// autogenerated by syzkaller (http://github.com/google/syzkaller) #define _GNU_SOURCE #include #include #include #include #include uint64_t r[1] = {0xffffffffffffffff}; void loop() { long res; res = syscall(__NR_socket, 2, 3, 8); if (res != -1) r[0] = res; memcpy((void*)0x20000440, "\x66\x69\x6c\x74\x65\x72\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00", 32); *(uint32_t*)0x20000460 = 0xe; *(uint32_t*)0x20000464 = 2; *(uint32_t*)0x20000468 = 0xac8; *(uint64_t*)0x20000470 = 0; *(uint64_t*)0x20000478 = 0x20001180; *(uint64_t*)0x20000480 = 0x200011b0; *(uint64_t*)0x20000488 = 0x20001c18; *(uint64_t*)0x20000490 = 0; *(uint64_t*)0x20000498 = 0; *(uint32_t*)0x200004a0 = 0; *(uint64_t*)0x200004a8 = 0x20000040; *(uint64_t*)0x200004b0 = 0x20001180; *(uint32_t*)0x20001180 = 0; memcpy((void*)0x20001184, "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00", 32); *(uint32_t*)0x200011a4 = 0; *(uint32_t*)0x200011a8 = 0xfffffffe; *(uint32_t*)0x200011ac = 0; *(uint32_t*)0x200011b0 = 0; memcpy((void*)0x200011b4, "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00", 32); *(uint32_t*)0x200011d4 = 0; *(uint32_t*)0x200011d8 = -1; *(uint32_t*)0x200011dc = 2; *(uint32_t*)0x200011e0 = 0x11; *(uint32_t*)0x200011e4 = 0; *(uint16_t*)0x200011e8 = htobe16(0x19); memcpy((void*)0x200011ea, "\x62\x63\x73\x66\x30\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00", 16); memcpy((void*)0x200011fa, "\x65\x71\x6c\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00", 16); memcpy((void*)0x2000120a, "\x67\x72\x65\x74\x61\x70\x30\x00\x00\x00\x00\x00\x00\x00\x00\x00", 16); memcpy((void*)0x2000121a, "\x69\x70\x36\x5f\x76\x74\x69\x30\x00\x00\x00\x00\x00\x00\x00\x00", 16); *(uint8_t*)0x2000122a = 0; *(uint8_t*)0x2000122b = 0; *(uint8_t*)0x2000122c = 0; *(uint8_t*)0x2000122d = 0; *(uint8_t*)0x2000122e = 0; *(uint8_t*)0x2000122f = 0; *(uint8_t*)0x20001230 = 0; *(uint8_t*)0x20001231 = 0; *(uint8_t*)0x20001232 = 0; *(uint8_t*)0x20001233 = 0; *(uint8_t*)0x20001234 = 0; *(uint8_t*)0x20001235 = 0; *(uint8_t*)0x20001236 = 0xaa; *(uint8_t*)0x20001237 = 0xaa; *(uint8_t*)0x20001238 = 0xaa; *(uint8_t*)0x20001239 = 0xaa; *(uint8_t*)0x2000123a = 0xaa; *(uint8_t*)0x2000123b = 0; *(uint8_t*)0x2000123c = 0; *(uint8_t*)0x2000123d = 0; *(uint8_t*)0x2000123e = 0; *(uint8_t*)0x2000123f = 0; *(uint8_t*)0x20001240 = 0; *(uint8_t*)0x20001241 = 0; *(uint32_t*)0x20001244 = 0x948; *(uint32_t*)0x20001248 = 0x948; *(uint32_t*)0x2000124c = 0x978; memcpy((void*)0x20001250, "\x38\x30\x32\x5f\x33\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00", 32); *(uint32_t*)0x20001270 = 8; *(uint8_t*)0x20001278 = 0; *(uint16_t*)0x2000127a = htobe16(0); *(uint8_t*)0x2000127c = 0; *(uint8_t*)0x2000127d = 0; memcpy((void*)0x20001280, "\x61\x6d\x6f\x6e\x67\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00", 32); *(uint32_t*)0x200012a0 = 0x880; *(uint32_t*)0x200012a8 = 0x800; *(uint32_t*)0x200012ac = 0x30000000; *(uint32_t*)0x200012b0 = 1; *(uint32_t*)0x200012b4 = 0x6d4; *(uint32_t*)0x200012b8 = 9; *(uint32_t*)0x200012bc = 0x1f; *(uint32_t*)0x200012c0 = 8; *(uint32_t*)0x200012c4 = 2; *(uint32_t*)0x200012c8 = 4; *(uint32_t*)0x200012cc = 3; *(uint32_t*)0x200012d0 = 6; *(uint32_t*)0x200012d4 = 7; *(uint32_t*)0x200012d8 = 0xb6cf; *(uint32_t*)0x200012dc = 4; *(uint32_t*)0x200012e0 = 0xab25; *(uint32_t*)0x200012e4 = 0x52b8f8a7; *(uint32_t*)0x200012e8 = 0x3f; *(uint32_t*)0x200012ec = 6; *(uint32_t*)0x200012f0 = 0x401; *(uint32_t*)0x200012f4 = 0x10000; *(uint32_t*)0x200012f8 = 0xe598; *(uint32_t*)0x200012fc = 5; *(uint32_t*)0x20001300 = 1; *(uint32_t*)0x20001304 = 6; *(uint32_t*)0x20001308 = 0xa7a2; *(uint32_t*)0x2000130c = 3; *(uint32_t*)0x20001310 = 0; *(uint32_t*)0x20001314 = 4; *(uint32_t*)0x20001318 = 2; *(uint32_t*)0x2000131c = 7; *(uint32_t*)0x20001320 = 4; *(uint32_t*)0x20001324 = 8; *(uint32_t*)0x20001328 = 7; *(uint32_t*)0x2000132c = 0x7ff; *(uint32_t*)0x20001330 = 0x400; *(uint32_t*)0x20001334 = 0x3f; *(uint32_t*)0x20001338 = 0xe8; *(uint32_t*)0x2000133c = 2; *(uint32_t*)0x20001340 = 1; *(uint32_t*)0x20001344 = 7; *(uint32_t*)0x20001348 = 4; *(uint32_t*)0x2000134c = 0x66cc; *(uint32_t*)0x20001350 = 8; *(uint32_t*)0x20001354 = 6; *(uint32_t*)0x20001358 = 7; *(uint32_t*)0x2000135c = 3; *(uint32_t*)0x20001360 = 0; *(uint32_t*)0x20001364 = 0x6e1; *(uint32_t*)0x20001368 = 5; *(uint32_t*)0x2000136c = 9; *(uint32_t*)0x20001370 = 1; *(uint32_t*)0x20001374 = 1; *(uint32_t*)0x20001378 = 0x1f; *(uint32_t*)0x2000137c = 5; *(uint32_t*)0x20001380 = 0x7f; *(uint32_t*)0x20001384 = 0x40; *(uint32_t*)0x20001388 = 0x1f; *(uint32_t*)0x2000138c = 3; *(uint32_t*)0x20001390 = 9; *(uint32_t*)0x20001394 = 3; *(uint32_t*)0x20001398 = 1; *(uint32_t*)0x2000139c = 0x7fff; *(uint32_t*)0x200013a0 = 0; *(uint32_t*)0x200013a4 = 0x10000; *(uint32_t*)0x200013a8 = 6; *(uint32_t*)0x200013ac = 1; *(uint32_t*)0x200013b0 = 0x200; *(uint32_t*)0x200013b4 = 8; *(uint32_t*)0x200013b8 = 0x67; *(uint32_t*)0x200013bc = 4; *(uint32_t*)0x200013c0 = 6; *(uint32_t*)0x200013c4 = 1; *(uint32_t*)0x200013c8 = 0xffff; *(uint32_t*)0x200013cc = 0x8001; *(uint32_t*)0x200013d0 = 9; *(uint32_t*)0x200013d4 = 8; *(uint32_t*)0x200013d8 = 0x3f; *(uint32_t*)0x200013dc = 0xfffffffd; *(uint32_t*)0x200013e0 = 0x5dc3f2f8; *(uint32_t*)0x200013e4 = 8; *(uint32_t*)0x200013e8 = 0x6c; *(uint32_t*)0x200013ec = 0; *(uint32_t*)0x200013f0 = 4; *(uint32_t*)0x200013f4 = 8; *(uint32_t*)0x200013f8 = 1; *(uint32_t*)0x200013fc = 5; *(uint32_t*)0x20001400 = 2; *(uint32_t*)0x20001404 = 6; *(uint32_t*)0x20001408 = 2; *(uint32_t*)0x2000140c = 0x1f; *(uint32_t*)0x20001410 = 0x101; *(uint32_t*)0x20001414 = 6; *(uint32_t*)0x20001418 = 1; *(uint32_t*)0x2000141c = 3; *(uint32_t*)0x20001420 = 5; *(uint32_t*)0x20001424 = 0x26; *(uint32_t*)0x20001428 = 0xad; *(uint32_t*)0x2000142c = 8; *(uint32_t*)0x20001430 = 9; *(uint32_t*)0x20001434 = 0x100; *(uint32_t*)0x20001438 = 4; *(uint32_t*)0x2000143c = 2; *(uint32_t*)0x20001440 = 0x7f; *(uint32_t*)0x20001444 = 0x8001; *(uint32_t*)0x20001448 = 0x31; *(uint32_t*)0x2000144c = 9; *(uint32_t*)0x20001450 = 0x81; *(uint32_t*)0x20001454 = 1; *(uint32_t*)0x20001458 = 7; *(uint32_t*)0x2000145c = 0x325; *(uint32_t*)0x20001460 = 0x868; *(uint32_t*)0x20001464 = 6; *(uint32_t*)0x20001468 = 0x37ff; *(uint32_t*)0x2000146c = 0xdb; *(uint32_t*)0x20001470 = 1; *(uint32_t*)0x20001474 = 2; *(uint32_t*)0x20001478 = 0; *(uint32_t*)0x2000147c = 9; *(uint32_t*)0x20001480 = 0x200; *(uint32_t*)0x20001484 = 0x2f82; *(uint32_t*)0x20001488 = 1; *(uint32_t*)0x2000148c = 9; *(uint32_t*)0x20001490 = 0xdf9; *(uint32_t*)0x20001494 = 8; *(uint32_t*)0x20001498 = 4; *(uint32_t*)0x2000149c = 1; *(uint32_t*)0x200014a0 = 1; *(uint32_t*)0x200014a4 = 0x20; *(uint32_t*)0x200014a8 = 6; *(uint32_t*)0x200014ac = 5; *(uint32_t*)0x200014b0 = 8; *(uint32_t*)0x200014b4 = 7; *(uint32_t*)0x200014b8 = 9; *(uint32_t*)0x200014bc = 1; *(uint32_t*)0x200014c0 = 0x8000; *(uint32_t*)0x200014c4 = 0; *(uint32_t*)0x200014c8 = 8; *(uint32_t*)0x200014cc = 0x8d69; *(uint32_t*)0x200014d0 = 0x6e; *(uint32_t*)0x200014d4 = 0x272; *(uint32_t*)0x200014d8 = 0x80000001; *(uint32_t*)0x200014dc = 3; *(uint32_t*)0x200014e0 = 8; *(uint32_t*)0x200014e4 = 0x7ff; *(uint32_t*)0x200014e8 = 0; *(uint32_t*)0x200014ec = 8; *(uint32_t*)0x200014f0 = 0x8000; *(uint32_t*)0x200014f4 = 9; *(uint32_t*)0x200014f8 = 7; *(uint32_t*)0x200014fc = 3; *(uint32_t*)0x20001500 = 0x7fff; *(uint32_t*)0x20001504 = 0x80000000; *(uint32_t*)0x20001508 = 6; *(uint32_t*)0x2000150c = 0xfe000000; *(uint32_t*)0x20001510 = 0x800; *(uint32_t*)0x20001514 = 3; *(uint32_t*)0x20001518 = 2; *(uint32_t*)0x2000151c = 4; *(uint32_t*)0x20001520 = 9; *(uint32_t*)0x20001524 = 0x10000; *(uint32_t*)0x20001528 = 0x401; *(uint32_t*)0x2000152c = 0x7fff; *(uint32_t*)0x20001530 = 7; *(uint32_t*)0x20001534 = 0xffff; *(uint32_t*)0x20001538 = 8; *(uint32_t*)0x2000153c = 0x23c6cb40; *(uint32_t*)0x20001540 = 0x3f; *(uint32_t*)0x20001544 = 0x8000; *(uint32_t*)0x20001548 = 0xfffffff7; *(uint32_t*)0x2000154c = 0x1f; *(uint32_t*)0x20001550 = 3; *(uint32_t*)0x20001554 = 1; *(uint32_t*)0x20001558 = 1; *(uint32_t*)0x2000155c = 3; *(uint32_t*)0x20001560 = 6; *(uint32_t*)0x20001564 = 6; *(uint32_t*)0x20001568 = 5; *(uint32_t*)0x2000156c = 0; *(uint32_t*)0x20001570 = 6; *(uint32_t*)0x20001574 = 0x3f; *(uint32_t*)0x20001578 = 0xff; *(uint32_t*)0x2000157c = 0x100; *(uint32_t*)0x20001580 = 1; *(uint32_t*)0x20001584 = 0x521; *(uint32_t*)0x20001588 = 1; *(uint32_t*)0x2000158c = 2; *(uint32_t*)0x20001590 = 0x40; *(uint32_t*)0x20001594 = 0x82; *(uint32_t*)0x20001598 = 0xdaf; *(uint32_t*)0x2000159c = 0; *(uint32_t*)0x200015a0 = 7; *(uint32_t*)0x200015a4 = 8; *(uint32_t*)0x200015a8 = 3; *(uint32_t*)0x200015ac = 0x1f; *(uint32_t*)0x200015b0 = 0x1ff; *(uint32_t*)0x200015b4 = 0x3a81646; *(uint32_t*)0x200015b8 = 0; *(uint32_t*)0x200015bc = 2; *(uint32_t*)0x200015c0 = 0x1f; *(uint32_t*)0x200015c4 = 5; *(uint32_t*)0x200015c8 = 0xffff89e7; *(uint32_t*)0x200015cc = 0; *(uint32_t*)0x200015d0 = 5; *(uint32_t*)0x200015d4 = 1; *(uint32_t*)0x200015d8 = 1; *(uint32_t*)0x200015dc = 8; *(uint32_t*)0x200015e0 = 0x1f; *(uint32_t*)0x200015e4 = 0x40; *(uint32_t*)0x200015e8 = 6; *(uint32_t*)0x200015ec = 0x7fffffff; *(uint32_t*)0x200015f0 = 1; *(uint32_t*)0x200015f4 = 0xff; *(uint32_t*)0x200015f8 = 0x7fffffff; *(uint32_t*)0x200015fc = 1; *(uint32_t*)0x20001600 = 0x1000; *(uint32_t*)0x20001604 = 3; *(uint32_t*)0x20001608 = 4; *(uint32_t*)0x2000160c = 0x194; *(uint32_t*)0x20001610 = 0x81; *(uint32_t*)0x20001614 = 0x7f; *(uint32_t*)0x20001618 = 0; *(uint32_t*)0x2000161c = 7; *(uint32_t*)0x20001620 = 8; *(uint32_t*)0x20001624 = 8; *(uint32_t*)0x20001628 = 8; *(uint32_t*)0x2000162c = 0x3b; *(uint32_t*)0x20001630 = 0x7234; *(uint32_t*)0x20001634 = 0xe0b; *(uint32_t*)0x20001638 = 8; *(uint32_t*)0x2000163c = 4; *(uint32_t*)0x20001640 = 0x81; *(uint32_t*)0x20001644 = 1; *(uint32_t*)0x20001648 = 7; *(uint32_t*)0x2000164c = 5; *(uint32_t*)0x20001650 = 8; *(uint32_t*)0x20001654 = 0x1000; *(uint32_t*)0x20001658 = 5; *(uint32_t*)0x2000165c = 4; *(uint32_t*)0x20001660 = 0x3b; *(uint32_t*)0x20001664 = 4; *(uint32_t*)0x20001668 = 0x800; *(uint32_t*)0x2000166c = 9; *(uint32_t*)0x20001670 = 1; *(uint32_t*)0x20001674 = 5; *(uint32_t*)0x20001678 = 3; *(uint32_t*)0x2000167c = 0; *(uint32_t*)0x20001680 = 0x80000000; *(uint32_t*)0x20001684 = 3; *(uint32_t*)0x20001688 = 2; *(uint32_t*)0x2000168c = 0x8269; *(uint32_t*)0x20001690 = -1; *(uint32_t*)0x20001694 = 0xba; *(uint32_t*)0x20001698 = 0xc09; *(uint32_t*)0x2000169c = 9; *(uint32_t*)0x200016a0 = 1; *(uint32_t*)0x200016a4 = 3; *(uint32_t*)0x200016a8 = 0x183; *(uint32_t*)0x200016ac = 1; *(uint32_t*)0x200016b0 = 0x23; *(uint32_t*)0x200016b4 = 9; *(uint32_t*)0x200016b8 = 6; *(uint32_t*)0x200016bc = 0x800; *(uint32_t*)0x200016c0 = 5; *(uint8_t*)0x200016c4 = 0xac; *(uint8_t*)0x200016c5 = 0x14; *(uint8_t*)0x200016c6 = 0x14; *(uint8_t*)0x200016c7 = 0xbb; *(uint32_t*)0x200016c8 = 1; *(uint32_t*)0x200016cc = 0x10001; *(uint8_t*)0x200016d0 = 0xac; *(uint8_t*)0x200016d1 = 0x14; *(uint8_t*)0x200016d2 = 0x14; *(uint8_t*)0x200016d3 = 0x13; *(uint32_t*)0x200016d4 = 0xbd; *(uint32_t*)0x200016d8 = 0; *(uint32_t*)0x200016dc = htobe32(0xe0000002); *(uint32_t*)0x200016e0 = 8; *(uint32_t*)0x200016e4 = 1; *(uint32_t*)0x200016e8 = htobe32(0xe0000001); *(uint32_t*)0x200016ec = 1; *(uint32_t*)0x200016f0 = 0x91; *(uint32_t*)0x200016f4 = htobe32(0xe0000001); *(uint32_t*)0x200016f8 = 9; *(uint32_t*)0x200016fc = 0x60f; *(uint32_t*)0x20001700 = htobe32(-1); *(uint32_t*)0x20001704 = 0; *(uint32_t*)0x20001708 = 2; *(uint32_t*)0x2000170c = 6; *(uint32_t*)0x20001710 = 1; *(uint32_t*)0x20001714 = 6; *(uint32_t*)0x20001718 = 0x1ff; *(uint32_t*)0x2000171c = 9; *(uint32_t*)0x20001720 = 0; *(uint32_t*)0x20001724 = 5; *(uint32_t*)0x20001728 = 0xffff; *(uint32_t*)0x2000172c = 0x875; *(uint32_t*)0x20001730 = 3; *(uint32_t*)0x20001734 = 0x401; *(uint32_t*)0x20001738 = 0x10000; *(uint32_t*)0x2000173c = 0x10001; *(uint32_t*)0x20001740 = 9; *(uint32_t*)0x20001744 = 3; *(uint32_t*)0x20001748 = 0xfffffc01; *(uint32_t*)0x2000174c = 0xffffff80; *(uint32_t*)0x20001750 = 3; *(uint32_t*)0x20001754 = 0xc2d3; *(uint32_t*)0x20001758 = 0x10000; *(uint32_t*)0x2000175c = 0x85; *(uint32_t*)0x20001760 = 0; *(uint32_t*)0x20001764 = 2; *(uint32_t*)0x20001768 = 0x1000; *(uint32_t*)0x2000176c = 4; *(uint32_t*)0x20001770 = 0; *(uint32_t*)0x20001774 = 0x7fffffff; *(uint32_t*)0x20001778 = 5; *(uint32_t*)0x2000177c = 2; *(uint32_t*)0x20001780 = 6; *(uint32_t*)0x20001784 = 0xfff; *(uint32_t*)0x20001788 = -1; *(uint32_t*)0x2000178c = 0x9f; *(uint32_t*)0x20001790 = 0x800; *(uint32_t*)0x20001794 = 2; *(uint32_t*)0x20001798 = 8; *(uint32_t*)0x2000179c = 0xd9; *(uint32_t*)0x200017a0 = 0x200; *(uint32_t*)0x200017a4 = 4; *(uint32_t*)0x200017a8 = 0; *(uint32_t*)0x200017ac = 0x10000; *(uint32_t*)0x200017b0 = 4; *(uint32_t*)0x200017b4 = 0x39c; *(uint32_t*)0x200017b8 = 7; *(uint32_t*)0x200017bc = 0x400; *(uint32_t*)0x200017c0 = 1; *(uint32_t*)0x200017c4 = 0; *(uint32_t*)0x200017c8 = 3; *(uint32_t*)0x200017cc = 0xfffffffc; *(uint32_t*)0x200017d0 = 5; *(uint32_t*)0x200017d4 = 0xcf43; *(uint32_t*)0x200017d8 = 9; *(uint32_t*)0x200017dc = 8; *(uint32_t*)0x200017e0 = 9; *(uint32_t*)0x200017e4 = 0; *(uint32_t*)0x200017e8 = 0; *(uint32_t*)0x200017ec = 0x73; *(uint32_t*)0x200017f0 = 0x800; *(uint32_t*)0x200017f4 = 0xfd8; *(uint32_t*)0x200017f8 = 1; *(uint32_t*)0x200017fc = 0xbf76; *(uint32_t*)0x20001800 = 0; *(uint32_t*)0x20001804 = 0x10000; *(uint32_t*)0x20001808 = 0x7f; *(uint32_t*)0x2000180c = 2; *(uint32_t*)0x20001810 = 0; *(uint32_t*)0x20001814 = 0x41b; *(uint32_t*)0x20001818 = 0x7f; *(uint32_t*)0x2000181c = 0x7ff; *(uint32_t*)0x20001820 = 1; *(uint32_t*)0x20001824 = 6; *(uint32_t*)0x20001828 = 0x800; *(uint32_t*)0x2000182c = 0x10001; *(uint32_t*)0x20001830 = 2; *(uint32_t*)0x20001834 = 9; *(uint32_t*)0x20001838 = 1; *(uint32_t*)0x2000183c = 0xffffff8a; *(uint32_t*)0x20001840 = 9; *(uint32_t*)0x20001844 = 2; *(uint32_t*)0x20001848 = 6; *(uint32_t*)0x2000184c = 0xf9a; *(uint32_t*)0x20001850 = 8; *(uint32_t*)0x20001854 = 9; *(uint32_t*)0x20001858 = 0x85e; *(uint32_t*)0x2000185c = 7; *(uint32_t*)0x20001860 = 0; *(uint32_t*)0x20001864 = 8; *(uint32_t*)0x20001868 = 0x11; *(uint32_t*)0x2000186c = 8; *(uint32_t*)0x20001870 = 0x6c2; *(uint32_t*)0x20001874 = 4; *(uint32_t*)0x20001878 = 5; *(uint32_t*)0x2000187c = 1; *(uint32_t*)0x20001880 = 0xfffffff8; *(uint32_t*)0x20001884 = 1; *(uint32_t*)0x20001888 = 3; *(uint32_t*)0x2000188c = 0x800; *(uint32_t*)0x20001890 = 0; *(uint32_t*)0x20001894 = 0xfffffff8; *(uint32_t*)0x20001898 = 2; *(uint32_t*)0x2000189c = -1; *(uint32_t*)0x200018a0 = 0x755b; *(uint32_t*)0x200018a4 = 8; *(uint32_t*)0x200018a8 = 1; *(uint32_t*)0x200018ac = 0x400; *(uint32_t*)0x200018b0 = 1; *(uint32_t*)0x200018b4 = 0xc43b; *(uint32_t*)0x200018b8 = 8; *(uint32_t*)0x200018bc = 2; *(uint32_t*)0x200018c0 = 0xfffffff7; *(uint32_t*)0x200018c4 = 1; *(uint32_t*)0x200018c8 = 0x80000001; *(uint32_t*)0x200018cc = 0x98b; *(uint32_t*)0x200018d0 = 0x35c0; *(uint32_t*)0x200018d4 = 9; *(uint32_t*)0x200018d8 = 0x7fffffff; *(uint32_t*)0x200018dc = 0x632; *(uint32_t*)0x200018e0 = 1; *(uint32_t*)0x200018e4 = 0x8000; *(uint32_t*)0x200018e8 = 0x8001; *(uint32_t*)0x200018ec = 3; *(uint32_t*)0x200018f0 = 0; *(uint32_t*)0x200018f4 = 1; *(uint32_t*)0x200018f8 = 0x800; *(uint32_t*)0x200018fc = 8; *(uint32_t*)0x20001900 = 6; *(uint32_t*)0x20001904 = 0xff; *(uint32_t*)0x20001908 = 4; *(uint32_t*)0x2000190c = 0x738d; *(uint32_t*)0x20001910 = 0; *(uint32_t*)0x20001914 = 0x5905b5f8; *(uint32_t*)0x20001918 = 3; *(uint32_t*)0x2000191c = 5; *(uint32_t*)0x20001920 = 0x20; *(uint32_t*)0x20001924 = 1; *(uint32_t*)0x20001928 = 2; *(uint32_t*)0x2000192c = 6; *(uint32_t*)0x20001930 = 0; *(uint32_t*)0x20001934 = 0xfc; *(uint32_t*)0x20001938 = 4; *(uint32_t*)0x2000193c = 0xeff; *(uint32_t*)0x20001940 = 2; *(uint32_t*)0x20001944 = 6; *(uint32_t*)0x20001948 = 0x7fff; *(uint32_t*)0x2000194c = 0x62d1; *(uint32_t*)0x20001950 = 5; *(uint32_t*)0x20001954 = 0; *(uint32_t*)0x20001958 = 4; *(uint32_t*)0x2000195c = 3; *(uint32_t*)0x20001960 = 0x800000; *(uint32_t*)0x20001964 = 1; *(uint32_t*)0x20001968 = 0x8001; *(uint32_t*)0x2000196c = 0x400; *(uint32_t*)0x20001970 = 7; *(uint32_t*)0x20001974 = 8; *(uint32_t*)0x20001978 = 8; *(uint32_t*)0x2000197c = 6; *(uint32_t*)0x20001980 = 4; *(uint32_t*)0x20001984 = 0x628; *(uint32_t*)0x20001988 = 0x101; *(uint32_t*)0x2000198c = 5; *(uint32_t*)0x20001990 = 0xfe1; *(uint32_t*)0x20001994 = 0x243; *(uint32_t*)0x20001998 = 0x6d1; *(uint32_t*)0x2000199c = -1; *(uint32_t*)0x200019a0 = 0; *(uint32_t*)0x200019a4 = 0x80000001; *(uint32_t*)0x200019a8 = 5; *(uint32_t*)0x200019ac = 0xdcb; *(uint32_t*)0x200019b0 = 0x401; *(uint32_t*)0x200019b4 = 0x98a; *(uint32_t*)0x200019b8 = 0x8f9; *(uint32_t*)0x200019bc = 0x900; *(uint32_t*)0x200019c0 = 0x1ff; *(uint32_t*)0x200019c4 = 0x1ff; *(uint32_t*)0x200019c8 = 5; *(uint32_t*)0x200019cc = 0x401; *(uint32_t*)0x200019d0 = 0x800; *(uint32_t*)0x200019d4 = 6; *(uint32_t*)0x200019d8 = 0; *(uint32_t*)0x200019dc = 0x401; *(uint32_t*)0x200019e0 = 1; *(uint32_t*)0x200019e4 = 0x69; *(uint32_t*)0x200019e8 = 9; *(uint32_t*)0x200019ec = 0x7f; *(uint32_t*)0x200019f0 = 1; *(uint32_t*)0x200019f4 = 1; *(uint32_t*)0x200019f8 = 4; *(uint32_t*)0x200019fc = 1; *(uint32_t*)0x20001a00 = 7; *(uint32_t*)0x20001a04 = 0x3f; *(uint32_t*)0x20001a08 = 1; *(uint32_t*)0x20001a0c = 1; *(uint32_t*)0x20001a10 = 0x10001; *(uint32_t*)0x20001a14 = 0x1f; *(uint32_t*)0x20001a18 = 0x1000; *(uint32_t*)0x20001a1c = 0xfffffffe; *(uint32_t*)0x20001a20 = 2; *(uint32_t*)0x20001a24 = 0x200; *(uint32_t*)0x20001a28 = 0xfffffffe; *(uint32_t*)0x20001a2c = 7; *(uint32_t*)0x20001a30 = 0; *(uint32_t*)0x20001a34 = 5; *(uint32_t*)0x20001a38 = 0; *(uint32_t*)0x20001a3c = 0x400; *(uint32_t*)0x20001a40 = 9; *(uint32_t*)0x20001a44 = 9; *(uint32_t*)0x20001a48 = 2; *(uint32_t*)0x20001a4c = 6; *(uint32_t*)0x20001a50 = 0xfff; *(uint32_t*)0x20001a54 = 0xfffffc00; *(uint32_t*)0x20001a58 = 4; *(uint32_t*)0x20001a5c = 0x10001; *(uint32_t*)0x20001a60 = 0; *(uint32_t*)0x20001a64 = 0x10001; *(uint32_t*)0x20001a68 = 5; *(uint32_t*)0x20001a6c = 7; *(uint32_t*)0x20001a70 = 3; *(uint32_t*)0x20001a74 = 0x10000000; *(uint32_t*)0x20001a78 = 0xc9db; *(uint32_t*)0x20001a7c = 0x3f; *(uint32_t*)0x20001a80 = 0x401; *(uint32_t*)0x20001a84 = 0x10001; *(uint32_t*)0x20001a88 = 5; *(uint32_t*)0x20001a8c = 6; *(uint32_t*)0x20001a90 = 0x91f3; *(uint32_t*)0x20001a94 = 6; *(uint32_t*)0x20001a98 = 0; *(uint32_t*)0x20001a9c = 0x7fffffff; *(uint32_t*)0x20001aa0 = 0x41ef; *(uint32_t*)0x20001aa4 = 2; *(uint32_t*)0x20001aa8 = 1; *(uint32_t*)0x20001aac = 8; *(uint32_t*)0x20001ab0 = 8; *(uint32_t*)0x20001ab4 = 7; *(uint32_t*)0x20001ab8 = 0x7ff; *(uint32_t*)0x20001abc = 0x400; *(uint32_t*)0x20001ac0 = 1; *(uint32_t*)0x20001ac4 = 0; *(uint32_t*)0x20001ac8 = 0xfc; *(uint32_t*)0x20001acc = 9; *(uint32_t*)0x20001ad0 = 0x14; *(uint32_t*)0x20001ad4 = -1; *(uint32_t*)0x20001ad8 = 0xffff2312; *(uint32_t*)0x20001adc = 0x84bd; *(uint32_t*)0x20001ae0 = 2; *(uint32_t*)0x20001ae4 = 0x81; *(uint32_t*)0x20001ae8 = 2; *(uint32_t*)0x20001aec = 0x7fffffff; *(uint32_t*)0x20001af0 = 0x3f; *(uint32_t*)0x20001af4 = 0x3b; *(uint32_t*)0x20001af8 = 0x3ff; *(uint32_t*)0x20001afc = 0; *(uint32_t*)0x20001b00 = 7; *(uint32_t*)0x20001b04 = 0x800; *(uint32_t*)0x20001b08 = 2; *(uint32_t*)0x20001b0c = 0; *(uint32_t*)0x20001b10 = 0x80; *(uint8_t*)0x20001b14 = 0xac; *(uint8_t*)0x20001b15 = 0x14; *(uint8_t*)0x20001b16 = 0x14; *(uint8_t*)0x20001b17 = 0x12; *(uint32_t*)0x20001b18 = 0x7fffffff; *(uint32_t*)0x20001b1c = 5; *(uint32_t*)0x20001b20 = htobe32(0); memcpy((void*)0x20001b28, "\x4e\x46\x51\x55\x45\x55\x45\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00", 32); *(uint32_t*)0x20001b48 = 8; *(uint16_t*)0x20001b50 = 0; *(uint32_t*)0x20001b58 = 0x15; *(uint32_t*)0x20001b5c = 0; *(uint16_t*)0x20001b60 = htobe16(0); memcpy((void*)0x20001b62, "\x69\x70\x36\x67\x72\x65\x74\x61\x70\x30\x00\x00\x00\x00\x00\x00", 16); memcpy((void*)0x20001b72, "\x79\x61\x6d\x30\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00", 16); memcpy((void*)0x20001b82, "\x73\x79\x7a\x6b\x61\x6c\x6c\x65\x72\x30\x00\x00\x00\x00\x00\x00", 16); memcpy((void*)0x20001b92, "\x73\x79\x7a\x5f\x74\x75\x6e\x00\x00\x00\x00\x00\x00\x00\x00\x00", 16); *(uint8_t*)0x20001ba2 = 1; *(uint8_t*)0x20001ba3 = 0x80; *(uint8_t*)0x20001ba4 = 0xc2; *(uint8_t*)0x20001ba5 = 0; *(uint8_t*)0x20001ba6 = 0; *(uint8_t*)0x20001ba7 = 0; *(uint8_t*)0x20001ba8 = 0; *(uint8_t*)0x20001ba9 = 0; *(uint8_t*)0x20001baa = 0; *(uint8_t*)0x20001bab = 0; *(uint8_t*)0x20001bac = 0; *(uint8_t*)0x20001bad = 0; *(uint8_t*)0x20001bae = 0; *(uint8_t*)0x20001baf = 0; *(uint8_t*)0x20001bb0 = 0; *(uint8_t*)0x20001bb1 = 0; *(uint8_t*)0x20001bb2 = 0; *(uint8_t*)0x20001bb3 = 0; *(uint8_t*)0x20001bb4 = 0; *(uint8_t*)0x20001bb5 = 0; *(uint8_t*)0x20001bb6 = 0; *(uint8_t*)0x20001bb7 = 0; *(uint8_t*)0x20001bb8 = 0; *(uint8_t*)0x20001bb9 = 0; *(uint32_t*)0x20001bbc = 0x70; *(uint32_t*)0x20001bc0 = 0x70; *(uint32_t*)0x20001bc4 = 0xc0; memcpy((void*)0x20001bc8, "\x6c\x6f\x67\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00", 32); *(uint32_t*)0x20001be8 = 0x28; *(uint8_t*)0x20001bf0 = 0xfc; memcpy((void*)0x20001bf1, "\x5b\x47\x58\x3c\x5c\xb1\x0f\xac\x4c\xfa\xcf\x7f" "\x1b\x97\xd4\xc2\x53\x53\xc4\x6f\xc6\x69\x7b\x36" "\x2b\x03\xbf\xe7\x42\x7c", 30); *(uint32_t*)0x20001c10 = 0; *(uint32_t*)0x20001c18 = 0; memcpy((void*)0x20001c1c, "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" "\x00\x00\x00\x00\x00\x00\x00\x00", 32); *(uint32_t*)0x20001c3c = 2; *(uint32_t*)0x20001c40 = -1; *(uint32_t*)0x20001c44 = 0; syscall(__NR_setsockopt, r[0], 0, 0x80, 0x20000440, 0xb40); } int main() { syscall(__NR_mmap, 0x20000000, 0x1000000, 3, 0x32, -1, 0); loop(); return 0; }