Bug 769847

Summary: NULL dereference in btrfs_print_leaf
Product: [Fedora] Fedora Reporter: Yaric <yaricp>
Component: kernelAssignee: Zach Brown <zab>
Status: CLOSED INSUFFICIENT_DATA QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 16CC: gansalmon, itamar, jonathan, kernel-maint, madhu.chinakonda, sweil
Target Milestone: ---   
Target Release: ---   
Hardware: x86_64   
OS: Unspecified   
Whiteboard: abrt_hash:d8a1fe2c91e6ad633f23345fbebd7549b605618e
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2012-09-04 14:35:55 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:

Description Yaric 2011-12-22 14:05:29 UTC
libreport version: 2.0.8
abrt_version:   2.0.6
cmdline:        BOOT_IMAGE=/boot/vmlinuz-3.1.0-7.fc16.x86_64 root=/dev/sda3
kernel:         3.1.0-7.fc16.x86_64
reason:         BUG: unable to handle kernel NULL pointer dereference at 0000000000000020
time:           Пт. 09 дек. 2011 02:06:50

backtrace:
:BUG: unable to handle kernel NULL pointer dereference at 0000000000000020
:IP: [<ffffffffa0148d65>] btrfs_print_leaf+0x2d/0x767 [btrfs]
:PGD 0 
:Oops: 0000 [#1] SMP 
:CPU 3 
:Modules linked in: ufs qnx4 hfsplus hfs minix vfat msdos fat jfs xfs reiserfs ppp_deflate ppp_async crc_ccitt ppp_generic slhc option usb_wwan tcp_lp nls_utf8 fuse rfcomm lockd bnep ip6t_REJECT nf_conntrack_ipv4 nf_conntrack_ipv6 nf_defrag_ipv4 nf_defrag_ipv6 xt_state ip6table_filter nf_conntrack ip6_tables snd_hda_codec_realtek btusb ppdev parport_pc serio_raw snd_hda_intel snd_hda_codec edac_core snd_hwdep bluetooth parport forcedeth snd_seq rfkill k10temp edac_mce_amd snd_seq_device snd_pcm snd_timer snd soundcore snd_page_alloc microcode i2c_nforce2 binfmt_misc uinput sunrpc btrfs zlib_deflate libcrc32c pata_acpi ata_generic pata_amd uas usb_storage nouveau ttm drm_kms_helper drm i2c_algo_bit i2c_core mxm_wmi wmi video [last unloaded: scsi_wait_scan]
:Pid: 7188, comm: umount Not tainted 3.1.0-7.fc16.x86_64 #1 To Be Filled By O.E.M. To Be Filled By O.E.M./N68PV-GS
:RIP: 0010:[<ffffffffa0148d65>]  [<ffffffffa0148d65>] btrfs_print_leaf+0x2d/0x767 [btrfs]
:RSP: 0018:ffff880102b51a08  EFLAGS: 00010292
:RAX: 0000160000000000 RBX: ffff880127bee510 RCX: 0000000000001000
:RDX: 00000000ed63f000 RSI: 0000000000000000 RDI: ffff8800364c7400
:RBP: ffff880102b51a88 R08: ffff880102b50000 R09: 0000000000000000
:R10: 0000000000860237 R11: 0000000009e6a000 R12: ffff880000000000
:R13: 0000160000000000 R14: 0000000000000002 R15: 0000000000000000
:FS:  00007f5845d1f800(0000) GS:ffff88012fd80000(0000) knlGS:0000000000000000
:CS:  0010 DS: 0000 ES: 0000 CR0: 000000008005003b
:CR2: 0000000000000020 CR3: 00000001022ee000 CR4: 00000000000006e0
:DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
:DR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400
:Process umount (pid: 7188, threadinfo ffff880102b50000, task ffff8800802d9730)
:Stack:
: ffff880102b51a18 00000000ed669000 ffff880102b51a28 ffff8800364c7400
: ffffffff02b51a78 ffffffff8111a62f ffff880102b51a68 0000000000000090
: a800000000ed6690 0000000000001000 0000000000000000 ffff880127bee510
:Call Trace:
: [<ffffffff8111a62f>] ? kmem_cache_alloc+0x31/0xf8
: [<ffffffffa01430a2>] __btrfs_free_extent+0x259/0x563 [btrfs]
: [<ffffffff811170bd>] ? virt_to_head_page+0xe/0x31
: [<ffffffff81118cfb>] ? kfree+0x4d/0xda
: [<ffffffffa01812e6>] ? btrfs_delayed_ref_lock+0x3f/0x9d [btrfs]
: [<ffffffffa01454fd>] run_clustered_refs+0x60c/0x656 [btrfs]
: [<ffffffffa0181400>] ? btrfs_find_ref_cluster+0xbc/0x145 [btrfs]
: [<ffffffffa0145618>] btrfs_run_delayed_refs+0xd1/0x17c [btrfs]
: [<ffffffffa0151e27>] commit_cowonly_roots+0x78/0x188 [btrfs]
: [<ffffffff81044023>] ? should_resched+0xe/0x2d
: [<ffffffffa01530dd>] btrfs_commit_transaction+0x3fa/0x700 [btrfs]
: [<ffffffff81073406>] ? remove_wait_queue+0x3a/0x3a
: [<ffffffffa015385b>] ? start_transaction+0x1fd/0x253 [btrfs]
: [<ffffffffa0137487>] btrfs_sync_fs+0x8a/0xa1 [btrfs]
: [<ffffffff8114b4fc>] __sync_filesystem+0x63/0x77
: [<ffffffff8114b571>] sync_filesystem+0x49/0x4d
: [<ffffffff8112a910>] generic_shutdown_super+0x32/0xb9
: [<ffffffff8112aa14>] kill_anon_super+0x13/0x1e
: [<ffffffff8112ace1>] deactivate_locked_super+0x37/0x68
: [<ffffffff8112b54f>] deactivate_super+0x37/0x3b
: [<ffffffff8114023d>] mntput_no_expire+0xcc/0xd1
: [<ffffffff81140dfa>] sys_umount+0x2ac/0x2da
: [<ffffffff814bc482>] system_call_fastpath+0x16/0x1b
:Code: 89 e5 41 57 41 56 41 55 41 54 53 48 83 ec 58 66 66 66 66 90 49 bd 00 00 00 00 00 16 00 00 49 bc 00 00 00 00 00 88 ff ff 4c 89 e8 
:RIP  [<ffffffffa0148d65>] btrfs_print_leaf+0x2d/0x767 [btrfs]
: RSP <ffff880102b51a08>

Comment 1 Dave Jones 2012-03-22 17:04:15 UTC
[mass update]
kernel-3.3.0-4.fc16 has been pushed to the Fedora 16 stable repository.
Please retest with this update.

Comment 2 Dave Jones 2012-03-22 17:07:13 UTC
[mass update]
kernel-3.3.0-4.fc16 has been pushed to the Fedora 16 stable repository.
Please retest with this update.

Comment 3 Dave Jones 2012-03-22 17:18:20 UTC
[mass update]
kernel-3.3.0-4.fc16 has been pushed to the Fedora 16 stable repository.
Please retest with this update.