← Back to team overview

group.of.nepali.translators team mailing list archive

[Bug 1669611] Re: Regression in 4.4.0-65-generic causes very frequent system crashes

 

This bug was fixed in the package linux - 4.4.0-67.88

---------------
linux (4.4.0-67.88) xenial; urgency=low

  * linux: 4.4.0-67.88 -proposed tracker (LP: #1667052)

  * Recent KVM RTC cherry-picks break (some) Windows Live-Migrations
    (LP: #1668594)
    - kvm: x86: correctly reset dest_map->vector when restoring LAPIC state

  * Regression in 4.4.0-65-generic causes very frequent system crashes
    (LP: #1669611)
    - Revert "UBUNTU: SAUCE: apparmor: fix lock ordering for mkdir"
    - Revert "UBUNTU: SAUCE: apparmor: fix leak on securityfs pin count"
    - Revert "UBUNTU: SAUCE: apparmor: fix reference count leak when
      securityfs_setup_d_inode() fails"
    - Revert "UBUNTU: SAUCE: apparmor: fix not handling error case when
      securityfs_pin_fs() fails"

  * Upgrade Redpine RS9113 driver to support AP mode (LP: #1665211)
    - SAUCE: Redpine driver to support Host AP mode

  * NFS client : permission denied when trying to access subshare, since kernel
    4.4.0-31 (LP: #1649292)
    - fs: Better permission checking for submounts

  * [Hyper-V] SAUCE: pci-hyperv fixes for SR-IOV on Azure (LP: #1665097)
    - SAUCE: PCI: hv: Fix wslot_to_devfn() to fix warnings on device removal
    - SAUCE: pci-hyperv: properly handle pci bus remove
    - SAUCE: pci-hyperv: lock pci bus on device eject

  * [Hyper-V/Azure] Please include Mellanox OFED drivers in Azure kernel and
    image (LP: #1650058)
    - net/mlx4_en: Fix bad WQE issue
    - net/mlx4_core: Fix racy CQ (Completion Queue) free
    - net/mlx4_core: Fix when to save some qp context flags for dynamic VST to VGT
      transitions
    - net/mlx4_core: Avoid command timeouts during VF driver device shutdown

  * Xenial update to v4.4.49 stable release (LP: #1664960)
    - ARC: [arcompact] brown paper bag bug in unaligned access delay slot fixup
    - selinux: fix off-by-one in setprocattr
    - Revert "x86/ioapic: Restore IO-APIC irq_chip retrigger callback"
    - cpumask: use nr_cpumask_bits for parsing functions
    - hns: avoid stack overflow with CONFIG_KASAN
    - ARM: 8643/3: arm/ptrace: Preserve previous registers for short regset write
    - target: Don't BUG_ON during NodeACL dynamic -> explicit conversion
    - target: Use correct SCSI status during EXTENDED_COPY exception
    - target: Fix early transport_generic_handle_tmr abort scenario
    - target: Fix COMPARE_AND_WRITE ref leak for non GOOD status
    - ARM: 8642/1: LPAE: catch pending imprecise abort on unmask
    - mac80211: Fix adding of mesh vendor IEs
    - netvsc: Set maximum GSO size in the right place
    - scsi: zfcp: fix use-after-free by not tracing WKA port open/close on failed
      send
    - scsi: aacraid: Fix INTx/MSI-x issue with older controllers
    - scsi: mpt3sas: disable ASPM for MPI2 controllers
    - xen-netfront: Delete rx_refill_timer in xennet_disconnect_backend()
    - ALSA: seq: Fix race at creating a queue
    - ALSA: seq: Don't handle loop timeout at snd_seq_pool_done()
    - drm/i915: fix use-after-free in page_flip_completed()
    - Linux 4.4.49

  * NFS client : kernel 4.4.0-57 crash with nfsv4 enries in /etc/fstab
    (LP: #1650336)
    - SUNRPC: fix refcounting problems with auth_gss messages.

  * [0bda:0328] Card reader failed after S3 (LP: #1664809)
    - usb: hub: Wait for connection to be reestablished after port reset

  * linux-lts-xenial 4.4.0-63.84~14.04.2 ADT test failure with linux-lts-xenial
    4.4.0-63.84~14.04.2 (LP: #1664912)
    - SAUCE: apparmor: fix link auditing failure due to, uninitialized var

  * ibmvscsis: Add SGL LIMIT (LP: #1662551)
    - ibmvscsis: Add SGL limit

  * [Hyper-V] Bug fixes for storvsc (tagged queuing, error conditions)
    (LP: #1663687)
    - scsi: storvsc: Enable tracking of queue depth
    - scsi: storvsc: Remove the restriction on max segment size
    - scsi: storvsc: Enable multi-queue support
    - scsi: storvsc: use tagged SRB requests if supported by the device
    - scsi: storvsc: properly handle SRB_ERROR when sense message is present
    - scsi: storvsc: properly set residual data length on errors

  * ISST-LTE:pNV: ppc64_cpu command is hung w HDs, SSDs and NVMe (LP: #1662666)
    - blk-mq: Avoid memory reclaim when remapping queues
    - blk-mq: Fix failed allocation path when mapping queues

  * Possible missing firmware /lib/firmware/i915/kbl_dmc_ver1.bin for module
    i915_bpo (LP: #1624164)
    - SAUCE: i915_bpo: Remove MODULE_FIRMWARE statement for i915/kbl_dmc_ver1.bin

  *  Intel I210 ethernet does not work both after S3 (LP: #1662763)
    - igb: implement igb_ptp_suspend
    - igb: call igb_ptp_suspend during suspend/resume cycle

  * [Hyper-V] Fix ring buffer handling to avoid host throttling (LP: #1661430)
    - Drivers: hv: vmbus: On write cleanup the logic to interrupt the host
    - Drivers: hv: vmbus: On the read path cleanup the logic to interrupt the host
    - Drivers: hv: vmbus: finally fix hv_need_to_signal_on_read()

  * brd module compiled as built-in (LP: #1593293)
    - [Config] CONFIG_BLK_DEV_RAM=m

  * regession tests failing after stackprofile test is run (LP: #1661030)
    - SAUCE: fix regression with domain change in complain mode

  * Permission denied and inconsistent behavior in complain mode with 'ip netns
    list' command (LP: #1648903)
    - SAUCE: fix regression with domain change in complain mode

  * flock not mediated by 'k' (LP: #1658219)
    - SAUCE: apparmor: flock mediation is not being enforced on cache check

  * unexpected errno=13 and disconnected path when trying to open /proc/1/ns/mnt
    from a unshared mount namespace (LP: #1656121)
    - SAUCE: apparmor: null profiles should inherit parent control flags

  * apparmor refcount leak of profile namespace when removing profiles
    (LP: #1660849)
    - SAUCE: apparmor: fix ns ref count link when removing profiles from policy

  * tor in lxd: apparmor="DENIED" operation="change_onexec"
    namespace="root//CONTAINERNAME_<var-lib-lxd>" profile="unconfined"
    name="system_tor" (LP: #1648143)
    - SAUCE: apparmor: Fix no_new_privs blocking change_onexec when using stacked
      namespaces

  * apparmor_parser hangs indefinitely when called by multiple threads
    (LP: #1645037)
    - SAUCE: apparmor: fix lock ordering for mkdir

  * apparmor leaking securityfs pin count (LP: #1660846)
    - SAUCE: apparmor: fix leak on securityfs pin count

  * apparmor reference count leak when securityfs_setup_d_inode\ () fails
    (LP: #1660845)
    - SAUCE: apparmor: fix reference count leak when securityfs_setup_d_inode()
      fails

  * apparmor not checking error if security_pin_fs() fails (LP: #1660842)
    - SAUCE: apparmor: fix not handling error case when securityfs_pin_fs() fails

  * apparmor oops in bind_mnt when dev_path lookup fails (LP: #1660840)
    - SAUCE: apparmor: fix oops in bind_mnt when dev_path lookup fails

  * apparmor  auditing denied access of special apparmor .null fi\ le
    (LP: #1660836)
    - SAUCE: apparmor: Don't audit denied access of special apparmor .null file

  * apparmor label leak when new label is unused (LP: #1660834)
    - SAUCE: apparmor: fix label leak when new label is unused

  * apparmor reference count bug in label_merge_insert() (LP: #1660833)
    - SAUCE: apparmor: fix reference count bug in label_merge_insert()

  * apparmor's raw_data file in securityfs is sometimes truncated (LP: #1638996)
    - SAUCE: apparmor: fix replacement race in reading rawdata

  * unix domain socket cross permission check failing with nested namespaces
    (LP: #1660832)
    - SAUCE: apparmor: fix cross ns perm of unix domain sockets

  * docker permission issues with overlay2 storage driver (LP: #1659417)
    - SAUCE: overlayfs: Replace ovl_prepare_creds() with ovl_override_creds()
    - Revert "UBUNTU: SAUCE: cred: Add clone_cred() interface"
    - ovl: check mounter creds on underlying lookup

  * Enable CONFIG_NET_DROP_MONITOR=m in Ubuntu Kernel (LP: #1660634)
    - [Config] CONFIG_NET_DROP_MONITOR=m

  * Xenial update to v4.4.48 stable release (LP: #1663657)
    - PCI/ASPM: Handle PCI-to-PCIe bridges as roots of PCIe hierarchies
    - ext4: validate s_first_meta_bg at mount time
    - drm/nouveau/disp/gt215: Fix HDA ELD handling (thus, HDMI audio) on gt215
    - drm/nouveau/nv1a,nv1f/disp: fix memory clock rate retrieval
    - crypto: api - Clear CRYPTO_ALG_DEAD bit before registering an alg
    - crypto: arm64/aes-blk - honour iv_out requirement in CBC and CTR modes
    - perf/core: Fix PERF_RECORD_MMAP2 prot/flags for anonymous memory
    - ata: sata_mv:- Handle return value of devm_ioremap.
    - libata: apply MAX_SEC_1024 to all CX1-JB*-HP devices
    - powerpc/eeh: Fix wrong flag passed to eeh_unfreeze_pe()
    - powerpc: Add missing error check to prom_find_boot_cpu()
    - NFSD: Fix a null reference case in find_or_create_lock_stateid()
    - svcrpc: fix oops in absence of krb5 module
    - zswap: disable changing params if init fails
    - cifs: initialize file_info_lock
    - mm/memory_hotplug.c: check start_pfn in test_pages_in_a_zone()
    - mm, fs: check for fatal signals in do_generic_file_read()
    - can: bcm: fix hrtimer/tasklet termination in bcm op removal
    - mmc: sdhci: Ignore unexpected CARD_INT interrupts
    - percpu-refcount: fix reference leak during percpu-atomic transition
    - HID: wacom: Fix poor prox handling in 'wacom_pl_irq'
    - KVM: x86: do not save guest-unsupported XSAVE state
    - USB: serial: qcserial: add Dell DW5570 QDL
    - USB: serial: pl2303: add ATEN device ID
    - USB: Add quirk for WORLDE easykey.25 MIDI keyboard
    - usb: gadget: f_fs: Assorted buffer overflow checks.
    - USB: serial: option: add device ID for HP lt2523 (Novatel E371)
    - x86/irq: Make irq activate operations symmetric
    - base/memory, hotplug: fix a kernel oops in show_valid_zones()
    - Linux 4.4.48

  * Xenial update to v4.4.47 stable release (LP: #1662507)
    - r8152: fix the sw rx checksum is unavailable
    - mlxsw: spectrum: Fix memory leak at skb reallocation
    - mlxsw: switchx2: Fix memory leak at skb reallocation
    - mlxsw: pci: Fix EQE structure definition
    - net: lwtunnel: Handle lwtunnel_fill_encap failure
    - net: ipv4: fix table id in getroute response
    - net: systemport: Decouple flow control from __bcm_sysport_tx_reclaim
    - tcp: fix tcp_fastopen unaligned access complaints on sparc
    - openvswitch: maintain correct checksum state in conntrack actions
    - ravb: do not use zero-length alignment DMA descriptor
    - ax25: Fix segfault after sock connection timeout
    - net: fix harmonize_features() vs NETIF_F_HIGHDMA
    - net: phy: bcm63xx: Utilize correct config_intr function
    - ipv6: addrconf: Avoid addrconf_disable_change() using RCU read-side lock
    - tcp: initialize max window for a new fastopen socket
    - bridge: netlink: call br_changelink() during br_dev_newlink()
    - r8152: don't execute runtime suspend if the tx is not empty
    - af_unix: move unix_mknod() out of bindlock
    - qmi_wwan/cdc_ether: add device ID for HP lt2523 (Novatel E371) WWAN card
    - net: dsa: Bring back device detaching in dsa_slave_suspend()
    - Linux 4.4.47

  * Xenial update to v4.4.46 stable release (LP: #1660994)
    - fbdev: color map copying bounds checking
    - tile/ptrace: Preserve previous registers for short regset write
    - drm: Fix broken VT switch with video=1366x768 option
    - mm/mempolicy.c: do not put mempolicy before using its nodemask
    - sysctl: fix proc_doulongvec_ms_jiffies_minmax()
    - ISDN: eicon: silence misleading array-bounds warning
    - RDMA/cma: Fix unknown symbol when CONFIG_IPV6 is not enabled
    - s390/ptrace: Preserve previous registers for short regset write
    - can: c_can_pci: fix null-pointer-deref in c_can_start() - set device pointer
    - can: ti_hecc: add missing prepare and unprepare of the clock
    - ARC: udelay: fix inline assembler by adding LP_COUNT to clobber list
    - ARC: [arcompact] handle unaligned access delay slot corner case
    - parisc: Don't use BITS_PER_LONG in userspace-exported swab.h header
    - nfs: Don't increment lock sequence ID after NFS4ERR_MOVED
    - NFSv4.0: always send mode in SETATTR after EXCLUSIVE4
    - SUNRPC: cleanup ida information when removing sunrpc module
    - drm/i915: Don't leak edid in intel_crt_detect_ddc()
    - IB/ipoib: move back IB LL address into the hard header
    - IB/umem: Release pid in error and ODP flow
    - s5k4ecgx: select CRC32 helper
    - pinctrl: broxton: Use correct PADCFGLOCK offset
    - platform/x86: intel_mid_powerbtn: Set IRQ_ONESHOT
    - mm, memcg: do not retry precharge charges
    - Linux 4.4.46

  * Xenial update to v4.4.45 stable release (LP: #1660993)
    - ftrace/x86: Set ftrace_stub to weak to prevent gcc from using short jumps to
      it
    - IB/mlx5: Wait for all async command completions to complete
    - IB/mlx4: Set traffic class in AH
    - IB/mlx4: Fix out-of-range array index in destroy qp flow
    - IB/mlx4: Fix port query for 56Gb Ethernet links
    - IB/mlx4: When no DMFS for IPoIB, don't allow NET_IF QPs
    - IB/IPoIB: Remove can't use GFP_NOIO warning
    - perf scripting: Avoid leaking the scripting_context variable
    - ARM: dts: imx31: fix clock control module interrupts description
    - ARM: dts: imx31: move CCM device node to AIPS2 bus devices
    - ARM: dts: imx31: fix AVIC base address
    - tmpfs: clear S_ISGID when setting posix ACLs
    - x86/PCI: Ignore _CRS on Supermicro X8DTH-i/6/iF/6F
    - svcrpc: don't leak contexts on PROC_DESTROY
    - fuse: clear FR_PENDING flag when moving requests out of pending queue
    - PCI: Enumerate switches below PCI-to-PCIe bridges
    - HID: corsair: fix DMA buffers on stack
    - HID: corsair: fix control-transfer error handling
    - mmc: mxs-mmc: Fix additional cycles after transmission stop
    - ieee802154: atusb: do not use the stack for buffers to make them DMA able
    - mtd: nand: xway: disable module support
    - x86/ioapic: Restore IO-APIC irq_chip retrigger callback
    - qla2xxx: Fix crash due to null pointer access
    - ubifs: Fix journal replay wrt. xattr nodes
    - clocksource/exynos_mct: Clear interrupt when cpu is shut down
    - svcrdma: avoid duplicate dma unmapping during error recovery
    - ARM: 8634/1: hw_breakpoint: blacklist Scorpion CPUs
    - ceph: fix bad endianness handling in parse_reply_info_extra
    - ARM: dts: da850-evm: fix read access to SPI flash
    - arm64/ptrace: Preserve previous registers for short regset write
    - arm64/ptrace: Preserve previous registers for short regset write - 2
    - arm64/ptrace: Preserve previous registers for short regset write - 3
    - arm64/ptrace: Avoid uninitialised struct padding in fpr_set()
    - arm64/ptrace: Reject attempts to set incomplete hardware breakpoint fields
    - ARM: dts: imx6qdl-nitrogen6_max: fix sgtl5000 pinctrl init
    - ARM: ux500: fix prcmu_is_cpu_in_wfi() calculation
    - ARM: 8613/1: Fix the uaccess crash on PB11MPCore
    - blackfin: check devm_pinctrl_get() for errors
    - ite-cir: initialize use_demodulator before using it
    - dmaengine: pl330: Fix runtime PM support for terminated transfers
    - selftest/powerpc: Wrong PMC initialized in pmc56_overflow test
    - arm64: avoid returning from bad_mode
    - Linux 4.4.45

 -- Thadeu Lima de Souza Cascardo <cascardo@xxxxxxxxxxxxx>  Wed, 08 Mar
2017 11:47:26 -0300

** Changed in: linux (Ubuntu Xenial)
       Status: Fix Committed => Fix Released

-- 
You received this bug notification because you are a member of नेपाली
भाषा समायोजकहरुको समूह, which is subscribed to Xenial.
Matching subscriptions: Ubuntu 16.04 Bugs
https://bugs.launchpad.net/bugs/1669611

Title:
  Regression in 4.4.0-65-generic causes very frequent system crashes

Status in linux package in Ubuntu:
  Fix Committed
Status in linux source package in Xenial:
  Fix Released
Status in linux source package in Zesty:
  Fix Committed

Bug description:
  After upgrading to 4.4.0-65-generic all of our Jenkins test runners
  are dying every 10 minutes or so. They don't answer on the network, on
  the console or through serial console.

  The kernel backtraces we got are:
  ```
  buildd04 login: [ 1443.707658] BUG: unable to handle kernel paging request at 2d5e501d
  [ 1443.707969] IP: [<c11fb2ef>] mntget+0xf/0x20
  [ 1443.708086] *pdpt = 0000000024056001 *pde = 0000000000000000
  [ 1443.708237] Oops: 0002 [#1] SMP
  [ 1443.708325] Modules linked in: ip6t_REJECT nf_reject_ipv6 ipt_REJECT nf_reject_ipv4 ip6t_MASQUERADE nf_nat_masquerade_ipv6 ip6table_nat nf_conntrack_ipv6 nf_defrag_ipv6 nf_nat_ipv6 ip6table_filter ip6_tables xt_comment veth ebtable_filter ebtables dm_snapshot dm_thin_pool dm_persistent_data dm_bio_prison dm_bufio libcrc32c binfmt_misc xt_CHECKSUM iptable_mangle ipt_MASQUERADE nf_nat_masquerade_ipv4 iptable_nat nf_conntrack_ipv4 nf_defrag_ipv4 nf_nat_ipv4 nf_nat nf_conntrack xt_tcpudp iptable_filter ip_tables x_tables zram lz4_compress bridge stp llc kvm_intel ppdev kvm irqbypass crc32_pclmul aesni_intel aes_i586 xts lrw gf128mul ablk_helper cryptd joydev input_leds serio_raw parport_pc 8250_fintek i2c_piix4 mac_hid lp parport autofs4 btrfs xor raid6_pq psmouse virtio_scsi pata_acpi floppy
  [ 1443.710365] CPU: 1 PID: 14167 Comm: apparmor_parser Not tainted 4.4.0-65-generic #86-Ubuntu
  [ 1443.710505] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS Bochs 01/01/2011
  [ 1443.710651] task: f5920a00 ti: e63f2000 task.ti: e63f2000
  [ 1443.710776] EIP: 0060:[<c11fb2ef>] EFLAGS: 00010286 CPU: 1
  [ 1443.710875] EIP is at mntget+0xf/0x20
  [ 1443.710946] EAX: f57e4d90 EBX: 00000000 ECX: c1d333cc EDX: 0002801d
  [ 1443.711088] ESI: c1d36404 EDI: c1d36408 EBP: e63f3de8 ESP: e63f3de8
  [ 1443.711228]  DS: 007b ES: 007b FS: 00d8 GS: 00e0 SS: 0068
  [ 1443.711334] CR0: 80050033 CR2: 2d5e501d CR3: 35072440 CR4: 001406f0
  [ 1443.711471] Stack:
  [ 1443.711593]  e63f3e04 c1203752 c13b7f71 c1d333cc eebb5980 e59d71e0 000041ed e63f3e30
  [ 1443.711822]  c130546b e59d7230 1a628dcf 00000003 ffffffff e63f3e58 6c0a010a e53b6800
  [ 1443.712044]  000000de eebb5980 e63f3e44 c13055be 00000000 00000000 00000000 e63f3e6c
  [ 1443.712264] Call Trace:
  [ 1443.712314]  [<c1203752>] simple_pin_fs+0x32/0xa0
  [ 1443.712421]  [<c13b7f71>] ? vsnprintf+0x321/0x420
  [ 1443.712516]  [<c130546b>] securityfs_create_dentry+0x5b/0x150
  [ 1443.712632]  [<c13055be>] securityfs_create_dir+0x2e/0x30
  [ 1443.712729]  [<c133a3c6>] __aa_fs_profile_mkdir+0x46/0x3c0
  [ 1443.712826]  [<c1345000>] aa_replace_profiles+0x4c0/0xbc0
  [ 1443.712927]  [<c10798c5>] ? ns_capable_common+0x55/0x80
  [ 1443.713022]  [<c1338ee7>] policy_update+0x97/0x230
  [ 1443.713122]  [<c1302189>] ? security_file_permission+0x39/0xc0
  [ 1443.713247]  [<c1339118>] profile_replace+0x98/0xe0
  [ 1443.713346]  [<c1339080>] ? policy_update+0x230/0x230
  [ 1443.713445]  [<c11dd99f>] __vfs_write+0x1f/0x50
  [ 1443.713535]  [<c11ddf7c>] vfs_write+0x8c/0x1b0
  [ 1443.713633]  [<c11de971>] SyS_write+0x51/0xb0
  [ 1443.713738]  [<c100385d>] do_fast_syscall_32+0x8d/0x150
  [ 1443.713838]  [<c17bcd9c>] sysenter_past_esp+0x3d/0x61
  [ 1443.713938] Code: c0 74 09 83 42 10 01 89 d0 5b 5d c3 3b 5b 10 b8 fe ff ff ff 75 e3 eb eb 8d 74 26 00 55 89 e5 3e 8d 74 26 00 85 c0 74 06 8b 50 14 <64> ff 02 5d c3 8d b6 00 00 00 00 8d bf 00 00 00 00 55 89 e5 3e
  [ 1443.715713] EIP: [<c11fb2ef>] mntget+0xf/0x20 SS:ESP 0068:e63f3de8
  [ 1443.715852] CR2: 000000002d5e501d
  ```

  ```
  buildd07 login: [ 1262.522071] BUG: unable to handle kernel NULL pointer dereference at 0000000000000008
  [ 1262.522339] IP: [<ffffffff8122fbd8>] mntput_no_expire+0x68/0x180
  [ 1262.522464] PGD 439912067 PUD 43997f067 PMD 0
  [ 1262.522556] Oops: 0002 [#1] SMP
  [ 1262.522760] Modules linked in: ip6t_REJECT nf_reject_ipv6 ipt_REJECT nf_reject_ipv4 ip6t_MASQUERADE nf_nat_masquerade_ipv6 ip6table_nat nf_conntrack_ipv6 nf_defrag_ipv6 nf_nat_ipv6 ip6table_filter ip6_tables xt_comment veth ebtable_filter ebtables dm_snapshot dm_thin_pool dm_persistent_data dm_bio_prison dm_bufio libcrc32c binfmt_misc xt_CHECKSUM iptable_mangle ipt_MASQUERADE nf_nat_masquerade_ipv4 iptable_nat nf_conntrack_ipv4 nf_defrag_ipv4 nf_nat_ipv4 nf_nat nf_conntrack xt_tcpudp iptable_filter ip_tables x_tables bridge stp llc zram lz4_compress zfs(PO) zunicode(PO) zcommon(PO) znvpair(PO) spl(O) zavl(PO) kvm_intel kvm irqbypass crct10dif_pclmul crc32_pclmul ppdev ghash_clmulni_intel aesni_intel aes_x86_64 lrw gf128mul glue_helper ablk_helper cryptd input_leds joydev i2c_piix4 serio_raw 8250_fintek parport_pc mac_hid lp parport autofs4 btrfs xor raid6_pq psmouse virtio_scsi pata_acpi floppy
  [ 1262.535658] CPU: 10 PID: 163332 Comm: apparmor_parser Tainted: P           O    4.4.0-65-generic #86-Ubuntu
  [ 1262.536544] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS Bochs 01/01/2011
  [ 1262.536666] task: ffff88043c3fd400 ti: ffff88044fed0000 task.ti: ffff88044fed0000
  [ 1262.536773] RIP: 0010:[<ffffffff8122fbd8>]  [<ffffffff8122fbd8>] mntput_no_expire+0x68/0x180
  [ 1262.536949] RSP: 0018:ffff88044fed3d70  EFLAGS: 00010206
  [ 1262.537046] RAX: 0000000000000000 RBX: ffff88046a74e480 RCX: 0000000000000000
  [ 1262.537205] RDX: 0000000000000000 RSI: 0000000000000200 RDI: ffffffff81f38c40
  [ 1262.537354] RBP: ffff88044fed3d88 R08: 0000000000000000 R09: 0000000000000fff
  [ 1262.537512] R10: ffff88043aeedb00 R11: 0000000000000246 R12: ffffffff821dbde8
  [ 1262.537787] R13: ffff88046a74e4d0 R14: ffff880626c8ca38 R15: ffff880626c91388
  [ 1262.538021] FS:  00007fe98994c740(0000) GS:ffff880627480000(0000) knlGS:0000000000000000
  [ 1262.538324] CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
  [ 1262.538492] CR2: 0000000000000008 CR3: 0000000446b88000 CR4: 00000000001406e0
  [ 1262.538688] Stack:
  [ 1262.538749]  ffffffff821dbde0 ffffffff821dbde8 ffff88043c12d730 ffff88044fed3d98
  [ 1262.539034]  ffffffff8122fd14 ffff88044fed3db8 ffffffff81236ea5 ffff88043b269600
  [ 1262.539372]  ffff88043b269000 ffff88044fed3dd8 ffffffff8134aae9 ffff88043c12d758
  [ 1262.539657] Call Trace:
  [ 1262.539717]  [<ffffffff8122fd14>] mntput+0x24/0x40
  [ 1262.539888]  [<ffffffff81236ea5>] simple_release_fs+0x45/0x50
  [ 1262.540041]  [<ffffffff8134aae9>] securityfs_remove+0x99/0xb0
  [ 1262.540198]  [<ffffffff81382892>] __aa_fs_profile_rmdir+0x72/0xd0
  [ 1262.540358]  [<ffffffff8138c9b0>] __remove_profile+0x40/0xd0
  [ 1262.540494]  [<ffffffff8138e9e0>] aa_remove_profiles+0xe0/0x370
  [ 1262.540654]  [<ffffffff813819a4>] profile_remove+0x144/0x2e0
  [ 1262.540833]  [<ffffffff8120e668>] __vfs_write+0x18/0x40
  [ 1262.540945]  [<ffffffff8120eff9>] vfs_write+0xa9/0x1a0
  [ 1262.541082]  [<ffffffff8120df8f>] ? do_sys_open+0x1bf/0x2a0
  [ 1262.541233]  [<ffffffff8120fcb5>] SyS_write+0x55/0xc0
  [ 1262.541359]  [<ffffffff8183c672>] entry_SYSCALL_64_fastpath+0x16/0x71
  [ 1262.541521] Code: ff 85 c0 0f 85 f6 00 00 00 8b 43 30 a9 00 00 00 01 0f 85 e8 00 00 00 0d 00 00 00 01 48 8b 53 70 4c 8d 6b 50 89 43 30 48 8b 43 78 <48> 89 42 08 48 89 10 48 b8 00 01 00 00 00 00 ad de 48 89 43 70
  [ 1262.544762] RIP  [<ffffffff8122fbd8>] mntput_no_expire+0x68/0x180
  [ 1262.545050]  RSP <ffff88044fed3d70>
  [ 1262.545142] CR2: 0000000000000008
  ```

  ```
  buildd06 login: [ 1330.969096] BUG: unable to handle kernel paging request at 2d5b2000
  [ 1330.971286] IP: [<c11fb2ef>] mntget+0xf/0x20
  [ 1330.972781] *pdpt = 00000000298be001 *pde = 0000000000000000
  [ 1330.980802] Oops: 0002 [#1] SMP
  [ 1330.982401] Modules linked in: ip6t_REJECT nf_reject_ipv6 ipt_REJECT nf_reject_ipv4 ip6t_MASQUERADE nf_nat_masquerade_ipv6 ip6table_nat nf_conntrack_ipv6 nf_defrag_ipv6 nf_nat_ipv6 ip6table_filter ip6_tables xt_comment dm_snapshot dm_thin_pool dm_persistent_data dm_bio_prison dm_bufio libcrc32c veth ebtable_filter ebtables binfmt_misc xt_CHECKSUM iptable_mangle ipt_MASQUERADE nf_nat_masquerade_ipv4 iptable_nat nf_conntrack_ipv4 nf_defrag_ipv4 nf_nat_ipv4 nf_nat nf_conntrack xt_tcpudp iptable_filter ip_tables x_tables bridge stp llc zram lz4_compress kvm_intel ppdev kvm irqbypass crc32_pclmul aesni_intel aes_i586 xts lrw gf128mul joydev input_leds ablk_helper cryptd serio_raw i2c_piix4 8250_fintek parport_pc mac_hid lp parport autofs4 btrfs xor raid6_pq psmouse virtio_scsi floppy pata_acpi
  [ 1330.987438] CPU: 0 PID: 21383 Comm: lxd Not tainted 4.4.0-65-generic #86-Ubuntu
  [ 1330.987629] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS Bochs 01/01/2011
  [ 1330.987827] task: f565e400 ti: e6c22000 task.ti: e6c22000
  [ 1330.987952] EIP: 0060:[<c11fb2ef>] EFLAGS: 00210286 CPU: 0
  [ 1330.988080] EIP is at mntget+0xf/0x20
  [ 1330.988174] EAX: d1dbd190 EBX: 00000000 ECX: c1d333cc EDX: 00004000
  [ 1330.988332] ESI: c1d36404 EDI: c1d36408 EBP: e6c23ec8 ESP: e6c23ec8
  [ 1330.988493]  DS: 007b ES: 007b FS: 00d8 GS: 00e0 SS: 0068
  [ 1330.988625] CR0: 80050033 CR2: 2d5b2000 CR3: 35762380 CR4: 001406f0
  [ 1330.988787] Stack:
  [ 1330.988851]  e6c23ee4 c1203752 e6c23eec c1d333cc eec950c0 00000000 eec950dc e6c23eec
  [ 1330.989186]  c130566c e6c23f20 c1338784 eebd6dc0 00000003 e3127100 e6c23f14 eebd6e30
  [ 1330.989509]  000001ed e3127100 eebd6dc0 eebd6dc0 c17e7140 e3127100 e6c23f48 c11e8a2e
  [ 1330.989832] Call Trace:
  [ 1330.989902]  [<c1203752>] simple_pin_fs+0x32/0xa0
  [ 1330.990048]  [<c130566c>] securityfs_pin_fs+0x1c/0x20
  [ 1330.990176]  [<c1338784>] ns_mkdir_op+0xe4/0x370
  [ 1330.990306]  [<c11e8a2e>] vfs_mkdir+0xee/0x1d0
  [ 1330.990436]  [<c1349ec0>] ? wrap_apparmor_path_mkdir+0x20/0x30
  [ 1330.990595]  [<c11edc2f>] SyS_mkdirat+0xcf/0x110
  [ 1330.990725]  [<c1003773>] do_syscall_32_irqs_on+0x53/0xb0
  [ 1330.990855]  [<c17bcdf1>] entry_INT80_32+0x31/0x31
  [ 1330.990982] Code: c0 74 09 83 42 10 01 89 d0 5b 5d c3 3b 5b 10 b8 fe ff ff ff 75 e3 eb eb 8d 74 26 00 55 89 e5 3e 8d 74 26 00 85 c0 74 06 8b 50 14 <64> ff 02 5d c3 8d b6 00 00 00 00 8d bf 00 00 00 00 55 89 e5 3e
  [ 1330.993186] EIP: [<c11fb2ef>] mntget+0xf/0x20 SS:ESP 0068:e6c23ec8
  [ 1330.993386] CR2: 000000002d5b2000
  ```

  ```
  buildd05 login: [ 1400.626415] BUG: unable to handle kernel paging request at 2d62201d
  [ 1400.634202] IP: [<c11fc961>] mntput_no_expire+0x11/0x160
  [ 1400.634805] *pdpt = 00000000350d5001 *pde = 0000000000000000
  [ 1400.634971] Oops: 0002 [#1] SMP
  [ 1400.635078] Modules linked in: ip6t_REJECT nf_reject_ipv6 ipt_REJECT nf_reject_ipv4 ip6t_MASQUERADE nf_nat_masquerade_ipv6 ip6table_nat nf_conntrack_ipv6 nf_defrag_ipv6 nf_nat_ipv6 ip6table_filter ip6_tables xt_comment veth ebtable_filter ebtables binfmt_misc xt_CHECKSUM iptable_mangle ipt_MASQUERADE nf_nat_masquerade_ipv4 iptable_nat nf_conntrack_ipv4 nf_defrag_ipv4 nf_nat_ipv4 nf_nat nf_conntrack xt_tcpudp iptable_filter ip_tables x_tables bridge stp llc zram lz4_compress kvm_intel kvm irqbypass crc32_pclmul aesni_intel aes_i586 xts input_leds joydev lrw gf128mul i2c_piix4 ppdev 8250_fintek ablk_helper mac_hid cryptd serio_raw parport_pc lp parport autofs4 btrfs xor raid6_pq psmouse virtio_scsi pata_acpi floppy
  [ 1400.638087] CPU: 4 PID: 10296 Comm: lxd Not tainted 4.4.0-65-generic #86-Ubuntu
  [ 1400.638300] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS Bochs 01/01/2011
  [ 1400.638488] task: e5369e00 ti: e1072000 task.ti: e1072000
  [ 1400.638615] EIP: 0060:[<c11fc961>] EFLAGS: 00210282 CPU: 4
  [ 1400.638743] EIP is at mntput_no_expire+0x11/0x160
  [ 1400.638866] EAX: f546a180 EBX: c1d36404 ECX: 00000000 EDX: 0002801d
  [ 1400.639040] ESI: c1d36408 EDI: e2f4e6d0 EBP: e1073e64 ESP: e1073e54
  [ 1400.639206]  DS: 007b ES: 007b FS: 00d8 GS: 00e0 SS: 0068
  [ 1400.639371] CR0: 80050033 CR2: 2d62201d CR3: 352eb1a0 CR4: 001406f0
  [ 1400.639620] Stack:
  [ 1400.639692]  f4ad0848 c1d36404 c1d36408 e2f4e6d0 e1073e6c c11fcad0 e1073e7c c12037f7
  [ 1400.641243]  eb808e00 f4ad0800 e1073e8c c1305634 e2f4e73c e2f4e724 e1073eb4 c133a892
  [ 1400.641582]  c1af6740 00000001 00000000 00000000 e2f4e708 00200286 e2f4e6c0 e2f4e71c
  [ 1400.641920] Call Trace:
  [ 1400.641989]  [<c11fcad0>] mntput+0x20/0x40
  [ 1400.642083]  [<c12037f7>] simple_release_fs+0x37/0x40
  [ 1400.642221]  [<c1305634>] securityfs_remove+0x74/0x90
  [ 1400.642359]  [<c133a892>] __aa_fs_ns_rmdir+0x152/0x1d0
  [ 1400.642487]  [<c1359c20>] destroy_ns+0x90/0xa0
  [ 1400.642622]  [<c1359b64>] __aa_remove_ns+0x24/0x50
  [ 1400.642929]  [<c133966f>] ns_rmdir_op+0x15f/0x3a0
  [ 1400.643030]  [<c11e8161>] vfs_rmdir+0xa1/0x110
  [ 1400.643099]  [<c11ed0dd>] do_rmdir+0x1cd/0x1f0
  [ 1400.643169]  [<c11edddd>] SyS_unlinkat+0x2d/0x40
  [ 1400.643239]  [<c1003773>] do_syscall_32_irqs_on+0x53/0xb0
  [ 1400.643307]  [<c17bcdf1>] entry_INT80_32+0x31/0x31
  [ 1400.643373] Code: f0 e8 34 3e 1c 00 3b 05 74 27 b9 c1 7c dc 89 d8 5b 5e 5f 5d c3 90 8d 74 26 00 55 89 e5 57 56 53 83 ec 04 3e 8d 74 26 00 8b 50 24 <64> ff 0a 8b 50 70 85 d2 74 0d 83 c4 04 5b 5e 5f 5d c3 90 8d 74
  [ 1400.644544] EIP: [<c11fc961>] mntput_no_expire+0x11/0x160 SS:ESP 0068:e1073e54
  [ 1400.644675] CR2: 000000002d62201d
  ```

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1669611/+subscriptions