NULL pointer dereference in abd_copy_to_buf_off
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
zfs-linux (Ubuntu) |
New
|
Undecided
|
Unassigned |
Bug Description
Ubuntu 22.10 riscv64 image on lichee rv board with 3 HDDs attached, 2 in a mirrored zpool, 1 standalone zpool, rsync copying data from single pool to mirrored pool.
[Mon Nov 14 10:05:09 2022] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000019
[Mon Nov 14 10:05:09 2022] Oops [#1]
[Mon Nov 14 10:05:09 2022] Modules linked in: tls binfmt_misc 8723ds(OE) cfg80211 zfs(POE) pwrseq_simple sunxi_cir rc_core zunicode(POE) snd_soc_hdmi_codec zzstd(OE) ses enclosure scsi_transport_sas sunxi phy_generic zlua(OE) sunxi_cedrus(C) v4l2_mem2mem videobuf2_
[Mon Nov 14 10:05:09 2022] display_connector drm_cma_helper drm_kms_helper backlight syscopyarea sysfillrect sysimgblt fb_sys_fops
[Mon Nov 14 10:05:09 2022] CPU: 0 PID: 796 Comm: z_rd_int Tainted: P C OE 5.17.0-
[Mon Nov 14 10:05:09 2022] Hardware name: Sipeed Lichee RV Dock (DT)
[Mon Nov 14 10:05:09 2022] epc : abd_iterate_
[Mon Nov 14 10:05:09 2022] ra : abd_copy_
[Mon Nov 14 10:05:09 2022] epc : ffffffff047fcda6 ra : ffffffff047fd034 sp : ffffffd80ef7ba10
[Mon Nov 14 10:05:09 2022] gp : ffffffff81e93b80 tp : ffffffd829dd7080 t0 : ffffffd82b389780
[Mon Nov 14 10:05:09 2022] t1 : 9ae16a3b2f90404f t2 : ffffffd80d5ec480 s0 : ffffffd80ef7bab0
[Mon Nov 14 10:05:09 2022] s1 : ffffffd82b389730 a0 : 0000000000000019 a1 : 0000000000000000
[Mon Nov 14 10:05:09 2022] a2 : 0000000000020000 a3 : ffffffff047fc000 a4 : ffffffd80ef7bab0
[Mon Nov 14 10:05:09 2022] a5 : 0000000000000000 a6 : 0000000000000000 a7 : 39f52a87d3073d0d
[Mon Nov 14 10:05:09 2022] s2 : ffffffd836b043c0 s3 : 0000000000000007 s4 : 0000000000000000
[Mon Nov 14 10:05:09 2022] s5 : 0000000000020000 s6 : 000000000000000a s7 : ffffffd80d5ecbc8
[Mon Nov 14 10:05:09 2022] s8 : ffffffd80451c000 s9 : 0000000000000007 s10: 0000000000000004
[Mon Nov 14 10:05:09 2022] s11: ffffffd811d36220 t3 : 0000000000ff0000 t4 : 0000002b00000000
[Mon Nov 14 10:05:09 2022] t5 : 000000ff00000000 t6 : 0000000000000002
[Mon Nov 14 10:05:09 2022] status: 0000000200000120 badaddr: 0000000000000019 cause: 000000000000000d
[Mon Nov 14 10:05:09 2022] [<ffffffff047fd
[Mon Nov 14 10:05:09 2022] [<ffffffff04806
[Mon Nov 14 10:05:09 2022] [<ffffffff04806
[Mon Nov 14 10:05:09 2022] [<ffffffff04806
[Mon Nov 14 10:05:09 2022] [<ffffffff04908
[Mon Nov 14 10:05:09 2022] [<ffffffff04902
[Mon Nov 14 10:05:09 2022] [<ffffffff02279
[Mon Nov 14 10:05:09 2022] [<ffffffff8004a
[Mon Nov 14 10:05:09 2022] [<ffffffff80003
[Mon Nov 14 10:05:09 2022] ---[ end trace 0000000000000000 ]---
[Thu Nov 17 09:57:35 2022] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000008
[Thu Nov 17 09:57:35 2022] Oops [#1]
[Thu Nov 17 09:57:35 2022] Modules linked in: tls binfmt_misc 8723ds(OE) cfg80211 zfs(POE) pwrseq_simple sunxi_cir rc_core zunicode(POE) snd_soc_hdmi_codec zzstd(OE) ses enclosure scsi_transport_sas sunxi phy_generic zlua(OE) sunxi_cedrus(C) v4l2_mem2mem videobuf2_
[Thu Nov 17 09:57:35 2022] display_connector drm_kms_helper backlight syscopyarea sysfillrect sun8i_tcon_top sysimgblt fb_sys_fops
[Thu Nov 17 09:57:36 2022] CPU: 0 PID: 777 Comm: z_rd_int Tainted: P C OE 5.17.0-
[Thu Nov 17 09:57:36 2022] Hardware name: Sipeed Lichee RV Dock (DT)
[Thu Nov 17 09:57:36 2022] epc : abd_iterate_
[Thu Nov 17 09:57:36 2022] ra : abd_copy_
[Thu Nov 17 09:57:36 2022] epc : ffffffff03b85da6 ra : ffffffff03b86034 sp : ffffffd82a50fa10
[Thu Nov 17 09:57:36 2022] gp : ffffffff81e93b80 tp : ffffffd8048f3200 t0 : ffffffd812855050
[Thu Nov 17 09:57:36 2022] t1 : 9ae16a3b2f90404f t2 : ffffffd814f14480 s0 : ffffffd82a50fab0
[Thu Nov 17 09:57:36 2022] s1 : ffffffd812855000 a0 : 0000000000000008 a1 : 0000000000000000
[Thu Nov 17 09:57:36 2022] a2 : 0000000000020000 a3 : ffffffff03b85000 a4 : ffffffd82a50fab0
[Thu Nov 17 09:57:36 2022] a5 : 0000000000000000 a6 : 0000000000000000 a7 : dc5e038f83fc71d1
[Thu Nov 17 09:57:36 2022] s2 : ffffffd830cb8640 s3 : 0000000000000007 s4 : 0000000000000000
[Thu Nov 17 09:57:36 2022] s5 : 0000000000020000 s6 : 000000000000000a s7 : ffffffd814f14808
[Thu Nov 17 09:57:36 2022] s8 : ffffffd80f4ac000 s9 : 0000000000000007 s10: 0000000000000004
[Thu Nov 17 09:57:36 2022] s11: ffffffd806554000 t3 : 000000007fffffff t4 : 0000000000000002
[Thu Nov 17 09:57:36 2022] t5 : ffffffd814f14480 t6 : 0000000000000002
[Thu Nov 17 09:57:36 2022] status: 0000000200000120 badaddr: 0000000000000008 cause: 000000000000000d
[Thu Nov 17 09:57:36 2022] [<ffffffff03b86
[Thu Nov 17 09:57:36 2022] [<ffffffff03b8f
[Thu Nov 17 09:57:36 2022] [<ffffffff03b8f
[Thu Nov 17 09:57:36 2022] [<ffffffff03b8f
[Thu Nov 17 09:57:36 2022] [<ffffffff03c91
[Thu Nov 17 09:57:36 2022] [<ffffffff03c8b
[Thu Nov 17 09:57:36 2022] [<ffffffff02285
[Thu Nov 17 09:57:36 2022] [<ffffffff8004a
[Thu Nov 17 09:57:36 2022] [<ffffffff80003
[Thu Nov 17 09:57:36 2022] ---[ end trace 0000000000000000 ]---
summary: |
- NULL pointer dereference + NULL pointer dereference in abd_copy_to_buf_off |
description: | updated |