Hello,
syzbot found the following issue on:
HEAD commit: 86a45bbd35a5 timeout.9: document new interfaces, miscellan..
git tree: openbsd
console output:
https://syzkaller.appspot.com/x/log.txt?x=1574260c480000
kernel config:
https://syzkaller.appspot.com/x/.config?x=7058272de1526588
dashboard link:
https://syzkaller.appspot.com/bug?extid=f26faa051726a8fed517
Unfortunately, I don't have any reproducer for this issue yet.
Downloadable assets:
disk image:
https://storage.googleapis.com/syzbot-assets/9f8855afbd94/disk-86a45bbd.raw.xz
bsd.gdb:
https://storage.googleapis.com/syzbot-assets/d9d2b229fd1e/bsd-86a45bbd.gdb.xz
kernel image:
https://storage.googleapis.com/syzbot-assets/8ce6f80b244b/kernel-86a45bbd.xz
IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by:
syzbot+f26faa...@syzkaller.appspotmail.com
uvm_fault(0xfffffd806edffe68, 0x400000008, 0, 1) -> e
kernel: page fault trap, code=0
Stopped at witness_checkorder+0x1ef: movl 0x8(%r14),%ebx
TID PID UID PRFLAGS PFLAGS CPU COMMAND
*138899 86292 0 0x2 0x1 0K syz-executor.4
424382 4871 0 0x14000 0x200 1 reaper
witness_checkorder(fffffd806f03b208,9,0) at witness_checkorder+0x1ef sys/kern/subr_witness.c:789
rw_enter(fffffd806f03b1f8,1) at rw_enter+0xd1 sys/kern/kern_rwlock.c:250
rwsleep(fffffd806f03b338,fffffd806f03b1f8,118,ffffffff8261e0cc,0) at rwsleep+0x100 sys/kern/kern_synch.c:314
sosend(fffffd806f03b1f0,0,ffff8000261afd28,0,0,0) at sosend+0x7a8 sys/kern/uipc_socket.c:615
fifo_write(ffff8000261afc70) at fifo_write+0x7c sys/miscfs/fifofs/fifo_vnops.c:281
VOP_WRITE(fffffd8067ff26c8,ffff8000261afd28,3,fffffd807f7d76e8) at VOP_WRITE+0xbf sys/kern/vfs_vops.c:245
ktrwriteraw(ffff8000ffff4a88,fffffd8067ff26c8,fffffd807f7d76e8,ffff8000261afe08,ffff8000261afdd0) at ktrwriteraw+0x15f sys/kern/kern_ktrace.c:660
ktrsysret(ffff8000ffff4a88,b,0,ffff8000261aff00) at ktrsysret+0x18c ktrwrite2 sys/kern/kern_ktrace.c:625 [inline]
ktrsysret(ffff8000ffff4a88,b,0,ffff8000261aff00) at ktrsysret+0x18c sys/kern/kern_ktrace.c:207
syscall(ffff8000261aff80) at syscall+0x5d0 mi_syscall_return sys/sys/syscall_mi.h:131 [inline]
syscall(ffff8000261aff80) at syscall+0x5d0 sys/arch/amd64/amd64/trap.c:620
Xsyscall() at Xsyscall+0x128
end of kernel
end trace frame: 0x7f7fffff0f20, count: 5
https://www.openbsd.org/ddb.html describes the minimum info required in bug
reports. Insufficient info makes it difficult to find and fix bugs.
ddb{0}>
ddb{0}> set $lines = 0
ddb{0}> set $maxwidth = 0
ddb{0}> show panic
*cpu0: uvm_fault(0xfffffd806edffe68, 0x400000008, 0, 1) -> e
ddb{0}> trace
witness_checkorder(fffffd806f03b208,9,0) at witness_checkorder+0x1ef sys/kern/subr_witness.c:789
rw_enter(fffffd806f03b1f8,1) at rw_enter+0xd1 sys/kern/kern_rwlock.c:250
rwsleep(fffffd806f03b338,fffffd806f03b1f8,118,ffffffff8261e0cc,0) at rwsleep+0x100 sys/kern/kern_synch.c:314
sosend(fffffd806f03b1f0,0,ffff8000261afd28,0,0,0) at sosend+0x7a8 sys/kern/uipc_socket.c:615
fifo_write(ffff8000261afc70) at fifo_write+0x7c sys/miscfs/fifofs/fifo_vnops.c:281
VOP_WRITE(fffffd8067ff26c8,ffff8000261afd28,3,fffffd807f7d76e8) at VOP_WRITE+0xbf sys/kern/vfs_vops.c:245
ktrwriteraw(ffff8000ffff4a88,fffffd8067ff26c8,fffffd807f7d76e8,ffff8000261afe08,ffff8000261afdd0) at ktrwriteraw+0x15f sys/kern/kern_ktrace.c:660
ktrsysret(ffff8000ffff4a88,b,0,ffff8000261aff00) at ktrsysret+0x18c ktrwrite2 sys/kern/kern_ktrace.c:625 [inline]
ktrsysret(ffff8000ffff4a88,b,0,ffff8000261aff00) at ktrsysret+0x18c sys/kern/kern_ktrace.c:207
syscall(ffff8000261aff80) at syscall+0x5d0 mi_syscall_return sys/sys/syscall_mi.h:131 [inline]
syscall(ffff8000261aff80) at syscall+0x5d0 sys/arch/amd64/amd64/trap.c:620
Xsyscall() at Xsyscall+0x128
end of kernel
end trace frame: 0x7f7fffff0f20, count: -10
ddb{0}> show registers
rdi 0
rsi 0x20000 acpi_pdirpa+0xbe63
rbp 0xffff8000261af9e0
rbx 0xe
rdx 0
rcx 0
rax 0xffffffff82924ff0 cpu_info_full_primary+0x1ff0
r8 0x44b82fa09b5a53
r9 0
r10 0x64a2e29be9d804ab
r11 0xe6daf9e8d016d624
r12 0
r13 0xfffffd806f03b208
r14 0x400000000
r15 0xffff8000ffff4a88
rip 0xffffffff824ab3ef witness_checkorder+0x1ef
cs 0x8
rflags 0x10246 __ALIGN_SIZE+0xf246
rsp 0xffff8000261af930
ss 0x10
witness_checkorder+0x1ef: movl 0x8(%r14),%ebx
ddb{0}> show proc
PROC (syz-executor.4) pid=138899 stat=onproc
flags process=2<EXEC> proc=1<INKTR>
pri=24, usrpri=86, nice=20
forw=0xffffffffffffffff, list=0xffff8000ffff4548,0xffff8000212f4d40
process=0xffff80002129b250 user=0xffff8000261ab000, vmspace=0xfffffd806edffe68
estcpu=36, cpticks=3, pctcpu=0.3
user=0, sys=1, intr=0
ddb{0}> ps
PID TID PPID UID S FLAGS WAIT COMMAND
10690 36234 69455 0 3 0x80 nanoslp syz-executor.5
10690 457008 69455 0 3 0x4000080 fsleep syz-executor.5
10690 205424 69455 0 3 0x4000080 fsleep syz-executor.5
10690 243969 69455 0 2 0x4000000 syz-executor.5
85799 326575 31769 0 2 0x81000 syz-executor.7
85799 196803 31769 0 2 0x4081000 syz-executor.7
85799 300989 31769 0 2 0x4081000 syz-executor.7
85799 468556 31769 0 3 0x4003000 suspend syz-executor.7
85799 227922 31769 0 2 0x4081000 syz-executor.7
11069 191050 66995 0 2 0x4081000 syz-executor.6
11069 118833 66995 0 3 0x4003000 suspend syz-executor.6
47578 142373 4780 0 2 0 syz-executor.3
47578 293191 4780 0 2 0x4000081 syz-executor.3
7004 342498 15259 0 2 0 syz-executor.1
7004 281162 15259 0 2 0x4000000 syz-executor.1
66995 208643 32458 0 2 0x83 syz-executor.6
98833 344436 1 0 3 0x100083 ttyin getty
69455 228477 32458 0 2 0x83 syz-executor.5
31769 165426 32458 0 2 0x482 syz-executor.7
4780 428144 32458 0 2 0x83 syz-executor.3
55766 515853 32458 0 2 0x482 syz-executor.0
56178 152593 32458 0 2 0x83 syz-executor.2
15259 20879 32458 0 2 0x482 syz-executor.1
98028 154300 0 0 3 0x14280 nfsidl nfsio
53617 142906 0 0 3 0x14280 nfsidl nfsio
30243 393796 0 0 3 0x14280 nfsidl nfsio
53571 75502 0 0 3 0x14280 nfsidl nfsio
72914 154707 0 0 3 0x14280 nfsidl nfsio
68835 134462 0 0 3 0x14280 nfsidl nfsio
10144 159505 0 0 3 0x14280 nfsidl nfsio
32134 262194 0 0 3 0x14280 nfsidl nfsio
32419 14558 0 0 3 0x14280 nfsidl nfsio
55450 164547 0 0 3 0x14280 nfsidl nfsio
70756 180018 0 0 3 0x14280 nfsidl nfsio
4082 64026 0 0 3 0x14280 nfsidl nfsio
2721 350053 0 0 3 0x14280 nfsidl nfsio
57836 459439 0 0 3 0x14280 nfsidl nfsio
65167 240072 0 0 3 0x14280 nfsidl nfsio
34963 160761 0 0 3 0x14280 nfsidl nfsio
89844 460252 0 0 3 0x14280 nfsidl nfsio
72539 227639 0 0 3 0x14280 nfsidl nfsio
34220 430239 0 0 3 0x14280 nfsidl nfsio
64525 279279 0 0 3 0x14280 nfsidl nfsio
12828 87818 0 0 3 0x14200 acct acct
83876 162266 0 0 3 0x14200 bored sosplice
*86292 138899 32458 0 7 0x3 syz-executor.4
32458 477231 64481 0 3 0x82 thrsleep syz-fuzzer
32458 314801 64481 0 3 0x4000082 thrsleep syz-fuzzer
32458 230819 64481 0 3 0x4000082 wait syz-fuzzer
32458 86061 64481 0 3 0x4000082 thrsleep syz-fuzzer
32458 235602 64481 0 3 0x4000082 thrsleep syz-fuzzer
32458 299517 64481 0 3 0x4000082 wait syz-fuzzer
32458 170184 64481 0 3 0x4000082 thrsleep syz-fuzzer
32458 320017 64481 0 3 0x4000082 wait syz-fuzzer
32458 14524 64481 0 3 0x4000082 thrsleep syz-fuzzer
32458 231829 64481 0 3 0x4000082 thrsleep syz-fuzzer
32458 501996 64481 0 3 0x4000082 wait syz-fuzzer
32458 111873 64481 0 3 0x4000082 wait syz-fuzzer
32458 435974 64481 0 3 0x4000082 wait syz-fuzzer
32458 240634 64481 0 3 0x4000082 wait syz-fuzzer
32458 333581 64481 0 3 0x4000082 wait syz-fuzzer
32458 487070 64481 0 3 0x4000082 kqread syz-fuzzer
64481 423317 31959 0 3 0x10008a sigsusp ksh
31959 280331 4761 0 3 0x9a kqread sshd
4761 185691 1 0 3 0x88 kqread sshd
18146 270041 87306 74 3 0x1100092 bpf pflogd
87306 92786 1 0 3 0x80 netio pflogd
99955 335465 15408 73 3 0x1100090 kqread syslogd
15408 154083 1 0 3 0x100082 netio syslogd
84389 11511 1 0 3 0x100080 kqread resolvd
59982 291242 0 0 3 0x14200 bored smr
33443 179480 0 0 2 0x14200 zerothread
25954 368547 0 0 3 0x14200 aiodoned aiodoned
75577 350255 0 0 3 0x14200 syncer update
41488 482931 0 0 3 0x14200 cleaner cleaner
4871 424382 0 0 7 0x14200 reaper
1698 44069 0 0 3 0x14200 pgdaemon pagedaemon
46361 389845 0 0 3 0x14200 bored viomb
88373 315329 0 0 3 0x40014200 acpi0 acpi0
97030 266625 0 0 3 0x40014200 idle1
44836 15861 0 0 3 0x14200 bored softnet
41442 491685 0 0 3 0x14200 bored softnet
66552 310158 0 0 3 0x14200 bored softnet
71384 76978 0 0 3 0x14200 bored softnet
15476 287921 0 0 3 0x14200 bored systqmp
40151 350838 0 0 3 0x14200 bored systq
62550 309403 0 0 3 0x40014200 bored softclock
8424 80430 0 0 3 0x40014200 idle0
1 88959 0 0 3 0x82 wait init
0 0 -1 0 3 0x10200 scheduler swapper
ddb{0}> show all locks
Process 86292 (syz-executor.4) thread 0xffff8000ffff4a88 (138899)
exclusive kernel_lock &kernel_lock r = 1 (0xffffffff82aaf200)
#0 witness_lock+0x44d
#1 __mp_acquire_count+0x48 sys/kern/kern_lock.c:227
#2 mi_switch+0x3bb sys/kern/sched_bsd.c:415
#3 sleep_finish+0x180 sys/kern/kern_synch.c:417
#4 rwsleep+0xd5 sys/kern/kern_synch.c:311
#5 sosend+0x7a8 sys/kern/uipc_socket.c:615
#6 fifo_write+0x7c sys/miscfs/fifofs/fifo_vnops.c:281
#7 VOP_WRITE+0xbf sys/kern/vfs_vops.c:245
#8 ktrwriteraw+0x15f sys/kern/kern_ktrace.c:660
#9 ktrsysret+0x18c ktrwrite2 sys/kern/kern_ktrace.c:625 [inline]
#9 ktrsysret+0x18c sys/kern/kern_ktrace.c:207
#10 syscall+0x5d0 mi_syscall_return sys/sys/syscall_mi.h:131 [inline]
#10 syscall+0x5d0 sys/arch/amd64/amd64/trap.c:620
#11 Xsyscall+0x128
Process 4871 (reaper) thread 0xffff8000212337a8 (424382)
uvm_fault(0xfffffd806edffe68, 0x400000000, 0, 1) -> e
kernel: page fault trap, code=0
Faulted in DDB; continuing...
ddb{0}> show malloc
Type InUse MemUse HighUse Limit Requests Type Lim
devbuf 10215 6482K 6956K 78643K 15000 0
pcb 13 13K 15K 78643K 791 0
rtable 228 16K 19K 78643K 911 0
ifaddr 85 19K 21K 78643K 312 0
sysctl 3 1K 1K 78643K 3 0
counters 58 35K 36K 78643K 192 0
ioctlops 0 0K 4K 78643K 1915 0
iov 0 0K 24K 78643K 445 0
mount 1 1K 1K 78643K 1 0
log 0 0K 0K 78643K 4 0
vnodes 1502 94K 94K 78643K 3531 0
UFS quota 1 32K 32K 78643K 1 0
UFS mount 5 36K 36K 78643K 5 0
shm 2 1K 5K 78643K 44 0
VM map 2 1K 1K 78643K 2 0
sem 12 0K 0K 78643K 423 0
dirhash 12 2K 2K 78643K 12 0
ACPI 1697 195K 286K 78643K 12548 0
file desc 15 53K 81K 78643K 3823 0
sigio 0 0K 0K 78643K 262 0
proc 64 67K 140K 78643K 965 0
subproc 104 6K 6K 78643K 230 0
NFS srvsock 1 0K 0K 78643K 1 0
NFS daemon 1 16K 16K 78643K 1 0
ip_moptions 0 0K 0K 78643K 264 0
in_multi 88 5K 7K 78643K 337 0
ether_multi 1 0K 0K 78643K 26 0
mrt 1 0K 0K 78643K 16 0
ISOFS mount 1 32K 32K 78643K 1 0
MSDOSFS mount 1 16K 16K 78643K 1 0
ttys 157 705K 705K 78643K 157 0
exec 0 0K 1K 78643K 827 0
tdb 3 0K 0K 78643K 3 0
pagedep 1 8K 8K 78643K 1 0
inodedep 1 32K 32K 78643K 1 0
newblk 1 0K 0K 78643K 1 0
VM swap 8 62K 64K 78643K 10 0
UVM amap 336 84K 96K 78643K 28385 0
UVM aobj 131 4K 4K 78643K 131 0
memdesc 1 4K 4K 78643K 1 0
crypto data 1 1K 1K 78643K 1 0
ip6_options 0 0K 0K 78643K 107 0
NDP 14 0K 1K 78643K 104 0
temp 137 4694K 5718K 78643K 20760 0
kqueue 7 12K 26K 78643K 280 0
SYN cache 2 16K 16K 78643K 2 0
ddb{0}> show all pools
Name Size Requests Fail Releases Pgreq Pgrel Npage Hiwat Minpg Maxpg Idle
plcache 128 22 0 0 1 0 1 1 0 8 0
rtpcb 120 273 0 272 5 4 1 3 0 8 0
rtentry 112 278 0 179 4 0 4 4 0 8 0
unpcb 144 4274 0 4264 49 43 6 8 0 8 5
syncache 296 36 0 36 10 9 1 1 0 8 1
tcpqe 32 132 0 132 6 5 1 1 0 8 1
tcpcb 776 1305 0 1299 50 42 8 11 0 8 7
arp 120 42 0 26 1 0 1 1 0 8 0
inpcb 368 3651 0 3645 64 55 9 13 0 8 8
nd6 48 65 0 44 1 0 1 1 0 8 0
pkpcb 40 77 0 77 3 2 1 1 0 8 1
kcovpl 48 17 0 9 1 0 1 1 0 8 0
mppekey 1024 3 0 3 2 2 0 1 0 8 0
ppxss 1256 38 0 38 8 7 1 1 0 8 1
pppxif 1448 16 0 16 5 4 1 1 0 8 1
pfstscr 40 71 0 71 2 2 0 1 0 8 0
pffrag 232 12 0 11 2 1 1 1 0 482 0
pffrnode 88 12 0 11 2 1 1 1 0 8 0
pffrent 40 74 0 73 2 1 1 1 0 8 0
pfosfp 40 1434 0 1010 5 0 5 5 0 8 0
pfosfpen 112 1434 0 719 21 0 21 21 0 8 0
pfanchor 1280 134 0 63 12 4 8 12 0 8 0
pfstitem 24 142 0 126 1 0 1 1 0 8 0
pfstkey 128 284 0 268 2 0 2 2 0 8 0
pfstate 384 213 0 197 6 3 3 5 0 8 0
pfrule 1344 21 0 16 2 1 1 2 0 8 0
rttmr 136 3 0 3 1 1 0 1 0 8 0
art_heap8 4096 2 0 1 2 1 1 2 0 8 0
art_heap4 256 1158 0 741 36 7 29 31 0 8 2
art_table 32 1160 0 742 5 0 5 5 0 8 0
art_node 16 274 0 186 1 0 1 1 0 8 0
sysvmsgpl 40 76 0 73 1 0 1 1 0 8 0
semapl 112 421 0 411 1 0 1 1 0 8 0
shmpl 112 128 0 0 4 0 4 4 0 8 0
dirhash 1024 17 0 0 3 0 3 3 0 8 0
dino2pl 256 6513 0 5058 92 0 92 92 0 8 0
ffsino 272 6513 0 5058 98 0 98 98 0 8 0
nchpl 144 12462 0 10809 63 0 63 63 0 8 0
uvmvnodes 80 5926 0 0 121 0 121 121 0 8 0
vnodes 216 5926 0 0 330 0 330 330 0 8 0
namei 1024 45251 0 45251 3 2 1 2 0 8 1
percpumem 16 108 0 67 1 0 1 1 0 8 0
vmpool 696 3 0 3 1 1 0 1 0 8 0
kstatmem 264 118 0 90 3 0 3 3 0 8 0
scxspl 216 36223 0 36223 12 11 1 8 0 8 1
plimitpl 152 646 0 630 1 0 1 1 0 8 0
sigapl 424 4136 0 4070 9 1 8 8 0 8 0
futexpl 64 34067 0 34065 2 1 1 1 0 8 0
knotepl 120 688 0 0 15 0 15 15 0 8 0
kqueuepl 216 760 0 754 16 15 1 5 0 8 0
pipepl 320 1873 0 1842 48 40 8 8 0 8 5
fdescpl 496 4097 0 4072 6 2 4 5 0 8 0
filepl 152 33613 0 33381 75 60 15 21 0 8 5
lockfpl 104 879 0 877 1 0 1 1 0 8 0
lockfspl 48 236 0 234 1 0 1 1 0 8 0
sessionpl 144 34 0 18 1 0 1 1 0 8 0
pgrppl 48 47 0 31 1 0 1 1 0 8 0
ucredpl 104 4477 0 4467 1 0 1 1 0 8 0
zombiepl 144 4074 0 4070 1 0 1 1 0 8 0
processpl 1072 4136 0 4070 5 0 5 5 0 8 0
procpl 672 11422 0 11326 15 6 9 10 0 8 0
srpgc 96 15 0 15 6 6 0 1 0 8 0
sosppl 168 35 0 35 5 5 0 1 0 8 0
sockpl 488 8282 0 8265 201 182 19 29 0 8 16
mcl64k 65536 25 0 0 4 1 3 3 0 8 0
mcl16k 16384 17 0 0 3 0 3 3 0 8 0
mcl12k 12288 25 0 0 2 0 2 2 0 8 0
mcl9k 9216 9 0 0 1 0 1 1 0 8 0
mcl8k 8192 17 0 0 3 0 3 3 0 8 0
mcl4k 4096 17 0 0 3 0 3 3 0 8 0
mcl2k2 2112 6 0 0 1 0 1 1 0 8 0
mcl2k 2048 404 0 0 50 6 44 50 0 8 0
mtagpl 96 120 0 0 3 1 2 3 0 8 0
mbufpl 256 1143 0 0 63 0 63 63 0 8 0
bufpl 288 9508 0 3176 453 0 453 453 0 8 0
anonpl 24 826502 0 808597 139 24 115 126 0 186 0
amapchunkpl 152 79633 0 78825 69 34 35 47 0 158 0
amappl16 200 7040 0 6498 39 8 31 32 0 8 1
amappl15 192 14 0 13 1 0 1 1 0 8 0
amappl14 184 178 0 164 2 1 1 2 0 8 0
amappl13 176 9 0 9 3 3 0 1 0 8 0
amappl12 168 521 0 518 1 0 1 1 0 8 0
amappl11 160 57 0 48 1 0 1 1 0 8 0
amappl10 152 64 0 51 1 0 1 1 0 8 0
amappl9 144 972 0 971 1 0 1 1 0 8 0
amappl8 136 303 0 228 3 0 3 3 0 8 0
amappl7 128 174 0 151 2 0 2 2 0 8 0
amappl6 120 226 0 211 1 0 1 1 0 8 0
amappl5 112 198 0 192 1 0 1 1 0 8 0
amappl4 104 634 0 603 2 1 1 2 0 8 0
amappl3 96 11881 0 11823 2 0 2 2 0 8 0
amappl2 88 4638 0 4578 3 1 2 3 0 8 0
amappl1 80 95759 0 95060 23 5 18 23 0 8 0
amappl 88 27703 0 27501 7 2 5 6 0 92 0
dma4096 4096 1 0 1 1 1 0 1 0 8 0
dma1024 1024 1 0 0 1 0 1 1 0 8 0
dma256 256 6 0 6 1 1 0 1 0 8 0
dma128 128 253 0 253 1 1 0 1 0 8 0
dma64 64 6 0 6 1 1 0 1 0 8 0
dma32 32 7 0 7 1 1 0 1 0 8 0
dma16 16 18 0 17 1 0 1 1 0 8 0
aobjpl 72 130 0 0 3 0 3 3 0 8 0
uaddrrnd 24 4100 0 4074 1 0 1 1 0 8 0
uaddrbest 32 2 0 0 1 0 1 1 0 8 0
uaddr 24 4100 0 4074 1 0 1 1 0 8 0
vmmpekpl 168 42964 0 42903 3 0 3 3 0 8 0
vmmpepl 168 378906 0 376225 206 76 130 154 0 357 3
vmsppl 368 4099 0 4073 4 1 3 4 0 8 0
rwobjpl 56 106920 0 99205 113 1 112 112 0 8 0
pdppl 4096 8207 0 8146 278 215 63 77 0 8 2
pvpl 32 1717127 0 1693700 318 116 202 266 0 265 0
pmappl 248 4099 0 4073 3 0 3 3 0 8 0
extentpl 40 56 0 38 1 0 1 1 0 8 0
phpool 112 1172 0 299 26 0 26 26 0 8 0
ddb{0}> machine ddbcpu 0
Invalid cpu 0
ddb{0}> trace
witness_checkorder(fffffd806f03b208,9,0) at witness_checkorder+0x1ef sys/kern/subr_witness.c:789
rw_enter(fffffd806f03b1f8,1) at rw_enter+0xd1 sys/kern/kern_rwlock.c:250
rwsleep(fffffd806f03b338,fffffd806f03b1f8,118,ffffffff8261e0cc,0) at rwsleep+0x100 sys/kern/kern_synch.c:314
sosend(fffffd806f03b1f0,0,ffff8000261afd28,0,0,0) at sosend+0x7a8 sys/kern/uipc_socket.c:615
fifo_write(ffff8000261afc70) at fifo_write+0x7c sys/miscfs/fifofs/fifo_vnops.c:281
VOP_WRITE(fffffd8067ff26c8,ffff8000261afd28,3,fffffd807f7d76e8) at VOP_WRITE+0xbf sys/kern/vfs_vops.c:245
ktrwriteraw(ffff8000ffff4a88,fffffd8067ff26c8,fffffd807f7d76e8,ffff8000261afe08,ffff8000261afdd0) at ktrwriteraw+0x15f sys/kern/kern_ktrace.c:660
ktrsysret(ffff8000ffff4a88,b,0,ffff8000261aff00) at ktrsysret+0x18c ktrwrite2 sys/kern/kern_ktrace.c:625 [inline]
ktrsysret(ffff8000ffff4a88,b,0,ffff8000261aff00) at ktrsysret+0x18c sys/kern/kern_ktrace.c:207
syscall(ffff8000261aff80) at syscall+0x5d0 mi_syscall_return sys/sys/syscall_mi.h:131 [inline]
syscall(ffff8000261aff80) at syscall+0x5d0 sys/arch/amd64/amd64/trap.c:620
Xsyscall() at Xsyscall+0x128
end of kernel
end trace frame: 0x7f7fffff0f20, count: -10
ddb{0}> machine ddbcpu 1
Stopped at x86_ipi_db+0x1a: addq $0x8,%rsp
x86_ipi_db(ffff800020dd8ff0) at x86_ipi_db+0x1a sys/arch/amd64/amd64/db_interface.c:393
x86_ipi_handler() at x86_ipi_handler+0xb7 sys/arch/amd64/amd64/ipi.c:106
Xresume_lapic_ipi() at Xresume_lapic_ipi+0x23
__mp_lock(ffffffff82aaeff8) at __mp_lock+0x122 __mp_lock_spin sys/kern/kern_lock.c:116 [inline]
__mp_lock(ffffffff82aaeff8) at __mp_lock+0x122 sys/kern/kern_lock.c:147
uvm_unmap_detach(ffff800021239ca0,1) at uvm_unmap_detach+0x113 sys/uvm/uvm_map.c:1382
uvm_map_teardown(fffffd807effc8a0) at uvm_map_teardown+0x28d sys/uvm/uvm_map.c:2598
uvmspace_free(fffffd807effc8a0) at uvmspace_free+0xa6 sys/uvm/uvm_map.c:3513
reaper(ffff8000212337a8) at reaper+0x19a sys/kern/kern_exit.c:448
end trace frame: 0x0, count: 7
ddb{1}> trace
x86_ipi_db(ffff800020dd8ff0) at x86_ipi_db+0x1a sys/arch/amd64/amd64/db_interface.c:393
x86_ipi_handler() at x86_ipi_handler+0xb7 sys/arch/amd64/amd64/ipi.c:106
Xresume_lapic_ipi() at Xresume_lapic_ipi+0x23
__mp_lock(ffffffff82aaeff8) at __mp_lock+0x122 __mp_lock_spin sys/kern/kern_lock.c:116 [inline]
__mp_lock(ffffffff82aaeff8) at __mp_lock+0x122 sys/kern/kern_lock.c:147
uvm_unmap_detach(ffff800021239ca0,1) at uvm_unmap_detach+0x113 sys/uvm/uvm_map.c:1382
uvm_map_teardown(fffffd807effc8a0) at uvm_map_teardown+0x28d sys/uvm/uvm_map.c:2598
uvmspace_free(fffffd807effc8a0) at uvmspace_free+0xa6 sys/uvm/uvm_map.c:3513
reaper(ffff8000212337a8) at reaper+0x19a sys/kern/kern_exit.c:448
end trace frame: 0x0, count: -8
---
This report is generated by a bot. It may contain errors.
See
https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at
syzk...@googlegroups.com.
syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.