UBSan: Undefined Behavior in exit1 (4)

0 views
Skip to first unread message

syzbot

unread,
Apr 18, 2024, 10:06:20 PMApr 18
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: c41df0aeb584 Fix types in pmap_page_clear_attributes so th..
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=149e1ffb180000
kernel config: https://syzkaller.appspot.com/x/.config?x=1420f906d33d9f1f
dashboard link: https://syzkaller.appspot.com/bug?extid=8637caea8f2d678fae66
compiler: g++ (Debian 12.2.0-14) 12.2.0

Unfortunately, I don't have any reproducer for this issue yet.

Downloadable assets:
disk image: https://storage.googleapis.com/syzbot-assets/8b95cc531e19/disk-c41df0ae.raw.xz
netbsd.gdb: https://storage.googleapis.com/syzbot-assets/17e95eab0667/netbsd-c41df0ae.gdb.xz

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+8637ca...@syzkaller.appspotmail.com

[ 731.4270182] panic: UBSan: Undefined Behavior in /syzkaller/managers/ci2-netbsd-kubsan/kernel/sys/kern/kern_exit.c:373:6, member access within null pointer of type 'struct session'

[ 731.4509097] cpu0: Begin traceback...
[ 731.4670059] vpanic() at netbsd:vpanic+0x2f0 sys/kern/subr_prf.c:288
[ 731.5470048] Report() at netbsd:Report+0x3b sys/../common/lib/libc/misc/ubsan.c:1352
[ 731.6070048] HandleTypeMismatch() at netbsd:HandleTypeMismatch+0x1fb sys/../common/lib/libc/misc/ubsan.c:429
[ 731.6670043] exit1() at netbsd:exit1+0x24e5 sys/kern/kern_exit.c:373
[ 731.7170509] sigexit() at netbsd:sigexit+0x5ce sys/kern/kern_sig.c:2264
[ 731.7670026] sendsig_siginfo() at netbsd:sendsig_siginfo+0x9a6 buildcontext sys/arch/amd64/amd64/machdep.c:561 [inline]
[ 731.7670026] sendsig_siginfo() at netbsd:sendsig_siginfo+0x9a6 sys/arch/amd64/amd64/machdep.c:642
[ 731.8170049] sendsig() at netbsd:sendsig+0x1b6 sys/kern/kern_sig.c:2193
[ 731.8870018] trapsignal() at netbsd:trapsignal+0xb9c sys/kern/kern_sig.c:979
[ 731.9370044] trap() at netbsd:trap+0x1310 sys/arch/amd64/amd64/trap.c:650
[ 731.9570018] --- trap (number 6) ---
[ 731.9570018] 0:
[ 731.9570018] cpu0: End traceback...
[ 731.9676056] fatal breakpoint trap in supervisor mode
[ 731.9676056] trap type 1 code 0 rip 0xffffffff80235475 cs 0x8 rflags 0x246 cr2 0x1ffffce8 ilevel 0 rsp 0xffff8e02485a5310
[ 731.9831350] curlwp 0xffff8374a967da00 pid 4883.4883 lowest kstack 0xffff8e02485a12c0
Stopped in pid 4883.4883 (syz-executor.1) at netbsd:breakpoint+0x5: leave
?
breakpoint() at netbsd:breakpoint+0x5
db_panic() at netbsd:db_panic+0xec sys/ddb/db_panic.c:71
vpanic() at netbsd:vpanic+0x2f0 sys/kern/subr_prf.c:288
Report() at netbsd:Report+0x3b sys/../common/lib/libc/misc/ubsan.c:1352
HandleTypeMismatch() at netbsd:HandleTypeMismatch+0x1fb sys/../common/lib/libc/misc/ubsan.c:429
exit1() at netbsd:exit1+0x24e5 sys/kern/kern_exit.c:373
sigexit() at netbsd:sigexit+0x5ce sys/kern/kern_sig.c:2264
sendsig_siginfo() at netbsd:sendsig_siginfo+0x9a6 buildcontext sys/arch/amd64/amd64/machdep.c:561 [inline]
sendsig_siginfo() at netbsd:sendsig_siginfo+0x9a6 sys/arch/amd64/amd64/machdep.c:642
sendsig() at netbsd:sendsig+0x1b6 sys/kern/kern_sig.c:2193
trapsignal() at netbsd:trapsignal+0xb9c sys/kern/kern_sig.c:979
trap() at netbsd:trap+0x1310 sys/arch/amd64/amd64/trap.c:650
--- trap (number 6) ---
0:
Panic string: UBSan: Undefined Behavior in /syzkaller/managers/ci2-netbsd-kubsan/kernel/sys/kern/kern_exit.c:373:6, member access within null pointer of type 'struct session'

PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
4864 4864 2 1 0 ffff8374aa225540 syz-executor.3
27881 27881 2 0 0 ffff8374a1f84040 syz-executor.1
4883 > 4883 7 0 0 ffff8374a967da00 syz-executor.1
4879 26825 3 1 0 ffff8374ae53b640 syz-executor.0 mutex
4879 4879 2 1 10000000 ffff8374aef971c0 syz-executor.0
4547 4871 3 0 180 ffff837470d1f5c0 syz-executor.1 parked
4547 4884 3 1 180 ffff837457a94600 syz-executor.1 parked
4547 4876 2 0 0 ffff837469fdb640 syz-executor.1
4547 4547 2 0 10000000 ffff8374a67bc500 syz-executor.1
7531 5356 3 0 4100000 ffff837467a859c0 syz-executor.5 fdclose
7531 5588 2 0 4100100 ffff837494510700 syz-executor.5
7531 7531 2 1 10040040 ffff83748efe7780 syz-executor.5
6652 6652 3 1 40040 ffff837495407740 syz-executor.3 mutex
4339 4339 3 1 10040000 ffff8374ab8db9c0 syz-executor.2 mutex
15076 15076 3 1 180 ffff8374ad452240 syz-executor.4 parked
5166 5166 3 1 180 ffff8374b247d6c0 syz-executor.2 parked
4476 4476 3 1 40 ffff8374aa225100 syz-executor.5 mutex
6506 6506 3 1 180 ffff8374ae53b200 syz-executor.2 parked
23965 23965 2 0 140 ffff8374aa225980 syz-executor.0
10890 10890 3 1 180 ffff8374ab8db580 syz-executor.4 parked
6502 6502 3 1 40 ffff8374a1f848c0 syz-executor.1 mutex
4361 4361 3 1 40 ffff8374636b7a00 syz-executor.2 mutex
26830 26830 3 1 180 ffff83747ea0a600 syz-executor.3 parked
6632 6632 3 1 180 ffff8374945102c0 syz-executor.1 parked
4516 4516 3 0 180 ffff83748b0bcac0 syz-executor.0 parked
25235 25235 3 1 180 ffff83748efe7bc0 syz-executor.3 parked
3955 3955 3 0 180 ffff83749525e080 syz-executor.3 parked
27220 27220 3 1 180 ffff837470d1f180 syz-executor.4 parked
5441 5441 3 0 180 ffff83749525e900 syz-executor.4 parked
9526 9526 3 1 180 ffff83749525e4c0 syz-executor.5 parked
3868 3868 3 0 180 ffff8374636b7180 syz-executor.2 parked
4862 4862 3 0 180 ffff837495407b80 syz-executor.2 parked
28342 28342 3 0 180 ffff837452710b80 syz-executor.1 parked
21638 21638 3 0 180 ffff83746f9ca2c0 syz-executor.1 parked
5921 5921 3 1 1c0 ffff83746e6281c0 getty ttyraw
4741 4741 3 0 180 ffff83745af62080 syz-executor.3 parked
13449 13449 3 0 180 ffff8374797b8580 syz-executor.3 parked
6703 6703 3 0 180 ffff837459b41280 syz-executor.3 parked
4410 4410 3 0 180 ffff8374673720c0 syz-executor.3 parked
5173 5173 3 0 180 ffff8374697a8b00 syz-executor.4 parked
8651 8651 3 1 180 ffff83748efe7340 syz-executor.0 parked
25440 25440 3 1 180 ffff83748e924280 syz-executor.4 parked
5179 5179 3 0 180 ffff837495407300 syz-executor.3 parked
5188 5188 3 0 180 ffff83748e924b00 syz-executor.5 parked
13879 27977 3 0 1100000 ffff837473521780 syz-executor.3 vfork
13879 13879 2 1 11000040 ffff837467372940 syz-executor.3
4680 4680 3 1 180 ffff83748b0bc680 syz-executor.2 parked
1823 1823 3 1 180 ffff837470d1fa00 syz-executor.3 parked
4829 4829 3 0 180 ffff837467842540 syz-executor.5 parked
1924 1924 3 1 180 ffff8374599feb80 syz-executor.3 parked
13283 13283 3 0 180 ffff8374582f72c0 syz-executor.4 parked
2907 2907 3 1 180 ffff83745a48d8c0 syz-executor.2 parked
5950 5950 3 0 180 ffff83748e9246c0 syz-executor.0 parked
18981 18981 3 0 180 ffff83747a65b100 syz-executor.4 parked
23892 23892 3 0 180 ffff837446597080 syz-executor.4 parked
20572 20572 3 0 180 ffff837480056a80 syz-executor.1 parked
25161 25161 3 1 180 ffff8374697a8280 syz-executor.2 parked
18725 18725 3 0 180 ffff83746e628a40 syz-executor.5 parked
23486 23486 3 1 180 ffff83747a65b540 syz-executor.3 parked
19660 19660 3 0 180 ffff837480056200 syz-executor.4 parked
20555 20555 3 1 180 ffff83747ea0aa40 syz-executor.0 parked
20159 20159 3 0 180 ffff83746f9cab40 syz-executor.1 parked
18093 18093 3 1 180 ffff8374697a86c0 syz-executor.5 parked
15170 15170 3 0 180 ffff837467842100 syz-executor.1 parked
15575 15575 3 1 180 ffff837447427600 syz-executor.3 parked
14899 14899 3 1 180 ffff837469420300 syz-executor.1 parked
13397 13397 3 1 180 ffff8374462f8a00 syz-executor.5 parked
10633 11575 3 1 1100000 ffff83746e628600 syz-executor.5 vfork
10633 10633 2 1 11000040 ffff837469420740 syz-executor.5
12515 12515 3 1 180 ffff83745c4a2940 syz-executor.1 parked
11236 11236 3 0 180 ffff8374797b89c0 syz-executor.2 parked
13521 13521 3 0 180 ffff837467a85140 syz-executor.1 parked
10054 10054 3 1 180 ffff83744d651140 syz-executor.5 parked
8592 8592 3 1 180 ffff83746a609680 syz-executor.3 parked
8076 8076 3 1 180 ffff837469420b80 syz-executor.1 parked
7050 7050 3 1 180 ffff837471d888c0 syz-executor.1 parked
7869 7869 3 0 180 ffff83746f9ca700 syz-executor.2 parked
5158 5158 3 0 180 ffff837471d88480 syz-executor.5 parked
5835 5835 3 0 180 ffff837471d88040 syz-executor.5 parked
4863 4863 3 0 180 ffff837469fdb200 syz-executor.0 parked
4794 4794 3 0 180 ffff8374636b75c0 syz-executor.0 parked
2884 2884 3 0 180 ffff83746a609240 syz-executor.0 parked
3887 3887 3 0 180 ffff837469fdba80 syz-executor.0 parked
5182 5182 3 0 180 ffff837446477b00 syz-executor.2 parked
3179 3179 3 1 180 ffff8374474271c0 syz-executor.5 parked
4279 4279 3 1 180 ffff8374582f7700 syz-executor.5 parked
2978 2978 3 0 180 ffff837459b416c0 syz-executor.2 parked
2545 2545 3 0 180 ffff8374599fe740 syz-executor.1 parked
2046 2046 3 0 180 ffff8374533e6980 syz-executor.1 parked
2691 2691 3 0 180 ffff8374599fe300 syz-executor.2 parked
4523 4523 3 1 180 ffff8374473ee700 syz-executor.2 parked
4059 4059 3 1 180 ffff837467a85580 syz-executor.2 parked
1938 1938 3 0 180 ffff8374465a6200 syz-executor.2 parked
1948 1925 3 0 11100000 ffff83744ce0f780 syz-executor.2 vfork
1948 1948 2 1 11000040 ffff837456475680 syz-executor.2
4061 4061 3 0 180 ffff83745a48d480 syz-executor.5 parked
2150 1520 3 0 1100000 ffff83745c4a20c0 syz-executor.5 vfork
2150 2150 2 1 11000040 ffff837447427a40 syz-executor.5
2154 2154 3 1 180 ffff8374582f7b40 syz-executor.1 parked
1688 1774 3 1 11100000 ffff83744dc105c0 syz-executor.1 vfork
1688 1688 2 1 11000040 ffff83745af62900 syz-executor.1
1575 1575 3 0 180 ffff8374465a6640 syz-executor.4 parked
1689 1872 3 0 1100000 ffff8374462f8180 syz-executor.4 vfork
1689 1689 2 1 11000040 ffff83745c4a2500 syz-executor.4
1601 1601 3 0 180 ffff837453ae1bc0 syz-executor.3 parked
2357 2357 3 1 180 ffff83745af624c0 syz-executor.2 parked
1428 1439 3 0 1100000 ffff837453ae1340 syz-executor.3 vfork
1428 1428 2 1 11000040 ffff8374543bf200 syz-executor.3
2220 3883 3 1 1100000 ffff83744aa24040 syz-executor.2 vfork
2220 2220 2 1 11000040 ffff8374512524c0 syz-executor.2
1153 1153 3 1 180 ffff83744670e0c0 syz-executor.1 parked
3433 3433 3 0 180 ffff83745a48d040 syz-executor.4 parked
505 505 3 1 180 ffff837456475ac0 syz-executor.4 parked
499 499 3 1 180 ffff837445f01480 syz-executor.4 parked
495 502 3 1 1100000 ffff8374543bfa80 syz-executor.4 vfork
495 498 3 1 1100000 ffff83744dc10a00 syz-executor.4 vfork
495 495 2 1 11000040 ffff837451252080 syz-executor.4
1516 1516 3 0 180 ffff837456475240 syz-executor.0 parked
2655 2655 3 1 180 ffff837457a94a40 syz-executor.3 parked
386 386 3 1 180 ffff83744ce0fbc0 syz-executor.0 parked
2610 2610 3 1 180 ffff837450638500 syz-executor.0 parked
2268 2268 3 1 180 ffff83744d651580 syz-executor.0 parked
2227 2227 3 1 180 ffff83744d6519c0 syz-executor.2 parked
2385 2385 3 1 180 ffff837452710740 syz-executor.2 parked
2527 2527 3 1 180 ffff83744dc10180 syz-executor.3 parked
2139 2139 3 1 180 ffff83744aa24480 syz-executor.5 parked
1237 10176 3 1 180 ffff8374758cb4c0 syz-fuzzer wait
1237 8699 3 1 180 ffff8374758cb080 syz-fuzzer parked
1237 1351 3 0 180 ffff8374465a6a80 syz-fuzzer wait
1237 1205 3 1 180 ffff837446477280 syz-fuzzer wait
1237 1199 3 0 180 ffff8374473eeb40 syz-fuzzer parked
1237 1240 3 1 180 ffff8374473ee2c0 syz-fuzzer wait
1237 1236 3 1 180 ffff8374459832c0 syz-fuzzer parked
1237 449 2 0 0 ffff83744670e500 syz-fuzzer
1237 1113 3 0 180 ffff837445a4f300 syz-fuzzer parked
1237 1132 3 0 180 ffff837445c3fbc0 syz-fuzzer parked
1237 990 3 1 180 ffff83744548cac0 syz-fuzzer parked
1237 1128 3 1 180 ffff8374465974c0 syz-fuzzer parked
1237 929 3 1 180 ffff837445983700 syz-fuzzer wait
1237 942 3 1 180 ffff8374468139c0 syz-fuzzer parked
1237 1231 2 0 140 ffff8374454b7200 syz-fuzzer
1237 1237 3 0 180 ffff8374457f5b00 syz-fuzzer parked
1080 1080 3 0 180 ffff837446813580 sshd select
1151 1151 3 0 180 ffff83744673b540 getty nanoslp
1222 1222 3 0 180 ffff837445a4fb80 getty nanoslp
1082 1082 3 1 180 ffff8374457f5280 getty nanoslp
1102 1102 3 0 180 ffff837447791680 sshd select
1088 1088 3 0 180 ffff837447791ac0 powerd kqueue
812 812 3 0 180 ffff8374462f85c0 syslogd kqueue
746 746 3 0 180 ffff837445a4f740 dhcpcd poll
747 747 3 1 180 ffff83744673b100 dhcpcd poll
742 742 3 1 180 ffff83744673b980 dhcpcd poll
598 598 3 1 180 ffff837445f018c0 dhcpcd poll
292 292 3 0 180 ffff837445c3f340 dhcpcd poll
485 485 3 1 180 ffff837445c3f780 dhcpcd poll
291 291 3 1 180 ffff837445f01040 dhcpcd poll
1 1 3 0 180 ffff83743d288100 init wait
0 4868 3 1 200 ffff8374a967d5c0 ktrace ktrwait
0 26787 3 1 200 ffff837467842980 ktrace ktrwait
0 7830 3 0 200 ffff837453ae1780 ktrace ktrwait
0 27424 3 0 200 ffff83746a609ac0 ktrace ktrwait
0 2792 3 1 200 ffff837446813140 ktrace ktrwait
0 4691 3 1 200 ffff83744aa248c0 ktrace ktrwait
0 850 3 0 200 ffff837457a941c0 ktrace ktrwait
0 1326 3 0 200 ffff8374464776c0 ktrace ktrwait
0 2876 3 1 200 ffff8374533e6100 ktrace ktrwait
0 644 3 1 200 ffff83744ce0f340 ktrace ktrwait
0 2875 3 1 200 ffff837459b41b00 ktrace ktrwait
0 1497 3 0 200 ffff8374543bf640 ktrace ktrwait
0 2509 3 1 200 ffff837446597900 ktrace ktrwait
0 2888 3 1 200 ffff837450638940 ktrace ktrwait
0 2484 3 0 200 ffff837452710300 ktrace ktrwait
0 676 3 1 200 ffff8374533e6540 ktrace ktrwait
0 414 3 1 200 ffff837445983b40 ktrace ktrwait
0 401 3 1 200 ffff837447791240 ktrace ktrwait
0 1605 3 0 200 ffff837451252900 ktrace ktrwait
0 2125 3 1 200 ffff8374506380c0 ktrace ktrwait
0 557 3 1 200 ffff8374454b7640 physiod physiod
0 196 3 0 200 ffff83744548c680 pooldrain pooldrain
0 > 195 7 1 240 ffff83744548c240 ioflush
0 194 3 1 200 ffff8374454b7a80 pgdaemon pgdaemon
0 170 3 1 200 ffff8374433dea40 usb7 usbevt
0 169 3 0 200 ffff8374433de600 usb6 usbevt
0 168 3 0 200 ffff8374433de1c0 usb5 usbevt
0 167 3 1 200 ffff837440361a00 usb4 usbevt
0 166 2 0 240 ffff8374403615c0 usb3
0 165 3 0 200 ffff837440361180 usb2 usbevt
0 31 3 0 200 ffff83743e2ec9c0 usb1 usbevt
0 63 3 1 200 ffff83743e2ec580 usb0 usbevt
0 126 3 0 200 ffff83743e2ec140 usbtask-dr usbtsk
0 125 3 1 200 ffff83743d288980 usbtask-hc usbtsk
0 124 3 0 200 ffff83743b695b00 swwreboot swwreboot
0 123 3 0 200 ffff83743d288540 npfgc0 npfgcw
0 122 3 0 200 ffff83743d0ff740 rt_free rt_free
0 121 3 0 200 ffff83743d0ffb80 unpgc unpgc
0 120 3 0 200 ffff83743d1de340 key_timehandler key_timehandler
0 119 3 1 200 ffff83743d24d940 icmp6_wqinput/1 icmp6_wqinput
0 118 3 0 200 ffff83743d24d500 icmp6_wqinput/0 icmp6_wqinput
0 117 3 0 200 ffff83743d24d0c0 nd6_timer nd6_timer
0 116 3 1 200 ffff83743d240900 carp6_wqinput/1 carp6_wqinput
0 115 3 0 200 ffff83743d2404c0 carp6_wqinput/0 carp6_wqinput
0 114 3 1 200 ffff83743d240080 carp_wqinput/1 carp_wqinput
0 113 3 0 200 ffff83743d2138c0 carp_wqinput/0 carp_wqinput
0 112 3 1 200 ffff83743d213480 icmp_wqinput/1 icmp_wqinput
0 111 3 0 200 ffff83743d213040 icmp_wqinput/0 icmp_wqinput
0 110 3 0 200 ffff83743d1debc0 rt_timer rt_timer
0 109 3 0 200 ffff83743d1de780 vmem_rehash vmem_rehash
0 100 3 0 200 ffff83743d0ff300 entbutler entropy
0 99 3 0 200 ffff83743cb3eb40 viomb balloon
0 98 3 1 200 ffff83743cb3e700 vioif0_txrx/1 vioif0_txrx
0 97 3 0 200 ffff83743cb3e2c0 vioif0_txrx/0 vioif0_txrx
0 30 3 1 200 ffff83743b6956c0 scsibus0 sccomp
0 29 3 0 200 ffff83743b695280 pms0 pmsreset
0 28 3 1 200 ffff83743b5b5ac0 xcall/1 xcall
0 27 1 1 200 ffff83743b5b5680 softser/1
0 26 1 1 200 ffff83743b5b5240 softclk/1
0 25 1 1 200 ffff83743b590a80 softbio/1
0 24 1 1 200 ffff83743b590640 softnet/1
0 23 1 1 201 ffff83743b590200 idle/1
0 22 3 0 200 ffff837569931a40 lnxsyswq lnxsyswq
0 21 3 0 200 ffff837569931600 lnxubdwq lnxubdwq
0 20 3 0 200 ffff8375699311c0 lnxpwrwq lnxpwrwq
0 19 3 1 200 ffff837569944a00 lnxlngwq lnxlngwq
0 18 3 1 200 ffff8375699445c0 lnxhipwq lnxhipwq
0 17 3 1 200 ffff837569944180 lnxrcugc lnxrcugc
0 16 3 0 200 ffff8375699579c0 sysmon smtaskq
0 15 3 1 200 ffff837569957580 pmfsuspend pmfsuspend
0 14 3 1 200 ffff837569957140 pmfevent pmfevent
0 13 3 0 200 ffff83756996e980 sopendfree sopendfr
0 12 3 0 200 ffff83756996e540 ifwdog ifwdog
0 11 3 0 200 ffff83756996e100 iflnkst iflnkst
0 10 3 1 200 ffff83756a997940 nfssilly nfssilly
0 9 3 1 200 ffff83756a997500 pooldisp pooldisp
0 8 3 1 200 ffff83756a9970c0 modunload mod_unld
0 7 3 0 200 ffff83756a9c2900 xcall/0 xcall
0 6 1 0 200 ffff83756a9c24c0 softser/0
0 5 1 0 200 ffff83756a9c2080 softclk/0
0 4 1 0 200 ffff83756a9ed8c0 softbio/0
0 3 1 0 200 ffff83756a9ed480 softnet/0
0 2 1 0 201 ffff83756a9ed040 idle/0
0 0 2 0 240 ffffffff8678ac00 swapper
[Locks tracked through LWPs]

****** LWP 4883.4883 (syz-executor.1) @ 0xffff8374a967da00, l_stat=7

*** Locks held:

* Lock 0 (initialized at netbsd:fork1+0x4c5 sys/kern/kern_fork.c:366)
lock address : ffff8374afe32e10
type : sleep/adaptive
initialized : netbsd:fork1+0x4c5
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff8374a967da00 last held: 0xffff8374a967da00
last locked* : netbsd:exit1+0x393
unlocked : 0
owner/count : 0xffff8374a967da00 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at netbsd:procinit+0x86 sys/kern/kern_proc.c:387)
lock address : netbsd:proc_lock
type : sleep/adaptive
initialized : netbsd:procinit+0x86
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff8374a967da00 last held: 0xffff8374a967da00
last locked* : netbsd:exit1+0x55c
unlocked : netbsd:do_sys_waitid+0xc9c
owner field : 0xffff8374a967da00 wait/spin: 1/0
Turnstile:
=> 0 waiting readers:
=> 6 waiting writers: 0xffff8374636b7a00 0xffff8374aa225100 0xffff8374a1f848c0 0xffff837495407740 0xffff8374ab8db9c0 0xffff8374ae53b640

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff8374a967da00 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 4339.4339 (syz-executor.2) @ 0xffff8374ab8db9c0, l_stat=3

*** Locks held:

* Lock 0 (initialized at netbsd:fork1+0x4c5 sys/kern/kern_fork.c:366)
lock address : ffff8374ae20d3d0
type : sleep/adaptive
initialized : netbsd:fork1+0x4c5
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff8374ab8db9c0 last held: 0xffff8374ab8db9c0
last locked* : netbsd:exit1+0x393
unlocked : netbsd:execve_loadvm+0x2c7
owner/count : 0xffff8374ab8db9c0 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at netbsd:amap_alloc1+0x30a sys/uvm/uvm_amap.c:167)
lock address : ffff8374ac8ade80
type : sleep/adaptive
initialized : netbsd:amap_alloc1+0x30a
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff8374ab8db9c0 last held: 0xffff8374ab8db9c0
last locked* : netbsd:amap_unref+0x3a
unlocked : netbsd:amap_extend+0xacd
owner/count : 000000000000000000 flags : 000000000000000000
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 747.747 (dhcpcd) @ 0xffff83744673b100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff83744673b100 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 742.742 (dhcpcd) @ 0xffff83744673b980, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff83744673b980 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 485.485 (dhcpcd) @ 0xffff837445c3f780, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff837445c3f780 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 291.291 (dhcpcd) @ 0xffff837445f01040, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff837445f01040 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.26 (softclk/1) @ 0xffff83743b5b5240, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff83743b5b5240 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xffff83756996e100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff83756996e100 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.0 (swapper) @ 0xffffffff8678ac00, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffffff8678ac00 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

******* Locks held on cpu0:

* Lock 0 (initialized at netbsd:kprintf_init+0x72 sys/kern/subr_prf.c:156)
lock address : netbsd:kprintf_mtx
type : spin
initialized : netbsd:kprintf_init+0x72
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff8374a967da00 last held: 0xffff8374a967da00
last locked* : netbsd:kprintf_lock+0x50
unlocked : netbsd:kprintf_unlock+0x70
owner field : 0x0000000000000800 wait/spin: 0/1

PAGE FLAG PQ UOBJECT UANON
0xffff8e0000007180 0045 00000000 0x0 0x0
0xffff8e0000007200 0045 00000000 0x0 0x0
0xffff8e0000007280 0045 00000000 0x0 0x0
0xffff8e0000007300 0045 00000000 0x0 0x0
0xffff8e0000007380 0045 00000000 0x0 0x0
0xffff8e0000007400 0045 00000000 0x0 0x0
0xffff8e0000007480 0045 00000000 0x0 0x0
0xffff8e0000007500 0045 00000000 0x0 0x0
0xffff8e0000007580 0045 00000000 0x0 0x0
0xffff8e0000007600 0045 00000000 0x0 0x0
0xffff8e0000007680 0045 00000000 0x0 0x0
0xffff8e0000007700 0041 00000000 0x0 0x0
0xffff8e0000007780 0041 00000000 0x0 0x0
0xffff8e0000007800 0041 00000000 0x0 0x0
0xffff8e0000007880 0041 00000000 0x0 0x0
0xffff8e0000007900 0041 00000000 0x0 0x0
0xffff8e0000007980 0041 00000000 0x0 0x0
0xffff8e0000007a00 0041 00000000 0x0 0x0
0xffff8e0000007a80 0041 00000000 0x0 0x0
0xffff8e0000007b00 0041 00000000 0x0 0x0
0xffff8e0000007b80 0041 00000000 0x0 0x0
0xffff8e0000007c00 0041 00000000 0x0 0x0
0xffff8e0000007c80 0041 00000000 0x0 0x0
0xffff8e0000007d00 0041 00000000 0x0 0x0
0xffff8e0000007d80 0041 00000000 0x0 0x0
0xffff8e0000007e00 0041 00000000 0x0 0x0
0xffff8e0000007e80 0041 00000000 0x0 0x0
0xffff8e0000007f00 0041 00000000 0x0 0x0
0xffff8e0000007f80 0041 00000000 0x0 0x0
0xffff8e0000008000 0041 00000000 0x0 0x0
0xffff8e0000008080 0041 00000000 0x0 0x0
0xffff8e0000008100 0041 00000000 0x0 0x0
0xffff8e0000008180 0041 00000000 0x0 0x0
0xffff8e0000008200 0041 00000000 0x0 0x0
0xffff8e0000008280 0041 00000000 0x0 0x0
0xffff8e0000008300 0041 00000000 0x0 0x0
0xffff8e0000008380 0041 00000000 0x0 0x0
0xffff8e0000008400 0041 00000000 0x0 0x0
0xffff8e0000008480 0041 00000000 0x0 0x0
0xffff8e0000008500 0041 00000000 0x0 0x0
0xffff8e0000008580 0041 00000000 0x0 0x0
0xffff8e0000008600 0045 00000000 0x0 0x0
0xffff8e0000008680 0041 00000000 0x0 0x0
0xffff8e0000008700 0041 00000000 0x0 0x0
0xffff8e0000008780 0041 00000000 0x0 0x0
0xffff8e0000008800 0041 00000000 0x0 0x0
0xffff8e0000008880 0041 00000000 0x0 0x0
0xffff8e0000008900 0041 00000000 0x0 0x0
0xffff8e0000008980 0041 00000000 0x0 0x0
0xffff8e0000008a00 0041 00000000 0x0 0x0
0xffff8e0000008a80 0041 00000000 0x0 0x0
0xffff8e0000008b00 0041 00000000 0x0 0x0
0xffff8e0000008b80 0041 00000000 0x0 0x0
0xffff8e0000008c00 0041 00000000 0x0 0x0
0xffff8e0000008c80 0041 00000000 0x0 0x0
0xffff8e0000008d00 0045 00000000 0x0 0x0
0xffff8e0000008d80 0041 00000000 0x0 0x0
0xffff8e0000008e00 0041 00000000 0x0 0x0
0xffff8e0000008e80 0041 00000000 0x0 0x0
0xffff8e0000008f00 0041 00000000 0x0 0x0
0xffff8e0000008f80 0041 00000000 0x0 0x0
0xffff8e0000009000 0041 00000000 0x0 0x0
0xffff8e0000009080 0041 00000000 0x0 0x0
0xffff8e0000009100 0041 00000000 0x0 0x0
0xffff8e0000009180 0045 00000000 0x0 0x0
0xffff8e0000009200 0041 00000000 0x0 0x0
0xffff8e0000009280 0041 00000000 0x0 0x0
0xffff8e0000009300 0041 00000000 0x0 0x0
0xffff8e0000009380 0041 00000000 0x0 0x0
0xffff8e0000009400 0041 00000000 0x0 0x0
0xffff8e0000009480 0041 00000000 0x0 0x0
0xffff8e0000009500 0041 00000000 0x0 0x0
0xffff8e0000009580 0041 00000000 0x0 0x0
0xffff8e0000009600 0041 00000000 0x0 0x0
0xffff8e0000009680 0041 00000000 0x0 0x0
0xffff8e0000009700 0041 00000000 0x0 0x0
0xffff8e0000009780 0041 00000000 0x0 0x0
0xffff8e0000009800 0041 00000000 0x0 0x0
0xffff8e0000009880 0041 00000000 0x0 0x0
0xffff8e0000009900 0041 00000000 0x0 0x0
0xffff8e0000009980 0041 00000000 0x0 0x0
0xffff8e0000009a00 0041 00000000 0x0 0x0
0xffff8e0000009a80 0041 00000000 0x0 0x0
0xffff8e0000009b00 0041 00000000 0x0 0x0
0xffff8e0000009b80 0041 00000000 0x0 0x0
0xffff8e0000009c00 0041 00000000 0x0 0x0
0xffff8e0000009c80 0041 00000000 0x0 0x0
0xffff8e0000009d00 0041 00000000 0x0 0x0
0xffff8e0000009d80 0041 00000000 0x0 0x0
0xffff8e0000009e00 0041 00000000 0x0 0x0
0xffff8e0000009e80 0041 00000000 0x0 0x0
0xffff8e0000009f00 0041 00000000 0x0 0x0
0xffff8e0000009f80 0045 00000000 0x0 0x0
0xffff8e000000a000 0041 00000000 0x0 0x0
0xffff8e000000a080 0041 00000000 0x0 0x0
0xffff8e000000a100 0041 00000000 0x0 0x0
0xffff8e000000a180 0041 00000000 0x0 0x0
0xffff8e000000a200 0041 00000000 0x0 0x0
0xffff8e000000a280 0041 00000000 0x0 0x0
0xffff8e000000a300 0041 00000000 0x0 0x0
0xffff8e000000a380 0041 00000000 0x0 0x0
0xffff8e000000a400 0041 00000000 0x0 0x0
0xffff8e000000a480 0041 00000000 0x0 0x0
0xffff8e000000a500 0041 00000000 0x0 0x0
0xffff8e000000a580 0041 00000000 0x0 0x0
0xffff8e000000a600 0041 00000000 0x0 0x0
0xffff8e000000a680 0041 00000000 0x0 0x0
0xffff8e000000a700 0041 00000000 0x0 0x0
0xffff8e000000a780 0041 00000000 0x0 0x0
0xffff8e000000a800 0041 00000000 0x0 0x0
0xffff8e000000a880 0041 00000000 0x0 0x0
0xffff8e000000a900 0041 00000000 0x0 0x0
0xffff8e000000a980 0041 00000000 0x0 0x0
0xffff8e000000aa00 0041 00000000 0x0 0x0
0xffff8e000000aa80 0041 00000000 0x0 0x0
0xffff8e000000ab00 0041 00000000 0x0 0x0
0xffff8e000000ab80 0041 00000000 0x0 0x0
0xffff8e000000ac00 0041 00000000 0x0 0x0
0xffff8e000000ac80 0041 00000000 0x0 0x0
0xffff8e000000ad00 0041 00000000 0x0 0x0
0xffff8e000000ad80 0041 00000000 0x0 0x0
0xffff8e000000ae00 0041 00000000 0x0 0x0
0xffff8e000000ae80 0041 00000000 0x0 0x0
0xffff8e000000af00 0041 00000000 0x0 0x0
0xffff8e000000af80 0041 00000000 0x0 0x0
0xffff8e000000b000 0045 00000000 0x0 0x0
0xffff8e000000b080 0041 00000000 0x0 0x0
0xffff8e000000b100 0041 00000000 0x0 0x0
0xffff8e000000b180 0041 00000000 0x0 0x0
0xffff8e000000b200 0045 00000000 0x0 0x0
0xffff8e000000b280 0041 00000000 0x0 0x0
0xffff8e000000b300 0045 00000000 0x0 0x0
0xffff8e000000b380 0045 00000000 0x0 0x0
0xffff8e000000b400 0045 00000000 0x0 0x0
0xffff8e000000b480 0045 00000000 0x0 0x0
0xffff8e000000b500 0045 00000000 0x0 0x0
0xffff8e000000b580 0041 00000000 0x0 0x0
0xffff8e000000b600 0045 00000000 0x0 0x0
0xffff8e000000b680 0045 00000000 0x0 0x0
0xffff8e000000b700 0045 00000000 0x0 0x0
0xffff8e000000b780 0045 00000000 0x0 0x0
0xffff8e000000b800 0045 00000000 0x0 0x0
0xffff8e000000b880 0045 00000000 0x0 0x0
0xffff8e000000b900 0045 00000000 0x0 0x0
0xffff8e000000b980 0045 00000000 0x0 0x0
0xffff8e000000ba00 0045 00000000 0x0 0x0
0xffff8e000000ba80 0045 00000000 0x0 0x0
0xffff8e000000bb00 0045 00000000 0x0 0x0
0xffff8e000000bb80 0045 00000000 0x0 0x0
0xffff8e000000bc00 0045 00000000 0x0 0x0
0xffff8e000000bc80 0045 00000000 0x0 0x0
0xffff8e000000bd00 0045 00000000 0x0 0x0
0xffff8e000000bd80 0045 00000000 0x0 0x0
0xffff8e000000be00 0045 00000000 0x0 0x0
0xffff8e000000be80 0045 00000000 0x0 0x0
0xffff8e000000bf00 0045 00000000 0x0 0x0
0xffff8e000000bf80 0045 00000000 0x0 0x0
0xffff8e000000c000 0045 00000000 0x0 0x0
0xffff8e000000c080 0045 00000000 0x0 0x0
0xffff8e000000c100 0045 00000000 0x0 0x0
0xffff8e000000c180 0045 00000000 0x0 0x0
0xffff8e000000c200 0045 00000000 0x0 0x0
0xffff8e000000c280 0045 00000000 0x0 0x0
0xffff8e000000c300 0045 00000000 0x0 0x0
0xffff8e000000c380 0045 00000000 0x0 0x0
0xffff8e000000c400 0045 00000000 0x0 0x0
0xffff8e000000c480 0045 00000000 0x0 0x0
0xffff8e000000c500 0045 00000000 0x0 0x0
0xffff8e000000c580 0045 00000000 0x0 0x0
0xffff8e000000c600 0045 00000000 0x0 0x0
0xffff8e000000c680 0045 00000000 0x0 0x0
0xffff8e000000c700 0045 00000000 0x0 0x0
0xffff8e000000c780 0045 00000000 0x0 0x0
0xffff8e000000c800 0041 00000000 0x0 0x0
0xffff8e000000c880 0045 00000000 0x0 0x0
0xffff8e000000c900 0045 00000000 0x0 0x0
0xffff8e000000c980 0045 00000000 0x0 0x0
0xffff8e000000ca00 0041 00000000 0x0 0x0
0xffff8e000000ca80 0045 00000000 0x0 0x0
0xffff8e000000cb00 0045 00000000 0x0 0x0
0xffff8e000000cb80 0045 00000000 0x0 0x0
0xffff8e000000cc00 0041 00000000 0x0 0x0
0xffff8e000000cc80 0041 00000000 0x0 0x0
0xffff8e000000cd00 0041 00000000 0x0 0x0
0xffff8e000000cd80 0045 00000000 0x0 0x0
0xffff8e000000ce00 0041 00000000 0x0 0x0
0xffff8e000000ce80 0045 00000000 0x0 0x0
0xffff8e000000cf00 0041 00000000 0x0 0x0
0xffff8e000000cf80 0041 00000000 0x0 0x0
0xffff8e000000d000 0041 00000000 0x0 0x0
0xffff8e000000d080 0041 00000000 0x0 0x0
0xffff8e000000d100 0041 00000000 0x0 0x0
0xffff8e000000d180 0041 00000000 0x0 0x0
0xffff8e000000d200 0041 00000000 0x0 0x0
0xffff8e000000d280 0041 00000000 0x0 0x0
0xffff8e000000d300 0041 00000000 0x0 0x0
0xffff8e000000d380 0041 00000000 0x0 0x0
0xffff8e000000d400 0041 00000000 0x0 0x0
0xffff8e000000d480 0041 00000000 0x0 0x0
0xffff8e000000d500 0041 00000000 0x0 0x0
0xffff8e000000d580 0041 00000000 0x0 0x0
0xffff8e000000d600 0041 00000000 0x0 0x0
0xffff8e000000d680 0041 00000000 0x0 0x0
0xffff8e000000d700 0041 00000000 0x0 0x0
0xffff8e000000d780 0041 00000000 0x0 0x0
0xffff8e000000d800 0045 00000000 0x0 0x0
0xffff8e000000d880 0041 00000000 0x0 0x0
0xffff8e000000d900 0041 00000000 0x0 0x0
0xffff8e000000d980 0041 00000000 0x0 0x0
0xffff8e000000da00 0041 00000000 0x0 0x0
0xffff8e000000da80 0041 00000000 0x0 0x0
0xffff8e000000db00 0045 00000000 0x0 0x0
0xffff8e000000db80 0041 00000000 0x0 0x0
0xffff8e000000dc00 0045 00000000 0x0 0x0
0xffff8e000000dc80 0045 00000000 0x0 0x0
0xffff8e000000dd00 0041 00000000 0x0 0x0
0xffff8e000000dd80 0041 00000000 0x0 0x0
0xffff8e000000de00 0045 00000000 0x0 0x0
0xffff8e000000de80 0045 00000000 0x0 0x0
0xffff8e000000df00 0041 00000000 0x0 0x0
0xffff8e000000df80 0045 00000000 0x0 0x0
0xffff8e000000e000 0045 00000000 0x0 0x0
0xffff8e000000e080 0045 00000000 0x0 0x0
0xffff8e000000e100 0045 00000000 0x0 0x0
0xffff8e000000e180 0041 00000000 0x0 0x0
0xffff8e000000e200 0041 00000000 0x0 0x0
0xffff8e000000e280 0041 00000000 0x0 0x0
0xffff8e000000e300 0045 00000000 0x0 0x0
0xffff8e000000e380 0045 00000000 0x0 0x0
0xffff8e000000e400 0041 00000000 0x0 0x0
0xffff8e000000e480 0041 00000000 0x0 0x0
0xffff8e000000e500 0041 00000000 0x0 0x0
0xffff8e000000e580 0045 00000000 0x0 0x0
0xffff8e000000e600 0041 00000000 0x0 0x0
0xffff8e000000e680 0041 00000000 0x0 0x0
0xffff8e000000e700 0045 00000000 0x0 0x0
0xffff8e000000e780 0045 00000000 0x0 0x0
0xffff8e000000e800 0041 00000000 0x0 0x0
0xffff8e000000e880 0045 00000000 0x0 0x0
0xffff8e000000e900 0041 00000000 0x0 0x0
0xffff8e000000e980 0041 00000000 0x0 0x0
0xffff8e000000ea00 0041 00000000 0x0 0x0
0xffff8e000000ea80 0045 00000000 0x0 0x0
0xffff8e000000eb00 0045 00000000 0x0 0x0
0xffff8e000000eb80 0041 00000000 0x0 0x0
0xffff8e000000ec00 0045 00000000 0x0 0x0
0xffff8e000000ec80 0041 00000000 0x0 0x0
0xffff8e000000ed00 0041 00000000 0x0 0x0
0xffff8e000000ed80 0041 00000000 0x0 0x0
0xffff8e000000ee00 0041 00000000 0x0 0x0
0xffff8e000000ee80 0041 00000000 0x0 0x0
0xffff8e000000ef00 0041 00000000 0x0 0x0
0xffff8e000000ef80 0041 00000000 0x0 0x0
0xffff8e000000f000 0041 00000000 0x0 0x0
0xffff8e000000f080 0041 00000000 0x0 0x0
0xffff8e000000f100 0041 00000000 0x0 0x0
0xffff8e000000f180 0041 00000000 0x0 0x0
0xffff8e000000f200 0041 00000000 0x0 0x0
0xffff8e000000f280 0045 00000000 0x0 0x0
0xffff8e000000f300 0041 00000000 0x0 0x0
0xffff8e000000f380 0045 00000000 0x0 0x0
0xffff8e000000f400 0045 00000000 0x0 0x0
0xffff8e000000f480 0041 00000000 0x0 0x0
0xffff8e000000f500 0045 00000000 0x0 0x0
0xffff8e000000f580 0041 00000000 0x0 0x0
0xffff8e000000f600 0045 00000000 0x0 0x0
0xffff8e000000f680 0041 00000000 0x0 0x0
0xffff8e000000f700 0041 00000000 0x0 0x0
0xffff8e000000f780 0041 00000000 0x0 0x0
0xffff8e000000f800 0041 00000000 0x0 0x0
0xffff8e000000f880 0045 00000000 0x0 0x0
0xffff8e000000f900 0041 00000000 0x0 0x0
0xffff8e000000f980 0041 00000000 0x0 0x0
0xffff8e000000fa00 0041 00000000 0x0 0x0
0xffff8e000000fa80 0041 00000000 0x0 0x0
0xffff8e000000fb00 0041 00000000 0x0 0x0
0xffff8e000000fb80 0041 00000000 0x0 0x0
0xffff8e000000fc00 0041 00000000 0x0 0x0
0xffff8e000000fc80 0041 00000000 0x0 0x0
0xffff8e000000fd00 0045 00000000 0x0 0x0
0xffff8e000000fd80 0045 00000000 0x0 0x0
0xffff8e000000fe00 0041 00000000 0x0 0x0
0xffff8e000000fe80 0045 00000000 0x0 0x0
0xffff8e000000ff00 0041 00000000 0x0 0x0
0xffff8e000000ff80 0041 00000000 0x0 0x0
0xffff8e0000010000 0041 00000000 0x0 0x0
0xffff8e0000010080 0045 00000000 0x0 0x0
0xffff8e0000010100 0041 00000000 0x0 0x0
0xffff8e0000010180 0041 00000000 0x0 0x0
0xffff8e0000010200 0045 00000000 0x0 0x0
0xffff8e0000010280 0041 00000000 0x0 0x0
0xffff8e0000010300 0041 00000000 0x0 0x0
0xffff8e0000010380 0041 00000000 0x0 0x0
0xffff8e0000010400 0041 00000000 0x0 0x0
0xffff8e0000010480 0041 00000000 0x0 0x0
0xffff8e0000010500 0045 00000000 0x0 0x0
0xffff8e0000010580 0041 00000000 0x0 0x0
0xffff8e0000010600 0041 00000000 0x0 0x0
0xffff8e0000010680 0041 00000000 0x0 0x0
0xffff8e0000010700 0041 00000000 0x0 0x0
0xffff8e0000010780 0041 00000000 0x0 0x0
0xffff8e0000010800 0041 00000000 0x0 0x0
0xffff8e0000010880 0041 00000000 0x0 0x0
0xffff8e0000010900 0041 00000000 0x0 0x0
0xffff8e0000010980 0045 00000000 0x0 0x0
0xffff8e0000010a00 0045 00000000 0x0 0x0
0xffff8e0000010a80 0041 00000000 0x0 0x0
0xffff8e0000010b00 0045 00000000 0x0 0x0
0xffff8e0000010b80 0041 00000000 0x0 0x0
0xffff8e0000010c00 0041 00000000 0x0 0x0
0xffff8e0000010c80 0041 00000000 0x0 0x0
0xffff8e0000010d00 0041 00000000 0x0 0x0
0xffff8e0000010d80 0041 00000000 0x0 0x0
0xffff8e0000010e00 0041 00000000 0x0 0x0
0xffff8e0000010e80 0045 00000000 0x0 0x0
0xffff8e0000010f00 0041 00000000 0x0 0x0
0xffff8e0000010f80 0045 00000000 0x0 0x0
0xffff8e0000011000 0041 00000000 0x0 0x0
0xffff8e0000011080 0041 00000000 0x0 0x0
0xffff8e0000011100 0041 00000000 0x0 0x0
0xffff8e0000011180 0041 00000000 0x0 0x0
0xffff8e0000011200 0041 00000000 0x0 0x0
0xffff8e0000011280 0041 00000000 0x0 0x0
0xffff8e0000011300 0041 00000000 0x0 0x0
0xffff8e0000011380 0041 00000000 0x0 0x0
0xffff8e0000011400 0041 00000000 0x0 0x0
0xffff8e0000011480 0041 00000000 0x0 0x0
0xffff8e0000011500 0041 00000000 0x0 0x0
0xffff8e0000011580 0041 00000000 0x0 0x0
0xffff8e0000011600 0041 00000000 0x0 0x0
0xffff8e0000011680 0045 00000000 0x0 0x0
0xffff8e0000011700 0041 00000000 0x0 0x0
0xffff8e0000011780 0041 00000000 0x0 0x0
0xffff8e0000011800 0041 00000000 0x0 0x0
0xffff8e0000011880 0041 00000000 0x0 0x0
0xffff8e0000011900 0041 00000000 0x0 0x0
0xffff8e0000011980 0041 00000000 0x0 0x0
0xffff8e0000011a00 0045 00000000 0x0 0x0
0xffff8e0000011a80 0041 00000000 0x0 0x0
0xffff8e0000011b00 0041 00000000 0x0 0x0
0xffff8e0000011b80 0041 00000000 0x0 0x0
0xffff8e0000011c00 0045 00000000 0x0 0x0
0xffff8e0000011c80 0045 00000000 0x0 0x0
0xffff8e0000011d00 0041 00000000 0x0 0x0
0xffff8e0000011d80 0041 00000000 0x0 0x0
0xffff8e0000011e00 0041 00000000 0x0 0x0
0xffff8e0000011e80 0041 00000000 0x0 0x0
0xffff8e0000011f00 0045 00000000 0x0 0x0
0xffff8e0000011f80 0045 00000000 0x0 0x0
0xffff8e0000012000 0041 00000000 0x0 0x0
0xffff8e0000012080 0041 00000000 0x0 0x0
0xffff8e0000012100 0045 00000000 0x0 0x0
0xffff8e0000012180 0045 00000000 0x0 0x0
0xffff8e0000012200 0041 00000000 0x0 0x0
0xffff8e0000012280 0041 00000000 0x0 0x0
0xffff8e0000012300 0041 00000000 0x0 0x0
0xffff8e0000012380 0041 00000000 0x0 0x0
0xffff8e0000012400 0041 00000000 0x0 0x0
0xffff8e0000012480 0041 00000000 0x0 0x0
0xffff8e0000012500 0041 00000000 0x0 0x0
0xffff8e0000012580 0041 00000000 0x0 0x0
0xffff8e0000012600 0041 00000000 0x0 0x0
0xffff8e0000012680 0041 00000000 0x0 0x0
0xffff8e0000012700 0041 00000000 0x0 0x0
0xffff8e0000012780 0041 00000000 0x0 0x0
0xffff8e0000012800 0041 00000000 0x0 0x0
0xffff8e0000012880 0041 00000000 0x0 0x0
0xffff8e0000012900 0041 00000000 0x0 0x0
0xffff8e0000012980 0041 00000000 0x0 0x0
0xffff8e0000012a00 0041 00000000 0x0 0x0
0xffff8e0000012a80 0045 00000000 0x0 0x0
0xffff8e0000012b00 0001 00000000 0x0 0x0
0xffff8e0000012b80 0001 00000000 0x0 0x0
0xffff8e0000012c00 0001 00000000 0x0 0x0
0xffff8e0000012c80 0001 00000000 0x0 0x0
0xffff8e0000012d00 0001 00000000 0x0 0x0
0xffff8e0000012d80 0001 00000000 0x0 0x0
0xffff8e0000012e00 0001 00000000 0x0 0x0
0xffff8e0000012e80 0001 00000000 0x0 0x0
0xffff8e0000012f00 0001 00000000 0x0 0x0
0xffff8e0000012f80 0001 00000000 0x0 0x0
0xffff8e0000013000 0001 00000000 0x0 0x0
0xffff8e0000013080 0001 00000000 0x0 0x0
0xffff8e0000013100 0001 00000000 0x0 0x0
0xffff8e0000013180 0001 00000000 0x0 0x0
0xffff8e0000013200 0001 00000000 0x0 0x0
0xffff8e0000013280 0001 00000000 0x0 0x0
0xffff8e0000013300 0001 00000000 0x0 0x0
0xffff8e0000013380 0001 00000000 0x0 0x0
0xffff8e0000013400 0001 00000000 0x0 0x0
0xffff8e0000013480 0001 00000000 0x0 0x0
0xffff8e0000013500 0001 00000000 0x0 0x0
0xffff8e0000013580 0001 00000000 0x0 0x0
0xffff8e0000013600 0001 00000000 0x0 0x0
0xffff8e0000013680 0001 00000000 0x0 0x0
0xffff8e0000013700 0001 00000000 0x0 0x0
0xffff8e0000013780 0001 00000000 0x0 0x0
0xffff8e0000013800 0001 00000000 0x0 0x0
0xffff8e0000013880 0001 00000000 0x0 0x0
0xffff8e0000013900 0001 00000000 0x0 0x0
0xffff8e0000013980 0001 00000000 0x0 0x0
0xffff8e0000013a00 0001 00000000 0x0 0x0
0xffff8e0000013a80 0001 00000000 0x0 0x0
0xffff8e0000013b00 0001 00000000 0x0 0x0
0xffff8e0000013b80 0001 00000000 0x0 0x0
0xffff8e0000013c00 0001 00000000 0x0 0x0
0xffff8e0000013c80 0001 00000000 0x0 0x0
0xffff8e0000013d00 0001 00000000 0x0 0x0
0xffff8e0000013d80 0001 00000000 0x0 0x0
0xffff8e0000013e00 0001 00000000 0x0 0x0
0xffff8e0000013e80 0001 00000000 0x0 0x0
0xffff8e0000013f00 0001 00000000 0x0 0x0
0xffff8e0000013f80 0001 00000000 0x0 0x0
0xffff8e0000014000 0001 00000000 0x0 0x0
0xffff8e0000014080 0001 00000000 0x0 0x0
0xffff8e0000014100 0001 00000000 0x0 0x0
0xffff8e0000014180 0001 00000000 0x0 0x0
0xffff8e0000014200 0001 00000000 0x0 0x0
0xffff8e0000014280 0001 00000000 0x0 0x0
0xffff8e0000014300 0001 00000000 0x0 0x0
0xffff8e0000014380 0001 00000000 0x0 0x0
0xffff8e0000014400 0001 00000000 0x0 0x0
0xffff8e0000014480 0001 00000000 0x0 0x0
0xffff8e0000014500 0001 00000000 0x0 0x0
0xffff8e0000014580 0001 00000000 0x0 0x0
0xffff8e0000014600 0041 00000000 0x0 0x0
0xffff8e0000014680 0041 00000000 0x0 0x0
0xffff8e0000014700 0041 00000000 0x0 0x0
0xffff8e0000014780 0041 00000000 0x0 0x0
0xffff8e0000014800 0041 00000000 0x0 0x0
0xffff8e0000014880 0041 00000000 0x0 0x0
0xffff8e0000014900 0041 00000000 0x0 0x0
0xffff8e0000014980 0041 00000000 0x0 0x0
0xffff8e0000014a00 0041 00000000 0x0 0x0
0xffff8e0000014a80 0041 00000000 0x0 0x0
0xffff8e0000014b00 0041 00000000 0x0 0x0
0xffff8e0000014b80 0041 00000000 0x0 0x0
0xffff8e0000014c00 0041 00000000 0x0 0x0
0xffff8e0000014c80 0041 00000000 0x0 0x0
0xffff8e0000014d00 0041 00000000 0x0 0x0
0xffff8e0000014d80 0041 00000000 0x0 0x0
0xffff8e0000014e00 0041 00000000 0x0 0x0
0xffff8e0000014e80 0041 00000000 0x0 0x0
0xffff8e0000014f00 0041 00000000 0x0 0x0
0xffff8e0000014f80 0041 00000000 0x0 0x0
0xffff8e0000015000 0041 00000000 0x0 0x0
0xffff8e0000015080 0041 00000000 0x0 0x0
0xffff8e0000015100 0041 00000000 0x0 0x0
0xffff8e0000015180 0041 00000000 0x0 0x0
0xffff8e0000015200 0041 00000000 0x0 0x0
0xffff8e0000015280 0041 00000000 0x0 0x0
0xffff8e0000015300 0041 00000000 0x0 0x0
0xffff8e0000015380 0041 00000000 0x0 0x0
0xffff8e0000015400 0041 00000000 0x0 0x0
0xffff8e0000015480 0041 00000000 0x0 0x0
0xffff8e0000015500 0041 00000000 0x0 0x0
0xffff8e0000015580 0041 00000000 0x0 0x0
0xffff8e0000015600 0041 00000000 0x0 0x0
0xffff8e0000015680 0041 00000000 0x0 0x0
0xffff8e0000015700 0041 00000000 0x0 0x0
0xffff8e0000015780 0041 00000000 0x0 0x0
0xffff8e0000015800 0041 00000000 0x0 0x0
0xffff8e0000015880 0041 00000000 0x0 0x0
0xffff8e0000015900 0041 00000000 0x0 0x0
0xffff8e0000015980 0041 00000000 0x0 0x0
0xffff8e0000015a00 0041 00000000 0x0 0x0
0xffff8e0000015a80 0041 00000000 0x0 0x0
0xffff8e0000015b00 0001 00000000 0x0 0x0
0xffff8e0000015b80 0001 00000000 0x0 0x0
0xffff8e0000015c00 0001 00000000 0x0 0x0
0xffff8e0000015c80 0001 00000000 0x0 0x0
0xffff8e0000015d00 0001 00000000 0x0 0x0
0xffff8e0000015d80 0001 00000000 0x0 0x0
0xffff8e0000015e00 0001 00000000 0x0 0x0
0xffff8e0000015e80 0001 00000000 0x0 0x0
0xffff8e0000015f00 0001 00000000 0x0 0x0
0xffff8e0000015f80 0001 00000000 0x0 0x0
0xffff8e0000016000 0001 00000000 0x0 0x0
0xffff8e0000016080 0001 00000000 0x0 0x0
0xffff8e0000016100 0001 00000000 0x0 0x0
0xffff8e0000016180 0001 00000000 0x0 0x0
0xffff8e0000016200 0001 00000000 0x0 0x0
0xffff8e0000016280 0001 00000000 0x0 0x0
0xffff8e0000016300 0001 00000000 0x0 0x0
0xffff8e0000016380 0001 00000000 0x0 0x0
0xffff8e0000016400 0001 00000000 0x0 0x0
0xffff8e0000016480 0001 00000000 0x0 0x0
0xffff8e0000016500 0001 00000000 0x0 0x0
0xffff8e0000016580 0001 00000000 0x0 0x0
0xffff8e0000016600 0001 00000000 0x0 0x0
0xffff8e0000016680 0001 00000000 0x0 0x0
0xffff8e0000016700 0001 00000000 0x0 0x0
0xffff8e0000016780 0001 00000000 0x0 0x0
0xffff8e0000016800 0001 00000000 0x0 0x0
0xffff8e0000016880 0001 00000000 0x0 0x0
0xffff8e0000016900 0001 00000000 0x0 0x0
0xffff8e0000016980 0001 00000000 0x0 0x0
0xffff8e0000016a00 0001 00000000 0x0 0x0
0xffff8e0000016a80 0001 00000000 0x0 0x0
0xffff8e0000016b00 0001 00000000 0x0 0x0
0xffff8e0000016b80 0001 00000000 0x0 0x0
0xffff8e0000016c00 0001 00000000 0x0 0x0
0xffff8e0000016c80 0001 00000000 0x0 0x0
0xffff8e0000016d00 0001 00000000 0x0 0x0
0xffff8e0000016d80 0001 00000000 0x0 0x0
0xffff8e0000016e00 0001 00000000 0x0 0x0
0xffff8e0000016e80 0001 00000000 0x0 0x0
0xffff8e0000016f00 0001 00000000 0x0 0x0
0xffff8e0000016f80 0001 00000000 0x0 0x0
0xffff8e0000017000 0001 00000000 0x0 0x0
0xffff8e0000017080 0001 00000000 0x0 0x0
0xffff8e0000017100 0001 00000000 0x0 0x0
0xffff8e0000017180 0001 00000000 0x0 0x0
0xffff8e0000017200 0001 00000000 0x0 0

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

If the report is already addressed, let syzbot know by replying with:
#syz fix: exact-commit-title

If you want to overwrite report's subsystems, reply with:
#syz set subsystems: new-subsystem
(See the list of subsystem names on the web dashboard)

If the report is a duplicate of another one, reply with:
#syz dup: exact-subject-of-another-report

If you want to undo deduplication, reply with:
#syz undup
Reply all
Reply to author
Forward
0 new messages