From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-3.8 required=3.0 tests=BAYES_00, HEADER_FROM_DIFFERENT_DOMAINS,MAILING_LIST_MULTI,SPF_HELO_NONE,SPF_PASS autolearn=no autolearn_force=no version=3.4.0 Received: from mail.kernel.org (mail.kernel.org [198.145.29.99]) by smtp.lore.kernel.org (Postfix) with ESMTP id 7C2D6C433DB for ; Sat, 16 Jan 2021 19:57:55 +0000 (UTC) Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPS id C89C622DBF for ; Sat, 16 Jan 2021 19:57:54 +0000 (UTC) DMARC-Filter: OpenDMARC Filter v1.3.2 mail.kernel.org C89C622DBF Authentication-Results: mail.kernel.org; dmarc=fail (p=none dis=none) header.from=eik.bme.hu Authentication-Results: mail.kernel.org; spf=pass smtp.mailfrom=qemu-devel-bounces+qemu-devel=archiver.kernel.org@nongnu.org Received: from localhost ([::1]:45266 helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1l0rhp-0007bY-Ka for qemu-devel@archiver.kernel.org; Sat, 16 Jan 2021 14:57:53 -0500 Received: from eggs.gnu.org ([2001:470:142:3::10]:35624) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1l0rh7-0007BU-AD for qemu-devel@nongnu.org; Sat, 16 Jan 2021 14:57:09 -0500 Received: from zero.eik.bme.hu ([2001:738:2001:2001::2001]:27803) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1l0rh4-0005iR-MC for qemu-devel@nongnu.org; Sat, 16 Jan 2021 14:57:08 -0500 Received: from zero.eik.bme.hu (blah.eik.bme.hu [152.66.115.182]) by localhost (Postfix) with SMTP id 0B70B7456E3; Sat, 16 Jan 2021 20:57:03 +0100 (CET) Received: by zero.eik.bme.hu (Postfix, from userid 432) id C52A77456B8; Sat, 16 Jan 2021 20:57:02 +0100 (CET) Received: from localhost (localhost [127.0.0.1]) by zero.eik.bme.hu (Postfix) with ESMTP id C3AD27456B7; Sat, 16 Jan 2021 20:57:02 +0100 (CET) Date: Sat, 16 Jan 2021 20:57:02 +0100 (CET) From: BALATON Zoltan To: Harry Sintonen <1912065@bugs.launchpad.net> Subject: Re: [Bug 1912065] [NEW] Segfaults in tcg/optimize.c:212 after commit 7c79721606be11b5bc556449e5bcbc331ef6867d In-Reply-To: <161081817733.30007.5357056175605529567.malonedeb@chaenomeles.canonical.com> Message-ID: <18e275f4-a0fe-3318-f3a3-af8167eb2542@eik.bme.hu> References: <161081817733.30007.5357056175605529567.malonedeb@chaenomeles.canonical.com> MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII; format=flowed Received-SPF: pass client-ip=2001:738:2001:2001::2001; envelope-from=balaton@eik.bme.hu; helo=zero.eik.bme.hu X-Spam_score_int: -18 X-Spam_score: -1.9 X-Spam_bar: - X-Spam_report: (-1.9 / 5.0 requ) BAYES_00=-1.9, SPF_HELO_NONE=0.001, SPF_PASS=-0.001 autolearn=ham autolearn_force=no X-Spam_action: no action X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: qemu-devel@nongnu.org Errors-To: qemu-devel-bounces+qemu-devel=archiver.kernel.org@nongnu.org Sender: "Qemu-devel" Thanks for reporting it. Just found it as well and reported on the mailing list. It's currently being investigated. List thread is here: https://lists.nongnu.org/archive/html/qemu-devel/2021-01/msg03936.html From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-3.8 required=3.0 tests=BAYES_00, HEADER_FROM_DIFFERENT_DOMAINS,MAILING_LIST_MULTI,SPF_HELO_NONE,SPF_PASS autolearn=no autolearn_force=no version=3.4.0 Received: from mail.kernel.org (mail.kernel.org [198.145.29.99]) by smtp.lore.kernel.org (Postfix) with ESMTP id 52DA7C433E0 for ; Sat, 16 Jan 2021 20:06:46 +0000 (UTC) Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPS id 9013F207B6 for ; Sat, 16 Jan 2021 20:06:45 +0000 (UTC) DMARC-Filter: OpenDMARC Filter v1.3.2 mail.kernel.org 9013F207B6 Authentication-Results: mail.kernel.org; dmarc=none (p=none dis=none) header.from=bugs.launchpad.net Authentication-Results: mail.kernel.org; spf=pass smtp.mailfrom=qemu-devel-bounces+qemu-devel=archiver.kernel.org@nongnu.org Received: from localhost ([::1]:51216 helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1l0rqN-0002WT-KU for qemu-devel@archiver.kernel.org; Sat, 16 Jan 2021 15:06:43 -0500 Received: from eggs.gnu.org ([2001:470:142:3::10]:36704) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1l0rpS-0001sw-CV for qemu-devel@nongnu.org; Sat, 16 Jan 2021 15:05:46 -0500 Received: from indium.canonical.com ([91.189.90.7]:35696) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1l0rpQ-00014m-Cg for qemu-devel@nongnu.org; Sat, 16 Jan 2021 15:05:46 -0500 Received: from loganberry.canonical.com ([91.189.90.37]) by indium.canonical.com with esmtp (Exim 4.86_2 #2 (Debian)) id 1l0rpO-00015r-9p for ; Sat, 16 Jan 2021 20:05:42 +0000 Received: from loganberry.canonical.com (localhost [127.0.0.1]) by loganberry.canonical.com (Postfix) with ESMTP id 44BE22E8137 for ; Sat, 16 Jan 2021 20:05:42 +0000 (UTC) MIME-Version: 1.0 Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: quoted-printable Date: Sat, 16 Jan 2021 19:57:02 -0000 From: BALATON Zoltan <1912065@bugs.launchpad.net> To: qemu-devel@nongnu.org X-Launchpad-Notification-Type: bug X-Launchpad-Bug: product=qemu; status=New; importance=Undecided; assignee=None; X-Launchpad-Bug-Information-Type: Public X-Launchpad-Bug-Private: no X-Launchpad-Bug-Security-Vulnerability: no X-Launchpad-Bug-Commenters: balaton-4 harrysintonen X-Launchpad-Bug-Reporter: Harry Sintonen (harrysintonen) X-Launchpad-Bug-Modifier: BALATON Zoltan (balaton-4) References: <161081817733.30007.5357056175605529567.malonedeb@chaenomeles.canonical.com> Message-ID: <18e275f4-a0fe-3318-f3a3-af8167eb2542@eik.bme.hu> Subject: Re: [Bug 1912065] [NEW] Segfaults in tcg/optimize.c:212 after commit 7c79721606be11b5bc556449e5bcbc331ef6867d X-Launchpad-Message-Rationale: Subscriber (QEMU) @qemu-devel-ml X-Launchpad-Message-For: qemu-devel-ml Precedence: bulk X-Generated-By: Launchpad (canonical.com); Revision="511b4a3b6512aa3d421c5f7d74f3527e78bff26e"; Instance="production" X-Launchpad-Hash: fe0184db01523f248cdd7ea6158b73238c190147 Received-SPF: none client-ip=91.189.90.7; envelope-from=bounces@canonical.com; helo=indium.canonical.com X-Spam_score_int: -65 X-Spam_score: -6.6 X-Spam_bar: ------ X-Spam_report: (-6.6 / 5.0 requ) BAYES_00=-1.9, HEADER_FROM_DIFFERENT_DOMAINS=0.249, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001 autolearn=ham autolearn_force=no X-Spam_action: no action X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.23 List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: Bug 1912065 <1912065@bugs.launchpad.net> Errors-To: qemu-devel-bounces+qemu-devel=archiver.kernel.org@nongnu.org Sender: "Qemu-devel" Message-ID: <20210116195702.pk1N2hYzu2zHhTYsiOjpSvrIPuYomyLwGz9gOSGp65o@z> Thanks for reporting it. Just found it as well and reported on the mailing = list. It's currently being investigated. List thread is here: https://lists.nongnu.org/archive/html/qemu-devel/2021-01/msg03936.html -- = You received this bug notification because you are a member of qemu- devel-ml, which is subscribed to QEMU. https://bugs.launchpad.net/bugs/1912065 Title: Segfaults in tcg/optimize.c:212 after commit 7c79721606be11b5bc556449e5bcbc331ef6867d Status in QEMU: New Bug description: QEMU segfaults to NULL dereference in tcg/optimize.c:212 semi-randomly after commit 7c79721606be11b5bc556449e5bcbc331ef6867d Exception Type: EXC_BAD_ACCESS (SIGSEGV) Exception Codes: KERN_INVALID_ADDRESS at 0x0000000000000020 Exception Note: EXC_CORPSE_NOTIFY ... Thread 4 Crashed: 0 qemu-system-ppc 0x0000000109cd26d2 tcg_opt_gen_mov + 1= 78 (optimize.c:212) 1 qemu-system-ppc 0x0000000109ccf838 tcg_optimize + 5656 2 qemu-system-ppc 0x0000000109c27600 tcg_gen_code + 64 (= tcg.c:4490) 3 qemu-system-ppc 0x0000000109c17b6d tb_gen_code + 493 (= translate-all.c:1952) 4 qemu-system-ppc 0x0000000109c16085 tb_find + 41 (cpu-e= xec.c:454) [inlined] 5 qemu-system-ppc 0x0000000109c16085 cpu_exec + 2117 (cp= u-exec.c:810) 6 qemu-system-ppc 0x0000000109c09ac3 tcg_cpus_exec + 35 = (tcg-cpus.c:57) 7 qemu-system-ppc 0x0000000109c75edd rr_cpu_thread_fn + = 445 (tcg-cpus-rr.c:217) 8 qemu-system-ppc 0x0000000109e41fae qemu_thread_start += 126 (qemu-thread-posix.c:521) 9 libsystem_pthread.dylib 0x00007fff2038e950 _pthread_start + 224 10 libsystem_pthread.dylib 0x00007fff2038a47b thread_start + 15 Here the crash is in tcg/optimize.c line 212: mask =3D si->mask; "si" is NULL. The NULL value arises from tcg/optimize.c line 198: si =3D ts_info(src_ts); I did not attempt to determine the root cause of this issue, however. It clearly is related to the "tcg/optimize" changes in this commit. The previous commit c0dd6654f207810b16a75b673258f5ce2ceffbf0 doesn't crash. To manage notifications about this bug go to: https://bugs.launchpad.net/qemu/+bug/1912065/+subscriptions