kernel: kernel relinking fa

2 views
Skip to first unread message

syzbot

unread,
Oct 11, 2018, 6:17:03 AM10/11/18
to syzkaller-o...@googlegroups.com
Hello,

syzbot found the following crash on:

HEAD commit: d32b24c8d7ea Switch prefixset to an RB_TREE instead of a S..
git tree: https://github.com/openbsd/src.git master
console output: https://syzkaller.appspot.com/x/log.txt?x=137a6fda400000
dashboard link: https://syzkaller.appspot.com/bug?extid=097da0f5fa31ea5b4409
compiler:

Unfortunately, I don't have any reproducer for this crash yet.

IMPORTANT: if you fix the bug, please add the following tag to the commit:
Reported-by: syzbot+097da0...@syzkaller.appspotmail.com

reorder_kernel: kernel relinking fa
OpenBSD/amd64 (syzkaller.my.domain) (tty00)

login:

OpenBSD/amd64 (syzkaller.my.domain) (tty00)

Warning: Permanently added '100.64.3.3' (ECDSA) to the list of known hosts.
login: trace
Password:
Login incorrect
2018/09/20 14:39:10 fuzzer started
2018/09/20 14:39:14 dialing manager at 100.64.3.2:28232
2018/09/20 14:39:14 syscalls: 1
2018/09/20 14:39:14 code coverage: enabled
2018/09/20 14:39:14 comparison tracing: support is not implemented in
syzkaller
2018/09/20 14:39:14 setuid sandbox: support is not implemented in syzkaller
2018/09/20 14:39:14 namespace sandbox: support is not implemented in
syzkaller
2018/09/20 14:39:14 Android sandbox: support is not implemented in syzkaller
2018/09/20 14:39:14 fault injection: support is not implemented in syzkaller
2018/09/20 14:39:14 leak checking: support is not implemented in syzkaller
2018/09/20 14:39:14 net packed injection: support is not implemented in
syzkaller
2018/09/20 14:39:14 net device setup: support is not implemented in
syzkaller
14:39:16 executing program 1:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)

14:39:16 executing program 0:
r0 = syz_open_pts()
ioctl$TIOCSETAW(r0, 0x802c7415, &(0x7f0000000040)={0x0, 0x0, 0x0,
0x0, "ea241458927000f3ee098cadc7c8de9fd82c6aa4", 0x0, 0x80000001})

14:39:17 executing program 0:
r0 = syz_open_pts()
ioctl$TIOCSETAW(r0, 0x802c7415, &(0x7f0000000040)={0x0, 0x0, 0x0,
0x0, "ea241458927000f3ee098cadc7c8de9fd82c6aa4", 0x0, 0x80000001})

14:39:18 executing program 1:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)

14:39:18 executing program 0:
r0 = syz_open_pts()
ioctl$TIOCSETAW(r0, 0x802c7415, &(0x7f0000000040)={0x0, 0x0, 0x0,
0x0, "ea241458927000f3ee098cadc7c8de9fd82c6aa4", 0x0, 0x80000001})

14:39:18 executing program 0:
r0 = syz_open_pts()
ioctl$TIOCSETAW(r0, 0x802c7415, &(0x7f0000000040)={0x0, 0x0, 0x0,
0x0, "ea241458927000f3ee098cadc7c8de9fd82c6aa4", 0x0, 0x80000001})

14:39:18 executing program 0:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)

14:39:18 executing program 1:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)

14:39:18 executing program 0:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)

14:39:19 executing program 0:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)

14:39:19 executing program 1:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)

14:39:19 executing program 0:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)

14:39:19 executing program 1:
r0 = syz_open_pts()
ioctl$TIOCSETAW(r0, 0x802c7415, &(0x7f0000000040)={0x0, 0x0, 0x0,
0x0, "ea241458927000f3ee098cadc7c8de9fd82c6aa4", 0x0, 0x80000001})

14:39:20 executing program 0:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)

14:39:20 executing program 1:
r0 = syz_open_pts()
ioctl$TIOCSETAW(r0, 0x802c7415, &(0x7f0000000040)={0x0, 0x0, 0x0,
0x0, "ea241458927000f3ee098cadc7c8de9fd82c6aa4", 0x0, 0x80000001})

14:39:20 executing program 0:
r0 = kqueue()
kevent(r0, &(0x7f0000000140)=[{}, {{}, 0xfffffffffffffff9, 0x1}], 0x7,
&(0x7f0000000240), 0x7, &(0x7f0000000280))
close(r0)



---
This bug is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this bug report. See:
https://goo.gl/tpsmEJ#bug-status-tracking for how to communicate with
syzbot.
Reply all
Reply to author
Forward
0 new messages