====================================== | [ 13.114682][ C2] #5: ffffffff953775e0 (rcu_read_lock){....}-{1:3}, at: page_ref_add_unless.constprop.0 (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 ./include/linux/page_ref.h:235) | [ 13.115111][ C2] #6: ffffffff953774c0 (rcu_callback){....}-{0:0}, at: rcu_do_batch (./include/linux/rcupdate.h:331 kernel/rcu/tree.c:2570) | [ 13.115491][ C2] | [ 13.115491][ C2] stack backtrace: [ 13.115763][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 13.115766][ C2] Call Trace: [ 13.115768][ C2] [ 13.115770][ C2] dump_stack_lvl (lib/dump_stack.c:123) [ 13.115778][ C2] print_usage_bug.part.0 (kernel/locking/lockdep.c:4048) [ 13.115783][ C2] mark_lock_irq (kernel/locking/lockdep.c:4013 kernel/locking/lockdep.c:4059 kernel/locking/lockdep.c:4270) [ 13.115787][ C2] ? __pfx_unwind_next_frame (arch/x86/kernel/unwind_orc.c:469) [ 13.115793][ C2] ? save_trace (kernel/locking/lockdep.c:595) [ 13.115798][ C2] mark_lock (kernel/locking/lockdep.c:4756) [ 13.115802][ C2] mark_usage (kernel/locking/lockdep.c:4645) [ 13.115805][ C2] __lock_acquire (kernel/locking/lockdep.c:5194) [ 13.115809][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5240) [ 13.115813][ C2] lock_acquire.part.0 (kernel/locking/lockdep.c:473 kernel/locking/lockdep.c:5873) [ 13.115816][ C2] ? simple_pin_fs (fs/libfs.c:1067) [ 13.115820][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 13.115826][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 13.115829][ C2] ? simple_pin_fs (fs/libfs.c:1067) [ 13.115833][ C2] _raw_spin_lock (./include/linux/spinlock_api_smp.h:134 kernel/locking/spinlock.c:154) [ 13.115837][ C2] ? simple_pin_fs (fs/libfs.c:1067) [ 13.115839][ C2] simple_pin_fs (fs/libfs.c:1067) [ 13.115842][ C2] debugfs_remove (fs/debugfs/inode.c:805 fs/debugfs/inode.c:799) [ 13.115846][ C2] ref_tracker_dir_exit (lib/ref_tracker.c:412 lib/ref_tracker.c:196) [ 13.115852][ C2] ? __pfx_ref_tracker_free (lib/ref_tracker.c:254) [ 13.115854][ C2] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2376) [ 13.115861][ C2] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 13.115864][ C2] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:190) [ 13.115866][ C2] ? irq_exit_rcu (kernel/softirq.c:698) [ 13.115870][ C2] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 13.115875][ C2] ? asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 13.115880][ C2] ? kasan_check_range (mm/kasan/generic.c:190) [ 13.115885][ C2] ? page_ref_add_unless.constprop.0 (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-arch-fallback.h:2426 ./include/linux/atomic/atomic-arch-fallback.h:2456 ./include/linux/atomic/atomic-instrumented.h:1518 ./include/linux/page_ref.h:238) [ 13.115888][ C2] ? next_uptodate_folio (mm/filemap.c:3563) [ 13.115891][ C2] ? filemap_map_pages (mm/filemap.c:3746) [ 13.115894][ C2] ? do_fault_around (mm/memory.c:5476) [ 13.115897][ C2] ? do_pte_missing (mm/memory.c:5509 mm/memory.c:5652 mm/memory.c:4160) [ 13.115901][ C2] ? handle_pte_fault (mm/memory.c:5997) [ 13.115903][ C2] ? __handle_mm_fault (mm/memory.c:6140) [ 13.115908][ C2] __put_net (net/core/net_namespace.c:732) [ 13.115913][ C2] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2376) [ 13.115917][ C2] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 13.115920][ C2] rcu_do_batch (kernel/rcu/tree.c:2576) [ 13.115925][ C2] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 13.115928][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4328) [ 13.115932][ C2] ? note_gp_changes (kernel/rcu/tree.c:1326 (discriminator 1)) [ 13.115935][ C2] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4475) [ 13.115940][ C2] rcu_core (kernel/rcu/tree.c:2834) [ 13.115945][ C2] handle_softirqs (kernel/softirq.c:579) [ 13.115951][ C2] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 13.115954][ C2] irq_exit_rcu (kernel/softirq.c:698) [ 13.115957][ C2] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 13.115961][ C2] [ 13.115962][ C2] [ 13.115964][ C2] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 13.115967][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 13.115970][ C2] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c e9 7c f4 0a 02 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: e9 7c f4 0a 02 jmp 0x20af4b4 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: e9 7c f4 0a 02 jmp 0x20af48a e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 13.115973][ C2] RSP: 0000:ffffc900004d7978 EFLAGS: 00000246 [ 13.115977][ C2] RAX: fffff9400006766f RBX: fffff9400006766f RCX: ffffffff9210e1a3 [ 13.115979][ C2] RDX: fffff9400006766f RSI: 0000000000000004 RDI: ffffea000033b374 [ 13.115980][ C2] RBP: fffff9400006766e R08: 0000000000000001 R09: fffff9400006766e [ 13.115982][ C2] R10: ffffea000033b377 R11: ffffffff953775e0 R12: dffffc0000000000 [ 13.115984][ C2] R13: ffffea000033b340 R14: 1ffff9200009af5f R15: ffffc900004d7af8 [ 13.115988][ C2] ? page_ref_add_unless.constprop.0 (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-arch-fallback.h:2426 ./include/linux/atomic/atomic-arch-fallback.h:2456 ./include/linux/atomic/atomic-instrumented.h:1518 ./include/linux/page_ref.h:238) [ 13.115993][ C2] page_ref_add_unless.constprop.0 (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-arch-fallback.h:2426 ./include/linux/atomic/atomic-arch-fallback.h:2456 ./include/linux/atomic/atomic-instrumented.h:1518 ./include/linux/page_ref.h:238) [ 13.115997][ C2] next_uptodate_folio (mm/filemap.c:3563) [ 13.116001][ C2] filemap_map_pages (mm/filemap.c:3746) [ 13.116005][ C2] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 13.116009][ C2] ? validate_chain (kernel/locking/lockdep.c:3804 kernel/locking/lockdep.c:3824 kernel/locking/lockdep.c:3879) [ 13.116016][ C2] ? __pfx_filemap_map_pages (mm/filemap.c:3692) [ 13.116021][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 13.116024][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 13.116027][ C2] ? do_fault_around (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 mm/memory.c:5475) [ 13.116031][ C2] ? __pfx_filemap_map_pages (mm/filemap.c:3692) [ 13.116034][ C2] do_fault_around (mm/memory.c:5476) [ 13.116039][ C2] do_pte_missing (mm/memory.c:5509 mm/memory.c:5652 mm/memory.c:4160) [ 13.116042][ C2] ? rcu_read_unlock (./include/linux/rcupdate.h:341 (discriminator 9) ./include/linux/rcupdate.h:871 (discriminator 9)) [ 13.116046][ C2] handle_pte_fault (mm/memory.c:5997) [ 13.116049][ C2] ? __pfx_handle_pte_fault (mm/memory.c:5954) [ 13.116053][ C2] ? reacquire_held_locks (kernel/locking/lockdep.c:5388) [ 13.116056][ C2] ? do_user_addr_fault (arch/x86/mm/fault.c:1327) [ 13.116061][ C2] __handle_mm_fault (mm/memory.c:6140) [ 13.116064][ C2] ? __pfx___handle_mm_fault (mm/memory.c:6049) [ 13.116066][ C2] ? __lock_release (kernel/locking/lockdep.c:5585) [ 13.116073][ C2] ? __pfx_lock_vma_under_rcu (mm/memory.c:6547) [ 13.116076][ C2] handle_mm_fault (mm/memory.c:6321) [ 13.116079][ C2] ? __pfx_handle_mm_fault (mm/memory.c:6276) [ 13.116082][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 13.116085][ C2] ? __lock_release (kernel/locking/lockdep.c:5539) [ 13.116090][ C2] do_user_addr_fault (arch/x86/mm/fault.c:1337) [ 13.116094][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 13.116098][ C2] exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 13.116102][ C2] asm_exc_page_fault (./arch/x86/include/asm/idtentry.h:623) [ 13.116104][ C2] RIP: 0033:0x7f722afa9d77 [ 13.116108][ C2] Code: 1f 40 00 f3 0f 1e fa 66 0f 6e ce 89 f8 25 ff 0f 00 00 66 0f 60 c9 3d c0 0f 00 00 66 0f 61 c9 66 0f 70 c9 00 0f 8f 69 01 00 00 0f 6f 07 66 0f ef db 66 0f 6f e0 66 0f 74 c1 66 0f 74 e3 66 0f All code ======== 0: 1f (bad) 1: 40 00 f3 add %sil,%bl 4: 0f 1e fa nop %edx 7: 66 0f 6e ce movd %esi,%xmm1 b: 89 f8 mov %edi,%eax d: 25 ff 0f 00 00 and $0xfff,%eax 12: 66 0f 60 c9 punpcklbw %xmm1,%xmm1 16: 3d c0 0f 00 00 cmp $0xfc0,%eax 1b: 66 0f 61 c9 punpcklwd %xmm1,%xmm1 1f: 66 0f 70 c9 00 pshufd $0x0,%xmm1,%xmm1 24: 0f 8f 69 01 00 00 jg 0x193 2a:* f3 0f 6f 07 movdqu (%rdi),%xmm0 <-- trapping instruction 2e: 66 0f ef db pxor %xmm3,%xmm3 32: 66 0f 6f e0 movdqa %xmm0,%xmm4 36: 66 0f 74 c1 pcmpeqb %xmm1,%xmm0 3a: 66 0f 74 e3 pcmpeqb %xmm3,%xmm4 3e: 66 data16 3f: 0f .byte 0xf Code starting with the faulting instruction =========================================== 0: f3 0f 6f 07 movdqu (%rdi),%xmm0 4: 66 0f ef db pxor %xmm3,%xmm3 8: 66 0f 6f e0 movdqa %xmm0,%xmm4 c: 66 0f 74 c1 pcmpeqb %xmm1,%xmm0 10: 66 0f 74 e3 pcmpeqb %xmm3,%xmm4 14: 66 data16 15: 0f .byte 0xf [ 13.116110][ C2] RSP: 002b:00007ffef5c74e08 EFLAGS: 00010283 [ 13.116113][ C2] RAX: 00000000000005d0 RBX: 00007ffef5c74e40 RCX: 0000000000000000 [ 13.116114][ C2] RDX: 00007ffef5c74e58 RSI: 0000000000000024 RDI: 0000559fd404d5d0 [ 13.116116][ C2] RBP: 00007ffef5c75380 R08: 0000000000000000 R09: 0000000000000000 [ 13.116117][ C2] R10: 00007ffef5c74e40 R11: 0000000000000246 R12: 0000000000000000 [ 13.116119][ C2] R13: 00007f722afdd220 R14: 0000559fd404d5d0 R15: 0000000000000000 | [ 13.141359][ C2] RCU nest depth: 4, expected: 0 | [ 13.141595][ C2] INFO: lockdep is turned off. | [ 13.141833][ C2] Preemption disabled at: | [ 13.141835][ C2] 0x0 [ 13.142242][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 13.142244][ C2] Call Trace: [ 13.142247][ C2] [ 13.142248][ C2] dump_stack_lvl (lib/dump_stack.c:123) [ 13.142257][ C2] __might_resched (kernel/sched/core.c:8796) [ 13.142267][ C2] down_write (./include/linux/kernel.h:73 kernel/locking/rwsem.c:1576) [ 13.142272][ C2] ? __pfx_down_write (kernel/locking/rwsem.c:1575) [ 13.142275][ C2] ? simple_recursive_removal (fs/libfs.c:614) [ 13.142281][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 13.142288][ C2] ? do_raw_spin_unlock (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 13.142292][ C2] simple_recursive_removal (./include/linux/dcache.h:409 ./include/linux/dcache.h:424 ./include/linux/dcache.h:434 fs/libfs.c:617) [ 13.142296][ C2] ? do_raw_spin_unlock (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 13.142298][ C2] ? __pfx_remove_one (fs/debugfs/inode.c:780) [ 13.142304][ C2] debugfs_remove (fs/debugfs/inode.c:806 fs/debugfs/inode.c:799) [ 13.142308][ C2] ref_tracker_dir_exit (lib/ref_tracker.c:412 lib/ref_tracker.c:196) [ 13.142313][ C2] ? __pfx_ref_tracker_free (lib/ref_tracker.c:254) [ 13.142315][ C2] ? __sk_destruct (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/net_namespace.h:287 ./include/net/net_namespace.h:390 net/core/sock.c:2376) [ 13.142322][ C2] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 13.142326][ C2] ? __pfx_ref_tracker_dir_exit (lib/ref_tracker.c:190) [ 13.142329][ C2] ? irq_exit_rcu (kernel/softirq.c:698) [ 13.142335][ C2] ? sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 13.142340][ C2] ? asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 13.142345][ C2] ? kasan_check_range (mm/kasan/generic.c:190) [ 13.142350][ C2] ? page_ref_add_unless.constprop.0 (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-arch-fallback.h:2426 ./include/linux/atomic/atomic-arch-fallback.h:2456 ./include/linux/atomic/atomic-instrumented.h:1518 ./include/linux/page_ref.h:238) [ 13.142356][ C2] ? next_uptodate_folio (mm/filemap.c:3563) [ 13.142359][ C2] ? filemap_map_pages (mm/filemap.c:3746) [ 13.142362][ C2] ? do_fault_around (mm/memory.c:5476) [ 13.142368][ C2] ? do_pte_missing (mm/memory.c:5509 mm/memory.c:5652 mm/memory.c:4160) [ 13.142372][ C2] ? handle_pte_fault (mm/memory.c:5997) [ 13.142374][ C2] ? __handle_mm_fault (mm/memory.c:6140) [ 13.142379][ C2] __put_net (net/core/net_namespace.c:732) [ 13.142384][ C2] __sk_destruct (./include/net/net_namespace.h:288 ./include/net/net_namespace.h:390 net/core/sock.c:2376) [ 13.142388][ C2] ? rcu_do_batch (kernel/rcu/tree.c:2576) [ 13.142391][ C2] rcu_do_batch (kernel/rcu/tree.c:2576) [ 13.142395][ C2] ? __pfx_rcu_do_batch (kernel/rcu/tree.c:2500) [ 13.142399][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4328) [ 13.142405][ C2] ? note_gp_changes (kernel/rcu/tree.c:1326 (discriminator 1)) [ 13.142408][ C2] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4475) [ 13.142412][ C2] rcu_core (kernel/rcu/tree.c:2834) [ 13.142417][ C2] handle_softirqs (kernel/softirq.c:579) [ 13.142423][ C2] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 13.142426][ C2] irq_exit_rcu (kernel/softirq.c:698) [ 13.142429][ C2] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1050 arch/x86/kernel/apic/apic.c:1050) [ 13.142433][ C2] [ 13.142434][ C2] [ 13.142435][ C2] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 13.142438][ C2] RIP: 0010:kasan_check_range (mm/kasan/generic.c:190) [ 13.142442][ C2] Code: 00 74 f2 48 89 c2 b8 01 00 00 00 48 85 d2 0f 84 4c ff ff ff 41 83 e2 07 49 39 d1 0f 85 34 ff ff ff 45 3a 11 0f 8d 2b ff ff ff <5b> b8 01 00 00 00 5d 41 5c e9 7c f4 0a 02 41 bc 08 00 00 00 45 29 All code ======== 0: 00 74 f2 48 add %dh,0x48(%rdx,%rsi,8) 4: 89 c2 mov %eax,%edx 6: b8 01 00 00 00 mov $0x1,%eax b: 48 85 d2 test %rdx,%rdx e: 0f 84 4c ff ff ff je 0xffffffffffffff60 14: 41 83 e2 07 and $0x7,%r10d 18: 49 39 d1 cmp %rdx,%r9 1b: 0f 85 34 ff ff ff jne 0xffffffffffffff55 21: 45 3a 11 cmp (%r9),%r10b 24: 0f 8d 2b ff ff ff jge 0xffffffffffffff55 2a:* 5b pop %rbx <-- trapping instruction 2b: b8 01 00 00 00 mov $0x1,%eax 30: 5d pop %rbp 31: 41 5c pop %r12 33: e9 7c f4 0a 02 jmp 0x20af4b4 38: 41 bc 08 00 00 00 mov $0x8,%r12d 3e: 45 rex.RB 3f: 29 .byte 0x29 Code starting with the faulting instruction =========================================== 0: 5b pop %rbx 1: b8 01 00 00 00 mov $0x1,%eax 6: 5d pop %rbp 7: 41 5c pop %r12 9: e9 7c f4 0a 02 jmp 0x20af48a e: 41 bc 08 00 00 00 mov $0x8,%r12d 14: 45 rex.RB 15: 29 .byte 0x29 [ 13.142444][ C2] RSP: 0000:ffffc900004d7978 EFLAGS: 00000246 [ 13.142448][ C2] RAX: fffff9400006766f RBX: fffff9400006766f RCX: ffffffff9210e1a3 [ 13.142450][ C2] RDX: fffff9400006766f RSI: 0000000000000004 RDI: ffffea000033b374 [ 13.142452][ C2] RBP: fffff9400006766e R08: 0000000000000001 R09: fffff9400006766e [ 13.142454][ C2] R10: ffffea000033b377 R11: ffffffff953775e0 R12: dffffc0000000000 [ 13.142456][ C2] R13: ffffea000033b340 R14: 1ffff9200009af5f R15: ffffc900004d7af8 [ 13.142459][ C2] ? page_ref_add_unless.constprop.0 (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-arch-fallback.h:2426 ./include/linux/atomic/atomic-arch-fallback.h:2456 ./include/linux/atomic/atomic-instrumented.h:1518 ./include/linux/page_ref.h:238) [ 13.142467][ C2] page_ref_add_unless.constprop.0 (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-arch-fallback.h:2426 ./include/linux/atomic/atomic-arch-fallback.h:2456 ./include/linux/atomic/atomic-instrumented.h:1518 ./include/linux/page_ref.h:238) [ 13.142470][ C2] next_uptodate_folio (mm/filemap.c:3563) [ 13.142475][ C2] filemap_map_pages (mm/filemap.c:3746) [ 13.142478][ C2] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 13.142484][ C2] ? validate_chain (kernel/locking/lockdep.c:3804 kernel/locking/lockdep.c:3824 kernel/locking/lockdep.c:3879) [ 13.142492][ C2] ? __pfx_filemap_map_pages (mm/filemap.c:3692) [ 13.142497][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 13.142500][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5834) [ 13.142503][ C2] ? do_fault_around (./include/linux/rcupdate.h:331 ./include/linux/rcupdate.h:841 mm/memory.c:5475) [ 13.142507][ C2] ? __pfx_filemap_map_pages (mm/filemap.c:3692) [ 13.142510][ C2] do_fault_around (mm/memory.c:5476) [ 13.142515][ C2] do_pte_missing (mm/memory.c:5509 mm/memory.c:5652 mm/memory.c:4160) [ 13.142518][ C2] ? rcu_read_unlock (./include/linux/rcupdate.h:341 (discriminator 9) ./include/linux/rcupdate.h:871 (discriminator 9)) [ 13.142522][ C2] handle_pte_fault (mm/memory.c:5997) [ 13.142526][ C2] ? __pfx_handle_pte_fault (mm/memory.c:5954) [ 13.142530][ C2] ? reacquire_held_locks (kernel/locking/lockdep.c:5388) [ 13.142533][ C2] ? do_user_addr_fault (arch/x86/mm/fault.c:1327) [ 13.142539][ C2] __handle_mm_fault (mm/memory.c:6140) [ 13.142542][ C2] ? __pfx___handle_mm_fault (mm/memory.c:6049) [ 13.142545][ C2] ? __lock_release (kernel/locking/lockdep.c:5585) [ 13.142552][ C2] ? __pfx_lock_vma_under_rcu (mm/memory.c:6547) [ 13.142556][ C2] handle_mm_fault (mm/memory.c:6321) [ 13.142558][ C2] ? __pfx_handle_mm_fault (mm/memory.c:6276) [ 13.142561][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 13.142564][ C2] ? __lock_release (kernel/locking/lockdep.c:5539) [ 13.142569][ C2] do_user_addr_fault (arch/x86/mm/fault.c:1337) [ 13.142573][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:745) [ 13.142577][ C2] exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 13.142581][ C2] asm_exc_page_fault (./arch/x86/include/asm/idtentry.h:623) [ 13.142583][ C2] RIP: 0033:0x7f722afa9d77 [ 13.142586][ C2] Code: 1f 40 00 f3 0f 1e fa 66 0f 6e ce 89 f8 25 ff 0f 00 00 66 0f 60 c9 3d c0 0f 00 00 66 0f 61 c9 66 0f 70 c9 00 0f 8f 69 01 00 00 0f 6f 07 66 0f ef db 66 0f 6f e0 66 0f 74 c1 66 0f 74 e3 66 0f All code ======== 0: 1f (bad) 1: 40 00 f3 add %sil,%bl 4: 0f 1e fa nop %edx 7: 66 0f 6e ce movd %esi,%xmm1 b: 89 f8 mov %edi,%eax d: 25 ff 0f 00 00 and $0xfff,%eax 12: 66 0f 60 c9 punpcklbw %xmm1,%xmm1 16: 3d c0 0f 00 00 cmp $0xfc0,%eax 1b: 66 0f 61 c9 punpcklwd %xmm1,%xmm1 1f: 66 0f 70 c9 00 pshufd $0x0,%xmm1,%xmm1 24: 0f 8f 69 01 00 00 jg 0x193 2a:* f3 0f 6f 07 movdqu (%rdi),%xmm0 <-- trapping instruction 2e: 66 0f ef db pxor %xmm3,%xmm3 32: 66 0f 6f e0 movdqa %xmm0,%xmm4 36: 66 0f 74 c1 pcmpeqb %xmm1,%xmm0 3a: 66 0f 74 e3 pcmpeqb %xmm3,%xmm4 3e: 66 data16 3f: 0f .byte 0xf Code starting with the faulting instruction =========================================== 0: f3 0f 6f 07 movdqu (%rdi),%xmm0 4: 66 0f ef db pxor %xmm3,%xmm3 8: 66 0f 6f e0 movdqa %xmm0,%xmm4 c: 66 0f 74 c1 pcmpeqb %xmm1,%xmm0 10: 66 0f 74 e3 pcmpeqb %xmm3,%xmm4 14: 66 data16 15: 0f .byte 0xf [ 13.142588][ C2] RSP: 002b:00007ffef5c74e08 EFLAGS: 00010283 [ 13.142590][ C2] RAX: 00000000000005d0 RBX: 00007ffef5c74e40 RCX: 0000000000000000 [ 13.142592][ C2] RDX: 00007ffef5c74e58 RSI: 0000000000000024 RDI: 0000559fd404d5d0 [ 13.142594][ C2] RBP: 00007ffef5c75380 R08: 0000000000000000 R09: 0000000000000000 [ 13.142595][ C2] R10: 00007ffef5c74e40 R11: 0000000000000246 R12: 0000000000000000 Finger prints: __might_resched:down_write:simple_recursive_removal:debugfs_remove:ref_tracker_dir_exit mark_lock_irq:mark_lock:mark_usage:__lock_acquire:_raw_spin_lock