panic: pool_do_get: rtentry: page empty

0 views
Skip to first unread message

syzbot

unread,
Jul 15, 2024, 5:10:24 PM (2 days ago) Jul 15
to syzkaller-o...@googlegroups.com
Hello,

syzbot found the following issue on:

HEAD commit: 2bfbbd8ba554 Mop up TLS1_PRF* defines.
git tree: openbsd
console output: https://syzkaller.appspot.com/x/log.txt?x=12ffb121980000
kernel config: https://syzkaller.appspot.com/x/.config?x=7058272de1526588
dashboard link: https://syzkaller.appspot.com/bug?extid=8532a55e0b520f83af22

Unfortunately, I don't have any reproducer for this issue yet.

Downloadable assets:
disk image: https://storage.googleapis.com/syzbot-assets/d7c161cd017c/disk-2bfbbd8b.raw.xz
bsd.gdb: https://storage.googleapis.com/syzbot-assets/71c0cbcfcda1/bsd-2bfbbd8b.gdb.xz
kernel image: https://storage.googleapis.com/syzbot-assets/d6b1b07489ff/kernel-2bfbbd8b.xz

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+8532a5...@syzkaller.appspotmail.com

panic: pool_do_get: rtentry: page empty
Starting stack trace...
panic(ffffffff830c5199) at panic+0x1d0 sys/kern/subr_prf.c:229
pool_do_get(ffffffff83583dc8,a,ffff8000371dd878) at pool_do_get+0x560 sys/kern/subr_pool.c:726
pool_get(ffffffff83583dc8,a) at pool_get+0x141
rtrequest(b,ffff8000371dd9d8,3,ffff8000371dda78,0) at rtrequest+0x5c0
rt_clone(ffff8000371ddae8,ffff8000371ddb50,0) at rt_clone+0x98 sys/net/route.c:383
rtalloc(ffff8000371ddb50,1,0) at rtalloc+0xb6 rt_match sys/net/route.c:360 [inline]
rtalloc(ffff8000371ddb50,1,0) at rtalloc+0xb6 sys/net/route.c:489
ip_multicast_if(ffff8000371ddc00,0,ffff8000371ddbe8) at ip_multicast_if+0x14c sys/netinet/ip_output.c:1364
ip_setmoptions(c,fffffd80604fb3e0,fffffd807cc7cc00,0) at ip_setmoptions+0x4a1 sys/netinet/ip_output.c:1533
sosetopt(ffff8000012839f8,0,c,fffffd807cc7cc00) at sosetopt+0x117
sys_setsockopt(ffff8000371cca58,ffff8000371dde10,ffff8000371ddd60) at sys_setsockopt+0x2ba sys/kern/uipc_syscalls.c:1231
syscall(ffff8000371dde10) at syscall+0xbb6 mi_syscall sys/sys/syscall_mi.h:179 [inline]
syscall(ffff8000371dde10) at syscall+0xbb6 sys/arch/amd64/amd64/trap.c:577
Xsyscall() at Xsyscall+0x128
end of kernel
end trace frame: 0x60a1af27300, count: 245
End of stack trace.


---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

If the report is already addressed, let syzbot know by replying with:
#syz fix: exact-commit-title

If you want to overwrite report's subsystems, reply with:
#syz set subsystems: new-subsystem
(See the list of subsystem names on the web dashboard)

If the report is a duplicate of another one, reply with:
#syz dup: exact-subject-of-another-report

If you want to undo deduplication, reply with:
#syz undup
Reply all
Reply to author
Forward
0 new messages