https://intel-gfx-ci.01.org/tree/drm-tip/drmtip_323/fi-apl-guc/igt@runner@aborted.html Aborting. Previous test: kms_prop_blob (blob-prop-validate) Next test: kms_big_fb (yf-tiled-32bpp-rotate-0) Kernel badly tainted (0x60) (check dmesg for details): (0x20) TAINT_BAD_PAGE: Bad page reference or an unexpected page flags. =========================================================================== BUG dentry (Tainted: G U ): Poison overwritten <3>[ 352.765682] ----------------------------------------------------------------------------- <4>[ 352.765776] Disabling lock debugging due to kernel taint <3>[ 352.765780] INFO: 0x00000000d0ed77a5-0x00000000d0ed77a5. First byte 0x7b instead of 0x6b <3>[ 352.765847] INFO: Allocated in __d_alloc+0x1d/0x200 age=303520 cpu=0 pid=965 <3>[ 352.765903] __slab_alloc.isra.28.constprop.34+0x3d/0x70 <3>[ 352.765945] kmem_cache_alloc+0x21c/0x280 <3>[ 352.765978] __d_alloc+0x1d/0x200 <3>[ 352.766007] d_alloc_pseudo+0x5/0x20 <3>[ 352.766038] alloc_file_pseudo+0x5c/0x100 <3>[ 352.766071] __shmem_file_setup.part.13+0xb9/0x130 <3>[ 352.766202] i915_gem_object_create_shmem.part.1+0x58/0x1f0 [i915] <3>[ 352.766324] i915_gem_create+0x47/0xc0 [i915] <3>[ 352.766361] drm_ioctl_kernel+0x83/0xf0 <3>[ 352.766393] drm_ioctl+0x2f3/0x3b0 <3>[ 352.766423] do_vfs_ioctl+0xa0/0x6e0 <3>[ 352.766453] ksys_ioctl+0x35/0x60 <3>[ 352.766482] __x64_sys_ioctl+0x11/0x20 <3>[ 352.766514] do_syscall_64+0x55/0x1c0 <3>[ 352.766546] entry_SYSCALL_64_after_hwframe+0x49/0xbe <3>[ 352.766588] INFO: Freed in __dentry_kill+0x134/0x190 age=266330 cpu=3 pid=146 <3>[ 352.766642] kmem_cache_free+0x275/0x2e0 <3>[ 352.766675] __dentry_kill+0x134/0x190 <3>[ 352.766707] dentry_kill+0x4b/0x1b0 <3>[ 352.766737] dput+0x262/0x2c0 <3>[ 352.766764] __fput+0x102/0x220 <3>[ 352.766791] delayed_fput+0x17/0x30 <3>[ 352.766821] process_one_work+0x245/0x610 <3>[ 352.766854] worker_thread+0x37/0x380 <3>[ 352.766886] kthread+0x119/0x130 <3>[ 352.766913] ret_from_fork+0x3a/0x50 <3>[ 352.766944] INFO: Slab 0x0000000052417425 objects=26 used=26 fp=0x00000000dc034aa7 flags=0x8000000000010200 <3>[ 352.767015] INFO: Object 0x00000000f8b793a7 @offset=10616 fp=0x00000000e060f198 <3>[ 352.767082] Redzone 00000000: bb bb bb bb bb bb bb bb ........ <3>[ 352.767141] Object 00000000: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767205] Object 00000010: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767268] Object 00000020: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767332] Object 00000030: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767396] Object 00000040: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767459] Object 00000050: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767523] Object 00000060: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767586] Object 00000070: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767650] Object 00000080: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767713] Object 00000090: 6b 6b 6b 6b 6b 6b 6b 6b 7b 6b 6b 6b 6b 6b 6b 6b kkkkkkkk{kkkkkkk <3>[ 352.767776] Object 000000a0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767840] Object 000000b0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767903] Object 000000c0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.767967] Object 000000d0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.768030] Object 000000e0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.768094] Object 000000f0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.768157] Object 00000100: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b kkkkkkkkkkkkkkkk <3>[ 352.768220] Object 00000110: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b a5 kkkkkkkkkkkkkkk. <3>[ 352.768284] Redzone 00000000: bb bb bb bb bb bb bb bb ........ <3>[ 352.768343] Padding 00000000: 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZ <4>[ 352.768405] CPU: 3 PID: 957 Comm: igt_runner Tainted: G BU 5.2.0-gf870335815ab-drmtip_323+ #1 <4>[ 352.768407] Hardware name: Intel corporation NUC6CAYS/NUC6CAYB, BIOS AYAPLCEL.86A.0056.2018.0926.1100 09/26/2018 <4>[ 352.768410] Call Trace: <4>[ 352.768416] dump_stack+0x67/0x9b <4>[ 352.768421] check_bytes_and_report+0xbd/0x100 <4>[ 352.768427] check_object+0x22a/0x270 <4>[ 352.768432] ? __d_alloc+0x1d/0x200 <4>[ 352.768435] alloc_debug_processing+0x17a/0x190 <4>[ 352.768440] ___slab_alloc.constprop.35+0x355/0x380 <4>[ 352.768443] ? __d_alloc+0x1d/0x200 <4>[ 352.768450] ? lock_acquire+0xa6/0x1c0 <4>[ 352.768454] ? __d_alloc+0x1d/0x200 <4>[ 352.768458] ? __slab_alloc.isra.28.constprop.34+0x3d/0x70 <4>[ 352.768461] __slab_alloc.isra.28.constprop.34+0x3d/0x70 <4>[ 352.768465] ? __d_alloc+0x1d/0x200 <4>[ 352.768468] kmem_cache_alloc+0x21c/0x280 <4>[ 352.768473] __d_alloc+0x1d/0x200 <4>[ 352.768477] d_alloc_pseudo+0x5/0x20 <4>[ 352.768481] alloc_file_pseudo+0x5c/0x100 <4>[ 352.768486] ? current_time+0x42/0x80 <4>[ 352.768492] create_pipe_files+0x107/0x1b0 <4>[ 352.768498] __do_pipe_flags+0x2b/0xc0 <4>[ 352.768503] do_pipe2+0x28/0xb0 <4>[ 352.768508] __x64_sys_pipe+0xb/0x10 <4>[ 352.768511] do_syscall_64+0x55/0x1c0 <4>[ 352.768515] entry_SYSCALL_64_after_hwframe+0x49/0xbe <4>[ 352.768518] RIP: 0033:0x7fa6e0766a07 <4>[ 352.768522] Code: 73 01 c3 48 8b 0d 81 a4 2d 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 b8 16 00 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 51 a4 2d 00 f7 d8 64 89 01 48 <4>[ 352.768525] RSP: 002b:00007ffd8e5639b8 EFLAGS: 00000207 ORIG_RAX: 0000000000000016 <4>[ 352.768528] RAX: ffffffffffffffda RBX: 00007ffd8e563d10 RCX: 00007fa6e0766a07 <4>[ 352.768530] RDX: 0000000000000002 RSI: 0000000000000000 RDI: 00007ffd8e563a20 <4>[ 352.768531] RBP: 0000000000000030 R08: 0000000000000000 R09: 0000000000000000 <4>[ 352.768533] R10: 00000000000001b6 R11: 0000000000000207 R12: 00007ffd8e563cf0 <4>[ 352.768535] R13: 0000000000000005 R14: 0000000000000003 R15: 00007ffd8e563c70 <3>[ 352.768547] FIX dentry: Restoring 0x00000000d0ed77a5-0x00000000d0ed77a5=0x6b <3>[ 352.768614] FIX dentry: Marking all objects used <6>[ 352.817159] Console: switching to colour dummy device 80x25 <7>[ 352.817248] [IGT] kms_prop_blob: executing <7>[ 352.860026] [IGT] kms_prop_blob: starting subtest blob-prop-validate <7>[ 352.860316] [IGT] kms_prop_blob: exiting, ret=0 <5>[ 352.860760] Setting dangerous option reset - tainting kernel <6>[ 352.881827] Console: switching to colour frame buffer device 240x67
The CI Bug Log issue associated to this bug has been updated. ### New filters associated * APL: igt@runner@aborted - fail - BUG dentry (Tainted: *): Poison overwritten - https://intel-gfx-ci.01.org/tree/drm-tip/drmtip_323/fi-apl-guc/igt@runner@aborted.html
Not much to see here; either a stray bit flip or a use-after-free. Superficially not us, but anybody could be guilty if it was stray. Just have to wait and hope on kasan striking lucky.
A CI Bug Log filter associated to this bug has been updated: {- APL: igt@runner@aborted - fail - BUG dentry (Tainted: *): Poison overwritten -} {+ APL: igt@runner@aborted - fail - BUG dentry (Tainted: *): Poison overwritten +} New failures caught by the filter: * https://intel-gfx-ci.01.org/tree/drm-tip/drmtip_351/fi-apl-guc/igt@runner@aborted.html
-- GitLab Migration Automatic Message -- This bug has been migrated to freedesktop.org's GitLab instance and has been closed from further activity. You can subscribe and participate further through the new bug through this link to our GitLab instance: https://gitlab.freedesktop.org/drm/intel/issues/337.
Use of freedesktop.org services, including Bugzilla, is subject to our Code of Conduct. How we collect and use information is described in our Privacy Policy.