page fault in compat_20_sys_fstatfs

1 view
Skip to first unread message

syzbot

unread,
Jun 26, 2020, 7:39:17 PM6/26/20
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following crash on:

HEAD commit: 5f8d4fbd Adjust prior to enforce minimum socket length inc..
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=1522c223100000
kernel config: https://syzkaller.appspot.com/x/.config?x=1420f906d33d9f1f
dashboard link: https://syzkaller.appspot.com/bug?extid=cd66dbad4205a285bcf0
compiler: g++ (Ubuntu 5.4.0-6ubuntu1~16.04.12) 5.4.0 20160609

Unfortunately, I don't have any reproducer for this crash yet.

IMPORTANT: if you fix the bug, please add the following tag to the commit:
Reported-by: syzbot+cd66db...@syzkaller.appspotmail.com

[ 61.5858849] fatal page fault in supervisor mode
[ 61.5958854] trap type 6 code 0x2 rip 0xffffffff821b2179 cs 0x8 rflags 0x10246 cr2 0x20000140 ilevel 0 rsp 0xffffd100c0a90ec0
[ 61.5958854] curlwp 0xfffff3df96e52500 pid 2659.911 lowest kstack 0xffffd100c0a8d2c0
kernel: page fault trap, code=0
Stopped in pid 2659.911 (syz-executor.5) at netbsd:compat_20_sys_fstatfs+0x133: movw $0,0(%rbx)
?
compat_20_sys_fstatfs() at netbsd:compat_20_sys_fstatfs+0x133 statvfs_to_statfs12 sys/compat/sys/mount.h:104 [inline]
compat_20_sys_fstatfs() at netbsd:compat_20_sys_fstatfs+0x133 statvfs_to_statfs12_copy sys/compat/sys/mount.h:143 [inline]
compat_20_sys_fstatfs() at netbsd:compat_20_sys_fstatfs+0x133 sys/compat/common/vfs_syscalls_20.c:135
sys___syscall() at netbsd:sys___syscall+0x1b5 sy_call sys/sys/syscallvar.h:65 [inline]
sys___syscall() at netbsd:sys___syscall+0x1b5 sys/kern/sys_syscall.c:77
syscall() at netbsd:syscall+0x287 sy_call sys/sys/syscallvar.h:65 [inline]
syscall() at netbsd:syscall+0x287 sy_invoke sys/sys/syscallvar.h:94 [inline]
syscall() at netbsd:syscall+0x287 sys/arch/x86/x86/syscall.c:138
--- syscall (number 198) ---
netbsd:syscall+0x287:
Panic string: (null)
PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
2391 2391 2 0 0 fffff3df85af9a80 syz-executor.2
897 897 2 0 0 fffff3df9644d9c0 syz-executor.0
2624 2624 2 0 0 fffff3df97591140 syz-executor.3
896 759 3 0 80 fffff3df96ce3a00 syz-executor.2 parked
896 757 3 0 80 fffff3df96dc4700 syz-executor.2 parked
896 > 896 7 0 10000000 fffff3df97343780 syz-executor.2
2659 2612 3 0 80 fffff3df86bad780 syz-executor.5 parked
2659 > 911 7 1 0 fffff3df96e52500 syz-executor.5
2659 2659 2 1 10040000 fffff3df97134980 syz-executor.5
764 764 4 1 1000000 fffff3df97134540 syz-executor.0
2605 2431 4 0 11000000 fffff3df87c93180 syz-executor.0
2605 2605 4 0 11040000 fffff3df8c601980 syz-executor.0
2752 2752 3 0 80 fffff3df9623a2c0 syz-executor.0 parked
656 656 3 0 80 fffff3df9663d740 syz-executor.5 parked
646 646 3 0 80 fffff3df97343340 syz-executor.2 parked
643 643 3 0 80 fffff3df9663d300 syz-executor.4 parked
2143 2143 3 0 80 fffff3df96fc3240 syz-executor.0 parked
2002 2002 3 1 80 fffff3df8b8b0280 syz-executor.2 parked
2376 2376 3 0 80 fffff3df862a2700 syz-executor.1 parked
1605 1605 3 0 80 fffff3df972e8200 syz-executor.5 parked
504 504 3 0 80 fffff3df96dc4b40 syz-executor.0 parked
502 502 3 0 80 fffff3df96dc42c0 syz-executor.0 parked
493 493 3 1 80 fffff3df972e8640 syz-executor.5 parked
492 492 3 0 80 fffff3df96fc3ac0 syz-executor.0 parked
491 491 3 1 80 fffff3df96ce3180 syz-executor.0 parked
489 489 3 1 80 fffff3df96fc3680 syz-executor.1 parked
1121 1121 3 0 80 fffff3df9643da40 syz-executor.0 parked
730 730 3 0 80 fffff3df96ce35c0 syz-executor.1 parked
1491 1491 3 0 80 fffff3df8b0de500 syz-executor.0 parked
2769 2769 3 0 80 fffff3df8b0de0c0 syz-executor.2 parked
2498 2498 3 0 80 fffff3df95d25340 syz-executor.5 parked
1978 1978 3 1 80 fffff3df8c601540 syz-executor.0 parked
1206 1206 3 0 80 fffff3df8b6b1080 syz-executor.1 parked
1444 1444 3 1 80 fffff3df9644d580 syz-executor.1 parked
409 409 3 1 80 fffff3df87a3e140 syz-executor.1 parked
394 394 3 0 80 fffff3df8b0de940 syz-executor.1 parked
391 391 3 1 80 fffff3df8b6b1900 syz-executor.0 parked
2114 2114 3 0 80 fffff3df86fa7040 syz-executor.0 parked
1966 1966 3 0 80 fffff3df9547eb00 syz-executor.4 parked
2023 2023 3 1 80 fffff3df894a5040 syz-executor.1 parked
1699 1699 3 1 80 fffff3df86fa7480 syz-executor.4 parked
1871 1871 3 0 80 fffff3df894a58c0 syz-executor.3 nanoslp
2021 2021 3 0 80 fffff3df94f8dac0 syz-executor.1 parked
1484 1484 3 0 80 fffff3df9547e6c0 syz-executor.1 parked
1621 1621 3 0 80 fffff3df94f8d240 syz-executor.1 parked
1594 1594 3 0 80 fffff3df9623ab40 syz-executor.0 parked
1614 1614 3 1 80 fffff3df95d25bc0 syz-executor.1 parked
550 550 3 0 80 fffff3df88163640 syz-executor.1 parked
330 330 3 0 80 fffff3df87a3e580 syz-executor.4 parked
939 939 3 0 80 fffff3df86fa78c0 syz-executor.4 parked
1220 1220 3 0 80 fffff3df9547e280 syz-executor.4 parked
1107 1107 3 0 80 fffff3df8652ab80 syz-executor.5 nanoslp
1077 1077 3 0 40 fffff3df8652a300 syz-executor.4 biowait
1071 1071 2 0 40 fffff3df87a661c0 syz-executor.1
1073 1073 3 1 80 fffff3df85f57b00 syz-executor.2 nanoslp
993 993 3 1 80 fffff3df86e5e0c0 syz-executor.0 nanoslp
1252 1081 3 0 80 fffff3df87a194c0 syz-fuzzer kqueue
1252 1095 3 1 80 fffff3df87a66600 syz-fuzzer parked
1252 1066 3 1 80 fffff3df88163200 syz-fuzzer parked
1252 848 3 1 80 fffff3df87a19900 syz-fuzzer parked
1252 1250 3 1 80 fffff3df86e5e500 syz-fuzzer parked
1252 1065 3 0 80 fffff3df85d2f680 syz-fuzzer parked
1252 1064 3 0 c0 fffff3df85af9640 syz-fuzzer parked
1252 1254 3 0 80 fffff3df85d2f240 syz-fuzzer parked
1252 1252 3 0 80 fffff3df88163a80 syz-fuzzer parked
1116 1116 3 1 80 fffff3df8586e5c0 sshd select
924 924 3 1 80 fffff3df86e5e940 getty nanoslp
695 695 3 0 80 fffff3df8790d100 getty nanoslp
1089 1089 3 1 80 fffff3df8790d540 getty nanoslp
852 852 3 0 c0 fffff3df85af9200 getty ttyraw
940 940 3 1 80 fffff3df87a66a40 sshd select
982 982 3 0 80 fffff3df87c93a00 powerd kqueue
733 733 3 1 80 fffff3df87a19080 syslogd kqueue
589 589 3 0 80 fffff3df86bad340 dhcpcd poll
587 587 3 1 80 fffff3df85f57280 dhcpcd poll
585 585 3 1 80 fffff3df85d2fac0 dhcpcd poll
551 551 3 1 80 fffff3df8652a740 dhcpcd poll
347 347 3 1 80 fffff3df862a2b40 dhcpcd poll
346 346 3 1 80 fffff3df85f576c0 dhcpcd poll
345 345 3 0 80 fffff3df862a22c0 dhcpcd poll
1 1 3 0 80 fffff3df7d6ad900 init wait
0 822 3 0 200 fffff3df8586ea00 physiod physiod
0 165 3 0 200 fffff3df858eea40 pooldrain pooldrain
0 161 3 0 200 fffff3df858ee600 ioflush syncer
0 160 3 1 200 fffff3df858ee1c0 pgdaemon pgdaemon
0 162 3 1 200 fffff3df8586e180 usb7 usbevt
0 31 3 1 200 fffff3df827ef9c0 usb6 usbevt
0 63 3 1 200 fffff3df827ef580 usb5 usbevt
0 126 3 1 200 fffff3df827ef140 usb4 usbevt
0 125 3 1 200 fffff3df7f788980 usb3 usbevt
0 124 3 0 200 fffff3df7f788540 usb2 usbevt
0 123 3 0 200 fffff3df7f788100 usb1 usbevt
0 122 3 1 200 fffff3df7d701940 usb0 usbevt
0 121 3 0 200 fffff3df7d701500 usbtask-dr usbtsk
0 120 3 0 200 fffff3df7ab24ac0 usbtask-hc usbtsk
0 119 3 1 200 fffff3df7d7010c0 npfgc0 npfgcw
0 118 3 1 200 fffff3df7d6ad4c0 rt_free rt_free
0 117 3 1 200 fffff3df7d6ad080 unpgc unpgc
0 116 3 0 200 fffff3df7d6be8c0 key_timehandler key_timehandler
0 115 3 1 200 fffff3df7d6be480 icmp6_wqinput/1 icmp6_wqinput
0 114 3 0 200 fffff3df7d6be040 icmp6_wqinput/0 icmp6_wqinput
0 113 3 0 200 fffff3df7d67fbc0 nd6_timer nd6_timer
0 112 3 1 200 fffff3df7cfa6b00 carp6_wqinput/1 carp6_wqinput
0 111 3 0 200 fffff3df7d6212c0 carp6_wqinput/0 carp6_wqinput
0 110 3 1 200 fffff3df7d621700 carp_wqinput/1 carp_wqinput
0 109 3 0 200 fffff3df7d621b40 carp_wqinput/0 carp_wqinput
0 108 3 1 200 fffff3df7d67f780 icmp_wqinput/1 icmp_wqinput
0 107 3 0 200 fffff3df7d67f340 icmp_wqinput/0 icmp_wqinput
0 106 3 0 200 fffff3df7d640b80 rt_timer rt_timer
0 105 3 0 200 fffff3df7d640300 vmem_rehash vmem_rehash
0 104 3 0 200 fffff3df7d640740 entbutler entropy
0 30 3 1 200 fffff3df7cfa66c0 vioif0_txrx/1 vioif0_txrx
0 29 3 0 200 fffff3df7cfa6280 vioif0_txrx/0 vioif0_txrx
0 27 3 0 200 fffff3df7ab24680 scsibus0 sccomp
0 26 3 0 200 fffff3df7ab24240 pms0 pmsreset
0 25 3 1 200 fffff3df7aa97a80 xcall/1 xcall
0 24 1 1 200 fffff3df7aa97640 softser/1
0 23 1 1 200 fffff3df7aa97200 softclk/1
0 22 1 1 200 fffff3df7aa67a40 softbio/1
0 21 1 1 200 fffff3df7aa67600 softnet/1
0 20 1 1 201 fffff3df7aa671c0 idle/1
0 19 3 0 200 fffff3e08a980a00 lnxpwrwq lnxpwrwq
0 18 3 0 200 fffff3e08a9805c0 lnxlngwq lnxlngwq
0 17 3 0 200 fffff3e08a980180 lnxsyswq lnxsyswq
0 16 3 0 200 fffff3e08a9a79c0 lnxrcugc lnxrcugc
0 15 3 0 200 fffff3e08a9a7580 sysmon smtaskq
0 14 3 0 200 fffff3e08a9a7140 pmfsuspend pmfsuspend
0 13 3 0 200 fffff3e08a9ac980 pmfevent pmfevent
0 12 3 0 200 fffff3e08a9ac540 sopendfree sopendfr
0 11 3 0 200 fffff3e08a9ac100 iflnkst iflnkst
0 10 3 0 200 fffff3e08b9df940 nfssilly nfssilly
0 9 3 0 200 fffff3e08b9df500 vdrain vdrain
0 8 3 0 200 fffff3e08b9df0c0 modunload mod_unld
0 7 3 0 200 fffff3e08ba0a900 xcall/0 xcall
0 6 1 0 200 fffff3e08ba0a4c0 softser/0
0 5 1 0 200 fffff3e08ba0a080 softclk/0
0 4 1 0 200 fffff3e08ba3b8c0 softbio/0
0 3 1 0 200 fffff3e08ba3b480 softnet/0
0 2 1 0 201 fffff3e08ba3b040 idle/0
0 0 3 0 200 ffffffff85ae88c0 swapper uvm
[Locks tracked through LWPs]

****** LWP 2391.2391 (syz-executor.2) @ 0xfffff3df85af9a80, l_stat=2

*** Locks held:

* Lock 0 (initialized at fork1)
lock address : 0xfffff3df96bd7350 type : sleep/adaptive
initialized : 0xffffffff82fd9107
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffff3df85af9a80 last held: 0xfffff3df85af9a80
last locked* : 0xffffffff82fd17e3 unlocked : 000000000000000000
owner/count : 0xfffff3df85af9a80 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at amap_alloc1)
lock address : 0xfffff3df860b3400 type : sleep/adaptive
initialized : 0xffffffff82ecf9cb
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffff3df85af9a80 last held: 0xfffff3df85af9a80
last locked* : 0xffffffff82edba31 unlocked : 0xffffffff82eee01d
owner/count : 0xfffff3df85af9a80 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff85ee7480 type : sleep/adaptive
initialized : 0xffffffff8300acaf
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffff3df85af9a80 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 897.897 (syz-executor.0) @ 0xfffff3df9644d9c0, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at pmap_ctor)
lock address : 0xfffff3df96f6cd80 type : sleep/adaptive
initialized : 0xffffffff80ef3330
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 1
relevant cpu : 0 last held: 0
relevant lwp : 0xfffff3df9644d9c0 last held: 000000000000000000
last locked : 0xffffffff80ef2f7c unlocked*: 0xffffffff80ef3086
owner field : 0xfffff3df9644d9c0 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 1077.1077 (syz-executor.4) @ 0xfffff3df8652a300, l_stat=3

*** Locks held:

* Lock 0 (initialized at vcache_alloc)
lock address : 0xfffff3df96bf6500 type : sleep/adaptive
initialized : 0xffffffff8329f884
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffff3df8652a300 last held: 0xfffff3df8652a300
last locked* : 0xffffffff832f4010 unlocked : 0xffffffff832f3e05
owner/count : 0xfffff3df8652a300 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at vcache_alloc)
lock address : 0xfffff3df94a334c0 type : sleep/adaptive
initialized : 0xffffffff8329f884
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffff3df8652a300 last held: 0xfffff3df8652a300
last locked* : 0xffffffff832f4010 unlocked : 0xffffffff832f3e05
owner/count : 0xfffff3df8652a300 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 587.587 (dhcpcd) @ 0xfffff3df85f57280, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff85ee7480 type : sleep/adaptive
initialized : 0xffffffff8300acaf
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xfffff3df85f57280 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 585.585 (dhcpcd) @ 0xfffff3df85d2fac0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff85ee7480 type : sleep/adaptive
initialized : 0xffffffff8300acaf
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xfffff3df85d2fac0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 346.346 (dhcpcd) @ 0xfffff3df85f576c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff85ee7480 type : sleep/adaptive
initialized : 0xffffffff8300acaf
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xfffff3df85f576c0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 345.345 (dhcpcd) @ 0xfffff3df862a22c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff85ee7480 type : sleep/adaptive
initialized : 0xffffffff8300acaf
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffff3df862a22c0 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.23 (softclk/1) @ 0xfffff3df7aa97200, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff85ee7480 type : sleep/adaptive
initialized : 0xffffffff8300acaf
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xfffff3df7aa97200 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xfffff3e08a9ac100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at module_hook_init)
lock address : 0xffffffff85ee7480 type : sleep/adaptive
initialized : 0xffffffff8300acaf
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xfffff3e08a9ac100 last held: 000000000000000000
last locked : 000000000000000000 unlocked*: 000000000000000000
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

PAGE FLAG PQ UOBJECT UANON
0xffffd10000006180 0045 00000000 0x0 0x0
0xffffd10000006200 0045 00000000 0x0 0x0
0xffffd10000006280 0045 00000000 0x0 0x0
0xffffd10000006300 0045 00000000 0x0 0x0
0xffffd10000006380 0045 00000000 0x0 0x0
0xffffd10000006400 0045 00000000 0x0 0x0
0xffffd10000006480 0045 00000000 0x0 0x0
0xffffd10000006500 0045 00000000 0x0 0x0
0xffffd10000006580 0041 00000000 0x0 0x0
0xffffd10000006600 0041 00000000 0x0 0x0
0xffffd10000006680 0041 00000000 0x0 0x0
0xffffd10000006700 0041 00000000 0x0 0x0
0xffffd10000006780 0041 00000000 0x0 0x0
0xffffd10000006800 0041 00000000 0x0 0x0
0xffffd10000006880 0041 00000000 0x0 0x0
0xffffd10000006900 0041 00000000 0x0 0x0
0xffffd10000006980 0041 00000000 0x0 0x0
0xffffd10000006a00 0041 00000000 0x0 0x0
0xffffd10000006a80 0041 00000000 0x0 0x0
0xffffd10000006b00 0041 00000000 0x0 0x0
0xffffd10000006b80 0041 00000000 0x0 0x0
0xffffd10000006c00 0041 00000000 0x0 0x0
0xffffd10000006c80 0041 00000000 0x0 0x0
0xffffd10000006d00 0041 00000000 0x0 0x0
0xffffd10000006d80 0041 00000000 0x0 0x0
0xffffd10000006e00 0041 00000000 0x0 0x0
0xffffd10000006e80 0041 00000000 0x0 0x0
0xffffd10000006f00 0041 00000000 0x0 0x0
0xffffd10000006f80 0041 00000000 0x0 0x0
0xffffd10000007000 0041 00000000 0x0 0x0
0xffffd10000007080 0041 00000000 0x0 0x0
0xffffd10000007100 0041 00000000 0x0 0x0
0xffffd10000007180 0041 00000000 0x0 0x0
0xffffd10000007200 0045 00000000 0x0 0x0
0xffffd10000007280 0041 00000000 0x0 0x0
0xffffd10000007300 0041 00000000 0x0 0x0
0xffffd10000007380 0041 00000000 0x0 0x0
0xffffd10000007400 0041 00000000 0x0 0x0
0xffffd10000007480 0041 00000000 0x0 0x0
0xffffd10000007500 0041 00000000 0x0 0x0
0xffffd10000007580 0041 00000000 0x0 0x0
0xffffd10000007600 0041 00000000 0x0 0x0
0xffffd10000007680 0041 00000000 0x0 0x0
0xffffd10000007700 0045 00000000 0x0 0x0
0xffffd10000007780 0045 00000000 0x0 0x0
0xffffd10000007800 0041 00000000 0x0 0x0
0xffffd10000007880 0041 00000000 0x0 0x0
0xffffd10000007900 0041 00000000 0x0 0x0
0xffffd10000007980 0041 00000000 0x0 0x0
0xffffd10000007a00 0041 00000000 0x0 0x0
0xffffd10000007a80 0041 00000000 0x0 0x0
0xffffd10000007b00 0041 00000000 0x0 0x0
0xffffd10000007b80 0041 00000000 0x0 0x0
0xffffd10000007c00 0041 00000000 0x0 0x0
0xffffd10000007c80 0041 00000000 0x0 0x0
0xffffd10000007d00 0041 00000000 0x0 0x0
0xffffd10000007d80 0041 00000000 0x0 0x0
0xffffd10000007e00 0041 00000000 0x0 0x0
0xffffd10000007e80 0041 00000000 0x0 0x0
0xffffd10000007f00 0041 00000000 0x0 0x0
0xffffd10000007f80 0041 00000000 0x0 0x0
0xffffd10000008000 0041 00000000 0x0 0x0
0xffffd10000008080 0041 00000000 0x0 0x0
0xffffd10000008100 0041 00000000 0x0 0x0
0xffffd10000008180 0041 00000000 0x0 0x0
0xffffd10000008200 0041 00000000 0x0 0x0
0xffffd10000008280 0041 00000000 0x0 0x0
0xffffd10000008300 0041 00000000 0x0 0x0
0xffffd10000008380 0041 00000000 0x0 0x0
0xffffd10000008400 0041 00000000 0x0 0x0
0xffffd10000008480 0041 00000000 0x0 0x0
0xffffd10000008500 0041 00000000 0x0 0x0
0xffffd10000008580 0041 00000000 0x0 0x0
0xffffd10000008600 0041 00000000 0x0 0x0
0xffffd10000008680 0041 00000000 0x0 0x0
0xffffd10000008700 0041 00000000 0x0 0x0
0xffffd10000008780 0041 00000000 0x0 0x0
0xffffd10000008800 0041 00000000 0x0 0x0
0xffffd10000008880 0041 00000000 0x0 0x0
0xffffd10000008900 0041 00000000 0x0 0x0
0xffffd10000008980 0041 00000000 0x0 0x0
0xffffd10000008a00 0041 00000000 0x0 0x0
0xffffd10000008a80 0041 00000000 0x0 0x0
0xffffd10000008b00 0041 00000000 0x0 0x0
0xffffd10000008b80 0041 00000000 0x0 0x0
0xffffd10000008c00 0041 00000000 0x0 0x0
0xffffd10000008c80 0045 00000000 0x0 0x0
0xffffd10000008d00 0041 00000000 0x0 0x0
0xffffd10000008d80 0041 00000000 0x0 0x0
0xffffd10000008e00 0041 00000000 0x0 0x0
0xffffd10000008e80 0041 00000000 0x0 0x0
0xffffd10000008f00 0045 00000000 0x0 0x0
0xffffd10000008f80 0041 00000000 0x0 0x0
0xffffd10000009000 0041 00000000 0x0 0x0
0xffffd10000009080 0041 00000000 0x0 0x0
0xffffd10000009100 0041 00000000 0x0 0x0
0xffffd10000009180 0041 00000000 0x0 0x0
0xffffd10000009200 0041 00000000 0x0 0x0
0xffffd10000009280 0041 00000000 0x0 0x0
0xffffd10000009300 0041 00000000 0x0 0x0
0xffffd10000009380 0041 00000000 0x0 0x0
0xffffd10000009400 0041 00000000 0x0 0x0
0xffffd10000009480 0041 00000000 0x0 0x0
0xffffd10000009500 0041 00000000 0x0 0x0
0xffffd10000009580 0041 00000000 0x0 0x0
0xffffd10000009600 0041 00000000 0x0 0x0
0xffffd10000009680 0041 00000000 0x0 0x0
0xffffd10000009700 0041 00000000 0x0 0x0
0xffffd10000009780 0041 00000000 0x0 0x0
0xffffd10000009800 0041 00000000 0x0 0x0
0xffffd10000009880 0041 00000000 0x0 0x0
0xffffd10000009900 0041 00000000 0x0 0x0
0xffffd10000009980 0041 00000000 0x0 0x0
0xffffd10000009a00 0041 00000000 0x0 0x0
0xffffd10000009a80 0041 00000000 0x0 0x0
0xffffd10000009b00 0041 00000000 0x0 0x0
0xffffd10000009b80 0041 00000000 0x0 0x0
0xffffd10000009c00 0041 00000000 0x0 0x0
0xffffd10000009c80 0041 00000000 0x0 0x0
0xffffd10000009d00 0041 00000000 0x0 0x0
0xffffd10000009d80 0045 00000000 0x0 0x0
0xffffd10000009e00 0045 00000000 0x0 0x0
0xffffd10000009e80 0045 00000000 0x0 0x0
0xffffd10000009f00 0041 00000000 0x0 0x0
0xffffd10000009f80 0041 00000000 0x0 0x0
0xffffd1000000a000 0041 00000000 0x0 0x0
0xffffd1000000a080 0041 00000000 0x0 0x0
0xffffd1000000a100 0045 00000000 0x0 0x0
0xffffd1000000a180 0045 00000000 0x0 0x0
0xffffd1000000a200 0045 00000000 0x0 0x0
0xffffd1000000a280 0045 00000000 0x0 0x0
0xffffd1000000a300 0041 00000000 0x0 0x0
0xffffd1000000a380 0041 00000000 0x0 0x0
0xffffd1000000a400 0045 00000000 0x0 0x0
0xffffd1000000a480 0041 00000000 0x0 0x0
0xffffd1000000a500 0045 00000000 0x0 0x0
0xffffd1000000a580 0045 00000000 0x0 0x0
0xffffd1000000a600 0045 00000000 0x0 0x0
0xffffd1000000a680 0045 00000000 0x0 0x0
0xffffd1000000a700 0045 00000000 0x0 0x0
0xffffd1000000a780 0045 00000000 0x0 0x0
0xffffd1000000a800 0045 00000000 0x0 0x0
0xffffd1000000a880 0041 00000000 0x0 0x0
0xffffd1000000a900 0045 00000000 0x0 0x0
0xffffd1000000a980 0045 00000000 0x0 0x0
0xffffd1000000aa00 0045 00000000 0x0 0x0
0xffffd1000000aa80 0045 00000000 0x0 0x0
0xffffd1000000ab00 0045 00000000 0x0 0x0
0xffffd1000000ab80 0045 00000000 0x0 0x0
0xffffd1000000ac00 0045 00000000 0x0 0x0
0xffffd1000000ac80 0045 00000000 0x0 0x0
0xffffd1000000ad00 0045 00000000 0x0 0x0
0xffffd1000000ad80 0041 00000000 0x0 0x0
0xffffd1000000ae00 0041 00000000 0x0 0x0
0xffffd1000000ae80 0041 00000000 0x0 0x0
0xffffd1000000af00 0045 00000000 0x0 0x0
0xffffd1000000af80 0045 00000000 0x0 0x0
0xffffd1000000b000 0045 00000000 0x0 0x0
0xffffd1000000b080 0045 00000000 0x0 0x0
0xffffd1000000b100 0045 00000000 0x0 0x0
0xffffd1000000b180 0041 00000000 0x0 0x0
0xffffd1000000b200 0041 00000000 0x0 0x0
0xffffd1000000b280 0041 00000000 0x0 0x0
0xffffd1000000b300 0045 00000000 0x0 0x0
0xffffd1000000b380 0045 00000000 0x0 0x0
0xffffd1000000b400 0045 00000000 0x0 0x0
0xffffd1000000b480 0045 00000000 0x0 0x0
0xffffd1000000b500 0041 00000000 0x0 0x0
0xffffd1000000b580 0041 00000000 0x0 0x0
0xffffd1000000b600 0041 00000000 0x0 0x0
0xffffd1000000b680 0041 00000000 0x0 0x0
0xffffd1000000b700 0041 00000000 0x0 0x0
0xffffd1000000b780 0041 00000000 0x0 0x0
0xffffd1000000b800 0041 00000000 0x0 0x0
0xffffd1000000b880 0045 00000000 0x0 0x0
0xffffd1000000b900 0041 00000000 0x0 0x0
0xffffd1000000b980 0041 00000000 0x0 0x0
0xffffd1000000ba00 0041 00000000 0x0 0x0
0xffffd1000000ba80 0045 00000000 0x0 0x0
0xffffd1000000bb00 0041 00000000 0x0 0x0
0xffffd1000000bb80 0041 00000000 0x0 0x0
0xffffd1000000bc00 0041 00000000 0x0 0x0
0xffffd1000000bc80 0045 00000000 0x0 0x0
0xffffd1000000bd00 0041 00000000 0x0 0x0
0xffffd1000000bd80 0041 00000000 0x0 0x0
0xffffd1000000be00 0041 00000000 0x0 0x0
0xffffd1000000be80 0041 00000000 0x0 0x0
0xffffd1000000bf00 0041 00000000 0x0 0x0
0xffffd1000000bf80 0041 00000000 0x0 0x0
0xffffd1000000c000 0041 00000000 0x0 0x0
0xffffd1000000c080 0041 00000000 0x0 0x0
0xffffd1000000c100 0041 00000000 0x0 0x0
0xffffd1000000c180 0045 00000000 0x0 0x0
0xffffd1000000c200 0045 00000000 0x0 0x0
0xffffd1000000c280 0041 00000000 0x0 0x0
0xffffd1000000c300 0045 00000000 0x0 0x0
0xffffd1000000c380 0041 00000000 0x0 0x0
0xffffd1000000c400 0041 00000000 0x0 0x0
0xffffd1000000c480 0041 00000000 0x0 0x0
0xffffd1000000c500 0041 00000000 0x0 0x0
0xffffd1000000c580 0045 00000000 0x0 0x0
0xffffd1000000c600 0041 00000000 0x0 0x0
0xffffd1000000c680 0045 00000000 0x0 0x0
0xffffd1000000c700 0041 00000000 0x0 0x0
0xffffd1000000c780 0041 00000000 0x0 0x0
0xffffd1000000c800 0045 00000000 0x0 0x0
0xffffd1000000c880 0041 00000000 0x0 0x0
0xffffd1000000c900 0045 00000000 0x0 0x0
0xffffd1000000c980 0041 00000000 0x0 0x0
0xffffd1000000ca00 0041 00000000 0x0 0x0
0xffffd1000000ca80 0041 00000000 0x0 0x0
0xffffd1000000cb00 0045 00000000 0x0 0x0
0xffffd1000000cb80 0045 00000000 0x0 0x0
0xffffd1000000cc00 0045 00000000 0x0 0x0
0xffffd1000000cc80 0041 00000000 0x0 0x0
0xffffd1000000cd00 0045 00000000 0x0 0x0
0xffffd1000000cd80 0041 00000000 0x0 0x0
0xffffd1000000ce00 0041 00000000 0x0 0x0
0xffffd1000000ce80 0045 00000000 0x0 0x0
0xffffd1000000cf00 0045 00000000 0x0 0x0
0xffffd1000000cf80 0045 00000000 0x0 0x0
0xffffd1000000d000 0045 00000000 0x0 0x0
0xffffd1000000d080 0045 00000000 0x0 0x0
0xffffd1000000d100 0041 00000000 0x0 0x0
0xffffd1000000d180 0041 00000000 0x0 0x0
0xffffd1000000d200 0041 00000000 0x0 0x0
0xffffd1000000d280 0041 00000000 0x0 0x0
0xffffd1000000d300 0045 00000000 0x0 0x0
0xffffd1000000d380 0045 00000000 0x0 0x0
0xffffd1000000d400 0041 00000000 0x0 0x0
0xffffd1000000d480 0045 00000000 0x0 0x0
0xffffd1000000d500 0041 00000000 0x0 0x0
0xffffd1000000d580 0045 00000000 0x0 0x0
0xffffd1000000d600 0041 00000000 0x0 0x0
0xffffd1000000d680 0041 00000000 0x0 0x0
0xffffd1000000d700 0041 00000000 0x0 0x0
0xffffd1000000d780 0041 00000000 0x0 0x0
0xffffd1000000d800 0045 00000000 0x0 0x0
0xffffd1000000d880 0041 00000000 0x0 0x0
0xffffd1000000d900 0041 00000000 0x0 0x0
0xffffd1000000d980 0041 00000000 0x0 0x0
0xffffd1000000da00 0041 00000000 0x0 0x0
0xffffd1000000da80 0041 00000000 0x0 0x0
0xffffd1000000db00 0041 00000000 0x0 0x0
0xffffd1000000db80 0045 00000000 0x0 0x0
0xffffd1000000dc00 0041 00000000 0x0 0x0
0xffffd1000000dc80 0045 00000000 0x0 0x0
0xffffd1000000dd00 0045 00000000 0x0 0x0
0xffffd1000000dd80 0041 00000000 0x0 0x0
0xffffd1000000de00 0045 00000000 0x0 0x0
0xffffd1000000de80 0041 00000000 0x0 0x0
0xffffd1000000df00 0041 00000000 0x0 0x0
0xffffd1000000df80 0041 00000000 0x0 0x0
0xffffd1000000e000 0041 00000000 0x0 0x0
0xffffd1000000e080 0041 00000000 0x0 0x0
0xffffd1000000e100 0041 00000000 0x0 0x0
0xffffd1000000e180 0041 00000000 0x0 0x0
0xffffd1000000e200 0041 00000000 0x0 0x0
0xffffd1000000e280 0041 00000000 0x0 0x0
0xffffd1000000e300 0041 00000000 0x0 0x0
0xffffd1000000e380 0041 00000000 0x0 0x0
0xffffd1000000e400 0041 00000000 0x0 0x0
0xffffd1000000e480 0041 00000000 0x0 0x0
0xffffd1000000e500 0041 00000000 0x0 0x0
0xffffd1000000e580 0041 00000000 0x0 0x0
0xffffd1000000e600 0041 00000000 0x0 0x0
0xffffd1000000e680 0041 00000000 0x0 0x0
0xffffd1000000e700 0041 00000000 0x0 0x0
0xffffd1000000e780 0041 00000000 0x0 0x0
0xffffd1000000e800 0041 00000000 0x0 0x0
0xffffd1000000e880 0041 00000000 0x0 0x0
0xffffd1000000e900 0041 00000000 0x0 0x0
0xffffd1000000e980 0041 00000000 0x0 0x0
0xffffd1000000ea00 0041 00000000 0x0 0x0
0xffffd1000000ea80 0041 00000000 0x0 0x0
0xffffd1000000eb00 0041 00000000 0x0 0x0
0xffffd1000000eb80 0041 00000000 0x0 0x0
0xffffd1000000ec00 0041 00000000 0x0 0x0
0xffffd1000000ec80 0041 00000000 0x0 0x0
0xffffd1000000ed00 0041 00000000 0x0 0x0
0xffffd1000000ed80 0041 00000000 0x0 0x0
0xffffd1000000ee00 0041 00000000 0x0 0x0
0xffffd1000000ee80 0045 00000000 0x0 0x0
0xffffd1000000ef00 0041 00000000 0x0 0x0
0xffffd1000000ef80 0041 00000000 0x0 0x0
0xffffd1000000f000 0041 00000000 0x0 0x0
0xffffd1000000f080 0041 00000000 0x0 0x0
0xffffd1000000f100 0045 00000000 0x0 0x0
0xffffd1000000f180 0041 00000000 0x0 0x0
0xffffd1000000f200 0041 00000000 0x0 0x0
0xffffd1000000f280 0041 00000000 0x0 0x0
0xffffd1000000f300 0041 00000000 0x0 0x0
0xffffd1000000f380 0041 00000000 0x0 0x0
0xffffd1000000f400 0041 00000000 0x0 0x0
0xffffd1000000f480 0045 00000000 0x0 0x0
0xffffd1000000f500 0041 00000000 0x0 0x0
0xffffd1000000f580 0041 00000000 0x0 0x0
0xffffd1000000f600 0041 00000000 0x0 0x0
0xffffd1000000f680 0041 00000000 0x0 0x0
0xffffd1000000f700 0041 00000000 0x0 0x0
0xffffd1000000f780 0041 00000000 0x0 0x0
0xffffd1000000f800 0045 00000000 0x0 0x0
0xffffd1000000f880 0041 00000000 0x0 0x0
0xffffd1000000f900 0041 00000000 0x0 0x0
0xffffd1000000f980 0041 00000000 0x0 0x0
0xffffd1000000fa00 0041 00000000 0x0 0x0
0xffffd1000000fa80 0041 00000000 0x0 0x0
0xffffd1000000fb00 0045 00000000 0x0 0x0
0xffffd1000000fb80 0041 00000000 0x0 0x0
0xffffd1000000fc00 0041 00000000 0x0 0x0
0xffffd1000000fc80 0041 00000000 0x0 0x0
0xffffd1000000fd00 0041 00000000 0x0 0x0
0xffffd1000000fd80 0041 00000000 0x0 0x0
0xffffd1000000fe00 0041 00000000 0x0 0x0
0xffffd1000000fe80 0041 00000000 0x0 0x0
0xffffd1000000ff00 0041 00000000 0x0 0x0
0xffffd1000000ff80 0045 00000000 0x0 0x0
0xffffd10000010000 0041 00000000 0x0 0x0
0xffffd10000010080 0045 00000000 0x0 0x0
0xffffd10000010100 0001 00000000 0x0 0x0
0xffffd10000010180 0001 00000000 0x0 0x0
0xffffd10000010200 0001 00000000 0x0 0x0
0xffffd10000010280 0001 00000000 0x0 0x0
0xffffd10000010300 0001 00000000 0x0 0x0
0xffffd10000010380 0001 00000000 0x0 0x0
0xffffd10000010400 0001 00000000 0x0 0x0
0xffffd10000010480 0001 00000000 0x0 0x0
0xffffd10000010500 0001 00000000 0x0 0x0
0xffffd10000010580 0001 00000000 0x0 0x0
0xffffd10000010600 0001 00000000 0x0 0x0
0xffffd10000010680 0001 00000000 0x0 0x0
0xffffd10000010700 0001 00000000 0x0 0x0
0xffffd10000010780 0001 00000000 0x0 0x0
0xffffd10000010800 0001 00000000 0x0 0x0
0xffffd10000010880 0001 00000000 0x0 0x0
0xffffd10000010900 0001 00000000 0x0 0x0
0xffffd10000010980 0001 00000000 0x0 0x0
0xffffd10000010a00 0001 00000000 0x0 0x0
0xffffd10000010a80 0001 00000000 0x0 0x0
0xffffd10000010b00 0001 00000000 0x0 0x0
0xffffd10000010b80 0001 00000000 0x0 0x0
0xffffd10000010c00 0001 00000000 0x0 0x0
0xffffd10000010c80 0001 00000000 0x0 0x0
0xffffd10000010d00 0001 00000000 0x0 0x0
0xffffd10000010d80 0001 00000000 0x0 0x0
0xffffd10000010e00 0001 00000000 0x0 0x0
0xffffd10000010e80 0001 00000000 0x0 0x0
0xffffd10000010f00 0001 00000000 0x0 0x0
0xffffd10000010f80 0001 00000000 0x0 0x0
0xffffd10000011000 0001 00000000 0x0 0x0
0xffffd10000011080 0001 00000000 0x0 0x0
0xffffd10000011100 0001 00000000 0x0 0x0
0xffffd10000011180 0001 00000000 0x0 0x0
0xffffd10000011200 0001 00000000 0x0 0x0
0xffffd10000011280 0001 00000000 0x0 0x0
0xffffd10000011300 0001 00000000 0x0 0x0
0xffffd10000011380 0001 00000000 0x0 0x0
0xffffd10000011400 0001 00000000 0x0 0x0
0xffffd10000011480 0001 00000000 0x0 0x0
0xffffd10000011500 0001 00000000 0x0 0x0
0xffffd10000011580 0001 00000000 0x0 0x0
0xffffd10000011600 0001 00000000 0x0 0x0
0xffffd10000011680 0001 00000000 0x0 0x0
0xffffd10000011700 0001 00000000 0x0 0x0
0xffffd10000011780 0001 00000000 0x0 0x0
0xffffd10000011800 0001 00000000 0x0 0x0
0xffffd10000011880 0001 00000000 0x0 0x0
0xffffd10000011900 0001 00000000 0x0 0x0
0xffffd10000011980 0001 00000000 0x0 0x0
0xffffd10000011a00 0001 00000000 0x0 0x0
0xffffd10000011a80 0001 00000000 0x0 0x0
0xffffd10000011b00 0001 00000000 0x0 0x0
0xffffd10000011b80 0001 00000000 0x0 0x0
0xffffd10000011c00 0041 00000000 0x0 0x0
0xffffd10000011c80 0041 00000000 0x0 0x0
0xffffd10000011d00 0041 00000000 0x0 0x0
0xffffd10000011d80 0041 00000000 0x0 0x0
0xffffd10000011e00 0041 00000000 0x0 0x0
0xffffd10000011e80 0041 00000000 0x0 0x0
0xffffd10000011f00 0041 00000000 0x0 0x0
0xffffd10000011f80 0041 00000000 0x0 0x0
0xffffd10000012000 0041 00000000 0x0 0x0
0xffffd10000012080 0041 00000000 0x0 0x0
0xffffd10000012100 0041 00000000 0x0 0x0
0xffffd10000012180 0041 00000000 0x0 0x0
0xffffd10000012200 0041 00000000 0x0 0x0
0xffffd10000012280 0041 00000000 0x0 0x0
0xffffd10000012300 0041 00000000 0x0 0x0
0xffffd10000012380 0041 00000000 0x0 0x0
0xffffd10000012400 0041 00000000 0x0 0x0
0xffffd10000012480 0041 00000000 0x0 0x0
0xffffd10000012500 0041 00000000 0x0 0x0
0xffffd10000012580 0041 00000000 0x0 0x0
0xffffd10000012600 0041 00000000 0x0 0x0
0xffffd10000012680 0041 00000000 0x0 0x0
0xffffd10000012700 0041 00000000 0x0 0x0
0xffffd10000012780 0041 00000000 0x0 0x0
0xffffd10000012800 0041 00000000 0x0 0x0
0xffffd10000012880 0041 00000000 0x0 0x0
0xffffd10000012900 0041 00000000 0x0 0x0
0xffffd10000012980 0041 00000000 0x0 0x0
0xffffd10000012a00 0041 00000000 0x0 0x0
0xffffd10000012a80 0041 00000000 0x0 0x0
0xffffd10000012b00 0041 00000000 0x0 0x0
0xffffd10000012b80 0041 00000000 0x0 0x0
0xffffd10000012c00 0041 00000000 0x0 0x0
0xffffd10000012c80 0041 00000000 0x0 0x0
0xffffd10000012d00 0041 00000000 0x0 0x0
0xffffd10000012d80 0041 00000000 0x0 0x0
0xffffd10000012e00 0041 00000000 0x0 0x0
0xffffd10000012e80 0041 00000000 0x0 0x0
0xffffd10000012f00 0041 00000000 0x0 0x0
0xffffd10000012f80 0041 00000000 0x0 0x0
0xffffd10000013000 0041 00000000 0x0 0x0
0xffffd10000013080 0041 00000000 0x0 0x0
0xffffd10000013100 0041 00000000 0x0 0x0
0xffffd10000013180 0041 00000000 0x0 0x0
0xffffd10000013200 0041 00000000 0x0 0x0
0xffffd10000013280 0041 00000000 0x0 0x0
0xffffd10000013300 0041 00000000 0x0 0x0
0xffffd10000013380 0041 00000000 0x0 0x0
0xffffd10000013400 0001 00000000 0x0 0x0
0xffffd10000013480 0001 00000000 0x0 0x0
0xffffd10000013500 0001 00000000 0x0 0x0
0xffffd10000013580 0001 00000000 0x0 0x0
0xffffd10000013600 0001 00000000 0x0 0x0
0xffffd10000013680 0001 00000000 0x0 0x0
0xffffd10000013700 0001 00000000 0x0 0x0
0xffffd10000013780 0001 00000000 0x0 0x0
0xffffd10000013800 0001 00000000 0x0 0x0
0xffffd10000013880 0001 00000000 0x0 0x0
0xffffd10000013900 0001 00000000 0x0 0x0
0xffffd10000013980 0001 00000000 0x0 0x0
0xffffd10000013a00 0001 00000000 0x0 0x0
0xffffd10000013a80 0001 00000000 0x0 0x0
0xffffd10000013b00 0001 00000000 0x0 0x0
0xffffd10000013b80 0001 00000000 0x0 0x0
0xffffd10000013c00 0001 00000000 0x0 0x0
0xffffd10000013c80 0001 00000000 0x0 0x0
0xffffd10000013d00 0001 00000000 0x0 0x0
0xffffd10000013d80 0001 00000000 0x0 0x0
0xffffd10000013e00 0001 00000000 0x0 0x0
0xffffd10000013e80 0001 00000000 0x0 0x0
0xffffd10000013f00 0001 00000000 0x0 0x0
0xffffd10000013f80 0001 00000000 0x0 0x0
0xffffd10000014000 0001 00000000 0x0 0x0
0xffffd10000014080 0001 00000000 0x0 0x0
0xffffd10000014100 0001 00000000 0x0 0x0
0xffffd10000014180 0001 00000000 0x0 0x0
0xffffd10000014200 0001 00000000 0x0 0x0
0xffffd10000014280 0001 00000000 0x0 0x0
0xffffd10000014300 0001 00000000 0x0 0x0
0xffffd10000014380 0001 00000000 0x0 0x0
0xffffd10000014400 0001 00000000 0x0 0x0
0xffffd10000014480 0001 00000000 0x0 0x0
0xffffd10000014500 0001 00000000 0x0 0x0
0xffffd10000014580 0001 00000000 0x0 0x0
0xffffd10000014600 0001 00000000 0x0 0x0
0xffffd10000014680 0001 00000000 0x0 0x0
0xffffd10000014700 0001 00000000 0x0 0x0
0xffffd10000014780 0001 00000000 0x0 0x0
0xffffd10000014800 0001 00000000 0x0 0x0
0xffffd10000014880 0001 00000000 0x0 0x0
0xffffd10000014900 0001 00000000 0x0 0x0
0xffffd10000014980 0001 00000000 0x0 0x0
0xffffd10000014a00 0001 00000000 0x0 0x0
0xffffd10000014a80 0001 00000000 0x0 0x0
0xffffd10000014b00 0001 00000000 0x0 0x0
0xffffd10000014b80 0001 00000000 0x0 0x0
0xffffd10000014c00 0001 00000000 0x0 0x0
0xffffd10000014c80 0001 00000000 0x0 0x0
0xffffd10000014d00 0001 00000000 0x0 0x0
0xffffd10000014d80 0001 00000000 0x0 0x0
0xffffd10000014e00 0001 00000000 0x0 0x0
0xffffd10000014e80 0001 00000000 0x0 0x0
0xffffd10000014f00 0041 00000000 0x0 0x0
0xffffd10000014f80 0041 00000000 0x0 0x0
0xffffd10000015000 0041 00000000 0x0 0x0
0xffffd10000015080 0041 00000000 0x0 0x0
0xffffd10000015100 0041 00000000 0x0 0x0
0xffffd10000015180 0041 00000000 0x0 0x0
0xffffd10000015200 0041 00000000 0x0 0x0
0xffffd10000015280 0041 00000000 0x0 0x0
0xffffd10000015300 0041 00000000 0x0 0x0
0xffffd10000015380 0041 00000000 0x0 0x0
0xffffd10000015400 0041 00000000 0x0 0x0
0xffffd10000015480 0041 00000000 0x0 0x0
0xffffd10000015500 0041 00000000 0x0 0x0
0xffffd10000015580 0041 00000000 0x0 0x0
0xffffd10000015600 0041 00000000 0x0 0x0
0xffffd10000015680 0041 00000000 0x0 0x0
0xffffd10000015700 0041 00000000 0x0 0x0
0xffffd10000015780 0041 00000000 0x0 0x0
0xffffd10000015800 0041 00000000 0x0 0x0
0xffffd10000015880 0041 00000000 0x0 0x0
0xffffd10000015900 0041 00000000 0x0 0x0
0xffffd10000015980 0041 00000000 0x0 0x0
0xffffd10000015a00 0041 00000000 0x0 0x0
0xffffd10000015a80 0041 00000000 0x0 0x0
0xffffd10000015b00 0041 00000000 0x0 0x0
0xffffd10000015b80 0041 00000000 0x0 0x0
0xffffd10000015c00 0041 00000000 0x0 0x0
0xffffd10000015c80 0041 00000000 0x0 0x0
0xffffd10000015d00 0041 00000000 0x0 0x0
0xffffd10000015d80 0041 00000000 0x0 0x0
0xffffd10000015e00 0041 00000000 0x0 0x0
0xffffd10000015e80 0041 00000000 0x0 0x0
0xffffd10000015f00 0041 00000000 0x0 0x0
0xffffd10000015f80 0041 00000000 0x0 0x0
0xffffd10000016000 0041 00000000 0x0 0x0
0xffffd10000016080 0041 00000000 0x0 0x0
0xffffd10000016100 0041 00000000 0x0 0x0
0xffffd10000016180 0041 00000000 0x0 0x0
0xffffd10000016200 0045 00000000 0x0 0x0
0xffffd10000016280 0041 00000000 0x0 0x0
0xffffd10000016300 0041 00000000 0x0 0x0
0xffffd10000016380 0041 00000000 0x0 0x0
0xffffd10000016400 0041 00000000 0x0 0x0
0xffffd10000016480 0041 00000000 0x0 0x0
0xffffd10000016500 0001 00000000 0x0 0x0
0xffffd10000016580 0001 00000000 0x0 0x0
0xffffd10000016600 0001 00000000 0x0 0x0
0xffffd10000016680 0001 00000000 0x0 0x0
0xffffd10000016700 0001 00000000 0x0 0x0
0xffffd10000016780 0001 00000000 0x0 0x0
0xffffd10000016800 0001 00000000 0x0 0x0
0xffffd10000016880 0001 00000000 0x0 0x0
0xffffd10000016900 0001 00000000 0x0 0x0
0xffffd10000016980 0001 00000000 0x0 0x0
0xffffd10000016a00 0001 00000000 0x0 0x0
0xffffd10000016a80 0001 00000000 0x0 0x0
0xffffd10000016b00 0001 00000000 0x0 0x0
0xffffd10000016b80 0001 00000000 0x0 0x0
0xffffd10000016c00 0001 00000000 0x0 0x0
0xffffd10000016c80 0001 00000000 0x0 0x0
0xffffd10000016d00 0001 00000000 0x0 0x0
0xffffd10000016d80 0001 00000000 0x0 0x0
0xffffd10000016e00 0001 00000000 0x0 0x0
0xffffd10000016e80 0001 00000000 0x0 0x0
0xffffd10000016f00 0001 00000000 0x0 0x0
0xffffd10000016f80 0001 00000000 0x0 0x0
0xffffd10000017000 0001 00000000 0x0 0x0
0xffffd10000017080 0001 00000000 0x0 0x0
0xffffd10000017100 0001 00000000 0x0 0x0
0xffffd10000017180 0001 00000000 0x0 0x0
0xffffd10000017200 0001 00000000 0x0 0x0
0xffffd10000017280 0001 00000000 0x0 0x0
0xffffd10000017300 0001 00000000 0x0 0x0
0xffffd10000017380 0001 00000000 0x0 0x0
0xffffd10000017400 0001 00000000 0x0 0x0
0xffffd10000017480 0001 00000000 0x0 0x0
0xffffd10000017500 0001 00000000 0x0 0x0
0xffffd10000017580 0001 00000000 0x0 0x0
0xffffd10000017600 0001 00000000 0x0 0x0
0xffffd10000017680 0001 00000000 0x0 0x0
0xffffd10000017700 0001 00000000 0x0 0x0
0xffffd10000017780 0001 00000000 0x0 0x0
0xffffd10000017800 0001 00000000 0x0 0x0
0xffffd10000017880 0001 00000000 0x0 0x0
0xffffd10000017900 0001 00000000 0x0 0x0
0xffffd10000017980 0001 00000000 0x0 0x0
0xffffd10000017a00 0001 00000000 0x0 0x0
0xffffd10000017a80 0001 00000000 0x0 0x0
0xffffd10000017b00 0001 00000000 0x0 0x0
0xffffd10000017b80 0001 00000000 0x0 0x0
0xffffd10000017c00 0001 00000000 0x0 0x0
0xffffd10000017c80 0001 00000000 0x0 0x0
0xffffd10000017d00 0001 00000000 0x0 0x0
0xffffd10000017d80 0001 00000000 0x0 0x0
0xffffd10000017e00 0001 00000000 0x0 0x0
0xffffd10000017e80 0001 00000000 0x0 0x0
0xffffd10000017f00 0001 00000000 0x0 0x0
0xffffd10000017f80 0001 00000000 0x0 0x0
0xffffd10000018000 0041 00000000 0x0 0x0
0xffffd10000018080 0041 00000000 0x0 0x0
0xffffd10000018100 0041 00000000 0x0 0x0
0xffffd10000018180 0041 00000000 0x0 0x0
0xffffd10000018200 0045 00000000 0x0 0x0
0xffffd10000018280 0041 00000000 0x0 0x0
0xffffd10000018300 0041 00000000 0x0 0x0
0xffffd10000018380 0041 00000000 0x0 0x0
0xffffd10000018400 0041 00000000 0x0 0x0
0xffffd10000018480 0041 00000000 0x0 0x0
0xffffd10000018500 0041 00000000 0x0 0x0
0xffffd10000018580 0045 00000000 0x0 0x0
0xffffd10000018600 0045 00000000 0x0 0x0
0xffffd10000018680 0041 00000000 0x0 0x0
0xffffd10000018700 0041 00000000 0x0 0x0
0xffffd10000018780 0041 00000000 0x0 0x0
0xffffd10000018800 0041 00000000 0x0 0x0
0xffffd10000018880 0041 00000000 0x0 0x0
0xffffd10000018900 0041 00000000 0x0 0x0
0xffffd10000018980 0045 00000000 0x0 0x0
0xffffd10000018a00 0045 00000000 0x0 0x0
0xffffd10000018a80 0041 00000000 0x0 0x0
0xffffd10000018b00 0041 00000000 0x0 0x0
0xffffd10000018b80 0041 00000000 0x0 0x0
0xffffd10000018c00 0041 00000000 0x0 0x0
0xffffd10000018c80 0041 00000000 0x0 0x0
0xffffd10000018d00 0041 00000000 0x0 0x0
0xffffd10000018d80 0045 00000000 0x0 0x0
0xffffd10000018e00 0045 00000000 0x0 0x0
0xffffd10000018e80 0045 00000000 0x0 0x0
0xffffd10000018f00 0041 00000000 0x0 0x0
0xffffd10000018f80 0041 00000000 0x0 0x0
0xffffd10000019000 0045 00000000 0x0 0x0
0xffffd10000019080 0041 00000000 0x0 0x0
0xffffd10000019100 0045 00000000 0x0 0x0
0xffffd10000019180 0045 00000000 0x0 0x0
0xffffd10000019200 0045 00000000 0x0 0x0
0xffffd10000019280 0045 00000000 0x0 0x0
0xffffd10000019300 0041 00000000 0x0 0x0
0xffffd10000019380 0041 00000000 0x0 0x0
0xffffd10000019400 0045 00000000 0x0 0x0
0xffffd10000019480 0041 00000000 0x0 0x0
0xffffd10000019500 0045 00000000 0x0 0x0
0xffffd10000019580 0045 00000000 0x0 0x0
0xffffd10000019600 0045 00000000 0x0 0x0
0xffffd10000019680 0045 00000000 0x0 0x0
0xffffd10000019700 0045 00000000 0x0 0x0
0xffffd10000019780 0041 00000000 0x0 0x0
0xffffd10000019800 0001 00000000 0x0 0x0
0xffffd10000019880 0001 00000000 0x0 0x0
0xffffd10000019900 0001 00000000 0x0 0x0
0xffffd10000019980 0001 00000000 0x0 0x0
0xffffd10000019a00 0001 00000000 0x0 0x0
0xffffd10000019a80 0001 00000000 0x0 0x0
0xffffd10000019b00 0001 00000000 0x0 0x0
0xffffd10000019b80 0001 00000000 0x0 0x0
0xffffd10000019c00 0001 00000000 0x0 0x0
0xffffd10000019c80 0001 00000000 0x0 0x0
0xffffd10000019d00 0001 00000000 0x0 0x0
0xffffd10000019d80 0001 00000000 0x0 0x0
0xffffd10000019e00 0001 00000000 0x0 0x0
0xffffd10000019e80 0001 00000000 0x0 0x0
0xffffd10000019f00 0001 00000000 0x0 0x0
0xffffd10000019f80 0001 00000000 0x0 0x0
0xffffd1000001a000 0001 00000000 0x0 0x0
0xffffd1000001a080 0001 00000000 0x0 0x0
0xffffd1000001a100 0001 00000000 0x0 0x0
0xffffd1000001a180 0001 00000000 0x0 0x0
0xffffd1000001a200 0001 00000000 0x0 0x0
0xffffd1000001a280 0001 00000000 0x0 0x0
0xffffd1000001a300 0001 00000000 0x0 0x0
0xffffd1000001a380 0001 00000000 0x0 0x0
0xffffd1000001a400 0001 00000000 0x0 0x0
0xffffd1000001a480 0001 00000000 0x0 0x0
0xffffd1000001a500 0001 00000000 0x0 0x0
0xffffd1000001a580 0001 00000000 0x0 0x0
0xffffd1000001a600 0001 00000000 0x0 0x0
0xffffd1000001a680 0001 00000000 0x0 0x0
0xffffd1000001a700 0001 00000000 0x0 0x0
0xffffd1000001a780 0001 00000000

---
This bug is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this bug report. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

Maxime Villard

unread,
Jun 27, 2020, 3:13:16 AM6/27/20
to syzbot+cd66db...@syzkaller.appspotmail.com, syzkaller-netbsd-bugs
#syz dup: page fault in statvfs_to_statfs12_copy
Reply all
Reply to author
Forward
0 new messages