Lines Matching +full:0 +full:x187
7 # db_trace_self_wrapper() at db_trace_self_wrapper+0x2b/frame 0xfffffe00e4f2fa10
8 # vpanic() at vpanic+0x187/frame 0xfffffe00e4f2fa70
9 # panic() at panic+0x43/frame 0xfffffe00e4f2fad0
10 # soaio_process_sb() at soaio_process_sb+0x79a/frame 0xfffffe00e4f2fb70
11 # soaio_kproc_loop() at soaio_kproc_loop+0x96/frame 0xfffffe00e4f2fbb0
12 # fork_exit() at fork_exit+0x80/frame 0xfffffe00e4f2fbf0
13 # fork_trampoline() at fork_trampoline+0xe/frame 0xfffffe00e4f2fbf0
14 # --- trap 0, rip = 0, rsp = 0, rbp = 0 ---
17 # Stopped at kdb_enter+0x37: movq $0,0x127297e(%rip)
19 # version: FreeBSD 14.0-CURRENT #0 main-n249158-1f7a6325fe1b: Sun Sep 5 09:12:58 CEST 2021
23 [ `uname -p` != "amd64" ] && exit 0
24 [ `id -u ` -ne 0 ] && echo "Must be root!" && exit 1
28 // https://syzkaller.appspot.com/bug?id=0ecbaedb9a54dd1af01c400dabe774e5c6c6fb6c
55 while (waitpid(-1, status, 0) != pid) {
78 int i = 0;
80 if (pthread_create(&th, &attr, fn, arg) == 0) {
101 if (pthread_mutex_init(&ev->mu, 0))
103 if (pthread_cond_init(&ev->cv, 0))
105 ev->state = 0;
110 ev->state = 0;
180 return 0;
186 for (call = 0; call < 5; call++) {
187 for (thread = 0; thread < (int)(sizeof(threads) / sizeof(threads[0]));
207 for (i = 0; i < 100 && __atomic_load_n(&running, __ATOMIC_RELAXED); i++)
213 #define WAIT_FLAGS 0
217 int iter __unused = 0;
220 if (pid < 0)
222 if (pid == 0) {
224 exit(0);
226 int status = 0;
245 uint64_t r[1] = {0xffffffffffffffff};
249 intptr_t res = 0;
251 case 0:
252 res = syscall(SYS_socket, 0x1cul, 5ul, 0x84);
254 r[0] = res;
257 *(uint64_t*)0x20000440 = 0;
258 *(uint32_t*)0x20000448 = 0;
259 *(uint64_t*)0x20000450 = 0;
260 *(uint64_t*)0x20000458 = 0;
261 *(uint64_t*)0x20000460 = 0;
262 *(uint64_t*)0x20000468 = 0;
263 *(uint32_t*)0x20000470 = 0;
264 syscall(SYS_recvmsg, r[0], 0x20000440ul, 0x40040ul);
267 *(uint32_t*)0x200006c0 = r[0];
268 *(uint64_t*)0x200006c8 = 0x800;
269 *(uint64_t*)0x200006d0 = 0;
270 *(uint64_t*)0x200006d8 = 0;
271 *(uint32_t*)0x200006e0 = -1;
272 *(uint32_t*)0x200006e4 = 8;
273 *(uint64_t*)0x200006e8 = 0xffffffffffff658c;
274 *(uint32_t*)0x200006f0 = 4;
275 *(uint32_t*)0x200006f4 = 0x1ff;
276 *(uint64_t*)0x200006f8 = 0x40;
277 *(uint64_t*)0x20000700 = 0;
278 *(uint64_t*)0x20000708 = 0;
279 *(uint32_t*)0x20000710 = 4;
280 *(uint32_t*)0x20000714 = 8;
281 *(uint32_t*)0x20000718 = 6;
282 *(uint64_t*)0x20000720 = 0;
283 *(uint64_t*)0x20000728 = 0;
284 syscall(SYS_aio_readv, 0x200006c0ul);
287 *(uint32_t*)0x20000140 = 0;
288 *(uint16_t*)0x20000144 = 4;
289 *(uint8_t*)0x20000146 = 1;
290 syscall(SYS_setsockopt, r[0], 0x84, 0x1e, 0x20000140ul, 8ul);
293 *(uint64_t*)0x20000580 = 0x20000080;
294 *(uint8_t*)0x20000080 = 0x1c;
295 *(uint8_t*)0x20000081 = 0x1c;
296 *(uint16_t*)0x20000082 = htobe16(0x4e22);
297 *(uint32_t*)0x20000084 = 0;
298 *(uint64_t*)0x20000088 = htobe64(0);
299 *(uint64_t*)0x20000090 = htobe64(1);
300 *(uint32_t*)0x20000098 = 0;
301 *(uint32_t*)0x20000588 = 0x1c;
302 *(uint64_t*)0x20000590 = 0x20000400;
303 *(uint64_t*)0x20000400 = 0x200000c0;
304 memset((void*)0x200000c0, 239, 1);
305 *(uint64_t*)0x20000408 = 1;
306 *(uint32_t*)0x20000598 = 1;
307 *(uint64_t*)0x200005a0 = 0;
308 *(uint32_t*)0x200005a8 = 0xd0;
309 *(uint32_t*)0x200005ac = 0;
310 syscall(SYS_sendmsg, r[0], 0x20000580ul, 0ul);
316 syscall(SYS_mmap, 0x20000000ul, 0x1000000ul, 7ul, 0x1012ul, -1, 0ul);
318 return 0;
327 exit 0