← Back to team overview

kernel-packages team mailing list archive

[Bug 1505948] Re: Memory arena corruption with FUSE (was Memory allocation failure crashes kernel hard, presumably related to FUSE)

 

The bug triggers with the debug kernel, however there is no message like
"fuse_direct_IO: io->reg would have gone negative" in the journal:

Jan 29 16:22:18 ubuntu dnsmasq-dhcp[896]: DHCPREQUEST(virbr0) 192.168.122.93 52:54:00:45:1c:61
Jan 29 16:22:18 ubuntu dnsmasq-dhcp[896]: DHCPACK(virbr0) 192.168.122.93 52:54:00:45:1c:61
Jan 29 16:22:51 ubuntu kernel: BUG: unable to handle kernel paging request at ffff8800904b06c0
Jan 29 16:22:51 ubuntu kernel: IP: [<ffffffff811df264>] __kmalloc+0x94/0x250
Jan 29 16:22:51 ubuntu kernel: PGD 1ff0067 PUD 3738b6063 PMD 0 
Jan 29 16:22:51 ubuntu kernel: Oops: 0000 [#1] SMP 
Jan 29 16:22:51 ubuntu kernel: Modules linked in: xt_CHECKSUM iptable_mangle ipt_MASQUERADE nf_nat_masquerade_ipv4 iptable_nat nf_nat_ipv4 nf_nat nf_conntrack_ipv4 nf_defrag_ipv4 xt_conntrack nf_conntrack ipt_REJECT nf_reject_ipv4 xt_tcpudp bridge stp llc ebtable_filter ebtables ip6table_filter ip6_tables iptable_filter ip_tables x_tables nls_iso8859_1 ipmi_ssif ipmi_devintf gpio_ich coretemp kvm_intel serio_raw kvm input_leds cdc_ether usbnet mii lpc_ich i7core_edac ioatdma edac_core i5500_temp shpchp dca 8250_fintek ipmi_si mac_hid ipmi_msghandler sunrpc autofs4 hid_generic mptsas mptscsih usbhid mptbase psmouse hid pata_acpi scsi_transport_sas bnx2
Jan 29 16:22:51 ubuntu kernel: CPU: 4 PID: 21954 Comm: qemu-system-x86 Tainted: G          I     4.2.0-27-generic #32lp1505948v201601281755
Jan 29 16:22:51 ubuntu kernel: Hardware name: IBM System x3550 M2 -[794654G]-/49Y6512     , BIOS -[D6E131CUS-1.05]- 11/25/2009
Jan 29 16:22:51 ubuntu kernel: task: ffff880380e98c80 ti: ffff8803811d4000 task.ti: ffff8803811d4000
Jan 29 16:22:51 ubuntu kernel: RIP: 0010:[<ffffffff811df264>]  [<ffffffff811df264>] __kmalloc+0x94/0x250
Jan 29 16:22:51 ubuntu kernel: RSP: 0018:ffff8803811d79c8  EFLAGS: 00010286
Jan 29 16:22:51 ubuntu kernel: RAX: 0000000000000000 RBX: 00000000000000d0 RCX: 000000000009d36e
Jan 29 16:22:51 ubuntu kernel: RDX: 000000000009d36d RSI: 0000000000000000 RDI: 0000000000019aa0
Jan 29 16:22:51 ubuntu kernel: RBP: ffff8803811d7a08 R08: ffff88067fc19aa0 R09: ffffffff812f8d56
Jan 29 16:22:51 ubuntu kernel: R10: ffff8800904b06c0 R11: 000000000000081a R12: 00000000000000d0
Jan 29 16:22:51 ubuntu kernel: R13: 0000000000000058 R14: ffff8803738037c0 R15: ffff8803738037c0
Jan 29 16:22:51 ubuntu kernel: FS:  00007f384a78eb00(0000) GS:ffff88067fc00000(0000) knlGS:0000000000000000
Jan 29 16:22:51 ubuntu kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 000000008005003b
Jan 29 16:22:51 ubuntu kernel: CR2: ffff8800904b06c0 CR3: 00000002da9d5000 CR4: 00000000000026e0
Jan 29 16:22:51 ubuntu kernel: Stack:
Jan 29 16:22:51 ubuntu kernel:  ffff8803811d7a18 ffffffff812f8d56 ffff880371e2b200 ffff8805993ae0d0
Jan 29 16:22:51 ubuntu kernel:  000000000000000b 00000000000000d0 0000000000000058 ffff8805993ae210
Jan 29 16:22:51 ubuntu kernel:  ffff8803811d7a58 ffffffff812f8d56 ffff8803811d7a38 ffff8805993ae0d0
Jan 29 16:22:51 ubuntu kernel: Call Trace:
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff812f8d56>] ? __fuse_request_alloc+0x56/0xd0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff812f8d56>] __fuse_request_alloc+0x56/0xd0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff812f9026>] __fuse_get_req+0x1d6/0x280
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff810bd7d0>] ? wake_atomic_t_function+0x60/0x60
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff812f90e0>] fuse_get_req+0x10/0x20
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff8130389d>] fuse_direct_io+0x4fd/0x5c0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff812fce2f>] ? fuse_getxattr+0x12f/0x160
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff811de8e7>] ? kmem_cache_alloc_trace+0x187/0x1f0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff8130445f>] ? fuse_direct_IO+0xff/0x3b0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff813044f3>] fuse_direct_IO+0x193/0x3b0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff811843b9>] generic_file_direct_write+0xb9/0x180
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff81304efc>] fuse_file_write_iter+0x15c/0x2e0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff813267cd>] ? security_file_permission+0x3d/0xc0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff81304da0>] ? fuse_perform_write+0x540/0x540
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff8124adff>] aio_run_iocb+0x27f/0x2e0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff8123f046>] ? fsnotify+0x316/0x4a0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff8121b265>] ? __fget_light+0x25/0x60
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff8124bcdb>] do_io_submit+0x24b/0x4f0
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff810a6240>] ? wake_up_q+0x70/0x70
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff8124bf90>] SyS_io_submit+0x10/0x20
Jan 29 16:22:51 ubuntu kernel:  [<ffffffff817f2532>] entry_SYSCALL_64_fastpath+0x16/0x75
Jan 29 16:22:51 ubuntu kernel: Code: 08 65 4c 03 05 36 af e2 7e 49 83 78 10 00 4d 8b 10 0f 84 36 01 00 00 4d 85 d2 0f 84 2d 01 00 00 49 63 46 20 48 8d 4a 01 49 8b 3e <49> 8b 1c 02 4c 89 d0 65 48 0f c7 0f 0f 94 c0 84 c0 74 bb 49 63 
Jan 29 16:22:51 ubuntu kernel: RIP  [<ffffffff811df264>] __kmalloc+0x94/0x250
Jan 29 16:22:51 ubuntu kernel:  RSP <ffff8803811d79c8>
Jan 29 16:22:51 ubuntu kernel: CR2: ffff8800904b06c0
Jan 29 16:22:51 ubuntu kernel: ---[ end trace 1ebba465731d9933 ]---
Jan 29 16:22:52 ubuntu kernel: BUG: unable to handle kernel paging request at ffff8800904b06c0
Jan 29 16:22:52 ubuntu kernel: IP: [<ffffffff811de7da>] kmem_cache_alloc_trace+0x7a/0x1f0
Jan 29 16:22:52 ubuntu kernel: PGD 1ff0067 PUD 3738b6063 PMD 0 
Jan 29 16:22:52 ubuntu kernel: Oops: 0000 [#2] SMP 
Jan 29 16:22:52 ubuntu kernel: Modules linked in: xt_CHECKSUM iptable_mangle ipt_MASQUERADE nf_nat_masquerade_ipv4 iptable_nat nf_nat_ipv4 nf_nat nf_conntrack_ipv4 nf_defrag_ipv4 xt_conntrack nf_conntrack ipt_REJECT nf_reject_ipv4 xt_tcpudp bridge stp llc ebtable_filter ebtables ip6table_filter ip6_tables iptable_filter ip_tables x_tables nls_iso8859_1 ipmi_ssif ipmi_devintf gpio_ich coretemp kvm_intel serio_raw kvm input_leds cdc_ether usbnet mii lpc_ich i7core_edac ioatdma edac_core i5500_temp shpchp dca 8250_fintek ipmi_si mac_hid ipmi_msghandler sunrpc autofs4 hid_generic mptsas mptscsih usbhid mptbase psmouse hid pata_acpi scsi_transport_sas bnx2
Jan 29 16:22:52 ubuntu kernel: CPU: 4 PID: 21994 Comm: qemu-system-x86 Tainted: G      D   I     4.2.0-27-generic #32lp1505948v201601281755
Jan 29 16:22:52 ubuntu kernel: Hardware name: IBM System x3550 M2 -[794654G]-/49Y6512     , BIOS -[D6E131CUS-1.05]- 11/25/2009
Jan 29 16:22:52 ubuntu kernel: task: ffff88048cb88000 ti: ffff88062d63c000 task.ti: ffff88062d63c000
Jan 29 16:22:52 ubuntu kernel: RIP: 0010:[<ffffffff811de7da>]  [<ffffffff811de7da>] kmem_cache_alloc_trace+0x7a/0x1f0
Jan 29 16:22:52 ubuntu kernel: RSP: 0018:ffff88062d63fb68  EFLAGS: 00010286
Jan 29 16:22:52 ubuntu kernel: RAX: 0000000000000000 RBX: 00000000000000d0 RCX: 000000000009d36e
Jan 29 16:22:52 ubuntu kernel: RDX: 000000000009d36d RSI: 00000000000000d0 RDI: 0000000000019aa0
Jan 29 16:22:52 ubuntu kernel: RBP: ffff88062d63fba8 R08: ffff88067fc19aa0 R09: ffffffff8130445f
Jan 29 16:22:52 ubuntu kernel: R10: 0000000000000000 R11: 0000000000000337 R12: 00000000000000d0
Jan 29 16:22:52 ubuntu kernel: R13: ffff8803738037c0 R14: ffff8800904b06c0 R15: ffff8803738037c0
Jan 29 16:22:52 ubuntu kernel: FS:  00007f4931ae9b00(0000) GS:ffff88067fc00000(0000) knlGS:0000000000000000
Jan 29 16:22:52 ubuntu kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
Jan 29 16:22:52 ubuntu kernel: CR2: ffff8800904b06c0 CR3: 000000020a958000 CR4: 00000000000026e0
Jan 29 16:22:52 ubuntu kernel: Stack:
Jan 29 16:22:52 ubuntu kernel:  ffffffff8130445f 0000000000000048 0000000000000008 000000000a465000
Jan 29 16:22:52 ubuntu kernel:  ffff880636b1cc00 ffff88000ee95d00 0000000000000001 ffff88062d63fc78
Jan 29 16:22:52 ubuntu kernel:  ffff88062d63fc48 ffffffff8130445f ffff88062d63fb58 0000000000000000
Jan 29 16:22:52 ubuntu kernel: Call Trace:
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff8130445f>] ? fuse_direct_IO+0xff/0x3b0
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff8130445f>] fuse_direct_IO+0xff/0x3b0
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff811843b9>] generic_file_direct_write+0xb9/0x180
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff81304efc>] fuse_file_write_iter+0x15c/0x2e0
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff813267cd>] ? security_file_permission+0x3d/0xc0
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff81304da0>] ? fuse_perform_write+0x540/0x540
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff8124adff>] aio_run_iocb+0x27f/0x2e0
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff8123f046>] ? fsnotify+0x316/0x4a0
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff8121b265>] ? __fget_light+0x25/0x60
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff8124bcdb>] do_io_submit+0x24b/0x4f0
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff810a6240>] ? wake_up_q+0x70/0x70
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff8124bf90>] SyS_io_submit+0x10/0x20
Jan 29 16:22:52 ubuntu kernel:  [<ffffffff817f2532>] entry_SYSCALL_64_fastpath+0x16/0x75
Jan 29 16:22:52 ubuntu kernel: Code: 65 4c 03 05 c1 b9 e2 7e 49 83 78 10 00 4d 8b 30 0f 84 2b 01 00 00 4d 85 f6 0f 84 22 01 00 00 49 63 45 20 48 8d 4a 01 49 8b 7d 00 <49> 8b 1c 06 4c 89 f0 65 48 0f c7 0f 0f 94 c0 84 c0 74 b9 49 63 
Jan 29 16:22:52 ubuntu kernel: RIP  [<ffffffff811de7da>] kmem_cache_alloc_trace+0x7a/0x1f0
Jan 29 16:22:52 ubuntu kernel:  RSP <ffff88062d63fb68>
Jan 29 16:22:52 ubuntu kernel: CR2: ffff8800904b06c0
Jan 29 16:22:52 ubuntu kernel: ---[ end trace 1ebba465731d9934 ]---
Jan 29 16:22:53 ubuntu kernel: BUG: unable to handle kernel paging request at ffff8800904b06c0
Jan 29 16:22:53 ubuntu kernel: IP: [<ffffffff811de7da>] kmem_cache_alloc_trace+0x7a/0x1f0
Jan 29 16:22:53 ubuntu kernel: PGD 1ff0067 PUD 3738b6063 PMD 0 
Jan 29 16:22:53 ubuntu kernel: Oops: 0000 [#3] SMP 
Jan 29 16:22:53 ubuntu kernel: Modules linked in: xt_CHECKSUM iptable_mangle ipt_MASQUERADE nf_nat_masquerade_ipv4 iptable_nat nf_nat_ipv4 nf_nat nf_conntrack_ipv4 nf_defrag_ipv4 xt_conntrack nf_conntrack ipt_REJECT nf_reject_ipv4 xt_tcpudp bridge stp llc ebtable_filter ebtables ip6table_filter ip6_tables iptable_filter ip_tables x_tables nls_iso8859_1 ipmi_ssif ipmi_devintf gpio_ich coretemp kvm_intel serio_raw kvm input_leds cdc_ether usbnet mii lpc_ich i7core_edac ioatdma edac_core i5500_temp shpchp dca 8250_fintek ipmi_si mac_hid ipmi_msghandler sunrpc autofs4 hid_generic mptsas mptscsih usbhid mptbase psmouse hid pata_acpi scsi_transport_sas bnx2
Jan 29 16:22:53 ubuntu kernel: CPU: 4 PID: 21888 Comm: qemu-system-x86 Tainted: G      D   I     4.2.0-27-generic #32lp1505948v201601281755
Jan 29 16:22:53 ubuntu kernel: Hardware name: IBM System x3550 M2 -[794654G]-/49Y6512     , BIOS -[D6E131CUS-1.05]- 11/25/2009
Jan 29 16:22:53 ubuntu kernel: task: ffff8806681a5780 ti: ffff88005c210000 task.ti: ffff88005c210000
Jan 29 16:22:53 ubuntu kernel: RIP: 0010:[<ffffffff811de7da>]  [<ffffffff811de7da>] kmem_cache_alloc_trace+0x7a/0x1f0
Jan 29 16:22:53 ubuntu kernel: RSP: 0018:ffff88005c213b68  EFLAGS: 00010286
Jan 29 16:22:53 ubuntu kernel: RAX: 0000000000000000 RBX: 00000000000000d0 RCX: 000000000009d36e
Jan 29 16:22:53 ubuntu kernel: RDX: 000000000009d36d RSI: 00000000000000d0 RDI: 0000000000019aa0
Jan 29 16:22:53 ubuntu kernel: RBP: ffff88005c213ba8 R08: ffff88067fc19aa0 R09: ffffffff8130445f
Jan 29 16:22:53 ubuntu kernel: R10: ffffea001664eb00 R11: 0000000000000f1b R12: 00000000000000d0
Jan 29 16:22:53 ubuntu kernel: R13: ffff8803738037c0 R14: ffff8800904b06c0 R15: ffff8803738037c0
Jan 29 16:22:53 ubuntu kernel: FS:  00007f975c60fb00(0000) GS:ffff88067fc00000(0000) knlGS:0000000000000000
Jan 29 16:22:53 ubuntu kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
Jan 29 16:22:53 ubuntu kernel: CR2: ffff8800904b06c0 CR3: 00000003705cf000 CR4: 00000000000026e0
Jan 29 16:22:53 ubuntu kernel: Stack:
Jan 29 16:22:53 ubuntu kernel:  ffffffff8130445f 0000000000000048 0000000000000008 000000000a1b0000
Jan 29 16:22:53 ubuntu kernel:  ffff8804aa0a2c80 ffff8802b7d4db00 0000000000000001 ffff88005c213c78
Jan 29 16:22:53 ubuntu kernel:  ffff88005c213c48 ffffffff8130445f ffff88005c213b58 0000000000000000
Jan 29 16:22:53 ubuntu kernel: Call Trace:
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff8130445f>] ? fuse_direct_IO+0xff/0x3b0
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff8130445f>] fuse_direct_IO+0xff/0x3b0
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff811843b9>] generic_file_direct_write+0xb9/0x180
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff81304efc>] fuse_file_write_iter+0x15c/0x2e0
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff813267cd>] ? security_file_permission+0x3d/0xc0
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff81304da0>] ? fuse_perform_write+0x540/0x540
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff8124adff>] aio_run_iocb+0x27f/0x2e0
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff811b57bf>] ? handle_mm_fault+0xb7f/0x17e0
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff8121b265>] ? __fget_light+0x25/0x60
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff8124bcdb>] do_io_submit+0x24b/0x4f0
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff8124bf90>] SyS_io_submit+0x10/0x20
Jan 29 16:22:53 ubuntu kernel:  [<ffffffff817f2532>] entry_SYSCALL_64_fastpath+0x16/0x75
Jan 29 16:22:53 ubuntu kernel: Code: 65 4c 03 05 c1 b9 e2 7e 49 83 78 10 00 4d 8b 30 0f 84 2b 01 00 00 4d 85 f6 0f 84 22 01 00 00 49 63 45 20 48 8d 4a 01 49 8b 7d 00 <49> 8b 1c 06 4c 89 f0 65 48 0f c7 0f 0f 94 c0 84 c0 74 b9 49 63 
Jan 29 16:22:53 ubuntu kernel: RIP  [<ffffffff811de7da>] kmem_cache_alloc_trace+0x7a/0x1f0
Jan 29 16:22:53 ubuntu kernel:  RSP <ffff88005c213b68>
Jan 29 16:22:53 ubuntu kernel: CR2: ffff8800904b06c0
Jan 29 16:22:53 ubuntu kernel: ---[ end trace 1ebba465731d9935 ]---
Jan 29 16:22:54 ubuntu kernel: BUG: unable to handle kernel paging request at ffff8800904b06c0
Jan 29 16:22:54 ubuntu kernel: IP: [<ffffffff811df264>] __kmalloc+0x94/0x250
Jan 29 16:22:54 ubuntu kernel: PGD 1ff0067 PUD 3738b6063 PMD 0 
Jan 29 16:22:54 ubuntu kernel: Oops: 0000 [#4] SMP 
Jan 29 16:22:54 ubuntu kernel: Modules linked in: xt_CHECKSUM iptable_mangle ipt_MASQUERADE nf_nat_masquerade_ipv4 iptable_nat nf_nat_ipv4 nf_nat nf_conntrack_ipv4 nf_defrag_ipv4 xt_conntrack nf_conntrack ipt_REJECT nf_reject_ipv4 xt_tcpudp bridge stp llc ebtable_filter ebtables ip6table_filter ip6_tables iptable_filter ip_tables x_tables nls_iso8859_1 ipmi_ssif ipmi_devintf gpio_ich coretemp kvm_intel serio_raw kvm input_leds cdc_ether usbnet mii lpc_ich i7core_edac ioatdma edac_core i5500_temp shpchp dca 8250_fintek ipmi_si mac_hid ipmi_msghandler sunrpc autofs4 hid_generic mptsas mptscsih usbhid mptbase psmouse hid pata_acpi scsi_transport_sas bnx2
Jan 29 16:22:54 ubuntu kernel: CPU: 4 PID: 294 Comm: jbd2/sda2-8 Tainted: G      D   I     4.2.0-27-generic #32lp1505948v201601281755
Jan 29 16:22:54 ubuntu kernel: Hardware name: IBM System x3550 M2 -[794654G]-/49Y6512     , BIOS -[D6E131CUS-1.05]- 11/25/2009
Jan 29 16:22:54 ubuntu kernel: task: ffff88066e496400 ti: ffff88036e98c000 task.ti: ffff88036e98c000
Jan 29 16:22:54 ubuntu kernel: RIP: 0010:[<ffffffff811df264>]  [<ffffffff811df264>] __kmalloc+0x94/0x250
Jan 29 16:22:54 ubuntu kernel: RSP: 0018:ffff88036e98f898  EFLAGS: 00010286
Jan 29 16:22:54 ubuntu kernel: RAX: 0000000000000000 RBX: 0000000000008050 RCX: 000000000009d36e
Jan 29 16:22:54 ubuntu kernel: RDX: 000000000009d36d RSI: 0000000000000000 RDI: 0000000000019aa0
Jan 29 16:22:54 ubuntu kernel: RBP: ffff88036e98f8d8 R08: ffff88067fc19aa0 R09: ffffffff812b0d79
Jan 29 16:22:54 ubuntu kernel: R10: ffff8800904b06c0 R11: 0000000000000004 R12: 0000000000008050
Jan 29 16:22:54 ubuntu kernel: R13: 0000000000000060 R14: ffff8803738037c0 R15: ffff8803738037c0
Jan 29 16:22:54 ubuntu kernel: FS:  0000000000000000(0000) GS:ffff88067fc00000(0000) knlGS:0000000000000000
Jan 29 16:22:54 ubuntu kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 000000008005003b
Jan 29 16:22:54 ubuntu kernel: CR2: ffff8800904b06c0 CR3: 0000000001c0c000 CR4: 00000000000026e0
Jan 29 16:22:54 ubuntu kernel: Stack:
Jan 29 16:22:54 ubuntu kernel:  ffff8803703880c0 ffffffff812b0d79 0000000000000000 0000000000002056
Jan 29 16:22:54 ubuntu kernel:  0000000000002056 0000000000000000 0000000000000000 ffff880370388000
Jan 29 16:22:54 ubuntu kernel:  ffff88036e98f948 ffffffff812b0d79 ffff8803703880c0 ffff88066e496468
Jan 29 16:22:54 ubuntu kernel: Call Trace:
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812b0d79>] ? ext4_find_extent+0x1b9/0x320
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812b0d79>] ext4_find_extent+0x1b9/0x320
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812b5488>] ext4_ext_map_blocks+0x88/0xe30
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff810b345b>] ? dequeue_task_fair+0x36b/0x700
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff81285e6b>] ext4_map_blocks+0x9b/0x4a0
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff817eec80>] ? bit_wait+0x60/0x60
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff8128632f>] _ext4_get_block+0xbf/0x220
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff810ed9d7>] ? ktime_get+0x37/0xa0
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812864a6>] ext4_get_block+0x16/0x20
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812325ee>] generic_block_bmap+0x4e/0x70
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812d5828>] ? journal_submit_data_buffers+0x48/0x1b0
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff81283327>] ext4_bmap+0x77/0xe0
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff81217b1c>] bmap+0x1c/0x30
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812dd70f>] jbd2_journal_bmap+0x2f/0x80
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812dd7cb>] jbd2_journal_next_log_block+0x6b/0x80
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812dd9db>] jbd2_journal_get_descriptor_buffer+0x2b/0xb0
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812d64e1>] jbd2_journal_commit_transaction+0x991/0x1690
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff810b345b>] ? dequeue_task_fair+0x36b/0x700
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff810b2821>] ? put_prev_entity+0x31/0x420
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff810e5b8e>] ? try_to_del_timer_sync+0x5e/0x90
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff812da9da>] kjournald2+0xca/0x250
Jan 29 16:22:54 ubuntu kernel:  [<ffffffff810bd7d0>] ? wake_atomic_t_function+0x60/0x60
Jan 29 16:22:55 ubuntu kernel:  [<ffffffff812da910>] ? commit_timeout+0x10/0x10
Jan 29 16:22:55 ubuntu kernel:  [<ffffffff8109ae48>] kthread+0xd8/0xf0
Jan 29 16:22:55 ubuntu kernel:  [<ffffffff8109ad70>] ? kthread_create_on_node+0x1f0/0x1f0
Jan 29 16:22:55 ubuntu kernel:  [<ffffffff817f295f>] ret_from_fork+0x3f/0x70
Jan 29 16:22:55 ubuntu kernel:  [<ffffffff8109ad70>] ? kthread_create_on_node+0x1f0/0x1f0
Jan 29 16:22:55 ubuntu kernel: Code: 08 65 4c 03 05 36 af e2 7e 49 83 78 10 00 4d 8b 10 0f 84 36 01 00 00 4d 85 d2 0f 84 2d 01 00 00 49 63 46 20 48 8d 4a 01 49 8b 3e <49> 8b 1c 02 4c 89 d0 65 48 0f c7 0f 0f 94 c0 84 c0 74 bb 49 63 
Jan 29 16:22:55 ubuntu kernel: RIP  [<ffffffff811df264>] __kmalloc+0x94/0x250
Jan 29 16:22:55 ubuntu kernel:  RSP <ffff88036e98f898>
Jan 29 16:22:55 ubuntu kernel: CR2: ffff8800904b06c0
Jan 29 16:22:55 ubuntu kernel: ---[ end trace 1ebba465731d9936 ]---

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to linux in Ubuntu.
https://bugs.launchpad.net/bugs/1505948

Title:
  Memory arena corruption with FUSE (was Memory allocation failure
  crashes kernel hard, presumably related to FUSE)

Status in linux package in Ubuntu:
  Confirmed
Status in linux source package in Wily:
  Confirmed

Bug description:
  Hello everybody,

  Linux 4.1, 4.2 or 4.3-rc leads to an immediate kernel panic in our
  setup when trying to start a Qemu process on top of a fuse-based
  mount. Here is an example stacktrace:

  [  739.807817] BUG: unable to handle kernel paging request at ffff8800a4104ea0
  [  739.840201] IP: [<ffffffff811cc95a>] kmem_cache_alloc_trace+0x7a/0x1f0
  [  739.870309] PGD 2fee067 PUD 2fbf4dd063 PMD 0
  [  739.890418] Oops: 0000 [#1] SMP
  [  739.905265] Modules linked in: nbd vport_vxlan vport_gre gre ebtable_filter ebtables openvswitch ib_iser rdma_cm iw_cm ib_cm ib_sa ib_mad ib_core ib_addr iscsi_tcp libiscsi_tcp libiscsi scsi_transport_iscsi ipt_REJECT nf_reject_ipv4 nf_conntrack_ipv4 nf_defrag_ipv4 iptable_filter xt_CT iptable_raw ip_tables xt_tcpudp ip6t_REJECT nf_reject_ipv6 xt_limit nf_conntrack_ipv6 nf_defrag_ipv6 xt_multiport xt_conntrack nf_conntrack ip6table_filter ip6_tables x_tables dm_crypt ipmi_ssif intel_rapl iosf_mbi x86_pkg_temp_thermal intel_powerclamp coretemp crct10dif_pclmul crc32_pclmul ghash_clmulni_intel aesni_intel aes_x86_64 lrw gf128mul glue_helper ablk_helper cryptd kvm_intel kvm ipmi_devintf vhost_net vhost macvtap macvlan joydev input_leds dm_multipath scsi_dh bonding sb_edac 8021q garp hpilo mrp stp ipmi_si llc edac_core lpc_ich ioatdma 8250_fintek ipmi_msghandler lp shpchp acpi_power_meter mac_hid parport nls_iso8859_1 sch_fq_codel xfs libcrc32c btrfs xor raid6_pq ixgbe ses enclosure hid_generic dca vxlan usbhid ip6_udp_tunnel tg3 udp_tunnel ptp hid pps_core hpsa mdio wmi
  [  740.345300] CPU: 8 PID: 10550 Comm: qemu-system-x86 Not tainted 4.2.0-040200-generic #201508301530
  [  740.386879] Hardware name: HP ProLiant DL380 Gen9, BIOS P89 05/06/2015
  [  740.416827] task: ffff882f8e958dc0 ti: ffff882f28c20000 task.ti: ffff882f28c20000
  [  740.451672] RIP: 0010:[<ffffffff811cc95a>]  [<ffffffff811cc95a>] kmem_cache_alloc_trace+0x7a/0x1f0
  [  740.494047] RSP: 0018:ffff882f28c23c68  EFLAGS: 00010286
  [  740.518425] RAX: 0000000000000000 RBX: 00000000000000d0 RCX: 00000000000026b3
  [  740.551611] RDX: 00000000000026b2 RSI: 00000000000000d0 RDI: ffff882fbf407840
  [  740.584846] RBP: ffff882f28c23ca8 R08: 0000000000019920 R09: ffffe8d000200ab0
  [  740.618287] R10: ffffffff812e8dcd R11: ffffea00bca0ac00 R12: 00000000000000d0
  [  740.651320] R13: ffff882fbf407840 R14: ffff8800a4104ea0 R15: ffff882fbf407840
  [  740.684195] FS:  00007f2642ffd700(0000) GS:ffff882fbfa00000(0000) knlGS:0000000000000000
  [  740.722030] CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
  [  740.749469] CR2: ffff8800a4104ea0 CR3: 0000002f26f83000 CR4: 00000000001426e0
  [  740.783390] Stack:
  [  740.792577]  ffffffff812e8dcd 0000000000000048 0000000000000002 ffff882f908c8468
  [  740.827003]  0000000001bef000 ffff882f928e4600 ffff882f28c23e48 ffff882f28c23d70
  [  740.860971]  ffff882f28c23d38 ffffffff812e8dcd 0000000000000001 ffff882f908c8300
  [  740.894994] Call Trace:
  [  740.906211]  [<ffffffff812e8dcd>] ? fuse_direct_IO+0xdd/0x280
  [  740.932940]  [<ffffffff812e8dcd>] fuse_direct_IO+0xdd/0x280
  [  740.958866]  [<ffffffff8117750e>] generic_file_direct_write+0x9e/0x150
  [  740.989318]  [<ffffffff812e96bc>] fuse_file_write_iter+0x15c/0x2e0
  [  741.017725]  [<ffffffff811e94a7>] __vfs_write+0xa7/0xf0
  [  741.041787]  [<ffffffff811e9b09>] vfs_write+0xa9/0x190
  [  741.065307]  [<ffffffff811ea9d9>] SyS_pwrite64+0x69/0xa0
  [  741.090141]  [<ffffffff81085b57>] ? SyS_rt_sigprocmask+0x67/0xb0
  [  741.135924]  [<ffffffff817a8e32>] entry_SYSCALL_64_fastpath+0x16/0x75
  [  741.183478] Code: 4c 03 05 32 d8 e3 7e 4d 8b 30 49 8b 40 10 4d 85 f6 0f 84 22 01 00 00 48 85 c0 0f 84 19 01 00 00 49 63 47 20 48 8d 4a 01 4d 8b 07 <49> 8b 1c 06 4c 89 f0 65 49 0f c7 08 0f 94 c0 84 c0 74 b9 49 63
  [  741.306817] RIP  [<ffffffff811cc95a>] kmem_cache_alloc_trace+0x7a/0x1f0

  The problem has also been documented by somebody else in the Fedora
  bug tracker at https://bugzilla.redhat.com/show_bug.cgi?id=1254310

  This behaviour is 100% reproducible. I have asked the fuse-devel
  mailinglist for advice, but up to this point with no success:

  http://sourceforge.net/p/fuse/mailman/message/34537139/

  We are still investigating if this issue is also happening with 4.0
  and will add the information to this bug report once we have it. Any
  help on debugging will be greatly appreciated.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1505948/+subscriptions


References