Received: by 2002:a25:7ec1:0:0:0:0:0 with SMTP id z184csp4547043ybc; Fri, 15 Nov 2019 06:27:19 -0800 (PST) X-Google-Smtp-Source: APXvYqy9yyGnbIIRsIyfQfbdg4ZWE253zZEeppcyqIPWQOqPilW6YkUjFVXf+0FDxtPoI17xtzxl X-Received: by 2002:ac2:5dcc:: with SMTP id x12mr5546409lfq.163.1573828039575; Fri, 15 Nov 2019 06:27:19 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1573828039; cv=none; d=google.com; s=arc-20160816; b=xaEDjFD71rZJl2CFZLqeHZ5oUXoevEekzPl2RSQIuUxDlIkF5fLX2kezSkM9eTc7JY QZrxVBIjJ4mnyMEqP96b9Og6HZyvlAQSHbSwPa+i39bngAjXapg94sdCeGKKByj1TRhP +rqymL7C6D53x0NzaoGtjKW/suapwv6m9+si8LDwoH8WhLfvhkPaT3Sp/pa98aU6eS0x TmhS0owo73j2/o/1p3xSDi+SKxdYp1S21FnfY8YYQ4Z4bhEUGxo0TzW1J0RoNOIMZpTk EAw7vWORAXiLI2xwbWpvbQWMMxSFqQgRasQnIb3fq3Pnu9YaxqWttfv01DG0lRYFpoJ4 fBcQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:to:from:subject:message-id:date :mime-version; bh=lxkXlVLoGVYo2mh4UfRD7P/UmW4civy6UhUV9/JR4H8=; b=VU/jOgPjIv6YcvOZqKm5EP39emRPiUtHUFjVD6tKQcukmAPFeQ+WFS06cg8O9/SkZu kAdvirNwHLvKpDaed2R53kxI+gd4+H3//OMTsG2p0xIcdRqk29YYGA80xWfaEukq36bo fOzSOvqgUEee/RV8ExIpZyPBcqvFYpT37HF6MeCQ+sKsmN4jN9IrogDuBgppemDdtZrx JhfaAgeuu+NvdPAxf4BSu5RTqfiYdLZ5yeyhkQxxgBZTPDNcuZRLyno1q76dq+b91stV vQKyk7izRSfpRYXSYu1sE05C4Asv/JzSDfbYz6Hfvx72SnwB1I1L4QHi2CPCKPzC1Iul Y7GA== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id u13si5870610eds.75.2019.11.15.06.26.54; Fri, 15 Nov 2019 06:27:19 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=appspotmail.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1727577AbfKOOZK (ORCPT + 99 others); Fri, 15 Nov 2019 09:25:10 -0500 Received: from mail-io1-f70.google.com ([209.85.166.70]:57313 "EHLO mail-io1-f70.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1727406AbfKOOZK (ORCPT ); Fri, 15 Nov 2019 09:25:10 -0500 Received: by mail-io1-f70.google.com with SMTP id u6so7079889ion.23 for ; Fri, 15 Nov 2019 06:25:09 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:date:message-id:subject:from:to; bh=lxkXlVLoGVYo2mh4UfRD7P/UmW4civy6UhUV9/JR4H8=; b=mba/gsVNBUtMRrzFtsgBmuru+qrx59VdbqyFICQfWxQgp2pl8ao0Y+TkwY6ufLGceX E0HeWmiOALDmMJ+MzNg6HwQpvtjro7l2PbaG/OdmD4sGSNUh2RiCInvd5EW/LHVwt+qb 7Z+MfGhaedLHCK6FR9ondA4r22Ccfrfv9oK0IrPeVSanDQeF+rM+a3TbsQaRaNN6awAq wHD8WdixvOnrFP9FaDLIR54Gp9HVUDajswvsoWSv+YaanAriGKny/cxWD16J9h+jkaJG LGe4+vwDFwUiysY/22x40FPLV6+60dVoxYHPS+MEwMrtxEc+MkXh8NfbGE59K2ZwzKl2 DBiw== X-Gm-Message-State: APjAAAWsPFAzKBxF4rzMuAmQCn+igXyzyKIRpUoHrZl2M3MPuJyC2pVl 1T6nsiOQqK0z2dtnnTGvitpHACK9zSjxmQyTOamcovZ8bK0q MIME-Version: 1.0 X-Received: by 2002:a02:370e:: with SMTP id r14mr876881jar.87.1573827908910; Fri, 15 Nov 2019 06:25:08 -0800 (PST) Date: Fri, 15 Nov 2019 06:25:08 -0800 X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <00000000000072cb6c0597635d04@google.com> Subject: INFO: trying to register non-static key in io_cqring_ev_posted From: syzbot To: axboe@kernel.dk, io-uring@vger.kernel.org, linux-fsdevel@vger.kernel.org, linux-kernel@vger.kernel.org, syzkaller-bugs@googlegroups.com, viro@zeniv.linux.org.uk Content-Type: text/plain; charset="UTF-8"; format=flowed; delsp=yes Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Hello, syzbot found the following crash on: HEAD commit: 5a6fcbea Add linux-next specific files for 20191115 git tree: linux-next console output: https://syzkaller.appspot.com/x/log.txt?x=12a3053ce00000 kernel config: https://syzkaller.appspot.com/x/.config?x=8eac90e6ae4ab399 dashboard link: https://syzkaller.appspot.com/bug?extid=0d818c0d39399188f393 compiler: gcc (GCC) 9.0.0 20181231 (experimental) syz repro: https://syzkaller.appspot.com/x/repro.syz?x=157e60cee00000 IMPORTANT: if you fix the bug, please add the following tag to the commit: Reported-by: syzbot+0d818c0d39399188f393@syzkaller.appspotmail.com RSP: 002b:00007ffc38b497f8 EFLAGS: 00000246 ORIG_RAX: 00000000000001a9 RAX: ffffffffffffffda RBX: 00007ffc38b49810 RCX: 000000000045a659 RDX: 0000000000000000 RSI: 0000000020000480 RDI: 0000000000000fcc RBP: 000000000075bf20 R08: 0000000000000000 R09: 0000000000000000 R10: 0000000000000000 R11: 0000000000000246 R12: 0000000001ffc914 R13: 00000000004c1d50 R14: 00000000004d5a58 R15: 0000000000000003 INFO: trying to register non-static key. the code is fine but needs lockdep annotation. turning off the locking correctness validator. CPU: 0 PID: 8724 Comm: syz-executor.0 Not tainted 5.4.0-rc7-next-20191115 #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 Call Trace: __dump_stack lib/dump_stack.c:77 [inline] dump_stack+0x197/0x210 lib/dump_stack.c:118 assign_lock_key kernel/locking/lockdep.c:881 [inline] register_lock_class+0x179e/0x1850 kernel/locking/lockdep.c:1190 __lock_acquire+0xf4/0x4a00 kernel/locking/lockdep.c:3837 lock_acquire+0x190/0x410 kernel/locking/lockdep.c:4485 __raw_spin_lock_irqsave include/linux/spinlock_api_smp.h:110 [inline] _raw_spin_lock_irqsave+0x95/0xcd kernel/locking/spinlock.c:159 __wake_up_common_lock+0xc8/0x150 kernel/sched/wait.c:122 __wake_up+0xe/0x10 kernel/sched/wait.c:142 io_cqring_ev_posted+0xaa/0x120 fs/io_uring.c:629 io_cqring_overflow_flush+0x6d4/0xa90 fs/io_uring.c:676 io_ring_ctx_wait_and_kill+0x27a/0x810 fs/io_uring.c:4291 io_uring_create fs/io_uring.c:4628 [inline] io_uring_setup+0x1264/0x1cd0 fs/io_uring.c:4654 __do_sys_io_uring_setup fs/io_uring.c:4667 [inline] __se_sys_io_uring_setup fs/io_uring.c:4664 [inline] __x64_sys_io_uring_setup+0x54/0x80 fs/io_uring.c:4664 do_syscall_64+0xfa/0x790 arch/x86/entry/common.c:294 entry_SYSCALL_64_after_hwframe+0x49/0xbe RIP: 0033:0x45a659 Code: ad b6 fb ff c3 66 2e 0f 1f 84 00 00 00 00 00 66 90 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 0f 83 7b b6 fb ff c3 66 2e 0f 1f 84 00 00 00 00 RSP: 002b:00007ffc38b497f8 EFLAGS: 00000246 ORIG_RAX: 00000000000001a9 RAX: ffffffffffffffda RBX: 00007ffc38b49810 RCX: 000000000045a659 RDX: 0000000000000000 RSI: 0000000020000480 RDI: 0000000000000fcc RBP: 000000000075bf20 R08: 0000000000000000 R09: 0000000000000000 R10: 0000000000000000 R11: 0000000000000246 R12: 0000000001ffc914 R13: 00000000004c1d50 R14: 00000000004d5a58 R15: 0000000000000003 kasan: CONFIG_KASAN_INLINE enabled kasan: GPF could be caused by NULL-ptr deref or user memory access general protection fault: 0000 [#1] PREEMPT SMP KASAN CPU: 0 PID: 8724 Comm: syz-executor.0 Not tainted 5.4.0-rc7-next-20191115 #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011 RIP: 0010:__wake_up_common+0xdf/0x610 kernel/sched/wait.c:86 Code: 05 00 00 4c 8b 43 38 49 83 e8 18 49 8d 78 18 48 39 7d d0 0f 84 64 02 00 00 48 b8 00 00 00 00 00 fc ff df 48 89 f9 48 c1 e9 03 <80> 3c 01 00 0f 85 0d 05 00 00 49 8b 40 18 89 55 b0 31 db 49 bc 00 RSP: 0018:ffff8880a607fb00 EFLAGS: 00010046 RAX: dffffc0000000000 RBX: ffff8880896b2920 RCX: 0000000000000000 RDX: 0000000000000001 RSI: 1ffffffff1391616 RDI: 0000000000000000 RBP: ffff8880a607fb58 R08: ffffffffffffffe8 R09: ffff8880a607fba8 R10: ffffed1014c0ff59 R11: 0000000000000003 R12: 0000000000000001 R13: 0000000000000282 R14: 0000000000000000 R15: 0000000000000003 FS: 0000000001ffc940(0000) GS:ffff8880ae800000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 0000000020000480 CR3: 000000009ab99000 CR4: 00000000001406f0 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 Call Trace: __wake_up_common_lock+0xea/0x150 kernel/sched/wait.c:123 __wake_up+0xe/0x10 kernel/sched/wait.c:142 io_cqring_ev_posted+0xaa/0x120 fs/io_uring.c:629 io_cqring_overflow_flush+0x6d4/0xa90 fs/io_uring.c:676 io_ring_ctx_wait_and_kill+0x27a/0x810 fs/io_uring.c:4291 io_uring_create fs/io_uring.c:4628 [inline] io_uring_setup+0x1264/0x1cd0 fs/io_uring.c:4654 __do_sys_io_uring_setup fs/io_uring.c:4667 [inline] __se_sys_io_uring_setup fs/io_uring.c:4664 [inline] __x64_sys_io_uring_setup+0x54/0x80 fs/io_uring.c:4664 do_syscall_64+0xfa/0x790 arch/x86/entry/common.c:294 entry_SYSCALL_64_after_hwframe+0x49/0xbe RIP: 0033:0x45a659 Code: ad b6 fb ff c3 66 2e 0f 1f 84 00 00 00 00 00 66 90 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 0f 83 7b b6 fb ff c3 66 2e 0f 1f 84 00 00 00 00 RSP: 002b:00007ffc38b497f8 EFLAGS: 00000246 ORIG_RAX: 00000000000001a9 RAX: ffffffffffffffda RBX: 00007ffc38b49810 RCX: 000000000045a659 RDX: 0000000000000000 RSI: 0000000020000480 RDI: 0000000000000fcc RBP: 000000000075bf20 R08: 0000000000000000 R09: 0000000000000000 R10: 0000000000000000 R11: 0000000000000246 R12: 0000000001ffc914 R13: 00000000004c1d50 R14: 00000000004d5a58 R15: 0000000000000003 Modules linked in: ---[ end trace f5866fc8a39bc759 ]--- RIP: 0010:__wake_up_common+0xdf/0x610 kernel/sched/wait.c:86 Code: 05 00 00 4c 8b 43 38 49 83 e8 18 49 8d 78 18 48 39 7d d0 0f 84 64 02 00 00 48 b8 00 00 00 00 00 fc ff df 48 89 f9 48 c1 e9 03 <80> 3c 01 00 0f 85 0d 05 00 00 49 8b 40 18 89 55 b0 31 db 49 bc 00 RSP: 0018:ffff8880a607fb00 EFLAGS: 00010046 RAX: dffffc0000000000 RBX: ffff8880896b2920 RCX: 0000000000000000 RDX: 0000000000000001 RSI: 1ffffffff1391616 RDI: 0000000000000000 RBP: ffff8880a607fb58 R08: ffffffffffffffe8 R09: ffff8880a607fba8 R10: ffffed1014c0ff59 R11: 0000000000000003 R12: 0000000000000001 R13: 0000000000000282 R14: 0000000000000000 R15: 0000000000000003 FS: 0000000001ffc940(0000) GS:ffff8880ae800000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 0000000020000480 CR3: 000000009ab99000 CR4: 00000000001406f0 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 --- This bug is generated by a bot. It may contain errors. See https://goo.gl/tpsmEJ for more information about syzbot. syzbot engineers can be reached at syzkaller@googlegroups.com. syzbot will keep track of this bug report. See: https://goo.gl/tpsmEJ#status for how to communicate with syzbot. syzbot can test patches for this bug, for details see: https://goo.gl/tpsmEJ#testing-patches