From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-wm0-f52.google.com (mail-wm0-f52.google.com [74.125.82.52]) by kanga.kvack.org (Postfix) with ESMTP id 9E8BE6B0009 for ; Sun, 24 Jan 2016 05:48:42 -0500 (EST) Received: by mail-wm0-f52.google.com with SMTP id 123so33465018wmz.0 for ; Sun, 24 Jan 2016 02:48:42 -0800 (PST) Received: from mail-wm0-x22b.google.com (mail-wm0-x22b.google.com. [2a00:1450:400c:c09::22b]) by mx.google.com with ESMTPS id ef6si21221291wjd.208.2016.01.24.02.48.41 for (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Sun, 24 Jan 2016 02:48:41 -0800 (PST) Received: by mail-wm0-x22b.google.com with SMTP id 123so33464735wmz.0 for ; Sun, 24 Jan 2016 02:48:41 -0800 (PST) MIME-Version: 1.0 From: Dmitry Vyukov Date: Sun, 24 Jan 2016 11:48:21 +0100 Message-ID: Subject: mm: WARNING in __delete_from_page_cache Content-Type: text/plain; charset=UTF-8 Sender: owner-linux-mm@kvack.org List-ID: To: Matthew Wilcox , Alexander Viro , "linux-fsdevel@vger.kernel.org" , LKML , Andrew Morton , Michal Hocko , Jan Kara , Vlastimil Babka , "Kirill A. Shutemov" , Matthew Wilcox , Junichi Nomura , Greg Thelen , Dave Hansen , "linux-mm@kvack.org" Cc: syzkaller , Kostya Serebryany , Alexander Potapenko , Sasha Levin Hello, The following program triggers WARNING in __delete_from_page_cache: ------------[ cut here ]------------ WARNING: CPU: 0 PID: 7676 at mm/filemap.c:217 __delete_from_page_cache+0x9f6/0xb60() Modules linked in: CPU: 0 PID: 7676 Comm: a.out Not tainted 4.4.0+ #276 Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS Bochs 01/01/2011 00000000ffffffff ffff88006d3f7738 ffffffff82999e2d 0000000000000000 ffff8800620a0000 ffffffff86473d20 ffff88006d3f7778 ffffffff81352089 ffffffff81658d36 ffffffff86473d20 00000000000000d9 ffffea0000009d60 Call Trace: [< inline >] __dump_stack lib/dump_stack.c:15 [] dump_stack+0x6f/0xa2 lib/dump_stack.c:50 [] warn_slowpath_common+0xd9/0x140 kernel/panic.c:482 [] warn_slowpath_null+0x29/0x30 kernel/panic.c:515 [] __delete_from_page_cache+0x9f6/0xb60 mm/filemap.c:217 [] delete_from_page_cache+0x112/0x200 mm/filemap.c:244 [] __dax_fault+0x859/0x1800 fs/dax.c:487 [] blkdev_dax_fault+0x26/0x30 fs/block_dev.c:1730 [< inline >] wp_pfn_shared mm/memory.c:2208 [] do_wp_page+0xc85/0x14f0 mm/memory.c:2307 [< inline >] handle_pte_fault mm/memory.c:3323 [< inline >] __handle_mm_fault mm/memory.c:3417 [] handle_mm_fault+0x2483/0x4640 mm/memory.c:3446 [] __do_page_fault+0x376/0x960 arch/x86/mm/fault.c:1238 [] trace_do_page_fault+0xe8/0x420 arch/x86/mm/fault.c:1331 [] do_async_page_fault+0x14/0xd0 arch/x86/kernel/kvm.c:264 [] async_page_fault+0x28/0x30 arch/x86/entry/entry_64.S:986 [] entry_SYSCALL_64_fastpath+0x16/0x7a arch/x86/entry/entry_64.S:185 ---[ end trace dae21e0f85f1f98c ]--- // autogenerated by syzkaller (http://github.com/google/syzkaller) #include #include #include #include #include #include int main() { syscall(SYS_mmap, 0x20000000ul, 0x10000ul, 0x3ul, 0x32ul, -1, 0x0ul); int fd = syscall(SYS_open, "/dev/ram1", O_RDWR); syscall(SYS_mmap, 0x20a31000ul, 0x3000ul, 0x3ul, 0xb011ul, fd, 0x0ul); *(uint64_t*)0x20003000 = 1; syscall(SYS_write, fd, 0x20003000ul, 0x78ul, 0, 0, 0); syscall(SYS_getresuid, 0x20000688ul, 0x200008f2ul, 0x20a31000ul, 0, 0, 0); return 0; } On commit 30f05309bde49295e02e45c7e615f73aa4e0ccc2. -- To unsubscribe, send a message with 'unsubscribe linux-mm' in the body to majordomo@kvack.org. For more info on Linux MM, see: http://www.linux-mm.org/ . Don't email: email@kvack.org