From: Avi Kivity <avi@redhat.com>
To: habanero@linux.vnet.ibm.com
Cc: kvm@vger.kernel.org
Subject: Re: kernel bug in kvm_intel
Date: Thu, 15 Oct 2009 02:10:53 +0900 [thread overview]
Message-ID: <4AD6061D.5070306@redhat.com> (raw)
In-Reply-To: <1255442640.4883.56.camel@twinturbo.austin.ibm.com>
On 10/13/2009 11:04 PM, Andrew Theurer wrote:
>
>> Look at the address where vmx_vcpu_run starts, add 0x26d, and show the
>> surrounding code.
>>
>> Thinking about it, it probably _is_ what you showed, due to module page
>> alignment. But please verify this; I can't reconcile the fault address
>> (ffffffff9fe9a2b) with %rsp at the time of the fault.
>>
> Here is the start of the function:
>
>
>> 0000000000003884<vmx_vcpu_run>:
>> 3884: 55 push %rbp
>> 3885: 48 89 e5 mov %rsp,%rbp
>>
> and 0x26d later is 0x3af1:
>
>
>> 3ad2: 4c 8b b1 88 01 00 00 mov 0x188(%rcx),%r14
>> 3ad9: 4c 8b b9 90 01 00 00 mov 0x190(%rcx),%r15
>> 3ae0: 48 8b 89 20 01 00 00 mov 0x120(%rcx),%rcx
>> 3ae7: 75 05 jne 3aee<vmx_vcpu_run+0x26a>
>> 3ae9: 0f 01 c2 vmlaunch
>> 3aec: eb 03 jmp 3af1<vmx_vcpu_run+0x26d>
>> 3aee: 0f 01 c3 vmresume
>> 3af1: 48 87 0c 24 xchg %rcx,(%rsp)
>> 3af5: 48 89 81 18 01 00 00 mov %rax,0x118(%rcx)
>> 3afc: 48 89 99 30 01 00 00 mov %rbx,0x130(%rcx)
>> 3b03: ff 34 24 pushq (%rsp)
>> 3b06: 8f 81 20 01 00 00 popq 0x120(%rcx)
>>
>
Ok. So it faults on the xchg instruction, rsp is ffff8806369ffc80 but
the fault address is ffffffff9fe9a2b4. So it looks like the IDT is
corrupted.
Can you check what's around ffffffff9fe9a2b4 in System.map?
--
I have a truly marvellous patch that fixes the bug which this
signature is too narrow to contain.
next prev parent reply other threads:[~2009-10-14 17:11 UTC|newest]
Thread overview: 24+ messages / expand[flat|nested] mbox.gz Atom feed top
2009-10-09 20:04 kernel bug in kvm_intel Andrew Theurer
2009-10-11 5:19 ` Avi Kivity
2009-10-12 18:42 ` Andrew Theurer
2009-10-13 6:50 ` Avi Kivity
2009-10-13 14:04 ` Andrew Theurer
2009-10-14 17:10 ` Avi Kivity [this message]
2009-10-15 20:18 ` Andrew Theurer
2009-10-30 18:07 ` Andrew Theurer
2009-10-31 15:47 ` Avi Kivity
2009-10-31 16:25 ` Andrew Theurer
2009-10-31 16:32 ` Avi Kivity
2009-10-31 16:38 ` Avi Kivity
2009-11-01 10:00 ` Tejun Heo
2009-11-01 10:20 ` Avi Kivity
2009-11-01 10:45 ` Tejun Heo
2009-11-01 11:31 ` Avi Kivity
2009-11-18 9:26 ` Tejun Heo
2009-11-26 1:35 ` Andrew Theurer
2009-11-26 1:41 ` Tejun Heo
2009-11-26 10:31 ` Avi Kivity
2009-11-26 13:47 ` Andrew Theurer
2009-11-29 14:46 ` Avi Kivity
2009-11-30 16:27 ` Andrew Theurer
2009-10-13 14:31 ` Marcelo Tosatti
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=4AD6061D.5070306@redhat.com \
--to=avi@redhat.com \
--cc=habanero@linux.vnet.ibm.com \
--cc=kvm@vger.kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).