Bug 1599045 - [abrt] replace_extent_mapping: list_del corruption. prev->next should be ffff9502ab2a7d70, but was 7fff9502ab2a7d70 [btrfs]
Summary: [abrt] replace_extent_mapping: list_del corruption. prev->next should be ffff...
Keywords:
Status: CLOSED NOTABUG
Alias: None
Product: Fedora
Classification: Fedora
Component: kernel
Version: 28
Hardware: x86_64
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
Assignee: Kernel Maintainer List
QA Contact: Fedora Extras Quality Assurance
URL: https://retrace.fedoraproject.org/faf...
Whiteboard: abrt_hash:3eaffcccf039505c4aab5775f62...
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2018-07-08 08:16 UTC by Adam Hunt
Modified: 2018-07-08 23:11 UTC (History)
16 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2018-07-08 23:11:41 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)
File: dmesg (71.77 KB, text/plain)
2018-07-08 08:16 UTC, Adam Hunt
no flags Details

Description Adam Hunt 2018-07-08 08:16:14 UTC
Additional info:
reporter:       libreport-2.9.5
list_del corruption. prev->next should be ffff9502ab2a7d70, but was 7fff9502ab2a7d70
------------[ cut here ]------------
kernel BUG at lib/list_debug.c:53!
invalid opcode: 0000 [#1] SMP PTI
Modules linked in: binfmt_misc xt_CHECKSUM ipt_MASQUERADE nf_nat_masquerade_ipv4 ip6t_rpfilter ip6t_REJECT nf_reject_ipv6 xt_conntrack ebtable_nat ebtable_broute ip6table_nat nf_conntrack_ipv6 nf_defrag_ipv6 nf_nat_ipv6 ip6table_mangle ip6table_raw ip6table_security iptable_nat nf_conntrack_ipv4 nf_defrag_ipv4 nf_nat_ipv4 nf_nat nf_conntrack iptable_mangle iptable_raw iptable_security ebtable_filter ebtables ip6table_filter ip6_tables fuse rfcomm hid_apple hidp tun devlink ip_set nfnetlink bridge stp llc cmac bnep intel_rapl x86_pkg_temp_thermal intel_powerclamp coretemp kvm_intel kvm arc4 snd_hda_codec_realtek iwldvm snd_hda_codec_generic irqbypass crct10dif_pclmul crc32_pclmul mei_wdt gpio_ich mac80211 ghash_clmulni_intel intel_cstate intel_uncore vfat fat iwlwifi intel_rapl_perf btusb
 i915 snd_usb_audio btrtl snd_usbmidi_lib joydev btbcm snd_hda_intel snd_rawmidi btintel cfg80211 bluetooth i2c_i801 snd_hda_codec snd_hda_core snd_hwdep snd_seq lpc_ich snd_seq_device snd_pcm ecdh_generic rfkill i2c_algo_bit drm_kms_helper mei_me drm snd_timer mei video snd ie31200_edac shpchp soundcore btrfs libcrc32c xor zstd_decompress zstd_compress xxhash hid_logitech_hidpp raid6_pq crc32c_intel e1000e hid_logitech_dj [last unloaded: ip6_tables]
CPU: 1 PID: 18959 Comm: pool Not tainted 4.17.3-200.fc28.x86_64 #1
Hardware name:  /DQ77MK, BIOS MKQ7710H.86A.0071.2015.0728.1443 07/28/2015
RIP: 0010:__list_del_entry_valid.cold.1+0x34/0x4c
RSP: 0018:ffffabc14bdaba38 EFLAGS: 00010246
RAX: 0000000000000054 RBX: ffff9502d0b363f0 RCX: 0000000000000000
RDX: 0000000000000000 RSI: ffff9508de296938 RDI: ffff9508de296938
RBP: ffff9502ab2a7cf0 R08: 0000000000000005 R09: 000000000000246a
R10: 0000000000000000 R11: ffffffff939981ae R12: ffff95081f320d88
R13: 0000000000000001 R14: ffff9502ab2a7d70 R15: ffff9502d0b363f0
FS:  00007f3759b7c700(0000) GS:ffff9508de280000(0000) knlGS:0000000000000000
CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
CR2: 00007f522bde1000 CR3: 00000003178cc006 CR4: 00000000001606e0
Call Trace:
 replace_extent_mapping+0xe8/0x120 [btrfs]
 btrfs_drop_extent_cache+0x204/0x410 [btrfs]
 __btrfs_drop_extents+0x47d/0xd30 [btrfs]
 ? get_alloc_profile+0x83/0x160 [btrfs]
 ? can_overcommit.part.71+0x4c/0xd0 [btrfs]
 ? reserve_metadata_bytes+0x7d1/0xac0 [btrfs]
 btrfs_drop_extents+0x5a/0x80 [btrfs]
 btrfs_clone+0xa9f/0xfb0 [btrfs]
 btrfs_dedupe_file_range+0x4fa/0x5e0 [btrfs]
 vfs_dedupe_file_range+0x252/0x290
 do_vfs_ioctl+0x4a2/0x610
 ksys_ioctl+0x60/0x90
 ? ksys_write+0x9c/0xb0
 __x64_sys_ioctl+0x16/0x20
 do_syscall_64+0x5b/0x160
 entry_SYSCALL_64_after_hwframe+0x44/0xa9
RIP: 0033:0x7f375b0ade17
RSP: 002b:00007f3759b7bbc8 EFLAGS: 00000246 ORIG_RAX: 0000000000000010
RAX: ffffffffffffffda RBX: 00007f370a6a0e00 RCX: 00007f375b0ade17
RDX: 00007f370a6a0dc0 RSI: 00000000c0189436 RDI: 0000000000000006
RBP: 00007f3746354e20 R08: 00007f3746354e70 R09: 00007f3759b7b730
R10: 0000000000000000 R11: 0000000000000246 R12: 00007f3746354e58
R13: 00007f370a6a0dc0 R14: 00007f3746354e60 R15: 00007f3746354e60
Code: a8 7d 10 93 e8 b8 02 ca ff 0f 0b 48 c7 c7 58 7e 10 93 e8 aa 02 ca ff 0f 0b 48 89 f2 48 89 fe 48 c7 c7 18 7e 10 93 e8 96 02 ca ff <0f> 0b 48 89 fe 48 c7 c7 e0 7d 10 93 e8 85 02 ca ff 0f 0b 90 90 
RIP: __list_del_entry_valid.cold.1+0x34/0x4c RSP: ffffabc14bdaba38

Comment 1 Adam Hunt 2018-07-08 08:16:29 UTC
Created attachment 1457253 [details]
File: dmesg

Comment 2 Adam Hunt 2018-07-08 23:11:41 UTC
I'm going to close this issue for now since I'm not currently able to reliably trigger a crash making it nearly impossible to debug. If I am able to narrow down the exact cause I'll likely open a new issue in the kernel tracker for greater visibility.


Note You need to log in before you can comment on or make changes to this bug.