pool: cpu free list modified: mbufpl (2)

2 views
Skip to first unread message

syzbot

unread,
Jun 24, 2022, 3:58:23 PM6/24/22
to syzkaller-o...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 6cd7ecd82903 Roll back previous KEX changes as they aren't..
git tree: openbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=171e519bf00000
kernel config: https://syzkaller.appspot.com/x/.config?x=7058272de1526588
dashboard link: https://syzkaller.appspot.com/bug?extid=06f91a7be688c82810b9

Unfortunately, I don't have any reproducer for this issue yet.

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+06f91a...@syzkaller.appspotmail.com

panic: pool_cache_item_magic_check: mbufpl cpu free list modified: item addr 0xfffffd805eabfe00+16 0x0!=0x88ba5727dbeb6a5b
Starting stack trace...
panic(ffffffff8259c3be) at panic+0x16b sys/kern/subr_prf.c:233
pool_cache_get(ffffffff82a40b18) at pool_cache_get+0x313 sys/kern/subr_pool.c:1899
pool_get(ffffffff82a40b18,2) at pool_get+0x8f sys/kern/subr_pool.c:575
m_get(2,3) at m_get+0x63 sys/kern/uipc_mbuf.c:248
sbappendaddr(fffffd805fcc9978,fffffd805fcc9a30,ffffffff828ee8d0,fffffd806541ed00,0) at sbappendaddr+0x2da sys/kern/uipc_socket2.c:761
rtm_sendup(fffffd805fcc9978,fffffd806804b800) at rtm_sendup+0xdc sys/net/rtsock.c:600
route_input(fffffd806804b800,fffffd8066f90998,0) at route_input+0x197 sys/net/rtsock.c:578
route_output(fffffd806804b800,fffffd8066f90998,0,0) at route_output+0x8c8 sys/net/rtsock.c:898
route_usrreq(fffffd8066f90998,9,fffffd806804b800,0,0,ffff8000212122a0) at route_usrreq+0x398 sys/net/rtsock.c:283
sosend(fffffd8066f90998,0,ffff800024ca6b00,0,0,80) at sosend+0x61b sys/kern/uipc_socket.c:585
sendit(ffff8000212122a0,4,ffff800024ca6c00,0,ffff800024ca6cf0) at sendit+0x65d sys/kern/uipc_syscalls.c:653
sys_sendto(ffff8000212122a0,ffff800024ca6c98,ffff800024ca6cf0) at sys_sendto+0x80 sys/kern/uipc_syscalls.c:520
syscall(ffff800024ca6d60) at syscall+0x489 mi_syscall sys/sys/syscall_mi.h:102 [inline]
syscall(ffff800024ca6d60) at syscall+0x489 sys/arch/amd64/amd64/trap.c:585
Xsyscall() at Xsyscall+0x128
end of kernel
end trace frame: 0xadfaa07fca0, count: 243
End of stack trace.


---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

syzbot

unread,
Sep 22, 2022, 3:57:29 PM9/22/22
to syzkaller-o...@googlegroups.com
Auto-closing this bug as obsolete.
Crashes did not happen for a while, no reproducer and no activity.
Reply all
Reply to author
Forward
0 new messages