From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-8.7 required=3.0 tests=BAYES_00,FROM_LOCAL_HEX, HEADER_FROM_DIFFERENT_DOMAINS,MAILING_LIST_MULTI,MENTIONS_GIT_HOSTING, SPF_HELO_NONE,SPF_PASS,URIBL_BLOCKED autolearn=unavailable autolearn_force=no version=3.4.0 Received: from mail.kernel.org (mail.kernel.org [198.145.29.99]) by smtp.lore.kernel.org (Postfix) with ESMTP id C0321C4320A for ; Tue, 24 Aug 2021 18:17:23 +0000 (UTC) Received: from vger.kernel.org (vger.kernel.org [23.128.96.18]) by mail.kernel.org (Postfix) with ESMTP id 95B5961220 for ; Tue, 24 Aug 2021 18:17:23 +0000 (UTC) Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S231449AbhHXSSG (ORCPT ); Tue, 24 Aug 2021 14:18:06 -0400 Received: from mail-il1-f199.google.com ([209.85.166.199]:49002 "EHLO mail-il1-f199.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S229548AbhHXSSF (ORCPT ); Tue, 24 Aug 2021 14:18:05 -0400 Received: by mail-il1-f199.google.com with SMTP id n4-20020a056e021ba400b0022481cdc803so12336028ili.15 for ; Tue, 24 Aug 2021 11:17:21 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:date:message-id:subject:from:to; bh=S4geNKSmZFiq/FduuoknU72LaVVop2xqL4V/QM58IPc=; b=rxuIAGWSLCQQzoa6jaRbksPjNLexLpA6lRSLrwmmJDv75Mu7eedcPoC+98HiYgT72n oG0PMDG/YaN6X0PmfEdnoNOHcu8WImR+VdDAZt6OcMLeqgSdnermVLWOtxf/ncvFpc64 jXfCQmUGXLlSVcfqZCyOfA3Ws3TJ3Lqy8yycnO9z+s7AmPY+s4pxRVj7uHNY7aQYbsYV qlzYeXoURK8izWFWJDBQ+UKfENXD3chUvYdebFOtboBHFjJUc47GcJ/ougz+sNJwHge2 47stau8zz9wHrk16kKr4lGj2f/QDOCgzHneTXIk9Ll3zRViraYSc4SUsajX5OIcZW27p ZCsw== X-Gm-Message-State: AOAM530e14BflfKIjUVBOLRkKxEm2hmPiS9uUQAkE0pV7WQEgHlzPBjK yu4nLuWGb+VxozDM74AeLe1Ezg9IpNep53tFDW3+RodHoukq X-Google-Smtp-Source: ABdhPJzHyxWaesjUEhc+sAubFREazqiz5TI54ToLJ+L63uEeRELM9jjFV1Jj3BFIfcuY93YVrU1N0kIwyxDp/Q7ZfxOrp6mIgGBC MIME-Version: 1.0 X-Received: by 2002:a92:d5d1:: with SMTP id d17mr27398028ilq.106.1629829040915; Tue, 24 Aug 2021 11:17:20 -0700 (PDT) Date: Tue, 24 Aug 2021 11:17:20 -0700 X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <00000000000007510305ca5225b0@google.com> Subject: [syzbot] kernel BUG in collapse_file From: syzbot To: akpm@linux-foundation.org, linux-kernel@vger.kernel.org, linux-mm@kvack.org, syzkaller-bugs@googlegroups.com Content-Type: text/plain; charset="UTF-8" Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Hello, syzbot found the following issue on: HEAD commit: d6d09a694205 Merge tag 'for-5.14-rc6-tag' of git://git.ker.. git tree: upstream console output: https://syzkaller.appspot.com/x/log.txt?x=14924605300000 kernel config: https://syzkaller.appspot.com/x/.config?x=f61012d0b1cd846f dashboard link: https://syzkaller.appspot.com/bug?extid=f17e5ab118d29367bda9 compiler: Debian clang version 11.0.1-2, GNU ld (GNU Binutils for Debian) 2.35.1 Unfortunately, I don't have any reproducer for this issue yet. IMPORTANT: if you fix the issue, please add the following tag to the commit: Reported-by: syzbot+f17e5ab118d29367bda9@syzkaller.appspotmail.com unmap_region+0x2ab/0x300 mm/mmap.c:2680 __do_munmap+0x18eb/0x2050 mm/mmap.c:2911 __do_sys_mremap+0x5d9/0x1390 mm/mremap.c:969 do_syscall_x64 arch/x86/entry/common.c:50 [inline] do_syscall_64+0x3d/0xb0 arch/x86/entry/common.c:80 entry_SYSCALL_64_after_hwframe+0x44/0xae ------------[ cut here ]------------ kernel BUG at mm/khugepaged.c:1830! invalid opcode: 0000 [#1] PREEMPT SMP KASAN CPU: 0 PID: 1651 Comm: khugepaged Not tainted 5.14.0-rc6-syzkaller #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 RIP: 0010:collapse_file+0x3537/0x36e0 mm/khugepaged.c:1830 Code: e8 1e 7a b2 ff 48 89 df 48 c7 c6 40 7b 3d 8a e8 ef 02 e8 ff 0f 0b e8 08 7a b2 ff 48 89 df 48 c7 c6 a0 7b 3d 8a e8 d9 02 e8 ff <0f> 0b e8 f2 79 b2 ff 4c 89 e7 48 c7 c6 a0 7e 3d 8a e8 c3 02 e8 ff RSP: 0018:ffffc900066df820 EFLAGS: 00010046 RAX: 8601299b4ae62f00 RBX: ffffea0000e4e240 RCX: ffff888018fed4c0 RDX: 0000000000000000 RSI: 000000000000ffff RDI: 000000000000ffff RBP: ffffc900066dfa90 R08: ffffffff81d08764 R09: ffffed1017383f2c R10: ffffed1017383f2c R11: 0000000000000000 R12: ffffc900066df9d8 R13: dffffc0000000000 R14: ffffc900066dfa20 R15: 0000000000000001 FS: 0000000000000000(0000) GS:ffff8880b9c00000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 0000000100000000 CR3: 000000000c48e000 CR4: 00000000001506f0 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 Call Trace: khugepaged_scan_file mm/khugepaged.c:2051 [inline] khugepaged_scan_mm_slot+0x27be/0x2ad0 mm/khugepaged.c:2146 khugepaged_do_scan+0x2b1/0x640 mm/khugepaged.c:2230 khugepaged+0x105/0x890 mm/khugepaged.c:2275 kthread+0x453/0x480 kernel/kthread.c:319 ret_from_fork+0x1f/0x30 arch/x86/entry/entry_64.S:295 Modules linked in: ---[ end trace 8de2a60ea4ac5483 ]--- RIP: 0010:collapse_file+0x3537/0x36e0 mm/khugepaged.c:1830 Code: e8 1e 7a b2 ff 48 89 df 48 c7 c6 40 7b 3d 8a e8 ef 02 e8 ff 0f 0b e8 08 7a b2 ff 48 89 df 48 c7 c6 a0 7b 3d 8a e8 d9 02 e8 ff <0f> 0b e8 f2 79 b2 ff 4c 89 e7 48 c7 c6 a0 7e 3d 8a e8 c3 02 e8 ff RSP: 0018:ffffc900066df820 EFLAGS: 00010046 RAX: 8601299b4ae62f00 RBX: ffffea0000e4e240 RCX: ffff888018fed4c0 RDX: 0000000000000000 RSI: 000000000000ffff RDI: 000000000000ffff RBP: ffffc900066dfa90 R08: ffffffff81d08764 R09: ffffed1017383f2c R10: ffffed1017383f2c R11: 0000000000000000 R12: ffffc900066df9d8 R13: dffffc0000000000 R14: ffffc900066dfa20 R15: 0000000000000001 FS: 0000000000000000(0000) GS:ffff8880b9c00000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 0000000100000000 CR3: 000000000c48e000 CR4: 00000000001506f0 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 ---------------- Code disassembly (best guess): 0: e8 1e 7a b2 ff callq 0xffb27a23 5: 48 89 df mov %rbx,%rdi 8: 48 c7 c6 40 7b 3d 8a mov $0xffffffff8a3d7b40,%rsi f: e8 ef 02 e8 ff callq 0xffe80303 14: 0f 0b ud2 16: e8 08 7a b2 ff callq 0xffb27a23 1b: 48 89 df mov %rbx,%rdi 1e: 48 c7 c6 a0 7b 3d 8a mov $0xffffffff8a3d7ba0,%rsi 25: e8 d9 02 e8 ff callq 0xffe80303 2a: 0f 0b ud2 <-- trapping instruction 2c: e8 f2 79 b2 ff callq 0xffb27a23 31: 4c 89 e7 mov %r12,%rdi 34: 48 c7 c6 a0 7e 3d 8a mov $0xffffffff8a3d7ea0,%rsi 3b: e8 c3 02 e8 ff callq 0xffe80303 --- This report is generated by a bot. It may contain errors. See https://goo.gl/tpsmEJ for more information about syzbot. syzbot engineers can be reached at syzkaller@googlegroups.com. syzbot will keep track of this issue. See: https://goo.gl/tpsmEJ#status for how to communicate with syzbot. From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-8.7 required=3.0 tests=BAYES_00,FROM_LOCAL_HEX, HEADER_FROM_DIFFERENT_DOMAINS,MAILING_LIST_MULTI,MENTIONS_GIT_HOSTING, SPF_HELO_NONE,SPF_PASS,URIBL_BLOCKED autolearn=ham autolearn_force=no version=3.4.0 Received: from mail.kernel.org (mail.kernel.org [198.145.29.99]) by smtp.lore.kernel.org (Postfix) with ESMTP id 8A10EC4338F for ; Tue, 24 Aug 2021 18:17:23 +0000 (UTC) Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by mail.kernel.org (Postfix) with ESMTP id 02654611AF for ; Tue, 24 Aug 2021 18:17:22 +0000 (UTC) DMARC-Filter: OpenDMARC Filter v1.4.1 mail.kernel.org 02654611AF Authentication-Results: mail.kernel.org; dmarc=fail (p=none dis=none) header.from=syzkaller.appspotmail.com Authentication-Results: mail.kernel.org; spf=pass smtp.mailfrom=kvack.org Received: by kanga.kvack.org (Postfix) id 8BD0D6B006C; Tue, 24 Aug 2021 14:17:22 -0400 (EDT) Received: by kanga.kvack.org (Postfix, from userid 40) id 86D1B6B0071; Tue, 24 Aug 2021 14:17:22 -0400 (EDT) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id 782768D0001; Tue, 24 Aug 2021 14:17:22 -0400 (EDT) X-Delivered-To: linux-mm@kvack.org Received: from forelay.hostedemail.com (smtprelay0189.hostedemail.com [216.40.44.189]) by kanga.kvack.org (Postfix) with ESMTP id 623976B006C for ; Tue, 24 Aug 2021 14:17:22 -0400 (EDT) Received: from smtpin30.hostedemail.com (10.5.19.251.rfc1918.com [10.5.19.251]) by forelay05.hostedemail.com (Postfix) with ESMTP id E8521181BDCA6 for ; Tue, 24 Aug 2021 18:17:21 +0000 (UTC) X-FDA: 78510781482.30.3BE5076 Received: from mail-io1-f70.google.com (mail-io1-f70.google.com [209.85.166.70]) by imf16.hostedemail.com (Postfix) with ESMTP id A8227F00009B for ; Tue, 24 Aug 2021 18:17:21 +0000 (UTC) Received: by mail-io1-f70.google.com with SMTP id k21-20020a5e93150000b02905b30d664397so12862716iom.0 for ; Tue, 24 Aug 2021 11:17:21 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:date:message-id:subject:from:to; bh=S4geNKSmZFiq/FduuoknU72LaVVop2xqL4V/QM58IPc=; b=AZsM2F7bMhEAm2/lF0ajhL3idwC9X7jCiIbVMFsQLu3JcZKJ44LgGTMFHmGiS2r6vM zokQi+pQMM/knsB32HjXe1bCBrIY3G4DMrv0JK/wvNaizXhsSa+0oWdq9b/9d9EMWrW7 NpQZ3GqZl0Y+iTwEaxsRLDu0luqqXRWYql7QWFoflU7Ky2TVscdsoPAyyrnPpnnZahC7 WYxuaYoL5qj9Gimy4FVqyzRFHSZITPt5Kk/qFkzjif7HDD+S5RJGlrF7dsAkfK027Ffq +g8KxvaPsYXFbEe8/nluyFxIwpzr8gHEQUW+gIDdfKyz9JV2RkHaOmepCBGB3cwU7ecp zcbQ== X-Gm-Message-State: AOAM533FfXHXD149gR2lwGdL19tgjx3lQns0bsJBPsgK4p69+N1qxb41 7nR7b3JoUnr4jAUblbWjQW+2kfuEcNn4ezeE1K1SfSGVX4y8 X-Google-Smtp-Source: ABdhPJzHyxWaesjUEhc+sAubFREazqiz5TI54ToLJ+L63uEeRELM9jjFV1Jj3BFIfcuY93YVrU1N0kIwyxDp/Q7ZfxOrp6mIgGBC MIME-Version: 1.0 X-Received: by 2002:a92:d5d1:: with SMTP id d17mr27398028ilq.106.1629829040915; Tue, 24 Aug 2021 11:17:20 -0700 (PDT) Date: Tue, 24 Aug 2021 11:17:20 -0700 X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <00000000000007510305ca5225b0@google.com> Subject: [syzbot] kernel BUG in collapse_file From: syzbot To: akpm@linux-foundation.org, linux-kernel@vger.kernel.org, linux-mm@kvack.org, syzkaller-bugs@googlegroups.com Content-Type: text/plain; charset="UTF-8" Authentication-Results: imf16.hostedemail.com; dkim=none; dmarc=fail reason="SPF not aligned (relaxed), No valid DKIM" header.from=appspotmail.com (policy=none); spf=pass (imf16.hostedemail.com: domain of 3sDclYQkbAMM178tjuun0jyyrm.pxxpun31n0lxw2nw2.lxv@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com designates 209.85.166.70 as permitted sender) smtp.mailfrom=3sDclYQkbAMM178tjuun0jyyrm.pxxpun31n0lxw2nw2.lxv@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com X-Rspamd-Server: rspam03 X-Rspamd-Queue-Id: A8227F00009B X-Stat-Signature: 3njz5w7tzmtwjfz7eeq17jdtoapbb9ok X-HE-Tag: 1629829041-590481 X-Bogosity: Ham, tests=bogofilter, spamicity=0.000000, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: Hello, syzbot found the following issue on: HEAD commit: d6d09a694205 Merge tag 'for-5.14-rc6-tag' of git://git.ker.. git tree: upstream console output: https://syzkaller.appspot.com/x/log.txt?x=14924605300000 kernel config: https://syzkaller.appspot.com/x/.config?x=f61012d0b1cd846f dashboard link: https://syzkaller.appspot.com/bug?extid=f17e5ab118d29367bda9 compiler: Debian clang version 11.0.1-2, GNU ld (GNU Binutils for Debian) 2.35.1 Unfortunately, I don't have any reproducer for this issue yet. IMPORTANT: if you fix the issue, please add the following tag to the commit: Reported-by: syzbot+f17e5ab118d29367bda9@syzkaller.appspotmail.com unmap_region+0x2ab/0x300 mm/mmap.c:2680 __do_munmap+0x18eb/0x2050 mm/mmap.c:2911 __do_sys_mremap+0x5d9/0x1390 mm/mremap.c:969 do_syscall_x64 arch/x86/entry/common.c:50 [inline] do_syscall_64+0x3d/0xb0 arch/x86/entry/common.c:80 entry_SYSCALL_64_after_hwframe+0x44/0xae ------------[ cut here ]------------ kernel BUG at mm/khugepaged.c:1830! invalid opcode: 0000 [#1] PREEMPT SMP KASAN CPU: 0 PID: 1651 Comm: khugepaged Not tainted 5.14.0-rc6-syzkaller #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 RIP: 0010:collapse_file+0x3537/0x36e0 mm/khugepaged.c:1830 Code: e8 1e 7a b2 ff 48 89 df 48 c7 c6 40 7b 3d 8a e8 ef 02 e8 ff 0f 0b e8 08 7a b2 ff 48 89 df 48 c7 c6 a0 7b 3d 8a e8 d9 02 e8 ff <0f> 0b e8 f2 79 b2 ff 4c 89 e7 48 c7 c6 a0 7e 3d 8a e8 c3 02 e8 ff RSP: 0018:ffffc900066df820 EFLAGS: 00010046 RAX: 8601299b4ae62f00 RBX: ffffea0000e4e240 RCX: ffff888018fed4c0 RDX: 0000000000000000 RSI: 000000000000ffff RDI: 000000000000ffff RBP: ffffc900066dfa90 R08: ffffffff81d08764 R09: ffffed1017383f2c R10: ffffed1017383f2c R11: 0000000000000000 R12: ffffc900066df9d8 R13: dffffc0000000000 R14: ffffc900066dfa20 R15: 0000000000000001 FS: 0000000000000000(0000) GS:ffff8880b9c00000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 0000000100000000 CR3: 000000000c48e000 CR4: 00000000001506f0 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 Call Trace: khugepaged_scan_file mm/khugepaged.c:2051 [inline] khugepaged_scan_mm_slot+0x27be/0x2ad0 mm/khugepaged.c:2146 khugepaged_do_scan+0x2b1/0x640 mm/khugepaged.c:2230 khugepaged+0x105/0x890 mm/khugepaged.c:2275 kthread+0x453/0x480 kernel/kthread.c:319 ret_from_fork+0x1f/0x30 arch/x86/entry/entry_64.S:295 Modules linked in: ---[ end trace 8de2a60ea4ac5483 ]--- RIP: 0010:collapse_file+0x3537/0x36e0 mm/khugepaged.c:1830 Code: e8 1e 7a b2 ff 48 89 df 48 c7 c6 40 7b 3d 8a e8 ef 02 e8 ff 0f 0b e8 08 7a b2 ff 48 89 df 48 c7 c6 a0 7b 3d 8a e8 d9 02 e8 ff <0f> 0b e8 f2 79 b2 ff 4c 89 e7 48 c7 c6 a0 7e 3d 8a e8 c3 02 e8 ff RSP: 0018:ffffc900066df820 EFLAGS: 00010046 RAX: 8601299b4ae62f00 RBX: ffffea0000e4e240 RCX: ffff888018fed4c0 RDX: 0000000000000000 RSI: 000000000000ffff RDI: 000000000000ffff RBP: ffffc900066dfa90 R08: ffffffff81d08764 R09: ffffed1017383f2c R10: ffffed1017383f2c R11: 0000000000000000 R12: ffffc900066df9d8 R13: dffffc0000000000 R14: ffffc900066dfa20 R15: 0000000000000001 FS: 0000000000000000(0000) GS:ffff8880b9c00000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 0000000100000000 CR3: 000000000c48e000 CR4: 00000000001506f0 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 ---------------- Code disassembly (best guess): 0: e8 1e 7a b2 ff callq 0xffb27a23 5: 48 89 df mov %rbx,%rdi 8: 48 c7 c6 40 7b 3d 8a mov $0xffffffff8a3d7b40,%rsi f: e8 ef 02 e8 ff callq 0xffe80303 14: 0f 0b ud2 16: e8 08 7a b2 ff callq 0xffb27a23 1b: 48 89 df mov %rbx,%rdi 1e: 48 c7 c6 a0 7b 3d 8a mov $0xffffffff8a3d7ba0,%rsi 25: e8 d9 02 e8 ff callq 0xffe80303 2a: 0f 0b ud2 <-- trapping instruction 2c: e8 f2 79 b2 ff callq 0xffb27a23 31: 4c 89 e7 mov %r12,%rdi 34: 48 c7 c6 a0 7e 3d 8a mov $0xffffffff8a3d7ea0,%rsi 3b: e8 c3 02 e8 ff callq 0xffe80303 --- This report is generated by a bot. It may contain errors. See https://goo.gl/tpsmEJ for more information about syzbot. syzbot engineers can be reached at syzkaller@googlegroups.com. syzbot will keep track of this issue. See: https://goo.gl/tpsmEJ#status for how to communicate with syzbot.