Crash during clone() on user process while perf is running

Bug #2067380 reported by Ariel E
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
zfs-linux (Ubuntu)
New
Undecided
Unassigned

Bug Description

[114160.228398] BUG: kernel NULL pointer dereference, address: 000000000000008c
[114160.232549] #PF: supervisor write access in kernel mode
[114160.236135] #PF: error_code(0x0002) - not-present page
[114160.239636] PGD 0 P4D 0
[114160.242317] Oops: 0002 [#1] SMP NOPTI
[114160.245344] CPU: 360 PID: 1559314 Comm: git Tainted: P O 6.2.0-1018-aws #18~22.04.1-Ubuntu
[114160.251947] Hardware name: Amazon EC2 u-12tb1.112xlarge/, BIOS 1.0 10/16/2017
[114160.257988] RIP: 0010:inherit_task_group.isra.0+0x86/0x190
[114160.262023] Code: 48 89 df e8 5c fd ff ff 49 89 c7 48 3d 00 f0 ff ff 0f 87 85 00 00 00 48 3b 9b 90 00 00 00 0f 84 a1 00 00 00 8b 83 8c 00 00 00 <41> 89 87 8c 00 00 00 48 83 c4 08 31 c0 5b 41 5c 41 5d 41 5e 41 5f
[114160.274384] RSP: 0018:ffffb85df19bbc98 EFLAGS: 00010246
[114160.278273] RAX: 0000000000000000 RBX: ffff92697ecac8a8 RCX: 0000000000000000
[114160.284636] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000000000000
[114160.290996] RBP: ffffb85df19bbcc8 R08: 0000000000000000 R09: 0000000000000000
[114160.297347] R10: 0000000000000000 R11: 0000000000000000 R12: ffff99836c44e300
[114160.303728] R13: ffff92697ecac8a8 R14: ffff9967aa4c2000 R15: 0000000000000000
[114160.309843] FS: 00007fd549fd7b80(0000) GS:ffff99a033100000(0000) knlGS:0000000000000000
[114160.316399] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[114160.320395] CR2: 000000000000008c CR3: 0000090e95404006 CR4: 00000000007706e0
[114160.326153] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
[114160.331931] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400
[114160.337773] PKRU: 55555554
[114160.340584] Call Trace:
[114160.343298] <TASK>
[114160.345814] ? show_regs+0x72/0x90
[114160.348829] ? __die+0x25/0x80
[114160.351723] ? page_fault_oops+0x79/0x190
[114160.354996] ? do_user_addr_fault+0x302/0x630
[114160.358203] ? exc_page_fault+0x81/0x190
[114160.361311] ? asm_exc_page_fault+0x27/0x30
[114160.364535] ? inherit_task_group.isra.0+0x86/0x190
[114160.367995] ? inherit_task_group.isra.0+0x64/0x190
[114160.371432] perf_event_init_context+0x14b/0x260
[114160.374787] perf_event_init_task+0x5c/0xa0
[114160.377993] copy_process+0x682/0x1590
[114160.381050] kernel_clone+0x9d/0x3c0
[114160.384040] __do_sys_clone+0x66/0xa0
[114160.387104] __x64_sys_clone+0x25/0x40
[114160.390350] do_syscall_64+0x59/0x90
[114160.393832] ? irqentry_exit+0x21/0x40
[114160.397061] ? exc_page_fault+0x92/0x190
[114160.400273] entry_SYSCALL_64_after_hwframe+0x73/0xdd
[114160.404066] RIP: 0033:0x7fd549ceab57
[114160.407556] Code: ba 04 00 f3 0f 1e fa 64 48 8b 04 25 10 00 00 00 45 31 c0 31 d2 31 f6 bf 11 00 20 01 4c 8d 90 d0 02 00 00 b8 38 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 41 41 89 c0 85 c0 75 2c 64 48 8b 04 25 10 00
[114160.419547] RSP: 002b:00007ffc169b7d18 EFLAGS: 00000246 ORIG_RAX: 0000000000000038
[114160.425773] RAX: ffffffffffffffda RBX: 00007fd54a0df040 RCX: 00007fd549ceab57
[114160.431488] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000001200011
[114160.437215] RBP: 0000000000000000 R08: 0000000000000000 R09: 00007ffc169b7e20
[114160.442979] R10: 00007fd549fd7e50 R11: 0000000000000246 R12: 0000000000000001
[114160.448669] R13: 00007ffc169b7f68 R14: 00007ffc169b7e60 R15: 00007ffc169b7ee0
[114160.454441] </TASK>
[114160.457009] Modules linked in: xt_tcpudp xt_conntrack nft_chain_nat xt_MASQUERADE nf_nat nf_conntrack_netlink nf_conntrack nf_defrag_ipv6 nf_defrag_ipv4 xfrm_user xfrm_algo xt_addrtype nft_compat nf_tables libcrc32c nfnetlink br_netfilter bridge stp llc tls wireguard curve25519_x86_64 libchacha20poly1305 chacha_x86_64 poly1305_x86_64 libcurve25519_generic libchacha ip6_udp_tunnel udp_tunnel nvme_fabrics overlay sunrpc binfmt_misc intel_rapl_msr intel_rapl_common intel_uncore_frequency_common zfs(PO) zunicode(PO) isst_if_common zzstd(O) zlua(O) nfit zavl(PO) crct10dif_pclmul crc32_pclmul icp(PO) polyval_clmulni zcommon(PO) znvpair(PO) ppdev polyval_generic ghash_clmulni_intel nls_iso8859_1 sha512_ssse3 aesni_intel crypto_simd spl(O) cryptd rapl raid0 input_leds psmouse parport_pc ena i2c_piix4 serio_raw parport mac_hid dm_multipath scsi_dh_rdac scsi_dh_emc scsi_dh_alua sch_fq_codel msr drm efi_pstore ip_tables x_tables autofs4
[114160.503752] CR2: 000000000000008c
[114160.506639] ---[ end trace 0000000000000000 ]---
[114160.509950] RIP: 0010:inherit_task_group.isra.0+0x86/0x190
[114160.513589] Code: 48 89 df e8 5c fd ff ff 49 89 c7 48 3d 00 f0 ff ff 0f 87 85 00 00 00 48 3b 9b 90 00 00 00 0f 84 a1 00 00 00 8b 83 8c 00 00 00 <41> 89 87 8c 00 00 00 48 83 c4 08 31 c0 5b 41 5c 41 5d 41 5e 41 5f
[114160.524861] RSP: 0018:ffffb85df19bbc98 EFLAGS: 00010246
[114160.528421] RAX: 0000000000000000 RBX: ffff92697ecac8a8 RCX: 0000000000000000
[114160.534223] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000000000000
[114160.540064] RBP: ffffb85df19bbcc8 R08: 0000000000000000 R09: 0000000000000000
[114160.545817] R10: 0000000000000000 R11: 0000000000000000 R12: ffff99836c44e300
[114160.551571] R13: ffff92697ecac8a8 R14: ffff9967aa4c2000 R15: 0000000000000000
[114160.557330] FS: 00007fd549fd7b80(0000) GS:ffff99a033100000(0000) knlGS:0000000000000000
[114160.563383] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[114160.567041] CR2: 000000000000008c CR3: 0000090e95404006 CR4: 00000000007706e0
[114160.572767] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
[114160.578502] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400
[114160.584261] PKRU: 55555554

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.