kernel panic: Damn Damn! Unhandled trap in the kernel! (3)

17 views
Skip to first unread message

syzbot

unread,
May 1, 2019, 4:13:06 PM5/1/19
to aka...@googlegroups.com
Hello,

syzbot found the following crash on:

HEAD commit: 95e5d955 Remove extraneous sysfd2path()
git tree: akaros
console output: https://syzkaller.appspot.com/x/log.txt?x=1098d0a4a00000
kernel config: https://syzkaller.appspot.com/x/.config?x=bc709c3b83482973
dashboard link: https://syzkaller.appspot.com/bug?extid=871c0525c81bbe0e93a5

Unfortunately, I don't have any reproducer for this crash yet.

IMPORTANT: if you fix the bug, please add the following tag to the commit:
Reported-by: syzbot+871c05...@syzkaller.appspotmail.com

kernel panic at kern/arch/x86/trap.c:628, from core 1: Damn Damn!
Unhandled trap in the kernel!
HW TRAP frame at 0xfffffff000085920 on core 1
rax 0x87fffffff000085e
rbx 0xfffffff000085cd9
rcx 0x0000000000000000
rdx 0xffff8000048cc6fb
rbp 0xfffffff000085a08
rsi 0xfffffff000085a88
rdi 0x0000000000000000
r8 0x0000000000000001
r9 0x0000000000000030
r10 0x0000000000000080
r11 0x0000000000000000
r12 0xffffffffc2048840
r13 0xfffffff000085a88
r14 0xfffffff000085c49
r15 0xfffffff000085c49
trap 0x0000000d General Protection
gsbs 0xffffffffc8e37dc0
fsbs 0x0000000000000000
err 0x--------00000000
rip 0xffffffffc20194b6
cs 0x------------0008
flag 0x0000000000010282
rsp 0xfffffff0000859e8
ss 0x------------0010
Backtrace of kernel context on Core 1:
#01 [<0xffffffffc20194b6>] in printchan at src/net/eipconv.c:176
#02 [<0xffffffffc2048aaf>] in vprintfmt at src/printfmt.c:128
#03 [<0xffffffffc2049142>] in vsnprintf at src/printfmt.c:309
#04 [<0xffffffffc2058369>] in vset_errstr at src/syscall.c:509
#05 [<0xffffffffc205849b>] in set_error at src/syscall.c:542
#06 [<0xffffffffc207502b>] in capwrite at drivers/dev/capability.c:216
#07 [<0xffffffffc2040649>] in rwrite at src/ns/sysfile.c:1117
#08 [<0xffffffffc204089b>] in syswrite at src/ns/sysfile.c:1135
#09 [<0xffffffffc2059219>] in sys_write at src/syscall.c:1785
#10 [<0xffffffffc2059d79>] in syscall at src/syscall.c:2577
#11 [<0xffffffffc205a928>] in run_local_syscall at src/syscall.c:2614
#12 [<0xffffffffc205ae69>] in prep_syscalls at src/syscall.c:2634
#13 [<0xffffffffc20ac752>] in sysenter_callwrapper at arch/x86/trap.c:877


---
This bug is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this bug report. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

syzbot

unread,
May 1, 2019, 4:28:08 PM5/1/19
to aka...@googlegroups.com
syzbot has found a reproducer for the following crash on:

HEAD commit: 95e5d955 Remove extraneous sysfd2path()
git tree: akaros
console output: https://syzkaller.appspot.com/x/log.txt?x=15b49284a00000
syz repro: https://syzkaller.appspot.com/x/repro.syz?x=110ce670a00000
C reproducer: https://syzkaller.appspot.com/x/repro.c?x=1506f468a00000

IMPORTANT: if you fix the bug, please add the following tag to the commit:
Reported-by: syzbot+871c05...@syzkaller.appspotmail.com

kernel panic at kern/arch/x86/trap.c:628, from core 0: Damn Damn!
Unhandled trap in the kernel!
HW TRAP frame at 0xfffffff000070920 on core 0
rax 0x87fffffff000070e
rbx 0xfffffff000070cd9
rcx 0x0000000000000000
rdx 0xffff8000032439cb
rbp 0xfffffff000070a08
rsi 0xfffffff000070a88
rdi 0x0000000000000000
r8 0x0000000000000001
r9 0x0000000000000030
r10 0x0000000000000080
r11 0x0000000000000000
r12 0xffffffffc2048840
r13 0xfffffff000070a88
r14 0xfffffff000070c49
r15 0xfffffff000070c49
trap 0x0000000d General Protection
gsbs 0xffffffffc8e37b00
fsbs 0x0000000000000000
err 0x--------00000000
rip 0xffffffffc20194b6
cs 0x------------0008
flag 0x0000000000010282
rsp 0xfffffff0000709e8
ss 0x------------0010
Backtrace of kernel context on Core 0:
Reply all
Reply to author
Forward
0 new messages