From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by smtp.lore.kernel.org (Postfix) with ESMTP id 2F403C83F33 for ; Mon, 4 Sep 2023 16:00:08 +0000 (UTC) Received: by kanga.kvack.org (Postfix) id 444948D000B; Mon, 4 Sep 2023 12:00:07 -0400 (EDT) Received: by kanga.kvack.org (Postfix, from userid 40) id 3F40B8D0001; Mon, 4 Sep 2023 12:00:07 -0400 (EDT) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id 2E42D8D000B; Mon, 4 Sep 2023 12:00:07 -0400 (EDT) X-Delivered-To: linux-mm@kvack.org Received: from relay.hostedemail.com (smtprelay0016.hostedemail.com [216.40.44.16]) by kanga.kvack.org (Postfix) with ESMTP id 204718D0001 for ; Mon, 4 Sep 2023 12:00:07 -0400 (EDT) Received: from smtpin01.hostedemail.com (a10.router.float.18 [10.200.18.1]) by unirelay07.hostedemail.com (Postfix) with ESMTP id CDB1D160781 for ; Mon, 4 Sep 2023 16:00:06 +0000 (UTC) X-FDA: 81199376412.01.EDFBFDA Received: from mail-pl1-f206.google.com (mail-pl1-f206.google.com [209.85.214.206]) by imf20.hostedemail.com (Postfix) with ESMTP id 2D55B1C001B for ; Mon, 4 Sep 2023 16:00:03 +0000 (UTC) Authentication-Results: imf20.hostedemail.com; dkim=none; dmarc=fail reason="SPF not aligned (relaxed), No valid DKIM" header.from=appspotmail.com (policy=none); spf=pass (imf20.hostedemail.com: domain of 3A__1ZAkbAAg067sittmzixxql.owwotm20mzkwv1mv1.kwu@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com designates 209.85.214.206 as permitted sender) smtp.mailfrom=3A__1ZAkbAAg067sittmzixxql.owwotm20mzkwv1mv1.kwu@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=hostedemail.com; s=arc-20220608; t=1693843204; h=from:from:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:mime-version:mime-version: content-type:content-type:content-transfer-encoding:in-reply-to: references; bh=+O3G+dlqCRtnovR02+v2yf1Tamh83CEJZbdexepJT5w=; b=MlroRjTo5OVrJ3hKEv424GbWjzcvUGhk6fmm7cV5oNgKlPB03EBEOW1lfVZTeNjJmad1R1 QYlCQedUdobI2Q++izTGCPrQr19j9vGtHA5QWcdtflbtL50MmlDj8gwSsfnWh75V6u09F8 xaM0dySrE1DcarN0eUp35KScUjcFZhY= ARC-Authentication-Results: i=1; imf20.hostedemail.com; dkim=none; dmarc=fail reason="SPF not aligned (relaxed), No valid DKIM" header.from=appspotmail.com (policy=none); spf=pass (imf20.hostedemail.com: domain of 3A__1ZAkbAAg067sittmzixxql.owwotm20mzkwv1mv1.kwu@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com designates 209.85.214.206 as permitted sender) smtp.mailfrom=3A__1ZAkbAAg067sittmzixxql.owwotm20mzkwv1mv1.kwu@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com ARC-Seal: i=1; s=arc-20220608; d=hostedemail.com; t=1693843204; a=rsa-sha256; cv=none; b=h+Efb+il+fZvPeDyGWf+A0LK/VGrRImk+iFGUxQpRHs1X+2vs2gGcBhRV0prXRSXnffGbw DhkctG+TDyMUmxvjmTVUNPfMr+Lb3fXqxi3crHY0TCZCILwWBCPTIQ/GQxharg4hx5Tk7H Oa2bs82jRW+ZU4QSe54r9NmOmj8Dcj4= Received: by mail-pl1-f206.google.com with SMTP id d9443c01a7336-1c0a90de7a2so21990205ad.2 for ; Mon, 04 Sep 2023 09:00:03 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1693843203; x=1694448003; h=to:from:subject:message-id:date:mime-version:x-gm-message-state :from:to:cc:subject:date:message-id:reply-to; bh=+O3G+dlqCRtnovR02+v2yf1Tamh83CEJZbdexepJT5w=; b=etp7ytjzdtD0ySx0lUNEL5lKlLOFCUf/AXNbMqVUrvxTBB1fuqxs+hRmgeFJz9p3Aj bRYzOM5lx1qbQ/MCIC/MGxhctZtgdiyaNRPCF36pIu7Aau/QJUQGFZTAAUGLtvQtF3e0 42hoYvaam8N/zfez0uLm8fdTwvEigRuGJgdEx6z5pbQU7xedlS8rccixJrI0EW/eMs8g awoI0uc+DXN+zTnGohSqnDH0MJsr7txhfck7dfYNI5xgvk6spUpkOsVqEfN71RBBK0bP 87AoQqX1hjdSVXwlkATj6P1pkpAiSh1cMHezkgEPKumZvMMXTJVOtEk+1fbUdGo03KJB 4n+g== X-Gm-Message-State: AOJu0YzngOUIXCNgFlS3f2LW/xFH9c8L9Zo8Twncfba/KcVHbl9hJeeR iSTzD9srhQD9NI7HR/SKtlYYlsPvox09w7mFj+uODYU1WxIe X-Google-Smtp-Source: AGHT+IE4hY1cOldP6E1tE8K6v9oucZ0pUa4JKR7Q8el9qijGMkJhK8JTHvG0bVYm6TQgfeBmuBxCgssMGLGtlQSDM4LK1AE6mRQC MIME-Version: 1.0 X-Received: by 2002:a17:903:5c5:b0:1ba:a36d:f82c with SMTP id kf5-20020a17090305c500b001baa36df82cmr2950872plb.7.1693843203111; Mon, 04 Sep 2023 09:00:03 -0700 (PDT) Date: Mon, 04 Sep 2023 09:00:02 -0700 X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <0000000000006d415806048a9aee@google.com> Subject: [syzbot] [mm?] BUG: unable to handle kernel paging request in list_lru_add From: syzbot To: akpm@linux-foundation.org, linux-kernel@vger.kernel.org, linux-mm@kvack.org, syzkaller-bugs@googlegroups.com Content-Type: text/plain; charset="UTF-8" X-Rspamd-Server: rspam09 X-Rspamd-Queue-Id: 2D55B1C001B X-Stat-Signature: 3gb15bo9iym4cr8yg7c3k8imeowweqpc X-Rspam-User: X-HE-Tag: 1693843203-511346 X-HE-Meta: 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 H2GBjdoS gCIjIei5cUEgmSzHeCnx8UtFLqv+CPbaBq7KHvyBN/sRMM2Y5dNKrwj4nKi5UJnN6NDeAmE8nki4+rZj2UufbNayTwB5888qJg8YW4sK8kCCaTFFcrZfMuHljYz1BkgxckctJKwpDQSNLkpGrqzR4DyuEm9ub2X6eL1dMj7Zwvso5TBFl29kI4K6ZoBkj3kf3HJDrKK5A0CDm3Fxw4vT9r19rRnRGyOuOSE1StcJRbhusqSFVFyo0Tpel2BQLaE9uroGdm4R7GyhCk39ylvhyUkuDMNI30XUJCfxpQO7a1zbxQtsZAtf1v/71vLDfKBY8/l79tLGYNvfKeu4ICFPFabi0GvY8RF1zM+lwZPSP8QzaSiNvdbY7E23ljrkVjATP9twzilO2cvPBMzyyUDN6gpgeXwbl/0gAeF/uMurkP7g682WhRXgL8Q6dc5NHUYoU/gVEVGrvB7Y2h7hLNR2XsB0+BZm1PoLtVGCoZyaHBiLhT4IlL93aSc9cMi2G3Zxr5apw7PRpr+vHHYxiG9sgRhW3iEDcSUbfO7G1CxTpxcuY0XNWslqe/4QeG6pC92oLDyBmWbMmsVvUwT6DQyxojUjdDeaB5dMP09ujj7FDLZCrNg50uqh2Xj1mMx+CY95XlgiIr1AHmxuuSEt4chW52Ylz9H/pZKrvGTar+fCqa84J6pZaNeNbBVA5FVNVJWJ2sEjyyt04EQ2EYv2xYM1cmwiaXaDejJlUkYnKcASyE43X8S830Cd28K8B/o0hMFcgFQ+Z8+9xl/p+lmwkRF7UwGEo25JJEqjg6F9tAbbJZBmrt2/hC1JqCImR/a8/A1L3LsQeTst/bR7My54ncEmEVBZ7vGuehHU2j1k0K5Ms+RgwDpI1Rc1Vrl8tWxThe9SzFVU3wrxVri6etOEsiwdsUMR+epLzl7VaM+uYzfmTy5bxMFg6soScbkZclMA5h7uSvGUMxq0IVkrz/qWAPS3xfqgKwOg9 nS5VjndO xzlSiu+d9k1BsXnqP8V0qiIOIdQmJ9/he19KcVtzTUKPeLKbto9Vi9Iv4zpJW2m2GNbOvHyxW71vusoL8gRFBzBi9nd5jJkkorywP6fXr3sXAHMfo5xBqnwi5qkQIb5qPXqXFsrWuOkzOMhzN9pDV5KpHlcpLa2Ai/Ep+5Tt9NY3hxN4kJ/4uRYWye+PNtwOHHOG5nt7SjP22HybTfx+HBjJ8JsNiDFo6+4a9shsIw5oZ08ZLSQlI3urHFiOcpS/y1sIjlEcjab2rpgVMZ8F3SITNIdKq4hHBBWTCn6IgiPQL9Jht+ydnbJwAbasWI6gyMkhwwsNVTjngGtflh5dAzlVRzRvdMpjSF+H/+D/j5c= X-Bogosity: Ham, tests=bogofilter, spamicity=0.000000, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: Hello, syzbot found the following issue on: HEAD commit: 708283abf896 Merge tag 'dmaengine-6.6-rc1' of git://git.ke.. git tree: upstream console output: https://syzkaller.appspot.com/x/log.txt?x=17424cd0680000 kernel config: https://syzkaller.appspot.com/x/.config?x=15f37e053f1602f8 dashboard link: https://syzkaller.appspot.com/bug?extid=2403e3909382fbdeaf6c compiler: aarch64-linux-gnu-gcc (Debian 12.2.0-14) 12.2.0, GNU ld (GNU Binutils for Debian) 2.40 userspace arch: arm64 Unfortunately, I don't have any reproducer for this issue yet. Downloadable assets: disk image (non-bootable): https://storage.googleapis.com/syzbot-assets/384ffdcca292/non_bootable_disk-708283ab.raw.xz vmlinux: https://storage.googleapis.com/syzbot-assets/ae645c88b07f/vmlinux-708283ab.xz kernel image: https://storage.googleapis.com/syzbot-assets/32d5997bb055/Image-708283ab.gz.xz IMPORTANT: if you fix the issue, please add the following tag to the commit: Reported-by: syzbot+2403e3909382fbdeaf6c@syzkaller.appspotmail.com Unable to handle kernel paging request at virtual address dfff800000000001 KASAN: null-ptr-deref in range [0x0000000000000008-0x000000000000000f] Mem abort info: ESR = 0x0000000096000005 EC = 0x25: DABT (current EL), IL = 32 bits SET = 0, FnV = 0 EA = 0, S1PTW = 0 FSC = 0x05: level 1 translation fault Data abort info: ISV = 0, ISS = 0x00000005, ISS2 = 0x00000000 CM = 0, WnR = 0, TnD = 0, TagAccess = 0 GCS = 0, Overlay = 0, DirtyBit = 0, Xs = 0 [dfff800000000001] address between user and kernel address ranges Internal error: Oops: 0000000096000005 [#1] PREEMPT SMP Modules linked in: CPU: 1 PID: 2922 Comm: udevd Not tainted 6.5.0-syzkaller-11329-g708283abf896 #0 Hardware name: linux,dummy-virt (DT) pstate: 60000005 (nZCv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--) pc : list_add_tail include/linux/list.h:183 [inline] pc : list_lru_add+0x174/0x464 mm/list_lru.c:129 lr : list_lru_from_memcg_idx mm/list_lru.c:56 [inline] lr : list_lru_from_memcg_idx mm/list_lru.c:53 [inline] lr : list_lru_from_kmem mm/list_lru.c:78 [inline] lr : list_lru_add+0x354/0x464 mm/list_lru.c:128 sp : ffff80008dd57520 x29: ffff80008dd57520 x28: 0000000000000008 x27: ffff0000378c4000 x26: 0000000000000001 x25: 0000000000000000 x24: 0000000000000000 x23: 1fffe0000293550a x22: 0000000000000000 x21: ffff000012d1c7a0 x20: ffff0000149aa850 x19: ffff0000146f7a00 x18: 0000000000000000 x17: 0000000000000000 x16: 0000000000000000 x15: ffff800080915234 x14: ffff800080914c58 x13: ffff800080914c58 x12: 000000000000f1f1 x11: dfff800000000000 x10: 00000000f3000000 x9 : 00000000f3f3f3f3 x8 : ffff700011baae76 x7 : 00000000f1f1f1f1 x6 : dfff800000000000 x5 : ffff700011baae7a x4 : 00000000f204f1f1 x3 : 1fffe0000d51ff28 x2 : 0000000000000000 x1 : 0000000000000000 x0 : dfff800000000000 Call trace: list_add_tail include/linux/list.h:183 [inline] list_lru_add+0x174/0x464 mm/list_lru.c:129 d_lru_add+0x180/0x31c fs/dcache.c:431 retain_dentry fs/dcache.c:685 [inline] dput+0x4ac/0x96c fs/dcache.c:908 handle_mounts fs/namei.c:1554 [inline] step_into+0xc18/0x16c4 fs/namei.c:1839 walk_component+0xa8/0x484 fs/namei.c:2007 link_path_walk.part.0.constprop.0+0x4cc/0x970 fs/namei.c:2328 link_path_walk fs/namei.c:2253 [inline] path_openat+0x1bc/0x2058 fs/namei.c:3792 do_filp_open+0x16c/0x330 fs/namei.c:3823 do_sys_openat2+0x12c/0x160 fs/open.c:1422 do_sys_open fs/open.c:1437 [inline] __do_sys_openat fs/open.c:1453 [inline] __se_sys_openat fs/open.c:1448 [inline] __arm64_sys_openat+0x12c/0x1b8 fs/open.c:1448 __invoke_syscall arch/arm64/kernel/syscall.c:37 [inline] invoke_syscall+0x6c/0x258 arch/arm64/kernel/syscall.c:51 el0_svc_common.constprop.0+0xac/0x230 arch/arm64/kernel/syscall.c:136 do_el0_svc+0x40/0x58 arch/arm64/kernel/syscall.c:155 el0_svc+0x58/0x140 arch/arm64/kernel/entry-common.c:678 el0t_64_sync_handler+0x100/0x12c arch/arm64/kernel/entry-common.c:696 el0t_64_sync+0x190/0x194 arch/arm64/kernel/entry.S:591 Code: 9100231c d2d00000 f2fbffe0 d343ff9a (38e06b40) ---[ end trace 0000000000000000 ]--- ---------------- Code disassembly (best guess): 0: 9100231c add x28, x24, #0x8 4: d2d00000 mov x0, #0x800000000000 // #140737488355328 8: f2fbffe0 movk x0, #0xdfff, lsl #48 c: d343ff9a lsr x26, x28, #3 * 10: 38e06b40 ldrsb w0, [x26, x0] <-- trapping instruction --- This report is generated by a bot. It may contain errors. See https://goo.gl/tpsmEJ for more information about syzbot. syzbot engineers can be reached at syzkaller@googlegroups.com. syzbot will keep track of this issue. See: https://goo.gl/tpsmEJ#status for how to communicate with syzbot. If the bug is already fixed, let syzbot know by replying with: #syz fix: exact-commit-title If you want to overwrite bug's subsystems, reply with: #syz set subsystems: new-subsystem (See the list of subsystem names on the web dashboard) If the bug is a duplicate of another bug, reply with: #syz dup: exact-subject-of-another-report If you want to undo deduplication, reply with: #syz undup