ifconfig: SIOCAIFADDR: Invalid argument
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
route: writing to routing socket: Network is unreachable
IPv6 mode: host
Configuring network interfaces: vioif0dhcpcd-9.1.1 starting
DUID 00:04:ee:c2:5b:ab:74:4a:db:6b:de:f1:43:35:f7:c9:72:27
vioif0: SIOCGIFINFO_FLAGS: Invalid argument
vioif0: SIOCSIFINFO_FLAGS: Invalid argument
[ 10.0351940] vioif0: link state UP (was UNKNOWN)
vioif0: carrier acquired
vioif0: SIOCGIFINFO_FLAGS: Invalid argument
vioif0: SIOCSIFINFO_FLAGS: Invalid argument
vioif0: IAID 0a:80:0a:2d
ipv6_readsecret: cannot write secret: No such file or directory
vioif0: ipv6_start: No such file or directory
vioif0: soliciting a DHCP lease
vioif0: offered 10.128.10.45 from 169.254.169.254
ipv4_addaddr: if_addaddress: Invalid argument
timed out
dhcpcd exited
.
Adding interface aliases:.
Waiting for duplicate address detection to finish...
Starting dhcpcd.
vioif0: SIOCGIFINFO_FLAGS: Invalid argument
vioif0: SIOCSIFINFO_FLAGS: Invalid argument
vioif0: SIOCGIFINFO_FLAGS: Invalid argument
vioif0: SIOCSIFINFO_FLAGS: Invalid argument
ipv4_addaddr: if_addaddress: Invalid argument
timed out
Building databases: dev, utmp, utmpx.
wsconscfg: Cannot open `/dev/ttyEcfg': Device not configured
wsconscfg: Cannot open `/dev/ttyEcfg': Device not configured
wsconscfg: Cannot open `/dev/ttyEcfg': Device not configured
wsconscfg: Cannot open `/dev/ttyEcfg': Device not configured
Starting syslogd.
Mounting all file systems...
[ 73.6919275] /dev/dk0: file system not clean (fs_clean=0x4); please fsck(8)
[ 73.7059001] /dev/dk0: lost blocks 0 files 0
Clearing temporary files.
Checking quotas: done.
swapctl: setting dump device to /dev/dk1
Starting virecover.
Checking for core dump...
savecore: no core dump
Starting local daemons:.
Updating motd.
Starting powerd.
Starting sshd.
Thu Jul 7 16:47:49 UTC 2022


NetBSD/amd64 (Amnesiac) (constty)



login: Jul 7 16:47:51 getty[813]: /dev/ttyE2: Device not configured
Jul 7 16:47:51 getty[816]: /dev/ttyE1: Device not configured
Jul 7 16:47:51 getty[802]: /dev/ttyE3: Device not configured


syzkaller build log:
go env (err=<nil>)
GO111MODULE="auto"
GOARCH="amd64"
GOBIN=""
GOCACHE="/syzkaller/.cache/go-build"
GOENV="/syzkaller/.config/go/env"
GOEXE=""
GOEXPERIMENT=""
GOFLAGS=""
GOHOSTARCH="amd64"
GOHOSTOS="linux"
GOINSECURE=""
GOMODCACHE="/syzkaller/jobs/netbsd/gopath/pkg/mod"
GONOPROXY=""
GONOSUMDB=""
GOOS="linux"
GOPATH="/syzkaller/jobs/netbsd/gopath"
GOPRIVATE=""
GOPROXY="https://proxy.golang.org,direct"
GOROOT="/usr/local/go"
GOSUMDB="sum.golang.org"
GOTMPDIR=""
GOTOOLDIR="/usr/local/go/pkg/tool/linux_amd64"
GOVCS=""
GOVERSION="go1.17"
GCCGO="gccgo"
AR="ar"
CC="gcc"
CXX="g++"
CGO_ENABLED="1"
GOMOD="/syzkaller/jobs/netbsd/gopath/src/github.com/google/syzkaller/go.mod"
CGO_CFLAGS="-g -O2"
CGO_CPPFLAGS=""
CGO_CXXFLAGS="-g -O2"
CGO_FFLAGS="-g -O2"
CGO_LDFLAGS="-g -O2"
PKG_CONFIG="pkg-config"
GOGCCFLAGS="-fPIC -m64 -pthread -fmessage-length=0 -fdebug-prefix-map=/tmp/go-build2680790023=/tmp/go-build -gno-record-gcc-switches"

git status (err=<nil>)
HEAD detached at bff65f44b
nothing to commit, working tree clean


go list -f '{{.Stale}}' ./sys/syz-sysgen | grep -q false || go install ./sys/syz-sysgen
make .descriptions
bin/syz-sysgen
touch .descriptions
GOOS=netbsd GOARCH=amd64 go build "-ldflags=-s -w -X github.com/google/syzkaller/prog.GitRevision=bff65f44b47bd73f56c3d6a5c3899de5f5775136 -X 'github.com/google/syzkaller/prog.gitRevisionDate=20220704-135716'" "-tags=syz_target syz_os_netbsd syz_arch_amd64 " -o ./bin/netbsd_amd64/syz-fuzzer github.com/google/syzkaller/syz-fuzzer
GOOS=netbsd GOARCH=amd64 go build "-ldflags=-s -w -X github.com/google/syzkaller/prog.GitRevision=bff65f44b47bd73f56c3d6a5c3899de5f5775136 -X 'github.com/google/syzkaller/prog.gitRevisionDate=20220704-135716'" "-tags=syz_target syz_os_netbsd syz_arch_amd64 " -o ./bin/netbsd_amd64/syz-execprog github.com/google/syzkaller/tools/syz-execprog
GOOS=netbsd GOARCH=amd64 go build "-ldflags=-s -w -X github.com/google/syzkaller/prog.GitRevision=bff65f44b47bd73f56c3d6a5c3899de5f5775136 -X 'github.com/google/syzkaller/prog.gitRevisionDate=20220704-135716'" "-tags=syz_target syz_os_netbsd syz_arch_amd64 " -o ./bin/netbsd_amd64/syz-stress github.com/google/syzkaller/tools/syz-stress
mkdir -p ./bin/netbsd_amd64
/syzkaller/shared/netbsd/tools/bin/x86_64--netbsd-g++ -o ./bin/netbsd_amd64/syz-executor executor/executor.cc \
-m64 --sysroot /syzkaller/shared/netbsd/dest/ -O2 -pthread -Wall -Werror -Wparentheses -Wframe-larger-than=16384 -fpermissive -w -DGOOS_netbsd=1 -DGOARCH_amd64=1 \
-DHOSTGOOS_linux=1 -DGIT_REVISION=\"bff65f44b47bd73f56c3d6a5c3899de5f5775136\"


Error text is too large and was truncated, full error text is at:
https://syzkaller.appspot.com/x/error.txt?x=15f6dff4080000


Tested on:

commit: 2f5de0fa Convert CTASSERT(9) for PAGE_{SIZE,MASK} into..
kernel config: https://syzkaller.appspot.com/x/.config?x=fab579639ba4bf0a
dashboard link: https://syzkaller.appspot.com/bug?extid=19b1bf83e5481273eafc
compiler: g++ (Debian 10.2.1-6) 10.2.1 20210110
patch: https://syzkaller.appspot.com/x/patch.diff?x=11979350080000

syzbot

unread,
Jul 7, 2022, 2:38:07 PM7/7/22
to rias...@netbsd.org, syzkaller-...@googlegroups.com
Hello,

syzbot has tested the proposed patch and the reproducer did not trigger any issue:

Reported-and-tested-by: syzbot+19b1bf...@syzkaller.appspotmail.com

Tested on:

commit: 694b39ba uvm: CTASSERT about MIN_PAGE_SIZE, which is c..
console output: https://syzkaller.appspot.com/x/log.txt?x=1161cd5c080000
kernel config: https://syzkaller.appspot.com/x/.config?x=fab579639ba4bf0a
dashboard link: https://syzkaller.appspot.com/bug?extid=19b1bf83e5481273eafc
compiler: g++ (Debian 10.2.1-6) 10.2.1 20210110
patch: https://syzkaller.appspot.com/x/patch.diff?x=14d21e00080000

Note: testing is done by a robot and is best-effort only.
Reply all
Reply to author
Forward
0 new messages