Login
[x]
Log in using an account from:
Fedora Account System
Red Hat Associate
Red Hat Customer
Or login using a Red Hat Bugzilla account
Forgot Password
Login:
Hide Forgot
Create an Account
Red Hat Bugzilla – Attachment 313268 Details for
Bug 457598
kernel BUG at drivers/gpu/drm/drm_fops.c:144! invalid opcode: 0000
[?]
New
Simple Search
Advanced Search
My Links
Browse
Requests
Reports
Current State
Search
Tabular reports
Graphical reports
Duplicates
Other Reports
User Changes
Plotly Reports
Bug Status
Bug Severity
Non-Defaults
|
Product Dashboard
Help
Page Help!
Bug Writing Guidelines
What's new
Browser Support Policy
5.0.4.rh83 Release notes
FAQ
Guides index
User guide
Web Services
Contact
Legal
This site requires JavaScript to be enabled to function correctly, please enable it.
oopsing 2.6.27-0.211.rc1.git3.fc10.x86_64 after an attempt to start X server
bomb.2.6.27-0.211.rc1.git3.fc10.x86_64 (text/plain), 21.50 KB, created by
Michal Jaegermann
on 2008-08-03 01:06:44 UTC
(
hide
)
Description:
oopsing 2.6.27-0.211.rc1.git3.fc10.x86_64 after an attempt to start X server
Filename:
MIME Type:
Creator:
Michal Jaegermann
Created:
2008-08-03 01:06:44 UTC
Size:
21.50 KB
patch
obsolete
>[drm] Initialized drm 1.1.0 20060810 >pci 0000:01:00.0: PCI INT A -> GSI 16 (level, low) -> IRQ 16 >[drm] Initialized radeon 1.29.0 20080528 on minor 0 >[drm] Detected VRAM RAM=65536K, accessible=65536K, BAR=65536K >[drm] Can't use agp base @0xe0000000lx, won't fit >[drm:drm_bo_leave_list] *ERROR* A DRM_BO_NO_EVICT buffer present at cleanup. Removing flag and evicting. >[drm:drm_bo_leave_list] *ERROR* A DRM_BO_NO_EVICT buffer present at cleanup. Removing flag and evicting. >[drm:drm_bo_clean_mm] *ERROR* Trying to take down uninitialized memory manager type 1 >[drm:drm_bo_clean_mm] *ERROR* Trying to take down uninitialized memory manager type 2 >[drm] Detected VRAM RAM=65536K, accessible=65536K, BAR=65536K >[drm] Can't use agp base @0xe0000000lx, won't fit >[drm] Detected VRAM RAM=65536K, accessible=65536K, BAR=65536K >[drm] Can't use agp base @0xe0000000lx, won't fit >[drm] Detected VRAM RAM=65536K, accessible=65536K, BAR=65536K >[drm] Can't use agp base @0xe0000000lx, won't fit >[drm] Setting GART location based on new memory map >BUG: unable to handle kernel NULL pointer dereference at 0000000000000000 >IP: [<ffffffffa0307ab8>] drm_ati_pcigart_init+0x1be/0x212 [drm] >PGD 1e155067 PUD 1e1ed067 PMD 1e167067 PTE 0 >Oops: 0002 [1] SMP DEBUG_PAGEALLOC >CPU 0 >Modules linked in: radeon drm i2c_algo_bit autofs4 w83627hf hwmon_vid eeprom sunrpc ipv6 ipt_REJECT xt_tcpudp xt_state iptable_filter ipt_LOG iptable_nat nf_nat nf_conntrack_ipv4 nf_conntrack ip_tables x_tables ext2 dm_mirror dm_log dm_mod sr_mod cdrom ppdev snd_via82xx gameport snd_seq_dummy floppy snd_via82xx_modem snd_ac97_codec ac97_bus snd_seq_oss snd_seq_midi_event snd_seq snd_pcm_oss pcspkr snd_mixer_oss snd_pcm k8temp snd_mpu401_uart snd_rawmidi snd_timer snd_seq_device hwmon snd snd_page_alloc soundcore i2c_viapro i2c_core pata_acpi pata_via ata_generic e100 mii skge firewire_ohci firewire_core crc_itu_t parport_pc parport shpchp sata_promise sata_via ext3 jbd mbcache uhci_hcd ohci_hcd ehci_hcd [last unloaded: freq_table] >Pid: 2634, comm: X Not tainted 2.6.27-0.211.rc1.git3.fc10.x86_64 #1 >RIP: 0010:[<ffffffffa0307ab8>] [<ffffffffa0307ab8>] drm_ati_pcigart_init+0x1be/0x212 [drm] >RSP: 0018:ffff88001e0f5db8 EFLAGS: 00010293 >RAX: 00000000178bd000 RBX: 0000000000000000 RCX: 0000000000000001 >RDX: 00000000178bd000 RSI: 00000000178bd000 RDI: ffff88001fbe3240 >RBP: ffff88001e0f5e08 R08: 0000000000000004 R09: ffff880018e64000 >R10: 0000000000000046 R11: ffffffff8102cccc R12: ffff88001f9ce608 >R13: 0000000000000000 R14: ffff8800178ab330 R15: 0000000000000000 >FS: 00007f93b2139780(0000) GS:ffffffff814f7380(0000) knlGS:0000000000000000 >CS: 0010 DS: 0000 ES: 0000 CR0: 000000008005003b >CR2: 0000000000000000 CR3: 000000001e0c5000 CR4: 00000000000006e0 >DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 >DR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400 >Process X (pid: 2634, threadinfo ffff88001e0f4000, task ffff88001e11a590) >Stack: ffff88001e0f5e08 ffff880018e64000 ffff880017420000 0000000000000000 > 0000000000002000 ffff88001f9ce1b0 ffff880018e64000 00000000ffffffff > ffff880018e133c8 ffff880018e64000 ffff88001e0f5e48 ffffffffa03336e4 >Call Trace: > [<ffffffffa03336e4>] radeon_cp_init+0x927/0x9a3 [radeon] > [<ffffffffa0300e26>] drm_ioctl+0x1e4/0x26f [drm] > [<ffffffff8116c6ed>] ? _raw_spin_lock+0x68/0x116 > [<ffffffffa0332dbd>] ? radeon_cp_init+0x0/0x9a3 [radeon] > [<ffffffff810dae88>] vfs_ioctl+0x64/0x7d > [<ffffffff810db0fd>] do_vfs_ioctl+0x25c/0x279 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff810db174>] sys_ioctl+0x5a/0x7e > [<ffffffff8101034a>] system_call_fastpath+0x16/0x1b > > >Code: e8 32 fd ff ff 31 db eb 3f 48 c1 e8 20 83 ca 0c 25 ff 00 00 00 c1 e0 04 09 c2 eb 0f 48 c1 e8 20 c1 ea 08 c1 e0 18 09 c2 83 ca 0c <41> 89 54 9d 00 48 ff c3 48 3b 5d d0 0f 82 0d ff ff ff 0f 09 66 >RIP [<ffffffffa0307ab8>] drm_ati_pcigart_init+0x1be/0x212 [drm] > RSP <ffff88001e0f5db8> >CR2: 0000000000000000 >---[ end trace 628595e9e5c68faa ]--- >============================================================================= >BUG kmalloc-32 (Tainted: G D ): Padding overwritten. 0xffff880017810fd8-0xffff880017810fff >----------------------------------------------------------------------------- > >INFO: Slab 0xffffe200008d0600 objects=39 used=24 fp=0xffff8800178109c0 flags=0x200000000000c3 >Pid: 2634, comm: X Tainted: G D 2.6.27-0.211.rc1.git3.fc10.x86_64 #1 > >Call Trace: > [<ffffffff810c67d8>] slab_err+0xb7/0xc5 > [<ffffffff81065986>] ? trace_hardirqs_on_caller+0x1f/0x133 > [<ffffffffa0305ecf>] ? drm_vm_close+0x6d/0xb6 [drm] > [<ffffffff810c6aa4>] slab_pad_check+0xe4/0x13a > [<ffffffff810c6bbe>] check_slab+0xc4/0xd0 > [<ffffffffa0305ecf>] ? drm_vm_close+0x6d/0xb6 [drm] > [<ffffffff810c8750>] __slab_free+0x137/0x2b5 > [<ffffffffa0305efa>] ? drm_vm_close+0x98/0xb6 [drm] > [<ffffffff810c8fc4>] kfree+0xdf/0x117 > [<ffffffffa0305efa>] ? drm_vm_close+0x98/0xb6 [drm] > [<ffffffffa0305efa>] drm_vm_close+0x98/0xb6 [drm] > [<ffffffff810b0cda>] remove_vma+0x43/0x8a > [<ffffffff810b0e09>] exit_mmap+0xe8/0x10a > [<ffffffff81041553>] mmput+0x47/0xa3 > [<ffffffff810453e8>] exit_mm+0x10d/0x118 > [<ffffffff8104705f>] do_exit+0x2a0/0x900 > [<ffffffff81010164>] ? mcount_call+0x5/0x31 > [<ffffffff8130d769>] oops_begin+0x0/0x91 > [<ffffffff8130f970>] do_page_fault+0x9da/0xace > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff810644b8>] ? register_lock_class+0x20/0x35a > [<ffffffff81064a8b>] ? trace_hardirqs_off_caller+0x21/0xa4 > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff8102d4c9>] ? kernel_map_pages+0x122/0x12d > [<ffffffff810a1d92>] ? get_page_from_freelist+0x4cb/0x720 > [<ffffffff810a2375>] ? __alloc_pages_internal+0x152/0x4b5 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff81065a76>] ? trace_hardirqs_on_caller+0x10f/0x133 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff8130cd9a>] error_exit+0x0/0xc8 > [<ffffffff8102cccc>] ? __change_page_attr_set_clr+0x1a5/0x880 > [<ffffffffa0307ab8>] ? drm_ati_pcigart_init+0x1be/0x212 [drm] > [<ffffffffa0307a50>] ? drm_ati_pcigart_init+0x156/0x212 [drm] > [<ffffffffa03336e4>] radeon_cp_init+0x927/0x9a3 [radeon] > [<ffffffffa0300e26>] drm_ioctl+0x1e4/0x26f [drm] > [<ffffffff8116c6ed>] ? _raw_spin_lock+0x68/0x116 > [<ffffffffa0332dbd>] ? radeon_cp_init+0x0/0x9a3 [radeon] > [<ffffffff810dae88>] vfs_ioctl+0x64/0x7d > [<ffffffff810db0fd>] do_vfs_ioctl+0x25c/0x279 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff810db174>] sys_ioctl+0x5a/0x7e > [<ffffffff8101034a>] system_call_fastpath+0x16/0x1b > > Padding 0xffff880017810fd8: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ > Padding 0xffff880017810fe8: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ > Padding 0xffff880017810ff8: 00 00 00 00 00 00 00 00 ........ >FIX kmalloc-32: Restoring 0xffff880017810000-0xffff880017810fff=0x5a > >============================================================================= >BUG kmalloc-32 (Tainted: G D ): Freechain corrupt >----------------------------------------------------------------------------- > >INFO: Allocated in 0x5a5a5a5a5a5a5a5a age=11936128522577375430 cpu=1515870810 pid=1515870810 >INFO: Freed in 0x5a5a5a5a5a5a5a5a age=11936128522577375430 cpu=1515870810 pid=1515870810 >INFO: Slab 0xffffe200008d0600 objects=39 used=24 fp=0xffff8800178109c0 flags=0x200000000000c3 >INFO: Object 0xffff8800178109c0 @offset=2496 fp=0x5a5a5a5a5a5a5a5a > >Bytes b4 0xffff8800178109b0: 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZZZZZZZZZ > Object 0xffff8800178109c0: 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZZZZZZZZZ > Object 0xffff8800178109d0: 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZZZZZZZZZ > Redzone 0xffff8800178109e0: 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZ > Padding 0xffff880017810a20: 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZ >Pid: 2634, comm: X Tainted: G D 2.6.27-0.211.rc1.git3.fc10.x86_64 #1 > >Call Trace: > [<ffffffff810c65d1>] print_trailer+0x140/0x149 > [<ffffffff810c6820>] object_err+0x3a/0x42 > [<ffffffff810c6893>] on_freelist+0x6b/0x198 > [<ffffffff810c8782>] __slab_free+0x169/0x2b5 > [<ffffffffa0305efa>] ? drm_vm_close+0x98/0xb6 [drm] > [<ffffffff810c8fc4>] kfree+0xdf/0x117 > [<ffffffffa0305efa>] ? drm_vm_close+0x98/0xb6 [drm] > [<ffffffffa0305efa>] drm_vm_close+0x98/0xb6 [drm] > [<ffffffff810b0cda>] remove_vma+0x43/0x8a > [<ffffffff810b0e09>] exit_mmap+0xe8/0x10a > [<ffffffff81041553>] mmput+0x47/0xa3 > [<ffffffff810453e8>] exit_mm+0x10d/0x118 > [<ffffffff8104705f>] do_exit+0x2a0/0x900 > [<ffffffff81010164>] ? mcount_call+0x5/0x31 > [<ffffffff8130d769>] oops_begin+0x0/0x91 > [<ffffffff8130f970>] do_page_fault+0x9da/0xace > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff810644b8>] ? register_lock_class+0x20/0x35a > [<ffffffff81064a8b>] ? trace_hardirqs_off_caller+0x21/0xa4 > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff8102d4c9>] ? kernel_map_pages+0x122/0x12d > [<ffffffff810a1d92>] ? get_page_from_freelist+0x4cb/0x720 > [<ffffffff810a2375>] ? __alloc_pages_internal+0x152/0x4b5 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff81065a76>] ? trace_hardirqs_on_caller+0x10f/0x133 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff8130cd9a>] error_exit+0x0/0xc8 > [<ffffffff8102cccc>] ? __change_page_attr_set_clr+0x1a5/0x880 > [<ffffffffa0307ab8>] ? drm_ati_pcigart_init+0x1be/0x212 [drm] > [<ffffffffa0307a50>] ? drm_ati_pcigart_init+0x156/0x212 [drm] > [<ffffffffa03336e4>] radeon_cp_init+0x927/0x9a3 [radeon] > [<ffffffffa0300e26>] drm_ioctl+0x1e4/0x26f [drm] > [<ffffffff8116c6ed>] ? _raw_spin_lock+0x68/0x116 > [<ffffffffa0332dbd>] ? radeon_cp_init+0x0/0x9a3 [radeon] > [<ffffffff810dae88>] vfs_ioctl+0x64/0x7d > [<ffffffff810db0fd>] do_vfs_ioctl+0x25c/0x279 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff810db174>] sys_ioctl+0x5a/0x7e > [<ffffffff8101034a>] system_call_fastpath+0x16/0x1b > >============================================================================= >BUG kmalloc-32 (Tainted: G D ): Wrong object count. Counter is 24 but counted were 38 >----------------------------------------------------------------------------- > >INFO: Slab 0xffffe200008d0600 objects=39 used=24 fp=0xffff8800178109c0 flags=0x200000000000c3 >Pid: 2634, comm: X Tainted: G D 2.6.27-0.211.rc1.git3.fc10.x86_64 #1 > >Call Trace: > [<ffffffff810c67d8>] slab_err+0xb7/0xc5 > [<ffffffff81010164>] ? mcount_call+0x5/0x31 > [<ffffffff81309972>] ? dump_stack+0x77/0x80 > [<ffffffff810c65d1>] ? print_trailer+0x140/0x149 > [<ffffffff810c6820>] ? object_err+0x3a/0x42 > [<ffffffff810c698a>] on_freelist+0x162/0x198 > [<ffffffff810c8782>] __slab_free+0x169/0x2b5 > [<ffffffffa0305efa>] ? drm_vm_close+0x98/0xb6 [drm] > [<ffffffff810c8fc4>] kfree+0xdf/0x117 > [<ffffffffa0305efa>] ? drm_vm_close+0x98/0xb6 [drm] > [<ffffffffa0305efa>] drm_vm_close+0x98/0xb6 [drm] > [<ffffffff810b0cda>] remove_vma+0x43/0x8a > [<ffffffff810b0e09>] exit_mmap+0xe8/0x10a > [<ffffffff81041553>] mmput+0x47/0xa3 > [<ffffffff810453e8>] exit_mm+0x10d/0x118 > [<ffffffff8104705f>] do_exit+0x2a0/0x900 > [<ffffffff81010164>] ? mcount_call+0x5/0x31 > [<ffffffff8130d769>] oops_begin+0x0/0x91 > [<ffffffff8130f970>] do_page_fault+0x9da/0xace > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff810644b8>] ? register_lock_class+0x20/0x35a > [<ffffffff81064a8b>] ? trace_hardirqs_off_caller+0x21/0xa4 > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff8102d4c9>] ? kernel_map_pages+0x122/0x12d > [<ffffffff810a1d92>] ? get_page_from_freelist+0x4cb/0x720 > [<ffffffff810a2375>] ? __alloc_pages_internal+0x152/0x4b5 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff81065a76>] ? trace_hardirqs_on_caller+0x10f/0x133 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff8130cd9a>] error_exit+0x0/0xc8 > [<ffffffff8102cccc>] ? __change_page_attr_set_clr+0x1a5/0x880 > [<ffffffffa0307ab8>] ? drm_ati_pcigart_init+0x1be/0x212 [drm] > [<ffffffffa0307a50>] ? drm_ati_pcigart_init+0x156/0x212 [drm] > [<ffffffffa03336e4>] radeon_cp_init+0x927/0x9a3 [radeon] > [<ffffffffa0300e26>] drm_ioctl+0x1e4/0x26f [drm] > [<ffffffff8116c6ed>] ? _raw_spin_lock+0x68/0x116 > [<ffffffffa0332dbd>] ? radeon_cp_init+0x0/0x9a3 [radeon] > [<ffffffff810dae88>] vfs_ioctl+0x64/0x7d > [<ffffffff810db0fd>] do_vfs_ioctl+0x25c/0x279 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff810db174>] sys_ioctl+0x5a/0x7e > [<ffffffff8101034a>] system_call_fastpath+0x16/0x1b > >FIX kmalloc-32: Object count adjusted. >============================================================================= >BUG kmalloc-32 (Tainted: G D ): Redzone overwritten >----------------------------------------------------------------------------- > >INFO: 0xffff880017810910-0xffff880017810917. First byte 0x5a instead of 0xcc >INFO: Allocated in 0x5a5a5a5a5a5a5a5a age=11936128522577375430 cpu=1515870810 pid=1515870810 >INFO: Freed in 0x5a5a5a5a5a5a5a5a age=11936128522577375430 cpu=1515870810 pid=1515870810 >INFO: Slab 0xffffe200008d0600 objects=39 used=38 fp=0xffff8800178109c0 flags=0x200000000000c3 >INFO: Object 0xffff8800178108f0 @offset=2288 fp=0x5a5a5a5a5a5a5a5a > >Bytes b4 0xffff8800178108e0: 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZZZZZZZZZ > Object 0xffff8800178108f0: 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZZZZZZZZZ > Object 0xffff880017810900: 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZZZZZZZZZ > Redzone 0xffff880017810910: 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZ > Padding 0xffff880017810950: 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZ >Pid: 2634, comm: X Tainted: G D 2.6.27-0.211.rc1.git3.fc10.x86_64 #1 > >Call Trace: > [<ffffffff810c65d1>] print_trailer+0x140/0x149 > [<ffffffff810c6c81>] check_bytes_and_report+0xb7/0xf7 > [<ffffffff810c6d22>] check_object+0x61/0x1b4 > [<ffffffff810c87a0>] __slab_free+0x187/0x2b5 > [<ffffffffa0305efa>] ? drm_vm_close+0x98/0xb6 [drm] > [<ffffffff810c8fc4>] kfree+0xdf/0x117 > [<ffffffffa0305efa>] ? drm_vm_close+0x98/0xb6 [drm] > [<ffffffffa0305efa>] drm_vm_close+0x98/0xb6 [drm] > [<ffffffff810b0cda>] remove_vma+0x43/0x8a > [<ffffffff810b0e09>] exit_mmap+0xe8/0x10a > [<ffffffff81041553>] mmput+0x47/0xa3 > [<ffffffff810453e8>] exit_mm+0x10d/0x118 > [<ffffffff8104705f>] do_exit+0x2a0/0x900 > [<ffffffff81010164>] ? mcount_call+0x5/0x31 > [<ffffffff8130d769>] oops_begin+0x0/0x91 > [<ffffffff8130f970>] do_page_fault+0x9da/0xace > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff810644b8>] ? register_lock_class+0x20/0x35a > [<ffffffff81064a8b>] ? trace_hardirqs_off_caller+0x21/0xa4 > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff8102d4c9>] ? kernel_map_pages+0x122/0x12d > [<ffffffff810a1d92>] ? get_page_from_freelist+0x4cb/0x720 > [<ffffffff810a2375>] ? __alloc_pages_internal+0x152/0x4b5 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff81065a76>] ? trace_hardirqs_on_caller+0x10f/0x133 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff8130cd9a>] error_exit+0x0/0xc8 > [<ffffffff8102cccc>] ? __change_page_attr_set_clr+0x1a5/0x880 > [<ffffffffa0307ab8>] ? drm_ati_pcigart_init+0x1be/0x212 [drm] > [<ffffffffa0307a50>] ? drm_ati_pcigart_init+0x156/0x212 [drm] > [<ffffffffa03336e4>] radeon_cp_init+0x927/0x9a3 [radeon] > [<ffffffffa0300e26>] drm_ioctl+0x1e4/0x26f [drm] > [<ffffffff8116c6ed>] ? _raw_spin_lock+0x68/0x116 > [<ffffffffa0332dbd>] ? radeon_cp_init+0x0/0x9a3 [radeon] > [<ffffffff810dae88>] vfs_ioctl+0x64/0x7d > [<ffffffff810db0fd>] do_vfs_ioctl+0x25c/0x279 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff810db174>] sys_ioctl+0x5a/0x7e > [<ffffffff8101034a>] system_call_fastpath+0x16/0x1b > >FIX kmalloc-32: Restoring 0xffff880017810910-0xffff880017810917=0xcc > >general protection fault: 0000 [2] SMP DEBUG_PAGEALLOC >CPU 0 >Modules linked in: radeon drm i2c_algo_bit autofs4 w83627hf hwmon_vid eeprom sunrpc ipv6 ipt_REJECT xt_tcpudp xt_state iptable_filter ipt_LOG iptable_nat nf_nat nf_conntrack_ipv4 nf_conntrack ip_tables x_tables ext2 dm_mirror dm_log dm_mod sr_mod cdrom ppdev snd_via82xx gameport snd_seq_dummy floppy snd_via82xx_modem snd_ac97_codec ac97_bus snd_seq_oss snd_seq_midi_event snd_seq snd_pcm_oss pcspkr snd_mixer_oss snd_pcm k8temp snd_mpu401_uart snd_rawmidi snd_timer snd_seq_device hwmon snd snd_page_alloc soundcore i2c_viapro i2c_core pata_acpi pata_via ata_generic e100 mii skge firewire_ohci firewire_core crc_itu_t parport_pc parport shpchp sata_promise sata_via ext3 jbd mbcache uhci_hcd ohci_hcd ehci_hcd [last unloaded: freq_table] >Pid: 2634, comm: X Tainted: G D 2.6.27-0.211.rc1.git3.fc10.x86_64 #1 >RIP: 0010:[<ffffffffa0305eff>] [<ffffffffa0305eff>] drm_vm_close+0x9d/0xb6 [drm] >RSP: 0018:ffff88001e0f57d8 EFLAGS: 00010207 >RAX: 5a5a5a5a5a5a5a5a RBX: 5a5a5a5a5a5a5a5a RCX: 0000000000000000 >RDX: ffff880018e642c0 RSI: ffffffff8130affd RDI: ffff88001e0f5708 >RBP: ffff88001e0f57f8 R08: 0000000000000002 R09: 0000000000000001 >R10: 0000000000000046 R11: ffffe20000b479e0 R12: ffff880018e64000 >R13: ffff88001e1451f0 R14: ffff880018e64048 R15: ffff88001e0f5d08 >FS: 00007f93b2139780(0000) GS:ffffffff814f7380(0000) knlGS:0000000000000000 >CS: 0010 DS: 0000 ES: 0000 CR0: 000000008005003b >CR2: 0000000000b0f018 CR3: 000000001e0a2000 CR4: 00000000000006e0 >DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 >DR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400 >Process X (pid: 2634, threadinfo ffff88001e0f4000, task ffff88001e11a590) >Stack: ffff88001e1451f0 ffff88001e1456c8 ffff88001e1451f0 ffff88001e589e68 > ffff88001e0f5818 ffffffff810b0cda ffff8800010128d0 ffff88001e589e00 > ffff88001e0f5858 ffffffff810b0e09 ffff88001e0f5858 000000000000016e >Call Trace: > [<ffffffff810b0cda>] remove_vma+0x43/0x8a > [<ffffffff810b0e09>] exit_mmap+0xe8/0x10a > [<ffffffff81041553>] mmput+0x47/0xa3 > [<ffffffff810453e8>] exit_mm+0x10d/0x118 > [<ffffffff8104705f>] do_exit+0x2a0/0x900 > [<ffffffff81010164>] ? mcount_call+0x5/0x31 > [<ffffffff8130d769>] oops_begin+0x0/0x91 > [<ffffffff8130f970>] do_page_fault+0x9da/0xace > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff810644b8>] ? register_lock_class+0x20/0x35a > [<ffffffff81064a8b>] ? trace_hardirqs_off_caller+0x21/0xa4 > [<ffffffff81064b1b>] ? trace_hardirqs_off+0xd/0xf > [<ffffffff8102d4c9>] ? kernel_map_pages+0x122/0x12d > [<ffffffff810a1d92>] ? get_page_from_freelist+0x4cb/0x720 > [<ffffffff810a2375>] ? __alloc_pages_internal+0x152/0x4b5 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff81065a76>] ? trace_hardirqs_on_caller+0x10f/0x133 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff8130cd9a>] error_exit+0x0/0xc8 > [<ffffffff8102cccc>] ? __change_page_attr_set_clr+0x1a5/0x880 > [<ffffffffa0307ab8>] ? drm_ati_pcigart_init+0x1be/0x212 [drm] > [<ffffffffa0307a50>] ? drm_ati_pcigart_init+0x156/0x212 [drm] > [<ffffffffa03336e4>] radeon_cp_init+0x927/0x9a3 [radeon] > [<ffffffffa0300e26>] drm_ioctl+0x1e4/0x26f [drm] > [<ffffffff8116c6ed>] ? _raw_spin_lock+0x68/0x116 > [<ffffffffa0332dbd>] ? radeon_cp_init+0x0/0x9a3 [radeon] > [<ffffffff810dae88>] vfs_ioctl+0x64/0x7d > [<ffffffff810db0fd>] do_vfs_ioctl+0x25c/0x279 > [<ffffffff8130c144>] ? trace_hardirqs_on_thunk+0x3a/0x3f > [<ffffffff810db174>] sys_ioctl+0x5a/0x7e > [<ffffffff8101034a>] system_call_fastpath+0x16/0x1b > > >Code: 02 00 00 49 8d 94 24 c0 02 00 00 48 8b 03 eb 1e 4c 39 6b 10 75 12 48 89 df e8 a6 6c e6 e0 48 89 df e8 eb 2f dc e0 eb 0b 48 89 c3 <48> 8b 00 48 39 d3 75 dd 4c 89 f7 e8 39 53 00 e1 5b 41 5c 41 5d >RIP [<ffffffffa0305eff>] drm_vm_close+0x9d/0xb6 [drm] > RSP <ffff88001e0f57d8> >---[ end trace 628595e9e5c68faa ]--- >Fixing recursive fault but reboot is needed! >============================================================================= >BUG kmalloc-32 (Tainted: G D ): Redzone overwritten >----------------------------------------------------------------------------- > >INFO: 0xffff8800178109e0-0xffff8800178109e7. First byte 0x5a instead of 0xbb >INFO: Allocated in 0x5a5a5a5a5a5a5a5a age=11936128522577396680 cpu=1515870810 pid=1515870810 >INFO: Freed in 0x5a5a5a5a5a5a5a5a age=11936128522577396680 cpu=1515870810 pid=1515870810 >INFO: Slab 0xffffe200008d0600 objects=39 used=38 fp=0xffff8800178109c0 flags=0x200000000000c3 >INFO: Object 0xffff8800178109c0 @offset=2496 fp=0x0000000000000000 > >Bytes b4 0xffff8800178109b0: 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZZZZZZZZZ > Object 0xffff8800178109c0: 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZZZZZZZZZ > Object 0xffff8800178109d0: 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZZZZZZZZZ > Redzone 0xffff8800178109e0: 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZ > Padding 0xffff880017810a20: 5a 5a 5a 5a 5a 5a 5a 5a ZZZZZZZZ >Pid: 2693, comm: sshd Tainted: G D 2.6.27-0.211.rc1.git3.fc10.x86_64 #1 > >Call Trace: > [<ffffffff810c65d1>] print_trailer+0x140/0x149 > [<ffffffff810c6c81>] check_bytes_and_report+0xb7/0xf7 > [<ffffffff81105c83>] ? load_elf_binary+0x1c6/0x16c7 > [<ffffffff810c6d22>] check_object+0x61/0x1b4 > [<ffffffff810c8c06>] __slab_alloc+0x338/0x3eb > [<ffffffff81105c83>] ? load_elf_binary+0x1c6/0x16c7 > [<ffffffff81105c83>] ? load_elf_binary+0x1c6/0x16c7 > [<ffffffff810c9eda>] __kmalloc+0xbc/0x111 > [<ffffffff81105abd>] ? load_elf_binary+0x0/0x16c7 > [<ffffffff81105c83>] load_elf_binary+0x1c6/0x16c7 > [<ffffffff8110f637>] ? dnotify_parent+0x2d/0x78 > [<ffffffff810d3643>] ? search_binary_handler+0x16d/0x255 > [<ffffffff810d3643>] ? search_binary_handler+0x16d/0x255 > [<ffffffff81105abd>] ? load_elf_binary+0x0/0x16c7 > [<ffffffff810d35a5>] search_binary_handler+0xcf/0x255 > [<ffffffff810d4855>] do_execve+0x1c8/0x27a > [<ffffffff810d9636>] ? getname+0x171/0x1d7 > [<ffffffff8100e68e>] sys_execve+0x43/0x5e > [<ffffffff8101091a>] stub_execve+0x6a/0xc0 > >FIX kmalloc-32: Restoring 0xffff8800178109e0-0xffff8800178109e7=0xbb > >FIX kmalloc-32: Marking all objects used
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Raw
Actions:
View
Attachments on
bug 457598
: 313268