lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date:   Mon, 14 Aug 2017 14:10:32 +0800
From:   kernel test robot <xiaolong.ye@...el.com>
To:     Florian Fainelli <f.fainelli@...il.com>
Cc:     "David S. Miller" <davem@...emloft.net>,
        LKML <linux-kernel@...r.kernel.org>,
        Linus Torvalds <torvalds@...ux-foundation.org>, lkp@...org
Subject: [lkp-robot] [net]  98cd1552ea: BUG:unable_to_handle_kernel

FYI, we noticed the following commit:

commit: 98cd1552ea27e512c7e99e2aa76042a26e4fb25c ("net: dsa: Mock-up driver")
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git master

in testcase: trinity
with following parameters:

	runtime: 300s

test-description: Trinity is a linux system call fuzz tester.
test-url: http://codemonkey.org.uk/projects/trinity/

on test machine: qemu-system-x86_64 -enable-kvm -cpu host -smp 2 -m 1G

caused below changes (please refer to attached dmesg/kmsg for entire log/backtrace):

+-----------------------------------------------------+------------+------------+
|                                                     | 772c3bdad1 | 98cd1552ea |
+-----------------------------------------------------+------------+------------+
| boot_successes                                      | 0          | 0          |
| boot_failures                                       | 30         | 30         |
| WARNING:at_arch/x86/mm/dump_pagetables.c:#note_page | 30         | 30         |
| invoked_oom-killer:gfp_mask=0x                      | 28         | 13         |
| Mem-Info                                            | 28         | 13         |
| Out_of_memory:Kill_process                          | 28         | 13         |
| BUG:unable_to_handle_kernel                         | 0          | 16         |
| Oops:#[##]                                          | 0          | 16         |
| Kernel_panic-not_syncing:Fatal_exception            | 0          | 16         |
+-----------------------------------------------------+------------+------------+

[    9.603869] BUG: unable to handle kernel NULL pointer dereference at 00000000000001f0
[    9.606422] IP: dsa_cpu_port_get_sset_count+0x15/0x60
[    9.607741] PGD 0 
[    9.607743] 
[    9.608670] Oops: 0000 [#1] SMP DEBUG_PAGEALLOC
[    9.609858] Modules linked in: input_leds tpm_tis tpm_tis_core tpm e1000
[    9.611615] CPU: 0 PID: 192 Comm: systemd-udevd Tainted: G        W       4.11.0-rc3-00912-g98cd155 #1
[    9.614054] task: ffff88000c668380 task.stack: ffffc90000154000
[    9.615606] RIP: 0010:dsa_cpu_port_get_sset_count+0x15/0x60
[    9.617065] RSP: 0018:ffffc90000157bd0 EFLAGS: 00010246
[    9.618421] RAX: 0000000000000000 RBX: 0000000000000000 RCX: 0000000000000000
[    9.620292] RDX: 0000000000000004 RSI: 0000000000000000 RDI: ffff88000b596000
[    9.622158] RBP: ffffc90000157be8 R08: 00000000042909d0 R09: bed418bf00000000
[    9.624021] R10: 0000000000000001 R11: 0000000000000001 R12: 0000000000000000
[    9.625886] R13: ffffc90000157bfc R14: 00007ffd60809a80 R15: 00000000ffffffed
[    9.627750] FS:  00007f9ce88cf8c0(0000) GS:ffff880034400000(0000) knlGS:0000000000000000
[    9.629837] CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[    9.631322] CR2: 00000000000001f0 CR3: 000000000b454000 CR4: 00000000000006b0
[    9.633184] Call Trace:
[    9.633842]  ethtool_get_drvinfo+0xc3/0x160
[    9.634944]  dev_ethtool+0x17b/0x2310
[    9.635908]  ? rtnl_lock+0x12/0x20
[    9.636818]  dev_ioctl+0x522/0x660
[    9.637727]  ? __fd_install+0x25b/0x290
[    9.638749]  ? kvm_sched_clock_read+0x25/0x40
[    9.639902]  sock_do_ioctl+0x2b/0x40
[    9.641143]  sock_ioctl+0x268/0x280
[    9.642074]  do_vfs_ioctl+0x68a/0x6e0
[    9.643038]  ? __fd_install+0x273/0x290
[    9.644054]  ? get_unused_fd_flags+0x30/0x30
[    9.645172]  ? sock_alloc_file+0xb2/0x100
[    9.646218]  SyS_ioctl+0x3c/0x70
[    9.647076]  entry_SYSCALL_64_fastpath+0x23/0xc6
[    9.648294] RIP: 0033:0x7f9ce77477e7
[    9.649238] RSP: 002b:00007ffd60809a38 EFLAGS: 00000246 ORIG_RAX: 0000000000000010
[    9.651214] RAX: ffffffffffffffda RBX: 000055c8e51c8670 RCX: 00007f9ce77477e7
[    9.653071] RDX: 00007ffd60809a50 RSI: 0000000000008946 RDI: 0000000000000007
[    9.654938] RBP: 00007f9ce6d55ce2 R08: 530f843e65edc95c R09: 0000000000000168
[    9.656795] R10: 0000000000000001 R11: 0000000000000246 R12: 000055c8e51d14c0
[    9.658638] R13: 0000000000000000 R14: 00007f9ce6d55ce2 R15: 00007f9ce6ca5207
[    9.660508] Code: be f7 48 89 cf ff d0 48 83 c4 10 5b 41 5c 41 5d 41 5e 41 5f 5d c3 55 48 89 e5 41 55 41 54 41 89 f4 53 48 8b 87 10 03 00 00 31 db <4c> 8b a8 f0 01 00 00 48 8b 80 20 01 00 00 48 85 c0 74 06 ff d0 
[    9.665499] RIP: dsa_cpu_port_get_sset_count+0x15/0x60 RSP: ffffc90000157bd0
[    9.667336] CR2: 00000000000001f0
[    9.668510] ---[ end trace 171be0d4ea10840e ]---

To reproduce:

        git clone https://github.com/01org/lkp-tests.git
        cd lkp-tests
        bin/lkp qemu -k <bzImage> job-script  # job-script is attached in this email

Thanks,
Xiaolong

View attachment "config-4.11.0-rc3-00912-g98cd155" of type "text/plain" (119230 bytes)

View attachment "job-script" of type "text/plain" (3951 bytes)

Download attachment "dmesg.xz" of type "application/octet-stream" (14748 bytes)

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ