#28183 defect

tor- unexpected stop bug: (Sandbox) Caught a bad syscall attempt (syscall shutdown)

Reported by: n05
Priority: High
Component: Core Tor/Tor Version: Tor:
Severity: Normal Keywords: sandbox regression 035-must 034-backport? 033-backport 029-backport? regression? 035-rc-blocker?
tor -f ./torrc
Oct 24 08:10:51.726 [notice] Tor running on Linux with Libevent 2.1.8-stable, OpenSSL 1.0.2p, Zlib 1.2.11, Liblzma 5.2.4, and Libzstd N/A.
Oct 24 08:10:51.726 [notice] This version is not a stable Tor release. Expect more bugs than usual.
Oct 24 08:10:51.726 [notice] Read configuration file "/home/n05/./torrc".
Oct 24 08:10:51.730 [notice] Opening Socks listener on
Oct 24 08:10:51.730 [notice] Opened Socks listener on
Oct 24 08:10:51.000 [notice] Parsing GEOIP IPv4 file /usr/share/tor/geoip.
Oct 24 08:10:51.000 [notice] Parsing GEOIP IPv6 file /usr/share/tor/geoip6.
Oct 24 08:10:51.000 [notice] Bootstrapped 0%: Starting
Oct 24 08:10:52.000 [notice] Starting with guard context "default"
Oct 24 08:10:52.000 [notice] Bootstrapped 10%: Finishing handshake with directory server
Oct 24 08:10:52.000 [notice] Bootstrapped 80%: Connecting to the Tor network
Oct 24 08:10:52.000 [notice] Bootstrapped 90%: Establishing a Tor circuit
Oct 24 08:10:53.000 [notice] Bootstrapped 100%: Done

============================================================ T= 1540371205
(Sandbox) Caught a bad syscall attempt (syscall shutdown)

Log notice

SandBox 1
SafeLogging 1
NoExec 1
ClientOnly 1
SafeSocks 1
TestSocks 1

#8min keep-alive
KeepAlivePeriod 600
SOCKSPort 7012

TruncateLogFile 1
HardwareAccel 1
#AccelName rdrand
AvoidDiskWrites 1

emerge --info

Portage 2.3.51 (python 3.6.6-final-0, default/linux/amd64/17.0, gcc-8.2.0, glibc-2.27-r6, 4.19.0-gentoo_intel x86_64)
System uname: Linux-4.19.0-gentoo_intel-x86_64-Intel-R-_Core-TM-_i7-2860QM_CPU_@_2.50GHz-with-gentoo-2.6
KiB Mem: 16211896 total, 328624 free
KiB Swap: 15625212 total, 15625212 free
Timestamp of repository gentoo: Wed, 24 Oct 2018 00:45:01 +0000
sh bash 4.4_p23
ld GNU ld (Gentoo 2.31.1 p3) 2.31.1
distcc 3.2rc1 x86_64-pc-linux-gnu [disabled]
ccache version 3.5 [disabled]
app-shells/bash: 4.4_p23::gentoo
dev-java/java-config: 2.2.0-r4::gentoo
dev-lang/perl: 5.26.2::gentoo
dev-lang/python: 2.7.15::gentoo, 3.6.6::gentoo
dev-util/ccache: 3.5::gentoo
dev-util/cmake: 3.12.3::gentoo
dev-util/pkgconfig: 0.29.2::gentoo
sys-apps/baselayout: 2.6-r1::gentoo
sys-apps/openrc: 0.39::gentoo
sys-apps/sandbox: 2.13::gentoo
sys-devel/autoconf: 2.13::gentoo, 2.69-r4::gentoo
sys-devel/automake: 1.16.1-r1::gentoo
sys-devel/binutils: 2.31.1-r1::gentoo
sys-devel/gcc: 8.2.0-r3::gentoo
sys-devel/gcc-config: 2.0::gentoo
sys-devel/libtool: 2.4.6-r5::gentoo
sys-devel/make: 4.2.1-r4::gentoo
sys-kernel/linux-headers: 4.19::gentoo (virtual/os-headers)
sys-libs/glibc: 2.27-r6::gentoo


location: /usr/portage
sync-type: webrsync
sync-uri: rsync://
priority: -1000

ACCEPT_KEYWORDS="amd64 ~amd64"
CFLAGS="-O2 -pipe -flto=8 -fuse-ld=gold -fomit-frame-pointer -ftree-vectorize -march=sandybridge -mtune=sandybridge -mmmx -msse -msse2 -msse3 -mssse3 -mcx16 -msahf -maes -mpclmul -mpopcnt -mavx -msse4.2 -msse4.1 -mfxsr -mxsave -mxsaveopt --param l1-cache-size=32 --param l1-cache-line-size=64 --param l2-cache-size=8192"
CONFIG_PROTECT="/etc /usr/lib64/libreoffice/program/sofficerc /usr/share/gnupg/qualified.txt /var/lib/i2pd/certificates"
CONFIG_PROTECT_MASK="/etc/ca-certificates.conf /etc/dconf /etc/env.d /etc/fonts/fonts.conf /etc/gconf /etc/gentoo-release /etc/revdep-rebuild /etc/sandbox.d /etc/terminfo"
CXXFLAGS="-O2 -pipe -flto=8 -fuse-ld=gold -fomit-frame-pointer -ftree-vectorize -march=sandybridge -mtune=sandybridge -mmmx -msse -msse2 -msse3 -mssse3 -mcx16 -msahf -maes -mpclmul -mpopcnt -mavx -msse4.2 -msse4.1 -mfxsr -mxsave -mxsaveopt --param l1-cache-size=32 --param l1-cache-line-size=64 --param l2-cache-size=8192"
FCFLAGS="-O2 -pipe"
FEATURES="assume-digests binpkg-logs candy cgroup config-protect-if-modified distlocks ebuild-locks fixlafiles merge-sync multilib-strict news nodoc noinfo noman parallel-fetch parallel-install preserve-libs protect-owned sandbox sfperms strict unknown-features-warn unmerge-logs unmerge-orphans userfetch userpriv usersandbox usersync webrsync-gpg xattr"
FFLAGS="-O2 -pipe"

LDFLAGS="-Wl,-O1 -Wl,--as-needed"
LINGUAS="en ru ua"
PORTAGE_RSYNC_OPTS="--recursive --links --safe-links --perms --times --omit-dir-times --compress --force --whole-file --delete --stats --human-readable --timeout=180 --exclude=/distfiles --exclude=/local --exclude=/packages --exclude=/.git"
USE="#chromium #graphite #link X a aac acl acpi adjust alsa amd64 avx based bash-completion berkdb branding break, bzip2 cairo can check cli consolekit crypt custom-cflags custom-optimization cxx dbus dri dri3 ffmpeg fortran gallium gdbm gif glamor gnome-keyring graphite gstreamer gtk gtk3 iconv icu intermediate jemalloc jit jpeg jpeg2k jumbo-build jumbo_file_merge_limit libnotify libsamplerate libtirpc llvm lm_sensors lock loop lto lzma lzo make matroska mime mmx mmxext mng mp3 mp4 multilib ncurses networkmanager nls nptl ntp on opengl openmp optimization optimizations pam pclmul pcre png policykit polyhedral popcnt rdesktop readline representation seccomp session shenandoah sndfile socks5 sound speedup, sqlite sse sse2 sse3 sse4_1 sse4_2 ssl ssse3 startup-notification svg system-bzip2 system-ffmpeg system-harfbuzz system-icu system-jpeg system-libevent system-libvpx system-libwebp system-lua system-sqlite system-zlib tcpd theora threads thunar tiff time truetype udev udisks unicode upower usb uvm v4l vaapi vdpau vorbis vpx vulkan webp wifi wmf x264 xa xattr xcb xpm xscreensaver xvid xvmc zlib" ABI_X86="64" ALSA_CARDS="ali5451 als4000 atiixp atiixp-modem bt87x ca0106 cmipci emu10k1x ens1370 ens1371 es1938 es1968 fm801 hda-intel intel8x0 intel8x0m maestro3 trident usb-audio via82xx via82xx-modem ymfpci" APACHE2_MODULES="authn_core authz_core socache_shmcb unixd actions alias auth_basic authn_alias authn_anon authn_dbm authn_default authn_file authz_dbm authz_default authz_groupfile authz_host authz_owner authz_user autoindex cache cgi cgid dav dav_fs dav_lock deflate dir disk_cache env expires ext_filter file_cache filter headers include info log_config logio mem_cache mime mime_magic negotiation rewrite setenvif speling status unique_id userdir usertrack vhost_alias" CALLIGRA_FEATURES="karbon plan sheets stage words" COLLECTD_PLUGINS="df interface irq load memory rrdtool swap syslog" CPU_FLAGS_X86="aes avx mmx mmxext pclmul popcnt sse sse2 sse3 sse4_1 sse4_2 ssse3" ELIBC="glibc" GPSD_PROTOCOLS="ashtech aivdm earthmate evermore fv18 garmin garmintxt gpsclock isync itrax mtk3301 nmea ntrip navcom oceanserver oldstyle oncore rtcm104v2 rtcm104v3 sirf skytraq superstar2 timing tsip tripmate tnt ublox ubx" INPUT_DEVICES="evdev synaptics" KERNEL="linux" L10N="en ru ua" LCD_DEVICES="bayrad cfontz cfontz633 glk hd44780 lb216 lcdm001 mtxorb ncurses text" LIBREOFFICE_EXTENSIONS="presenter-console presenter-minimizer" OFFICE_IMPLEMENTATION="libreoffice" PHP_TARGETS="php5-6 php7-1" POSTGRES_TARGETS="postgres9_5 postgres10" PYTHON_SINGLE_TARGET="python3_6" PYTHON_TARGETS="python2_7 python3_6" QEMU_SOFTMMU_TARGETS="arm" QEMU_USER_TARGETS="arm" RUBY_TARGETS="ruby25" USERLAND="GNU" VIDEO_CARDS="intel i965" XFCE_PLUGINS="brightness clock power trash" XTABLES_ADDONS="quota2 psd pknock lscan length2 ipv4options ipset ipp2p iface geoip fuzzy condition tee tarpit sysrq steal rawnat logmark ipmark dhcpmac delude chaos account"

equery u tor
[ Legend : U - final flag setting for installation]
[ : I - package is installed with flag ]
[ Colors : set, unset ]

  • Found these USE flags for net-vpn/tor- U I
  • - caps : Use Linux capabilities library to control privilege
  • - libressl : Use dev-libs/libressl instead of dev-libs/openssl when applicable (see also the ssl useflag) + + lzma : Support for LZMA (de)compression algorithm
  • - scrypt : Use app-crypt/libscrypt for the scrypt algorithm + + seccomp : Enable seccomp (secure computing mode) to perform system call filtering at runtime to increase security of programs
  • - systemd : Enable use of systemd-specific libraries and features like socket activation or session tracking
  • - test : Enable dependencies and/or preparations necessary to run tests (usually controlled by FEATURES=test but can be toggled independently)
  • - tor-hardening : Compile tor with hardening on vanilla compilers/linkers
  • - zstd : Use app-arch/zstd for compression

gentoo bug :

comment:1 Changed 7 weeks ago by dgoulet

Component: - Select a componentCore Tor/Tor
Keywords: sandbox regression added; (Sandbox) Caught a bad syscall attempt (syscall shutdown) removed
Milestone: Tor: 0.3.5.x-final

comment:2 Changed 7 weeks ago by n05

Component: Core Tor/Tor- Select a component
Keywords: (Sandbox) Caught a bad syscall attempt (syscall shutdown) added; sandbox regression removed

this crash persists about a month. not kernel-dependent.

comment:3 Changed 7 weeks ago by dgoulet

Component: - Select a componentCore Tor/Tor
Keywords: sandbox regression added; (Sandbox) Caught a bad syscall attempt (syscall shutdown) removed

comment:4 Changed 5 weeks ago by nickm

Keywords: 035-must added

comment:5 Changed 4 weeks ago by nickm

Keywords: 034-backport? 033-backport 029-backport? regression? added
Owner: set to nickm
Points: 0
Priority: MediumHigh
Status: newaccepted

I've done this patch against 0.2.9 as "bug28182_029", but I think the bug might be 0.3.5-only, caused by my work on NSS compatibility. I could investigate but it would probably take more time than it's worth.

There's a PR at .

comment:6 Changed 4 weeks ago by nickm

Status: acceptedneeds_review

comment:7 Changed 4 weeks ago by asn

Reviewer: dgoulet

comment:8 Changed 4 weeks ago by nickm

Keywords: 035-rc-blocker? added

comment:9 Changed 4 weeks ago by dgoulet

Status: needs_reviewmerge_ready


comment:10 Changed 4 weeks ago by nickm

Milestone: Tor: 0.3.5.x-finalTor: 0.3.4.x-final
Status: merge_readyneeds_information

merged to 0.3.5 and forward. If this ever shows up for somebody in 0.3.4 or earlier, we should backport, but I think it won't.

