UBSan: Undefined Behavior in psref_release.cold

0 views
Skip to first unread message

syzbot

unread,
May 17, 2024, 12:56:29 AMMay 17
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 689d59067a88 riscv: More shiftiness reduction around FCSR ..
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=138f0ea2980000
kernel config: https://syzkaller.appspot.com/x/.config?x=1420f906d33d9f1f
dashboard link: https://syzkaller.appspot.com/bug?extid=646f3445add6435d04d6
compiler: g++ (Debian 12.2.0-14) 12.2.0

Unfortunately, I don't have any reproducer for this issue yet.

Downloadable assets:
disk image: https://storage.googleapis.com/syzbot-assets/9157f0fc2bdb/disk-689d5906.raw.xz
netbsd.gdb: https://storage.googleapis.com/syzbot-assets/062f5023eb83/netbsd-689d5906.gdb.xz

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+646f34...@syzkaller.appspotmail.com

[ 1052.7759086] panic: UBSan: Undefined Behavior in /syzkaller/managers/ci2-netbsd-kubsan/kernel/sys/kern/subr_psref.c:389:6, load of value 126 is not a valid value for type '_Bool'

[ 1052.7979086] cpu0: Begin traceback...
[ 1052.8161719] vpanic() at netbsd:vpanic+0x2f0 sys/kern/subr_prf.c:288
[ 1052.9168702] Report() at netbsd:Report+0x3b sys/../common/lib/libc/misc/ubsan.c:1352
[ 1052.9873561] HandleLoadInvalidValue() at netbsd:HandleLoadInvalidValue+0x139 sys/../common/lib/libc/misc/ubsan.c:518
[ 1053.0679127] psref_release.cold() at netbsd:psref_release.cold+0x15
[ 1053.1384137] doifioctl() at netbsd:doifioctl+0x857 x86_curlwp sys/arch/amd64/compile/obj/GENERIC_SYZKALLER/./machine/cpu.h:76 [inline]
[ 1053.1384137] doifioctl() at netbsd:doifioctl+0x857 curlwp_bindx sys/sys/lwp.h:521 [inline]
[ 1053.1384137] doifioctl() at netbsd:doifioctl+0x857 sys/net/if.c:3612
[ 1053.2088785] soo_ioctl() at netbsd:soo_ioctl+0x294 sys/kern/sys_socket.c:215
[ 1053.2692912] sys_ioctl() at netbsd:sys_ioctl+0xd88 sys/kern/sys_generic.c:675
[ 1053.3397745] syscall() at netbsd:syscall+0x28b sy_call sys/sys/syscallvar.h:65 [inline]
[ 1053.3397745] syscall() at netbsd:syscall+0x28b sy_invoke sys/sys/syscallvar.h:94 [inline]
[ 1053.3397745] syscall() at netbsd:syscall+0x28b sys/arch/x86/x86/syscall.c:137
[ 1053.3498369] --- syscall (number 54) ---
[ 1053.3800479] netbsd:syscall+0x28b:
[ 1053.3800479] cpu0: End traceback...
[ 1053.3800479] fatal breakpoint trap in supervisor mode
[ 1053.3927283] trap type 1 code 0 rip 0xffffffff80235475 cs 0x8 rflags 0x246 cr2 0x71721fc7cc90 ilevel 0 rsp 0xffff9c02480a4650
[ 1053.4057728] curlwp 0xffff90f7496e7300 pid 291.291 lowest kstack 0xffff9c02480a02c0
Stopped in pid 291.291 (dhcpcd) at netbsd:breakpoint+0x5: leave
?
breakpoint() at netbsd:breakpoint+0x5
db_panic() at netbsd:db_panic+0xec sys/ddb/db_panic.c:71
vpanic() at netbsd:vpanic+0x2f0 sys/kern/subr_prf.c:288
Report() at netbsd:Report+0x3b sys/../common/lib/libc/misc/ubsan.c:1352
HandleLoadInvalidValue() at netbsd:HandleLoadInvalidValue+0x139 sys/../common/lib/libc/misc/ubsan.c:518
psref_release.cold() at netbsd:psref_release.cold+0x15
doifioctl() at netbsd:doifioctl+0x857 x86_curlwp sys/arch/amd64/compile/obj/GENERIC_SYZKALLER/./machine/cpu.h:76 [inline]
doifioctl() at netbsd:doifioctl+0x857 curlwp_bindx sys/sys/lwp.h:521 [inline]
doifioctl() at netbsd:doifioctl+0x857 sys/net/if.c:3612
soo_ioctl() at netbsd:soo_ioctl+0x294 sys/kern/sys_socket.c:215
sys_ioctl() at netbsd:sys_ioctl+0xd88 sys/kern/sys_generic.c:675
syscall() at netbsd:syscall+0x28b sy_call sys/sys/syscallvar.h:65 [inline]
syscall() at netbsd:syscall+0x28b sy_invoke sys/sys/syscallvar.h:94 [inline]
syscall() at netbsd:syscall+0x28b sys/arch/x86/x86/syscall.c:137
--- syscall (number 54) ---
netbsd:syscall+0x28b:
Panic string: UBSan: Undefined Behavior in /syzkaller/managers/ci2-netbsd-kubsan/kernel/sys/kern/subr_psref.c:389:6, load of value 126 is not a valid value for type '_Bool'

PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
12962 12962 2 0 0 ffff90f77e939280 syz-executor.0
23544 23544 2 1 0 ffff90f77855f040 syz-executor.3
4361 4361 2 0 0 ffff90f7af638940 syz-executor.4
5081 5081 2 1 0 ffff90f7b50d1480 syz-executor.1
4591 4591 3 1 180 ffff90f7b131d780 syz-executor.0 wait
9273 9273 3 1 180 ffff90f7b50d1040 syz-executor.2 parked
4372 4372 3 0 180 ffff90f7a12bf6c0 syz-executor.3 parked
4363 4363 2 1 0 ffff90f7af6380c0 syz-executor.5
1002 1002 3 0 180 ffff90f77428fa40 init nanoslp
5064 5064 3 0 180 ffff90f772392b40 syz-executor.1 parked
5990 5990 3 1 180 ffff90f771e90a00 syz-executor.4 parked
3867 3867 3 1 180 ffff90f79fe0e1c0 syz-executor.4 parked
3440 3440 3 1 180 ffff90f7588474c0 syz-executor.4 parked
28704 28704 3 1 180 ffff90f77ad6e680 syz-executor.3 parked
26532 26532 3 0 180 ffff90f7b136a700 syz-executor.2 parked
2789 2789 3 0 180 ffff90f798f27240 syz-executor.2 parked
3228 3228 3 0 180 ffff90f7a0413a00 syz-executor.5 parked
3689 3689 3 0 180 ffff90f763ea3640 syz-executor.4 parked
29279 29279 3 0 180 ffff90f7952b39c0 syz-executor.3 parked
3890 3890 3 1 180 ffff90f7a12bfb00 syz-executor.2 parked
28758 28758 3 1 180 ffff90f79f143a80 syz-executor.1 parked
25588 25588 3 1 180 ffff90f788144540 syz-executor.4 parked
27118 27118 3 1 180 ffff90f7a04135c0 syz-executor.4 parked
4943 4943 3 0 180 ffff90f7952b3580 syz-executor.5 parked
1810 1810 3 1 180 ffff90f750ece980 syz-executor.0 parked
24483 1805 3 1 1100000 ffff90f78ccc4940 syz-executor.0 vfork
24483 24483 2 0 11000040 ffff90f772392700 syz-executor.0
1799 1799 3 0 180 ffff90f79fe0e600 syz-executor.2 parked
27084 27084 3 0 180 ffff90f7a12bf280 syz-executor.1 parked
1715 1715 3 0 180 ffff90f79fe0ea40 syz-executor.4 parked
1281 1281 3 0 180 ffff90f78ccc4500 syz-executor.2 parked
2122 2122 3 1 180 ffff90f77e939b00 syz-executor.5 parked
1865 1865 3 1 180 ffff90f7490acac0 syz-executor.5 parked
24814 24814 3 0 180 ffff90f788144980 syz-executor.0 parked
26797 26797 3 1 180 ffff90f750ece540 syz-executor.3 parked
23284 23284 3 0 180 ffff90f771e905c0 syz-executor.0 parked
22711 22711 3 1 180 ffff90f76e5954c0 syz-executor.4 parked
20784 20784 3 1 180 ffff90f763ea3200 syz-executor.5 parked
19603 19603 3 0 180 ffff90f77855f480 syz-executor.5 parked
19704 19704 3 0 180 ffff90f771e90180 syz-executor.1 parked
21077 21077 3 0 180 ffff90f766fd0340 syz-executor.3 parked
18174 18174 3 1 180 ffff90f7737f8b80 syz-executor.0 parked
20071 20071 3 0 180 ffff90f77e9396c0 syz-executor.2 parked
17821 17821 3 0 180 ffff90f761ff36c0 syz-executor.0 parked
19944 19944 3 0 180 ffff90f782a774c0 syz-executor.0 parked
19514 19514 3 0 180 ffff90f761ff3b00 syz-executor.0 parked
16271 16271 3 1 180 ffff90f782a77900 syz-executor.1 parked
12540 12540 3 1 180 ffff90f75690e300 syz-executor.1 parked
13451 13451 3 1 180 ffff90f74ab30940 syz-executor.0 parked
10818 10818 3 1 180 ffff90f7737f8300 syz-executor.0 parked
11934 11934 3 0 180 ffff90f77855f8c0 syz-executor.4 parked
15835 15835 3 0 180 ffff90f76c8bcb80 syz-executor.0 parked
11814 11814 3 1 180 ffff90f75690eb80 syz-executor.3 parked
9105 12864 3 1 1000000 ffff90f74e8ce9c0 syz-executor.3 lwpwait
9105 11766 8 1 11a0000 ffff90f77c239340 syz-executor.3
9105 14688 8 1 11a0000 ffff90f74b66e280 syz-executor.3
9105 12107 8 1 11a0000 ffff90f7723922c0 syz-executor.3
9105 14798 3 1 111a0000 ffff90f74a890480 syz-executor.3 vfork
9105 9105 8 1 111a0000 ffff90f76bfff980 syz-executor.3
12734 12734 3 1 180 ffff90f76e595080 syz-executor.4 parked
14669 14669 3 1 180 ffff90f7634dc9c0 syz-executor.5 parked
10853 10853 3 1 180 ffff90f763ea3a80 syz-executor.2 parked
9609 9609 3 0 180 ffff90f76e595900 syz-executor.5 parked
9634 9634 3 0 180 ffff90f7634dc580 syz-executor.5 parked
8949 8949 3 1 180 ffff90f7641f68c0 syz-executor.2 parked
8443 8443 3 0 180 ffff90f758424ac0 syz-executor.5 parked
6983 6983 3 0 180 ffff90f7679d8b40 syz-executor.5 parked
8508 8508 3 1 180 ffff90f757690780 syz-executor.5 parked
5465 5465 3 1 180 ffff90f76bfff100 syz-executor.4 parked
4749 4333 3 0 1100000 ffff90f76b775940 syz-executor.4 vfork
4749 4749 2 0 11000040 ffff90f766fd0bc0 syz-executor.4
4066 4066 3 0 180 ffff90f74ab30500 syz-executor.2 parked
3736 3736 3 0 180 ffff90f74dc312c0 syz-executor.2 parked
3824 3824 3 1 180 ffff90f74ab68980 syz-executor.4 parked
3809 3809 3 1 180 ffff90f7679d8700 syz-executor.3 parked
3719 6454 3 1 11100000 ffff90f76c8bc300 syz-executor.3 vfork
3719 3719 2 0 11000040 ffff90f74b66eb00 syz-executor.3
4530 4530 3 0 180 ffff90f7679d82c0 syz-executor.0 parked
6584 5445 3 0 11100000 ffff90f761ff3280 syz-executor.0 vfork
6584 6584 2 0 11000040 ffff90f74a0564c0 syz-executor.0
2454 2454 3 1 180 ffff90f7504a4040 syz-executor.2 parked
2458 6059 3 1 1100000 ffff90f74e3665c0 syz-executor.2 vfork
2458 2458 2 0 11000040 ffff90f757690340 syz-executor.2
2448 2448 3 0 180 ffff90f750efaa80 syz-executor.4 parked
5211 5211 3 0 180 ffff90f757690bc0 syz-executor.4 parked
1834 2630 2 0 1000040 ffff90f750efa200 syz-executor.4
1834 1778 3 1 11100000 ffff90f7504a4480 syz-executor.4 vfork
2150 2150 3 1 180 ffff90f758424680 syz-executor.1 parked
4576 2737 3 1 1100000 ffff90f75ac19600 syz-executor.1 vfork
4576 4576 2 1 11000040 ffff90f750ece100 syz-executor.1
5044 5044 3 1 180 ffff90f7498cc9c0 syz-executor.0 parked
1436 1436 3 0 180 ffff90f758424240 syz-executor.2 parked
1277 1277 3 0 180 ffff90f74e8ce580 syz-executor.5 parked
1725 1273 3 0 1100000 ffff90f7597f70c0 syz-executor.5 vfork
1725 1725 2 0 11000040 ffff90f758847080 syz-executor.5
3018 3018 3 1 180 ffff90f75ac19a40 syz-executor.4 parked
4540 1092 3 1 11100000 ffff90f75690e740 syz-executor.4 vfork
4540 4540 2 0 11000040 ffff90f74dc31700 syz-executor.4
923 923 3 0 180 ffff90f75ac191c0 syz-executor.1 parked
908 908 3 1 180 ffff90f74e366180 syz-executor.1 parked
896 896 3 1 180 ffff90f7498bb780 syz-executor.0 parked
4045 3666 3 1 1100000 ffff90f74e366a00 syz-executor.0 vfork
4045 4045 2 0 11000040 ffff90f758847900 syz-executor.0
2359 2359 3 0 180 ffff90f7597f7940 syz-executor.1 parked
1866 1866 3 0 180 ffff90f74a8908c0 syz-executor.1 parked
971 971 3 1 180 ffff90f74a890040 syz-executor.1 parked
1624 1624 3 0 180 ffff90f74dc31b40 syz-executor.5 parked
1237 4641 3 1 180 ffff90f7641f6040 syz-fuzzer parked
1237 2639 3 0 180 ffff90f74ab300c0 syz-fuzzer wait
1237 1342 3 0 180 ffff90f74ab68540 syz-fuzzer kqueue
1237 1209 3 0 180 ffff90f7498bbbc0 syz-fuzzer wait
1237 1200 3 1 180 ffff90f74a3d45c0 syz-fuzzer parked
1237 1385 3 1 180 ffff90f74a3d4a00 syz-fuzzer parked
1237 1244 3 0 180 ffff90f7498cc580 syz-fuzzer wait
1237 1132 3 0 180 ffff90f74aedd1c0 syz-fuzzer parked
1237 829 3 1 180 ffff90f7490af200 syz-fuzzer wait
1237 1241 3 1 180 ffff90f7498bb340 syz-fuzzer parked
1237 449 3 1 180 ffff90f74a327240 syz-fuzzer parked
1237 947 3 1 180 ffff90f74aedd600 syz-fuzzer parked
1237 942 3 0 180 ffff90f74b0ba640 syz-fuzzer parked
1237 1235 3 1 180 ffff90f74aedda40 syz-fuzzer parked
1237 1237 3 0 180 ffff90f74b0baa80 syz-fuzzer wait
1223 1223 3 0 180 ffff90f7494de2c0 sshd select
1222 1222 3 1 180 ffff90f74a327ac0 getty nanoslp
1224 1224 3 0 180 ffff90f7493c5280 getty nanoslp
1151 1151 3 1 180 ffff90f7493c56c0 getty nanoslp
1105 1105 3 0 180 ffff90f74a327680 sshd select
1097 1097 3 0 180 ffff90f74b0ba200 powerd kqueue
699 699 3 1 180 ffff90f7498cc140 syslogd kqueue
605 605 3 0 180 ffff90f7494deb40 dhcpcd poll
559 559 3 1 180 ffff90f7496e7740 dhcpcd poll
747 747 2 0 0 ffff90f74ab68100 dhcpcd
602 602 3 1 180 ffff90f7496e7b80 dhcpcd poll
292 292 3 0 180 ffff90f7494de700 dhcpcd poll
485 485 3 0 180 ffff90f7493c5b00 dhcpcd poll
291 > 291 7 0 0 ffff90f7496e7300 dhcpcd
1 1 3 1 180 ffff90f740e95140 init wait
0 4355 5 0 200 ffff90f766fd0780 (zombie)
0 3958 3 0 200 ffff90f78ccc40c0 poolthread pooljob
0 24372 3 0 200 ffff90f76b775500 ktrace ktrwait
0 11852 3 0 200 ffff90f76c8bc740 acctwatch actwat
0 8698 3 1 200 ffff90f7634dc140 ktrace ktrwait
0 11727 3 1 200 ffff90f74e8ce140 ktrace ktrwait
0 8298 3 0 200 ffff90f7597f7500 ktrace ktrwait
0 6641 3 0 200 ffff90f74a3d4180 ktrace ktrwait
0 8286 3 0 200 ffff90f7641f6480 ktrace ktrwait
0 4534 3 1 200 ffff90f7504a48c0 ktrace ktrwait
0 673 3 1 200 ffff90f7490af640 physiod physiod
0 196 3 1 200 ffff90f7490ac680 pooldrain pooldrain
0 195 2 1 240 ffff90f7490ac240 ioflush
0 194 3 0 200 ffff90f7490afa80 pgdaemon pgdaemon
0 170 3 1 200 ffff90f746fcea40 usb7 usbevt
0 169 3 0 200 ffff90f746fce600 usb6 usbevt
0 168 3 1 200 ffff90f746fce1c0 usb5 usbevt
0 167 3 0 200 ffff90f743f49a00 usb4 usbevt
0 166 3 0 200 ffff90f743f495c0 usb3 usbevt
0 165 3 0 200 ffff90f743f49180 usb2 usbevt
0 31 3 1 200 ffff90f740e959c0 usb1 usbevt
0 63 3 0 200 ffff90f740cff740 usb0 usbevt
0 126 3 1 200 ffff90f740cffb80 usbtask-dr usbtsk
0 125 3 1 200 ffff90f740dde340 usbtask-hc usbtsk
0 124 3 0 200 ffff90f73f295b00 swwreboot swwreboot
0 123 3 0 200 ffff90f740e95580 npfgc0 npfgcw
0 122 3 1 200 ffff90f740e6a980 rt_free rt_free
0 121 2 1 240 ffff90f740e6a540 unpgc
0 120 2 0 200 ffff90f740e6a100 key_timehandler
0 119 3 1 200 ffff90f740e4d940 icmp6_wqinput/1 icmp6_wqinput
0 118 3 0 200 ffff90f740e4d500 icmp6_wqinput/0 icmp6_wqinput
0 117 2 0 200 ffff90f740e4d0c0 nd6_timer
0 116 3 1 200 ffff90f740e38900 carp6_wqinput/1 carp6_wqinput
0 115 3 0 200 ffff90f740e384c0 carp6_wqinput/0 carp6_wqinput
0 114 3 1 200 ffff90f740e38080 carp_wqinput/1 carp_wqinput
0 113 3 0 200 ffff90f740e138c0 carp_wqinput/0 carp_wqinput
0 112 3 1 200 ffff90f740e13480 icmp_wqinput/1 icmp_wqinput
0 111 3 0 200 ffff90f740e13040 icmp_wqinput/0 icmp_wqinput
0 110 2 0 200 ffff90f740ddebc0 rt_timer
0 109 3 0 200 ffff90f740dde780 vmem_rehash vmem_rehash
0 100 3 1 200 ffff90f740cff300 entbutler entropy
0 99 3 0 200 ffff90f74073eb40 viomb balloon
0 98 3 1 200 ffff90f74073e700 vioif0_txrx/1 vioif0_txrx
0 97 3 0 200 ffff90f74073e2c0 vioif0_txrx/0 vioif0_txrx
0 30 3 1 200 ffff90f73f2956c0 scsibus0 sccomp
0 29 3 0 200 ffff90f73f295280 pms0 pmsreset
0 28 3 1 200 ffff90f73f1b5ac0 xcall/1 xcall
0 27 1 1 200 ffff90f73f1b5680 softser/1
0 26 1 1 200 ffff90f73f1b5240 softclk/1
0 25 1 1 200 ffff90f73f198a80 softbio/1
0 24 1 1 200 ffff90f73f198640 softnet/1
0 23 1 1 201 ffff90f73f198200 idle/1
0 22 3 1 200 ffff90f86d533a40 lnxsyswq lnxsyswq
0 21 3 0 200 ffff90f86d533600 lnxubdwq lnxubdwq
0 20 3 0 200 ffff90f86d5331c0 lnxpwrwq lnxpwrwq
0 19 3 0 200 ffff90f86d542a00 lnxlngwq lnxlngwq
0 18 3 0 200 ffff90f86d5425c0 lnxhipwq lnxhipwq
0 17 3 0 200 ffff90f86d542180 lnxrcugc lnxrcugc
0 16 3 0 200 ffff90f86d5599c0 sysmon smtaskq
0 15 3 1 200 ffff90f86d559580 pmfsuspend pmfsuspend
0 14 3 0 200 ffff90f86d559140 pmfevent pmfevent
0 13 3 0 200 ffff90f86d56c980 sopendfree sopendfr
0 12 3 0 200 ffff90f86d56c540 ifwdog ifwdog
0 11 2 0 200 ffff90f86d56c100 iflnkst
0 10 3 1 200 ffff90f86e597940 nfssilly nfssilly
0 9 3 1 200 ffff90f86e597500 pooldisp pooldisp
0 8 3 1 200 ffff90f86e5970c0 modunload mod_unld
0 7 3 0 200 ffff90f86e5c2900 xcall/0 xcall
0 6 1 0 200 ffff90f86e5c24c0 softser/0
0 5 1 0 200 ffff90f86e5c2080 softclk/0
0 4 1 0 200 ffff90f86e5ed8c0 softbio/0
0 3 1 0 200 ffff90f86e5ed480 softnet/0
0 2 1 0 201 ffff90f86e5ed040 idle/0
0 > 0 7 1 240 ffffffff867959c0 swapper
[Locks tracked through LWPs]

****** LWP 23544.23544 (syz-executor.3) @ 0xffff90f77855f040, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:kcov_open+0x52 sys/kern/subr_kcov.c:461)
lock address : ffff90f7ba7161c0
type : sleep/adaptive
initialized : netbsd:kcov_open+0x52
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff90f77855f040 last held: 0xffff90f77855f040
last locked* : netbsd:kcov_fops_ioctl+0x5c
unlocked : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted:

* Lock 0 (initialized at netbsd:uvm_km_bootstrap+0x9e sys/uvm/uvm_km.c:294)
lock address : netbsd:kernel_map_store+0x18
type : sleep/adaptive
initialized : netbsd:uvm_km_bootstrap+0x9e
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 2
relevant cpu : 1 last held: 0
relevant lwp : 0xffff90f77855f040 last held: 000000000000000000
last locked : netbsd:vm_map_lock+0x84
unlocked* : netbsd:cv_wait+0x18f
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 4361.4361 (syz-executor.4) @ 0xffff90f7af638940, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:kcov_open+0x52 sys/kern/subr_kcov.c:461)
lock address : ffff90f7bb34a7c0
type : sleep/adaptive
initialized : netbsd:kcov_open+0x52
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90f7af638940 last held: 0xffff90f7af638940
last locked* : netbsd:kcov_fops_ioctl+0x5c
unlocked : 0
owner field : 0xffff90f7af638940 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 5081.5081 (syz-executor.1) @ 0xffff90f7b50d1480, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:kcov_open+0x52 sys/kern/subr_kcov.c:461)
lock address : ffff90f7b55214c0
type : sleep/adaptive
initialized : netbsd:kcov_open+0x52
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff90f7b50d1480 last held: 0xffff90f7b50d1480
last locked* : netbsd:kcov_fops_ioctl+0x5c
unlocked : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at netbsd:uvm_obj_init+0xee sys/uvm/uvm_object.c:70)
lock address : ffff90f7ba782ac0
type : sleep/adaptive
initialized : netbsd:uvm_obj_init+0xee
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff90f7b50d1480 last held: 0xffff90f7b50d1480
last locked* : netbsd:uvm_fault_internal+0x5241
unlocked : netbsd:uao_get+0x403
owner/count : 000000000000000000 flags : 000000000000000000
Turnstile: no active turnstile for this lock.

* Lock 2 (initialized at netbsd:pmap_bootstrap+0xcc sys/arch/x86/x86/pmap.c:1237)
lock address : netbsd:kernel_pmap_store+0x180
type : sleep/adaptive
initialized : netbsd:pmap_bootstrap+0xcc
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff90f7b50d1480 last held: 0xffff90f7b50d1480
last locked* : netbsd:pmap_enter_ma+0x3c0
unlocked : netbsd:pmap_enter_ma+0xb24
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 4363.4363 (syz-executor.5) @ 0xffff90f7af6380c0, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:fork1+0x4c5 sys/kern/kern_fork.c:366)
lock address : ffff90f7a542ee50
type : sleep/adaptive
initialized : netbsd:fork1+0x4c5
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff90f7af6380c0 last held: 0xffff90f7af6380c0
last locked* : netbsd:exit1+0x393
unlocked : netbsd:execve_runproc+0x2c3b
owner/count : 0xffff90f7af6380c0 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted:

* Lock 0 (initialized at netbsd:uvm_km_bootstrap+0x9e sys/uvm/uvm_km.c:294)
lock address : netbsd:kernel_map_store+0x18
type : sleep/adaptive
initialized : netbsd:uvm_km_bootstrap+0x9e
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 2
relevant cpu : 1 last held: 0
relevant lwp : 0xffff90f7af6380c0 last held: 000000000000000000
last locked : netbsd:vm_map_lock+0x84
unlocked* : netbsd:cv_wait+0x18f
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 559.559 (dhcpcd) @ 0xffff90f7496e7740, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff90f7496e7740 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 747.747 (dhcpcd) @ 0xffff90f74ab68100, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90f74ab68100 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 485.485 (dhcpcd) @ 0xffff90f7493c5b00, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90f7493c5b00 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 291.291 (dhcpcd) @ 0xffff90f7496e7300, l_stat=7

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90f7496e7300 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.26 (softclk/1) @ 0xffff90f73f1b5240, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff90f73f1b5240 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xffff90f86d56c100, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90f86d56c100 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.5 (softclk/0) @ 0xffff90f86e5c2080, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90f86e5c2080 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.0 (swapper) @ 0xffffffff867959c0, l_stat=7

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffffff867959c0 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

******* Locks held on cpu0:

* Lock 0 (initialized at netbsd:kprintf_init+0x72 sys/kern/subr_prf.c:156)
lock address : netbsd:kprintf_mtx
type : spin
initialized : netbsd:kprintf_init+0x72
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff90f7496e7300 last held: 0xffff90f7496e7300
last locked* : netbsd:kprintf_lock+0x50
unlocked : netbsd:kprintf_unlock+0x70
owner field : 0x0000000000000800 wait/spin: 0/1

PAGE FLAG PQ UOBJECT UANON
0xffff9c0000007180 0045 00000000 0x0 0x0
0xffff9c0000007200 0045 00000000 0x0 0x0
0xffff9c0000007280 0045 00000000 0x0 0x0
0xffff9c0000007300 0045 00000000 0x0 0x0
0xffff9c0000007380 0045 00000000 0x0 0x0
0xffff9c0000007400 0045 00000000 0x0 0x0
0xffff9c0000007480 0045 00000000 0x0 0x0
0xffff9c0000007500 0045 00000000 0x0 0x0
0xffff9c0000007580 0045 00000000 0x0 0x0
0xffff9c0000007600 0045 00000000 0x0 0x0
0xffff9c0000007680 0041 00000000 0x0 0x0
0xffff9c0000007700 0041 00000000 0x0 0x0
0xffff9c0000007780 0041 00000000 0x0 0x0
0xffff9c0000007800 0041 00000000 0x0 0x0
0xffff9c0000007880 0041 00000000 0x0 0x0
0xffff9c0000007900 0045 00000000 0x0 0x0
0xffff9c0000007980 0041 00000000 0x0 0x0
0xffff9c0000007a00 0041 00000000 0x0 0x0
0xffff9c0000007a80 0041 00000000 0x0 0x0
0xffff9c0000007b00 0041 00000000 0x0 0x0
0xffff9c0000007b80 0041 00000000 0x0 0x0
0xffff9c0000007c00 0041 00000000 0x0 0x0
0xffff9c0000007c80 0041 00000000 0x0 0x0
0xffff9c0000007d00 0041 00000000 0x0 0x0
0xffff9c0000007d80 0041 00000000 0x0 0x0
0xffff9c0000007e00 0041 00000000 0x0 0x0
0xffff9c0000007e80 0041 00000000 0x0 0x0
0xffff9c0000007f00 0041 00000000 0x0 0x0
0xffff9c0000007f80 0041 00000000 0x0 0x0
0xffff9c0000008000 0041 00000000 0x0 0x0
0xffff9c0000008080 0041 00000000 0x0 0x0
0xffff9c0000008100 0041 00000000 0x0 0x0
0xffff9c0000008180 0041 00000000 0x0 0x0
0xffff9c0000008200 0041 00000000 0x0 0x0
0xffff9c0000008280 0041 00000000 0x0 0x0
0xffff9c0000008300 0041 00000000 0x0 0x0
0xffff9c0000008380 0041 00000000 0x0 0x0
0xffff9c0000008400 0041 00000000 0x0 0x0
0xffff9c0000008480 0041 00000000 0x0 0x0
0xffff9c0000008500 0041 00000000 0x0 0x0
0xffff9c0000008580 0041 00000000 0x0 0x0
0xffff9c0000008600 0045 00000000 0x0 0x0
0xffff9c0000008680 0041 00000000 0x0 0x0
0xffff9c0000008700 0041 00000000 0x0 0x0
0xffff9c0000008780 0041 00000000 0x0 0x0
0xffff9c0000008800 0041 00000000 0x0 0x0
0xffff9c0000008880 0041 00000000 0x0 0x0
0xffff9c0000008900 0041 00000000 0x0 0x0
0xffff9c0000008980 0041 00000000 0x0 0x0
0xffff9c0000008a00 0041 00000000 0x0 0x0
0xffff9c0000008a80 0041 00000000 0x0 0x0
0xffff9c0000008b00 0041 00000000 0x0 0x0
0xffff9c0000008b80 0041 00000000 0x0 0x0
0xffff9c0000008c00 0041 00000000 0x0 0x0
0xffff9c0000008c80 0041 00000000 0x0 0x0
0xffff9c0000008d00 0041 00000000 0x0 0x0
0xffff9c0000008d80 0041 00000000 0x0 0x0
0xffff9c0000008e00 0041 00000000 0x0 0x0
0xffff9c0000008e80 0041 00000000 0x0 0x0
0xffff9c0000008f00 0041 00000000 0x0 0x0
0xffff9c0000008f80 0041 00000000 0x0 0x0
0xffff9c0000009000 0041 00000000 0x0 0x0
0xffff9c0000009080 0041 00000000 0x0 0x0
0xffff9c0000009100 0045 00000000 0x0 0x0
0xffff9c0000009180 0045 00000000 0x0 0x0
0xffff9c0000009200 0041 00000000 0x0 0x0
0xffff9c0000009280 0041 00000000 0x0 0x0
0xffff9c0000009300 0041 00000000 0x0 0x0
0xffff9c0000009380 0041 00000000 0x0 0x0
0xffff9c0000009400 0041 00000000 0x0 0x0
0xffff9c0000009480 0041 00000000 0x0 0x0
0xffff9c0000009500 0041 00000000 0x0 0x0
0xffff9c0000009580 0041 00000000 0x0 0x0
0xffff9c0000009600 0041 00000000 0x0 0x0
0xffff9c0000009680 0041 00000000 0x0 0x0
0xffff9c0000009700 0041 00000000 0x0 0x0
0xffff9c0000009780 0041 00000000 0x0 0x0
0xffff9c0000009800 0041 00000000 0x0 0x0
0xffff9c0000009880 0041 00000000 0x0 0x0
0xffff9c0000009900 0041 00000000 0x0 0x0
0xffff9c0000009980 0041 00000000 0x0 0x0
0xffff9c0000009a00 0041 00000000 0x0 0x0
0xffff9c0000009a80 0041 00000000 0x0 0x0
0xffff9c0000009b00 0041 00000000 0x0 0x0
0xffff9c0000009b80 0041 00000000 0x0 0x0
0xffff9c0000009c00 0041 00000000 0x0 0x0
0xffff9c0000009c80 0041 00000000 0x0 0x0
0xffff9c0000009d00 0041 00000000 0x0 0x0
0xffff9c0000009d80 0041 00000000 0x0 0x0
0xffff9c0000009e00 0041 00000000 0x0 0x0
0xffff9c0000009e80 0041 00000000 0x0 0x0
0xffff9c0000009f00 0041 00000000 0x0 0x0
0xffff9c0000009f80 0045 00000000 0x0 0x0
0xffff9c000000a000 0041 00000000 0x0 0x0
0xffff9c000000a080 0041 00000000 0x0 0x0
0xffff9c000000a100 0041 00000000 0x0 0x0
0xffff9c000000a180 0041 00000000 0x0 0x0
0xffff9c000000a200 0041 00000000 0x0 0x0
0xffff9c000000a280 0041 00000000 0x0 0x0
0xffff9c000000a300 0041 00000000 0x0 0x0
0xffff9c000000a380 0041 00000000 0x0 0x0
0xffff9c000000a400 0041 00000000 0x0 0x0
0xffff9c000000a480 0041 00000000 0x0 0x0
0xffff9c000000a500 0041 00000000 0x0 0x0
0xffff9c000000a580 0041 00000000 0x0 0x0
0xffff9c000000a600 0041 00000000 0x0 0x0
0xffff9c000000a680 0041 00000000 0x0 0x0
0xffff9c000000a700 0041 00000000 0x0 0x0
0xffff9c000000a780 0041 00000000 0x0 0x0
0xffff9c000000a800 0041 00000000 0x0 0x0
0xffff9c000000a880 0041 00000000 0x0 0x0
0xffff9c000000a900 0041 00000000 0x0 0x0
0xffff9c000000a980 0041 00000000 0x0 0x0
0xffff9c000000aa00 0041 00000000 0x0 0x0
0xffff9c000000aa80 0041 00000000 0x0 0x0
0xffff9c000000ab00 0041 00000000 0x0 0x0
0xffff9c000000ab80 0041 00000000 0x0 0x0
0xffff9c000000ac00 0041 00000000 0x0 0x0
0xffff9c000000ac80 0041 00000000 0x0 0x0
0xffff9c000000ad00 0041 00000000 0x0 0x0
0xffff9c000000ad80 0041 00000000 0x0 0x0
0xffff9c000000ae00 0041 00000000 0x0 0x0
0xffff9c000000ae80 0041 00000000 0x0 0x0
0xffff9c000000af00 0041 00000000 0x0 0x0
0xffff9c000000af80 0041 00000000 0x0 0x0
0xffff9c000000b000 0045 00000000 0x0 0x0
0xffff9c000000b080 0041 00000000 0x0 0x0
0xffff9c000000b100 0041 00000000 0x0 0x0
0xffff9c000000b180 0041 00000000 0x0 0x0
0xffff9c000000b200 0045 00000000 0x0 0x0
0xffff9c000000b280 0045 00000000 0x0 0x0
0xffff9c000000b300 0045 00000000 0x0 0x0
0xffff9c000000b380 0045 00000000 0x0 0x0
0xffff9c000000b400 0045 00000000 0x0 0x0
0xffff9c000000b480 0045 00000000 0x0 0x0
0xffff9c000000b500 0041 00000000 0x0 0x0
0xffff9c000000b580 0041 00000000 0x0 0x0
0xffff9c000000b600 0045 00000000 0x0 0x0
0xffff9c000000b680 0045 00000000 0x0 0x0
0xffff9c000000b700 0045 00000000 0x0 0x0
0xffff9c000000b780 0045 00000000 0x0 0x0
0xffff9c000000b800 0045 00000000 0x0 0x0
0xffff9c000000b880 0045 00000000 0x0 0x0
0xffff9c000000b900 0045 00000000 0x0 0x0
0xffff9c000000b980 0045 00000000 0x0 0x0
0xffff9c000000ba00 0045 00000000 0x0 0x0
0xffff9c000000ba80 0045 00000000 0x0 0x0
0xffff9c000000bb00 0045 00000000 0x0 0x0
0xffff9c000000bb80 0045 00000000 0x0 0x0
0xffff9c000000bc00 0045 00000000 0x0 0x0
0xffff9c000000bc80 0045 00000000 0x0 0x0
0xffff9c000000bd00 0045 00000000 0x0 0x0
0xffff9c000000bd80 0045 00000000 0x0 0x0
0xffff9c000000be00 0045 00000000 0x0 0x0
0xffff9c000000be80 0045 00000000 0x0 0x0
0xffff9c000000bf00 0045 00000000 0x0 0x0
0xffff9c000000bf80 0045 00000000 0x0 0x0
0xffff9c000000c000 0045 00000000 0x0 0x0
0xffff9c000000c080 0045 00000000 0x0 0x0
0xffff9c000000c100 0045 00000000 0x0 0x0
0xffff9c000000c180 0045 00000000 0x0 0x0
0xffff9c000000c200 0045 00000000 0x0 0x0
0xffff9c000000c280 0045 00000000 0x0 0x0
0xffff9c000000c300 0045 00000000 0x0 0x0
0xffff9c000000c380 0045 00000000 0x0 0x0
0xffff9c000000c400 0045 00000000 0x0 0x0
0xffff9c000000c480 0045 00000000 0x0 0x0
0xffff9c000000c500 0045 00000000 0x0 0x0
0xffff9c000000c580 0045 00000000 0x0 0x0
0xffff9c000000c600 0045 00000000 0x0 0x0
0xffff9c000000c680 0045 00000000 0x0 0x0
0xffff9c000000c700 0045 00000000 0x0 0x0
0xffff9c000000c780 0045 00000000 0x0 0x0
0xffff9c000000c800 0041 00000000 0x0 0x0
0xffff9c000000c880 0045 00000000 0x0 0x0
0xffff9c000000c900 0045 00000000 0x0 0x0
0xffff9c000000c980 0045 00000000 0x0 0x0
0xffff9c000000ca00 0041 00000000 0x0 0x0
0xffff9c000000ca80 0045 00000000 0x0 0x0
0xffff9c000000cb00 0045 00000000 0x0 0x0
0xffff9c000000cb80 0045 00000000 0x0 0x0
0xffff9c000000cc00 0041 00000000 0x0 0x0
0xffff9c000000cc80 0041 00000000 0x0 0x0
0xffff9c000000cd00 0045 00000000 0x0 0x0
0xffff9c000000cd80 0045 00000000 0x0 0x0
0xffff9c000000ce00 0041 00000000 0x0 0x0
0xffff9c000000ce80 0041 00000000 0x0 0x0
0xffff9c000000cf00 0041 00000000 0x0 0x0
0xffff9c000000cf80 0041 00000000 0x0 0x0
0xffff9c000000d000 0041 00000000 0x0 0x0
0xffff9c000000d080 0041 00000000 0x0 0x0
0xffff9c000000d100 0041 00000000 0x0 0x0
0xffff9c000000d180 0041 00000000 0x0 0x0
0xffff9c000000d200 0041 00000000 0x0 0x0
0xffff9c000000d280 0041 00000000 0x0 0x0
0xffff9c000000d300 0041 00000000 0x0 0x0
0xffff9c000000d380 0041 00000000 0x0 0x0
0xffff9c000000d400 0041 00000000 0x0 0x0
0xffff9c000000d480 0041 00000000 0x0 0x0
0xffff9c000000d500 0041 00000000 0x0 0x0
0xffff9c000000d580 0041 00000000 0x0 0x0
0xffff9c000000d600 0041 00000000 0x0 0x0
0xffff9c000000d680 0041 00000000 0x0 0x0
0xffff9c000000d700 0041 00000000 0x0 0x0
0xffff9c000000d780 0041 00000000 0x0 0x0
0xffff9c000000d800 0045 00000000 0x0 0x0
0xffff9c000000d880 0041 00000000 0x0 0x0
0xffff9c000000d900 0041 00000000 0x0 0x0
0xffff9c000000d980 0041 00000000 0x0 0x0
0xffff9c000000da00 0041 00000000 0x0 0x0
0xffff9c000000da80 0045 00000000 0x0 0x0
0xffff9c000000db00 0045 00000000 0x0 0x0
0xffff9c000000db80 0041 00000000 0x0 0x0
0xffff9c000000dc00 0045 00000000 0x0 0x0
0xffff9c000000dc80 0045 00000000 0x0 0x0
0xffff9c000000dd00 0041 00000000 0x0 0x0
0xffff9c000000dd80 0041 00000000 0x0 0x0
0xffff9c000000de00 0045 00000000 0x0 0x0
0xffff9c000000de80 0041 00000000 0x0 0x0
0xffff9c000000df00 0041 00000000 0x0 0x0
0xffff9c000000df80 0045 00000000 0x0 0x0
0xffff9c000000e000 0045 00000000 0x0 0x0
0xffff9c000000e080 0045 00000000 0x0 0x0
0xffff9c000000e100 0041 00000000 0x0 0x0
0xffff9c000000e180 0041 00000000 0x0 0x0
0xffff9c000000e200 0041 00000000 0x0 0x0
0xffff9c000000e280 0041 00000000 0x0 0x0
0xffff9c000000e300 0045 00000000 0x0 0x0
0xffff9c000000e380 0045 00000000 0x0 0x0
0xffff9c000000e400 0041 00000000 0x0 0x0
0xffff9c000000e480 0041 00000000 0x0 0x0
0xffff9c000000e500 0045 00000000 0x0 0x0
0xffff9c000000e580 0045 00000000 0x0 0x0
0xffff9c000000e600 0041 00000000 0x0 0x0
0xffff9c000000e680 0045 00000000 0x0 0x0
0xffff9c000000e700 0045 00000000 0x0 0x0
0xffff9c000000e780 0045 00000000 0x0 0x0
0xffff9c000000e800 0041 00000000 0x0 0x0
0xffff9c000000e880 0045 00000000 0x0 0x0
0xffff9c000000e900 0041 00000000 0x0 0x0
0xffff9c000000e980 0041 00000000 0x0 0x0
0xffff9c000000ea00 0041 00000000 0x0 0x0
0xffff9c000000ea80 0041 00000000 0x0 0x0
0xffff9c000000eb00 0045 00000000 0x0 0x0
0xffff9c000000eb80 0041 00000000 0x0 0x0
0xffff9c000000ec00 0045 00000000 0x0 0x0
0xffff9c000000ec80 0041 00000000 0x0 0x0
0xffff9c000000ed00 0041 00000000 0x0 0x0
0xffff9c000000ed80 0041 00000000 0x0 0x0
0xffff9c000000ee00 0041 00000000 0x0 0x0
0xffff9c000000ee80 0045 00000000 0x0 0x0
0xffff9c000000ef00 0041 00000000 0x0 0x0
0xffff9c000000ef80 0041 00000000 0x0 0x0
0xffff9c000000f000 0041 00000000 0x0 0x0
0xffff9c000000f080 0041 00000000 0x0 0x0
0xffff9c000000f100 0041 00000000 0x0 0x0
0xffff9c000000f180 0041 00000000 0x0 0x0
0xffff9c000000f200 0041 00000000 0x0 0x0
0xffff9c000000f280 0041 00000000 0x0 0x0
0xffff9c000000f300 0041 00000000 0x0 0x0
0xffff9c000000f380 0045 00000000 0x0 0x0
0xffff9c000000f400 0045 00000000 0x0 0x0
0xffff9c000000f480 0041 00000000 0x0 0x0
0xffff9c000000f500 0041 00000000 0x0 0x0
0xffff9c000000f580 0041 00000000 0x0 0x0
0xffff9c000000f600 0045 00000000 0x0 0x0
0xffff9c000000f680 0041 00000000 0x0 0x0
0xffff9c000000f700 0041 00000000 0x0 0x0
0xffff9c000000f780 0041 00000000 0x0 0x0
0xffff9c000000f800 0041 00000000 0x0 0x0
0xffff9c000000f880 0045 00000000 0x0 0x0
0xffff9c000000f900 0045 00000000 0x0 0x0
0xffff9c000000f980 0041 00000000 0x0 0x0
0xffff9c000000fa00 0041 00000000 0x0 0x0
0xffff9c000000fa80 0045 00000000 0x0 0x0
0xffff9c000000fb00 0041 00000000 0x0 0x0
0xffff9c000000fb80 0041 00000000 0x0 0x0
0xffff9c000000fc00 0041 00000000 0x0 0x0
0xffff9c000000fc80 0041 00000000 0x0 0x0
0xffff9c000000fd00 0041 00000000 0x0 0x0
0xffff9c000000fd80 0045 00000000 0x0 0x0
0xffff9c000000fe00 0041 00000000 0x0 0x0
0xffff9c000000fe80 0041 00000000 0x0 0x0
0xffff9c000000ff00 0041 00000000 0x0 0x0
0xffff9c000000ff80 0041 00000000 0x0 0x0
0xffff9c0000010000 0041 00000000 0x0 0x0
0xffff9c0000010080 0045 00000000 0x0 0x0
0xffff9c0000010100 0045 00000000 0x0 0x0
0xffff9c0000010180 0041 00000000 0x0 0x0
0xffff9c0000010200 0045 00000000 0x0 0x0
0xffff9c0000010280 0041 00000000 0x0 0x0
0xffff9c0000010300 0041 00000000 0x0 0x0
0xffff9c0000010380 0041 00000000 0x0 0x0
0xffff9c0000010400 0041 00000000 0x0 0x0
0xffff9c0000010480 0041 00000000 0x0 0x0
0xffff9c0000010500 0041 00000000 0x0 0x0
0xffff9c0000010580 0041 00000000 0x0 0x0
0xffff9c0000010600 0041 00000000 0x0 0x0
0xffff9c0000010680 0041 00000000 0x0 0x0
0xffff9c0000010700 0041 00000000 0x0 0x0
0xffff9c0000010780 0041 00000000 0x0 0x0
0xffff9c0000010800 0041 00000000 0x0 0x0
0xffff9c0000010880 0041 00000000 0x0 0x0
0xffff9c0000010900 0045 00000000 0x0 0x0
0xffff9c0000010980 0045 00000000 0x0 0x0
0xffff9c0000010a00 0045 00000000 0x0 0x0
0xffff9c0000010a80 0045 00000000 0x0 0x0
0xffff9c0000010b00 0045 00000000 0x0 0x0
0xffff9c0000010b80 0041 00000000 0x0 0x0
0xffff9c0000010c00 0041 00000000 0x0 0x0
0xffff9c0000010c80 0041 00000000 0x0 0x0
0xffff9c0000010d00 0041 00000000 0x0 0x0
0xffff9c0000010d80 0041 00000000 0x0 0x0
0xffff9c0000010e00 0041 00000000 0x0 0x0
0xffff9c0000010e80 0041 00000000 0x0 0x0
0xffff9c0000010f00 0041 00000000 0x0 0x0
0xffff9c0000010f80 0045 00000000 0x0 0x0
0xffff9c0000011000 0041 00000000 0x0 0x0
0xffff9c0000011080 0041 00000000 0x0 0x0
0xffff9c0000011100 0041 00000000 0x0 0x0
0xffff9c0000011180 0041 00000000 0x0 0x0
0xffff9c0000011200 0041 00000000 0x0 0x0
0xffff9c0000011280 0045 00000000 0x0 0x0
0xffff9c0000011300 0041 00000000 0x0 0x0
0xffff9c0000011380 0041 00000000 0x0 0x0
0xffff9c0000011400 0041 00000000 0x0 0x0
0xffff9c0000011480 0041 00000000 0x0 0x0
0xffff9c0000011500 0041 00000000 0x0 0x0
0xffff9c0000011580 0041 00000000 0x0 0x0
0xffff9c0000011600 0041 00000000 0x0 0x0
0xffff9c0000011680 0041 00000000 0x0 0x0
0xffff9c0000011700 0041 00000000 0x0 0x0
0xffff9c0000011780 0041 00000000 0x0 0x0
0xffff9c0000011800 0041 00000000 0x0 0x0
0xffff9c0000011880 0041 00000000 0x0 0x0
0xffff9c0000011900 0041 00000000 0x0 0x0
0xffff9c0000011980 0041 00000000 0x0 0x0
0xffff9c0000011a00 0045 00000000 0x0 0x0
0xffff9c0000011a80 0041 00000000 0x0 0x0
0xffff9c0000011b00 0041 00000000 0x0 0x0
0xffff9c0000011b80 0041 00000000 0x0 0x0
0xffff9c0000011c00 0045 00000000 0x0 0x0
0xffff9c0000011c80 0045 00000000 0x0 0x0
0xffff9c0000011d00 0041 00000000 0x0 0x0
0xffff9c0000011d80 0041 00000000 0x0 0x0
0xffff9c0000011e00 0041 00000000 0x0 0x0
0xffff9c0000011e80 0041 00000000 0x0 0x0
0xffff9c0000011f00 0045 00000000 0x0 0x0
0xffff9c0000011f80 0045 00000000 0x0 0x0
0xffff9c0000012000 0041 00000000 0x0 0x0
0xffff9c0000012080 0041 00000000 0x0 0x0
0xffff9c0000012100 0041 00000000 0x0 0x0
0xffff9c0000012180 0045 00000000 0x0 0x0
0xffff9c0000012200 0041 00000000 0x0 0x0
0xffff9c0000012280 0041 00000000 0x0 0x0
0xffff9c0000012300 0041 00000000 0x0 0x0
0xffff9c0000012380 0041 00000000 0x0 0x0
0xffff9c0000012400 0041 00000000 0x0 0x0
0xffff9c0000012480 0041 00000000 0x0 0x0
0xffff9c0000012500 0045 00000000 0x0 0x0
0xffff9c0000012580 0041 00000000 0x0 0x0
0xffff9c0000012600 0041 00000000 0x0 0x0
0xffff9c0000012680 0045 00000000 0x0 0x0
0xffff9c0000012700 0001 00000000 0x0 0x0
0xffff9c0000012780 0001 00000000 0x0 0x0
0xffff9c0000012800 0001 00000000 0x0 0x0
0xffff9c0000012880 0001 00000000 0x0 0x0
0xffff9c0000012900 0001 00000000 0x0 0x0
0xffff9c0000012980 0001 00000000 0x0 0x0
0xffff9c0000012a00 0001 00000000 0x0 0x0
0xffff9c0000012a80 0001 00000000 0x0 0x0
0xffff9c0000012b00 0001 00000000 0x0 0x0
0xffff9c0000012b80 0001 00000000 0x0 0x0
0xffff9c0000012c00 0001 00000000 0x0 0x0
0xffff9c0000012c80 0001 00000000 0x0 0x0
0xffff9c0000012d00 0001 00000000 0x0 0x0
0xffff9c0000012d80 0001 00000000 0x0 0x0
0xffff9c0000012e00 0001 00000000 0x0 0x0
0xffff9c0000012e80 0001 00000000 0x0 0x0
0xffff9c0000012f00 0001 00000000 0x0 0x0
0xffff9c0000012f80 0001 00000000 0x0 0x0
0xffff9c0000013000 0001 00000000 0x0 0x0
0xffff9c0000013080 0001 00000000 0x0 0x0
0xffff9c0000013100 0001 00000000 0x0 0x0
0xffff9c0000013180 0001 00000000 0x0 0x0
0xffff9c0000013200 0001 00000000 0x0 0x0
0xffff9c0000013280 0001 00000000 0x0 0x0
0xffff9c0000013300 0001 00000000 0x0 0x0
0xffff9c0000013380 0001 00000000 0x0 0x0
0xffff9c0000013400 0001 00000000 0x0 0x0
0xffff9c0000013480 0001 00000000 0x0 0x0
0xffff9c0000013500 0001 00000000 0x0 0x0
0xffff9c0000013580 0001 00000000 0x0 0x0
0xffff9c0000013600 0001 00000000 0x0 0x0
0xffff9c0000013680 0001 00000000 0x0 0x0
0xffff9c0000013700 0001 00000000 0x0 0x0
0xffff9c0000013780 0001 00000000 0x0 0x0
0xffff9c0000013800 0001 00000000 0x0 0x0
0xffff9c0000013880 0001 00000000 0x0 0x0
0xffff9c0000013900 0001 00000000 0x0 0x0
0xffff9c0000013980 0001 00000000 0x0 0x0
0xffff9c0000013a00 0001 00000000 0x0 0x0
0xffff9c0000013a80 0001 00000000 0x0 0x0
0xffff9c0000013b00 0001 00000000 0x0 0x0
0xffff9c0000013b80 0001 00000000 0x0 0x0
0xffff9c0000013c00 0001 00000000 0x0 0x0
0xffff9c0000013c80 0001 00000000 0x0 0x0
0xffff9c0000013d00 0001 00000000 0x0 0x0
0xffff9c0000013d80 0001 00000000 0x0 0x0
0xffff9c0000013e00 0001 00000000 0x0 0x0
0xffff9c0000013e80 0001 00000000 0x0 0x0
0xffff9c0000013f00 0001 00000000 0x0 0x0
0xffff9c0000013f80 0001 00000000 0x0 0x0
0xffff9c0000014000 0001 00000000 0x0 0x0
0xffff9c0000014080 0001 00000000 0x0 0x0
0xffff9c0000014100 0001 00000000 0x0 0x0
0xffff9c0000014180 0001 00000000 0x0 0x0
0xffff9c0000014200 0041 00000000 0x0 0x0
0xffff9c0000014280 0041 00000000 0x0 0x0
0xffff9c0000014300 0041 00000000 0x0 0x0
0xffff9c0000014380 0041 00000000 0x0 0x0
0xffff9c0000014400 0041 00000000 0x0 0x0
0xffff9c0000014480 0041 00000000 0x0 0x0
0xffff9c0000014500 0041 00000000 0x0 0x0
0xffff9c0000014580 0041 00000000 0x0 0x0
0xffff9c0000014600 0041 00000000 0x0 0x0
0xffff9c0000014680 0041 00000000 0x0 0x0
0xffff9c0000014700 0041 00000000 0x0 0x0
0xffff9c0000014780 0041 00000000 0x0 0x0
0xffff9c0000014800 0041 00000000 0x0 0x0
0xffff9c0000014880 0041 00000000 0x0 0x0
0xffff9c0000014900 0041 00000000 0x0 0x0
0xffff9c0000014980 0041 00000000 0x0 0x0
0xffff9c0000014a00 0041 00000000 0x0 0x0
0xffff9c0000014a80 0041 00000000 0x0 0x0
0xffff9c0000014b00 0041 00000000 0x0 0x0
0xffff9c0000014b80 0041 00000000 0x0 0x0
0xffff9c0000014c00 0041 00000000 0x0 0x0
0xffff9c0000014c80 0041 00000000 0x0 0x0
0xffff9c0000014d00 0041 00000000 0x0 0x0
0xffff9c0000014d80 0041 00000000 0x0 0x0
0xffff9c0000014e00 0041 00000000 0x0 0x0
0xffff9c0000014e80 0041 00000000 0x0 0x0
0xffff9c0000014f00 0041 00000000 0x0 0x0
0xffff9c0000014f80 0041 00000000 0x0 0x0
0xffff9c0000015000 0041 00000000 0x0 0x0
0xffff9c0000015080 0041 00000000 0x0 0x0
0xffff9c0000015100 0041 00000000 0x0 0x0
0xffff9c0000015180 0041 00000000 0x0 0x0
0xffff9c0000015200 0041 00000000 0x0 0x0
0xffff9c0000015280 0041 00000000 0x0 0x0
0xffff9c0000015300 0041 00000000 0x0 0x0
0xffff9c0000015380 0041 00000000 0x0 0x0
0xffff9c0000015400 0041 00000000 0x0 0x0
0xffff9c0000015480 0041 00000000 0x0 0x0
0xffff9c0000015500 0041 00000000 0x0 0x0
0xffff9c0000015580 0041 00000000 0x0 0x0
0xffff9c0000015600 0041 00000000 0x0 0x0
0xffff9c0000015680 0041 00000000 0x0 0x0
0xffff9c0000015700 0041 00000000 0x0 0x0
0xffff9c0000015780 0041 00000000 0x0 0x0
0xffff9c0000015800 0041 00000000 0x0 0x0
0xffff9c0000015880 0041 00000000 0x0 0x0
0xffff9c0000015900 0041 00000000 0x0 0x0
0xffff9c0000015980 0001 00000000 0x0 0x0
0xffff9c0000015a00 0001 00000000 0x0 0x0
0xffff9c0000015a80 0001 00000000 0x0 0x0
0xffff9c0000015b00 0001 00000000 0x0 0x0
0xffff9c0000015b80 0001 00000000 0x0 0x0
0xffff9c0000015c00 0001 00000000 0x0 0x0
0xffff9c0000015c80 0001 00000000 0x0 0x0
0xffff9c0000015d00 0001 00000000 0x0 0x0
0xffff9c0000015d80 0001 00000000 0x0 0x0
0xffff9c0000015e00 0001 00000000 0x0 0x0
0xffff9c0000015e80 0001 00000000 0x0 0x0
0xffff9c0000015f00 0001 00000000 0x0 0x0
0xffff9c0000015f80 0001 00000000 0x0 0x0
0xffff9c0000016000 0001 00000000 0x0 0x0
0xffff9c0000016080 0001 00000000 0x0 0x0
0xffff9c0000016100 0001 00000000 0x0 0x0
0xffff9c0000016180 0001 00000000 0x0 0x0
0xffff9c0000016200 0001 00000000 0x0 0x0
0xffff9c0000016280 0001 00000000 0x0 0x0
0xffff9c0000016300 0001 00000000 0x0 0x0
0xffff9c0000016380 0001 00000000 0x0 0x0
0xffff9c0000016400 0001 00000000 0x0 0x0
0xffff9c0000016480 0001 00000000 0x0 0x0
0xffff9c0000016500 0001 00000000 0x0 0x0
0xffff9c0000016580 0001 00000000 0x0 0x0
0xffff9c0000016600 0001 00000000 0x0 0x0
0xffff9c0000016680 0001 00000000 0x0 0x0
0xffff9c0000016700 0001 00000000 0x0 0x0
0xffff9c0000016780 0001 00000000 0x0 0x0
0xffff9c0000016800 0001 00000000 0x0 0x0
0xffff9c0000016880 0001 00000000 0x0 0x0
0xffff9c0000016900 0001 00000000 0x0 0x0
0xffff9c0000016980 0001 00000000 0x0 0x0
0xffff9c0000016a00 0001 00000000 0x0 0x0
0xffff9c0000016a80 0001 00000000 0x0 0x0
0xffff9c0000016b00 0001 00000000 0x0 0x0
0xffff9c0000016b80 0001 00000000 0x0 0x0
0xffff9c

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

If the report is already addressed, let syzbot know by replying with:
#syz fix: exact-commit-title

If you want to overwrite report's subsystems, reply with:
#syz set subsystems: new-subsystem
(See the list of subsystem names on the web dashboard)

If the report is a duplicate of another one, reply with:
#syz dup: exact-subject-of-another-report

If you want to undo deduplication, reply with:
#syz undup
Reply all
Reply to author
Forward
0 new messages