From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by smtp.lore.kernel.org (Postfix) with ESMTP id 60DF9C3ABDD for ; Fri, 16 May 2025 07:19:52 +0000 (UTC) Received: by kanga.kvack.org (Postfix) id 7D1D46B00C9; Fri, 16 May 2025 03:19:50 -0400 (EDT) Received: by kanga.kvack.org (Postfix, from userid 40) id 75A076B00CA; Fri, 16 May 2025 03:19:50 -0400 (EDT) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id 5F9346B00CB; Fri, 16 May 2025 03:19:50 -0400 (EDT) X-Delivered-To: linux-mm@kvack.org Received: from relay.hostedemail.com (smtprelay0012.hostedemail.com [216.40.44.12]) by kanga.kvack.org (Postfix) with ESMTP id 393976B00C9 for ; Fri, 16 May 2025 03:19:50 -0400 (EDT) Received: from smtpin14.hostedemail.com (a10.router.float.18 [10.200.18.1]) by unirelay03.hostedemail.com (Postfix) with ESMTP id B2457BF50D for ; Fri, 16 May 2025 07:19:50 +0000 (UTC) X-FDA: 83447921340.14.B69AF91 Received: from mail-lj1-f177.google.com (mail-lj1-f177.google.com [209.85.208.177]) by imf29.hostedemail.com (Postfix) with ESMTP id A4ED112000A for ; Fri, 16 May 2025 07:19:48 +0000 (UTC) Authentication-Results: imf29.hostedemail.com; dkim=pass header.d=gmail.com header.s=20230601 header.b=aR2fmUTW; spf=pass (imf29.hostedemail.com: domain of ryncsn@gmail.com designates 209.85.208.177 as permitted sender) smtp.mailfrom=ryncsn@gmail.com; dmarc=pass (policy=none) header.from=gmail.com ARC-Authentication-Results: i=1; imf29.hostedemail.com; dkim=pass header.d=gmail.com header.s=20230601 header.b=aR2fmUTW; spf=pass (imf29.hostedemail.com: domain of ryncsn@gmail.com designates 209.85.208.177 as permitted sender) smtp.mailfrom=ryncsn@gmail.com; dmarc=pass (policy=none) header.from=gmail.com ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=hostedemail.com; s=arc-20220608; t=1747379988; h=from:from:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:cc:mime-version:mime-version: content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references:dkim-signature; bh=5Cvtor7EYo2wv/aN9AfOOSgsg4I1Yp7G2aSj5lPNRXA=; b=QnbSb+sWkZNOVhR0vdLCA3ECYJmBfpllNmm9yPaB14vm9ijsPAPySO8kVvC2J5JEMfLG32 a4sNzGe20MXDuMO26pd37Jqr3qJzrthTSDEA2DBvyDhRTamgVxlFYSN/aGxrpHt4I5eisE GGYDOnHqgGc5b0rVfZqm3BIs40+rYNc= ARC-Seal: i=1; s=arc-20220608; d=hostedemail.com; t=1747379988; a=rsa-sha256; cv=none; b=nd0SX580RM98rpt9a/nSgLo3ECf+PT/J2XWyATpuzLVdOjL+LFa3dpphILQDp00gmT0Yw+ OV/Rc+x+taTpMynvlege7/M0cEucmqk6MWp7msF2MjdwJKfCznF3fwazv23KRAwdWR32lY LyMkfPSQLOc9byaJtCDSboCMRcQvWzs= Received: by mail-lj1-f177.google.com with SMTP id 38308e7fff4ca-32805275d68so5005821fa.3 for ; Fri, 16 May 2025 00:19:48 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1747379987; x=1747984787; darn=kvack.org; h=content-transfer-encoding:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:from:to:cc:subject:date :message-id:reply-to; bh=5Cvtor7EYo2wv/aN9AfOOSgsg4I1Yp7G2aSj5lPNRXA=; b=aR2fmUTWGTHKwPLnvjihRljqAK3k1m8fHQMYc5NBX9tesXFL22A7JMcUfpTwJEbcKU o5CqWPZgm3kpGO4NjpNexbZbd3lh5x0NTf1fAkogBRCUyxMZgzEV8GgcNLCb6S4+uBxU FLRSeodJ3jgKR6X1jDG523nWd+ggTZoZTa43GUSnfbqD7rtoycIL2y25HM4Njl0pOvap ovcAlnRc1nxZ988yFeRlPXw096CzEAS4zg2vjjB9HWB/pBvWSxZCrJSTI98nsjnhLfSe ECoDuwdLjUWposZCBT3G9pX1wjoH85Og7RHtdzJCY9RfZPtBxwHvZ1zEyd1JDFFvsTwA PumQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1747379987; x=1747984787; h=content-transfer-encoding:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:x-gm-message-state:from:to:cc :subject:date:message-id:reply-to; bh=5Cvtor7EYo2wv/aN9AfOOSgsg4I1Yp7G2aSj5lPNRXA=; b=peUDJooJ1s5VF9IRRR1X19ovHXakrUEpWYEq/hUR3zealK4aiFVKvyGsQZVdDJyteF wzXbLyEm4A9G81Ek+1TAr39PHla4vVHZ3Q3WOg3CBSFN40nIegY3VmRXIbcIl97jt5e4 MkpyIEykwor5/AenwyxfZ9lQHRkvFP6A61KoErpbl35gVQsOzFictBArvyza3ipItVu1 ktWvu3OUyqOUGKs36fO16PWCQZTgOpbiNy5/LBBMq8746RhwLQBDG1dEz77zWutra/C0 sQj06X9ykCjnVDKpof5ykNGIQoYVD7meX4RbWntBSpVMho67xjg1po+aN5PB1Kv9JYcZ /r1Q== X-Forwarded-Encrypted: i=1; AJvYcCWrl8CgAWhMGD7hVkLg/dYI2I/ORnZ3KRBC5gHW16048cXuNM4vspdDq9I07Pd75N9TuUa2Q/ab+Q==@kvack.org X-Gm-Message-State: AOJu0YyCgPOYmBQE3yrg1xYFtGJC/PAMChSOBJF6lbmnsacKbriRdqUl AvPqrhOX43CLwvvSnmSMprVEDWBNMLdUsr27biFnUQun9hBTAWPTdG1cnrLqDQxeVJHdwzxUfgn 7Nx2c9l3BEk+D07BOMhGf3YUzGczwe+s= X-Gm-Gg: ASbGncuZBf6SV1l8qeIORkIly8jeNjqCMdt7yKS8uoAavODhz0f+M1gb1OZiQWCnfu2 +B7Ods8cfoZaziOV7xqKrp0CHJE/ImXRmt4YZb4dkB3Hr1119D1c/LGg1VMToqHE1X4Qe8Oh/XO CX1rBob7MWmIMFviM/4kuzP3SPAdIbjIcF X-Google-Smtp-Source: AGHT+IEl91TQxYqJIhlqh/ZcP1OCKmMHvtQZVVBG/Fd1UPeoAuKGCfoHx6lfHMWt4jXDV8FpjGGc9iIvPKYWa9ZEMv0= X-Received: by 2002:a05:651c:2229:b0:30b:efa5:69c3 with SMTP id 38308e7fff4ca-3280778ac09mr9488641fa.22.1747379986309; Fri, 16 May 2025 00:19:46 -0700 (PDT) MIME-Version: 1.0 References: <202505161438.9009cf47-lkp@intel.com> In-Reply-To: <202505161438.9009cf47-lkp@intel.com> From: Kairui Song Date: Fri, 16 May 2025 15:19:29 +0800 X-Gm-Features: AX0GCFuKcFPQlefeHLH9spg5_9eG3r685sqC1okCV1jcXcte5gZKhcp9zmL-ydg Message-ID: Subject: Re: [linus:master] [mm, swap] b487a2da35: BUG:soft_lockup-CPU##stuck_for#s![stress-ng-swap:#] To: Kemeng Shi , kernel test robot Cc: oe-lkp@lists.linux.dev, lkp@intel.com, linux-kernel@vger.kernel.org, Andrew Morton , Baolin Wang , Baoquan He , Barry Song , Chris Li , "Huang, Ying" , Hugh Dickins , Johannes Weiner , Kalesh Singh , Matthew Wilcow , Nhat Pham , Yosry Ahmed , linux-mm@kvack.org Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Rspamd-Server: rspam04 X-Rspamd-Queue-Id: A4ED112000A X-Stat-Signature: u8z3ypce5w48trazfutxs4z7kf79icdy X-Rspam-User: X-HE-Tag: 1747379988-110433 X-HE-Meta: U2FsdGVkX1+lH1WB/ELd96yq9Swsmuaj3RnXDuhyWHrmIMzbRVYapP8RcWtyyPsduFSnBJU4SuQ16iylZ1jUkdTwaahIIYnUs8O8Ux/0A+Jhdc3PRUn0j9h8eeO1y5IKG+KnjKqX7r77H+AaRsy4VtCJ3gXmDUz6T2LfeM+ezEWaYYbbFMaL6bpCCtz7SXA24QLC1ovm4TEQuv9VR3rfM0QmRfUKMX7woAMK9MNcyQP+8LAiFcVFRKvezPKLecrYJdqnoFn26pLv6MPHo2JUgXREFrhqy2C4OJXYaQ8BzQNdw0kSckcGBHzA6rd65Nat+gVsJ2pzFtA/Axc6TQKUd8XmGRspQ/nraH6rQXQ5TDoOLFHabRav8R9OWI65ir+JxGFEuT6MwvqX828eqJu3h2wuFwTXUgpW7ROMBHfDnCujFpVi4nYp3P3v8JTiEeqv9bb+a4Z4VypFe/lOXV/4lSh2slRweicU0KvMAyeOIszdthVNbfF+6Kb9HGTc+0d/sdG3fvhjoUZ6y6U3RaaMAtGT9zM90JW7Szm1+rsJRgPjaAWX1H1bKA+WZ/IrMV3eRZMgQnDyyu6IHpDqE6+WKdeqmiWeXjjl50W82W2PzMbhPMge5ZQTw194WXiPtDrcYDJ7WljEhmJvt+cNy58BxkZbWIGA9AUmgiCTFisotYfLZtw2Of5pZjv9aaVxczRgRL4zo3l3vphCboIMul60kedLrnr6Bv9s1p6L/O86X2nCfwICNbq6loGQ7yH/kNJCSthMwyKriqAIEWHIrC+jSV7pZI4I1ODpspSMCEOlF9g5CSPM+fDo+xX+G8+YIuey1+8aHFVYcZGveKggIqeYIUgs56eJBaeO/vmDEJIv5HWbDIeUuFVT5or3uSpPKkc3pPRUpVyGiyESMtj6dXH/1s8Z4MKMPTxHthKBcSVkMfIkFTkIqedtN3atekwJYZZBbZ/mDThEIKSnqZAe0/B 822a3CkG lieYdhOZjILCiz1u0e06W8meqd/iTa5cfD6zISzHHky0RTphMhhOLSjZW0rZn+KwDkvGaCEzpJzAxXsde93xxGUvFyQd2E7XFWVcgp/C3Hy4cycFh3LDgFy9xUXK0aoUModx+Z2pYkeZglkczwMLKF5NL0bbzfCfa4PiUuDbinS7w7b9M9fnvGb4GDe55Vgapg6HzA2dj8uZ066X0/Gb6VO/ayGUIg5yJIJ/BQhAKkXCVjvOHD2ztW2iR/aQtlPorT0BQnAvJvOaKh6NXFYApJD732wKtgDbZeXAVIhV0IIYeivh3QeHy+xI+wzdeua8loYlhZh3xCajUGMZ29cVSh5ec6cxW5XtDWMVsZPcdw4M/1GLZtWFJ7I+4nTB4EUkf9GjSZCRyLgXout0vyZOrGNTjc3xLVKKaC94keFIYJ3iQaRN1oYIEK/SQUNDPW3g/85tfLu7+FhSYEKuCQt5Szxolef3xESbpcO2TX1YsakLjxcmi4uA8qcYKokjrbghQhH1tvZxCCtyGgb+m67PeYpmTRR7FqNIyqJwESNbSjDAkO7WTzUE4XjD4ug== X-Bogosity: Ham, tests=bogofilter, spamicity=0.000000, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: List-Subscribe: List-Unsubscribe: On Fri, May 16, 2025 at 2:37=E2=80=AFPM kernel test robot wrote: > > > > Hello, > > kernel test robot noticed "BUG:soft_lockup-CPU##stuck_for#s![stress-ng-sw= ap:#]" on: > > commit: b487a2da3575b6cdfb6d6559311830c8fea70bb9 ("mm, swap: simplify fol= io swap allocation") > https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git master > > [test failed on linus/master fee3e843b309444f48157e2188efa6818bae85c= f] > [test failed on linux-next/master 484803582c77061b470ac64a634f25f89715be3= f] > > in testcase: stress-ng > version: stress-ng-x86_64-f76f86ffb-1_20250412 > with following parameters: > > nr_threads: 100% > disk: 1HDD > testtime: 60s > fs: xfs > test: swap > cpufreq_governor: performance > > > > config: x86_64-rhel-9.4 > compiler: gcc-12 > test machine: 64 threads 2 sockets Intel(R) Xeon(R) Gold 6346 CPU @ 3.10G= Hz (Ice Lake) with 256G memory > > (please refer to attached dmesg/kmsg for entire log/backtrace) > > > > If you fix the issue in a separate patch/commit (i.e. not just a new vers= ion of > the same patch/commit), kindly add following tags > | Reported-by: kernel test robot > | Closes: https://lore.kernel.org/oe-lkp/202505161438.9009cf47-lkp@intel.= com > > > [ 76.825919][ C17] watchdog: BUG: soft lockup - CPU#17 stuck for 26s!= [stress-ng-swap:3017] > [ 76.825921][ C17] Modules linked in: xfs ipmi_ssif intel_rapl_msr in= tel_rapl_common intel_uncore_frequency intel_uncore_frequency_common i10nm_= edac skx_edac_common nfit libnvdimm x86_pkg_temp_thermal coretemp kvm_intel= btrfs kvm sd_mod sg snd_pcm blake2b_generic ghash_clmulni_intel xor dax_hm= em ast raid6_pq snd_timer rapl cxl_acpi drm_client_lib ahci intel_cstate cx= l_port drm_shmem_helper snd libahci cxl_core intel_th_gth nvme acpi_power_m= eter isst_if_mbox_pci isst_if_mmio soundcore intel_th_pci mei_me intel_unco= re ioatdma i2c_i801 megaraid_sas ipmi_si einj acpi_ipmi pcspkr libata drm_k= ms_helper nvme_core mei isst_if_common intel_th intel_pch_thermal i2c_smbus= intel_vsec dca wmi ipmi_devintf ipmi_msghandler joydev binfmt_misc drm fus= e dm_mod loop ip_tables > [ 76.825949][ C17] CPU: 17 UID: 0 PID: 3017 Comm: stress-ng-swap Not = tainted 6.14.0-rc6-00228-gb487a2da3575 #1 > [ 76.825951][ C17] Hardware name: Inspur NF5180M6/NF5180M6, BIOS 06.0= 0.04 04/12/2022 > [ 76.825952][ C17] RIP: 0010:shmem_unuse (include/linux/list.h:119 includ= e/linux/list.h:215 include/linux/list.h:287 mm/shmem.c:1497) > [ 76.825959][ C17] Code: 30 48 8d 6b 30 4c 8d 60 d0 48 81 fd 20 e3 26 83 = 0f 84 8a 00 00 00 48 83 7b 18 00 75 89 48 8b 43 38 48 8b 53 30 48 39 28 75 = 6c <48> 39 6a 08 75 66 48 89 42 08 48 89 10 48 89 6b 30 48 89 6b 38 4c > All code > =3D=3D=3D=3D=3D=3D=3D=3D > 0: 30 48 8d xor %cl,-0x73(%rax) > 3: 6b 30 4c imul $0x4c,(%rax),%esi > 6: 8d 60 d0 lea -0x30(%rax),%esp > 9: 48 81 fd 20 e3 26 83 cmp $0xffffffff8326e320,%rbp > 10: 0f 84 8a 00 00 00 je 0xa0 > 16: 48 83 7b 18 00 cmpq $0x0,0x18(%rbx) > 1b: 75 89 jne 0xffffffffffffffa6 > 1d: 48 8b 43 38 mov 0x38(%rbx),%rax > 21: 48 8b 53 30 mov 0x30(%rbx),%rdx > 25: 48 39 28 cmp %rbp,(%rax) > 28: 75 6c jne 0x96 > 2a:* 48 39 6a 08 cmp %rbp,0x8(%rdx) <-- trapp= ing instruction > 2e: 75 66 jne 0x96 > 30: 48 89 42 08 mov %rax,0x8(%rdx) > 34: 48 89 10 mov %rdx,(%rax) > 37: 48 89 6b 30 mov %rbp,0x30(%rbx) > 3b: 48 89 6b 38 mov %rbp,0x38(%rbx) > 3f: 4c rex.WR > > Code starting with the faulting instruction > =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D > 0: 48 39 6a 08 cmp %rbp,0x8(%rdx) > 4: 75 66 jne 0x6c > 6: 48 89 42 08 mov %rax,0x8(%rdx) > a: 48 89 10 mov %rdx,(%rax) > d: 48 89 6b 30 mov %rbp,0x30(%rbx) > 11: 48 89 6b 38 mov %rbp,0x38(%rbx) > 15: 4c rex.WR > [ 76.825961][ C17] RSP: 0018:ffa00000232ffce0 EFLAGS: 00000246 > [ 76.825964][ C17] RAX: ff110020c063bde0 RBX: ff110020c063bdb0 RCX: 0= 000000000000006 > [ 76.825965][ C17] RDX: ff110020c063bde0 RSI: 0000000000000000 RDI: f= f110020c063be2c > [ 76.825966][ C17] RBP: ff110020c063bde0 R08: ffffffffffffffc0 R09: 0= 000000000000000 > [ 76.825967][ C17] R10: 000000000000ffff R11: ffa000000cafa000 R12: f= f110020c063bdb0 > [ 76.825968][ C17] R13: ff110020c063be2c R14: 0000000000000014 R15: f= f110020c063bdb0 > [ 76.825969][ C17] FS: 00007fcb691d2580(0000) GS:ff11003fbac80000(00= 00) knlGS:0000000000000000 > [ 76.825970][ C17] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 > [ 76.825971][ C17] CR2: 00007fcb6490f000 CR3: 00000001897e4006 CR4: 0= 000000000773ef0 > [ 76.825972][ C17] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0= 000000000000000 > [ 76.825973][ C17] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0= 000000000000400 > [ 76.825973][ C17] PKRU: 55555554 > [ 76.825974][ C17] Call Trace: > [ 76.825975][ C17] > [ 76.825976][ C17] ? watchdog_timer_fn (kernel/watchdog.c:770) > [ 76.825980][ C17] ? __pfx_watchdog_timer_fn (kernel/watchdog.c:685) > [ 76.825981][ C17] ? __hrtimer_run_queues (kernel/time/hrtimer.c:1801 ker= nel/time/hrtimer.c:1865) > [ 76.825985][ C17] ? hrtimer_interrupt (kernel/time/hrtimer.c:1930) > [ 76.825986][ C17] ? __sysvec_apic_timer_interrupt (arch/x86/kernel/apic/= apic.c:1038 arch/x86/kernel/apic/apic.c:1055) > [ 76.825989][ C17] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/ap= ic.c:1049 arch/x86/kernel/apic/apic.c:1049) > [ 76.825992][ C17] > [ 76.825992][ C17] > [ 76.825993][ C17] ? asm_sysvec_apic_timer_interrupt (arch/x86/include/as= m/idtentry.h:702) > [ 76.825997][ C17] ? shmem_unuse (include/linux/list.h:119 include/linux/= list.h:215 include/linux/list.h:287 mm/shmem.c:1497) > [ 76.825999][ C17] try_to_unuse (mm/swapfile.c:2295) > [ 76.826003][ C17] __do_sys_swapoff (mm/swapfile.c:2736) > [ 76.826005][ C17] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/ent= ry/common.c:83) > [ 76.826008][ C17] ? __rseq_handle_notify_resume (kernel/rseq.c:420) > [ 76.826012][ C17] ? syscall_exit_to_user_mode (include/linux/rseq.h:38 i= nclude/linux/resume_user_mode.h:62 kernel/entry/common.c:114 include/linux/= entry-common.h:329 kernel/entry/common.c:207 kernel/entry/common.c:218) > [ 76.826013][ C17] ? do_syscall_64 (arch/x86/entry/common.c:102) > [ 76.826015][ C17] ? __perf_sw_event (kernel/events/internal.h:229 kernel= /events/core.c:10210 kernel/events/core.c:10235) > [ 76.826016][ C17] ? handle_mm_fault (include/linux/perf_event.h:1503 mm/= memory.c:6106 mm/memory.c:6233) > [ 76.826020][ C17] ? do_user_addr_fault (arch/x86/mm/fault.c:1338) > [ 76.826022][ C17] ? clear_bhb_loop (arch/x86/entry/entry_64.S:1538) > [ 76.826024][ C17] ? clear_bhb_loop (arch/x86/entry/entry_64.S:1538) > [ 76.826026][ C17] ? clear_bhb_loop (arch/x86/entry/entry_64.S:1538) > [ 76.826028][ C17] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_6= 4.S:130) > [ 76.826030][ C17] RIP: 0033:0x7fcb69976fc7 > [ 76.826031][ C17] Code: 73 01 c3 48 8b 0d 39 2e 0d 00 f7 d8 64 89 01 48 = 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 b8 a8 00 00 00 0f = 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 09 2e 0d 00 f7 d8 64 89 01 48 > All code > =3D=3D=3D=3D=3D=3D=3D=3D > 0: 73 01 jae 0x3 > 2: c3 ret > 3: 48 8b 0d 39 2e 0d 00 mov 0xd2e39(%rip),%rcx # 0xd2e4= 3 > a: f7 d8 neg %eax > c: 64 89 01 mov %eax,%fs:(%rcx) > f: 48 83 c8 ff or $0xffffffffffffffff,%rax > 13: c3 ret > 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) > 1b: 00 00 00 > 1e: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) > 23: b8 a8 00 00 00 mov $0xa8,%eax > 28: 0f 05 syscall > 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <= -- trapping instruction > 30: 73 01 jae 0x33 > 32: c3 ret > 33: 48 8b 0d 09 2e 0d 00 mov 0xd2e09(%rip),%rcx # 0xd2e4= 3 > 3a: f7 d8 neg %eax > 3c: 64 89 01 mov %eax,%fs:(%rcx) > 3f: 48 rex.W > > Code starting with the faulting instruction > =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D > 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax > 6: 73 01 jae 0x9 > 8: c3 ret > 9: 48 8b 0d 09 2e 0d 00 mov 0xd2e09(%rip),%rcx # 0xd2e1= 9 > 10: f7 d8 neg %eax > 12: 64 89 01 mov %eax,%fs:(%rcx) > 15: 48 rex.W > [ 76.826032][ C17] RSP: 002b:00007ffd6d92dbd8 EFLAGS: 00000206 ORIG_R= AX: 00000000000000a8 > [ 76.826033][ C17] RAX: ffffffffffffffda RBX: 0000000000000019 RCX: 0= 0007fcb69976fc7 > [ 76.826034][ C17] RDX: fffffffffffffccc RSI: 000000000003d000 RDI: 0= 0007ffd6d92e690 > [ 76.826035][ C17] RBP: 00007fcb64910000 R08: 0000000000000007 R09: 0= 000559500e1f530 > [ 76.826036][ C17] R10: c7c9ff097bf742d3 R11: 0000000000000206 R12: 0= 0007fcb691d2180 > [ 76.826036][ C17] R13: 00007ffd6d92e690 R14: 0000000000000001 R15: 0= 000000000000000 > [ 76.826037][ C17] > [ 76.826038][ C17] Kernel panic - not syncing: softlockup: hung tasks > [ 77.239533][ C17] CPU: 17 UID: 0 PID: 3017 Comm: stress-ng-swap Tain= ted: G L 6.14.0-rc6-00228-gb487a2da3575 #1 > [ 77.251353][ C17] Tainted: [L]=3DSOFTLOCKUP > [ 77.255672][ C17] Hardware name: Inspur NF5180M6/NF5180M6, BIOS 06.0= 0.04 04/12/2022 > [ 77.263635][ C17] Call Trace: > [ 77.266915][ C17] > [ 77.269756][ C17] panic (kernel/panic.c:354) > [ 77.273643][ C17] watchdog_timer_fn (kernel/watchdog.c:735) > [ 77.278568][ C17] ? __pfx_watchdog_timer_fn (kernel/watchdog.c:685) > [ 77.284015][ C17] __hrtimer_run_queues (kernel/time/hrtimer.c:1801 kerne= l/time/hrtimer.c:1865) > [ 77.289201][ C17] hrtimer_interrupt (kernel/time/hrtimer.c:1930) > [ 77.294040][ C17] __sysvec_apic_timer_interrupt (arch/x86/kernel/apic/ap= ic.c:1038 arch/x86/kernel/apic/apic.c:1055) > [ 77.299835][ C17] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic= .c:1049 arch/x86/kernel/apic/apic.c:1049) > [ 77.305454][ C17] > [ 77.308382][ C17] > [ 77.311313][ C17] asm_sysvec_apic_timer_interrupt (arch/x86/include/asm/= idtentry.h:702) > [ 77.317275][ C17] RIP: 0010:shmem_unuse (include/linux/list.h:119 includ= e/linux/list.h:215 include/linux/list.h:287 mm/shmem.c:1497) > [ 77.322373][ C17] Code: 30 48 8d 6b 30 4c 8d 60 d0 48 81 fd 20 e3 26 83 = 0f 84 8a 00 00 00 48 83 7b 18 00 75 89 48 8b 43 38 48 8b 53 30 48 39 28 75 = 6c <48> 39 6a 08 75 66 48 89 42 08 48 89 10 48 89 6b 30 48 89 6b 38 4c > All code > =3D=3D=3D=3D=3D=3D=3D=3D > 0: 30 48 8d xor %cl,-0x73(%rax) > 3: 6b 30 4c imul $0x4c,(%rax),%esi > 6: 8d 60 d0 lea -0x30(%rax),%esp > 9: 48 81 fd 20 e3 26 83 cmp $0xffffffff8326e320,%rbp > 10: 0f 84 8a 00 00 00 je 0xa0 > 16: 48 83 7b 18 00 cmpq $0x0,0x18(%rbx) > 1b: 75 89 jne 0xffffffffffffffa6 > 1d: 48 8b 43 38 mov 0x38(%rbx),%rax > 21: 48 8b 53 30 mov 0x30(%rbx),%rdx > 25: 48 39 28 cmp %rbp,(%rax) > 28: 75 6c jne 0x96 > 2a:* 48 39 6a 08 cmp %rbp,0x8(%rdx) <-- trapp= ing instruction > 2e: 75 66 jne 0x96 > 30: 48 89 42 08 mov %rax,0x8(%rdx) > 34: 48 89 10 mov %rdx,(%rax) > 37: 48 89 6b 30 mov %rbp,0x30(%rbx) > 3b: 48 89 6b 38 mov %rbp,0x38(%rbx) > 3f: 4c rex.WR > > > The kernel config and materials to reproduce are available at: > https://download.01.org/0day-ci/archive/20250516/202505161438.9009cf47-lk= p@intel.com > > > > -- > 0-DAY CI Kernel Test Service > https://github.com/intel/lkp-tests/wiki > > It seems this is exactly the problem "mm/shmem: Fix potential dead loop in shmem_unuse" trying to fix? https://lore.kernel.org/linux-mm/20250515154758.956521-4-shikemeng@huaweicl= oud.com/ Hi Kemeng, Can you help take a look? And maybe add a "Closes: https://lore.kernel.org/oe-lkp/202505161438.9009cf47-lkp@intel.com" in your patch? BTW I also just found there is another potential problem with shmem, the "list_del_init(&info->swaplist);" in shmem_writepage could lead to leaked shmem inode on swapoff, it's unrelated to this problem though, I can fix it posting one patch for that after double checking.