panic: UBSan: Undefined Behavior in /syzkaller/manag[ 96.ADDR] ers/netbsd-kubsan/kernel/sys/kern/kern_exit.c:LINE, memb

0 views
Skip to first unread message

syzbot

unread,
Nov 29, 2019, 1:03:08 AM11/29/19
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following crash on:

HEAD commit: de2b4f1a localify
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=12279c41e00000
kernel config: https://syzkaller.appspot.com/x/.config?x=824b23e1f4b6c76b
dashboard link: https://syzkaller.appspot.com/bug?extid=ac0e55e7e4da25a94798

Unfortunately, I don't have any reproducer for this crash yet.

IMPORTANT: if you fix the bug, please add the following tag to the commit:
Reported-by: syzbot+ac0e55...@syzkaller.appspotmail.com

[ 96.2956006] panic: UBSan: Undefined Behavior in /syzkaller/manag[
96.2956006] ers/netbsd-kubsan/kernel/sys/kern/kern_exit.c:356:6, member
access within misaligned address 0x7475636578652d7a for type 'struct
session' which requires 8 byte alignment

[ 96.3156265] cpu1: Begin traceback...
[ 96.3356644] vpanic() at netbsd:vpanic+0x2aa sys/kern/subr_prf.c:336
[ 96.3757369] isAlreadyReported() at netbsd:isAlreadyReported
[ 96.4258226] HandleTypeMismatch.part.1() at
netbsd:HandleTypeMismatch.part.1+0xcc
[ 96.4558763] HandleTypeMismatch() at netbsd:HandleTypeMismatch+0x7b
sys/../common/lib/libc/misc/ubsan.c:408
[ 96.4959469] exit1() at netbsd:exit1+0x2362 sys/kern/kern_exit.c:356
[ 96.5259990] sigexit() at netbsd:sigexit+0x5db sys/kern/kern_sig.c:2254
[ 96.5660716] postsig() at netbsd:postsig+0x954 sys/kern/kern_sig.c:2116
[ 96.5961223] lwp_userret() at netbsd:lwp_userret+0x3ed
sys/kern/kern_lwp.c:1584
[ 96.6462108] syscall() at netbsd:syscall+0x97c x86_curlwp
sys/arch/amd64/compile/obj/GENERIC_SYZKALLER/./machine/cpu.h:79 [inline]
[ 96.6462108] syscall() at netbsd:syscall+0x97c KPREEMPT_DISABLE
sys/sys/lwp.h:516 [inline]
[ 96.6462108] syscall() at netbsd:syscall+0x97c mi_userret
sys/sys/userret.h:100 [inline]
[ 96.6462108] syscall() at netbsd:syscall+0x97c userret
sys/arch/amd64/compile/obj/GENERIC_SYZKALLER/./machine/userret.h:81 [inline]
[ 96.6462108] syscall() at netbsd:syscall+0x97c
sys/arch/x86/x86/syscall.c:166
[ 96.6562306] --- syscall (number 4) ---
[ 96.6762642] 7e9e28eade7a:
[ 96.6762642] cpu1: End traceback...
[ 96.6862816] fatal breakpoint trap in supervisor mode
[ 96.6862816] trap type 1 code 0 rip 0xffffffff8021ddbd cs 0x8 rflags
0x286 cr2 0x77a18aa00c4c ilevel 0x8 rsp 0xffffa000b3d24750
[ 96.6963008] curlwp 0xffffeff4fee175e0 pid 1656.6 lowest kstack
0xffffa000b3d212c0
Stopped in pid 1656.6 (syz-executor.3) at netbsd:breakpoint+0x5:
leave
?
breakpoint() at netbsd:breakpoint+0x5
db_panic() at netbsd:db_panic+0x109 sys/ddb/db_panic.c:67
vpanic() at netbsd:vpanic+0x2aa sys/kern/subr_prf.c:336
isAlreadyReported() at netbsd:isAlreadyReported
HandleTypeMismatch.part.1() at netbsd:HandleTypeMismatch.part.1+0xcc
HandleTypeMismatch() at netbsd:HandleTypeMismatch+0x7b
sys/../common/lib/libc/misc/ubsan.c:408
exit1() at netbsd:exit1+0x2362 sys/kern/kern_exit.c:356
sigexit() at netbsd:sigexit+0x5db sys/kern/kern_sig.c:2254
postsig() at netbsd:postsig+0x954 sys/kern/kern_sig.c:2116
lwp_userret() at netbsd:lwp_userret+0x3ed sys/kern/kern_lwp.c:1584
syscall() at netbsd:syscall+0x97c x86_curlwp
sys/arch/amd64/compile/obj/GENERIC_SYZKALLER/./machine/cpu.h:79 [inline]
syscall() at netbsd:syscall+0x97c KPREEMPT_DISABLE sys/sys/lwp.h:516
[inline]
syscall() at netbsd:syscall+0x97c mi_userret sys/sys/userret.h:100 [inline]
syscall() at netbsd:syscall+0x97c userret
sys/arch/amd64/compile/obj/GENERIC_SYZKALLER/./machine/userret.h:81 [inline]
syscall() at netbsd:syscall+0x97c sys/arch/x86/x86/syscall.c:166
--- syscall (number 4) ---
7e9e28eade7a:
ds 4750
es a4fe
fs 4740
gs 4750
rdi ffffeff5f54b34e0
rsi ffffeff4fee178c8
rbp ffffa000b3d24750
rbx ffffa000a57c2000
rdx 2
rcx ffffffff8247dfca kprintf_unlock+0x4e
rax 0
r8 0
r9 0
r10 ffffa000b3d67a00
r11 3
r12 ffffffff83c24750 ostype+0xee238
r13 ffffa000b3d247c8
r14 104
r15 ffffffff853da620 pool_head+0x560
rip ffffffff8021ddbd breakpoint+0x5
cs 8
rflags 286
rsp ffffa000b3d24750
ss 0
netbsd:breakpoint+0x5: leave
PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
1089 1 2 1 0 ffffeff5023f15a0 syz-executor.4
1467 3 3 1 80 ffffeff4fd3cb560 syz-executor.3 parked
1656 > 6 7 1 1000000 ffffeff4fee175e0 syz-executor.3
1290 3 3 0 80 ffffeff4fee171a0 syz-executor.1 parked
1302 3 3 0 80 ffffeff4ff0a7600 syz-executor.2 parked
1461 5 3 0 80 ffffeff5023f1160 syz-executor.2 parked
1516 3 2 0 1000000 ffffeff504f385c0 syz-executor.1
1778 3 3 1 40080 ffffeff4fef3f9c0 syz-executor.2 parked
1625 8 2 0 0 ffffeff4fe3a8ae0 syz-executor.5
1625 7 2 0 0 ffffeff5023f19e0 syz-executor.5
1625 6 2 0 0 ffffeff4fd3cb9a0 syz-executor.5
1625 5 2 0 0 ffffeff4fef3f140 syz-executor.5
1625 4 2 1 0 ffffeff4f80a1060 syz-executor.5
1625 3 3 1 80 ffffeff4fcb1b8e0 syz-executor.5 poll
1625 1 2 0 40000 ffffeff4fc66c040 syz-executor.5
1101 3 3 0 80 ffffeff4fee17a20 syz-executor.3 parked
1719 4 3 1 80 ffffeff4f9af21c0 syz-executor.2 parked
1652 3 3 1 80 ffffeff4f9d2a680 syz-executor.5 parked
1462 3 3 1 80 ffffeff4fd3cb120 syz-executor.5 parked
957 3 3 0 80 ffffeff4fcb1b4a0 syz-executor.5 parked
1655 3 3 1 80 ffffeff4f63640a0 syz-executor.3 parked
1363 3 3 1 80 ffffeff4fc66c480 syz-executor.2 parked
1008 3 3 0 80 ffffeff4f850e280 syz-executor.1 parked
1460 3 3 1 80 ffffeff5020c8920 syz-executor.2 parked
1007 3 3 1 80 ffffeff4f9d2aac0 syz-executor.1 parked
1381 3 3 1 80 ffffeff4f9af2a40 syz-executor.5 parked
1127 3 3 1 80 ffffeff4f811e180 syz-executor.5 parked
930 3 3 0 80 ffffeff4fd4e24c0 syz-executor.3 parked
621 3 3 0 80 ffffeff4fd4e2080 syz-executor.3 parked
910 3 3 0 80 ffffeff4f917db60 syz-executor.3 parked
1457 3 3 0 80 ffffeff5020c84e0 syz-executor.0 parked
1303 3 3 0 80 ffffeff4f811e5c0 syz-executor.5 parked
830 3 3 0 80 ffffeff4ff8e90c0 syz-executor.5 parked
1340 3 3 0 80 ffffeff4fd4e2900 syz-executor.5 parked
987 3 3 1 80 ffffeff501970b80 syz-executor.5 parked
515 3 3 1 80 ffffeff4f850e6c0 syz-executor.3 parked
1183 3 3 0 80 ffffeff4fc4c4760 syz-executor.3 parked
1035 3 3 0 80 ffffeff4f92f5bc0 syz-executor.3 parked
1279 3 3 0 80 ffffeff4f7f550e0 syz-executor.3 parked
648 4 4 1 1000000 ffffeff4f8a4d620 syz-executor.4
825 3 4 0 1000000 ffffeff4f9d2a240 syz-executor.4
883 5 4 0 1000000 ffffeff4f6ed4080 syz-executor.4
883 4 4 1 1000080 ffffeff4edac5480 syz-executor.4 parked
883 3 4 0 1000080 ffffeff4f917d720 syz-executor.4 parked
883 1 4 0 11000000 ffffeff4f7ec6940 syz-executor.4
1142 3 3 0 80 ffffeff4fcb1b060 syz-executor.4 parked
683 3 3 0 80 ffffeff4f92f5340 syz-executor.4 parked
1126 3 3 0 80 ffffeff4f917d2e0 syz-executor.4 parked
856 3 3 0 80 ffffeff4fc66c8c0 syz-executor.4 parked
1247 3 3 0 80 ffffeff4f8d85b20 syz-executor.4 parked
972 3 3 1 80 ffffeff4f7ec6500 syz-executor.1 parked
656 3 3 1 80 ffffeff4f8a4da60 syz-executor.1 parked
1348 3 3 1 80 ffffeff4fc4c4320 syz-executor.1 parked
302 3 3 1 80 ffffeff4edde6580 syz-executor.2 parked
618 4 3 1 80 ffffeff4fe3a8260 syz-executor.4 parked
990 3 3 0 80 ffffeff4f7f55520 syz-executor.2 parked
725 3 3 1 80 ffffeff4f8137160 syz-executor.2 parked
718 3 3 1 80 ffffeff4f6e49a20 syz-executor.2 parked
265 3 3 1 80 ffffeff4f85062c0 syz-executor.2 parked
818 3 3 1 80 ffffeff4f8506700 syz-executor.5 parked
798 3 3 1 80 ffffeff4f8d852a0 syz-executor.3 parked
959 3 3 1 80 ffffeff4f850eb00 syz-executor.3 parked
913 3 3 1 80 ffffeff4f904b660 syz-executor.3 parked
386 3 3 0 80 ffffeff4f81375a0 syz-executor.4 parked
442 3 3 0 80 ffffeff4f811ea00 syz-executor.3 parked
425 7 3 0 80 ffffeff4f9094200 syz-executor.4 parked
806 3 3 1 80 ffffeff4f84bc980 syz-executor.1 parked
696 5 3 1 80 ffffeff4f80a18e0 syz-executor.4 parked
477 3 3 1 80 ffffeff4f7ec60c0 syz-executor.3 parked
652 3 3 1 80 ffffeff4f821f560 syz-executor.3 parked
659 3 3 1 80 ffffeff4edac58c0 syz-executor.2 parked
141 3 3 1 80 ffffeff4f9094640 syz-executor.2 parked
527 3 3 0 80 ffffeff4f821f120 syz-executor.4 parked
796 3 3 0 80 ffffeff4f9094a80 syz-executor.2 parked
517 4 3 1 80 ffffeff4f8a4d1e0 syz-executor.5 parked
635 3 3 1 80 ffffeff4f84bc540 syz-executor.3 parked
629 3 3 0 80 ffffeff4f9af2600 syz-executor.4 parked
464 5 3 1 80 ffffeff4f63644e0 syz-executor.5 parked
458 3 3 0 80 ffffeff4f6364920 syz-executor.4 parked
583 3 3 1 80 ffffeff4f7f55960 syz-executor.2 parked
804 3 3 1 80 ffffeff4f821f9a0 syz-executor.2 parked
291 3 3 1 80 ffffeff4edde69c0 syz-executor.0 parked
97 3 3 1 80 ffffeff4f84bc100 syz-executor.4 parked
96 3 3 1 80 ffffeff4edde6140 syz-executor.0 parked
582 4 3 1 80 ffffeff4f81379e0 syz-executor.1 parked
201 3 3 1 80 ffffeff4f6e495e0 syz-executor.2 parked
633 4 3 1 80 ffffeff4f6e491a0 syz-executor.1 parked
432 3 3 1 80 ffffeff4f80a14a0 syz-executor.3 parked
596 1 2 1 0 ffffeff4edac5040 syz-executor.5
530 1 2 0 0 ffffeff4e9b86bc0 syz-executor.4
510 1 3 0 0 ffffeff4e7037b40 syz-executor.3 tstile
45 1 2 0 0 ffffeff4e65cf2a0 syz-executor.2
556 1 3 1 80 ffffeff4e9b86780 syz-executor.1 nanoslp
40 1 2 0 0 ffffeff4e6101ae0 syz-executor.0
431 11 3 0 80 ffffeff4e7095720 syz-fuzzer kqueue
431 10 3 1 80 ffffeff4e65416c0 syz-fuzzer parked
431 9 3 1 80 ffffeff4e8543ba0 syz-fuzzer parked
431 8 3 1 80 ffffeff4e9b86340 syz-fuzzer parked
431 7 3 1 80 ffffeff4e8543320 syz-fuzzer parked
431 6 3 1 80 ffffeff4e5cb8200 syz-fuzzer parked
431 5 3 1 80 ffffeff4e61016a0 syz-fuzzer parked
431 4 3 0 80 ffffeff4e7037700 syz-fuzzer parked
431 3 3 1 80 ffffeff4e5ec1240 syz-fuzzer parked
431 2 3 0 80 ffffeff4e5ec1ac0 syz-fuzzer parked
431 1 3 0 80 ffffeff4e8543760 syz-fuzzer parked
536 1 3 1 80 ffffeff4e7095b60 sshd select
381 1 3 1 80 ffffeff4e6354b80 getty nanoslp
533 1 3 1 80 ffffeff4e70952e0 getty nanoslp
563 1 3 1 80 ffffeff4e6101260 getty nanoslp
551 1 3 0 80 ffffeff4e5ec1680 getty ttyraw
539 1 3 0 80 ffffeff4e70372c0 cron nanoslp
426 1 3 0 80 ffffeff4e6354300 inetd kqueue
491 1 3 1 80 ffffeff4e6354740 sshd select
470 1 3 0 80 ffffeff4e6541280 powerd kqueue
195 1 2 1 0 ffffeff4e65cfb20 syslogd
238 1 3 0 80 ffffeff4e6541b00 dhcpcd kqueue
218 1 3 0 80 ffffeff4e65cf6e0 dhcpcd kqueue
1 1 2 1 0 ffffeff4e5bcf620 init
0 58 3 1 204 ffffeff4e5cb8640 physiod physiod
0 57 3 0 204 ffffeff4e5c97220 pooldrain pooldrain
0 56 3 0 204 ffffeff4e5c97aa0 aiodoned aiodoned
0 > 55 7 0 200 ffffeff4e5c97660 ioflush
0 54 3 0 200 ffffeff4e5cb8a80 pgdaemon pgdaemon
0 51 3 1 200 ffffeff4e5bcfa60 npfgc-0 npfgccv
0 50 3 1 204 ffffeff4e5bcf1e0 rt_free rt_free
0 49 3 1 204 ffffeff4e5bd8a40 unpgc unpgc
0 48 3 0 204 ffffeff4e5bd8600 key_timehandler
key_timehandler
0 47 3 1 204 ffffeff4e5bd81c0 icmp6_wqinput/1
icmp6_wqinput
0 46 3 0 204 ffffeff4e5b71a20 icmp6_wqinput/0
icmp6_wqinput
0 45 3 0 204 ffffeff4e5b64160 nd6_timer nd6_timer
0 44 3 1 204 ffffeff4e5b645a0 carp6_wqinput/1
carp6_wqinput
0 43 3 0 204 ffffeff4e5b649e0 carp6_wqinput/0
carp6_wqinput
0 42 3 1 204 ffffeff4e5b6a180 carp_wqinput/1
carp_wqinput
0 41 3 0 204 ffffeff4e5b6a5c0 carp_wqinput/0
carp_wqinput
0 40 3 1 204 ffffeff4e5b6aa00 icmp_wqinput/1
icmp_wqinput
0 39 3 0 204 ffffeff4e5b711a0 icmp_wqinput/0
icmp_wqinput
0 38 3 0 204 ffffeff4e32dc9c0 rt_timer rt_timer
0 37 3 0 204 ffffeff4e5b715e0 vmem_rehash vmem_rehash
0 27 3 0 204 ffffeff4e32dc580 scsibus0 sccomp
0 26 3 0 200 ffffeff4e32dc140 pms0 pmsreset
0 25 3 1 204 ffffeff4e32679a0 xcall/1 xcall
0 24 1 1 200 ffffeff4e3267560 softser/1
0 23 1 1 200 ffffeff4e3267120 softclk/1
0 22 1 1 200 ffffeff4e3258980 softbio/1
0 21 1 1 200 ffffeff4e3258540 softnet/1
0 20 1 1 201 ffffeff4e3258100 idle/1
0 19 3 0 204 ffffeff5f377c960 lnxpwrwq lnxpwrwq
0 18 3 0 204 ffffeff5f377c520 lnxlngwq lnxlngwq
0 17 3 0 204 ffffeff5f377c0e0 lnxsyswq lnxsyswq
0 16 3 0 204 ffffeff5f37a3940 lnxrcugc lnxrcugc
0 15 3 0 204 ffffeff5f37a3500 sysmon smtaskq
0 14 3 0 204 ffffeff5f37a30c0 pmfsuspend pmfsuspend
0 13 3 0 204 ffffeff5f3bb6920 pmfevent pmfevent
0 12 3 0 204 ffffeff5f3bb64e0 sopendfree sopendfr
0 11 3 0 204 ffffeff5f3bb60a0 nfssilly nfssilly
0 10 3 1 200 ffffeff5f4fdf900 cachegc cachegc
0 9 3 0 204 ffffeff5f4fdf4c0 vdrain vdrain
0 8 3 0 200 ffffeff5f4fdf080 modunload mod_unld
0 7 3 0 204 ffffeff5f4ff88e0 xcall/0 xcall
0 6 1 0 200 ffffeff5f4ff84a0 softser/0
0 5 1 0 200 ffffeff5f4ff8060 softclk/0
0 4 1 0 200 ffffeff5f50198c0 softbio/0
0 3 1 0 200 ffffeff5f5019480 softnet/0
0 2 1 0 201 ffffeff5f5019040 idle/0
0 1 3 0 200 ffffffff85330aa0 swapper uvm
[Locks tracked through LWPs]
Locks held by an LWP (syz-executor.4):
Lock 0 (initialized at uvm_obj_init)
lock address : 0xffffeff4e5d71040 type : sleep/adaptive
initialized : 0xffffffff8227d524
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 1
current cpu : 1 last held: 1
current lwp : 0xffffeff4fee175e0 last held: 0xffffeff5023f15a0
last locked* : 0xffffffff82248f63 unlocked : 0xffffffff822693a2
owner field : 000000000000000000 wait/spin: 0/0

Turnstile chain at 0xffffffff85ea9408 with mutex 0xffffeff5f5032240.
=> Turnstile at 0xffffeff4e7740a40 (wrq=0xffffeff4e7740a60,
rdq=0xffffeff4e7740a70).
=> 0 waiting readers:
=> 1 waiting writers: 0xffffeff4e7037b40

Locks held by an LWP (syz-executor.3):
Lock 0 (initialized at fork1)
lock address : 0xffffeff4faa02cd0 type : sleep/adaptive
initialized : 0xffffffff82322e2c
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
current cpu : 1 last held: 1
current lwp : 0xffffeff4fee175e0 last held: 0xffffeff4fee175e0
last locked* : 0xffffffff8231b3ef unlocked : 0xffffffff824c8b7e
owner/count : 0xffffeff4fee175e0 flags : 0x0000000000000004

Turnstile chain at 0xffffffff85ea9398 with mutex 0xffffeff5f5044e80.
=> No active turnstile for this lock.
Lock 1 (initialized at procinit)
lock address : 0xffffeff5f54b50c0 type : sleep/adaptive
initialized : 0xffffffff823698e1
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
current cpu : 1 last held: 1
current lwp : 0xffffeff4fee175e0 last held: 0xffffeff4fee175e0
last locked* : 0xffffffff8231b5d5 unlocked : 0xffffffff8236af87
owner field : 000000000000000000 wait/spin: 0/0

Turnstile chain at 0xffffffff85ea9418 with mutex 0xffffeff5f50322c0.
=> No active turnstile for this lock.

Locks held by an LWP (syz-executor.3):
Lock 0 (initialized at uvm_map_setup)
lock address : 0xffffeff4e7a92468 type : sleep/adaptive
initialized : 0xffffffff8226892b
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
current cpu : 1 last held: 0
current lwp : 0xffffeff4fee175e0 last held: 0xffffeff4e7037b40
last locked* : 0xffffffff8225b237 unlocked : 0xffffffff82244388
owner/count : 0xffffeff4e7037b40 flags : 0x0000000000000004

Turnstile chain at 0xffffffff85ea9288 with mutex 0xffffeff5f5044600.
=> No active turnstile for this lock.
Lock 1 (initialized at amap_alloc)
lock address : 0xffffeff4f07e8dc0 type : sleep/adaptive
initialized : 0xffffffff82224986
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
current cpu : 1 last held: 0
current lwp : 0xffffeff4fee175e0 last held: 0xffffeff4e7037b40
last locked* : 0xffffffff822691e2 unlocked : 0xffffffff8223213d
owner field : 0xffffeff4e7037b40 wait/spin: 0/0

Turnstile chain at 0xffffffff85ea93b8 with mutex 0xffffeff5f5044f80.
=> No active turnstile for this lock.

Locks held by an LWP (syz-executor.2):
Lock 0 (initialized at vcache_alloc)
lock address : 0xffffeff4eb0af880 type : sleep/adaptive
initialized : 0xffffffff825e01fb
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
current cpu : 1 last held: 0
current lwp : 0xffffeff4fee175e0 last held: 0xffffeff4e65cf2a0
last locked* : 0xffffffff8263292c unlocked : 0xffffffff826327db
owner/count : 0xffffeff4e65cf2a0 flags : 0x0000000000000004

Turnstile chain at 0xffffffff85ea9510 with mutex 0xffffeff5f5032a80.
=> No active turnstile for this lock.


[Locks tracked through CPUs]

PAGE FLAG PQ UOBJECT UANON
0xffffa00000003180 0041 0000 0x0 0x0
0xffffa000000031f8 0041 0000 0x0 0x0
0xffffa00000003270 0041 0000 0x0 0x0
0xffffa000000032e8 0041 0000 0x0 0x0
0xffffa00000003360 0041 0000 0x0 0x0
0xffffa000000033d8 0041 0000 0x0 0x0
0xffffa00000003450 0041 0000 0x0 0x0
0xffffa000000034c8 0041 0000 0x0 0x0
0xffffa00000003540 0040 0000 0x0 0x0
0xffffa000000035b8 0048 0000 0x0 0x0
0xffffa00000003630 0048 0000 0x0 0x0
0xffffa000000036a8 0048 0000 0x0 0x0
0xffffa00000003720 0048 0000 0x0 0x0
0xffffa00000003798 0048 0000 0x0 0x0
0xffffa00000003810 0049 0000 0x0 0x0
0xffffa00000003888 0049 0000 0x0 0x0
0xffffa00000003900 0040 0000 0x0 0x0
0xffffa00000003978 0040 0000 0x0 0x0
0xffffa000000039f0 0040 0000 0x0 0x0
0xffffa00000003a68 0040 0000 0x0 0x0
0xffffa00000003ae0 0040 0000 0x0 0x0
0xffffa00000003b58 0040 0000 0x0 0x0
0xffffa00000003bd0 0049 0000 0x0 0x0
0xffffa00000003c48 0040 0000 0x0 0x0
0xffffa00000003cc0 0048 0000 0x0 0x0
0xffffa00000003d38 0048 0000 0x0 0x0
0xffffa00000003db0 0048 0000 0x0 0x0
0xffffa00000003e28 0049 0000 0x0 0x0
0xffffa00000003ea0 0048 0000 0x0 0x0
0xffffa00000003f18 0048 0000 0x0 0x0
0xffffa00000003f90 0040 0000 0x0 0x0
0xffffa00000004008 0048 0000 0x0 0x0
0xffffa00000004080 0049 0000 0x0 0x0
0xffffa000000040f8 0048 0000 0x0 0x0
0xffffa00000004170 0048 0000 0x0 0x0
0xffffa000000041e8 0048 0000 0x0 0x0
0xffffa00000004260 0048 0000 0x0 0x0
0xffffa000000042d8 0049 0000 0x0 0x0
0xffffa00000004350 0048 0000 0x0 0x0
0xffffa000000043c8 0048 0000 0x0 0x0
0xffffa00000004440 0048 0000 0x0 0x0
0xffffa000000044b8 0048 0000 0x0 0x0
0xffffa00000004530 0048 0000 0x0 0x0
0xffffa000000045a8 0048 0000 0x0 0x0
0xffffa00000004620 0048 0000 0x0 0x0
0xffffa00000004698 0048 0000 0x0 0x0
0xffffa00000004710 0048 0000 0x0 0x0
0xffffa00000004788 0048 0000 0x0 0x0
0xffffa00000004800 0048 0000 0x0 0x0
0xffffa00000004878 0048 0000 0x0 0x0
0xffffa000000048f0 0048 0000 0x0 0x0
0xffffa00000004968 0048 0000 0x0 0x0
0xffffa000000049e0 0041 0000 0x0 0x0
0xffffa00000004a58 0048 0000 0x0 0x0
0xffffa00000004ad0 0048 0000 0x0 0x0
0xffffa00000004b48 0048 0000 0x0 0x0
0xffffa00000004bc0 0048 0000 0x0 0x0
0xffffa00000004c38 0041 0000 0x0 0x0
0xffffa00000004cb0 0041 0000 0x0 0x0
0xffffa00000004d28 0041 0000 0x0 0x0
0xffffa00000004da0 0041 0000 0x0 0x0
0xffffa00000004e18 0041 0000 0x0 0x0
0xffffa00000004e90 0048 0000 0x0 0x0
0xffffa00000004f08 0049 0000 0x0 0x0
0xffffa00000004f80 0049 0000 0x0 0x0
0xffffa00000004ff8 0041 0000 0x0 0x0
0xffffa00000005070 0041 0000 0x0 0x0
0xffffa000000050e8 0041 0000 0x0 0x0
0xffffa00000005160 0041 0000 0x0 0x0
0xffffa000000051d8 0041 0000 0x0 0x0
0xffffa00000005250 0048 0000 0x0 0x0
0xffffa000000052c8 0041 0000 0x0 0x0
0xffffa00000005340 0041 0000 0x0 0x0
0xffffa000000053b8 0041 0000 0x0 0x0
0xffffa00000005430 0041 0000 0x0 0x0
0xffffa000000054a8 0041 0000 0x0 0x0
0xffffa00000005520 0041 0000 0x0 0x0
0xffffa00000005598 0041 0000 0x0 0x0
0xffffa00000005610 0041 0000 0x0 0x0
0xffffa00000005688 0041 0000 0x0 0x0
0xffffa00000005700 0041 0000 0x0 0x0
0xffffa00000005778 0041 0000 0x0 0x0
0xffffa000000057f0 0041 0000 0x0 0x0
0xffffa00000005868 0041 0000 0x0 0x0
0xffffa000000058e0 0041 0000 0x0 0x0
0xffffa00000005958 0041 0000 0x0 0x0
0xffffa000000059d0 0041 0000 0x0 0x0
0xffffa00000005a48 0041 0000 0x0 0x0
0xffffa00000005ac0 0041 0000 0x0 0x0
0xffffa00000005b38 0041 0000 0x0 0x0
0xffffa00000005bb0 0041 0000 0x0 0x0
0xffffa00000005c28 0041 0000 0x0 0x0
0xffffa00000005ca0 0041 0000 0x0 0x0
0xffffa00000005d18 0041 0000 0x0 0x0
0xffffa00000005d90 0041 0000 0x0 0x0
0xffffa00000005e08 0041 0000 0x0 0x0
0xffffa00000005e80 0041 0000 0x0 0x0
0xffffa00000005ef8 0041 0000 0x0 0x0
0xffffa00000005f70 0041 0000 0x0 0x0
0xffffa00000005fe8 0041 0000 0x0 0x0
0xffffa00000006060 0049 0000 0x0 0x0
0xffffa000000060d8 0041 0000 0x0 0x0
0xffffa00000006150 0041 0000 0x0 0x0
0xffffa000000061c8 0041 0000 0x0 0x0
0xffffa00000006240 0041 0000 0x0 0x0
0xffffa000000062b8 0040 0000 0x0 0x0
0xffffa00000006330 0049 0000 0x0 0x0
0xffffa000000063a8 0049 0000 0x0 0x0
0xffffa00000006420 0049 0000 0x0 0x0
0xffffa00000006498 0049 0000 0x0 0x0
0xffffa00000006510 0041 0000 0x0 0x0
0xffffa00000006588 0041 0000 0x0 0x0
0xffffa00000006600 0049 0000 0x0 0x0
0xffffa00000006678 0049 0000 0x0 0x0
0xffffa000000066f0 0049 0000 0x0 0x0
0xffffa00000006768 0049 0000 0x0 0x0
0xffffa000000067e0 0049 0000 0x0 0x0
0xffffa00000006858 0049 0000 0x0 0x0
0xffffa000000068d0 0041 0000 0x0 0x0
0xffffa00000006948 0049 0000 0x0 0x0
0xffffa000000069c0 0049 0000 0x0 0x0
0xffffa00000006a38 0049 0000 0x0 0x0
0xffffa00000006ab0 0049 0000 0x0 0x0
0xffffa00000006b28 0049 0000 0x0 0x0
0xffffa00000006ba0 0049 0000 0x0 0x0
0xffffa00000006c18 0049 0000 0x0 0x0
0xffffa00000006c90 0049 0000 0x0 0x0
0xffffa00000006d08 0049 0000 0x0 0x0
0xffffa00000006d80 0049 0000 0x0 0x0
0xffffa00000006df8 0049 0000 0x0 0x0
0xffffa00000006e70 0049 0000 0x0 0x0
0xffffa00000006ee8 0049 0000 0x0 0x0
0xffffa00000006f60 0049 0000 0x0 0x0
0xffffa00000006fd8 0049 0000 0x0 0x0
0xffffa00000007050 0049 0000 0x0 0x0
0xffffa000000070c8 0049 0000 0x0 0x0
0xffffa00000007140 0049 0000 0x0 0x0
0xffffa000000071b8 0049 0000 0x0 0x0
0xffffa00000007230 0048 0000 0x0 0x0
0xffffa000000072a8 0048 0000 0x0 0x0
0xffffa00000007320 0048 0000 0x0 0x0
0xffffa00000007398 0048 0000 0x0 0x0
0xffffa00000007410 0049 0000 0x0 0x0
0xffffa00000007488 0049 0000 0x0 0x0
0xffffa00000007500 0049 0000 0x0 0x0
0xffffa00000007578 0048 0000 0x0 0x0
0xffffa000000075f0 0049 0000 0x0 0x0
0xffffa00000007668 0049 0000 0x0 0x0
0xffffa000000076e0 0048 0000 0x0 0x0
0xffffa00000007758 0048 0000 0x0 0x0
0xffffa000000077d0 0049 0000 0x0 0x0
0xffffa00000007848 0049 0000 0x0 0x0
0xffffa000000078c0 0048 0000 0x0 0x0
0xffffa00000007938 0048 0000 0x0 0x0
0xffffa000000079b0 0049 0000 0x0 0x0
0xffffa00000007a28 0048 0000 0x0 0x0
0xffffa00000007aa0 0048 0000 0x0 0x0
0xffffa00000007b18 0048 0000 0x0 0x0
0xffffa00000007b90 0048 0000 0x0 0x0
0xffffa00000007c08 0048 0000 0x0 0x0
0xffffa00000007c80 0048 0000 0x0 0x0
0xffffa00000007cf8 0048 0000 0x0 0x0
0xffffa00000007d70 0048 0000 0x0 0x0
0xffffa00000007de8 0048 0000 0x0 0x0
0xffffa00000007e60 0049 0000 0x0 0x0
0xffffa00000007ed8 0048 0000 0x0 0x0
0xffffa00000007f50 0049 0000 0x0 0x0
0xffffa00000007fc8 0048 0000 0x0 0x0
0xffffa00000008040 0048 0000 0x0 0x0
0xffffa000000080b8 0048 0000 0x0 0x0
0xffffa00000008130 0048 0000 0x0 0x0
0xffffa000000081a8 0049 0000 0x0 0x0
0xffffa00000008220 0048 0000 0x0 0x0
0xffffa00000008298 0049 0000 0x0 0x0
0xffffa00000008310 0048 0000 0x0 0x0
0xffffa00000008388 0048 0000 0x0 0x0
0xffffa00000008400 0048 0000 0x0 0x0
0xffffa00000008478 0048 0000 0x0 0x0
0xffffa000000084f0 0049 0000 0x0 0x0
0xffffa00000008568 0048 0000 0x0 0x0
0xffffa000000085e0 0048 0000 0x0 0x0
0xffffa00000008658 0048 0000 0x0 0x0
0xffffa000000086d0 0048 0000 0x0 0x0
0xffffa00000008748 0048 0000 0x0 0x0
0xffffa000000087c0 0048 0000 0x0 0x0
0xffffa00000008838 0048 0000 0x0 0x0
0xffffa000000088b0 0048 0000 0x0 0x0
0xffffa00000008928 0048 0000 0x0 0x0
0xffffa000000089a0 0048 0000 0x0 0x0
0xffffa00000008a18 0048 0000 0x0 0x0
0xffffa00000008a90 0048 0000 0x0 0x0
0xffffa00000008b08 0049 0000 0x0 0x0
0xffffa00000008b80 0048 0000 0x0 0x0
0xffffa00000008bf8 0048 0000 0x0 0x0
0xffffa00000008c70 0048 0000 0x0 0x0
0xffffa00000008ce8 0048 0000 0x0 0x0
0xffffa00000008d60 0048 0000 0x0 0x0
0xffffa00000008dd8 0048 0000 0x0 0x0
0xffffa00000008e50 0049 0000 0x0 0x0
0xffffa00000008ec8 0048 0000 0x0 0x0
0xffffa00000008f40 0048 0000 0x0 0x0
0xffffa00000008fb8 0048 0000 0x0 0x0
0xffffa00000009030 0048 0000 0x0 0x0
0xffffa000000090a8 0048 0000 0x0 0x0
0xffffa00000009120 0048 0000 0x0 0x0
0xffffa00000009198 0048 0000 0x0 0x0
0xffffa00000009210 0048 0000 0x0 0x0
0xffffa00000009288 0048 0000 0x0 0x0
0xffffa00000009300 0048 0000 0x0 0x0
0xffffa00000009378 0048 0000 0x0 0x0
0xffffa000000093f0 0048 0000 0x0 0x0
0xffffa00000009468 0048 0000 0x0 0x0
0xffffa000000094e0 0048 0000 0x0 0x0
0xffffa00000009558 0048 0000 0x0 0x0
0xffffa000000095d0 0048 0000 0x0 0x0
0xffffa00000009648 0008 0000 0x0 0x0
0xffffa000000096c0 0008 0000 0x0 0x0
0xffffa00000009738 0008 0000 0x0 0x0
0xffffa000000097b0 0008 0000 0x0 0x0
0xffffa00000009828 0008 0000 0x0 0x0
0xffffa000000098a0 0008 0000 0x0 0x0
0xffffa00000009918 0008 0000 0x0 0x0
0xffffa00000009990 0008 0000 0x0 0x0
0xffffa00000009a08 0008 0000 0x0 0x0
0xffffa00000009a80 0008 0000 0x0 0x0
0xffffa00000009af8 0008 0000 0x0 0x0
0xffffa00000009b70 0008 0000 0x0 0x0
0xffffa00000009be8 0008 0000 0x0 0x0
0xffffa00000009c60 0008 0000 0x0 0x0
0xffffa00000009cd8 0008 0000 0x0 0x0
0xffffa00000009d50 0008 0000 0x0 0x0
0xffffa00000009dc8 0008 0000 0x0 0x0
0xffffa00000009e40 0008 0000 0x0 0x0
0xffffa00000009eb8 0008 0000 0x0 0x0
0xffffa00000009f30 0008 0000 0x0 0x0
0xffffa00000009fa8 0008 0000 0x0 0x0
0xffffa0000000a020 0008 0000 0x0 0x0
0xffffa0000000a098 0008 0000 0x0 0x0
0xffffa0000000a110 0008 0000 0x0 0x0
0xffffa0000000a188 0008 0000 0x0 0x0
0xffffa0000000a200 0008 0000 0x0 0x0
0xffffa0000000a278 0008 0000 0x0 0x0
0xffffa0000000a2f0 0008 0000 0x0 0x0
0xffffa0000000a368 0008 0000 0x0 0x0
0xffffa0000000a3e0 0008 0000 0x0 0x0
0xffffa0000000a458 0008 0000 0x0 0x0
0xffffa0000000a4d0 0008 0000 0x0 0x0
0xffffa0000000a548 0008 0000 0x0 0x0
0xffffa0000000a5c0 0008 0000 0x0 0x0
0xffffa0000000a638 0008 0000 0x0 0x0
0xffffa0000000a6b0 0008 0000 0x0 0x0
0xffffa0000000a728 0008 0000 0x0 0x0
0xffffa0000000a7a0 0008 0000 0x0 0x0
0xffffa0000000a818 0008 0000 0x0 0x0
0xffffa0000000a890 0008 0000 0x0 0x0
0xffffa0000000a908 0008 0000 0x0 0x0
0xffffa0000000a980 0008 0000 0x0 0x0
0xffffa0000000a9f8 0008 0000 0x0 0x0
0xffffa0000000aa70 0008 0000 0x0 0x0
0xffffa0000000aae8 0008 0000 0x0 0x0
0xffffa0000000ab60 0008 0000 0x0 0x0
0xffffa0000000abd8 0008 0000 0x0 0x0
0xffffa0000000ac50 0008 0000 0x0 0x0
0xffffa0000000acc8 0008 0000 0x0 0x0
0xffffa0000000ad40 0008 0000 0x0 0x0
0xffffa0000000adb8 0008 0000 0x0 0x0
0xffffa0000000ae30 0008 0000 0x0 0x0
0xffffa0000000aea8 0008 0000 0x0 0x0
0xffffa0000000af20 0008 0000 0x0 0x0
0xffffa0000000af98 0048 0000 0x0 0x0
0xffffa0000000b010 0048 0000 0x0 0x0
0xffffa0000000b088 0048 0000 0x0 0x0
0xffffa0000000b100 0048 0000 0x0 0x0
0xffffa0000000b178 0048 0000 0x0 0x0
0xffffa0000000b1f0 0048 0000 0x0 0x0
0xffffa0000000b268 0048 0000 0x0 0x0
0xffffa0000000b2e0 0048 0000 0x0 0x0
0xffffa0000000b358 0048 0000 0x0 0x0
0xffffa0000000b3d0 0048 0000 0x0 0x0
0xffffa0000000b448 0048 0000 0x0 0x0
0xffffa0000000b4c0 0048 0000 0x0 0x0
0xffffa0000000b538 0048 0000 0x0 0x0
0xffffa0000000b5b0 0048 0000 0x0 0x0
0xffffa0000000b628 0048 0000 0x0 0x0
0xffffa0000000b6a0 0048 0000 0x0 0x0
0xffffa0000000b718 0048 0000 0x0 0x0
0xffffa0000000b790 0048 0000 0x0 0x0
0xffffa0000000b808 0048 0000 0x0 0x0
0xffffa0000000b880 0048 0000 0x0 0x0
0xffffa0000000b8f8 0048 0000 0x0 0x0
0xffffa0000000b970 0048 0000 0x0 0x0
0xffffa0000000b9e8 0048 0000 0x0 0x0
0xffffa0000000ba60 0048 0000 0x0 0x0
0xffffa0000000bad8 0048 0000 0x0 0x0
0xffffa0000000bb50 0048 0000 0x0 0x0
0xffffa0000000bbc8 0048 0000 0x0 0x0
0xffffa0000000bc40 0048 0000 0x0 0x0
0xffffa0000000bcb8 0048 0000 0x0 0x0
0xffffa0000000bd30 0048 0000 0x0 0x0
0xffffa0000000bda8 0048 0000 0x0 0x0
0xffffa0000000be20 0048 0000 0x0 0x0
0xffffa0000000be98 0048 0000 0x0 0x0
0xffffa0000000bf10 0048 0000 0x0 0x0
0xffffa0000000bf88 0048 0000 0x0 0x0
0xffffa0000000c000 0048 0000 0x0 0x0
0xffffa0000000c078 0048 0000 0x0 0x0
0xffffa0000000c0f0 0048 0000 0x0 0x0
0xffffa0000000c168 0048 0000 0x0 0x0
0xffffa0000000c1e0 0048 0000 0x0 0x0
0xffffa0000000c258 0048 0000 0x0 0x0
0xffffa0000000c2d0 0048 0000 0x0 0x0
0xffffa0000000c348 0048 0000 0x0 0x0
0xffffa0000000c3c0 0008 0000 0x0 0x0
0xffffa0000000c438 0008 0000 0x0 0x0
0xffffa0000000c4b0 0008 0000 0x0 0x0
0xffffa0000000c528 0008 0000 0x0 0x0
0xffffa0000000c5a0 0008 0000 0x0 0x0
0xffffa0000000c618 0008 0000 0x0 0x0
0xffffa0000000c690 0008 0000 0x0 0x0
0xffffa0000000c708 0008 0000 0x0 0x0
0xffffa0000000c780 0008 0000 0x0 0x0
0xffffa0000000c7f8 0008 0000 0x0 0x0
0xffffa0000000c870 0008 0000 0x0 0x0
0xffffa0000000c8e8 0008 0000 0x0 0x0
0xffffa0000000c960 0008 0000 0x0 0x0
0xffffa0000000c9d8 0008 0000 0x0 0x0
0xffffa0000000ca50 0008 0000 0x0 0x0
0xffffa0000000cac8 0008 0000 0x0 0x0
0xffffa0000000cb40 0008 0000 0x0 0x0
0xffffa0000000cbb8 0008 0000 0x0 0x0
0xffffa0000000cc30 0008 0000 0x0 0x0
0xffffa0000000cca8 0008 0000 0x0 0x0
0xffffa0000000cd20 0008 0000 0x0 0x0
0xffffa0000000cd98 0008 0000 0x0 0x0
0xffffa0000000ce10 0008 0000 0x0 0x0
0xffffa0000000ce88 0008 0000 0x0 0x0
0xffffa0000000cf00 0008 0000 0x0 0x0
0xffffa0000000cf78 0008 0000 0x0 0x0
0xffffa0000000cff0 0008 0000 0x0 0x0
0xffffa0000000d068 0008 0000 0x0 0x0
0xffffa0000000d0e0 0008 0000 0x0 0x0
0xffffa0000000d158 0008 0000 0x0 0x0
0xffffa0000000d1d0 0008 0000 0x0 0x0
0xffffa0000000d248 0008 0000 0x0 0x0
0xffffa0000000d2c0 0008 0000 0x0 0x0
0xffffa0000000d338 0008 0000 0x0 0x0
0xffffa0000000d3b0 0008 0000 0x0 0x0
0xffffa0000000d428 0008 0000 0x0 0x0
0xffffa0000000d4a0 0008 0000 0x0 0x0
0xffffa0000000d518 0008 0000 0x0 0x0
0xffffa0000000d590 0008 0000 0x0 0x0
0xffffa0000000d608 0008 0000 0x0 0x0
0xffffa0000000d680 0008 0000 0x0 0x0
0xffffa0000000d6f8 0008 0000 0x0 0x0
0xffffa0000000d770 0008 0000 0x0 0x0
0xffffa0000000d7e8 0008 0000 0x0 0x0
0xffffa0000000d860 0008 0000 0x0 0x0
0xffffa0000000d8d8 0008 0000 0x0 0x0
0xffffa0000000d950 0008 0000 0x0 0x0
0xffffa0000000d9c8 0008 0000 0x0 0x0
0xffffa0000000da40 0008 0000 0x0 0x0
0xffffa0000000dab8 0008 0000 0x0 0x0
0xffffa0000000db30 0008 0000 0x0 0x0
0xffffa0000000dba8 0008 0000 0x0 0x0
0xffffa0000000dc20 0008 0000 0x0 0x0
0xffffa0000000dc98 0008 0000 0x0 0x0
0xffffa0000000dd10 0048 0000 0x0 0x0
0xffffa0000000dd88 0048 0000 0x0 0x0
0xffffa0000000de00 0048 0000 0x0 0x0
0xffffa0000000de78 0048 0000 0x0 0x0
0xffffa0000000def0 0048 0000 0x0 0x0
0xffffa0000000df68 0048 0000 0x0 0x0
0xffffa0000000dfe0 0048 0000 0x0 0x0
0xffffa0000000e058 0048 0000 0x0 0x0
0xffffa0000000e0d0 0048 0000 0x0 0x0
0xffffa0000000e148 0048 0000 0x0 0x0
0xffffa0000000e1c0 0048 0000 0x0 0x0
0xffffa0000000e238 0048 0000 0x0 0x0
0xffffa0000000e2b0 0048 0000 0x0 0x0
0xffffa0000000e328 0048 0000 0x0 0x0
0xffffa0000000e3a0 0048 0000 0x0 0x0
0xffffa0000000e418 0048 0000 0x0 0x0
0xffffa0000000e490 0048 0000 0x0 0x0
0xffffa0000000e508 0048 0000 0x0 0x0
0xffffa0000000e580 0048 0000 0x0 0x0
0xffffa0000000e5f8 0048 0000 0x0 0x0
0xffffa0000000e670 0048 0000 0x0 0x0
0xffffa0000000e6e8 0048 0000 0x0 0x0
0xffffa0000000e760 0048 0000 0x0 0x0
0xffffa0000000e7d8 0048 0000 0x0 0x0
0xffffa0000000e850 0048 0000 0x0 0x0
0xffffa0000000e8c8 0048 0000 0x0 0x0
0xffffa0000000e940 0048 0000 0x0 0x0
0xffffa0000000e9b8 0048 0000 0x0 0x0
0xffffa0000000ea30 0048 0000 0x0 0x0
0xffffa0000000eaa8 0048 0000 0x0 0x0
0xffffa0000000eb20 0048 0000 0x0 0x0
0xffffa0000000eb98 0048 0000 0x0 0x0
0xffffa0000000ec10 0048 0000 0x0 0x0
0xffffa0000000ec88 0048 0000 0x0 0x0
0xffffa0000000ed00 0048 0000 0x0 0x0
0xffffa0000000ed78 0048 0000 0x0 0x0
0xffffa0000000edf0 0048 0000 0x0 0x0
0xffffa0000000ee68 0048 0000 0x0 0x0
0xffffa0000000eee0 0048 0000 0x0 0x0
0xffffa0000000ef58 0048 0000 0x0 0x0
0xffffa0000000efd0 0048 0000 0x0 0x0
0xffffa0000000f048 0048 0000 0x0 0x0
0xffffa0000000f0c0 0008 0000 0x0 0x0
0xffffa0000000f138 0008 0000 0x0 0x0
0xffffa0000000f1b0 0008 0000 0x0 0x0
0xffffa0000000f228 0008 0000 0x0 0x0
0xffffa0000000f2a0 0008 0000 0x0 0x0
0xffffa0000000f318 0008 0000 0x0 0x0
0xffffa0000000f390 0008 0000 0x0 0x0
0xffffa0000000f408 0008 0000 0x0 0x0
0xffffa0000000f480 0008 0000 0x0 0x0
0xffffa0000000f4f8 0008 0000 0x0 0x0
0xffffa0000000f570 0008 0000 0x0 0x0
0xffffa0000000f5e8 0008 0000 0x0 0x0
0xffffa0000000f660 0008 0000 0x0 0x0
0xffffa0000000f6d8 0008 0000 0x0 0x0
0xffffa0000000f750 0008 0000 0x0 0x0
0xffffa0000000f7c8 0008 0000 0x0 0x0
0xffffa0000000f840 0008 0000 0x0 0x0
0xffffa0000000f8b8 0008 0000 0x0 0x0
0xffffa0000000f930 0008 0000 0x0 0x0
0xffffa0000000f9a8 0008 0000 0x0 0x0
0xffffa0000000fa20 0008 0000 0x0 0x0
0xffffa0000000fa98 0008 0000 0x0 0x0
0xffffa0000000fb10 0008 0000 0x0 0x0
0xffffa0000000fb88 0008 0000 0x0 0x0
0xffffa0000000fc00 0008 0000 0x0 0x0
0xffffa0000000fc78 0008 0000 0x0 0x0
0xffffa0000000fcf0 0008 0000 0x0 0x0
0xffffa0000000fd68 0008 0000 0x0 0x0
0xffffa0000000fde0 0008 0000 0x0 0x0
0xffffa0000000fe58 0008 0000 0x0 0x0
0xffffa0000000fed0 0008 0000 0x0 0x0
0xffffa0000000ff48 0008 0000 0x0 0x0
0xffffa0000000ffc0 0008 0000 0x0 0x0
0xffffa00000010038 0008 0000 0x0 0x0
0xffffa000000100b0 0008 0000 0x0 0x0
0xffffa00000010128 0008 0000 0x0 0x0
0xffffa000000101a0 0008 0000 0x0 0x0
0xffffa00000010218 0008 0000 0x0 0x0
0xffffa00000010290 0008 0000 0x0 0x0
0xffffa00000010308 0008 0000 0x0 0x0
0xffffa00000010380 0008 0000 0x0 0x0
0xffffa000000103f8 0008 0000 0x0 0x0
0xffffa00000010470 0008 0000 0x0 0x0
0xffffa000000104e8 0008 0000 0x0 0x0
0xffffa00000010560 0008 0000 0x0 0x0
0xffffa000000105d8 0008 0000 0x0 0x0
0xffffa00000010650 0008 0000 0x0 0x0
0xffffa000000106c8 0008 0000 0x0 0x0
0xffffa00000010740 0008 0000 0x0 0x0
0xffffa000000107b8 0008 0000 0x0 0x0
0xffffa00000010830 0008 0000 0x0 0x0
0xffffa000000108a8 0008 0000 0x0 0x0
0xffffa00000010920 0008 0000 0x0 0x0
0xffffa00000010998 0008 0000 0x0 0x0
0xffffa00000010a10 0048 0000 0x0 0x0
0xffffa00000010a88 0048 0000 0x0 0x0
0xffffa00000010b00 0048 0000 0x0 0x0
0xffffa00000010b78 0048 0000 0x0 0x0
0xffffa00000010bf0 0048 0000 0x0 0x0
0xffffa00000010c68 0048 0000 0x0 0x0
0xffffa00000010ce0 0048 0000 0x0 0x0
0xffffa00000010d58 0048 0000 0x0 0x0
0xffffa00000010dd0 0048 0000 0x0 0x0
0xffffa00000010e48 0048 0000 0x0 0x0
0xffffa00000010ec0 0048 0000 0x0 0x0
0xffffa00000010f38 0048 0000 0x0 0x0
0xffffa00000010fb0 0048 0000 0x0 0x0
0xffffa00000011028 0048 0000 0x0 0x0
0xffffa000000110a0 0048 0000 0x0 0x0
0xffffa00000011118 0048 0000 0x0 0x0
0xffffa00000011190 0048 0000 0x0 0x0
0xffffa00000011208 0048 0000 0x0 0x0
0xffffa00000011280 0048 0000 0x0 0x0
0xffffa000000112f8 0048 0000 0x0 0x0
0xffffa00000011370 0048 0000 0x0 0x0
0xffffa000000113e8 0048 0000 0x0 0x0
0xffffa00000011460 0048 0000 0x0 0x0
0xffffa000000114d8 0048 0000 0x0 0x0
0xffffa00000011550 0048 0000 0x0 0x0
0xffffa000000115c8 0048 0000 0x0 0x0
0xffffa00000011640 0048 0000 0x0 0x0
0xffffa000000116b8 0048 0000 0x0 0x0
0xffffa00000011730 0048 0000 0x0 0x0
0xffffa000000117a8 0048 0000 0x0 0x0
0xffffa00000011820 0048 0000 0x0 0x0
0xffffa00000011898 0049 0000 0x0 0x0
0xffffa00000011910 0048 0000 0x0 0x0
0xffffa00000011988 0048 0000 0x0 0x0
0xffffa00000011a00 0048 0000 0x0 0x0
0xffffa00000011a78 0048 0000 0x0 0x0
0xffffa00000011af0 0048 0000 0x0 0x0
0xffffa00000011b68 0048 0000 0x0 0x0
0xffffa00000011be0 0049 0000 0x0 0x0
0xffffa00000011c58 0049 0000 0x0 0x0
0xffffa00000011cd0 0048 0000 0x0 0x0
0xffffa00000011d48 0048 0000 0x0 0x0
0xffffa00000011dc0 0048 0000 0x0 0x0
0xffffa00000011e38 0049 0000 0x0 0x0
0xffffa00000011eb0 0048 0000 0x0 0x0
0xffffa00000011f28 0008 0000 0x0 0x0
0xffffa00000011fa0 0008 0000 0x0 0x0
0xffffa00000012018 0008 0000 0x0 0x0
0xffffa00000012090 0008 0000 0x0 0x0
0xffffa00000012108 0008 0000 0x0 0x0
0xffffa00000012180 0008 0000 0x0 0x0
0xffffa000000121f8 0008 0000 0x0 0x0
0xffffa00000012270 0008 0000 0x0 0x0
0xffffa000000122e8 0008 0000 0x0 0x0
0xffffa00000012360 0008 0000 0x0 0x0
0xffffa000000123d8 0008 0000 0x0 0x0
0xffffa00000012450 0008 0000 0x0 0x0
0xffffa000000124c8 0008 0000 0x0 0x0
0xffffa00000012540 0008 0000 0x0 0x0
0xffffa000000125b8 0008 0000 0x0 0x0
0xffffa00000012630 0008 0000 0x0 0x0
0xffffa000000126a8 0008 0000 0x0 0x0
0xffffa00000012720 0008 0000 0x0 0x0
0xffffa00000012798 0008 0000 0x0 0x0
0xffffa00000012810 0008 0000 0x0 0x0
0xffffa00000012888 0008 0000 0x0 0x0
0xffffa00000012900 0008 0000 0x0 0x0
0xffffa00000012978 0008 0000 0x0 0x0
0xffffa000000129f0 0008 0000 0x0 0x0
0xffffa00000012a68 0008 0000 0x0 0x0
0xffffa00000012ae0 0008 0000 0x0 0x0
0xffffa00000012b58 0008 0000 0x0 0x0
0xffffa00000012bd0 0008 0000 0x0 0x0
0xffffa00000012c48 0008 0000 0x0 0x0
0xffffa00000012cc0 0008 0000 0x0 0x0
0xffffa00000012d38 0008 0000 0x0 0x0
0xffffa00000012db0 0008 0000 0x0 0x0
0xffffa00000012e28 0008 0000 0x0 0x0
0xffffa00000012ea0 0008 0000 0x0 0x0
0xffffa00000012f18 0008 0000 0x0 0x0
0xffffa00000012f90 0008 0000 0x0 0x0
0xffffa00000013008 0008 0000 0x0 0x0
0xffffa00000013080 0008 0000 0x0 0x0
0xffffa000000130f8 0008 0000 0x0 0x0
0xffffa00000013170 0008 0000 0x0 0x0
0xffffa000000131e8 0008 0000 0x0 0x0
0xffffa00000013260 0008 0000 0x0 0x0
0xffffa000000132d8 0008 0000 0x0 0x0
0xffffa00000013350 0008 0000 0x0 0x0
0xffffa000000133c8 0008 0000 0x0 0x0
0xffffa00000013440 0008 0000 0x0 0x0
0xffffa000000134b8 0008 0000 0x0 0x0
0xffffa00000013530 0008 0000 0x0 0x0
0xffffa000000135a8 0008 0000 0x0 0x0
0xffffa00000013620 0008 0000 0x0 0x0
0xffffa00000013698 0008 0000 0x0 0x0
0xffffa00000013710 0008 0000 0x0 0x0
0xffffa00000013788 0008 0000 0x0 0x0
0xffffa00000013800 0008 0000 0x0 0x0
0xffffa00000013878 0008 0000 0x0 0x0
0xffffa000000138f0 0008 0000 0x0 0x0
0xffffa00000013968 0008 0000 0x0 0x0
0xffffa000000139e0 0008 0000 0x0 0x0
0xffffa00000013a58 0008 0000 0x0 0x0
0xffffa00000013ad0 0008 0000 0x0 0x0
0xffffa00000013b48 0008 0000 0x0 0x0
0xffffa00000013bc0 0008 0000 0x0 0x0
0xffffa00000013c38 0008 0000 0x0 0x0
0xffffa00000013cb0 0008 0000 0x0 0x0
0xffffa00000013d28 0008 0000 0x0 0x0
0xffffa00000013da0 0008 0000 0x0 0x0
0xffffa00000013e18 0008 0000 0x0 0x0
0xffffa00000013e90 0008 0000 0x0 0x0
0xffffa00000013f08 0008 0000 0x0 0x0
0xffffa00000013f80 0008 0000 0x0 0x0
0xffffa00000013ff8 0008 0000 0x0 0x0
0xffffa00000014070 0008 0000 0x0 0x0
0xffffa000000140e8 0008 0000 0x0 0x0
0xffffa00000014160 0008 0000 0x0 0x0
0xffffa000000141d8 0008 0000 0x0 0x0
0xffffa00000014250 0008 0000 0x0 0x0
0xffffa000000142c8 0008 0000 0x0 0x0
0xffffa00000014340 0008 0000 0x0 0x0
0xffffa000000143b8 0008 0000 0x0 0x0
0xffffa00000014430 0008 0000 0x0 0x0
0xffffa000000144a8 0008 0000 0x0 0x0
0xffffa00000014520 0008 0000 0x0 0x0
0xffffa00000014598 0008 0000 0x0 0x0
0xffffa00000014610 0008 0000 0x0 0x0
0xffffa00000014688 0008 0000 0x0 0x0
0xffffa00000014700 0008 0000 0x0 0x0
0xffffa00000014778 0008 0000 0x0 0x0
0xffffa000000147f0 0008 0000 0x0 0x0
0xffffa00000014868 0008 0000 0x0 0x0
0xffffa000000148e0 0008 0000 0x0 0x0
0xffffa00000014958 0008 0000 0x0 0x0
0xffffa000000149d0 0008 0000 0x0 0x0
0xffffa00000014a48 0008 0000 0x0 0x0
0xffffa00000014ac0 0008 0000 0x0 0x0
0xffffa00000014b38 0008 0000 0x0 0x0
0xffffa00000014bb0 0008 0000 0x0 0x0
0xffffa00000014c28 0008 0000 0x0 0x0
0xffffa00000014ca0 0008 0000 0x0 0x0
0xffffa00000014d18 0008 0000 0x0 0x0
0xffffa00000014d90 0008 0000 0x0 0x0
0xffffa00000014e08 0008 0000 0x0 0x0
0xffffa00000014e80 0008 0000 0x0 0x0
0xffffa00000014ef8 0008 0000 0x0 0x0
0xffffa00000014f70 0008 0000 0x0 0x0
0xffffa00000014fe8 0008 0000 0x0 0x0
0xffffa00000015060 0008 0000 0x0 0x0
0xffffa000000150d8 0008 0000 0x0 0x0
0xffffa00000015150 0008 0000 0x0 0x0
0xffffa000000151c8 0008 0000 0x0 0x0
0xffffa00000015240 0008 0000 0x0 0x0
0xffffa000000152b8 0008 0000 0x0 0x0
0xffffa00000015330 0008 0000 0x0 0x0
0xffffa000000153a8 0008 0000 0x0 0x0
0xffffa00000015420 0008 0000 0x0 0x0
0xffffa00000015498 0008 0000 0x0 0x0
0xffffa00000015510 0008 0000 0x0 0x0
0xffffa00000015588 0008 0000 0x0 0x0
0xffffa00000015600 0008 0000 0x0 0x0
0xffffa00000015678 0008 0000 0x0 0x0
0xffffa000000156f0 0008 0000 0x0 0x0
0xffffa00000015768 0008 0000 0x0 0x0
0xffffa000000157e0 0008 0000 0x0 0x0
0xffffa00000015858 0008 0000 0x0 0x0
0xffffa000000158d0 0008 0000 0x0 0x0
0xffffa00000015948 0008 0000 0x0 0x0
0xffffa000000159c0 0008 0000 0x0 0x0
0xffffa00000015a38 0008 0000 0x0 0x0
0xffffa00000015ab0 0008 0000 0x0 0x0
0xffffa00000015b28 0008 0000 0x0 0x0
0xffffa00000015ba0 0008 0000 0x0 0x0
0xffffa00000015c18 0008 0000 0x0 0x0
0xffffa00000015c90 0008 0000 0x0 0x0
0xffffa00000015d08 0008 0000 0x0 0x0
0xffffa00000015d80 0008 0000 0x0 0x0
0xffffa00000015df8 0008 0000 0x0 0x0
0xffffa00000015e70 0008 0000 0x0 0x0
0xffffa00000015ee8 0008 0000 0x0 0x0
0xffffa00000015f60 0008 0000 0x0 0x0
0xffffa00000015fd8 0008 0000 0x0 0x0
0xffffa00000016050 0008 0000 0x0 0x0
0xffffa000000160c8 0008 0000 0x0 0x0
0xffffa00000016140 0008 0000 0x0 0x0
0xffffa000000161b8 0008 0000 0x0 0x0
0xffffa00000016230 0008 0000 0x0 0x0
0xffffa000000162a8 0008 0000 0x0 0x0
0xffffa00000016320 0008 0000 0x0 0x0
0xffffa00000016398 0008 0000 0x0 0x0
0xffffa00000016410 0008 0000 0x0 0x0
0xffffa00000016488 0008 0000 0x0 0x0
0xffffa00000016500 0008 0000 0x0 0x0
0xffffa00000016578 0008 0000 0x0 0x0
0xffffa000000165f0 0008 0000 0x0 0x0
0xffffa00000016668 0008 0000 0x0 0x0
0xffffa000000166e0 0008 0000 0x0 0x0
0xffffa00000016758 0008 0000 0x0 0x0
0xffffa000000167d0 0008 0000 0x0 0x0
0xffffa00000016848 0008 0000 0x0 0x0
0xffffa000000168c0 0008 0000 0x0 0x0
0xffffa00000016938 0008 0000 0x0 0x0
0xffffa000000169b0 0008 0000 0x0 0x0
0xffffa00000016a28 0008 0000 0x0 0x0
0xffffa00000016aa0 0008 0000 0x0 0x0
0xffffa00000016b18 0008 0000 0x0 0x0
0xffffa00000016b90 0008 0000 0x0 0x0
0xffffa00000016c08 0008 0000 0x0 0x0
0xffffa00000016c80 0008 0000 0x0 0x0
0xffffa00000016cf8 0008 0000 0x0 0x0
0xffffa00000016d70 0008 0000 0x0 0x0
0xffffa00000016de8 0008 0000 0x0 0x0
0xffffa00000016e60 0008 0000 0x0 0x0
0xffffa00000016ed8 0008 0000 0x0 0x0
0xffffa00000016f50 0008 0000 0x0 0x0
0xffffa00000016fc8 0008 0000 0x0 0x0
0xffffa00000017040 0008 0000 0x0 0x0
0xffffa000000170b8 0008 0000 0x0 0x0
0xffffa00000017130 0008 0000 0x0 0x0
0xffffa000000171a8 0008 0000 0x0 0x0
0xffffa00000017220 0008 0000 0x0 0x0
0xffffa00000

---
This bug is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this bug report. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

Maxime Villard

unread,
Dec 1, 2019, 2:22:24 AM12/1/19
to syzbot, syzkaller-...@googlegroups.com
dup but garbage, close

#syz invalid
Reply all
Reply to author
Forward
0 new messages