<html>
<head>
<base href="https://bugs.freedesktop.org/">
</head>
<body><table border="1" cellspacing="0" cellpadding="8">
<tr>
<th>Bug ID</th>
<td><a class="bz_bug_link
bz_status_NEW "
title="NEW - [CI][DRMTIP] igt@runner@aborted - fail - BUG dentry (Tainted: *): Poison overwritten"
href="https://bugs.freedesktop.org/show_bug.cgi?id=111160">111160</a>
</td>
</tr>
<tr>
<th>Summary</th>
<td>[CI][DRMTIP] igt@runner@aborted - fail - BUG dentry (Tainted: *): Poison overwritten
</td>
</tr>
<tr>
<th>Product</th>
<td>DRI
</td>
</tr>
<tr>
<th>Version</th>
<td>DRI git
</td>
</tr>
<tr>
<th>Hardware</th>
<td>Other
</td>
</tr>
<tr>
<th>OS</th>
<td>All
</td>
</tr>
<tr>
<th>Status</th>
<td>NEW
</td>
</tr>
<tr>
<th>Severity</th>
<td>normal
</td>
</tr>
<tr>
<th>Priority</th>
<td>medium
</td>
</tr>
<tr>
<th>Component</th>
<td>DRM/Intel
</td>
</tr>
<tr>
<th>Assignee</th>
<td>intel-gfx-bugs@lists.freedesktop.org
</td>
</tr>
<tr>
<th>Reporter</th>
<td>lakshminarayana.vudum@intel.com
</td>
</tr>
<tr>
<th>QA Contact</th>
<td>intel-gfx-bugs@lists.freedesktop.org
</td>
</tr>
<tr>
<th>CC</th>
<td>intel-gfx-bugs@lists.freedesktop.org
</td>
</tr></table>
<p>
<div>
<pre><a href="https://intel-gfx-ci.01.org/tree/drm-tip/drmtip_323/fi-apl-guc/igt@runner@aborted.html">https://intel-gfx-ci.01.org/tree/drm-tip/drmtip_323/fi-apl-guc/igt@runner@aborted.html</a>
Aborting.
Previous test: kms_prop_blob (blob-prop-validate)
Next test: kms_big_fb (yf-tiled-32bpp-rotate-0)
Kernel badly tainted (0x60) (check dmesg for details):
(0x20) TAINT_BAD_PAGE: Bad page reference or an unexpected page flags.
===========================================================================
BUG dentry (Tainted: G U ): Poison overwritten
<3>[ 352.765682]
-----------------------------------------------------------------------------
<4>[ 352.765776] Disabling lock debugging due to kernel taint
<3>[ 352.765780] INFO: 0x00000000d0ed77a5-0x00000000d0ed77a5. First byte 0x7b
instead of 0x6b
<3>[ 352.765847] INFO: Allocated in __d_alloc+0x1d/0x200 age=303520 cpu=0
pid=965
<3>[ 352.765903] __slab_alloc.isra.28.constprop.34+0x3d/0x70
<3>[ 352.765945] kmem_cache_alloc+0x21c/0x280
<3>[ 352.765978] __d_alloc+0x1d/0x200
<3>[ 352.766007] d_alloc_pseudo+0x5/0x20
<3>[ 352.766038] alloc_file_pseudo+0x5c/0x100
<3>[ 352.766071] __shmem_file_setup.part.13+0xb9/0x130
<3>[ 352.766202] i915_gem_object_create_shmem.part.1+0x58/0x1f0 [i915]
<3>[ 352.766324] i915_gem_create+0x47/0xc0 [i915]
<3>[ 352.766361] drm_ioctl_kernel+0x83/0xf0
<3>[ 352.766393] drm_ioctl+0x2f3/0x3b0
<3>[ 352.766423] do_vfs_ioctl+0xa0/0x6e0
<3>[ 352.766453] ksys_ioctl+0x35/0x60
<3>[ 352.766482] __x64_sys_ioctl+0x11/0x20
<3>[ 352.766514] do_syscall_64+0x55/0x1c0
<3>[ 352.766546] entry_SYSCALL_64_after_hwframe+0x49/0xbe
<3>[ 352.766588] INFO: Freed in __dentry_kill+0x134/0x190 age=266330 cpu=3
pid=146
<3>[ 352.766642] kmem_cache_free+0x275/0x2e0
<3>[ 352.766675] __dentry_kill+0x134/0x190
<3>[ 352.766707] dentry_kill+0x4b/0x1b0
<3>[ 352.766737] dput+0x262/0x2c0
<3>[ 352.766764] __fput+0x102/0x220
<3>[ 352.766791] delayed_fput+0x17/0x30
<3>[ 352.766821] process_one_work+0x245/0x610
<3>[ 352.766854] worker_thread+0x37/0x380
<3>[ 352.766886] kthread+0x119/0x130
<3>[ 352.766913] ret_from_fork+0x3a/0x50
<3>[ 352.766944] INFO: Slab 0x0000000052417425 objects=26 used=26
fp=0x00000000dc034aa7 flags=0x8000000000010200
<3>[ 352.767015] INFO: Object 0x00000000f8b793a7 @offset=10616
fp=0x00000000e060f198
<3>[ 352.767082] Redzone 00000000: bb bb bb bb bb bb bb bb
........
<3>[ 352.767141] Object 00000000: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767205] Object 00000010: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767268] Object 00000020: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767332] Object 00000030: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767396] Object 00000040: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767459] Object 00000050: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767523] Object 00000060: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767586] Object 00000070: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767650] Object 00000080: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767713] Object 00000090: 6b 6b 6b 6b 6b 6b 6b 6b 7b 6b 6b 6b 6b 6b 6b
6b kkkkkkkk{kkkkkkk
<3>[ 352.767776] Object 000000a0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767840] Object 000000b0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767903] Object 000000c0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.767967] Object 000000d0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.768030] Object 000000e0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.768094] Object 000000f0: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.768157] Object 00000100: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
6b kkkkkkkkkkkkkkkk
<3>[ 352.768220] Object 00000110: 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b
a5 kkkkkkkkkkkkkkk.
<3>[ 352.768284] Redzone 00000000: bb bb bb bb bb bb bb bb
........
<3>[ 352.768343] Padding 00000000: 5a 5a 5a 5a 5a 5a 5a 5a
ZZZZZZZZ
<4>[ 352.768405] CPU: 3 PID: 957 Comm: igt_runner Tainted: G BU
5.2.0-gf870335815ab-drmtip_323+ #1
<4>[ 352.768407] Hardware name: Intel corporation NUC6CAYS/NUC6CAYB, BIOS
AYAPLCEL.86A.0056.2018.0926.1100 09/26/2018
<4>[ 352.768410] Call Trace:
<4>[ 352.768416] dump_stack+0x67/0x9b
<4>[ 352.768421] check_bytes_and_report+0xbd/0x100
<4>[ 352.768427] check_object+0x22a/0x270
<4>[ 352.768432] ? __d_alloc+0x1d/0x200
<4>[ 352.768435] alloc_debug_processing+0x17a/0x190
<4>[ 352.768440] ___slab_alloc.constprop.35+0x355/0x380
<4>[ 352.768443] ? __d_alloc+0x1d/0x200
<4>[ 352.768450] ? lock_acquire+0xa6/0x1c0
<4>[ 352.768454] ? __d_alloc+0x1d/0x200
<4>[ 352.768458] ? __slab_alloc.isra.28.constprop.34+0x3d/0x70
<4>[ 352.768461] __slab_alloc.isra.28.constprop.34+0x3d/0x70
<4>[ 352.768465] ? __d_alloc+0x1d/0x200
<4>[ 352.768468] kmem_cache_alloc+0x21c/0x280
<4>[ 352.768473] __d_alloc+0x1d/0x200
<4>[ 352.768477] d_alloc_pseudo+0x5/0x20
<4>[ 352.768481] alloc_file_pseudo+0x5c/0x100
<4>[ 352.768486] ? current_time+0x42/0x80
<4>[ 352.768492] create_pipe_files+0x107/0x1b0
<4>[ 352.768498] __do_pipe_flags+0x2b/0xc0
<4>[ 352.768503] do_pipe2+0x28/0xb0
<4>[ 352.768508] __x64_sys_pipe+0xb/0x10
<4>[ 352.768511] do_syscall_64+0x55/0x1c0
<4>[ 352.768515] entry_SYSCALL_64_after_hwframe+0x49/0xbe
<4>[ 352.768518] RIP: 0033:0x7fa6e0766a07
<4>[ 352.768522] Code: 73 01 c3 48 8b 0d 81 a4 2d 00 f7 d8 64 89 01 48 83 c8
ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 b8 16 00 00 00 0f 05 <48> 3d
01 f0 ff ff 73 01 c3 48 8b 0d 51 a4 2d 00 f7 d8 64 89 01 48
<4>[ 352.768525] RSP: 002b:00007ffd8e5639b8 EFLAGS: 00000207 ORIG_RAX:
0000000000000016
<4>[ 352.768528] RAX: ffffffffffffffda RBX: 00007ffd8e563d10 RCX:
00007fa6e0766a07
<4>[ 352.768530] RDX: 0000000000000002 RSI: 0000000000000000 RDI:
00007ffd8e563a20
<4>[ 352.768531] RBP: 0000000000000030 R08: 0000000000000000 R09:
0000000000000000
<4>[ 352.768533] R10: 00000000000001b6 R11: 0000000000000207 R12:
00007ffd8e563cf0
<4>[ 352.768535] R13: 0000000000000005 R14: 0000000000000003 R15:
00007ffd8e563c70
<3>[ 352.768547] FIX dentry: Restoring
0x00000000d0ed77a5-0x00000000d0ed77a5=0x6b
<3>[ 352.768614] FIX dentry: Marking all objects used
<6>[ 352.817159] Console: switching to colour dummy device 80x25
<7>[ 352.817248] [IGT] kms_prop_blob: executing
<7>[ 352.860026] [IGT] kms_prop_blob: starting subtest blob-prop-validate
<7>[ 352.860316] [IGT] kms_prop_blob: exiting, ret=0
<5>[ 352.860760] Setting dangerous option reset - tainting kernel
<6>[ 352.881827] Console: switching to colour frame buffer device 240x67</pre>
</div>
</p>
<hr>
<span>You are receiving this mail because:</span>
<ul>
<li>You are the QA Contact for the bug.</li>
<li>You are on the CC list for the bug.</li>
<li>You are the assignee for the bug.</li>
</ul>
</body>
</html>