<html>
    <head>
      <base href="https://bugs.freedesktop.org/">
    </head>
    <body><table border="1" cellspacing="0" cellpadding="8">
        <tr>
          <th>Bug ID</th>
          <td><a class="bz_bug_link 
          bz_status_NEW "
   title="NEW - [CI] igt@gem_sync@basic-many-each - dmesg-warn - BUG kmalloc-32 (Tainted: G U ): Wrong object count. Counter is 19 but counted were -1"
   href="https://bugs.freedesktop.org/show_bug.cgi?id=106092">106092</a>
          </td>
        </tr>

        <tr>
          <th>Summary</th>
          <td>[CI] igt@gem_sync@basic-many-each - dmesg-warn - BUG kmalloc-32 (Tainted: G U ): Wrong object count. Counter is 19 but counted were -1
          </td>
        </tr>

        <tr>
          <th>Product</th>
          <td>DRI
          </td>
        </tr>

        <tr>
          <th>Version</th>
          <td>XOrg git
          </td>
        </tr>

        <tr>
          <th>Hardware</th>
          <td>Other
          </td>
        </tr>

        <tr>
          <th>OS</th>
          <td>All
          </td>
        </tr>

        <tr>
          <th>Status</th>
          <td>NEW
          </td>
        </tr>

        <tr>
          <th>Severity</th>
          <td>normal
          </td>
        </tr>

        <tr>
          <th>Priority</th>
          <td>medium
          </td>
        </tr>

        <tr>
          <th>Component</th>
          <td>DRM/Intel
          </td>
        </tr>

        <tr>
          <th>Assignee</th>
          <td>intel-gfx-bugs@lists.freedesktop.org
          </td>
        </tr>

        <tr>
          <th>Reporter</th>
          <td>martin.peres@free.fr
          </td>
        </tr>

        <tr>
          <th>QA Contact</th>
          <td>intel-gfx-bugs@lists.freedesktop.org
          </td>
        </tr>

        <tr>
          <th>CC</th>
          <td>intel-gfx-bugs@lists.freedesktop.org
          </td>
        </tr></table>
      <p>
        <div>
        <pre><a href="https://intel-gfx-ci.01.org/tree/drm-tip/IGT_4433/fi-hsw-4770/igt@gem_sync@basic-many-each.html">https://intel-gfx-ci.01.org/tree/drm-tip/IGT_4433/fi-hsw-4770/igt@gem_sync@basic-many-each.html</a>

[  234.421550] Setting dangerous option reset - tainting kernel
[  239.288770]
=============================================================================
[  239.289022] BUG kmalloc-32 (Tainted: G     U           ): Wrong object
count. Counter is 19 but counted were -1
[  239.289054]
-----------------------------------------------------------------------------

[  239.289085] Disabling lock debugging due to kernel taint
[  239.289087] INFO: Slab 0x000000001df396bc objects=22 used=19
fp=0x000000002764b72d flags=0x8000000000008101
[  239.289099] CPU: 1 PID: 3482 Comm: gem_sync Tainted: G    BU           
4.17.0-rc1-CI-CI_DRM_4058+ #1
[  239.289100] Hardware name: LENOVO 10AGS00601/SHARKBAY, BIOS FBKT34AUS
04/24/2013
[  239.289101] Call Trace:
[  239.289105]  dump_stack+0x5f/0x8b
[  239.289109]  slab_err+0xa8/0xd0
[  239.289113]  ? lock_acquire+0xaf/0x200
[  239.289115]  ? free_debug_processing+0x37/0x360
[  239.289118]  on_freelist+0x1a9/0x250
[  239.289121]  free_debug_processing+0x198/0x360
[  239.289123]  ? reservation_object_get_fences_rcu+0x60b/0x650
[  239.289125]  __slab_free+0x39c/0x580
[  239.289128]  ? _raw_spin_unlock_irqrestore+0x4c/0x60
[  239.289131]  ? _raw_spin_unlock_irqrestore+0x39/0x60
[  239.289135]  ? debug_check_no_obj_freed+0x12f/0x220
[  239.289137]  ? kfree+0xca/0x2e0
[  239.289139]  ? reservation_object_get_fences_rcu+0x60b/0x650
[  239.289141]  ? reservation_object_get_fences_rcu+0x60b/0x650
[  239.289143]  reservation_object_get_fences_rcu+0x60b/0x650
[  239.289184]  i915_gem_object_wait+0x2b0/0x4b0 [i915]
[  239.289187]  ? trace_hardirqs_on_caller+0xde/0x1c0
[  239.289225]  i915_gem_wait_ioctl+0x121/0x2d0 [i915]
[  239.289258]  ? i915_gem_unset_wedged+0x200/0x200 [i915]
[  239.289261]  drm_ioctl_kernel+0xa3/0xe0
[  239.289264]  drm_ioctl+0x2e2/0x380
[  239.289296]  ? i915_gem_unset_wedged+0x200/0x200 [i915]
[  239.289302]  do_vfs_ioctl+0x9a/0x6a0
[  239.289305]  ? __fget+0x10a/0x1f0
[  239.289308]  ksys_ioctl+0x35/0x60
[  239.289310]  ? do_syscall_64+0xd/0x180
[  239.289313]  __x64_sys_ioctl+0x11/0x20
[  239.289314]  do_syscall_64+0x4f/0x180
[  239.289317]  entry_SYSCALL_64_after_hwframe+0x49/0xbe
[  239.289318] RIP: 0033:0x7f5bd06a55d7
[  239.289320] RSP: 002b:00007f5bba380be8 EFLAGS: 00000246 ORIG_RAX:
0000000000000010
[  239.289322] RAX: ffffffffffffffda RBX: 0000000000000000 RCX:
00007f5bd06a55d7
[  239.289323] RDX: 00007f5bba380c40 RSI: 00000000c010646c RDI:
0000000000000003
[  239.289324] RBP: 00007f5bba380c40 R08: 0000000000000000 R09:
0000000000000000
[  239.289325] R10: 0000000000000000 R11: 0000000000000246 R12:
00000000c010646c
[  239.289326] R13: 0000000000000003 R14: 00007ffc144d0cd0 R15:
00007ffc144ce500
[  239.289330] FIX kmalloc-32: Object count adjusted.

Followed by:

[  239.289352]
=============================================================================
[  239.289363] BUG kmalloc-32 (Tainted: G    BU           ): Wrong object
count. Counter is 21 but counted were -1
[  239.289373]
-----------------------------------------------------------------------------

and:

[  239.289604]
=============================================================================
[  239.289616] BUG kmalloc-32 (Tainted: G    BU           ): Redzone
overwritten
[  239.289629]
-----------------------------------------------------------------------------</pre>
        </div>
      </p>


      <hr>
      <span>You are receiving this mail because:</span>

      <ul>
          <li>You are the QA Contact for the bug.</li>
          <li>You are the assignee for the bug.</li>
          <li>You are on the CC list for the bug.</li>
      </ul>
    </body>
</html>