[Enter `^Ec?' for help] coreboot-56f9d1cd49 Thu Sep 5 21:57:06 UTC 2019 bootblock starting... Family_Model: 00670f00 PMxC0 STATUS: 0x80800 DoReset BIT11 DW I2C bus 1 at 0xfedc3000 (400 KHz) VBOOT: Loading verstage. CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'fallback/verstage' CBFS: Found @ offset aa8c0 size d5a4 coreboot-56f9d1cd49 Thu Sep 5 21:57:06 UTC 2019 verstage starting... Probing TPM I2C: done! DID_VID 0x00281ae0 TPM ready after 0 ms cr50 TPM 2.0 (i2c 1:0x50 id 0x28) TPM: setup succeeded src/security/tpm/tss/tcg-2.0/tss.c:177 index 0x1007 return code 0 Chrome EC: UHEPI supported Phase 1 FMAP: Found \"FLASH\" version 1.1 at d7f000. FMAP: base = ff000000 size = 1000000 #areas = 30 FMAP: area GBB found @ d80000 (458752 bytes) VB2:vb2_check_recovery() Recovery reason from previous boot: 0x0 / 0x0 Phase 2 Phase 3 FMAP: area GBB found @ d80000 (458752 bytes) VB2:vb2_report_dev_firmware() This is developer signed firmware FMAP: area VBLOCK_A found @ 21000 (65536 bytes) FMAP: area VBLOCK_A found @ 21000 (65536 bytes) VB2:vb2_verify_keyblock() Checking key block signature... FMAP: area VBLOCK_A found @ 21000 (65536 bytes) FMAP: area VBLOCK_A found @ 21000 (65536 bytes) VB2:vb2_verify_fw_preamble() Verifying preamble. Phase 4 FMAP: area FW_MAIN_A found @ 31000 (2154432 bytes) VB2:vb2api_init_hash() HW crypto for hash_alg 2 not supported, using SW VB2:vb2_rsa_verify_digest() Digest check failed! VB2:vb2_fail() Need recovery, reason: 0x1b / 0x7 Saving nvdata Reboot requested (10020007) board_reset() called! coreboot-56f9d1cd49 Thu Sep 5 21:57:06 UTC 2019 bootblock starting... Family_Model: 00670f00 PMxC0 STATUS: 0x80800 DoReset BIT11 DW I2C bus 1 at 0xfedc3000 (400 KHz) VBOOT: Loading verstage. CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'fallback/verstage' CBFS: Found @ offset aa8c0 size d5a4 coreboot-56f9d1cd49 Thu Sep 5 21:57:06 UTC 2019 verstage starting... Probing TPM I2C: .done! DID_VID 0x00281ae0 TPM ready after 0 ms cr50 TPM 2.0 (i2c 1:0x50 id 0x28) TPM: setup succeeded src/security/tpm/tss/tcg-2.0/tss.c:177 index 0x1007 return code 0 Chrome EC: UHEPI supported Phase 1 FMAP: Found \"FLASH\" version 1.1 at d7f000. FMAP: base = ff000000 size = 1000000 #areas = 30 FMAP: area GBB found @ d80000 (458752 bytes) VB2:vb2_check_recovery() Recovery reason from previous boot: 0x1b / 0x7 VB2:vb2_check_recovery() We have a recovery request: 0x1b / 0x0 Recovery requested (1009000e) Saving nvdata tlcl_extend: response is 0 tlcl_extend: response is 0 CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'fallback/romstage' CBFS: Found @ offset 80 size d2e4 coreboot-56f9d1cd49 Thu Sep 5 21:57:06 UTC 2019 romstage starting... CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'smu_fw' CBFS: Found @ offset 7bc00 size 12262 PSP: Load blob type 19 from @ffe6bc38... OK Google Chrome set keyboard backlight: 4 status (0) POST: 0x37 agesawrapper_amdinitreset() entry CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'AGESA_PRE_MEM' CBFS: Found @ offset df80 size 53bcc agesawrapper_amdinitreset() returned AGESA_SUCCESS POST: 0x38 agesawrapper_amdinitearly() entry Warning - AGESA callout: platform_PcieSlotResetControl not supported Warning - AGESA callout: platform_PcieSlotResetControl not supported agesawrapper_amdinitearly() returned AGESA_SUCCESS POST: 0x40 agesawrapper_amdinitpost() entry DRAM clear on reset: Keep variant_mainboard_read_spd SPD index 8 CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'spd.bin' CBFS: Found @ offset 79bc0 size 2000 AGESA set: umamode UMA_SPECIFIED : syslimit 0x12effffff, bottomio 0x00d00000 : uma size 16MB, uma start 0xcf000000 agesawrapper_amdinitpost() returned AGESA_SUCCESS POST: 0x41 Boot Count incremented to 39183 POST: 0x42 PSP: Notify that DRAM is available... OK POST: 0x43 CBMEM: IMD: root @ cdfff000 254 entries. IMD: root @ cdffec00 62 entries. External stage cache: IMD: root @ cefff000 254 entries. IMD: root @ ceffec00 62 entries. creating vboot_handoff structure Chrome EC: UHEPI supported Chrome EC: clear events_b mask to 0x0000000021004000 POST: 0x44 MTRR Range: Start=cd000000 End=ce000000 (Size 1000000) MTRR Range: Start=ff000000 End=0 (Size 1000000) MTRR Range: Start=ce800000 End=cf000000 (Size 800000) POST: 0x45 CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'fallback/postcar' CBFS: Found @ offset a2a80 size 41f4 Decompressing stage fallback/postcar @ 0xcdfa1fc0 (33488 bytes) Loading module at cdfa2000 with entry cdfa2000. filesize: 0x3fd0 memsize: 0x8290 Processing 114 relocs. Offset value of 0xcbfa2000 coreboot-56f9d1cd49 Thu Sep 5 21:57:06 UTC 2019 postcar starting... CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'fallback/ramstage' CBFS: Found @ offset 61bc0 size 17f95 Decompressing stage fallback/ramstage @ 0xcde9efc0 (1055256 bytes) Loading module at cde9f000 with entry cde9f000. filesize: 0x37198 memsize: 0x1019d8 Processing 3480 relocs. Offset value of 0xcdd9f000 coreboot-56f9d1cd49 Thu Sep 5 21:57:06 UTC 2019 ramstage starting... POST: 0x39 FMAP: Found \"FLASH\" version 1.1 at d7f000. FMAP: base = ff000000 size = 1000000 #areas = 30 FMAP: area RO_VPD found @ c00000 (16384 bytes) WARNING: RO_VPD is uninitialized or empty. FMAP: area RW_VPD found @ 465000 (8192 bytes) WARNING: RW_VPD is uninitialized or empty. POST: 0x80 Normal boot. POST: 0x46 CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'smu_fw2' CBFS: Found @ offset 8dec0 size 4cf2 PSP: Load blob type 1a from @ffe7def8... OK POST: 0x47 agesawrapper_amdinitenv() entry CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'AGESA_POST_MEM' CBFS: Found @ offset b7f00 size 135b2 Decompressing stage AGESA_POST_MEM @ 0xcde6cfc0 (198492 bytes) Loading module at cde6d000 with entry cde6d000. filesize: 0x2f340 memsize: 0x2f480 Processing 1271 relocs. Offset value of 0xce06d000 AGESA: Saving stage to cache Fch OEM config in INIT ENV Done agesawrapper_amdinitenv() returned AGESA_SUCCESS POST: 0x70 BS: BS_PRE_DEVICE times (us): entry 124121 run 1061 exit 0 POST: 0x71 Board ID: 6 mainboard: EC init Chrome EC: Set SMI mask to 0x0000000000000000 Chrome EC: UHEPI supported Chrome EC: Set S5 LAZY WAKE mask to 0x0000000000000006 Chrome EC: Set S3 LAZY WAKE mask to 0x0000000010001006 Chrome EC: Set WAKE mask to 0x0000000000000000 DW I2C bus 0 at 0xfedc2000 (400 KHz) DW I2C bus 2 at 0xfedc4000 (400 KHz) DW I2C bus 3 at 0xfedc5000 (400 KHz) FMAP: area RW_ELOG found @ 45d000 (16384 bytes) Manufacturer: ef SF: Detected W25Q128FW with sector size 0x1000, total 0x1000000 ELOG: NV offset 0x45d000 size 0x4000 ELOG: area is 4096 bytes, full threshold 3842, shrink size 1024 ELOG: Event(17) added with size 13 at 2022-06-28 03:37:19 UTC POST: Unexpected post code in previous boot: 0x90 ELOG: Event(A3) added with size 11 at 2022-06-28 03:37:19 UTC ELOG: Event(9F) added with size 14 at 2022-06-28 03:37:19 UTC PM1_STS: PWRBTN BMSTATUS setup_bsp_ramtop, TOP MEM: msr.lo = 0xd0000000, msr.hi = 0x00000000 setup_bsp_ramtop, TOP MEM2: msr.lo = 0x2f000000, msr.hi = 0x00000001 BS: BS_DEV_INIT_CHIPS times (us): entry 0 run 96190 exit 1 POST: 0x72 Enumerating buses... Show all devs... Before device enumeration. Root Device: enabled 1 CPU_CLUSTER: 0: enabled 1 DOMAIN: 0000: enabled 1 MMIO: fedc2000: enabled 1 MMIO: fedc3000: enabled 1 MMIO: fedc4000: enabled 1 MMIO: fedc5000: enabled 1 APIC: 10: enabled 1 PCI: 00:00.0: enabled 1 PCI: 00:00.2: enabled 0 PCI: 00:01.0: enabled 1 PCI: 00:01.1: enabled 1 PCI: 00:02.0: enabled 1 PCI: 00:02.1: enabled 1 PCI: 00:02.2: enabled 1 PCI: 00:02.3: enabled 1 PCI: 00:02.4: enabled 1 PCI: 00:02.5: enabled 1 PCI: 00:08.0: enabled 1 PCI: 00:09.0: enabled 1 PCI: 00:09.2: enabled 1 PCI: 00:10.0: enabled 1 PCI: 00:11.0: enabled 0 PCI: 00:12.0: enabled 1 PCI: 00:14.0: enabled 1 PCI: 00:14.3: enabled 1 PCI: 00:14.7: enabled 1 PCI: 00:18.0: enabled 1 PCI: 00:18.1: enabled 1 PCI: 00:18.2: enabled 1 PCI: 00:18.3: enabled 1 PCI: 00:18.4: enabled 1 PCI: 00:18.5: enabled 1 GENERIC: 0.0: enabled 1 I2C: 00:1a: enabled 1 GENERIC: 0.1: enabled 1 I2C: 00:50: enabled 1 I2C: 00:15: enabled 1 I2C: 00:39: enabled 1 I2C: 00:10: enabled 1 PCI: 00:00.0: enabled 1 PNP: 0c09.0: enabled 1 Compare with tree... Root Device: enabled 1 CPU_CLUSTER: 0: enabled 1 APIC: 10: enabled 1 DOMAIN: 0000: enabled 1 PCI: 00:00.0: enabled 1 PCI: 00:00.2: enabled 0 PCI: 00:01.0: enabled 1 PCI: 00:01.1: enabled 1 PCI: 00:02.0: enabled 1 PCI: 00:02.1: enabled 1 PCI: 00:02.2: enabled 1 PCI: 00:02.3: enabled 1 PCI: 00:02.4: enabled 1 PCI: 00:00.0: enabled 1 PCI: 00:02.5: enabled 1 PCI: 00:08.0: enabled 1 PCI: 00:09.0: enabled 1 PCI: 00:09.2: enabled 1 PCI: 00:10.0: enabled 1 PCI: 00:11.0: enabled 0 PCI: 00:12.0: enabled 1 PCI: 00:14.0: enabled 1 PCI: 00:14.3: enabled 1 PNP: 0c09.0: enabled 1 PCI: 00:14.7: enabled 1 PCI: 00:18.0: enabled 1 PCI: 00:18.1: enabled 1 PCI: 00:18.2: enabled 1 PCI: 00:18.3: enabled 1 PCI: 00:18.4: enabled 1 PCI: 00:18.5: enabled 1 MMIO: fedc2000: enabled 1 GENERIC: 0.0: enabled 1 I2C: 00:1a: enabled 1 GENERIC: 0.1: enabled 1 MMIO: fedc3000: enabled 1 I2C: 00:50: enabled 1 MMIO: fedc4000: enabled 1 I2C: 00:15: enabled 1 MMIO: fedc5000: enabled 1 I2C: 00:39: enabled 1 I2C: 00:10: enabled 1 Mainboard Grunt Enable. Root Device scanning... root_dev_scan_bus for Root Device CPU_CLUSTER: 0 enabled DOMAIN: 0000 enabled MMIO: fedc2000 enabled MMIO: fedc3000 enabled MMIO: fedc4000 enabled MMIO: fedc5000 enabled DOMAIN: 0000 scanning... PCI: pci_scan_bus for bus 00 POST: 0x24 sb_enable PCI: 00:00.0 [1022/1576] enabled sb_enable sb_enable PCI: 00:01.0 [1002/98e4] enabled sb_enable PCI: 00:01.1 [1002/15b3] enabled sb_enable PCI: 00:02.0 [1022/157b] enabled sb_enable PCI: Static device PCI: 00:02.1 not found, disabling it. sb_enable Capability: type 0x01 @ 0x50 Capability: type 0x10 @ 0x58 Capability: type 0x05 @ 0xa0 Capability: type 0x0d @ 0xc0 Capability: type 0x08 @ 0xc8 Capability: type 0x01 @ 0x50 Capability: type 0x10 @ 0x58 PCI: 00:02.2 subordinate bus PCI Express PCI: 00:02.2 [1022/157c] enabled sb_enable PCI: Static device PCI: 00:02.3 not found, disabling it. sb_enable Capability: type 0x01 @ 0x50 Capability: type 0x10 @ 0x58 Capability: type 0x05 @ 0xa0 Capability: type 0x0d @ 0xc0 Capability: type 0x08 @ 0xc8 Capability: type 0x01 @ 0x50 Capability: type 0x10 @ 0x58 PCI: 00:02.4 subordinate bus PCI Express PCI: 00:02.4 [1022/157c] enabled sb_enable PCI: Static device PCI: 00:02.5 not found, disabling it. PCI: 00:03.0 [1022/157b] enabled sb_enable PCI: 00:08.0 [1022/1578] enabled sb_enable PCI: 00:09.0 [1022/157d] enabled sb_enable PCI: Static device PCI: 00:09.2 not found, disabling it. sb_enable PCI: 00:10.0 [1022/0000] bus ops PCI: 00:10.0 [1022/7914] enabled sb_enable sb_enable PCI: 00:12.0 [1022/0000] bus ops PCI: 00:12.0 [1022/7908] enabled sb_enable PCI: 00:14.0 [1022/790b] bus ops PCI: 00:14.0 [1022/790b] enabled sb_enable PCI: 00:14.3 [1022/0000] bus ops PCI: 00:14.3 [1022/790e] enabled sb_enable PCI: 00:14.7 [1022/7906] enabled sb_enable PCI: 00:18.0 [1022/15b0] ops PCI: 00:18.0 [1022/15b0] enabled sb_enable PCI: 00:18.1 [1022/15b1] enabled sb_enable PCI: 00:18.2 [1022/15b2] enabled sb_enable PCI: 00:18.3 [1022/15b3] enabled sb_enable PCI: 00:18.4 [1022/15b4] enabled sb_enable PCI: 00:18.5 [1022/15b5] enabled POST: 0x25 PCI: 00:02.2 scanning... do_pci_scan_bridge for PCI: 00:02.2 PCI: pci_scan_bus for bus 01 POST: 0x24 PCI: 01:00.0 [168c/003e] enabled POST: 0x25 POST: 0x55 Capability: type 0x01 @ 0x40 Capability: type 0x05 @ 0x50 Capability: type 0x10 @ 0x70 Capability: type 0x01 @ 0x50 Capability: type 0x10 @ 0x58 Enabling Common Clock Configuration ASPM: Enabled L0s and L1 Capability: type 0x01 @ 0x40 Capability: type 0x05 @ 0x50 Capability: type 0x10 @ 0x70 scan_bus: scanning of bus PCI: 00:02.2 took 40753 usecs PCI: 00:02.4 scanning... do_pci_scan_bridge for PCI: 00:02.4 PCI: pci_scan_bus for bus 02 POST: 0x24 PCI: 02:00.0 [1217/0000] ops PCI: 02:00.0 [1217/8620] enabled POST: 0x25 POST: 0x55 Capability: type 0x01 @ 0x6c Capability: type 0x05 @ 0x48 Capability: type 0x10 @ 0x80 Capability: type 0x01 @ 0x50 Capability: type 0x10 @ 0x58 ASPM: Enabled L0s and L1 Capability: type 0x01 @ 0x6c Capability: type 0x05 @ 0x48 Capability: type 0x10 @ 0x80 scan_bus: scanning of bus PCI: 00:02.4 took 40316 usecs PCI: 00:10.0 scanning... scan_usb_bus for PCI: 00:10.0 scan_usb_bus for PCI: 00:10.0 done scan_bus: scanning of bus PCI: 00:10.0 took 8112 usecs PCI: 00:12.0 scanning... scan_usb_bus for PCI: 00:12.0 scan_usb_bus for PCI: 00:12.0 done scan_bus: scanning of bus PCI: 00:12.0 took 8109 usecs PCI: 00:14.0 scanning... scan_generic_bus for PCI: 00:14.0 scan_generic_bus for PCI: 00:14.0 done scan_bus: scanning of bus PCI: 00:14.0 took 8803 usecs PCI: 00:14.3 scanning... scan_lpc_bus for PCI: 00:14.3 PNP: 0c09.0 enabled scan_lpc_bus for PCI: 00:14.3 done scan_bus: scanning of bus PCI: 00:14.3 took 9953 usecs POST: 0x55 scan_bus: scanning of bus DOMAIN: 0000 took 315151 usecs MMIO: fedc2000 scanning... scan_generic_bus for MMIO: fedc2000 bus: MMIO: fedc2000[0]->GENERIC: 0.0 enabled bus: MMIO: fedc2000[0]->I2C: 01:1a enabled bus: MMIO: fedc2000[0]->GENERIC: 0.1 enabled scan_generic_bus for MMIO: fedc2000 done scan_bus: scanning of bus MMIO: fedc2000 took 21168 usecs MMIO: fedc3000 scanning... scan_generic_bus for MMIO: fedc3000 bus: MMIO: fedc3000[0]->I2C: 02:50 enabled scan_generic_bus for MMIO: fedc3000 done scan_bus: scanning of bus MMIO: fedc3000 took 13154 usecs MMIO: fedc4000 scanning... scan_generic_bus for MMIO: fedc4000 bus: MMIO: fedc4000[0]->I2C: 03:15 enabled scan_generic_bus for MMIO: fedc4000 done scan_bus: scanning of bus MMIO: fedc4000 took 13156 usecs MMIO: fedc5000 scanning... scan_generic_bus for MMIO: fedc5000 bus: MMIO: fedc5000[0]->I2C: 04:39 enabled bus: MMIO: fedc5000[0]->I2C: 04:10 enabled scan_generic_bus for MMIO: fedc5000 done scan_bus: scanning of bus MMIO: fedc5000 took 16981 usecs root_dev_scan_bus for Root Device done scan_bus: scanning of bus Root Device took 426202 usecs done BS: BS_DEV_ENUMERATE times (us): entry 0 run 631205 exit 0 POST: 0x73 found VGA at PCI: 00:01.0 Setting up VGA for PCI: 00:01.0 Setting PCI_BRIDGE_CTL_VGA for bridge DOMAIN: 0000 Setting PCI_BRIDGE_CTL_VGA for bridge Root Device Allocating resources... Reading resources... Root Device read_resources bus 0 link: 0 CPU_CLUSTER: 0 read_resources bus 0 link: 0 CPU_CLUSTER: 0 read_resources bus 0 link: 0 done DOMAIN: 0000 read_resources bus 0 link: 0 PCI: 00:02.2 read_resources bus 1 link: 0 PCI: 00:02.2 read_resources bus 1 link: 0 done PCI: 00:02.4 read_resources bus 2 link: 0 PCI: 00:02.4 read_resources bus 2 link: 0 done PCI: 00:14.3 read_resources bus 0 link: 0 PCI: 00:14.3 read_resources bus 0 link: 0 done Adding PCIe enhanced config space BAR 0xf8000000-0xfc000000. DOMAIN: 0000 read_resources bus 0 link: 0 done MMIO: fedc2000 read_resources bus 1 link: 0 MMIO: fedc2000 read_resources bus 1 link: 0 done MMIO: fedc3000 read_resources bus 2 link: 0 MMIO: fedc3000 read_resources bus 2 link: 0 done MMIO: fedc4000 read_resources bus 3 link: 0 MMIO: fedc4000 read_resources bus 3 link: 0 done MMIO: fedc5000 read_resources bus 4 link: 0 MMIO: fedc5000 read_resources bus 4 link: 0 done Root Device read_resources bus 0 link: 0 done Done reading resources. Show resources in subtree (Root Device)...After reading. Root Device child on link 0 CPU_CLUSTER: 0 CPU_CLUSTER: 0 child on link 0 APIC: 10 APIC: 10 DOMAIN: 0000 child on link 0 PCI: 00:00.0 DOMAIN: 0000 resource base 0 size 0 align 0 gran 0 limit ffff flags 40040100 index 10000000 DOMAIN: 0000 resource base 0 size 0 align 0 gran 0 limit ffffffff flags 40040200 index 10000100 PCI: 00:00.0 PCI: 00:00.2 PCI: 00:01.0 PCI: 00:01.0 resource base 0 size 4000000 align 26 gran 26 limit ffffffffffffffff flags 1201 index 10 PCI: 00:01.0 resource base 0 size 800000 align 23 gran 23 limit ffffffffffffffff flags 1201 index 18 PCI: 00:01.0 resource base 0 size 100 align 8 gran 8 limit ffff flags 100 index 20 PCI: 00:01.0 resource base 0 size 40000 align 18 gran 18 limit ffffffff flags 200 index 24 PCI: 00:01.0 resource base 0 size 20000 align 17 gran 17 limit ffffffff flags 2200 index 30 PCI: 00:01.1 PCI: 00:01.1 resource base 0 size 4000 align 14 gran 14 limit ffffffffffffffff flags 201 index 10 PCI: 00:02.0 PCI: 00:02.1 PCI: 00:02.2 child on link 0 PCI: 01:00.0 PCI: 00:02.2 resource base 0 size 0 align 12 gran 12 limit ffffffff flags 80102 index 1c PCI: 00:02.2 resource base 0 size 0 align 20 gran 20 limit ffffffffffffffff flags 81202 index 24 PCI: 00:02.2 resource base 0 size 0 align 20 gran 20 limit ffffffff flags 80202 index 20 PCI: 01:00.0 PCI: 01:00.0 resource base 0 size 200000 align 21 gran 21 limit ffffffffffffffff flags 201 index 10 PCI: 00:02.3 PCI: 00:02.4 child on link 0 PCI: 02:00.0 PCI: 00:02.4 resource base 0 size 0 align 12 gran 12 limit ffffffff flags 80102 index 1c PCI: 00:02.4 resource base 0 size 0 align 20 gran 20 limit ffffffffffffffff flags 81202 index 24 PCI: 00:02.4 resource base 0 size 0 align 20 gran 20 limit ffffffff flags 80202 index 20 PCI: 02:00.0 PCI: 02:00.0 resource base 0 size 1000 align 12 gran 12 limit ffffffff flags 200 index 10 PCI: 02:00.0 resource base 0 size 800 align 12 gran 11 limit ffffffff flags 200 index 14 PCI: 00:02.5 PCI: 00:03.0 PCI: 00:08.0 PCI: 00:08.0 resource base 0 size 20000 align 17 gran 17 limit ffffffffffffffff flags 1201 index 10 PCI: 00:08.0 resource base 0 size 100000 align 20 gran 20 limit ffffffff flags 200 index 18 PCI: 00:08.0 resource base 0 size 1000 align 12 gran 12 limit ffffffff flags 200 index 1c PCI: 00:08.0 resource base 0 size 100000 align 20 gran 20 limit ffffffff flags 200 index 20 PCI: 00:08.0 resource base 0 size 2000 align 13 gran 13 limit ffffffff flags 200 index 24 PCI: 00:09.0 PCI: 00:09.2 PCI: 00:10.0 PCI: 00:10.0 resource base 0 size 2000 align 13 gran 13 limit ffffffffffffffff flags 201 index 10 PCI: 00:11.0 PCI: 00:12.0 PCI: 00:12.0 resource base 0 size 100 align 12 gran 8 limit ffffffff flags 200 index 10 PCI: 00:14.0 PCI: 00:14.3 child on link 0 PNP: 0c09.0 PCI: 00:14.3 resource base 0 size 1000 align 0 gran 0 limit 0 flags c0040100 index 10000000 PCI: 00:14.3 resource base ff000000 size 1000000 align 0 gran 0 limit 0 flags c0040200 index 10000100 PCI: 00:14.3 resource base fec10000 size 400 align 0 gran 0 limit 0 flags e0040200 index 2 PCI: 00:14.3 resource base fec00000 size 1000 align 0 gran 0 limit 0 flags c0000200 index 3 PCI: 00:14.3 resource base fedc2000 size 4000 align 0 gran 0 limit 0 flags c0000200 index 4 PNP: 0c09.0 PNP: 0c09.0 resource base 800 size 1ff align 0 gran 0 limit 0 flags c0000100 index 0 PCI: 00:14.7 PCI: 00:14.7 resource base 0 size 100 align 12 gran 8 limit ffffffffffffffff flags 201 index 10 PCI: 00:18.0 PCI: 00:18.0 resource base f8000000 size 4000000 align 0 gran 0 limit 0 flags f0000200 index c0010058 PCI: 00:18.0 resource base fec20000 size 1000 align 0 gran 0 limit 0 flags c0000200 index fec20000 PCI: 00:18.1 PCI: 00:18.2 PCI: 00:18.3 PCI: 00:18.4 PCI: 00:18.5 MMIO: fedc2000 child on link 0 GENERIC: 0.0 GENERIC: 0.0 I2C: 01:1a GENERIC: 0.1 MMIO: fedc3000 child on link 0 I2C: 02:50 I2C: 02:50 MMIO: fedc4000 child on link 0 I2C: 03:15 I2C: 03:15 MMIO: fedc5000 child on link 0 I2C: 04:39 I2C: 04:39 I2C: 04:10 DOMAIN: 0000 io: base: 0 size: 0 align: 0 gran: 0 limit: ffff PCI: 00:02.2 io: base: 0 size: 0 align: 12 gran: 12 limit: ffffffff PCI: 00:02.2 io: base: 0 size: 0 align: 12 gran: 12 limit: ffffffff done PCI: 00:02.4 io: base: 0 size: 0 align: 12 gran: 12 limit: ffffffff PCI: 00:02.4 io: base: 0 size: 0 align: 12 gran: 12 limit: ffffffff done PCI: 00:01.0 20 * [0x0 - 0xff] io DOMAIN: 0000 io: base: 100 size: 100 align: 8 gran: 0 limit: ffff done DOMAIN: 0000 mem: base: 0 size: 0 align: 0 gran: 0 limit: ffffffff PCI: 00:02.2 prefmem: base: 0 size: 0 align: 20 gran: 20 limit: ffffffffffffffff PCI: 00:02.2 prefmem: base: 0 size: 0 align: 20 gran: 20 limit: ffffffffffffffff done PCI: 00:02.2 mem: base: 0 size: 0 align: 20 gran: 20 limit: ffffffff PCI: 01:00.0 10 * [0x0 - 0x1fffff] mem PCI: 00:02.2 mem: base: 200000 size: 200000 align: 21 gran: 20 limit: ffffffff done PCI: 00:02.4 prefmem: base: 0 size: 0 align: 20 gran: 20 limit: ffffffffffffffff PCI: 00:02.4 prefmem: base: 0 size: 0 align: 20 gran: 20 limit: ffffffffffffffff done PCI: 00:02.4 mem: base: 0 size: 0 align: 20 gran: 20 limit: ffffffff PCI: 02:00.0 10 * [0x0 - 0xfff] mem PCI: 02:00.0 14 * [0x1000 - 0x17ff] mem PCI: 00:02.4 mem: base: 1800 size: 100000 align: 20 gran: 20 limit: ffffffff done PCI: 00:01.0 10 * [0x0 - 0x3ffffff] prefmem PCI: 00:01.0 18 * [0x4000000 - 0x47fffff] prefmem PCI: 00:02.2 20 * [0x4800000 - 0x49fffff] mem PCI: 00:02.4 20 * [0x4a00000 - 0x4afffff] mem PCI: 00:08.0 18 * [0x4b00000 - 0x4bfffff] mem PCI: 00:08.0 20 * [0x4c00000 - 0x4cfffff] mem PCI: 00:01.0 24 * [0x4d00000 - 0x4d3ffff] mem PCI: 00:01.0 30 * [0x4d40000 - 0x4d5ffff] mem PCI: 00:08.0 10 * [0x4d60000 - 0x4d7ffff] prefmem PCI: 00:01.1 10 * [0x4d80000 - 0x4d83fff] mem PCI: 00:08.0 24 * [0x4d84000 - 0x4d85fff] mem PCI: 00:10.0 10 * [0x4d86000 - 0x4d87fff] mem PCI: 00:08.0 1c * [0x4d88000 - 0x4d88fff] mem PCI: 00:12.0 10 * [0x4d89000 - 0x4d890ff] mem PCI: 00:14.7 10 * [0x4d8a000 - 0x4d8a0ff] mem DOMAIN: 0000 mem: base: 4d8a100 size: 4d8a100 align: 26 gran: 0 limit: ffffffff done avoid_fixed_resources: DOMAIN: 0000 avoid_fixed_resources:@DOMAIN: 0000 10000000 limit 0000ffff avoid_fixed_resources:@DOMAIN: 0000 10000100 limit ffffffff constrain_resources: PCI: 00:14.3 10000000 base 00000000 limit 00000fff io (fixed) constrain_resources: PCI: 00:14.3 10000100 base ff000000 limit ffffffff mem (fixed) constrain_resources: PCI: 00:14.3 02 base fec10000 limit fec103ff mem (fixed) constrain_resources: PCI: 00:14.3 03 base fec00000 limit fec00fff mem (fixed) constrain_resources: PCI: 00:18.0 c0010058 base f8000000 limit fbffffff mem (fixed) avoid_fixed_resources:@DOMAIN: 0000 10000000 base 00001000 limit 0000ffff avoid_fixed_resources:@DOMAIN: 0000 10000100 base f0000000 limit f7ffffff Setting resources... DOMAIN: 0000 io: base:1000 size:100 align:8 gran:0 limit:ffff PCI: 00:01.0 20 * [0x1000 - 0x10ff] io DOMAIN: 0000 io: next_base: 1100 size: 100 align: 8 gran: 0 done PCI: 00:02.2 io: base:ffff size:0 align:12 gran:12 limit:ffff PCI: 00:02.2 io: next_base: ffff size: 0 align: 12 gran: 12 done PCI: 00:02.4 io: base:ffff size:0 align:12 gran:12 limit:ffff PCI: 00:02.4 io: next_base: ffff size: 0 align: 12 gran: 12 done DOMAIN: 0000 mem: base:f0000000 size:4d8a100 align:26 gran:0 limit:f7ffffff PCI: 00:01.0 10 * [0xf0000000 - 0xf3ffffff] prefmem PCI: 00:01.0 18 * [0xf4000000 - 0xf47fffff] prefmem PCI: 00:02.2 20 * [0xf4800000 - 0xf49fffff] mem PCI: 00:02.4 20 * [0xf4a00000 - 0xf4afffff] mem PCI: 00:08.0 18 * [0xf4b00000 - 0xf4bfffff] mem PCI: 00:08.0 20 * [0xf4c00000 - 0xf4cfffff] mem PCI: 00:01.0 24 * [0xf4d00000 - 0xf4d3ffff] mem PCI: 00:01.0 30 * [0xf4d40000 - 0xf4d5ffff] mem PCI: 00:08.0 10 * [0xf4d60000 - 0xf4d7ffff] prefmem PCI: 00:01.1 10 * [0xf4d80000 - 0xf4d83fff] mem PCI: 00:08.0 24 * [0xf4d84000 - 0xf4d85fff] mem PCI: 00:10.0 10 * [0xf4d86000 - 0xf4d87fff] mem PCI: 00:08.0 1c * [0xf4d88000 - 0xf4d88fff] mem PCI: 00:12.0 10 * [0xf4d89000 - 0xf4d890ff] mem PCI: 00:14.7 10 * [0xf4d8a000 - 0xf4d8a0ff] mem DOMAIN: 0000 mem: next_base: f4d8a100 size: 4d8a100 align: 26 gran: 0 done PCI: 00:02.2 prefmem: base:f7ffffff size:0 align:20 gran:20 limit:f7ffffff PCI: 00:02.2 prefmem: next_base: f7ffffff size: 0 align: 20 gran: 20 done PCI: 00:02.2 mem: base:f4800000 size:200000 align:21 gran:20 limit:f49fffff PCI: 01:00.0 10 * [0xf4800000 - 0xf49fffff] mem PCI: 00:02.2 mem: next_base: f4a00000 size: 200000 align: 21 gran: 20 done PCI: 00:02.4 prefmem: base:f7ffffff size:0 align:20 gran:20 limit:f7ffffff PCI: 00:02.4 prefmem: next_base: f7ffffff size: 0 align: 20 gran: 20 done PCI: 00:02.4 mem: base:f4a00000 size:100000 align:20 gran:20 limit:f4afffff PCI: 02:00.0 10 * [0xf4a00000 - 0xf4a00fff] mem PCI: 02:00.0 14 * [0xf4a01000 - 0xf4a017ff] mem PCI: 00:02.4 mem: next_base: f4a01800 size: 100000 align: 20 gran: 20 done Root Device assign_resources, bus 0 link: 0 DOMAIN: 0000 assign_resources, bus 0 link: 0 PCI: 00:01.0 10 <- [0x00f0000000 - 0x00f3ffffff] size 0x04000000 gran 0x1a prefmem64 PCI: 00:01.0 18 <- [0x00f4000000 - 0x00f47fffff] size 0x00800000 gran 0x17 prefmem64 PCI: 00:01.0 20 <- [0x0000001000 - 0x00000010ff] size 0x00000100 gran 0x08 io PCI: 00:01.0 24 <- [0x00f4d00000 - 0x00f4d3ffff] size 0x00040000 gran 0x12 mem PCI: 00:01.0 30 <- [0x00f4d40000 - 0x00f4d5ffff] size 0x00020000 gran 0x11 romem PCI: 00:01.1 10 <- [0x00f4d80000 - 0x00f4d83fff] size 0x00004000 gran 0x0e mem64 PCI: 00:02.2 1c <- [0x000000ffff - 0x000000fffe] size 0x00000000 gran 0x0c bus 01 io PCI: 00:02.2 24 <- [0x00f7ffffff - 0x00f7fffffe] size 0x00000000 gran 0x14 bus 01 prefmem PCI: 00:02.2 20 <- [0x00f4800000 - 0x00f49fffff] size 0x00200000 gran 0x14 bus 01 mem PCI: 00:02.2 assign_resources, bus 1 link: 0 PCI: 01:00.0 10 <- [0x00f4800000 - 0x00f49fffff] size 0x00200000 gran 0x15 mem64 PCI: 00:02.2 assign_resources, bus 1 link: 0 PCI: 00:02.4 1c <- [0x000000ffff - 0x000000fffe] size 0x00000000 gran 0x0c bus 02 io PCI: 00:02.4 24 <- [0x00f7ffffff - 0x00f7fffffe] size 0x00000000 gran 0x14 bus 02 prefmem PCI: 00:02.4 20 <- [0x00f4a00000 - 0x00f4afffff] size 0x00100000 gran 0x14 bus 02 mem PCI: 00:02.4 assign_resources, bus 2 link: 0 PCI: 02:00.0 10 <- [0x00f4a00000 - 0x00f4a00fff] size 0x00001000 gran 0x0c mem PCI: 02:00.0 14 <- [0x00f4a01000 - 0x00f4a017ff] size 0x00000800 gran 0x0b mem PCI: 00:02.4 assign_resources, bus 2 link: 0 PCI: 00:08.0 10 <- [0x00f4d60000 - 0x00f4d7ffff] size 0x00020000 gran 0x11 prefmem64 PCI: 00:08.0 18 <- [0x00f4b00000 - 0x00f4bfffff] size 0x00100000 gran 0x14 mem PCI: 00:08.0 1c <- [0x00f4d88000 - 0x00f4d88fff] size 0x00001000 gran 0x0c mem PCI: 00:08.0 20 <- [0x00f4c00000 - 0x00f4cfffff] size 0x00100000 gran 0x14 mem PCI: 00:08.0 24 <- [0x00f4d84000 - 0x00f4d85fff] size 0x00002000 gran 0x0d mem PCI: 00:10.0 10 <- [0x00f4d86000 - 0x00f4d87fff] size 0x00002000 gran 0x0d mem64 PCI: 00:12.0 10 <- [0x00f4d89000 - 0x00f4d890ff] size 0x00000100 gran 0x08 mem PCI: 00:14.3 assign_resources, bus 0 link: 0 PCI: 00:14.3 assign_resources, bus 0 link: 0 PCI: 00:14.7 10 <- [0x00f4d8a000 - 0x00f4d8a0ff] size 0x00000100 gran 0x08 mem64 DOMAIN: 0000 assign_resources, bus 0 link: 0 Root Device assign_resources, bus 0 link: 0 Done setting resources. Show resources in subtree (Root Device)...After assigning values. Root Device child on link 0 CPU_CLUSTER: 0 CPU_CLUSTER: 0 child on link 0 APIC: 10 APIC: 10 DOMAIN: 0000 child on link 0 PCI: 00:00.0 DOMAIN: 0000 resource base 1000 size 100 align 8 gran 0 limit ffff flags 40040100 index 10000000 DOMAIN: 0000 resource base f0000000 size 4d8a100 align 26 gran 0 limit f7ffffff flags 40040200 index 10000100 DOMAIN: 0000 resource base 0 size a0000 align 0 gran 0 limit 0 flags e0004200 index 10 DOMAIN: 0000 resource base a0000 size 20000 align 0 gran 0 limit 0 flags f0000200 index 11 DOMAIN: 0000 resource base c0000 size 40000 align 0 gran 0 limit 0 flags f0004200 index 12 DOMAIN: 0000 resource base 100000 size cdf00000 align 0 gran 0 limit 0 flags e0004200 index 13 DOMAIN: 0000 resource base ce000000 size 2000000 align 0 gran 0 limit 0 flags f0004200 index 14 DOMAIN: 0000 resource base 100000000 size 2f000000 align 0 gran 0 limit 0 flags e0004200 index 15 PCI: 00:00.0 PCI: 00:00.2 PCI: 00:01.0 PCI: 00:01.0 resource base f0000000 size 4000000 align 26 gran 26 limit f3ffffff flags 60001201 index 10 PCI: 00:01.0 resource base f4000000 size 800000 align 23 gran 23 limit f47fffff flags 60001201 index 18 PCI: 00:01.0 resource base 1000 size 100 align 8 gran 8 limit 10ff flags 60000100 index 20 PCI: 00:01.0 resource base f4d00000 size 40000 align 18 gran 18 limit f4d3ffff flags 60000200 index 24 PCI: 00:01.0 resource base f4d40000 size 20000 align 17 gran 17 limit f4d5ffff flags 60002200 index 30 PCI: 00:01.1 PCI: 00:01.1 resource base f4d80000 size 4000 align 14 gran 14 limit f4d83fff flags 60000201 index 10 PCI: 00:02.0 PCI: 00:02.1 PCI: 00:02.2 child on link 0 PCI: 01:00.0 PCI: 00:02.2 resource base ffff size 0 align 12 gran 12 limit ffff flags 60080102 index 1c PCI: 00:02.2 resource base f7ffffff size 0 align 20 gran 20 limit f7ffffff flags 60081202 index 24 PCI: 00:02.2 resource base f4800000 size 200000 align 21 gran 20 limit f49fffff flags 60080202 index 20 PC.0 PCI: 01:00.0 resource base f4800000 size 200000 align 21 gran 21 limit f49fffff flags 60000201 index 10 PCI: 00:02.3 PCI: 00:02.4 child on link 0 PCI: 02:00.0 PCI: 00:02.4 esource base ffff size 0 align 12 gran 12 limit ffff flags 60080102 index 1c PCI: 00:02.4 resource base f7ffffff size 0 align 20 gran 20 limit f7ffffff flags 60081202 index 24 PCI: 00:02.4 resource base f4a00000 size 100000 align 20 gran 20 limit f4afffff flags 60080202 index 20 PCI: 02:00.0 PCI: 02:00.0 resource base f4a00000 size 1000 align 12 gran 12 limit f4a00fff flags 60000200 index 10 PCI: 02:00.0 resource base f4a01000 size 800 align 12 gran 11 limit f4a017ff flags 60000200 index 14 PCI: 00:02.5 PCI: 00:03.0 PCI: 00:08.0 PCI: 00:08.0 resource base f4d60000 size 20000 align 17 gran 17 limit f4d7ffff flags 60001201 index 10 PCI: 00:08.0 resource base f4b00000 size 100000 align 20 gran 20 limit f4bfffff flags 60000200 index 18 PCI: 00:08.0 resource base f4d88000 size 1000 align 12 gran 12 limit f4d88fff flags 60000200 index 1c PCI: 00:08.0 resource base f4c00000 size 100000 align 20 gran 20 limit f4cfffff flags 60000200 index 20 PCI: 00:08.0 resource base f4d84000 size 2000 align 13 gran 13 limit f4d85fff flags 60000200 index 24 PCI: 00:09.0 PCI: 00:09.2 PCI: 00:10.0 PCI: 00:10.0 resource base f4d86000 size 2000 align 13 gran 13 limit f4d87fff flags 60000201 index 10 PCI: 00:11.0 PCI: 00:12.0 PCI: 00:12.0 resource base f4d89000 size 100 align 12 gran 8 limit f4d890ff flags 60000200 index 10 PCI: 00:14.0 PCI: 00:14.3 child on link 0 PNP: 0c09.0 PCI: 00:14.3 resource base 0 size 1000 align 0 gran 0 limit 0 flags c0040100 index 10000000 PCI: 00:14.3 resource base ff000000 size 1000000 align 0 gran 0 limit 0 flags c0040200 index 10000100 PCI: 00:14.3 resource base fec10000 size 400 align 0 gran 0 limit 0 flags e0040200 index 2 PCI: 00:14.3 resource base fec00000 size 1000 align 0 gran 0 limit 0 flags c0000200 index 3 PCI: 00:14.3 resource base fedc2000 size 4000 align 0 gran 0 limit 0 flags c0000200 index 4 PNP: 0c09.0 PNP: 0c09.0 resource base 800 size 1ff align 0 gran 0 limit 0 flags c0000100 index 0 PCI: 00:14.7 PCI: 00:14.7 resource base f4d8a000 size 100 align 12 gran 8 limit f4d8a0ff flags 60000201 index 10 PCI: 00:18.0 PCI: 00:18.0 resource base f8000000 size 4000000 align 0 gran 0 limit 0 flags f0000200 index c0010058 PCI: 00:18.0 resource base fec20000 size 1000 align 0 gran 0 limit 0 flags c0000200 index fec20000 PCI: 00:18.1 PCI: 00:18.2 PCI: 00:18.3 PCI: 00:18.4 PCI: 00:18.5 MMIO: fedc2000 child on link 0 GENERIC: 0.0 GENERIC: 0.0 I2C: 01:1a GENERIC: 0.1 MMIO: fedc3000 child on link 0 I2C: 02:50 I2C: 02:50 MMIO: fedc4000 child on link 0 I2C: 03:15 I2C: 03:15 MMIO: fedc5000 child on link 0 I2C: 04:39 I2C: 04:39 I2C: 04:10 Done allocating resources. BS: BS_DEV_RESOURCES times (us): entry 0 run 1563662 exit 0 PCI_INTR tables: Writing registers C00/C01 for PCI IRQ routing: PCI_INTR_INDEX name PIC mode APIC mode 0x00 INTA# 0x03 0x10 0x01 INTB# 0x04 0x11 0x02 INTC# 0x05 0x12 0x03 INTD# 0x07 0x13 0x04 INTE# 0x0B 0x14 0x05 INTF# 0x1F 0x1F 0x06 INTG# 0x1F 0x16 0x07 INTH# 0x1F 0x17 0x08 Misc 0xFA 0x00 0x09 Misc0 0xF1 0x00 0x0A Misc1 0x00 0x00 0x0B Misc2 0x00 0x00 0x0C Ser IRQ INTA 0x1F 0x1F 0x0D Ser IRQ INTB 0x1F 0x1F 0x0E Ser IRQ INTC 0x1F 0x1F 0x0F Ser IRQ INTD 0x1F 0x1F 0x10 SCI 0x09 0x09 0x11 SMBUS 0x1F 0x1F 0x12 ASF 0x1F 0x1F 0x13 HDA 0x03 0x10 0x14 FC 0x1F 0x1F 0x16 PerMon 0x1F 0x1F 0x17 SD 0x03 0x10 0x1A SDIOt 0x00 0x1F 0x30 EHCI 0x05 0x12 0x34 XHCI 0x04 0x12 0x41 SATA 0x07 0x13 0x62 GPIO 0x07 0x07 0x70 I2C0 0x03 0x03 0x71 I2C1 0x0F 0x0F 0x72 I2C2 0x06 0x06 0x73 I2C3 0x0E 0x0E 0x74 UART0 0x0A 0x0A 0x75 UART1 0x0B 0x0B PCI_CFG IRQ: Write PCI config space IRQ assignments PCI IRQ: Found device 0:01.00 using PIN A PCI Devfn (0x8) not found in pirq_data table PCI IRQ: Found device 0:01.01 using PIN B Found this device in pirq_data table entry 5 Orig INT_PIN : 2 (PIN B) PCI_INTR idx : 0x13 (HDA) INT_LINE : 0x3 (IRQ 3) PCI IRQ: Found device 0:02.02 using PIN A Found this device in pirq_data table entry 1 Orig INT_PIN : 1 (PIN A) PCI_INTR idx : 0x01 (INTB#) INT_LINE : 0x4 (IRQ 4) PCI IRQ: Found device 0:02.04 using PIN A Found this device in pirq_data table entry 3 Orig INT_PIN : 1 (PIN A) PCI_INTR idx : 0x03 (INTD#) INT_LINE : 0x7 (IRQ 7) PCI IRQ: Found device 0:08.00 using PIN A PCI Devfn (0x40) not found in pirq_data table PCI IRQ: Found device 0:10.00 using PIN A Found this device in pirq_data table entry 10 Orig INT_PIN : 1 (PIN A) PCI_INTR idx : 0x34 (XHCI) INT_LINE : 0x4 (IRQ 4) PCI IRQ: Found device 0:12.00 using PIN A Found this device in pirq_data table entry 9 Orig INT_PIN : 1 (PIN A) PCI_INTR idx : 0x30 (EHCI) INT_LINE : 0x5 (IRQ 5) PCI IRQ: Found device 0:14.07 using PIN A Found this device in pirq_data table entry 6 Orig INT_PIN : 1 (PIN A) PCI_INTR idx : 0x17 (SD) INT_LINE : 0x3 (IRQ 3) PCI IRQ: Found device 2:00.00 using PIN A With INT_PIN swizzled to PIN A Attached to bridge device 0:02h.04h Found this device in pirq_data table entry 3 Orig INT_PIN : 1 (PIN A) PCI_INTR idx : 0x03 (INTD#) INT_LINE : 0x7 (IRQ 7) PCI IRQ: Found device 1:00.00 using PIN A With INT_PIN swizzled to PIN A Attached to bridge device 0:02h.02h Found this device in pirq_data table entry 1 Orig INT_PIN : 1 (PIN A) PCI_INTR idx : 0x01 (INTB#) INT_LINE : 0x4 (IRQ 4) PCI_CFG IRQ: Finished writing PCI config space IRQ assignments POST: 0x74 Enabling resources... agesawrapper_amdinitmid() entry agesawrapper_amdinitmid() returned AGESA_SUCCESS PCI: 00:00.0 subsystem <- 1022/1576 PCI: 00:00.0 cmd <- 04 PCI: 00:01.0 subsystem <- 1002/98e4 PCI: 00:01.0 cmd <- 07 PCI: 00:01.1 subsystem <- 1002/15b3 PCI: 00:01.1 cmd <- 02 PCI: 00:02.0 subsystem <- 1022/157b PCI: 00:02.0 cmd <- 00 PCI: 00:02.2 bridge ctrl <- 0003 PCI: 00:02.2 cmd <- 06 PCI: 00:02.4 bridge ctrl <- 0003 PCI: 00:02.4 cmd <- 06 PCI: 00:03.0 cmd <- 00 PCI: 00:08.0 subsystem <- 1022/1578 PCI: 00:08.0 cmd <- 06 PCI: 00:09.0 subsystem <- 1022/157d PCI: 00:09.0 cmd <- 00 PCI: 00:10.0 subsystem <- 1022/7914 PCI: 00:10.0 cmd <- 02 PCI: 00:12.0 subsystem <- 1022/7908 PCI: 00:12.0 cmd <- 02 PCI: 00:14.0 subsystem <- 1022/790b PCI: 00:14.0 cmd <- 403 PCI: 00:14.3 subsystem <- 1022/790e PCI: 00:14.3 cmd <- 0f Southbridge LPC decode:PNP: 0c09.0, base=0x00000800, end=0x000009fe Covered by wideIO 0 PCI: 00:14.7 subsystem <- 1022/7906 PCI: 00:14.7 cmd <- 06 PCI: 00:18.0 cmd <- 00 PCI: 00:18.1 subsystem <- 1022/15b1 PCI: 00:18.1 cmd <- 00 PCI: 00:18.2 subsystem <- 1022/15b2 PCI: 00:18.2 cmd <- 00 PCI: 00:18.3 subsystem <- 1022/15b3 PCI: 00:18.3 cmd <- 00 PCI: 00:18.4 subsystem <- 1022/15b4 PCI: 00:18.4 cmd <- 00 PCI: 00:18.5 subsystem <- 1022/15b5 PCI: 00:18.5 cmd <- 00 PCI: 01:00.0 cmd <- 02 PCI: 02:00.0 subsystem <- 1217/8620 PCI: 02:00.0 cmd <- 06 done. BS: BS_DEV_ENABLE times (us): entry 279596 run 130697 exit 0 POST: 0x75 Initializing devices... Root Device init ... Root Device init finished in 1950 usecs POST: 0x75 CPU_CLUSTER: 0 init ... MTRR: Physical address space: 0x0000000000000000 - 0x00000000000a0000 size 0x000a0000 type 6 0x00000000000a0000 - 0x00000000000c0000 size 0x00020000 type 0 0x00000000000c0000 - 0x00000000d0000000 size 0xcff40000 type 6 0x00000000d0000000 - 0x00000000f0000000 size 0x20000000 type 0 0x00000000f0000000 - 0x00000000f4800000 size 0x04800000 type 1 0x00000000f4800000 - 0x0000000100000000 size 0x0b800000 type 0 0x0000000100000000 - 0x000000012f000000 size 0x2f000000 type 6 MTRR: Fixed MSR 0x250 0x1e1e1e1e1e1e1e1e MTRR: Fixed MSR 0x258 0x1e1e1e1e1e1e1e1e MTRR: Fixed MSR 0x259 0x0000000000000000 MTRR: Fixed MSR 0x268 0x1e1e1e1e1e1e1e1e MTRR: Fixed MSR 0x269 0x1e1e1e1e1e1e1e1e MTRR: Fixed MSR 0x26a 0x1e1e1e1e1e1e1e1e MTRR: Fixed MSR 0x26b 0x1e1e1e1e1e1e1e1e MTRR: Fixed MSR 0x26c 0x1e1e1e1e1e1e1e1e MTRR: Fixed MSR 0x26d 0x1e1e1e1e1e1e1e1e MTRR: Fixed MSR 0x26e 0x1e1e1e1e1e1e1e1e MTRR: Fixed MSR 0x26f 0x1e1e1e1e1e1e1e1e call enable_fixed_mtrr() CPU physical address size: 48 bits MTRR: default type WB/UC MTRR counts: 8/6. MTRR: UC selected as default type. MTRR: 0 base 0x0000000000000000 mask 0x0000ffff80000000 type 6 MTRR: 1 base 0x0000000080000000 mask 0x0000ffffc0000000 type 6 MTRR: 2 base 0x00000000c0000000 mask 0x0000fffff0000000 type 6 MTRR: 3 base 0x00000000f0000000 mask 0x0000fffffc000000 type 1 MTRR: 4 base 0x00000000f4000000 mask 0x0000ffffff800000 type 1 MTRR: 5 base 0x0000000100000000 mask 0x0000ffffc0000000 type 6 MTRR check Fixed MTRRs : Enabled Variable MTRRs: Enabled POST: 0x93 Will perform SMM setup. CPU: AMD A4-9120C RADEON R4, 5 COMPUTE CORES 2C+3G . Loading module at 00030000 with entry 00030000. filesize: 0x170 memsize: 0x170 Processing 16 relocs. Offset value of 0x00030000 Attempting to start 1 APs Waiting for 10ms after sending INIT. Waiting for 1st SIPI to complete...AP: slot 1 apic_id 11. done. Waiting for 2nd SIPI to complete...done. Loading module at 00038000 with entry 00038000. filesize: 0x1a8 memsize: 0x1a8 Processing 13 relocs. Offset value of 0x00038000 SMM Module: stub loaded at 00038000. Will call cdeb995b(00000000) Installing SMM handler to 0xce800000 Loading module at ce810000 with entry ce81142b. filesize: 0x6c98 memsize: 0xad18 Processing 481 relocs. Offset value of 0xce810000 Loading module at ce808000 with entry ce808000. filesize: 0x1a8 memsize: 0x1a8 Processing 13 relocs. Offset value of 0xce808000 SMM Module: placing jmp sequence at ce807e00 rel16 0x01fd SMM Module: stub loaded at ce808000. Will call ce81142b(00000000) New SMBASE 0xce800000 Relocation complete. New SMBASE 0xce7ffe00 Relocation complete. Initializing CPU #0 CPU: vendor AMD device 670f00 CPU: family 15, model 70, stepping 00 Setting up local APIC... apic_id: 0x10 done. CPU #0 initialized Initializing CPU #1 CPU: vendor AMD device 670f00 CPU: family 15, model 70, stepping 00 Setting up local APIC... apic_id: 0x11 done. CPU #1 initialized bsp_do_flight_plan done after 91 msecs. MTRR: TEMPORARY Physical address space: 0x0000000000000000 - 0x00000000000a0000 size 0x000a0000 type 6 0x00000000000a0000 - 0x00000000000c0000 size 0x00020000 type 0 0x00000000000c0000 - 0x00000000d0000000 size 0xcff40000 type 6 0x00000000d0000000 - 0x00000000ff000000 size 0x2f000000 type 0 0x00000000ff000000 - 0x0000000100000000 size 0x01000000 type 5 0x0000000100000000 - 0x000000012f000000 size 0x2f000000 type 6 MTRR: default type WB/UC MTRR counts: 7/5. MTRR: UC selected as default type. MTRR: 0 base 0x0000000000000000 mask 0x0000ffff80000000 type 6 MTRR: 1 base 0x0000000080000000 mask 0x0000ffffc0000000 type 6 MTRR: 2 base 0x00000000c0000000 mask 0x0000fffff0000000 type 6 MTRR: 3 base 0x00000000ff000000 mask 0x0000ffffff000000 type 5 MTRR: 4 base 0x0000000100000000 mask 0x0000ffffc0000000 type 6 CPU_CLUSTER: 0 init finished in 346152 usecs POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 PCI: 00:00.0 init ... PCI: 00:00.0 init finished in 2003 usecs POST: 0x75 POST: 0x75 PCI: 00:01.0 init ... CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'pci1002,98e4.rom' CBFS: Found @ offset 92c00 size fe00 Mapping PCI device 100298e4 to 100298e0 In CBFS, ROM address for PCI: 00:01.0 = ffe82c48 PCI expansion ROM, signature 0xaa55, INIT size 0xfe00, data ptr 0x01c0 PCI ROM image, vendor ID 1002, device ID 98e0, PCI ROM image, Class Code 030000, Code Type 00 Copying VGA ROM Image from ffe82c48 to 0xc0000, 0xfe00 bytes Real mode stub @00000600: 867 bytes Calling Option ROM... ... Option ROM returned. VBE: Getting information about VESA mode 41d2 VBE: resolution: 1366x768@16 VBE: framebuffer: f0000000 VBE: Setting VESA mode 41d2 VGA Option ROM was run PCI: 00:01.0 init finished in 112275 usecs POST: 0x75 PCI: 00:01.1 init ... PCI: 00:01.1 init finished in 2003 usecs POST: 0x75 PCI: 00:02.0 init ... PCI: 00:02.0 init finished in 2002 usecs POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 PCI: 00:03.0 init ... PCI: 00:03.0 init finished in 2002 usecs POST: 0x75 PCI: 00:08.0 init ... PCI: 00:08.0 init finished in 2002 usecs POST: 0x75 PCI: 00:09.0 init ... PCI: 00:09.0 init finished in 2002 usecs POST: 0x75 POST: 0x75 PCI: 00:10.0 init ... PCI: 00:10.0 init finished in 2002 usecs POST: 0x75 POST: 0x75 PCI: 00:12.0 init ... PCI: 00:12.0 init finished in 2002 usecs POST: 0x75 PCI: 00:14.0 init ... IOAPIC: Initializing IOAPIC at 0xfec00000 IOAPIC: Bootstrap Processor Local APIC = 0x10 IOAPIC: ID = 0x04 IOAPIC: Dumping registers reg 0x0000: 0x04000000 reg 0x0001: 0x00178021 reg 0x0002: 0x04000000 IOAPIC: 24 interrupts IOAPIC: Enabling interrupts on FSB IOAPIC: reg 0x00000000 value 0x10000000 0x00000700 IOAPIC: reg 0x00000001 value 0x00000000 0x00010000 IOAPIC: reg 0x00000002 value 0x00000000 0x00010000 IOAPIC: reg 0x00000003 value 0x00000000 0x00010000 IOAPIC: reg 0x00000004 value 0x00000000 0x00010000 IOAPIC: reg 0x00000005 value 0x00000000 0x00010000 IOAPIC: reg 0x00000006 value 0x00000000 0x00010000 IOAPIC: reg 0x00000007 value 0x00000000 0x00010000 IOAPIC: reg 0x00000008 value 0x00000000 0x00010000 IOAPIC: reg 0x00000009 value 0x00000000 0x00010000 IOAPIC: reg 0x0000000a value 0x00000000 0x00010000 IOAPIC: reg 0x0000000b value 0x00000000 0x00010000 IOAPIC: reg 0x0000000c value 0x00000000 0x00010000 IOAPIC: reg 0x0000000d value 0x00000000 0x00010000 IOAPIC: reg 0x0000000e value 0x00000000 0x00010000 IOAPIC: reg 0x0000000f value 0x00000000 0x00010000 IOAPIC: reg 0x00000010 value 0x00000000 0x00010000 IOAPIC: reg 0x00000011 value 0x00000000 0x00010000 IOAPIC: reg 0x00000012 value 0x00000000 0x00010000 IOAPIC: reg 0x00000013 value 0x00000000 0x00010000 IOAPIC: reg 0x00000014 value 0x00000000 0x00010000 IOAPIC: reg 0x00000015 value 0x00000000 0x00010000 IOAPIC: reg 0x00000016 value 0x00000000 0x00010000 IOAPIC: reg 0x00000017 value 0x00000000 0x00010000 PCI: 00:14.0 init finished in 133956 usecs POST: 0x75 PCI: 00:14.3 init ... RTC Init PCI: 00:14.3 init finished in 2964 usecs POST: 0x75 PCI: 00:14.7 init ... PCI: 00:14.7 init finished in 2002 usecs POST: 0x75 PCI: 00:18.0 init ... IOAPIC: Initializing IOAPIC at 0xfec20000 IOAPIC: Bootstrap Processor Local APIC = 0x10 IOAPIC: ID = 0x05 IOAPIC: Dumping registers reg 0x0000: 0x05000000 reg 0x0001: 0x001f8021 reg 0x0002: 0x00000000 IOAPIC: 32 interrupts IOAPIC: Enabling interrupts on FSB IOAPIC: reg 0x00000000 value 0x10000000 0x00000700 IOAPIC: reg 0x00000001 value 0x00000000 0x00010000 IOAPIC: reg 0x00000002 value 0x00000000 0x00010000 IOAPIC: reg 0x00000003 value 0x00000000 0x00010000 IOAPIC: reg 0x00000004 value 0x00000000 0x00010000 IOAPIC: reg 0x00000005 value 0x00000000 0x00010000 IOAPIC: reg 0x00000006 value 0x00000000 0x00010000 IOAPIC: reg 0x00000007 value 0x00000000 0x00010000 IOAPIC: reg 0x00000008 value 0x00000000 0x00010000 IOAPIC: reg 0x00000009 value 0x00000000 0x00010000 IOAPIC: reg 0x0000000a value 0x00000000 0x00010000 IOAPIC: reg 0x0000000b value 0x00000000 0x00010000 IOAPIC: reg 0x0000000c value 0x00000000 0x00010000 IOAPIC: reg 0x0000000d value 0x00000000 0x00010000 IOAPIC: reg 0x0000000e value 0x00000000 0x00010000 IOAPIC: reg 0x0000000f value 0x00000000 0x00010000 IOAPIC: reg 0x00000010 value 0x00000000 0x00010000 IOAPIC: reg 0x00000011 value 0x00000000 0x00010000 IOAPIC: reg 0x00000012 value 0x00000000 0x00010000 IOAPIC: reg 0x00000013 value 0x00000000 0x00010000 IOAPIC: reg 0x00000014 value 0x00000000 0x00010000 IOAPIC: reg 0x00000015 value 0x00000000 0x00010000 IOAPIC: reg 0x00000016 value 0x00000000 0x00010000 IOAPIC: reg 0x00000017 value 0x00000000 0x00010000 IOAPIC: reg 0x00000018 value 0x00000000 0x00010000 IOAPIC: reg 0x00000019 value 0x00000000 0x00010000 IOAPIC: reg 0x0000001a value 0x00000000 0x00010000 IOAPIC: reg 0x0000001b value 0x00000000 0x00010000 IOAPIC: reg 0x0000001c value 0x00000000 0x00010000 IOAPIC: reg 0x0000001d value 0x00000000 0x00010000 IOAPIC: reg 0x0000001e value 0x00000000 0x00010000 IOAPIC: reg 0x0000001f value 0x00000000 0x00010000 PCI: 00:18.0 init finished in 170070 usecs POST: 0x75 PCI: 00:18.1 init ... PCI: 00:18.1 init finished in 2002 usecs POST: 0x75 PCI: 00:18.2 init ... PCI: 00:18.2 init finished in 2002 usecs POST: 0x75 PCI: 00:18.3 init ... PCI: 00:18.3 init finished in 2002 usecs POST: 0x75 PCI: 00:18.4 init ... PCI: 00:18.4 init finished in 2002 usecs POST: 0x75 PCI: 00:18.5 init ... PCI: 00:18.5 init finished in 2002 usecs POST: 0x75 PCI: 01:00.0 init ... PCI: 01:00.0 init finished in 2002 usecs POST: 0x75 PCI: 02:00.0 init ... BayHub BH720: Power-saving enabled (link_ctrl=0x110103) PCI: 02:00.0 init finished in 7127 usecs POST: 0x75 PNP: 0c09.0 init ... Google Chrome EC: Hello got back 11223344 status (0) Google Chrome EC: version: ro: careena_v2.0.11488-7215d6e0e4 rw: careena_v2.0.11488-7215d6e0e4 running image: 1 Google Chrome EC uptime: 5.608 seconds Google Chrome AP resets since EC boot: 0 Google Chrome most recent AP reset causes: Google Chrome EC reset flags at last EC boot: reset-pin PNP: 0c09.0 init finished in 34479 usecs POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 POST: 0x75 Devices initialized Show all devs... After init. Root Device: enabled 1 CPU_CLUSTER: 0: enabled 1 DOMAIN: 0000: enabled 1 MMIO: fedc2000: enabled 1 MMIO: fedc3000: enabled 1 MMIO: fedc4000: enabled 1 MMIO: fedc5000: enabled 1 APIC: 10: enabled 1 PCI: 00:00.0: enabled 1 PCI: 00:00.2: enabled 0 PCI: 00:01.0: enabled 1 PCI: 00:01.1: enabled 1 PCI: 00:02.0: enabled 1 PCI: 00:02.1: enabled 0 PCI: 00:02.2: enabled 1 PCI: 00:02.3: enabled 0 PCI: 00:02.4: enabled 1 PCI: 00:02.5: enabled 0 PCI: 00:08.0: enabled 1 PCI: 00:09.0: enabled 1 PCI: 00:09.2: enabled 0 PCI: 00:10.0: enabled 1 PCI: 00:11.0: enabled 0 PCI: 00:12.0: enabled 1 PCI: 00:14.0: enabled 1 PCI: 00:14.3: enabled 1 PCI: 00:14.7: enabled 1 PCI: 00:18.0: enabled 1 PCI: 00:18.1: enabled 1 PCI: 00:18.2: enabled 1 PCI: 00:18.3: enabled 1 PCI: 00:18.4: enabled 1 PCI: 00:18.5: enabled 1 GENERIC: 0.0: enabled 1 I2C: 01:1a: enabled 1 GENERIC: 0.1: enabled 1 I2C: 02:50: enabled 1 I2C: 03:15: enabled 1 I2C: 04:39: enabled 1 I2C: 04:10: enabled 1 PCI: 02:00.0: enabled 1 PNP: 0c09.0: enabled 1 PCI: 00:03.0: enabled 1 PCI: 01:00.0: enabled 1 APIC: 11: enabled 1 BS: BS_DEV_INIT times (us): entry 0 run 1076590 exit 150 ELOG: Event(A1) added with size 10 at 2022-06-28 03:37:23 UTC elog_add_boot_reason: Logged recovery mode boot (Dev-switch on), reason: 0x1b ELOG: Event(A0) added with size 9 at 2022-06-28 03:37:23 UTC elog_add_boot_reason: Logged dev mode boot POST: 0x76 Finalize devices... Devices finalized FMAP: area RW_NVRAM found @ 467000 (20480 bytes) agesawrapper_amdinitlate() entry DmiTable:cdfbd4a3, AcpiPstatein: cdfbc2b9, AcpiSrat:00000000,AcpiSlit:00000000, Mce:cdfbd327, Cmc:cdfbd3e9,Alib:cdfbe586, AcpiIvrs:00000000 in agesawrapper_amdinitlate agesawrapper_amdinitlate() returned AGESA_SUCCESS agesawrapper_amdinitrtb() entry agesawrapper_amdinitrtb() returned AGESA_SUCCESS BS: BS_POST_DEVICE times (us): entry 22176 run 4547 exit 37740 FMAP: area RW_MRC_CACHE found @ 0 (65536 bytes) MRC: Checking cached data update for 'RW_MRC_CACHE'. MRC: cache data 'RW_MRC_CACHE' needs update. ELOG: Event(AA) added with size 11 at 2022-06-28 03:37:23 UTC POST: 0x77 BS: BS_OS_RESUME_CHECK times (us): entry 29419 run 1059 exit 1 POST: 0x79 POST: 0x9c CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'fallback/dsdt.aml' CBFS: Found @ offset a6cc0 size 3b94 CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'fallback/slic' CBFS: 'fallback/slic' not found. ACPI: Writing ACPI tables at cde2e000. ACPI: * FACS ACPI: * DSDT Ramoops buffer: 0x100000@0xcdd2e000. ACPI: * FADT pm_base: 0x0400 ACPI: added table 1/32, length now 40 ACPI: * SSDT ACPI \_PR report 2 core(s) dw_i2c: bad counts. hcnt = -1 lcnt = 9 dw_i2c: bad counts. hcnt = -1 lcnt = 13 dw_i2c: bad counts. hcnt = -13 lcnt = 11 dw_i2c: bad counts. hcnt = -7 lcnt = 16 CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'pci1002,98e4.rom' CBFS: Found @ offset 92c00 size fe00 Mapping PCI device 100298e4 to 100298e0 In CBFS, ROM address for PCI: 00:01.0 = ffe82c48 PCI expansion ROM, signature 0xaa55, INIT size 0xfe00, data ptr 0x01c0 PCI ROM image, vendor ID 1002, device ID 98e0, PCI ROM image, Class Code 030000, Code Type 00 \_SB.I2CA.ADAU: Analog Digital DMIC \_SB.I2CA.DLG7: Dialog Semiconductor DA7219 Audio Codec address 01ah irq 0 \_SB.I2CA.MAXM: Maxim Integrated 98357A Amplifier \_SB.I2CB.TPMI: I2C TPM at I2C: 02:50 \_SB.I2CC.D015: ELAN Touchpad at I2C: 03:15 \_SB.I2CD.D039: Raydium Touchscreen at I2C: 04:39 \_SB.I2CD.D010: ELAN Touchscreen at I2C: 04:10 ACPI: added table 2/32, length now 44 ACPI: * MCFG ACPI: added table 3/32, length now 48 ACPI: * TCPA TCPA log created at cdd0e000 ACPI: added table 4/32, length now 52 ACPI: * MADT ACPI: added table 5/32, length now 56 current = cde32e10 CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'pci1002,98e4.rom' CBFS: Found @ offset 92c00 size fe00 Mapping PCI device 100298e4 to 100298e0 In CBFS, ROM address for PCI: 00:01.0 = ffe82c48 PCI expansion ROM, signature 0xaa55, INIT size 0xfe00, data ptr 0x01c0 PCI ROM image, vendor ID 1002, device ID 98e0, PCI ROM image, Class Code 030000, Code Type 00 ACPI: * VFCT at cde32e10 Copying initialized VBIOS image from 000c0000 ACPI: added table 6/32, length now 60 ACPI: * HPET ACPI: added table 7/32, length now 64 ACPI: added table 8/32, length now 68 ACPI: * IVRS at cde42e90 AGESA IVRS table NULL. Skipping. ACPI: * SRAT at cde42e90 AGESA SRAT table NULL. Skipping. ACPI: * SLIT at cde42e90 AGESA SLIT table NULL. Skipping. ACPI: * AGESA ALIB SSDT at cde42e90 ACPI: added table 9/32, length now 72 ACPI: * SSDT at cde479f0 ACPI: added table 10/32, length now 76 ACPI: * SSDT for PState at cde47e2c ACPI: done. ACPI tables: 106032 bytes. smbios_write_tables: cdd0d000 Create SMBIOS type 17 SMBIOS tables: 545 bytes. Writing table forward entry at 0x00000500 Wrote coreboot table at: 00000500, 0x10 bytes, checksum 11f9 Writing coreboot table at 0xcde52000 0. 0000000000000000-0000000000000fff: CONFIGURATION TABLES 1. 0000000000001000-000000000009ffff: RAM 2. 00000000000a0000-00000000000fffff: RESERVED 3. 0000000000100000-00000000cdd0cfff: RAM 4. 00000000cdd0d000-00000000cde9efff: CONFIGURATION TABLES 5. 00000000cde9f000-00000000cdfa0fff: RAMSTAGE 6. 00000000cdfa1000-00000000cdffffff: CONFIGURATION TABLES 7. 00000000ce000000-00000000cfffffff: RESERVED 8. 00000000f8000000-00000000fbffffff: RESERVED 9. 0000000100000000-000000012effffff: RAM Passing 5 GPIOs to payload: NAME | PORT | POLARITY | VALUE write protect | undefined | high | low recovery | undefined | high | low lid | undefined | high | high power | undefined | high | low EC in RW | 0x0000000f | high | low Board ID: 6 SKU ID: 33 CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) Wrote coreboot table at: cde52000, 0x510 bytes, checksum 75e7 coreboot table: 1320 bytes. IMD ROOT 0. cdfff000 00001000 IMD SMALL 1. cdffe000 00001000 CONSOLE 2. cdfde000 00020000 TIME STAMP 3. cdfdd000 00000910 VBOOT 4. cdfdc000 00000c0c ACPISCRATCH 5. cdfac000 00030000 ROMSTG STCK 6. cdfab000 00000400 AFTER CAR 7. cdfa1000 0000a000 RAMSTAGE 8. cde9e000 00103000 REFCODE 9. cde6c000 00032000 ACPI GNVS 10. cde6b000 00001000 SMM BACKUP 11. cde5b000 00010000 MRC DATA 12. cde5a000 00000e75 COREBOOT 13. cde52000 00008000 ACPI 14. cde2e000 00024000 RAMOOPS 15. cdd2e000 00100000 VGA ROM #0 16. cdd1e000 0000fe00 TCPA TCGLOG17. cdd0e000 00010000 SMBIOS 18. cdd0d000 00000800 IMD small region: IMD ROOT 0. cdffec00 00000400 VBOOT SEL 1. cdffebe0 00000008 EC HOSTEVENT 2. cdffebc0 00000008 ROMSTAGE 3. cdffeba0 00000004 POWER STATE 4. cdffeb80 00000010 MEM INFO 5. cdffea20 00000149 COREBOOTFWD 6. cdffe9e0 00000028 BS: BS_WRITE_TABLES times (us): entry 2 run 435688 exit 1 POST: 0x7a CBFS: 'Master Header Locator' located CBFS at [df0000:ffffc0) CBFS: Locating 'fallback/payload' CBFS: Found @ offset 1ae180 size 39f90 Loading segment from ROM address 0xfff9e1b8 code (compression=0) New segment dstaddr 0x30104020 memsize 0x254890 srcaddr 0xfff9e1f0 filesize 0x39f58 Loading segment from ROM address 0xfff9e1d4 Entry Point 0x30104020 Loading Segment: addr: 0x0000000030104020 memsz: 0x0000000000254890 filesz: 0x0000000000039f58 lb: [0x00000000cde9f000, 0x00000000cdfa09d8) Post relocation: addr: 0x0000000030104020 memsz: 0x0000000000254890 filesz: 0x0000000000039f58 it's not compressed! [ 0x30104020, 3013df78, 0x303588b0) <- fff9e1f0 Clearing Segment: addr: 0x000000003013df78 memsz: 0x000000000021a938 dest 30104020, end 303588b0, bouncebuffer ffffffff Loaded segments Lock SMM configuration POST: 0xfe BS: BS_PAYLOAD_LOAD times (us): entry 231 run 92773 exit 3313 PSP: Notify that POST is finishing... OK POST: 0x7b mp_park_aps done after 0 msecs. Jumping to boot code at 30104020(cde52000) POST: 0xf8 CPU0: stack: cdeda000 - cdedb000, lowest used address cdeda558, stack used: 2728 bytes Starting depthcharge on grunt... WARNING: can't convert coreboot GPIOs, 'lid' won't be resampled at runtime! WARNING: can't convert coreboot GPIOs, 'power' won't be resampled at runtime! The GBB signature is at 0x30004020 and is: 24 47 42 42 [firmware-grunt-11031.B-collabora] Dec 11 2020 09:59:28 grunt: tftpboot 192.168.201.1 6694080/tftp-deploy-xmcitl6y/kernel/bzImage 6694080/tftp-deploy-xmcitl6y/kernel/cmdline 6694080/tftp-deploy-xmcitl6y/ramdisk/ramdisk.cpio.gz tftpboot 192.168.201.1 6694080/tftp-deploy-xmcitl6y/kernel/bzImage 66y/kernel/cmdline 6694080/tftp-deploy-xmcitl6y/ramdisk/ramdisk.cpio.gz Waiting for link R8152: Initializing Version 9 (ocp_data = 6010) R8152: Done initializing Adding net device done. MAC: 00:e0:4c:75:03:5c Sending DHCP discover... done. Waiting for reply... done. Sending DHCP request... done. Waiting for reply... done. My ip is 192.168.201.12 The DHCP server ip is 192.168.201.1 TFTP server IP predefined by user: 192.168.201.1 Bootfile predefined by user: 6694080/tftp-deploy-xmcitl6y/kernel/bzImage Sending tftp read request... done. Waiting for the transfer... 00000000 ################################################################ 00080000 ################################################################ 00100000 ################################################################ 00180000 ################################################################ 00200000 ################################################################ 00280000 ################################################################ 00300000 ################################################################ 00380000 ################################################################ 00400000 ################################################################ 00480000 ################################################################ 00500000 ################################################################ 00580000 ################################################################ 00600000 ################################################################ 00680000 ################################################################ 00700000 ################################################################ 00780000 ################################################################ 00800000 ################################################################ 00880000 ################################################################ 00900000 ################################################################ 00980000 ################################################################ 00a00000 ################################################################ 00a80000 ################################################################ 00b00000 ################################################################ 00b80000 ################################################################ 00c00000 ################################################################ done. The bootfile was 13099584 bytes long. Sending tftp read request... done. Waiting for the transfer... 00000000 ################################################################ 00080000 ################################################################ 00100000 ################################################################ 00180000 ################################################################ 00200000 ################################################################ 00280000 ################################################################ 00300000 ################################################################ 00380000 ################################################################ 00400000 ################################################################ 00480000 ################################################################ 00500000 ################################################################ 00580000 ################################################################ 00600000 ################################################################ 00680000 ################################################################ 00700000 ################################################################ 00780000 ################################################################ 00800000 ############### done. Sending tftp read request... done. Waiting for the transfer... 00000000 # done. Command line loaded dynamically from TFTP file: 6694080/tftp-deploy-xmcitl6y/kernel/cmdline The command line is: earlyprintk=uart8250,mmio32,0xfedc6000,115200n8 console=ttyS0,115200n8 root=/dev/nfs rw nfsroot=192.168.201.1:/var/lib/lava/dispatcher/tmp/6694080/extract-nfsrootfs-eyc0bbx_,tcp,hard ip=dhcp tftpserverip=192.168.201.1 Shutting down all USB controllers. Removing current net device Finalizing coreboot coreboot-56f9d1cd49 Thu Sep 5 21:57:06 UTC 2019 smm starting... SMI# #0 Exiting depthcharge with code 4 at timestamp: 18732745 Starting kernel ... coreboot-56f9d1cd49 Thu Sep 5 21:57:06 UTC 2019 smm starting... SMI# #0 Chrome EC: Set SMI mask to 0x0000000000000000 Chrome EC: UHEPI supported Clearing pending EC events. Error code 1 is expected. EC returned error result code 9 Chrome EC: Set SCI mask to 0x00000000142609fb [ 0.000000] Linux version 5.10.125-cip10 (KernelCI@build-j267408-x86-64-gcc-10-x86-64-defconfig-x86-chromeboojxxzv) (gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2) #1 SMP Tue Jun 28 03:26:39 UTC 2022 [ 0.000000] Command line: earlyprintk=uart8250,mmio32,0xfedc6000,115200n8 console=ttyS0,115200n8 root=/dev/nfs rw nfsroot=192.168.201.1:/var/lib/lava/dispatcher/tmp/6694080/extract-nfsrootfs-eyc0bbx_,tcp,hard ip=dhcp tftpserverip=192.168.201.1 [ 0.000000] x86/fpu: Supporting XSAVE feature 0x001: 'x87 floating point registers' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x002: 'SSE registers' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x004: 'AVX registers' [ 0.000000] x86/fpu: xstate_offset[2]: 576, xstate_sizes[2]: 256 [ 0.000000] x86/fpu: Enabled xstate features 0x7, context size is 832 bytes, using 'standard' format. [ 0.000000] BIOS-provided physical RAM map: [ 0.000000] BIOS-e820: [mem 0x0000000000000000-0x0000000000000fff] type 16 [ 0.000000] BIOS-e820: [mem 0x0000000000001000-0x000000000009ffff] usable [ 0.000000] BIOS-e820: [mem 0x00000000000a0000-0x00000000000fffff] reserved [ 0.000000] BIOS-e820: [mem 0x0000000000100000-0x00000000cdd0cfff] usable [ 0.000000] BIOS-e820: [mem 0x00000000cdd0d000-0x00000000cdffffff] type 16 [ 0.000000] BIOS-e820: [mem 0x00000000ce000000-0x00000000cfffffff] reserved [ 0.000000] BIOS-e820: [mem 0x00000000f8000000-0x00000000fbffffff] reserved [ 0.000000] BIOS-e820: [mem 0x0000000100000000-0x000000012effffff] usable [ 0.000000] NX (Execute Disable) protection: active [ 0.000000] SMBIOS 2.7 present. [ 0.000000] DMI: Google Grunt/Grunt, BIOS 09/05/2019 [ 0.000000] tsc: Fast TSC calibration using PIT [ 0.000000] tsc: Detected 1596.980 MHz processor [ 0.000958] last_pfn = 0x12f000 max_arch_pfn = 0x400000000 [ 0.001421] x86/PAT: Configuration [0-7]: WB WC UC- UC WB WP UC- WT [ 0.002936] last_pfn = 0xcdd0d max_arch_pfn = 0x400000000 [ 0.009181] check: Scanning 1 areas for low memory corruption [ 0.009191] Using GB pages for direct mapping [ 0.009616] RAMDISK: [mem 0x377e2000-0x37ffffff] [ 0.009622] ACPI: Early table checksum verification disabled [ 0.009629] ACPI: RSDP 0x00000000000F0000 000024 (v02 COREv4) [ 0.009638] ACPI: XSDT 0x00000000CDE2E0E0 000074 (v01 COREv4 COREBOOT 00000000 CORE 00000000) [ 0.009651] ACPI: FACP 0x00000000CDE31E60 0000F4 (v04 COREv4 COREBOOT 00000000 CORE 00000000) [ 0.009663] ACPI: DSDT 0x00000000CDE2E280 003BE0 (v02 COREv4 COREBOOT 00010001 INTL 20180531) [ 0.009672] ACPI: FACS 0x00000000CDE2E240 000040 [ 0.009679] ACPI: SSDT 0x00000000CDE31F60 000DB5 (v02 COREv4 COREBOOT 0000002A CORE 0000002A) [ 0.009688] ACPI: MCFG 0x00000000CDE32D20 00003C (v01 COREv4 COREBOOT 00000000 CORE 00000000) [ 0.009696] ACPI: TCPA 0x00000000CDE32D60 000032 (v02 COREv4 COREBOOT 00000000 CORE 00000000) [ 0.009703] ACPI: APIC 0x00000000CDE32DA0 00006E (v02 COREv4 COREBOOT 00000000 CORE 00000000) [ 0.009711] ACPI: VFCT 0x00000000CDE32E10 00FE69 (v01 COREv4 COREBOOT 00000000 CORE 00000000) [ 0.009719] ACPI: HPET 0x00000000CDE42C80 000038 (v01 COREv4 COREBOOT 00000000 CORE 00000000) [ 0.009727] ACPI: HEST 0x00000000CDE42CC0 0001D0 (v01 COREv4 COREBOOT 00000000 CORE 00000000) [ 0.009734] ACPI: SSDT 0x00000000CDE42E90 004B5B (v02 AMD AGESA 00000002 MSFT 04000000) [ 0.009742] ACPI: SSDT 0x00000000CDE479F0 00043C (v01 AMD AGESA 00000001 AMD 00000001) [ 0.009750] ACPI: Reserving FACP table memory at [mem 0xcde31e60-0xcde31f53] [ 0.009754] ACPI: Reserving DSDT table memory at [mem 0xcde2e280-0xcde31e5f] [ 0.009758] ACPI: Reserving FACS table memory at [mem 0xcde2e240-0xcde2e27f] [ 0.009761] ACPI: Reserving SSDT table memory at [mem 0xcde31f60-0xcde32d14] [ 0.009764] ACPI: Reserving MCFG table memory at [mem 0xcde32d20-0xcde32d5b] [ 0.009768] ACPI: Reserving TCPA table memory at [mem 0xcde32d60-0xcde32d91] [ 0.009771] ACPI: Reserving APIC table memory at [mem 0xcde32da0-0xcde32e0d] [ 0.009774] ACPI: Reserving VFCT table memory at [mem 0xcde32e10-0xcde42c78] [ 0.009778] ACPI: Reserving HPET table memory at [mem 0xcde42c80-0xcde42cb7] [ 0.009781] ACPI: Reserving HEST table memory at [mem 0xcde42cc0-0xcde42e8f] [ 0.009784] ACPI: Reserving SSDT table memory at [mem 0xcde42e90-0xcde479ea] [ 0.009787] ACPI: Reserving SSDT table memory at [mem 0xcde479f0-0xcde47e2b] [ 0.009852] No NUMA configuration found [ 0.009856] Faking a node at [mem 0x0000000000000000-0x000000012effffff] [ 0.009863] NODE_DATA(0) allocated [mem 0x12effa000-0x12effdfff] [ 0.009898] Zone ranges: [ 0.009902] DMA [mem 0x0000000000001000-0x0000000000ffffff] [ 0.009907] DMA32 [mem 0x0000000001000000-0x00000000ffffffff] [ 0.009911] Normal [mem 0x0000000100000000-0x000000012effffff] [ 0.009916] Movable zone start for each node [ 0.009919] Early memory node ranges [ 0.009922] node 0: [mem 0x0000000000001000-0x000000000009ffff] [ 0.009926] node 0: [mem 0x0000000000100000-0x00000000cdd0cfff] [ 0.009929] node 0: [mem 0x0000000100000000-0x000000012effffff] [ 0.009933] Initmem setup node 0 [mem 0x0000000000001000-0x000000012effffff] [ 0.009959] On node 0, zone DMA: 1 pages in unavailable ranges [ 0.009995] On node 0, zone DMA: 96 pages in unavailable ranges [ 0.025945] On node 0, zone Normal: 8947 pages in unavailable ranges [ 0.026017] On node 0, zone Normal: 4096 pages in unavailable ranges [ 0.026084] ACPI: PM-Timer IO Port: 0x418 [ 0.026097] ACPI: LAPIC_NMI (acpi_id[0xff] high edge lint[0x1]) [ 0.026116] IOAPIC[0]: apic_id 4, version 33, address 0xfec00000, GSI 0-23 [ 0.026127] IOAPIC[1]: apic_id 5, version 33, address 0xfec20000, GSI 24-55 [ 0.026132] ACPI: INT_SRC_OVR (bus 0 bus_irq 0 global_irq 2 dfl dfl) [ 0.026136] ACPI: INT_SRC_OVR (bus 0 bus_irq 9 global_irq 9 low level) [ 0.026146] Using ACPI (MADT) for SMP configuration information [ 0.026150] ACPI: HPET id: 0x10228201 base: 0xfed00000 [ 0.026157] smpboot: Allowing 2 CPUs, 0 hotplug CPUs [ 0.026178] PM: hibernation: Registered nosave memory: [mem 0x00000000-0x00000fff] [ 0.026183] PM: hibernation: Registered nosave memory: [mem 0x000a0000-0x000fffff] [ 0.026187] PM: hibernation: Registered nosave memory: [mem 0xcdd0d000-0xcdffffff] [ 0.026190] PM: hibernation: Registered nosave memory: [mem 0xce000000-0xcfffffff] [ 0.026193] PM: hibernation: Registered nosave memory: [mem 0xd0000000-0xf7ffffff] [ 0.026196] PM: hibernation: Registered nosave memory: [mem 0xf8000000-0xfbffffff] [ 0.026199] PM: hibernation: Registered nosave memory: [mem 0xfc000000-0xffffffff] [ 0.026205] [mem 0xd0000000-0xf7ffffff] available for PCI devices [ 0.026211] clocksource: refined-jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1910969940391419 ns [ 0.033561] setup_percpu: NR_CPUS:64 nr_cpumask_bits:64 nr_cpu_ids:2 nr_node_ids:1 [ 0.034105] percpu: Embedded 59 pages/cpu s200848 r8192 d32624 u1048576 [ 0.034162] Built 1 zonelists, mobility grouping on. Total pages: 1019233 [ 0.034166] Policy zone: Normal [ 0.034178] Kernel command line: earlyprintk=uart8250,mmio32,0xfedc6000,115200n8 console=ttyS0,115200n8 root=/dev/nfs rw nfsroot=192.168.201.1:/var/lib/lava/dispatcher/tmp/6694080/extract-nfsrootfs-eyc0bbx_,tcp,hard ip=dhcp tftpserverip=192.168.201.1 [ 0.035243] Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) [ 0.035726] Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) [ 0.035756] mem auto-init: stack:off, heap alloc:off, heap free:off [ 0.070267] Memory: 3945736K/4141744K available (18450K kernel code, 3458K rwdata, 5992K rodata, 1688K init, 11616K bss, 195748K reserved, 0K cma-reserved) [ 0.070374] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 [ 0.070421] ftrace: allocating 52715 entries in 206 pages [ 0.099041] ftrace: allocated 206 pages with 5 groups [ 0.099276] Running RCU self tests [ 0.099287] rcu: Hierarchical RCU implementation. [ 0.099290] rcu: RCU event tracing is enabled. [ 0.099293] rcu: RCU lockdep checking is enabled. [ 0.099296] rcu: RCU restricting CPUs from NR_CPUS=64 to nr_cpu_ids=2. [ 0.099300] Rude variant of Tasks RCU enabled. [ 0.099303] Tracing variant of Tasks RCU enabled. [ 0.099307] rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. [ 0.099310] rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 [ 0.105716] NR_IRQS: 4352, nr_irqs: 512, preallocated irqs: 16 [ 0.106022] random: crng init done [ 0.106114] Console: colour dummy device 80x25 [ 0.131433] printk: console [ttyS0] enabled [ 0.131575] Lock dependency validator: Copyright (c) 2006 Red Hat, Inc., Ingo Molnar [ 0.131829] ... MAX_LOCKDEP_SUBCLASSES: 8 [ 0.131967] ... MAX_LOCK_DEPTH: 48 [ 0.132108] ... MAX_LOCKDEP_KEYS: 8192 [ 0.132255] ... CLASSHASH_SIZE: 4096 [ 0.132402] ... MAX_LOCKDEP_ENTRIES: 32768 [ 0.132551] ... MAX_LOCKDEP_CHAINS: 65536 [ 0.132700] ... CHAINHASH_SIZE: 32768 [ 0.132850] memory used by lock dependency info: 6365 kB [ 0.133029] memory used for stack traces: 4224 kB [ 0.133190] per task-struct memory footprint: 1920 bytes [ 0.133415] ACPI: Core revision 20200925 [ 0.133806] clocksource: hpet: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 133484873504 ns [ 0.134150] APIC: Switch to symmetric I/O mode setup [ 0.134742] ..TIMER: vector=0x30 apic1=0 pin1=2 apic2=0 pin2=0 [ 0.139142] clocksource: tsc-early: mask: 0xffffffffffffffff max_cycles: 0x17050029e88, max_idle_ns: 440795269232 ns [ 0.139509] Calibrating delay loop (skipped), value calculated using timer frequency.. 3193.96 BogoMIPS (lpj=1596980) [ 0.139859] pid_max: default: 32768 minimum: 301 [ 0.140070] LSM: Security Framework initializing [ 0.140516] SELinux: Initializing. [ 0.140672] LSM support for eBPF active [ 0.140838] Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) [ 0.141098] Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) [ 0.142307] BIOS may not properly restore RDRAND after suspend, hiding RDRAND via CPUID. Use rdrand=force to reenable. [ 0.142589] LVT offset 1 assigned for vector 0xf9 [ 0.142757] Last level iTLB entries: 4KB 512, 2MB 1024, 4MB 512 [ 0.142954] Last level dTLB entries: 4KB 1024, 2MB 1024, 4MB 512, 1GB 0 [ 0.143179] Spectre V1 : Mitigation: usercopy/swapgs barriers and __user pointer sanitization [ 0.143500] Spectre V2 : Mitigation: Retpolines [ 0.143653] Spectre V2 : Spectre v2 / SpectreRSB mitigation: Filling RSB on context switch [ 0.143927] Spectre V2 : mitigation: Enabling conditional Indirect Branch Prediction Barrier [ 0.144205] Speculative Store Bypass: Mitigation: Speculative Store Bypass disabled via prctl and seccomp [ 0.144973] Freeing SMP alternatives memory: 44K [ 0.145720] smpboot: CPU 0 Converting physical 2 to logical die 0 [ 0.248156] smpboot: CPU0: AMD A4-9120C RADEON R4, 5 COMPUTE CORES 2C+3G (family: 0x15, model: 0x70, stepping: 0x0) [ 0.248529] Performance Events: Fam15h core perfctr, AMD PMU driver. [ 0.248764] ... version: 0 [ 0.248904] ... bit width: 48 [ 0.249047] ... generic registers: 6 [ 0.249187] ... value mask: 0000ffffffffffff [ 0.249369] ... max period: 00007fffffffffff [ 0.249499] ... fixed-purpose events: 0 [ 0.249639] ... event mask: 000000000000003f [ 0.250128] rcu: Hierarchical SRCU implementation. [ 0.251729] smp: Bringing up secondary CPUs ... [ 0.252465] x86: Booting SMP configuration: [ 0.252510] .... node #0, CPUs: #1 [ 0.253664] smp: Brought up 1 node, 2 CPUs [ 0.254515] smpboot: Max logical packages: 1 [ 0.254665] smpboot: Total of 2 processors activated (6387.92 BogoMIPS) [ 0.255955] devtmpfs: initialized [ 0.255955] x86/mm: Memory block size: 128MB [ 0.259580] clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns [ 0.259843] futex hash table entries: 512 (order: 4, 65536 bytes, linear) [ 0.260587] pinctrl core: initialized pinctrl subsystem [ 0.260990] PM: RTC time: 03:37:37, date: 2022-06-28 [ 0.261595] NET: Registered protocol family 16 [ 0.262273] audit: initializing netlink subsys (disabled) [ 0.262533] audit: type=2000 audit(1656387457.128:1): state=initialized audit_enabled=0 res=1 [ 0.262755] thermal_sys: Registered thermal governor 'step_wise' [ 0.262760] thermal_sys: Registered thermal governor 'user_space' [ 0.263048] cpuidle: using governor menu [ 0.263637] ACPI: bus type PCI registered [ 0.264020] PCI: MMCONFIG for domain 0000 [bus 00-40] at [mem 0xf8000000-0xfc0fffff] (base 0xf8000000) [ 0.264499] PCI: MMCONFIG at [mem 0xf8000000-0xfc0fffff] reserved in E820 [ 0.264502] PCI: MMCONFIG for 0000 [bus00-1f] at [mem 0xf8000000-0xf9ffffff] (base 0xf8000000) (size reduced!) [ 0.264866] PCI: Using configuration type 1 for base access [ 0.280705] Kprobes globally optimized [ 0.281535] HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages [ 0.281753] HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages [ 0.282119] cryptomgr_test (29) used greatest stack depth: 14880 bytes left [ 0.284584] ACPI: Added _OSI(Module Device) [ 0.284659] ACPI: Added _OSI(Processor Device) [ 0.284814] ACPI: Added _OSI(3.0 _SCP Extensions) [ 0.284978] ACPI: Added _OSI(Processor Aggregator Device) [ 0.285167] ACPI: Added _OSI(Linux-Dell-Video) [ 0.285323] ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) [ 0.285516] ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) [ 0.302156] ACPI: 4 ACPI AML tables successfully acquired and loaded [ 0.313126] ACPI: EC: EC started [ 0.313260] ACPI: EC: interrupt blocked [ 0.313854] ACPI: EC: EC_CMD/EC_SC=0x66, EC_DATA=0x62 [ 0.314032] ACPI: \_SB_.PCI0.LPCB.EC0_: Boot DSDT EC used to handle transactions [ 0.314283] ACPI: Interpreter enabled [ 0.314474] ACPI: (supports S0 S1 S3 S4 S5) [ 0.314501] ACPI: Using IOAPIC for interrupt routing [ 0.314714] PCI: Using host bridge windows from ACPI; if necessary, use \"pci=nocrs\" and report a bug [ 0.315876] ACPI: Enabled 3 GPEs in block 00 to 1F [ 0.318590] ACPI: Power Resource [P0U2] (off) [ 0.318909] ACPI: Power Resource [P3U2] (off) [ 0.320668] ACPI: Power Resource [P0U3] (off) [ 0.320950] ACPI: Power Resource [P3U3] (off) [ 0.330901] ACPI: Power Resource [PRIC] (on) [ 0.358045] ACPI: Power Resource [PRIC] (on) [ 0.391189] ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-ff]) [ 0.391414] acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] [ 0.391709] acpi PNP0A08:00: _OSC: OS now controls [PME PCIeCapability LTR] [ 0.391998] acpi PNP0A08:00: [Firmware Info]: MMCONFIG for domain 0000 [bus 00-1f] only partially covers this bridge [ 0.392608] acpi PNP0A08:00: host bridge window expanded to [io 0x0000-0x0cf7 window]; [io 0x03b0-0x03df window] ignored [ 0.393160] PCI host bridge to bus 0000:00 [ 0.393306] pci_bus 0000:00: root bus resource [io 0x0000-0x0cf7 window] [ 0.393501] pci_bus 0000:00: root bus resource [io 0x0d00-0xffff window] [ 0.393734] pci_bus 0000:00: root bus resource [mem 0x000a0000-0x000bffff] [ 0.393970] pci_bus 0000:00: root bus resource [mem 0x000c0000-0x000dffff] [ 0.394204] pci_bus 0000:00: root bus resource [mem 0xd0000000-0xffffffff] [ 0.394501] pci_bus 0000:00: root bus resource [bus 00-ff] [ 0.394745] pci 0000:00:00.0: [1022:1576] type 00 class 0x060000 [ 0.395632] pci 0000:00:01.0: [1002:98e4] type 00 class 0x030000 [ 0.395857] pci 0000:00:01.0: reg 0x10: [mem 0xf0000000-0xf3ffffff 64bit pref] [ 0.396113] pci 0000:00:01.0: reg 0x18: [mem 0xf4000000-0xf47fffff 64bit pref] [ 0.396366] pci 0000:00:01.0: reg 0x20: [io 0x1000-0x10ff] [ 0.396507] pci 0000:00:01.0: reg 0x24: [mem 0xf4d00000-0xf4d3ffff] [ 0.396728] pci 0000:00:01.0: reg 0x30: [mem 0xf4d40000-0xf4d5ffff pref] [ 0.396963] pci 0000:00:01.0: enabling Extended Tags [ 0.397205] pci 0000:00:01.0: supports D1 D2 [ 0.397355] pci 0000:00:01.0: PME# supported from D1 D2 D3hot [ 0.397875] pci 0000:00:01.1: [1002:15b3] type 00 class 0x040300 [ 0.398098] pci 0000:00:01.1: reg 0x10: [mem 0xf4d80000-0xf4d83fff 64bit] [ 0.398365] pci 0000:00:01.1: enabling Extended Tags [ 0.398552] pci 0000:00:01.1: supports D1 D2 [ 0.398947] pci 0000:00:02.0: [1022:157b] type 00 class 0x060000 [ 0.399580] pci 0000:00:02.2: [1022:157c] type 01 class 0x060400 [ 0.399833] pci 0000:00:02.2: enabling Extended Tags [ 0.400074] pci 0000:00:02.2: PME# supported from D0 D3hot D3cold [ 0.400651] pci 0000:00:02.4: [1022:157c] type 01 class 0x060400 [ 0.400904] pci 0000:00:02.4: enabling Extended Tags [ 0.401143] pci 0000:00:02.4: PME# supported from D0 D3hot D3cold [ 0.401715] pci 0000:00:03.0: [1022:157b] type 00 class 0x060000 [ 0.402188] pci 0000:00:08.0: [1022:1578] type 00 class 0x108000 [ 0.402409] pci 0000:00:08.0: reg 0x10: [mem 0xf4d60000-0xf4d7ffff 64bit pref] [ 0.402507] pci 0000:00:08.0: reg 0x18: [mem 0xf4b00000-0xf4bfffff] [ 0.402727] pci 0000:00:08.0: reg 0x1c: [mem 0xf4d88000-0xf4d88fff] [ 0.402948] pci 0000:00:08.0: reg 0x20: [mem 0xf4c00000-0xf4cfffff] [ 0.403168] pci 0000:00:08.0: reg 0x24: [mem 0xf4d84000-0xf4d85fff] [ 0.403757] pci 0000:00:09.0: [1022:157d] type 00 class 0x060000 [ 0.404243] pci 0000:00:10.0: [1022:7914] type 00 class 0x0c0330 [ 0.404527] pci 0000:00:10.0: reg 0x10: [mem 0xf4d86000-0xf4d87fff 64bit] [ 0.404899] pci 0000:00:10.0: PME# supported from D0 D3hot D3cold [ 0.405503] pci 0000:00:12.0: [1022:7908] type 00 class 0x0c0320 [ 0.405728] pci 0000:00:12.0: reg 0x10: [mem 0xf4d89000-0xf4d890ff] [ 0.406041] pci 0000:00:12.0: supports D1 D2 [ 0.406192] pci 0000:00:12.0: PME# supported from D0 D1 D2 D3hot D3cold [ 0.406748] pci 0000:00:14.0: [1022:790b] type 00 class 0x0c0500 [ 0.407332] pci 0000:00:14.3: [1022:790e] type 00 class 0x060100 [ 0.407888] pci 0000:00:14.7: [1022:7906] type 00 class 0x080501 [ 0.408117] pci 0000:00:14.7: reg 0x10: [mem 0xf4d8a000-0xf4d8a0ff 64bit] [ 0.408442] pci 0000:00:14.7: PME# supported from D3cold [ 0.408823] pci 0000:00:18.0: [1022:15b0] type 00 class 0x060000 [ 0.409271] pci 0000:00:18.1: [1022:15b1] type 00 class 0x060000 [ 0.409735] pci 0000:00:18.2: [1022:15b2] type 00 class 0x060000 [ 0.410185] pci 0000:00:18.3: [1022:15b3] type 00 class 0x060000 [ 0.410741] pci 0000:00:18.4: [1022:15b4] type 00 class 0x060000 [ 0.411182] pci 0000:00:18.5: [1022:15b5] type 00 class 0x060000 [ 0.411876] pci 0000:01:00.0: [168c:003e] type 00 class 0x028000 [ 0.412168] pci 0000:01:00.0: reg 0x10: [mem 0xf4800000-0xf49fffff 64bit] [ 0.412687] pci 0000:01:00.0: PME# supported from D0 D3hot D3cold [ 0.413375] pci 0000:00:02.2: PCI bridge to [bus 01] [ 0.413507] pci 0000:00:02.2: bridge window [mem 0xf4800000-0xf49fffff] [ 0.413944] pci 0000:02:00.0: [1217:8620] type 00 class 0x080501 [ 0.414256] pci 0000:02:00.0: reg 0x10: [mem 0xf4a00000-0xf4a00fff] [ 0.414595] pci 0000:02:00.0: reg 0x14: [mem 0xf4a01000-0xf4a017ff] [ 0.415054] pci 0000:02:00.0: PME# supported from D3hot D3cold [ 0.418753] pci 0000:00:02.4: PCI bridge to [bus 02] [ 0.418942] pci 0000:00:02.4: bridge window [mem 0xf4a00000-0xf4afffff] [ 0.421173] ACPI: PCI Interrupt Link [INTA] (IRQs *3 4 5 7 10 11 12 15) [ 0.421585] ACPI: PCI Interrupt Link [INTB] (IRQs 3 *4 5 7 10 11 12 15) [ 0.421964] ACPI: PCI Interrupt Link [INTC] (IRQs 3 4 *5 7 10 11 12 15) [ 0.422343] ACPI: PCI Interrupt Link [INTD] (IRQs 3 4 5 *7 10 11 12 15) [ 0.422632] ACPI: PCI Interrupt Link [INTE] (IRQs 3 4 5 7 10 *11 12 15) [ 0.423011] ACPI: PCI Interrupt Link [INTF] (IRQs 9) *0 [ 0.423331] ACPI: PCI Interrupt Link [INTG] (IRQs 3 4 5 7 10 11 12 15) *0 [ 0.423630] ACPI: PCI Interrupt Link [INTH] (IRQs 3 4 5 7 10 11 12 15) *0 [ 0.428196] ACPI: EC: interrupt unblocked [ 0.428350] ACPI: EC: event unblocked [ 0.428485] ACPI: EC: EC_CMD/EC_SC=0x66, EC_DATA=0x62 [ 0.428501] ACPI: EC: GPE=0x3 [ 0.428610] ACPI: \_SB_.PCI0.LPCB.EC0_: Boot DSDT EC initialization complete [ 0.428852] ACPI: \_SB_.PCI0.LPCB.EC0_: EC: Used to handle transactions and events [ 0.429631] iommu: Default domain type: Translated [ 0.430559] pci 0000:00:01.0: vgaarb: setting as boot VGA device [ 0.430783] pci 0000:00:01.0: vgaarb: VGA device added: decodes=io+mem,owns=io+mem,locks=none [ 0.431091] pci 0000:00:01.0: vgaarb: bridge control possible [ 0.431289] vgaarb: loaded [ 0.431907] SCSI subsystem initialized [ 0.432061] ACPI: bus type USB registered [ 0.432061] usbcore: registered new interface driver usbfs [ 0.432154] usbcore: registered new interface driver hub [ 0.432525] usbcore: registered new device driver usb [ 0.450614] pps_core: LinuxPPS API ver. 1 registered [ 0.450792] pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti [ 0.451110] PTP clock support registered [ 0.451692] Advanced Linux Sound Architecture Driver Initialized. [ 0.452544] NetLabel: Initializing [ 0.452666] NetLabel: domain hash size = 128 [ 0.452818] NetLabel: protocols = UNLABELED CIPSOv4 CALIPSO [ 0.453067] NetLabel: unlabeled traffic allowed by default [ 0.453596] PCI: Using ACPI for IRQ routing [ 0.455088] hpet0: at MMIO 0xfed00000, IRQs 2, 8, 0 [ 0.455267] hpet0: 3 comparators, 32-bit 14.318180 MHz counter [ 0.458584] clocksource: Switched to clocksource tsc-early [ 0.804898] VFS: Disk quotas dquot_6.6.0 [ 0.805075] VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) [ 0.805597] pnp: PnP ACPI init [ 0.806183] system 00:00: [mem 0xfec1000a-0xfec11009] has been reserved [ 0.806869] system 00:03: [io 0x0900-0x09fe] has been reserved [ 0.807252] system 00:04: [io 0x0200] has been reserved [ 0.807438] system 00:04: [io 0x0204] has been reserved [ 0.807631] system 00:04: [io 0x0800-0x087f] has been reserved [ 0.807837] system 00:04: [io 0x0880-0x08ff] has been reserved [ 0.809795] pnp: PnP ACPI: found 6 devices [ 0.820879] clocksource: acpi_pm: mask: 0xffffff max_cycles: 0xffffff, max_idle_ns: 2085701024 ns [ 0.821278] NET: Registered protocol family 2 [ 0.821630] IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) [ 0.822925] tcp_listen_portaddr_hash hash table entries: 2048 (order: 5, 163840 bytes, linear) [ 0.823288] TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) [ 0.823796] TCP bind hash table entries: 32768 (order: 9, 2359296 bytes, linear) [ 0.825031] TCP: Hash tables configured (established 32768 bind 32768) [ 0.825673] MPTCP token hash table entries: 4096 (order: 6, 360448 bytes, linear) [ 0.826091] UDP hash table entries: 2048 (order: 6, 327680 bytes, linear) [ 0.826469] UDP-Lite hash table entries: 2048 (order: 6, 327680 bytes, linear) [ 0.826971] NET: Registered protocol family 1 [ 0.827744] RPC: Registered named UNIX socket transport module. [ 0.827970] RPC: Registered udp transport module. [ 0.828134] RPC: Registered tcp transport module. [ 0.828298] RPC: Registered tcp NFSv4.1 backchannel transport module. [ 0.828897] NET: Registered protocol family 44 [ 0.829085] pci 0000:00:02.2: PCI bridge to [bus 01] [ 0.829264] pci 0000:00:02.2: bridge window [mem 0xf4800000-0xf49fffff] [ 0.829503] pci 0000:00:02.4: PCI bridge to [bus 02] [ 0.829679] pci 0000:00:02.4: bridge window [mem 0xf4a00000-0xf4afffff] [ 0.829919] pci_bus 0000:00: resource 4 [io 0x0000-0x0cf7 window] [ 0.830138] pci_bus 0000:00: resource 5 [io 0x0d00-0xffff window] [ 0.830350] pci_bus 0000:00: resource 6 [mem 0x000a0000-0x000bffff] [ 0.830564] pci_bus 0000:00: resource 7 [mem 0x000c0000-0x000dffff] [ 0.830779] pci_bus 0000:00: resource 8 [mem 0xd0000000-0xffffffff] [ 0.830993] pci_bus 0000:01: resource 1 [mem 0xf4800000-0xf49fffff] [ 0.831217] pci_bus 0000:02: resource 1 [mem 0xf4a00000-0xf4afffff] [ 0.831574] pci 0000:00:01.0: disabling ATS [ 0.831727] pci 0000:00:01.0: Video device with shadowed ROM at [mem 0x000c0000-0x000dffff] [ 0.832192] pci 0000:00:01.1: D0 power state depends on 0000:00:01.0 [ 0.833191] pci 0000:00:10.0: PME# does not work under D0, disabling it [ 0.834044] PCI: CLS 64 bytes, default 64 [ 0.834472] Unpacking initramfs... [ 1.033222] Freeing initrd memory: 8312K [ 1.033370] PCI-DMA: Using software bounce buffering for IO (SWIOTLB) [ 1.033592] software IO TLB: mapped [mem 0x00000000c9d0d000-0x00000000cdd0d000] (64MB) [ 1.033914] LVT offset 0 assigned for vector 0x400 [ 1.034168] perf: AMD IBS detected (0x000007ff) [ 1.034381] kvm: no hardware support [ 1.034613] kvm: Nested Virtualization enabled [ 1.034772] SVM: kvm: Nested Paging enabled [ 1.034918] SVM: Virtual VMLOAD VMSAVE supported [ 1.035125] SVM: Virtual GIF supported [ 1.036669] check: Scanning for low memory corruption every 60 seconds [ 1.038288] Initialise system trusted keyrings [ 1.038643] workingset: timestamp_bits=56 max_order=20 bucket_order=0 [ 1.050908] NFS: Registering the id_resolver key type [ 1.051132] Key type id_resolver registered [ 1.051299] Key type id_legacy registered [ 1.066855] Key type asymmetric registered [ 1.067026] Asymmetric key parser 'x509' registered [ 1.067241] Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) [ 1.067513] io scheduler mq-deadline registered [ 1.067672] io scheduler kyber registered [ 1.067983] test_firmware: interface ready [ 1.070013] pcieport 0000:00:02.2: PME: Signaling with IRQ 25 [ 1.070748] pcieport 0000:00:02.4: PME: Signaling with IRQ 26 [ 1.071733] ACPI: AC Adapter [AC] (on-line) [ 1.072127] input: Lid Switch as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0A08:00/device:17/PNP0C09:00/PNP0C0D:00/input/input0 [ 1.073021] ACPI: Lid Switch [LID0] [ 1.073302] input: Power Button as /devices/LNXSYSTM:00/LNXPWRBN:00/input/input1 [ 1.073727] ACPI: Power Button [PWRF] [ 1.074113] ACPI: Video Device [IGFX] (multi-head: no rom: yes post: no) [ 1.074877] input: Video Bus as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0A08:00/LNXVIDEO:00/input/input2 [ 1.075331] ACPI: \_PR_.P000: Found 2 idle states [ 1.075967] ACPI: \_PR_.P001: Found 2 idle states [ 1.078353] thermal LNXTHERM:00: registered as thermal_zone0 [ 1.078551] ACPI: Thermal Zone [THRM] (29 C) [ 1.079092] Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled [ 1.081900] battery: ACPI: Battery Slot [BAT0] (battery present) [ 1.082042] printk: console [ttyS0] disabled [ 1.082472] AMD0020:00: ttyS0 at MMIO 0xfedc6000 (irq = 10, base_baud = 3000000) is a 16550A [ 2.089113] tsc: Refined TSC clocksource calibration: 1597.002 MHz [ 2.089131] clocksource: tsc: mask: 0xffffffffffffffff max_cycles: 0x170514dcf86, max_idle_ns: 440795282824 ns [ 2.089205] clocksource: Switched to clocksource tsc [ 3.509102] printk: console [ttyS0] enabled [ 3.514171] AMD0020:01: ttyS1 at MMIO 0xfedc8000 (irq = 11, base_baud = 3000000) is a 16550A [ 3.523247] Non-volatile memory driver v1.3 [ 3.527552] Linux agpgart interface v0.103 [ 3.532981] [drm] Initialized vgem 1.0.0 20120112 for vgem on minor 0 [ 3.548557] loop: module loaded [ 3.552207] lkdtm: No crash points registered, enable through debugfs [ 3.560143] e100: Intel(R) PRO/100 Network Driver [ 3.564856] e100: Copyright(c) 1999-2006 Intel Corporation [ 3.570385] e1000: Intel(R) PRO/1000 Network Driver [ 3.575265] e1000: Copyright (c) 1999-2006 Intel Corporation. [ 3.581061] e1000e: Intel(R) PRO/1000 Network Driver [ 3.586029] e1000e: Copyright(c) 1999 - 2015 Intel Corporation. [ 3.592000] sky2: driver version 1.30 [ 3.595868] usbcore: registered new interface driver r8152 [ 3.601645] ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver [ 3.608189] ehci-pci: EHCI PCI platform driver [ 3.613066] ehci-pci 0000:00:12.0: EHCI Host Controller [ 3.618807] ehci-pci 0000:00:12.0: new USB bus registered, assigned bus number 1 [ 3.626274] ehci-pci 0000:00:12.0: debug port 2 [ 3.630970] ehci-pci 0000:00:12.0: irq 18, io mem 0xf4d89000 [ 3.643797] ehci-pci 0000:00:12.0: USB 2.0 started, EHCI 1.00 [ 3.650044] usb usb1: New USB device found, idVendor=1d6b, idProduct=0002, bcdDevice= 5.10 [ 3.658338] usb usb1: New USB device strings: Mfr=3, Product=2, SerialNumber=1 [ 3.665563] usb usb1: Product: EHCI Host Controller [ 3.670445] usb usb1: Manufacturer: Linux 5.10.125-cip10 ehci_hcd [ 3.676540] usb usb1: SerialNumber: 0000:00:12.0 [ 3.682092] hub 1-0:1.0: USB hub found [ 3.685920] hub 1-0:1.0: 2 ports detected [ 3.690859] ohci_hcd: USB 1.1 'Open' Host Controller (OHCI) Driver [ 3.697063] ohci-pci: OHCI PCI platform driver [ 3.701554] uhci_hcd: USB Universal Host Controller Interface driver [ 3.708290] xhci_hcd 0000:00:10.0: xHCI Host Controller [ 3.714158] xhci_hcd 0000:00:10.0: new USB bus registered, assigned bus number 2 [ 3.721794] xhci_hcd 0000:00:10.0: hcc params 0x014040c3 hci version 0x100 quirks 0x0000000000000410 [ 3.731911] usb usb2: New USB device found, idVendor=1d6b, idProduct=0002, bcdDevice= 5.10 [ 3.740196] usb usb2: New USB device strings: Mfr=3, Product=2, SerialNumber=1 [ 3.747427] usb usb2: Product: xHCI Host Controller [ 3.752310] usb usb2: Manufacturer: Linux 5.10.125-cip10 xhci-hcd [ 3.758405] usb usb2: SerialNumber: 0000:00:10.0 [ 3.763682] hub 2-0:1.0: USB hub found [ 3.767558] hub 2-0:1.0: 4 ports detected [ 3.772435] xhci_hcd 0000:00:10.0: xHCI Host Controller [ 3.777913] xhci_hcd 0000:00:10.0: new USB bus registered, assigned bus number 3 [ 3.785318] xhci_hcd 0000:00:10.0: Host supports USB 3.0 SuperSpeed [ 3.791682] usb usb3: We don't know the algorithms for LPM for this host, disabling LPM. [ 3.800044] usb usb3: New USB device found, idVendor=1d6b, idProduct=0003, bcdDevice= 5.10 [ 3.808309] usb usb3: New USB device strings: Mfr=3, Product=2, SerialNumber=1 [ 3.815535] usb usb3: Product: xHCI Host Controller [ 3.820417] usb usb3: Manufacturer: Linux 5.10.125-cip10 xhci-hcd [ 3.826581] usb usb3: SerialNumber: 0000:00:10.0 [ 3.832175] hub 3-0:1.0: USB hub found [ 3.835999] hub 3-0:1.0: 4 ports detected [ 3.840952] usbcore: registered new interface driver usblp [ 3.846515] usbcore: registered new interface driver usb-storage [ 3.852804] udc-core: couldn't find an available UDC - added [g_ether] to list of pending drivers [ 3.861769] i8042: PNP: PS/2 Controller [PNP0303:PS2K] at 0x60,0x64 irq 1 [ 3.868559] i8042: PNP: PS/2 appears to have AUX port disabled, if this is incorrect please boot with i8042.nopnp [ 3.880023] i8042: Warning: Keylock active [ 3.884290] serio: i8042 KBD port at 0x60,0x64 irq 1 [ 3.890432] rtc_cmos 00:01: RTC can wake from S4 [ 3.896297] rtc_cmos 00:01: registered as rtc0 [ 3.900886] rtc_cmos 00:01: alarms up to one day, 114 bytes nvram, hpet irqs [ 3.908953] input: AT Translated Set 2 keyboard as /devices/platform/i8042/serio0/input/input3 [ 3.917781] device-mapper: ioctl: 4.43.0-ioctl (2020-10-01) initialised: dm-devel@redhat.com [ 3.926307] sdhci: Secure Digital Host Controller Interface driver [ 3.932491] sdhci: Copyright(c) Pierre Ossman [ 3.936910] sdhci-pci 0000:00:14.7: SDHCI controller found [1022:7906] (rev 1) [ 3.947778] usb 1-1: new high-speed USB device number 2 using ehci-pci [ 4.022775] usb 2-4: new high-speed USB device number 2 using xhci_hcd [ 4.046583] mmc0: SDHCI controller on PCI [0000:00:14.7] using ADMA 64-bit [ 4.053685] sdhci-pci 0000:02:00.0: SDHCI controller found [1217:8620] (rev 1) [ 4.061487] mmc1: emmc 1.8v flag is set, force 1.8v signaling voltage [ 4.069387] mmc1: SDHCI controller on PCI [0000:02:00.0] using ADMA [ 4.075974] hid: raw HID events driver (C) Jiri Kosina [ 4.081742] usbcore: registered new interface driver usbhid [ 4.087319] usbhid: USB HID core driver [ 4.091734] usb 1-1: New USB device found, idVendor=0438, idProduct=7900, bcdDevice= 0.18 [ 4.096188] cros_ec_lpcs GOOG0004:00: Chrome EC device registered [ 4.099959] usb 1-1: New USB device strings: Mfr=0, Product=0, SerialNumber=0 [ 4.107283] snd_hda_intel 0000:00:01.1: Force to non-snoop mode [ 4.119989] ipip: IPv4 and MPLS over IPv4 tunneling driver [ 4.121754] hub 1-1:1.0: USB hub found [ 4.125920] gre: GRE over IPv4 demultiplexor driver [ 4.134255] ip_gre: GRE over IPv4 tunneling driver [ 4.136227] hub 1-1:1.0: 4 ports detected [ 4.140038] IPv4 over IPsec tunneling driver [ 4.147984] Initializing XFRM netlink socket [ 4.153135] snd_hda_intel 0000:00:01.1: Cannot probe codecs, giving up [ 4.153843] NET: Registered protocol family 10 [ 4.166101] Segment Routing with IPv6 [ 4.170721] ip6_gre: GRE over IPv6 tunneling driver [ 4.176104] NET: Registered protocol family 17 [ 4.180884] Key type dns_resolver registered [ 4.185228] x86/pm: family 0x15 cpu detected, MSR saving is needed during suspending. [ 4.193879] microcode: CPU0: patch_level=0x06006705 [ 4.198872] microcode: CPU1: patch_level=0x06006705 [ 4.203785] microcode: Microcode Update Driver: v2.2. [ 4.203795] IPI shorthand broadcast: enabled [ 4.213205] sched_clock: Marking stable (4184615063, 28517440)->(4240907808, -27775305) [ 4.221509] registered taskstats version 1 [ 4.225630] Loading compiled-in X.509 certificates [ 4.231004] usb 2-4: New USB device found, idVendor=0bda, idProduct=8153, bcdDevice=31.00 [ 4.232843] PM: Magic number: 10:2:615 [ 4.239191] usb 2-4: New USB device strings: Mfr=1, Product=2, SerialNumber=6 [ 4.239195] usb 2-4: Product: USB 10/100/1000 LAN [ 4.255032] usb 2-4: Manufacturer: Realtek [ 4.255036] usb 2-4: SerialNumber: 001000001 [ 4.259191] printk: console [netcon0] enabled [ 4.267818] netconsole: network logging started [ 4.272976] acpi_cpufreq: overriding BIOS provided _PSD data [ 4.281836] IP-Config: Failed to open gretap0 [ 4.286309] IP-Config: Failed to open erspan0 [ 4.290702] IP-Config: No network devices available [ 4.295653] cfg80211: Loading compiled-in X.509 certificates for regulatory database [ 4.308042] modprobe (79) used greatest stack depth: 14208 bytes left [ 4.315389] cfg80211: Loaded X.509 cert 'sforshee: 00b28ddf47aef9cea7' [ 4.322375] platform regulatory.0: Direct firmware load for regulatory.db failed with error -2 [ 4.323556] ALSA device list: [ 4.331075] cfg80211: failed to load regulatory.db [ 4.334008] No soundcards found. [ 4.342704] dw-apb-uart AMD0020:00: forbid DMA for kernel console [ 4.352880] Freeing unused kernel image (initmem) memory: 1688K [ 4.360851] Write protecting the kernel read-only data: 26624k [ 4.368405] Freeing unused kernel image (text/rodata gap) memory: 2028K [ 4.375154] Freeing unused kernel image (rodata/data gap) memory: 152K [ 4.381713] Run /init as init process Loading, please wait... [ 4.400582] all_generic_ide (96) used greatest stack depth: 14120 bytes left Starting version 247.3-7[ 4.414493] systemd-udevd (101) used greatest stack depth: 13584 bytes left [ 4.428166] usb 2-4: reset high-speed USB device number 2 using xhci_hcd [ 4.459534] usb 1-1.1: new high-speed USB device number 3 using ehci-pci [ 4.580415] usb 1-1.1: New USB device found, idVendor=05c8, idProduct=03d1, bcdDevice= 1.03 [ 4.588814] usb 1-1.1: New USB device strings: Mfr=3, Product=1, SerialNumber=2 [ 4.596143] usb 1-1.1: Product: HP TrueVision HD Camera [ 4.601393] usb 1-1.1: Manufacturer: Foxlink [ 4.605671] usb 1-1.1: SerialNumber: 0x0001 [ 4.628951] r8152 2-4:1.0: Direct firmware load for rtl_nic/rtl8153b-2.fw failed with error -2 [ 4.637946] r8152 2-4:1.0: unable to load firmware patch rtl_nic/rtl8153b-2.fw (-2) [ 4.698559] usb 1-1.2: new full-speed USB device number 4 using ehci-pci [ 4.721105] cros-usbpd-notify-acpi GOOG0003:00: Couldn't get Chrome EC device pointer. [ 4.730291] r8152 2-4:1.0 eth0: v1.11.11 [ 4.791327] r8152 2-4:1.0 enx00e04c75035c: renamed from eth0 [ 4.829769] usb 1-1.2: New USB device found, idVendor=0cf3, idProduct=e300, bcdDevice= 0.01 [ 4.838175] usb 1-1.2: New USB device strings: Mfr=0, Product=0, SerialNumber=0 Begin: Loading essential drivers ... done. Begin: Running /scripts/init-premount ... done. Begin: Mounting root file system ... Begin: Running /scripts/nfs-top ... done. Begin: Running /scripts/nfs-premount ... done. IP-Config: gretap0 hardware address 00:00:00:00:00:00 mtu 1462 DHCP SIOCSIFFLAGS: Cannot assign requested address IP-Config: erspan0 hardware address 00:00:00:00:00:00 mtu 1450 DHCP SIOCSIFFLAGS: Cannot assign requested address IP-Config: enx00e04c75035c hardware address 00:e0:4c:75:03:5c mtu 1500 DHCP [ 5.650218] mmc1: new HS200 MMC card at address 0001 [ 5.657601] mmcblk1: mmc1:0001 hA8aP> 14.7 GiB [ 5.662402] mmcblk1boot0: mmc1:0001 hA8aP> partition 1 4.00 MiB [ 5.668559] mmcblk1boot1: mmc1:0001 hA8aP> partition 2 4.00 MiB [ 5.675939] mmcblk1rpmb: mmc1:0001 hA8aP> partition 3 16.0 MiB, chardev (246:0) [ 5.688505] mmcblk1: p1 p2 p3 p4 p5 p6 p7 p8 p9 p10 p11 p12 IP-Config: no response after 2 secs - giving up IP-Config: gretap0 hardware address 00:00:00:00:00:00 mtu 1462 DHCP SIOCSIFFLAGS: Cannot assign requested address IP-Config: erspan0 hardware address 00:00:00:00:00:00 mtu 1450 DHCP SIOCSIFFLAGS: Cannot assign requested address IP-Config: enx00e04c75035c hardware address 00:e0:4c:75:03:5c mtu 1500 DHCP [ 6.384644] IPv6: ADDRCONF(NETDEV_CHANGE): enx00e04c75035c: link becomes ready [ 6.394297] r8152 2-4:1.0 enx00e04c75035c: carrier on IP-Config: enx00e04c75035c complete (dhcp from 192.168.201.1): address: 192.168.201.12 broadcast: 192.168.201.255 netmask: 255.255.255.0 gateway: 192.168.201.1 dns0 : 192.168.201.1 dns1 : 0.0.0.0 host : hp-11A-G6-EE-grunt-cbg-0 domain : lava-rack rootserver: 192.168.201.1 rootpath: filename : [ 7.723550] nfsmount (141) used greatest stack depth: 12680 bytes left done. Begin: Running /scripts/nfs-bottom ... done. Begin: Running /scripts/init-bottom ... done. SELinux: Could not open policy file <= /etc/selinux/targeted/policy/policy.33: No such file or directory [ 8.943234] systemd[1]: systemd 247.3-7 running in system mode. (+PAM +AUDIT +SELINUX +IMA +APPARMOR +SMACK +SYSVINIT +UTMP +LIBCRYPTSETUP +GCRYPT +GNUTLS +ACL +XZ +LZ4 +ZSTD +SECCOMP +BLKID +ELFUTILS +KMOD +IDN2 -IDN +PCRE2 default-hierarchy=unified) [ 8.977961] systemd[1]: Detected architecture x86-64. Welcome to [1mDebian GNU/Linux 11 (bullseye)[0m! [ 9.009318] systemd[1]: Set hostname to . [ 9.714530] systemd[1]: Queued start job for default target Graphical Interface. [ 9.725750] systemd[1]: Created slice system-getty.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-getty.slice[0m. [ 9.738438] systemd[1]: Created slice system-modprobe.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-modprobe.slice[0m. [ 9.753446] systemd[1]: Created slice system-serial\x2dgetty.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-serial\x2dgetty.slice[0m. [ 9.769385] systemd[1]: Created slice User and Session Slice. [[0;32m OK [0m] Created slice [0;1;39mUser and Session Slice[0m. [ 9.784296] systemd[1]: Started Dispatch Password Requests to Console Directory Watch. [[0;32m OK [0m] Started [0;1;39mDispatch Password …ts to Console Directory Watch[0m. [ 9.801160] systemd[1]: Started Forward Password Requests to Wall Directory Watch. [[0;32m OK [0m] Started [0;1;39mForward Password R…uests to Wall Directory Watch[0m. [ 9.818928] systemd[1]: Set up automount Arbitrary Executable File Formats File System Automount Point. [[0;32m OK [0m] Set up automount [0;1;39mArbitrary…s File System Automount Point[0m. [ 9.837973] systemd[1]: Reached target Local Encrypted Volumes. [[0;32m OK [0m] Reached target [0;1;39mLocal Encrypted Volumes[0m. [ 9.852945] systemd[1]: Reached target Paths. [[0;32m OK [0m] Reached target [0;1;39mPaths[0m. [ 9.863910] systemd[1]: Reached target Remote File Systems. [[0;32m OK [0m] Reached target [0;1;39mRemote File Systems[0m. [ 9.878907] systemd[1]: Reached target Slices. [[0;32m OK [0m] Reached target [0;1;39mSlices[0m. [ 9.889911] systemd[1]: Reached target Swap. [[0;32m OK [0m] Reached target [0;1;39mSwap[0m. [ 9.900315] systemd[1]: Listening on initctl Compatibility Named Pipe. [[0;32m OK [0m] Listening on [0;1;39minitctl Compatibility Named Pipe[0m. [ 9.916867] systemd[1]: Listening on Journal Audit Socket. [[0;32m OK [0m] Listening on [0;1;39mJournal Audit Socket[0m. [ 9.929861] systemd[1]: Listening on Journal Socket (/dev/log). [[0;32m OK [0m] Listening on [0;1;39mJournal Socket (/dev/log)[0m. [ 9.945456] systemd[1]: Listening on Journal Socket. [[0;32m OK [0m] Listening on [0;1;39mJournal Socket[0m. [ 9.957818] systemd[1]: Listening on Network Service Netlink Socket. [[0;32m OK [0m] Listening on [0;1;39mNetwork Service Netlink Socket[0m. [ 9.974713] systemd[1]: Listening on udev Control Socket. [[0;32m OK [0m] Listening on [0;1;39mudev Control Socket[0m. [ 9.989346] systemd[1]: Listening on udev Kernel Socket. [[0;32m OK [0m] Listening on [0;1;39mudev Kernel Socket[0m. [ 10.003268] systemd[1]: Mounting Huge Pages File System... Mounting [0;1;39mHuge Pages File System[0m... [ 10.018247] systemd[1]: Mounting POSIX Message Queue File System... Mounting [0;1;39mPOSIX Message Queue File System[0m... [ 10.038665] systemd[1]: Mounting Kernel Debug File System... Mounting [0;1;39mKernel Debug File System[0m... [ 10.054315] systemd[1]: Mounting Kernel Trace File System... Mounting [0;1;39mKernel Trace File System[0m... [ 10.084183] systemd[1]: Starting Create list of static device nodes for the current kernel... Starting [0;1;39mCreate list of st…odes for the current kernel[0m... [ 10.103885] systemd[1]: Starting Load Kernel Module configfs... Starting [0;1;39mLoad Kernel Module configfs[0m... [ 10.120041] systemd[1]: Starting Load Kernel Module drm... Starting [0;1;39mLoad Kernel Module drm[0m... [ 10.140332] systemd[1]: Starting Load Kernel Module fuse... Starting [0;1;39mLoad Kernel Module fuse[0m... [ 10.156146] systemd[1]: Condition check resulted in Set Up Additional Binary Formats being skipped. [ 10.172681] systemd[1]: Starting Journal Service... Starting [0;1;39mJournal Service[0m... [ 10.201341] fuse: init (API version 7.32) [ 10.210707] systemd[1]: Starting Load Kernel Modules... Starting [0;1;39mLoad Kernel Modules[0m... [ 10.225020] systemd[1]: Starting Remount Root and Kernel File Systems... Starting [0;1;39mRemount Root and Kernel File Systems[0m... [ 10.246322] systemd[1]: Starting Coldplug All udev Devices... Starting [0;1;39mColdplug All udev Devices[0m... [ 10.275899] systemd[1]: Mounted Huge Pages File System. [[0;32m OK [0m] Mounted [0;1;39mHuge Pages File System[0m. [ 10.293377] systemd[1]: Mounted POSIX Message Queue File System. [[0;32m OK [0m] Mounted [0;1;39mPOSIX Message Queue File System[0m. [ 10.310304] systemd[1]: Mounted Kernel Debug File System. [[0;32m OK [0m] Mounted [0;1;39mKernel Debug File System[0m. [ 10.326364] systemd[1]: Mounted Kernel Trace File System. [[0;32m OK [0m] Mounted [0;1;39mKernel Trace File System[0m. [ 10.346728] systemd[1]: Finished Create list of static device nodes for the current kernel. [[0;32m OK [0m] Finished [0;1;39mCreate list of st… nodes for the current kernel[0m. [ 10.368101] systemd[1]: modprobe@configfs.service: Succeeded. [ 10.375541] systemd[1]: Finished Load Kernel Module configfs. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module configfs[0m. [ 10.393339] systemd[1]: modprobe@drm.service: Succeeded. [ 10.401069] systemd[1]: Finished Load Kernel Module drm. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module drm[0m. [ 10.426065] systemd[1]: Started Journal Service. [[0;32m OK [0m] Started [0;1;39mJournal Service[0m. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module fuse[0m. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Modules[0m. [[0;32m OK [0m] Finished [0;1;39mRemount Root and Kernel File Systems[0m. Mounting [0;1;39mFUSE Control File System[0m... Mounting [0;1;39mKernel Configuration File System[0m... Starting [0;1;39mFlush Journal to Persistent Storage[0m... Starting [0;1;39mLoad/Save Random Seed[0m... Starting [0;1;39mApply Kernel Variables[0m... Starting [0;1;39mCreate System Users[0m... [[0;32m OK [0m] Mounted [0;1;39mFUSE Control File System[0m. [[0;32m OK [0m] Mounted [0;1;39mKernel Configuration File System[0m. [ 10.584325] systemd-journald[176]: Received client request to flush runtime journal. [[0;32m OK [0m] Finished [0;1;39mApply Kernel Variables[0m. [[0;32m OK [0m] Finished [0;1;39mLoad/Save Random Seed[0m. [[0;32m OK [0m] Finished [0;1;39mColdplug All udev Devices[0m. [[0;32m OK [0m] Finished [0;1;39mCreate System Users[0m. Starting [0;1;39mCreate Static Device Nodes in /dev[0m... [[0;32m OK [0m] Finished [0;1;39mFlush Journal to Persistent Storage[0m. [ 12.115738] systemd-tmpfile (188) used greatest stack depth: 12528 bytes left [[0;32m OK [0m] Finished [0;1;39mCreate Static Device Nodes in /dev[0m. [[0;32m OK [0m] Reached target [0;1;39mLocal File Systems (Pre)[0m. [[0;32m OK [0m] Reached target [0;1;39mLocal File Systems[0m. Starting [0;1;39mCreate Volatile Files and Directories[0m... Starting [0;1;39mRule-based Manage…for Device Events and Files[0m... [[0;32m OK [0m] Started [0;1;39mRule-based Manager for Device Events and Files[0m. Starting [0;1;39mNetwork Service[0m... [[0;32m OK [0m] Finished [0;1;39mCreate Volatile Files and Directories[0m. Starting [0;1;39mUpdate UTMP about System Boot/Shutdown[0m... [[0;32m OK [0m] Finished [0;1;39mUpdate UTMP about System Boot/Shutdown[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Initialization[0m. [[0;32m OK [0m] Started [0;1;39mDaily apt download activities[0m. [[0;32m OK [0m] Started [0;1;39mDaily apt upgrade and clean activities[0m. [[0;32m OK [0m] Started [0;1;39mPeriodic ext4 Onli…ata Check for All Filesystems[0m. [[0;32m OK [0m] Started [0;1;39mDiscard unused blocks once a week[0m. [[0;32m OK [0m] Started [0;1;39mDaily Cleanup of Temporary Directories[0m. [[0;32m OK [0m] Reached target [0;1;39mTimers[0m. [[0;32m OK [0m] Listening on [0;1;39mD-Bus System Message Bus Socket[0m. [[0;32m OK [0m] Reached target [0;1;39mSockets[0m. [[0;32m OK [0m] Reached target [0;1;39mBasic System[0m. [[0;32m OK [0m] Started [0;1;39mD-Bus System Message Bus[0m. Starting [0;1;39mRemove Stale Onli…t4 Metadata Check Snapshots[0m... Starting [0;1;39mUser Login Management[0m... [[0;32m OK [0m] Started [0;1;39mNetwork Service[0m. [[0;32m OK [0m] Found device [0;1;39m/dev/ttyS0[0m. [[0;32m OK [0m] Started [0;1;39mUser Login Management[0m. [[0;32m OK [0m] Listening on [0;1;39mLoad/Save RF …itch Status /dev/rfkill Watch[0m. Starting [0;1;39mNetwork Name Resolution[0m... [[0;32m OK [0m] Finished [0;1;39mRemove Stale Onli…ext4 Metadata Check Snapshots[0m. [[0;32m OK [0m] Started [0;1;39mNetwork Name Resolution[0m. [[0;32m OK [0m] Reached target [0;1;39mNetwork[0m. [[0;32m OK [0m] Reached target [0;1;39mHost and Network Name Lookups[0m. Starting [0;1;39mPermit User Sessions[0m... [[0;32m OK [0m] Finished [0;1;39mPermit User Sessions[0m. [[0;32m OK [0m] Started [0;1;39mGetty on tty1[0m. [[0;32m OK [0m] Started [0;1;39mSerial Getty on ttyS0[0m. [[0;32m OK [0m] Reached target [0;1;39mLogin Prompts[0m. [[0;32m OK [0m] Reached target [0;1;39mMulti-User System[0m. [[0;32m OK [0m] Reached target [0;1;39mGraphical Interface[0m. Starting [0;1;39mUpdate UTMP about System Runlevel Changes[0m... [[0;32m OK [0m] Finished [0;1;39mUpdate UTMP about System Runlevel Changes[0m. Debian GNU/Linux 11 debian-bullseye-amd64 ttyS0 debian-bullseye-amd64 login: root (automatic login) Linux debian-bullseye-amd64 5.10.125-cip10 #1 SMP Tue Jun 28 03:26:39 UTC 2022 x86_64 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. / # / # export NFS_ROOTFS='/var/lib/lava/dispatcher/tmp/6694080/extract-nfsrootfs-eyc0bbx_' export NFS_ROOTFS='/var/lib/lava/dispatcher/tmp/6694080/extract-nfsrootfs-eyc0bbx_' / # export NFS_SERVER_IP='192.168.201.1' export NFS_SERVER_IP='192.168.201.1' / # # # / # export SHELL=/bin/bash export SHELL=/bin/bash / # . /lava-6694080/environment . /lava-6694080/environment / # /lava-6694080/bin/lava-test-runner /lava-6694080/0 /lava-6694080/bin/lava-test-runner /lava-6694080/0 + export TESTRUN_ID=0_timesync-off + TESTRUN_ID=0_timesync-off + cd /lava-6694080/0/tests/0_timesync-off ++ cat uuid + UUID=6694080_1.5.2.3.1 + set +x + systemctl stop systemd-timesyncd Failed to stop systemd-timesyncd.service: Unit systemd-timesyncd.service not loaded. + true + set +x + export TESTRUN_ID=1_kselftest-lkdtm + TESTRUN_ID=1_kselftest-lkdtm + cd /lava-6694080/0/tests/1_kselftest-lkdtm ++ cat uuid + UUID=6694080_1.5.2.3.5 + set +x + cd ./automated/linux/kselftest/ + ./kselftest.sh -c lkdtm -T '' -t kselftest_armhf.tar.gz -s false -u http://storage.kernelci.org/cip/linux-5.10.y-cip/v5.10.125-cip10/x86_64/x86_64_defconfig+x86-chromebook+kselftest/gcc-10/kselftest.tar.xz -L '' -S skipfile-lkft.yaml -b hp-11A-G6-EE-grunt -g cip -e '' -p /opt/kselftests/mainline/ INFO: Generating a skipfile based on /lava-6694080/0/tests/1_kselftest-lkdtm/automated/linux/kselftest/skipfile-lkft.yaml INFO: Using the following generated skipfile contents (until EOF): breakpoints:breakpoint_test breakpoints:step_after_suspend_test ftrace:ftracetest net:rtnetlink.sh net:tls netfilter:bridge_brouter.sh netfilter:nft_flowtable.sh netfilter:nft_trans_stress.sh pidfd:pidfd_wait INFO: EOF INFO: Installing sed perl wget xz-utils iproute2 Hit:1 http://deb.debian.org/debian bullseye InRelease Reading package lists... Reading package lists... Building dependency tree... Reading state information... iproute2 is already the newest version (5.10.0-4). perl is already the newest version (5.32.1-4+deb11u2). sed is already the newest version (4.7-1). wget is already the newest version (1.21-1+deb11u1). xz-utils is already the newest version (5.2.5-2). 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. --2022-06-28 03:38:12-- http://storage.kernelci.org/cip/linux-5.10.y-cip/v5.10.125-cip10/x86_64/x86_64_defconfig+x86-chromebook+kselftest/gcc-10/kselftest.tar.xz Resolving storage.kernelci.org (storage.kernelci.org)... 52.250.1.28 Connecting to storage.kernelci.org (storage.kernelci.org)|52.250.1.28|:80... connected. HTTP request sent, awaiting response... 200 OK Length: 3499916 (3.3M) [application/octet-stream] Saving to: 'kselftest.tar.xz' kselftest.tar.xz 0%[ ] 0 --.-KB/s kselftest.tar.xz 1%[ ] 46.39K 160KB/s kselftest.tar.xz 6%[> ] 216.08K 372KB/s kselftest.tar.xz 24%[===> ] 825.54K 897KB/s kselftest.tar.xz 59%[==========> ] 1.98M 1.71MB/s kselftest.tar.xz 90%[=================> ] 3.03M 2.23MB/s kselftest.tar.xz 100%[===================>] 3.34M 2.26MB/s in 1.5s 2022-06-28 03:38:14 (2.26 MB/s) - 'kselftest.tar.xz' saved [3499916/3499916] skiplist: ======================================== breakpoints:breakpoint_test breakpoints:step_after_suspend_test ftrace:ftracetest net:rtnetlink.sh net:tls netfilter:bridge_brouter.sh netfilter:nft_flowtable.sh netfilter:nft_trans_stress.sh pidfd:pidfd_wait ======================================== [ 46.346840] kselftest: Running tests in lkdtm TAP version 13 1..70 # selftests: lkdtm: PANIC.sh # Skipping PANIC: crashes entire system ok 1 selftests: lkdtm: PANIC.sh # SKIP # selftests: lkdtm: BUG.sh [ 46.624370] lkdtm: Performing direct entry BUG [ 46.628986] ------------[ cut here ]------------ [ 46.633657] kernel BUG at drivers/misc/lkdtm/bugs.c:76! [ 46.638956] invalid opcode: 0000 [#1] SMP NOPTI [ 46.643482] CPU: 0 PID: 694 Comm: cat Not tainted 5.10.125-cip10 #1 [ 46.649737] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 46.655651] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 46.659570] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 46.678304] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 46.683521] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 46.690642] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 46.697762] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 46.704885] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 46.712006] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 46.719127] FS: 00007fb91b55e3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 46.727203] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 46.732938] CR2: 00007fb91b33f000 CR3: 0000000103060000 CR4: 00000000001506f0 [ 46.740059] Call Trace: [ 46.742505] direct_entry.cold+0x2c/0x38 [ 46.746424] full_proxy_write+0x56/0x80 [ 46.750255] vfs_write+0xea/0x390 [ 46.753565] ksys_write+0x68/0xe0 [ 46.756875] do_syscall_64+0x33/0x40 [ 46.760444] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 46.765487] RIP: 0033:0x7fb91b44ef33 [ 46.769055] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 46.787789] RSP: 002b:00007ffea8178608 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 46.795344] RAX: ffffffffffffffda RBX: 0000000000000004 RCX: 00007fb91b44ef33 [ 46.802464] RDX: 0000000000000004 RSI: 00007fb91b33f000 RDI: 0000000000000001 [ 46.809585] RBP: 00007fb91b33f000 R08: 00007fb91b33e010 R09: 0000000000000000 [ 46.816706] R10: 00007fb91b54d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 46.823828] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 46.830954] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 46.843491] ---[ end trace 3714dc34b20e0738 ]--- [ 46.848143] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 46.852153] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 46.870986] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 46.876258] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 46.883407] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 46.890560] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 46.897700] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 46.904827] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 46.911981] FS: 00007fb91b55e3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 46.920079] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 46.925819] CR2: 00007fb91b33f000 CR3: 0000000103060000 CR4: 00000000001506f0 # Segmentation fault # [ 46.624370] lkdtm: Performing direct entry BUG # [ 46.628986] ------------[ cut here ]------------ # [ 46.633657] kernel BUG at drivers/misc/lkdtm/bugs.c:76! # [ 46.638956] invalid opcode: 0000 [#1] SMP NOPTI # [ 46.643482] CPU: 0 PID: 694 Comm: cat Not tainted 5.10.125-cip10 #1 # [ 46.649737] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 46.655651] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 46.659570] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 46.678304] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 46.683521] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 46.690642] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 46.697762] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 46.704885] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 46.712006] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 46.719127] FS: 00007fb91b55e3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 46.727203] CS: 0010 DS: 0000 ES[ 47.050205] lkdtm: Performing direct entry WARNING : 0000 CR0: 0000000080050033 # [ 46.732938] CR2: 00007fb91b33f000 CR3: 0000000103060000 CR4: 00000000001506f0 # [ 46.740059] Call Trace: # [ 46.742505] direct_entry.cold+0x2c/0x38 # [ 46.746424] full_proxy_write+0x56/0x80 # [ 46.750255] v[ 47.068545] ------------[ cut here ]------------ fs_write+0xea/0x390 # [ 46.753565] ksys_write+0x68/0xe0 # [ 46.756875] do_syscall_64+0x33/0x40 # [ 46.760444] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 46.765487] RIP: 0033:0x7fb91b44ef33 # [ 46.769055] Code: 8b 15 61 ef 0c 00 f7 d8 64[ 47.095323] WARNING: CPU: 0 PID: 730 at drivers/misc/lkdtm/bugs.c:83 lkdtm_WARNING+0xf/0x20 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 46.787789] RSP: 002b:00007ffea8178608 EFLAGS: 00000246 ORIG_RAX: 0000000000000001[ 47.125817] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 46.795344] RAX: ffffffffffffffda RBX: 0000000000000004 RCX: 00007fb91b44ef33 # [ 46.802464] RDX: 0000000000000004 RSI: 00007fb91b33f000 RDI: 0000000000000001 # [ 46.809585] RBP: 00007fb91b33f000 R08: 00007fb91b33e010 R09: 0000000000000000 # [ 47.160412] CPU: 0 PID: 730 Comm: cat Tainted: G D 5.10.125-cip10 #1 [ 46.816706] R10: 00007fb91b54d1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 46.823828] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 46.830954] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_[ 47.190235] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 46.843491] ---[ end trace 3714dc34b20e0738 ]--- # [ 46.848143] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 46.852153] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff f[ 47.218373] RIP: 0010:lkdtm_WARNING+0xf/0x20 f ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 46.870986] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 46.876258] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 000000000[ 47.244907] Code: ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 0f 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 01 75 01 c3 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 00 0f 1f 44 00 00 0000000 # [ 46.883407] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 46.890560] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 46.897700] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000[ 47.285739] RSP: 0018:ffffaa54c095be60 EFLAGS: 00010202 004 # [ 46.904827] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 46.911981] FS: 00007fb91b55e3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 46.920079] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ [ 47.313201] RAX: ffffffff966b1f60 RBX: 0000000000000002 RCX: 0000000000000000 46.925819] CR2: 00007fb91b33f000 CR3: 0000000103060000 CR4: 00000000001506f0 # BUG: saw 'kernel BUG at': ok ok 2 selftests: lkdtm: BUG.sh # selftests: lkdtm: WARNING.sh [ 47.342459] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a80 [ 47.364779] RBP: ffffffff976c007f R08: 0000000000000000 R09: 0000000000000000 [ 47.371939] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000008 [ 47.379126] R13: ffffaa54c095bf10 R14: ffffaa54c095bf10 R15: ffff8f4ac58ec000 [ 47.386266] FS: 00007fe64d837580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 47.394386] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 47.400146] CR2: 00007fe64d617000 CR3: 0000000104816000 CR4: 00000000001506f0 [ 47.407295] Call Trace: [ 47.409768] direct_entry.cold+0x2c/0x38 [ 47.413719] full_proxy_write+0x56/0x80 [ 47.417574] vfs_write+0xea/0x390 [ 47.420912] ksys_write+0x68/0xe0 [ 47.424250] do_syscall_64+0x33/0x40 [ 47.427857] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 47.432923] RIP: 0033:0x7fe64d726f33 [ 47.436526] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 47.455287] RSP: 002b:00007ffda005ea78 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 47.462884] RAX: ffffffffffffffda RBX: 0000000000000008 RCX: 00007fe64d726f33 [ 47.470036] RDX: 0000000000000008 RSI: 00007fe64d617000 RDI: 0000000000000001 [ 47.477207] RBP: 00007fe64d617000 R08: 00007fe64d616010 R09: 0000000000000000 [ 47.484356] R10: 00007fe64d8251c0 R11: 0000000000000246 R12: 0000000000000001 [ 47.491534] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 47.498682] irq event stamp: 0 [ 47.501792] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 47.508121] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 47.516363] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 47.524587] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 47.530939] ---[ end trace 3714dc34b20e0739 ]--- # [ 47.050205] lkdtm: Performing direct entry WARNING # [ 47.068545] ------------[ cut here ]------------ # [ 47.095323] WARNING: CPU: 0 PID: 730 at drivers/misc/lkdtm/bugs.c:83 lkdtm_WARNING+0xf/0x20 # [ 47.125817] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 47.160412] CPU: 0 PID: 730 Comm: cat Tainted: G D 5.10.125-cip10 #1 # [ 47.190235] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 47.218373] RIP: 0010:lkdtm_WARNING+0xf/0x20 # [ 47.244907] Code: ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 0f 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 01 75 01 c3 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 00 0f 1f 44 00 00 # [ 47.285739] RSP: 0018:ffffaa54c095be60 EFLAGS: 00010202 # [ 47.313201] RAX: ffffffff966b1f60 RBX: 0000000000000002 RCX: 0000000000000000 # [ 47.342459] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a80 # [ 47.3[ 47.638150] lkdtm: Performing direct entry WARNING_MESSAGE 64779] RBP: ffffffff976c007f R08: 0000000000000000 R09: 0000000000000000 # [ 47.371939] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000008 # [ 47.379126] R13: ffffaa54c095bf10 R14: ffffaa54c095bf10 R15: ffff8f4ac58ec000 # [ 47.38626[ 47.650058] ------------[ cut here ]------------ 6] FS: 00007fe64d837580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 47.394386] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 47.400146] CR2: 00007fe64d617000 CR3: 0000000104816000 CR4: 00000000001506f0 # [ 47.407295] Call T[ 47.676842] Warning message trigger count: 2 race: # [ 47.409768] direct_entry.cold+0x2c/0x38 # [ 47.413719] full_proxy_write+0x56/0x80 # [ 47.417574] vfs_write+0xea/0x390 # [ 47.420912] ksys_write+0x68/0xe0 # [ 47.424250] do_syscall_64+0x33/0x40 # [ 47.427857] entry_SYSCALL_6[ 47.703357] WARNING: CPU: 0 PID: 765 at drivers/misc/lkdtm/bugs.c:88 lkdtm_WARNING_MESSAGE+0x20/0x30 4_after_hwframe+0x44/0xa9 # [ 47.432923] RIP: 0033:0x7fe64d726f33 # [ 47.436526] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40[ 47.734594] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 00 48 83 ec 28 48 89 54 24 18 # [ 47.455287] RSP: 002b:00007ffda005ea78 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 47.462884] RAX: ffffffffffffffda RBX: 0000000000000008 RCX: 00007fe64d726f33 # [ 47.470036] RDX: 0000000000000008 RSI: 00007fe[ 47.769191] CPU: 0 PID: 765 Comm: cat Tainted: G D W 5.10.125-cip10 #1 64d617000 RDI: 0000000000000001 # [ 47.477207] RBP: 00007fe64d617000 R08: 00007fe64d616010 R09: 0000000000000000 # [ 47.484356] R10: 00007fe64d8251c0 R11: 0000000000000246 R12: 0000000000000001 # [ 47.491534] R13: 0000000000000001 R14: 00000000000[ 47.799014] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 20000 R15: 0000000000020000 # [ 47.498682] irq event stamp: 0 # [ 47.501792] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 47.508121] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 47.516363] sof[ 47.827152] RIP: 0010:lkdtm_WARNING_MESSAGE+0x20/0x30 tirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 47.524587] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 47.530939] ---[ end trace 3714dc34b20e0739 ]--- # WARNING: saw 'WARNING:': ok ok 3 selftests: lkdt[ 47.854467] Code: 1f 84 00 00 00 00 00 0f 1f 00 0f 1f 44 00 00 8b 05 a1 15 70 02 48 c7 c7 e0 05 6c 97 8d 70 01 89 35 91 15 70 02 e8 bc b4 61 00 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 66 90 0f 1f 44 00 00 c7 m: WARNING.sh # selftests: lkdtm: WARNING_MESSAGE.sh [ 47.895292] RSP: 0018:ffffaa54c09dbe60 EFLAGS: 00010286 [ 47.905355] RAX: 0000000000000000 RBX: 0000000000000003 RCX: 0000000000000000 [ 47.912560] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 47.919759] RBP: ffffffff976c0087 R08: 0000000000000000 R09: 0000000000000000 [ 47.926914] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000010 [ 47.934117] R13: ffffaa54c09dbf10 R14: ffffaa54c09dbf10 R15: ffff8f4ac58e0000 [ 47.941270] FS: 00007f98fa3be3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 47.949385] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 47.955143] CR2: 00007f98fa19f000 CR3: 0000000104854000 CR4: 00000000001506f0 [ 47.962292] Call Trace: [ 47.964766] direct_entry.cold+0x2c/0x38 [ 47.968722] full_proxy_write+0x56/0x80 [ 47.972580] vfs_write+0xea/0x390 [ 47.975920] ksys_write+0x68/0xe0 [ 47.979258] do_syscall_64+0x33/0x40 [ 47.982869] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 47.987935] RIP: 0033:0x7f98fa2aef33 [ 47.991582] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 48.010395] RSP: 002b:00007fffa53427c8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 48.018013] RAX: ffffffffffffffda RBX: 0000000000000010 RCX: 00007f98fa2aef33 [ 48.025240] RDX: 0000000000000010 RSI: 00007f98fa19f000 RDI: 0000000000000001 [ 48.032438] RBP: 00007f98fa19f000 R08: 00007f98fa19e010 R09: 0000000000000000 [ 48.039604] R10: 00007f98fa3ad1c0 R11: 0000000000000246 R12: 0000000000000001 [ 48.046791] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 48.053977] irq event stamp: 0 [ 48.057082] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 48.063372] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 48.071568] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 48.079748] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 48.086015] ---[ end trace 3714dc34b20e073a ]--- # [ 47.638150] lkdtm: Performing direct entry WARNING_MESSAGE # [ 47.650058] ------------[ cut here ]------------ # [ 47.676842] Warning message trigger count: 2 # [ 47.703357] WARNING: CPU: 0 PID: 765 at drivers/misc/lkdtm/bugs.c:88 lkdtm_WARNING_MESSAGE+0x20/0x30 # [ 47.734594] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 47.769191] CPU: 0 PID: 765 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 47.799014] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 47.827152] RIP: 0010:lkdtm_WARNING_MESSAGE+0x20/0x30 # [ 47.854467] Code: 1f 84 00 00 00 00 00 0f 1f 00 0f 1f 44 00 00 8b 05 a1 15 70 02 48 c7 c7 e0 05 6c 97 8d 70 01 89 35 91 15 70 02 e8 bc b4 61 00 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 66 90 0f 1f 44 00 00 c7 # [ 47.895292] RSP: 0018:ffffaa54c09dbe60 EFLAGS: 00010286 # [ 47.905355] RAX: 0000000000000000 RBX: 0000000000000003 RCX: 0000000000000000 # [ 47.912560] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70[ 48.186054] lkdtm: Performing direct entry EXCEPTION # [ 47.919759] RBP: ffffffff976c0087 R08: 0000000000000000 R09: 0000000000000000 # [ 47.926914] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000010 # [ 47.934117] R13: ffffaa54c09dbf10 R14: ffffaa54c09dbf10 R15: ffff8f4ac58e0000 # [ 48.203908] BUG: kernel NULL pointer dereference, address: 0000000000000000 [ 48.233009] #PF: supervisor write access in kernel mode [ 47.941270] FS: 00007f98fa3be3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 47.949385] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 47.955143] CR2: 00007f98fa19f000 CR3: 0000000104854000 CR4: 00000000001506f0 # [ 47.96[ 48.238226] #PF: error_code(0x0002) - not-present page [ 48.265538] PGD 0 P4D 0 2292] Call Trace: # [ 47.964766] direct_entry.cold+0x2c/0x38 # [ 47.968722] full_proxy_write+0x56/0x80 # [ 47.972580] vfs_write+0xea/0x390 # [ 47.975920] ksys_write+0x68/0xe0 # [ 47.979258] do_syscall_64+0x33/0x40 # [ 47.982869] ent[ 48.268069] Oops: 0002 [#2] SMP NOPTI ry[_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 47.987935] RIP: 0033:0x7f98fa2aef33 # [ 47.991582] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 48.293909] CPU: 0 PID: 797 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 48.323739] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 48.010395] RSP: 002b:00007fffa53427c8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 48.018013] RAX: ffffffffffffffda RBX: 0000000000000010 RCX: 00007f98fa2aef33 # [ 48.025240] RDX: 0000000000000010 [ 48.329654] RIP: 0010:lkdtm_EXCEPTION+0x5/0x20 [ 48.356272] Code: 48 c7 c7 e0 05 6c 97 8d 70 01 89 35 91 15 70 02 e8 bc b4 61 00 0f 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 66 90 0f 1f 44 00 00 04 25 00 00 00 00 00 00 00 00 c3 66 66 2e 0f 1f 84 00 00 00 00 RSI: 00007f98fa19f000 RDI: 0000000000000001 # [ 48.032438] RBP: 00007f98fa19f000 R08: 00007f98fa19e010 R09: 0000000000000000 # [ 48.039604] R10: 00007f98fa3ad1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 48.046791] R13: 0000000000000001 R14:[ 48.375007] RSP: 0018:ffffaa54c0a53e60 EFLAGS: 00010282 [ 48.402405] RAX: ffffffff966b1fb0 RBX: 0000000000000004 RCX: 0000000000000000 0000000000020000 R15: 0000000000020000 # [ 48.053977] irq event stamp: 0 # [ 48.057082] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 48.063372] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 48[ 48.409528] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9aa0 [ 48.438834] RBP: ffffffff975f5c97 R08: 0000000000000000 R09: 0000000000000000 .071568] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 48.079748] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 48.086015] ---[ end trace 3714dc34b20e073a ]--- # WARNING_MESSAGE: saw 'message trigger[ 48.445956] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000a [ 48.475261] R13: ffffaa54c0a53f10 R14: ffffaa54c0a53f10 R15: ffff8f4ac37db000 [ 48.482384] FS: 00007f84b47a3580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 ': ok ok 4 selftests: lkdtm: WARNING_MESSAGE.sh # selftests: lkdtm: EXCEPTION.sh [ 48.490460] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 48.503473] CR2: 0000000000000000 CR3: 00000001058ee000 CR4: 00000000001506f0 [ 48.510595] Call Trace: [ 48.513042] direct_entry.cold+0x2c/0x38 [ 48.516961] full_proxy_write+0x56/0x80 [ 48.520794] vfs_write+0xea/0x390 [ 48.524104] ksys_write+0x68/0xe0 [ 48.527414] do_syscall_64+0x33/0x40 [ 48.530984] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 48.536029] RIP: 0033:0x7f84b468ef33 [ 48.539597] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 48.558333] RSP: 002b:00007ffcb2508a68 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 48.565890] RAX: ffffffffffffffda RBX: 000000000000000a RCX: 00007f84b468ef33 [ 48.573012] RDX: 000000000000000a RSI: 00007f84b457f000 RDI: 0000000000000001 [ 48.580134] RBP: 00007f84b457f000 R08: 00007f84b457e010 R09: 0000000000000000 [ 48.587254] R10: 00007f84b478d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 48.594376] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 48.601502] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 48.613922] CR2: 0000000000000000 [ 48.617378] ---[ end trace 3714dc34b20e073b ]--- [ 48.622044] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 48.626087] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 48.644855] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 48.650156] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 48.657343] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 48.664565] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 48.671742] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 48.678905] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 48.686099] FS: 00007f84b47a3580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 48.694230] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 48.700038] CR2: 0000000000000000 CR3: 00000001058ee000 CR4: 00000000001506f0 [ 49.051079] lkdtm: Performing direct entry CORRUPT_LIST_ADD # Killed # [ 48.186054] lkdtm: Performing direct entry EXCEPTION # [ 48.203908] BUG: kernel NULL pointer dereference, address: 0000000000000000 # [ 48.233009] #PF: supervisor write access in kernel mode # [ 48.238226] #PF: error_code(0x0002) - [ 49.056682] lkdtm: attempting good list addition not-present page # [ 48.265538] PGD 0 P4D 0 # [ 48.268069] Oops: 0002 [#2] SMP NOPTI # [ 48.293909] CPU: 0 PID: 797 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 48.323739] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [[ 49.083456] lkdtm: attempting corrupted list addition 48.329654] RIP: 0010:lkdtm_EXCEPTION+0x5/0x20 # [ 48.356272] Code: 48 c7 c7 e0 05 6c 97 8d 70 01 89 35 91 15 70 02 e8 bc b4 61 00 0f 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 66 90 0f 1f 44 00 00 04 25 00 00 00 00 00 00 00 00 c3 66 66 2e 0f 1f 84 0[ 49.110712] lkdtm: list_add() corruption not detected! 0 00 00 00 # [ 48.375007] RSP: 0018:ffffaa54c0a53e60 EFLAGS: 00010282 # [ 48.402405] RAX: ffffffff966b1fb0 RBX: 0000000000000004 RCX: 0000000000000000 # [ 48.409528] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9aa0 # [ 48.438834] RBP: ffffffff975f5c97 R08: 0000000000000000 R09: 0000000000000000 # [ 48.445956] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000a # [ 48.475261] R13: ffffaa54c0a53f10 R14: ffffaa54c0a53f10 R15: ffff8f4ac37db000 # [ 48.482384] FS: 00007f84b47a3580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 48.490460] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 48.503473] CR2: 0000000000000000 CR3: 00000001058ee000 CR4: 00000000001506f0 # [ 48.510595] Call Trace: # [ 48.513042] direct_entry.cold+0x2c/0x38 # [ 48.516961] full_proxy_write+0x56/0x80 # [ 48.520794] vfs_write+0xea/0x390 # [ 48.524104] ksys_write+0x68/0xe0 # [ 48.527414] do_syscall_64+0x33/0x40 # [ 48.530984] entry_SYSCALL_64_af[ 49.225656] lkdtm: Performing direct entry CORRUPT_LIST_DEL ter_hwframe+0x44/0xa9 # [ 48.536029] RIP: 0033:0x7f84b468ef33 # [ 48.539597] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 [ 49.232324] lkdtm: attempting good list removal 48 83 ec 28 48 89 54 24 18 # [ 48.558333] RSP: 002b:00007ffcb2508a68 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 48.565890] RAX: ffffffffffffffda RBX: 000000000000000a RCX: 00007f84b468ef33 # [ 48.573012] RDX: 000000000000000a RSI: 00007f84b45[ 49.259025] lkdtm: attempting corrupted list removal 7f000 RDI: 0000000000000001 # [ 48.580134] RBP: 00007f84b457f000 R08: 00007f84b457e010 R09: 0000000000000000 # [ 48.587254] R10: 00007f84b478d1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 48.594376] R13: 0000000000000001 R14: 000000000002000[ 49.286194] lkdtm: list_del() corruption not detected! 0 R15: 0000000000020000 # [ 48.601502] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 48.613922] CR2: 0000000000000000 # [ 48.617378] ---[ end trace 3714dc34b20e073b ]--- # [ 48.622044] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 48.626087] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 48.644855] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 48.650156] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 48.657343] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 48.664565] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 48.671742] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 48.678905] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 48.686099] FS: 00007f84b47a3580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 48.694230] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 48.700038] CR2: 0000000000000000 CR3: 00000001058ee000 CR4: 00000000001506f0 # EXCEPTION: saw 'cal[ 49.406753] lkdtm: Performing direct entry STACK_GUARD_PAGE_LEADING l trace:': ok ok 5 selftests: lkdtm: EXCEPTION.sh # selftests: lkdtm: LOOP.sh # Skipping LOOP: Hangs the system ok 6 selftests: lkdtm: LOOP.sh # SKIP # selftests: lkdtm: EXHAUST_STACK.sh # Skipping EXHAUST_STACK: Corrupts memory on failure ok 7 self[ 49.430688] lkdtm: attempting bad read from page below current stack tests: lkdtm: EXHAUST_STACK.sh # SKIP # selftests: lkdtm: CORRUPT_STACK.sh # Skipping CORRUPT_STACK: Crashes entire system on success ok 8 selftests: lkdtm: CORRUPT_STACK.sh # SKIP # selftests: lkdtm: CORRUPT_STACK_STRONG.sh # Skipping CORRUPT_STACK_S[ 49.459225] BUG: stack guard page was hit at 00000000d815f8b6 (stack is 00000000f9478756..00000000ec2b1cfa) TRONG: Crashes entire system on success ok 9 selftests: lkdtm: CORRUPT_STACK_STRONG.sh # SKIP # selftests: lkdtm: CORRUPT_LIST_ADD.sh # [ 49.051079] lkdtm: Performing direct entry CORRUPT_LIST_ADD # [ 49.056682] lkdtm: attempting good list addition[ 49.491109] kernel stack overflow (page fault): 0000 [#3] SMP NOPTI # [ 49.083456] lkdtm: attempting corrupted list addition # [ 49.110712] lkdtm: list_add() corruption not detected! # CORRUPT_LIST_ADD: missing 'list_add corruption': [FAIL] not ok 10 selftests: lkdtm: CORRUPT_LIST_ADD.sh # exit=1 # selftests: lkd[ 49.519548] CPU: 0 PID: 1022 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 49.549460] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 tm: CORRUPT_LIST_DEL.sh # [ 49.225656] lkdtm: Performing direct entry CORRUPT_LIST_DEL # [ 49.232324] lkdtm: attempting good list removal # [ 49.259025] lkdtm: attempting corrupted list removal # [ 49.286194] lkdtm: list_del() corruption not de[ 49.555377] RIP: 0010:lkdtm_STACK_GUARD_PAGE_LEADING+0x27/0x3a te[cted! # CORRUPT_LIST_DEL: missing 'list_del corruption': [FAIL] not ok 11 selftests: lkdtm: CORRUPT_LIST_DEL.sh # exit=1 # selftests: lkdtm: STACK_GUARD_PAGE_LEADING.sh 49.583379] Code: 41 5c c3 0f 1f 44 00 00 53 48 c7 c7 80 09 6c 97 50 65 48 8b 04 25 40 b0 01 00 48 8b 58 18 e8 31 a4 fd ff 48 c7 c7 c0 09 6c 97 <8a> 43 ff 88 44 24 07 0f b6 74 24 07 5a 5b e9 17 a4 fd ff 0f 1f 44 [ 49.617281] RSP: 0018:ffffaa54c0d2be50 EFLAGS: 00010246 [ 49.622497] RAX: 0000000000000038 RBX: ffffaa54c0d28000 RCX: 0000000000000000 [ 49.629618] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff976c09c0 [ 49.636740] RBP: ffffffff976c00ea R08: 0000000000000000 R09: 0000000000000000 [ 49.643861] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000019 [ 49.650982] R13: ffffaa54c0d2bf10 R14: ffffaa54c0d2bf10 R15: ffff8f4ac1f16000 [ 49.658105] FS: 00007fee00e7f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 49.666181] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 49.671915] CR2: ffffaa54c0d27fff CR3: 0000000101f12000 CR4: 00000000001506f0 [ 49.679036] Call Trace: [ 49.681481] ? lkdtm_CORRUPT_LIST_DEL+0xdc/0xdc [ 49.686006] direct_entry.cold+0x2c/0x38 [ 49.689927] full_proxy_write+0x56/0x80 [ 49.693758] vfs_write+0xea/0x390 [ 49.697068] ksys_write+0x68/0xe0 [ 49.700380] do_syscall_64+0x33/0x40 [ 49.703950] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 49.708995] RIP: 0033:0x7fee00d9ef33 [ 49.712565] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 49.731299] RSP: 002b:00007ffe08b618a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 49.738854] RAX: ffffffffffffffda RBX: 0000000000000019 RCX: 00007fee00d9ef33 [ 49.745976] RDX: 0000000000000019 RSI: 00007fee00c8f000 RDI: 0000000000000001 [ 49.753096] RBP: 00007fee00c8f000 R08: 00007fee00c8e010 R09: 0000000000000000 [ 49.760216] R10: 00007fee00e9d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 49.767337] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 49.774461] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 49.786882] ---[ end trace 3714dc34b20e073c ]--- [ 49.791493] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 49.795407] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 49.814141] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 49.819359] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 49.826481] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 49.833603] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 49.840723] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 49.847844] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 49.854966] FS: 00007fee00e7f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 49.863042] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 49.868778] CR2: ffffaa54c0d27fff CR3: 0000000101f12000 CR4: 00000000001506f0 [ 49.875901] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 [ 49.884758] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1022, name: cat [ 49.892313] INFO: lockdep is turned off. [ 49.896227] irq event stamp: 0 [ 49.899277] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 49.905534] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 49.913697] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 49.921860] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 49.928117] CPU: 0 PID: 1022 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 49.935847] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 49.941755] Call Trace: [ 49.944202] dump_stack+0x77/0x97 [ 49.947513] ___might_sleep.cold+0xa6/0xb6 [ 49.951602] exit_signals+0x1c/0x2d0 [ 49.955173] do_exit+0xd5/0xb00 [ 49.958310] ? ksys_write+0x68/0xe0 [ 49.961798] rewind_stack_do_exit+0x17/0x20 [ 49.965973] RIP: 0033:0x7fee00d9ef33 [ 49.969540] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 49.988276] RSP: 002b:00007ffe08b618a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 49.995832] RAX: ffffffffffffffda RBX: 0000000000000019 RCX: 00007fee00d9ef33 [ 50.002953] RDX: 0000000000000019 RSI: 00007fee00c8f000 RDI: 0000000000000001 [ 50.010076] RBP: 00007fee00c8f000 R08: 00007fee00c8e010 R09: 0000000000000000 [ 50.017198] R10: 00007fee00e9d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 50.024320] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 50.161907] lkdtm: Performing direct entry STACK_GUARD_PAGE_TRAILING # Segmentation fault # [ 49.406753] lkdtm: Performing direct entry STACK_GUARD_PAGE_LEADING # [ 49.430688] lkdtm: attempting bad read from page below current stack # [ 49.459225] BUG: stack guard page was hit at 00000000d815f8b6 (stack is 00000000[ 50.168274] lkdtm: attempting bad read from page above current stack f9478756..00000000ec2b1cfa) # [ 49.491109] kernel stack overflow (page fault): 0000 [#3] SMP NOPTI # [ 49.519548] CPU: 0 PID: 1022 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 49.549460] Hardware name: Google Grunt/Grunt, BIOS 09/0[ 50.196821] BUG: stack guard page was hit at 000000004f94126a (stack is 000000004a11ed35..00000000a0375121) 5/2019 # [ 49.555377] RIP: 0010:lkdtm_STACK_GUARD_PAGE_LEADING+0x27/0x3a # [ 49.583379] Code: 41 5c c3 0f 1f 44 00 00 53 48 c7 c7 80 09 6c 97 50 65 48 8b 04 25 40 b0 01 00 48 8b 58 18 e8 31 a4 fd ff 48 c7 c7 c0 09 6c 97 <8a> 43 ff 88 44 24 07 0f b6 7[ 50.228704] kernel stack overflow (page fault): 0000 [#4] SMP NOPTI 4 24 07 5a 5b e9 17 a4 fd ff 0f 1f 44 # [ 49.617281] RSP: 0018:ffffaa54c0d2be50 EFLAGS: 00010246 # [ 49.622497] RAX: 0000000000000038 RBX: ffffaa54c0d28000 RCX: 0000000000000000 # [ 49.629618] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: fffff[ 50.257142] CPU: 0 PID: 1055 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 50.287056] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 fff976c09c0 # [ 49.636740] RBP: ffffffff976c00ea R08: 0000000000000000 R09: 0000000000000000 # [ 49.643861] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000019 # [ 49.650982] R13: ffffaa54c0d2bf10 R14: ffffaa54c0d2bf10 R15: ffff8f4ac[ 50.292972] RIP: 0010:lkdtm_STACK_GUARD_PAGE_TRAILING+0x27/0x3d 1f16000 # [ 49.658105] FS: 00007fee00e7f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 49.666181] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 49.671915] CR2: ffffaa54c0d27fff CR3: 0000000101f12000 CR4: 00000000001506f0 [ 50.321059] Code: a4 fd ff 0f 1f 44 00 00 53 48 c7 c7 f8 09 6c 97 50 65 48 8b 04 25 40 b0 01 00 48 8b 58 18 e8 f7 a3 fd ff 48 c7 c7 38 0a 6c 97 <8a> 83 00 40 00 00 88 44 24 07 0f b6 74 24 07 5a 5b e9 da a3 fd ff # [[ 49.679036] Call Trace: # [ 49.681481] ? lkdtm_CORRUPT_LIST_DEL+0xdc/0xdc # [ 49.686006] direct_entry.cold+0x2c/0x38 # [ 49.689927] full_proxy_write+0x56/0x80 # [ 49.693758] vfs_write+0xea/0x390 # [ 49.697068] ksys_write+0x68/0xe0 50.361981] RSP: 0018:ffffaa54c0db3e50 EFLAGS: 00010246 [ 50.389385] RAX: 0000000000000038 RBX: ffffaa54c0db0000 RCX: 0000000000000000 # [ 49.700380] do_syscall_64+0x33/0x40 # [ 49.703950] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 49.708995] RIP: 0033:0x7fee00d9ef33 # [ 49.712565] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00[ 50.396508] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff976c0a38 [ 50.425814] RBP: ffffffff976c0103 R08: 0000000000000000 R09: 0000000000000000 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 49.731299] RSP: 002b:00007ffe08b618a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 49.738854] RAX: ffffffffffffffda RBX: 00000000000000[ 50.432937] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000001a [ 50.462242] R13: ffffaa54c0db3f10 R14: ffffaa54c0db3f10 R15: ffff8f4ac1cde000 19 RCX: 00007fee00d9ef33 # [ 49.745976] RDX: 0000000000000019 RSI: 00007fee00c8f000 RDI: 0000000000000001 # [ 49.753096] RBP: 00007fee00c8f000 R08: 00007fee00c8e010 R09: 0000000000000000 # [ 49.760216] R10: 00007fee00e9d1c0 R11: 0000000000000246 R[ 50.469366] FS: 00007fec8185a580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 50.499624] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 12: 0000000000000001 # [ 49.767337] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 49.774461] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ [ 50.505361] CR2: ffffaa54c0db4000 CR3: 0000000103500000 CR4: 00000000001506f0 [ 50.534667] Call Trace: 49.786882] ---[ end trace 3714dc34b20e073c ]--- # [ 49.791493] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 49.795407] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66[ 50.537113] ? lkdtm_STACK_GUARD_PAGE_LEADING+0x3a/0x3a 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 49.814141] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 49.819359] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 49.826481] RDX: 0000000000000000 RSI: ffff8f4[ 50.564510] direct_entry.cold+0x2c/0x38 aeac1bf70 RDI: ffffffff972d9a70 # [ 49.833603] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 49.840723] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 49.847844] R13: ffffaa54c08d3f10 R14: ffffaa54c08[ 50.590614] full_proxy_write+0x56/0x80 d3f10 R15: ffff8f4ac32b8000 # [ 49.854966] FS: 00007fee00e7f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 49.863042] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 49.868778] CR2: ffffaa54c0d27fff CR3: 0000000101f12000 CR4[ 50.616628] vfs_write+0xea/0x390 : 00000000001506f0 # [ 49.875901] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 # [ 49.884758] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1022, name: cat # [ 49.892313] INFO: lockdep is turned of[ 50.642124] ksys_write+0x68/0xe0 f. # [ 49.896227] irq event stamp: 0 # [ 49.899277] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 49.905534] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 49.913697] softirqs last enabled at (0[ 50.667619] do_syscall_64+0x33/0x40 ): [] copy_process+0x63c/0x1c80 # [ 49.921860] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 49.928117] CPU: 0 PID: 1022 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 49.935847] Hardware name: Google G[ 50.693374] entry_SYSCALL_64_after_hwframe+0x44/0xa9 runt/Grunt, BIOS 09/05/2019 # [ 49.941755] Call Trace: # [ 49.944202] dump_stack+0x77/0x97 # [ 49.947513] ___might_sleep.cold+0xa6/0xb6 # [ 49.951602] exit_signals+0x1c/0x2d0 # [ 49.955173] do_exit+0xd5/0xb00 # [ 49.958310] ? ksys_w[ 50.720603] RIP: 0033:0x7fec81746f33 ri[te+0x68/0xe0 # [ 49.961798] rewind_stack_do_exit+0x17/0x20 # [ 49.965973] RIP: 0033:0x7fee00d9ef33 # [ 49.969540] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 0 50.746357] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 5 [<48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 49.988276] RSP: 002b:00007ffe08b618a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 49.995832] RAX: ffffffffffffffda RBX: 0000000000000019 RCX: 00007fee00d9ef33 # [ 50.002 50.787280] RSP: 002b:00007ffcf44e0188 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 50.817023] RAX: ffffffffffffffda RBX: 000000000000001a RCX: 00007fec81746f33 953] RDX: 0000000000000019 RSI: 00007fee00c8f000 RDI: 0000000000000001 # [ 50.010076] RBP: 00007fee00c8f000 R08: 00007fee00c8e010 R09: 0000000000000000 # [ 50.017198] R10: 00007fee00e9d1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 50.024320][ 50.824146] RDX: 000000000000001a RSI: 00007fec81637000 RDI: 0000000000000001 [ 50.853451] RBP: 00007fec81637000 R08: 00007fec81636010 R09: 0000000000000000 R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # STACK_GUARD_PAGE_LEADING: saw 'call trace:': ok ok 12 selftests: lkdtm: STACK_GUARD_PAGE_LEADING.sh # selftests: lkdtm: STACK_GUARD_PAGE_TRAILING.sh [ 50.860574] R10: 00007fec818451c0 R11: 0000000000000246 R12: 0000000000000001 [ 50.886934] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 50.894060] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 50.906482] ---[ end trace 3714dc34b20e073d ]--- [ 50.911094] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 50.915012] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 50.933748] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 50.938965] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 50.946088] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 50.953210] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 50.960332] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 50.967454] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 50.974577] FS: 00007fec8185a580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 50.982652] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 50.988388] CR2: ffffaa54c0db4000 CR3: 0000000103500000 CR4: 00000000001506f0 [ 51.178394] lkdtm: Performing direct entry UNSET_SMEP # Segmentation fault # [ 50.161907] lkdtm: Performing direct entry STACK_GUARD_PAGE_TRAILING # [ 50.168274] lkdtm: attempting bad read from page above current stack # [ 50.196821] BUG: stack guard page was hit at 000000004f94126a (stack is 0000000[ 51.183460] lkdtm: trying to clear SMEP normally 04a11ed35..00000000a0375121) # [ 50.228704] kernel stack overflow (page fault): 0000 [#4] SMP NOPTI # [ 50.257142] CPU: 0 PID: 1055 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 50.287056] Hardware name: Google Grunt/Grunt, BIOS 09/[ 51.210262] ------------[ cut here ]------------ 05/2019 # [ 50.292972] RIP: 0010:lkdtm_STACK_GUARD_PAGE_TRAILING+0x27/0x3d # [ 50.321059] Code: a4 fd ff 0f 1f 44 00 00 53 48 c7 c7 f8 09 6c 97 50 65 48 8b 04 25 40 b0 01 00 48 8b 58 18 e8 f7 a3 fd ff 48 c7 c7 38 0a 6c 97 <8a> 83 00 40 00 00 88 44 24[ 51.237072] pinned CR4 bits changed: 0x100000!? 07 0f b6 74 24 07 5a 5b e9 da a3 fd ff # [ 50.361981] RSP: 0018:ffffaa54c0db3e50 EFLAGS: 00010246 # [ 50.389385] RAX: 0000000000000038 RBX: ffffaa54c0db0000 RCX: 0000000000000000 # [ 50.396508] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: fff[ 51.263776] WARNING: CPU: 0 PID: 1091 at arch/x86/kernel/cpu/common.c:392 native_write_cr4+0x41/0x60 fffff976c0a38 # [ 50.425814] RBP: ffffffff976c0103 R08: 0000000000000000 R09: 0000000000000000 # [ 50.432937] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000001a # [ 50.462242] R13: ffffaa54c0db3f10 R14: ffffaa54c0db3f10 R15: ffff8f4[ 51.295052] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify ac1cde000 # [ 50.469366] FS: 00007fec8185a580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 50.499624] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 50.505361] CR2: ffffaa54c0db4000 CR3: 0000000103500000 CR4: 00000000001506f0[ 51.329659] CPU: 0 PID: 1091 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 50.534667] Call Trace: # [ 50.537113] ? lkdtm_STACK_GUARD_PAGE_LEADING+0x3a/0x3a # [ 50.564510] direct_entry.cold+0x2c/0x38 # [ 50.590614] full_proxy_write+0x56/0x80 # [ 50.616628] vfs_write+0xea/0x390 # [ 50.642124] ksys_write+[ 51.359566] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 0x68/0xe0 # [ 50.667619] do_syscall_64+0x33/0x40 # [ 50.693374] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 50.720603] RIP: 0033:0x7fec81746f33 # [ 50.746357] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 0[ 51.387695] RIP: 0010:native_write_cr4+0x41/0x60 4 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 50.787280] RSP: 002b:00007ffcf44e0188 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 50.817023] RAX: ffffffffffffffda RBX: 0000[ 51.414568] Code: 08 31 00 48 39 c2 75 25 48 85 f6 75 01 c3 80 3d dc d8 c3 01 00 75 f6 48 c7 c7 f8 fb 5f 97 c6 05 cc d8 c3 01 01 e8 8b d7 e0 00 <0f> 0b c3 48 89 d6 48 81 e7 ff f7 ce ff 48 31 c6 48 09 c7 eb ac 66 00000000001a RCX: 00007fec81746f33 # [ 50.824146] RDX: 000000000000001a RSI: 00007fec81637000 RDI: 0000000000000001 # [ 50.853451] RBP: 00007fec81637000 R08: 00007fec81636010 R09: 0000000000000000 # [ 50.860574] R10: 00007fec818451c0 R11: 00000000[ 51.455426] RSP: 0018:ffffaa54c0e43e48 EFLAGS: 00010286 00000246 R12: 0000000000000001 # [ 50.886934] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 50.894060] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_not[ 51.482902] RAX: 0000000000000000 RBX: 00000000000506f0 RCX: 0000000000000000 ify # [ 50.906482] ---[ end trace 3714dc34b20e073d ]--- # [ 50.911094] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 50.915012] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 [ 51.512197] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 50.933748] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 50.938965] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 50.946088] RDX: 0000000000000000 RS[ 51.541480] RBP: ffffffff976c011d R08: 0000000000000000 R09: 0000000000000000 I: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 50.953210] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 50.960332] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 50.967454] R13: ffffaa54c08d3f10 R14: f[ 51.570787] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000b fffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 50.974577] FS: 00007fec8185a580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 50.982652] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 50.988388] CR2: ffffaa54c0db4000 CR3: 0000000103[ 51.600065] R13: ffffaa54c0e43f10 R14: ffffaa54c0e43f10 R15: ffff8f4ac326a000 500000 CR4: 00000000001506f0 # STACK_GUARD_PAGE_TRAILING: saw 'call trace:': ok ok 13 selftests: lkdtm: STACK_GUARD_PAGE_TRAILING.sh # selftests: lkdtm: UNSET_SMEP.sh [ 51.629371] FS: 00007f47d3518580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 51.652261] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 51.658014] CR2: 00007f47d32f7000 CR3: 0000000103074000 CR4: 00000000001506f0 [ 51.665169] Call Trace: [ 51.667675] lkdtm_UNSET_SMEP.cold+0x1d/0x103 [ 51.672058] direct_entry.cold+0x2c/0x38 [ 51.676011] full_proxy_write+0x56/0x80 [ 51.679867] vfs_write+0xea/0x390 [ 51.683206] ksys_write+0x68/0xe0 [ 51.686541] do_syscall_64+0x33/0x40 [ 51.690141] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 51.695207] RIP: 0033:0x7f47d3406f33 [ 51.698862] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 51.717650] RSP: 002b:00007fff3df6fb48 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 51.725259] RAX: ffffffffffffffda RBX: 000000000000000b RCX: 00007f47d3406f33 [ 51.732464] RDX: 000000000000000b RSI: 00007f47d32f7000 RDI: 0000000000000001 [ 51.739648] RBP: 00007f47d32f7000 R08: 00007f47d32f6010 R09: 0000000000000000 [ 51.746823] R10: 00007f47d35051c0 R11: 0000000000000246 R12: 0000000000000001 [ 51.754015] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 51.761156] irq event stamp: 0 [ 51.764232] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 51.770508] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 51.778691] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 51.786860] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 51.793122] ---[ end trace 3714dc34b20e073e ]--- [ 51.797736] lkdtm: ok: SMEP did not get cleared [ 51.802264] lkdtm: trying to clear SMEP with call gadget [ 51.807571] lkdtm: ok: SMEP removal was reverted # [ 51.178394] lkdtm: Performing direct entry UNSET_SMEP # [ 51.183460] lkdtm: trying to clear SMEP normally # [ 51.210262] ------------[ cut here ]------------ # [ 51.237072] pinned CR4 bits changed: 0x100000!? # [ 51.263776] WARNING: CPU: 0 PID: 1091 at arch/x86/kernel/cpu/common.c:392 native_write_cr4+0x41/0x60 # [ 51.295052] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 51.329659] CPU: 0 PID: 1091 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 51.359566] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 51.387695] RIP: 0010:native_write_cr4+0x41/0x60 # [ 51.414568] Code: 08 31 00 48 39 c2 75 25 48 85 f6 75 01 c3 80 3d dc d8 c3 01 00 75 f6 48 c7 c7 f8 fb 5f 97 c6 05 cc d8 c3 01 01 e8 8b d7 e0 00 <0f> 0b c3 48 89 d6 48 81 e7 ff f7 ce ff 48 31 c6 48 09 c7 eb ac 66 # [ 51.455426] RSP: 0018:ffffaa54c0e43e48 EFLAGS: 00010286 # [ 51.482902] RAX: 0000000000000000 RBX: 00000000000506f0 RCX: 0000000000000000 # [ 51.512197] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 51.541480] RBP: ffffffff976c011d R08: 0000000000000000 R09: 0000000000000000 # [ 51.570787] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000b # [ 51.600065] R13: ffffaa54c0[ 51.935576] lkdtm: Performing direct entry DOUBLE_FAULT e43f10 R14: ffffaa54c0e43f10 R15: ffff8f4ac326a000 # [ 51.629371] FS: 00007f47d3518580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 51.652261] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 51.658014] CR2: 00007f47d32f7000 CR[ 51.953910] lkdtm: XFAIL: this test is ia32-only 3: 0000000103074000 CR4: 00000000001506f0 # [ 51.665169] Call Trace: # [ 51.667675] lkdtm_UNSET_SMEP.cold+0x1d/0x103 # [ 51.672058] direct_entry.cold+0x2c/0x38 # [ 51.676011] full_proxy_write+0x56/0x80 # [ 51.679867] vfs_write+0xea/0x390 # [ 51.683206] ksys_write+0x68/0xe0 # [ 51.686541] do_syscall_64+0x33/0x40 # [ 51.690141] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 51.695207] RIP: 0033:0x7f47d3406f33 # [ 51.698862] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 51.717650] RSP: 002b:00007fff3df6fb48 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 51.725259] RAX: ffffffffffffffda RBX: 000000000000000b RCX: 00007f47d3406f33 # [ 51.732464] RDX: 000000000000000b RSI: 00007f47d32f7000 RDI: 0000000000000001 # [ 51.739648] RBP: 00007f47d32f7000 R08: 00007f47d32f6010 R09: 0000000000000000 # [ 51.746823] R10: 00007f47d35051c0 R11: 0000000000000246 R12: 0000000000000001 # [ 51.754015] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 51.761156] irq event stamp: 0 # [ 51.764232] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 51.770508] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 51.778691] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 51.786860] softirqs last disabled at (0): [<000000000000[ 52.104199] lkdtm: Performing direct entry CORRUPT_PAC 0000>] 0x0 # [ 51.793122] ---[ end trace 3714dc34b20e073e ]--- # [ 51.797736] lkdtm: ok: SMEP did not get cleared # [ 51.802264] lkdtm: trying to clear SMEP with call gadget # [ 51.807571] lkdtm: ok: SMEP removal was reverted # UNSET_SMEP: saw[ 52.118954] lkdtm: XFAIL: this test is arm64-only 'pinned CR4 bits changed:': ok ok 14 selftests: lkdtm: UNSET_SMEP.sh # selftests: lkdtm: DOUBLE_FAULT.sh # [ 51.935576] lkdtm: Performing direct entry DOUBLE_FAULT # [ 51.953910] lkdtm: XFAIL: this test is ia32-only # DOUBLE_FAULT: saw 'XFAIL': [SKIP] ok 15 selftests: lkdtm: DOUBLE_FAULT.sh # SKIP # selftests: lkdtm: CORRUPT_PAC.sh # [ 52.104199] lkdtm: Performing direct entry CORRUPT_PAC # [ 52.118954] lkdtm: XFAIL: this test is arm64-only # CORRUPT_PAC: saw 'XFAIL': [SKIP] ok 16 selftests: lkdtm: CORRUPT_PAC.sh # SKIP # selftests: lkdtm: UNALIGNED_LOAD_STORE_WRITE.sh [ 52.257559] lkdtm: Performing direct entry UNALIGNED_LOAD_STORE_WRITE [ 52.264000] lkdtm: XFAIL: arch has CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS # [ 52.257559] lkdtm: Performing direct entry UNALIGNED_LOAD_STORE_WRITE # [ 52.264000] lkdtm: XFAIL: arch has CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS # UNALIGNED_LOAD_STORE_WRITE: saw 'XFAIL': [SKIP] ok 17 selftests: lkdtm: UNALIGNED_LOAD_STORE_WRITE.sh # SKIP # selftests: lkdtm: OVERWRITE_ALLOCATION.sh # Skipping OVERWRITE_ALLOCATION: Corrupts memory on failure ok 18 selftests: lkdtm: OVERWRITE_ALLOCATION.sh # SKIP # selftests: lkdtm: WRITE_AFTER_FREE.sh # Skipping WRITE_AFTER_FREE: Corrupts memory on failure ok 19 selftests: lkdtm: WRITE_AFTER_FREE.sh # SKIP # selftests: lkdtm: READ_AFTER_FREE.sh [ 52.521273] lkdtm: Performing direct entry READ_AFTER_FREE [ 52.526773] lkdtm: Value in memory before free: 12345678 [ 52.532126] lkdtm: Attempting bad read from freed memory [ 52.537467] lkdtm: Memory was not poisoned # [ 52.521273] lkdtm: Performing direct entry READ_AFTER_FREE # [ 52.526773] lkdtm: Value in memory before free: 12345678 # [ 52.532126] lkdtm: Attempting bad read from freed memory # [ 52.537467] lkdtm: Memory was not poisoned # READ_AFTER_FREE: missing 'call trace:': [FAIL] not ok 20 selftests: lkdtm: READ_AFTER_FREE.sh # exit=1 # selftests: lkdtm: WRITE_BUDDY_AFTER_FREE.sh # Skipping WRITE_BUDDY_AFTER_FREE: Corrupts memory on failure ok 21 selftests: lkdtm: WRITE_BUDDY_AFTER_FREE.sh # SKIP # selftests: lkdtm: READ_BUDDY_AFTER_FREE.sh [ 52.709873] lkdtm: Performing direct entry READ_BUDDY_AFTER_FREE [ 52.715905] lkdtm: Value in memory before free: 12345678 [ 52.721264] lkdtm: Attempting to read from freed memory [ 52.726487] lkdtm: Buddy page was not poisoned # [ 52.709873] lkdtm: Performing direct entry READ_BUDDY_AFTER_FREE # [ 52.715905] lkdtm: Value in memory before free: 12345678 # [ 52.721264] lkdtm: Attempting to read from freed memory # [ 52.726487] lkdtm: Buddy page was not poisoned # READ_BUDDY_AFTER_FREE: missing 'call trace:': [FAIL] not ok 22 selftests: lkdtm: READ_BUDDY_AFTER_FREE.sh # exit=1 # selftests: lkdtm: SLAB_FREE_DOUBLE.sh [ 52.848539] lkdtm: Performing direct entry SLAB_FREE_DOUBLE [ 52.854126] lkdtm: Attempting double slab free ... # [ 52.848539] lkdtm: Performing direct entry SLAB_FREE_DOUBLE # [ 52.854126] lkdtm: Attempting double slab free ... # SLAB_FREE_DOUBLE: missing 'call trace:': [FAIL] not ok 23 selftests: lkdtm: SLAB_FREE_DOUBLE.sh # exit=1 # selftests: lkdtm: SLAB_FREE_CROSS.sh [ 53.006023] lkdtm: Performing direct entry SLAB_FREE_CROSS [ 53.011543] lkdtm: Attempting cross-cache slab free ... # [ 53.006023] lkdtm: Performing direct entry SLAB_FREE_CROSS # [ 53.011543] lkdtm: Attempting cross-cache slab free ... # SLAB_FREE_CROSS: missing 'call trace:': [FAIL] not ok 24 selftests: lkdtm: SLAB_FREE_CROSS.sh # exit=1 # selftests: lkdtm: SLAB_FREE_PAGE.sh [ 53.153949] lkdtm: Performing direct entry SLAB_FREE_PAGE [ 53.159355] lkdtm: Attempting non-Slab slab free ... # [ 53.153949] lkdtm: Performing direct entry SLAB_FREE_PAGE # [ 53.159355] lkdtm: Attempting non-Slab slab free ... # SLAB_FREE_PAGE: missing 'call trace:': [FAIL] not ok 25 selftests: lkdtm: SLAB_FREE_PAGE.sh # exit=1 # selftests: lkdtm: SOFTLOCKUP.sh # Skipping SOFTLOCKUP: Hangs the system ok 26 selftests: lkdtm: SOFTLOCKUP.sh # SKIP # selftests: lkdtm: HARDLOCKUP.sh # Skipping HARDLOCKUP: Hangs the system ok 27 selftests: lkdtm: HARDLOCKUP.sh # SKIP # selftests: lkdtm: SPINLOCKUP.sh # Skipping SPINLOCKUP: Hangs the system ok 28 selftests: lkdtm: SPINLOCKUP.sh # SKIP # selftests: lkdtm: HUNG_TASK.sh # Skipping HUNG_TASK: Hangs the system ok 29 selftests: lkdtm: HUNG_TASK.sh # SKIP # selftests: lkdtm: EXEC_DATA.sh [ 53.567557] lkdtm: Performing direct entry EXEC_DATA [ 53.572525] lkdtm: attempting ok execution at ffffffff966b2320 [ 53.578357] lkdtm: attempting bad execution at ffffffff98db3560 [ 53.584329] kernel tried to execute NX-protected page - exploit attempt? (uid: 0) [ 53.591797] BUG: unable to handle page fault for address: ffffffff98db3560 [ 53.598658] #PF: supervisor instruction fetch in kernel mode [ 53.604306] #PF: error_code(0x0011) - permissions violation [ 53.609867] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 8000000026e001e3 [ 53.616561] Oops: 0011 [#5] SMP NOPTI [ 53.620219] CPU: 0 PID: 1598 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 53.627947] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 53.633859] RIP: 0010:data_area+0x0/0x40 [ 53.637774] Code: ff ff 00 77 7c c2 4a 8f ff ff 00 76 7c c2 4a 8f ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 <0f> 1f 44 00 00 c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 55 [ 53.656508] RSP: 0018:ffffaa54c159be48 EFLAGS: 00010246 [ 53.661725] RAX: 0000000000000033 RBX: 0000000000000001 RCX: 0000000000000000 [ 53.668845] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 53.675966] RBP: ffffffff98db3560 R08: 0000000000000000 R09: 0000000000000000 [ 53.683088] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000a [ 53.690208] R13: ffffaa54c159bf10 R14: ffffaa54c159bf10 R15: ffff8f4ac3345000 [ 53.697331] FS: 00007f5ba1a50580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 53.705404] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 53.711138] CR2: ffffffff98db3560 CR3: 00000001056b2000 CR4: 00000000001506f0 [ 53.718259] Call Trace: [ 53.720706] ? execute_location+0x48/0x56 [ 53.724709] ? direct_entry.cold+0x2c/0x38 [ 53.728801] ? full_proxy_write+0x56/0x80 [ 53.732806] ? vfs_write+0xea/0x390 [ 53.736290] ? ksys_write+0x68/0xe0 [ 53.739774] ? do_syscall_64+0x33/0x40 [ 53.743517] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 53.748736] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 53.761154] CR2: ffffffff98db3560 [ 53.764463] ---[ end trace 3714dc34b20e073f ]--- [ 53.769074] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 53.772990] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 53.791724] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 53.796939] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 53.804060] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 53.811179] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 53.818302] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 53.825423] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 53.832545] FS: 00007f5ba1a50580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 53.840619] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 53.846353] CR2: ffffffff98db3560 CR3: 00000001056b2000 CR4: 00000000001506f0 [ 53.853475] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 [ 53.862331] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1598, name: cat [ 53.869885] INFO: lockdep is turned off. [ 53.873798] irq event stamp: 0 [ 53.876848] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 53.883107] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 53.891269] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 53.899429] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 53.905686] CPU: 0 PID: 1598 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 53.913413] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 53.919321] Call Trace: [ 53.921766] dump_stack+0x77/0x97 [ 53.925076] ___might_sleep.cold+0xa6/0xb6 [ 53.929166] exit_signals+0x1c/0x2d0 [ 53.932735] do_exit+0xd5/0xb00 [ 53.935871] ? ksys_write+0x68/0xe0 [ 53.939354] rewind_stack_do_exit+0x17/0x20 [ 53.943531] RIP: 0033:0x7f5ba193ef33 [ 53.947099] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 53.965833] RSP: 002b:00007ffd3b45dea8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 53.973388] RAX: ffffffffffffffda RBX: 000000000000000a RCX: 00007f5ba193ef33 [ 53.980510] RDX: 000000000000000a RSI: 00007f5ba182f000 RDI: 0000000000000001 [ 53.987631] RBP: 00007f5ba182f000 R08: 00007f5ba182e010 R09: 0000000000000000 [ 53.994751] R10: 00007f5ba1a3d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 54.001874] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # Killed # [ 53.567557] lkdtm: Performing direct entry EXEC_DATA # [ 53.572525] lkdtm: attempting ok execution at ffffffff966b2320 # [ 53.578357] lkdtm: attempting bad execution at ffffffff98db3560 # [ 53.584329] kernel tried to execute NX-protected page - exploit attempt? (uid: 0) # [ 53.591797] BUG: unable to handle page fault for address: ffffffff98db3560 # [ 53.598658] #PF: supervisor instruction fetch in kernel mode # [ 53.604306] #PF: error_code(0x0011) - permissions violation # [ 53.609867] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 8000000026e001e3 # [ 53.616561] Oops: 0011 [#5] SMP NOPTI # [ 53.620219] CPU: 0 PID: 1598 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 53.627947] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 53.633859] RIP: 0010:data_area+0x0/0x40 # [ 53.637774] Code: ff ff 00 77 7c c2 4a 8f ff ff 00 76 7c c2 4a 8f ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 <0f> 1f 44 00 00 c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 55 # [ 53.656508] RSP: 0018:ffffaa54c159be48 EFLAGS: 00010246 # [ 53.661725] RAX: 0000000000000033 RBX: 0000000000000001 RCX: 0000000000000000 # [ 53.668845] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 53.675966] RBP: ffffffff98db3560 R08: 0000000000000000 R0[ 54.180940] lkdtm: Performing direct entry EXEC_STACK 9: 0000000000000000 # [ 53.683088] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000a # [ 53.690208] R13: ffffaa54c159bf10 R14: ffffaa54c159bf10 R15: ffff8f4ac3345000 # [ 53.697331] FS: 00007f5ba1a50580(0000) GS:ffff8f4aeac00000(00[ 54.190862] lkdtm: attempting ok execution at ffffffff966b2320 00) knlGS:0000000000000000 # [ 53.705404] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 53.711138] CR2: ffffffff98db3560 CR3: 00000001056b2000 CR4: 00000000001506f0 # [ 53.718259] Call Trace: # [ 53.720706] ? execute_location+0x48/0x56[ 54.218875] lkdtm: attempting bad execution at ffffaa54c160be18 # [ 53.724709] ? direct_entry.cold+0x2c/0x38 # [ 53.728801] ? full_proxy_write+0x56/0x80 # [ 53.732806] ? vfs_write+0xea/0x390 # [ 53.736290] ? ksys_write+0x68/0xe0 # [ 53.739774] ? do_syscall_64+0x33/0x40 # [ 53.743517] ? entry_SY[ 54.246991] kernel tried to execute NX-protected page - exploit attempt? (uid: 0) SCALL_64_after_hwframe+0x44/0xa9 # [ 53.748736] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 53.761154] CR2: ffffffff98db3560 # [ 53.764463] ---[ end trace 3714d[ 54.276605] BUG: unable to handle page fault for address: ffffaa54c160be18 [ 54.305653] #PF: supervisor instruction fetch in kernel mode c34b20e073f ]--- # [ 53.769074] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 53.772990] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 4[ 54.311302] #PF: error_code(0x0011) - permissions violation 4 00 00 83 05 c0 15 70 02 # [ 53.791724] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 53.796939] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 53.804060] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70[ 54.339046] PGD 100000067 P4D 100000067 PUD 10020a067 PMD 10459c067 PTE 800000010326d163 #[ [ 53.811179] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 53.818302] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 53.825423] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 54.369309] Oops: 0011 [#6] SMP NOPTI 53.832545] FS: 00007f5ba1a50580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 53.840619] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 53.846353] CR2: ffffffff98db3560 CR3: 00000001056b2000 CR4: 00000000001506f0 # [ 53.853[ 54.395155] CPU: 0 PID: 1634 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 54.425067] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 475] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 # [ 53.862331] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1598, name: cat # [ 53.869885] INFO: lockdep is turned off. # [ 53.873798] irq event s[ 54.430977] RIP: 0010:0xffffaa54c160be18 tamp: 0 # [ 53.876848] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 53.883107] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 53.891269] softirqs last enabled at (0): [] copy_pro[ 54.457075] Code: 00 00 18 be 60 c1 54 aa ff ff b3 8d cf 96 ff ff ff ff 20 00 00 00 00 00 00 00 46 02 6c 97 ff ff ff ff df 8e cf 96 ff ff ff ff <0f> 1f 44 00 00 c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 55 ce[ss+0x63c/0x1c80 # [ 53.899429] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 53.905686] CPU: 0 PID: 1598 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 53.913413] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # 54.497997] RSP: 0018:ffffaa54c160bdf8 EFLAGS: 00010246 [ 53.919321] Call Trace: # [ 53.921766] dump_stack+0x77/0x97 # [ 53.925076] ___might_sleep.cold+0xa6/0xb6 # [ 53.929166] exit_signals+0x1c/0x2d0 # [ 53.932735] do_exit+0xd5/0xb00 # [ 53.935871] ? ksys_write+0x68/0xe0 # [ 53.939354][ 54.525402] RAX: 0000000000000033 RBX: 0000000000000001 RCX: 0000000000000000 [rewind_stack_do_exit+0x17/0x20 # [ 53.943531] RIP: 0033:0x7f5ba193ef33 # [ 53.947099] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0 54.554712] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 54.584023] RBP: ffffaa54c160be18 R08: 0000000000000000 R09: 0000000000000000 f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 53.965833] RSP: 002b:00007ffd3b45dea8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 53.973388] RAX: ffffffffffffffda RBX: 000000000000000a RCX: 00007f5ba193ef33 # [ 53.980510] RDX: 000000000000000a RSI: [ 54.591146] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000b [ 54.620451] R13: ffffaa54c160bf10 R14: ffffaa54c160bf10 R15: ffff8f4ac5783000 00007f5ba182f000 RDI: 0000000000000001 # [ 53.987631] RBP: 00007f5ba182f000 R08: 00007f5ba182e010 R09: 0000000000000000 # [ 53.994751] R10: 00007f5ba1a3d1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 54.001874] R13: 0000000000000001 R14: 0000[ 54.627574] FS: 00007fb11a9fe3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 54.657831] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 000000020000 R15: 0000000000020000 # EXEC_DATA: saw 'call trace:': ok ok 30 selftests: lkdtm: EXEC_DATA.sh # selftests: lkdtm: EXEC_STACK.sh [ 54.663565] CR2: ffffaa54c160be18 CR3: 0000000103fa2000 CR4: 00000000001506f0 [ 54.683249] Call Trace: [ 54.685698] ? execute_location+0x48/0x56 [ 54.689701] ? lkdtm_EXEC_STACK+0x26/0x40 [ 54.693705] ? direct_entry.cold+0x2c/0x38 [ 54.697796] ? full_proxy_write+0x56/0x80 [ 54.701800] ? vfs_write+0xea/0x390 [ 54.705284] ? ksys_write+0x68/0xe0 [ 54.708770] ? do_syscall_64+0x33/0x40 [ 54.712513] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 54.717734] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 54.730154] CR2: ffffaa54c160be18 [ 54.733466] ---[ end trace 3714dc34b20e0740 ]--- [ 54.738076] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 54.741994] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 54.760728] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 54.765945] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 54.773067] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 54.780188] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 54.787310] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 54.794431] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 54.801554] FS: 00007fb11a9fe3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 54.809629] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 54.815365] CR2: ffffaa54c160be18 CR3: 0000000103fa2000 CR4: 00000000001506f0 [ 54.958005] lkdtm: Performing direct entry EXEC_KMALLOC # Killed # [ 54.180940] lkdtm: Performing direct entry EXEC_STACK # [ 54.190862] lkdtm: attempting ok execution at ffffffff966b2320 # [ 54.218875] lkdtm: attempting bad execution at ffffaa54c160be18 # [ 54.246991] kernel tried to execute NX-pro[ 54.963260] lkdtm: attempting ok execution at ffffffff966b2320 tected page - exploit attempt? (uid: 0) # [ 54.276605] BUG: unable to handle page fault for address: ffffaa54c160be18 # [ 54.305653] #PF: supervisor instruction fetch in kernel mode # [ 54.311302] #PF: error_code(0x0011) - permissions violation #[ 54.991260] lkdtm: attempting bad execution at ffff8f4ac3279700 [ 54.339046] PGD 100000067 P4D 100000067 PUD 10020a067 PMD 10459c067 PTE 800000010326d163 # [ 54.369309] Oops: 0011 [#6] SMP NOPTI # [ 54.395155] CPU: 0 PID: 1634 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 54.425067] Hardware n[ 55.019389] kernel tried to execute NX-protected page - exploit attempt? (uid: 0) ame: Google Grunt/Grunt, BIOS 09/05/2019 # [ 54.430977] RIP: 0010:0xffffaa54c160be18 # [ 54.457075] Code: 00 00 18 be 60 c1 54 aa ff ff b3 8d cf 96 ff ff ff ff 20 00 00 00 00 00 00 00 46 02 6c 97 ff ff ff ff df 8e cf 96 ff ff ff ff <0f> 1f 44 00 00 [ 55.048997] BUG: unable to handle page fault for address: ffff8f4ac3279700 [ 55.078042] #PF: supervisor instruction fetch in kernel mode c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 55 # [ 54.497997] RSP: 0018:ffffaa54c160bdf8 EFLAGS: 00010246 # [ 54.525402] RAX: 0000000000000033 RBX: 0000000000000001 RCX: 0000000000000000 # [ 54.554712] RDX: 0000000000000000 RSI: ffff8f4aeac1bf[ 55.083691] #PF: error_code(0x0011) - permissions violation 70 RDI: ffff8f4aeac1bf70 # [ 54.584023] RBP: ffffaa54c160be18 R08: 0000000000000000 R09: 0000000000000000 # [ 54.591146] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000b # [ 54.620451] R13: ffffaa54c160bf10 R14: ffffaa54c160bf10 R[ 55.111436] PGD 27001067 P4D 27001067 PUD 27005067 PMD 1045f3063 PTE 8000000103279163 15[: ffff8f4ac5783000 # [ 54.627574] FS: 00007fb11a9fe3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 54.657831] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 54.663565] CR2: ffffaa54c160be18 CR3: 0000000103fa2000 CR4: 00000 55.141441] Oops: 0011 [#7] SMP NOPTI 000001506f0 # [ 54.683249] Call Trace: # [ 54.685698] ? execute_location+0x48/0x56 # [ 54.689701] ? lkdtm_EXEC_STACK+0x26/0x40 # [ 54.693705] ? direct_entry.cold+0x2c/0x38 # [ 54.697796] ? full_proxy_write+0x56/0x80 # [ 54.701800] ? [ 55.167286] CPU: 0 PID: 1670 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 55.197197] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 vfs_write+0xea/0x390 # [ 54.705284] ? ksys_write+0x68/0xe0 # [ 54.708770] ? do_syscall_64+0x33/0x40 # [ 54.712513] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 54.717734] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cro[ 55.203109] RIP: 0010:0xffff8f4ac3279700 s_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 54.730154] CR2: ffffaa54c160be18 # [ 54.733466] ---[ end trace 3714dc34b20e0740 ]--- # [ 54.738076] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 54.741994] Code: 56 a5 ff 48 c7 c0 ea ff ff ff e[ 55.229206] Code: 00 00 02 00 00 00 00 00 00 00 00 98 27 c3 4a 8f ff ff 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 bb b6 ef 95 ff ff ff ff <0f> 1f 44 00 00 c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 55 [ 55.270128] RSP: 0018:ffffaa54c16a3e38 EFLAGS: 00010246 b e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 54.760728] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 54.765945] RAX: ffffffff[ 55.275344] RAX: 0000000000000033 RBX: 0000000000000001 RCX: 0000000000000000 [ 55.304649] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 54.773067] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 54.780188] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 54.787310] R10: 00000000ffff[ 55.311770] RBP: ffff8f4ac3279700 R08: 0000000000000000 R09: 0000000000000000 [ 55.341074] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000d e000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 54.794431] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 54.801554] FS: 00007fb11a9fe3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 54.809629] CS: 0010 [ 55.348196] R13: ffffaa54c16a3f10 R14: ffffaa54c16a3f10 R15: ffff8f4ac3070000 [ 55.377503] FS: 00007f0173f30580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 54.815365] CR2: ffffaa54c160be18 CR3: 0000000103fa2000 CR4: 00000000001506f0 # EXEC_STACK: saw 'call trace:': ok ok 31 selftests: lkdtm: EXEC_STACK.sh # selftests: lkdtm: EXEC_KMALLOC.sh [ 55.385578] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 55.411937] CR2: ffff8f4ac3279700 CR3: 0000000101f04000 CR4: 00000000001506f0 [ 55.419057] Call Trace: [ 55.421507] ? execute_location+0x48/0x56 [ 55.425514] ? lkdtm_EXEC_KMALLOC+0x2c/0x40 [ 55.429689] ? direct_entry.cold+0x2c/0x38 [ 55.433780] ? full_proxy_write+0x56/0x80 [ 55.437784] ? vfs_write+0xea/0x390 [ 55.441267] ? ksys_write+0x68/0xe0 [ 55.444751] ? do_syscall_64+0x33/0x40 [ 55.448494] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 55.453713] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 55.466132] CR2: ffff8f4ac3279700 [ 55.469445] ---[ end trace 3714dc34b20e0741 ]--- [ 55.474055] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 55.477974] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 55.496708] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 55.501925] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 55.509048] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 55.516168] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 55.523289] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 55.530411] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 55.537533] FS: 00007f0173f30580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 55.545608] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 55.551343] CR2: ffff8f4ac3279700 CR3: 0000000101f04000 CR4: 00000000001506f0 [ 55.558466] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 [ 55.567322] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1670, name: cat [ 55.574876] INFO: lockdep is turned off. [ 55.578789] irq event stamp: 0 [ 55.581837] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 55.588098] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 55.596262] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 55.604426] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 55.610683] CPU: 0 PID: 1670 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 55.618413] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 55.624322] Call Trace: [ 55.626768] dump_stack+0x77/0x97 [ 55.630079] ___might_sleep.cold+0xa6/0xb6 [ 55.634169] exit_signals+0x1c/0x2d0 [ 55.637742] do_exit+0xd5/0xb00 [ 55.640879] ? ksys_write+0x68/0xe0 [ 55.644365] rewind_stack_do_exit+0x17/0x20 [ 55.648542] RIP: 0033:0x7f0173e1ef33 [ 55.652111] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 55.670848] RSP: 002b:00007ffc66e051e8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 55.678406] RAX: ffffffffffffffda RBX: 000000000000000d RCX: 00007f0173e1ef33 [ 55.685527] RDX: 000000000000000d RSI: 00007f0173d0f000 RDI: 0000000000000001 [ 55.692648] RBP: 00007f0173d0f000 R08: 00007f0173d0e010 R09: 0000000000000000 [ 55.699770] R10: 00007f0173f1d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 55.706891] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 55.888758] lkdtm: Performing direct entry EXEC_VMALLOC # Killed # [ 54.958005] lkdtm: Performing direct entry EXEC_KMALLOC # [ 54.963260] lkdtm: attempting ok execution at ffffffff966b2320 # [ 54.991260] lkdtm: attempting bad execution at ffff8f4ac3279700 # [ 55.019389] kernel tried to execute NX-p[ 55.894012] lkdtm: attempting ok execution at ffffffff966b2320 rotected page - exploit attempt? (uid: 0) # [ 55.048997] BUG: unable to handle page fault for address: ffff8f4ac3279700 # [ 55.078042] #PF: supervisor instruction fetch in kernel mode # [ 55.083691] #PF: error_code(0x0011) - permissions violation[ 55.922015] lkdtm: attempting bad execution at ffffaa54c03af000 # [ 55.111436] PGD 27001067 P4D 27001067 PUD 27005067 PMD 1045f3063 PTE 8000000103279163 # [ 55.141441] Oops: 0011 [#7] SMP NOPTI # [ 55.167286] CPU: 0 PID: 1670 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 55.197197] Hardware na[ 55.950132] kernel tried to execute NX-protected page - exploit attempt? (uid: 0) me: Google Grunt/Grunt, BIOS 09/05/2019 # [ 55.203109] RIP: 0010:0xffff8f4ac3279700 # [ 55.229206] Code: 00 00 02 00 00 00 00 00 00 00 00 98 27 c3 4a 8f ff ff 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 bb b6 ef 95 ff ff ff ff <0f> 1f 44 00 00 c[ 55.979751] BUG: unable to handle page fault for address: ffffaa54c03af000 3 [66 2e 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 55 # [ 55.270128] RSP: 0018:ffffaa54c16a3e38 EFLAGS: 00010246 # [ 55.275344] RAX: 0000000000000033 RBX: 0000000000000001 RCX: 0000000000000000 # [ 55.304649] RDX: 0000000000000000 RSI: ffff8f4aeac1bf7 56.008797] #PF: supervisor instruction fetch in kernel mode [ 56.036632] #PF: error_code(0x0011) - permissions violation 0 RDI: ffff8f4aeac1bf70 # [ 55.311770] RBP: ffff8f4ac3279700 R08: 0000000000000000 R09: 0000000000000000 # [ 55.341074] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000d # [ 55.348196] R13: ffffaa54c16a3f10 R14: ffffaa54c16a3f10 R1[ 56.042195] PGD 100000067 P4D 100000067 PUD 10020a067 PMD 104423067 PTE 80000001057fa163 5:[ ffff8f4ac3070000 # [ 55.377503] FS: 00007f0173f30580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 55.385578] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 55.411937] CR2: ffff8f4ac3279700 CR3: 0000000101f04000 CR4: 000000 56.072455] Oops: 0011 [#8] SMP NOPTI 00001506f0 # [ 55.419057] Call Trace: # [ 55.421507] ? execute_location+0x48/0x56 # [ 55.425514] ? lkdtm_EXEC_KMALLOC+0x2c/0x40 # [ 55.429689] ? direct_entry.cold+0x2c/0x38 # [ 55.433780] ? full_proxy_write+0x56/0x80 # [ 55.437784] ?[ 56.098300] CPU: 0 PID: 1706 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 56.128213] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 vfs_write+0xea/0x390 # [ 55.441267] ? ksys_write+0x68/0xe0 # [ 55.444751] ? do_syscall_64+0x33/0x40 # [ 55.448494] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 55.453713] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cr[ 56.134125] RIP: 0010:0xffffaa54c03af000 os_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 55.466132] CR2: ffff8f4ac3279700 # [ 55.469445] ---[ end trace 3714dc34b20e0741 ]--- # [ 55.474055] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 55.477974] Code: 56 a5 ff 48 c7 c0 ea ff ff ff [ 56.160225] Code: Unable to access opcode bytes at RIP 0xffffaa54c03aefd6. eb[ e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 55.496708] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 55.501925] RAX: fffffff 56.189269] RSP: 0018:ffffaa54c1723e38 EFLAGS: 00010246 [ 56.216672] RAX: 0000000000000033 RBX: 0000000000000001 RCX: 0000000000000000 f966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 55.509048] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 55.516168] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 55.523289] R10: 00000000fff[ 56.223795] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 56.253101] RBP: ffffaa54c03af000 R08: 0000000000000000 R09: 0000000000000000 fe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 55.530411] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 55.537533] FS: 00007f0173f30580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 55.545608] CS: 0010[ 56.260223] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000d [ 56.289528] R13: ffffaa54c1723f10 R14: ffffaa54c1723f10 R15: ffff8f4ac57fa000 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 55.551343] CR2: ffff8f4ac3279700 CR3: 0000000101f04000 CR4: 00000000001506f0 # [ 55.558466] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 # [ 55.567322] in_atomic[ 56.296650] FS: 00007fba9403f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 56.326907] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 (): 0, irqs_disabled(): 1, non_block: 0, pid: 1670, name: cat # [ 55.574876] INFO: lockdep is turned off. # [ 55.578789] irq event stamp: 0 # [ 55.581837] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 55.588098] hardirqs last disa[ 56.332642] CR2: ffffaa54c03aefd6 CR3: 00000001034fa000 CR4: 00000000001506f0 bl[ed at (0): [] copy_process+0x63c/0x1c80 # [ 55.596262] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 55.604426] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 55.610683] CPU: 0 P 56.361949] Call Trace: ID: 1670 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 55.618413] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 55.624322] Call Trace: # [ 55.626768] dump_stack+0x77/0x97 # [ 55.630079] ___might_sleep.cold+0xa6/0xb6 #[ 56.386587] ? execute_location+0x48/0x56 [ 55.634169] exit_signals+0x1c/0x2d0 # [ 55.637742] do_exit+0xd5/0xb00 # [ 55.640879] ? ksys_write+0x68/0xe0 # [ 55.644365] rewind_stack_do_exit+0x17/0x20 # [ 55.648542] RIP: 0033:0x7f0173e1ef33 # [ 55.652111] Code: 8b 15 61 ef 0c 00 [ 56.412771] ? lkdtm_EXEC_VMALLOC+0x20/0x30 f7[ d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 55.670848] RSP: 002b:00007ffc66e051e8 EFLAGS: 00000246 ORIG_RAX: 00000000 56.439129] ? direct_entry.cold+0x2c/0x38 00000001 # [ 55.678406] RAX: ffffffffffffffda RBX: 000000000000000d RCX: 00007f0173e1ef33 # [ 55.685527] RDX: 000000000000000d RSI: 00007f0173d0f000 RDI: 0000000000000001 # [ 55.692648] RBP: 00007f0173d0f000 R08: 00007f0173d0e010 R09: 000000000000[ 56.465409] ? full_proxy_write+0x56/0x80 0000 # [ 55.699770] R10: 00007f0173f1d1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 55.706891] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # EXEC_KMALLOC: saw 'call trace:': ok ok 32 selftests: lkdtm: EXEC_KMALLOC.sh # [ 56.491597] ? vfs_write+0xea/0x390 se[lftests: lkdtm: EXEC_VMALLOC.sh 56.517264] ? ksys_write+0x68/0xe0 [ 56.523782] ? do_syscall_64+0x33/0x40 [ 56.527527] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 56.532746] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 56.545166] CR2: ffffaa54c03af000 [ 56.548477] ---[ end trace 3714dc34b20e0742 ]--- [ 56.553087] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 56.557005] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 56.575742] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 56.580957] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 56.588080] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 56.595202] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 56.602323] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 56.609445] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 56.616565] FS: 00007fba9403f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 56.624639] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 56.630374] CR2: ffffaa54c03aefd6 CR3: 00000001034fa000 CR4: 00000000001506f0 [ 56.846721] lkdtm: Performing direct entry EXEC_RODATA # Killed # [ 55.888758] lkdtm: Performing direct entry EXEC_VMALLOC # [ 55.894012] lkdtm: attempting ok execution at ffffffff966b2320 # [ 55.922015] lkdtm: attempting bad execution at ffffaa54c03af000 # [ 55.950132] kernel tried to execute NX-p[ 56.851880] lkdtm: attempting ok execution at ffffffff966b2320 rotected page - exploit attempt? (uid: 0) # [ 55.979751] BUG: unable to handle page fault for address: ffffaa54c03af000 # [ 56.008797] #PF: supervisor instruction fetch in kernel mode # [ 56.036632] #PF: error_code(0x0011) - permissions violation[ 56.879889] lkdtm: attempting bad execution at ffffffff972d9f00 # [ 56.042195] PGD 100000067 P4D 100000067 PUD 10020a067 PMD 104423067 PTE 80000001057fa163 # [ 56.072455] Oops: 0011 [#8] SMP NOPTI # [ 56.098300] CPU: 0 PID: 1706 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 56.128213] Hardware[ 56.908010] kernel tried to execute NX-protected page - exploit attempt? (uid: 0) name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 56.134125] RIP: 0010:0xffffaa54c03af000 # [ 56.160225] Code: Unable to access opcode bytes at RIP 0xffffaa54c03aefd6. # [ 56.189269] RSP: 0018:ffffaa54c1723e38 EFLAGS: 00010246 # [ 56.216672] RAX:[ 56.937624] BUG: unable to handle page fault for address: ffffffff972d9f00 [ 56.966673] #PF: supervisor instruction fetch in kernel mode 0000000000000033 RBX: 0000000000000001 RCX: 0000000000000000 # [ 56.223795] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 56.253101] RBP: ffffaa54c03af000 R08: 0000000000000000 R09: 0000000000000000 # [ 56.260223] R10: 000[ 56.972322] #PF: error_code(0x0011) - permissions violation 00000ffffe000 R11: 3fffffffffffffff R12: 000000000000000d # [ 56.289528] R13: ffffaa54c1723f10 R14: ffffaa54c1723f10 R15: ffff8f4ac57fa000 # [ 56.296650] FS: 00007fba9403f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 56.326907] C[ 57.000067] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 80000000254001e1 S:[ 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 56.332642] CR2: ffffaa54c03aefd6 CR3: 00000001034fa000 CR4: 00000000001506f0 # [ 56.361949] Call Trace: # [ 56.386587] ? execute_location+0x48/0x56 # [ 56.412771] ? lkdtm_EXEC_VMALLOC+0x20/ 57.028943] Oops: 0011 [#9] SMP NOPTI 0x30 # [ 56.439129] ? direct_entry.cold+0x2c/0x38 # [ 56.465409] ? full_proxy_write+0x56/0x80 # [ 56.491597] ? vfs_write+0xea/0x390 # [ 56.517264] ? ksys_write+0x68/0xe0 # [ 56.523782] ? do_syscall_64+0x33/0x40 # [ 56.527527] ? entr[ 57.054788] CPU: 0 PID: 1742 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 57.084699] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 y_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 56.532746] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 56.545166] CR2: ffffaa54c03af000 # [ 56.548477] ---[ end trace 3[ 57.090613] RIP: 0010:lkdtm_rodata_do_nothing+0x0/0x10 71[4dc34b20e0742 ]--- # [ 56.553087] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 56.557005] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 57.117921] Code: ff ff df a2 cf 96 ff ff ff ff 92 04 6c 97 ff ff ff ff 95 8a cf 96 ff ff ff ff 55 aa 55 aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 54 68 69 73 20 69 1f[ 44 00 00 83 05 c0 15 70 02 # [ 56.575742] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 56.580957] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 56.588080] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9 57.158845] RSP: 0018:ffffaa54c179be48 EFLAGS: 00010246 [ 57.186247] RAX: 0000000000000033 RBX: 0000000000000000 RCX: 0000000000000000 a70 # [ 56.595202] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 56.602323] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 56.609445] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000[ 57.193370] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 57.222674] RBP: ffffffff972d9f00 R08: 0000000000000000 R09: 0000000000000000 # [ 56.616565] FS: 00007fba9403f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 56.624639] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 56.630374] CR2: ffffaa54c03aefd6 CR3: 00000001034fa000 CR4: 00000000001506f0 # EXEC_V[ 57.229796] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000c [ 57.259103] R13: ffffaa54c179bf10 R14: ffffaa54c179bf10 R15: ffff8f4ac58e1000 MALLOC: saw 'call trace:': ok ok 33 selftests: lkdtm: EXEC_VMALLOC.sh # selftests: lkdtm: EXEC_RODATA.sh [ 57.266226] FS: 00007f74bc88b580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 57.283657] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 57.289391] CR2: ffffffff972d9f00 CR3: 00000001034a6000 CR4: 00000000001506f0 [ 57.296513] Call Trace: [ 57.298961] ? execute_location+0x48/0x56 [ 57.302964] ? direct_entry.cold+0x2c/0x38 [ 57.307056] ? full_proxy_write+0x56/0x80 [ 57.311059] ? vfs_write+0xea/0x390 [ 57.314542] ? ksys_write+0x68/0xe0 [ 57.318028] ? do_syscall_64+0x33/0x40 [ 57.321773] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 57.326993] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 57.339411] CR2: ffffffff972d9f00 [ 57.342721] ---[ end trace 3714dc34b20e0743 ]--- [ 57.347333] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 57.351249] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 57.369986] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 57.375202] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 57.382323] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 57.389444] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 57.396566] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 57.403688] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 57.410810] FS: 00007f74bc88b580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 57.418884] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 57.424620] CR2: ffffffff972d9f00 CR3: 00000001034a6000 CR4: 00000000001506f0 [ 57.431743] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 [ 57.440598] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1742, name: cat [ 57.448153] INFO: lockdep is turned off. [ 57.452068] irq event stamp: 0 [ 57.455117] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 57.461376] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 57.469538] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 57.477701] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 57.483958] CPU: 0 PID: 1742 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 57.491685] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 57.497592] Call Trace: [ 57.500037] dump_stack+0x77/0x97 [ 57.503349] ___might_sleep.cold+0xa6/0xb6 [ 57.507437] exit_signals+0x1c/0x2d0 [ 57.511008] do_exit+0xd5/0xb00 [ 57.514147] ? ksys_write+0x68/0xe0 [ 57.517631] rewind_stack_do_exit+0x17/0x20 [ 57.521806] RIP: 0033:0x7f74bc776f33 [ 57.525376] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 57.544111] RSP: 002b:00007fffa41db0e8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 57.551669] RAX: ffffffffffffffda RBX: 000000000000000c RCX: 00007f74bc776f33 [ 57.558790] RDX: 000000000000000c RSI: 00007f74bc667000 RDI: 0000000000000001 [ 57.565911] RBP: 00007f74bc667000 R08: 00007f74bc666010 R09: 0000000000000000 [ 57.573032] R10: 00007f74bc8751c0 R11: 0000000000000246 R12: 0000000000000001 [ 57.580153] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 57.731656] lkdtm: Performing direct entry EXEC_USERSPACE # Killed # [ 56.846721] lkdtm: Performing direct entry EXEC_RODATA # [ 56.851880] lkdtm: attempting ok execution at ffffffff966b2320 # [ 56.879889] lkdtm: attempting bad execution at ffffffff972d9f00 # [ 56.908010] kernel tried to execute NX-pr[ 57.737060] lkdtm: attempting ok execution at ffffffff966b2320 otected page - exploit attempt? (uid: 0) # [ 56.937624] BUG: unable to handle page fault for address: ffffffff972d9f00 # [ 56.966673] #PF: supervisor instruction fetch in kernel mode # [ 56.972322] #PF: error_code(0x0011) - permissions violation [ 57.765103] lkdtm: attempting bad execution at 00007f9345c80000 # [ 57.000067] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 80000000254001e1 # [ 57.028943] Oops: 0011 [#9] SMP NOPTI # [ 57.054788] CPU: 0 PID: 1742 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 57.084699] Hardware name: Google Gru[ 57.793222] unable to execute userspace code (SMEP?) (uid: 0) nt/Grunt, BIOS 09/05/2019 # [ 57.090613] RIP: 0010:lkdtm_rodata_do_nothing+0x0/0x10 # [ 57.117921] Code: ff ff df a2 cf 96 ff ff ff ff 92 04 6c 97 ff ff ff ff 95 8a cf 96 ff ff ff ff 55 aa 55 aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0[ 57.821087] BUG: unable to handle page fault for address: 00007f9345c80000 [ 57.850134] #PF: supervisor instruction fetch in kernel mode 0 00 00 00 00 00 00 00 00 00 00 54 68 69 73 20 69 # [ 57.158845] RSP: 0018:ffffaa54c179be48 EFLAGS: 00010246 # [ 57.186247] RAX: 0000000000000033 RBX: 0000000000000000 RCX: 0000000000000000 # [ 57.193370] RDX: 0000000000000000 RSI: ffff8f4aeac1bf7[ 57.855782] #PF: error_code(0x0011) - permissions violation 0 RDI: ffff8f4aeac1bf70 # [ 57.222674] RBP: ffffffff972d9f00 R08: 0000000000000000 R09: 0000000000000000 # [ 57.229796] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000c # [ 57.259103] R13: ffffaa54c179bf10 R14: ffffaa54c179bf10 R1[ 57.883529] PGD 10330c067 P4D 10330c067 PUD 105935067 PMD 1046a6067 PTE 114521067 5:[ ffff8f4ac58e1000 # [ 57.266226] FS: 00007f74bc88b580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 57.283657] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 57.289391] CR2: ffffffff972d9f00 CR3: 00000001034a6000 CR4: 000000 57.913186] Oops: 0011 [#10] SMP NOPTI 00001506f0 # [ 57.296513] Call Trace: # [ 57.298961] ? execute_location+0x48/0x56 # [ 57.302964] ? direct_entry.cold+0x2c/0x38 # [ 57.307056] ? full_proxy_write+0x56/0x80 # [ 57.311059] ? vfs_write+0xea/0x390 # [ 57.314542] ? ksys_wr[ 57.939116] CPU: 0 PID: 1778 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 57.969028] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 ite+0x68/0xe0 # [ 57.318028] ? do_syscall_64+0x33/0x40 # [ 57.321773] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 57.326993] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usb[ 57.974940] RIP: 0010:0x7f9345c80000 [ 58.000688] Code: Unable to access opcode bytes at RIP 0x7f9345c7ffd6. pd_notify # [ 57.339411] CR2: ffffffff972d9f00 # [ 57.342721] ---[ end trace 3714dc34b20e0743 ]--- # [ 57.347333] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 57.351249] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff[ 58.007203] RSP: 0018:ffffaa54c180be50 EFLAGS: 00010246 [ 58.034602] RAX: 0000000000000033 RBX: 0000000000000024 RCX: 0000000000000000 eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 57.369986] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 57.375202] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000[ 58.041725] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 58.071029] RBP: 00007f9345c80000 R08: 0000000000000000 R09: 0000000000000000 000 # [ 57.382323] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 57.389444] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 57.396566] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004[ 58.078151] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000f [ 58.107456] R13: ffffaa54c180bf10 R14: ffffaa54c180bf10 R15: ffff8f4ac3054000 # [ 57.403688] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 57.410810] FS: 00007f74bc88b580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 57.418884] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 57[ 58.114579] FS: 00007f9345c82580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 58.144835] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 .424620] CR2: ffffffff972d9f00 CR3: 00000001034a6000 CR4: 00000000001506f0 # [ 57.431743] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 # [ 57.440598] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1742[ 58.150569] CR2: 00007f9345c80000 CR3: 00000001027ba000 CR4: 00000000001506f0 [ 58.179875] Call Trace: , name: cat # [ 57.448153] INFO: lockdep is turned off. # [ 57.452068] irq event stamp: 0 # [ 57.455117] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 57.461376] hardirqs last disabled at (0): [] copy_process+0x6[ 58.182325] ? lkdtm_EXEC_USERSPACE.cold+0x69/0xae 3c/0x1c80 # [ 57.469538] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 57.477701] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 57.483958] CPU: 0 PID: 1742 Comm: cat Tainted: G D W 5.1[ 58.209286] ? direct_entry.cold+0x2c/0x38 0.125-cip10 #1 # [ 57.491685] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 57.497592] Call Trace: # [ 57.500037] dump_stack+0x77/0x97 # [ 57.503349] ___might_sleep.cold+0xa6/0xb6 # [ 57.507437] exit_signals+0x1c/0x2d0 # [ 57[ 58.235564] ? full_proxy_write+0x56/0x80 .511008] do_exit+0xd5/0xb00 # [ 57.514147] ? ksys_write+0x68/0xe0 # [ 57.517631] rewind_stack_do_exit+0x17/0x20 # [ 57.521806] RIP: 0033:0x7f74bc776f33 # [ 57.525376] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00[ 58.261750] ? vfs_write+0xea/0x390 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 57.544111] RSP: 002b:00007fffa41db0e8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 57.551669] RAX: ffffffffffffffda R[ 58.287416] ? ksys_write+0x68/0xe0 BX: 000000000000000c RCX: 00007f74bc776f33 # [ 57.558790] RDX: 000000000000000c RSI: 00007f74bc667000 RDI: 0000000000000001 # [ 57.565911] RBP: 00007f74bc667000 R08: 00007f74bc666010 R09: 0000000000000000 # [ 57.573032] R10: 00007f74bc8751c0 R11: [ 58.313085] ? do_syscall_64+0x33/0x40 0000000000000246 R12: 0000000000000001 # [ 57.580153] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # EXEC_RODATA: saw 'call trace:': ok ok 34 selftests: lkdtm: EXEC_RODATA.sh # selftests: lkdtm: EXEC_USERSPACE.sh [ 58.339012] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 58.365116] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 58.377535] CR2: 00007f9345c80000 [ 58.380911] ---[ end trace 3714dc34b20e0744 ]--- [ 58.385548] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 58.389607] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 58.408377] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 58.413664] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 58.420841] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 58.428029] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 58.435220] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 58.442405] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 58.449581] FS: 00007f9345c82580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 58.457704] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 58.463481] CR2: 00007f9345c80000 CR3: 00000001027ba000 CR4: 00000000001506f0 [ 58.637048] lkdtm: Performing direct entry EXEC_NULL # Killed # [ 57.731656] lkdtm: Performing direct entry EXEC_USERSPACE # [ 57.737060] lkdtm: attempting ok execution at ffffffff966b2320 # [ 57.765103] lkdtm: attempting bad execution at 00007f9345c80000 # [ 57.793222] unable to execute userspac[ 58.642039] lkdtm: attempting ok execution at ffffffff966b2320 e code (SMEP?) (uid: 0) # [ 57.821087] BUG: unable to handle page fault for address: 00007f9345c80000 # [ 57.850134] #PF: supervisor instruction fetch in kernel mode # [ 57.855782] #PF: error_code(0x0011) - permissions violation # [ 57.883529] [ 58.670036] lkdtm: attempting bad execution at 0000000000000000 PGD 10330c067 P4D 10330c067 PUD 105935067 PMD 1046a6067 PTE 114521067 # [ 57.913186] Oops: 0011 [#10] SMP NOPTI # [ 57.939116] CPU: 0 PID: 1778 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 57.969028] Hardware name: Google Grunt/Grun[ 58.698177] BUG: kernel NULL pointer dereference, address: 0000000000000000 t, BIOS 09/05/2019 # [ 57.974940] RIP: 0010:0x7f9345c80000 # [ 58.000688] Code: Unable to access opcode bytes at RIP 0x7f9345c7ffd6. # [ 58.007203] RSP: 0018:ffffaa54c180be50 EFLAGS: 00010246 # [ 58.034602] RAX: 0000000000000033 RBX: 000000000[ 58.727261] #PF: supervisor instruction fetch in kernel mode [ 58.755092] #PF: error_code(0x0010) - not-present page 0000024 RCX: 0000000000000000 # [ 58.041725] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 58.071029] RBP: 00007f9345c80000 R08: 0000000000000000 R09: 0000000000000000 # [ 58.078151] R10: 00000000ffffe000 R11: 3ffffffffffff[ 58.760220] PGD 0 P4D 0 ff[f R12: 000000000000000f # [ 58.107456] R13: ffffaa54c180bf10 R14: ffffaa54c180bf10 R15: ffff8f4ac3054000 # [ 58.114579] FS: 00007f9345c82580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 58.144835] CS: 0010 DS: 0000 ES: 0000 CR0: 58.784932] Oops: 0010 [#11] SMP NOPTI 0000000080050033 # [ 58.150569] CR2: 00007f9345c80000 CR3: 00000001027ba000 CR4: 00000000001506f0 # [ 58.179875] Call Trace: # [ 58.182325] ? lkdtm_EXEC_USERSPACE.cold+0x69/0xae # [ 58.209286] ? direct_entry.cold+0x2c/0x38 # [ 58.235564] [ 58.810864] CPU: 0 PID: 1814 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 58.840777] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 ? full_proxy_write+0x56/0x80 # [ 58.261750] ? vfs_write+0xea/0x390 # [ 58.287416] ? ksys_write+0x68/0xe0 # [ 58.313085] ? do_syscall_64+0x33/0x40 # [ 58.339012] ? entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 58.365116] Modules linked in:[ 58.846689] RIP: 0010:0x0 fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 58.377535] CR2: 00007f9345c80000 # [ 58.380911] ---[ end trace 3714dc34b20e0744 ]--- # [ 58.385548] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ [ 58.871490] Code: Unable to access opcode bytes at RIP 0xffffffffffffffd6. [58.389607] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 58.408377] RSP: 0018:ffffaa54c08d3e6 58.900535] RSP: 0018:ffffaa54c1883e48 EFLAGS: 00010246 [ 58.927939] RAX: 0000000000000033 RBX: 0000000000000000 RCX: 0000000000000000 0 EFLAGS: 00010286 # [ 58.413664] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 58.420841] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 58.428029] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 00[ 58.935061] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 58.964367] RBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000000 00000000000001 # [ 58.435220] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 58.442405] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 58.449581] FS: 00007f9345c82580(0000) GS:ffff8f4aeac00000(0000) k[ 58.971489] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000a [ 59.000795] R13: ffffaa54c1883f10 R14: ffffaa54c1883f10 R15: ffff8f4ac33c8000 nlGS:0000000000000000 # [ 58.457704] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 58.463481] CR2: 00007f9345c80000 CR3: 00000001027ba000 CR4: 00000000001506f0 # EXEC_USERSPACE: saw 'call trace:': ok ok 35 selftests: lkdtm: EXEC_USERSPACE.s[ 59.007916] FS: 00007f9c02fea580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 59.038175] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 h # selftests: lkdtm: EXEC_NULL.sh [ 59.043909] CR2: ffffffffffffffd6 CR3: 0000000103074000 CR4: 00000000001506f0 [ 59.054234] Call Trace: [ 59.056683] execute_location+0x48/0x56 [ 59.060516] direct_entry.cold+0x2c/0x38 [ 59.064435] full_proxy_write+0x56/0x80 [ 59.068268] vfs_write+0xea/0x390 [ 59.071579] ksys_write+0x68/0xe0 [ 59.074892] do_syscall_64+0x33/0x40 [ 59.078461] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 59.083503] RIP: 0033:0x7f9c02ed6f33 [ 59.087073] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 59.105807] RSP: 002b:00007fff6ceb8f08 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 59.113365] RAX: ffffffffffffffda RBX: 000000000000000a RCX: 00007f9c02ed6f33 [ 59.120486] RDX: 000000000000000a RSI: 00007f9c02dc7000 RDI: 0000000000000001 [ 59.127606] RBP: 00007f9c02dc7000 R08: 00007f9c02dc6010 R09: 0000000000000000 [ 59.134727] R10: 00007f9c02fd51c0 R11: 0000000000000246 R12: 0000000000000001 [ 59.141847] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 59.148974] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 59.161394] CR2: 0000000000000000 [ 59.164747] ---[ end trace 3714dc34b20e0745 ]--- [ 59.169387] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 59.173412] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 59.192177] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 59.197459] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 59.204633] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 59.211824] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 59.219008] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 59.226180] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 59.233355] FS: 00007f9c02fea580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 59.241478] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 59.247250] CR2: ffffffffffffffd6 CR3: 0000000103074000 CR4: 00000000001506f0 [ 59.416801] lkdtm: Performing direct entry ACCESS_USERSPACE # Killed # [ 58.637048] lkdtm: Performing direct entry EXEC_NULL # [ 58.642039] lkdtm: attempting ok execution at ffffffff966b2320 # [ 58.670036] lkdtm: attempting bad execution at 0000000000000000 # [ 58.698177] BUG: kernel NULL pointer derefe[ 59.422388] lkdtm: attempting bad read at 00007fca72a7e000 rence, address: 0000000000000000 # [ 58.727261] #PF: supervisor instruction fetch in kernel mode # [ 58.755092] #PF: error_code(0x0010) - not-present page # [ 58.760220] PGD 0 P4D 0 # [ 58.784932] Oops: 0010 [#11] SMP NOPTI # [ 58.810864] C[ 59.450056] lkdtm: FAIL: survived bad read PU: 0 PID: 1814 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 58.840777] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 58.846689] RIP: 0010:0x0 # [ 58.871490] Code: Unable to access opcode bytes at RIP 0xffffffffffffffd6. [ 59.476340] lkdtm: attempting bad write at 00007fca72a7e000 # [ 58.900535] RSP: 0018:ffffaa54c1883e48 EFLAGS: 00010246 # [ 58.927939] RAX: 0000000000000033 RBX: 0000000000000000 RCX: 0000000000000000 # [ 58.935061] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 58.964367] RBP: 0000[ 59.504075] lkdtm: FAIL: survived bad write 000000000000 R08: 0000000000000000 R09: 0000000000000000 # [ 58.971489] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000a # [ 59.000795] R13: ffffaa54c1883f10 R14: ffffaa54c1883f10 R15: ffff8f4ac33c8000 # [ 59.007916] FS: 00007f9c02fea580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 59.038175] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 59.043909] CR2: ffffffffffffffd6 CR3: 0000000103074000 CR4: 00000000001506f0 # [ 59.054234] Call Trace: # [ 59.056683] execute_location+0x48/0x56 # [ 59.060516] direct_entry.cold+0x2c/0x38 # [ 59.064435] full_proxy_write+0x56/0x80 # [ 59.068268] vfs_write+0xea/0x390 # [ 59.071579] ksys_write+0x68/0xe0 # [ 59.074892] do_syscall_64+0x33/0x40 # [ 59.078461] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 59.083503] RIP: 0033:0x7f9c02ed6f33 # [ 59.087073] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 59.105807] RSP: 002b:00007fff6ceb8f08 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 59.113365] RAX: ffffffffffffffda RBX: 000000000000000a RCX: 00007f9c02ed6f33 # [ 59.120486] RDX: 000000000000000a RSI: 00007f9c02dc7000 RDI: 0000000000000001 # [ 59.127606] RBP: 00007f9c02dc7000 R08: 00007f9c02dc6010 R09: 0000000000000000 # [ 59.134727] R10: 00007f9c02fd51c0 R11: 0000000000000246 R12: 0000000000000001 # [ 59.141847] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 59.148974] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 59.161394] CR2: 0000000000000000 # [ 59.164747] ---[ end trace 3714dc34b20e0745 ]--- # [ 59.169387] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 59.173412] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f [ 59.694024] lkdtm: Performing direct entry ACCESS_NULL 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 59.192177] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 59.197459] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 59.204633] RDX: 0000000000000000 RSI: ffff8f4aeac1bf[ 59.713080] lkdtm: attempting bad read at 0000000000000000 70 RDI: ffffffff972d9a70 # [ 59.211824] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 59.219008] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 59.226180] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R[ 59.740765] BUG: kernel NULL pointer dereference, address: 0000000000000000 15: ffff8f4ac32b8000 # [ 59.233355] FS: 00007f9c02fea580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 59.241478] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 59.247250] CR2: ffffffffffffffd6 CR3: 0000000103074000 CR4: 00000[ 59.769845] #PF: supervisor read access in kernel mode [ 59.797158] #PF: error_code(0x0000) - not-present page 000001506f0 # EXEC_NULL: saw 'call trace:': ok ok 36 selftests: lkdtm: EXEC_NULL.sh # selftests: lkdtm: ACCESS_USERSPACE.sh # [ 59.416801] lkdtm: Performing direct entry ACCESS_USERSPACE # [ 59.422388] lkdtm: attempting bad read at 00007fca72a7e00[ 59.802288] PGD 0 P4D 0 0[ # [ 59.450056] lkdtm: FAIL: survived bad read # [ 59.476340] lkdtm: attempting bad write at 00007fca72a7e000 # [ 59.504075] lkdtm: FAIL: survived bad write # ACCESS_USERSPACE: missing 'call trace:': [FAIL] not ok 37 selftests: lkdtm: ACCESS_US 59.827001] Oops: 0000 [#12] SMP NOPTI ERSPACE.sh # exit=1 # selftests: lkdtm: ACCESS_NULL.sh [ 59.852931] CPU: 0 PID: 1883 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 59.865597] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 59.871511] RIP: 0010:lkdtm_ACCESS_NULL+0x14/0x53 [ 59.876208] Code: 17 9d fd ff be 00 10 00 00 48 89 ef e8 6e bb 3f ff e9 6d ff ff ff 0f 1f 44 00 00 53 31 f6 48 c7 c7 b0 11 6c 97 e8 f1 9c fd ff <48> 8b 1c 25 00 00 00 00 b8 de c0 de c0 48 c7 c7 d8 11 6c 97 48 01 [ 59.894945] RSP: 0018:ffffaa54c198be58 EFLAGS: 00010246 [ 59.900160] RAX: 000000000000002e RBX: 0000000000000027 RCX: 0000000000000000 [ 59.907283] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 59.914405] RBP: ffffffff976c02a1 R08: 0000000000000000 R09: 0000000000000000 [ 59.921527] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000c [ 59.928648] R13: ffffaa54c198bf10 R14: ffffaa54c198bf10 R15: ffff8f4ac326d000 [ 59.935772] FS: 00007fa1c8929580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 59.943849] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 59.949584] CR2: 0000000000000000 CR3: 00000001058e0000 CR4: 00000000001506f0 [ 59.956704] Call Trace: [ 59.959153] direct_entry.cold+0x2c/0x38 [ 59.963073] full_proxy_write+0x56/0x80 [ 59.966905] vfs_write+0xea/0x390 [ 59.970215] ksys_write+0x68/0xe0 [ 59.973527] do_syscall_64+0x33/0x40 [ 59.977097] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 59.982142] RIP: 0033:0x7fa1c8816f33 [ 59.985711] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 60.004448] RSP: 002b:00007ffd355e6f18 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 60.012003] RAX: ffffffffffffffda RBX: 000000000000000c RCX: 00007fa1c8816f33 [ 60.019126] RDX: 000000000000000c RSI: 00007fa1c8707000 RDI: 0000000000000001 [ 60.026246] RBP: 00007fa1c8707000 R08: 00007fa1c8706010 R09: 0000000000000000 [ 60.033368] R10: 00007fa1c89151c0 R11: 0000000000000246 R12: 0000000000000001 [ 60.040489] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 60.047616] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 60.060035] CR2: 0000000000000000 [ 60.063378] ---[ end trace 3714dc34b20e0746 ]--- [ 60.068008] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 60.072016] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 60.090781] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 60.096068] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 60.103239] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 60.110426] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 60.117602] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 60.124768] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 60.131918] FS: 00007fa1c8929580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 60.140009] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 60.145760] CR2: 0000000000000000 CR3: 00000001058e0000 CR4: 00000000001506f0 [ 60.299875] lkdtm: Performing direct entry WRITE_RO # Killed # [ 59.694024] lkdtm: Performing direct entry ACCESS_NULL # [ 59.713080] lkdtm: attempting bad read at 0000000000000000 # [ 59.740765] BUG: kernel NULL pointer dereference, address: 0000000000000000 # [ 59.769845] #PF: supervisor read [ 60.304759] lkdtm: attempting bad rodata write at ffffffff972d9ef0 access in kernel mode # [ 59.797158] #PF: error_code(0x0000) - not-present page # [ 59.802288] PGD 0 P4D 0 # [ 59.827001] Oops: 0000 [#12] SMP NOPTI # [ 59.852931] CPU: 0 PID: 1883 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ [ 60.333141] BUG: unable to handle page fault for address: ffffffff972d9ef0 59.865597] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 59.871511] RIP: 0010:lkdtm_ACCESS_NULL+0x14/0x53 # [ 59.876208] Code: 17 9d fd ff be 00 10 00 00 48 89 ef e8 6e bb 3f ff e9 6d ff ff ff 0f 1f 44 00 00 53 31 f6 48 c7 c7 b0 11 6c 97 e[ 60.362162] #PF: supervisor write access in kernel mode [ 60.389561] #PF: error_code(0x0003) - permissions violation 8 f1 9c fd ff <48> 8b 1c 25 00 00 00 00 b8 de c0 de c0 48 c7 c7 d8 11 6c 97 48 01 # [ 59.894945] RSP: 0018:ffffaa54c198be58 EFLAGS: 00010246 # [ 59.900160] RAX: 000000000000002e RBX: 0000000000000027 RCX: 0000000000000000 # [ 59.907283] RDX: 00000[ 60.395124] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 80000000254001e1 00[000000000 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 59.914405] RBP: ffffffff976c02a1 R08: 0000000000000000 R09: 0000000000000000 # [ 59.921527] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000000c # [ 59.928648] R13: ffffaa54c 60.423997] Oops: 0003 [#13] SMP NOPTI 198bf10 R14: ffffaa54c198bf10 R15: ffff8f4ac326d000 # [ 59.935772] FS: 00007fa1c8929580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 59.943849] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 59.949584] CR2: 0000000000000000 C[ 60.449929] CPU: 0 PID: 1918 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 60.479841] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 R3: 00000001058e0000 CR4: 00000000001506f0 # [ 59.956704] Call Trace: # [ 59.959153] direct_entry.cold+0x2c/0x38 # [ 59.963073] full_proxy_write+0x56/0x80 # [ 59.966905] vfs_write+0xea/0x390 # [ 59.970215] ksys_write+0x68/0xe0 # [ 59.[ 60.485757] RIP: 0010:lkdtm_WRITE_RO+0x2e/0x3a 97[3527] do_syscall_64+0x33/0x40 # [ 59.977097] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 59.982142] RIP: 0033:0x7fa1c8816f33 # [ 59.985711] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 60.512371] Code: 00 48 c7 c7 90 10 6c 97 48 c7 c6 f0 9e 2d 97 e8 93 9f fd ff 48 8b 05 10 11 5e 00 ba 34 12 cd ab 48 c7 c7 c0 10 6c 97 48 31 d0 <48> 89 05 fa 10 5e 00 e9 71 9f fd ff 0f 1f 44 00 00 48 8b 05 21 35 c0[ 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 60.004448] RSP: 002b:00007ffd355e6f18 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 60.012003] RAX: ffffffffffffffda RBX: 000000000000000c RCX: 00 60.553293] RSP: 0018:ffffaa54c1a13e60 EFLAGS: 00010202 [ 60.580695] RAX: 000000000198b861 RBX: 0000000000000028 RCX: 0000000000000000 007fa1c8816f33 # [ 60.019126] RDX: 000000000000000c RSI: 00007fa1c8707000 RDI: 0000000000000001 # [ 60.026246] RBP: 00007fa1c8707000 R08: 00007fa1c8706010 R09: 0000000000000000 # [ 60.033368] R10: 00007fa1c89151c0 R11: 0000000000000246 R12: 000000[ 60.587818] RDX: 00000000abcd1234 RSI: ffff8f4aeac1bf70 RDI: ffffffff976c10c0 [ 60.617124] RBP: ffffffff976c02ad R08: 0000000000000000 R09: 0000000000000000 0000000001 # [ 60.040489] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 60.047616] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 60.060035[ 60.624246] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000009 [ 60.653552] R13: ffffaa54c1a13f10 R14: ffffaa54c1a13f10 R15: ffff8f4ac3500000 ] CR2: 0000000000000000 # [ 60.063378] ---[ end trace 3714dc34b20e0746 ]--- # [ 60.068008] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 60.072016] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc c[ 60.660675] FS: 00007f95bddc0580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 60.690933] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 c cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 60.090781] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 60.096068] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 60.103239] RDX:[ 60.696670] CR2: ffffffff972d9ef0 CR3: 0000000103f84000 CR4: 00000000001506f0 [ 60.725975] Call Trace: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 60.110426] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 60.117602] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 60.124768] R13: fff[ 60.728422] direct_entry.cold+0x2c/0x38 faa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 60.131918] FS: 00007fa1c8929580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 60.140009] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 60.145760] CR2: 000000000000[ 60.754524] full_proxy_write+0x56/0x80 0000 CR3: 00000001058e0000 CR4: 00000000001506f0 # ACCESS_NULL: saw 'call trace:': ok ok 38 selftests: lkdtm: ACCESS_NULL.sh # selftests: lkdtm: WRITE_RO.sh [ 60.780537] vfs_write+0xea/0x390 [ 60.797797] ksys_write+0x68/0xe0 [ 60.801110] do_syscall_64+0x33/0x40 [ 60.804682] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 60.809727] RIP: 0033:0x7f95bdcaef33 [ 60.813298] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 60.832034] RSP: 002b:00007ffefdae8fb8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 60.839592] RAX: ffffffffffffffda RBX: 0000000000000009 RCX: 00007f95bdcaef33 [ 60.846714] RDX: 0000000000000009 RSI: 00007f95bdb9f000 RDI: 0000000000000001 [ 60.853836] RBP: 00007f95bdb9f000 R08: 00007f95bdb9e010 R09: 0000000000000000 [ 60.860958] R10: 00007f95bddad1c0 R11: 0000000000000246 R12: 0000000000000001 [ 60.868081] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 60.875207] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 60.887626] CR2: ffffffff972d9ef0 [ 60.890938] ---[ end trace 3714dc34b20e0747 ]--- [ 60.895551] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 60.899467] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 60.918203] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 60.923420] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 60.930542] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 60.937664] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 60.944787] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 60.951909] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 60.959032] FS: 00007f95bddc0580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 60.967106] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 60.972842] CR2: ffffffff972d9ef0 CR3: 0000000103f84000 CR4: 00000000001506f0 [ 60.979966] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 [ 60.988824] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1918, name: cat [ 60.996379] INFO: lockdep is turned off. [ 61.000293] irq event stamp: 0 [ 61.003342] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 61.009603] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 61.017766] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 61.025930] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 61.032187] CPU: 0 PID: 1918 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 61.039916] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 61.045825] Call Trace: [ 61.048270] dump_stack+0x77/0x97 [ 61.051581] ___might_sleep.cold+0xa6/0xb6 [ 61.055674] exit_signals+0x1c/0x2d0 [ 61.059246] do_exit+0xd5/0xb00 [ 61.062385] ? ksys_write+0x68/0xe0 [ 61.065871] rewind_stack_do_exit+0x17/0x20 [ 61.070047] RIP: 0033:0x7f95bdcaef33 [ 61.073617] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 61.092354] RSP: 002b:00007ffefdae8fb8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 61.099910] RAX: ffffffffffffffda RBX: 0000000000000009 RCX: 00007f95bdcaef33 [ 61.107032] RDX: 0000000000000009 RSI: 00007f95bdb9f000 RDI: 0000000000000001 [ 61.114154] RBP: 00007f95bdb9f000 R08: 00007f95bdb9e010 R09: 0000000000000000 [ 61.121276] R10: 00007f95bddad1c0 R11: 0000000000000246 R12: 0000000000000001 [ 61.128399] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 61.341405] lkdtm: Performing direct entry WRITE_RO_AFTER_INIT # Killed # [ 60.299875] lkdtm: Performing direct entry WRITE_RO # [ 60.304759] lkdtm: attempting bad rodata write at ffffffff972d9ef0 # [ 60.333141] BUG: unable to handle page fault for address: ffffffff972d9ef0 # [ 60.362162] #PF: supervisor w[ 61.347266] lkdtm: attempting bad ro_after_init write at ffffffff9773c328 rite access in kernel mode # [ 60.389561] #PF: error_code(0x0003) - permissions violation # [ 60.395124] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 80000000254001e1 # [ 60.423997] Oops: 0003 [#13] SMP NOPTI # [ 60.449929] CPU: 0 PID: 1918 Comm[ 61.376221] BUG: unable to handle page fault for address: ffffffff9773c328 : cat Tainted: G D W 5.10.125-cip10 #1 # [ 60.479841] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 60.485757] RIP: 0010:lkdtm_WRITE_RO+0x2e/0x3a # [ 60.512371] Code: 00 48 c7 c7 90 10 6c 97 48 c7 c6 f0 9e 2d 97 e8 93 9f fd [ 61.405249] #PF: supervisor write access in kernel mode [ 61.432651] #PF: error_code(0x0003) - permissions violation ff 48 8b 05 10 11 5e 00 ba 34 12 cd ab 48 c7 c7 c0 10 6c 97 48 31 d0 <48> 89 05 fa 10 5e 00 e9 71 9f fd ff 0f 1f 44 00 00 48 8b 05 21 35 # [ 60.553293] RSP: 0018:ffffaa54c1a13e60 EFLAGS: 00010202 # [ 60.580695] RAX: 000000000198b861 RBX: 000000000000[ 61.438213] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 1045b8063 PTE 800000002593c161 00[28 RCX: 0000000000000000 # [ 60.587818] RDX: 00000000abcd1234 RSI: ffff8f4aeac1bf70 RDI: ffffffff976c10c0 # [ 60.617124] RBP: ffffffff976c02ad R08: 0000000000000000 R09: 0000000000000000 # [ 60.624246] R10: 00000000ffffe000 R11: 3fffffffffffffff 61.468212] Oops: 0003 [#14] SMP NOPTI R12: 0000000000000009 # [ 60.653552] R13: ffffaa54c1a13f10 R14: ffffaa54c1a13f10 R15: ffff8f4ac3500000 # [ 60.660675] FS: 00007f95bddc0580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 60.690933] CS: 0010 DS: 0000 ES: 0000 CR0: 000[ 61.494145] CPU: 0 PID: 1953 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 61.524059] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 0000080050033 # [ 60.696670] CR2: ffffffff972d9ef0 CR3: 0000000103f84000 CR4: 00000000001506f0 # [ 60.725975] Call Trace: # [ 60.728422] direct_entry.cold+0x2c/0x38 # [ 60.754524] full_proxy_write+0x56/0x80 # [ 60.780537] vfs_write+0xea/0[ 61.529974] RIP: 0010:lkdtm_WRITE_RO_AFTER_INIT+0x4e/0x5a x3[90 # [ 60.797797] ksys_write+0x68/0xe0 # [ 60.801110] do_syscall_64+0x33/0x40 # [ 60.804682] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 60.809727] RIP: 0033:0x7f95bdcaef33 # [ 60.813298] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 61.557543] Code: 10 6c 97 e9 45 9f fd ff 48 c7 c7 18 11 6c 97 e8 39 9f fd ff 48 8b 05 ee 34 a4 00 ba 34 12 cd ab 48 c7 c7 c0 10 6c 97 48 31 d0 <48> 89 05 d8 34 a4 00 e9 17 9f fd ff 0f 1f 44 00 00 41 54 48 c7 c7 f[f ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 60.832034] RSP: 002b:00007ffefdae8fb8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 60.8395 61.598466] RSP: 0018:ffffaa54c1a6be60 EFLAGS: 00010202 [ 61.625870] RAX: 00000000fe67479e RBX: 0000000000000029 RCX: 0000000000000000 92] RAX: ffffffffffffffda RBX: 0000000000000009 RCX: 00007f95bdcaef33 # [ 60.846714] RDX: 0000000000000009 RSI: 00007f95bdb9f000 RDI: 0000000000000001 # [ 60.853836] RBP: 00007f95bdb9f000 R08: 00007f95bdb9e010 R09: 0000000000000000 # [ 60.860958] [ 61.632993] RDX: 00000000abcd1234 RSI: ffff8f4aeac1bf70 RDI: ffffffff976c10c0 [ 61.662299] RBP: ffffffff976c02b6 R08: 0000000000000000 R09: 0000000000000000 R10: 00007f95bddad1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 60.868081] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 60.875207] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec[ 61.669421] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000014 [ 61.698727] R13: ffffaa54c1a6bf10 R14: ffffaa54c1a6bf10 R15: ffff8f4ac1f9c000 _debugfs cros_ec_dev cros_usbpd_notify # [ 60.887626] CR2: ffffffff972d9ef0 # [ 60.890938] ---[ end trace 3714dc34b20e0747 ]--- # [ 60.895551] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 60.899467] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff [ 61.705850] FS: 00007f8bc4e87580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 61.736108] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 60.918203] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 60.923420] RAX: ffffffff966b1f50 RBX: 000000[ 61.741844] CR2: ffffffff9773c328 CR3: 0000000105780000 CR4: 00000000001506f0 [ 61.771149] Call Trace: 0000000001 RCX: 0000000000000000 # [ 60.930542] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 60.937664] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 60.944787] R10: 00000000ffffe000 R11: 3fffffffff[ 61.773596] direct_entry.cold+0x2c/0x38 ffffff R12: 0000000000000004 # [ 60.951909] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 60.959032] FS: 00007f95bddc0580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 60.967106] CS: 0010 DS: 0000 ES: 0000 CR[ 61.799697] full_proxy_write+0x56/0x80 0: 0000000080050033 # [ 60.972842] CR2: ffffffff972d9ef0 CR3: 0000000103f84000 CR4: 00000000001506f0 # [ 60.979966] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 # [ 60.988824] in_atomic(): 0, irqs_disabled([ 61.825711] vfs_write+0xea/0x390 ): 1, non_block: 0, pid: 1918, name: cat # [ 60.996379] INFO: lockdep is turned off. # [ 61.000293] irq event stamp: 0 # [ 61.003342] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 61.009603] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 61.017766] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 61.025930] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 61.032187] CPU: 0 PID: 1918 Comm: cat Ta[ 61.876700] do_syscall_64+0x33/0x40 inted: G D W 5.10.125-cip10 #1 # [ 61.039916] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 61.045825] Call Trace: # [ 61.048270] dump_stack+0x77/0x97 # [ 61.051581] ___might_sleep.cold+0xa6/0xb6 # [ 61.055674] exit[ 61.902456] entry_SYSCALL_64_after_hwframe+0x44/0xa9 _signals+0x1c/0x2d0 # [ 61.059246] do_exit+0xd5/0xb00 # [ 61.062385] ? ksys_write+0x68/0xe0 # [ 61.065871] rewind_stack_do_exit+0x17/0x20 # [ 61.070047] RIP: 0033:0x7f95bdcaef33 # [ 61.073617] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 [ 61.929686] RIP: 0033:0x7f8bc4da6f33 [ 61.955439] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 61.092354] RSP: 002b:00007ffefdae8fb8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 61.09[ 61.974175] RSP: 002b:00007ffd9323c0c8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 62.003914] RAX: ffffffffffffffda RBX: 0000000000000014 RCX: 00007f8bc4da6f33 9910] RAX: ffffffffffffffda RBX: 0000000000000009 RCX: 00007f95bdcaef33 # [ 61.107032] RDX: 0000000000000009 RSI: 00007f95bdb9f000 RDI: 0000000000000001 # [ 61.114154] RBP: 00007f95bdb9f000 R08: 00007f95bdb9e010 R09: 0000000000000000 # [ 61.121276[ 62.011037] RDX: 0000000000000014 RSI: 00007f8bc4c97000 RDI: 0000000000000001 [ 62.040342] RBP: 00007f8bc4c97000 R08: 00007f8bc4c96010 R09: 0000000000000000 ] R10: 00007f95bddad1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 61.128399] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # WRITE_RO: saw 'call trace:': ok ok 39 selftests: lkdtm: WRITE_RO.sh # selftests: lkdtm: WRITE_RO_AF[ 62.047465] R10: 00007f8bc4ea51c0 R11: 0000000000000246 R12: 0000000000000001 [ 62.076770] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 TER_INIT.sh [ 62.083896] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 62.097426] CR2: ffffffff9773c328 [ 62.100736] ---[ end trace 3714dc34b20e0748 ]--- [ 62.105347] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 62.109261] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 62.127996] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 62.133211] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 62.140332] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 62.147454] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 62.154575] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 62.161697] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 62.168819] FS: 00007f8bc4e87580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 62.176893] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 62.182629] CR2: ffffffff9773c328 CR3: 0000000105780000 CR4: 00000000001506f0 [ 62.189752] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 [ 62.198607] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1953, name: cat [ 62.206162] INFO: lockdep is turned off. [ 62.210076] irq event stamp: 0 [ 62.213123] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 62.219381] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 62.227543] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 62.235704] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 62.241960] CPU: 0 PID: 1953 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 62.249688] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 62.255595] Call Trace: [ 62.258041] dump_stack+0x77/0x97 [ 62.261351] ___might_sleep.cold+0xa6/0xb6 [ 62.265442] exit_signals+0x1c/0x2d0 [ 62.269012] do_exit+0xd5/0xb00 [ 62.272149] ? ksys_write+0x68/0xe0 [ 62.275633] rewind_stack_do_exit+0x17/0x20 [ 62.279808] RIP: 0033:0x7f8bc4da6f33 [ 62.283377] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 62.302112] RSP: 002b:00007ffd9323c0c8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 62.309668] RAX: ffffffffffffffda RBX: 0000000000000014 RCX: 00007f8bc4da6f33 [ 62.316790] RDX: 0000000000000014 RSI: 00007f8bc4c97000 RDI: 0000000000000001 [ 62.323911] RBP: 00007f8bc4c97000 R08: 00007f8bc4c96010 R09: 0000000000000000 [ 62.331033] R10: 00007f8bc4ea51c0 R11: 0000000000000246 R12: 0000000000000001 [ 62.338154] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # Killed # [ 61.341405] lkdtm: Performing direct entry WRITE_RO_AFTER_INIT # [ 61.347266] lkdtm: attempting bad ro_after_init write at ffffffff9773c328 # [ 61.376221] BUG: unable to handle page fault for address: ffffffff9773c328 # [ 61.405249] #PF: supervisor write access in kernel mode # [ 61.432651] #PF: error_code(0x0003) - permissions violation # [ 61.438213] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 1045b8063 PTE 800000002593c161 # [ 61.468212] Oops: 0003 [#14] SMP NOPTI # [ 61.494145] CPU: 0 PID: 1953 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 61.524059] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 61.529974] RIP: 0010:lkdtm_WRITE_RO_AFTER_INIT+0x4e/0x5a # [ 61.557543] Code: 10 6c 97 e9 45 9f fd ff 48 c7 c7 18 11 6c 97 e8 39 9f fd ff 48 8b 05 ee 34 a4 00 ba 34 12 cd ab 48 c7 c7 c0 10 6c 97 48 31 d0 <48> 89 05 d8 34 a4 00 e9 17 9f fd ff 0f 1f 44 00 00 41 54 48 c7 c7 # [ 61.598466] RSP: 0018:ffffaa54c1a6be60 EFLAGS: 00010202 # [ 61.625870] RAX: 00000000fe67479e RBX: 0000000000000029 RCX: 0000000000000000 # [ 61.632993] RDX: 00000000abcd1234 RSI: ffff8f4aeac1bf70 RDI: ffffffff976c10c0 # [ 61.662299] RBP: ffffffff976c02b6 R08: 0000000000000000 R09: 0000000000000000 # [ 62.485197] lkdtm: Performing direct entry WRITE_KERN [ 61.669421] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000014 # [ 61.698727] R13: ffffaa54c1a6bf10 R14: ffffaa54c1a6bf10 R15: ffff8f4ac1f9c000 # [ 61.705850] FS: 00007f8bc4e87580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000[ 62.492302] lkdtm: attempting bad 6580794 byte write at ffffffff96cf8d5a 000 # [ 61.736108] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 61.741844] CR2: ffffffff9773c328 CR3: 0000000105780000 CR4: 00000000001506f0 # [ 61.771149] Call Trace: # [ 61.773596] direct_entry.cold+0x2c/0x38 # [ 61.799697] full[ 62.521201] BUG: unable to handle page fault for address: ffffffff96cf8d5a _proxy_write+0x56/0x80 # [ 61.825711] vfs_write+0xea/0x390 # [ 61.851203] ksys_write+0x68/0xe0 # [ 61.876700] do_syscall_64+0x33/0x40 # [ 61.902456] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 61.929686] RIP: 0033:0x7f8bc4da6f33 # [ [ 62.550224] #PF: supervisor write access in kernel mode 61[.955439] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 61.974175] RSP: 002b:00007ffd9323c0c8 62.577624] #PF: error_code(0x0003) - permissions violation EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 62.003914] RAX: ffffffffffffffda RBX: 0000000000000014 RCX: 00007f8bc4da6f33 # [ 62.011037] RDX: 0000000000000014 RSI: 00007f8bc4c97000 RDI: 0000000000000001 # [ 62.040342] RBP: 00007f8bc4c97000 R08:[ 62.605375] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 24e001e1 0[0007f8bc4c96010 R09: 0000000000000000 # [ 62.047465] R10: 00007f8bc4ea51c0 R11: 0000000000000246 R12: 0000000000000001 # [ 62.076770] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 62.083896] Modules linked in: fuse ip_tab 62.633560] Oops: 0003 [#15] SMP NOPTI les cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 62.097426] CR2: ffffffff9773c328 # [ 62.100736] ---[ end trace 3714dc34b20e0748 ]--- # [ 62.105347] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 62.109261][ 62.659490] CPU: 0 PID: 1988 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 62.689404] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 62.127996] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00[ 62.695320] RIP: 0010:lkdtm_WRITE_KERN+0x38/0x4e 01[0286 # [ 62.133211] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 # [ 62.140332] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 62.147454] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 00000000000000 62.722107] Code: 53 48 c7 c3 5a 8d cf 96 49 89 dc 48 89 da 49 81 ec 20 23 6b 96 4c 89 e6 e8 ec 9e fd ff 48 89 df 4c 89 e1 48 c7 c6 20 23 6b 96 a4 48 c7 c7 c0 10 6c 97 e8 d1 9e fd ff 5b 41 5c e9 b7 fe ff ff 01[ # [ 62.154575] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 # [ 62.161697] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 62.168819] FS: 00007f8bc4e87580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000 62.763030] RSP: 0018:ffffaa54c1af3e50 EFLAGS: 00010246 00[0000000 # [ 62.176893] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 62.182629] CR2: ffffffff9773c328 CR3: 0000000105780000 CR4: 00000000001506f0 # [ 62.189752] BUG: sleeping function called from invalid context at include/linux/percpu-r 62.790435] RAX: 000000000000003c RBX: ffffffff96cf8d5a RCX: 0000000000646a3a ws[em.h:49 # [ 62.198607] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1953, name: cat # [ 62.206162] INFO: lockdep is turned off. # [ 62.210076] irq event stamp: 0 # [ 62.213123] hardirqs last enabled at (0): [<0000000000000000>] 0x0 62.819746] RDX: 0000000000000000 RSI: ffffffff966b2320 RDI: ffffffff96cf8d5a [ 62.849055] RBP: ffffffff976c02ca R08: 0000000000000000 R09: 0000000000000000 # [ 62.219381] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 62.227543] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 62.235704] softirqs last disabled at (0): [<000000000000[ 62.856178] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000646a3a [ 62.885484] R13: ffffaa54c1af3f10 R14: ffffaa54c1af3f10 R15: ffff8f4ac480d000 0000>] 0x0 # [ 62.241960] CPU: 0 PID: 1953 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 62.249688] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 62.255595] Call Trace: # [ 62.258041] dump_stack+0x77/0x97 # [ 62.2613[ 62.892608] FS: 00007fbd718c8580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 62.922867] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 51] ___might_sleep.cold+0xa6/0xb6 # [ 62.265442] exit_signals+0x1c/0x2d0 # [ 62.269012] do_exit+0xd5/0xb00 # [ 62.272149] ? ksys_write+0x68/0xe0 # [ 62.275633] rewind_stack_do_exit+0x17/0x20 # [ 62.279808] RIP: 0033:0x7f8bc4da6f33 # [ [ 62.928603] CR2: ffffffff96cf8d5a CR3: 00000001058ee000 CR4: 00000000001506f0 [ 62.957909] Call Trace: 62.283377] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 62.302112] RSP: 002b:00007ffd9323c0c[ 62.960358] direct_entry.cold+0x2c/0x38 8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 62.309668] RAX: ffffffffffffffda RBX: 0000000000000014 RCX: 00007f8bc4da6f33 # [ 62.316790] RDX: 0000000000000014 RSI: 00007f8bc4c97000 RDI: 0000000000000001 # [ 62.323911] RBP: 00007f8bc4c97000 R0[ 62.986455] full_proxy_write+0x56/0x80 8: 00007f8bc4c96010 R09: 0000000000000000 # [ 62.331033] R10: 00007f8bc4ea51c0 R11: 0000000000000246 R12: 0000000000000001 # [ 62.338154] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # WRITE_RO_AFTER_INIT: saw 'call trace:': ok[ 63.012471] vfs_write+0xea/0x390 ok 40 selftests: lkdtm: WRITE_RO_AFTER_INIT.sh # selftests: lkdtm: WRITE_KERN.sh [ 63.037966] ksys_write+0x68/0xe0 [ 63.048558] do_syscall_64+0x33/0x40 [ 63.052130] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 63.057176] RIP: 0033:0x7fbd717b6f33 [ 63.060747] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 63.079486] RSP: 002b:00007ffda2055578 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 63.087045] RAX: ffffffffffffffda RBX: 000000000000000b RCX: 00007fbd717b6f33 [ 63.094167] RDX: 000000000000000b RSI: 00007fbd716a7000 RDI: 0000000000000001 [ 63.101290] RBP: 00007fbd716a7000 R08: 00007fbd716a6010 R09: 0000000000000000 [ 63.108412] R10: 00007fbd718b51c0 R11: 0000000000000246 R12: 0000000000000001 [ 63.115534] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 63.122661] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 63.135082] CR2: ffffffff96cf8d5a [ 63.138394] ---[ end trace 3714dc34b20e0749 ]--- [ 63.143006] RIP: 0010:lkdtm_BUG+0x5/0x10 [ 63.146922] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea ff ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 [ 63.165656] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 [ 63.170874] RAX: ffffffff966b1f50 RBX: 0000000000000001 RCX: 0000000000000000 [ 63.177996] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 [ 63.185119] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 [ 63.192241] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000004 [ 63.199363] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 [ 63.206487] FS: 00007fbd718c8580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 63.214561] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 63.220297] CR2: ffffffff96cf8d5a CR3: 00000001058ee000 CR4: 00000000001506f0 [ 63.227421] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 [ 63.236278] in_atomic(): 0, irqs_disabled(): 1, non_block: 0, pid: 1988, name: cat [ 63.243834] INFO: lockdep is turned off. [ 63.247748] irq event stamp: 0 [ 63.250799] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 63.257060] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 63.265224] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 63.273388] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 63.279645] CPU: 0 PID: 1988 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 63.287375] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 63.293284] Call Trace: [ 63.295730] dump_stack+0x77/0x97 [ 63.299042] ___might_sleep.cold+0xa6/0xb6 [ 63.303134] exit_signals+0x1c/0x2d0 [ 63.306706] do_exit+0xd5/0xb00 [ 63.309846] ? ksys_write+0x68/0xe0 [ 63.313331] ? lkdtm_SLAB_FREE_CROSS.cold+0x32/0x32 [ 63.318204] rewind_stack_do_exit+0x17/0x20 [ 63.322382] RIP: 0033:0x7fbd717b6f33 [ 63.325954] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 63.344690] RSP: 002b:00007ffda2055578 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 63.352250] RAX: ffffffffffffffda RBX: 000000000000000b RCX: 00007fbd717b6f33 [ 63.359372] RDX: 000000000000000b RSI: 00007fbd716a7000 RDI: 0000000000000001 [ 63.366495] RBP: 00007fbd716a7000 R08: 00007fbd716a6010 R09: 0000000000000000 [ 63.373617] R10: 00007fbd718b51c0 R11: 0000000000000246 R12: 0000000000000001 [ 63.380740] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 63.552420] lkdtm: Performing direct entry REFCOUNT_INC_OVERFLOW # Killed # [ 62.485197] lkdtm: Performing direct entry WRITE_KERN # [ 62.492302] lkdtm: attempting bad 6580794 byte write at ffffffff96cf8d5a # [ 62.521201] BUG: unable to handle page fault for address: ffffffff96cf8d5a # [ 62.550224] #PF: supe[ 63.558493] lkdtm: attempting good refcount_inc() without overflow rvisor write access in kernel mode # [ 62.577624] #PF: error_code(0x0003) - permissions violation # [ 62.605375] PGD 25a29067 P4D 25a29067 PUD 25a2a063 PMD 24e001e1 # [ 62.633560] Oops: 0003 [#15] SMP NOPTI # [ 62.659490] CPU: 0 PID: 1988 Comm[ 63.586852] lkdtm: attempting bad refcount_inc() overflow : cat Tainted: G D W 5.10.125-cip10 #1 # [ 62.689404] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 62.695320] RIP: 0010:lkdtm_WRITE_KERN+0x38/0x4e # [ 62.722107] Code: 53 48 c7 c3 5a 8d cf 96 49 89 dc 48 89 da 49 81 ec 20 2[ 63.614427] ------------[ cut here ]------------ 3 6b 96 4c 89 e6 e8 ec 9e fd ff 48 89 df 4c 89 e1 48 c7 c6 20 23 6b 96 a4 48 c7 c7 c0 10 6c 97 e8 d1 9e fd ff 5b 41 5c e9 b7 fe ff ff # [ 62.763030] RSP: 0018:ffffaa54c1af3e50 EFLAGS: 00010246 # [ 62.790435] RAX: 000000000000003c RBX: ffffffff96[ 63.641226] refcount_t: saturated; leaking memory. cf8d5a RCX: 0000000000646a3a # [ 62.819746] RDX: 0000000000000000 RSI: ffffffff966b2320 RDI: ffffffff96cf8d5a # [ 62.849055] RBP: ffffffff976c02ca R08: 0000000000000000 R09: 0000000000000000 # [ 62.856178] R10: 00000000ffffe000 R11: 3fffffffffffff[ 63.668235] WARNING: CPU: 1 PID: 2023 at lib/refcount.c:22 refcount_warn_saturate+0x49/0xf0 ff R12: 0000000000646a3a # [ 62.885484] R13: ffffaa54c1af3f10 R14: ffffaa54c1af3f10 R15: ffff8f4ac480d000 # [ 62.892608] FS: 00007fbd718c8580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 62.922867] CS: 0010 DS: 0000 ES: 0000 CR0: 0[ 63.698724] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 000000080050033 # [ 62.928603] CR2: ffffffff96cf8d5a CR3: 00000001058ee000 CR4: 00000000001506f0 # [ 62.957909] Call Trace: # [ 62.960358] direct_entry.cold+0x2c/0x38 # [ 62.986455] full_proxy_write+0x56/0x80 # [ 63.012471] vfs_write+0xea[ 63.733340] CPU: 1 PID: 2023 Comm: cat Tainted: G D W 5.10.125-cip10 #1 /0x390 # [ 63.037966] ksys_write+0x68/0xe0 # [ 63.048558] do_syscall_64+0x33/0x40 # [ 63.052130] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 63.057176] RIP: 0033:0x7fbd717b6f33 # [ 63.060747] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 [ 63.763261] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 63.079486] RSP: 002b:00007ffda2055578 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 63.08[ 63.791365] RIP: 0010:refcount_warn_saturate+0x49/0xf0 7045] RAX: ffffffffffffffda RBX: 000000000000000b RCX: 00007fbd717b6f33 # [ 63.094167] RDX: 000000000000000b RSI: 00007fbd716a7000 RDI: 0000000000000001 # [ 63.101290] RBP: 00007fbd716a7000 R08: 00007fbd716a6010 R09: 0000000000000000 # [ 63.108412[ 63.818676] Code: 76 01 00 0f 84 a4 00 00 00 c3 85 f6 74 3e 80 3d 8a 1e 76 01 00 75 f2 48 c7 c7 40 bd 65 97 c6 05 7a 1e 76 01 01 e8 53 1c 93 00 <0f> 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a ] R10: 00007fbd718b51c0 R11: 0000000000000246 R12: 0000000000000001 # [ 63.115534] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 63.122661] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_[ 63.859605] RSP: 0018:ffffaa54c1b5be48 EFLAGS: 00010286 ec_debugfs cros_ec_dev cros_usbpd_notify # [ 63.135082] CR2: ffffffff96cf8d5a # [ 63.138394] ---[ end trace 3714dc34b20e0749 ]--- # [ 63.143006] RIP: 0010:lkdtm_BUG+0x5/0x10 # [ 63.146922] Code: 56 a5 ff 48 c7 c0 ea ff ff ff eb e2 48 c7 c0 ea f[ 63.887006] RAX: 0000000000000000 RBX: 000000000000002b RCX: 0000000000000000 f ff ff c3 48 c7 c0 f4 ff ff ff eb d1 cc cc cc cc cc cc cc cc 0f 1f 44 00 00 <0f> 0b 66 0f 1f 84 00 00 00 00 00 0f 1f 44 00 00 83 05 c0 15 70 02 # [ 63.165656] RSP: 0018:ffffaa54c08d3e60 EFLAGS: 00010286 # [ 63.170874] RAX: ffffffff966b1f50 RBX: 0000[ 63.916325] RDX: ffff8f4aead2c660 RSI: ffff8f4aead1bf70 RDI: ffff8f4aead1bf70 000000000001 RCX: 0000000000000000 # [ 63.177996] RDX: 0000000000000000 RSI: ffff8f4aeac1bf70 RDI: ffffffff972d9a70 # [ 63.185119] RBP: ffffffff9771b490 R08: 0000000000000001 R09: 0000000000000001 # [ 63.192241] R10: 00000000ffffe000 R11: 3fffffff[ 63.945633] RBP: ffffffff976c02d5 R08: 0000000000000000 R09: 0000000000000000 ffffffff R12: 0000000000000004 # [ 63.199363] R13: ffffaa54c08d3f10 R14: ffffaa54c08d3f10 R15: ffff8f4ac32b8000 # [ 63.206487] FS: 00007fbd718c8580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 63.214561] CS: 0010 DS: 0000 ES: 0000 [ 63.974977] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000016 CR0: 0000000080050033 # [ 63.220297] CR2: ffffffff96cf8d5a CR3: 00000001058ee000 CR4: 00000000001506f0 # [ 63.227421] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 # [ 63.236278] in_atomic(): 0, irqs_disable[ 64.004294] R13: ffffaa54c1b5bf10 R14: ffffaa54c1b5bf10 R15: ffff8f4ac58ec000 d(): 1, non_block: 0, pid: 1988, name: cat[ 64.033576] FS: 00007f100cb57580(0000) GS:ffff8f4aead00000(0000) knlGS:0000000000000000 [ 64.045261] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 63.243834] INFO: lockdep is turned off.[ 64.051176] CR2: 00007f100c967000 CR3: 00000001056b2000 CR4: 00000000001506e0 [ 64.062186] Call Trace: [ 64.064651] lkdtm_REFCOUNT_INC_OVERFLOW+0x70/0x94 [ 64.069601] direct_entry.cold+0x2c/0x38 # [ 63.247748] irq event stamp: 0[ 64.073540] full_proxy_write+0x56/0x80 [ 64.080394] vfs_write+0xea/0x390 [ 64.083719] ksys_write+0x68/0xe0 [ 64.087199] do_syscall_64+0x33/0x40 # [ 63.250799] hardirqs last enabled at (0): [<0000000000000000>] 0x0[ 64.090795] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 64.102068] RIP: 0033:0x7f100ca76f33 # [ 63.257060] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80[ 64.105678] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 63.265224] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 63.273388] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 63.279645] CPU: 0 PID: 1988 Comm: cat Tainted: G D W 5.10.125-cip[ 64.132764] RSP: 002b:00007ffd53342ab8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 10 #1 # [ 63.287375] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 63.293284] Call Trace: # [ 63.295730] dump_stack+0x77/0x97 # [ 63.299042] ___might_sleep.cold+0xa6/0xb6 # [ 63.303134] exit_signals+0x1c/0x2d0 # [ 63.306706] [ 64.162521] RAX: ffffffffffffffda RBX: 0000000000000016 RCX: 00007f100ca76f33 do_exit+0xd5/0xb00 # [ 63.309846] ? ksys_write+0x68/0xe0 # [ 63.313331] ? lkdtm_SLAB_FREE_CROSS.cold+0x32/0x32 # [ 63.318204] rewind_stack_do_exit+0x17/0x20 # [ 63.322382] RIP: 0033:0x7fbd717b6f33 # [ 63.325954] Code: 8b 15 61 ef 0c 00 f[ 64.191852] RDX: 0000000000000016 RSI: 00007f100c967000 RDI: 0000000000000001 7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 63.344690] RSP: 002b:00007ffda2055578 EFLAGS: 00000246 ORIG_RAX: 000000000[ 64.221167] RBP: 00007f100c967000 R08: 00007f100c966010 R09: 0000000000000000 0000001 # [ 63.352250] RAX: ffffffffffffffda RBX: 000000000000000b RCX: 00007fbd717b6f33 # [ 63.359372] RDX: 000000000000000b RSI: 00007fbd716a7000 RDI: 0000000000000001[ 64.250474] R10: 00007f100cb751c0 R11: 0000000000000246 R12: 0000000000000001 [ 64.272707] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 63.366495] RBP: 00007fbd716a7000 R08: 00007fbd716a6010 R09: 0000000000000000 [ 64.280091] irq event stamp: 0 # [ 63.373617] R10: 00007fbd718b51c0 R11: 0000000000000246 R12: 0000000000000001 # [ 63.380740] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # WRITE_KERN: saw 'call trace:': ok ok 41 selftests: lkdtm: WRITE_KERN.sh # selftests:[ 64.290455] hardirqs last enabled at (0): [<0000000000000000>] 0x0 lkdtm: REFCOUNT_INC_OVERFLOW.sh [ 64.318862] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 64.329959] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 64.338128] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 64.344389] ---[ end trace 3714dc34b20e074a ]--- [ 64.349003] lkdtm: Overflow detected: saturated # [ 63.552420] lkdtm: Performing direct entry REFCOUNT_INC_OVERFLOW # [ 63.558493] lkdtm: attempting good refcount_inc() without overflow # [ 63.586852] lkdtm: attempting bad refcount_inc() overflow # [ 63.614427] ------------[ cut here ]------------ # [ 63.641226] refcount_t: saturated; leaking memory. # [ 63.668235] WARNING: CPU: 1 PID: 2023 at lib/refcount.c:22 refcount_warn_saturate+0x49/0xf0 # [ 63.698724] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 63.733340] CPU: 1 PID: 2023 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 63.763261] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 63.791365] RIP: 0010:refcount_warn_saturate+0x49/0xf0 # [ 63.818676] Code: 76 01 00 0f 84 a4 00 00 00 c3 85 f6 74 3e 80 3d 8a 1e 76 01 00 75 f2 48 c7 c7 40 bd 65 97 c6 05 7a 1e 76 01 01 e8 53 1c 93 00 <0f> 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a # [ 63.859605] RSP: 0018:ffffaa54c1b5be48 EFLAGS: 00010286 # [ 63.887006] RAX: 00000000[ 64.493245] lkdtm: Performing direct entry REFCOUNT_ADD_OVERFLOW 00000000 RBX: 000000000000002b RCX: 0000000000000000 # [ 63.916325] RDX: ffff8f4aead2c660 RSI: ffff8f4aead1bf70 RDI: ffff8f4aead1bf70 # [ 63.945633] RBP: ffffffff976c02d5 R08: 0000000000000000 R09: 0000000000000000 # [ 63.974977] R10: 00000000ffff[ 64.502467] lkdtm: attempting good refcount_add() without overflow e000 R11: 3fffffffffffffff R12: 0000000000000016 # [ 64.004294] R13: ffffaa54c1b5bf10 R14: ffffaa54c1b5bf10 R15: ffff8f4ac58ec000 # [ 64.033576] FS: 00007f100cb57580(0000) GS:ffff8f4aead00000(0000) knlGS:0000000000000000 # [ 64.045261] CS: 0010 [ 64.530817] lkdtm: attempting bad refcount_add() overflow DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 64.051176] CR2: 00007f100c967000 CR3: 00000001056b2000 CR4: 00000000001506e0 # [ 64.062186] Call Trace: # [ 64.064651] lkdtm_REFCOUNT_INC_OVERFLOW+0x70/0x94 # [ 64.069601] direct_entry.cold+0x2c/0x3[ 64.558401] ------------[ cut here ]------------ 8 # [ 64.073540] full_proxy_write+0x56/0x80 # [ 64.080394] vfs_write+0xea/0x390 # [ 64.083719] ksys_write+0x68/0xe0 # [ 64.087199] do_syscall_64+0x33/0x40 # [ 64.090795] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 64.102068] RIP: 00[ 64.585187] refcount_t: saturated; leaking memory. 33:0x7f100ca76f33 # [ 64.105678] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 64.132764] RS[ 64.612187] WARNING: CPU: 0 PID: 2055 at lib/refcount.c:22 refcount_warn_saturate+0x49/0xf0 P: 002b:00007ffd53342ab8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 64.162521] RAX: ffffffffffffffda RBX: 0000000000000016 RCX: 00007f100ca76f33 # [ 64.191852] RDX: 0000000000000016 RSI: 00007f100c967000 RDI: 0000000000000001 # [ 64.221167] R[ 64.642676] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify BP: 00007f100c967000 R08: 00007f100c966010 R09: 0000000000000000 # [ 64.250474] R10: 00007f100cb751c0 R11: 0000000000000246 R12: 0000000000000001 # [ 64.272707] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 64.280091] irq e[ 64.677276] CPU: 0 PID: 2055 Comm: cat Tainted: G D W 5.10.125-cip10 #1 vent stamp: 0 # [ 64.290455] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 64.318862] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 64.329959] softirqs last enabled at (0): [] co[ 64.707191] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 py_process+0x63c/0x1c80 # [ 64.338128] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 64.344389] ---[ end trace 3714dc34b20e074a ]--- # [ 64.349003] lkdtm: Overflow detected: saturated # REFCOUNT_INC_OVERFLOW: saw 'call trace:': ok [ 64.735280] RIP: 0010:refcount_warn_saturate+0x49/0xf0 ok 42 selftests: lkdtm: REFCOUNT_INC_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_ADD_OVERFLOW.sh [ 64.762603] Code: 76 01 00 0f 84 a4 00 00 00 c3 85 f6 74 3e 80 3d 8a 1e 76 01 00 75 f2 48 c7 c7 40 bd 65 97 c6 05 7a 1e 76 01 01 e8 53 1c 93 00 <0f> 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a [ 64.789686] RSP: 0018:ffffaa54c1bbbe48 EFLAGS: 00010286 [ 64.794993] RAX: 0000000000000000 RBX: 000000000000002c RCX: 0000000000000000 [ 64.802141] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 64.809334] RBP: ffffffff976c02eb R08: 0000000000000000 R09: 0000000000000000 [ 64.816514] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000016 [ 64.823723] R13: ffffaa54c1bbbf10 R14: ffffaa54c1bbbf10 R15: ffff8f4ac4a10000 [ 64.830903] FS: 00007f61ef247580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 64.839026] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 64.844803] CR2: 00007f61ef057000 CR3: 0000000103fa2000 CR4: 00000000001506f0 [ 64.851981] Call Trace: [ 64.854492] lkdtm_REFCOUNT_ADD_OVERFLOW+0x7f/0xa3 [ 64.859331] direct_entry.cold+0x2c/0x38 [ 64.863256] full_proxy_write+0x56/0x80 [ 64.867093] vfs_write+0xea/0x390 [ 64.870407] ksys_write+0x68/0xe0 [ 64.873722] do_syscall_64+0x33/0x40 [ 64.877297] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 64.882383] RIP: 0033:0x7f61ef166f33 [ 64.885967] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 64.904705] RSP: 002b:00007fffa28d4378 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 64.912281] RAX: ffffffffffffffda RBX: 0000000000000016 RCX: 00007f61ef166f33 [ 64.919412] RDX: 0000000000000016 RSI: 00007f61ef057000 RDI: 0000000000000001 [ 64.926541] RBP: 00007f61ef057000 R08: 00007f61ef056010 R09: 0000000000000000 [ 64.933670] R10: 00007f61ef2651c0 R11: 0000000000000246 R12: 0000000000000001 [ 64.940799] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 64.947944] irq event stamp: 0 [ 64.951000] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 64.957264] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 64.965435] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 64.973604] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 64.979883] ---[ end trace 3714dc34b20e074b ]--- [ 64.984507] lkdtm: Overflow detected: saturated # [ 64.493245] lkdtm: Performing direct entry REFCOUNT_ADD_OVERFLOW # [ 64.502467] lkdtm: attempting good refcount_add() without overflow # [ 64.530817] lkdtm: attempting bad refcount_add() overflow # [ 64.558401] ------------[ cut here ]------------ # [ 64.585187] refcount_t: saturated; leaking memory. # [ 64.612187] WARNING: CPU: 0 PID: 2055 at lib/refcount.c:22 refcount_warn_saturate+0x49/0xf0 # [ 64.642676] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 64.677276] CPU: 0 PID: 2055 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 64.707191] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 64.735280] RIP: 0010:refcount_warn_saturate+0x49/0xf0 # [ 64.762603] Code: 76 01 00 0f 84 a4 00 00 00 c3 85 f6 74 3e 80 3d 8a 1e 76 01 00 75 f2 48 c7 c7 40 bd 65 97 c6 05 7a 1e 76 01 01 e8 53 1c 93 00 <0f> 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a # [ 64.789686] RSP: 0018:ffffaa54c1bbbe48 EFLAGS: 00010286 # [ 64.794993] RAX: 0000000000000000 RBX: 000000000000002c RCX: 0000000000000000 # [ 64.802141] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 64.809334] RBP: ffffffff976c02eb R08: 000[ 65.099581] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_OVERFLOW 0000000000000 R09: 0000000000000000 # [ 64.816514] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000016 # [ 64.823723] R13: ffffaa54c1bbbf10 R14: ffffaa54c1bbbf10 R15: ffff8f4ac4a10000 # [ 64.830903] FS: 00007f61ef247580(0000) GS:fff[ 65.125277] lkdtm: attempting bad refcount_inc_not_zero() overflow f8f4aeac00000(0000) knlGS:0000000000000000 # [ 64.839026] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 64.844803] CR2: 00007f61ef057000 CR3: 0000000103fa2000 CR4: 00000000001506f0 # [ 64.851981] Call Trace: # [ 64.854492] lkdtm_REFCOU[ 65.153645] ------------[ cut here ]------------ NT_ADD_OVERFLOW+0x7f/0xa3 # [ 64.859331] direct_entry.cold+0x2c/0x38 # [ 64.863256] full_proxy_write+0x56/0x80 # [ 64.867093] vfs_write+0xea/0x390 # [ 64.870407] ksys_write+0x68/0xe0 # [ 64.873722] do_syscall_64+0x33/0x40 # [ 64.8772[ 65.180428] refcount_t: saturated; leaking memory. 97] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 64.882383] RIP: 0033:0x7f61ef166f33 # [ 64.885967] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff [ 65.207465] WARNING: CPU: 0 PID: 2087 at lib/refcount.c:19 refcount_warn_saturate+0x87/0xf0 ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 64.904705] RSP: 002b:00007fffa28d4378 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 64.912281] RAX: ffffffffffffffda RBX: 0000000000000016 RCX: 00007f61ef166f33 # [ 64.919412] RDX: 000000000[ 65.238006] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 0000016 RSI: 00007f61ef057000 RDI: 0000000000000001 # [ 64.926541] RBP: 00007f61ef057000 R08: 00007f61ef056010 R09: 0000000000000000 # [ 64.933670] R10: 00007f61ef2651c0 R11: 0000000000000246 R12: 0000000000000001 # [ 64.940799] R13: 0000000000000[ 65.272547] CPU: 0 PID: 2087 Comm: cat Tainted: G D W 5.10.125-cip10 #1 001 R14: 0000000000020000 R15: 0000000000020000 # [ 64.947944] irq event stamp: 0 # [ 64.951000] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 64.957264] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 65.302516] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 64.965435] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 64.973604] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 64.979883] ---[ end trace 3714dc34b20e074b ]--- # [ 64.984507] lkdtm: Overflo[ 65.330576] RIP: 0010:refcount_warn_saturate+0x87/0xf0 w detected: saturated # REFCOUNT_ADD_OVERFLOW: saw 'call trace:': ok ok 43 selftests: lkdtm: REFCOUNT_ADD_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh [ 65.357872] Code: 05 5a 1e 76 01 01 e8 34 1c 93 00 0f 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d 1e 76 01 01 e8 15 1c 93 00 <0f> 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b [ 65.391867] RSP: 0018:ffffaa54c1c33e38 EFLAGS: 00010282 [ 65.397126] RAX: 0000000000000000 RBX: 000000007fffffff RCX: 0000000000000000 [ 65.404296] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 65.411464] RBP: ffffffff976bff28 R08: 0000000000000000 R09: 0000000000000000 [ 65.418631] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000001f [ 65.425802] R13: ffffaa54c1c33f10 R14: ffffaa54c1c33f10 R15: ffff8f4ac350b000 [ 65.432962] FS: 00007f915940e3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 65.441084] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 65.446873] CR2: 00007f91591ef000 CR3: 0000000103284000 CR4: 00000000001506f0 [ 65.454053] Call Trace: [ 65.456562] __refcount_add_not_zero.constprop.0+0x2a/0x31 [ 65.462117] lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW+0x3e/0x72 [ 65.467741] direct_entry.cold+0x2c/0x38 [ 65.471750] full_proxy_write+0x56/0x80 [ 65.475653] vfs_write+0xea/0x390 [ 65.479019] ksys_write+0x68/0xe0 [ 65.482411] do_syscall_64+0x33/0x40 [ 65.486038] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 65.491173] RIP: 0033:0x7f91592fef33 [ 65.494802] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 65.513615] RSP: 002b:00007fff6b2eaa68 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 65.521224] RAX: ffffffffffffffda RBX: 000000000000001f RCX: 00007f91592fef33 [ 65.528393] RDX: 000000000000001f RSI: 00007f91591ef000 RDI: 0000000000000001 [ 65.535569] RBP: 00007f91591ef000 R08: 00007f91591ee010 R09: 0000000000000000 [ 65.542724] R10: 00007f91593fd1c0 R11: 0000000000000246 R12: 0000000000000001 [ 65.549858] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 65.557003] irq event stamp: 0 [ 65.560063] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 65.566327] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 65.574499] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 65.582666] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 65.588935] ---[ end trace 3714dc34b20e074c ]--- [ 65.593551] lkdtm: Overflow detected: saturated # [ 65.099581] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_OVERFLOW # [ 65.125277] lkdtm: attempting bad refcount_inc_not_zero() overflow # [ 65.153645] ------------[ cut here ]------------ # [ 65.180428] refcount_t: saturated; leaking memory. # [ 65.207465] WARNING: CPU: 0 PID: 2087 at lib/refcount.c:19 refcount_warn_saturate+0x87/0xf0 # [ 65.238006] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 65.272547] CPU: 0 PID: 2087 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 65.302516] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 65.330576] RIP: 0010:refcount_warn_saturate+0x87/0xf0 # [ 65.357872] Code: 05 5a 1e 76 01 01 e8 34 1c 93 00 0f 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d 1e 76 01 01 e8 15 1c 93 00 <0f> 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b # [ 65.391867] RSP: 0018:ffffaa54c1c33e38 EFLAGS: 00010282 # [ 65.397126] RAX: 0000000000000000 RBX: 000000007fffffff RCX: 0000000000000000 # [ 65.404296] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 65.411464] RBP: ffffffff976bff28 R08: 0000000000000000 R09: 0000000000000000 # [ 65.418631] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000001f # [[ 65.714428] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_OVERFLOW 65.425802] R13: ffffaa54c1c33f10 R14: ffffaa54c1c33f10 R15: ffff8f4ac350b000 # [ 65.432962] FS: 00007f915940e3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 65.441084] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 65.446[ 65.742797] lkdtm: attempting bad refcount_add_not_zero() overflow 873] CR2: 00007f91591ef000 CR3: 0000000103284000 CR4: 00000000001506f0 # [ 65.454053] Call Trace: # [ 65.456562] __refcount_add_not_zero.constprop.0+0x2a/0x31 # [ 65.462117] lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW+0x3e/0x72 # [ 65.467741] direc[ 65.771170] ------------[ cut here ]------------ t_entry.cold+0x2c/0x38 # [ 65.471750] full_proxy_write+0x56/0x80 # [ 65.475653] vfs_write+0xea/0x390 # [ 65.479019] ksys_write+0x68/0xe0 # [ 65.482411] do_syscall_64+0x33/0x40 # [ 65.486038] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [[ 65.797956] refcount_t: saturated; leaking memory. 65.491173] RIP: 0033:0x7f91592fef33 # [ 65.494802] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18[ 65.824964] WARNING: CPU: 0 PID: 2119 at lib/refcount.c:19 refcount_warn_saturate+0x87/0xf0 # [ 65.513615] RSP: 002b:00007fff6b2eaa68 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 65.521224] RAX: ffffffffffffffda RBX: 000000000000001f RCX: 00007f91592fef33 # [ 65.528393] RDX: 000000000000001f RSI: 00007f91591ef000 RDI: 000000000000000[ 65.855482] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 1 # [ 65.535569] RBP: 00007f91591ef000 R08: 00007f91591ee010 R09: 0000000000000000 # [ 65.542724] R10: 00007f91593fd1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 65.549858] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 #[ 65.890062] CPU: 0 PID: 2119 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 65.557003] irq event stamp: 0 # [ 65.560063] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 65.566327] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 65.574499] softirqs last enabled at (0): [<[ 65.920031] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 ffffffff95ef9f9c>] copy_process+0x63c/0x1c80 # [ 65.582666] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 65.588935] ---[ end trace 3714dc34b20e074c ]--- # [ 65.593551] lkdtm: Overflow detected: saturated # REFCOUNT_INC_NOT_ZERO_OVE[ 65.948096] RIP: 0010:refcount_warn_saturate+0x87/0xf0 RFLOW: saw 'call trace:': ok ok 44 selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh [ 65.975433] Code: 05 5a 1e 76 01 01 e8 34 1c 93 00 0f 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d 1e 76 01 01 e8 15 1c 93 00 <0f> 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b [ 66.006618] RSP: 0018:ffffaa54c1ca3e38 EFLAGS: 00010282 [ 66.011885] RAX: 0000000000000000 RBX: 000000007fffffff RCX: 0000000000000000 [ 66.019057] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 66.026223] RBP: ffffffff976bff48 R08: 0000000000000000 R09: 0000000000000000 [ 66.033393] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000001f [ 66.040558] R13: ffffaa54c1ca3f10 R14: ffffaa54c1ca3f10 R15: ffff8f4ac479e000 [ 66.047727] FS: 00007f3bd4057580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 66.055854] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 66.061645] CR2: 00007f3bd3e67000 CR3: 000000010307c000 CR4: 00000000001506f0 [ 66.068835] Call Trace: [ 66.071362] __refcount_add_not_zero.constprop.0+0x2a/0x31 [ 66.076954] lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW+0x3e/0x72 [ 66.082556] direct_entry.cold+0x2c/0x38 [ 66.086544] full_proxy_write+0x56/0x80 [ 66.090416] vfs_write+0xea/0x390 [ 66.093796] ksys_write+0x68/0xe0 [ 66.097148] do_syscall_64+0x33/0x40 [ 66.100807] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 66.105901] RIP: 0033:0x7f3bd3f76f33 [ 66.109527] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 66.128320] RSP: 002b:00007ffdccec3ff8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 66.136024] RAX: ffffffffffffffda RBX: 000000000000001f RCX: 00007f3bd3f76f33 [ 66.143204] RDX: 000000000000001f RSI: 00007f3bd3e67000 RDI: 0000000000000001 [ 66.150410] RBP: 00007f3bd3e67000 R08: 00007f3bd3e66010 R09: 0000000000000000 [ 66.157581] R10: 00007f3bd40751c0 R11: 0000000000000246 R12: 0000000000000001 [ 66.164761] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 66.171913] irq event stamp: 0 [ 66.174983] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 66.181254] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 66.189419] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 66.197601] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 66.203871] ---[ end trace 3714dc34b20e074d ]--- [ 66.208485] lkdtm: Overflow detected: saturated # [ 65.714428] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_OVERFLOW # [ 65.742797] lkdtm: attempting bad refcount_add_not_zero() overflow # [ 65.771170] ------------[ cut here ]------------ # [ 65.797956] refcount_t: saturated; leaking memory. # [ 65.824964] WARNING: CPU: 0 PID: 2119 at lib/refcount.c:19 refcount_warn_saturate+0x87/0xf0 # [ 65.855482] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 65.890062] CPU: 0 PID: 2119 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 65.920031] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 65.948096] RIP: 0010:refcount_warn_saturate+0x87/0xf0 # [ 65.975433] Code: 05 5a 1e 76 01 01 e8 34 1c 93 00 0f 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d 1e 76 01 01 e8 15 1c 93 00 <0f> 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b # [ 66.006618] RSP: 0018:ffffaa54c1ca3e38 EFLAGS: 00010282 # [ 66.011885] RAX: 0000000000000000 RBX: 000000007fffffff RCX: 0000000000000000 # [ 66.019057] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 66.026223] RBP: ffffffff976bff48 R08: 0000000000000000 R09: 0000000000000000 # [ 66.033393] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000001f #[ 66.350437] lkdtm: Performing direct entry REFCOUNT_DEC_ZERO [ 66.040558] R13: ffffaa54c1ca3f10 R14: ffffaa54c1ca3f10 R15: ffff8f4ac479e000 # [ 66.047727] FS: 00007f3bd4057580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 66.055854] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 66.0[ 66.356263] lkdtm: attempting good refcount_dec() 61645] CR2: 00007f3bd3e67000 CR3: 000000010307c000 CR4: 00000000001506f0 # [ 66.068835] Call Trace: # [ 66.071362] __refcount_add_not_zero.constprop.0+0x2a/0x31 # [ 66.076954] lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW+0x3e/0x72 # [ 66.082556] dir[ 66.383121] lkdtm: attempting bad refcount_dec() to zero ect_entry.cold+0x2c/0x38 # [ 66.086544] full_proxy_write+0x56/0x80 # [ 66.090416] vfs_write+0xea/0x390 # [ 66.093796] ksys_write+0x68/0xe0 # [ 66.097148] do_syscall_64+0x33/0x40 # [ 66.100807] entry_SYSCALL_64_after_hwframe+0x44/0xa9 #[ 66.410636] ------------[ cut here ]------------ [ 66.105901] RIP: 0033:0x7f3bd3f76f33 # [ 66.109527] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 [ 66.437414] refcount_t: decrement hit 0; leaking memory. 18 # [ 66.128320] RSP: 002b:00007ffdccec3ff8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 66.136024] RAX: ffffffffffffffda RBX: 000000000000001f RCX: 00007f3bd3f76f33 # [ 66.143204] RDX: 000000000000001f RSI: 00007f3bd3e67000 RDI: 0000000000000[ 66.464937] WARNING: CPU: 0 PID: 2151 at lib/refcount.c:31 refcount_warn_saturate+0xdf/0xf0 001 # [ 66.150410] RBP: 00007f3bd3e67000 R08: 00007f3bd3e66010 R09: 0000000000000000 # [ 66.157581] R10: 00007f3bd40751c0 R11: 0000000000000246 R12: 0000000000000001 # [ 66.164761] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000[ 66.495459] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 66.171913] irq event stamp: 0 # [ 66.174983] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 66.181254] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 66.189419] softirqs last enabled at (0): [ 66.530129] CPU: 0 PID: 2151 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [] copy_process+0x63c/0x1c80 # [ 66.197601] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 66.203871] ---[ end trace 3714dc34b20e074d ]--- # [ 66.208485] lkdtm: Overflow detected: saturated # REFCOUNT_ADD_NOT_ZERO_O[ 66.559969] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 VERFLOW: saw 'call trace:': ok ok 45 selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_DEC_ZERO.sh [ 66.588102] RIP: 0010:refcount_warn_saturate+0xdf/0xf0 [ 66.604721] Code: ff 48 c7 c7 f0 bd 65 97 c6 05 f6 1d 76 01 01 e8 d3 1b 93 00 0f 0b c3 48 c7 c7 c0 bd 65 97 c6 05 e1 1d 76 01 01 e8 bd 1b 93 00 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 00 8b 07 3d 00 00 [ 66.623513] RSP: 0018:ffffaa54c1d1be48 EFLAGS: 00010286 [ 66.628767] RAX: 0000000000000000 RBX: 000000000000002f RCX: 0000000000000000 [ 66.635923] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 66.643069] RBP: ffffffff976c0301 R08: 0000000000000000 R09: 0000000000000000 [ 66.650225] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000012 [ 66.657372] R13: ffffaa54c1d1bf10 R14: ffffaa54c1d1bf10 R15: ffff8f4ac5774000 [ 66.664525] FS: 00007f4f12cf2580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 66.672622] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 66.678400] CR2: 00007f4f12acf000 CR3: 00000001047ba000 CR4: 00000000001506f0 [ 66.685541] Call Trace: [ 66.688040] lkdtm_REFCOUNT_DEC_ZERO+0x4d/0xb9 [ 66.692511] direct_entry.cold+0x2c/0x38 [ 66.696473] full_proxy_write+0x56/0x80 [ 66.700327] vfs_write+0xea/0x390 [ 66.703731] ksys_write+0x68/0xe0 [ 66.707100] do_syscall_64+0x33/0x40 [ 66.710781] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 66.715882] RIP: 0033:0x7f4f12bdef33 [ 66.719505] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 66.738285] RSP: 002b:00007ffe2969fa48 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 66.745919] RAX: ffffffffffffffda RBX: 0000000000000012 RCX: 00007f4f12bdef33 [ 66.753094] RDX: 0000000000000012 RSI: 00007f4f12acf000 RDI: 0000000000000001 [ 66.760324] RBP: 00007f4f12acf000 R08: 00007f4f12ace010 R09: 0000000000000000 [ 66.767507] R10: 00007f4f12cdd1c0 R11: 0000000000000246 R12: 0000000000000001 [ 66.774656] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 66.781820] irq event stamp: 0 [ 66.784896] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 66.791182] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 66.799368] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 66.807568] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 66.813850] ---[ end trace 3714dc34b20e074e ]--- [ 66.818489] lkdtm: Zero detected: saturated # [ 66.350437] lkdtm: Performing direct entry REFCOUNT_DEC_ZERO # [ 66.356263] lkdtm: attempting good refcount_dec() # [ 66.383121] lkdtm: attempting bad refcount_dec() to zero # [ 66.410636] ------------[ cut here ]------------ # [ 66.437414] refcount_t: decrement hit 0; leaking memory. # [ 66.464937] WARNING: CPU: 0 PID: 2151 at lib/refcount.c:31 refcount_warn_saturate+0xdf/0xf0 # [ 66.495459] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 66.530129] CPU: 0 PID: 2151 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 66.559969] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 66.588102] RIP: 0010:refcount_warn_saturate+0xdf/0xf0 # [ 66.604721] Code: ff 48 c7 c7 f0 bd 65 97 c6 05 f6 1d 76 01 01 e8 d3 1b 93 00 0f 0b c3 48 c7 c7 c0 bd 65 97 c6 05 e1 1d 76 01 01 e8 bd 1b 93 00 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 00 8b 07 3d 00 00 # [ 66.623513] RSP: 0018:ffffaa54c1d1be48 EFLAGS: 00010286 # [ 66.628767] RAX: 0000000000000000 RBX: 000000000000002f RCX: 0000000000000000 # [ 66.635923] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 66.643069] RBP: ffffffff976c0301 R08: 00[ 66.955648] lkdtm: Performing direct entry REFCOUNT_DEC_NEGATIVE 00000000000000 R09: 0000000000000000 # [ 66.650225] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000012 # [ 66.657372] R13: ffffaa54c1d1bf10 R14: ffffaa54c1d1bf10 R15: ffff8f4ac5774000 # [ 66.664525] FS: 00007f4f12cf2580(0000) GS:ff[ 66.969023] lkdtm: attempting bad refcount_dec() below zero ff8f4aeac00000(0000) knlGS:0000000000000000 # [ 66.672622] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 66.678400] CR2: 00007f4f12acf000 CR3: 00000001047ba000 CR4: 00000000001506f0 # [ 66.685541] Call Trace: # [ 66.688040] lkdtm_REFCO[ 66.996775] ------------[ cut here ]------------ UNT_DEC_ZERO+0x4d/0xb9 # [ 66.692511] direct_entry.cold+0x2c/0x38 # [ 66.696473] full_proxy_write+0x56/0x80 # [ 66.700327] vfs_write+0xea/0x390 # [ 66.703731] ksys_write+0x68/0xe0 # [ 66.707100] do_syscall_64+0x33/0x40 # [ 66.710781][ 67.023566] refcount_t: decrement hit 0; leaking memory. entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 66.715882] RIP: 0033:0x7f4f12bdef33 # [ 66.719505] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff [ 67.051084] WARNING: CPU: 0 PID: 2186 at lib/refcount.c:31 refcount_warn_saturate+0xdf/0xf0 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 66.738285] RSP: 002b:00007ffe2969fa48 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 66.745919] RAX: ffffffffffffffda RBX: 0000000000000012 RCX: 00007f4f12bdef33 # [ 66.753094] RDX: 000000000000[ 67.081573] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 0012 RSI: 00007f4f12acf000 RDI: 0000000000000001 # [ 66.760324] RBP: 00007f4f12acf000 R08: 00007f4f12ace010 R09: 0000000000000000 # [ 66.767507] R10: 00007f4f12cdd1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 66.774656] R13: 0000000000000001[ 67.116214] CPU: 0 PID: 2186 Comm: cat Tainted: G D W 5.10.125-cip10 #1 R14: 0000000000020000 R15: 0000000000020000 # [ 66.781820] irq event stamp: 0 # [ 66.784896] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 66.791182] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [[ 67.146191] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 66.799368] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 66.807568] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 66.813850] ---[ end trace 3714dc34b20e074e ]--- # [ 66.818489] lkdtm: Zero detec[ 67.174224] RIP: 0010:refcount_warn_saturate+0xdf/0xf0 ted: saturated # REFCOUNT_DEC_ZERO: saw 'call trace:': ok ok 46 selftests: lkdtm: REFCOUNT_DEC_ZERO.sh # selftests: lkdtm: REFCOUNT_DEC_NEGATIVE.sh [ 67.201591] Code: ff 48 c7 c7 f0 bd 65 97 c6 05 f6 1d 76 01 01 e8 d3 1b 93 00 0f 0b c3 48 c7 c7 c0 bd 65 97 c6 05 e1 1d 76 01 01 e8 bd 1b 93 00 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 00 8b 07 3d 00 00 [ 67.233441] RSP: 0018:ffffaa54c1d9be48 EFLAGS: 00010286 [ 67.238697] RAX: 0000000000000000 RBX: 0000000000000030 RCX: 0000000000000000 [ 67.245843] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 67.252993] RBP: ffffffff976c0313 R08: 0000000000000000 R09: 0000000000000000 [ 67.260138] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000016 [ 67.267295] R13: ffffaa54c1d9bf10 R14: ffffaa54c1d9bf10 R15: ffff8f4ac3f80000 [ 67.274441] FS: 00007efcb12363c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 67.282544] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 67.288304] CR2: 00007efcb1017000 CR3: 0000000101fcc000 CR4: 00000000001506f0 [ 67.295449] Call Trace: [ 67.297919] lkdtm_REFCOUNT_DEC_NEGATIVE+0x37/0x5d [ 67.302735] direct_entry.cold+0x2c/0x38 [ 67.306677] full_proxy_write+0x56/0x80 [ 67.310535] vfs_write+0xea/0x390 [ 67.313868] ksys_write+0x68/0xe0 [ 67.317206] do_syscall_64+0x33/0x40 [ 67.320803] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 67.325886] RIP: 0033:0x7efcb1126f33 [ 67.329482] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 67.348263] RSP: 002b:00007ffdc4802b68 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 67.355851] RAX: ffffffffffffffda RBX: 0000000000000016 RCX: 00007efcb1126f33 [ 67.363026] RDX: 0000000000000016 RSI: 00007efcb1017000 RDI: 0000000000000001 [ 67.370173] RBP: 00007efcb1017000 R08: 00007efcb1016010 R09: 0000000000000000 [ 67.377339] R10: 00007efcb12251c0 R11: 0000000000000246 R12: 0000000000000001 [ 67.384484] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 67.391659] irq event stamp: 0 [ 67.394733] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 67.401026] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 67.409210] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 67.417449] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 67.423751] ---[ end trace 3714dc34b20e074f ]--- [ 67.428407] lkdtm: Negative detected: saturated # [ 66.955648] lkdtm: Performing direct entry REFCOUNT_DEC_NEGATIVE # [ 66.969023] lkdtm: attempting bad refcount_dec() below zero # [ 66.996775] ------------[ cut here ]------------ # [ 67.023566] refcount_t: decrement hit 0; leaking memory. # [ 67.051084] WARNING: CPU: 0 PID: 2186 at lib/refcount.c:31 refcount_warn_saturate+0xdf/0xf0 # [ 67.081573] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 67.116214] CPU: 0 PID: 2186 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 67.146191] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 67.174224] RIP: 0010:refcount_warn_saturate+0xdf/0xf0 # [ 67.201591] Code: ff 48 c7 c7 f0 bd 65 97 c6 05 f6 1d 76 01 01 e8 d3 1b 93 00 0f 0b c3 48 c7 c7 c0 bd 65 97 c6 05 e1 1d 76 01 01 e8 bd 1b 93 00 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 00 8b 07 3d 00 00 # [ 67.233441] RSP: 0018:ffffaa54c1d9be48 EFLAGS: 00010286 # [ 67.238697] RAX: 0000000000000000 RBX: 0000000000000030 RCX: 0000000000000000 # [ 67.245843] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 67.252993] RBP: ffffffff976c0313 R08: 0000000000000000 R09: 0000000000000000 # [ 67.260138] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000016 # [ 67.267295[ 67.574283] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_NEGATIVE ] R13: ffffaa54c1d9bf10 R14: ffffaa54c1d9bf10 R15: ffff8f4ac3f80000 # [ 67.274441] FS: 00007efcb12363c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 67.282544] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 67.288304] CR2: 00[ 67.592446] lkdtm: attempting bad refcount_dec_and_test() below zero 007efcb1017000 CR3: 0000000101fcc000 CR4: 00000000001506f0 # [ 67.295449] Call Trace: # [ 67.297919] lkdtm_REFCOUNT_DEC_NEGATIVE+0x37/0x5d # [ 67.302735] direct_entry.cold+0x2c/0x38 # [ 67.306677] full_proxy_write+0x56/0x80 # [ 67.310535][ 67.621011] ------------[ cut here ]------------ vfs_write+0xea/0x390 # [ 67.313868] ksys_write+0x68/0xe0 # [ 67.317206] do_syscall_64+0x33/0x40 # [ 67.320803] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 67.325886] RIP: 0033:0x7efcb1126f33 # [ 67.329482] Code: 8b 15 61 ef 0c 00 f7 d8[ 67.647790] refcount_t: underflow; use-after-free. 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 67.348263] RSP: 002b:00007ffdc4802b68 EFLAGS: 00000246 ORIG_RAX: 0000000000000[ 67.674786] WARNING: CPU: 0 PID: 2221 at lib/refcount.c:28 refcount_warn_saturate+0xa6/0xf0 001 # [ 67.355851] RAX: ffffffffffffffda RBX: 0000000000000016 RCX: 00007efcb1126f33 # [ 67.363026] RDX: 0000000000000016 RSI: 00007efcb1017000 RDI: 0000000000000001 # [ 67.370173] RBP: 00007efcb1017000 R08: 00007efcb1016010 R09: 0000000000000000[ 67.705271] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 67.377339] R10: 00007efcb12251c0 R11: 0000000000000246 R12: 0000000000000001 # [ 67.384484] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 67.391659] irq event stamp: 0 # [ 67.394733] hardirqs last enabled at (0): [<[ 67.739909] CPU: 0 PID: 2221 Comm: cat Tainted: G D W 5.10.125-cip10 #1 0000000000000000>] 0x0 # [ 67.401026] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 67.409210] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 67.417449] softirqs last disabled [ 67.769888] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 at (0): [<0000000000000000>] 0x0 # [ 67.423751] ---[ end trace 3714dc34b20e074f ]--- # [ 67.428407] lkdtm: Negative detected: saturated # REFCOUNT_DEC_NEGATIVE: saw 'Negative detected: saturated': ok ok 47 selftests: lkdtm: REFCOUNT_DEC_NEGATIVE.sh[ 67.797921] RIP: 0010:refcount_warn_saturate+0xa6/0xf0 # selftests: lkdtm: REFCOUNT_DEC_AND_TEST_NEGATIVE.sh [ 67.825265] Code: 05 3d 1e 76 01 01 e8 15 1c 93 00 0f 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b 1e 76 01 01 e8 f6 1b 93 00 <0f> 0b c3 80 3d 0a 1e 76 01 00 0f 85 72 ff ff ff 48 c7 c7 f0 bd 65 [ 67.848893] RSP: 0018:ffffaa54c1e1be40 EFLAGS: 00010286 [ 67.854156] RAX: 0000000000000000 RBX: 0000000000000031 RCX: 0000000000000000 [ 67.861297] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 67.868455] RBP: ffffffff976bff68 R08: 0000000000000000 R09: 0000000000000000 [ 67.875595] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000001f [ 67.882758] R13: ffffaa54c1e1bf10 R14: ffffaa54c1e1bf10 R15: ffff8f4ac5932000 [ 67.889900] FS: 00007fb246ce3580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 67.898011] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 67.903767] CR2: 00007fb246abf000 CR3: 00000001056ca000 CR4: 00000000001506f0 [ 67.910932] Call Trace: [ 67.913407] __refcount_sub_and_test.constprop.0+0x34/0x40 [ 67.918922] lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE+0x3e/0x74 [ 67.924516] direct_entry.cold+0x2c/0x38 [ 67.928471] full_proxy_write+0x56/0x80 [ 67.932326] vfs_write+0xea/0x390 [ 67.935692] ksys_write+0x68/0xe0 [ 67.939048] do_syscall_64+0x33/0x40 [ 67.942701] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 67.947784] RIP: 0033:0x7fb246bcef33 [ 67.951420] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 67.970213] RSP: 002b:00007ffd8efa3418 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 67.977855] RAX: ffffffffffffffda RBX: 000000000000001f RCX: 00007fb246bcef33 [ 67.985030] RDX: 000000000000001f RSI: 00007fb246abf000 RDI: 0000000000000001 [ 67.992233] RBP: 00007fb246abf000 R08: 00007fb246abe010 R09: 0000000000000000 [ 67.999417] R10: 00007fb246ccd1c0 R11: 0000000000000246 R12: 0000000000000001 [ 68.006584] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 68.013783] irq event stamp: 0 [ 68.016896] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 68.023258] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 68.031476] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 68.039695] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 68.046030] ---[ end trace 3714dc34b20e0750 ]--- [ 68.050675] lkdtm: Negative detected: saturated # [ 67.574283] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_NEGATIVE # [ 67.592446] lkdtm: attempting bad refcount_dec_and_test() below zero # [ 67.621011] ------------[ cut here ]------------ # [ 67.647790] refcount_t: underflow; use-after-free. # [ 67.674786] WARNING: CPU: 0 PID: 2221 at lib/refcount.c:28 refcount_warn_saturate+0xa6/0xf0 # [ 67.705271] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 67.739909] CPU: 0 PID: 2221 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 67.769888] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 67.797921] RIP: 0010:refcount_warn_saturate+0xa6/0xf0 # [ 67.825265] Code: 05 3d 1e 76 01 01 e8 15 1c 93 00 0f 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b 1e 76 01 01 e8 f6 1b 93 00 <0f> 0b c3 80 3d 0a 1e 76 01 00 0f 85 72 ff ff ff 48 c7 c7 f0 bd 65 # [ 67.848893] RSP: 0018:ffffaa54c1e1be40 EFLAGS: 00010286 # [ 67.854156] RAX: 0000000000000000 RBX: 0000000000000031 RCX: 0000000000000000 # [ 67.861297] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 67.868455] RBP: ffffffff976bff68 R08: 0000000000000000 R09: 0000000000000000 # [ 67.875595] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000001f # [ 67.882[ 68.179037] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_NEGATIVE 758] R13: ffffaa54c1e1bf10 R14: ffffaa54c1e1bf10 R15: ffff8f4ac5932000 # [ 67.889900] FS: 00007fb246ce3580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 67.898011] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 67.903767] CR2:[ 68.201222] lkdtm: attempting bad refcount_sub_and_test() below zero 00007fb246abf000 CR3: 00000001056ca000 CR4: 00000000001506f0 # [ 67.910932] Call Trace: # [ 67.913407] __refcount_sub_and_test.constprop.0+0x34/0x40 # [ 67.918922] lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE+0x3e/0x74 # [ 67.924516] direct_entry.c[ 68.229752] ------------[ cut here ]------------ old+0x2c/0x38 # [ 67.928471] full_proxy_write+0x56/0x80 # [ 67.932326] vfs_write+0xea/0x390 # [ 67.935692] ksys_write+0x68/0xe0 # [ 67.939048] do_syscall_64+0x33/0x40 # [ 67.942701] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 67.947[ 68.256547] refcount_t: underflow; use-after-free. 784] RIP: 0033:0x7fb246bcef33 # [ 67.951420] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 6[ 68.283550] WARNING: CPU: 0 PID: 2256 at lib/refcount.c:28 refcount_warn_saturate+0xa6/0xf0 7.970213] RSP: 002b:00007ffd8efa3418 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 67.977855] RAX: ffffffffffffffda RBX: 000000000000001f RCX: 00007fb246bcef33 # [ 67.985030] RDX: 000000000000001f RSI: 00007fb246abf000 RDI: 0000000000000001 # [ [ 68.314036] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 67.992233] RBP: 00007fb246abf000 R08: 00007fb246abe010 R09: 0000000000000000 # [ 67.999417] R10: 00007fb246ccd1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 68.006584] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 68.0[ 68.348668] CPU: 0 PID: 2256 Comm: cat Tainted: G D W 5.10.125-cip10 #1 13783] irq event stamp: 0 # [ 68.016896] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 68.023258] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 68.031476] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 68.039695] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 68.046030] ---[ end trace 3714dc34b20e0750 ]--- # [ 68.050675] lkdtm: Negative detected: saturated # REFCOUNT_DEC_AND_TEST_NEGATIVE: sa[ 68.406769] RIP: 0010:refcount_warn_saturate+0xa6/0xf0 w 'Negative detected: saturated': ok ok 48 selftests: lkdtm: REFCOUNT_DEC_AND_TEST_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_SUB_AND_TEST_NEGATIVE.sh [ 68.433981] Code: 05 3d 1e 76 01 01 e8 15 1c 93 00 0f 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b 1e 76 01 01 e8 f6 1b 93 00 <0f> 0b c3 80 3d 0a 1e 76 01 00 0f 85 72 ff ff ff 48 c7 c7 f0 bd 65 [ 68.465925] RSP: 0018:ffffaa54c1e8be40 EFLAGS: 00010286 [ 68.471197] RAX: 0000000000000000 RBX: 0000000000000032 RCX: 0000000000000000 [ 68.478349] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 68.485500] RBP: ffffffff976bff88 R08: 0000000000000000 R09: 0000000000000000 [ 68.492654] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 000000000000001f [ 68.499795] R13: ffffaa54c1e8bf10 R14: ffffaa54c1e8bf10 R15: ffff8f4ac4658000 [ 68.506961] FS: 00007f5bc6e12580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 68.515056] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 68.520834] CR2: 00007f5bc6bef000 CR3: 00000001058e4000 CR4: 00000000001506f0 [ 68.527978] Call Trace: [ 68.530457] __refcount_sub_and_test.constprop.0+0x34/0x40 [ 68.535957] lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE+0x3e/0x77 [ 68.541569] direct_entry.cold+0x2c/0x38 [ 68.545517] full_proxy_write+0x56/0x80 [ 68.549386] vfs_write+0xea/0x390 [ 68.552722] ksys_write+0x68/0xe0 [ 68.556073] do_syscall_64+0x33/0x40 [ 68.559665] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 68.564783] RIP: 0033:0x7f5bc6cfef33 [ 68.568422] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 68.587234] RSP: 002b:00007ffd4e0b9588 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 68.594847] RAX: ffffffffffffffda RBX: 000000000000001f RCX: 00007f5bc6cfef33 [ 68.602033] RDX: 000000000000001f RSI: 00007f5bc6bef000 RDI: 0000000000000001 [ 68.609240] RBP: 00007f5bc6bef000 R08: 00007f5bc6bee010 R09: 0000000000000000 [ 68.616442] R10: 00007f5bc6dfd1c0 R11: 0000000000000246 R12: 0000000000000001 [ 68.623637] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 68.630882] irq event stamp: 0 [ 68.633970] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 68.640290] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 68.648520] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 68.656774] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 68.663086] ---[ end trace 3714dc34b20e0751 ]--- [ 68.667778] lkdtm: Negative detected: saturated # [ 68.179037] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_NEGATIVE # [ 68.201222] lkdtm: attempting bad refcount_sub_and_test() below zero # [ 68.229752] ------------[ cut here ]------------ # [ 68.256547] refcount_t: underflow; use-after-free. # [ 68.283550] WARNING: CPU: 0 PID: 2256 at lib/refcount.c:28 refcount_warn_saturate+0xa6/0xf0 # [ 68.314036] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 68.348668] CPU: 0 PID: 2256 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 68.378564] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 68.406769] RIP: 0010:refcount_warn_saturate+0xa6/0xf0 # [ 68.433981] Code: 05 3d 1e 76 01 01 e8 15 1c 93 00 0f 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b 1e 76 01 01 e8 f6 1b 93 00 <0f> 0b c3 80 3d 0a 1e 76 01 00 0f 85 72 ff ff ff 48 c7 c7 f0 bd 65 # [ 68.465925] RSP: 0018:ffffaa54c1e8be40 EFLAGS: 00010286 # [ 68.471197] RAX: 0000000000000000 RBX: 0000000000000032 RCX: 0000000000000000 # [ 68.478349] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 68.485500] RBP: ffffffff976bff88 R08: 0000000000000000 R09: 0000000000000000 # [ 68.492654] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000[ 68.794525] lkdtm: Performing direct entry REFCOUNT_INC_ZERO 00001f # [ 68.499795] R13: ffffaa54c1e8bf10 R14: ffffaa54c1e8bf10 R15: ffff8f4ac4658000 # [ 68.506961] FS: 00007f5bc6e12580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 68.515056] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 #[ 68.815712] lkdtm: attempting safe refcount_inc_not_zero() from zero [ 68.520834] CR2: 00007f5bc6bef000 CR3: 00000001058e4000 CR4: 00000000001506f0 # [ 68.527978] Call Trace: # [ 68.530457] __refcount_sub_and_test.constprop.0+0x34/0x40 # [ 68.535957] lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE+0x3e/0x77 # [ 68.541[ 68.844250] lkdtm: Good: zero detected 569] direct_entry.cold+0x2c/0x38 # [ 68.545517] full_proxy_write+0x56/0x80 # [ 68.549386] vfs_write+0xea/0x390 # [ 68.552722] ksys_write+0x68/0xe0 # [ 68.556073] do_syscall_64+0x33/0x40 # [ 68.559665] entry_SYSCALL_64_after_hwframe+0x4[ 68.870180] lkdtm: Correctly stayed at zero 4/0xa9 # [ 68.564783] RIP: 0033:0x7f5bc6cfef33 # [ 68.568422] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 [ 68.896535] lkdtm: attempting bad refcount_inc() from zero 89 54 24 18 # [ 68.587234] RSP: 002b:00007ffd4e0b9588 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 68.594847] RAX: ffffffffffffffda RBX: 000000000000001f RCX: 00007f5bc6cfef33 # [ 68.602033] RDX: 000000000000001f RSI: 00007f5bc6bef000 RDI: 0000[ 68.924190] ------------[ cut here ]------------ 000000000001 # [ 68.609240] RBP: 00007f5bc6bef000 R08: 00007f5bc6bee010 R09: 0000000000000000 # [ 68.616442] R10: 00007f5bc6dfd1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 68.623637] R13: 0000000000000001 R14: 0000000000020000 R15: 00000000[ 68.951033] refcount_t: addition on 0; use-after-free. 00020000 # [ 68.630882] irq event stamp: 0 # [ 68.633970] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 68.640290] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 68.648520] softirqs last enabled[ 68.978455] WARNING: CPU: 0 PID: 2288 at lib/refcount.c:25 refcount_warn_saturate+0x68/0xf0 at (0): [] copy_process+0x63c/0x1c80 # [ 68.656774] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 68.663086] ---[ end trace 3714dc34b20e0751 ]--- # [ 68.667778] lkdtm: Negative detected: saturated # REFCOUNT_SUB_A[ 69.008864] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify ND_TEST_NEGATIVE: saw 'Negative detected: saturated': ok ok 49 selftests: lkdtm: REFCOUNT_SUB_AND_TEST_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_INC_ZERO.sh [ 69.043501] CPU: 0 PID: 2288 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 69.064968] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 69.070916] RIP: 0010:refcount_warn_saturate+0x68/0xf0 [ 69.076072] Code: 05 7a 1e 76 01 01 e8 53 1c 93 00 0f 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a 1e 76 01 01 e8 34 1c 93 00 <0f> 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d [ 69.094838] RSP: 0018:ffffaa54c1f0be48 EFLAGS: 00010286 [ 69.100078] RAX: 0000000000000000 RBX: 0000000000000033 RCX: 0000000000000000 [ 69.107238] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 69.114382] RBP: ffffffff976c0329 R08: 0000000000000000 R09: 0000000000000000 [ 69.121536] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000012 [ 69.128683] R13: ffffaa54c1f0bf10 R14: ffffaa54c1f0bf10 R15: ffff8f4ac32e6000 [ 69.135833] FS: 00007f27ead42580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 69.143930] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 69.149694] CR2: 00007f27eab1f000 CR3: 0000000103050000 CR4: 00000000001506f0 [ 69.156841] Call Trace: [ 69.159324] lkdtm_REFCOUNT_INC_ZERO+0x99/0xbd [ 69.163786] direct_entry.cold+0x2c/0x38 [ 69.167755] full_proxy_write+0x56/0x80 [ 69.171609] vfs_write+0xea/0x390 [ 69.174985] ksys_write+0x68/0xe0 [ 69.178346] do_syscall_64+0x33/0x40 [ 69.181993] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 69.187094] RIP: 0033:0x7f27eac2ef33 [ 69.190745] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 69.209541] RSP: 002b:00007ffe38ee7958 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 69.217205] RAX: ffffffffffffffda RBX: 0000000000000012 RCX: 00007f27eac2ef33 [ 69.224382] RDX: 0000000000000012 RSI: 00007f27eab1f000 RDI: 0000000000000001 [ 69.231556] RBP: 00007f27eab1f000 R08: 00007f27eab1e010 R09: 0000000000000000 [ 69.238728] R10: 00007f27ead2d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 69.245900] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 69.253085] irq event stamp: 0 [ 69.256196] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 69.262531] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 69.270756] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 69.279031] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 69.285347] ---[ end trace 3714dc34b20e0752 ]--- [ 69.290024] lkdtm: Zero detected: saturated # [ 68.794525] lkdtm: Performing direct entry REFCOUNT_INC_ZERO # [ 68.815712] lkdtm: attempting safe refcount_inc_not_zero() from zero # [ 68.844250] lkdtm: Good: zero detected # [ 68.870180] lkdtm: Correctly stayed at zero # [ 68.896535] lkdtm: attempting bad refcount_inc() from zero # [ 68.924190] ------------[ cut here ]------------ # [ 68.951033] refcount_t: addition on 0; use-after-free. # [ 68.978455] WARNING: CPU: 0 PID: 2288 at lib/refcount.c:25 refcount_warn_saturate+0x68/0xf0 # [ 69.008864] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 69.043501] CPU: 0 PID: 2288 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 69.064968] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 69.070916] RIP: 0010:refcount_warn_saturate+0x68/0xf0 # [ 69.076072] Code: 05 7a 1e 76 01 01 e8 53 1c 93 00 0f 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a 1e 76 01 01 e8 34 1c 93 00 <0f> 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d # [ 69.094838] RSP: 0018:ffffaa54c1f0be48 EFLAGS: 00010286 # [ 69.100078] RAX: 0000000000000000 RBX: 0000000000000033 RCX: 0000000000000000 # [ 69.107238] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 69.114382] RBP: ffffffff976c0329 R08: 0000000000000000 R09: 0000000000000000 # [ 69.121536] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000012 # [ 69.128683][ 69.430555] lkdtm: Performing direct entry REFCOUNT_ADD_ZERO R13: ffffaa54c1f0bf10 R14: ffffaa54c1f0bf10 R15: ffff8f4ac32e6000 # [ 69.135833] FS: 00007f27ead42580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 69.143930] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 69.149694] CR2: 000[ 69.456511] lkdtm: attempting safe refcount_add_not_zero() from zero 07f27eab1f000 CR3: 0000000103050000 CR4: 00000000001506f0 # [ 69.156841] Call Trace: # [ 69.159324] lkdtm_REFCOUNT_INC_ZERO+0x99/0xbd # [ 69.163786] direct_entry.cold+0x2c/0x38 # [ 69.167755] full_proxy_write+0x56/0x80 # [ 69.171609] vfs[ 69.485050] lkdtm: Good: zero detected _write+0xea/0x390 # [ 69.174985] ksys_write+0x68/0xe0 # [ 69.178346] do_syscall_64+0x33/0x40 # [ 69.181993] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 69.187094] RIP: 0033:0x7f27eac2ef33 # [ 69.190745] Code: 8b 15 61 ef 0c 00 f7 d8 64 8[ 69.510981] lkdtm: Correctly stayed at zero 9 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 69.209541] RSP: 002b:00007ffe38ee7958 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 69.537331] lkdtm: attempting bad refcount_add() from zero # [ 69.217205] RAX: ffffffffffffffda RBX: 0000000000000012 RCX: 00007f27eac2ef33 # [ 69.224382] RDX: 0000000000000012 RSI: 00007f27eab1f000 RDI: 0000000000000001 # [ 69.231556] RBP: 00007f27eab1f000 R08: 00007f27eab1e010 R09: 0000000000000000 # [ [ 69.564986] ------------[ cut here ]------------ 69.238728] R10: 00007f27ead2d1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 69.245900] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 69.253085] irq event stamp: 0 # [ 69.256196] hardirqs last enabled at (0): [<00000[ 69.591825] refcount_t: addition on 0; use-after-free. 00000000000>] 0x0 # [ 69.262531] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 69.270756] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 69.279031] softirqs last disabled at (0[ 69.619254] WARNING: CPU: 0 PID: 2320 at lib/refcount.c:25 refcount_warn_saturate+0x68/0xf0 ): [<0000000000000000>] 0x0 # [ 69.285347] ---[ end trace 3714dc34b20e0752 ]--- # [ 69.290024] lkdtm: Zero detected: saturated # REFCOUNT_INC_ZERO: saw 'call trace:': ok ok 50 selftests: lkdtm: REFCOUNT_INC_ZERO.sh # selftests: lkdtm: REFCOUNT_ADD[ 69.649673] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify _ZERO.sh [ 69.684293] CPU: 0 PID: 2320 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 69.692847] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 69.698809] RIP: 0010:refcount_warn_saturate+0x68/0xf0 [ 69.703959] Code: 05 7a 1e 76 01 01 e8 53 1c 93 00 0f 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a 1e 76 01 01 e8 34 1c 93 00 <0f> 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d [ 69.722738] RSP: 0018:ffffaa54c1f83e48 EFLAGS: 00010286 [ 69.727974] RAX: 0000000000000000 RBX: 0000000000000034 RCX: 0000000000000000 [ 69.735137] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 69.742277] RBP: ffffffff976c033b R08: 0000000000000000 R09: 0000000000000000 [ 69.749436] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000012 [ 69.756578] R13: ffffaa54c1f83f10 R14: ffffaa54c1f83f10 R15: ffff8f4ac3ee2000 [ 69.763748] FS: 00007f635486f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 69.771844] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 69.777634] CR2: 00007f635467f000 CR3: 00000001032b6000 CR4: 00000000001506f0 [ 69.784799] Call Trace: [ 69.787306] lkdtm_REFCOUNT_ADD_ZERO+0x99/0xbd [ 69.791853] direct_entry.cold+0x2c/0x38 [ 69.795848] full_proxy_write+0x56/0x80 [ 69.799735] vfs_write+0xea/0x390 [ 69.803102] ksys_write+0x68/0xe0 [ 69.806493] do_syscall_64+0x33/0x40 [ 69.810159] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 69.815271] RIP: 0033:0x7f635478ef33 [ 69.818894] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 69.837707] RSP: 002b:00007ffda9bda0a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 69.845339] RAX: ffffffffffffffda RBX: 0000000000000012 RCX: 00007f635478ef33 [ 69.852558] RDX: 0000000000000012 RSI: 00007f635467f000 RDI: 0000000000000001 [ 69.859739] RBP: 00007f635467f000 R08: 00007f635467e010 R09: 0000000000000000 [ 69.866923] R10: 00007f635488d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 69.874132] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 69.881342] irq event stamp: 0 [ 69.884428] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 69.890728] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 69.898905] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 69.907088] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 69.913354] ---[ end trace 3714dc34b20e0753 ]--- [ 69.917969] lkdtm: Zero detected: saturated # [ 69.430555] lkdtm: Performing direct entry REFCOUNT_ADD_ZERO # [ 69.456511] lkdtm: attempting safe refcount_add_not_zero() from zero # [ 69.485050] lkdtm: Good: zero detected # [ 69.510981] lkdtm: Correctly stayed at zero # [ 69.537331] lkdtm: attempting bad refcount_add() from zero # [ 69.564986] ------------[ cut here ]------------ # [ 69.591825] refcount_t: addition on 0; use-after-free. # [ 69.619254] WARNING: CPU: 0 PID: 2320 at lib/refcount.c:25 refcount_warn_saturate+0x68/0xf0 # [ 69.649673] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 69.684293] CPU: 0 PID: 2320 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 69.692847] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 69.698809] RIP: 0010:refcount_warn_saturate+0x68/0xf0 # [ 69.703959] Code: 05 7a 1e 76 01 01 e8 53 1c 93 00 0f 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a 1e 76 01 01 e8 34 1c 93 00 <0f> 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d # [ 69.722738] RSP: 0018:ffffaa54c1f83e48 EFLAGS: 00010286 # [ 69.727974] RAX: 0000000000000000 RBX: 0000000000000034 RCX: 0000000000000000 # [ 69.735137] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ [ 70.054418] lkdtm: Performing direct entry REFCOUNT_INC_SATURATED 69.742277] RBP: ffffffff976c033b R08: 0000000000000000 R09: 0000000000000000 # [ 69.749436] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000012 # [ 69.756578] R13: ffffaa54c1f83f10 R14: ffffaa54c1f83f10 R15: ffff8f4ac3ee2000 # [ 69.[ 70.065316] lkdtm: attempting bad refcount_inc() from saturated 763748] FS: 00007f635486f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 69.771844] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 69.777634] CR2: 00007f635467f000 CR3: 00000001032b6000 CR4: 00000000001506f0 # [ 69.784799] C[ 70.093409] ------------[ cut here ]------------ all Trace: # [ 69.787306] lkdtm_REFCOUNT_ADD_ZERO+0x99/0xbd # [ 69.791853] direct_entry.cold+0x2c/0x38 # [ 69.795848] full_proxy_write+0x56/0x80 # [ 69.799735] vfs_write+0xea/0x390 # [ 69.803102] ksys_write+0x68/0xe0 # [ 69.806493] [ 70.120222] refcount_t: saturated; leaking memory. do_syscall_64+0x33/0x40 # [ 69.810159] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 69.815271] RIP: 0033:0x7f635478ef33 # [ 69.818894] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 [ 70.147225] WARNING: CPU: 0 PID: 2355 at lib/refcount.c:22 refcount_warn_saturate+0x49/0xf0 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 69.837707] RSP: 002b:00007ffda9bda0a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 69.845339] RAX: ffffffffffffffda RBX: 0000000000000012 RCX: 00007f63547[ 70.177693] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 8ef33 # [ 69.852558] RDX: 0000000000000012 RSI: 00007f635467f000 RDI: 0000000000000001 # [ 69.859739] RBP: 00007f635467f000 R08: 00007f635467e010 R09: 0000000000000000 # [ 69.866923] R10: 00007f635488d1c0 R11: 0000000000000246 R12: 000000000000000[ 70.212332] CPU: 0 PID: 2355 Comm: cat Tainted: G D W 5.10.125-cip10 #1 1 # [ 69.874132] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 69.881342] irq event stamp: 0 # [ 69.884428] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 69.890728] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 69.898905] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 69.907088] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 69.913354] ---[ end trace 3714dc34b20e0753[ 70.270346] RIP: 0010:refcount_warn_saturate+0x49/0xf0 ]--- # [ 69.917969] lkdtm: Zero detected: saturated # REFCOUNT_ADD_ZERO: saw 'call trace:': ok ok 51 selftests: lkdtm: REFCOUNT_ADD_ZERO.sh # selftests: lkdtm: REFCOUNT_INC_SATURATED.sh [ 70.297706] Code: 76 01 00 0f 84 a4 00 00 00 c3 85 f6 74 3e 80 3d 8a 1e 76 01 00 75 f2 48 c7 c7 40 bd 65 97 c6 05 7a 1e 76 01 01 e8 53 1c 93 00 <0f> 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a [ 70.333231] RSP: 0018:ffffaa54c4007e48 EFLAGS: 00010286 [ 70.338481] RAX: 0000000000000000 RBX: 0000000000000035 RCX: 0000000000000000 [ 70.345648] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 70.352790] RBP: ffffffff976c034d R08: 0000000000000000 R09: 0000000000000000 [ 70.359949] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000017 [ 70.367091] R13: ffffaa54c4007f10 R14: ffffaa54c4007f10 R15: ffff8f4ac326a000 [ 70.374259] FS: 00007f2d09211580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 70.382352] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 70.388145] CR2: 00007f2d08fef000 CR3: 0000000105774000 CR4: 00000000001506f0 [ 70.395289] Call Trace: [ 70.397795] lkdtm_REFCOUNT_INC_SATURATED+0x3c/0x60 [ 70.402702] direct_entry.cold+0x2c/0x38 [ 70.406706] full_proxy_write+0x56/0x80 [ 70.410667] vfs_write+0xea/0x390 [ 70.414014] ksys_write+0x68/0xe0 [ 70.417424] do_syscall_64+0x33/0x40 [ 70.421033] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 70.426156] RIP: 0033:0x7f2d090fef33 [ 70.429781] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 70.448588] RSP: 002b:00007fff8b049038 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 70.456203] RAX: ffffffffffffffda RBX: 0000000000000017 RCX: 00007f2d090fef33 [ 70.463417] RDX: 0000000000000017 RSI: 00007f2d08fef000 RDI: 0000000000000001 [ 70.470601] RBP: 00007f2d08fef000 R08: 00007f2d08fee010 R09: 0000000000000000 [ 70.477809] R10: 00007f2d091fd1c0 R11: 0000000000000246 R12: 0000000000000001 [ 70.484991] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 70.492153] irq event stamp: 0 [ 70.495256] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 70.501549] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 70.509758] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 70.517936] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 70.524194] ---[ end trace 3714dc34b20e0754 ]--- [ 70.528806] lkdtm: Saturation detected: still saturated # [ 70.054418] lkdtm: Performing direct entry REFCOUNT_INC_SATURATED # [ 70.065316] lkdtm: attempting bad refcount_inc() from saturated # [ 70.093409] ------------[ cut here ]------------ # [ 70.120222] refcount_t: saturated; leaking memory. # [ 70.147225] WARNING: CPU: 0 PID: 2355 at lib/refcount.c:22 refcount_warn_saturate+0x49/0xf0 # [ 70.177693] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 70.212332] CPU: 0 PID: 2355 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 70.242312] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 70.270346] RIP: 0010:refcount_warn_saturate+0x49/0xf0 # [ 70.297706] Code: 76 01 00 0f 84 a4 00 00 00 c3 85 f6 74 3e 80 3d 8a 1e 76 01 00 75 f2 48 c7 c7 40 bd 65 97 c6 05 7a 1e 76 01 01 e8 53 1c 93 00 <0f> 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a # [ 70.333231] RSP: 0018:ffffaa54c4007e48 EFLAGS: 00010286 # [ 70.338481] RAX: 0000000000000000 RBX: 0000000000000035 RCX: 0000000000000000 # [ 70.345648] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 70.352790] RBP: ffffffff976c034d R08: 0000000000000000 R09: 0000000000000000 # [ 70.359949] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000017 # [ [ 70.669791] lkdtm: Performing direct entry REFCOUNT_DEC_SATURATED 70.367091] R13: ffffaa54c4007f10 R14: ffffaa54c4007f10 R15: ffff8f4ac326a000 # [ 70.374259] FS: 00007f2d09211580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 70.382352] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 70.38814[ 70.680719] lkdtm: attempting bad refcount_dec() from saturated 5] CR2: 00007f2d08fef000 CR3: 0000000105774000 CR4: 00000000001506f0 # [ 70.395289] Call Trace: # [ 70.397795] lkdtm_REFCOUNT_INC_SATURATED+0x3c/0x60 # [ 70.402702] direct_entry.cold+0x2c/0x38 # [ 70.406706] full_proxy_write+0x56/0x80 # [ [ 70.708808] ------------[ cut here ]------------ 70.410667] vfs_write+0xea/0x390 # [ 70.414014] ksys_write+0x68/0xe0 # [ 70.417424] do_syscall_64+0x33/0x40 # [ 70.421033] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 70.426156] RIP: 0033:0x7f2d090fef33 # [ 70.429781] Code: 8b 15 61 ef [ 70.735623] refcount_t: decrement hit 0; leaking memory. 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 70.448588] RSP: 002b:00007fff8b049038 EFLAGS: 00000246 ORIG_RAX: 00[ 70.763154] WARNING: CPU: 0 PID: 2390 at lib/refcount.c:31 refcount_warn_saturate+0xdf/0xf0 00000000000001 # [ 70.456203] RAX: ffffffffffffffda RBX: 0000000000000017 RCX: 00007f2d090fef33 # [ 70.463417] RDX: 0000000000000017 RSI: 00007f2d08fef000 RDI: 0000000000000001 # [ 70.470601] RBP: 00007f2d08fef000 R08: 00007f2d08fee010 R09: 000000[ 70.793615] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 0000000000 # [ 70.477809] R10: 00007f2d091fd1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 70.484991] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 70.492153] irq event stamp: 0 # [ 70.495256] hardirqs last enabled[ 70.828253] CPU: 0 PID: 2390 Comm: cat Tainted: G D W 5.10.125-cip10 #1 at (0): [<0000000000000000>] 0x0 # [ 70.501549] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 70.509758] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 70.517936] softirqs las[ 70.858229] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 t disabled at (0): [<0000000000000000>] 0x0 # [ 70.524194] ---[ end trace 3714dc34b20e0754 ]--- # [ 70.528806] lkdtm: Saturation detected: still saturated # REFCOUNT_INC_SATURATED: saw 'Saturation detected: still saturated': ok ok 52 selftests: lkd[ 70.886259] RIP: 0010:refcount_warn_saturate+0xdf/0xf0 tm: REFCOUNT_INC_SATURATED.sh # selftests: lkdtm: REFCOUNT_DEC_SATURATED.sh [ 70.913605] Code: ff 48 c7 c7 f0 bd 65 97 c6 05 f6 1d 76 01 01 e8 d3 1b 93 00 0f 0b c3 48 c7 c7 c0 bd 65 97 c6 05 e1 1d 76 01 01 e8 bd 1b 93 00 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 00 8b 07 3d 00 00 [ 70.939074] RSP: 0018:ffffaa54c4077e48 EFLAGS: 00010286 [ 70.944328] RAX: 0000000000000000 RBX: 0000000000000036 RCX: 0000000000000000 [ 70.951468] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 70.958631] RBP: ffffffff976c0364 R08: 0000000000000000 R09: 0000000000000000 [ 70.965780] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000017 [ 70.972932] R13: ffffaa54c4077f10 R14: ffffaa54c4077f10 R15: ffff8f4ac279e000 [ 70.980078] FS: 00007f1001653580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 70.988182] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 70.993940] CR2: 00007f100142f000 CR3: 00000001034a6000 CR4: 00000000001506f0 [ 71.001089] Call Trace: [ 71.003564] lkdtm_REFCOUNT_DEC_SATURATED+0x37/0x5b [ 71.008468] direct_entry.cold+0x2c/0x38 [ 71.012411] full_proxy_write+0x56/0x80 [ 71.016276] vfs_write+0xea/0x390 [ 71.019612] ksys_write+0x68/0xe0 [ 71.022962] do_syscall_64+0x33/0x40 [ 71.026562] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 71.031659] RIP: 0033:0x7f100153ef33 [ 71.035256] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 71.054041] RSP: 002b:00007fff94ce1908 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 71.061628] RAX: ffffffffffffffda RBX: 0000000000000017 RCX: 00007f100153ef33 [ 71.068805] RDX: 0000000000000017 RSI: 00007f100142f000 RDI: 0000000000000001 [ 71.075956] RBP: 00007f100142f000 R08: 00007f100142e010 R09: 0000000000000000 [ 71.083142] R10: 00007f100163d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 71.090300] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 71.097469] irq event stamp: 0 [ 71.100546] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 71.106850] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 71.115044] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 71.123262] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 71.129542] ---[ end trace 3714dc34b20e0755 ]--- [ 71.134188] lkdtm: Saturation detected: still saturated # [ 70.669791] lkdtm: Performing direct entry REFCOUNT_DEC_SATURATED # [ 70.680719] lkdtm: attempting bad refcount_dec() from saturated # [ 70.708808] ------------[ cut here ]------------ # [ 70.735623] refcount_t: decrement hit 0; leaking memory. # [ 70.763154] WARNING: CPU: 0 PID: 2390 at lib/refcount.c:31 refcount_warn_saturate+0xdf/0xf0 # [ 70.793615] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 70.828253] CPU: 0 PID: 2390 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 70.858229] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 70.886259] RIP: 0010:refcount_warn_saturate+0xdf/0xf0 # [ 70.913605] Code: ff 48 c7 c7 f0 bd 65 97 c6 05 f6 1d 76 01 01 e8 d3 1b 93 00 0f 0b c3 48 c7 c7 c0 bd 65 97 c6 05 e1 1d 76 01 01 e8 bd 1b 93 00 <0f> 0b c3 66 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 00 8b 07 3d 00 00 # [ 70.939074] RSP: 0018:ffffaa54c4077e48 EFLAGS: 00010286 # [ 70.944328] RAX: 0000000000000000 RBX: 0000000000000036 RCX: 0000000000000000 # [ 70.951468] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 70.958631] RBP: ffffffff976c0364 R08: 0000000000000000 R09: 0000000000000000 # [ 70.965780] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000017 # [ 70.97[ 71.289227] lkdtm: Performing direct entry REFCOUNT_ADD_SATURATED 2932] R13: ffffaa54c4077f10 R14: ffffaa54c4077f10 R15: ffff8f4ac279e000 # [ 70.980078] FS: 00007f1001653580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 70.988182] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 70.993940] CR2[ 71.297804] lkdtm: attempting bad refcount_dec() from saturated : 00007f100142f000 CR3: 00000001034a6000 CR4: 00000000001506f0 # [ 71.001089] Call Trace: # [ 71.003564] lkdtm_REFCOUNT_DEC_SATURATED+0x37/0x5b # [ 71.008468] direct_entry.cold+0x2c/0x38 # [ 71.012411] full_proxy_write+0x56/0x80 # [ 71.01[ 71.325914] ------------[ cut here ]------------ 6276] vfs_write+0xea/0x390 # [ 71.019612] ksys_write+0x68/0xe0 # [ 71.022962] do_syscall_64+0x33/0x40 # [ 71.026562] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 71.031659] RIP: 0033:0x7f100153ef33 # [ 71.035256] Code: 8b 15 61 ef 0c 00 [ 71.352715] refcount_t: saturated; leaking memory. f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 71.054041] RSP: 002b:00007fff94ce1908 EFLAGS: 00000246 ORIG_RAX: 00000000[ 71.379719] WARNING: CPU: 0 PID: 2425 at lib/refcount.c:22 refcount_warn_saturate+0x49/0xf0 00000001 # [ 71.061628] RAX: ffffffffffffffda RBX: 0000000000000017 RCX: 00007f100153ef33 # [ 71.068805] RDX: 0000000000000017 RSI: 00007f100142f000 RDI: 0000000000000001 # [ 71.075956] RBP: 00007f100142f000 R08: 00007f100142e010 R09: 000000000000[ 71.410188] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 0000 # [ 71.083142] R10: 00007f100163d1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 71.090300] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 71.097469] irq event stamp: 0 # [ 71.100546] hardirqs last enabled at (0[ 71.444832] CPU: 0 PID: 2425 Comm: cat Tainted: G D W 5.10.125-cip10 #1 ): [<0000000000000000>] 0x0 # [ 71.106850] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 71.115044] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 71.123262] softirqs last disa[ 71.474797] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 bled at (0): [<0000000000000000>] 0x0 # [ 71.129542] ---[ end trace 3714dc34b20e0755 ]--- # [ 71.134188] lkdtm: Saturation detected: still saturated # REFCOUNT_DEC_SATURATED: saw 'Saturation detected: still saturated': ok ok 53 selftests: lkdtm: RE[ 71.502836] RIP: 0010:refcount_warn_saturate+0x49/0xf0 FCOUNT_DEC_SATURATED.sh # selftests: lkdtm: REFCOUNT_ADD_SATURATED.sh [ 71.530171] Code: 76 01 00 0f 84 a4 00 00 00 c3 85 f6 74 3e 80 3d 8a 1e 76 01 00 75 f2 48 c7 c7 40 bd 65 97 c6 05 7a 1e 76 01 01 e8 53 1c 93 00 <0f> 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a [ 71.555100] RSP: 0018:ffffaa54c40f7e48 EFLAGS: 00010286 [ 71.560359] RAX: 0000000000000000 RBX: 0000000000000037 RCX: 0000000000000000 [ 71.567504] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 71.574666] RBP: ffffffff976c037b R08: 0000000000000000 R09: 0000000000000000 [ 71.581811] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000017 [ 71.588980] R13: ffffaa54c40f7f10 R14: ffffaa54c40f7f10 R15: ffff8f4ac1f7d000 [ 71.596126] FS: 00007f344318e3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 71.604242] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 71.609998] CR2: 00007f3442f6f000 CR3: 00000001045ea000 CR4: 00000000001506f0 [ 71.617169] Call Trace: [ 71.619641] lkdtm_REFCOUNT_ADD_SATURATED+0x3c/0x60 [ 71.624573] direct_entry.cold+0x2c/0x38 [ 71.628532] full_proxy_write+0x56/0x80 [ 71.632440] vfs_write+0xea/0x390 [ 71.635829] ksys_write+0x68/0xe0 [ 71.639259] do_syscall_64+0x33/0x40 [ 71.642881] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 71.648014] RIP: 0033:0x7f344307ef33 [ 71.651633] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 71.670432] RSP: 002b:00007ffc82625398 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 71.678108] RAX: ffffffffffffffda RBX: 0000000000000017 RCX: 00007f344307ef33 [ 71.685289] RDX: 0000000000000017 RSI: 00007f3442f6f000 RDI: 0000000000000001 [ 71.692526] RBP: 00007f3442f6f000 R08: 00007f3442f6e010 R09: 0000000000000000 [ 71.699703] R10: 00007f344317d1c0 R11: 0000000000000246 R12: 0000000000000001 [ 71.706890] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 71.714086] irq event stamp: 0 [ 71.717177] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 71.723454] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 71.731628] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 71.739795] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 71.746072] ---[ end trace 3714dc34b20e0756 ]--- [ 71.750691] lkdtm: Saturation detected: still saturated # [ 71.289227] lkdtm: Performing direct entry REFCOUNT_ADD_SATURATED # [ 71.297804] lkdtm: attempting bad refcount_dec() from saturated # [ 71.325914] ------------[ cut here ]------------ # [ 71.352715] refcount_t: saturated; leaking memory. # [ 71.379719] WARNING: CPU: 0 PID: 2425 at lib/refcount.c:22 refcount_warn_saturate+0x49/0xf0 # [ 71.410188] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 71.444832] CPU: 0 PID: 2425 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 71.474797] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 71.502836] RIP: 0010:refcount_warn_saturate+0x49/0xf0 # [ 71.530171] Code: 76 01 00 0f 84 a4 00 00 00 c3 85 f6 74 3e 80 3d 8a 1e 76 01 00 75 f2 48 c7 c7 40 bd 65 97 c6 05 7a 1e 76 01 01 e8 53 1c 93 00 <0f> 0b c3 80 3d 6a 1e 76 01 00 75 d3 48 c7 c7 68 bd 65 97 c6 05 5a # [ 71.555100] RSP: 0018:ffffaa54c40f7e48 EFLAGS: 00010286 # [ 71.560359] RAX: 0000000000000000 RBX: 0000000000000037 RCX: 0000000000000000 # [ 71.567504] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 71.574666] RBP: ffffffff976c037b R08: 0000000000000000 R09: 0000000000000000 # [ 71.581811] R10: 000[ 71.883529] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_SATURATED 00000ffffe000 R11: 3fffffffffffffff R12: 0000000000000017 # [ 71.588980] R13: ffffaa54c40f7f10 R14: ffffaa54c40f7f10 R15: ffff8f4ac1f7d000 # [ 71.596126] FS: 00007f344318e3c0(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 71.604242] C[ 71.897050] lkdtm: attempting bad refcount_inc_not_zero() from saturated S: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 71.609998] CR2: 00007f3442f6f000 CR3: 00000001045ea000 CR4: 00000000001506f0 # [ 71.617169] Call Trace: # [ 71.619641] lkdtm_REFCOUNT_ADD_SATURATED+0x3c/0x60 # [ 71.624573] direct_entry.col[ 71.925962] ------------[ cut here ]------------ d+0x2c/0x38 # [ 71.628532] full_proxy_write+0x56/0x80 # [ 71.632440] vfs_write+0xea/0x390 # [ 71.635829] ksys_write+0x68/0xe0 # [ 71.639259] do_syscall_64+0x33/0x40 # [ 71.642881] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 71.64801[ 71.952753] refcount_t: saturated; leaking memory. 4] RIP: 0033:0x7f344307ef33 # [ 71.651633] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 71.[ 71.979763] WARNING: CPU: 1 PID: 2457 at lib/refcount.c:19 refcount_warn_saturate+0x87/0xf0 670432] RSP: 002b:00007ffc82625398 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 71.678108] RAX: ffffffffffffffda RBX: 0000000000000017 RCX: 00007f344307ef33 # [ 71.685289] RDX: 0000000000000017 RSI: 00007f3442f6f000 RDI: 0000000000000001 # [ 71[ 72.010253] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify .692526] RBP: 00007f3442f6f000 R08: 00007f3442f6e010 R09: 0000000000000000 # [ 71.699703] R10: 00007f344317d1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 71.706890] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 71.714[ 72.044873] CPU: 1 PID: 2457 Comm: cat Tainted: G D W 5.10.125-cip10 #1 086] irq event stamp: 0 # [ 71.717177] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 71.723454] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 71.731628] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 71.739795] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 71.746072] ---[ end trace 3714dc34b20e0756 ]--- # [ 71.750691] lkdtm: Saturation detected: still saturated # REFCOUNT_ADD_SATURATED: saw [ 72.102891] RIP: 0010:refcount_warn_saturate+0x87/0xf0 'Saturation detected: still saturated': ok ok 54 selftests: lkdtm: REFCOUNT_ADD_SATURATED.sh # selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_SATURATED.sh [ 72.130187] Code: 05 5a 1e 76 01 01 e8 34 1c 93 00 0f 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d 1e 76 01 01 e8 15 1c 93 00 <0f> 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b [ 72.161969] RSP: 0018:ffffaa54c4167e38 EFLAGS: 00010282 [ 72.167192] RAX: 0000000000000000 RBX: 00000000c0000000 RCX: 0000000000000000 [ 72.174318] RDX: ffff8f4aead2c660 RSI: ffff8f4aead1bf70 RDI: ffff8f4aead1bf70 [ 72.181445] RBP: ffffffff976bffa8 R08: 0000000000000000 R09: 0000000000000000 [ 72.188572] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000020 [ 72.195701] R13: ffffaa54c4167f10 R14: ffffaa54c4167f10 R15: ffff8f4ac3fe5000 [ 72.202828] FS: 00007fc41ebcf580(0000) GS:ffff8f4aead00000(0000) knlGS:0000000000000000 [ 72.210910] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 72.216650] CR2: 00007fc41e9df000 CR3: 00000001058e4000 CR4: 00000000001506e0 [ 72.223778] Call Trace: [ 72.226230] __refcount_add_not_zero.constprop.0+0x2a/0x31 [ 72.231706] lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED+0x3e/0x72 [ 72.237365] direct_entry.cold+0x2c/0x38 [ 72.241290] full_proxy_write+0x56/0x80 [ 72.245127] vfs_write+0xea/0x390 [ 72.248443] ksys_write+0x68/0xe0 [ 72.251760] do_syscall_64+0x33/0x40 [ 72.255336] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 72.260386] RIP: 0033:0x7fc41eaeef33 [ 72.263960] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 72.282700] RSP: 002b:00007fff6b76f0f8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 72.290262] RAX: ffffffffffffffda RBX: 0000000000000020 RCX: 00007fc41eaeef33 [ 72.297389] RDX: 0000000000000020 RSI: 00007fc41e9df000 RDI: 0000000000000001 [ 72.304524] RBP: 00007fc41e9df000 R08: 00007fc41e9de010 R09: 0000000000000000 [ 72.311652] R10: 00007fc41ebed1c0 R11: 0000000000000246 R12: 0000000000000001 [ 72.318778] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 72.325916] irq event stamp: 0 [ 72.328972] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 72.335238] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 72.343408] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 72.351575] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 72.357836] ---[ end trace 3714dc34b20e0757 ]--- [ 72.362451] lkdtm: Saturation detected: still saturated # [ 71.883529] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_SATURATED # [ 71.897050] lkdtm: attempting bad refcount_inc_not_zero() from saturated # [ 71.925962] ------------[ cut here ]------------ # [ 71.952753] refcount_t: saturated; leaking memory. # [ 71.979763] WARNING: CPU: 1 PID: 2457 at lib/refcount.c:19 refcount_warn_saturate+0x87/0xf0 # [ 72.010253] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 72.044873] CPU: 1 PID: 2457 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 72.074777] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 72.102891] RIP: 0010:refcount_warn_saturate+0x87/0xf0 # [ 72.130187] Code: 05 5a 1e 76 01 01 e8 34 1c 93 00 0f 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d 1e 76 01 01 e8 15 1c 93 00 <0f> 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b # [ 72.161969] RSP: 0018:ffffaa54c4167e38 EFLAGS: 00010282 # [ 72.167192] RAX: 0000000000000000 RBX: 00000000c0000000 RCX: 0000000000000000 # [ 72.174318] RDX: ffff8f4aead2c660 RSI: ffff8f4aead1bf70 RDI: ffff8f4aead1bf70 # [ 72.181445] RBP: ffffffff976bffa8 R08: 0000000000000000 R09: 0000000000000000 # [ 72.188572] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000020 # [ 72[ 72.496604] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_SATURATED .195701] R13: ffffaa54c4167f10 R14: ffffaa54c4167f10 R15: ffff8f4ac3fe5000 # [ 72.202828] FS: 00007fc41ebcf580(0000) GS:ffff8f4aead00000(0000) knlGS:0000000000000000 # [ 72.210910] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 72.216650] [ 72.518474] lkdtm: attempting bad refcount_add_not_zero() from saturated CR2: 00007fc41e9df000 CR3: 00000001058e4000 CR4: 00000000001506e0 # [ 72.223778] Call Trace: # [ 72.226230] __refcount_add_not_zero.constprop.0+0x2a/0x31 # [ 72.231706] lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED+0x3e/0x72 # [ 72.237365] direct_en[ 72.547359] ------------[ cut here ]------------ try.cold+0x2c/0x38 # [ 72.241290] full_proxy_write+0x56/0x80 # [ 72.245127] vfs_write+0xea/0x390 # [ 72.248443] ksys_write+0x68/0xe0 # [ 72.251760] do_syscall_64+0x33/0x40 # [ 72.255336] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 7[ 72.574171] refcount_t: saturated; leaking memory. 2.260386] RIP: 0033:0x7fc41eaeef33 # [ 72.263960] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 72.601168] WARNING: CPU: 0 PID: 2489 at lib/refcount.c:19 refcount_warn_saturate+0x87/0xf0 [ 72.282700] RSP: 002b:00007fff6b76f0f8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 72.290262] RAX: ffffffffffffffda RBX: 0000000000000020 RCX: 00007fc41eaeef33 # [ 72.297389] RDX: 0000000000000020 RSI: 00007fc41e9df000 RDI: 0000000000000001 #[ 72.631710] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify [ 72.304524] RBP: 00007fc41e9df000 R08: 00007fc41e9de010 R09: 0000000000000000 # [ 72.311652] R10: 00007fc41ebed1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 72.318778] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ [ 72.666295] CPU: 0 PID: 2489 Comm: cat Tainted: G D W 5.10.125-cip10 #1 72.325916] irq event stamp: 0 # [ 72.328972] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 72.335238] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 72.343408] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 72.351575] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 72.357836] ---[ end trace 3714dc34b20e0757 ]--- # [ 72.362451] lkdtm: Saturation detected: still saturated # REFCOUNT_INC_NOT_ZERO[ 72.724288] RIP: 0010:refcount_warn_saturate+0x87/0xf0 _SATURATED: saw 'call trace:': ok ok 55 selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_SATURATED.sh # selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_SATURATED.sh [ 72.751589] Code: 05 5a 1e 76 01 01 e8 34 1c 93 00 0f 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d 1e 76 01 01 e8 15 1c 93 00 <0f> 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b [ 72.783385] RSP: 0018:ffffaa54c41e7e38 EFLAGS: 00010282 [ 72.788630] RAX: 0000000000000000 RBX: 00000000c0000000 RCX: 0000000000000000 [ 72.795776] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 72.802923] RBP: ffffffff976bffc8 R08: 0000000000000000 R09: 0000000000000000 [ 72.810070] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000020 [ 72.817226] R13: ffffaa54c41e7f10 R14: ffffaa54c41e7f10 R15: ffff8f4ac3425000 [ 72.824370] FS: 00007f3946f0f580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 72.832484] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 72.838239] CR2: 00007f3946cef000 CR3: 00000001047ba000 CR4: 00000000001506f0 [ 72.845396] Call Trace: [ 72.847860] __refcount_add_not_zero.constprop.0+0x2a/0x31 [ 72.853344] lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED+0x3e/0x72 [ 72.858999] direct_entry.cold+0x2c/0x38 [ 72.862921] full_proxy_write+0x56/0x80 [ 72.866756] vfs_write+0xea/0x390 [ 72.870069] ksys_write+0x68/0xe0 [ 72.873384] do_syscall_64+0x33/0x40 [ 72.876958] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 72.882030] RIP: 0033:0x7f3946dfef33 [ 72.885647] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 72.904474] RSP: 002b:00007ffc9271f6a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 72.912066] RAX: ffffffffffffffda RBX: 0000000000000020 RCX: 00007f3946dfef33 [ 72.919238] RDX: 0000000000000020 RSI: 00007f3946cef000 RDI: 0000000000000001 [ 72.926385] RBP: 00007f3946cef000 R08: 00007f3946cee010 R09: 0000000000000000 [ 72.933549] R10: 00007f3946efd1c0 R11: 0000000000000246 R12: 0000000000000001 [ 72.940690] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 72.947874] irq event stamp: 0 [ 72.950946] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 72.957278] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 72.965511] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 72.973753] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 72.980064] ---[ end trace 3714dc34b20e0758 ]--- [ 72.984742] lkdtm: Saturation detected: still saturated # [ 72.496604] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_SATURATED # [ 72.518474] lkdtm: attempting bad refcount_add_not_zero() from saturated # [ 72.547359] ------------[ cut here ]------------ # [ 72.574171] refcount_t: saturated; leaking memory. # [ 72.601168] WARNING: CPU: 0 PID: 2489 at lib/refcount.c:19 refcount_warn_saturate+0x87/0xf0 # [ 72.631710] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 72.666295] CPU: 0 PID: 2489 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 72.696208] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 72.724288] RIP: 0010:refcount_warn_saturate+0x87/0xf0 # [ 72.751589] Code: 05 5a 1e 76 01 01 e8 34 1c 93 00 0f 0b c3 80 3d 4d 1e 76 01 00 75 b4 48 c7 c7 40 bd 65 97 c6 05 3d 1e 76 01 01 e8 15 1c 93 00 <0f> 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b # [ 72.783385] RSP: 0018:ffffaa54c41e7e38 EFLAGS: 00010282 # [ 72.788630] RAX: 0000000000000000 RBX: 00000000c0000000 RCX: 0000000000000000 # [ 72.795776] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 72.802923] RBP: ffffffff976bffc8 R08: 0000000000000000 R09: 0000000000000000 # [ 72.810070] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000020 # [ 72.817226] R13: ffffaa54c41e7f10 R14: ffffaa54c41e7f10 R15: ffff8f4ac3425000 # [ 72.824370] FS: 00007f3946f0f580(0000) GS:ffff8f4aea[ 73.134286] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_SATURATED c00000(0000) knlGS:0000000000000000 # [ 72.832484] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 72.838239] CR2: 00007f3946cef000 CR3: 00000001047ba000 CR4: 00000000001506f0 # [ 72.845396] Call Trace: # [ 72.847860] __refcount_add_not_[ 73.162985] lkdtm: attempting bad refcount_dec_and_test() from saturated zero.constprop.0+0x2a/0x31 # [ 72.853344] lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED+0x3e/0x72 # [ 72.858999] direct_entry.cold+0x2c/0x38 # [ 72.862921] full_proxy_write+0x56/0x80 # [ 72.866756] vfs_write+0xea/0x390 # [ 72.870069] ksys_write[ 73.191857] ------------[ cut here ]------------ +0x68/0xe0 # [ 72.873384] do_syscall_64+0x33/0x40 # [ 72.876958] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 72.882030] RIP: 0033:0x7f3946dfef33 # [ 72.885647] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b [ 73.218656] refcount_t: underflow; use-after-free. 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 72.904474] RSP: 002b:00007ffc9271f6a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 72.912066] RAX: ffffffffffffffda RBX: 000[ 73.245654] WARNING: CPU: 0 PID: 2524 at lib/refcount.c:28 refcount_warn_saturate+0xa6/0xf0 0000000000020 RCX: 00007f3946dfef33 # [ 72.919238] RDX: 0000000000000020 RSI: 00007f3946cef000 RDI: 0000000000000001 # [ 72.926385] RBP: 00007f3946cef000 R08: 00007f3946cee010 R09: 0000000000000000 # [ 72.933549] R10: 00007f3946efd1c0 R11: 0000000[ 73.276141] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 000000246 R12: 0000000000000001 # [ 72.940690] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 72.947874] irq event stamp: 0 # [ 72.950946] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 72.957278] hardirqs la[ 73.310762] CPU: 0 PID: 2524 Comm: cat Tainted: G D W 5.10.125-cip10 #1 st disabled at (0): [] copy_process+0x63c/0x1c80 # [ 72.965511] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 72.973753] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 72.980064] -[ 73.340666] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 --[ end trace 3714dc34b20e0758 ]--- # [ 72.984742] lkdtm: Saturation detected: still saturated # REFCOUNT_ADD_NOT_ZERO_SATURATED: saw 'call trace:': ok ok 56 selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_SATURATED.sh # selftests: lkdtm: REFCOUNT_DEC_AND_TE[ 73.368866] RIP: 0010:refcount_warn_saturate+0xa6/0xf0 ST_SATURATED.sh [ 73.396083] Code: 05 3d 1e 76 01 01 e8 15 1c 93 00 0f 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b 1e 76 01 01 e8 f6 1b 93 00 <0f> 0b c3 80 3d 0a 1e 76 01 00 0f 85 72 ff ff ff 48 c7 c7 f0 bd 65 [ 73.416334] RSP: 0018:ffffaa54c426fe40 EFLAGS: 00010286 [ 73.421592] RAX: 0000000000000000 RBX: 000000000000003a RCX: 0000000000000000 [ 73.428778] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 73.435922] RBP: ffffffff976bffe8 R08: 0000000000000000 R09: 0000000000000000 [ 73.443075] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000020 [ 73.450221] R13: ffffaa54c426ff10 R14: ffffaa54c426ff10 R15: ffff8f4ac3424000 [ 73.457373] FS: 00007f52a56b7580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 73.465472] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 73.471232] CR2: 00007f52a5497000 CR3: 0000000101fcc000 CR4: 00000000001506f0 [ 73.478376] Call Trace: [ 73.480852] __refcount_sub_and_test.constprop.0+0x34/0x40 [ 73.486351] lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED+0x3e/0x72 [ 73.492032] direct_entry.cold+0x2c/0x38 [ 73.495975] full_proxy_write+0x56/0x80 [ 73.499836] vfs_write+0xea/0x390 [ 73.503172] ksys_write+0x68/0xe0 [ 73.506536] do_syscall_64+0x33/0x40 [ 73.510135] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 73.515229] RIP: 0033:0x7f52a55a6f33 [ 73.518828] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 73.537628] RSP: 002b:00007fff32bea6a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 73.545216] RAX: ffffffffffffffda RBX: 0000000000000020 RCX: 00007f52a55a6f33 [ 73.552408] RDX: 0000000000000020 RSI: 00007f52a5497000 RDI: 0000000000000001 [ 73.559584] RBP: 00007f52a5497000 R08: 00007f52a5496010 R09: 0000000000000000 [ 73.566781] R10: 00007f52a56a51c0 R11: 0000000000000246 R12: 0000000000000001 [ 73.573957] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 73.581160] irq event stamp: 0 [ 73.584238] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 73.590542] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 73.598717] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 73.606883] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 73.613142] ---[ end trace 3714dc34b20e0759 ]--- [ 73.617773] lkdtm: Saturation detected: still saturated # [ 73.134286] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_SATURATED # [ 73.162985] lkdtm: attempting bad refcount_dec_and_test() from saturated # [ 73.191857] ------------[ cut here ]------------ # [ 73.218656] refcount_t: underflow; use-after-free. # [ 73.245654] WARNING: CPU: 0 PID: 2524 at lib/refcount.c:28 refcount_warn_saturate+0xa6/0xf0 # [ 73.276141] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 73.310762] CPU: 0 PID: 2524 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 73.340666] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 73.368866] RIP: 0010:refcount_warn_saturate+0xa6/0xf0 # [ 73.396083] Code: 05 3d 1e 76 01 01 e8 15 1c 93 00 0f 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b 1e 76 01 01 e8 f6 1b 93 00 <0f> 0b c3 80 3d 0a 1e 76 01 00 0f 85 72 ff ff ff 48 c7 c7 f0 bd 65 # [ 73.416334] RSP: 0018:ffffaa54c426fe40 EFLAGS: 00010286 # [ 73.421592] RAX: 0000000000000000 RBX: 000000000000003a RCX: 0000000000000000 # [ 73.428778] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 73.435922] RBP: ffffffff976bffe8 R08: 0000000000000000 R09: 0000000000000000 # [ 73.443075] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000020 # [ 73.450221] R13: ffffaa54c426ff10 R14: ffffaa54c426ff10 R15: ffff8f4ac3424000 # [ 73.457373] FS: 00007f52a56b7580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 73.465472] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033[ 73.769403] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_SATURATED # [ 73.471232] CR2: 00007f52a5497000 CR3: 0000000101fcc000 CR4: 00000000001506f0 # [ 73.478376] Call Trace: # [ 73.480852] __refcount_sub_and_test.constprop.0+0x34/0x40 # [ 73.486351] lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED+0x3e/0x72 # [ 73.[ 73.792954] lkdtm: attempting bad refcount_sub_and_test() from saturated 492032] direct_entry.cold+0x2c/0x38 # [ 73.495975] full_proxy_write+0x56/0x80 # [ 73.499836] vfs_write+0xea/0x390 # [ 73.503172] ksys_write+0x68/0xe0 # [ 73.506536] do_syscall_64+0x33/0x40 # [ 73.510135] entry_SYSCALL_64_after_hwframe+[ 73.821835] ------------[ cut here ]------------ 0x44/0xa9 # [ 73.515229] RIP: 0033:0x7f52a55a6f33 # [ 73.518828] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 [ 73.848623] refcount_t: underflow; use-after-free. 48 89 54 24 18 # [ 73.537628] RSP: 002b:00007fff32bea6a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 73.545216] RAX: ffffffffffffffda RBX: 0000000000000020 RCX: 00007f52a55a6f33 # [ 73.552408] RDX: 0000000000000020 RSI: 00007f52a5497000 RDI: 0[ 73.875620] WARNING: CPU: 0 PID: 2559 at lib/refcount.c:28 refcount_warn_saturate+0xa6/0xf0 000000000000001 # [ 73.559584] RBP: 00007f52a5497000 R08: 00007f52a5496010 R09: 0000000000000000 # [ 73.566781] R10: 00007f52a56a51c0 R11: 0000000000000246 R12: 0000000000000001 # [ 73.573957] R13: 0000000000000001 R14: 0000000000020000 R15: 00000[ 73.906140] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify 00000020000 # [ 73.581160] irq event stamp: 0 # [ 73.584238] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 73.590542] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 73.598717] softirqs last enab[ 73.940804] CPU: 0 PID: 2559 Comm: cat Tainted: G D W 5.10.125-cip10 #1 led at (0): [] copy_process+0x63c/0x1c80 # [ 73.606883] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 73.613142] ---[ end trace 3714dc34b20e0759 ]--- # [ 73.617773] lkdtm: Saturation detected: still saturated # REF[ 73.970651] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 COUNT_DEC_AND_TEST_SATURATED: saw 'Saturation detected: still saturated': ok ok 57 selftests: lkdtm: REFCOUNT_DEC_AND_TEST_SATURATED.sh # selftests: lkdtm: REFCOUNT_SUB_AND_TEST_SATURATED.sh [ 73.998788] RIP: 0010:refcount_warn_saturate+0xa6/0xf0 [ 74.020681] Code: 05 3d 1e 76 01 01 e8 15 1c 93 00 0f 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b 1e 76 01 01 e8 f6 1b 93 00 <0f> 0b c3 80 3d 0a 1e 76 01 00 0f 85 72 ff ff ff 48 c7 c7 f0 bd 65 [ 74.039468] RSP: 0018:ffffaa54c42dfe40 EFLAGS: 00010286 [ 74.044705] RAX: 0000000000000000 RBX: 000000000000003b RCX: 0000000000000000 [ 74.051864] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 [ 74.059004] RBP: ffffffff976c0008 R08: 0000000000000000 R09: 0000000000000000 [ 74.066171] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000020 [ 74.073314] R13: ffffaa54c42dff10 R14: ffffaa54c42dff10 R15: ffff8f4ac4730000 [ 74.080480] FS: 00007fc80b8da580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 [ 74.088576] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 74.094351] CR2: 00007fc80b6b7000 CR3: 000000010326a000 CR4: 00000000001506f0 [ 74.101498] Call Trace: [ 74.104019] __refcount_sub_and_test.constprop.0+0x34/0x40 [ 74.109572] lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED+0x3e/0x72 [ 74.115298] direct_entry.cold+0x2c/0x38 [ 74.119278] full_proxy_write+0x56/0x80 [ 74.123176] vfs_write+0xea/0x390 [ 74.126544] ksys_write+0x68/0xe0 [ 74.129914] do_syscall_64+0x33/0x40 [ 74.133555] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 74.138718] RIP: 0033:0x7fc80b7c6f33 [ 74.142381] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 74.161190] RSP: 002b:00007fff9bd6c7a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 74.168841] RAX: ffffffffffffffda RBX: 0000000000000020 RCX: 00007fc80b7c6f33 [ 74.176012] RDX: 0000000000000020 RSI: 00007fc80b6b7000 RDI: 0000000000000001 [ 74.183175] RBP: 00007fc80b6b7000 R08: 00007fc80b6b6010 R09: 0000000000000000 [ 74.190313] R10: 00007fc80b8c51c0 R11: 0000000000000246 R12: 0000000000000001 [ 74.197452] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 [ 74.204582] irq event stamp: 0 [ 74.207635] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 74.213897] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 [ 74.222065] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 [ 74.230250] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 74.236515] ---[ end trace 3714dc34b20e075a ]--- [ 74.241132] lkdtm: Saturation detected: still saturated # [ 73.769403] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_SATURATED # [ 73.792954] lkdtm: attempting bad refcount_sub_and_test() from saturated # [ 73.821835] ------------[ cut here ]------------ # [ 73.848623] refcount_t: underflow; use-after-free. # [ 73.875620] WARNING: CPU: 0 PID: 2559 at lib/refcount.c:28 refcount_warn_saturate+0xa6/0xf0 # [ 73.906140] Modules linked in: fuse ip_tables cros_ec_sysfs cros_ec_lightbar cros_ec_chardev cros_ec_debugfs cros_ec_dev cros_usbpd_notify # [ 73.940804] CPU: 0 PID: 2559 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 73.970651] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 73.998788] RIP: 0010:refcount_warn_saturate+0xa6/0xf0 # [ 74.020681] Code: 05 3d 1e 76 01 01 e8 15 1c 93 00 0f 0b c3 80 3d 2b 1e 76 01 00 75 95 48 c7 c7 98 bd 65 97 c6 05 1b 1e 76 01 01 e8 f6 1b 93 00 <0f> 0b c3 80 3d 0a 1e 76 01 00 0f 85 72 ff ff ff 48 c7 c7 f0 bd 65 # [ 74.039468] RSP: 0018:ffffaa54c42dfe40 EFLAGS: 00010286 # [ 74.044705] RAX: 0000000000000000 RBX: 000000000000003b RCX: 0000000000000000 # [ 74.051864] RDX: ffff8f4aeac2c660 RSI: ffff8f4aeac1bf70 RDI: ffff8f4aeac1bf70 # [ 74.059004] RBP: ffffffff976c0008 R08: 0000000000000000 R09: 0000000000000000 # [ 74.066171] R10: 00000000ffffe000 R11: 3fffffffffffffff R12: 0000000000000020 # [ 74.073314] R13: ffffaa54c42dff10 R14: ffffaa54c42dff10 R15: ffff8f4ac4730000 # [ 74.080480] FS: 00007fc80b8da580(0000) GS:ffff8f4aeac00000(0000) knlGS:0000000000000000 # [ 74.088576] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 # [ 74.094351] CR2: 00007fc80b6b7000 CR3: 000000010326a000 CR4: 00000000001506f0 # [ 74.101498] Call Trace: # [ 74.104019] __refcount_sub_and_test.constprop.0+0x34/0x40 # [ 74.109572] lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED+0x3e/0x72 # [ 74.115298] direct_entry.cold+0x2c/0x38 # [ 74.119278] full_proxy_write+0x56/0x80 # [ 74.123176] vfs_write+0xea/0x390 # [ 74.126544] ksys_write+0x68/0xe0 # [ 74.129914] do_syscall_64+0x33/0x40 # [ 74.133555] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 74.138718] RIP: 0033:0x7fc80b7c6f33 # [ 74.142381] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 74.473786] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_TO [ 74.161190] RSP: 002b:00007fff9bd6c7a8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 74.168841] RAX: ffffffffffffffda RBX: 0000000000000020 RCX: 00007fc80b7c6f33 # [ 74.176012] RDX: 0000000000000020 RSI: 00007fc80b6b7000 RDI: 0000000000000001 #[ 74.485311] lkdtm: attempting good copy_to_user of correct size [ 74.183175] RBP: 00007fc80b6b7000 R08: 00007fc80b6b6010 R09: 0000000000000000 # [ 74.190313] R10: 00007fc80b8c51c0 R11: 0000000000000246 R12: 0000000000000001 # [ 74.197452] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ [ 74.513408] lkdtm: attempting bad copy_to_user of too large size 74.204582] irq event stamp: 0 # [ 74.207635] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 74.213897] hardirqs last disabled at (0): [] copy_process+0x63c/0x1c80 # [ 74.222065] softirqs last enabled at (0): [] copy_process+0x63c/0x1c80 # [ 74.230250] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 74.236515] ---[ end trace 3714dc34b20e075a ]--- # [ 74.241132] lkdtm: Saturation detected: still saturated # REFCOUNT_SUB_AND_TEST_SATURATED: saw 'Saturation detected: still saturated': ok ok 58 selftests: lkdtm: REFCOUNT_SUB_AND_TEST_SATURATED.sh # selftests: lkdtm: REFCOUNT_TIMING.sh # Skipping REFCOUNT_TIMING: timing only ok 59 selftests: lkdtm: REFCOUNT_TIMING.sh # SKIP # selftests: lkdtm: ATOMIC_TIMING.sh # Skipping ATOMIC_TIMING: timing only ok 60 selftests: lkdtm: ATOMIC_TIMING.sh # SKIP # selftests: lkdtm: USERCOPY_HEAP_SIZE_TO.sh # [ 74.473786] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_TO # [ 74.485311] lkdtm: attempting good copy_to_user of correct size # [ 74.513408] lkdtm: attempting bad copy_to_user of too large size # USERCOPY_HEAP_SIZE_TO: missing 'call trace:': [FAIL] not ok 61 selftests: lkdtm: USERCOPY_HEAP_SIZE_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_SIZE_FROM.sh [ 74.690397] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_FROM [ 74.696594] lkdtm: attempting good copy_from_user of correct size [ 74.702728] lkdtm: attempting bad copy_from_user of too large size # [ 74.690397] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_FROM # [ 74.696594] lkdtm: attempting good copy_from_user of correct size # [ 74.702728] lkdtm: attempting bad copy_from_user of too large size # USERCOPY_HEAP_SIZE_FROM: missing 'call trace:': [FAIL] not ok 62 selftests: lkdtm: USERCOPY_HEAP_SIZE_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_WHITELIST_TO.sh [ 74.844777] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_TO [ 74.851226] lkdtm: attempting good copy_to_user inside whitelist [ 74.857268] lkdtm: attempting bad copy_to_user outside whitelist # [ 74.844777] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_TO # [ 74.851226] lkdtm: attempting good copy_to_user inside whitelist # [ 74.857268] lkdtm: attempting bad copy_to_user outside whitelist # USERCOPY_HEAP_WHITELIST_TO: missing 'call trace:': [FAIL] not ok 63 selftests: lkdtm: USERCOPY_HEAP_WHITELIST_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_WHITELIST_FROM.sh [ 74.993779] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_FROM [ 75.000400] lkdtm: attempting good copy_from_user inside whitelist [ 75.006612] lkdtm: attempting bad copy_from_user outside whitelist # [ 74.993779] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_FROM # [ 75.000400] lkdtm: attempting good copy_from_user inside whitelist # [ 75.006612] lkdtm: attempting bad copy_from_user outside whitelist # USERCOPY_HEAP_WHITELIST_FROM: missing 'call trace:': [FAIL] not ok 64 selftests: lkdtm: USERCOPY_HEAP_WHITELIST_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_FRAME_TO.sh [ 75.144745] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_TO [ 75.150936] lkdtm: good_stack: ffffaa54c45f7e20-ffffaa54c45f7e40 [ 75.156984] lkdtm: bad_stack : ffffaa54c45f7da8-ffffaa54c45f7dc8 [ 75.163001] lkdtm: attempting good copy_to_user of local stack [ 75.168845] lkdtm: attempting bad copy_to_user of distant stack # [ 75.144745] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_TO # [ 75.150936] lkdtm: good_stack: ffffaa54c45f7e20-ffffaa54c45f7e40 # [ 75.156984] lkdtm: bad_stack : ffffaa54c45f7da8-ffffaa54c45f7dc8 # [ 75.163001] lkdtm: attempting good copy_to_user of local stack # [ 75.168845] lkdtm: attempting bad copy_to_user of distant stack # USERCOPY_STACK_FRAME_TO: missing 'call trace:': [FAIL] not ok 65 selftests: lkdtm: USERCOPY_STACK_FRAME_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_FRAME_FROM.sh [ 75.306466] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_FROM [ 75.312830] lkdtm: good_stack: ffffaa54c4677e20-ffffaa54c4677e40 [ 75.318875] lkdtm: bad_stack : ffffaa54c4677da8-ffffaa54c4677dc8 [ 75.324892] lkdtm: attempting good copy_from_user of local stack [ 75.330907] lkdtm: attempting bad copy_from_user of distant stack # [ 75.306466] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_FROM # [ 75.312830] lkdtm: good_stack: ffffaa54c4677e20-ffffaa54c4677e40 # [ 75.318875] lkdtm: bad_stack : ffffaa54c4677da8-ffffaa54c4677dc8 # [ 75.324892] lkdtm: attempting good copy_from_user of local stack # [ 75.330907] lkdtm: attempting bad copy_from_user of distant stack # USERCOPY_STACK_FRAME_FROM: missing 'call trace:': [FAIL] not ok 66 selftests: lkdtm: USERCOPY_STACK_FRAME_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_BEYOND.sh [ 75.464760] lkdtm: Performing direct entry USERCOPY_STACK_BEYOND [ 75.470772] lkdtm: good_stack: ffffaa54c46f7e20-ffffaa54c46f7e40 [ 75.476822] lkdtm: bad_stack : ffffaa54c46f7ff8-ffffaa54c46f8018 [ 75.482969] lkdtm: attempting good copy_to_user of local stack [ 75.488986] lkdtm: attempting bad copy_to_user of distant stack [ 75.495004] lkdtm: copy_to_user failed, but lacked Oops # [ 75.464760] lkdtm: Performing direct entry USERCOPY_STACK_BEYOND # [ 75.470772] lkdtm: good_stack: ffffaa54c46f7e20-ffffaa54c46f7e40 # [ 75.476822] lkdtm: bad_stack : ffffaa54c46f7ff8-ffffaa54c46f8018 # [ 75.482969] lkdtm: attempting good copy_to_user of local stack # [ 75.488986] lkdtm: attempting bad copy_to_user of distant stack # [ 75.495004] lkdtm: copy_to_user failed, but lacked Oops # USERCOPY_STACK_BEYOND: missing 'call trace:': [FAIL] not ok 67 selftests: lkdtm: USERCOPY_STACK_BEYOND.sh # exit=1 # selftests: lkdtm: USERCOPY_KERNEL.sh [ 75.616799] lkdtm: Performing direct entry USERCOPY_KERNEL [ 75.622293] lkdtm: attempting good copy_to_user from kernel rodata: ffffffff972d9f10 [ 75.630064] lkdtm: attempting bad copy_to_user from kernel text: ffffffff960d1460 [ 75.637555] lkdtm: FAIL: survived bad copy_to_user() # [ 75.616799] lkdtm: Performing direct entry USERCOPY_KERNEL # [ 75.622293] lkdtm: attempting good copy_to_user from kernel rodata: ffffffff972d9f10 # [ 75.630064] lkdtm: attempting bad copy_to_user from kernel text: ffffffff960d1460 # [ 75.637555] lkdtm: FAIL: survived bad copy_to_user() # USERCOPY_KERNEL: missing 'call trace:': [FAIL] not ok 68 selftests: lkdtm: USERCOPY_KERNEL.sh # exit=1 # selftests: lkdtm: STACKLEAK_ERASING.sh [ 75.773594] lkdtm: Performing direct entry STACKLEAK_ERASING [ 75.779260] lkdtm: checking unused part of the thread stack (15928 bytes)... [ 75.786339] lkdtm: FAIL: the erased part is not found (checked 15928 bytes) [ 75.793379] lkdtm: FAIL: the thread stack is NOT properly erased [ 75.799410] CPU: 0 PID: 2924 Comm: cat Tainted: G D W 5.10.125-cip10 #1 [ 75.807138] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 [ 75.813046] Call Trace: [ 75.815498] dump_stack+0x77/0x97 [ 75.818811] lkdtm_STACKLEAK_ERASING+0x116/0x140 [ 75.823422] direct_entry.cold+0x2c/0x38 [ 75.827339] full_proxy_write+0x56/0x80 [ 75.831170] vfs_write+0xea/0x390 [ 75.834480] ksys_write+0x68/0xe0 [ 75.837790] do_syscall_64+0x33/0x40 [ 75.841362] entry_SYSCALL_64_after_hwframe+0x44/0xa9 [ 75.846405] RIP: 0033:0x7f1cafcbef33 [ 75.849976] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 [ 75.868711] RSP: 002b:00007fff1c381d18 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 75.876259] RAX: ffffffffffffffda RBX: 0000000000000012 RCX: 00007f1cafcbef33 [ 75.883381] RDX: 0000000000000012 RSI: 00007f1cafbaf000 RDI: 0000000000000001 [ 75.890502] RBP: 00007f1cafbaf000 R08: 00007f1cafbae010 R09: 0000000000000000 [ 75.897624] R10: 00007f1cafdbd1c0 R11: 0000000000000246 R12: 0000000000000001 [ 75.904746] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # [ 75.773594] lkdtm: Performing direct entry STACKLEAK_ERASING # [ 75.779260] lkdtm: checking unused part of the thread stack (15928 bytes)... # [ 75.786339] lkdtm: FAIL: the erased part is not found (checked 15928 bytes) # [ 75.793379] lkdtm: FAIL: the thread stack is NOT properly erased # [ 75.799410] CPU: 0 PID: 2924 Comm: cat Tainted: G D W 5.10.125-cip10 #1 # [ 75.807138] Hardware name: Google Grunt/Grunt, BIOS 09/05/2019 # [ 75.813046] Call Trace: # [ 75.815498] dump_stack+0x77/0x97 # [ 75.818811] lkdtm_STACKLEAK_ERASING+0x116/0x140 # [ 75.823422] direct_entry.cold+0x2c/0x38 # [ 75.827339] full_proxy_write+0x56/0x80 # [ 75.831170] vfs_write+0xea/0x390 # [ 75.834480] ksys_write+0x68/0xe0 # [ 75.837790] do_syscall_64+0x33/0x40 # [ 75.841362] entry_SYSCALL_64_after_hwframe+0x44/0xa9 # [ 75.846405] RIP: 0033:0x7f1cafcbef33 # [ 75.849976] Code: 8b 15 61 ef 0c 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 64 8b 04 25 18 00 00 00 85 c0 75 14 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 55 c3 0f 1f 40 00 48 83 ec 28 48 89 54 24 18 # [ 75.868711] RSP: 002b:00007fff1c381d18 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 # [ 75.876259] RAX: ffffffffffffffda RBX: 0000000000000012 RCX: 00007f1cafcbef33 # [ 75.883381] RDX: 0000000000000012 RSI: 00007f1cafbaf000 RDI: 0000000000000001 # [ 75.890502] RBP: 00007f1c[ 76.050541] lkdtm: Performing direct entry CFI_FORWARD_PROTO afbaf000 R08: 00007f1cafbae010 R09: 0000000000000000 # [ 75.897624] R10: 00007f1cafdbd1c0 R11: 0000000000000246 R12: 0000000000000001 # [ 75.904746] R13: 0000000000000001 R14: 0000000000020000 R15: 0000000000020000 # STACKLEAK_ERASING: missing 'OK: [ 76.069471] lkdtm: Calling matched prototype ... the rest of the thread stack is properly erased': [FAIL] not ok 69 selftests: lkdtm: STACKLEAK_ERASING.sh # exit=1 # selftests: lkdtm: CFI_FORWARD_PROTO.sh [ 76.096278] lkdtm: Calling mismatched prototype ... [ 76.114914] lkdtm: Fail: survived mismatched prototype function call! # [ 76.050541] lkdtm: Performing direct entry CFI_FORWARD_PROTO # [ 76.069471] lkdtm: Calling matched prototype ... # [ 76.096278] lkdtm: Calling mismatched prototype ... # [ 76.114914] lkdtm: Fail: survived mismatched prototype function call! # CFI_FORWARD_PROTO: missing 'call trace:': [FAIL] not ok 70 selftests: lkdtm: CFI_FORWARD_PROTO.sh # exit=1 + ../../utils/send-to-lava.sh ./output/result.txt + set +x / #