INFO: rcu detected stall in discover_timer

17 views
Skip to first unread message

syzbot

unread,
Sep 16, 2019, 10:25:09 AM9/16/19
to syzkaller...@googlegroups.com
Hello,

syzbot found the following crash on:

HEAD commit: db2d0b7c Linux 4.19.73
git tree: linux-4.19.y
console output: https://syzkaller.appspot.com/x/log.txt?x=17cddabe600000
kernel config: https://syzkaller.appspot.com/x/.config?x=1515ac7d82731bf1
dashboard link: https://syzkaller.appspot.com/bug?extid=cd01580be0a187d15b29
compiler: gcc (GCC) 9.0.0 20181231 (experimental)

Unfortunately, I don't have any reproducer for this crash yet.

IMPORTANT: if you fix the bug, please add the following tag to the commit:
Reported-by: syzbot+cd0158...@syzkaller.appspotmail.com

smpboot_thread_fn+0x6a3/0xa30 kernel/smpboot.c:164
mems_allowed=0-1
kthread+0x354/0x420 kernel/kthread.c:246
ret_from_fork+0x24/0x30 arch/x86/entry/entry_64.S:415
CPU: 0 PID: 7493 Comm: syz-fuzzer Not tainted 4.19.73 #0
rcu: INFO: rcu_preempt detected stalls on CPUs/tasks:
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
Call Trace:
rcu:
<IRQ>
(detected by 1, t=10505 jiffies, g=45125, q=4)
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
rcu: All QSes seen, last rcu_preempt kthread activity 10373
(4295124563-4295114190), jiffies_till_next_fqs=1, root ->qsmask 0x0
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
ksoftirqd/1 R
running task
24656 18 2 0x80000008
Call Trace:
<IRQ>
sched_show_task kernel/sched/core.c:5297 [inline]
sched_show_task.cold+0x2ee/0x35d kernel/sched/core.c:5272
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
print_other_cpu_stall kernel/rcu/tree.c:1430 [inline]
check_cpu_stall kernel/rcu/tree.c:1557 [inline]
__rcu_pending kernel/rcu/tree.c:3293 [inline]
rcu_pending kernel/rcu/tree.c:3336 [inline]
rcu_check_callbacks.cold+0xaa1/0xd90 kernel/rcu/tree.c:2682
update_process_times+0x32/0x80 kernel/time/timer.c:1636
tick_sched_handle+0xa2/0x190 kernel/time/tick-sched.c:164
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
tick_sched_timer+0x47/0x130 kernel/time/tick-sched.c:1274
__run_hrtimer kernel/time/hrtimer.c:1398 [inline]
__hrtimer_run_queues+0x33b/0xdc0 kernel/time/hrtimer.c:1460
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
hrtimer_interrupt+0x314/0x770 kernel/time/hrtimer.c:1518
slab_alloc_node mm/slab.c:3332 [inline]
kmem_cache_alloc_node+0xe3/0x710 mm/slab.c:3647
local_apic_timer_interrupt arch/x86/kernel/apic/apic.c:1067 [inline]
smp_apic_timer_interrupt+0x111/0x550 arch/x86/kernel/apic/apic.c:1092
__alloc_skb+0xd5/0x5f0 net/core/skbuff.c:193
apic_timer_interrupt+0xf/0x20 arch/x86/entry/entry_64.S:893
</IRQ>
RIP: 0010:arch_local_irq_restore arch/x86/include/asm/paravirt.h:789
[inline]
RIP: 0010:slab_alloc mm/slab.c:3390 [inline]
RIP: 0010:kmem_cache_alloc+0x287/0x700 mm/slab.c:3557
Code: 7e 0f 85 db fe ff ff e8 28 ca 5e ff e9 d1 fe ff ff e8 7d ff ce ff 48
83 3d 3d a9 d0 06 00 0f 84 27 03 00 00 48 8b 7d d0 57 9d <0f> 1f 44 00 00
e9 64 fe ff ff 31 d2 be a6 01 00 00 48 c7 c7 52 d7
alloc_skb include/linux/skbuff.h:995 [inline]
new_skb+0x28/0x1d0 drivers/block/aoe/aoecmd.c:67
RSP: 0000:ffff8880aa2a7a20 EFLAGS: 00000282
aoecmd_cfg_pkts drivers/block/aoe/aoecmd.c:426 [inline]
aoecmd_cfg+0x1b5/0x640 drivers/block/aoe/aoecmd.c:1374
ORIG_RAX: ffffffffffffff13
RAX: 0000000000000007 RBX: 0000000000480020 RCX: 1ffff110154529ac
RDX: 0000000000000000 RSI: ffff8880aa294d68 RDI: 0000000000000282
discover_timer+0x4e/0x60 drivers/block/aoe/aoemain.c:24
RBP: ffff8880aa2a7a88 R08: ffff8880aa2944c0 R09: ffff8880aa294d60
call_timer_fn+0x18d/0x720 kernel/time/timer.c:1326
R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000000
R13: ffff8880aa34dac0 R14: 0000000000480020 R15: ffff8880aa34dac0
__build_skb+0x3e/0x310 net/core/skbuff.c:281
__netdev_alloc_skb+0x2ba/0x470 net/core/skbuff.c:426
netdev_alloc_skb include/linux/skbuff.h:2645 [inline]
dev_alloc_skb include/linux/skbuff.h:2658 [inline]
send_hsr_supervision_frame+0x110/0xf30 net/hsr/hsr_device.c:265
expire_timers kernel/time/timer.c:1363 [inline]
__run_timers kernel/time/timer.c:1682 [inline]
__run_timers kernel/time/timer.c:1650 [inline]
run_timer_softirq+0x652/0x1700 kernel/time/timer.c:1695
hsr_announce+0x12f/0x3b0 net/hsr/hsr_device.c:348
__do_softirq+0x25c/0x921 kernel/softirq.c:292
call_timer_fn+0x18d/0x720 kernel/time/timer.c:1326
invoke_softirq kernel/softirq.c:372 [inline]
irq_exit+0x180/0x1d0 kernel/softirq.c:412
exiting_irq arch/x86/include/asm/apic.h:536 [inline]
smp_apic_timer_interrupt+0x13b/0x550 arch/x86/kernel/apic/apic.c:1094
apic_timer_interrupt+0xf/0x20 arch/x86/entry/entry_64.S:893
</IRQ>
RIP: 0010:arch_local_irq_restore arch/x86/include/asm/paravirt.h:789
[inline]
RIP: 0010:console_unlock+0xf1b/0x10b0 kernel/printk/printk.c:2414
expire_timers kernel/time/timer.c:1363 [inline]
__run_timers kernel/time/timer.c:1682 [inline]
__run_timers kernel/time/timer.c:1650 [inline]
run_timer_softirq+0x652/0x1700 kernel/time/timer.c:1695
Code: fc ff df 48 c1 e8 03 80 3c 10 00 0f 85 ce 00 00 00 48 83 3d 4e c7 1c
07 00 0f 84 b9 00 00 00 e8 db e3 15 00 48 8b 7d 98 57 9d <0f> 1f 44 00 00
e9 35 f9 ff ff 48 8b 7d b0 e8 e2 76 4c 00 e9 bc f3
RSP: 0000:ffff88808cb6f270 EFLAGS: 00000293
ORIG_RAX: ffffffffffffff13
RAX: ffff888098a20100 RBX: 0000000000000200 RCX: 1ffff11013144143
RDX: 0000000000000000 RSI: ffffffff81557ec5 RDI: 0000000000000293
__do_softirq+0x25c/0x921 kernel/softirq.c:292
RBP: ffff88808cb6f2f8 R08: ffff888098a20100 R09: ffff888098a20a18
R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000001
R13: ffffffff84110790 R14: 000000000000003d R15: ffffffff88d792d0
run_ksoftirqd kernel/softirq.c:653 [inline]
run_ksoftirqd+0x8e/0x110 kernel/softirq.c:645
vprintk_emit+0x238/0x690 kernel/printk/printk.c:1927
smpboot_thread_fn+0x6a3/0xa30 kernel/smpboot.c:164
vprintk_default+0x28/0x30 kernel/printk/printk.c:1968
vprintk_func+0x7e/0x189 kernel/printk/printk_safe.c:398
printk+0xba/0xed kernel/printk/printk.c:2001
kthread+0x354/0x420 kernel/kthread.c:246
dump_unreclaimable_slab.cold+0xde/0xe4 mm/slab_common.c:1371
dump_header+0x44b/0xa55 mm/oom_kill.c:447
ret_from_fork+0x24/0x30 arch/x86/entry/entry_64.S:415
rcu: rcu_preempt kthread starved for 10373 jiffies! g45125 f0x2
RCU_GP_WAIT_FQS(5) ->state=0x0 ->cpu=0
rcu: RCU grace-period kthread stack dump:
rcu_preempt R
oom_kill_process.cold+0x10/0x6ef mm/oom_kill.c:954
running task
29104 10 2 0x80000000
Call Trace:
out_of_memory mm/oom_kill.c:1129 [inline]
out_of_memory+0x936/0x12d0 mm/oom_kill.c:1062
context_switch kernel/sched/core.c:2826 [inline]
__schedule+0x866/0x1dc0 kernel/sched/core.c:3474
__alloc_pages_may_oom mm/page_alloc.c:3543 [inline]
__alloc_pages_slowpath+0x20af/0x2870 mm/page_alloc.c:4245
schedule+0x92/0x1c0 kernel/sched/core.c:3518
schedule_timeout+0x4db/0xfc0 kernel/time/timer.c:1804
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
rcu_gp_kthread+0xd5c/0x2190 kernel/rcu/tree.c:2202
alloc_pages_current+0x107/0x210 mm/mempolicy.c:2193
alloc_pages include/linux/gfp.h:509 [inline]
__page_cache_alloc mm/filemap.c:968 [inline]
__page_cache_alloc+0x2bd/0x450 mm/filemap.c:953
kthread+0x354/0x420 kernel/kthread.c:246
page_cache_read mm/filemap.c:2407 [inline]
filemap_fault+0x10bb/0x2250 mm/filemap.c:2591
ret_from_fork+0x24/0x30 arch/x86/entry/entry_64.S:415
ksoftirqd/1: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
ksoftirqd/1 cpuset=
ext4_filemap_fault+0x83/0xaf fs/ext4/inode.c:6304
/
__do_fault+0x111/0x480 mm/memory.c:3269
mems_allowed=0-1
do_read_fault mm/memory.c:3681 [inline]
do_fault mm/memory.c:3810 [inline]
handle_pte_fault mm/memory.c:4041 [inline]
__handle_mm_fault+0x2d78/0x3f80 mm/memory.c:4165
handle_mm_fault+0x1b5/0x690 mm/memory.c:4202
__do_page_fault+0x62a/0xe90 arch/x86/mm/fault.c:1390
do_page_fault+0x71/0x57d arch/x86/mm/fault.c:1465
page_fault+0x1e/0x30 arch/x86/entry/entry_64.S:1204
RIP: 0033:0x4284f0
Code: Bad RIP value.
RSP: 002b:000000c420039ea8 EFLAGS: 00010206
RAX: ffffffffffffff92 RBX: 000000003b97fd55 RCX: 000000000045b153
RDX: 0000000000000000 RSI: 0000000000000000 RDI: 00000000017e6420
RBP: 000000c420039ee8 R08: 0000000000000000 R09: 0000000000000000
R10: 000000c420039ed8 R11: 0000000000000206 R12: 00000198f74b9715
R13: 0000000000000001 R14: 000000c4298a3500 R15: 0000000000000001
warn_alloc_show_mem: 2 callbacks suppressed
CPU: 1 PID: 18 Comm: ksoftirqd/1 Not tainted 4.19.73 #0
Mem-Info:
active_anon:115049 inactive_anon:186 isolated_anon:0
active_file:17 inactive_file:17 isolated_file:0
unevictable:0 dirty:1 writeback:0 unstable:0
slab_reclaimable:9133 slab_unreclaimable:1393542
mapped:52226 shmem:245 pagetables:1731 bounce:0
free:10859 free_pcp:411 free_cma:0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
Node 0 active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:208904kB dirty:4kB writeback:0kB shmem:980kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 169984kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
Call Trace:
Node 1 active_anon:256kB inactive_anon:0kB active_file:4kB
inactive_file:0kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:0kB dirty:0kB writeback:0kB shmem:0kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 0kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
Node 0
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
DMA free:10300kB min:220kB low:272kB high:324kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:15992kB managed:15908kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]:
0
2555 2557
2557
Node 0
DMA32 free:13528kB min:36248kB low:45308kB high:54368kB
active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB writepending:4kB present:3129332kB
managed:2619972kB mlocked:0kB kernel_stack:8064kB pagetables:6924kB
bounce:0kB free_pcp:1644kB local_pcp:1396kB free_cma:0kB
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
lowmem_reserve[]:
0 0
2 2
Node 0
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
Normal free:12kB min:32kB low:40kB high:48kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:786432kB managed:2428kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]:
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
0 0
0
0
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
Node 1 Normal free:19596kB min:53608kB low:67008kB high:80408kB
active_anon:256kB inactive_anon:0kB active_file:4kB inactive_file:0kB
unevictable:0kB writepending:0kB present:3932160kB managed:3870184kB
mlocked:0kB kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB
local_pcp:0kB free_cma:0kB
__do_cache_alloc mm/slab.c:3361 [inline]
slab_alloc mm/slab.c:3389 [inline]
kmem_cache_alloc+0x1f3/0x700 mm/slab.c:3557
__build_skb+0x3e/0x310 net/core/skbuff.c:281
lowmem_reserve[]: 0
__napi_alloc_skb+0x1d2/0x310 net/core/skbuff.c:486
0
napi_alloc_skb include/linux/skbuff.h:2689 [inline]
page_to_skb+0x73/0x720 drivers/net/virtio_net.c:396
0
receive_mergeable drivers/net/virtio_net.c:936 [inline]
receive_buf+0x1b9f/0x5430 drivers/net/virtio_net.c:1045
0
Node 0
DMA:
1*4kB
(U)
1*8kB (U)
1*16kB
(U)
1*32kB (U)
virtnet_receive drivers/net/virtio_net.c:1334 [inline]
virtnet_poll+0x5f8/0xe90 drivers/net/virtio_net.c:1439
0*64kB 0*128kB
0*256kB
0*512kB
0*1024kB
napi_poll net/core/dev.c:6278 [inline]
net_rx_action+0x4f5/0x1070 net/core/dev.c:6344
1*2048kB
(M)
2*4096kB (ME)
__do_softirq+0x25c/0x921 kernel/softirq.c:292
= 10300kB
Node 0
DMA32: 328*4kB
run_ksoftirqd kernel/softirq.c:653 [inline]
run_ksoftirqd+0x8e/0x110 kernel/softirq.c:645
(MEH)
smpboot_thread_fn+0x6a3/0xa30 kernel/smpboot.c:164
1139*8kB
(MEH)
158*16kB
(MH)
kthread+0x354/0x420 kernel/kthread.c:246
8*32kB
(MH)
3*64kB
ret_from_fork+0x24/0x30 arch/x86/entry/entry_64.S:415
(UH) 1*128kB (U) 0*256kB 0*512kB 0*1024kB 0*2048kB 0*4096kB = 13528kB
syz-executor.2: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
Node 0 Normal:
syz-executor.2 cpuset=syz2
1*4kB
mems_allowed=0-1
(U) 1*8kB
CPU: 1 PID: 16334 Comm: syz-executor.2 Not tainted 4.19.73 #0
(U) 0*16kB
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
0*32kB 0*64kB
Call Trace:
0*128kB 0*256kB
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
0*512kB
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
0*1024kB 0*2048kB
0*4096kB
= 12kB
Node 1
Normal:
5*4kB
(ME)
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
5*8kB (UME)
9*16kB
(UME)
10*32kB
(UME) 4*64kB
(UME)
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
1*128kB
(U)
1*256kB
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
(M)
2*512kB (ME)
3*1024kB
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
(UM)
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
1*2048kB (E)
__do_cache_alloc mm/slab.c:3361 [inline]
slab_alloc mm/slab.c:3389 [inline]
kmem_cache_alloc+0x1f3/0x700 mm/slab.c:3557
3*4096kB
(M)
skb_clone+0x156/0x3e0 net/core/skbuff.c:1284
= 19596kB
____bpf_clone_redirect net/core/filter.c:2076 [inline]
bpf_clone_redirect+0xb2/0x480 net/core/filter.c:2063
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
bpf_prog_bebbfe2050753572+0x60d/0x1000
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
279 total pagecache pages
0 pages in swap cache
Swap cache stats: add 0, delete 0, find 0/0
Free swap = 0kB
Total swap = 0kB
1965979 pages RAM
0 pages HighMem/MovableOnly
338856 pages reserved
0 pages cma reserved
aoe: skb alloc failure
bpf_test_run_one net/bpf/test_run.c:22 [inline]
bpf_test_run+0x10d/0x430 net/bpf/test_run.c:43
syz-fuzzer: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
bpf_prog_test_run_skb+0x64b/0xb20 net/bpf/test_run.c:147
syz-fuzzer cpuset=
/
mems_allowed=0-1
bpf_prog_test_run+0x129/0x1a0 kernel/bpf/syscall.c:1785
__do_sys_bpf kernel/bpf/syscall.c:2423 [inline]
__se_sys_bpf kernel/bpf/syscall.c:2367 [inline]
__x64_sys_bpf+0x397/0x4c0 kernel/bpf/syscall.c:2367
do_syscall_64+0xfd/0x620 arch/x86/entry/common.c:293
entry_SYSCALL_64_after_hwframe+0x49/0xbe
RIP: 0033:0x4598e9
Code: Bad RIP value.
RSP: 002b:00007fc8457cec78 EFLAGS: 00000246 ORIG_RAX: 0000000000000141
RAX: ffffffffffffffda RBX: 0000000000000003 RCX: 00000000004598e9
RDX: 0000000000000028 RSI: 0000000020000780 RDI: 000000000000000a
RBP: 000000000075bfc8 R08: 0000000000000000 R09: 0000000000000000
R10: 0000000000000000 R11: 0000000000000246 R12: 00007fc8457cf6d4
R13: 00000000004bfc2b R14: 00000000004d1938 R15: 00000000ffffffff
CPU: 0 PID: 7493 Comm: syz-fuzzer Not tainted 4.19.73 #0
syz-executor.2: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
syz-executor.2 cpuset=
Call Trace:
syz2
<IRQ>
mems_allowed=0-1
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
slab_alloc_node mm/slab.c:3332 [inline]
kmem_cache_alloc_node+0xe3/0x710 mm/slab.c:3647
__alloc_skb+0xd5/0x5f0 net/core/skbuff.c:193
alloc_skb include/linux/skbuff.h:995 [inline]
new_skb+0x28/0x1d0 drivers/block/aoe/aoecmd.c:67
aoecmd_cfg_pkts drivers/block/aoe/aoecmd.c:426 [inline]
aoecmd_cfg+0x1b5/0x640 drivers/block/aoe/aoecmd.c:1374
discover_timer+0x4e/0x60 drivers/block/aoe/aoemain.c:24
call_timer_fn+0x18d/0x720 kernel/time/timer.c:1326
expire_timers kernel/time/timer.c:1363 [inline]
__run_timers kernel/time/timer.c:1682 [inline]
__run_timers kernel/time/timer.c:1650 [inline]
run_timer_softirq+0x652/0x1700 kernel/time/timer.c:1695
__do_softirq+0x25c/0x921 kernel/softirq.c:292
invoke_softirq kernel/softirq.c:372 [inline]
irq_exit+0x180/0x1d0 kernel/softirq.c:412
exiting_irq arch/x86/include/asm/apic.h:536 [inline]
smp_apic_timer_interrupt+0x13b/0x550 arch/x86/kernel/apic/apic.c:1094
apic_timer_interrupt+0xf/0x20 arch/x86/entry/entry_64.S:893
</IRQ>
RIP: 0010:arch_local_irq_restore arch/x86/include/asm/paravirt.h:789
[inline]
RIP: 0010:console_unlock+0xf1b/0x10b0 kernel/printk/printk.c:2414
Code: fc ff df 48 c1 e8 03 80 3c 10 00 0f 85 ce 00 00 00 48 83 3d 4e c7 1c
07 00 0f 84 b9 00 00 00 e8 db e3 15 00 48 8b 7d 98 57 9d <0f> 1f 44 00 00
e9 35 f9 ff ff 48 8b 7d b0 e8 e2 76 4c 00 e9 bc f3
RSP: 0000:ffff88808cb6f270 EFLAGS: 00000293 ORIG_RAX: ffffffffffffff13
RAX: ffff888098a20100 RBX: 0000000000000200 RCX: 1ffff11013144143
RDX: 0000000000000000 RSI: ffffffff81557ec5 RDI: 0000000000000293
RBP: ffff88808cb6f2f8 R08: ffff888098a20100 R09: ffff888098a20a18
R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000001
R13: ffffffff84110790 R14: 000000000000003d R15: ffffffff88d792d0
vprintk_emit+0x238/0x690 kernel/printk/printk.c:1927
vprintk_default+0x28/0x30 kernel/printk/printk.c:1968
vprintk_func+0x7e/0x189 kernel/printk/printk_safe.c:398
printk+0xba/0xed kernel/printk/printk.c:2001
dump_unreclaimable_slab.cold+0xde/0xe4 mm/slab_common.c:1371
dump_header+0x44b/0xa55 mm/oom_kill.c:447
oom_kill_process.cold+0x10/0x6ef mm/oom_kill.c:954
out_of_memory mm/oom_kill.c:1129 [inline]
out_of_memory+0x936/0x12d0 mm/oom_kill.c:1062
__alloc_pages_may_oom mm/page_alloc.c:3543 [inline]
__alloc_pages_slowpath+0x20af/0x2870 mm/page_alloc.c:4245
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
alloc_pages_current+0x107/0x210 mm/mempolicy.c:2193
alloc_pages include/linux/gfp.h:509 [inline]
__page_cache_alloc mm/filemap.c:968 [inline]
__page_cache_alloc+0x2bd/0x450 mm/filemap.c:953
page_cache_read mm/filemap.c:2407 [inline]
filemap_fault+0x10bb/0x2250 mm/filemap.c:2591
ext4_filemap_fault+0x83/0xaf fs/ext4/inode.c:6304
__do_fault+0x111/0x480 mm/memory.c:3269
do_read_fault mm/memory.c:3681 [inline]
do_fault mm/memory.c:3810 [inline]
handle_pte_fault mm/memory.c:4041 [inline]
__handle_mm_fault+0x2d78/0x3f80 mm/memory.c:4165
handle_mm_fault+0x1b5/0x690 mm/memory.c:4202
__do_page_fault+0x62a/0xe90 arch/x86/mm/fault.c:1390
do_page_fault+0x71/0x57d arch/x86/mm/fault.c:1465
page_fault+0x1e/0x30 arch/x86/entry/entry_64.S:1204
RIP: 0033:0x4284f0
Code: Bad RIP value.
RSP: 002b:000000c420039ea8 EFLAGS: 00010206
RAX: ffffffffffffff92 RBX: 000000003b97fd55 RCX: 000000000045b153
RDX: 0000000000000000 RSI: 0000000000000000 RDI: 00000000017e6420
RBP: 000000c420039ee8 R08: 0000000000000000 R09: 0000000000000000
R10: 000000c420039ed8 R11: 0000000000000206 R12: 00000198f74b9715
R13: 0000000000000001 R14: 000000c4298a3500 R15: 0000000000000001
warn_alloc_show_mem: 2 callbacks suppressed
CPU: 1 PID: 16334 Comm: syz-executor.2 Not tainted 4.19.73 #0
Mem-Info:
active_anon:115049 inactive_anon:186 isolated_anon:0
active_file:17 inactive_file:17 isolated_file:0
unevictable:0 dirty:1 writeback:0 unstable:0
slab_reclaimable:9133 slab_unreclaimable:1393542
mapped:52226 shmem:245 pagetables:1731 bounce:0
free:10859 free_pcp:411 free_cma:0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
Node 0 active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:208904kB dirty:4kB writeback:0kB shmem:980kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 169984kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
Call Trace:
Node 1 active_anon:256kB inactive_anon:0kB active_file:4kB
inactive_file:0kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:0kB dirty:0kB writeback:0kB shmem:0kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 0kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
Node 0
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
DMA free:10300kB min:220kB low:272kB high:324kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:15992kB managed:15908kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]:
0
2555
2557
2557
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
Node 0
DMA32 free:13528kB min:36248kB low:45308kB high:54368kB
active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB writepending:4kB present:3129332kB
managed:2619972kB mlocked:0kB kernel_stack:8064kB pagetables:6924kB
bounce:0kB free_pcp:1644kB local_pcp:1396kB free_cma:0kB
lowmem_reserve[]:
0
0 2
2
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
Node 0
Normal free:12kB min:32kB low:40kB high:48kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:786432kB managed:2428kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]:
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
0
0
0 0
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
Node 1
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
Normal free:19596kB min:53608kB low:67008kB high:80408kB active_anon:256kB
inactive_anon:0kB active_file:4kB inactive_file:0kB unevictable:0kB
writepending:0kB present:3932160kB managed:3870184kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
__do_cache_alloc mm/slab.c:3361 [inline]
slab_alloc mm/slab.c:3389 [inline]
kmem_cache_alloc+0x1f3/0x700 mm/slab.c:3557
lowmem_reserve[]:
0 0
skb_clone+0x156/0x3e0 net/core/skbuff.c:1284
0 0
____bpf_clone_redirect net/core/filter.c:2076 [inline]
bpf_clone_redirect+0xb2/0x480 net/core/filter.c:2063
bpf_prog_bebbfe2050753572+0x60d/0x1000
Node 0 DMA: 1*4kB
(U)
1*8kB
(U)
1*16kB
(U) 1*32kB
(U)
0*64kB
0*128kB
0*256kB
0*512kB 0*1024kB
1*2048kB (M)
bpf_test_run_one net/bpf/test_run.c:22 [inline]
bpf_test_run+0x10d/0x430 net/bpf/test_run.c:43
2*4096kB
bpf_prog_test_run_skb+0x64b/0xb20 net/bpf/test_run.c:147
(ME)
= 10300kB
Node 0
DMA32:
328*4kB
(MEH)
bpf_prog_test_run+0x129/0x1a0 kernel/bpf/syscall.c:1785
1139*8kB
__do_sys_bpf kernel/bpf/syscall.c:2423 [inline]
__se_sys_bpf kernel/bpf/syscall.c:2367 [inline]
__x64_sys_bpf+0x397/0x4c0 kernel/bpf/syscall.c:2367
(MEH)
158*16kB (MH)
9*32kB
(UMH)
3*64kB
do_syscall_64+0xfd/0x620 arch/x86/entry/common.c:293
(UH)
entry_SYSCALL_64_after_hwframe+0x49/0xbe
1*128kB
RIP: 0033:0x4598e9
(U) 0*256kB
Code: Bad RIP value.
0*512kB
RSP: 002b:00007fc8457cec78 EFLAGS: 00000246
0*1024kB 0*2048kB
ORIG_RAX: 0000000000000141
0*4096kB = 13560kB
RAX: ffffffffffffffda RBX: 0000000000000003 RCX: 00000000004598e9
Node 0
RDX: 0000000000000028 RSI: 0000000020000780 RDI: 000000000000000a
Normal:
RBP: 000000000075bfc8 R08: 0000000000000000 R09: 0000000000000000
1*4kB
R10: 0000000000000000 R11: 0000000000000246 R12: 00007fc8457cf6d4
(U) 1*8kB
R13: 00000000004bfc2b R14: 00000000004d1938 R15: 00000000ffffffff
(U) 0*16kB
syz-executor.2: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
0*32kB
syz-executor.2 cpuset=
0*64kB 0*128kB
syz2
0*256kB 0*512kB
mems_allowed=0-1
0*1024kB 0*2048kB
CPU: 1 PID: 16334 Comm: syz-executor.2 Not tainted 4.19.73 #0
0*4096kB
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
= 12kB
Node 1
Call Trace:
Normal: 5*4kB
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
(ME)
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
5*8kB
(UME)
9*16kB
(UME)
10*32kB
(UME)
4*64kB
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
(UME)
1*128kB
(U)
1*256kB
(M)
2*512kB
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
(ME)
3*1024kB
(UM)
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
1*2048kB (E) 3*4096kB
(M)
= 19596kB
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
__do_cache_alloc mm/slab.c:3361 [inline]
slab_alloc mm/slab.c:3389 [inline]
kmem_cache_alloc+0x1f3/0x700 mm/slab.c:3557
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
279 total pagecache pages
skb_clone+0x156/0x3e0 net/core/skbuff.c:1284
0 pages in swap cache
____bpf_clone_redirect net/core/filter.c:2076 [inline]
bpf_clone_redirect+0xb2/0x480 net/core/filter.c:2063
Swap cache stats: add 0, delete 0, find 0/0
bpf_prog_bebbfe2050753572+0x60d/0x1000
Free swap = 0kB
Total swap = 0kB
1965979 pages RAM
0 pages HighMem/MovableOnly
338856 pages reserved
0 pages cma reserved
aoe: skb alloc failure
syz-fuzzer: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
syz-fuzzer cpuset=
/
mems_allowed=0-1
bpf_test_run_one net/bpf/test_run.c:22 [inline]
bpf_test_run+0x10d/0x430 net/bpf/test_run.c:43
bpf_prog_test_run_skb+0x64b/0xb20 net/bpf/test_run.c:147
bpf_prog_test_run+0x129/0x1a0 kernel/bpf/syscall.c:1785
__do_sys_bpf kernel/bpf/syscall.c:2423 [inline]
__se_sys_bpf kernel/bpf/syscall.c:2367 [inline]
__x64_sys_bpf+0x397/0x4c0 kernel/bpf/syscall.c:2367
do_syscall_64+0xfd/0x620 arch/x86/entry/common.c:293
entry_SYSCALL_64_after_hwframe+0x49/0xbe
RIP: 0033:0x4598e9
Code: Bad RIP value.
RSP: 002b:00007fc8457cec78 EFLAGS: 00000246 ORIG_RAX: 0000000000000141
RAX: ffffffffffffffda RBX: 0000000000000003 RCX: 00000000004598e9
RDX: 0000000000000028 RSI: 0000000020000780 RDI: 000000000000000a
RBP: 000000000075bfc8 R08: 0000000000000000 R09: 0000000000000000
R10: 0000000000000000 R11: 0000000000000246 R12: 00007fc8457cf6d4
R13: 00000000004bfc2b R14: 00000000004d1938 R15: 00000000ffffffff
warn_alloc_show_mem: 1 callbacks suppressed
CPU: 0 PID: 7493 Comm: syz-fuzzer Not tainted 4.19.73 #0
Mem-Info:
active_anon:115049 inactive_anon:186 isolated_anon:0
active_file:17 inactive_file:17 isolated_file:0
unevictable:0 dirty:1 writeback:0 unstable:0
slab_reclaimable:9133 slab_unreclaimable:1393542
mapped:52226 shmem:245 pagetables:1731 bounce:0
free:10859 free_pcp:411 free_cma:0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
Node 0 active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:208904kB dirty:4kB writeback:0kB shmem:980kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 169984kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
Call Trace:
Node 1 active_anon:256kB inactive_anon:0kB active_file:4kB
inactive_file:0kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:0kB dirty:0kB writeback:0kB shmem:0kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 0kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
<IRQ>
Node 0
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
DMA free:10300kB min:220kB low:272kB high:324kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:15992kB managed:15908kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
lowmem_reserve[]:
0 2555
2557
2557
Node 0
DMA32 free:13528kB min:36248kB low:45308kB high:54368kB
active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB writepending:4kB present:3129332kB
managed:2619972kB mlocked:0kB kernel_stack:8064kB pagetables:6924kB
bounce:0kB free_pcp:1644kB local_pcp:248kB free_cma:0kB
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
lowmem_reserve[]:
0
0
2
2
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
Node 0 Normal free:12kB min:32kB low:40kB high:48kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:786432kB managed:2428kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
lowmem_reserve[]: 0
0
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
0
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
0
slab_alloc_node mm/slab.c:3332 [inline]
kmem_cache_alloc_node+0xe3/0x710 mm/slab.c:3647
__alloc_skb+0xd5/0x5f0 net/core/skbuff.c:193
Node 1 Normal free:19596kB min:53608kB low:67008kB high:80408kB
active_anon:256kB inactive_anon:0kB active_file:4kB inactive_file:0kB
unevictable:0kB writepending:0kB present:3932160kB managed:3870184kB
mlocked:0kB kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB
local_pcp:0kB free_cma:0kB
lowmem_reserve[]: 0
0
alloc_skb include/linux/skbuff.h:995 [inline]
new_skb+0x28/0x1d0 drivers/block/aoe/aoecmd.c:67
0
aoecmd_cfg_pkts drivers/block/aoe/aoecmd.c:426 [inline]
aoecmd_cfg+0x1b5/0x640 drivers/block/aoe/aoecmd.c:1374
0
Node 0
DMA:
discover_timer+0x4e/0x60 drivers/block/aoe/aoemain.c:24
1*4kB
call_timer_fn+0x18d/0x720 kernel/time/timer.c:1326
(U)
1*8kB
(U)
1*16kB
(U)
1*32kB
(U)
expire_timers kernel/time/timer.c:1363 [inline]
__run_timers kernel/time/timer.c:1682 [inline]
__run_timers kernel/time/timer.c:1650 [inline]
run_timer_softirq+0x652/0x1700 kernel/time/timer.c:1695
0*64kB
0*128kB 0*256kB
0*512kB
__do_softirq+0x25c/0x921 kernel/softirq.c:292
0*1024kB
1*2048kB
(M)
invoke_softirq kernel/softirq.c:372 [inline]
irq_exit+0x180/0x1d0 kernel/softirq.c:412
2*4096kB
exiting_irq arch/x86/include/asm/apic.h:536 [inline]
smp_apic_timer_interrupt+0x13b/0x550 arch/x86/kernel/apic/apic.c:1094
(ME)
apic_timer_interrupt+0xf/0x20 arch/x86/entry/entry_64.S:893
= 10300kB
</IRQ>
Node 0
RIP: 0010:arch_local_irq_restore arch/x86/include/asm/paravirt.h:789
[inline]
RIP: 0010:console_unlock+0xf1b/0x10b0 kernel/printk/printk.c:2414
DMA32:
Code: fc ff df 48 c1 e8 03 80 3c 10 00 0f 85 ce 00 00 00 48 83 3d 4e c7 1c
07 00 0f 84 b9 00 00 00 e8 db e3 15 00 48 8b 7d 98 57 9d <0f> 1f 44 00 00
e9 35 f9 ff ff 48 8b 7d b0 e8 e2 76 4c 00 e9 bc f3
328*4kB
RSP: 0000:ffff88808cb6f270 EFLAGS: 00000293
(MEH)
ORIG_RAX: ffffffffffffff13
1139*8kB (MEH)
RAX: ffff888098a20100 RBX: 0000000000000200 RCX: 1ffff11013144143
158*16kB
RDX: 0000000000000000 RSI: ffffffff81557ec5 RDI: 0000000000000293
(MH)
RBP: ffff88808cb6f2f8 R08: ffff888098a20100 R09: ffff888098a20a18
9*32kB (UMH)
R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000001
R13: ffffffff84110790 R14: 000000000000003d R15: ffffffff88d792d0
3*64kB
(UH)
1*128kB (U)
vprintk_emit+0x238/0x690 kernel/printk/printk.c:1927
0*256kB
vprintk_default+0x28/0x30 kernel/printk/printk.c:1968
0*512kB
vprintk_func+0x7e/0x189 kernel/printk/printk_safe.c:398
0*1024kB
printk+0xba/0xed kernel/printk/printk.c:2001
0*2048kB
0*4096kB = 13560kB
Node 0
dump_unreclaimable_slab.cold+0xde/0xe4 mm/slab_common.c:1371
Normal:
dump_header+0x44b/0xa55 mm/oom_kill.c:447
1*4kB
(U)
1*8kB
oom_kill_process.cold+0x10/0x6ef mm/oom_kill.c:954
(U)
0*16kB
0*32kB
out_of_memory mm/oom_kill.c:1129 [inline]
out_of_memory+0x936/0x12d0 mm/oom_kill.c:1062
0*64kB 0*128kB
0*256kB
0*512kB 0*1024kB
0*2048kB
__alloc_pages_may_oom mm/page_alloc.c:3543 [inline]
__alloc_pages_slowpath+0x20af/0x2870 mm/page_alloc.c:4245
0*4096kB
= 12kB
Node 1
Normal:
5*4kB
(ME)
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
5*8kB
(UME)
9*16kB
(UME)
10*32kB
(UME)
alloc_pages_current+0x107/0x210 mm/mempolicy.c:2193
4*64kB
alloc_pages include/linux/gfp.h:509 [inline]
__page_cache_alloc mm/filemap.c:968 [inline]
__page_cache_alloc+0x2bd/0x450 mm/filemap.c:953
(UME)
1*128kB
page_cache_read mm/filemap.c:2407 [inline]
filemap_fault+0x10bb/0x2250 mm/filemap.c:2591
(U)
1*256kB
(M)
2*512kB (ME)
3*1024kB
ext4_filemap_fault+0x83/0xaf fs/ext4/inode.c:6304
(UM)
__do_fault+0x111/0x480 mm/memory.c:3269
1*2048kB
do_read_fault mm/memory.c:3681 [inline]
do_fault mm/memory.c:3810 [inline]
handle_pte_fault mm/memory.c:4041 [inline]
__handle_mm_fault+0x2d78/0x3f80 mm/memory.c:4165
(E)
3*4096kB
(M)
handle_mm_fault+0x1b5/0x690 mm/memory.c:4202
= 19596kB
__do_page_fault+0x62a/0xe90 arch/x86/mm/fault.c:1390
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
279 total pagecache pages
0 pages in swap cache
Swap cache stats: add 0, delete 0, find 0/0
do_page_fault+0x71/0x57d arch/x86/mm/fault.c:1465
Free swap = 0kB
Total swap = 0kB
1965979 pages RAM
page_fault+0x1e/0x30 arch/x86/entry/entry_64.S:1204
0 pages HighMem/MovableOnly
RIP: 0033:0x4284f0
Code: Bad RIP value.
338856 pages reserved
0 pages cma reserved
RSP: 002b:000000c420039ea8 EFLAGS: 00010206
syz-executor.2: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
syz-executor.2 cpuset=
RAX: ffffffffffffff92 RBX: 000000003b97fd55 RCX: 000000000045b153
RDX: 0000000000000000 RSI: 0000000000000000 RDI: 00000000017e6420
syz2
RBP: 000000c420039ee8 R08: 0000000000000000 R09: 0000000000000000
R10: 000000c420039ed8 R11: 0000000000000206 R12: 00000198f74b9715
mems_allowed=0-1
R13: 0000000000000001 R14: 000000c4298a3500 R15: 0000000000000001
CPU: 1 PID: 16334 Comm: syz-executor.2 Not tainted 4.19.73 #0
Mem-Info:
active_anon:115049 inactive_anon:186 isolated_anon:0
active_file:17 inactive_file:17 isolated_file:0
unevictable:0 dirty:1 writeback:0 unstable:0
slab_reclaimable:9133 slab_unreclaimable:1393542
mapped:52226 shmem:245 pagetables:1731 bounce:0
free:10859 free_pcp:411 free_cma:0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
Node 0 active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:208904kB dirty:4kB writeback:0kB shmem:980kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 169984kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
Call Trace:
Node 1 active_anon:256kB inactive_anon:0kB active_file:4kB
inactive_file:0kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:0kB dirty:0kB writeback:0kB shmem:0kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 0kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
Node 0
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
DMA free:10300kB min:220kB low:272kB high:324kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:15992kB managed:15908kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]: 0
2555 2557
2557
Node 0
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
DMA32 free:13528kB min:36248kB low:45308kB high:54368kB
active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB writepending:4kB present:3129332kB
managed:2619972kB mlocked:0kB kernel_stack:8064kB pagetables:6924kB
bounce:0kB free_pcp:1644kB local_pcp:1396kB free_cma:0kB
lowmem_reserve[]: 0
0
2
2
Node 0
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
Normal free:12kB min:32kB low:40kB high:48kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:786432kB managed:2428kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]: 0
0 0
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
0
Node 1
Normal free:19596kB min:53608kB low:67008kB high:80408kB active_anon:256kB
inactive_anon:0kB active_file:4kB inactive_file:0kB unevictable:0kB
writepending:0kB present:3932160kB managed:3870184kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
lowmem_reserve[]:
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
0
__do_cache_alloc mm/slab.c:3361 [inline]
slab_alloc mm/slab.c:3389 [inline]
kmem_cache_alloc+0x1f3/0x700 mm/slab.c:3557
0
0
skb_clone+0x156/0x3e0 net/core/skbuff.c:1284
0
____bpf_clone_redirect net/core/filter.c:2076 [inline]
bpf_clone_redirect+0xb2/0x480 net/core/filter.c:2063
Node 0
bpf_prog_bebbfe2050753572+0x60d/0x1000
DMA:
1*4kB
(U)
1*8kB (U)
1*16kB
(U)
1*32kB
(U)
0*64kB 0*128kB
0*256kB 0*512kB
0*1024kB 1*2048kB
(M)
bpf_test_run_one net/bpf/test_run.c:22 [inline]
bpf_test_run+0x10d/0x430 net/bpf/test_run.c:43
2*4096kB
bpf_prog_test_run_skb+0x64b/0xb20 net/bpf/test_run.c:147
(ME)
= 10300kB
Node 0
DMA32:
328*4kB
(MEH)
1139*8kB
bpf_prog_test_run+0x129/0x1a0 kernel/bpf/syscall.c:1785
(MEH)
__do_sys_bpf kernel/bpf/syscall.c:2423 [inline]
__se_sys_bpf kernel/bpf/syscall.c:2367 [inline]
__x64_sys_bpf+0x397/0x4c0 kernel/bpf/syscall.c:2367
158*16kB (MH)
9*32kB (UMH)
3*64kB (UH)
1*128kB (U)
0*256kB 0*512kB
do_syscall_64+0xfd/0x620 arch/x86/entry/common.c:293
0*1024kB 0*2048kB
entry_SYSCALL_64_after_hwframe+0x49/0xbe
0*4096kB = 13560kB
RIP: 0033:0x4598e9
Node 0
Code: Bad RIP value.
Normal: 1*4kB
RSP: 002b:00007fc8457cec78 EFLAGS: 00000246
(U) 1*8kB
ORIG_RAX: 0000000000000141
(U) 0*16kB
RAX: ffffffffffffffda RBX: 0000000000000003 RCX: 00000000004598e9
0*32kB 0*64kB
RDX: 0000000000000028 RSI: 0000000020000780 RDI: 000000000000000a
0*128kB 0*256kB
RBP: 000000000075bfc8 R08: 0000000000000000 R09: 0000000000000000
R10: 0000000000000000 R11: 0000000000000246 R12: 00007fc8457cf6d4
0*512kB
R13: 00000000004bfc2b R14: 00000000004d1938 R15: 00000000ffffffff
syz-executor.2: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
0*1024kB
syz-executor.2 cpuset=
0*2048kB 0*4096kB
syz2
= 12kB
Node 1
mems_allowed=0-1
Normal:
CPU: 1 PID: 16334 Comm: syz-executor.2 Not tainted 4.19.73 #0
5*4kB
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
(ME)
Call Trace:
5*8kB
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
(UME)
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
9*16kB (UME)
10*32kB
(UME)
4*64kB
(UME)
1*128kB
(U)
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
1*256kB
(M)
2*512kB
(ME)
3*1024kB
(UM)
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
1*2048kB (E)
3*4096kB (M)
= 19596kB
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
279 total pagecache pages
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
0 pages in swap cache
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
Swap cache stats: add 0, delete 0, find 0/0
Free swap = 0kB
__do_cache_alloc mm/slab.c:3361 [inline]
slab_alloc mm/slab.c:3389 [inline]
kmem_cache_alloc+0x1f3/0x700 mm/slab.c:3557
Total swap = 0kB
1965979 pages RAM
skb_clone+0x156/0x3e0 net/core/skbuff.c:1284
0 pages HighMem/MovableOnly
338856 pages reserved
____bpf_clone_redirect net/core/filter.c:2076 [inline]
bpf_clone_redirect+0xb2/0x480 net/core/filter.c:2063
0 pages cma reserved
aoe: skb alloc failure
bpf_prog_bebbfe2050753572+0x60d/0x1000
syz-fuzzer: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
syz-fuzzer cpuset=
/
mems_allowed=0-1
bpf_test_run_one net/bpf/test_run.c:22 [inline]
bpf_test_run+0x10d/0x430 net/bpf/test_run.c:43
bpf_prog_test_run_skb+0x64b/0xb20 net/bpf/test_run.c:147
bpf_prog_test_run+0x129/0x1a0 kernel/bpf/syscall.c:1785
__do_sys_bpf kernel/bpf/syscall.c:2423 [inline]
__se_sys_bpf kernel/bpf/syscall.c:2367 [inline]
__x64_sys_bpf+0x397/0x4c0 kernel/bpf/syscall.c:2367
do_syscall_64+0xfd/0x620 arch/x86/entry/common.c:293
entry_SYSCALL_64_after_hwframe+0x49/0xbe
RIP: 0033:0x4598e9
Code: Bad RIP value.
RSP: 002b:00007fc8457cec78 EFLAGS: 00000246 ORIG_RAX: 0000000000000141
RAX: ffffffffffffffda RBX: 0000000000000003 RCX: 00000000004598e9
RDX: 0000000000000028 RSI: 0000000020000780 RDI: 000000000000000a
RBP: 000000000075bfc8 R08: 0000000000000000 R09: 0000000000000000
R10: 0000000000000000 R11: 0000000000000246 R12: 00007fc8457cf6d4
R13: 00000000004bfc2b R14: 00000000004d1938 R15: 00000000ffffffff
CPU: 0 PID: 7493 Comm: syz-fuzzer Not tainted 4.19.73 #0
syz-executor.2: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
syz-executor.2 cpuset=
Call Trace:
syz2
<IRQ>
mems_allowed=0-1
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
slab_alloc_node mm/slab.c:3332 [inline]
kmem_cache_alloc_node+0xe3/0x710 mm/slab.c:3647
__alloc_skb+0xd5/0x5f0 net/core/skbuff.c:193
alloc_skb include/linux/skbuff.h:995 [inline]
new_skb+0x28/0x1d0 drivers/block/aoe/aoecmd.c:67
aoecmd_cfg_pkts drivers/block/aoe/aoecmd.c:426 [inline]
aoecmd_cfg+0x1b5/0x640 drivers/block/aoe/aoecmd.c:1374
discover_timer+0x4e/0x60 drivers/block/aoe/aoemain.c:24
call_timer_fn+0x18d/0x720 kernel/time/timer.c:1326
expire_timers kernel/time/timer.c:1363 [inline]
__run_timers kernel/time/timer.c:1682 [inline]
__run_timers kernel/time/timer.c:1650 [inline]
run_timer_softirq+0x652/0x1700 kernel/time/timer.c:1695
__do_softirq+0x25c/0x921 kernel/softirq.c:292
invoke_softirq kernel/softirq.c:372 [inline]
irq_exit+0x180/0x1d0 kernel/softirq.c:412
exiting_irq arch/x86/include/asm/apic.h:536 [inline]
smp_apic_timer_interrupt+0x13b/0x550 arch/x86/kernel/apic/apic.c:1094
apic_timer_interrupt+0xf/0x20 arch/x86/entry/entry_64.S:893
</IRQ>
RIP: 0010:arch_local_irq_restore arch/x86/include/asm/paravirt.h:789
[inline]
RIP: 0010:console_unlock+0xf1b/0x10b0 kernel/printk/printk.c:2414
Code: fc ff df 48 c1 e8 03 80 3c 10 00 0f 85 ce 00 00 00 48 83 3d 4e c7 1c
07 00 0f 84 b9 00 00 00 e8 db e3 15 00 48 8b 7d 98 57 9d <0f> 1f 44 00 00
e9 35 f9 ff ff 48 8b 7d b0 e8 e2 76 4c 00 e9 bc f3
RSP: 0000:ffff88808cb6f270 EFLAGS: 00000293 ORIG_RAX: ffffffffffffff13
RAX: ffff888098a20100 RBX: 0000000000000200 RCX: 1ffff11013144143
RDX: 0000000000000000 RSI: ffffffff81557ec5 RDI: 0000000000000293
RBP: ffff88808cb6f2f8 R08: ffff888098a20100 R09: ffff888098a20a18
R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000001
R13: ffffffff84110790 R14: 000000000000003d R15: ffffffff88d792d0
vprintk_emit+0x238/0x690 kernel/printk/printk.c:1927
vprintk_default+0x28/0x30 kernel/printk/printk.c:1968
vprintk_func+0x7e/0x189 kernel/printk/printk_safe.c:398
printk+0xba/0xed kernel/printk/printk.c:2001
dump_unreclaimable_slab.cold+0xde/0xe4 mm/slab_common.c:1371
dump_header+0x44b/0xa55 mm/oom_kill.c:447
oom_kill_process.cold+0x10/0x6ef mm/oom_kill.c:954
out_of_memory mm/oom_kill.c:1129 [inline]
out_of_memory+0x936/0x12d0 mm/oom_kill.c:1062
__alloc_pages_may_oom mm/page_alloc.c:3543 [inline]
__alloc_pages_slowpath+0x20af/0x2870 mm/page_alloc.c:4245
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
alloc_pages_current+0x107/0x210 mm/mempolicy.c:2193
alloc_pages include/linux/gfp.h:509 [inline]
__page_cache_alloc mm/filemap.c:968 [inline]
__page_cache_alloc+0x2bd/0x450 mm/filemap.c:953
page_cache_read mm/filemap.c:2407 [inline]
filemap_fault+0x10bb/0x2250 mm/filemap.c:2591
ext4_filemap_fault+0x83/0xaf fs/ext4/inode.c:6304
__do_fault+0x111/0x480 mm/memory.c:3269
do_read_fault mm/memory.c:3681 [inline]
do_fault mm/memory.c:3810 [inline]
handle_pte_fault mm/memory.c:4041 [inline]
__handle_mm_fault+0x2d78/0x3f80 mm/memory.c:4165
handle_mm_fault+0x1b5/0x690 mm/memory.c:4202
__do_page_fault+0x62a/0xe90 arch/x86/mm/fault.c:1390
do_page_fault+0x71/0x57d arch/x86/mm/fault.c:1465
page_fault+0x1e/0x30 arch/x86/entry/entry_64.S:1204
RIP: 0033:0x4284f0
Code: Bad RIP value.
RSP: 002b:000000c420039ea8 EFLAGS: 00010206
RAX: ffffffffffffff92 RBX: 000000003b97fd55 RCX: 000000000045b153
RDX: 0000000000000000 RSI: 0000000000000000 RDI: 00000000017e6420
RBP: 000000c420039ee8 R08: 0000000000000000 R09: 0000000000000000
R10: 000000c420039ed8 R11: 0000000000000206 R12: 00000198f74b9715
R13: 0000000000000001 R14: 000000c4298a3500 R15: 0000000000000001
warn_alloc_show_mem: 2 callbacks suppressed
CPU: 1 PID: 16334 Comm: syz-executor.2 Not tainted 4.19.73 #0
Mem-Info:
active_anon:115049 inactive_anon:186 isolated_anon:0
active_file:17 inactive_file:17 isolated_file:0
unevictable:0 dirty:1 writeback:0 unstable:0
slab_reclaimable:9133 slab_unreclaimable:1393542
mapped:52226 shmem:245 pagetables:1731 bounce:0
free:10859 free_pcp:411 free_cma:0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
Node 0 active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:208904kB dirty:4kB writeback:0kB shmem:980kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 169984kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
Call Trace:
Node 1 active_anon:256kB inactive_anon:0kB active_file:4kB
inactive_file:0kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:0kB dirty:0kB writeback:0kB shmem:0kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 0kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
Node 0
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
DMA free:10300kB min:220kB low:272kB high:324kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:15992kB managed:15908kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
lowmem_reserve[]:
0
2555
2557
2557
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
Node 0
DMA32 free:13528kB min:36248kB low:45308kB high:54368kB
active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB writepending:4kB present:3129332kB
managed:2619972kB mlocked:0kB kernel_stack:8064kB pagetables:6924kB
bounce:0kB free_pcp:1644kB local_pcp:1396kB free_cma:0kB
lowmem_reserve[]:
0 0
2 2
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
Node 0
Normal free:12kB min:32kB low:40kB high:48kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:786432kB managed:2428kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]:
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
0
0 0
0
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
Node 1
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
Normal free:19596kB min:53608kB low:67008kB high:80408kB active_anon:256kB
inactive_anon:0kB active_file:4kB inactive_file:0kB unevictable:0kB
writepending:0kB present:3932160kB managed:3870184kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
__do_cache_alloc mm/slab.c:3361 [inline]
slab_alloc mm/slab.c:3389 [inline]
kmem_cache_alloc+0x1f3/0x700 mm/slab.c:3557
lowmem_reserve[]:
0 0
skb_clone+0x156/0x3e0 net/core/skbuff.c:1284
0 0
____bpf_clone_redirect net/core/filter.c:2076 [inline]
bpf_clone_redirect+0xb2/0x480 net/core/filter.c:2063
Node 0
bpf_prog_bebbfe2050753572+0x60d/0x1000
DMA:
1*4kB
(U)
1*8kB
(U)
1*16kB (U)
1*32kB
(U)
0*64kB
0*128kB
0*256kB
0*512kB 0*1024kB
bpf_test_run_one net/bpf/test_run.c:22 [inline]
bpf_test_run+0x10d/0x430 net/bpf/test_run.c:43
1*2048kB
bpf_prog_test_run_skb+0x64b/0xb20 net/bpf/test_run.c:147
(M)
2*4096kB
(ME)
= 10300kB
Node 0
DMA32:
bpf_prog_test_run+0x129/0x1a0 kernel/bpf/syscall.c:1785
328*4kB
__do_sys_bpf kernel/bpf/syscall.c:2423 [inline]
__se_sys_bpf kernel/bpf/syscall.c:2367 [inline]
__x64_sys_bpf+0x397/0x4c0 kernel/bpf/syscall.c:2367
(MEH)
1139*8kB
(MEH)
158*16kB
(MH)
do_syscall_64+0xfd/0x620 arch/x86/entry/common.c:293
9*32kB
entry_SYSCALL_64_after_hwframe+0x49/0xbe
(UMH)
RIP: 0033:0x4598e9
3*64kB
Code: Bad RIP value.
(UH)
RSP: 002b:00007fc8457cec78 EFLAGS: 00000246
1*128kB (U)
ORIG_RAX: 0000000000000141
0*256kB
RAX: ffffffffffffffda RBX: 0000000000000003 RCX: 00000000004598e9
0*512kB
RDX: 0000000000000028 RSI: 0000000020000780 RDI: 000000000000000a
0*1024kB
RBP: 000000000075bfc8 R08: 0000000000000000 R09: 0000000000000000
0*2048kB
R10: 0000000000000000 R11: 0000000000000246 R12: 00007fc8457cf6d4
0*4096kB
R13: 00000000004bfc2b R14: 00000000004d1938 R15: 00000000ffffffff
= 13560kB
syz-executor.2: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
Node 0
syz-executor.2 cpuset=
Normal: 1*4kB
syz2
(U)
mems_allowed=0-1
1*8kB
CPU: 1 PID: 16334 Comm: syz-executor.2 Not tainted 4.19.73 #0
(U)
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
0*16kB 0*32kB
Call Trace:
0*64kB
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
0*128kB 0*256kB
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
0*512kB
0*1024kB
0*2048kB 0*4096kB
= 12kB
Node 1
Normal:
5*4kB
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
(ME)
5*8kB (UME)
9*16kB (UME)
10*32kB (UME)
4*64kB (UME)
1*128kB (U)
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
1*256kB (M)
2*512kB
(ME)
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
3*1024kB
(UM)
1*2048kB
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
(E)
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
3*4096kB
__do_cache_alloc mm/slab.c:3361 [inline]
slab_alloc mm/slab.c:3389 [inline]
kmem_cache_alloc+0x1f3/0x700 mm/slab.c:3557
(M)
= 19596kB
skb_clone+0x156/0x3e0 net/core/skbuff.c:1284
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
____bpf_clone_redirect net/core/filter.c:2076 [inline]
bpf_clone_redirect+0xb2/0x480 net/core/filter.c:2063
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
bpf_prog_bebbfe2050753572+0x60d/0x1000
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
279 total pagecache pages
0 pages in swap cache
Swap cache stats: add 0, delete 0, find 0/0
Free swap = 0kB
Total swap = 0kB
1965979 pages RAM
0 pages HighMem/MovableOnly
338856 pages reserved
0 pages cma reserved
aoe: skb alloc failure
syz-fuzzer: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
syz-fuzzer cpuset=
bpf_test_run_one net/bpf/test_run.c:22 [inline]
bpf_test_run+0x10d/0x430 net/bpf/test_run.c:43
/
bpf_prog_test_run_skb+0x64b/0xb20 net/bpf/test_run.c:147
mems_allowed=0-1
bpf_prog_test_run+0x129/0x1a0 kernel/bpf/syscall.c:1785
__do_sys_bpf kernel/bpf/syscall.c:2423 [inline]
__se_sys_bpf kernel/bpf/syscall.c:2367 [inline]
__x64_sys_bpf+0x397/0x4c0 kernel/bpf/syscall.c:2367
do_syscall_64+0xfd/0x620 arch/x86/entry/common.c:293
entry_SYSCALL_64_after_hwframe+0x49/0xbe
RIP: 0033:0x4598e9
Code: Bad RIP value.
RSP: 002b:00007fc8457cec78 EFLAGS: 00000246 ORIG_RAX: 0000000000000141
RAX: ffffffffffffffda RBX: 0000000000000003 RCX: 00000000004598e9
RDX: 0000000000000028 RSI: 0000000020000780 RDI: 000000000000000a
RBP: 000000000075bfc8 R08: 0000000000000000 R09: 0000000000000000
R10: 0000000000000000 R11: 0000000000000246 R12: 00007fc8457cf6d4
R13: 00000000004bfc2b R14: 00000000004d1938 R15: 00000000ffffffff
warn_alloc_show_mem: 1 callbacks suppressed
CPU: 0 PID: 7493 Comm: syz-fuzzer Not tainted 4.19.73 #0
Mem-Info:
active_anon:115049 inactive_anon:186 isolated_anon:0
active_file:17 inactive_file:17 isolated_file:0
unevictable:0 dirty:1 writeback:0 unstable:0
slab_reclaimable:9133 slab_unreclaimable:1393542
mapped:52226 shmem:245 pagetables:1731 bounce:0
free:10859 free_pcp:411 free_cma:0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
Call Trace:
Node 0 active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:208904kB dirty:4kB writeback:0kB shmem:980kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 169984kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
<IRQ>
Node 1 active_anon:256kB inactive_anon:0kB active_file:4kB
inactive_file:0kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:0kB dirty:0kB writeback:0kB shmem:0kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 0kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
Node 0
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
DMA free:10300kB min:220kB low:272kB high:324kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:15992kB managed:15908kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]:
0
2555
2557
2557
Node 0
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
DMA32 free:13528kB min:36248kB low:45308kB high:54368kB
active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB writepending:4kB present:3129332kB
managed:2619972kB mlocked:0kB kernel_stack:8064kB pagetables:6924kB
bounce:0kB free_pcp:1644kB local_pcp:248kB free_cma:0kB
lowmem_reserve[]:
0 0
2 2
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
Node 0
Normal free:12kB min:32kB low:40kB high:48kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:786432kB managed:2428kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
lowmem_reserve[]: 0
0
0
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
0
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
slab_alloc_node mm/slab.c:3332 [inline]
kmem_cache_alloc_node+0xe3/0x710 mm/slab.c:3647
Node 1
__alloc_skb+0xd5/0x5f0 net/core/skbuff.c:193
Normal free:19596kB min:53608kB low:67008kB high:80408kB active_anon:256kB
inactive_anon:0kB active_file:4kB inactive_file:0kB unevictable:0kB
writepending:0kB present:3932160kB managed:3870184kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]:
0
0 0
alloc_skb include/linux/skbuff.h:995 [inline]
new_skb+0x28/0x1d0 drivers/block/aoe/aoecmd.c:67
0
aoecmd_cfg_pkts drivers/block/aoe/aoecmd.c:426 [inline]
aoecmd_cfg+0x1b5/0x640 drivers/block/aoe/aoecmd.c:1374
Node 0 DMA:
1*4kB (U)
discover_timer+0x4e/0x60 drivers/block/aoe/aoemain.c:24
1*8kB
call_timer_fn+0x18d/0x720 kernel/time/timer.c:1326
(U)
1*16kB
(U)
1*32kB
(U)
0*64kB
0*128kB
expire_timers kernel/time/timer.c:1363 [inline]
__run_timers kernel/time/timer.c:1682 [inline]
__run_timers kernel/time/timer.c:1650 [inline]
run_timer_softirq+0x652/0x1700 kernel/time/timer.c:1695
0*256kB 0*512kB
0*1024kB
1*2048kB
__do_softirq+0x25c/0x921 kernel/softirq.c:292
(M) 2*4096kB
(ME)
= 10300kB
invoke_softirq kernel/softirq.c:372 [inline]
irq_exit+0x180/0x1d0 kernel/softirq.c:412
Node 0
exiting_irq arch/x86/include/asm/apic.h:536 [inline]
smp_apic_timer_interrupt+0x13b/0x550 arch/x86/kernel/apic/apic.c:1094
DMA32:
apic_timer_interrupt+0xf/0x20 arch/x86/entry/entry_64.S:893
328*4kB
</IRQ>
(MEH)
RIP: 0010:arch_local_irq_restore arch/x86/include/asm/paravirt.h:789
[inline]
RIP: 0010:console_unlock+0xf1b/0x10b0 kernel/printk/printk.c:2414
1139*8kB
Code: fc ff df 48 c1 e8 03 80 3c 10 00 0f 85 ce 00 00 00 48 83 3d 4e c7 1c
07 00 0f 84 b9 00 00 00 e8 db e3 15 00 48 8b 7d 98 57 9d <0f> 1f 44 00 00
e9 35 f9 ff ff 48 8b 7d b0 e8 e2 76 4c 00 e9 bc f3
(MEH) 158*16kB (MH) 9*32kB (UMH)
RSP: 0000:ffff88808cb6f270 EFLAGS: 00000293
3*64kB
ORIG_RAX: ffffffffffffff13
(UH)
RAX: ffff888098a20100 RBX: 0000000000000200 RCX: 1ffff11013144143
1*128kB
RDX: 0000000000000000 RSI: ffffffff81557ec5 RDI: 0000000000000293
(U)
RBP: ffff88808cb6f2f8 R08: ffff888098a20100 R09: ffff888098a20a18
0*256kB
R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000001
0*512kB
R13: ffffffff84110790 R14: 000000000000003d R15: ffffffff88d792d0
0*1024kB
0*2048kB
vprintk_emit+0x238/0x690 kernel/printk/printk.c:1927
0*4096kB = 13560kB
vprintk_default+0x28/0x30 kernel/printk/printk.c:1968
Node 0
vprintk_func+0x7e/0x189 kernel/printk/printk_safe.c:398
Normal:
printk+0xba/0xed kernel/printk/printk.c:2001
1*4kB
(U)
1*8kB
dump_unreclaimable_slab.cold+0xde/0xe4 mm/slab_common.c:1371
(U)
dump_header+0x44b/0xa55 mm/oom_kill.c:447
0*16kB
0*32kB
0*64kB
0*128kB
oom_kill_process.cold+0x10/0x6ef mm/oom_kill.c:954
0*256kB
0*512kB 0*1024kB
0*2048kB
out_of_memory mm/oom_kill.c:1129 [inline]
out_of_memory+0x936/0x12d0 mm/oom_kill.c:1062
0*4096kB
= 12kB
Node 1
Normal:
5*4kB
__alloc_pages_may_oom mm/page_alloc.c:3543 [inline]
__alloc_pages_slowpath+0x20af/0x2870 mm/page_alloc.c:4245
(ME)
5*8kB
(UME)
9*16kB
(UME)
10*32kB
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
(UME)
4*64kB
(UME)
1*128kB
(U) 1*256kB
(M)
alloc_pages_current+0x107/0x210 mm/mempolicy.c:2193
2*512kB
alloc_pages include/linux/gfp.h:509 [inline]
__page_cache_alloc mm/filemap.c:968 [inline]
__page_cache_alloc+0x2bd/0x450 mm/filemap.c:953
(ME)
3*1024kB
page_cache_read mm/filemap.c:2407 [inline]
filemap_fault+0x10bb/0x2250 mm/filemap.c:2591
(UM)
1*2048kB (E)
3*4096kB
(M) = 19596kB
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
ext4_filemap_fault+0x83/0xaf fs/ext4/inode.c:6304
Node 0 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
__do_fault+0x111/0x480 mm/memory.c:3269
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=1048576kB
do_read_fault mm/memory.c:3681 [inline]
do_fault mm/memory.c:3810 [inline]
handle_pte_fault mm/memory.c:4041 [inline]
__handle_mm_fault+0x2d78/0x3f80 mm/memory.c:4165
Node 1 hugepages_total=0 hugepages_free=0 hugepages_surp=0
hugepages_size=2048kB
279 total pagecache pages
0 pages in swap cache
handle_mm_fault+0x1b5/0x690 mm/memory.c:4202
Swap cache stats: add 0, delete 0, find 0/0
__do_page_fault+0x62a/0xe90 arch/x86/mm/fault.c:1390
Free swap = 0kB
Total swap = 0kB
1965979 pages RAM
0 pages HighMem/MovableOnly
338856 pages reserved
do_page_fault+0x71/0x57d arch/x86/mm/fault.c:1465
0 pages cma reserved
syz-executor.2: page allocation failure: order:0, mode:0x484020(GFP_ATOMIC|
__GFP_COMP), nodemask=(null)
page_fault+0x1e/0x30 arch/x86/entry/entry_64.S:1204
syz-executor.2 cpuset=
RIP: 0033:0x4284f0
syz2
Code: Bad RIP value.
mems_allowed=0-1
RSP: 002b:000000c420039ea8 EFLAGS: 00010206
RAX: ffffffffffffff92 RBX: 000000003b97fd55 RCX: 000000000045b153
RDX: 0000000000000000 RSI: 0000000000000000 RDI: 00000000017e6420
RBP: 000000c420039ee8 R08: 0000000000000000 R09: 0000000000000000
R10: 000000c420039ed8 R11: 0000000000000206 R12: 00000198f74b9715
R13: 0000000000000001 R14: 000000c4298a3500 R15: 0000000000000001
Mem-Info:
CPU: 1 PID: 16334 Comm: syz-executor.2 Not tainted 4.19.73 #0
Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS
Google 01/01/2011
active_anon:115049 inactive_anon:186 isolated_anon:0
active_file:17 inactive_file:17 isolated_file:0
unevictable:0 dirty:1 writeback:0 unstable:0
slab_reclaimable:9133 slab_unreclaimable:1393542
mapped:52226 shmem:245 pagetables:1731 bounce:0
free:10859 free_pcp:411 free_cma:0
Call Trace:
Node 0 active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:208904kB dirty:4kB writeback:0kB shmem:980kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 169984kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
__dump_stack lib/dump_stack.c:77 [inline]
dump_stack+0x172/0x1f0 lib/dump_stack.c:113
Node 1 active_anon:256kB inactive_anon:0kB active_file:4kB
inactive_file:0kB unevictable:0kB isolated(anon):0kB isolated(file):0kB
mapped:0kB dirty:0kB writeback:0kB shmem:0kB shmem_thp: 0kB
shmem_pmdmapped: 0kB anon_thp: 0kB writeback_tmp:0kB unstable:0kB
all_unreclaimable? yes
warn_alloc.cold+0x7b/0x173 mm/page_alloc.c:3447
Node 0
DMA free:10300kB min:220kB low:272kB high:324kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:15992kB managed:15908kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]:
0 2555
2557
2557
Node 0
__alloc_pages_slowpath+0x220e/0x2870 mm/page_alloc.c:4307
DMA32 free:13528kB min:36248kB low:45308kB high:54368kB
active_anon:459940kB inactive_anon:744kB active_file:64kB
inactive_file:68kB unevictable:0kB writepending:4kB present:3129332kB
managed:2619972kB mlocked:0kB kernel_stack:8064kB pagetables:6924kB
bounce:0kB free_pcp:1644kB local_pcp:1396kB free_cma:0kB
lowmem_reserve[]: 0
0
2 2
Node 0
Normal free:12kB min:32kB low:40kB high:48kB active_anon:0kB
inactive_anon:0kB active_file:0kB inactive_file:0kB unevictable:0kB
writepending:0kB present:786432kB managed:2428kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
__alloc_pages_nodemask+0x617/0x750 mm/page_alloc.c:4409
lowmem_reserve[]: 0
0
0 0
__alloc_pages include/linux/gfp.h:473 [inline]
__alloc_pages_node include/linux/gfp.h:486 [inline]
kmem_getpages mm/slab.c:1412 [inline]
cache_grow_begin+0x91/0x8c0 mm/slab.c:2682
Node 1
Normal free:19596kB min:53608kB low:67008kB high:80408kB active_anon:256kB
inactive_anon:0kB active_file:4kB inactive_file:0kB unevictable:0kB
writepending:0kB present:3932160kB managed:3870184kB mlocked:0kB
kernel_stack:0kB pagetables:0kB bounce:0kB free_pcp:0kB local_pcp:0kB
free_cma:0kB
lowmem_reserve[]: 0
fallback_alloc+0x1fd/0x2d0 mm/slab.c:3224
0
____cache_alloc_node+0x1be/0x1e0 mm/slab.c:3292
0 0
__do_cache_alloc mm/slab.c:3361 [inline]
slab_alloc mm/slab.c:3389 [inline]
kmem_cache_alloc+0x1f3/0x700 mm/slab.c:3557
Node 0 DMA:
skb_clone+0x156/0x3e0 net/core/skbuff.c:1284
1*4kB (U)
____bpf_clone_redirect net/core/filter.c:2076 [inline]
bpf_clone_redirect+0xb2/0x480 net/core/filter.c:2063
1*8kB
bpf_prog_bebbfe2050753572+0x60d/0x1000
(U)
1*16kB
(U)
1*32kB
(U)
0*64kB
0*128kB
0*256kB
0*512kB
0*1024kB
1*2048kB (M)
2*4096kB (ME)
bpf_test_run_one net/bpf/test_run.c:22 [inline]
bpf_test_run+0x10d/0x430 net/bpf/test_run.c:43
= 10300kB
bpf_prog_test_run_skb+0x64b/0xb20 net/bpf/test_run.c:147
Node 0
DMA32: 328*4kB
(MEH)
1139*8kB
(MEH)
158*16kB
b

---
This bug is generated by a bot. It may contain errors.
See https://goo.gl/tpsmEJ for more information about syzbot.
syzbot engineers can be reached at syzk...@googlegroups.com.

syzbot will keep track of this bug report. See:
https://goo.gl/tpsmEJ#status for how to communicate with syzbot.

syzbot

unread,
Jan 14, 2020, 8:25:06 AM1/14/20
to syzkaller...@googlegroups.com
Auto-closing this bug as obsolete.
Crashes did not happen for a while, no reproducer and no activity.
Reply all
Reply to author
Forward
0 new messages