[syzbot] upstream boot error: BUG: unable to handle kernel NULL pointer dereference in __dabt_svc

From: syzbot
Date: Tue Apr 25 2023 - 16:06:47 EST


Hello,

syzbot found the following issue on:

HEAD commit: de10553fce40 Merge tag 'x86-apic-2023-04-24' of git://git...
git tree: upstream
console output: https://syzkaller.appspot.com/x/log.txt?x=14bdae68280000
kernel config: https://syzkaller.appspot.com/x/.config?x=975b8311f6b96bca
dashboard link: https://syzkaller.appspot.com/bug?extid=d692037148a8169fc9dd
compiler: arm-linux-gnueabi-gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2
userspace arch: arm

IMPORTANT: if you fix the issue, please add the following tag to the commit:
Reported-by: syzbot+d692037148a8169fc9dd@xxxxxxxxxxxxxxxxxxxxxxxxx

8<--- cut here ---
Unable to handle kernel NULL pointer dereference at virtual address 000005fc when read
[000005fc] *pgd=80000080004003, *pmd=00000000
Internal error: Oops: 206 [#1] PREEMPT SMP ARM
Modules linked in:
CPU: 1 PID: 0 Comm: swapper/1 Not tainted 6.3.0-syzkaller #0
Hardware name: ARM-Versatile Express
Insufficient stack space to handle exception!
Task stack: [0xdf85c000..0xdf85e000]
IRQ stack: [0xdf804000..0xdf806000]
Overflow stack: [0x828ae000..0x828af000]
Internal error: kernel stack overflow: 0 [#2] PREEMPT SMP ARM
Modules linked in:
CPU: 1 PID: 0 Comm: swapper/1 Not tainted 6.3.0-syzkaller #0
Hardware name: ARM-Versatile Express
PC is at __dabt_svc+0x14/0x60 arch/arm/kernel/entry-armv.S:210
LR is at vsnprintf+0x378/0x408 lib/vsprintf.c:2862
pc : [<80200a74>] lr : [<817ad5d8>] psr: 00000193
sp : df804028 ip : df805868 fp : df805864
r10: 00000060 r9 : ffffffff r8 : 00000010
r7 : 00000020 r6 : 00000004 r5 : ffffffff r4 : df805960
r3 : ffffffff r2 : 00000040 r1 : ffffffff r0 : 8264d250
Flags: nzcv IRQs off FIQs on Mode SVC_32 ISA ARM Segment none
Control: 30c5387d Table: 80003000 DAC: 00000000
Register r0 information:
8<--- cut here ---
Unable to handle kernel NULL pointer dereference at virtual address 000001ff when read
[000001ff] *pgd=80000080004003, *pmd=00000000
Internal error: Oops: 206 [#3] PREEMPT SMP ARM
Modules linked in:
CPU: 1 PID: 0 Comm: swapper/1 Not tainted 6.3.0-syzkaller #0
Hardware name: ARM-Versatile Express
PC is at __find_vmap_area mm/vmalloc.c:841 [inline]
PC is at find_vmap_area mm/vmalloc.c:1862 [inline]
PC is at find_vm_area mm/vmalloc.c:2571 [inline]
PC is at vmalloc_dump_obj+0x38/0xb4 mm/vmalloc.c:4108
LR is at __raw_spin_lock include/linux/spinlock_api_smp.h:132 [inline]
LR is at _raw_spin_lock+0x18/0x58 kernel/locking/spinlock.c:154
pc : [<8046b2f0>] lr : [<817db0f4>] psr: 20000193
sp : 828aeef8 ip : 828aeee0 fp : 828aef0c
r10: 828f3980 r9 : 8241c964 r8 : 8264d41c
r7 : 60000193 r6 : 00000001 r5 : 8264e000 r4 : 00000207
r3 : 80216bd4 r2 : 00001d4c r1 : 00000000 r0 : 00000001
Flags: nzCv IRQs off FIQs on Mode SVC_32 ISA ARM Segment none
Control: 30c5387d Table: 80003000 DAC: 00000000


---
This report is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzkaller@xxxxxxxxxxxxxxxx.

syzbot will keep track of this issue. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.