Description of problem: A race condition is possible between IO being throttled and the throttle completing that can lead to a crash in librbd clients. Version-Release number of selected component (if applicable): 4.0 How reproducible: Race condition Steps to Reproduce: 1. enable QoS throttles on an RBD image 2. perform intensive IO to trigger the throttles Actual results: ceph version 14.2.9 (581f22da52345dba46ee232b73b990f06029a2a0) nautilus (stable) 1: (ceph::__ceph_assert_fail(char const*, char const*, int, char const*)+0x14a) [0x7f9955cf0875] 2: (()+0x253a3d) [0x7f9955cf0a3d] 3: (()+0x2127e1) [0x7f995f1fe7e1] 4: (()+0xc654c) [0x7f995f0b254c] 5: (()+0xab539) [0x7f995f097539] 6: (TokenBucketThrottle::add_tokens()+0xdc) [0x7f9955dbad8c] 7: (TokenBucketThrottle::schedule_timer()+0xb3) [0x7f9955dbaea3] 8: (FunctionContext::finish(int)+0x2c) [0x7f9955dbf11c] 9: (Context::complete(int)+0x9) [0x7f9955d6fd89] 10: (SafeTimer::timer_thread()+0x180) [0x7f9955dc1bf0] 11: (SafeTimerThread::entry()+0xd) [0x7f9955dc345d] 12: (()+0x7e25) [0x7f99541d7e25] 13: (clone()+0x6d) [0x7f9952a7d34d] 0> 2020-08-07 07:19:22.172 7f99357fb700 -1 *** Caught signal (Aborted) ** in thread 7f99357fb700 thread_name:safe_timer Expected results: librbd does not throw an assertion Additional info:
Please specify the severity of this bug. Severity is defined here: https://bugzilla.redhat.com/page.cgi?id=fields.html#bug_severity.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Important: Red Hat Ceph Storage 4.2 Security and Bug Fix update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2021:0081