Bug 708361

Summary: [abrt] kernel: general protection fault: 0000 [#1] SMP : TAINTED Die
Product: [Fedora] Fedora Reporter: Ariel Constenla-Haile <ariel.constenla.haile>
Component: kernelAssignee: Kernel Maintainer List <kernel-maint>
Status: CLOSED DUPLICATE QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 15CC: gansalmon, itamar, jonathan, kernel-maint, madhu.chinakonda
Target Milestone: ---   
Target Release: ---   
Hardware: x86_64   
OS: Unspecified   
Whiteboard: abrt_hash:76a1873c7dd1b1a7bf8c7b0315caf340988f1a95
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2011-10-07 17:30:43 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:

Description Ariel Constenla-Haile 2011-05-27 12:35:35 UTC
abrt version: 2.0.1
architecture:   x86_64
cmdline:        ro root=UUID=8e314b19-783f-4be7-9972-9c444cbadcda rd_NO_LUKS rd_NO_LVM rd_NO_MD rd_NO_DM LANG=en_US.UTF-8 SYSFONT=latarcyrheb-sun16 KEYTABLE=es rhgb quiet
component:      kernel
kernel:         2.6.38.6-27.fc15.x86_64
kernel_tainted: 128
os_release:     Fedora release 15 (Lovelock)
package:        kernel
reason:         general protection fault: 0000 [#1] SMP 
time:           Fri May 27 09:26:27 2011

backtrace:
:general protection fault: 0000 [#1] SMP 
:last sysfs file: /sys/devices/pci0000:00/0000:00:09.0/0000:02:00.0/usb8/8-1/8-1:1.0/host10/target10:0:0/10:0:0:0/block/sdc/removable
:CPU 2 
:Modules linked in: usb_storage uas 8021q garp stp llc cpufreq_ondemand powernow_k8 freq_table mperf sunrpc ip6t_REJECT nf_conntrack_ipv6 nf_defrag_ipv6 ip6table_filter ip6_tables snd_hda_codec_hdmi snd_hda_codec_realtek snd_hda_intel snd_hda_codec snd_hwdep snd_seq snd_seq_device xhci_hcd snd_pcm snd_timer r8169 mii sp5100_tco i2c_piix4 serio_raw edac_core edac_mce_amd shpchp wmi k10temp
:sr 10:0:0:1: rejecting I/O to offline device
: snd soundcore snd_page_alloc microcode asus_atk0110 ipv6 firewire_ohci firewire_core ata_generic pata_acpi crc_itu_t pata_atiixp pata_jmicron radeon ttm drm_kms_helper drm i2c_algo_bit i2c_core [last unloaded: scsi_wait_scan]
:Pid: 16408, comm: ata_id Not tainted 2.6.38.6-27.fc15.x86_64 #1 System manufacturer System Product Name/M4A89GTD-PRO/USB3
:RIP: 0010:[<ffffffff812e8a52>]  [<ffffffff812e8a52>] kobj_lookup+0x57/0x179
:RSP: 0018:ffff8800839a7b48  EFLAGS: 00010286
:RAX: 000000000000000f RBX: a000140101012e00 RCX: 00000000000000ff
:RDX: 000000000000000f RSI: 0000000000000055 RDI: ffffffff81a53240
:RBP: ffff8800839a7ba8 R08: ffff88011f80b460 R09: 0000000000000000
:R10: 0000000000000000 R11: 0000000000040001 R12: 0000000000800020
:R13: ffff880117e60800 R14: ffffffffffffffff R15: ffff8800839a7c04
:FS:  00007ffe13faf720(0000) GS:ffff8800cfc80000(0000) knlGS:0000000000000000
:CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
:CR2: 00007ffe1396b427 CR3: 000000008b6a6000 CR4: 00000000000006e0
:DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
:DR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400
:Process ata_id (pid: 16408, threadinfo ffff8800839a6000, task ffff880112068000)
:sr 10:0:0:1: rejecting I/O to offline device
:Stack:
: ffff880115ff6160 0000000000800020 0000000000000008 0000000000000000
: ffffffff81148c60 ffff8800839a7ba0 ffffffff811ed7ba 0000000000800020
: ffff8800839a7c04 0000000000000000 000000000000005d ffff880095fbfd60
:Call Trace:
: [<ffffffff81148c60>] ? bdev_test+0x0/0x19
: [<ffffffff811ed7ba>] ? selinux_inode_alloc_security+0x50/0x85
: [<ffffffff8121cd0b>] get_gendisk+0x35/0xc5
: [<ffffffff81149e52>] __blkdev_get+0x5e/0x348
: [<ffffffff8114a3e3>] ? blkdev_open+0x0/0x6f
: [<ffffffff8114a308>] blkdev_get+0x1cc/0x2a7
: [<ffffffff81149452>] ? bdget+0x107/0x113
: [<ffffffff8114a3e3>] ? blkdev_open+0x0/0x6f
: [<ffffffff8114a44d>] blkdev_open+0x6a/0x6f
: [<ffffffff8111fdc4>] __dentry_open+0x161/0x283
: [<ffffffff81475826>] ? _raw_spin_lock+0xe/0x10
: [<ffffffff81120d38>] nameidata_to_filp+0x60/0x67
: [<ffffffff8112cbe7>] finish_open+0xa1/0x17f
: [<ffffffff8112bd30>] ? do_path_lookup+0xca/0xf6
: [<ffffffff8112d12a>] do_filp_open+0x186/0x60a
: [<ffffffff810f4960>] ? handle_mm_fault+0x1bb/0x1ce
: [<ffffffff8104127e>] ? should_resched+0xe/0x2d
: [<ffffffff814742d0>] ? _cond_resched+0xe/0x22
: [<ffffffff81232601>] ? might_fault+0x21/0x23
: [<ffffffff81136ca9>] ? alloc_fd+0x72/0x11d
: [<ffffffff81120d9f>] do_sys_open+0x60/0xf2
: [<ffffffff81120e51>] sys_open+0x20/0x22
: [<ffffffff81009bc2>] system_call_fastpath+0x16/0x1b
:Code: 41 89 f4 f7 f1 89 f0 48 89 45 a8 89 d2 48 89 55 b0 49 8b bd f8 07 00 00 e8 29 c1 18 00 48 8b 45 b0 49 8b 5c c5 00 e9 fc 00 00 00 <8b> 53 08 44 39 e2 0f 87 ed 00 00 00 48 8b 43 10 48 ff c8 48 01 
:RIP  [<ffffffff812e8a52>] kobj_lookup+0x57/0x179
: RSP <ffff8800839a7b48>

comment:
:- Plugged the iomega eGo BlackBelt Portable Hard Drive on the USB 3.0 port
:- a few seconds later the general protection fault takes place

Comment 1 Josh Boyer 2011-09-26 17:48:51 UTC
Can you reproduce this with the latest 2.6.40 kernel in F15?

Comment 2 Ariel Constenla-Haile 2011-09-28 11:33:57 UTC
Yes, I can:

[  540.076812] usb 9-2: new SuperSpeed USB device number 2 using xhci_hcd
[  540.115954] xhci_hcd 0000:02:00.0: WARN: short transfer on control ep
[  540.121828] xhci_hcd 0000:02:00.0: WARN: short transfer on control ep
[  540.128082] xhci_hcd 0000:02:00.0: WARN: short transfer on control ep
[  540.134202] xhci_hcd 0000:02:00.0: WARN: short transfer on control ep
[  540.134271] usb 9-2: New USB device found, idVendor=059b, idProduct=0070
[  540.134280] usb 9-2: New USB device strings: Mfr=1, Product=2, SerialNumber=3
[  540.134287] usb 9-2: Product: eGo USB
[  540.134292] usb 9-2: Manufacturer: Iomega
[  540.134297] usb 9-2: SerialNumber: 09000000000099A8
[  540.169387] xhci_hcd 0000:02:00.0: WARN: short transfer on control ep
[  540.176702] xhci_hcd 0000:02:00.0: WARN: short transfer on control ep
[  540.228200] xhci_hcd 0000:02:00.0: WARN: short transfer on control ep
[  540.228599] scsi11 : uas
[  540.237143] scsi 11:0:0:0: Direct-Access     OEM      Ext Hard Disk    0000 PQ: 0 ANSI: 5
[  540.240584] mtp-probe[2890]: checking bus 9, device 2: "/sys/devices/pci0000:00/0000:00:09.0/0000:02:00.0/usb9/9-2"
[  540.398377] scsi 11:0:0:1: CD-ROM            Virtual  CDROM                 PQ: 0 ANSI: 0
[  540.398858] sd 11:0:0:0: Attached scsi generic sg4 type 0
[  540.434075] mtp-probe[2890]: bus: 9, device: 2 was not an MTP device
[  540.541629] sd 11:0:0:0: [sdd] 244011446 4096-byte logical blocks: (999 GB/930 GiB)
[  540.587580] sr1: scsi-1 drive
[  540.589505] sr 11:0:0:1: Attached scsi CD-ROM sr1
[  540.589748] sr 11:0:0:1: Attached scsi generic sg5 type 5
[  540.826659] sd 11:0:0:0: [sdd] Write Protect is off
[  540.826670] sd 11:0:0:0: [sdd] Mode Sense: 00 00 00 00
[  540.918357] sd 11:0:0:0: [sdd] Cache data unavailable
[  540.918366] sd 11:0:0:0: [sdd] Assuming drive cache: write through
[  541.062931] sr1: Hmm, seems the drive doesn't support multisession CD's
[  541.110478] xhci_hcd 0000:02:00.0: WARN: babble error on endpoint
[  541.110603] xhci_hcd 0000:02:00.0: WARN Set TR Deq Ptr cmd invalid because of stream ID configuration
[  541.110651] xhci_hcd 0000:02:00.0: ERROR Transfer event for disabled endpoint or incorrect stream ring
[  542.003142] general protection fault: 0000 [#1] SMP 
[  542.003270] CPU 2 
[  542.003316] Modules linked in: ebtable_nat ebtables ipt_MASQUERADE iptable_nat nf_nat xt_CHECKSUM iptable_mangle bridge stp llc vboxnetadp vboxnetflt vboxdrv sunrpc cpufreq_ondemand powernow_k8 mperf bnep bluetooth rfkill ip6t_REJECT nf_conntrack_ipv6 nf_defrag_ipv6 nf_conntrack_netbios_ns nf_conntrack_broadcast nf_conntrack_ipv4 nf_defrag_ipv4 xt_state nf_conntrack ip6table_filter ip6_tables usblp snd_hda_codec_hdmi snd_hda_codec_realtek snd_hda_intel snd_hda_codec snd_hwdep snd_seq snd_seq_device snd_pcm edac_core xhci_hcd snd_timer snd soundcore asus_atk0110 sp5100_tco snd_page_alloc i2c_piix4 edac_mce_amd k10temp r8169 mii serio_raw shpchp microcode virtio_net kvm_amd kvm ipv6 firewire_ohci firewire_core usb_storage ata_generic pata_acpi crc_itu_t uas pata_atiixp pata_jmicron wmi radeon ttm drm_kms_helper drm i2c_algo_bit i2c_core [last unloaded: scsi_wait_scan]
[  542.003929] 
[  542.003929] Pid: 2349, comm: udisks-daemon Not tainted 2.6.40.4-5.fc15.x86_64 #1 System manufacturer System Product Name/M4A89GTD-PRO/USB3
[  542.003929] RIP: 0010:[<ffffffff812fa22a>]  [<ffffffff812fa22a>] kobj_lookup+0x57/0x185
[  542.003929] RSP: 0018:ffff8800bc639b08  EFLAGS: 00010286
[  542.003929] RAX: 000000000000000f RBX: a000140101012e00 RCX: 00000000000000ff
[  542.003929] RDX: 000000000000000f RSI: 0000000000000055 RDI: ffffffff81a5f380
[  542.003929] RBP: ffff8800bc639b68 R08: 0000000000000000 R09: ffff88011f028420
[  542.003929] R10: 0000000000000217 R11: ffff88009c624480 R12: 0000000000800020
[  542.003929] R13: ffff880119060800 R14: ffffffffffffffff R15: ffff8800bc639bc4
[  542.003929] FS:  00007fe1f840a7c0(0000) GS:ffff88011fc80000(0000) knlGS:0000000000000000
[  542.003929] CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[  542.003929] CR2: 00007fca7c2ab000 CR3: 00000000c94c4000 CR4: 00000000000006e0
[  542.003929] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
[  542.003929] DR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400
[  542.003929] Process udisks-daemon (pid: 2349, threadinfo ffff8800bc638000, task ffff8800c19adcc0)
[  542.003929] Stack:
[  542.003929]  0000000000000217 0000000000800020 0000000000000008 ffffffff811f5422
[  542.003929]  ffff8800bc639bb8 ffffffff00000000 00800000bc639f38 0000000000800020
[  542.003929]  ffff8800bc639bc4 0000000000000000 000000000000001d ffff8801131efad0
[  542.003929] Call Trace:
[  542.003929]  [<ffffffff811f5422>] ? avc_has_perm_flags+0x61/0x7a
[  542.003929]  [<ffffffff8122a262>] get_gendisk+0x34/0xc5
[  542.003929]  [<ffffffff8114fcc0>] __blkdev_get+0x7d/0x3a0
[  542.003929]  [<ffffffff811502b6>] ? blkdev_get+0x2d3/0x2d3
[  542.003929]  [<ffffffff811501c7>] blkdev_get+0x1e4/0x2d3
[  542.003929]  [<ffffffff811502b6>] ? blkdev_get+0x2d3/0x2d3
[  542.003929]  [<ffffffff81150320>] blkdev_open+0x6a/0x6f
[  542.003929]  [<ffffffff81125805>] __dentry_open+0x17d/0x2be
[  542.003929]  [<ffffffff8148804e>] ? _raw_spin_lock+0xe/0x10
[  542.003929]  [<ffffffff8112678f>] nameidata_to_filp+0x60/0x67
[  542.003929]  [<ffffffff81131f49>] do_last+0x434/0x581
[  542.003929]  [<ffffffff81132c1b>] path_openat+0xc8/0x31c
[  542.003929]  [<ffffffff812f44e4>] ? put_device+0x17/0x19
[  542.003929]  [<ffffffff81132ea7>] do_filp_open+0x38/0x86
[  542.003929]  [<ffffffff8113c761>] ? alloc_fd+0x72/0x11d
[  542.003929]  [<ffffffff81126804>] do_sys_open+0x6e/0x100
[  542.003929]  [<ffffffff810a0e84>] ? audit_syscall_entry+0x145/0x171
[  542.003929]  [<ffffffff811268b6>] sys_open+0x20/0x22
[  542.003929]  [<ffffffff8148e842>] system_call_fastpath+0x16/0x1b
[  542.003929] Code: 41 89 f4 f7 f1 89 f0 48 89 45 a8 89 d2 48 89 55 b0 49 8b bd f8 07 00 00 e8 8e d1 18 00 48 8b 45 b0 49 8b 5c c5 00 e9 f3 00 00 00 <8b> 53 08 44 39 e2 0f 87 e4 00 00 00 48 8b 43 10 48 ff c8 48 01 
[  542.003929] RIP  [<ffffffff812fa22a>] kobj_lookup+0x57/0x185
[  542.003929]  RSP <ffff8800bc639b08>
[  542.066763] ---[ end trace fef0b806d49bd5a0 ]---

Comment 3 Dave Jones 2011-10-06 22:07:21 UTC
can you reproduce it without the virtualbox modules ?
There a lot of other reports where they seem to be corrupting kernel memory.

Comment 4 Ariel Constenla-Haile 2011-10-07 03:41:20 UTC
(In reply to comment #3)
> can you reproduce it without the virtualbox modules ?
> There a lot of other reports where they seem to be corrupting kernel memory.

yes, I can. See abrt report https://bugzilla.redhat.com/show_bug.cgi?id=744099

Comment 5 Ariel Constenla-Haile 2011-10-07 03:41:59 UTC
*** Bug 744099 has been marked as a duplicate of this bug. ***

Comment 6 Ariel Constenla-Haile 2011-10-07 03:44:55 UTC
Note that:
* No Virtualox module loaded
* plugging it in USB 2 works fine
* some months ago tested with a clean Ubuntu default installation and their
kernel had the same issue (I didn't report the issue with them, as I'm no
Ubuntu user)

Comment 7 Dave Jones 2011-10-07 17:30:43 UTC
as that one is a newer kernel, lets close this bug, and use that one for tracking.

*** This bug has been marked as a duplicate of bug 744099 ***