From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mail-oo1-f70.google.com (mail-oo1-f70.google.com [209.85.161.70]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 8E80F3563D6 for ; Mon, 2 Feb 2026 10:52:02 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=209.85.161.70 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1770029524; cv=none; b=QOmPemeUiKOi4FMVNeGDrWTQT6sUjawhV/YIbmZyI0HXwSH5gFdlzZfydDAjopTu2wM3JXE+IH6MklxQnOogdgLJxNmvfbGFrk8BBFSsdFhmlkJxEhBKsD4yukKc79pMIMZKPPPOmcgetrBfo92G/wHkbltFooottJy7Mn93xak= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1770029524; c=relaxed/simple; bh=VQxf0rUoiyK4OrnL+LeoxeLpEbsWw5dT3RDnO1g2u9s=; h=MIME-Version:Date:In-Reply-To:Message-ID:Subject:From:To: Content-Type; b=oSXNDxcnH5piFnrrDb77io5szXsFzCqVjfarrjed/6n22q98k1npXQyQdIV3JfWa8Xghxqxq9Zt9GcOy9nVsAXlDIjob7M1XKpaJlyYfc+BRuqWPAcH3gWavBDG14HNwwMeoh19y72589CNCm9vAbq0n0BOPeghUAt2V0SVps2U= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dmarc=fail (p=none dis=none) header.from=syzkaller.appspotmail.com; spf=pass smtp.mailfrom=M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com; arc=none smtp.client-ip=209.85.161.70 Authentication-Results: smtp.subspace.kernel.org; dmarc=fail (p=none dis=none) header.from=syzkaller.appspotmail.com Authentication-Results: smtp.subspace.kernel.org; spf=pass smtp.mailfrom=M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com Received: by mail-oo1-f70.google.com with SMTP id 006d021491bc7-6648bab02beso6141483eaf.0 for ; Mon, 02 Feb 2026 02:52:02 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1770029521; x=1770634321; h=to:from:subject:message-id:in-reply-to:date:mime-version :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=rFsgiXm1TJ4GisFoZflzYfJ5xxkmquirmriBb2zAS8o=; b=nrsSTUBZAjFyMfcn/LwrHJvl+I64Avq/U8Ky7JcoAqj/oWhxNxLM5G/eihIUV0cZUy m77WRT6WfJ0ZUB5e4Vser76FqVqPtn3lEPcUd9YeiexvRPZ5wzm3+UA/Iam821+rc9sX fZMEVL3nTJDXe2HXG1k/N+h+7hhsWGvfIHy9xzEBBrnJF5WJfo6+69ERg3BPVVLEvyz4 6YJJOAzf1j17Np+fzD8OUk5WwCmLpOmUWfX501sqTBUEmd0s8QjrUtQUrjFMViZey7SD 28svthcYe0pGnKPHSg5WMqj5anSIWK6SmCVdxMNN+rMO2ty/MdsfN56rRy1pXCgjAXTO 7liw== X-Forwarded-Encrypted: i=1; AJvYcCX3BpucXYUfuxSuwWf8Pc//kpNsFr8oEpu4/iMZoBF9HBqMibIcCD50H5ZCslzp3MNE6+MnyyK6NAy+Pe4=@vger.kernel.org X-Gm-Message-State: AOJu0YzMbj2rf8nBf0nmHB1AgV483SAGmbDpHlJfg/1DnqGhnZTaLs7j IWUo2h8gqs8BJfZkq93fNp8Y+aJsOEH4JNlfka4pYpyv9ZPV1ZcUxFgaVukmeqifLGWMXImWKhh xUxQN9T3POqd+zmKpIoB8+cyR4TsAbdT98F/L1lJbKiP8941g6lVtWUVnfxQ= Precedence: bulk X-Mailing-List: linux-kernel@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: MIME-Version: 1.0 X-Received: by 2002:a05:6820:88b:b0:662:fefa:9ee5 with SMTP id 006d021491bc7-66306180a9fmr7084391eaf.27.1770029521481; Mon, 02 Feb 2026 02:52:01 -0800 (PST) Date: Mon, 02 Feb 2026 02:52:01 -0800 In-Reply-To: <20260202083439.95644-1-kartikey406@gmail.com> X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <698081d1.050a0220.16b13.00a5.GAE@google.com> Subject: Re: [syzbot] [kvm?] WARNING in kvm_gmem_fault_user_mapping From: syzbot To: kartikey406@gmail.com, linux-kernel@vger.kernel.org, syzkaller-bugs@googlegroups.com Content-Type: text/plain; charset="UTF-8" Hello, syzbot has tested the proposed patch but the reproducer is still triggering an issue: kernel BUG in filemap_remove_folio ------------[ cut here ]------------ kernel BUG at mm/filemap.c:254! Oops: invalid opcode: 0000 [#1] SMP KASAN NOPTI CPU: 1 UID: 0 PID: 7475 Comm: syz.2.329 Not tainted syzkaller #0 PREEMPT(full) Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/24/2026 RIP: 0010:filemap_remove_folio+0x20f/0x270 mm/filemap.c:254 Code: fc 00 10 00 00 0f 86 5f ff ff ff eb 9e e8 b9 e5 c6 ff 48 c7 c6 20 0d 9d 8b 48 89 df e8 6a 2a 12 00 90 0f 0b e8 a2 e5 c6 ff 90 <0f> 0b e8 9a 38 31 00 e9 39 fe ff ff e8 90 38 31 00 e9 0c fe ff ff RSP: 0018:ffffc9000caaf7f0 EFLAGS: 00010293 RAX: 0000000000000000 RBX: ffffea0001400000 RCX: ffffffff8240149d RDX: ffff88802bcaa4c0 RSI: ffffffff824015fe RDI: ffff88802bcaa4c0 RBP: ffff88806b3047b0 R08: 0000000000000001 R09: 0000000000000000 R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000000 R13: ffff88806b3045c0 R14: 0000000000000000 R15: 1000200001ee0000 FS: 00007fa5c3e506c0(0000) GS:ffff8881246d9000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 0000000000000000 CR3: 00000000572cf000 CR4: 00000000003526f0 Call Trace: kvm_gmem_get_folio+0x118/0x320 virt/kvm/guest_memfd.c:166 kvm_gmem_fault_user_mapping+0x151/0x6e0 virt/kvm/guest_memfd.c:425 __do_fault+0x10d/0x550 mm/memory.c:5323 do_read_fault mm/memory.c:5758 [inline] do_fault+0xaf9/0x1990 mm/memory.c:5892 do_pte_missing mm/memory.c:4404 [inline] handle_pte_fault mm/memory.c:6276 [inline] __handle_mm_fault+0x1807/0x2b50 mm/memory.c:6414 handle_mm_fault+0x36d/0xa20 mm/memory.c:6583 faultin_page mm/gup.c:1126 [inline] __get_user_pages+0xf9c/0x34d0 mm/gup.c:1428 populate_vma_page_range+0x267/0x3f0 mm/gup.c:1860 __mm_populate+0x107/0x3a0 mm/gup.c:1963 do_mlock+0x3f0/0x7f0 mm/mlock.c:653 __do_sys_mlock mm/mlock.c:661 [inline] __se_sys_mlock mm/mlock.c:659 [inline] __x64_sys_mlock+0x59/0x80 mm/mlock.c:659 do_syscall_x64 arch/x86/entry/syscall_64.c:63 [inline] do_syscall_64+0xc9/0xf80 arch/x86/entry/syscall_64.c:94 entry_SYSCALL_64_after_hwframe+0x77/0x7f RIP: 0033:0x7fa5c2f9aeb9 Code: ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 e8 ff ff ff f7 d8 64 89 01 48 RSP: 002b:00007fa5c3e50028 EFLAGS: 00000246 ORIG_RAX: 0000000000000095 RAX: ffffffffffffffda RBX: 00007fa5c3215fa0 RCX: 00007fa5c2f9aeb9 RDX: 0000000000000000 RSI: 0000000000800000 RDI: 0000200000000000 RBP: 00007fa5c3008c1f R08: 0000000000000000 R09: 0000000000000000 R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 R13: 00007fa5c3216038 R14: 00007fa5c3215fa0 R15: 00007fff2603f848 Modules linked in: ---[ end trace 0000000000000000 ]--- RIP: 0010:filemap_remove_folio+0x20f/0x270 mm/filemap.c:254 Code: fc 00 10 00 00 0f 86 5f ff ff ff eb 9e e8 b9 e5 c6 ff 48 c7 c6 20 0d 9d 8b 48 89 df e8 6a 2a 12 00 90 0f 0b e8 a2 e5 c6 ff 90 <0f> 0b e8 9a 38 31 00 e9 39 fe ff ff e8 90 38 31 00 e9 0c fe ff ff RSP: 0018:ffffc9000caaf7f0 EFLAGS: 00010293 RAX: 0000000000000000 RBX: ffffea0001400000 RCX: ffffffff8240149d RDX: ffff88802bcaa4c0 RSI: ffffffff824015fe RDI: ffff88802bcaa4c0 RBP: ffff88806b3047b0 R08: 0000000000000001 R09: 0000000000000000 R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000000 R13: ffff88806b3045c0 R14: 0000000000000000 R15: 1000200001ee0000 FS: 00007fa5c3e506c0(0000) GS:ffff8881245d9000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 0000000000000000 CR3: 00000000572cf000 CR4: 00000000003526f0 Tested on: commit: 18f7fcd5 Linux 6.19-rc8 git tree: upstream console output: https://syzkaller.appspot.com/x/log.txt?x=14e73322580000 kernel config: https://syzkaller.appspot.com/x/.config?x=f1fac0919970b671 dashboard link: https://syzkaller.appspot.com/bug?extid=33a04338019ac7e43a44 compiler: gcc (Debian 14.2.0-19) 14.2.0, GNU ld (GNU Binutils for Debian) 2.44 patch: https://syzkaller.appspot.com/x/patch.diff?x=17ca453a580000