Bug 881504

Summary: hid_logitech_dj: BUG: unable to handle kernel paging request at ffff88006abad000
Product: [Fedora] Fedora Reporter: JPRochette <jpr473>
Component: kernelAssignee: Benjamin Tissoires <btissoir>
Status: CLOSED INSUFFICIENT_DATA QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 17CC: gansalmon, itamar, jonathan, kernel-maint, madhu.chinakonda, sgruszka
Target Milestone: ---   
Target Release: ---   
Hardware: x86_64   
OS: Unspecified   
Whiteboard: abrt_hash:0ed67addc3e85b59a02948be0337c9acb3f09050
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2013-05-28 14:39:28 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description JPRochette 2012-11-29 01:54:19 UTC
Additional info:
libreport version: 2.0.18
abrt_version:   2.0.18
cmdline:        BOOT_IMAGE=/vmlinuz-3.6.7-4.fc17.x86_64 root=/dev/mapper/vg_laptopjp-lv_root ro rd.lvm.lv=vg_laptopjp/lv_swap rd.md=0 rd.dm=0 SYSFONT=True rd.lvm.lv=vg_laptopjp/lv_root KEYTABLE=us rd.luks=0 LANG=en_US.UTF-8 rhgb quiet
kernel:         3.6.7-4.fc17.x86_64

backtrace:
:BUG: unable to handle kernel paging request at ffff88006abad000
:IP: [<ffffffff814d373d>] implement+0x6d/0x110
:PGD 1c0c063 PUD 1fffc067 PMD 78faa063 PTE 800000006abad161
:Oops: 0003 [#1] SMP 
:Modules linked in: fuse bnep bluetooth nf_conntrack_netbios_ns ip6t_REJECT nf_conntrack_broadcast nf_conntrack_ipv6 nf_conntrack_ipv4 nf_defrag_ipv6 nf_defrag_ipv4 ip6table_filter xt_state nf_conntrack ip6_tables snd_hda_codec_hdmi snd_hda_codec_idt coretemp arc4 iwldvm snd_hda_intel snd_hda_codec kvm mac80211 snd_hwdep snd_seq snd_seq_device snd_pcm iTCO_wdt iTCO_vendor_support snd_page_alloc iwlwifi i2c_i801 cfg80211 rfkill lpc_ich dell_laptop snd_timer snd mfd_core dell_wmi microcode e1000e soundcore sparse_keymap dcdbas uinput mmc_block firewire_ohci firewire_core sdhci_pci sdhci mmc_core crc_itu_t yenta_socket hid_logitech_dj wmi i915 video i2c_algo_bit drm_kms_helper drm i2c_core
:CPU 1 
:Pid: 843, comm: Xorg Not tainted 3.6.7-4.fc17.x86_64 #1 Dell Inc. Latitude E6400                  /0RX493
:RIP: 0010:[<ffffffff814d373d>]  [<ffffffff814d373d>] implement+0x6d/0x110
:RSP: 0018:ffff8800786d5c28  EFLAGS: 00010086
:RAX: ff00000000000000 RBX: 00000000000000ff RCX: 0000000000000000
:RDX: 0000000000000040 RSI: ffff88006abacff9 RDI: ffff8800767d4000
:RBP: ffff8800786d5c58 R08: ff00000000000000 R09: ffff88006abacff1
:R10: 0000000000000000 R11: 0000000000000001 R12: 0000000000000000
:R13: 0000000000000040 R14: ffff88006abacff1 R15: ffff8800767d4000
:FS:  00007f90028b58c0(0000) GS:ffff88007cf00000(0000) knlGS:0000000000000000
:CS:  0010 DS: 0000 ES: 0000 CR0: 000000008005003b
:CR2: ffff88006abad000 CR3: 00000000786e9000 CR4: 00000000000007e0
:DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
:DR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400
:Process Xorg (pid: 843, threadinfo ffff8800786d4000, task ffff880036ffdc40)
:Stack:
: 000000010000ffff 0000000000000008 0000000000000024 ffff8800767d4000
: 0000000000000048 ffff880036bf0200 ffff8800786d5cd8 ffffffff814d38ec
: ffff8800786d5ca8 ffff880036b36800 ffff880036b36818 0000000000000070
:Call Trace:
: [<ffffffff814d38ec>] hid_output_report+0x10c/0x180
: [<ffffffff814e1f3d>] __usbhid_submit_report+0xdd/0x3a0
: [<ffffffff814e2342>] usbhid_submit_report+0x52/0x80
: [<ffffffffa00f310d>] logi_dj_ll_input_event+0x10d/0x180 [hid_logitech_dj]
: [<ffffffff8147daec>] input_handle_event+0x6c/0x4b0
: [<ffffffff8147dfbc>] input_inject_event+0x8c/0xa0
: [<ffffffff8148173e>] evdev_write+0xde/0x160
: [<ffffffff8119008c>] vfs_write+0xac/0x180
: [<ffffffff811903ba>] sys_write+0x4a/0x90
: [<ffffffff81626d69>] system_call_fastpath+0x16/0x1b
:Code: 39 c3 72 7e 44 89 ee 44 89 e9 48 89 d8 83 e1 07 c1 ee 03 45 89 e0 4c 01 f6 48 d3 e0 41 21 d8 48 f7 d0 48 23 06 49 d3 e0 49 09 c0 <4c> 89 06 48 8b 5d d8 4c 8b 65 e0 4c 8b 6d e8 4c 8b 75 f0 4c 8b 
:RIP  [<ffffffff814d373d>] implement+0x6d/0x110
: RSP <ffff8800786d5c28>
:CR2: ffff88006abad000

Comment 1 Josh Boyer 2013-03-11 20:07:55 UTC
Benjamin, this is an older kernel and the issue might already be fixed, but I thought you would want to see this.

Comment 2 Benjamin Tissoires 2013-03-12 11:11:54 UTC
Thanks Josh for notifying me.

The call stack suggests that the pagefault is triggered when writing events to the node (in the same way evemu does). This is not a nominal use case, so I'd like some more information on how the bug was triggered.

JPRochette, please provide the user-space program that triggered the bug (if any and if you are able to reproduce it). Also, I'd like to know which event node triggered the page fault.

Comment 3 Josh Boyer 2013-05-28 14:39:28 UTC
This bug is being closed with INSUFFICIENT_DATA as there has not been a response in 2 weeks. If you are still experiencing this issue, please reopen and attach the relevant data from the latest kernel you are running and any data that might have been requested previously.