page fault in free_all_endpoints

3 views
Skip to first unread message

syzbot

unread,
Dec 23, 2020, 10:49:24 AM12/23/20
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: df83a1d0 Rename the CPU fan to SYS fan to match what the f..
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=119cf4fb500000
kernel config: https://syzkaller.appspot.com/x/.config?x=739e57438eb9ed9e
dashboard link: https://syzkaller.appspot.com/bug?extid=b25ba25b57561144ac6e
compiler: clang version 3.8.0-2ubuntu4 (tags/RELEASE_380/final)
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=17de78c0d00000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=1542f250d00000

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+b25ba2...@syzkaller.appspotmail.com

[ 54.3663349] fatal page fault in supervisor mode
[ 54.3663349] trap type 6 code 0 rip 0xffffffff811d3328 cs 0x8 rflags 0x10213 cr2 0x10 ilevel 0 rsp 0xffffdf0080702930
[ 54.3815533] curlwp 0xffffdf0012054100 pid 0.123 lowest kstack 0xffffdf00806fb2c0
kernel: page fault trap, code=0
Stopped in pid 0.123 (system) at netbsd:free_all_endpoints+0x108: movq ffffffffffffffc8(%r15,%r12,1),%r14
?
free_all_endpoints() at netbsd:free_all_endpoints+0x108 free_pipe sys/dev/usb/umidi.c:710 [inline]
free_all_endpoints() at netbsd:free_all_endpoints+0x108 sys/dev/usb/umidi.c:760
umidi_detach() at netbsd:umidi_detach+0xc93 sys/dev/usb/umidi.c:472
config_detach() at netbsd:config_detach+0x8d8 sys/kern/subr_autoconf.c:1761
usb_disconnect_port() at netbsd:usb_disconnect_port+0x2cd sys/dev/usb/usb_subr.c:1641
uhub_explore() at netbsd:uhub_explore+0x1429 sys/dev/usb/uhub.c:638
usb_discover() at netbsd:usb_discover+0x423 sys/dev/usb/usb.c:1098
usb_event_thread() at netbsd:usb_event_thread+0x22b sys/dev/usb/usb.c:634
Panic string: (null)
PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
1191 1191 2 1 0 ffffdf0013492100 syz-executor8631
1104 1104 2 1 40000 ffffdf0013357940 syz-executor8631
1099 1099 2 0 40000 ffffdf0013357500 syz-executor8631
1078 1078 2 0 40000 ffffdf00133570c0 syz-executor8631
1073 1073 2 0 40000 ffffdf0013346900 syz-executor8631
420 420 2 0 40140 ffffdf00133464c0 syz-executor8631
1085 1085 2 1 140 ffffdf0013346080 syz-executor8631
1086 1086 2 1 140 ffffdf0012be28c0 syz-executor8631
1084 1084 3 1 40180 ffffdf0012be2480 syz-executor8631 nanoslp
1079 1079 2 1 140 ffffdf0012be2040 syz-executor8631
1068 1068 2 0 140 ffffdf00122c8ac0 syz-executor8631
1109 1109 2 0 140 ffffdf00122c8680 syz-executor8631
1076 1076 3 0 40180 ffffdf00122c8240 syz-executor8631 nanoslp
1074 1074 3 1 180 ffffdf001247d700 sshd select
947 947 3 1 180 ffffdf0012b05bc0 getty nanoslp
857 857 3 1 180 ffffdf00121b8a80 getty nanoslp
1094 1094 3 1 180 ffffdf00121b8640 getty nanoslp
1103 1103 3 1 1c0 ffffdf0012134a00 getty ttyraw
953 953 3 1 180 ffffdf0012b05780 sshd select
870 870 3 1 180 ffffdf0012b05340 powerd kqueue
681 > 681 7 1 100 ffffdf001254f740 syslogd
596 596 3 0 180 ffffdf001254fb80 dhcpcd poll
595 595 3 0 180 ffffdf00123a9280 dhcpcd poll
594 594 3 1 180 ffffdf00123a9b00 dhcpcd poll
578 578 3 0 180 ffffdf001254f300 dhcpcd poll
350 350 3 0 180 ffffdf001247db40 dhcpcd poll
349 349 3 0 180 ffffdf00123a96c0 dhcpcd poll
348 348 3 0 180 ffffdf001247d2c0 dhcpcd poll
1 1 3 0 180 ffffdf0011e950c0 init wait
0 997 3 0 200 ffffdf00121b71c0 physiod physiod
0 192 3 0 200 ffffdf00121b8200 pooldrain pooldrain
0 166 3 0 200 ffffdf00121b7a40 ioflush syncer
0 165 3 1 200 ffffdf00121b7600 pgdaemon pgdaemon
0 162 3 1 200 ffffdf00121345c0 usb7 usbevt
0 161 3 1 200 ffffdf0012134180 usb6 usbevt
0 31 2 0 240 ffffdf00121049c0 usb5
0 63 3 0 240 ffffdf0012104580 usb4 usbxfer
0 126 2 1 240 ffffdf0012104140 usb3
0 125 3 1 200 ffffdf0012054980 usb2 usbdly
0 124 3 1 240 ffffdf0012054540 usb1 tstile
0 > 123 7 0 240 ffffdf0012054100 usb0
0 122 3 1 200 ffffdf0011e95940 usbtask-dr usbtsk
0 121 3 0 200 ffffdf00103b7ac0 usbtask-hc usbtsk
0 120 3 1 200 ffffdf0011e95500 npfgc0 npfgcw
0 119 3 1 200 ffffdf0011e89900 rt_free rt_free
0 118 3 1 200 ffffdf0011e894c0 unpgc unpgc
0 117 3 0 200 ffffdf0011e89080 key_timehandler key_timehandler
0 116 3 1 200 ffffdf0011e838c0 icmp6_wqinput/1 icmp6_wqinput
0 115 3 0 200 ffffdf0011e83480 icmp6_wqinput/0 icmp6_wqinput
0 114 3 0 200 ffffdf0011e83040 nd6_timer nd6_timer
0 113 3 1 200 ffffdf0011e7dbc0 carp6_wqinput/1 carp6_wqinput
0 112 3 0 200 ffffdf0011e7d780 carp6_wqinput/0 carp6_wqinput
0 111 3 1 200 ffffdf0011e7d340 carp_wqinput/1 carp_wqinput
0 110 3 0 200 ffffdf0011c72b80 carp_wqinput/0 carp_wqinput
0 109 3 1 200 ffffdf0011c72740 icmp_wqinput/1 icmp_wqinput
0 108 3 0 200 ffffdf0011c72300 icmp_wqinput/0 icmp_wqinput
0 107 3 0 200 ffffdf0011c65b40 rt_timer rt_timer
0 106 3 0 200 ffffdf0011c652c0 vmem_rehash vmem_rehash
0 105 3 0 200 ffffdf0011c65700 entbutler entropy
0 96 3 0 200 ffffdf00117a1b00 viomb balloon
0 30 3 1 200 ffffdf00117a16c0 vioif0_txrx/1 vioif0_txrx
0 29 3 0 200 ffffdf00117a1280 vioif0_txrx/0 vioif0_txrx
0 27 3 0 200 ffffdf00103b7680 scsibus0 sccomp
0 26 3 0 200 ffffdf00103b7240 pms0 pmsreset
0 25 3 1 200 ffffdf00103a6a80 xcall/1 xcall
0 24 1 1 200 ffffdf00103a6640 softser/1
0 23 1 1 200 ffffdf00103a6200 softclk/1
0 22 1 1 200 ffffdf00103a4a40 softbio/1
0 21 1 1 200 ffffdf00103a4600 softnet/1
0 20 1 1 201 ffffdf00103a41c0 idle/1
0 19 3 0 200 ffffdf000f220a00 lnxpwrwq lnxpwrwq
0 18 3 0 200 ffffdf000f2205c0 lnxlngwq lnxlngwq
0 17 3 0 200 ffffdf000f220180 lnxsyswq lnxsyswq
0 16 3 0 200 ffffdf000f21b9c0 lnxrcugc lnxrcugc
0 15 3 0 200 ffffdf000f21b580 sysmon smtaskq
0 14 3 0 200 ffffdf000f21b140 pmfsuspend pmfsuspend
0 13 3 0 200 ffffdf000f217980 pmfevent pmfevent
0 12 3 0 200 ffffdf000f217540 sopendfree sopendfr
0 11 3 1 200 ffffdf000f217100 iflnkst iflnkst
0 10 3 0 200 ffffdf000f20e940 nfssilly nfssilly
0 9 3 0 200 ffffdf000f20e500 vdrain vdrain
0 8 3 1 200 ffffdf000f20e0c0 modunload mod_unld
0 7 3 0 200 ffffdf000ec0a900 xcall/0 xcall
0 6 1 0 200 ffffdf000ec0a4c0 softser/0
0 5 1 0 200 ffffdf000ec0a080 softclk/0
0 4 1 0 200 ffffdf000ec088c0 softbio/0
0 3 1 0 200 ffffdf000ec08480 softnet/0
0 2 1 0 201 ffffdf000ec08040 idle/0
0 0 3 0 200 ffffffff862506c0 swapper uvm
[Locks tracked through LWPs]

****** LWP 1191.1191 (syz-executor8631) @ 0xffffdf0013492100, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at vhci_attach)
lock address : 0xffffdf000f0bd6d8 type : sleep/adaptive
initialized : 0xffffffff8219d686
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 1
relevant cpu : 1 last held: 1
relevant lwp : 0xffffdf0013492100 last held: 000000000000000000
last locked : 0xffffffff821996bb unlocked*: 0xffffffff8219a262
owner field : 0xffffdf0013492100 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 1099.1099 (syz-executor8631) @ 0xffffdf0013357500, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at vhci_attach)
lock address : 0xffffdf000f0b96d8 type : sleep/adaptive
initialized : 0xffffffff8219d686
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 1
relevant cpu : 0 last held: 0
relevant lwp : 0xffffdf0013357500 last held: 000000000000000000
last locked : 0xffffffff821996bb unlocked*: 0xffffffff8219a262
owner field : 0xffffdf0013357500 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 1073.1073 (syz-executor8631) @ 0xffffdf0013346900, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at vhci_attach)
lock address : 0xffffdf000f0b56d8 type : sleep/adaptive
initialized : 0xffffffff8219d686
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 2
relevant cpu : 0 last held: 0
relevant lwp : 0xffffdf0013346900 last held: 000000000000000000
last locked : 0xffffffff821996bb unlocked*: 0xffffffff8219a262
owner field : 0xffffdf0013346900 wait/spin: 1/0
Turnstile:
=> 0 waiting readers:
=> 1 waiting writers: 0xffffdf0012054540

****** LWP 681.681 (syslogd) @ 0xffffdf001254f740, l_stat=7

*** Locks held:

* Lock 0 (initialized at filedesc_ctor)
lock address : 0xffffdf00125355c0 type : sleep/adaptive
initialized : 0xffffffff84c136ee
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffdf001254f740 last held: 0xffffdf001254f740
last locked* : 0xffffffff84c46b4f unlocked : 0xffffffff84c48cf7
owner field : 0xffffdf001254f740 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted:

* Lock 0 (initialized at main)
lock address : 0xffffffff862cd6c0 type : spin
initialized : 0xffffffff84bd7f4b
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 1
relevant cpu : 1 last held: 0
relevant lwp : 0xffffdf001254f740 last held: 0xffffdf0012054100
last locked* : 0xffffffff81186d48 unlocked : 0xffffffff84c472e1
curcpu holds : 1 wanted by: 000000000000000000

****** LWP 595.595 (dhcpcd) @ 0xffffdf00123a9280, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff862cd7c0 type : sleep/adaptive
initialized : 0xffffffff84cd9083
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffdf00123a9280 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 594.594 (dhcpcd) @ 0xffffdf00123a9b00, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff862cd7c0 type : sleep/adaptive
initialized : 0xffffffff84cd9083
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffdf00123a9b00 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 349.349 (dhcpcd) @ 0xffffdf00123a96c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff862cd7c0 type : sleep/adaptive
initialized : 0xffffffff84cd9083
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffdf00123a96c0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 348.348 (dhcpcd) @ 0xffffdf001247d2c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff862cd7c0 type : sleep/adaptive
initialized : 0xffffffff84cd9083
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffdf001247d2c0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.124 (usb1) @ 0xffffdf0012054540, l_stat=3

*** Locks held:

* Lock 0 (initialized at vhci_attach)
lock address : 0xffffdf000f0b54b0 type : sleep/adaptive
initialized : 0xffffffff8219d613
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffffdf0012054540 last held: 0xffffdf0012054540
last locked* : 0xffffffff821a558d unlocked : 0xffffffff821a4e09
owner field : 0xffffdf0012054540 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

*** Locks wanted:

* Lock 0 (initialized at vhci_attach)
lock address : 0xffffdf000f0b56d8 type : sleep/adaptive
initialized : 0xffffffff8219d686
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 2
relevant cpu : 1 last held: 0
relevant lwp : 0xffffdf0012054540 last held: 000000000000000000
last locked : 0xffffffff821996bb unlocked*: 0xffffffff8219a262
owner field : 0xffffdf0013346900 wait/spin: 1/0
Turnstile:
=> 0 waiting readers:
=> 1 waiting writers: 0xffffdf0012054540

****** LWP 0.11 (iflnkst) @ 0xffffdf000f217100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff862cd7c0 type : sleep/adaptive
initialized : 0xffffffff84cd9083
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffffdf000f217100 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.5 (softclk/0) @ 0xffffdf000ec0a080, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff862cd7c0 type : sleep/adaptive
initialized : 0xffffffff84cd9083
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffdf000ec0a080 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

******* Locks held on cpu0:

* Lock 0 (initialized at main)
lock address : 0xffffffff862cd6c0 type : spin
initialized : 0xffffffff84bd7f4b
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 1
relevant cpu : 0 last held: 0
relevant lwp : 0xffffdf0012054100 last held: 0xffffdf0012054100
last locked* : 0xffffffff81186d48 unlocked : 0xffffffff84c472e1
curcpu holds : 1 wanted by: 000000000000000000

PAGE FLAG PQ UOBJECT UANON
0xffffdf0000017180 0041 00000000 0x0 0x0
0xffffdf0000017200 0041 00000000 0x0 0x0
0xffffdf0000017280 0041 00000000 0x0 0x0
0xffffdf0000017300 0041 00000000 0x0 0x0
0xffffdf0000017380 0041 00000000 0x0 0x0
0xffffdf0000017400 0041 00000000 0x0 0x0
0xffffdf0000017480 0041 00000000 0x0 0x0
0xffffdf0000017500 0041 00000000 0x0 0x0
0xffffdf0000017580 0041 00000000 0x0 0x0
0xffffdf0000017600 0041 00000000 0x0 0x0
0xffffdf0000017680 0041 00000000 0x0 0x0
0xffffdf0000017700 0041 00000000 0x0 0x0
0xffffdf0000017780 0041 00000000 0x0 0x0
0xffffdf0000017800 0041 00000000 0x0 0x0
0xffffdf0000017880 0041 00000000 0x0 0x0
0xffffdf0000017900 0041 00000000 0x0 0x0
0xffffdf0000017980 0041 00000000 0x0 0x0
0xffffdf0000017a00 0041 00000000 0x0 0x0
0xffffdf0000017a80 0041 00000000 0x0 0x0
0xffffdf0000017b00 0041 00000000 0x0 0x0
0xffffdf0000017b80 0041 00000000 0x0 0x0
0xffffdf0000017c00 0041 00000000 0x0 0x0
0xffffdf0000017c80 0041 00000000 0x0 0x0
0xffffdf0000017d00 0041 00000000 0x0 0x0
0xffffdf0000017d80 0041 00000000 0x0 0x0
0xffffdf0000017e00 0041 00000000 0x0 0x0
0xffffdf0000017e80 0041 00000000 0x0 0x0
0xffffdf0000017f00 0041 00000000 0x0 0x0
0xffffdf0000017f80 0041 00000000 0x0 0x0
0xffffdf0000018000 0041 00000000 0x0 0x0
0xffffdf0000018080 0041 00000000 0x0 0x0
0xffffdf0000018100 0041 00000000 0x0 0x0
0xffffdf0000018180 0041 00000000 0x0 0x0
0xffffdf0000018200 0041 00000000 0x0 0x0
0xffffdf0000018280 0041 00000000 0x0 0x0
0xffffdf0000018300 0041 00000000 0x0 0x0
0xffffdf0000018380 0041 00000000 0x0 0x0
0xffffdf0000018400 0041 00000000 0x0 0x0
0xffffdf0000018480 0041 00000000 0x0 0x0
0xffffdf0000018500 0041 00000000 0x0 0x0
0xffffdf0000018580 0041 00000000 0x0 0x0
0xffffdf0000018600 0041 00000000 0x0 0x0
0xffffdf0000018680 0041 00000000 0x0 0x0
0xffffdf0000018700 0041 00000000 0x0 0x0
0xffffdf0000018780 0041 00000000 0x0 0x0
0xffffdf0000018800 0041 00000000 0x0 0x0
0xffffdf0000018880 0041 00000000 0x0 0x0
0xffffdf0000018900 0041 00000000 0x0 0x0
0xffffdf0000018980 0041 00000000 0x0 0x0
0xffffdf0000018a00 0041 00000000 0x0 0x0
0xffffdf0000018a80 0041 00000000 0x0 0x0
0xffffdf0000018b00 0041 00000000 0x0 0x0
0xffffdf0000018b80 0041 00000000 0x0 0x0
0xffffdf0000018c00 0041 00000000 0x0 0x0
0xffffdf0000018c80 0041 00000000 0x0 0x0
0xffffdf0000018d00 0041 00000000 0x0 0x0
0xffffdf0000018d80 0041 00000000 0x0 0x0
0xffffdf0000018e00 0041 00000000 0x0 0x0
0xffffdf0000018e80 0041 00000000 0x0 0x0
0xffffdf0000018f00 0041 00000000 0x0 0x0
0xffffdf0000018f80 0041 00000000 0x0 0x0
0xffffdf0000019000 0041 00000000 0x0 0x0
0xffffdf0000019080 0041 00000000 0x0 0x0
0xffffdf0000019100 0041 00000000 0x0 0x0
0xffffdf0000019180 0041 00000000 0x0 0x0
0xffffdf0000019200 0041 00000000 0x0 0x0
0xffffdf0000019280 0041 00000000 0x0 0x0
0xffffdf0000019300 0041 00000000 0x0 0x0
0xffffdf0000019380 0041 00000000 0x0 0x0
0xffffdf0000019400 0041 00000000 0x0 0x0
0xffffdf0000019480 0041 00000000 0x0 0x0
0xffffdf0000019500 0041 00000000 0x0 0x0
0xffffdf0000019580 0041 00000000 0x0 0x0
0xffffdf0000019600 0041 00000000 0x0 0x0
0xffffdf0000019680 0041 00000000 0x0 0x0
0xffffdf0000019700 0041 00000000 0x0 0x0
0xffffdf0000019780 0041 00000000 0x0 0x0
0xffffdf0000019800 0041 00000000 0x0 0x0
0xffffdf0000019880 0041 00000000 0x0 0x0
0xffffdf0000019900 0041 00000000 0x0 0x0
0xffffdf0000019980 0041 00000000 0x0 0x0
0xffffdf0000019a00 0041 00000000 0x0 0x0
0xffffdf0000019a80 0041 00000000 0x0 0x0
0xffffdf0000019b00 0041 00000000 0x0 0x0
0xffffdf0000019b80 0041 00000000 0x0 0x0
0xffffdf0000019c00 0041 00000000 0x0 0x0
0xffffdf0000019c80 0041 00000000 0x0 0x0
0xffffdf0000019d00 0041 00000000 0x0 0x0
0xffffdf0000019d80 0041 00000000 0x0 0x0
0xffffdf0000019e00 0041 00000000 0x0 0x0
0xffffdf0000019e80 0041 00000000 0x0 0x0
0xffffdf0000019f00 0041 00000000 0x0 0x0
0xffffdf0000019f80 0041 00000000 0x0 0x0
0xffffdf000001a000 0041 00000000 0x0 0x0
0xffffdf000001a080 0041 00000000 0x0 0x0
0xffffdf000001a100 0041 00000000 0x0 0x0
0xffffdf000001a180 0041 00000000 0x0 0x0
0xffffdf000001a200 0041 00000000 0x0 0x0
0xffffdf000001a280 0041 00000000 0x0 0x0
0xffffdf000001a300 0041 00000000 0x0 0x0
0xffffdf000001a380 0041 00000000 0x0 0x0
0xffffdf000001a400 0041 00000000 0x0 0x0
0xffffdf000001a480 0041 00000000 0x0 0x0
0xffffdf000001a500 0041 00000000 0x0 0x0
0xffffdf000001a580 0041 00000000 0x0 0x0
0xffffdf000001a600 0041 00000000 0x0 0x0
0xffffdf000001a680 0041 00000000 0x0 0x0
0xffffdf000001a700 0041 00000000 0x0 0x0
0xffffdf000001a780 0041 00000000 0x0 0x0
0xffffdf000001a800 0041 00000000 0x0 0x0
0xffffdf000001a880 0041 00000000 0x0 0x0
0xffffdf000001a900 0041 00000000 0x0 0x0
0xffffdf000001a980 0041 00000000 0x0 0x0
0xffffdf000001aa00 0041 00000000 0x0 0x0
0xffffdf000001aa80 0041 00000000 0x0 0x0
0xffffdf000001ab00 0041 00000000 0x0 0x0
0xffffdf000001ab80 0041 00000000 0x0 0x0
0xffffdf000001ac00 0041 00000000 0x0 0x0
0xffffdf000001ac80 0041 00000000 0x0 0x0
0xffffdf000001ad00 0041 00000000 0x0 0x0
0xffffdf000001ad80 0041 00000000 0x0 0x0
0xffffdf000001ae00 0041 00000000 0x0 0x0
0xffffdf000001ae80 0041 00000000 0x0 0x0
0xffffdf000001af00 0041 00000000 0x0 0x0
0xffffdf000001af80 0001 00000000 0x0 0x0
0xffffdf000001b000 0001 00000000 0x0 0x0
0xffffdf000001b080 0001 00000000 0x0 0x0
0xffffdf000001b100 0001 00000000 0x0 0x0
0xffffdf000001b180 0001 00000000 0x0 0x0
0xffffdf000001b200 0001 00000000 0x0 0x0
0xffffdf000001b280 0001 00000000 0x0 0x0
0xffffdf000001b300 0001 00000000 0x0 0x0
0xffffdf000001b380 0001 00000000 0x0 0x0
0xffffdf000001b400 0001 00000000 0x0 0x0
0xffffdf000001b480 0001 00000000 0x0 0x0
0xffffdf000001b500 0001 00000000 0x0 0x0
0xffffdf000001b580 0001 00000000 0x0 0x0
0xffffdf000001b600 0001 00000000 0x0 0x0
0xffffdf000001b680 0001 00000000 0x0 0x0
0xffffdf000001b700 0001 00000000 0x0 0x0
0xffffdf000001b780 0001 00000000 0x0 0x0
0xffffdf000001b800 0001 00000000 0x0 0x0
0xffffdf000001b880 0001 00000000 0x0 0x0
0xffffdf000001b900 0001 00000000 0x0 0x0
0xffffdf000001b980 0001 00000000 0x0 0x0
0xffffdf000001ba00 0001 00000000 0x0 0x0
0xffffdf000001ba80 0001 00000000 0x0 0x0
0xffffdf000001bb00 0001 00000000 0x0 0x0
0xffffdf000001bb80 0001 00000000 0x0 0x0
0xffffdf000001bc00 0001 00000000 0x0 0x0
0xffffdf000001bc80 0001 00000000 0x0 0x0
0xffffdf000001bd00 0001 00000000 0x0 0x0
0xffffdf000001bd80 0001 00000000 0x0 0x0
0xffffdf000001be00 0001 00000000 0x0 0x0
0xffffdf000001be80 0001 00000000 0x0 0x0
0xffffdf000001bf00 0001 00000000 0x0 0x0
0xffffdf000001bf80 0001 00000000 0x0 0x0
0xffffdf000001c000 0001 00000000 0x0 0x0
0xffffdf000001c080 0001 00000000 0x0 0x0
0xffffdf000001c100 0001 00000000 0x0 0x0
0xffffdf000001c180 0001 00000000 0x0 0x0
0xffffdf000001c200 0001 00000000 0x0 0x0
0xffffdf000001c280 0001 00000000 0x0 0x0
0xffffdf000001c300 0001 00000000 0x0 0x0
0xffffdf000001c380 0001 00000000 0x0 0x0
0xffffdf000001c400 0001 00000000 0x0 0x0
0xffffdf000001c480 0001 00000000 0x0 0x0
0xffffdf000001c500 0001 00000000 0x0 0x0
0xffffdf000001c580 0001 00000000 0x0 0x0
0xffffdf000001c600 0001 00000000 0x0 0x0
0xffffdf000001c680 0001 00000000 0x0 0x0
0xffffdf000001c700 0001 00000000 0x0 0x0
0xffffdf000001c780 0001 00000000 0x0 0x0
0xffffdf000001c800 0001 00000000 0x0 0x0
0xffffdf000001c880 0001 00000000 0x0 0x0
0xffffdf000001c900 0001 00000000 0x0 0x0
0xffffdf000001c980 0001 00000000 0x0 0x0
0xffffdf000001ca00 0001 00000000 0x0 0x0
0xffffdf000001ca80 0001 00000000 0x0 0x0
0xffffdf000001cb00 0001 00000000 0x0 0x0
0xffffdf000001cb80 0001 00000000 0x0 0x0
0xffffdf000001cc00 0001 00000000 0x0 0x0
0xffffdf000001cc80 0001 00000000 0x0 0x0
0xffffdf000001cd00 0001 00000000 0x0 0x0
0xffffdf000001cd80 0001 00000000 0x0 0x0
0xffffdf000001ce00 0001 00000000 0x0 0x0
0xffffdf000001ce80 0001 00000000 0x0 0x0
0xffffdf000001cf00 0001 00000000 0x0 0x0
0xffffdf000001cf80 0001 00000000 0x0 0x0
0xffffdf000001d000 0001 00000000 0x0 0x0
0xffffdf000001d080 0001 00000000 0x0 0x0
0xffffdf000001d100 0001 00000000 0x0 0x0
0xffffdf000001d180 0001 00000000 0x0 0x0
0xffffdf000001d200 0001 00000000 0x0 0x0
0xffffdf000001d280 0001 00000000 0x0 0x0
0xffffdf000001d300 0001 00000000 0x0 0x0
0xffffdf000001d380 0001 00000000 0x0 0x0
0xffffdf000001d400 0001 00000000 0x0 0x0
0xffffdf000001d480 0001 00000000 0x0 0x0
0xffffdf000001d500 0001 00000000 0x0 0x0
0xffffdf000001d580 0001 00000000 0x0 0x0
0xffffdf000001d600 0001 00000000 0x0 0x0
0xffffdf000001d680 0001 00000000 0x0 0x0
0xffffdf000001d700 0001 00000000 0x0 0x0
0xffffdf000001d780 0001 00000000 0x0 0x0
0xffffdf000001d800 0001 00000000 0x0 0x0
0xffffdf000001d880 0001 00000000 0x0 0x0
0xffffdf000001d900 0001 00000000 0x0 0x0
0xffffdf000001d980 0001 00000000 0x0 0x0
0xffffdf000001da00 0001 00000000 0x0 0x0
0xffffdf000001da80 0001 00000000 0x0 0x0
0xffffdf000001db00 0001 00000000 0x0 0x0
0xffffdf000001db80 0001 00000000 0x0 0x0
0xffffdf000001dc00 0001 00000000 0x0 0x0
0xffffdf000001dc80 0001 00000000 0x0 0x0
0xffffdf000001dd00 0001 00000000 0x0 0x0
0xffffdf000001dd80 0001 00000000 0x0 0x0
0xffffdf000001de00 0001 00000000 0x0 0x0
0xffffdf000001de80 0001 00000000 0x0 0x0
0xffffdf000001df00 0001 00000000 0x0 0x0
0xffffdf000001df80 0001 00000000 0x0 0x0
0xffffdf000001e000 0001 00000000 0x0 0x0
0xffffdf000001e080 0001 00000000 0x0 0x0
0xffffdf000001e100 0001 00000000 0x0 0x0
0xffffdf000001e180 0001 00000000 0x0 0x0
0xffffdf000001e200 0001 00000000 0x0 0x0
0xffffdf000001e280 0001 00000000 0x0 0x0
0xffffdf000001e300 0001 00000000 0x0 0x0
0xffffdf000001e380 0001 00000000 0x0 0x0
0xffffdf000001e400 0001 00000000 0x0 0x0
0xffffdf000001e480 0001 00000000 0x0 0x0
0xffffdf000001e500 0001 00000000 0x0 0x0
0xffffdf000001e580 0001 00000000 0x0 0x0
0xffffdf000001e600 0001 00000000 0x0 0x0
0xffffdf000001e680 0001 00000000 0x0 0x0
0xffffdf000001e700 0001 00000000 0x0 0x0
0xffffdf000001e780 0001 00000000 0x0 0x0
0xffffdf000001e800 0001 00000000 0x0 0x0
0xffffdf000001e880 0001 00000000 0x0 0x0
0xffffdf000001e900 0001 00000000 0x0 0x0
0xffffdf000001e980 0001 00000000 0x0 0x0
0xffffdf000001ea00 0001 00000000 0x0 0x0
0xffffdf000001ea80 0001 00000000 0x0 0x0
0xffffdf000001eb00 0001 00000000 0x0 0x0
0xffffdf000001eb80 0001 00000000 0x0 0x0
0xffffdf000001ec00 0001 00000000 0x0 0x0
0xffffdf000001ec80 0001 00000000 0x0 0x0
0xffffdf000001ed00 0001 00000000 0x0 0x0
0xffffdf000001ed80 0001 00000000 0x0 0x0
0xffffdf000001ee00 0001 00000000 0x0 0x0
0xffffdf000001ee80 0001 00000000 0x0 0x0
0xffffdf000001ef00 0001 00000000 0x0 0x0
0xffffdf000001ef80 0001 00000000 0x0 0x0
0xffffdf000001f000 0001 00000000 0x0 0x0
0xffffdf000001f080 0001 00000000 0x0 0x0
0xffffdf000001f100 0001 00000000 0x0 0x0
0xffffdf000001f180 0001 00000000 0x0 0x0
0xffffdf000001f200 0001 00000000 0x0 0x0
0xffffdf000001f280 0001 00000000 0x0 0x0
0xffffdf000001f300 0001 00000000 0x0 0x0
0xffffdf000001f380 0001 00000000 0x0 0x0
0xffffdf000001f400 0001 00000000 0x0 0x0
0xffffdf000001f480 0001 00000000 0x0 0x0
0xffffdf000001f500 0001 00000000 0x0 0x0
0xffffdf000001f580 0001 00000000 0x0 0x0
0xffffdf000001f600 0001 00000000 0x0 0x0
0xffffdf000001f680 0001 00000000 0x0 0x0
0xffffdf000001f700 0001 00000000 0x0 0x0
0xffffdf000001f780 0001 00000000 0x0 0x0
0xffffdf000001f800 0001 00000000 0x0 0x0
0xffffdf000001f880 0001 00000000 0x0 0x0
0xffffdf000001f900 0001 00000000 0x0 0x0
0xffffdf000001f980 0001 00000000 0x0 0x0
0xffffdf000001fa00 0001 00000000 0x0 0x0
0xffffdf000001fa80 0001 00000000 0x0 0x0
0xffffdf000001fb00 0001 00000000 0x0 0x0
0xffffdf000001fb80 0001 00000000 0x0 0x0
0xffffdf000001fc00 0001 00000000 0x0 0x0
0xffffdf000001fc80 0001 00000000 0x0 0x0
0xffffdf000001fd00 0001 00000000 0x0 0x0
0xffffdf000001fd80 0001 00000000 0x0 0x0
0xffffdf000001fe00 0001 00000000 0x0 0x0
0xffffdf000001fe80 0001 00000000 0x0 0x0
0xffffdf000001ff00 0001 00000000 0x0 0x0
0xffffdf000001ff80 0001 00000000 0x0 0x0
0xffffdf0000020000 0001 00000000 0x0 0x0
0xffffdf0000020080 0001 00000000 0x0 0x0
0xffffdf0000020100 0001 00000000 0x0 0x0
0xffffdf0000020180 0001 00000000 0x0 0x0
0xffffdf0000020200 0001 00000000 0x0 0x0
0xffffdf0000020280 0001 00000000 0x0 0x0
0xffffdf0000020300 0001 00000000 0x0 0x0
0xffffdf0000020380 0001 00000000 0x0 0x0
0xffffdf0000020400 0001 00000000 0x0 0x0
0xffffdf0000020480 0001 00000000 0x0 0x0
0xffffdf0000020500 0001 00000000 0x0 0x0
0xffffdf0000020580 0001 00000000 0x0 0x0
0xffffdf0000020600 0001 00000000 0x0 0x0
0xffffdf0000020680 0001 00000000 0x0 0x0
0xffffdf0000020700 0001 00000000 0x0 0x0
0xffffdf0000020780 0001 00000000 0x0 0x0
0xffffdf0000020800 0001 00000000 0x0 0x0
0xffffdf0000020880 0001 00000000 0x0 0x0
0xffffdf0000020900 0001 00000000 0x0 0x0
0xffffdf0000020980 0001 00000000 0x0 0x0
0xffffdf0000020a00 0001 00000000 0x0 0x0
0xffffdf0000020a80 0001 00000000 0x0 0x0
0xffffdf0000020b00 0001 00000000 0x0 0x0
0xffffdf0000020b80 0001 00000000 0x0 0x0
0xffffdf0000020c00 0001 00000000 0x0 0x0
0xffffdf0000020c80 0001 00000000 0x0 0x0
0xffffdf0000020d00 0001 00000000 0x0 0x0
0xffffdf0000020d80 0001 00000000 0x0 0x0
0xffffdf0000020e00 0001 00000000 0x0 0x0
0xffffdf0000020e80 0001 00000000 0x0 0x0
0xffffdf0000020f00 0001 00000000 0x0 0x0
0xffffdf0000020f80 0001 00000000 0x0 0x0
0xffffdf0000021000 0001 00000000 0x0 0x0
0xffffdf0000021080 0001 00000000 0x0 0x0
0xffffdf0000021100 0001 00000000 0x0 0x0
0xffffdf0000021180 0001 00000000 0x0 0x0
0xffffdf0000021200 0001 00000000 0x0 0x0
0xffffdf0000021280 0001 00000000 0x0 0x0
0xffffdf0000021300 0001 00000000 0x0 0x0
0xffffdf0000021380 0001 00000000 0x0 0x0
0xffffdf0000021400 0001 00000000 0x0 0x0
0xffffdf0000021480 0001 00000000 0x0 0x0
0xffffdf0000021500 0001 00000000 0x0 0x0
0xffffdf0000021580 0001 00000000 0x0 0x0
0xffffdf0000021600 0001 00000000 0x0 0x0
0xffffdf0000021680 0001 00000000 0x0 0x0
0xffffdf0000021700 0001 00000000 0x0 0x0
0xffffdf0000021780 0001 00000000 0x0 0x0
0xffffdf0000021800 0001 00000000 0x0 0x0
0xffffdf0000021880 0001 00000000 0x0 0x0
0xffffdf0000021900 0001 00000000 0x0 0x0
0xffffdf0000021980 0001 00000000 0x0 0x0
0xffffdf0000021a00 0001 00000000 0x0 0x0
0xffffdf0000021a80 0001 00000000 0x0 0x0
0xffffdf0000021b00 0001 00000000 0x0 0x0
0xffffdf0000021b80 0001 00000000 0x0 0x0
0xffffdf0000021c00 0001 00000000 0x0 0x0
0xffffdf0000021c80 0001 00000000 0x0 0x0
0xffffdf0000021d00 0001 00000000 0x0 0x0
0xffffdf0000021d80 0001 00000000 0x0 0x0
0xffffdf0000021e00 0001 00000000 0x0 0x0
0xffffdf0000021e80 0001 00000000 0x0 0x0
0xffffdf0000021f00 0001 00000000 0x0 0x0
0xffffdf0000021f80 0001 00000000 0x0 0x0
0xffffdf0000022000 0001 00000000 0x0 0x0
0xffffdf0000022080 0001 00000000 0x0 0x0
0xffffdf0000022100 0001 00000000 0x0 0x0
0xffffdf0000022180 0001 00000000 0x0 0x0
0xffffdf0000022200 0001 00000000 0x0 0x0
0xffffdf0000022280 0001 00000000 0x0 0x0
0xffffdf0000022300 0001 00000000 0x0 0x0
0xffffdf0000022380 0001 00000000 0x0 0x0
0xffffdf0000022400 0001 00000000 0x0 0x0
0xffffdf0000022480 0001 00000000 0x0 0x0
0xffffdf0000022500 0001 00000000 0x0 0x0
0xffffdf0000022580 0001 00000000 0x0 0x0
0xffffdf0000022600 0001 00000000 0x0 0x0
0xffffdf0000022680 0001 00000000 0x0 0x0
0xffffdf0000022700 0001 00000000 0x0 0x0
0xffffdf0000022780 0001 00000000 0x0 0x0
0xffffdf0000022800 0001 00000000 0x0 0x0
0xffffdf0000022880 0001 00000000 0x0 0x0
0xffffdf0000022900 0001 00000000 0x0 0x0
0xffffdf0000022980 0001 00000000 0x0 0x0
0xffffdf0000022a00 0001 00000000 0x0 0x0
0xffffdf0000022a80 0001 00000000 0x0 0x0
0xffffdf0000022b00 0001 00000000 0x0 0x0
0xffffdf0000022b80 0001 00000000 0x0 0x0
0xffffdf0000022c00 0001 00000000 0x0 0x0
0xffffdf0000022c80 0001 00000000 0x0 0x0
0xffffdf0000022d00 0001 00000000 0x0 0x0
0xffffdf0000022d80 0001 00000000 0x0 0x0
0xffffdf0000022e00 0001 00000000 0x0 0x0
0xffffdf0000022e80 0001 00000000 0x0 0x0
0xffffdf0000022f00 0001 00000000 0x0 0x0
0xffffdf0000022f80 0001 00000000 0x0 0x0
0xffffdf0000023000 0001 00000000 0x0 0x0
0xffffdf0000023080 0001 00000000 0x0 0x0
0xffffdf0000023100 0001 00000000 0x0 0x0
0xffffdf0000023180 0001 00000000 0x0 0x0
0xffffdf0000023200 0001 00000000 0x0 0x0
0xffffdf0000023280 0001 00000000 0x0 0x0
0xffffdf0000023300 0001 00000000 0x0 0x0
0xffffdf0000023380 0001 00000000 0x0 0x0
0xffffdf0000023400 0001 00000000 0x0 0x0
0xffffdf0000023480 0001 00000000 0x0 0x0
0xffffdf0000023500 0001 00000000 0x0 0x0
0xffffdf0000023580 0001 00000000 0x0 0x0
0xffffdf0000023600 0001 00000000 0x0 0x0
0xffffdf0000023680 0001 00000000 0x0 0x0
0xffffdf0000023700 0001 00000000 0x0 0x0
0xffffdf0000023780 0001 00000000 0x0 0x0
0xffffdf0000023800 0001 00000000 0x0 0x0
0xffffdf0000023880 0001 00000000 0x0 0x0
0xffffdf0000023900 0001 00000000 0x0 0x0
0xffffdf0000023980 0001 00000000 0x0 0x0
0xffffdf0000023a00 0001 00000000 0x0 0x0
0xffffdf0000023a80 0001 00000000 0x0 0x0
0xffffdf0000023b00 0001 00000000 0x0 0x0
0xffffdf0000023b80 0001 00000000 0x0 0x0
0xffffdf0000023c00 0001 00000000 0x0 0x0
0xffffdf0000023c80 0001 00000000 0x0 0x0
0xffffdf0000023d00 0001 00000000 0x0 0x0
0xffffdf0000023d80 0001 00000000 0x0 0x0
0xffffdf0000023e00 0001 00000000 0x0 0x0
0xffffdf0000023e80 0001 00000000 0x0 0x0
0xffffdf0000023f00 0001 00000000 0x0 0x0
0xffffdf0000023f80 0001 00000000 0x0 0x0
0xffffdf0000024000 0001 00000000 0x0 0x0
0xffffdf0000024080 0001 00000000 0x0 0x0
0xffffdf0000024100 0001 00000000 0x0 0x0
0xffffdf0000024180 0001 00000000 0x0 0x0
0xffffdf0000024200 0001 00000000 0x0 0x0
0xffffdf0000024280 0001 00000000 0x0 0x0
0xffffdf0000024300 0001 00000000 0x0 0x0
0xffffdf0000024380 0001 00000000 0x0 0x0
0xffffdf0000024400 0001 00000000 0x0 0x0
0xffffdf0000024480 0001 00000000 0x0 0x0
0xffffdf0000024500 0001 00000000 0x0 0x0
0xffffdf0000024580 0001 00000000 0x0 0x0
0xffffdf0000024600 0001 00000000 0x0 0x0
0xffffdf0000024680 0001 00000000 0x0 0x0
0xffffdf0000024700 0001 00000000 0x0 0x0
0xffffdf0000024780 0001 00000000 0x0 0x0
0xffffdf0000024800 0001 00000000 0x0 0x0
0xffffdf0000024880 0001 00000000 0x0 0x0
0xffffdf0000024900 0001 00000000 0x0 0x0
0xffffdf0000024980 0001 00000000 0x0 0x0
0xffffdf0000024a00 0001 00000000 0x0 0x0
0xffffdf0000024a80 0001 00000000 0x0 0x0
0xffffdf0000024b00 0001 00000000 0x0 0x0
0xffffdf0000024b80 0001 00000000 0x0 0x0
0xffffdf0000024c00 0001 00000000 0x0 0x0
0xffffdf0000024c80 0001 00000000 0x0 0x0
0xffffdf0000024d00 0001 00000000 0x0 0x0
0xffffdf0000024d80 0001 00000000 0x0 0x0
0xffffdf0000024e00 0001 00000000 0x0 0x0
0xffffdf0000024e80 0001 00000000 0x0 0x0
0xffffdf0000024f00 0001 00000000 0x0 0x0
0xffffdf0000024f80 0001 00000000 0x0 0x0
0xffffdf0000025000 0001 00000000 0x0 0x0
0xffffdf0000025080 0001 00000000 0x0 0x0
0xffffdf0000025100 0001 00000000 0x0 0x0
0xffffdf0000025180 0001 00000000 0x0 0x0
0xffffdf0000025200 0001 00000000 0x0 0x0
0xffffdf0000025280 0001 00000000 0x0 0x0
0xffffdf0000025300 0001 00000000 0x0 0x0
0xffffdf0000025380 0001 00000000 0x0 0x0
0xffffdf0000025400 0001 00000000 0x0 0x0
0xffffdf0000025480 0001 00000000 0x0 0x0
0xffffdf0000025500 0001 00000000 0x0 0x0
0xffffdf0000025580 0001 00000000 0x0 0x0
0xffffdf0000025600 0001 00000000 0x0 0x0
0xffffdf0000025680 0001 00000000 0x0 0x0
0xffffdf0000025700 0001 00000000 0x0 0x0
0xffffdf0000025780 0001 00000000 0x0 0x0
0xffffdf0000025800 0001 00000000 0x0 0x0
0xffffdf0000025880 0001 00000000 0x0 0x0
0xffffdf0000025900 0001 00000000 0x0 0x0
0xffffdf0000025980 0001 00000000 0x0 0x0
0xffffdf0000025a00 0001 00000000 0x0 0x0
0xffffdf0000025a80 0001 00000000 0x0 0x0
0xffffdf0000025b00 0001 00000000 0x0 0x0
0xffffdf0000025b80 0001 00000000 0x0 0x0
0xffffdf0000025c00 0001 00000000 0x0 0x0
0xffffdf0000025c80 0001 00000000 0x0 0x0
0xffffdf0000025d00 0001 00000000 0x0 0x0
0xffffdf0000025d80 0001 00000000 0x0 0x0
0xffffdf0000025e00 0001 00000000 0x0 0x0
0xffffdf0000025e80 0001 00000000 0x0 0x0
0xffffdf0000025f00 0001 00000000 0x0 0x0
0xffffdf0000025f80 0001 00000000 0x0 0x0
0xffffdf0000026000 0001 00000000 0x0 0x0
0xffffdf0000026080 0001 00000000 0x0 0x0
0xffffdf0000026100 0001 00000000 0x0 0x0
0xffffdf0000026180 0001 00000000 0x0 0x0
0xffffdf0000026200 0001 00000000 0x0 0x0
0xffffdf0000026280 0001 00000000 0x0 0x0
0xffffdf0000026300 0001 00000000 0x0 0x0
0xffffdf0000026380 0001 00000000 0x0 0x0
0xffffdf0000026400 0001 00000000 0x0 0x0
0xffffdf0000026480 0001 00000000 0x0 0x0
0xffffdf0000026500 0001 00000000 0x0 0x0
0xffffdf0000026580 0001 00000000 0x0 0x0
0xffffdf0000026600 0001 00000000 0x0 0x0
0xffffdf0000026680 0001 00000000 0x0 0x0
0xffffdf0000026700 0001 00000000 0x0 0x0
0xffffdf0000026780 0001 00000000 0x0 0x0
0xffffdf0000026800 0001 00000000 0x0 0x0
0xffffdf0000026880 0001 00000000 0x0 0x0
0xffffdf0000026900 0001 00000000 0x0 0x0
0xffffdf0000026980 0001 00000000 0x0 0x0
0xffffdf0000026a00 0001 00000000 0x0 0x0
0xffffdf0000026a80 0001 00000000 0x0 0x0
0xffffdf0000026b00 0001 00000000 0x0 0x0
0xffffdf0000026b80 0001 00000000 0x0 0x0
0xffffdf0000026c00 0001 00000000 0x0 0x0
0xffffdf0000026c80 0001 00000000 0x0 0x0
0xffffdf0000026d00 0001 00000000 0x0 0x0
0xffffdf0000026d80 0001 00000000 0x0 0x0
0xffffdf0000026e00 0001 00000000 0x0 0x0
0xffffdf0000026e80 0001 00000000 0x0 0x0
0xffffdf0000026f00 0001 00000000 0x0 0x0
0xffffdf0000026f80 0001 00000000 0x0 0x0
0xffffdf0000027000 0001 00000000 0x0 0x0
0xffffdf0000027080 0001 00000000 0x0 0x0
0xffffdf0000027100 0001 00000000 0x0 0x0
0xffffdf0000027180 0001 00000000 0x0 0x0
0xffffdf0000027200 0001 00000000 0x0 0x0
0xffffdf0000027280 0001 00000000 0x0 0x0
0xffffdf0000027300 0001 00000000 0x0 0x0
0xffffdf0000027380 0001 00000000 0x0 0x0
0xffffdf0000027400 0001 00000000 0x0 0x0
0xffffdf0000027480 0001 00000000 0x0 0x0
0xffffdf0000027500 0001 00000000 0x0 0x0
0xffffdf0000027580 0001 00000000 0x0 0x0
0xffffdf0000027600 0001 00000000 0x0 0x0
0xffffdf0000027680 0001 00000000 0x0 0x0
0xffffdf0000027700 0001 00000000 0x0 0x0
0xffffdf0000027780 0001 00000000 0x0 0x0
0xffffdf0000027800 0001 00000000 0x0 0x0
0xffffdf0000027880 0001 00000000 0x0 0x0
0xffffdf0000027900 0001 00000000 0x0 0x0
0xffffdf0000027980 0001 00000000 0x0 0x0
0xffffdf0000027a00 0001 00000000 0x0 0x0
0xffffdf0000027a80 0001 00000000 0x0 0x0
0xffffdf0000027b00 0001 00000000 0x0 0x0
0xffffdf0000027b80 0001 00000000 0x0 0x0
0xffffdf0000027c00 0001 00000000 0x0 0x0
0xffffdf0000027c80 0001 00000000 0x0 0x0
0xffffdf0000027d00 0001 00000000 0x0 0x0
0xffffdf0000027d80 0001 00000000 0x0 0x0
0xffffdf0000027e00 0001 00000000 0x0 0x0
0xffffdf0000027e80 0001 00000000 0x0 0x0
0xffffdf0000027f00 0001 00000000 0x0 0x0
0xffffdf0000027f80 0001 00000000 0x0 0x0
0xffffdf0000028000 0001 00000000 0x0 0x0
0xffffdf0000028080 0001 00000000 0x0 0x0
0xffffdf0000028100 0001 00000000 0x0 0x0
0xffffdf0000028180 0001 00000000 0x0 0x0
0xffffdf0000028200 0001 00000000 0x0 0x0
0xffffdf0000028280 0001 00000000 0x0 0x0
0xffffdf0000028300 0001 00000000 0x0 0x0
0xffffdf0000028380 0001 00000000 0x0 0x0
0xffffdf0000028400 0001 00000000 0x0 0x0
0xffffdf0000028480 0001 00000000 0x0 0x0
0xffffdf0000028500 0001 00000000 0x0 0x0
0xffffdf0000028580 0001 00000000 0x0 0x0
0xffffdf0000028600 0001 00000000 0x0 0x0
0xffffdf0000028680 0001 00000000 0x0 0x0
0xffffdf0000028700 0001 00000000 0x0 0x0
0xffffdf0000028780 0001 00000000 0x0 0x0
0xffffdf0000028800 0001 00000000 0x0 0x0
0xffffdf0000028880 0001 00000000 0x0 0x0
0xffffdf0000028900 0001 00000000 0x0 0x0
0xffffdf0000028980 0001 00000000 0x0 0x0
0xffffdf0000028a00 0001 00000000 0x0 0x0
0xffffdf0000028a80 0001 00000000 0x0 0x0
0xffffdf0000028b00 0001 00000000 0x0 0x0
0xffffdf0000028b80 0001 00000000 0x0 0x0
0xffffdf0000028c00 0001 00000000 0x0 0x0
0xffffdf0000028c80 0001 00000000 0x0 0x0
0xffffdf0000028d00 0001 00000000 0x0 0x0
0xffffdf0000028d80 0001 00000000 0x0 0x0
0xffffdf0000028e00 0001 00000000 0x0 0x0
0xffffdf0000028e80 0001 00000000 0x0 0x0
0xffffdf0000028f00 0001 00000000 0x0 0x0
0xffffdf0000028f80 0001 00000000 0x0 0x0
0xffffdf0000029000 0001 00000000 0x0 0x0
0xffffdf0000029080 0001 00000000 0x0 0x0
0xffffdf0000029100 0001 00000000 0x0 0x0
0xffffdf0000029180 0001 00000000 0x0 0x0
0xffffdf0000029200 0001 00000000 0x0 0x0
0xffffdf0000029280 0001 00000000 0x0 0x0
0xffffdf0000029300 0001 00000000 0x0 0x0
0xffffdf0000029380 0001 00000000 0x0 0x0
0xffffdf0000029400 0001 00000000 0x0 0x0
0xffffdf0000029480 0001 00000000 0x0 0x0
0xffffdf0000029500 0001 00000000 0x0 0x0
0xffffdf0000029580 0001 00000000 0x0 0x0
0xffffdf0000029600 0001 00000000 0x0 0x0
0xffffdf0000029680 0001 00000000 0x0 0x0
0xffffdf0000029700 0001 00000000 0x0 0x0
0xffffdf0000029780 0001 00000000 0x0 0x0
0xffffdf0000029800 0001 00000000 0x0 0x0
0xffffdf0000029880 0001 00000000 0x0 0x0
0xffffdf0000029900 0001 00000000 0x0 0x0
0xffffdf0000029980 0001 00000000 0x0 0x0
0xffffdf0000029a00 0001 00000000 0x0 0x0
0xffffdf0000029a80 0001 00000000 0x0 0x0
0xffffdf0000029b00 0001 00000000 0x0 0x0
0xffffdf0000029b80 0001 00000000 0x0 0x0
0xffffdf0000029c00 0001 00000000 0x0 0x0
0xffffdf0000029c80 0001 00000000 0x0 0x0
0xffffdf0000029d00 0001 00000000 0x0 0x0
0xffffdf0000029d80 0001 00000000 0x0 0x0
0xffffdf0000029e00 0001 00000000 0x0 0x0
0xffffdf0000029e80 0001 00000000 0x0 0x0
0xffffdf0000029f00 0001 00000000 0x0 0x0
0xffffdf0000029f80 0001 00000000 0x0 0x0
0xffffdf000002a000 0001 00000000 0x0 0x0
0xffffdf000002a080 0001 00000000 0x0 0x0
0xffffdf000002a100 0001 00000000 0x0 0x0
0xffffdf000002a180 0001 00000000 0x0 0x0
0xffffdf000002a200 0001 00000000 0x0 0x0
0xffffdf000002a280 0001 00000000 0x0 0x0
0xffffdf000002a300 0001 00000000 0x0 0x0
0xffffdf000002a380 0001 00000000 0x0 0x0
0xffffdf000002a400 0001 00000000 0x0 0x0
0xffffdf000002a480 0001 00000000 0x0 0x0
0xffffdf000002a500 0001 00000000 0x0 0x0
0xffffdf000002a580 0001 00000000 0x0 0x0
0xffffdf000002a600 0001 00000000 0x0 0x0
0xffffdf000002a680 0001 00000000 0x0 0x0
0xffffdf000002a700 0001 00000000 0x0 0x0
0xffffdf000002a780 0001 00000000 0x0 0x0
0xffffdf000002a800 0001 00000000 0x0 0x0
0xffffdf000002a880 0001 00000000 0x0 0x0
0xffffdf000002a900 0001 00000000 0x0 0x0
0xffffdf000002a980 0001 00000000 0x0 0x0
0xffffdf000002aa00 0001 00000000 0x0 0x0
0xffffdf000002aa80 0001 00000000 0x0 0x0
0xffffdf000002ab00 0001 00000000 0x0 0x0
0xffffdf000002ab80 0001 00000000 0x0 0x0
0xffffdf000002ac00 0001 00000000 0x0 0x0
0xffffdf000002ac80 0001 00000000 0x0 0x0
0xffffdf000002ad00 0001 00000000 0x0 0x0
0xffffdf000002ad80 0001 00000000 0x0 0x0
0xffffdf000002ae00 0001 00000000 0x0 0x0
0xffffdf000002ae80 0001 00000000 0x0 0x0
0xffffdf000002af00 0001 00000000 0x0 0x0
0xffffdf000002af80 0001 00000000 0x0 0x0
0xffffdf000002b000 0001 00000000 0x0 0x0
0xffffdf000002b080 0001 00000000 0x0 0x0
0xffffdf000002b100 0001 00000000 0x0 0x0
0xffffdf000002b180 0001 00000000 0x0 0x0
0xffffdf000002b200 0001 00000000 0x0 0x0
0xffffdf000002b280 0001 00000000 0x0 0x0
0xffffdf000002b300 0001 00000000 0x0 0x0
0xffffdf000002b380 0001 00000000 0x0 0x0
0xffffdf000002b400 0001 00000000 0x0 0x0
0xffffdf000002b480 0001 00000000 0x0 0x0
0xffffdf000002b500 0001 00000000 0x0 0x0
0xffffdf000002b580 0001 00000000 0x0 0x0
0xffffdf000002b600 0001 00000000 0x0 0x0
0xffffdf000002b680 0001 00000000 0x0 0x0
0xffffdf000002b700 0001 00000000 0x0 0x0
0xffffdf000002b780 0001 00000000 0x0 0x0
0xffffdf000002b800 0001 00000000 0x0 0x0
0xffffdf000002b880 0001 00000000 0x0 0x0
0xffffdf000002b900 0001 00000000 0x0 0x0
0xffffdf000002b980 0001 00000000 0x0 0x0
0xffffdf000002ba00 0001 00000000 0x0 0x0
0xffffdf000002ba80 0001 00000000 0x0 0x0
0xffffdf000002bb00 0001 00000000 0x0 0x0
0xffffdf000002bb80 0001 00000000 0x0 0x0
0xffffdf000002bc00 0001 00000000 0x0 0x0
0xffffdf000002bc80 0001 00000000 0x0 0x0
0xffffdf000002bd00 0001 00000000 0x0 0x0
0xffffdf000002bd80 0001 00000000 0x0 0x0
0xffffdf000002be00 0001 00000000 0x0 0x0
0xffffdf000002be80 0001 00000000 0x0 0x0
0xffffdf000002bf00 0001 00000000 0x0 0x0
0xffffdf000002bf80 0001 00000000 0x0 0x0
0xffffdf000002c000 0001 00000000 0x0 0x0
0xffffdf000002c080 0001 00000000 0x0 0x0
0xffffdf000002c100 0001 00000000 0x0 0x0
0xffffdf000002c180 0001 00000000 0x0 0x0
0xffffdf000002c200 0001 00000000 0x0 0x0
0xffffdf000002c280 0001 00000000 0x0 0x0
0xffffdf000002c300 0001 00000000 0x0 0x0
0xffffdf000002c380 0001 00000000 0x0 0x0
0xffffdf000002c400 0001 00000000 0x0 0x0
0xffffdf000002c480 0001 00000000 0x0 0x0
0xffffdf000002c500 0001 00000000 0x0 0x0
0xffffdf000002c580 0001 00000000 0x0 0x0
0xffffdf000002c600 0001 00000000 0x0 0x0
0xffffdf000002c680 0001 00000000 0x0 0x0
0xffffdf000002c700 0001 00000000 0x0 0x0
0xffffdf000002c780 0001 00000000 0x0 0x0
0xffffdf000002c800 0001 00000000 0x0 0x0
0xffffdf000002c880 0001 00000000 0x0 0x0
0xffffdf000002c900 0001 00000000 0x0 0x0
0xffffdf000002c980 0001 00000

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.
syzbot can test patches for this issue, for details see:
https://goo.gl/tpsmEJ#testing-patches

syzbot

unread,
Apr 20, 2021, 9:39:09 PM4/20/21
to syzkaller-...@googlegroups.com
This bug is marked as fixed by commit:
fix free_all_endpoints() to not try calling free_pipe() when no endpoints are allocated; this can happen during config_detach() after attach fails
But I can't find it in any tested tree for more than 90 days.
Is it a correct commit? Please update it by replying:
#syz fix: exact-commit-title
Until then the bug is still considered open and
new crashes with the same signature are ignored.

syzbot

unread,
May 4, 2021, 9:39:10 PM5/4/21
to syzkaller-...@googlegroups.com

Jaromír Doleček

unread,
May 5, 2021, 3:06:41 PM5/5/21
to syzbot, syzkaller-...@googlegroups.com
#syz fix: fix free_all_endpoints() to not try calling free_pipe() when no endpo…

Le mer. 5 mai 2021 à 03:39, syzbot
<syzbot+b25ba2...@syzkaller.appspotmail.com> a écrit :
> --
> You received this message because you are subscribed to the Google Groups "syzkaller-netbsd-bugs" group.
> To unsubscribe from this group and stop receiving emails from it, send an email to syzkaller-netbsd...@googlegroups.com.
> To view this discussion on the web visit https://groups.google.com/d/msgid/syzkaller-netbsd-bugs/000000000000d63ac105c18b429f%40google.com.
Reply all
Reply to author
Forward
0 new messages