查看问题详情
编号 | 项目 | 分类 | 查看权限 | 报告日期 | 最后更新 |
---|---|---|---|---|---|
0000270 | Anolis OS 8 | - cloud kernel 4.19 | public | 2021-09-13 11:06 | 2021-09-14 12:38 |
报告员 | Shiloong | 分派给 | Shiloong | ||
优先级 | normal | 严重性 | major | 出现频率 | always |
状态 | closed | 处理状况 | fixed | ||
平台 | x86_64 | 操作系统 | Anolis OS | 操作系统版本 | 8 |
产品版本 | 8.2 正式版 | ||||
目标版本 | 8.2 正式版 | ||||
标题 | 0000270: KASAN: null-ptr-deref Write in queue_work_on (ltp测试 crash) | ||||
描述 | [root@AliYun ltp-master]# uname -a Linux AliYun 4.19.91-24.1.al7.x86_64 #1 SMP Wed Jul 21 17:40:23 CST 2021 x86_64 x86_64 x86_64 GNU/Linux --- [ 8735.669496] BUG: unable to handle kernel NULL pointer dereference at 0000000000000020 [ 8735.671189] PGD 800000002390a067 P4D 800000002390a067 PUD 184c6067 PMD 0 [ 8735.672684] Oops: 0002 [#1] SMP PTI [ 8735.673678] CPU: 1 PID: 26885 Comm: pty03 Not tainted 4.19.91-24.1.al7.x86_64 #1 [ 8735.675359] Hardware name: Alibaba Cloud Alibaba Cloud ECS, BIOS 8c24b4c 04/01/2014 [ 8735.676988] RIP: 0010:queue_work_on+0x17/0x40 [ 8735.678120] Code: 01 e8 dd 57 fe ff 0f 0b e9 0d fd ff ff 66 0f 1f 44 00 00 0f 1f 44 00 00 53 9c 58 0f 1f 44 00 00 48 89 c3 fa 66 0f 1f 44 00 00 <f0> 48 0f ba 2a 00 72 18 e8 1c fc ff ff ba 01 00 00 00 48 89 df 57 [ 8735.681954] RSP: 0018:ffffa4f38767fd88 EFLAGS: 00010002 [ 8735.683245] RAX: 0000000000000202 RBX: 0000000000000202 RCX: 0000000000000000 [ 8735.684852] RDX: 0000000000000020 RSI: ffff95ac7d406c00 RDI: 0000000000002000 [ 8735.686435] RBP: ffff95ac0aa53a20 R08: ffffffff9e578d00 R09: ffff95ac0c4de100 [ 8735.688040] R10: 0000000000000003 R11: ffff95ac7a7e5238 R12: ffff95ac7a7e5200 [ 8735.689703] R13: 0000000000000000 R14: ffff95ac0aa53150 R15: 0000000000000000 [ 8735.691346] FS: 00007f486d2f6700(0000) GS:ffff95ac7db00000(0000) knlGS:0000000000000000 [ 8735.693157] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 8735.694561] CR2: 0000000000000020 CR3: 000000004c0f6004 CR4: 00000000003706e0 [ 8735.696225] DR0: 0000000000620800 DR1: 0000000000000000 DR2: 0000000000000000 [ 8735.697846] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000600 [ 8735.699483] Call Trace: [ 8735.700399] tty_wakeup+0x53/0x60 [ 8735.701452] pty_unthrottle+0x15/0x20 [ 8735.702681] tty_unthrottle+0x51/0x60 [ 8735.703787] __tty_perform_flush+0x7c/0x90 [ 8735.704954] tty_ioctl+0x12f/0x8a0 [ 8735.706030] ? __mmdrop+0x61/0x110 [ 8735.707097] do_vfs_ioctl+0x92/0x5f0 [ 8735.708201] ? __schedule+0x316/0x6a0 [ 8735.709318] ksys_ioctl+0x60/0x90 [ 8735.710410] __x64_sys_ioctl+0x16/0x20 [ 8735.711546] do_syscall_64+0x5b/0x1b0 [ 8735.712674] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 8735.714004] RIP: 0033:0x7f486d3ec397 [ 8735.715198] Code: 44 00 00 48 8b 05 d9 1a 2d 00 64 c7 00 26 00 00 00 48 c7 c0 ff ff ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 b8 10 00 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d a9 1a 2d 00 f7 d8 64 89 01 48 [ 8735.719223] RSP: 002b:00007f486d2f5ee8 EFLAGS: 00000246 ORIG_RAX: 0000000000000010 [ 8735.721066] RAX: ffffffffffffffda RBX: 000000000000000a RCX: 00007f486d3ec397 [ 8735.722854] RDX: 0000000000000000 RSI: 000000000000540b RDI: 0000000000000003 [ 8735.724546] RBP: 0000000000000000 R08: 00007f486d2f6700 R09: 00007f486d2f6700 [ 8735.726249] R10: 00007f486d2f52e0 R11: 0000000000000246 R12: 0000000000000000 [ 8735.728109] R13: 0000000000801000 R14: 0000000000000000 R15: 00007f486d2f6700 [ 8735.729815] Modules linked in: slip slhc binfmt_misc nfsv3 nfs_acl nfs lockd grace fscache bpfilter tun brd overlay fuse vfat fat btrfs xor zstd_decompress zstd_compress xxhash raid6_pq xfs loop sctp libcrc32c intel_rapl_msr intel_rapl_common isst_if_common bochs_drm nfit ttm crct10dif_pclmul drm_kms_helper crc32_pclmul ghash_clmulni_intel pcbc syscopyarea sysfillrect aesni_intel sysimgblt joydev fb_sys_fops crypto_simd drm mousedev cryptd psmouse glue_helper i2c_piix4 pcspkr pvpanic i2c_core sunrpc ip_tables ata_generic pata_acpi ata_piix crc32c_intel uhci_hcd serio_raw libata floppy [ 8735.740975] CR2: 0000000000000020 [ 8735.742140] ---[ end trace f53fffd6446e27c1 ]--- | ||||
问题重现步骤 | 执行ltp测试。 /opt/ltp/runltp -c 1 -i 1 -m 1,4,10240,1 -D 1,10,10240,1 -p -q -l /tmp/result-log.1357 -o /tmp/result-output.1357 -C /tmp/result-failed.1357 -d /opt/ltp -t 24h & 3小时左右panic.必现.多次测试,多次出现. | ||||
附注 | Aone ID: 36745505 | ||||
标签 | 没加标签. | ||||
|
该问题社区已报: https://lore.kernel.org/netdev/0000000000002b81b70590a83ad7@google.com/ bugfix: https://github.com/torvalds/linux/commit/0ace17d56824165c7f4c68785d6b58971db954dd |
|
bugfix 已经合并到 devel-4.19分支. |