From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by smtp.lore.kernel.org (Postfix) with ESMTP id 02BE9EB64DA for ; Mon, 19 Jun 2023 15:14:38 +0000 (UTC) Received: by kanga.kvack.org (Postfix) id 6CD088D0002; Mon, 19 Jun 2023 11:14:38 -0400 (EDT) Received: by kanga.kvack.org (Postfix, from userid 40) id 67DD28D0001; Mon, 19 Jun 2023 11:14:38 -0400 (EDT) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id 56C3C8D0002; Mon, 19 Jun 2023 11:14:38 -0400 (EDT) X-Delivered-To: linux-mm@kvack.org Received: from relay.hostedemail.com (smtprelay0015.hostedemail.com [216.40.44.15]) by kanga.kvack.org (Postfix) with ESMTP id 48D618D0001 for ; Mon, 19 Jun 2023 11:14:38 -0400 (EDT) Received: from smtpin15.hostedemail.com (a10.router.float.18 [10.200.18.1]) by unirelay10.hostedemail.com (Postfix) with ESMTP id 16E9FC0C81 for ; Mon, 19 Jun 2023 15:14:38 +0000 (UTC) X-FDA: 80919844236.15.D3AF64D Received: from mail-io1-f78.google.com (mail-io1-f78.google.com [209.85.166.78]) by imf20.hostedemail.com (Postfix) with ESMTP id 3BBD11C0022 for ; Mon, 19 Jun 2023 15:14:35 +0000 (UTC) Authentication-Results: imf20.hostedemail.com; dkim=none; spf=pass (imf20.hostedemail.com: domain of 323CQZAkbACoYefQGRRKXGVVOJ.MUUMRKaYKXIUTZKTZ.IUS@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com designates 209.85.166.78 as permitted sender) smtp.mailfrom=323CQZAkbACoYefQGRRKXGVVOJ.MUUMRKaYKXIUTZKTZ.IUS@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com; dmarc=fail reason="SPF not aligned (relaxed), No valid DKIM" header.from=appspotmail.com (policy=none) ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=hostedemail.com; s=arc-20220608; t=1687187676; h=from:from:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:mime-version:mime-version: content-type:content-type:content-transfer-encoding:in-reply-to: references; bh=CWdqkF9fjtWsJ4T/pIJKWqa8TolLcvybFPb84QHvsUM=; b=RO09flbzCR5UTVeI71lDLuOdDP80tXxV9CdyV6OYWQ7VihDClvbdZQu9z/qx4n3hQvzqEH JS/oUWNsieG1NQTbVJVMW8cIojfvJ696ms2Pc5RWVEP8xGD5TWlm+hDfpuUEw9MOnXj44t iW/YR9F94JlUKi2yHHAMV67dyZQDX1Q= ARC-Authentication-Results: i=1; imf20.hostedemail.com; dkim=none; spf=pass (imf20.hostedemail.com: domain of 323CQZAkbACoYefQGRRKXGVVOJ.MUUMRKaYKXIUTZKTZ.IUS@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com designates 209.85.166.78 as permitted sender) smtp.mailfrom=323CQZAkbACoYefQGRRKXGVVOJ.MUUMRKaYKXIUTZKTZ.IUS@M3KW2WVRGUFZ5GODRSRYTGD7.apphosting.bounces.google.com; dmarc=fail reason="SPF not aligned (relaxed), No valid DKIM" header.from=appspotmail.com (policy=none) ARC-Seal: i=1; s=arc-20220608; d=hostedemail.com; t=1687187676; a=rsa-sha256; cv=none; b=EbeIV7dJjgTeYDuEYUbiCU7+Z8lcui7ByX6wFR6Z8iHDaSdbKjFqMc0BfZtcUjRJ0a3nAo 8ZUBwGQIpkAtVsJ6M9gGkTBOwu+dxX5MPBxagWlNlIDkmt1ZQp7z0tQ6bJEKwiae2O+Pm2 Gtjoc8tFcyJaEKGc/ycAbLsA5KfpF14= Received: by mail-io1-f78.google.com with SMTP id ca18e2360f4ac-77a1f4e92cdso312461939f.1 for ; Mon, 19 Jun 2023 08:14:35 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1687187675; x=1689779675; h=to:from:subject:message-id:date:mime-version:x-gm-message-state :from:to:cc:subject:date:message-id:reply-to; bh=CWdqkF9fjtWsJ4T/pIJKWqa8TolLcvybFPb84QHvsUM=; b=HDaWAhJcpI5Cvnu+3ukoQqFgYudO0hZxqFyaXcNDgpxN+Jnr31RrFOEa6plm+65F7m SWH//XYxPKPdEp4rUFp7QmoxGzevPAkqfI+Lisvw61a+1/LwRuOL0abH5PWemLWLoedI IJQ23l4oqHmV8cHNxQ9ZMpCWbP35vdb1SZl8UrDK7ICrYGfXv6DCopMa5FQcEVoAjB6q QIXCUt1XOOT9uDSx3iom8+2058z3GPXErvoN3od6FE2VE1BiseqYfTZOGhMtXl0sjxtv pQn0YSMM+xz7pmAH55bDe/GBd0i6smgZ7k/ARC8KUlLpznSsBJhWibXc6nii2gp1bnZ/ A6Cw== X-Gm-Message-State: AC+VfDxvB+oxsfPDZ8Qj59xAY5BdohTH5GOVUYonDVgj3U+00G9hRfvv wSM5D0zmzdKULRNlkQBE+FZ9RUjEat10D85R4iQXvqQfJgnd X-Google-Smtp-Source: ACHHUZ6aEEl1LDQo+VNSHKoVZE2usIZheW12BKRc/qoUEGPL9jTg5ak2yE1FxeK4jkr/XVN5lb+eHOL0zowHNShrF6sGnB3LYDjm MIME-Version: 1.0 X-Received: by 2002:a92:c986:0:b0:340:5928:e058 with SMTP id y6-20020a92c986000000b003405928e058mr2771094iln.3.1687187675387; Mon, 19 Jun 2023 08:14:35 -0700 (PDT) Date: Mon, 19 Jun 2023 08:14:35 -0700 X-Google-Appengine-App-Id: s~syzkaller X-Google-Appengine-App-Id-Alias: syzkaller Message-ID: <0000000000000fa09c05fe7cfea6@google.com> Subject: [syzbot] [mm?] inconsistent lock state in lru_gen_rotate_memcg From: syzbot To: akpm@linux-foundation.org, linux-kernel@vger.kernel.org, linux-mm@kvack.org, syzkaller-bugs@googlegroups.com Content-Type: text/plain; charset="UTF-8" X-Rspamd-Queue-Id: 3BBD11C0022 X-Rspam-User: X-Stat-Signature: x5mgbygj511eokibpkusqdbekb4nzn1c X-Rspamd-Server: rspam01 X-HE-Tag: 1687187675-178850 X-HE-Meta: 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 aHtLaOiC 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 O7iN7/W/ Wzh6Z8cMK30jR1xKd6AR8Hws76T3ITo64ChVp2Reloq98US0807OKX7UN+qwYTxfRwQYSdxzo+dw7Kv2DDZq0kVmIcUOWroOKBZ5+Q9wqLePECsDsH6BmZDIVhO51G3hPqOn6Br6Zg8OhxLdmCTjWFZAnvViTKIkqB6OpFDwf1bxcjHs40avByrqjDEDOo3xXiyzJTV1RQGgfQ7a6I8Umo9vCN9K/ip1/Ue88Nnkc5HbAOgkR1kh2N+yGTDxjflG3YJ1/Z4Nez0Mv0eaLb4MGygUEdsrAfQwJ+i/y8AJ1ETtKhhDfBfZMx1U0+MIgDxJzKPWWuV5LUuaMb0VWA3M0oheTG4aAgsQK2uHstcr1ek= X-Bogosity: Ham, tests=bogofilter, spamicity=0.000000, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: Hello, syzbot found the following issue on: HEAD commit: 40f71e7cd3c6 Merge tag 'net-6.4-rc7' of git://git.kernel.o.. git tree: upstream console output: https://syzkaller.appspot.com/x/log.txt?x=1154eb17280000 kernel config: https://syzkaller.appspot.com/x/.config?x=b55c7ca2258f24ba dashboard link: https://syzkaller.appspot.com/bug?extid=87c490fd2be656269b6a compiler: gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2 syz repro: https://syzkaller.appspot.com/x/repro.syz?x=12acd517280000 C reproducer: https://syzkaller.appspot.com/x/repro.c?x=14276ecf280000 Downloadable assets: disk image (non-bootable): https://storage.googleapis.com/syzbot-assets/7bc7510fe41f/non_bootable_disk-40f71e7c.raw.xz vmlinux: https://storage.googleapis.com/syzbot-assets/1d6d986d5baf/vmlinux-40f71e7c.xz kernel image: https://storage.googleapis.com/syzbot-assets/cb0c02dd7f64/bzImage-40f71e7c.xz IMPORTANT: if you fix the issue, please add the following tag to the commit: Reported-by: syzbot+87c490fd2be656269b6a@syzkaller.appspotmail.com ================================ WARNING: inconsistent lock state 6.4.0-rc6-syzkaller-00195-g40f71e7cd3c6 #0 Not tainted -------------------------------- inconsistent {SOFTIRQ-ON-W} -> {IN-SOFTIRQ-W} usage. syz-executor192/6901 [HC0[0]:SC1[1]:HE0:SE0] takes: ffff88807ffdc728 (&pgdat->memcg_lru.lock){+.?.}-{2:2}, at: spin_lock include/linux/spinlock.h:350 [inline] ffff88807ffdc728 (&pgdat->memcg_lru.lock){+.?.}-{2:2}, at: lru_gen_rotate_memcg+0x64/0xab0 mm/vmscan.c:4749 {SOFTIRQ-ON-W} state was registered at: lock_acquire kernel/locking/lockdep.c:5705 [inline] lock_acquire+0x1b1/0x520 kernel/locking/lockdep.c:5670 __raw_spin_lock include/linux/spinlock_api_smp.h:133 [inline] _raw_spin_lock+0x2e/0x40 kernel/locking/spinlock.c:154 spin_lock include/linux/spinlock.h:350 [inline] lru_gen_online_memcg+0x16b/0x5a0 mm/vmscan.c:4797 mem_cgroup_css_online+0x227/0x3b0 mm/memcontrol.c:5468 online_css+0xaf/0x2a0 kernel/cgroup/cgroup.c:5491 cgroup_init_subsys+0x46b/0x900 kernel/cgroup/cgroup.c:6022 cgroup_init+0xb83/0x1090 kernel/cgroup/cgroup.c:6106 start_kernel+0x398/0x490 init/main.c:1077 x86_64_start_reservations+0x18/0x30 arch/x86/kernel/head64.c:556 x86_64_start_kernel+0xb3/0xc0 arch/x86/kernel/head64.c:537 secondary_startup_64_no_verify+0xf4/0xfb irq event stamp: 1403 hardirqs last enabled at (1402): [] mod_memcg_state include/linux/memcontrol.h:982 [inline] hardirqs last enabled at (1402): [] memcg_account_kmem+0x4f/0x80 mm/memcontrol.c:3094 hardirqs last disabled at (1403): [] uncharge_batch+0x1c7/0x560 mm/memcontrol.c:7142 softirqs last enabled at (1178): [] rcu_read_unlock_bh include/linux/rcupdate.h:839 [inline] softirqs last enabled at (1178): [] __dev_queue_xmit+0x1df2/0x3b10 net/core/dev.c:4271 softirqs last disabled at (1253): [] invoke_softirq kernel/softirq.c:445 [inline] softirqs last disabled at (1253): [] __irq_exit_rcu+0x114/0x190 kernel/softirq.c:650 other info that might help us debug this: Possible unsafe locking scenario: CPU0 ---- lock(&pgdat->memcg_lru.lock); lock(&pgdat->memcg_lru.lock); *** DEADLOCK *** 2 locks held by syz-executor192/6901: #0: ffffffff8e10b9e8 (rtnl_mutex){+.+.}-{3:3}, at: rtnl_lock net/core/rtnetlink.c:78 [inline] #0: ffffffff8e10b9e8 (rtnl_mutex){+.+.}-{3:3}, at: rtnetlink_rcv_msg+0x3e8/0xd50 net/core/rtnetlink.c:6414 #1: ffffffff8c795fe0 (rcu_callback){....}-{0:0}, at: rcu_do_batch kernel/rcu/tree.c:2104 [inline] #1: ffffffff8c795fe0 (rcu_callback){....}-{0:0}, at: rcu_core+0x791/0x1ad0 kernel/rcu/tree.c:2377 stack backtrace: CPU: 3 PID: 6901 Comm: syz-executor192 Not tainted 6.4.0-rc6-syzkaller-00195-g40f71e7cd3c6 #0 Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.14.0-2 04/01/2014 Call Trace: __dump_stack lib/dump_stack.c:88 [inline] dump_stack_lvl+0xd9/0x150 lib/dump_stack.c:106 print_usage_bug kernel/locking/lockdep.c:3949 [inline] valid_state kernel/locking/lockdep.c:3991 [inline] mark_lock_irq kernel/locking/lockdep.c:4194 [inline] mark_lock.part.0+0x1110/0x1970 kernel/locking/lockdep.c:4656 mark_lock kernel/locking/lockdep.c:4620 [inline] mark_usage kernel/locking/lockdep.c:4545 [inline] __lock_acquire+0x1227/0x5f30 kernel/locking/lockdep.c:5042 lock_acquire kernel/locking/lockdep.c:5705 [inline] lock_acquire+0x1b1/0x520 kernel/locking/lockdep.c:5670 __raw_spin_lock include/linux/spinlock_api_smp.h:133 [inline] _raw_spin_lock+0x2e/0x40 kernel/locking/spinlock.c:154 spin_lock include/linux/spinlock.h:350 [inline] lru_gen_rotate_memcg+0x64/0xab0 mm/vmscan.c:4749 lru_gen_soft_reclaim+0x62/0x70 mm/vmscan.c:4852 uncharge_batch+0x2be/0x560 mm/memcontrol.c:7145 __mem_cgroup_uncharge+0x11f/0x290 mm/memcontrol.c:7221 mem_cgroup_uncharge include/linux/memcontrol.h:698 [inline] __folio_put_small mm/swap.c:105 [inline] __folio_put+0xb6/0x140 mm/swap.c:129 folio_put include/linux/mm.h:1430 [inline] put_page include/linux/mm.h:1499 [inline] free_page_and_swap_cache+0x257/0x2c0 mm/swap_state.c:305 __tlb_remove_table arch/x86/include/asm/tlb.h:34 [inline] __tlb_remove_table_free mm/mmu_gather.c:153 [inline] tlb_remove_table_rcu+0x89/0xe0 mm/mmu_gather.c:208 rcu_do_batch kernel/rcu/tree.c:2115 [inline] rcu_core+0x806/0x1ad0 kernel/rcu/tree.c:2377 __do_softirq+0x1d4/0x905 kernel/softirq.c:571 invoke_softirq kernel/softirq.c:445 [inline] __irq_exit_rcu+0x114/0x190 kernel/softirq.c:650 irq_exit_rcu+0x9/0x20 kernel/softirq.c:662 sysvec_apic_timer_interrupt+0x97/0xc0 arch/x86/kernel/apic/apic.c:1106 asm_sysvec_apic_timer_interrupt+0x1a/0x20 arch/x86/include/asm/idtentry.h:645 RIP: 0010:__sanitizer_cov_trace_pc+0x3b/0x70 kernel/kcov.c:207 Code: 81 e1 00 01 00 00 65 48 8b 14 25 00 bc 03 00 a9 00 01 ff 00 74 0e 85 c9 74 35 8b 82 0c 16 00 00 85 c0 74 2b 8b 82 e8 15 00 00 <83> f8 02 75 20 48 8b 8a f0 15 00 00 8b 92 ec 15 00 00 48 8b 01 48 RSP: 0018:ffffc9000420ecf8 EFLAGS: 00000246 RAX: 0000000000000000 RBX: 0000000000000064 RCX: 0000000000000000 RDX: ffff888044f60380 RSI: ffffffff8a021a9b RDI: 0000000000000001 RBP: ffff88802b6d6004 R08: 0000000000000001 R09: 000000000000006e R10: 0000000000000064 R11: 0000000000094001 R12: ffff888054ea8005 R13: 00000000ffffffff R14: 00000000ffffffff R15: dffffc0000000000 vsscanf+0x34b/0x2600 lib/vsprintf.c:3518 sscanf+0xbf/0xf0 lib/vsprintf.c:3716 __dev_alloc_name net/core/dev.c:1065 [inline] dev_alloc_name_ns+0x343/0x610 net/core/dev.c:1099 dev_get_valid_name+0x69/0x170 net/core/dev.c:1134 register_netdevice+0x3ba/0x1640 net/core/dev.c:10006 veth_newlink+0x352/0x9d0 drivers/net/veth.c:1897 rtnl_newlink_create net/core/rtnetlink.c:3465 [inline] __rtnl_newlink+0x10c2/0x1840 net/core/rtnetlink.c:3682 rtnl_newlink+0x68/0xa0 net/core/rtnetlink.c:3695 rtnetlink_rcv_msg+0x43d/0xd50 net/core/rtnetlink.c:6417 netlink_rcv_skb+0x165/0x440 net/netlink/af_netlink.c:2546 netlink_unicast_kernel net/netlink/af_netlink.c:1339 [inline] netlink_unicast+0x547/0x7f0 net/netlink/af_netlink.c:1365 netlink_sendmsg+0x925/0xe30 net/netlink/af_netlink.c:1913 sock_sendmsg_nosec net/socket.c:724 [inline] sock_sendmsg+0xde/0x190 net/socket.c:747 ____sys_sendmsg+0x71c/0x900 net/socket.c:2503 ___sys_sendmsg+0x110/0x1b0 net/socket.c:2557 __sys_sendmsg+0xf7/0x1c0 net/socket.c:2586 do_syscall_x64 arch/x86/entry/common.c:50 [inline] do_syscall_64+0x39/0xb0 arch/x86/entry/common.c:80 entry_SYSCALL_64_after_hwframe+0x63/0xcd RIP: 0033:0x7f0ee7a7d049 Code: 28 00 00 00 75 05 48 83 c4 28 c3 e8 41 16 00 00 90 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 b8 ff ff ff f7 d8 64 89 01 48 RSP: 002b:00007ffe607e0d88 EFLAGS: 00000246 ORIG_RAX: 000000000000002e RAX: ffffffffffffffda RBX: 0000000000000003 RCX: 00007f0ee7a7d049 RDX: 0000000000000000 RSI: 0000000020000040 RDI: 0000000000000003 RBP: 0000000000000000 R08: 0000000000000003 R09: 0000000000000003 R10: 0000000000000003 R11: 0000000000000246 R12: 00007ffe607e0db8 R13: 00007ffe607e0dd0 R14: 00007ffe607e0e10 R15: 00000000000006cd ---------------- Code disassembly (best guess): 0: 81 e1 00 01 00 00 and $0x100,%ecx 6: 65 48 8b 14 25 00 bc mov %gs:0x3bc00,%rdx d: 03 00 f: a9 00 01 ff 00 test $0xff0100,%eax 14: 74 0e je 0x24 16: 85 c9 test %ecx,%ecx 18: 74 35 je 0x4f 1a: 8b 82 0c 16 00 00 mov 0x160c(%rdx),%eax 20: 85 c0 test %eax,%eax 22: 74 2b je 0x4f 24: 8b 82 e8 15 00 00 mov 0x15e8(%rdx),%eax * 2a: 83 f8 02 cmp $0x2,%eax <-- trapping instruction 2d: 75 20 jne 0x4f 2f: 48 8b 8a f0 15 00 00 mov 0x15f0(%rdx),%rcx 36: 8b 92 ec 15 00 00 mov 0x15ec(%rdx),%edx 3c: 48 8b 01 mov (%rcx),%rax 3f: 48 rex.W --- This report is generated by a bot. It may contain errors. See https://goo.gl/tpsmEJ for more information about syzbot. syzbot engineers can be reached at syzkaller@googlegroups.com. syzbot will keep track of this issue. See: https://goo.gl/tpsmEJ#status for how to communicate with syzbot. If the bug is already fixed, let syzbot know by replying with: #syz fix: exact-commit-title If you want syzbot to run the reproducer, reply with: #syz test: git://repo/address.git branch-or-commit-hash If you attach or paste a git patch, syzbot will apply it before testing. If you want to change bug's subsystems, reply with: #syz set subsystems: new-subsystem (See the list of subsystem names on the web dashboard) If the bug is a duplicate of another bug, reply with: #syz dup: exact-subject-of-another-report If you want to undo deduplication, reply with: #syz undup