============================================= [ INFO: possible recursive locking detected ] --------------------------------------------- java/6750 is trying to acquire lock: (slock-AF_INET6){-+..}, at: [] sk_clone+0xf4/0x310 but task is already holding lock: (slock-AF_INET6){-+..}, at: [] tcp_v6_rcv+0x34f/0x6f0 other info that might help us debug this: 1 lock held by java/6750: #0: (slock-AF_INET6){-+..}, at: [] tcp_v6_rcv+0x34f/0x6f0 stack backtrace: [] show_trace+0x19/0x20 [] dump_stack+0x1a/0x20 [] print_deadlock_bug+0xa4/0xb0 [] check_deadlock+0x6a/0x80 [] __lock_acquire+0x4f7/0x950 [] lock_acquire+0x5d/0x80 [] _spin_lock+0x25/0x30 [] sk_clone+0xf4/0x310 [] inet_csk_clone+0x11/0x70 [] tcp_create_openreq_child+0x15/0x3e0 [] tcp_v6_syn_recv_sock+0x142/0x610 [] tcp_check_req+0x119/0x420 [] tcp_v6_hnd_req+0x45/0x130 [] tcp_v6_do_rcv+0x247/0x2b0 [] tcp_v6_rcv+0x5d6/0x6f0 [] ip6_input+0x16f/0x340 [] ipv6_rcv+0x114/0x280 [] netif_receive_skb+0x1b1/0x1f0 [] process_backlog+0x90/0x120 [] net_rx_action+0x6d/0x100 [] __do_softirq+0x6f/0x100 [] do_softirq+0x87/0xe0 ======================= [] local_bh_enable_ip+0xb9/0x100 [] _spin_unlock_bh+0x31/0x40 [] release_sock+0x50/0xb0 [] inet_wait_for_connect+0x67/0xd0 [] inet_stream_connect+0x98/0x1d0 [] sys_connect+0x67/0xa0 [] sys_socketcall+0xc6/0x1e0 [] syscall_call+0x7/0xb Slab corruption: start=c62fae5c, len=172 Redzone: 0x6b6b6b6b/0xc0411ac8. Last user: [<170fc2a5>](0x170fc2a5) 0a0: 6b 6b 6b 6b 6b 6b 6b a5 71 f0 2c 5a Prev obj: start=c62facf8, len=172 Redzone: 0xc0d36b48/0xc04110a0. Last user: [<0000000e>](0xe) 000: 90 6a d3 c0 f3 81 01 00 80 11 41 c0 ec ac 2f c6 010: e0 1c 61 c0 00 00 00 00 00 00 00 00 33 02 00 00 slab error in cache_alloc_debugcheck_after(): cache `ip_conntrack': double freen [] show_trace+0x19/0x20 [] dump_stack+0x1a/0x20 [] __slab_error+0x21/0x30 [] cache_alloc_debugcheck_after+0x121/0x1a0 [] kmem_cache_alloc+0x6b/0xc0 [] ip_conntrack_alloc+0x3c/0x130 [] init_conntrack+0x2a/0x110 [] ip_conntrack_in+0x1de/0x230 [] nf_iterate+0x57/0xa0 [] nf_hook_slow+0x56/0xe0 [] ip_rcv+0x239/0x440 [] netif_receive_skb+0x1b1/0x1f0 [] process_backlog+0x90/0x120 [] net_rx_action+0x6d/0x100 [] __do_softirq+0x6f/0x100 [] do_softirq+0x87/0xe0 ======================= [] irq_exit+0x53/0x60 [] do_IRQ+0x6a/0xb0 [] common_interrupt+0x25/0x30 [] memcpy+0x3b/0x50 [] memmove+0x38/0x50 [] leaf_paste_in_buffer+0x7d/0x320 [] balance_leaf+0x24c/0x27d0 [] do_balance+0x60/0xf0 [] reiserfs_paste_into_item+0x164/0x190 [] reiserfs_allocate_blocks_for_region+0x925/0x12e0 [] reiserfs_file_write+0x72c/0x7c0 [] vfs_write+0x88/0x170 [] sys_write+0x3c/0x70 [] syscall_call+0x7/0xb c62fae58: redzone 1:0x6b6b6b6b, redzone 2:0xc0411ac8 ------------[ cut here ]------------ kernel BUG at mm/slab.c:2747! invalid opcode: 0000 [#1] PREEMPT Modules linked in: CPU: 0 EIP: 0060:[] Not tainted VLI EFLAGS: 00010087 (2.6.18 #3) EIP is at cache_free_debugcheck+0x241/0x250 eax: 0113bcc5 ebx: 00010c00 ecx: 000000b8 edx: cf660500 esi: 00000014 edi: c62fae58 ebp: c05f7f70 esp: c05f7f5c ds: 007b es: 007b ss: 0068 Process java (pid: 6848, ti=c05f7000 task=c6934b00 task.ti=c69e6000) Stack: 0113bcc5 c62fa040 c13dc7d8 c62fae5c cf660500 c05f7f94 c0163581 cf660500 c62fae5c c0411ac8 00000246 c62fae5c c69ad904 00000009 c05f7fa4 c0411ac8 cf660500 c62fae5c c05f7fb4 c0411131 c62fae5c cd8acb30 c05f7fc8 c03c06b4 Call Trace: [] show_stack_log_lvl+0x8e/0xb0 [] show_registers+0x14a/0x1d0 [] die+0x167/0x210 [] do_trap+0x7c/0xc0 [] do_invalid_op+0x90/0xa0 [] error_code+0x39/0x40 [] kmem_cache_free+0x61/0xf0 [] ip_conntrack_free+0x18/0x20 [] destroy_conntrack+0x91/0xe0 [] __kfree_skb+0x74/0xf0 [] net_tx_action+0x56/0x120 [] __do_softirq+0x6f/0x100 [] do_softirq+0x87/0xe0 ======================= [] irq_exit+0x53/0x60 [] do_IRQ+0x6a/0xb0 [] common_interrupt+0x25/0x30 [] memcpy+0x3b/0x50 [] memmove+0x38/0x50 [] leaf_paste_in_buffer+0x7d/0x320 [] balance_leaf+0x24c/0x27d0 [] do_balance+0x60/0xf0 [] reiserfs_paste_into_item+0x164/0x190 [] reiserfs_allocate_blocks_for_region+0x925/0x12e0 [] reiserfs_file_write+0x72c/0x7c0 [] vfs_write+0x88/0x170 [] sys_write+0x3c/0x70 [] syscall_call+0x7/0xb Code: 47 ff ff ff e9 68 ff ff ff 0f 0b 60 02 cd e6 4a c0 e9 1b fe ff ff 8b 52 0 EIP: [] cache_free_debugcheck+0x241/0x250 SS:ESP 0068:c05f7f5c <0>Kernel panic - not syncing: Fatal exception in interrupt <3>Slab corruption: start=c62a8d58, len=2048 Redzone: 0x6b6b6b6b/0xc03c0543. Last user: [<170fc2a5>](0x170fc2a5) 7f0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b a5 71 f0 2c 5a Prev obj: start=c62a8487, len=2048 Redzone: 0x0/0x5a5a5a5a. Last user: [<5a5a5a5a>](0x5a5a5a5a) 000: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 slab error in cache_alloc_debugcheck_after(): cache `size-2048': double free, on [] show_trace+0x19/0x20 [] dump_stack+0x1a/0x20 [] __slab_error+0x21/0x30 [] cache_alloc_debugcheck_after+0x121/0x1a0 [] __kmalloc_track_caller+0xa8/0x100 [] __alloc_skb+0x4d/0x110 [] rhine_rx+0x29b/0x490 [] rhine_interrupt+0x193/0x240 [] handle_IRQ_event+0x27/0x70 [] __do_IRQ+0x83/0x110 [] do_IRQ+0x63/0xb0 ======================= [] common_interrupt+0x25/0x30 [] die+0x201/0x210 [] do_trap+0x7c/0xc0 [] do_invalid_op+0x90/0xa0 [] error_code+0x39/0x40 [] kmem_cache_free+0x61/0xf0 [] ip_conntrack_free+0x18/0x20 [] destroy_conntrack+0x91/0xe0 [] __kfree_skb+0x74/0xf0 [] net_tx_action+0x56/0x120 [] __do_softirq+0x6f/0x100 [] do_softirq+0x87/0xe0 ======================= [] irq_exit+0x53/0x60 [] do_IRQ+0x6a/0xb0 [] common_interrupt+0x25/0x30 [] memcpy+0x3b/0x50 [] memmove+0x38/0x50 [] leaf_paste_in_buffer+0x7d/0x320 [] balance_leaf+0x24c/0x27d0 [] do_balance+0x60/0xf0 [] reiserfs_paste_into_item+0x164/0x190 [] reiserfs_allocate_blocks_for_region+0x925/0x12e0 [] reiserfs_file_write+0x72c/0x7c0 [] vfs_write+0x88/0x170 [] sys_write+0x3c/0x70 [] syscall_call+0x7/0xb c62a8d54: redzone 1:0x6b6b6b6b, redzone 2:0xc03c0543