Bug 1743043

Summary: [abrt] __hci_cmd_sync_ev: kernel BUG at mm/slub.c:306! [bluetooth]
Product: [Fedora] Fedora Reporter: m8qj1qeb9q
Component: kernelAssignee: Kernel Maintainer List <kernel-maint>
Status: CLOSED INSUFFICIENT_DATA QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 30CC: airlied, bskeggs, hdegoede, ichavero, itamar, jarodwilson, jeremy, jglisse, john.j5live, jonathan, josef, kernel-maint, lafrance.martin, linville, masami256, mchehab, mjg59, steved
Target Milestone: ---   
Target Release: ---   
Hardware: x86_64   
OS: Unspecified   
URL: https://retrace.fedoraproject.org/faf/reports/bthash/c5946cd7e2cc6460ebe09143e51fe30acd0a5ca3
Whiteboard: abrt_hash:b59032457d3e1964831f92cb3511ad13be52b465;VARIANT_ID=workstation;
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2019-09-17 20:09:42 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Attachments:
Description Flags
File: dmesg none

Description m8qj1qeb9q 2019-08-18 22:13:34 UTC
Additional info:
reporter:       libreport-2.10.1
kernel BUG at mm/slub.c:306!
invalid opcode: 0000 [#1] SMP PTI
CPU: 0 PID: 2385 Comm: gsd-rfkill Not tainted 5.2.8-200.fc30.x86_64 #1
Hardware name:  /NUC5i5RYB, BIOS RYBDWi35.86A.0355.2016.0224.1501 02/24/2016
RIP: 0010:__slab_free+0x1f5/0x3e0
Code: 00 80 7c 24 6b 00 79 09 45 84 c9 0f 84 9f 00 00 00 48 8d 65 d8 5b 41 5c 41 5d 41 5e 41 5f 5d c3 80 4c 24 6b 80 e9 20 ff ff ff <0f> 0b 49 3b 5c 24 28 75 a3 48 8b 44 24 30 41 89 f1 49 89 4c 24 28
RSP: 0018:ffffb60308cfbd20 EFLAGS: 00010246
RAX: ffff97ce362aa600 RBX: 0000000080100005 RCX: ffff97ce362aa600
RDX: ffff97ce362aa600 RSI: ffffd8bd07d8aa80 RDI: ffff97ce8e594180
RBP: ffffb60308cfbdc8 R08: 0000000000000001 R09: ffff97ce362aa600
R10: ffffd8bd07d8aa80 R11: ffffd8bd07d8aaa0 R12: ffffd8bd07d8aa80
R13: ffff97ce362aa600 R14: ffff97ce8e594180 R15: ffff97ce362aa600
FS:  00007fa9cdafadc0(0000) GS:ffff97ce8ea00000(0000) knlGS:0000000000000000
CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
CR2: 00003d29a1403a90 CR3: 00000001ff9f2003 CR4: 00000000003606f0
Call Trace:
 ? __hci_cmd_sync_ev.part.0+0x1ab/0x1d0 [bluetooth]
 ? finish_wait+0x80/0x80
 ? __hci_cmd_sync_ev+0x9c/0xe0 [bluetooth]
 kmem_cache_free+0x18c/0x1b0
 btusb_shutdown_intel+0x5b/0x90 [btusb]
 hci_dev_do_close+0x412/0x520 [bluetooth]
 hci_rfkill_set_block+0x4c/0x90 [bluetooth]
 rfkill_set_block+0x92/0x140 [rfkill]
 rfkill_fop_write+0x132/0x1d0 [rfkill]
 vfs_write+0xb6/0x1a0
 ksys_write+0xa7/0xe0
 ? __x64_sys_poll+0x37/0x130
 do_syscall_64+0x5f/0x1a0
 entry_SYSCALL_64_after_hwframe+0x44/0xa9
RIP: 0033:0x7fa9cdfd8137
Code: 89 54 24 18 48 89 74 24 10 89 7c 24 08 e8 c1 c8 01 00 48 8b 54 24 18 48 8b 74 24 10 41 89 c0 8b 7c 24 08 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 35 44 89 c7 48 89 44 24 08 e8 f4 c8 01 00 48
RSP: 002b:00007ffddcd65aa0 EFLAGS: 00000293 ORIG_RAX: 0000000000000001
RAX: ffffffffffffffda RBX: 00007fa9cdafad40 RCX: 00007fa9cdfd8137
RDX: 0000000000000008 RSI: 000055c266198770 RDI: 0000000000000008
RBP: 00007ffddcd65af0 R08: 0000000000000000 R09: 000000000000000b
R10: 000055c2661943b8 R11: 0000000000000293 R12: 0000000000000001
R13: 00007ffddcd65b50 R14: 0000000000000000 R15: 000055c2661764c0
Modules linked in: ses enclosure scsi_transport_sas uas usb_storage fuse rfcomm nft_ct nf_tables xt_CHECKSUM xt_MASQUERADE tun bridge stp llc nf_conntrack_netbios_ns nf_conntrack_broadcast xt_CT ip6t_rpfilter ip6t_REJECT nf_reject_ipv6 ipt_REJECT nf_reject_ipv4 xt_conntrack ebtable_nat ip6table_nat ip6table_mangle ip6table_raw ip6table_security iptable_nat nf_nat iptable_mangle iptable_raw iptable_security nf_conntrack nf_defrag_ipv6 nf_defrag_ipv4 libcrc32c ip_set nfnetlink ebtable_filter ebtables ip6table_filter ip6_tables iptable_filter ip_tables cmac bnep sunrpc vfat fat arc4 snd_hda_codec_realtek snd_hda_codec_generic intel_rapl ledtrig_audio iwlmvm snd_hda_codec_hdmi snd_hda_intel x86_pkg_temp_thermal intel_powerclamp mei_hdcp coretemp mac80211 kvm_intel snd_hda_codec iTCO_wdt iTCO_vendor_support kvm iwlwifi snd_hda_core snd_hwdep snd_seq irqbypass intel_cstate intel_uncore snd_seq_device snd_pcm intel_rapl_perf cfg80211 btusb btrtl btbcm btintel bluetooth joydev i2c_i801
 snd_timer ecdh_generic ecc lpc_ich mei_me rfkill snd mei ir_rc6_decoder soundcore rc_rc6_mce nuvoton_cir pcc_cpufreq acpi_pad dm_crypt hid_logitech_hidpp hid_logitech_dj i915 i2c_algo_bit crct10dif_pclmul drm_kms_helper crc32_pclmul crc32c_intel e1000e drm ghash_clmulni_intel video

Potential duplicate: bug 1698276

Comment 1 m8qj1qeb9q 2019-08-18 22:13:39 UTC
Created attachment 1605571 [details]
File: dmesg

Comment 2 Justin M. Forbes 2019-08-20 17:36:51 UTC
*********** MASS BUG UPDATE **************

We apologize for the inconvenience.  There are a large number of bugs to go through and several of them have gone stale.  Due to this, we are doing a mass bug update across all of the Fedora 30 kernel bugs.

Fedora 30 has now been rebased to 5.2.9-200.fc30.  Please test this kernel update (or newer) and let us know if you issue has been resolved or if it is still present with the newer kernel.

If you have moved on to Fedora 31, and are still experiencing this issue, please change the version to Fedora 31.

If you experience different issues, please open a new bug report for those.

Comment 3 Justin M. Forbes 2019-09-17 20:09:42 UTC
*********** MASS BUG UPDATE **************
This bug is being closed with INSUFFICIENT_DATA as there has not been a response in 3 weeks. If you are still experiencing this issue, please reopen and attach the relevant data from the latest kernel you are running and any data that might have been requested previously.

Comment 4 Martin Lafrance 2019-09-30 01:25:54 UTC
Description of problem:
Hello,

this crash happened as I was trying to pair a bluetooth device.
- Opened Bluetooth settings
- Made my device discoverable
- It did not show up  in the list, and all "Unknown" devices did not seem to refresh, seemed to be hung in a 'loading' state (device discoverability was timing out)
- Turn off bluetooth of PC -> crash happened

Now, Bluetooth Settings window reads No Bluetooth Found - Plug in a dongle to use Bluetooth. Drop-down on desktop top-right's corner (you know... battery status, wifi settings, Power Off button) says Bluetooth On, but doesn't do anything when I click Turn Off.


Let me know if I can give any more details, I've had issues with Bluetooth for a little while now.


Thanks

Martin

Version-Release number of selected component:
kernel-core-5.2.17-200.fc30

Additional info:
reporter:       libreport-2.10.1
cmdline:        BOOT_IMAGE=(hd0,gpt2)/vmlinuz-5.2.17-200.fc30.x86_64 root=/dev/mapper/fedora-root ro resume=/dev/mapper/fedora-swap rd.lvm.lv=fedora/root rd.lvm.lv=fedora/swap rhgb quiet
crash_function: __hci_cmd_sync_ev
kernel:         5.2.17-200.fc30.x86_64
runlevel:       N 5
type:           Kerneloops

Truncated backtrace:
kernel BUG at mm/slub.c:306!
invalid opcode: 0000 [#1] SMP PTI
CPU: 0 PID: 1565 Comm: gsd-rfkill Not tainted 5.2.17-200.fc30.x86_64 #1
Hardware name: ASUSTeK COMPUTER INC. UX305FA/UX305FA, BIOS UX305FA.216 04/17/2019
RIP: 0010:__slab_free+0x1f5/0x3e0
Code: 00 80 7c 24 6b 00 79 09 45 84 c9 0f 84 9f 00 00 00 48 8d 65 d8 5b 41 5c 41 5d 41 5e 41 5f 5d c3 80 4c 24 6b 80 e9 20 ff ff ff <0f> 0b 49 3b 5c 24 28 75 a3 48 8b 44 24 30 41 89 f1 49 89 4c 24 28
RSP: 0018:ffffb321025f7d20 EFLAGS: 00010246
RAX: ffff8c6c102e7200 RBX: 0000000080100004 RCX: ffff8c6c102e7200
RDX: ffff8c6c102e7200 RSI: ffffd5688840b9c0 RDI: ffff8c6c16594180
RBP: ffffb321025f7dc8 R08: 0000000000000001 R09: ffff8c6c102e7200
R10: ffffd5688840b9c0 R11: ffffd5688840b9e0 R12: ffffd5688840b9c0
R13: ffff8c6c102e7200 R14: ffff8c6c16594180 R15: ffff8c6c102e7200
FS:  00007f9333a76dc0(0000) GS:ffff8c6c16a00000(0000) knlGS:0000000000000000
CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
CR2: 00002b1372c48970 CR3: 00000001cfbdc004 CR4: 00000000003606f0
Call Trace:
 ? __hci_cmd_sync_ev.part.0+0x1ab/0x1d0 [bluetooth]
 ? finish_wait+0x80/0x80
 ? __hci_cmd_sync_ev+0x9c/0xe0 [bluetooth]
 kmem_cache_free+0x18c/0x1b0
 btusb_shutdown_intel+0x31/0x90 [btusb]
 hci_dev_do_close+0x412/0x520 [bluetooth]
 ? _cond_resched+0x15/0x30
 hci_rfkill_set_block+0x4c/0x90 [bluetooth]
 rfkill_set_block+0x92/0x140 [rfkill]
 rfkill_fop_write+0x132/0x1d0 [rfkill]
 vfs_write+0xb6/0x1a0
 ksys_write+0xa7/0xe0
 ? __x64_sys_poll+0x37/0x130
 do_syscall_64+0x5f/0x1a0
 entry_SYSCALL_64_after_hwframe+0x44/0xa9
RIP: 0033:0x7f9333f55647
Code: 89 54 24 18 48 89 74 24 10 89 7c 24 08 e8 d1 43 f9 ff 48 8b 54 24 18 48 8b 74 24 10 41 89 c0 8b 7c 24 08 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 35 44 89 c7 48 89 44 24 08 e8 04 44 f9 ff 48
RSP: 002b:00007ffc83c7c0c0 EFLAGS: 00000293 ORIG_RAX: 0000000000000001
RAX: ffffffffffffffda RBX: 00007f9333a76d40 RCX: 00007f9333f55647
RDX: 0000000000000008 RSI: 00005628424d0db0 RDI: 0000000000000008
RBP: 00007ffc83c7c110 R08: 0000000000000000 R09: 000000000000000b
R10: 00005628424be3b8 R11: 0000000000000293 R12: 0000000000000001
R13: 00007ffc83c7c170 R14: 0000000000000000 R15: 00005628424a04c0
Modules linked in: ccm fuse xt_CHECKSUM rfcomm xt_MASQUERADE tun bridge stp llc nf_conntrack_netbios_ns nf_conntrack_broadcast xt_CT ip6t_rpfilter ip6t_REJECT nf_reject_ipv6 ipt_REJECT nf_reject_ipv4 xt_conntrack ebtable_nat ip6table_nat ip6table_mangle ip6table_raw ip6table_security iptable_nat nf_nat iptable_mangle iptable_raw iptable_security nf_conntrack nf_defrag_ipv6 nf_defrag_ipv4 libcrc32c ip_set nfnetlink ebtable_filter ebtables ip6table_filter ip6_tables iptable_filter ip_tables cmac bnep sunrpc vfat fat intel_rapl x86_pkg_temp_thermal intel_powerclamp arc4 coretemp kvm_intel iwlmvm mac80211 kvm btusb btrtl snd_hda_codec_hdmi snd_hda_codec_conexant snd_hda_codec_generic ledtrig_audio btbcm snd_hda_intel mei_hdcp uvcvideo btintel iwlwifi snd_hda_codec iTCO_wdt iTCO_vendor_support bluetooth videobuf2_vmalloc snd_hda_core videobuf2_memops irqbypass snd_hwdep videobuf2_v4l2 snd_seq videobuf2_common crct10dif_pclmul crc32_pclmul snd_seq_device snd_pcm cfg80211 videodev
 ghash_clmulni_intel asus_nb_wmi intel_cstate asus_wmi intel_uncore media intel_rapl_perf snd_timer sparse_keymap joydev snd processor_thermal_device i2c_i801 mei_me ecdh_generic ecc mei rfkill soundcore lpc_ich intel_soc_dts_iosf int3403_thermal int340x_thermal_zone acpi_als kfifo_buf industrialio pcc_cpufreq int3400_thermal asus_wireless acpi_thermal_rel acpi_pad binfmt_misc i915 i2c_algo_bit drm_kms_helper drm crc32c_intel serio_raw wmi video

Comment 5 Red Hat Bugzilla 2023-09-14 05:41:51 UTC
The needinfo request[s] on this closed bug have been removed as they have been unresolved for 1000 days