ASan: Unauthorized Access in mld_sendpkt

0 views
Skip to first unread message

syzbot

unread,
Jun 8, 2024, 8:01:28 PMJun 8
to syzkaller-...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 360641f995d7 tests/lint: group tests by topic
git tree: netbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=114d3126980000
kernel config: https://syzkaller.appspot.com/x/.config?x=fab579639ba4bf0a
dashboard link: https://syzkaller.appspot.com/bug?extid=932ccb199e90885b50eb
compiler: g++ (Debian 12.2.0-14) 12.2.0

Unfortunately, I don't have any reproducer for this issue yet.

Downloadable assets:
disk image: https://storage.googleapis.com/syzbot-assets/d44243a26916/disk-360641f9.raw.xz
netbsd.gdb: https://storage.googleapis.com/syzbot-assets/26f3910b818c/netbsd-360641f9.gdb.xz

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+932ccb...@syzkaller.appspotmail.com

[ 234.5719147] panic: ASan: Unauthorized Access In 0xffffffff81595e84: Addr 0xffff9280128fced8 [8 bytes, read, PoolUseAfterFree]

[ 234.5818957] cpu1: Begin traceback...
[ 234.6019007] vpanic() at netbsd:vpanic+0x282 sys/kern/subr_prf.c:288
[ 234.6619001] panic() at netbsd:panic+0x9e sys/kern/subr_prf.c:1084
[ 234.7119018] kasan_report() at netbsd:kasan_report+0x8f kasan_code_name sys/kern/subr_asan.c:169 [inline]
[ 234.7119018] kasan_report() at netbsd:kasan_report+0x8f sys/kern/subr_asan.c:201
[ 234.7619008] __asan_load8() at netbsd:__asan_load8+0xac kasan_shadow_8byte_isvalid sys/kern/subr_asan.c:371 [inline]
[ 234.7619008] __asan_load8() at netbsd:__asan_load8+0xac kasan_shadow_check sys/kern/subr_asan.c:421 [inline]
[ 234.7619008] __asan_load8() at netbsd:__asan_load8+0xac sys/kern/subr_asan.c:1208
[ 234.8019000] mld_sendpkt() at netbsd:mld_sendpkt+0x5bc sys/netinet6/mld6.c:612
[ 234.8519009] in6m_destroy() at netbsd:in6m_destroy+0x4ba mld_stop_listening sys/netinet6/mld6.c:341 [inline]
[ 234.8519009] in6m_destroy() at netbsd:in6m_destroy+0x4ba sys/netinet6/mld6.c:795
[ 234.8918950] in6_delmulti_locked() at netbsd:in6_delmulti_locked+0xa3 sys/netinet6/mld6.c:839
[ 234.9419098] in6_leavegroup() at netbsd:in6_leavegroup+0x47 sys/netinet6/mld6.c:975
[ 234.9818942] in6_purgeaddr() at netbsd:in6_purgeaddr+0x158 sys/netinet6/in6.c:1476
[ 235.0219025] if_purgeaddrs() at netbsd:if_purgeaddrs+0x1a2 sys/net/if.c:1245
[ 235.0719017] in6_ifdetach() at netbsd:in6_ifdetach+0x26 sys/netinet6/in6_ifattach.c:663
[ 235.1119021] in6_purgeif() at netbsd:in6_purgeif+0x32 sys/netinet6/in6.c:1520
[ 235.1619015] rip6_purgeif_wrapper() at netbsd:rip6_purgeif_wrapper+0x4b rip6_purgeif sys/netinet6/raw_ip6.c:941 [inline]
[ 235.1619015] rip6_purgeif_wrapper() at netbsd:rip6_purgeif_wrapper+0x4b sys/netinet6/raw_ip6.c:986
[ 235.2018977] if_detach() at netbsd:if_detach+0x768 sys/net/if.c:1459
[ 235.2519022] tap_detach() at netbsd:tap_detach+0xe8 sys/net/if_tap.c:402
[ 235.2918965] config_detach_release() at netbsd:config_detach_release+0x3d7 sys/kern/subr_autoconf.c:2177
[ 235.3419054] tap_clone_destroyer() at netbsd:tap_clone_destroyer+0x2d sys/net/if_tap.c:644
[ 235.3919009] tap_clone_destroy() at netbsd:tap_clone_destroy+0x2c sys/net/if_tap.c:634
[ 235.4419054] doifioctl() at netbsd:doifioctl+0x14b7 if_clone_destroy sys/net/if.c:1631 [inline]
[ 235.4419054] doifioctl() at netbsd:doifioctl+0x14b7 sys/net/if.c:3512
[ 235.4919031] soo_ioctl() at netbsd:soo_ioctl+0x3cc sys/kern/sys_socket.c:215
[ 235.5319010] sys_ioctl() at netbsd:sys_ioctl+0x8f6 sys/kern/sys_generic.c:675
[ 235.5818972] syscall() at netbsd:syscall+0x246 sy_call sys/sys/syscallvar.h:65 [inline]
[ 235.5818972] syscall() at netbsd:syscall+0x246 sy_invoke sys/sys/syscallvar.h:94 [inline]
[ 235.5818972] syscall() at netbsd:syscall+0x246 sys/arch/x86/x86/syscall.c:137
[ 235.5919003] --- syscall (number 54) ---
[ 235.6018998] netbsd:syscall+0x246:
[ 235.6119012] cpu1: End traceback...
[ 235.6119012] fatal breakpoint trap in supervisor mode
[ 235.6219010] trap type 1 code 0 rip 0xffffffff8023240d cs 0x8 rflags 0x282 cr2 0x1b32239000 ilevel 0x6 rsp 0xffff928249701c10
[ 235.6319004] curlwp 0xffff92801343dbc0 pid 2546.2546 lowest kstack 0xffff9282496fb2c0
Stopped in pid 2546.2546 (ifconfig) at netbsd:breakpoint+0x5: leave
?
breakpoint() at netbsd:breakpoint+0x5
db_panic() at netbsd:db_panic+0x105 sys/ddb/db_panic.c:71
vpanic() at netbsd:vpanic+0x282 sys/kern/subr_prf.c:288
panic() at netbsd:panic+0x9e sys/kern/subr_prf.c:1084
kasan_report() at netbsd:kasan_report+0x8f kasan_code_name sys/kern/subr_asan.c:169 [inline]
kasan_report() at netbsd:kasan_report+0x8f sys/kern/subr_asan.c:201
__asan_load8() at netbsd:__asan_load8+0xac kasan_shadow_8byte_isvalid sys/kern/subr_asan.c:371 [inline]
__asan_load8() at netbsd:__asan_load8+0xac kasan_shadow_check sys/kern/subr_asan.c:421 [inline]
__asan_load8() at netbsd:__asan_load8+0xac sys/kern/subr_asan.c:1208
mld_sendpkt() at netbsd:mld_sendpkt+0x5bc sys/netinet6/mld6.c:612
in6m_destroy() at netbsd:in6m_destroy+0x4ba mld_stop_listening sys/netinet6/mld6.c:341 [inline]
in6m_destroy() at netbsd:in6m_destroy+0x4ba sys/netinet6/mld6.c:795
in6_delmulti_locked() at netbsd:in6_delmulti_locked+0xa3 sys/netinet6/mld6.c:839
in6_leavegroup() at netbsd:in6_leavegroup+0x47 sys/netinet6/mld6.c:975
in6_purgeaddr() at netbsd:in6_purgeaddr+0x158 sys/netinet6/in6.c:1476
if_purgeaddrs() at netbsd:if_purgeaddrs+0x1a2 sys/net/if.c:1245
in6_ifdetach() at netbsd:in6_ifdetach+0x26 sys/netinet6/in6_ifattach.c:663
in6_purgeif() at netbsd:in6_purgeif+0x32 sys/netinet6/in6.c:1520
rip6_purgeif_wrapper() at netbsd:rip6_purgeif_wrapper+0x4b rip6_purgeif sys/netinet6/raw_ip6.c:941 [inline]
rip6_purgeif_wrapper() at netbsd:rip6_purgeif_wrapper+0x4b sys/netinet6/raw_ip6.c:986
if_detach() at netbsd:if_detach+0x768 sys/net/if.c:1459
tap_detach() at netbsd:tap_detach+0xe8 sys/net/if_tap.c:402
config_detach_release() at netbsd:config_detach_release+0x3d7 sys/kern/subr_autoconf.c:2177
tap_clone_destroyer() at netbsd:tap_clone_destroyer+0x2d sys/net/if_tap.c:644
tap_clone_destroy() at netbsd:tap_clone_destroy+0x2c sys/net/if_tap.c:634
doifioctl() at netbsd:doifioctl+0x14b7 if_clone_destroy sys/net/if.c:1631 [inline]
doifioctl() at netbsd:doifioctl+0x14b7 sys/net/if.c:3512
soo_ioctl() at netbsd:soo_ioctl+0x3cc sys/kern/sys_socket.c:215
sys_ioctl() at netbsd:sys_ioctl+0x8f6 sys/kern/sys_generic.c:675
syscall() at netbsd:syscall+0x246 sy_call sys/sys/syscallvar.h:65 [inline]
syscall() at netbsd:syscall+0x246 sy_invoke sys/sys/syscallvar.h:94 [inline]
syscall() at netbsd:syscall+0x246 sys/arch/x86/x86/syscall.c:137
--- syscall (number 54) ---
netbsd:syscall+0x246:
Panic string: ASan: Unauthorized Access In 0xffffffff81595e84: Addr 0xffff9280128fced8 [8 bytes, read, PoolUseAfterFree]

PID LID S CPU FLAGS STRUCT LWP * NAME WAIT
2546 > 2546 7 1 0 ffff92801343dbc0 ifconfig
5082 5082 2 0 10040000 ffff928013f83780 syz-executor.0
5429 2405 2 1 40000 ffff928013379180 syz-executor.3
5429 5429 2 0 10040000 ffff9280133b1240 syz-executor.3
2625 2625 3 1 180 ffff92801451fac0 syz-executor.3 parked
5556 5556 2 0 40000 ffff928013490180 syz-executor.5
3797 3797 3 0 40180 ffff9280145266c0 syz-executor.2 wait
2463 2463 3 1 180 ffff928012c83bc0 syz-executor.4 parked
4666 4666 3 1 180 ffff928013ef42c0 syz-executor.1 parked
4029 4029 3 1 180 ffff928014602bc0 syz-executor.1 parked
3273 2344 3 1 1100000 ffff928012b999c0 syz-executor.1 vfork
3273 2445 3 1 11100000 ffff928012d14b40 syz-executor.1 vfork
3273 3273 2 0 11000040 ffff928013f70b80 syz-executor.1
5172 5172 2 0 140 ffff9280145b1300 syz-executor.0
5350 5350 2 0 140 ffff928012cb20c0 syz-executor.3
4914 4914 3 0 1c0 ffff92801443d600 syz-executor.1 wait
1762 1762 3 0 180 ffff928013fa5100 syz-executor.2 parked
4667 4667 3 0 180 ffff928013f70300 syz-executor.3 parked
1665 1665 3 1 180 ffff9280144e7640 syz-executor.4 parked
1425 1532 3 1 11100000 ffff928012a54780 syz-executor.4 vfork
1425 1425 2 0 11000040 ffff928013f944c0 syz-executor.4
1061 1061 3 1 180 ffff92801343d780 syz-executor.4 parked
3156 3156 3 0 180 ffff928013fa3940 syz-executor.4 parked
1843 1843 3 1 180 ffff928012c03200 syz-executor.2 parked
3765 1187 3 1 11100000 ffff928012c94040 syz-executor.2 vfork
3765 3765 2 0 11000040 ffff92801334f140 syz-executor.2
920 920 3 1 180 ffff9280142b79c0 syz-executor.3 parked
923 919 3 1 11100000 ffff9280142b7580 syz-executor.3 vfork
923 923 2 0 11000040 ffff9280142b7140 syz-executor.3
668 668 3 0 180 ffff928012cca140 syz-executor.0 parked
3160 3160 3 0 180 ffff928013f94900 syz-executor.4 parked
2096 2096 3 1 180 ffff92801341eb40 syz-executor.1 parked
3430 3430 3 0 180 ffff928012d5f480 syz-executor.2 parked
3406 3406 3 1 180 ffff928012a99900 syz-executor.3 parked
3360 1861 3 1 11100000 ffff928013490a00 syz-executor.3 vfork
3360 3360 2 0 11000040 ffff928013379a00 syz-executor.3
1968 1968 3 0 180 ffff928012d0ab00 syz-executor.3 parked
2118 2118 3 1 180 ffff928013fa5980 syz-executor.5 parked
1457 1961 3 1 1100000 ffff928013fa5540 syz-executor.5 vfork
1457 1457 2 0 11000040 ffff928013430740 syz-executor.5
1239 715 3 0 180 ffff9280133a2640 syz-fuzzer parked
1239 1376 3 0 40180 ffff928013e65b00 syz-fuzzer parked
1239 1386 3 0 180 ffff928013e65280 syz-fuzzer wait
1239 1203 3 0 180 ffff928013e14ac0 syz-fuzzer wait
1239 449 3 1 180 ffff928012b7b540 syz-fuzzer parked
1239 929 3 0 180 ffff928012bc05c0 syz-fuzzer wait
1239 1243 3 0 180 ffff928012b99580 syz-fuzzer kqueue
1239 1101 3 0 180 ffff928012c68b80 syz-fuzzer wait
1239 1235 3 1 180 ffff928012c68740 syz-fuzzer parked
1239 1238 3 1 180 ffff92801341e2c0 syz-fuzzer parked
1239 1233 3 0 180 ffff9280133c7b00 syz-fuzzer wait
1239 1151 3 1 180 ffff9280133c7280 syz-fuzzer parked
1239 1231 3 0 180 ffff92801332f980 syz-fuzzer parked
1239 1239 3 1 180 ffff928012b7b980 syz-fuzzer parked
1080 1080 3 0 180 ffff928012ac8500 sshd select
1224 1224 3 1 180 ffff9280126d7b80 getty nanoslp
1260 1260 3 1 180 ffff9280129bf280 getty nanoslp
1195 1195 3 0 180 ffff928012a20b80 getty nanoslp
1084 1084 3 0 180 ffff9280126d9340 getty ttyraw
814 814 3 0 180 ffff9280133a2200 sshd select
1097 1097 3 0 180 ffff928012d53780 powerd kqueue
702 702 3 1 180 ffff928013430b80 syslogd kqueue
606 606 3 0 180 ffff928012c276c0 dhcpcd poll
744 744 3 1 180 ffff928012c49b40 dhcpcd poll
559 559 2 1 0 ffff928012c948c0 dhcpcd
487 487 3 0 180 ffff928012da30c0 dhcpcd poll
292 292 3 0 180 ffff928012d8e900 dhcpcd poll
485 485 3 1 180 ffff928012d8e4c0 dhcpcd poll
1 1 3 0 180 ffff928012875180 init wait
0 2545 3 0 200 ffff92801345a500 ktrace ktrwait
0 2046 5 1 200 ffff928012cbd980 (zombie)
0 2639 3 0 200 ffff928013f90480 ktrace ktrwait
0 1267 3 1 200 ffff928013463980 swapiod swapiod
0 2156 3 1 200 ffff928012cd55c0 ktrace ktrwait
0 875 3 0 200 ffff9280129bf6c0 physiod physiod
0 196 3 0 200 ffff9280129c1700 pooldrain pooldrain
0 195 3 1 200 ffff9280129c12c0 ioflush syncer
0 194 3 0 200 ffff9280129bfb00 pgdaemon pgdaemon
0 167 3 1 200 ffff928012976ac0 usb7 usbevt
0 172 3 1 200 ffff928012976680 usb6 usbevt
0 170 3 1 200 ffff928012976240 usb5 usbevt
0 168 3 1 200 ffff92801291ea80 usb4 usbevt
0 166 3 0 200 ffff92801291e640 usb3 usbdly
0 165 3 0 200 ffff92801291e200 usb2 usbevt
0 31 3 0 200 ffff9280128caa40 usb1 usbevt
0 63 3 1 200 ffff9280128ca600 usb0 usbevt
0 126 3 1 200 ffff9280128ca1c0 usbtask-dr usbtsk
0 125 3 1 200 ffff928012875a00 usbtask-hc usbtsk
0 124 3 0 200 ffff928010d66b00 swwreboot swwreboot
0 123 3 0 200 ffff9280128755c0 npfgc0 npfgcw
0 > 122 7 0 200 ffff9280128699c0 rt_free
0 121 3 1 200 ffff928012869580 unpgc unpgc
0 120 3 0 200 ffff928012869140 key_timehandler key_timehandler
0 119 3 1 200 ffff928012707980 icmp6_wqinput/1 icmp6_wqinput
0 118 3 0 200 ffff928012707540 icmp6_wqinput/0 icmp6_wqinput
0 117 3 1 200 ffff928012707100 nd6_timer nd6_timer
0 116 3 1 200 ffff9280126ff940 carp6_wqinput/1 carp6_wqinput
0 115 3 0 200 ffff9280126ff500 carp6_wqinput/0 carp6_wqinput
0 114 3 1 200 ffff9280126ff0c0 carp_wqinput/1 carp_wqinput
0 113 3 0 200 ffff9280126f1900 carp_wqinput/0 carp_wqinput
0 112 3 1 200 ffff9280126f14c0 icmp_wqinput/1 icmp_wqinput
0 111 3 0 200 ffff9280126f1080 icmp_wqinput/0 icmp_wqinput
0 110 3 1 200 ffff9280126db040 rt_timer rt_timer
0 109 3 0 200 ffff9280126db8c0 vmem_rehash vmem_rehash
0 100 3 0 200 ffff9280126d7300 entbutler entropy
0 99 3 0 200 ffff9280120bdb40 viomb balloon
0 98 3 1 200 ffff9280120bd700 vioif0_txrx/1 vioif0_txrx
0 97 3 0 200 ffff9280120bd2c0 vioif0_txrx/0 vioif0_txrx
0 30 3 0 200 ffff928010d666c0 scsibus0 sccomp
0 29 3 0 200 ffff928010d66280 pms0 pmsreset
0 28 3 1 200 ffff928010cacac0 xcall/1 xcall
0 27 1 1 200 ffff928010cac680 softser/1
0 26 1 1 200 ffff928010cac240 softclk/1
0 25 1 1 200 ffff928010ca9a80 softbio/1
0 24 1 1 200 ffff928010ca9640 softnet/1
0 23 1 1 201 ffff928010ca9200 idle/1
0 22 3 0 200 ffff92800fb55a40 lnxsyswq lnxsyswq
0 21 3 0 200 ffff92800fb55600 lnxubdwq lnxubdwq
0 20 3 0 200 ffff92800fb551c0 lnxpwrwq lnxpwrwq
0 19 3 0 200 ffff92800fb54a00 lnxlngwq lnxlngwq
0 18 3 0 200 ffff92800fb545c0 lnxhipwq lnxhipwq
0 17 3 0 200 ffff92800fb54180 lnxrcugc lnxrcugc
0 16 3 0 200 ffff92800fb4d9c0 sysmon smtaskq
0 15 3 0 200 ffff92800fb4d580 pmfsuspend pmfsuspend
0 14 3 0 200 ffff92800fb4d140 pmfevent pmfevent
0 13 3 0 200 ffff92800fb4a980 sopendfree sopendfr
0 12 3 0 200 ffff92800fb4a540 ifwdog ifwdog
0 11 3 0 200 ffff92800fb4a100 iflnkst iflnkst
0 10 3 0 200 ffff92800fb3b940 nfssilly nfssilly
0 9 3 0 200 ffff92800fb3b500 pooldisp pooldisp
0 8 3 1 200 ffff92800fb3b0c0 modunload mod_unld
0 7 3 0 200 ffff92800fb32900 xcall/0 xcall
0 6 1 0 200 ffff92800fb324c0 softser/0
0 > 5 7 0 200 ffff92800fb32080 softclk/0
0 4 1 0 200 ffff92800fb308c0 softbio/0
0 3 1 0 200 ffff92800fb30480 softnet/0
0 2 1 0 201 ffff92800fb30040 idle/0
0 0 3 0 200 ffffffff83350200 swapper uvm
[Locks tracked through LWPs]

****** LWP 2546.2546 (ifconfig) @ 0xffff92801343dbc0, l_stat=7

*** Locks held:

* Lock 0 (initialized at netbsd:ifinit1+0x23 sys/net/if.c:334)
lock address : netbsd:if_clone_mtx
type : sleep/adaptive
initialized : netbsd:ifinit1+0x23
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff92801343dbc0 last held: 0xffff92801343dbc0
last locked* : netbsd:doifioctl+0x137a
unlocked : netbsd:doifioctl+0x1500
owner field : 0xffff92801343dbc0 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at netbsd:soinit+0x1f9 sys/kern/uipc_socket.c:460)
lock address : ffff92800f68a880
type : sleep/adaptive
initialized : netbsd:soinit+0x1f9
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff92801343dbc0 last held: 0xffff92801343dbc0
last locked* : netbsd:rip6_purgeif_wrapper+0x34
unlocked : netbsd:rip_purgeif_wrapper+0x7d
owner field : 0xffff92801343dbc0 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

* Lock 2 (initialized at netbsd:if_initialize+0x284 sys/net/if.c:762)
lock address : ffff92801445c100
type : sleep/adaptive
initialized : netbsd:if_initialize+0x284
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff92801343dbc0 last held: 0xffff92801343dbc0
last locked* : netbsd:in6_purgeif+0x2a
unlocked : netbsd:rip_purgeif_wrapper+0x56
owner field : 0xffff92801343dbc0 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

* Lock 3 (initialized at netbsd:mld_init+0xa8 sys/netinet6/mld6.c:165)
lock address : netbsd:in6_multilock
type : sleep/adaptive
initialized : netbsd:mld_init+0xa8
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff92801343dbc0 last held: 0xffff92801343dbc0
last locked* : netbsd:in6_leavegroup+0x21
unlocked : netbsd:in6_leavegroup+0x58
owner/count : 0xffff92801343dbc0 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff92801343dbc0 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 5082.5082 (syz-executor.0) @ 0xffff928013f83780, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:fork1+0x365 sys/kern/kern_fork.c:366)
lock address : ffff928012c50750
type : sleep/adaptive
initialized : netbsd:fork1+0x365
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff928013f83780 last held: 0xffff928013f83780
last locked* : netbsd:exit1+0x2f2
unlocked : 0
owner/count : 0xffff928013f83780 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 5556.5556 (syz-executor.5) @ 0xffff928013490180, l_stat=2

*** Locks held:

* Lock 0 (initialized at netbsd:kcov_open+0x40 sys/kern/subr_kcov.c:461)
lock address : ffff928014657dc0
type : sleep/adaptive
initialized : netbsd:kcov_open+0x40
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff928013490180 last held: 0xffff928013490180
last locked* : netbsd:kcov_fops_ioctl+0x28
unlocked : 0
owner field : 0xffff928013490180 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

* Lock 1 (initialized at netbsd:uvm_obj_init+0x9a sys/uvm/uvm_object.c:70)
lock address : ffff9280145fb580
type : sleep/adaptive
initialized : netbsd:uvm_obj_init+0x9a
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff928013490180 last held: 0xffff928013490180
last locked* : netbsd:uvm_fault_internal+0x3f45
unlocked : netbsd:uao_get+0x3bd
owner/count : 0xffff928013490180 flags : 0x0000000000000004
Turnstile: no active turnstile for this lock.

*** Locks wanted: none

****** LWP 744.744 (dhcpcd) @ 0xffff928012c49b40, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff928012c49b40 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 559.559 (dhcpcd) @ 0xffff928012c948c0, l_stat=2

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff928012c948c0 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 292.292 (dhcpcd) @ 0xffff928012d8e900, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff928012d8e900 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 485.485 (dhcpcd) @ 0xffff928012d8e4c0, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff928012d8e4c0 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.122 (rt_free) @ 0xffff9280128699c0, l_stat=7

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:main+0x11e sys/kern/init_main.c:304)
lock address : netbsd:kernel_lock
type : spin
initialized : netbsd:main+0x11e
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 1
relevant cpu : 0 last held: 1
relevant lwp : 0xffff9280128699c0 last held: 0xffff92801343dbc0
last locked* : netbsd:sleepq_block+0x5d7
unlocked : netbsd:route_intr+0x158
curcpu holds : 3 wanted by: 000000000000000000

****** LWP 0.26 (softclk/1) @ 0xffff928010cac240, l_stat=1

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 0
relevant lwp : 0xffff928010cac240 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.11 (iflnkst) @ 0xffff92800fb4a100, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff92800fb4a100 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.5 (softclk/0) @ 0xffff92800fb32080, l_stat=7

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffff92800fb32080 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

****** LWP 0.0 (swapper) @ 0xffffffff83350200, l_stat=3

*** Locks held: none

*** Locks wanted:

* Lock 0 (initialized at netbsd:module_hook_init+0x1c sys/kern/kern_module_hook.c:132)
lock address : netbsd:module_hook
type : sleep/adaptive
initialized : netbsd:module_hook_init+0x1c
shared holds : 0 exclusive: 0
shares wanted: 0 exclusive: 0
relevant cpu : 0 last held: 0
relevant lwp : 0xffffffff83350200 last held: 000000000000000000
last locked : 0
unlocked* : 0
owner field : 000000000000000000 wait/spin: 0/0
Turnstile: no active turnstile for this lock.

[Locks tracked through CPUs]

******* Locks held on cpu1:

* Lock 0 (initialized at netbsd:main+0x11e sys/kern/init_main.c:304)
lock address : netbsd:kernel_lock
type : spin
initialized : netbsd:main+0x11e
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 1
relevant cpu : 1 last held: 1
relevant lwp : 0xffff92801343dbc0 last held: 0xffff92801343dbc0
last locked* : netbsd:sleepq_block+0x5d7
unlocked : netbsd:route_intr+0x158
curcpu holds : 3 wanted by: 000000000000000000

* Lock 1 (initialized at netbsd:kprintf_init+0x61 sys/kern/subr_prf.c:156)
lock address : netbsd:kprintf_mtx
type : spin
initialized : netbsd:kprintf_init+0x61
shared holds : 0 exclusive: 1
shares wanted: 0 exclusive: 0
relevant cpu : 1 last held: 1
relevant lwp : 0xffff92801343dbc0 last held: 0xffff92801343dbc0
last locked* : netbsd:kprintf_lock+0x33
unlocked : netbsd:kprintf_unlock+0x53
owner field : 0x0000000000000800 wait/spin: 0/1

PAGE FLAG PQ UOBJECT UANON
0xffff928000017180 0041 00000000 0x0 0x0
0xffff928000017200 0041 00000000 0x0 0x0
0xffff928000017280 0041 00000000 0x0 0x0
0xffff928000017300 0041 00000000 0x0 0x0
0xffff928000017380 0041 00000000 0x0 0x0
0xffff928000017400 0041 00000000 0x0 0x0
0xffff928000017480 0041 00000000 0x0 0x0
0xffff928000017500 0041 00000000 0x0 0x0
0xffff928000017580 0041 00000000 0x0 0x0
0xffff928000017600 0041 00000000 0x0 0x0
0xffff928000017680 0041 00000000 0x0 0x0
0xffff928000017700 0041 00000000 0x0 0x0
0xffff928000017780 0041 00000000 0x0 0x0
0xffff928000017800 0041 00000000 0x0 0x0
0xffff928000017880 0041 00000000 0x0 0x0
0xffff928000017900 0041 00000000 0x0 0x0
0xffff928000017980 0041 00000000 0x0 0x0
0xffff928000017a00 0041 00000000 0x0 0x0
0xffff928000017a80 0041 00000000 0x0 0x0
0xffff928000017b00 0041 00000000 0x0 0x0
0xffff928000017b80 0041 00000000 0x0 0x0
0xffff928000017c00 0041 00000000 0x0 0x0
0xffff928000017c80 0041 00000000 0x0 0x0
0xffff928000017d00 0041 00000000 0x0 0x0
0xffff928000017d80 0041 00000000 0x0 0x0
0xffff928000017e00 0041 00000000 0x0 0x0
0xffff928000017e80 0041 00000000 0x0 0x0
0xffff928000017f00 0041 00000000 0x0 0x0
0xffff928000017f80 0041 00000000 0x0 0x0
0xffff928000018000 0041 00000000 0x0 0x0
0xffff928000018080 0041 00000000 0x0 0x0
0xffff928000018100 0041 00000000 0x0 0x0
0xffff928000018180 0041 00000000 0x0 0x0
0xffff928000018200 0041 00000000 0x0 0x0
0xffff928000018280 0041 00000000 0x0 0x0
0xffff928000018300 0041 00000000 0x0 0x0
0xffff928000018380 0041 00000000 0x0 0x0
0xffff928000018400 0041 00000000 0x0 0x0
0xffff928000018480 0041 00000000 0x0 0x0
0xffff928000018500 0041 00000000 0x0 0x0
0xffff928000018580 0041 00000000 0x0 0x0
0xffff928000018600 0041 00000000 0x0 0x0
0xffff928000018680 0041 00000000 0x0 0x0
0xffff928000018700 0041 00000000 0x0 0x0
0xffff928000018780 0041 00000000 0x0 0x0
0xffff928000018800 0041 00000000 0x0 0x0
0xffff928000018880 0041 00000000 0x0 0x0
0xffff928000018900 0041 00000000 0x0 0x0
0xffff928000018980 0041 00000000 0x0 0x0
0xffff928000018a00 0041 00000000 0x0 0x0
0xffff928000018a80 0041 00000000 0x0 0x0
0xffff928000018b00 0041 00000000 0x0 0x0
0xffff928000018b80 0041 00000000 0x0 0x0
0xffff928000018c00 0041 00000000 0x0 0x0
0xffff928000018c80 0041 00000000 0x0 0x0
0xffff928000018d00 0041 00000000 0x0 0x0
0xffff928000018d80 0041 00000000 0x0 0x0
0xffff928000018e00 0041 00000000 0x0 0x0
0xffff928000018e80 0041 00000000 0x0 0x0
0xffff928000018f00 0041 00000000 0x0 0x0
0xffff928000018f80 0041 00000000 0x0 0x0
0xffff928000019000 0041 00000000 0x0 0x0
0xffff928000019080 0041 00000000 0x0 0x0
0xffff928000019100 0041 00000000 0x0 0x0
0xffff928000019180 0041 00000000 0x0 0x0
0xffff928000019200 0041 00000000 0x0 0x0
0xffff928000019280 0041 00000000 0x0 0x0
0xffff928000019300 0041 00000000 0x0 0x0
0xffff928000019380 0041 00000000 0x0 0x0
0xffff928000019400 0041 00000000 0x0 0x0
0xffff928000019480 0041 00000000 0x0 0x0
0xffff928000019500 0041 00000000 0x0 0x0
0xffff928000019580 0041 00000000 0x0 0x0
0xffff928000019600 0041 00000000 0x0 0x0
0xffff928000019680 0041 00000000 0x0 0x0
0xffff928000019700 0041 00000000 0x0 0x0
0xffff928000019780 0041 00000000 0x0 0x0
0xffff928000019800 0041 00000000 0x0 0x0
0xffff928000019880 0041 00000000 0x0 0x0
0xffff928000019900 0041 00000000 0x0 0x0
0xffff928000019980 0041 00000000 0x0 0x0
0xffff928000019a00 0041 00000000 0x0 0x0
0xffff928000019a80 0041 00000000 0x0 0x0
0xffff928000019b00 0041 00000000 0x0 0x0
0xffff928000019b80 0041 00000000 0x0 0x0
0xffff928000019c00 0041 00000000 0x0 0x0
0xffff928000019c80 0041 00000000 0x0 0x0
0xffff928000019d00 0041 00000000 0x0 0x0
0xffff928000019d80 0041 00000000 0x0 0x0
0xffff928000019e00 0041 00000000 0x0 0x0
0xffff928000019e80 0041 00000000 0x0 0x0
0xffff928000019f00 0041 00000000 0x0 0x0
0xffff928000019f80 0041 00000000 0x0 0x0
0xffff92800001a000 0041 00000000 0x0 0x0
0xffff92800001a080 0041 00000000 0x0 0x0
0xffff92800001a100 0041 00000000 0x0 0x0
0xffff92800001a180 0041 00000000 0x0 0x0
0xffff92800001a200 0041 00000000 0x0 0x0
0xffff92800001a280 0041 00000000 0x0 0x0
0xffff92800001a300 0041 00000000 0x0 0x0
0xffff92800001a380 0041 00000000 0x0 0x0
0xffff92800001a400 0041 00000000 0x0 0x0
0xffff92800001a480 0041 00000000 0x0 0x0
0xffff92800001a500 0041 00000000 0x0 0x0
0xffff92800001a580 0041 00000000 0x0 0x0
0xffff92800001a600 0041 00000000 0x0 0x0
0xffff92800001a680 0041 00000000 0x0 0x0
0xffff92800001a700 0041 00000000 0x0 0x0
0xffff92800001a780 0041 00000000 0x0 0x0
0xffff92800001a800 0041 00000000 0x0 0x0
0xffff92800001a880 0041 00000000 0x0 0x0
0xffff92800001a900 0041 00000000 0x0 0x0
0xffff92800001a980 0041 00000000 0x0 0x0
0xffff92800001aa00 0041 00000000 0x0 0x0
0xffff92800001aa80 0041 00000000 0x0 0x0
0xffff92800001ab00 0041 00000000 0x0 0x0
0xffff92800001ab80 0041 00000000 0x0 0x0
0xffff92800001ac00 0041 00000000 0x0 0x0
0xffff92800001ac80 0041 00000000 0x0 0x0
0xffff92800001ad00 0041 00000000 0x0 0x0
0xffff92800001ad80 0041 00000000 0x0 0x0
0xffff92800001ae00 0041 00000000 0x0 0x0
0xffff92800001ae80 0041 00000000 0x0 0x0
0xffff92800001af00 0041 00000000 0x0 0x0
0xffff92800001af80 0041 00000000 0x0 0x0
0xffff92800001b000 0041 00000000 0x0 0x0
0xffff92800001b080 0041 00000000 0x0 0x0
0xffff92800001b100 0041 00000000 0x0 0x0
0xffff92800001b180 0041 00000000 0x0 0x0
0xffff92800001b200 0041 00000000 0x0 0x0
0xffff92800001b280 0041 00000000 0x0 0x0
0xffff92800001b300 0041 00000000 0x0 0x0
0xffff92800001b380 0041 00000000 0x0 0x0
0xffff92800001b400 0041 00000000 0x0 0x0
0xffff92800001b480 0041 00000000 0x0 0x0
0xffff92800001b500 0041 00000000 0x0 0x0
0xffff92800001b580 0041 00000000 0x0 0x0
0xffff92800001b600 0041 00000000 0x0 0x0
0xffff92800001b680 0041 00000000 0x0 0x0
0xffff92800001b700 0041 00000000 0x0 0x0
0xffff92800001b780 0041 00000000 0x0 0x0
0xffff92800001b800 0041 00000000 0x0 0x0
0xffff92800001b880 0041 00000000 0x0 0x0
0xffff92800001b900 0041 00000000 0x0 0x0
0xffff92800001b980 0041 00000000 0x0 0x0
0xffff92800001ba00 0041 00000000 0x0 0x0
0xffff92800001ba80 0041 00000000 0x0 0x0
0xffff92800001bb00 0001 00000000 0x0 0x0
0xffff92800001bb80 0001 00000000 0x0 0x0
0xffff92800001bc00 0001 00000000 0x0 0x0
0xffff92800001bc80 0001 00000000 0x0 0x0
0xffff92800001bd00 0001 00000000 0x0 0x0
0xffff92800001bd80 0001 00000000 0x0 0x0
0xffff92800001be00 0001 00000000 0x0 0x0
0xffff92800001be80 0001 00000000 0x0 0x0
0xffff92800001bf00 0001 00000000 0x0 0x0
0xffff92800001bf80 0001 00000000 0x0 0x0
0xffff92800001c000 0001 00000000 0x0 0x0
0xffff92800001c080 0001 00000000 0x0 0x0
0xffff92800001c100 0001 00000000 0x0 0x0
0xffff92800001c180 0001 00000000 0x0 0x0
0xffff92800001c200 0001 00000000 0x0 0x0
0xffff92800001c280 0001 00000000 0x0 0x0
0xffff92800001c300 0001 00000000 0x0 0x0
0xffff92800001c380 0001 00000000 0x0 0x0
0xffff92800001c400 0001 00000000 0x0 0x0
0xffff92800001c480 0001 00000000 0x0 0x0
0xffff92800001c500 0001 00000000 0x0 0x0
0xffff92800001c580 0001 00000000 0x0 0x0
0xffff92800001c600 0001 00000000 0x0 0x0
0xffff92800001c680 0001 00000000 0x0 0x0
0xffff92800001c700 0001 00000000 0x0 0x0
0xffff92800001c780 0001 00000000 0x0 0x0
0xffff92800001c800 0001 00000000 0x0 0x0
0xffff92800001c880 0001 00000000 0x0 0x0
0xffff92800001c900 0001 00000000 0x0 0x0
0xffff92800001c980 0001 00000000 0x0 0x0
0xffff92800001ca00 0001 00000000 0x0 0x0
0xffff92800001ca80 0001 00000000 0x0 0x0
0xffff92800001cb00 0001 00000000 0x0 0x0
0xffff92800001cb80 0001 00000000 0x0 0x0
0xffff92800001cc00 0001 00000000 0x0 0x0
0xffff92800001cc80 0001 00000000 0x0 0x0
0xffff92800001cd00 0001 00000000 0x0 0x0
0xffff92800001cd80 0001 00000000 0x0 0x0
0xffff92800001ce00 0001 00000000 0x0 0x0
0xffff92800001ce80 0001 00000000 0x0 0x0
0xffff92800001cf00 0001 00000000 0x0 0x0
0xffff92800001cf80 0001 00000000 0x0 0x0
0xffff92800001d000 0001 00000000 0x0 0x0
0xffff92800001d080 0001 00000000 0x0 0x0
0xffff92800001d100 0001 00000000 0x0 0x0
0xffff92800001d180 0001 00000000 0x0 0x0
0xffff92800001d200 0001 00000000 0x0 0x0
0xffff92800001d280 0001 00000000 0x0 0x0
0xffff92800001d300 0001 00000000 0x0 0x0
0xffff92800001d380 0001 00000000 0x0 0x0
0xffff92800001d400 0001 00000000 0x0 0x0
0xffff92800001d480 0001 00000000 0x0 0x0
0xffff92800001d500 0001 00000000 0x0 0x0
0xffff92800001d580 0001 00000000 0x0 0x0
0xffff92800001d600 0001 00000000 0x0 0x0
0xffff92800001d680 0001 00000000 0x0 0x0
0xffff92800001d700 0001 00000000 0x0 0x0
0xffff92800001d780 0001 00000000 0x0 0x0
0xffff92800001d800 0001 00000000 0x0 0x0
0xffff92800001d880 0001 00000000 0x0 0x0
0xffff92800001d900 0001 00000000 0x0 0x0
0xffff92800001d980 0001 00000000 0x0 0x0
0xffff92800001da00 0001 00000000 0x0 0x0
0xffff92800001da80 0001 00000000 0x0 0x0
0xffff92800001db00 0001 00000000 0x0 0x0
0xffff92800001db80 0001 00000000 0x0 0x0
0xffff92800001dc00 0001 00000000 0x0 0x0
0xffff92800001dc80 0001 00000000 0x0 0x0
0xffff92800001dd00 0001 00000000 0x0 0x0
0xffff92800001dd80 0001 00000000 0x0 0x0
0xffff92800001de00 0001 00000000 0x0 0x0
0xffff92800001de80 0001 00000000 0x0 0x0
0xffff92800001df00 0001 00000000 0x0 0x0
0xffff92800001df80 0001 00000000 0x0 0x0
0xffff92800001e000 0001 00000000 0x0 0x0
0xffff92800001e080 0001 00000000 0x0 0x0
0xffff92800001e100 0001 00000000 0x0 0x0
0xffff92800001e180 0001 00000000 0x0 0x0
0xffff92800001e200 0001 00000000 0x0 0x0
0xffff92800001e280 0001 00000000 0x0 0x0
0xffff92800001e300 0001 00000000 0x0 0x0
0xffff92800001e380 0001 00000000 0x0 0x0
0xffff92800001e400 0001 00000000 0x0 0x0
0xffff92800001e480 0001 00000000 0x0 0x0
0xffff92800001e500 0001 00000000 0x0 0x0
0xffff92800001e580 0001 00000000 0x0 0x0
0xffff92800001e600 0001 00000000 0x0 0x0
0xffff92800001e680 0001 00000000 0x0 0x0
0xffff92800001e700 0001 00000000 0x0 0x0
0xffff92800001e780 0001 00000000 0x0 0x0
0xffff92800001e800 0001 00000000 0x0 0x0
0xffff92800001e880 0001 00000000 0x0 0x0
0xffff92800001e900 0001 00000000 0x0 0x0
0xffff92800001e980 0001 00000000 0x0 0x0
0xffff92800001ea00 0001 00000000 0x0 0x0
0xffff92800001ea80 0001 00000000 0x0 0x0
0xffff92800001eb00 0001 00000000 0x0 0x0
0xffff92800001eb80 0001 00000000 0x0 0x0
0xffff92800001ec00 0001 00000000 0x0 0x0
0xffff92800001ec80 0001 00000000 0x0 0x0
0xffff92800001ed00 0001 00000000 0x0 0x0
0xffff92800001ed80 0001 00000000 0x0 0x0
0xffff92800001ee00 0001 00000000 0x0 0x0
0xffff92800001ee80 0001 00000000 0x0 0x0
0xffff92800001ef00 0001 00000000 0x0 0x0
0xffff92800001ef80 0001 00000000 0x0 0x0
0xffff92800001f000 0001 00000000 0x0 0x0
0xffff92800001f080 0001 00000000 0x0 0x0
0xffff92800001f100 0001 00000000 0x0 0x0
0xffff92800001f180 0001 00000000 0x0 0x0
0xffff92800001f200 0001 00000000 0x0 0x0
0xffff92800001f280 0001 00000000 0x0 0x0
0xffff92800001f300 0001 00000000 0x0 0x0
0xffff92800001f380 0001 00000000 0x0 0x0
0xffff92800001f400 0001 00000000 0x0 0x0
0xffff92800001f480 0001 00000000 0x0 0x0
0xffff92800001f500 0001 00000000 0x0 0x0
0xffff92800001f580 0001 00000000 0x0 0x0
0xffff92800001f600 0001 00000000 0x0 0x0
0xffff92800001f680 0001 00000000 0x0 0x0
0xffff92800001f700 0001 00000000 0x0 0x0
0xffff92800001f780 0001 00000000 0x0 0x0
0xffff92800001f800 0001 00000000 0x0 0x0
0xffff92800001f880 0001 00000000 0x0 0x0
0xffff92800001f900 0001 00000000 0x0 0x0
0xffff92800001f980 0001 00000000 0x0 0x0
0xffff92800001fa00 0001 00000000 0x0 0x0
0xffff92800001fa80 0001 00000000 0x0 0x0
0xffff92800001fb00 0001 00000000 0x0 0x0
0xffff92800001fb80 0001 00000000 0x0 0x0
0xffff92800001fc00 0001 00000000 0x0 0x0
0xffff92800001fc80 0001 00000000 0x0 0x0
0xffff92800001fd00 0001 00000000 0x0 0x0
0xffff92800001fd80 0001 00000000 0x0 0x0
0xffff92800001fe00 0001 00000000 0x0 0x0
0xffff92800001fe80 0001 00000000 0x0 0x0
0xffff92800001ff00 0001 00000000 0x0 0x0
0xffff92800001ff80 0001 00000000 0x0 0x0
0xffff928000020000 0001 00000000 0x0 0x0
0xffff928000020080 0001 00000000 0x0 0x0
0xffff928000020100 0001 00000000 0x0 0x0
0xffff928000020180 0001 00000000 0x0 0x0
0xffff928000020200 0001 00000000 0x0 0x0
0xffff928000020280 0001 00000000 0x0 0x0
0xffff928000020300 0001 00000000 0x0 0x0
0xffff928000020380 0001 00000000 0x0 0x0
0xffff928000020400 0001 00000000 0x0 0x0
0xffff928000020480 0001 00000000 0x0 0x0
0xffff928000020500 0001 00000000 0x0 0x0
0xffff928000020580 0001 00000000 0x0 0x0
0xffff928000020600 0001 00000000 0x0 0x0
0xffff928000020680 0001 00000000 0x0 0x0
0xffff928000020700 0001 00000000 0x0 0x0
0xffff928000020780 0001 00000000 0x0 0x0
0xffff928000020800 0001 00000000 0x0 0x0
0xffff928000020880 0001 00000000 0x0 0x0
0xffff928000020900 0001 00000000 0x0 0x0
0xffff928000020980 0001 00000000 0x0 0x0
0xffff928000020a00 0001 00000000 0x0 0x0
0xffff928000020a80 0001 00000000 0x0 0x0
0xffff928000020b00 0001 00000000 0x0 0x0
0xffff928000020b80 0001 00000000 0x0 0x0
0xffff928000020c00 0001 00000000 0x0 0x0
0xffff928000020c80 0001 00000000 0x0 0x0
0xffff928000020d00 0001 00000000 0x0 0x0
0xffff928000020d80 0001 00000000 0x0 0x0
0xffff928000020e00 0001 00000000 0x0 0x0
0xffff928000020e80 0001 00000000 0x0 0x0
0xffff928000020f00 0001 00000000 0x0 0x0
0xffff928000020f80 0001 00000000 0x0 0x0
0xffff928000021000 0001 00000000 0x0 0x0
0xffff928000021080 0001 00000000 0x0 0x0
0xffff928000021100 0001 00000000 0x0 0x0
0xffff928000021180 0001 00000000 0x0 0x0
0xffff928000021200 0001 00000000 0x0 0x0
0xffff928000021280 0001 00000000 0x0 0x0
0xffff928000021300 0001 00000000 0x0 0x0
0xffff928000021380 0001 00000000 0x0 0x0
0xffff928000021400 0001 00000000 0x0 0x0
0xffff928000021480 0001 00000000 0x0 0x0
0xffff928000021500 0001 00000000 0x0 0x0
0xffff928000021580 0001 00000000 0x0 0x0
0xffff928000021600 0001 00000000 0x0 0x0
0xffff928000021680 0001 00000000 0x0 0x0
0xffff928000021700 0001 00000000 0x0 0x0
0xffff928000021780 0001 00000000 0x0 0x0
0xffff928000021800 0001 00000000 0x0 0x0
0xffff928000021880 0001 00000000 0x0 0x0
0xffff928000021900 0001 00000000 0x0 0x0
0xffff928000021980 0001 00000000 0x0 0x0
0xffff928000021a00 0001 00000000 0x0 0x0
0xffff928000021a80 0001 00000000 0x0 0x0
0xffff928000021b00 0001 00000000 0x0 0x0
0xffff928000021b80 0001 00000000 0x0 0x0
0xffff928000021c00 0001 00000000 0x0 0x0
0xffff928000021c80 0001 00000000 0x0 0x0
0xffff928000021d00 0001 00000000 0x0 0x0
0xffff928000021d80 0001 00000000 0x0 0x0
0xffff928000021e00 0001 00000000 0x0 0x0
0xffff928000021e80 0001 00000000 0x0 0x0
0xffff928000021f00 0001 00000000 0x0 0x0
0xffff928000021f80 0001 00000000 0x0 0x0
0xffff928000022000 0001 00000000 0x0 0x0
0xffff928000022080 0001 00000000 0x0 0x0
0xffff928000022100 0001 00000000 0x0 0x0
0xffff928000022180 0001 00000000 0x0 0x0
0xffff928000022200 0001 00000000 0x0 0x0
0xffff928000022280 0001 00000000 0x0 0x0
0xffff928000022300 0001 00000000 0x0 0x0
0xffff928000022380 0001 00000000 0x0 0x0
0xffff928000022400 0001 00000000 0x0 0x0
0xffff928000022480 0001 00000000 0x0 0x0
0xffff928000022500 0001 00000000 0x0 0x0
0xffff928000022580 0001 00000000 0x0 0x0
0xffff928000022600 0001 00000000 0x0 0x0
0xffff928000022680 0001 00000000 0x0 0x0
0xffff928000022700 0001 00000000 0x0 0x0
0xffff928000022780 0001 00000000 0x0 0x0
0xffff928000022800 0001 00000000 0x0 0x0
0xffff928000022880 0001 00000000 0x0 0x0
0xffff928000022900 0001 00000000 0x0 0x0
0xffff928000022980 0001 00000000 0x0 0x0
0xffff928000022a00 0001 00000000 0x0 0x0
0xffff928000022a80 0001 00000000 0x0 0x0
0xffff928000022b00 0001 00000000 0x0 0x0
0xffff928000022b80 0001 00000000 0x0 0x0
0xffff928000022c00 0001 00000000 0x0 0x0
0xffff928000022c80 0001 00000000 0x0 0x0
0xffff928000022d00 0001 00000000 0x0 0x0
0xffff928000022d80 0001 00000000 0x0 0x0
0xffff928000022e00 0001 00000000 0x0 0x0
0xffff928000022e80 0001 00000000 0x0 0x0
0xffff928000022f00 0001 00000000 0x0 0x0
0xffff928000022f80 0001 00000000 0x0 0x0
0xffff928000023000 0001 00000000 0x0 0x0
0xffff928000023080 0001 00000000 0x0 0x0
0xffff928000023100 0001 00000000 0x0 0x0
0xffff928000023180 0001 00000000 0x0 0x0
0xffff928000023200 0001 00000000 0x0 0x0
0xffff928000023280 0001 00000000 0x0 0x0
0xffff928000023300 0001 00000000 0x0 0x0
0xffff928000023380 0001 00000000 0x0 0x0
0xffff928000023400 0001 00000000 0x0 0x0
0xffff928000023480 0001 00000000 0x0 0x0
0xffff928000023500 0001 00000000 0x0 0x0
0xffff928000023580 0001 00000000 0x0 0x0
0xffff928000023600 0001 00000000 0x0 0x0
0xffff928000023680 0001 00000000 0x0 0x0
0xffff928000023700 0001 00000000 0x0 0x0
0xffff928000023780 0001 00000000 0x0 0x0
0xffff928000023800 0001 00000000 0x0 0x0
0xffff928000023880 0001 00000000 0x0 0x0
0xffff928000023900 0001 00000000 0x0 0x0
0xffff928000023980 0001 00000000 0x0 0x0
0xffff928000023a00 0001 00000000 0x0 0x0
0xffff928000023a80 0001 00000000 0x0 0x0
0xffff928000023b00 0001 00000000 0x0 0x0
0xffff928000023b80 0001 00000000 0x0 0x0
0xffff928000023c00 0001 00000000 0x0 0x0
0xffff928000023c80 0001 00000000 0x0 0x0
0xffff928000023d00 0001 00000000 0x0 0x0
0xffff928000023d80 0001 00000000 0x0 0x0
0xffff928000023e00 0001 00000000 0x0 0x0
0xffff928000023e80 0001 00000000 0x0 0x0
0xffff928000023f00 0001 00000000 0x0 0x0
0xffff928000023f80 0001 00000000 0x0 0x0
0xffff928000024000 0001 00000000 0x0 0x0
0xffff928000024080 0001 00000000 0x0 0x0
0xffff928000024100 0001 00000000 0x0 0x0
0xffff928000024180 0001 00000000 0x0 0x0
0xffff928000024200 0001 00000000 0x0 0x0
0xffff928000024280 0001 00000000 0x0 0x0
0xffff928000024300 0001 00000000 0x0 0x0
0xffff928000024380 0001 00000000 0x0 0x0
0xffff928000024400 0001 00000000 0x0 0x0
0xffff928000024480 0001 00000000 0x0 0x0
0xffff928000024500 0001 00000000 0x0 0x0
0xffff928000024580 0001 00000000 0x0 0x0
0xffff928000024600 0001 00000000 0x0 0x0
0xffff928000024680 0001 00000000 0x0 0x0
0xffff928000024700 0001 00000000 0x0 0x0
0xffff928000024780 0001 00000000 0x0 0x0
0xffff928000024800 0001 00000000 0x0 0x0
0xffff928000024880 0001 00000000 0x0 0x0
0xffff928000024900 0001 00000000 0x0 0x0
0xffff928000024980 0001 00000000 0x0 0x0
0xffff928000024a00 0001 00000000 0x0 0x0
0xffff928000024a80 0001 00000000 0x0 0x0
0xffff928000024b00 0001 00000000 0x0 0x0
0xffff928000024b80 0001 00000000 0x0 0x0
0xffff928000024c00 0001 00000000 0x0 0x0
0xffff928000024c80 0001 00000000 0x0 0x0
0xffff928000024d00 0001 00000000 0x0 0x0
0xffff928000024d80 0001 00000000 0x0 0x0
0xffff928000024e00 0001 00000000 0x0 0x0
0xffff928000024e80 0001 00000000 0x0 0x0
0xffff928000024f00 0001 00000000 0x0 0x0
0xffff928000024f80 0001 00000000 0x0 0x0
0xffff928000025000 0001 00000000 0x0 0x0
0xffff928000025080 0001 00000000 0x0 0x0
0xffff928000025100 0001 00000000 0x0 0x0
0xffff928000025180 0001 00000000 0x0 0x0
0xffff928000025200 0001 00000000 0x0 0x0
0xffff928000025280 0001 00000000 0x0 0x0
0xffff928000025300 0001 00000000 0x0 0x0
0xffff928000025380 0001 00000000 0x0 0x0
0xffff928000025400 0001 00000000 0x0 0x0
0xffff928000025480 0001 00000000 0x0 0x0
0xffff928000025500 0001 00000000 0x0 0x0
0xffff928000025580 0001 00000000 0x0 0x0
0xffff928000025600 0001 00000000 0x0 0x0
0xffff928000025680 0001 00000000 0x0 0x0
0xffff928000025700 0001 00000000 0x0 0x0
0xffff928000025780 0001 00000000 0x0 0x0
0xffff928000025800 0001 00000000 0x0 0x0
0xffff928000025880 0001 00000000 0x0 0x0
0xffff928000025900 0001 00000000 0x0 0x0
0xffff928000025980 0001 00000000 0x0 0x0
0xffff928000025a00 0001 00000000 0x0 0x0
0xffff928000025a80 0001 00000000 0x0 0x0
0xffff928000025b00 0001 00000000 0x0 0x0
0xffff928000025b80 0001 00000000 0x0 0x0
0xffff928000025c00 0001 00000000 0x0 0x0
0xffff928000025c80 0001 00000000 0x0 0x0
0xffff928000025d00 0001 00000000 0x0 0x0
0xffff928000025d80 0001 00000000 0x0 0x0
0xffff928000025e00 0001 00000000 0x0 0x0
0xffff928000025e80 0001 00000000 0x0 0x0
0xffff928000025f00 0001 00000000 0x0 0x0
0xffff928000025f80 0001 00000000 0x0 0x0
0xffff928000026000 0001 00000000 0x0 0x0
0xffff928000026080 0001 00000000 0x0 0x0
0xffff928000026100 0001 00000000 0x0 0x0
0xffff928000026180 0001 00000000 0x0 0x0
0xffff928000026200 0001 00000000 0x0 0x0
0xffff928000026280 0001 00000000 0x0 0x0
0xffff928000026300 0001 00000000 0x0 0x0
0xffff928000026380 0001 00000000 0x0 0x0
0xffff928000026400 0001 00000000 0x0 0x0
0xffff928000026480 0001 00000000 0x0 0x0
0xffff928000026500 0001 00000000 0x0 0x0
0xffff928000026580 0001 00000000 0x0 0x0
0xffff928000026600 0001 00000000 0x0 0x0
0xffff928000026680 0001 00000000 0x0 0x0
0xffff928000026700 0001 00000000 0x0 0x0
0xffff928000026780 0001 00000000 0x0 0x0
0xffff928000026800 0001 00000000 0x0 0x0
0xffff928000026880 0001 00000000 0x0 0x0
0xffff928000026900 0001 00000000 0x0 0x0
0xffff928000026980 0001 00000000 0x0 0x0
0xffff928000026a00 0001 00000000 0x0 0x0
0xffff928000026a80 0001 00000000 0x0 0x0
0xffff928000026b00 0001 00000000 0x0 0x0
0xffff928000026b80 0001 00000000 0x0 0x0
0xffff928000026c00 0001 00000000 0x0 0x0
0xffff928000026c80 0001 00000000 0x0 0x0
0xffff928000026d00 0001 00000000 0x0 0x0
0xffff928000026d80 0001 00000000 0x0 0x0
0xffff928000026e00 0001 00000000 0x0 0x0
0xffff928000026e80 0001 00000000 0x0 0x0
0xffff928000026f00 0001 00000000 0x0 0x0
0xffff928000026f80 0001 00000000 0x0 0x0
0xffff928000027000 0001 00000000 0x0 0x0
0xffff928000027080 0001 00000000 0x0 0x0
0xffff928000027100 0001 00000000 0x0 0x0
0xffff928000027180 0001 00000000 0x0 0x0
0xffff928000027200 0001 00000000 0x0 0x0
0xffff928000027280 0001 00000000 0x0 0x0
0xffff928000027300 0001 00000000 0x0 0x0
0xffff928000027380 0001 00000000 0x0 0x0
0xffff928000027400 0001 00000000 0x0 0x0
0xffff928000027480 0001 00000000 0x0 0x0
0xffff928000027500 0001 00000000 0x0 0x0
0xffff928

---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

If the report is already addressed, let syzbot know by replying with:
#syz fix: exact-commit-title

If you want to overwrite report's subsystems, reply with:
#syz set subsystems: new-subsystem
(See the list of subsystem names on the web dashboard)

If the report is a duplicate of another one, reply with:
#syz dup: exact-subject-of-another-report

If you want to undo deduplication, reply with:
#syz undup
Reply all
Reply to author
Forward
0 new messages