Trying 192.168.1.209... Connected to ts9. Escape character is '^]'. ser2net port telnet,2001 device serialdev,/dev/ttyUSB-lf-hihope-rzg2m-02,115200n81,local [] (Debian GNU/Linux) NOTICE: BL2: RZ/G Initial Program Loader(CA57) Rev.2.0.7 NOTICE: BL2: PRR is RZG G2M Ver.1.3 NOTICE: BL2: Board is HiHope RZ/G2M Rev.4.0 NOTICE: BL2: Boot device is QSPI Flash(40MHz) NOTICE: BL2: LCM state is unknown NOTICE: BL2: DDR3200(rev.0.41) NOTICE: BL2: [COLD_BOOT] NOTICE: BL2: DRAM Split is 2ch NOTICE: BL2: QoS is default setting(rev.0.19) NOTICE: BL2: DRAM refresh interval 1.95 usec NOTICE: BL2: Periodic Write DQ Training NOTICE: BL2: DRAM don't have ECC configuration NOTICE: BL2: CH0: 400000000 - 47fffffff, 2 GiB NOTICE: BL2: CH2: 600000000 - 67fffffff, 2 GiB NOTICE: BL2: Lossy Decomp areas NOTICE: Entry 0: DCMPAREACRAx:0x80000540 DCMPAREACRBx:0x570 NOTICE: Entry 1: DCMPAREACRAx:0x40000000 DCMPAREACRBx:0x0 NOTICE: Entry 2: DCMPAREACRAx:0x20000000 DCMPAREACRBx:0x0 NOTICE: BL2: FDT at 0xe631d548 NOTICE: BL2: v2.4(release):44427a7 NOTICE: BL2: Built : 12:32:56, Jun 2 2021 NOTICE: BL2: Normal boot NOTICE: BL2: dst=0xe631d100 src=0x8180000 len=512(0x200) NOTICE: BL2: dst=0x43f00000 src=0x8180400 len=6144(0x1800) NOTICE: rzg_file_len: len: 0x0003e000 NOTICE: BL2: dst=0x44000000 src=0x81c0000 len=253952(0x3e000) NOTICE: rzg_file_len: len: 0x00100000 NOTICE: BL2: dst=0x50000000 src=0x8300000 len=1048576(0x100000) NOTICE: BL2: Booting BL31 U-Boot 2020.10 (Jun 02 2021 - 13:33:36 +0000) CPU: Renesas Electronics R8A774A1 rev 1.3 Model: Hoperun Technology HiHope RZ/G2M platform (hihope-rzg2m) DRAM: 3.9 GiB Bank #0: 0x048000000 - 0x0bfffffff, 1.9 GiB Bank #1: 0x600000000 - 0x67fffffff, 2 GiB WDT: Not found! MMC: sd@ee100000: 0, sd@ee160000: 1 Loading Environment from MMC... OK In: serial@e6e88000 Out: serial@e6e88000 Err: serial@e6e88000 Re-init wdt failed! Net: eth0: ethernet@e6800000 Hit any key to stop autoboot: 2  0 => setenv autoload no setenv autoload no => setenv initrd_high 0xffffffff setenv initrd_high 0xffffffff => setenv fdt_high 0xffffffff setenv fdt_high 0xffffffff => dhcp dhcp ethernet@e6800000 Waiting for PHY auto negotiation to complete........ done BOOTP broadcast 1 BOOTP broadcast 2 DHCP client bound to address 172.16.3.184 (356 ms) => setenv serverip 172.16.3.3 setenv serverip 172.16.3.3 => tftp 0x48080000 770293/tftp-deploy-7yl84c6d/kernel/Image tftp 0x48080000 770293/tftp-deploy-7yl84c6d/kernel/Image Using ethernet@e6800000 device TFTP from server 172.16.3.3; our IP address is 172.16.3.184 Filename '770293/tftp-deploy-7yl84c6d/kernel/Image'. Load address: 0x48080000 Loading: *################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ######################################################### 8.5 MiB/s done Bytes transferred = 43774464 (29bf200 hex) => tftp 0x4ee2c2c0 770293/tftp-deploy-7yl84c6d/ramdisk/ramdisk.cpio.gz.uboot tftp 0x4ee2c2c0 770293/tftp-deploy-7yl84c6d/ramdisk/ramdisk.cpio.gz.uboot Using ethernet@e6800000 device TFTP from server 172.16.3.3; our IP address is 172.16.3.184 Filename '770293/tftp-deploy-7yl84c6d/ramdisk/ramdisk.cpio.gz.uboot'. Load address: 0x4ee2c2c0 Loading: *################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ########################################################### 8.4 MiB/s done Bytes transferred = 18031165 (113223d hex) => setenv initrd_size ${filesize} setenv initrd_size ${filesize} => tftp 0x48000000 770293/tftp-deploy-7yl84c6d/dtb/r8a774a1-hihope-rzg2m-ex.dtb tftp 0x48000000 770293/tftp-deploy-7yl84c6d/dtb/r8a774a1-hihope-rzg2m-ex.dtb Using ethernet@e6800000 device TFTP from server 172.16.3.3; our IP address is 172.16.3.184 Filename '770293/tftp-deploy-7yl84c6d/dtb/r8a774a1-hihope-rzg2m-ex.dtb'. Load address: 0x48000000 Loading: *#### 6.8 MiB/s done Bytes transferred = 57234 (df92 hex) => setenv bootargs 'console=ttySC0,115200n8 root=/dev/nfs rw nfsroot=172.16.3.3:/var/lib/lava/dispatcher/tmp/770293/extract-nfsrootfs-4adbxgt9,tcp,hard,v3 ip=dhcp' setenv bootargs 'console=ttySC0,115200n8 root=/dev/nfs rw nfsroot=172.16.3.3:/var/lib/lava/dispatcher/tmp/770293/extract-nfsrootfs-4adbxgt9,tcp,hard,v3 ip=dhcp' => booti 0x48080000 0x4ee2c2c0 0x48000000 booti 0x48080000 0x4ee2c2c0 0x48000000 Moving Image from 0x48080000 to 0x48200000, end=4b6d0000 ## Loading init Ramdisk from Legacy Image at 4ee2c2c0 ... Image Name: Image Type: AArch64 Linux RAMDisk Image (uncompressed) Data Size: 18031101 Bytes = 17.2 MiB Load Address: 00000000 Entry Point: 00000000 Verifying Checksum ... OK ## Flattened Device Tree blob at 48000000 Booting using the fdt blob at 0x48000000 Loading Ramdisk to b8de4000, end b9f161fd ... OK Loading Device Tree to 00000000b8dd3000, end 00000000b8de3f91 ... OK Starting kernel ... [ 0.000000] Booting Linux on physical CPU 0x0000000000 [0x411fd073] [ 0.000000] Linux version 5.10.150-cip18 (KernelCI@build-j388075-arm64-gcc-10-defconfig-kselftest-4r7q2) (aarch64-linux-gnu-gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2) #1 SMP PREEMPT Wed Oct 26 17:27:05 UTC 2022 [ 0.000000] Machine model: HopeRun HiHope RZ/G2M with sub board [ 0.000000] efi: UEFI not found. [ 0.000000] NUMA: No NUMA configuration found [ 0.000000] NUMA: Faking a node at [mem 0x0000000048000000-0x000000067fffffff] [ 0.000000] NUMA: NODE_DATA [mem 0x67f7e97c0-0x67f7ebfff] [ 0.000000] Zone ranges: [ 0.000000] DMA [mem 0x0000000048000000-0x00000000ffffffff] [ 0.000000] DMA32 empty [ 0.000000] Normal [mem 0x0000000100000000-0x000000067fffffff] [ 0.000000] Movable zone start for each node [ 0.000000] Early memory node ranges [ 0.000000] node 0: [mem 0x0000000048000000-0x00000000bfffffff] [ 0.000000] node 0: [mem 0x0000000600000000-0x000000067fffffff] [ 0.000000] Initmem setup node 0 [mem 0x0000000048000000-0x000000067fffffff] [ 0.000000] cma: Reserved 32 MiB at 0x00000000be000000 [ 0.000000] psci: probing for conduit method from DT. [ 0.000000] psci: PSCIv1.1 detected in firmware. [ 0.000000] psci: Using standard PSCI v0.2 function IDs [ 0.000000] psci: MIGRATE_INFO_TYPE not supported. [ 0.000000] psci: SMC Calling Convention v1.2 [ 0.000000] percpu: Embedded 34 pages/cpu s100944 r8192 d30128 u139264 [ 0.000000] Detected PIPT I-cache on CPU0 [ 0.000000] CPU features: detected: EL2 vector hardening [ 0.000000] CPU features: detected: Spectre-v2 [ 0.000000] CPU features: detected: ARM errata 1165522, 1319367, or 1530923 [ 0.000000] CPU features: detected: Spectre-BHB [ 0.000000] Built 1 zonelists, mobility grouping on. Total pages: 999936 [ 0.000000] Policy zone: Normal [ 0.000000] Kernel command line: console=ttySC0,115200n8 root=/dev/nfs rw nfsroot=172.16.3.3:/var/lib/lava/dispatcher/tmp/770293/extract-nfsrootfs-4adbxgt9,tcp,hard,v3 ip=dhcp wdt_overflow=0 [ 0.000000] Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) [ 0.000000] Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) [ 0.000000] mem auto-init: stack:off, heap alloc:off, heap free:off [ 0.000000] software IO TLB: mapped [mem 0x00000000ba000000-0x00000000be000000] (64MB) [ 0.000000] Memory: 3812004K/4063232K available (18880K kernel code, 4540K rwdata, 9460K rodata, 9728K init, 11276K bss, 218460K reserved, 32768K cma-reserved) [ 0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=6, Nodes=1 [ 0.000000] ftrace: allocating 58506 entries in 229 pages [ 0.000000] ftrace: allocated 229 pages with 5 groups [ 0.000000] Running RCU self tests [ 0.000000] rcu: Preemptible hierarchical RCU implementation. [ 0.000000] rcu: RCU event tracing is enabled. [ 0.000000] rcu: RCU lockdep checking is enabled. [ 0.000000] rcu: RCU restricting CPUs from NR_CPUS=256 to nr_cpu_ids=6. [ 0.000000] Trampoline variant of Tasks RCU enabled. [ 0.000000] Rude variant of Tasks RCU enabled. [ 0.000000] Tracing variant of Tasks RCU enabled. [ 0.000000] rcu: RCU calculated value of scheduler-enlistment delay is 25 jiffies. [ 0.000000] rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=6 [ 0.000000] NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 [ 0.000000] arch_timer: cp15 timer(s) running at 8.33MHz (virt). [ 0.000000] clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x1ec02923e, max_idle_ns: 440795202125 ns [ 0.000004] sched_clock: 56 bits at 8MHz, resolution 120ns, wraps every 2199023255496ns [ 0.000268] Console: colour dummy device 80x25 [ 0.000302] Lock dependency validator: Copyright (c) 2006 Red Hat, Inc., Ingo Molnar [ 0.000314] ... MAX_LOCKDEP_SUBCLASSES: 8 [ 0.000325] ... MAX_LOCK_DEPTH: 48 [ 0.000336] ... MAX_LOCKDEP_KEYS: 8192 [ 0.000347] ... CLASSHASH_SIZE: 4096 [ 0.000357] ... MAX_LOCKDEP_ENTRIES: 32768 [ 0.000368] ... MAX_LOCKDEP_CHAINS: 65536 [ 0.000378] ... CHAINHASH_SIZE: 32768 [ 0.000389] memory used by lock dependency info: 6365 kB [ 0.000400] memory used for stack traces: 4224 kB [ 0.000411] per task-struct memory footprint: 1920 bytes [ 0.000549] Calibrating delay loop (skipped), value calculated using timer frequency.. 16.66 BogoMIPS (lpj=33333) [ 0.000574] pid_max: default: 32768 minimum: 301 [ 0.000757] LSM: Security Framework initializing [ 0.000811] LSM support for eBPF active [ 0.000916] Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) [ 0.000954] Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) [ 0.006677] rcu: Hierarchical SRCU implementation. [ 0.011097] Detected Renesas RZ/G2 r8a774a1 ES1.3 [ 0.012818] EFI services will not be available. [ 0.013922] smp: Bringing up secondary CPUs ... [ 0.015774] Detected PIPT I-cache on CPU1 [ 0.015852] CPU1: Booted secondary processor 0x0000000001 [0x411fd073] [ 0.018047] CPU features: detected: ARM erratum 845719 [ 0.018068] Detected VIPT I-cache on CPU2 [ 0.018150] CPU2: Booted secondary processor 0x0000000100 [0x410fd034] [ 0.020231] Detected VIPT I-cache on CPU3 [ 0.020275] CPU3: Booted secondary processor 0x0000000101 [0x410fd034] [ 0.022310] Detected VIPT I-cache on CPU4 [ 0.022353] CPU4: Booted secondary processor 0x0000000102 [0x410fd034] [ 0.024454] Detected VIPT I-cache on CPU5 [ 0.024498] CPU5: Booted secondary processor 0x0000000103 [0x410fd034] [ 0.025094] smp: Brought up 1 node, 6 CPUs [ 0.025172] SMP: Total of 6 processors activated. [ 0.025189] CPU features: detected: 32-bit EL0 Support [ 0.025205] CPU features: detected: CRC32 instructions [ 0.025221] CPU features: detected: 32-bit EL1 Support [ 0.057275] CPU: All CPU(s) started at EL1 [ 0.057403] alternatives: patching kernel code [ 0.060664] devtmpfs: initialized [ 0.098538] KASLR disabled due to lack of seed [ 0.100131] clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 7645041785100000 ns [ 0.100173] futex hash table entries: 2048 (order: 6, 262144 bytes, linear) [ 0.101621] pinctrl core: initialized pinctrl subsystem [ 0.105743] DMI not present or invalid. [ 0.106980] NET: Registered protocol family 16 [ 0.111029] DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations [ 0.111195] DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations [ 0.111661] DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations [ 0.111855] audit: initializing netlink subsys (disabled) [ 0.112409] audit: type=2000 audit(0.108:1): state=initialized audit_enabled=0 res=1 [ 0.115192] thermal_sys: Registered thermal governor 'step_wise' [ 0.115208] thermal_sys: Registered thermal governor 'power_allocator' [ 0.116691] cpuidle: using governor menu [ 0.117129] hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. [ 0.117526] ASID allocator initialised with 65536 entries [ 0.120907] Serial: AMBA PL011 UART driver [ 0.282541] sh-pfc e6060000.pinctrl: r8a774a1_pfc support registered [ 0.345866] HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages [ 0.345888] HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages [ 0.345905] HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages [ 0.345921] HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages [ 0.350578] cryptd: max_cpu_qlen set to 1000 [ 0.359681] ACPI: Interpreter disabled. [ 0.373396] iommu: Default domain type: Translated [ 0.374515] vgaarb: loaded [ 0.375583] SCSI subsystem initialized [ 0.376737] usbcore: registered new interface driver usbfs [ 0.376868] usbcore: registered new interface driver hub [ 0.377001] usbcore: registered new device driver usb [ 0.379576] pps_core: LinuxPPS API ver. 1 registered [ 0.379594] pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti [ 0.379638] PTP clock support registered [ 0.380131] EDAC MC: Ver: 3.0.0 [ 0.386015] FPGA manager framework [ 0.386324] Advanced Linux Sound Architecture Driver Initialized. [ 0.388584] clocksource: Switched to clocksource arch_sys_counter [ 1.165415] VFS: Disk quotas dquot_6.6.0 [ 1.165558] VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) [ 1.166367] pnp: PnP ACPI: disabled [ 1.187172] NET: Registered protocol family 2 [ 1.187539] IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) [ 1.189931] tcp_listen_portaddr_hash hash table entries: 2048 (order: 5, 163840 bytes, linear) [ 1.190405] TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) [ 1.191153] TCP bind hash table entries: 32768 (order: 9, 2359296 bytes, linear) [ 1.195167] TCP: Hash tables configured (established 32768 bind 32768) [ 1.195886] MPTCP token hash table entries: 4096 (order: 6, 360448 bytes, linear) [ 1.196648] UDP hash table entries: 2048 (order: 6, 327680 bytes, linear) [ 1.197282] UDP-Lite hash table entries: 2048 (order: 6, 327680 bytes, linear) [ 1.198190] NET: Registered protocol family 1 [ 1.199821] RPC: Registered named UNIX socket transport module. [ 1.199858] RPC: Registered udp transport module. [ 1.199874] RPC: Registered tcp transport module. [ 1.199890] RPC: Registered tcp NFSv4.1 backchannel transport module. [ 1.199916] NET: Registered protocol family 44 [ 1.199952] PCI: CLS 0 bytes, default 64 [ 1.200640] Unpacking initramfs... [ 2.199369] Freeing initrd memory: 17608K [ 2.202052] hw perfevents: enabled with armv8_cortex_a53 PMU driver, 7 counters available [ 2.203043] hw perfevents: enabled with armv8_cortex_a57 PMU driver, 7 counters available [ 2.203764] kvm [1]: HYP mode not available [ 2.218605] Initialise system trusted keyrings [ 2.219147] workingset: timestamp_bits=42 max_order=20 bucket_order=0 [ 2.250403] squashfs: version 4.0 (2009/01/31) Phillip Lougher [ 2.252362] NFS: Registering the id_resolver key type [ 2.252438] Key type id_resolver registered [ 2.252473] Key type id_legacy registered [ 2.252881] nfs4filelayout_init: NFSv4 File Layout Driver Registering... [ 2.252921] nfs4flexfilelayout_init: NFSv4 Flexfile Layout Driver Registering... [ 2.253358] 9p: Installing v9fs 9p2000 file system support [ 2.281013] Key type asymmetric registered [ 2.281067] Asymmetric key parser 'x509' registered [ 2.281188] Block layer SCSI generic (bsg) driver version 0.4 loaded (major 245) [ 2.281227] io scheduler mq-deadline registered [ 2.281245] io scheduler kyber registered [ 2.281868] test_firmware: interface ready [ 2.327887] gpio_rcar e6050000.gpio: driving 16 GPIOs [ 2.329564] gpio_rcar e6051000.gpio: driving 29 GPIOs [ 2.330835] gpio_rcar e6052000.gpio: driving 15 GPIOs [ 2.332074] gpio_rcar e6053000.gpio: driving 16 GPIOs [ 2.333363] gpio_rcar e6054000.gpio: driving 18 GPIOs [ 2.334574] gpio_rcar e6055000.gpio: driving 26 GPIOs [ 2.335431] gpio-370 (usb1-reset): hogged as output/low [ 2.335970] gpio_rcar e6055400.gpio: driving 32 GPIOs [ 2.337614] gpio_rcar e6055800.gpio: driving 4 GPIOs [ 2.344053] rcar-pcie fe000000.pcie: host bridge /soc/pcie@fe000000 ranges: [ 2.344163] rcar-pcie fe000000.pcie: IO 0x00fe100000..0x00fe1fffff -> 0x0000000000 [ 2.344294] rcar-pcie fe000000.pcie: MEM 0x00fe200000..0x00fe3fffff -> 0x00fe200000 [ 2.344384] rcar-pcie fe000000.pcie: MEM 0x0030000000..0x0037ffffff -> 0x0030000000 [ 2.344440] rcar-pcie fe000000.pcie: MEM 0x0038000000..0x003fffffff -> 0x0038000000 [ 2.344516] rcar-pcie fe000000.pcie: IB MEM 0x0040000000..0x00bfffffff -> 0x0040000000 [ 2.412505] rcar-pcie fe000000.pcie: PCIe link down [ 2.413562] rcar-pcie ee800000.pcie: host bridge /soc/pcie@ee800000 ranges: [ 2.413667] rcar-pcie ee800000.pcie: IO 0x00ee900000..0x00ee9fffff -> 0x0000000000 [ 2.413762] rcar-pcie ee800000.pcie: MEM 0x00eea00000..0x00eebfffff -> 0x00eea00000 [ 2.413851] rcar-pcie ee800000.pcie: MEM 0x00c0000000..0x00c7ffffff -> 0x00c0000000 [ 2.413908] rcar-pcie ee800000.pcie: MEM 0x00c8000000..0x00cfffffff -> 0x00c8000000 [ 2.413981] rcar-pcie ee800000.pcie: IB MEM 0x0040000000..0x00bfffffff -> 0x0040000000 [ 2.480524] rcar-pcie ee800000.pcie: PCIe link down [ 2.488855] EINJ: ACPI disabled. [ 2.546961] Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled [ 2.556034] SuperH (H)SCI(F) driver initialized [ 2.557327] e6540000.serial: ttySC1 at MMIO 0xe6540000 (irq = 39, base_baud = 0) is a hscif [ 2.558306] serial serial0: tty port ttySC1 registered [ 2.561326] e6e88000.serial: ttySC0 at MMIO 0xe6e88000 (irq = 123, base_baud = 0) is a scif [ 3.721451] printk: console [ttySC0] enabled [ 3.730215] msm_serial: driver initialized [ 3.775856] loop: module loaded [ 3.780630] lkdtm: No crash points registered, enable through debugfs [ 3.790591] megasas: 07.714.04.00-rc1 [ 3.817750] thunder_xcv, ver 1.0 [ 3.821127] thunder_bgx, ver 1.0 [ 3.824459] nicpf, ver 1.0 [ 3.831655] hclge is initializing [ 3.835108] hns3: Hisilicon Ethernet Network Driver for Hip08 Family - version [ 3.842368] hns3: Copyright (c) 2017 Huawei Corporation. [ 3.847842] e1000: Intel(R) PRO/1000 Network Driver [ 3.852754] e1000: Copyright (c) 1999-2006 Intel Corporation. [ 3.858647] e1000e: Intel(R) PRO/1000 Network Driver [ 3.863642] e1000e: Copyright(c) 1999 - 2015 Intel Corporation. [ 3.869702] igb: Intel(R) Gigabit Ethernet Network Driver [ 3.875131] igb: Copyright (c) 2007-2014 Intel Corporation. [ 3.880808] igbvf: Intel(R) Gigabit Virtual Function Network Driver [ 3.887106] igbvf: Copyright (c) 2009 - 2012 Intel Corporation. [ 3.894415] sky2: driver version 1.30 [ 3.903135] VFIO - User Level meta-driver version: 0.3 [ 3.914749] ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver [ 3.921375] ehci-pci: EHCI PCI platform driver [ 3.925928] ehci-platform: EHCI generic platform driver [ 3.933128] ehci-platform ee0a0100.usb: EHCI Host Controller [ 3.938949] ehci-platform ee0a0100.usb: new USB bus registered, assigned bus number 1 [ 3.947129] ehci-platform ee0a0100.usb: irq 161, io mem 0xee0a0100 [ 3.968626] ehci-platform ee0a0100.usb: USB 2.0 started, EHCI 1.10 [ 3.977650] hub 1-0:1.0: USB hub found [ 3.981589] hub 1-0:1.0: 1 port detected [ 3.988071] ehci-orion: EHCI orion driver [ 3.992752] ehci-exynos: EHCI Exynos driver [ 3.997391] ohci_hcd: USB 1.1 'Open' Host Controller (OHCI) Driver [ 4.003646] ohci-pci: OHCI PCI platform driver [ 4.008225] ohci-platform: OHCI generic platform driver [ 4.015103] ohci-platform ee0a0000.usb: Generic Platform OHCI controller [ 4.021888] ohci-platform ee0a0000.usb: new USB bus registered, assigned bus number 2 [ 4.029977] ohci-platform ee0a0000.usb: irq 161, io mem 0xee0a0000 [ 4.124605] hub 2-0:1.0: USB hub found [ 4.128442] hub 2-0:1.0: 1 port detected [ 4.134629] ohci-exynos: OHCI Exynos driver [ 4.140660] xhci-hcd ee000000.usb: xHCI Host Controller [ 4.145964] xhci-hcd ee000000.usb: new USB bus registered, assigned bus number 3 [ 4.153811] xhci-hcd ee000000.usb: Direct firmware load for r8a779x_usb3_v3.dlmem failed with error -2 [ 4.163239] xhci-hcd ee000000.usb: Falling back to sysfs fallback for: r8a779x_usb3_v3.dlmem [ 4.244675] usb 1-1: new high-speed USB device number 2 using ehci-platform [ 4.412236] hub 1-1:1.0: USB hub found [ 4.416267] hub 1-1:1.0: 2 ports detected [ 64.481080] xhci-hcd ee000000.usb: can't setup: -110 [ 64.486133] xhci-hcd ee000000.usb: USB bus 3 deregistered [ 64.491859] xhci-hcd: probe of ee000000.usb failed with error -110 [ 64.499140] usbcore: registered new interface driver usb-storage [ 64.514931] i2c /dev entries driver [ 64.542419] cs2000-cp 2-004f: revision - C1 [ 64.546921] i2c-rcar e6510000.i2c: probed [ 64.561168] i2c-rcar e66d8000.i2c: probed [ 64.579288] rcar_gen3_thermal e6198000.thermal: TSC0: Loaded 1 trip points [ 64.590688] rcar_gen3_thermal e6198000.thermal: TSC1: Loaded 1 trip points [ 64.602033] rcar_gen3_thermal e6198000.thermal: TSC2: Loaded 2 trip points [ 64.622406] cpu cpu0: EM: created perf domain [ 64.627101] cpufreq: cpufreq_online: CPU0: Running at unlisted initial frequency: 1499999 KHz, changing to: 1500000 KHz [ 64.642946] cpu cpu2: EM: created perf domain [ 64.648895] cpufreq: cpufreq_online: CPU2: Running at unlisted initial frequency: 1199999 KHz, changing to: 1200000 KHz [ 64.675399] sdhci: Secure Digital Host Controller Interface driver [ 64.681715] sdhci: Copyright(c) Pierre Ossman [ 64.688277] Synopsys Designware Multimedia Card Interface Driver [ 64.691325] renesas_sdhi_internal_dmac ee100000.mmc: Got CD GPIO [ 64.698137] sdhci-pltfm: SDHCI platform and OF driver helper [ 64.713944] ledtrig-cpu: registered to indicate activity on CPUs [ 64.723092] SMCCC: SOC_ID: ARCH_SOC_ID not implemented, skipping .... [ 64.732293] usbcore: registered new interface driver usbhid [ 64.737902] usbhid: USB HID core driver [ 64.746944] renesas_sdhi_internal_dmac ee160000.mmc: mmc0 base at 0x00000000ee160000, max clock rate 200 MHz [ 64.761550] netem: version 1.3 [ 64.764781] ipip: IPv4 and MPLS over IPv4 tunneling driver [ 64.771845] gre: GRE over IPv4 demultiplexor driver [ 64.776808] ip_gre: GRE over IPv4 tunneling driver [ 64.784611] IPv4 over IPsec tunneling driver [ 64.792026] NET: Registered protocol family 10 [ 64.800019] Segment Routing with IPv6 [ 64.806443] ip6_gre: GRE over IPv6 tunneling driver [ 64.812502] NET: Registered protocol family 17 [ 64.817807] 9pnet: Installing 9P2000 support [ 64.822423] Key type dns_resolver registered [ 64.827680] registered taskstats version 1 [ 64.831858] Loading compiled-in X.509 certificates [ 64.866510] mmc0: new HS200 MMC card at address 0001 [ 64.876899] mmcblk0: mmc0:0001 S0J57X 29.6 GiB [ 64.882553] mmcblk0boot0: mmc0:0001 S0J57X partition 1 31.5 MiB [ 64.889592] mmcblk0boot1: mmc0:0001 S0J57X partition 2 31.5 MiB [ 64.897105] mmcblk0rpmb: mmc0:0001 S0J57X partition 3 4.00 MiB, chardev (234:0) [ 64.908987] renesas_irqc e61c0000.interrupt-controller: driving 6 irqs [ 64.980764] ehci-platform ee080100.usb: EHCI Host Controller [ 64.986621] ehci-platform ee080100.usb: new USB bus registered, assigned bus number 3 [ 64.994703] ehci-platform ee080100.usb: irq 160, io mem 0xee080100 [ 65.016631] ehci-platform ee080100.usb: USB 2.0 started, EHCI 1.10 [ 65.025828] hub 3-0:1.0: USB hub found [ 65.029795] hub 3-0:1.0: 1 port detected [ 65.039212] ohci-platform ee080000.usb: Generic Platform OHCI controller [ 65.046018] ohci-platform ee080000.usb: new USB bus registered, assigned bus number 4 [ 65.054115] ohci-platform ee080000.usb: irq 160, io mem 0xee080000 [ 65.148990] hub 4-0:1.0: USB hub found [ 65.152880] hub 4-0:1.0: 1 port detected [ 65.178296] renesas_sdhi_internal_dmac ee100000.mmc: Got CD GPIO [ 65.188887] rcar-dmac e6700000.dma-controller: deferred probe timeout, ignoring dependency [ 65.215730] rcar-dmac e7300000.dma-controller: deferred probe timeout, ignoring dependency [ 65.240120] rcar-dmac e7310000.dma-controller: deferred probe timeout, ignoring dependency [ 65.241341] renesas_sdhi_internal_dmac ee100000.mmc: mmc1 base at 0x00000000ee100000, max clock rate 200 MHz [ 65.265050] rcar-dmac ec700000.dma-controller: deferred probe timeout, ignoring dependency [ 65.288701] rcar-dmac ec720000.dma-controller: deferred probe timeout, ignoring dependency [ 65.303591] renesas_sdhi_internal_dmac ee140000.mmc: mmc2 base at 0x00000000ee140000, max clock rate 200 MHz [ 65.313765] ravb e6800000.ethernet: deferred probe timeout, ignoring dependency [ 65.332227] renesas_sdhi_internal_dmac ee140000.mmc: card claims to support voltages below defined range [ 65.380114] ravb e6800000.ethernet eth0: Base address at 0xe6800000, fc:28:99:92:7b:e1, IRQ 118. [ 65.395886] IP-Config: Failed to open gretap0 [ 65.397497] mmc2: new high speed SDIO card at address 0001 [ 65.400712] IP-Config: Failed to open erspan0 [ 65.422778] RTL8211E Gigabit Ethernet e6800000.ethernet-ffffffff:00: attached PHY driver [RTL8211E Gigabit Ethernet] (mii_bus:phy_addr=e6800000.ethernet-ffffffff:00, irq=166) [ 65.456627] Sending DHCP requests .. [ 69.051530] ravb e6800000.ethernet eth0: Link is Up - 1Gbps/Full - flow control off [ 69.063134] IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready [ 71.400719] ., OK [ 71.499138] IP-Config: Got DHCP answer from 172.16.3.3, my address is 172.16.3.184 [ 71.507032] IP-Config: Complete: [ 71.510363] device=eth0, hwaddr=fc:28:99:92:7b:e1, ipaddr=172.16.3.184, mask=255.255.255.0, gw=172.16.3.3 [ 71.520473] host=172.16.3.184, domain=denx.de, nis-domain=(none) [ 71.527180] bootserver=172.16.3.33, rootserver=172.16.3.3, rootpath= [ 71.527209] nameserver0=172.16.3.3 [ 71.538040] ntpserver0=172.16.3.3 [ 71.545516] ALSA device list: [ 71.548730] No soundcards found. [ 71.590560] Freeing unused kernel memory: 9728K [ 71.595543] Run /init as init process Loading, please wait... Starting version 247.3-7+deb11u1 [ 73.446239] CAN device driver interface [ 73.481067] rcar_can e6c30000.can: device registered (IRQ121) [ 73.487134] renesas_usbhs e6590000.usb: host probed [ 73.494840] renesas_usbhs e6590000.usb: no transceiver found [ 73.496838] rcar_can e6c38000.can: device registered (IRQ122) [ 73.507575] renesas_usbhs e6590000.usb: gadget probed [ 73.525134] Bluetooth: Core ver 2.22 [ 73.539819] mc: Linux media interface: v0.10 [ 73.546228] NET: Registered protocol family 31 [ 73.552471] Bluetooth: HCI device and connection manager initialized [ 73.561894] Bluetooth: HCI socket layer initialized [ 73.585534] videodev: Linux video capture interface: v2.00 [ 73.592090] renesas_usbhs e6590000.usb: probed [ 73.592162] rcar_sound ec500000.sound: probed [ 73.601581] Bluetooth: L2CAP socket layer initialized [ 73.601785] renesas_usb3 ee020000.usb: probed with phy [ 73.607323] Bluetooth: SCO socket layer initialized [ 73.615452] rcar-fcp fea27000.fcp: deferred probe timeout, ignoring dependency [ 73.629846] rcar-fcp fea2f000.fcp: deferred probe timeout, ignoring dependency [ 73.639978] Bluetooth: HCI UART driver ver 2.3 [ 73.644799] Bluetooth: HCI UART protocol H4 registered [ 73.658804] Bluetooth: HCI UART protocol LL registered [ 73.665626] Bluetooth: HCI UART protocol Broadcom registered [ 73.678428] rcar-fcp fea37000.fcp: deferred probe timeout, ignoring dependency [ 73.686364] Bluetooth: HCI UART protocol QCA registered [ 73.702863] rcar-dw-hdmi fead0000.hdmi: Detected HDMI TX controller v2.01a with HDCP (DWC HDMI 2.0 TX PHY) [ 73.709015] rcar-fcp fe9af000.fcp: deferred probe timeout, ignoring dependency [ 73.742314] rcar-dw-hdmi fead0000.hdmi: registered DesignWare HDMI I2C bus driver [ 73.759031] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 [ 73.769358] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts [ 73.832504] rcar_fdp1 fe940000.fdp1: Device registered as /dev/video6 [ 73.902072] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts [ 73.911905] Bluetooth: hci0: download firmware failed, retrying... [ 73.980244] [drm] Initialized rcar-du 1.0.0 20130110 for feb00000.display on minor 0 [ 73.988054] [drm] Device feb00000.display probed [ 73.994133] rcar-du feb00000.display: [drm] Cannot find any crtc or sizes [ 74.002802] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 [ 74.013297] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts [ 74.027551] cfg80211: Loading compiled-in X.509 certificates for regulatory database [ 74.029227] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts [ 74.044850] Bluetooth: hci0: download firmware failed, retrying... [ 74.063647] cfg80211: Loaded X.509 cert 'sforshee: 00b28ddf47aef9cea7' [ 74.071362] platform regulatory.0: Direct firmware load for regulatory.db failed with error -2 [ 74.080108] platform regulatory.0: Falling back to sysfs fallback for: regulatory.db [ 74.101312] cfg80211: failed to load regulatory.db [ 74.169543] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 [ 74.179810] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts [ 74.193987] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts [ 74.203409] Bluetooth: hci0: download firmware failed, retrying... [ 74.291340] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 [ 74.301600] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts [ 74.301935] wl18xx_driver wl18xx.3.auto: Direct firmware load for ti-connectivity/wl1271-nvs.bin failed with error -2 [ 74.314462] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts [ 74.323392] wl18xx_driver wl18xx.3.auto: Falling back to sysfs fallback for: ti-connectivity/wl1271-nvs.bin [ 74.330865] Bluetooth: hci0: download firmware failed, retrying... [ 74.351744] wl18xx_driver wl18xx.3.auto: Direct firmware load for ti-connectivity/wl18xx-conf.bin failed with error -2 Begin: Loading e[ 74.362852] wl18xx_driver wl18xx.3.auto: Falling back to sysfs fallback for: ti-connectivity/wl18xx-conf.bin ssential drivers ... done. [ 74.379623] wlcore: ERROR could not get configuration binary ti-connectivity/wl18xx-conf.bin: -2 Begin: Running /[ 74.388812] wlcore: WARNING falling back to default config scripts/init-premount ... done. Begin: Mounting root file system ... Begin: Running /scripts/nfs-top ... done. Begin: Running /scripts/nfs-premount ... done. IP-Config: gretap0 hardware address 00:00:00:00:00:00 mtu 1462 DHCP SIOCSIFFLAGS: Cannot assign requested address IP-Config: erspan0 hardware address 00:00:00:00:00:00 mtu 1450 DHCP SIOCSIFFLAGS: Cannot assign requested address IP-Config: eth0 hardware address fc:28:99:92:7b:e1 mtu 1500 DHCP IP-Config: eth0 complete (dhcp from 172.16.3.3): address: 172.16.3.184 broadcast: 172.16.3.255 netmask: 255.255.255.0 gateway: 172.16.3.3 dns0 : 172.16.3.3 dns1 : 0.0.0.0 domain : denx.de rootserver: 172.16.3.33 rootpath: filename : this-host-is-not-configured.kpxe done. Begin: Running /scripts/nfs-bottom ... done. Begin: Running /scripts/init-bottom ... [ 74.935676] wlcore: wl18xx HW: 183x or 180x, PG 2.2 (ROM 0x11) done. [ 74.976548] wlcore: loaded [ 76.042219] systemd[1]: System time before build time, advancing clock. [ 76.309953] systemd[1]: systemd 247.3-7+deb11u1 running in system mode. (+PAM +AUDIT +SELINUX +IMA +APPARMOR +SMACK +SYSVINIT +UTMP +LIBCRYPTSETUP +GCRYPT +GNUTLS +ACL +XZ +LZ4 +ZSTD +SECCOMP +BLKID +ELFUTILS +KMOD +IDN2 -IDN +PCRE2 default-hierarchy=unified) [ 76.336400] systemd[1]: Detected architecture arm64. Welcome to [1mDebian GNU/Linux 11 (bullseye)[0m! [ 76.382965] systemd[1]: Set hostname to . [ 77.730039] systemd[1]: Queued start job for default target Graphical Interface. [ 77.741039] random: systemd: uninitialized urandom read (16 bytes read) [ 77.760045] systemd[1]: Created slice system-getty.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-getty.slice[0m. [ 77.781492] random: systemd: uninitialized urandom read (16 bytes read) [ 77.792227] systemd[1]: Created slice system-modprobe.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-modprobe.slice[0m. [ 77.812882] random: systemd: uninitialized urandom read (16 bytes read) [ 77.825921] systemd[1]: Created slice system-serial\x2dgetty.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-serial\x2dgetty.slice[0m. [ 77.852455] systemd[1]: Created slice User and Session Slice. [[0;32m OK [0m] Created slice [0;1;39mUser and Session Slice[0m. [ 77.874844] systemd[1]: Started Dispatch Password Requests to Console Directory Watch. [[0;32m OK [0m] Started [0;1;39mDispatch Password …ts to Console Directory Watch[0m. [ 77.902407] systemd[1]: Started Forward Password Requests to Wall Directory Watch. [[0;32m OK [0m] Started [0;1;39mForward Password R…uests to Wall Directory Watch[0m. [ 77.929291] systemd[1]: Condition check resulted in Arbitrary Executable File Formats File System Automount Point being skipped. [ 77.941393] systemd[1]: Reached target Local Encrypted Volumes. [[0;32m OK [0m] Reached target [0;1;39mLocal Encrypted Volumes[0m. [ 77.965120] systemd[1]: Reached target Paths. [[0;32m OK [0m] Reached target [0;1;39mPaths[0m. [ 77.985421] systemd[1]: Reached target Remote File Systems. [[0;32m OK [0m] Reached target [0;1;39mRemote File Systems[0m. [ 78.009218] systemd[1]: Reached target Slices. [[0;32m OK [0m] Reached target [0;1;39mSlices[0m. [ 78.029376] systemd[1]: Reached target Swap. [[0;32m OK [0m] Reached target [0;1;39mSwap[0m. [ 78.052120] systemd[1]: Listening on initctl Compatibility Named Pipe. [[0;32m OK [0m] Listening on [0;1;39minitctl Compatibility Named Pipe[0m. [ 78.083908] systemd[1]: Listening on Journal Audit Socket. [[0;32m OK [0m] Listening on [0;1;39mJournal Audit Socket[0m. [ 78.111786] systemd[1]: Listening on Journal Socket (/dev/log). [[0;32m OK [0m] Listening on [0;1;39mJournal Socket (/dev/log)[0m. [ 78.142031] systemd[1]: Listening on Journal Socket. [[0;32m OK [0m] Listening on [0;1;39mJournal Socket[0m. [ 78.170625] systemd[1]: Listening on Network Service Netlink Socket. [[0;32m OK [0m] Listening on [0;1;39mNetwork Service Netlink Socket[0m. [ 78.201939] systemd[1]: Listening on udev Control Socket. [[0;32m OK [0m] Listening on [0;1;39mudev Control Socket[0m. [ 78.228986] systemd[1]: Listening on udev Kernel Socket. [[0;32m OK [0m] Listening on [0;1;39mudev Kernel Socket[0m. [ 78.284491] systemd[1]: Mounting Huge Pages File System... Mounting [0;1;39mHuge Pages File System[0m... [ 78.334637] systemd[1]: Mounting POSIX Message Queue File System... Mounting [0;1;39mPOSIX Message Queue File System[0m... [ 78.380731] systemd[1]: Mounting Kernel Debug File System... Mounting [0;1;39mKernel Debug File System[0m... [ 78.422826] systemd[1]: Mounting Kernel Trace File System... Mounting [0;1;39mKernel Trace File System[0m... [ 78.474505] systemd[1]: Starting Create list of static device nodes for the current kernel... Starting [0;1;39mCreate list of st…odes for the current kernel[0m... [ 78.524298] systemd[1]: Starting Load Kernel Module configfs... Starting [0;1;39mLoad Kernel Module configfs[0m... [ 78.565060] systemd[1]: Starting Load Kernel Module drm... Starting [0;1;39mLoad Kernel Module drm[0m... [ 78.604227] systemd[1]: Starting Load Kernel Module fuse... Starting [0;1;39mLoad Kernel Module fuse[0m... [ 78.632835] systemd[1]: Condition check resulted in Set Up Additional Binary Formats being skipped. [ 78.668721] systemd[1]: Starting Journal Service... Starting [0;1;39mJournal Service[0m... [ 78.682473] fuse: init (API version 7.32) [ 78.709628] systemd[1]: Starting Load Kernel Modules... Starting [0;1;39mLoad Kernel Modules[0m... [ 78.742161] systemd[1]: Starting Remount Root and Kernel File Systems... Starting [0;1;39mRemount Root and Kernel File Systems[0m... [ 78.769501] random: systemd: uninitialized urandom read (16 bytes read) [ 78.793937] systemd[1]: Starting Coldplug All udev Devices... Starting [0;1;39mColdplug All udev Devices[0m... [ 78.835924] systemd[1]: Mounted Huge Pages File System. [[0;32m OK [[ 78.842263] random: systemd-journal: uninitialized urandom read (16 bytes read) 0m] Mounted [0;1;39mHuge Pages File System[0m. [ 78.875835] systemd[1]: Mounted POSIX Message Queue File System. [[0;32m OK [0m] Mounted [0;1;39mPOSIX Message Queue File System[0m. [ 78.908254] systemd[1]: Mounted Kernel Debug File System. [[0;32m OK [0m] Mounted [0;1;39mKernel Debug File System[0m. [ 78.931415] systemd[1]: Mounted Kernel Trace File System. [[0;32m OK [0m] Mounted [0;1;39mKernel Trace File System[0m. [ 78.965852] systemd[1]: Finished Create list of static device nodes for the current kernel. [[0;32m OK [0m] Finished [0;1;39mCreate list of st… nodes for the current kernel[0m. [ 79.002337] systemd[1]: modprobe@configfs.service: Succeeded. [ 79.016263] systemd[1]: Finished Load Kernel Module configfs. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module configfs[0m. [ 79.047069] systemd[1]: modprobe@drm.service: Succeeded. [ 79.060405] systemd[1]: Finished Load Kernel Module drm. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module drm[0m. [ 79.088863] systemd[1]: modprobe@fuse.service: Succeeded. [ 79.106537] systemd[1]: Finished Load Kernel Module fuse. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module fuse[0m. [ 79.143510] systemd[1]: Finished Load Kernel Modules. [[0;32m OK [0m] Finished [0[ 79.151697] random: systemd-journal: uninitialized urandom read (16 bytes read) ;1;39mLoad Kernel Modules[0m. [ 79.175576] systemd[1]: Started Journal Service. [[0;32m OK [0m] Started [0;1;39mJournal Service[0m. [[0;32m OK [0m] Finished [0;1;39mRemount Root and Kernel File Systems[0m. Mounting [0;1;39mFUSE Control File System[0m... Mounting [0;1;39mKernel Configuration File System[0m... Starting [0;1;39mFlush Journal to Persistent Storage[0m... Starting [0;1;39mLoad/Save Random Seed[0m... Starting [0;1;39mApply Kernel Variables[0m... [ 79.413405] systemd-journald[361]: Received client request to flush runtime journal. Starting [0;1;39mCreate System Users[0m... [[0;32m OK [0m] Mounted [0;1;39mFUSE Control File System[0m. [[0;32m OK [0m] Mounted [0;1;39mKernel Configuration File System[0m. [[0;32m OK [0m] Finished [0;1;39mApply Kernel Variables[0m. [ 80.381132] random: crng init done [ 80.384948] random: 48 urandom warning(s) missed due to ratelimiting [[0;32m OK [0m] Finished [0;1;39mColdplug All udev Devices[0m. [[0;32m OK [0m] Finished [0;1;39mLoad/Save Random Seed[0m. [[0;32m OK [0m] Finished [0;1;39mFlush Journal to Persistent Storage[0m. [[0;32m OK [0m] Finished [0;1;39mCreate System Users[0m. Starting [0;1;39mCreate Static Device Nodes in /dev[0m... [[0;32m OK [0m] Finished [0;1;39mCreate Static Device Nodes in /dev[0m. [[0;32m OK [0m] Reached target [0;1;39mLocal File Systems (Pre)[0m. [[0;32m OK [0m] Reached target [0;1;39mLocal File Systems[0m. Starting [0;1;39mCreate Volatile Files and Directories[0m... Starting [0;1;39mRule-based Manage…for Device Events and Files[0m... [[0;32m OK [0m] Started [0;1;39mRule-based Manager for Device Events and Files[0m. Starting [0;1;39mNetwork Service[0m... [[0;32m OK [0m] Finished [0;1;39mCreate Volatile Files and Directories[0m. Starting [0;1;39mNetwork Time Synchronization[0m... Starting [0;1;39mUpdate UTMP about System Boot/Shutdown[0m... [[0;32m OK [0m] Started [0;1;39mNetwork Service[0m. Starting [0;1;39mNetwork Name Resolution[0m... [[0;32m OK [0m] Finished [0;1;39mUpdate UTMP about System Boot/Shutdown[0m. [[0;32m OK [0m] Started [0;1;39mNetwork Time Synchronization[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Initialization[0m. [[0;32m OK [0m] Started [0;1;39mDaily Cleanup of Temporary Directories[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Time Set[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Time Synchronized[0m. [[0;32m OK [0m] Started [0;1;39mDaily apt download activities[0m. [[0;32m OK [0m] Started [0;1;39mDaily apt upgrade and clean activities[0m. [[0;32m OK [0m] Started [0;1;39mPeriodic ext4 Onli…ata Check for All Filesystems[0m. [[0;32m OK [0m] Started [0;1;39mDiscard unused blocks once a week[0m. [[0;32m OK [0m] Reached target [0;1;39mTimers[0m. [[0;32m OK [0m] Listening on [0;1;39mD-Bus System Message Bus Socket[0m. [[0;32m OK [0m] Reached target [0;1;39mSockets[0m. [[0;32m OK [0m] Reached target [0;1;39mBasic System[0m. [[0;32m OK [0m] Started [0;1;39mD-Bus System Message Bus[0m. Starting [0;1;39mRemove Stale Onli…t4 Metadata Check Snapshots[0m... Starting [0;1;39mUser Login Management[0m... [[0;32m OK [0m] Started [0;1;39mNetwork Name Resolution[0m. [[0;32m OK [0m] Found device [0;1;39m/dev/ttySC0[0m. [[0;32m OK [0m] Finished [0;1;39mRemove Stale Onli…ext4 Metadata Check Snapshots[0m. [[0;32m OK [0m] Reached target [0;1;39mBluetooth[0m. [[0;32m OK [0m] Reached target [0;1;39mNetwork[0m. [[0;32m OK [0m] Reached target [0;1;39mHost and Network Name Lookups[0m. [[0;32m OK [0m] Reached target [0;1;39mSound Card[0m. [[0;32m OK [0m] Reached target [0;1;39mHardware activated USB gadget[0m. [[0;32m OK [0m] Listening on [0;1;39mLoad/Save RF …itch Status /dev/rfkill Watch[0m. Starting [0;1;39mPermit User Sessions[0m... Starting [0;1;39mLoad/Save RF Kill Switch Status[0m... [[0;32m OK [0m] Finished [0;1;39mPermit User Sessions[0m. [[0;32m OK [0m] Started [0;1;39mUser Login Management[0m. [[0;32m OK [0m] Started [0;1;39mGetty on tty1[0m. [[0;32m OK [0m] Started [0;1;39mSerial Getty on ttySC0[0m. [[0;32m OK [0m] Reached target [0;1;39mLogin Prompts[0m. [[0;32m OK [0m] Reached target [0;1;39mMulti-User System[0m. [[0;32m OK [0m] Reached target [0;1;39mGraphical Interface[0m. Starting [0;1;39mUpdate UTMP about System Runlevel Changes[0m... [[0;32m OK [0m] Finished [0;1;39mUpdate UTMP about System Runlevel Changes[0m. [[0;32m OK [0m] Started [0;1;39mLoad/Save RF Kill Switch Status[0m. Debian GNU/Linux 11 debian-bullseye-arm64 ttySC0 debian-bullseye-arm64 login: root (automatic login) Linux debian-bullseye-arm64 5.10.150-cip18 #1 SMP PREEMPT Wed Oct 26 17:27:05 UTC 2022 aarch64 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. / # / # export NFS_ROOTFS='/var/lib/lava/dispatcher/tmp/770293/extract-nfsrootfs-4adbxgt9' export NFS_ROOTFS='/var/lib/lava/dispatcher/tmp/770293/extract-nfsrootfs-4adbxgt9' / # export NFS_SERVER_IP='172.16.3.3' export NFS_SERVER_IP='172.16.3.3' / # # # / # export SHELL=/bin/bash export [ 103.395413] SDHI0 VccQ: disabling SHELL=/bin/bash / # . /lava-770293/environment . /lava-770293/environment / # /lava-770293/bin/lava-test-runner /lava-770293/0 /lava-770293/bin/lava-test-runner /lava-770293/0 + export TESTRUN_ID=0_timesync-off + TESTRUN_ID=0_timesync-off + cd /lava-770293/0/tests/0_timesync-off ++ cat uuid + UUID=770293_1.6.2.4.1 + set +x + systemctl stop systemd-timesyncd + set +x + export TESTRUN_ID=1_kselftest-lkdtm + TESTRUN_ID=1_kselftest-lkdtm + cd /lava-770293/0/tests/1_kselftest-lkdtm ++ cat uuid + UUID=770293_1.6.2.4.5 + set +x + cd ./automated/linux/kselftest/ + ./kselftest.sh -c lkdtm -T '' -t kselftest_armhf.tar.gz -s false -u http://storage.kernelci.org/cip-gitlab/ci-iwamatsu-linux-5.10.y-cip-rc/v5.10.147-cip18-451-g87ba4bc77ca06/arm64/defconfig+kselftest/gcc-10/kselftest.tar.xz -L '' -S skipfile-lkft.yaml -b r8a774a1-hihope-rzg2m-ex -g cip-gitlab -e '' -p /opt/kselftests/mainline/ INFO: Generating a skipfile based on /lava-770293/0/tests/1_kselftest-lkdtm/automated/linux/kselftest/skipfile-lkft.yaml INFO: Using the following generated skipfile contents (until EOF): breakpoints:breakpoint_test breakpoints:step_after_suspend_test ftrace:ftracetest net:rtnetlink.sh net:tls netfilter:bridge_brouter.sh netfilter:nft_flowtable.sh netfilter:nft_trans_stress.sh pidfd:pidfd_wait INFO: EOF INFO: Installing sed perl wget xz-utils iproute2 Hit:1 http://deb.debian.org/debian bullseye InRelease Reading package lists... Reading package lists... Building dependency tree... Reading state information... iproute2 is already the newest version (5.10.0-4). perl is already the newest version (5.32.1-4+deb11u2). sed is already the newest version (4.7-1). wget is already the newest version (1.21-1+deb11u1). xz-utils is already the newest version (5.2.5-2.1~deb11u1). 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. --2022-10-26 17:55:54-- http://storage.kernelci.org/cip-gitlab/ci-iwamatsu-linux-5.10.y-cip-rc/v5.10.147-cip18-451-g87ba4bc77ca06/arm64/defconfig+kselftest/gcc-10/kselftest.tar.xz Resolving storage.kernelci.org (storage.kernelci.org)... 52.250.1.28 Connecting to storage.kernelci.org (storage.kernelci.org)|52.250.1.28|:80... connected. HTTP request sent, awaiting response... 200 OK Length: 1740216 (1.7M) [application/octet-stream] Saving to: 'kselftest.tar.xz' kselftest.tar.xz 0%[ ] 0 --.-KB/s kselftest.tar.xz 2%[ ] 44.73K 161KB/s kselftest.tar.xz 12%[=> ] 212.07K 346KB/s kselftest.tar.xz 24%[===> ] 409.92K 501KB/s kselftest.tar.xz 65%[============> ] 1.08M 990KB/s kselftest.tar.xz 83%[===============> ] 1.38M 964KB/s kselftest.tar.xz 100%[===================>] 1.66M 1.01MB/s in 1.6s 2022-10-26 17:55:57 (1.01 MB/s) - 'kselftest.tar.xz' saved [1740216/1740216] skiplist: ======================================== breakpoints:breakpoint_test breakpoints:step_after_suspend_test ftrace:ftracetest net:rtnetlink.sh net:tls netfilter:bridge_brouter.sh netfilter:nft_flowtable.sh netfilter:nft_trans_stress.sh pidfd:pidfd_wait ======================================== [ 264.496191] kselftest: Running tests in lkdtm TAP version 13 1..70 # selftests: lkdtm: PANIC.sh # Skipping PANIC: crashes entire system ok 1 selftests: lkdtm: PANIC.sh # SKIP # selftests: lkdtm: BUG.sh [ 265.673017] lkdtm: Performing direct entry BUG [ 265.678041] ------------[ cut here ]------------ [ 265.682678] kernel BUG at drivers/misc/lkdtm/bugs.c:76! [ 265.688471] Internal error: Oops - BUG: 0 [#1] PREEMPT SMP [ 265.693966] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 265.747337] CPU: 3 PID: 933 Comm: cat Not tainted 5.10.150-cip18 #1 [ 265.753604] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 265.759961] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 265.765983] pc : lkdtm_BUG+0x8/0x10 [ 265.769474] lr : lkdtm_do_action+0x24/0x40 [ 265.773570] sp : ffff8000149cbd10 [ 265.776884] x29: ffff8000149cbd10 x28: ffff0005c7fc6200 [ 265.782207] x27: 0000000000000000 x26: 0000000000000000 [ 265.787529] x25: ffff8000114f18e8 x24: ffff8000149cbe20 [ 265.792850] x23: 0000000000000004 x22: ffff0005c6277000 [ 265.798171] x21: ffff800011a073f8 x20: ffff8000114f18f8 [ 265.803492] x19: 0000000000000001 x18: ffff800012ad0810 [ 265.808814] x17: 0000000000000000 x16: 0000000000000000 [ 265.814135] x15: 0000000000000028 x14: 000000000005dd00 [ 265.819456] x13: ffff8000129d0b10 x12: 00000000d277729e [ 265.824778] x11: ffff0005c7fc6a80 x10: ffff8000125e8350 [ 265.830100] x9 : ffff800010a0f254 x8 : ffff800012590350 [ 265.835421] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 265.840743] x5 : ffff800012561c88 x4 : ffff00063f77ec50 [ 265.846064] x3 : 0000000000000000 x2 : 0000000000000000 [ 265.851385] x1 : ffff0005c7fc6200 x0 : ffff800010a0f900 [ 265.856707] Call trace: [ 265.859156] lkdtm_BUG+0x8/0x10 [ 265.862300] direct_entry+0xd0/0x140 [ 265.865881] full_proxy_write+0x68/0xbc [ 265.869722] vfs_write+0xec/0x20c [ 265.873041] ksys_write+0x70/0x100 [ 265.876445] __arm64_sys_write+0x24/0x30 [ 265.880375] el0_svc_common.constprop.0+0x84/0x1e0 [ 265.885168] do_el0_svc+0x2c/0x94 [ 265.888488] el0_svc+0x20/0x30 [ 265.891545] el0_sync_handler+0xb0/0xb4 [ 265.895384] el0_sync+0x180/0x1c0 [ 265.898708] Code: d503201f d503201f aa1e03e9 d503201f (d4210000) [ 265.904810] ---[ end trace b07e3d6731f442c6 ]--- [ 265.909431] note: cat[933] exited with preempt_count 1 [ 265.914572] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 [ 265.923447] in_atomic(): 0, irqs_disabled(): 128, non_block: 0, pid: 933, name: cat [ 265.931103] INFO: lockdep is turned off. [ 265.935029] irq event stamp: 1866 [ 265.938355] hardirqs last enabled at (1865): [] console_unlock+0x530/0x694 [ 265.946888] hardirqs last disabled at (1866): [] el1_dbg+0x24/0x50 [ 265.954634] softirqs last enabled at (1862): [] __do_softirq+0x5b8/0x638 [ 265.962993] softirqs last disabled at (1787): [] __irq_exit_rcu+0x174/0x1a0 [ 265.971523] CPU: 3 PID: 933 Comm: cat Tainted: G D 5.10.150-cip18 #1 [ 265.979180] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 265.985533] Call trace: [ 265.987984] dump_backtrace+0x0/0x1e4 [ 265.991648] show_stack+0x20/0x2c [ 265.994970] dump_stack+0xf8/0x168 [ 265.998376] ___might_sleep+0x158/0x200 [ 266.002215] __might_sleep+0x58/0x90 [ 266.005796] exit_signals+0x34/0x24c [ 266.009374] do_exit+0xd8/0xb34 [ 266.012518] die+0x22c/0x26c [ 266.015402] bug_handler+0x54/0x74 [ 266.018808] call_break_hook+0x70/0x84 [ 266.022559] brk_handler+0x24/0x6c [ 266.025969] do_debug_exception+0xd4/0x150 [ 266.030069] el1_dbg+0x34/0x50 [ 266.033126] el1_sync_handler+0x9c/0xd0 [ 266.036964] el1_sync+0x88/0x140 [ 266.040194] lkdtm_BUG+0x8/0x10 [ 266.043339] direct_entry+0xd0/0x140 [ 266.046917] full_proxy_write+0x68/0xbc [ 266.050756] vfs_write+0xec/0x20c [ 266.054073] ksys_write+0x70/0x100 [ 266.057478] __arm64_sys_write+0x24/0x30 [ 266.061405] el0_svc_common.constprop.0+0x84/0x1e0 [ 266.066199] do_el0_svc+0x2c/0x94 [ 266.069516] el0_svc+0x20/0x30 [ 266.072574] el0_sync_handler+0xb0/0xb4 [ 266.076412] el0_sync+0x180/0x1c0 [ 266.080064] ------------[ cut here ]------------ [ 266.084720] WARNING: CPU: 3 PID: 0 at kernel/rcu/tree.c:624 rcu_eqs_enter.constprop.0+0xe4/0x140 # Segmentation fau[ 266.093514] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek lt [ 266.148180] CPU: 3 PID: 0 Comm: swapper/3 Tainted: G D W 5.10.150-cip18 #1 [ 266.156486] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 266.162848] pstate: 200003c5 (nzCv DAIF -PAN -UAO -TCO BTYPE=--) [ 266.168869] pc : rcu_eqs_enter.constprop.0+0xe4/0x140 [ 266.173934] lr : rcu_idle_enter+0x24/0xe0 [ 266.177946] sp : ffff8000135b3ef0 [ 266.181263] x29: ffff8000135b3ef0 x28: 0000000000000000 [ 266.186595] x27: 0000000000000000 x26: ffff0005c02d1880 [ 266.191927] x25: 0000000000000000 x24: 0000000000000000 [ 266.197264] x23: ffff8000125614a0 x22: ffff800011dcf138 # [[ 266.202604] x21: ffff800012561478 x20: ffff800011dd1380 265.673017] lk[ 266.208178] x19: ffff00063f794380 x18: 0000000000000001 dtm: Performing [ 266.214904] x17: 0000000000000000 x16: 0000000000000000 direct entry BUG[ 266.221597] x15: 00000000000003db x14: 00000000000003db # [ 265.67804[ 266.228290] x13: 0000000000000003 x12: 0000000000000003 1] ------------[[ 266.234980] x11: 0000000000000000 x10: 0000000000001440 cut here ]-----[ 266.241672] x9 : ffff800011260bfc x8 : ffff0005c02d2d20 ------- # [ 26[ 266.248365] x7 : ffff80001255b000 x6 : ffff800012561000 5.682678] kernel[ 266.255058] x5 : ffff800012561c88 x4 : 0000000000000001 BUG at drivers/[ 266.261752] x3 : 0000000000000000 x2 : ffff0005c02d1880 misc/lkdtm/bugs.[ 266.268443] x1 : 4000000000000002 x0 : 4000000000000000 c:76! # [ 265.[ 266.275136] Call trace: 688471] Internal[ 266.278973] rcu_eqs_enter.constprop.0+0xe4/0x140 error: Oops - B[ 266.285056] rcu_idle_enter+0x24/0xe0 UG: 0 [#1] PREEM[ 266.290096] default_idle_call+0x58/0x100 PT SMP # [ 265[ 266.295487] do_idle+0x258/0x2d0 .693966] Modules[ 266.300091] cpu_startup_entry+0x30/0x8c linked in: fuse[ 266.305399] secondary_start_kernel+0x14c/0x190 ip_tables x_tab[ 266.311307] irq event stamp: 286984 les wl18xx wlcor[ 266.316187] hardirqs last enabled at (286983): [] tick_nohz_idle_exit+0x78/0x1c4 e mac80211 libar[ 266.326612] hardirqs last disabled at (286984): [] __schedule+0x678/0x990 c4 rcar_du_drm c[ 266.336348] softirqs last enabled at (286978): [] _local_bh_enable+0x2c/0x50 fg80211 rcar_lvd[ 266.346421] softirqs last disabled at (286977): [] irq_enter_rcu+0x7c/0xa0 s rcar_cmm snd_s[ 266.356232] ---[ end trace b07e3d6731f442c7 ]--- oc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 265.747337] CPU: 3 PID: 933 Comm: cat Not tainted 5.10.150-cip18 #1 # [ 265.753604] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 265.759961] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 265.765983] pc : lkdtm_BUG+0x8/0x10 # [ 265.769474] lr : lkdtm_do_action+0x24/0x40 # [ 265.773570] sp : ffff8000149cbd10 # [ 265.776884] x29: ffff8000149cbd10 x28: ffff0005c7fc6200 # [ 265.782207] x27: 0000000000000000 x26: 0000000000000000 # [ 265.787529] x25: ffff8000114f18e8 x24: ffff8000149cbe20 # [ 265.792850] x23: 0000000000000004 x22: ffff0005c6277000 # [ 265.798171] x21: ffff800011a073f8 x20: ffff8000114f18f8 # [ 265.803492] x19: 0000000000000001 x18: ffff800012ad0810 # [ 265.808814] x17: 0000000000000000 x16: 0000000000000000 # [ 265.814135] x15: 0000000000000028 x14: 000000000005dd00 # [ 265.819456] x13: ffff8000129d0b10 x12: 00000000d277729e # [ 265.824778] x11: ffff0005c7fc6a80 x10: ffff8000125e8350 # [ 265.830100] x9 : ffff800010a0f254 x8 : ffff800012590350 # [ 265.835421] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 265.840743] x5 : ffff800012561c88 x4 : ffff00063f77ec50 # [ 265.846064] x3 : 0000000000000000 x2 : 0000000000000000 # [ 265.851385] x1 : ffff0005c7fc6200 x0 : ffff800010a0f900 # [ 265.856707] Call trace: # [ 265.859156] lkdtm_BUG+0x8/0x10 # [ 265.862300] direct_entry+0xd0/0x140 # [ 265.865881] full_proxy_write+0x68/0xbc # [ 265.869722] vfs_write+0xec/0x20c # [ 265.873041] ksys_write+0x70/0x100 # [ 265.876445] __arm64_sys_write+0x24/0x30 # [ 265.880375] el0_svc_common.constprop.0+0x84/0x1e0 # [ 265.885168] do_el0_svc+0x2c/0x94 # [ 265.888488] el0_svc+0x20/0x30 # [ 265.891545] el0_sync_handler+0xb0/0xb4 # [ 265.895384] el0_sync+0x180/0x1c0 # [ 265.898708] Code: d503201f d503201f aa1e03e9 d503201f (d4210000) # [ 265.904810] ---[ end trace b07e3d6731f442c6 ]--- # [ 265.909431] note: cat[933] exited with preempt_count 1 # [ 265.914572] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 # [ 265.923447] in_atomic(): 0, irqs_disabled(): 128, non_block: 0, pid: 933, name: cat # [ 265.931103] INFO: lockdep is turned off. # [ 265.935029] irq event stamp: 1866 # [ 265.938355] hardirqs last enabled at (1865): [] console_unlock+0x530/0x694 # [ 265.946888] hardirqs last disabled at (1866): [] el1_dbg+0x24/0x50 # [ 265.954634] softirqs last enabled at (1862): [] __do_softirq+0x5b8/0x638 # [ 265.962993] softirqs last disabled at (1787): [] __irq_exit_rcu+0x174/0x1a0 # [ 265.971523] CPU: 3 PID: 933 Comm: cat Tainted: G D 5.10.150-cip18 #1 # [ 265.979180] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 265.985533] Call trace: # [ 265.987984] dump_backtrace+0x0/0x1e4 # [ 265.991648] show_stack+0x20/0x2c # [ 265.994970] dump_stack+0xf8/0x168 # [ 265.998376] ___might_sleep+0x158/0x200 # [ 266.002215] __might_sleep+0x58/0x90 # [ 266.005796] exit_signals+0x34/0x24c # [ 266.009374] do_exit+0xd8/0xb34 # [ 266.012518] die+0x22c/0x26c # [ 266.015402] bug_handler+0x54/0x74 # [ 266.018808] call_break_hook+0x70/0x84 # [ 266.022559] brk_handler+0x24/0x6c # [ 266.025969] do_debug_exception+0xd4/0x150 # [ 266.030069] el1_dbg+0x34/0x50 # [ 266.033126] el1_sync_handler+0x9c/0xd0 # [ 266.036964] el1_sync+0x88/0x140 # [ 266.040194] lkdtm_BUG+0x8/0x10 # [ 266.043339] direct_entry+0xd0/0x140 # [ 266.046917] full_proxy_write+0x68/0xbc # [ 266.050756] vfs_write+0xec/0x20c # [ 266.054073] ksys_write+0x70/0x100 # [ 266.057478] __arm64_sys_write+0x24/0x30 # [ 266.061405] el0_svc_common.constprop.0+0x84/0x1e0 # [ 266.066199] do_el0_svc+0x2c/0x94 # [ 266.069516] el0_svc+0x20/0x30 # [ 266.072574] el0_sync_handler+0xb0/0xb4 # [ 266.076412] el0_sync+0x180/0x1c0 # [ 266.080064] ------------[ cut here ]------------ # [ 266.084720] WARNING: CPU: 3 PID: 0 at kernel/rcu/tree.c:624 rcu_eqs_enter.constprop.0+0xe4/0x140 # [ 266.093514] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # BUG: saw 'kernel BUG at': ok ok 2 selftests: lkdtm: BUG.sh # selftests: lkdtm: WARNING.sh [ 268.454633] lkdtm: Performing direct entry WARNING [ 268.459535] ------------[ cut here ]------------ [ 268.464169] WARNING: CPU: 0 PID: 971 at drivers/misc/lkdtm/bugs.c:83 lkdtm_WARNING+0x28/0x34 [ 268.472605] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 268.525885] CPU: 0 PID: 971 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 268.533537] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 268.539892] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 268.545896] pc : lkdtm_WARNING+0x28/0x34 [ 268.549818] lr : lkdtm_do_action+0x24/0x40 [ 268.553911] sp : ffff800014aabd10 [ 268.557223] x29: ffff800014aabd10 x28: ffff0005c3a6e200 [ 268.562540] x27: 0000000000000000 x26: 0000000000000000 [ 268.567856] x25: ffff8000114f18e8 x24: ffff800014aabe20 [ 268.573171] x23: 0000000000000008 x22: ffff0005c5ddf000 [ 268.578486] x21: ffff800011a07400 x20: ffff8000114f1908 [ 268.583801] x19: 0000000000000002 x18: 0000000000000000 [ 268.589116] x17: 0000000000000000 x16: 0000000000000000 [ 268.594431] x15: 0000000000000030 x14: ffffffffffffffff [ 268.599746] x13: ffff800094aaba07 x12: ffff800014aaba0f [ 268.605060] x11: 0000000000000038 x10: ffff8000125e8350 [ 268.610375] x9 : ffff800010a0f254 x8 : ffff800012590350 [ 268.615690] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 268.621005] x5 : ffff800012561c88 x4 : ffff00063f718c50 [ 268.626319] x3 : 0000000000000000 x2 : 0000000000000000 [ 268.631634] x1 : ffff80001349e000 x0 : 0000000000000001 [ 268.636949] Call trace: [ 268.639395] lkdtm_WARNING+0x28/0x34 [ 268.642968] direct_entry+0xd0/0x140 [ 268.646545] full_proxy_write+0x68/0xbc [ 268.650382] vfs_write+0xec/0x20c [ 268.653697] ksys_write+0x70/0x100 [ 268.657098] __arm64_sys_write+0x24/0x30 [ 268.661023] el0_svc_common.constprop.0+0x84/0x1e0 [ 268.665812] do_el0_svc+0x2c/0x94 [ 268.669129] el0_svc+0x20/0x30 [ 268.672181] el0_sync_handler+0xb0/0xb4 [ 268.676016] el0_sync+0x180/0x1c0 [ 268.679327] irq event stamp: 0 [ 268.682385] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 268.688655] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 268.696832] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 268.705007] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 268.711270] ---[ end trace b07e3d6731f442c8 ]--- # [ 268.454633] lkdtm: Performing direct entry WARNING # [ 268.459535] ------------[ cut here ]------------ # [ 268.464169] WARNING: CPU: 0 PID: 971 at drivers/misc/lkdtm/bugs.c:83 lkdtm_WARNING+0x28/0x34 # [ 268.472605] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 268.525885] CPU: 0 PID: 971 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 268.533537] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 268.539892] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 268.545896] pc : lkdtm_WARNING+0x28/0x34 # [ 268.549818] lr : lkdtm_do_action+0x24/0x40 # [ 268.553911] sp : ffff800014aabd10 # [ 268.557223] x29: ffff800014aabd10 x28: ffff0005c3a6e200 # [ 268.562540] x27: 0000000000000000 x26: 0000000000000000 # [ 268.567856] x25: ffff8000114f18e8 x24: ffff800014aabe20 # [ 268.573171] x23: 0000000000000008 x22: ffff0005c5ddf000 # [ 268.578486] x21: ffff800011a07400 x20: ffff8000114f1908 # [ 268.583801] x19: 0000000000000002 x18: 0000000000000000 # [ 268.589116] x17: 0000000000000000 x16: 0000000000000000 # [ 268.594431] x15: 0000000000000030 x14: ffffffffffffffff # [ 268.599746] x13: ffff800094aaba07 x12: ffff800014aaba0f # [ 268.605060] x11: 0000000000000038 x10: ffff8000125e8350 # [ 268.610375] x9 : ffff800010a0f254 x8 : ffff800012590350 # [ 268.615690] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 268.621005] x5 : ffff800012561c88 x4 : ffff00063f718c50 # [ 268.626319] x3 : 0000000000000000 x2 : 0000000000000000 # [ 268.631634] x1 : ffff80001349e000 x0 : 0000000000000001 # [ 268.636949] Call trace: # [ 268.639395] lkdtm_WARNING+0x28/0x34 # [ 268.642968] direct_entry+0xd0/0x140 # [ 268.646545] full_proxy_write+0x68/0xbc # [ 268.650382] vfs_write+0xec/0x20c # [ 268.653697] ksys_write+0x70/0x100 # [ 268.657098] __arm64_sys_write+0x24/0x30 # [ 268.661023] el0_svc_common.constprop.0+0x84/0x1e0 # [ 268.665812] do_el0_svc+0x2c/0x94 # [ 268.669129] el0_svc+0x20/0x30 # [ 268.672181] el0_sync_handler+0xb0/0xb4 # [ 268.676016] el0_sync+0x180/0x1c0 # [ 268.679327] irq event stamp: 0 # [ 268.682385] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 268.688655] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 268.696832] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 268.705007] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 268.711270] ---[ end trace b07e3d6731f442c8 ]--- # WARNING: saw 'WARNING:': ok ok 3 selftests: lkdtm: WARNING.sh # selftests: lkdtm: WARNING_MESSAGE.sh [ 269.946565] lkdtm: Performing direct entry WARNING_MESSAGE [ 269.952269] ------------[ cut here ]------------ [ 269.958592] Warning message trigger count: 2 [ 269.963423] WARNING: CPU: 5 PID: 1006 at drivers/misc/lkdtm/bugs.c:88 lkdtm_WARNING_MESSAGE+0x30/0x40 [ 269.972643] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 270.025975] CPU: 5 PID: 1006 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 270.033716] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 270.040071] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 270.046077] pc : lkdtm_WARNING_MESSAGE+0x30/0x40 [ 270.050693] lr : lkdtm_WARNING_MESSAGE+0x30/0x40 [ 270.055308] sp : ffff800014b6bd00 [ 270.058621] x29: ffff800014b6bd00 x28: ffff0005c8371880 [ 270.063938] x27: 0000000000000000 x26: 0000000000000000 [ 270.069256] x25: ffff8000114f18e8 x24: ffff800014b6be20 [ 270.074574] x23: 0000000000000010 x22: ffff0005c9ae8000 [ 270.079891] x21: ffff800011a07408 x20: ffff8000114f1918 [ 270.085208] x19: 0000000000000003 x18: 0000000000000000 [ 270.090526] x17: 0000000000000000 x16: 0000000000000000 [ 270.095843] x15: 0000000000000000 x14: 0000000000000000 [ 270.101160] x13: 0000000000000000 x12: 0000000000000000 [ 270.106478] x11: 0000000000000000 x10: 0000000000001440 [ 270.111795] x9 : ffff80001012dcf4 x8 : ffff0005c8372d20 [ 270.117113] x7 : 0000000000000000 x6 : ffff800012561000 [ 270.122431] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 270.127748] x3 : 0000000000000000 x2 : 0000000000000000 [ 270.133065] x1 : 0000000000000000 x0 : ffff0005c8371880 [ 270.138384] Call trace: [ 270.140831] lkdtm_WARNING_MESSAGE+0x30/0x40 [ 270.145101] lkdtm_do_action+0x24/0x40 [ 270.148849] direct_entry+0xd0/0x140 [ 270.152428] full_proxy_write+0x68/0xbc [ 270.156266] vfs_write+0xec/0x20c [ 270.159583] ksys_write+0x70/0x100 [ 270.162984] __arm64_sys_write+0x24/0x30 [ 270.166912] el0_svc_common.constprop.0+0x84/0x1e0 [ 270.171703] do_el0_svc+0x2c/0x94 [ 270.175021] el0_svc+0x20/0x30 [ 270.178074] el0_sync_handler+0xb0/0xb4 [ 270.181911] el0_sync+0x180/0x1c0 [ 270.185225] irq event stamp: 0 [ 270.188285] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 270.194558] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 270.202735] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 270.210910] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 270.217174] ---[ end trace b07e3d6731f442c9 ]--- # [ 269.946565] lkdtm: Performing direct entry WARNING_MESSAGE # [ 269.952269] ------------[ cut here ]------------ # [ 269.958592] Warning message trigger count: 2 # [ 269.963423] WARNING: CPU: 5 PID: 1006 at drivers/misc/lkdtm/bugs.c:88 lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 269.972643] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 270.025975] CPU: 5 PID: 1006 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 270.033716] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 270.040071] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 270.046077] pc : lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 270.050693] lr : lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 270.055308] sp : ffff800014b6bd00 # [ 270.058621] x29: ffff800014b6bd00 x28: ffff0005c8371880 # [ 270.063938] x27: 0000000000000000 x26: 0000000000000000 # [ 270.069256] x25: ffff8000114f18e8 x24: ffff800014b6be20 # [ 270.074574] x23: 0000000000000010 x22: ffff0005c9ae8000 # [ 270.079891] x21: ffff800011a07408 x20: ffff8000114f1918 # [ 270.085208] x19: 0000000000000003 x18: 0000000000000000 # [ 270.090526] x17: 0000000000000000 x16: 0000000000000000 # [ 270.095843] x15: 0000000000000000 x14: 0000000000000000 # [ 270.101160] x13: 0000000000000000 x12: 0000000000000000 # [ 270.106478] x11: 0000000000000000 x10: 0000000000001440 # [ 270.111795] x9 : ffff80001012dcf4 x8 : ffff0005c8372d20 # [ 270.117113] x7 : 0000000000000000 x6 : ffff800012561000 # [ 270.122431] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 270.127748] x3 : 0000000000000000 x2 : 0000000000000000 # [ 270.133065] x1 : 0000000000000000 x0 : ffff0005c8371880 # [ 270.138384] Call trace: # [ 270.140831] lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 270.145101] lkdtm_do_action+0x24/0x40 # [ 270.148849] direct_entry+0xd0/0x140 # [ 270.152428] full_proxy_write+0x68/0xbc # [ 270.156266] vfs_write+0xec/0x20c # [ 270.159583] ksys_write+0x70/0x100 # [ 270.162984] __arm64_sys_write+0x24/0x30 # [ 270.166912] el0_svc_common.constprop.0+0x84/0x1e0 # [ 270.171703] do_el0_svc+0x2c/0x94 # [ 270.175021] el0_svc+0x20/0x30 # [ 270.178074] el0_sync_handler+0xb0/0xb4 # [ 270.181911] el0_sync+0x180/0x1c0 # [ 270.185225] irq event stamp: 0 # [ 270.188285] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 270.194558] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 270.202735] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 270.210910] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 270.217174] ---[ end trace b07e3d6731f442c9 ]--- # WARNING_MESSAGE: saw 'message trigger': ok ok 4 selftests: lkdtm: WARNING_MESSAGE.sh # selftests: lkdtm: EXCEPTION.sh [ 271.432511] lkdtm: Performing direct entry EXCEPTION [ 271.437754] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 [ 271.446625] Mem abort info: [ 271.449684] ESR = 0x96000044 [ 271.452857] EC = 0x25: DABT (current EL), IL = 32 bits [ 271.458202] SET = 0, FnV = 0 [ 271.461309] EA = 0, S1PTW = 0 [ 271.464454] Data abort info: [ 271.467360] ISV = 0, ISS = 0x00000044 [ 271.471233] CM = 0, WnR = 1 [ 271.474445] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000602355000 [ 271.480932] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 [ 271.487814] Internal error: Oops: 96000044 [#2] PREEMPT SMP [ 271.493385] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 271.546589] CPU: 0 PID: 1038 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 271.554326] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 271.560677] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 271.566687] pc : lkdtm_EXCEPTION+0x14/0x1c [ 271.570780] lr : lkdtm_do_action+0x24/0x40 [ 271.574870] sp : ffff800014c2bd10 [ 271.578179] x29: ffff800014c2bd10 x28: ffff0005c914c980 [ 271.583490] x27: 0000000000000000 x26: 0000000000000000 [ 271.588800] x25: ffff8000114f18e8 x24: ffff800014c2be20 [ 271.594110] x23: 000000000000000a x22: ffff0005c830b000 [ 271.599420] x21: ffff800011a07418 x20: ffff8000114f1928 [ 271.604730] x19: 0000000000000004 x18: 0000000000000000 [ 271.610039] x17: 0000000000000000 x16: 0000000000000000 [ 271.615349] x15: 0000000000000030 x14: ffffffffffffffff [ 271.620658] x13: ffff800094c2ba07 x12: ffff800014c2ba0f [ 271.625967] x11: 0000000000000008 x10: 0000000000001440 [ 271.631277] x9 : ffff800010a0f254 x8 : ffff0005c914de20 [ 271.636587] x7 : 0000000000000000 x6 : ffff800012561000 [ 271.641896] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 271.647206] x3 : 0000000000000000 x2 : 0000000000000000 [ 271.652515] x1 : ffff0005c914c980 x0 : 0000000000000000 [ 271.657825] Call trace: [ 271.660267] lkdtm_EXCEPTION+0x14/0x1c [ 271.664011] direct_entry+0xd0/0x140 [ 271.667585] full_proxy_write+0x68/0xbc [ 271.671421] vfs_write+0xec/0x20c [ 271.674733] ksys_write+0x70/0x100 [ 271.678130] __arm64_sys_write+0x24/0x30 [ 271.682051] el0_svc_common.constprop.0+0x84/0x1e0 [ 271.686836] do_el0_svc+0x2c/0x94 [ 271.690149] el0_svc+0x20/0x30 [ 271.693198] el0_sync_handler+0xb0/0xb4 [ 271.697029] el0_sync+0x180/0x1c0 [ 271.700344] Code: d503201f d2800000 d503233f d50323bf (b900001f) [ 271.706435] ---[ end trace b07e3d6731f442ca ]--- # Segmentation fault # [ 271.432511] lkdtm: Performing direct entry EXCEPTION # [ 271.437754] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 # [ 271.446625] Mem abort info: # [ 271.449684] ESR = 0x96000044 # [ 271.452857] EC = 0x25: DABT (current EL), IL = 32 bits # [ 271.458202] SET = 0, FnV = 0 # [ 271.461309] EA = 0, S1PTW = 0 # [ 271.464454] Data abort info: # [ 271.467360] ISV = 0, ISS = 0x00000044 # [ 271.471233] CM = 0, WnR = 1 # [ 271.474445] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000602355000 # [ 271.480932] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 # [ 271.487814] Internal error: Oops: 96000044 [#2] PREEMPT SMP # [ 271.493385] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 271.546589] CPU: 0 PID: 1038 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 271.554326] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 271.560677] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 271.566687] pc : lkdtm_EXCEPTION+0x14/0x1c # [ 271.570780] lr : lkdtm_do_action+0x24/0x40 # [ 271.574870] sp : ffff800014c2bd10 # [ 271.578179] x29: ffff800014c2bd10 x28: ffff0005c914c980 # [ 271.583490] x27: 0000000000000000 x26: 0000000000000000 # [ 271.588800] x25: ffff8000114f18e8 x24: ffff800014c2be20 # [ 271.594110] x23: 000000000000000a x22: ffff0005c830b000 # [ 271.599420] x21: ffff800011a07418 x20: ffff8000114f1928 # [ 271.604730] x19: 0000000000000004 x18: 0000000000000000 # [ 271.610039] x17: 0000000000000000 x16: 0000000000000000 # [ 271.615349] x15: 0000000000000030 x14: ffffffffffffffff # [ 271.620658] x13: ffff800094c2ba07 x12: ffff800014c2ba0f # [ 271.625967] x11: 0000000000000008 x10: 0000000000001440 # [ 271.631277] x9 : ffff800010a0f254 x8 : ffff0005c914de20 # [ 271.636587] x7 : 0000000000000000 x6 : ffff800012561000 # [ 271.641896] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 271.647206] x3 : 0000000000000000 x2 : 0000000000000000 # [ 271.652515] x1 : ffff0005c914c980 x0 : 0000000000000000 # [ 271.657825] Call trace: # [ 271.660267] lkdtm_EXCEPTION+0x14/0x1c # [ 271.664011] direct_entry+0xd0/0x140 # [ 271.667585] full_proxy_write+0x68/0xbc # [ 271.671421] vfs_write+0xec/0x20c # [ 271.674733] ksys_write+0x70/0x100 # [ 271.678130] __arm64_sys_write+0x24/0x30 # [ 271.682051] el0_svc_common.constprop.0+0x84/0x1e0 # [ 271.686836] do_el0_svc+0x2c/0x94 # [ 271.690149] el0_svc+0x20/0x30 # [ 271.693198] el0_sync_handler+0xb0/0xb4 # [ 271.697029] el0_sync+0x180/0x1c0 # [ 271.700344] Code: d503201f d2800000 d503233f d50323bf (b900001f) # [ 271.706435] ---[ end trace b07e3d6731f442ca ]--- # EXCEPTION: saw 'call trace:': ok ok 5 selftests: lkdtm: EXCEPTION.sh # selftests: lkdtm: LOOP.sh # Skipping LOOP: Hangs the system ok 6 selftests: lkdtm: LOOP.sh # SKIP # selftests: lkdtm: EXHAUST_STACK.sh # Skipping EXHAUST_STACK: Corrupts memory on failure ok 7 selftests: lkdtm: EXHAUST_STACK.sh # SKIP # selftests: lkdtm: CORRUPT_STACK.sh # Skipping CORRUPT_STACK: Crashes entire system on success ok 8 selftests: lkdtm: CORRUPT_STACK.sh # SKIP # selftests: lkdtm: CORRUPT_STACK_STRONG.sh # Skipping CORRUPT_STACK_STRONG: Crashes entire system on success ok 9 selftests: lkdtm: CORRUPT_STACK_STRONG.sh # SKIP # selftests: lkdtm: CORRUPT_LIST_ADD.sh [ 274.239859] lkdtm: Performing direct entry CORRUPT_LIST_ADD [ 274.245679] lkdtm: attempting good list addition [ 274.250376] lkdtm: attempting corrupted list addition [ 274.255482] lkdtm: list_add() corruption not detected! # [ 274.239859] lkdtm: Performing direct entry CORRUPT_LIST_ADD # [ 274.245679] lkdtm: attempting good list addition # [ 274.250376] lkdtm: attempting corrupted list addition # [ 274.255482] lkdtm: list_add() corruption not detected! # CORRUPT_LIST_ADD: missing 'list_add corruption': [FAIL] not ok 10 selftests: lkdtm: CORRUPT_LIST_ADD.sh # exit=1 # selftests: lkdtm: CORRUPT_LIST_DEL.sh [ 275.159031] lkdtm: Performing direct entry CORRUPT_LIST_DEL [ 275.164696] lkdtm: attempting good list removal [ 275.170834] lkdtm: attempting corrupted list removal [ 275.176195] lkdtm: list_del() corruption not detected! # [ 275.159031] lkdtm: Performing direct entry CORRUPT_LIST_DEL # [ 275.164696] lkdtm: attempting good list removal # [ 275.170834] lkdtm: attempting corrupted list removal # [ 275.176195] lkdtm: list_del() corruption not detected! # CORRUPT_LIST_DEL: missing 'list_del corruption': [FAIL] not ok 11 selftests: lkdtm: CORRUPT_LIST_DEL.sh # exit=1 # selftests: lkdtm: STACK_GUARD_PAGE_LEADING.sh [ 276.102763] lkdtm: Performing direct entry STACK_GUARD_PAGE_LEADING [ 276.109160] lkdtm: attempting bad read from page below current stack [ 276.115596] Unable to handle kernel paging request at virtual address ffff80001506ffff [ 276.123575] Mem abort info: [ 276.126487] ESR = 0x96000007 [ 276.129610] EC = 0x25: DABT (current EL), IL = 32 bits [ 276.135252] SET = 0, FnV = 0 [ 276.138358] EA = 0, S1PTW = 0 [ 276.141663] Data abort info: [ 276.144572] ISV = 0, ISS = 0x00000007 [ 276.148411] CM = 0, WnR = 0 [ 276.151404] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 276.158183] [ffff80001506ffff] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000602318003, pte=0000000000000000 [ 276.170761] Internal error: Oops: 96000007 [#3] PREEMPT SMP [ 276.176331] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 276.229535] CPU: 0 PID: 1273 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 276.237272] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 276.243622] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 276.249632] pc : lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 [ 276.255026] lr : lkdtm_STACK_GUARD_PAGE_LEADING+0x2c/0x58 [ 276.260418] sp : ffff800015073ce0 [ 276.263727] x29: ffff800015073ce0 x28: ffff0005c7e04980 [ 276.269038] x27: 0000000000000000 x26: 0000000000000000 [ 276.274349] x25: ffff8000114f18e8 x24: ffff800015073e20 [ 276.279658] x23: 0000000000000019 x22: ffff0005c77ca000 [ 276.284968] x21: ffff800011a07498 x20: ffff8000114f1998 [ 276.290277] x19: ffff800015070000 x18: 0000000000000000 [ 276.295587] x17: 0000000000000000 x16: 0000000000000000 [ 276.300896] x15: 0000000000000030 x14: ffffffffffffffff [ 276.306205] x13: ffff8000950739c7 x12: ffff8000150739cf [ 276.311515] x11: 0000000000000000 x10: ffff8000125e8350 [ 276.316824] x9 : ffff80001012dcf4 x8 : ffff800012590350 [ 276.322133] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 276.327442] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 276.332752] x3 : 0000000000000000 x2 : 0000000000000000 [ 276.338061] x1 : ffff0005c7e04980 x0 : ffff800011a07f58 [ 276.343371] Call trace: [ 276.345813] lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 [ 276.350863] lkdtm_do_action+0x24/0x40 [ 276.354607] direct_entry+0xd0/0x140 [ 276.358180] full_proxy_write+0x68/0xbc [ 276.362016] vfs_write+0xec/0x20c [ 276.365328] ksys_write+0x70/0x100 [ 276.368725] __arm64_sys_write+0x24/0x30 [ 276.372646] el0_svc_common.constprop.0+0x84/0x1e0 [ 276.377432] do_el0_svc+0x2c/0x94 [ 276.380742] el0_svc+0x20/0x30 [ 276.383791] el0_sync_handler+0xb0/0xb4 [ 276.387624] el0_sync+0x180/0x1c0 [ 276.390939] Code: 913c6000 97ffe071 90003e00 913d6000 (385ff261) [ 276.397030] ---[ end trace b07e3d6731f442cb ]--- # Segmentation fault # [ 276.102763] lkdtm: Performing direct entry STACK_GUARD_PAGE_LEADING # [ 276.109160] lkdtm: attempting bad read from page below current stack # [ 276.115596] Unable to handle kernel paging request at virtual address ffff80001506ffff # [ 276.123575] Mem abort info: # [ 276.126487] ESR = 0x96000007 # [ 276.129610] EC = 0x25: DABT (current EL), IL = 32 bits # [ 276.135252] SET = 0, FnV = 0 # [ 276.138358] EA = 0, S1PTW = 0 # [ 276.141663] Data abort info: # [ 276.144572] ISV = 0, ISS = 0x00000007 # [ 276.148411] CM = 0, WnR = 0 # [ 276.151404] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 276.158183] [ffff80001506ffff] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000602318003, pte=0000000000000000 # [ 276.170761] Internal error: Oops: 96000007 [#3] PREEMPT SMP # [ 276.176331] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 276.229535] CPU: 0 PID: 1273 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 276.237272] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 276.243622] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 276.249632] pc : lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 # [ 276.255026] lr : lkdtm_STACK_GUARD_PAGE_LEADING+0x2c/0x58 # [ 276.260418] sp : ffff800015073ce0 # [ 276.263727] x29: ffff800015073ce0 x28: ffff0005c7e04980 # [ 276.269038] x27: 0000000000000000 x26: 0000000000000000 # [ 276.274349] x25: ffff8000114f18e8 x24: ffff800015073e20 # [ 276.279658] x23: 0000000000000019 x22: ffff0005c77ca000 # [ 276.284968] x21: ffff800011a07498 x20: ffff8000114f1998 # [ 276.290277] x19: ffff800015070000 x18: 0000000000000000 # [ 276.295587] x17: 0000000000000000 x16: 0000000000000000 # [ 276.300896] x15: 0000000000000030 x14: ffffffffffffffff # [ 276.306205] x13: ffff8000950739c7 x12: ffff8000150739cf # [ 276.311515] x11: 0000000000000000 x10: ffff8000125e8350 # [ 276.316824] x9 : ffff80001012dcf4 x8 : ffff800012590350 # [ 276.322133] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 276.327442] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 276.332752] x3 : 0000000000000000 x2 : 0000000000000000 # [ 276.338061] x1 : ffff0005c7e04980 x0 : ffff800011a07f58 # [ 276.343371] Call trace: # [ 276.345813] lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 # [ 276.350863] lkdtm_do_action+0x24/0x40 # [ 276.354607] direct_entry+0xd0/0x140 # [ 276.358180] full_proxy_write+0x68/0xbc # [ 276.362016] vfs_write+0xec/0x20c # [ 276.365328] ksys_write+0x70/0x100 # [ 276.368725] __arm64_sys_write+0x24/0x30 # [ 276.372646] el0_svc_common.constprop.0+0x84/0x1e0 # [ 276.377432] do_el0_svc+0x2c/0x94 # [ 276.380742] el0_svc+0x20/0x30 # [ 276.383791] el0_sync_handler+0xb0/0xb4 # [ 276.387624] el0_sync+0x180/0x1c0 # [ 276.390939] Code: 913c6000 97ffe071 90003e00 913d6000 (385ff261) # [ 276.397030] ---[ end trace b07e3d6731f442cb ]--- # STACK_GUARD_PAGE_LEADING: saw 'call trace:': ok ok 12 selftests: lkdtm: STACK_GUARD_PAGE_LEADING.sh # selftests: lkdtm: STACK_GUARD_PAGE_TRAILING.sh [ 278.373065] lkdtm: Performing direct entry STACK_GUARD_PAGE_TRAILING [ 278.379497] lkdtm: attempting bad read from page above current stack [ 278.385924] Unable to handle kernel paging request at virtual address ffff800014c94000 [ 278.393960] Mem abort info: [ 278.396837] ESR = 0x96000007 [ 278.399909] EC = 0x25: DABT (current EL), IL = 32 bits [ 278.405529] SET = 0, FnV = 0 [ 278.408640] EA = 0, S1PTW = 0 [ 278.411789] Data abort info: [ 278.414784] ISV = 0, ISS = 0x00000007 [ 278.418733] CM = 0, WnR = 0 [ 278.421737] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 278.428473] [ffff800014c94000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000608147003, pte=0000000000000000 [ 278.441332] Internal error: Oops: 96000007 [#4] PREEMPT SMP [ 278.446913] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 278.500194] CPU: 0 PID: 1318 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 278.507935] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 278.514291] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 278.520305] pc : lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c [ 278.525790] lr : lkdtm_STACK_GUARD_PAGE_TRAILING+0x2c/0x5c [ 278.531272] sp : ffff800014c93ce0 [ 278.534584] x29: ffff800014c93ce0 x28: ffff0005c7fc3100 [ 278.539901] x27: 0000000000000000 x26: 0000000000000000 [ 278.545217] x25: ffff8000114f18e8 x24: ffff800014c93e20 [ 278.550532] x23: 000000000000001a x22: ffff0005c83e6000 [ 278.555848] x21: ffff800011a074b8 x20: ffff8000114f19a8 [ 278.561163] x19: ffff800014c94000 x18: 0000000000000000 [ 278.566478] x17: 0000000000000000 x16: 0000000000000000 [ 278.571793] x15: 0000000000000030 x14: ffffffffffffffff [ 278.577108] x13: ffff800094c939c7 x12: ffff800014c939cf [ 278.582423] x11: 0000000000000008 x10: ffff8000125e8350 [ 278.587738] x9 : ffff80001012dcf4 x8 : ffff800012590350 [ 278.593053] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 278.598368] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 278.603683] x3 : 0000000000000000 x2 : 0000000000000000 [ 278.608997] x1 : ffff0005c7fc3100 x0 : ffff800011a07fd0 [ 278.614313] Call trace: [ 278.616760] lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c [ 278.621901] lkdtm_do_action+0x24/0x40 [ 278.625648] direct_entry+0xd0/0x140 [ 278.629225] full_proxy_write+0x68/0xbc [ 278.633064] vfs_write+0xec/0x20c [ 278.636380] ksys_write+0x70/0x100 [ 278.639780] __arm64_sys_write+0x24/0x30 [ 278.643705] el0_svc_common.constprop.0+0x84/0x1e0 [ 278.648495] do_el0_svc+0x2c/0x94 [ 278.651809] el0_svc+0x20/0x30 [ 278.654861] el0_sync_handler+0xb0/0xb4 [ 278.658698] el0_sync+0x180/0x1c0 [ 278.662016] Code: 97ffe05b 91401273 90003e00 913f4000 (39400261) [ 278.668112] ---[ end trace b07e3d6731f442cc ]--- # Segmentation fault # [ 278.373065] lkdtm: Performing direct entry STACK_GUARD_PAGE_TRAILING # [ 278.379497] lkdtm: attempting bad read from page above current stack # [ 278.385924] Unable to handle kernel paging request at virtual address ffff800014c94000 # [ 278.393960] Mem abort info: # [ 278.396837] ESR = 0x96000007 # [ 278.399909] EC = 0x25: DABT (current EL), IL = 32 bits # [ 278.405529] SET = 0, FnV = 0 # [ 278.408640] EA = 0, S1PTW = 0 # [ 278.411789] Data abort info: # [ 278.414784] ISV = 0, ISS = 0x00000007 # [ 278.418733] CM = 0, WnR = 0 # [ 278.421737] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 278.428473] [ffff800014c94000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000608147003, pte=0000000000000000 # [ 278.441332] Internal error: Oops: 96000007 [#4] PREEMPT SMP # [ 278.446913] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 278.500194] CPU: 0 PID: 1318 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 278.507935] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 278.514291] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 278.520305] pc : lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c # [ 278.525790] lr : lkdtm_STACK_GUARD_PAGE_TRAILING+0x2c/0x5c # [ 278.531272] sp : ffff800014c93ce0 # [ 278.534584] x29: ffff800014c93ce0 x28: ffff0005c7fc3100 # [ 278.539901] x27: 0000000000000000 x26: 0000000000000000 # [ 278.545217] x25: ffff8000114f18e8 x24: ffff800014c93e20 # [ 278.550532] x23: 000000000000001a x22: ffff0005c83e6000 # [ 278.555848] x21: ffff800011a074b8 x20: ffff8000114f19a8 # [ 278.561163] x19: ffff800014c94000 x18: 0000000000000000 # [ 278.566478] x17: 0000000000000000 x16: 0000000000000000 # [ 278.571793] x15: 0000000000000030 x14: ffffffffffffffff # [ 278.577108] x13: ffff800094c939c7 x12: ffff800014c939cf # [ 278.582423] x11: 0000000000000008 x10: ffff8000125e8350 # [ 278.587738] x9 : ffff80001012dcf4 x8 : ffff800012590350 # [ 278.593053] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 278.598368] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 278.603683] x3 : 0000000000000000 x2 : 0000000000000000 # [ 278.608997] x1 : ffff0005c7fc3100 x0 : ffff800011a07fd0 # [ 278.614313] Call trace: # [ 278.616760] lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c # [ 278.621901] lkdtm_do_action+0x24/0x40 # [ 278.625648] direct_entry+0xd0/0x140 # [ 278.629225] full_proxy_write+0x68/0xbc # [ 278.633064] vfs_write+0xec/0x20c # [ 278.636380] ksys_write+0x70/0x100 # [ 278.639780] __arm64_sys_write+0x24/0x30 # [ 278.643705] el0_svc_common.constprop.0+0x84/0x1e0 # [ 278.648495] do_el0_svc+0x2c/0x94 # [ 278.651809] el0_svc+0x20/0x30 # [ 278.654861] el0_sync_handler+0xb0/0xb4 # [ 278.658698] el0_sync+0x180/0x1c0 # [ 278.662016] Code: 97ffe05b 91401273 90003e00 913f4000 (39400261) # [ 278.668112] ---[ end trace b07e3d6731f442cc ]--- # STACK_GUARD_PAGE_TRAILING: saw 'call trace:': ok ok 13 selftests: lkdtm: STACK_GUARD_PAGE_TRAILING.sh # selftests: lkdtm: UNSET_SMEP.sh [ 280.627880] lkdtm: Performing direct entry UNSET_SMEP [ 280.633071] lkdtm: XFAIL: this test is x86_64-only # [ 280.627880] lkdtm: Performing direct entry UNSET_SMEP # [ 280.633071] lkdtm: XFAIL: this test is x86_64-only # UNSET_SMEP: saw 'XFAIL': [SKIP] ok 14 selftests: lkdtm: UNSET_SMEP.sh # SKIP # selftests: lkdtm: DOUBLE_FAULT.sh [ 281.573004] lkdtm: Performing direct entry DOUBLE_FAULT [ 281.578447] lkdtm: XFAIL: this test is ia32-only # [ 281.573004] lkdtm: Performing direct entry DOUBLE_FAULT # [ 281.578447] lkdtm: XFAIL: this test is ia32-only # DOUBLE_FAULT: saw 'XFAIL': [SKIP] ok 15 selftests: lkdtm: DOUBLE_FAULT.sh # SKIP # selftests: lkdtm: CORRUPT_PAC.sh [ 282.331709] lkdtm: Performing direct entry CORRUPT_PAC [ 282.337010] lkdtm: FAIL: CPU lacks pointer authentication feature # [ 282.331709] lkdtm: Performing direct entry CORRUPT_PAC # [ 282.337010] lkdtm: FAIL: CPU lacks pointer authentication feature # CORRUPT_PAC: missing 'call trace:': [FAIL] not ok 16 selftests: lkdtm: CORRUPT_PAC.sh # exit=1 # selftests: lkdtm: UNALIGNED_LOAD_STORE_WRITE.sh [ 283.096490] lkdtm: Performing direct entry UNALIGNED_LOAD_STORE_WRITE [ 283.103056] lkdtm: XFAIL: arch has CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS # [ 283.096490] lkdtm: Performing direct entry UNALIGNED_LOAD_STORE_WRITE # [ 283.103056] lkdtm: XFAIL: arch has CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS # UNALIGNED_LOAD_STORE_WRITE: saw 'XFAIL': [SKIP] ok 17 selftests: lkdtm: UNALIGNED_LOAD_STORE_WRITE.sh # SKIP # selftests: lkdtm: OVERWRITE_ALLOCATION.sh # Skipping OVERWRITE_ALLOCATION: Corrupts memory on failure ok 18 selftests: lkdtm: OVERWRITE_ALLOCATION.sh # SKIP # selftests: lkdtm: WRITE_AFTER_FREE.sh # Skipping WRITE_AFTER_FREE: Corrupts memory on failure ok 19 selftests: lkdtm: WRITE_AFTER_FREE.sh # SKIP # selftests: lkdtm: READ_AFTER_FREE.sh [ 284.279894] lkdtm: Performing direct entry READ_AFTER_FREE [ 284.285566] lkdtm: Value in memory before free: 12345678 [ 284.292543] lkdtm: Attempting bad read from freed memory [ 284.298419] lkdtm: Memory was not poisoned # [ 284.279894] lkdtm: Performing direct entry READ_AFTER_FREE # [ 284.285566] lkdtm: Value in memory before free: 12345678 # [ 284.292543] lkdtm: Attempting bad read from freed memory # [ 284.298419] lkdtm: Memory was not poisoned # READ_AFTER_FREE: missing 'call trace:': [FAIL] not ok 20 selftests: lkdtm: READ_AFTER_FREE.sh # exit=1 # selftests: lkdtm: WRITE_BUDDY_AFTER_FREE.sh # Skipping WRITE_BUDDY_AFTER_FREE: Corrupts memory on failure ok 21 selftests: lkdtm: WRITE_BUDDY_AFTER_FREE.sh # SKIP # selftests: lkdtm: READ_BUDDY_AFTER_FREE.sh [ 285.302720] lkdtm: Performing direct entry READ_BUDDY_AFTER_FREE [ 285.308867] lkdtm: Value in memory before free: 12345678 [ 285.314246] lkdtm: Attempting to read from freed memory [ 285.319544] lkdtm: Buddy page was not poisoned # [ 285.302720] lkdtm: Performing direct entry READ_BUDDY_AFTER_FREE # [ 285.308867] lkdtm: Value in memory before free: 12345678 # [ 285.314246] lkdtm: Attempting to read from freed memory # [ 285.319544] lkdtm: Buddy page was not poisoned # READ_BUDDY_AFTER_FREE: missing 'call trace:': [FAIL] not ok 22 selftests: lkdtm: READ_BUDDY_AFTER_FREE.sh # exit=1 # selftests: lkdtm: SLAB_FREE_DOUBLE.sh [ 286.085928] lkdtm: Performing direct entry SLAB_FREE_DOUBLE [ 286.091647] lkdtm: Attempting double slab free ... # [ 286.085928] lkdtm: Performing direct entry SLAB_FREE_DOUBLE # [ 286.091647] lkdtm: Attempting double slab free ... # SLAB_FREE_DOUBLE: missing 'call trace:': [FAIL] not ok 23 selftests: lkdtm: SLAB_FREE_DOUBLE.sh # exit=1 # selftests: lkdtm: SLAB_FREE_CROSS.sh [ 286.854451] lkdtm: Performing direct entry SLAB_FREE_CROSS [ 286.860094] lkdtm: Attempting cross-cache slab free ... # [ 286.854451] lkdtm: Performing direct entry SLAB_FREE_CROSS # [ 286.860094] lkdtm: Attempting cross-cache slab free ... # SLAB_FREE_CROSS: missing 'call trace:': [FAIL] not ok 24 selftests: lkdtm: SLAB_FREE_CROSS.sh # exit=1 # selftests: lkdtm: SLAB_FREE_PAGE.sh [ 287.611590] lkdtm: Performing direct entry SLAB_FREE_PAGE [ 287.617293] lkdtm: Attempting non-Slab slab free ... # [ 287.611590] lkdtm: Performing direct entry SLAB_FREE_PAGE # [ 287.617293] lkdtm: Attempting non-Slab slab free ... # SLAB_FREE_PAGE: missing 'call trace:': [FAIL] not ok 25 selftests: lkdtm: SLAB_FREE_PAGE.sh # exit=1 # selftests: lkdtm: SOFTLOCKUP.sh # Skipping SOFTLOCKUP: Hangs the system ok 26 selftests: lkdtm: SOFTLOCKUP.sh # SKIP # selftests: lkdtm: HARDLOCKUP.sh # Skipping HARDLOCKUP: Hangs the system ok 27 selftests: lkdtm: HARDLOCKUP.sh # SKIP # selftests: lkdtm: SPINLOCKUP.sh # Skipping SPINLOCKUP: Hangs the system ok 28 selftests: lkdtm: SPINLOCKUP.sh # SKIP # selftests: lkdtm: HUNG_TASK.sh # Skipping HUNG_TASK: Hangs the system ok 29 selftests: lkdtm: HUNG_TASK.sh # SKIP # selftests: lkdtm: EXEC_DATA.sh [ 289.234740] lkdtm: Performing direct entry EXEC_DATA [ 289.239953] lkdtm: attempting ok execution at ffff800010a10190 [ 289.245897] lkdtm: attempting bad execution at ffff80001349e4d8 [ 289.252094] Unable to handle kernel execute from non-executable memory at virtual address ffff80001349e4d8 [ 289.261860] Mem abort info: [ 289.265278] ESR = 0x8600000f [ 289.268346] EC = 0x21: IABT (current EL), IL = 32 bits [ 289.273723] SET = 0, FnV = 0 [ 289.276854] EA = 0, S1PTW = 0 [ 289.280002] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 289.286887] [ffff80001349e4d8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fff9003, pte=007800004b69e703 [ 289.299469] Internal error: Oops: 8600000f [#5] PREEMPT SMP [ 289.305040] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 289.358244] CPU: 0 PID: 1875 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 289.365981] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 289.372333] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 289.378343] pc : data_area+0x0/0x40 [ 289.381833] lr : execute_location+0x84/0xa4 [ 289.386009] sp : ffff800015babcd0 [ 289.389318] x29: ffff800015babcd0 x28: ffff0005c7fc4980 [ 289.394629] x27: 0000000000000000 x26: 0000000000000000 [ 289.399939] x25: ffff8000114f18e8 x24: ffff800015babe20 [ 289.405249] x23: 000000000000000a x22: ffff0005c5ff2000 [ 289.410559] x21: 0000000000000001 x20: ffff800010a10190 [ 289.415868] x19: ffff80001349e4d8 x18: 0000000000000000 [ 289.421177] x17: 0000000000000000 x16: 0000000000000000 [ 289.426487] x15: 0000000000000030 x14: ffffffffffffffff [ 289.431796] x13: ffff800095bab9b7 x12: ffff800015bab9bf [ 289.437105] x11: 0000000000000008 x10: 0000000000001440 [ 289.442415] x9 : ffff80001012dcf4 x8 : ffff0005c7fc5e20 [ 289.447724] x7 : 0000000000000000 x6 : ffff800012561000 [ 289.453034] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 289.458343] x3 : 0000000000000000 x2 : 0000000000000000 [ 289.463653] x1 : ffff0005c7fc4980 x0 : 0000000000000033 [ 289.468963] Call trace: [ 289.471405] data_area+0x0/0x40 [ 289.474542] lkdtm_EXEC_DATA+0x24/0x30 [ 289.478290] lkdtm_do_action+0x24/0x40 [ 289.482033] direct_entry+0xd0/0x140 [ 289.485607] full_proxy_write+0x68/0xbc [ 289.489444] vfs_write+0xec/0x20c [ 289.492756] ksys_write+0x70/0x100 [ 289.496152] __arm64_sys_write+0x24/0x30 [ 289.500074] el0_svc_common.constprop.0+0x84/0x1e0 [ 289.504859] do_el0_svc+0x2c/0x94 [ 289.508170] el0_svc+0x20/0x30 [ 289.511218] el0_sync_handler+0xb0/0xb4 [ 289.515050] el0_sync+0x180/0x1c0 [ 289.518365] Code: c0805e00 ffff0005 c0805f00 ffff0005 (aa1e03e9) [ 289.524456] ---[ end trace b07e3d6731f442cd ]--- # Segmentation fault # [ 289.234740] lkdtm: Performing direct entry EXEC_DATA # [ 289.239953] lkdtm: attempting ok execution at ffff800010a10190 # [ 289.245897] lkdtm: attempting bad execution at ffff80001349e4d8 # [ 289.252094] Unable to handle kernel execute from non-executable memory at virtual address ffff80001349e4d8 # [ 289.261860] Mem abort info: # [ 289.265278] ESR = 0x8600000f # [ 289.268346] EC = 0x21: IABT (current EL), IL = 32 bits # [ 289.273723] SET = 0, FnV = 0 # [ 289.276854] EA = 0, S1PTW = 0 # [ 289.280002] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 289.286887] [ffff80001349e4d8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fff9003, pte=007800004b69e703 # [ 289.299469] Internal error: Oops: 8600000f [#5] PREEMPT SMP # [ 289.305040] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 289.358244] CPU: 0 PID: 1875 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 289.365981] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 289.372333] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 289.378343] pc : data_area+0x0/0x40 # [ 289.381833] lr : execute_location+0x84/0xa4 # [ 289.386009] sp : ffff800015babcd0 # [ 289.389318] x29: ffff800015babcd0 x28: ffff0005c7fc4980 # [ 289.394629] x27: 0000000000000000 x26: 0000000000000000 # [ 289.399939] x25: ffff8000114f18e8 x24: ffff800015babe20 # [ 289.405249] x23: 000000000000000a x22: ffff0005c5ff2000 # [ 289.410559] x21: 0000000000000001 x20: ffff800010a10190 # [ 289.415868] x19: ffff80001349e4d8 x18: 0000000000000000 # [ 289.421177] x17: 0000000000000000 x16: 0000000000000000 # [ 289.426487] x15: 0000000000000030 x14: ffffffffffffffff # [ 289.431796] x13: ffff800095bab9b7 x12: ffff800015bab9bf # [ 289.437105] x11: 0000000000000008 x10: 0000000000001440 # [ 289.442415] x9 : ffff80001012dcf4 x8 : ffff0005c7fc5e20 # [ 289.447724] x7 : 0000000000000000 x6 : ffff800012561000 # [ 289.453034] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 289.458343] x3 : 0000000000000000 x2 : 0000000000000000 # [ 289.463653] x1 : ffff0005c7fc4980 x0 : 0000000000000033 # [ 289.468963] Call trace: # [ 289.471405] data_area+0x0/0x40 # [ 289.474542] lkdtm_EXEC_DATA+0x24/0x30 # [ 289.478290] lkdtm_do_action+0x24/0x40 # [ 289.482033] direct_entry+0xd0/0x140 # [ 289.485607] full_proxy_write+0x68/0xbc # [ 289.489444] vfs_write+0xec/0x20c # [ 289.492756] ksys_write+0x70/0x100 # [ 289.496152] __arm64_sys_write+0x24/0x30 # [ 289.500074] el0_svc_common.constprop.0+0x84/0x1e0 # [ 289.504859] do_el0_svc+0x2c/0x94 # [ 289.508170] el0_svc+0x20/0x30 # [ 289.511218] el0_sync_handler+0xb0/0xb4 # [ 289.515050] el0_sync+0x180/0x1c0 # [ 289.518365] Code: c0805e00 ffff0005 c0805f00 ffff0005 (aa1e03e9) # [ 289.524456] ---[ end trace b07e3d6731f442cd ]--- # EXEC_DATA: saw 'call trace:': ok ok 30 selftests: lkdtm: EXEC_DATA.sh # selftests: lkdtm: EXEC_STACK.sh [ 291.252326] lkdtm: Performing direct entry EXEC_STACK [ 291.257603] lkdtm: attempting ok execution at ffff800010a10190 [ 291.263625] lkdtm: attempting bad execution at ffff800015c6bcc8 [ 291.269735] Unable to handle kernel execute from non-executable memory at virtual address ffff800015c6bcc8 [ 291.279519] Mem abort info: [ 291.282609] ESR = 0x8600000f [ 291.285689] EC = 0x21: IABT (current EL), IL = 32 bits [ 291.291026] SET = 0, FnV = 0 [ 291.294250] EA = 0, S1PTW = 0 [ 291.297424] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 291.304207] [ffff800015c6bcc8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000060231b003, pte=0068000607651703 [ 291.316777] Internal error: Oops: 8600000f [#6] PREEMPT SMP [ 291.322348] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 291.375552] CPU: 0 PID: 1917 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 291.383290] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 291.389640] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 291.395648] pc : 0xffff800015c6bcc8 [ 291.399140] lr : execute_location+0x84/0xa4 [ 291.403317] sp : ffff800015c6bc80 [ 291.406626] x29: ffff800015c6bc80 x28: ffff0005c0db8000 [ 291.411937] x27: 0000000000000000 x26: 0000000000000000 [ 291.417247] x25: ffff8000114f18e8 x24: ffff800015c6be20 [ 291.422558] x23: 000000000000000b x22: ffff0005c6147000 [ 291.427868] x21: 0000000000000001 x20: ffff800010a10190 [ 291.433177] x19: ffff800015c6bcc8 x18: 0000000000000000 [ 291.438486] x17: 0000000000000000 x16: 0000000000000000 [ 291.443796] x15: 0000000000000030 x14: ffffffffffffffff [ 291.449105] x13: ffff800095c6b967 x12: ffff800015c6b96f [ 291.454414] x11: 0000000000000010 x10: 0000000000001440 [ 291.459723] x9 : ffff80001012dcf4 x8 : ffff0005c0db94a0 [ 291.465033] x7 : 0000000000000000 x6 : ffff800012561000 [ 291.470342] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 291.475651] x3 : 0000000000000000 x2 : 0000000000000000 [ 291.480961] x1 : ffff0005c0db8000 x0 : 0000000000000033 [ 291.486271] Call trace: [ 291.488713] 0xffff800015c6bcc8 [ 291.491849] lkdtm_EXEC_STACK+0x30/0x58 [ 291.495684] lkdtm_do_action+0x24/0x40 [ 291.499427] direct_entry+0xd0/0x140 [ 291.503001] full_proxy_write+0x68/0xbc [ 291.506838] vfs_write+0xec/0x20c [ 291.510150] ksys_write+0x70/0x100 [ 291.513547] __arm64_sys_write+0x24/0x30 [ 291.517470] el0_svc_common.constprop.0+0x84/0x1e0 [ 291.522256] do_el0_svc+0x2c/0x94 [ 291.525566] el0_svc+0x20/0x30 [ 291.528615] el0_sync_handler+0xb0/0xb4 [ 291.532447] el0_sync+0x180/0x1c0 [ 291.535762] Code: 10a0f254 ffff8000 15c6bd20 ffff8000 (aa1e03e9) [ 291.541854] ---[ end trace b07e3d6731f442ce ]--- # Segmentation fault # [ 291.252326] lkdtm: Performing direct entry EXEC_STACK # [ 291.257603] lkdtm: attempting ok execution at ffff800010a10190 # [ 291.263625] lkdtm: attempting bad execution at ffff800015c6bcc8 # [ 291.269735] Unable to handle kernel execute from non-executable memory at virtual address ffff800015c6bcc8 # [ 291.279519] Mem abort info: # [ 291.282609] ESR = 0x8600000f # [ 291.285689] EC = 0x21: IABT (current EL), IL = 32 bits # [ 291.291026] SET = 0, FnV = 0 # [ 291.294250] EA = 0, S1PTW = 0 # [ 291.297424] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 291.304207] [ffff800015c6bcc8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000060231b003, pte=0068000607651703 # [ 291.316777] Internal error: Oops: 8600000f [#6] PREEMPT SMP # [ 291.322348] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 291.375552] CPU: 0 PID: 1917 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 291.383290] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 291.389640] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 291.395648] pc : 0xffff800015c6bcc8 # [ 291.399140] lr : execute_location+0x84/0xa4 # [ 291.403317] sp : ffff800015c6bc80 # [ 291.406626] x29: ffff800015c6bc80 x28: ffff0005c0db8000 # [ 291.411937] x27: 0000000000000000 x26: 0000000000000000 # [ 291.417247] x25: ffff8000114f18e8 x24: ffff800015c6be20 # [ 291.422558] x23: 000000000000000b x22: ffff0005c6147000 # [ 291.427868] x21: 0000000000000001 x20: ffff800010a10190 # [ 291.433177] x19: ffff800015c6bcc8 x18: 0000000000000000 # [ 291.438486] x17: 0000000000000000 x16: 0000000000000000 # [ 291.443796] x15: 0000000000000030 x14: ffffffffffffffff # [ 291.449105] x13: ffff800095c6b967 x12: ffff800015c6b96f # [ 291.454414] x11: 0000000000000010 x10: 0000000000001440 # [ 291.459723] x9 : ffff80001012dcf4 x8 : ffff0005c0db94a0 # [ 291.465033] x7 : 0000000000000000 x6 : ffff800012561000 # [ 291.470342] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 291.475651] x3 : 0000000000000000 x2 : 0000000000000000 # [ 291.480961] x1 : ffff0005c0db8000 x0 : 0000000000000033 # [ 291.486271] Call trace: # [ 291.488713] 0xffff800015c6bcc8 # [ 291.491849] lkdtm_EXEC_STACK+0x30/0x58 # [ 291.495684] lkdtm_do_action+0x24/0x40 # [ 291.499427] direct_entry+0xd0/0x140 # [ 291.503001] full_proxy_write+0x68/0xbc # [ 291.506838] vfs_write+0xec/0x20c # [ 291.510150] ksys_write+0x70/0x100 # [ 291.513547] __arm64_sys_write+0x24/0x30 # [ 291.517470] el0_svc_common.constprop.0+0x84/0x1e0 # [ 291.522256] do_el0_svc+0x2c/0x94 # [ 291.525566] el0_svc+0x20/0x30 # [ 291.528615] el0_sync_handler+0xb0/0xb4 # [ 291.532447] el0_sync+0x180/0x1c0 # [ 291.535762] Code: 10a0f254 ffff8000 15c6bd20 ffff8000 (aa1e03e9) # [ 291.541854] ---[ end trace b07e3d6731f442ce ]--- # EXEC_STACK: saw 'call trace:': ok ok 31 selftests: lkdtm: EXEC_STACK.sh # selftests: lkdtm: EXEC_KMALLOC.sh [ 293.350782] lkdtm: Performing direct entry EXEC_KMALLOC [ 293.356139] lkdtm: attempting ok execution at ffff800010a10190 [ 293.362058] lkdtm: attempting bad execution at ffff0005c9668600 [ 293.368057] Unable to handle kernel execute from non-executable memory at virtual address ffff0005c9668600 [ 293.377818] Mem abort info: [ 293.381003] ESR = 0x8600000f [ 293.384071] EC = 0x21: IABT (current EL), IL = 32 bits [ 293.389426] SET = 0, FnV = 0 [ 293.392483] EA = 0, S1PTW = 0 [ 293.395648] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 293.402557] [ffff0005c9668600] pgd=000000067fff8003, p4d=000000067fff8003, pud=000000067fc42003, pmd=000000067fbf6003, pte=0068000609668707 [ 293.415131] Internal error: Oops: 8600000f [#7] PREEMPT SMP [ 293.420701] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 293.473905] CPU: 0 PID: 1959 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 293.481642] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 293.487993] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 293.494000] pc : 0xffff0005c9668600 [ 293.497491] lr : execute_location+0x84/0xa4 [ 293.501668] sp : ffff800015d2bcc0 [ 293.504977] x29: ffff800015d2bcc0 x28: ffff0005c81fe200 [ 293.510287] x27: 0000000000000000 x26: 0000000000000000 [ 293.515598] x25: ffff8000114f18e8 x24: ffff800015d2be20 [ 293.520907] x23: 000000000000000d x22: ffff0005c62a6000 [ 293.526217] x21: 0000000000000001 x20: ffff800010a10190 [ 293.531526] x19: ffff0005c9668600 x18: 0000000000000000 [ 293.536835] x17: 0000000000000000 x16: 0000000000000000 [ 293.542145] x15: 0000000000000030 x14: ffffffffffffffff [ 293.547454] x13: ffff800095d2b9a7 x12: ffff800015d2b9af [ 293.552764] x11: 0000000000000020 x10: ffff8000125e8350 [ 293.558073] x9 : ffff80001012dcf4 x8 : ffff800012590350 [ 293.563383] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 293.568692] x5 : ffff800012561c88 x4 : ffff00063f75cc50 [ 293.574001] x3 : 0000000000000000 x2 : 0000000000000000 [ 293.579310] x1 : ffff0005c81fe200 x0 : 0000000000000033 [ 293.584621] Call trace: [ 293.587062] 0xffff0005c9668600 [ 293.590203] lkdtm_EXEC_KMALLOC+0x34/0x4c [ 293.594208] lkdtm_do_action+0x24/0x40 [ 293.597951] direct_entry+0xd0/0x140 [ 293.601525] full_proxy_write+0x68/0xbc [ 293.605361] vfs_write+0xec/0x20c [ 293.608673] ksys_write+0x70/0x100 [ 293.612069] __arm64_sys_write+0x24/0x30 [ 293.615990] el0_svc_common.constprop.0+0x84/0x1e0 [ 293.620776] do_el0_svc+0x2c/0x94 [ 293.624086] el0_svc+0x20/0x30 [ 293.627135] el0_sync_handler+0xb0/0xb4 [ 293.630967] el0_sync+0x180/0x1c0 [ 293.634282] Code: 00000000 00000000 00000000 00000000 (aa1e03e9) [ 293.640374] ---[ end trace b07e3d6731f442cf ]--- # Segmentation fault # [ 293.350782] lkdtm: Performing direct entry EXEC_KMALLOC # [ 293.356139] lkdtm: attempting ok execution at ffff800010a10190 # [ 293.362058] lkdtm: attempting bad execution at ffff0005c9668600 # [ 293.368057] Unable to handle kernel execute from non-executable memory at virtual address ffff0005c9668600 # [ 293.377818] Mem abort info: # [ 293.381003] ESR = 0x8600000f # [ 293.384071] EC = 0x21: IABT (current EL), IL = 32 bits # [ 293.389426] SET = 0, FnV = 0 # [ 293.392483] EA = 0, S1PTW = 0 # [ 293.395648] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 293.402557] [ffff0005c9668600] pgd=000000067fff8003, p4d=000000067fff8003, pud=000000067fc42003, pmd=000000067fbf6003, pte=0068000609668707 # [ 293.415131] Internal error: Oops: 8600000f [#7] PREEMPT SMP # [ 293.420701] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 293.473905] CPU: 0 PID: 1959 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 293.481642] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 293.487993] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 293.494000] pc : 0xffff0005c9668600 # [ 293.497491] lr : execute_location+0x84/0xa4 # [ 293.501668] sp : ffff800015d2bcc0 # [ 293.504977] x29: ffff800015d2bcc0 x28: ffff0005c81fe200 # [ 293.510287] x27: 0000000000000000 x26: 0000000000000000 # [ 293.515598] x25: ffff8000114f18e8 x24: ffff800015d2be20 # [ 293.520907] x23: 000000000000000d x22: ffff0005c62a6000 # [ 293.526217] x21: 0000000000000001 x20: ffff800010a10190 # [ 293.531526] x19: ffff0005c9668600 x18: 0000000000000000 # [ 293.536835] x17: 0000000000000000 x16: 0000000000000000 # [ 293.542145] x15: 0000000000000030 x14: ffffffffffffffff # [ 293.547454] x13: ffff800095d2b9a7 x12: ffff800015d2b9af # [ 293.552764] x11: 0000000000000020 x10: ffff8000125e8350 # [ 293.558073] x9 : ffff80001012dcf4 x8 : ffff800012590350 # [ 293.563383] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 293.568692] x5 : ffff800012561c88 x4 : ffff00063f75cc50 # [ 293.574001] x3 : 0000000000000000 x2 : 0000000000000000 # [ 293.579310] x1 : ffff0005c81fe200 x0 : 0000000000000033 # [ 293.584621] Call trace: # [ 293.587062] 0xffff0005c9668600 # [ 293.590203] lkdtm_EXEC_KMALLOC+0x34/0x4c # [ 293.594208] lkdtm_do_action+0x24/0x40 # [ 293.597951] direct_entry+0xd0/0x140 # [ 293.601525] full_proxy_write+0x68/0xbc # [ 293.605361] vfs_write+0xec/0x20c # [ 293.608673] ksys_write+0x70/0x100 # [ 293.612069] __arm64_sys_write+0x24/0x30 # [ 293.615990] el0_svc_common.constprop.0+0x84/0x1e0 # [ 293.620776] do_el0_svc+0x2c/0x94 # [ 293.624086] el0_svc+0x20/0x30 # [ 293.627135] el0_sync_handler+0xb0/0xb4 # [ 293.630967] el0_sync+0x180/0x1c0 # [ 293.634282] Code: 00000000 00000000 00000000 00000000 (aa1e03e9) # [ 293.640374] ---[ end trace b07e3d6731f442cf ]--- # EXEC_KMALLOC: saw 'call trace:': ok ok 32 selftests: lkdtm: EXEC_KMALLOC.sh # selftests: lkdtm: EXEC_VMALLOC.sh [ 295.821441] lkdtm: Performing direct entry EXEC_VMALLOC [ 295.826931] lkdtm: attempting ok execution at ffff800010a10190 [ 295.834456] lkdtm: attempting bad execution at ffff8000139f7000 [ 295.841036] Unable to handle kernel execute from non-executable memory at virtual address ffff8000139f7000 [ 295.851520] Mem abort info: [ 295.854534] ESR = 0x8600000f [ 295.857747] EC = 0x21: IABT (current EL), IL = 32 bits [ 295.863104] SET = 0, FnV = 0 [ 295.866185] EA = 0, S1PTW = 0 [ 295.869512] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 295.876308] [ffff8000139f7000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000600820003, pte=0068000609595703 [ 295.888878] Internal error: Oops: 8600000f [#8] PREEMPT SMP [ 295.894449] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 295.947653] CPU: 0 PID: 2001 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 295.955391] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 295.961743] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 295.967750] pc : 0xffff8000139f7000 [ 295.971241] lr : execute_location+0x84/0xa4 [ 295.975418] sp : ffff800015db3cc0 [ 295.978727] x29: ffff800015db3cc0 x28: ffff0005c8373100 [ 295.984038] x27: 0000000000000000 x26: 0000000000000000 [ 295.989348] x25: ffff8000114f18e8 x24: ffff800015db3e20 [ 295.994658] x23: 000000000000000d x22: ffff0005c9595000 [ 295.999967] x21: 0000000000000001 x20: ffff800010a10190 [ 296.005277] x19: ffff8000139f7000 x18: 0000000000000000 [ 296.010586] x17: 0000000000000000 x16: 0000000000000000 [ 296.015895] x15: 0000000000000000 x14: 0000000000000000 [ 296.021205] x13: 0000000000000000 x12: 0000000000000000 [ 296.026514] x11: 0000000000000000 x10: 0000000000001440 [ 296.031823] x9 : ffff80001012dcf4 x8 : ffff0005c83745a0 [ 296.037133] x7 : 0000000000000005 x6 : ffff800012561000 [ 296.042442] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 296.047752] x3 : 0000000000000000 x2 : 0000000000000000 [ 296.053061] x1 : ffff0005c8373100 x0 : 0000000000000033 [ 296.058371] Call trace: [ 296.060812] 0xffff8000139f7000 [ 296.063953] lkdtm_EXEC_VMALLOC+0x2c/0x44 [ 296.067958] lkdtm_do_action+0x24/0x40 [ 296.071702] direct_entry+0xd0/0x140 [ 296.075276] full_proxy_write+0x68/0xbc [ 296.079109] vfs_write+0xec/0x20c [ 296.082421] ksys_write+0x70/0x100 [ 296.085817] __arm64_sys_write+0x24/0x30 [ 296.089738] el0_svc_common.constprop.0+0x84/0x1e0 [ 296.094524] do_el0_svc+0x2c/0x94 [ 296.097835] el0_svc+0x20/0x30 [ 296.100884] el0_sync_handler+0xb0/0xb4 [ 296.104715] el0_sync+0x180/0x1c0 [ 296.108036] Code: bad PC value [ 296.111089] ---[ end trace b07e3d6731f442d0 ]--- # Segmentation fault # [ 295.821441] lkdtm: Performing direct entry EXEC_VMALLOC # [ 295.826931] lkdtm: attempting ok execution at ffff800010a10190 # [ 295.834456] lkdtm: attempting bad execution at ffff8000139f7000 # [ 295.841036] Unable to handle kernel execute from non-executable memory at virtual address ffff8000139f7000 # [ 295.851520] Mem abort info: # [ 295.854534] ESR = 0x8600000f # [ 295.857747] EC = 0x21: IABT (current EL), IL = 32 bits # [ 295.863104] SET = 0, FnV = 0 # [ 295.866185] EA = 0, S1PTW = 0 # [ 295.869512] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 295.876308] [ffff8000139f7000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000600820003, pte=0068000609595703 # [ 295.888878] Internal error: Oops: 8600000f [#8] PREEMPT SMP # [ 295.894449] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 295.947653] CPU: 0 PID: 2001 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 295.955391] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 295.961743] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 295.967750] pc : 0xffff8000139f7000 # [ 295.971241] lr : execute_location+0x84/0xa4 # [ 295.975418] sp : ffff800015db3cc0 # [ 295.978727] x29: ffff800015db3cc0 x28: ffff0005c8373100 # [ 295.984038] x27: 0000000000000000 x26: 0000000000000000 # [ 295.989348] x25: ffff8000114f18e8 x24: ffff800015db3e20 # [ 295.994658] x23: 000000000000000d x22: ffff0005c9595000 # [ 295.999967] x21: 0000000000000001 x20: ffff800010a10190 # [ 296.005277] x19: ffff8000139f7000 x18: 0000000000000000 # [ 296.010586] x17: 0000000000000000 x16: 0000000000000000 # [ 296.015895] x15: 0000000000000000 x14: 0000000000000000 # [ 296.021205] x13: 0000000000000000 x12: 0000000000000000 # [ 296.026514] x11: 0000000000000000 x10: 0000000000001440 # [ 296.031823] x9 : ffff80001012dcf4 x8 : ffff0005c83745a0 # [ 296.037133] x7 : 0000000000000005 x6 : ffff800012561000 # [ 296.042442] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 296.047752] x3 : 0000000000000000 x2 : 0000000000000000 # [ 296.053061] x1 : ffff0005c8373100 x0 : 0000000000000033 # [ 296.058371] Call trace: # [ 296.060812] 0xffff8000139f7000 # [ 296.063953] lkdtm_EXEC_VMALLOC+0x2c/0x44 # [ 296.067958] lkdtm_do_action+0x24/0x40 # [ 296.071702] direct_entry+0xd0/0x140 # [ 296.075276] full_proxy_write+0x68/0xbc # [ 296.079109] vfs_write+0xec/0x20c # [ 296.082421] ksys_write+0x70/0x100 # [ 296.085817] __arm64_sys_write+0x24/0x30 # [ 296.089738] el0_svc_common.constprop.0+0x84/0x1e0 # [ 296.094524] do_el0_svc+0x2c/0x94 # [ 296.097835] el0_svc+0x20/0x30 # [ 296.100884] el0_sync_handler+0xb0/0xb4 # [ 296.104715] el0_sync+0x180/0x1c0 # [ 296.108036] Code: bad PC value # [ 296.111089] ---[ end trace b07e3d6731f442d0 ]--- # EXEC_VMALLOC: saw 'call trace:': ok ok 33 selftests: lkdtm: EXEC_VMALLOC.sh # selftests: lkdtm: EXEC_RODATA.sh [ 297.888713] lkdtm: Performing direct entry EXEC_RODATA [ 297.894062] lkdtm: attempting ok execution at ffff800010a10190 [ 297.899982] lkdtm: attempting bad execution at ffff8000114f1de0 [ 297.906161] Unable to handle kernel execute from non-executable memory at virtual address ffff8000114f1de0 [ 297.915923] Mem abort info: [ 297.918833] ESR = 0x8600000e [ 297.922007] EC = 0x21: IABT (current EL), IL = 32 bits [ 297.927435] SET = 0, FnV = 0 [ 297.930539] EA = 0, S1PTW = 0 [ 297.933698] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 297.940415] [ffff8000114f1de0] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 [ 297.951174] Internal error: Oops: 8600000e [#9] PREEMPT SMP [ 297.956745] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 298.009948] CPU: 0 PID: 2043 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 298.017684] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 298.024035] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 298.030048] pc : lkdtm_rodata_do_nothing+0x0/0x10 [ 298.034751] lr : execute_location+0x84/0xa4 [ 298.038927] sp : ffff800015e73cd0 [ 298.042236] x29: ffff800015e73cd0 x28: ffff0005c7e01880 [ 298.047547] x27: 0000000000000000 x26: 0000000000000000 [ 298.052857] x25: ffff8000114f18e8 x24: ffff800015e73e20 [ 298.058167] x23: 000000000000000c x22: ffff0005c4cd3000 [ 298.063477] x21: 0000000000000000 x20: ffff800010a10190 [ 298.068786] x19: ffff8000114f1de0 x18: 0000000000000000 [ 298.074096] x17: 0000000000000000 x16: 0000000000000000 [ 298.079405] x15: 0000000000000030 x14: ffffffffffffffff [ 298.084714] x13: ffff800095e739b7 x12: ffff800015e739bf [ 298.090024] x11: 0000000000000018 x10: 0000000000001440 [ 298.095333] x9 : ffff80001012dcf4 x8 : ffff0005c7e02d20 [ 298.100643] x7 : 0000000000000000 x6 : ffff800012561000 [ 298.105953] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 298.111263] x3 : 0000000000000000 x2 : 0000000000000000 [ 298.116572] x1 : ffff0005c7e01880 x0 : 0000000000000033 [ 298.121882] Call trace: [ 298.124326] lkdtm_rodata_do_nothing+0x0/0x10 [ 298.128678] lkdtm_EXEC_RODATA+0x24/0x30 [ 298.132599] lkdtm_do_action+0x24/0x40 [ 298.136343] direct_entry+0xd0/0x140 [ 298.139916] full_proxy_write+0x68/0xbc [ 298.143750] vfs_write+0xec/0x20c [ 298.147062] ksys_write+0x70/0x100 [ 298.150459] __arm64_sys_write+0x24/0x30 [ 298.154380] el0_svc_common.constprop.0+0x84/0x1e0 [ 298.159166] do_el0_svc+0x2c/0x94 [ 298.162476] el0_svc+0x20/0x30 [ 298.165525] el0_sync_handler+0xb0/0xb4 [ 298.169357] el0_sync+0x180/0x1c0 [ 298.172671] Code: 00000074 00000000 aa55aa55 00000000 (d503233f) [ 298.178762] ---[ end trace b07e3d6731f442d1 ]--- # Segmentation fault # [ 297.888713] lkdtm: Performing direct entry EXEC_RODATA # [ 297.894062] lkdtm: attempting ok execution at ffff800010a10190 # [ 297.899982] lkdtm: attempting bad execution at ffff8000114f1de0 # [ 297.906161] Unable to handle kernel execute from non-executable memory at virtual address ffff8000114f1de0 # [ 297.915923] Mem abort info: # [ 297.918833] ESR = 0x8600000e # [ 297.922007] EC = 0x21: IABT (current EL), IL = 32 bits # [ 297.927435] SET = 0, FnV = 0 # [ 297.930539] EA = 0, S1PTW = 0 # [ 297.933698] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 297.940415] [ffff8000114f1de0] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 # [ 297.951174] Internal error: Oops: 8600000e [#9] PREEMPT SMP # [ 297.956745] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 298.009948] CPU: 0 PID: 2043 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 298.017684] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 298.024035] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 298.030048] pc : lkdtm_rodata_do_nothing+0x0/0x10 # [ 298.034751] lr : execute_location+0x84/0xa4 # [ 298.038927] sp : ffff800015e73cd0 # [ 298.042236] x29: ffff800015e73cd0 x28: ffff0005c7e01880 # [ 298.047547] x27: 0000000000000000 x26: 0000000000000000 # [ 298.052857] x25: ffff8000114f18e8 x24: ffff800015e73e20 # [ 298.058167] x23: 000000000000000c x22: ffff0005c4cd3000 # [ 298.063477] x21: 0000000000000000 x20: ffff800010a10190 # [ 298.068786] x19: ffff8000114f1de0 x18: 0000000000000000 # [ 298.074096] x17: 0000000000000000 x16: 0000000000000000 # [ 298.079405] x15: 0000000000000030 x14: ffffffffffffffff # [ 298.084714] x13: ffff800095e739b7 x12: ffff800015e739bf # [ 298.090024] x11: 0000000000000018 x10: 0000000000001440 # [ 298.095333] x9 : ffff80001012dcf4 x8 : ffff0005c7e02d20 # [ 298.100643] x7 : 0000000000000000 x6 : ffff800012561000 # [ 298.105953] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 298.111263] x3 : 0000000000000000 x2 : 0000000000000000 # [ 298.116572] x1 : ffff0005c7e01880 x0 : 0000000000000033 # [ 298.121882] Call trace: # [ 298.124326] lkdtm_rodata_do_nothing+0x0/0x10 # [ 298.128678] lkdtm_EXEC_RODATA+0x24/0x30 # [ 298.132599] lkdtm_do_action+0x24/0x40 # [ 298.136343] direct_entry+0xd0/0x140 # [ 298.139916] full_proxy_write+0x68/0xbc # [ 298.143750] vfs_write+0xec/0x20c # [ 298.147062] ksys_write+0x70/0x100 # [ 298.150459] __arm64_sys_write+0x24/0x30 # [ 298.154380] el0_svc_common.constprop.0+0x84/0x1e0 # [ 298.159166] do_el0_svc+0x2c/0x94 # [ 298.162476] el0_svc+0x20/0x30 # [ 298.165525] el0_sync_handler+0xb0/0xb4 # [ 298.169357] el0_sync+0x180/0x1c0 # [ 298.172671] Code: 00000074 00000000 aa55aa55 00000000 (d503233f) # [ 298.178762] ---[ end trace b07e3d6731f442d1 ]--- # EXEC_RODATA: saw 'call trace:': ok ok 34 selftests: lkdtm: EXEC_RODATA.sh # selftests: lkdtm: EXEC_USERSPACE.sh [ 300.254507] lkdtm: Performing direct entry EXEC_USERSPACE [ 300.260172] lkdtm: attempting ok execution at ffff800010a10190 [ 300.266162] lkdtm: attempting bad execution at 0000ffff906d2000 [ 300.272366] Unable to handle kernel execution of user memory at virtual address 0000ffff906d2000 [ 300.281261] Mem abort info: [ 300.284072] ESR = 0x8600000f [ 300.287218] EC = 0x21: IABT (current EL), IL = 32 bits [ 300.292585] SET = 0, FnV = 0 [ 300.295795] EA = 0, S1PTW = 0 [ 300.298966] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006082fc000 [ 300.305472] [0000ffff906d2000] pgd=00000006076cd003, p4d=00000006076cd003, pud=000000060439f003, pmd=0000000602360003, pte=00a8000610b69f43 [ 300.318039] Internal error: Oops: 8600000f [#10] PREEMPT SMP [ 300.323696] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 300.376899] CPU: 0 PID: 2085 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 300.384636] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 300.390987] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 300.396993] pc : 0xffff906d2000 [ 300.400138] lr : lkdtm_EXEC_USERSPACE+0xe0/0xf0 [ 300.404662] sp : ffff800015f1bcf0 [ 300.407971] x29: ffff800015f1bcf0 x28: ffff0005c914c980 [ 300.413282] x27: 0000000000000000 x26: 0000000000000000 [ 300.418592] x25: ffff8000114f18e8 x24: ffff800015f1be20 [ 300.423902] x23: 000000000000000f x22: ffff0005c9840000 [ 300.429211] x21: ffff800011a07688 x20: ffff800010a10190 [ 300.434521] x19: 0000ffff906d2000 x18: 0000000000000000 [ 300.439830] x17: 0000000000000000 x16: 0000000000000000 [ 300.445140] x15: 0000000000000030 x14: ffffffffffffffff [ 300.450449] x13: ffff800095f1b9d7 x12: 0000004d4ea43146 [ 300.455758] x11: 0001450aeb0a5cea x10: 0000000000001440 [ 300.461067] x9 : ffff80001012dcf4 x8 : ffff0005c914de20 [ 300.466377] x7 : 0000000000000000 x6 : ffff800012561000 [ 300.471686] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 300.476995] x3 : 0000000000000000 x2 : 0000000000000000 [ 300.482305] x1 : ffff0005c914c980 x0 : 0000000000000033 [ 300.487615] Call trace: [ 300.490056] 0xffff906d2000 [ 300.492847] lkdtm_do_action+0x24/0x40 [ 300.496590] direct_entry+0xd0/0x140 [ 300.500164] full_proxy_write+0x68/0xbc [ 300.503999] vfs_write+0xec/0x20c [ 300.507311] ksys_write+0x70/0x100 [ 300.510708] __arm64_sys_write+0x24/0x30 [ 300.514629] el0_svc_common.constprop.0+0x84/0x1e0 [ 300.519415] do_el0_svc+0x2c/0x94 [ 300.522729] el0_svc+0x20/0x30 [ 300.525777] el0_sync_handler+0xb0/0xb4 [ 300.529610] el0_sync+0x180/0x1c0 [ 300.532929] Code: bad PC value [ 300.535982] ---[ end trace b07e3d6731f442d2 ]--- # Segmentation fault # [ 300.254507] lkdtm: Performing direct entry EXEC_USERSPACE # [ 300.260172] lkdtm: attempting ok execution at ffff800010a10190 # [ 300.266162] lkdtm: attempting bad execution at 0000ffff906d2000 # [ 300.272366] Unable to handle kernel execution of user memory at virtual address 0000ffff906d2000 # [ 300.281261] Mem abort info: # [ 300.284072] ESR = 0x8600000f # [ 300.287218] EC = 0x21: IABT (current EL), IL = 32 bits # [ 300.292585] SET = 0, FnV = 0 # [ 300.295795] EA = 0, S1PTW = 0 # [ 300.298966] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006082fc000 # [ 300.305472] [0000ffff906d2000] pgd=00000006076cd003, p4d=00000006076cd003, pud=000000060439f003, pmd=0000000602360003, pte=00a8000610b69f43 # [ 300.318039] Internal error: Oops: 8600000f [#10] PREEMPT SMP # [ 300.323696] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 300.376899] CPU: 0 PID: 2085 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 300.384636] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 300.390987] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 300.396993] pc : 0xffff906d2000 # [ 300.400138] lr : lkdtm_EXEC_USERSPACE+0xe0/0xf0 # [ 300.404662] sp : ffff800015f1bcf0 # [ 300.407971] x29: ffff800015f1bcf0 x28: ffff0005c914c980 # [ 300.413282] x27: 0000000000000000 x26: 0000000000000000 # [ 300.418592] x25: ffff8000114f18e8 x24: ffff800015f1be20 # [ 300.423902] x23: 000000000000000f x22: ffff0005c9840000 # [ 300.429211] x21: ffff800011a07688 x20: ffff800010a10190 # [ 300.434521] x19: 0000ffff906d2000 x18: 0000000000000000 # [ 300.439830] x17: 0000000000000000 x16: 0000000000000000 # [ 300.445140] x15: 0000000000000030 x14: ffffffffffffffff # [ 300.450449] x13: ffff800095f1b9d7 x12: 0000004d4ea43146 # [ 300.455758] x11: 0001450aeb0a5cea x10: 0000000000001440 # [ 300.461067] x9 : ffff80001012dcf4 x8 : ffff0005c914de20 # [ 300.466377] x7 : 0000000000000000 x6 : ffff800012561000 # [ 300.471686] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 300.476995] x3 : 0000000000000000 x2 : 0000000000000000 # [ 300.482305] x1 : ffff0005c914c980 x0 : 0000000000000033 # [ 300.487615] Call trace: # [ 300.490056] 0xffff906d2000 # [ 300.492847] lkdtm_do_action+0x24/0x40 # [ 300.496590] direct_entry+0xd0/0x140 # [ 300.500164] full_proxy_write+0x68/0xbc # [ 300.503999] vfs_write+0xec/0x20c # [ 300.507311] ksys_write+0x70/0x100 # [ 300.510708] __arm64_sys_write+0x24/0x30 # [ 300.514629] el0_svc_common.constprop.0+0x84/0x1e0 # [ 300.519415] do_el0_svc+0x2c/0x94 # [ 300.522729] el0_svc+0x20/0x30 # [ 300.525777] el0_sync_handler+0xb0/0xb4 # [ 300.529610] el0_sync+0x180/0x1c0 # [ 300.532929] Code: bad PC value # [ 300.535982] ---[ end trace b07e3d6731f442d2 ]--- # EXEC_USERSPACE: saw 'call trace:': ok ok 35 selftests: lkdtm: EXEC_USERSPACE.sh # selftests: lkdtm: EXEC_NULL.sh [ 302.397578] lkdtm: Performing direct entry EXEC_NULL [ 302.402669] lkdtm: attempting ok execution at ffff800010a10190 [ 302.410205] lkdtm: attempting bad execution at 0000000000000000 [ 302.416533] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 [ 302.425515] Mem abort info: [ 302.428329] ESR = 0x86000004 [ 302.431703] EC = 0x21: IABT (current EL), IL = 32 bits [ 302.437136] SET = 0, FnV = 0 [ 302.440194] EA = 0, S1PTW = 0 [ 302.443380] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000609789000 [ 302.449991] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 [ 302.456894] Internal error: Oops: 86000004 [#11] PREEMPT SMP [ 302.462553] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 302.515757] CPU: 0 PID: 2127 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 302.523494] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 302.529845] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 302.535850] pc : 0x0 [ 302.538040] lr : execute_location+0x84/0xa4 [ 302.542217] sp : ffff800016003cd0 [ 302.545525] x29: ffff800016003cd0 x28: ffff0005c0d7b100 [ 302.550835] x27: 0000000000000000 x26: 0000000000000000 [ 302.556145] x25: ffff8000114f18e8 x24: ffff800016003e20 [ 302.561455] x23: 000000000000000a x22: ffff0005c35fd000 [ 302.566764] x21: 0000000000000000 x20: ffff800010a10190 [ 302.572073] x19: 0000000000000000 x18: 0000000000000000 [ 302.577383] x17: 0000000000000000 x16: 0000000000000000 [ 302.582692] x15: 0000000000000000 x14: 0000000000000000 [ 302.588001] x13: 0000000000000000 x12: 0000000000000000 [ 302.593310] x11: 0000006dc408d8bf x10: 0000000000001440 [ 302.598619] x9 : ffff80001012dcf4 x8 : ffff0005c0d7c5a0 [ 302.603929] x7 : 0000000000000000 x6 : ffff800012561000 [ 302.609238] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 302.614547] x3 : 0000000000000000 x2 : 0000000000000000 [ 302.619856] x1 : ffff0005c0d7b100 x0 : 0000000000000033 [ 302.625167] Call trace: [ 302.627609] 0x0 [ 302.629443] lkdtm_EXEC_NULL+0x20/0x2c [ 302.633191] lkdtm_do_action+0x24/0x40 [ 302.636935] direct_entry+0xd0/0x140 [ 302.640508] full_proxy_write+0x68/0xbc [ 302.644342] vfs_write+0xec/0x20c [ 302.647654] ksys_write+0x70/0x100 [ 302.651051] __arm64_sys_write+0x24/0x30 [ 302.654972] el0_svc_common.constprop.0+0x84/0x1e0 [ 302.659758] do_el0_svc+0x2c/0x94 [ 302.663068] el0_svc+0x20/0x30 [ 302.666118] el0_sync_handler+0xb0/0xb4 [ 302.669951] el0_sync+0x180/0x1c0 [ 302.673270] Code: bad PC value [ 302.676324] ---[ end trace b07e3d6731f442d3 ]--- # Segmentation fault # [ 302.397578] lkdtm: Performing direct entry EXEC_NULL # [ 302.402669] lkdtm: attempting ok execution at ffff800010a10190 # [ 302.410205] lkdtm: attempting bad execution at 0000000000000000 # [ 302.416533] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 # [ 302.425515] Mem abort info: # [ 302.428329] ESR = 0x86000004 # [ 302.431703] EC = 0x21: IABT (current EL), IL = 32 bits # [ 302.437136] SET = 0, FnV = 0 # [ 302.440194] EA = 0, S1PTW = 0 # [ 302.443380] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000609789000 # [ 302.449991] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 # [ 302.456894] Internal error: Oops: 86000004 [#11] PREEMPT SMP # [ 302.462553] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 302.515757] CPU: 0 PID: 2127 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 302.523494] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 302.529845] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 302.535850] pc : 0x0 # [ 302.538040] lr : execute_location+0x84/0xa4 # [ 302.542217] sp : ffff800016003cd0 # [ 302.545525] x29: ffff800016003cd0 x28: ffff0005c0d7b100 # [ 302.550835] x27: 0000000000000000 x26: 0000000000000000 # [ 302.556145] x25: ffff8000114f18e8 x24: ffff800016003e20 # [ 302.561455] x23: 000000000000000a x22: ffff0005c35fd000 # [ 302.566764] x21: 0000000000000000 x20: ffff800010a10190 # [ 302.572073] x19: 0000000000000000 x18: 0000000000000000 # [ 302.577383] x17: 0000000000000000 x16: 0000000000000000 # [ 302.582692] x15: 0000000000000000 x14: 0000000000000000 # [ 302.588001] x13: 0000000000000000 x12: 0000000000000000 # [ 302.593310] x11: 0000006dc408d8bf x10: 0000000000001440 # [ 302.598619] x9 : ffff80001012dcf4 x8 : ffff0005c0d7c5a0 # [ 302.603929] x7 : 0000000000000000 x6 : ffff800012561000 # [ 302.609238] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 302.614547] x3 : 0000000000000000 x2 : 0000000000000000 # [ 302.619856] x1 : ffff0005c0d7b100 x0 : 0000000000000033 # [ 302.625167] Call trace: # [ 302.627609] 0x0 # [ 302.629443] lkdtm_EXEC_NULL+0x20/0x2c # [ 302.633191] lkdtm_do_action+0x24/0x40 # [ 302.636935] direct_entry+0xd0/0x140 # [ 302.640508] full_proxy_write+0x68/0xbc # [ 302.644342] vfs_write+0xec/0x20c # [ 302.647654] ksys_write+0x70/0x100 # [ 302.651051] __arm64_sys_write+0x24/0x30 # [ 302.654972] el0_svc_common.constprop.0+0x84/0x1e0 # [ 302.659758] do_el0_svc+0x2c/0x94 # [ 302.663068] el0_svc+0x20/0x30 # [ 302.666118] el0_sync_handler+0xb0/0xb4 # [ 302.669951] el0_sync+0x180/0x1c0 # [ 302.673270] Code: bad PC value # [ 302.676324] ---[ end trace b07e3d6731f442d3 ]--- # EXEC_NULL: saw 'call trace:': ok ok 36 selftests: lkdtm: EXEC_NULL.sh # selftests: lkdtm: ACCESS_USERSPACE.sh [ 304.351160] lkdtm: Performing direct entry ACCESS_USERSPACE [ 304.356890] lkdtm: attempting bad read at 0000ffff95018000 [ 304.362414] lkdtm: FAIL: survived bad read [ 304.368536] lkdtm: attempting bad write at 0000ffff95018000 [ 304.374530] lkdtm: FAIL: survived bad write # [ 304.351160] lkdtm: Performing direct entry ACCESS_USERSPACE # [ 304.356890] lkdtm: attempting bad read at 0000ffff95018000 # [ 304.362414] lkdtm: FAIL: survived bad read # [ 304.368536] lkdtm: attempting bad write at 0000ffff95018000 # [ 304.374530] lkdtm: FAIL: survived bad write # ACCESS_USERSPACE: missing 'call trace:': [FAIL] not ok 37 selftests: lkdtm: ACCESS_USERSPACE.sh # exit=1 # selftests: lkdtm: ACCESS_NULL.sh [ 305.158362] lkdtm: Performing direct entry ACCESS_NULL [ 305.163628] lkdtm: attempting bad read at 0000000000000000 [ 305.169198] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 [ 305.178095] Mem abort info: [ 305.181029] ESR = 0x96000004 [ 305.184300] EC = 0x25: DABT (current EL), IL = 32 bits [ 305.189854] SET = 0, FnV = 0 [ 305.193011] EA = 0, S1PTW = 0 [ 305.196155] Data abort info: [ 305.199120] ISV = 0, ISS = 0x00000004 [ 305.202985] CM = 0, WnR = 0 [ 305.206069] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000608333000 [ 305.212522] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 [ 305.219342] Internal error: Oops: 96000004 [#12] PREEMPT SMP [ 305.224999] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 305.278205] CPU: 0 PID: 2203 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 305.285942] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 305.292293] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 305.298303] pc : lkdtm_ACCESS_NULL+0x34/0x78 [ 305.302567] lr : lkdtm_ACCESS_NULL+0x2c/0x78 [ 305.306830] sp : ffff80001618bcf0 [ 305.310139] x29: ffff80001618bcf0 x28: ffff0005c2328000 [ 305.315450] x27: 0000000000000000 x26: 0000000000000000 [ 305.320760] x25: ffff8000114f18e8 x24: ffff80001618be20 [ 305.326070] x23: 000000000000000c x22: ffff0005c954f000 [ 305.331380] x21: ffff800011a076c0 x20: 0000000000000000 [ 305.336690] x19: 0000000000000027 x18: 0000000000000000 [ 305.342000] x17: 0000000000000000 x16: 0000000000000000 [ 305.347310] x15: 0000000000000030 x14: ffffffffffffffff [ 305.352619] x13: ffff80009618b9d7 x12: ffff80001618b9df [ 305.357929] x11: 0000000000000018 x10: ffff8000125e8350 [ 305.363238] x9 : ffff80001012dcf4 x8 : ffff800012590350 [ 305.368548] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 305.373858] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 305.379167] x3 : 0000000000000000 x2 : 0000000000000000 [ 305.384477] x1 : 000000000000c0de x0 : ffff800011a08000 [ 305.389788] Call trace: [ 305.392230] lkdtm_ACCESS_NULL+0x34/0x78 [ 305.396153] lkdtm_do_action+0x24/0x40 [ 305.399897] direct_entry+0xd0/0x140 [ 305.403471] full_proxy_write+0x68/0xbc [ 305.407307] vfs_write+0xec/0x20c [ 305.410621] ksys_write+0x70/0x100 [ 305.414017] __arm64_sys_write+0x24/0x30 [ 305.417939] el0_svc_common.constprop.0+0x84/0x1e0 [ 305.422725] do_el0_svc+0x2c/0x94 [ 305.426035] el0_svc+0x20/0x30 [ 305.429084] el0_sync_handler+0xb0/0xb4 [ 305.432917] el0_sync+0x180/0x1c0 [ 305.436231] Code: 911cc000 97ffdf68 d2981bc1 b0003e00 (f9400293) [ 305.442322] ---[ end trace b07e3d6731f442d4 ]--- # Segmentation fault # [ 305.158362] lkdtm: Performing direct entry ACCESS_NULL # [ 305.163628] lkdtm: attempting bad read at 0000000000000000 # [ 305.169198] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 # [ 305.178095] Mem abort info: # [ 305.181029] ESR = 0x96000004 # [ 305.184300] EC = 0x25: DABT (current EL), IL = 32 bits # [ 305.189854] SET = 0, FnV = 0 # [ 305.193011] EA = 0, S1PTW = 0 # [ 305.196155] Data abort info: # [ 305.199120] ISV = 0, ISS = 0x00000004 # [ 305.202985] CM = 0, WnR = 0 # [ 305.206069] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000608333000 # [ 305.212522] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 # [ 305.219342] Internal error: Oops: 96000004 [#12] PREEMPT SMP # [ 305.224999] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 305.278205] CPU: 0 PID: 2203 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 305.285942] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 305.292293] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 305.298303] pc : lkdtm_ACCESS_NULL+0x34/0x78 # [ 305.302567] lr : lkdtm_ACCESS_NULL+0x2c/0x78 # [ 305.306830] sp : ffff80001618bcf0 # [ 305.310139] x29: ffff80001618bcf0 x28: ffff0005c2328000 # [ 305.315450] x27: 0000000000000000 x26: 0000000000000000 # [ 305.320760] x25: ffff8000114f18e8 x24: ffff80001618be20 # [ 305.326070] x23: 000000000000000c x22: ffff0005c954f000 # [ 305.331380] x21: ffff800011a076c0 x20: 0000000000000000 # [ 305.336690] x19: 0000000000000027 x18: 0000000000000000 # [ 305.342000] x17: 0000000000000000 x16: 0000000000000000 # [ 305.347310] x15: 0000000000000030 x14: ffffffffffffffff # [ 305.352619] x13: ffff80009618b9d7 x12: ffff80001618b9df # [ 305.357929] x11: 0000000000000018 x10: ffff8000125e8350 # [ 305.363238] x9 : ffff80001012dcf4 x8 : ffff800012590350 # [ 305.368548] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 305.373858] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 305.379167] x3 : 0000000000000000 x2 : 0000000000000000 # [ 305.384477] x1 : 000000000000c0de x0 : ffff800011a08000 # [ 305.389788] Call trace: # [ 305.392230] lkdtm_ACCESS_NULL+0x34/0x78 # [ 305.396153] lkdtm_do_action+0x24/0x40 # [ 305.399897] direct_entry+0xd0/0x140 # [ 305.403471] full_proxy_write+0x68/0xbc # [ 305.407307] vfs_write+0xec/0x20c # [ 305.410621] ksys_write+0x70/0x100 # [ 305.414017] __arm64_sys_write+0x24/0x30 # [ 305.417939] el0_svc_common.constprop.0+0x84/0x1e0 # [ 305.422725] do_el0_svc+0x2c/0x94 # [ 305.426035] el0_svc+0x20/0x30 # [ 305.429084] el0_sync_handler+0xb0/0xb4 # [ 305.432917] el0_sync+0x180/0x1c0 # [ 305.436231] Code: 911cc000 97ffdf68 d2981bc1 b0003e00 (f9400293) # [ 305.442322] ---[ end trace b07e3d6731f442d4 ]--- # ACCESS_NULL: saw 'call trace:': ok ok 38 selftests: lkdtm: ACCESS_NULL.sh # selftests: lkdtm: WRITE_RO.sh [ 307.326404] lkdtm: Performing direct entry WRITE_RO [ 307.331398] lkdtm: attempting bad rodata write at ffff8000114f1dd8 [ 307.337654] Unable to handle kernel write to read-only memory at virtual address ffff8000114f1dd8 [ 307.346571] Mem abort info: [ 307.349488] ESR = 0x9600004e [ 307.352844] EC = 0x25: DABT (current EL), IL = 32 bits [ 307.358267] SET = 0, FnV = 0 [ 307.361365] EA = 0, S1PTW = 0 [ 307.364519] Data abort info: [ 307.367471] ISV = 0, ISS = 0x0000004e [ 307.371339] CM = 0, WnR = 1 [ 307.374743] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 307.384236] [ffff8000114f1dd8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 [ 307.395075] Internal error: Oops: 9600004e [#13] PREEMPT SMP [ 307.400739] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 307.454068] CPU: 2 PID: 2247 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 307.461809] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 307.468164] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 307.474183] pc : lkdtm_WRITE_RO+0x44/0x5c [ 307.478191] lr : lkdtm_WRITE_RO+0x2c/0x5c [ 307.482198] sp : ffff800016253cf0 [ 307.485510] x29: ffff800016253cf0 x28: ffff0005c914b100 [ 307.490829] x27: 0000000000000000 x26: 0000000000000000 [ 307.496147] x25: ffff8000114f18e8 x24: ffff800016253e20 [ 307.501464] x23: 0000000000000009 x22: ffff0005c4cdd000 [ 307.506782] x21: ffff800011a076d0 x20: ffff8000114f1b68 [ 307.512099] x19: ffff8000114f1000 x18: 0000000000000000 [ 307.517417] x17: 0000000000000000 x16: 0000000000000000 [ 307.522734] x15: 0000000000000030 x14: ffffffffffffffff [ 307.528051] x13: ffff8000962539d7 x12: ffff8000162539df [ 307.533369] x11: 0000000000000000 x10: ffff8000125e8350 [ 307.538688] x9 : ffff80001012dcf4 x8 : ffff800012590350 [ 307.544005] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 307.549323] x5 : ffff800012561c88 x4 : ffff00063f75cc50 [ 307.554640] x3 : 0000000000000000 x2 : 00000000abcd1234 [ 307.559957] x1 : 000000000198b861 x0 : ffff800011a08620 [ 307.565276] Call trace: [ 307.567724] lkdtm_WRITE_RO+0x44/0x5c [ 307.571391] lkdtm_do_action+0x24/0x40 [ 307.575139] direct_entry+0xd0/0x140 [ 307.578718] full_proxy_write+0x68/0xbc [ 307.582557] vfs_write+0xec/0x20c [ 307.585874] ksys_write+0x70/0x100 [ 307.589275] __arm64_sys_write+0x24/0x30 [ 307.593207] el0_svc_common.constprop.0+0x84/0x1e0 [ 307.598000] do_el0_svc+0x2c/0x94 [ 307.601318] el0_svc+0x20/0x30 [ 307.604373] el0_sync_handler+0xb0/0xb4 [ 307.608210] el0_sync+0x180/0x1c0 [ 307.611531] Code: f2b579a2 b0003e00 ca020021 91188000 (f906ee61) [ 307.617633] ---[ end trace b07e3d6731f442d5 ]--- # Segmentation fault # [ 307.326404] lkdtm: Performing direct entry WRITE_RO # [ 307.331398] lkdtm: attempting bad rodata write at ffff8000114f1dd8 # [ 307.337654] Unable to handle kernel write to read-only memory at virtual address ffff8000114f1dd8 # [ 307.346571] Mem abort info: # [ 307.349488] ESR = 0x9600004e # [ 307.352844] EC = 0x25: DABT (current EL), IL = 32 bits # [ 307.358267] SET = 0, FnV = 0 # [ 307.361365] EA = 0, S1PTW = 0 # [ 307.364519] Data abort info: # [ 307.367471] ISV = 0, ISS = 0x0000004e # [ 307.371339] CM = 0, WnR = 1 # [ 307.374743] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 307.384236] [ffff8000114f1dd8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 # [ 307.395075] Internal error: Oops: 9600004e [#13] PREEMPT SMP # [ 307.400739] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 307.454068] CPU: 2 PID: 2247 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 307.461809] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 307.468164] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 307.474183] pc : lkdtm_WRITE_RO+0x44/0x5c # [ 307.478191] lr : lkdtm_WRITE_RO+0x2c/0x5c # [ 307.482198] sp : ffff800016253cf0 # [ 307.485510] x29: ffff800016253cf0 x28: ffff0005c914b100 # [ 307.490829] x27: 0000000000000000 x26: 0000000000000000 # [ 307.496147] x25: ffff8000114f18e8 x24: ffff800016253e20 # [ 307.501464] x23: 0000000000000009 x22: ffff0005c4cdd000 # [ 307.506782] x21: ffff800011a076d0 x20: ffff8000114f1b68 # [ 307.512099] x19: ffff8000114f1000 x18: 0000000000000000 # [ 307.517417] x17: 0000000000000000 x16: 0000000000000000 # [ 307.522734] x15: 0000000000000030 x14: ffffffffffffffff # [ 307.528051] x13: ffff8000962539d7 x12: ffff8000162539df # [ 307.533369] x11: 0000000000000000 x10: ffff8000125e8350 # [ 307.538688] x9 : ffff80001012dcf4 x8 : ffff800012590350 # [ 307.544005] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 307.549323] x5 : ffff800012561c88 x4 : ffff00063f75cc50 # [ 307.554640] x3 : 0000000000000000 x2 : 00000000abcd1234 # [ 307.559957] x1 : 000000000198b861 x0 : ffff800011a08620 # [ 307.565276] Call trace: # [ 307.567724] lkdtm_WRITE_RO+0x44/0x5c # [ 307.571391] lkdtm_do_action+0x24/0x40 # [ 307.575139] direct_entry+0xd0/0x140 # [ 307.578718] full_proxy_write+0x68/0xbc # [ 307.582557] vfs_write+0xec/0x20c # [ 307.585874] ksys_write+0x70/0x100 # [ 307.589275] __arm64_sys_write+0x24/0x30 # [ 307.593207] el0_svc_common.constprop.0+0x84/0x1e0 # [ 307.598000] do_el0_svc+0x2c/0x94 # [ 307.601318] el0_svc+0x20/0x30 # [ 307.604373] el0_sync_handler+0xb0/0xb4 # [ 307.608210] el0_sync+0x180/0x1c0 # [ 307.611531] Code: f2b579a2 b0003e00 ca020021 91188000 (f906ee61) # [ 307.617633] ---[ end trace b07e3d6731f442d5 ]--- # WRITE_RO: saw 'call trace:': ok ok 39 selftests: lkdtm: WRITE_RO.sh # selftests: lkdtm: WRITE_RO_AFTER_INIT.sh [ 308.996096] lkdtm: Performing direct entry WRITE_RO_AFTER_INIT [ 309.002093] lkdtm: attempting bad ro_after_init write at ffff800011ad9e00 [ 309.008974] Unable to handle kernel write to read-only memory at virtual address ffff800011ad9e00 [ 309.017934] Mem abort info: [ 309.020805] ESR = 0x9600004f [ 309.023860] EC = 0x25: DABT (current EL), IL = 32 bits [ 309.029243] SET = 0, FnV = 0 [ 309.032296] EA = 0, S1PTW = 0 [ 309.035448] Data abort info: [ 309.038376] ISV = 0, ISS = 0x0000004f [ 309.042227] CM = 0, WnR = 1 [ 309.045221] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 309.051971] [ffff800011ad9e00] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffc003, pte=0060000049cd9783 [ 309.064540] Internal error: Oops: 9600004f [#14] PREEMPT SMP [ 309.070197] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 309.123402] CPU: 1 PID: 2292 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 309.131140] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 309.137491] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 309.143502] pc : lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 [ 309.148461] lr : lkdtm_WRITE_RO_AFTER_INIT+0x50/0x80 [ 309.153420] sp : ffff80001632bcf0 [ 309.156730] x29: ffff80001632bcf0 x28: ffff0005c0d80000 [ 309.162041] x27: 0000000000000000 x26: 0000000000000000 [ 309.167351] x25: ffff8000114f18e8 x24: ffff80001632be20 [ 309.172661] x23: 0000000000000014 x22: ffff0005c35ec000 [ 309.177971] x21: ffff800011a076e0 x20: ffff8000114f1b78 [ 309.183281] x19: ffff800011ad9000 x18: 0000000000000002 [ 309.188591] x17: 0000000000000000 x16: 0000000000000000 [ 309.193901] x15: 0000000000000030 x14: ffffffffffffffff [ 309.199211] x13: ffff80009632b9d7 x12: ffff80001632b9e1 [ 309.204521] x11: 0000000000000018 x10: 0000000000001440 [ 309.209831] x9 : ffff80001012dcf4 x8 : ffff0005c0d814a0 [ 309.215141] x7 : 0000000000000000 x6 : ffff800012561000 [ 309.220451] x5 : ffff800012561c88 x4 : ffff00063f73ac50 [ 309.225761] x3 : 0000000000000000 x2 : 00000000abcd1234 [ 309.231071] x1 : 00000000fe67479e x0 : ffff800011a08620 [ 309.236381] Call trace: [ 309.238823] lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 [ 309.243440] lkdtm_do_action+0x24/0x40 [ 309.247185] direct_entry+0xd0/0x140 [ 309.250759] full_proxy_write+0x68/0xbc [ 309.254596] vfs_write+0xec/0x20c [ 309.257909] ksys_write+0x70/0x100 [ 309.261305] __arm64_sys_write+0x24/0x30 [ 309.265227] el0_svc_common.constprop.0+0x84/0x1e0 [ 309.270012] do_el0_svc+0x2c/0x94 [ 309.273324] el0_svc+0x20/0x30 [ 309.276373] el0_sync_handler+0xb0/0xb4 [ 309.280205] el0_sync+0x180/0x1c0 [ 309.283520] Code: f2b579a2 b0003e00 ca020021 91188000 (f9070261) [ 309.289612] ---[ end trace b07e3d6731f442d6 ]--- # Segmentation fault # [ 308.996096] lkdtm: Performing direct entry WRITE_RO_AFTER_INIT # [ 309.002093] lkdtm: attempting bad ro_after_init write at ffff800011ad9e00 # [ 309.008974] Unable to handle kernel write to read-only memory at virtual address ffff800011ad9e00 # [ 309.017934] Mem abort info: # [ 309.020805] ESR = 0x9600004f # [ 309.023860] EC = 0x25: DABT (current EL), IL = 32 bits # [ 309.029243] SET = 0, FnV = 0 # [ 309.032296] EA = 0, S1PTW = 0 # [ 309.035448] Data abort info: # [ 309.038376] ISV = 0, ISS = 0x0000004f # [ 309.042227] CM = 0, WnR = 1 # [ 309.045221] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 309.051971] [ffff800011ad9e00] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffc003, pte=0060000049cd9783 # [ 309.064540] Internal error: Oops: 9600004f [#14] PREEMPT SMP # [ 309.070197] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 309.123402] CPU: 1 PID: 2292 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 309.131140] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 309.137491] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 309.143502] pc : lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 # [ 309.148461] lr : lkdtm_WRITE_RO_AFTER_INIT+0x50/0x80 # [ 309.153420] sp : ffff80001632bcf0 # [ 309.156730] x29: ffff80001632bcf0 x28: ffff0005c0d80000 # [ 309.162041] x27: 0000000000000000 x26: 0000000000000000 # [ 309.167351] x25: ffff8000114f18e8 x24: ffff80001632be20 # [ 309.172661] x23: 0000000000000014 x22: ffff0005c35ec000 # [ 309.177971] x21: ffff800011a076e0 x20: ffff8000114f1b78 # [ 309.183281] x19: ffff800011ad9000 x18: 0000000000000002 # [ 309.188591] x17: 0000000000000000 x16: 0000000000000000 # [ 309.193901] x15: 0000000000000030 x14: ffffffffffffffff # [ 309.199211] x13: ffff80009632b9d7 x12: ffff80001632b9e1 # [ 309.204521] x11: 0000000000000018 x10: 0000000000001440 # [ 309.209831] x9 : ffff80001012dcf4 x8 : ffff0005c0d814a0 # [ 309.215141] x7 : 0000000000000000 x6 : ffff800012561000 # [ 309.220451] x5 : ffff800012561c88 x4 : ffff00063f73ac50 # [ 309.225761] x3 : 0000000000000000 x2 : 00000000abcd1234 # [ 309.231071] x1 : 00000000fe67479e x0 : ffff800011a08620 # [ 309.236381] Call trace: # [ 309.238823] lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 # [ 309.243440] lkdtm_do_action+0x24/0x40 # [ 309.247185] direct_entry+0xd0/0x140 # [ 309.250759] full_proxy_write+0x68/0xbc # [ 309.254596] vfs_write+0xec/0x20c # [ 309.257909] ksys_write+0x70/0x100 # [ 309.261305] __arm64_sys_write+0x24/0x30 # [ 309.265227] el0_svc_common.constprop.0+0x84/0x1e0 # [ 309.270012] do_el0_svc+0x2c/0x94 # [ 309.273324] el0_svc+0x20/0x30 # [ 309.276373] el0_sync_handler+0xb0/0xb4 # [ 309.280205] el0_sync+0x180/0x1c0 # [ 309.283520] Code: f2b579a2 b0003e00 ca020021 91188000 (f9070261) # [ 309.289612] ---[ end trace b07e3d6731f442d6 ]--- # WRITE_RO_AFTER_INIT: saw 'call trace:': ok ok 40 selftests: lkdtm: WRITE_RO_AFTER_INIT.sh # selftests: lkdtm: WRITE_KERN.sh [ 310.957475] lkdtm: Performing direct entry WRITE_KERN [ 310.962597] lkdtm: attempting bad 8614984 byte write at ffff8000112475d8 [ 310.969501] Unable to handle kernel write to read-only memory at virtual address ffff8000112475d8 [ 310.978550] Mem abort info: [ 310.981372] ESR = 0x9600004f [ 310.984433] EC = 0x25: DABT (current EL), IL = 32 bits [ 310.989865] SET = 0, FnV = 0 [ 310.992945] EA = 0, S1PTW = 0 [ 310.996319] Data abort info: [ 310.999269] ISV = 0, ISS = 0x0000004f [ 311.003132] CM = 0, WnR = 1 [ 311.006122] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 311.012997] [ffff8000112475d8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffd003, pte=0050000049447783 [ 311.025633] Internal error: Oops: 9600004f [#15] PREEMPT SMP [ 311.031290] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 311.084494] CPU: 0 PID: 2336 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 311.092231] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 311.098582] pstate: 20000005 (nzCv daif -PAN -UAO -TCO BTYPE=--) [ 311.104594] pc : __memcpy+0x110/0x180 [ 311.108255] lr : lkdtm_WRITE_KERN+0x54/0x88 [ 311.112432] sp : ffff80001641bce0 [ 311.115741] x29: ffff80001641bce0 x28: ffff0005c8296200 [ 311.121051] x27: 0000000000000000 x26: 0000000000000000 [ 311.126362] x25: ffff8000114f18e8 x24: ffff80001641be20 [ 311.131671] x23: 000000000000000b x22: ffff0005c8028000 [ 311.136981] x21: 0000000000837448 x20: ffff800010a10190 [ 311.142291] x19: ffff8000112475d8 x18: 0000000000000000 [ 311.147601] x17: 0000000000000000 x16: 0000000000000000 [ 311.152910] x15: 0000000000000030 x14: f9000fe097e4f18a [ 311.158219] x13: f9440400910003fd x12: 52819801d2800802 [ 311.163528] x11: a9be7bfdf0008620 x10: d503233fd503201f [ 311.168838] x9 : aa1e03e9d65f03c0 x8 : d50323bfd503233f [ 311.174147] x7 : d503201faa1e03e9 x6 : ffff8000112475d8 [ 311.179457] x5 : ffff800012561c88 x4 : 0000000000000000 [ 311.184766] x3 : 0000000000000000 x2 : 00000000008373c8 [ 311.190075] x1 : ffff800010a101d0 x0 : ffff8000112475d8 [ 311.195386] Call trace: [ 311.197829] __memcpy+0x110/0x180 [ 311.201144] lkdtm_do_action+0x24/0x40 [ 311.204887] direct_entry+0xd0/0x140 [ 311.208461] full_proxy_write+0x68/0xbc [ 311.212297] vfs_write+0xec/0x20c [ 311.215609] ksys_write+0x70/0x100 [ 311.219006] __arm64_sys_write+0x24/0x30 [ 311.222928] el0_svc_common.constprop.0+0x84/0x1e0 [ 311.227713] do_el0_svc+0x2c/0x94 [ 311.231023] el0_svc+0x20/0x30 [ 311.234072] el0_sync_handler+0xb0/0xb4 [ 311.237904] el0_sync+0x180/0x1c0 [ 311.241219] Code: a8c12027 a8c12829 a8c1302b a8c1382d (a88120c7) [ 311.247310] ---[ end trace b07e3d6731f442d7 ]--- # Segmentation fault # [ 310.957475] lkdtm: Performing direct entry WRITE_KERN # [ 310.962597] lkdtm: attempting bad 8614984 byte write at ffff8000112475d8 # [ 310.969501] Unable to handle kernel write to read-only memory at virtual address ffff8000112475d8 # [ 310.978550] Mem abort info: # [ 310.981372] ESR = 0x9600004f # [ 310.984433] EC = 0x25: DABT (current EL), IL = 32 bits # [ 310.989865] SET = 0, FnV = 0 # [ 310.992945] EA = 0, S1PTW = 0 # [ 310.996319] Data abort info: # [ 310.999269] ISV = 0, ISS = 0x0000004f # [ 311.003132] CM = 0, WnR = 1 # [ 311.006122] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 311.012997] [ffff8000112475d8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffd003, pte=0050000049447783 # [ 311.025633] Internal error: Oops: 9600004f [#15] PREEMPT SMP # [ 311.031290] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 311.084494] CPU: 0 PID: 2336 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 311.092231] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 311.098582] pstate: 20000005 (nzCv daif -PAN -UAO -TCO BTYPE=--) # [ 311.104594] pc : __memcpy+0x110/0x180 # [ 311.108255] lr : lkdtm_WRITE_KERN+0x54/0x88 # [ 311.112432] sp : ffff80001641bce0 # [ 311.115741] x29: ffff80001641bce0 x28: ffff0005c8296200 # [ 311.121051] x27: 0000000000000000 x26: 0000000000000000 # [ 311.126362] x25: ffff8000114f18e8 x24: ffff80001641be20 # [ 311.131671] x23: 000000000000000b x22: ffff0005c8028000 # [ 311.136981] x21: 0000000000837448 x20: ffff800010a10190 # [ 311.142291] x19: ffff8000112475d8 x18: 0000000000000000 # [ 311.147601] x17: 0000000000000000 x16: 0000000000000000 # [ 311.152910] x15: 0000000000000030 x14: f9000fe097e4f18a # [ 311.158219] x13: f9440400910003fd x12: 52819801d2800802 # [ 311.163528] x11: a9be7bfdf0008620 x10: d503233fd503201f # [ 311.168838] x9 : aa1e03e9d65f03c0 x8 : d50323bfd503233f # [ 311.174147] x7 : d503201faa1e03e9 x6 : ffff8000112475d8 # [ 311.179457] x5 : ffff800012561c88 x4 : 0000000000000000 # [ 311.184766] x3 : 0000000000000000 x2 : 00000000008373c8 # [ 311.190075] x1 : ffff800010a101d0 x0 : ffff8000112475d8 # [ 311.195386] Call trace: # [ 311.197829] __memcpy+0x110/0x180 # [ 311.201144] lkdtm_do_action+0x24/0x40 # [ 311.204887] direct_entry+0xd0/0x140 # [ 311.208461] full_proxy_write+0x68/0xbc # [ 311.212297] vfs_write+0xec/0x20c # [ 311.215609] ksys_write+0x70/0x100 # [ 311.219006] __arm64_sys_write+0x24/0x30 # [ 311.222928] el0_svc_common.constprop.0+0x84/0x1e0 # [ 311.227713] do_el0_svc+0x2c/0x94 # [ 311.231023] el0_svc+0x20/0x30 # [ 311.234072] el0_sync_handler+0xb0/0xb4 # [ 311.237904] el0_sync+0x180/0x1c0 # [ 311.241219] Code: a8c12027 a8c12829 a8c1302b a8c1382d (a88120c7) # [ 311.247310] ---[ end trace b07e3d6731f442d7 ]--- # WRITE_KERN: saw 'call trace:': ok ok 41 selftests: lkdtm: WRITE_KERN.sh # selftests: lkdtm: REFCOUNT_INC_OVERFLOW.sh [ 313.359204] lkdtm: Performing direct entry REFCOUNT_INC_OVERFLOW [ 313.365462] lkdtm: attempting good refcount_inc() without overflow [ 313.371716] lkdtm: attempting bad refcount_inc() overflow [ 313.377164] ------------[ cut here ]------------ [ 313.381909] refcount_t: saturated; leaking memory. [ 313.386947] WARNING: CPU: 5 PID: 2381 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 [ 313.395386] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 313.448770] CPU: 5 PID: 2381 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 313.456512] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 313.462870] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 313.468878] pc : refcount_warn_saturate+0x74/0x144 [ 313.473670] lr : refcount_warn_saturate+0x74/0x144 [ 313.478461] sp : ffff800016483cd0 [ 313.481775] x29: ffff800016483cd0 x28: ffff0005c8293100 [ 313.487097] x27: 0000000000000000 x26: 0000000000000000 [ 313.492418] x25: ffff8000114f18e8 x24: ffff800016483e20 [ 313.497740] x23: 0000000000000016 x22: ffff0005c9969000 [ 313.503061] x21: ffff800011a07708 x20: ffff8000114f1b98 [ 313.508382] x19: 000000000000002b x18: 0000000000000000 [ 313.513704] x17: 0000000000000000 x16: 0000000000000000 [ 313.519025] x15: 0000000000000030 x14: ffffffffffffffff [ 313.524347] x13: ffff800096483977 x12: ffff80001648397f [ 313.529669] x11: 0000000000000028 x10: 0000000000001440 [ 313.534989] x9 : ffff80001012dcf4 x8 : ffff0005c82945a0 [ 313.540311] x7 : 0000000000000000 x6 : ffff800012561000 [ 313.545632] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 313.550953] x3 : 0000000000000000 x2 : 0000000000000000 [ 313.556274] x1 : 0000000000000000 x0 : ffff0005c8293100 [ 313.561597] Call trace: [ 313.564045] refcount_warn_saturate+0x74/0x144 [ 313.568497] __refcount_add.constprop.0+0x6c/0x80 [ 313.573208] lkdtm_REFCOUNT_INC_OVERFLOW+0x70/0xa0 [ 313.578000] lkdtm_do_action+0x24/0x40 [ 313.581750] direct_entry+0xd0/0x140 [ 313.585329] full_proxy_write+0x68/0xbc [ 313.589170] vfs_write+0xec/0x20c [ 313.592489] ksys_write+0x70/0x100 [ 313.595893] __arm64_sys_write+0x24/0x30 [ 313.599823] el0_svc_common.constprop.0+0x84/0x1e0 [ 313.604616] do_el0_svc+0x2c/0x94 [ 313.607933] el0_svc+0x20/0x30 [ 313.610990] el0_sync_handler+0xb0/0xb4 [ 313.614828] el0_sync+0x180/0x1c0 [ 313.618144] irq event stamp: 0 [ 313.621206] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 313.627481] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 313.635661] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 313.643839] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 313.650105] ---[ end trace b07e3d6731f442d8 ]--- [ 313.655151] lkdtm: Overflow detected: saturated # [ 313.359204] lkdtm: Performing direct entry REFCOUNT_INC_OVERFLOW # [ 313.365462] lkdtm: attempting good refcount_inc() without overflow # [ 313.371716] lkdtm: attempting bad refcount_inc() overflow # [ 313.377164] ------------[ cut here ]------------ # [ 313.381909] refcount_t: saturated; leaking memory. # [ 313.386947] WARNING: CPU: 5 PID: 2381 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 313.395386] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 313.448770] CPU: 5 PID: 2381 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 313.456512] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 313.462870] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 313.468878] pc : refcount_warn_saturate+0x74/0x144 # [ 313.473670] lr : refcount_warn_saturate+0x74/0x144 # [ 313.478461] sp : ffff800016483cd0 # [ 313.481775] x29: ffff800016483cd0 x28: ffff0005c8293100 # [ 313.487097] x27: 0000000000000000 x26: 0000000000000000 # [ 313.492418] x25: ffff8000114f18e8 x24: ffff800016483e20 # [ 313.497740] x23: 0000000000000016 x22: ffff0005c9969000 # [ 313.503061] x21: ffff800011a07708 x20: ffff8000114f1b98 # [ 313.508382] x19: 000000000000002b x18: 0000000000000000 # [ 313.513704] x17: 0000000000000000 x16: 0000000000000000 # [ 313.519025] x15: 0000000000000030 x14: ffffffffffffffff # [ 313.524347] x13: ffff800096483977 x12: ffff80001648397f # [ 313.529669] x11: 0000000000000028 x10: 0000000000001440 # [ 313.534989] x9 : ffff80001012dcf4 x8 : ffff0005c82945a0 # [ 313.540311] x7 : 0000000000000000 x6 : ffff800012561000 # [ 313.545632] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 313.550953] x3 : 0000000000000000 x2 : 0000000000000000 # [ 313.556274] x1 : 0000000000000000 x0 : ffff0005c8293100 # [ 313.561597] Call trace: # [ 313.564045] refcount_warn_saturate+0x74/0x144 # [ 313.568497] __refcount_add.constprop.0+0x6c/0x80 # [ 313.573208] lkdtm_REFCOUNT_INC_OVERFLOW+0x70/0xa0 # [ 313.578000] lkdtm_do_action+0x24/0x40 # [ 313.581750] direct_entry+0xd0/0x140 # [ 313.585329] full_proxy_write+0x68/0xbc # [ 313.589170] vfs_write+0xec/0x20c # [ 313.592489] ksys_write+0x70/0x100 # [ 313.595893] __arm64_sys_write+0x24/0x30 # [ 313.599823] el0_svc_common.constprop.0+0x84/0x1e0 # [ 313.604616] do_el0_svc+0x2c/0x94 # [ 313.607933] el0_svc+0x20/0x30 # [ 313.610990] el0_sync_handler+0xb0/0xb4 # [ 313.614828] el0_sync+0x180/0x1c0 # [ 313.618144] irq event stamp: 0 # [ 313.621206] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 313.627481] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 313.635661] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 313.643839] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 313.650105] ---[ end trace b07e3d6731f442d8 ]--- # [ 313.655151] lkdtm: Overflow detected: saturated # REFCOUNT_INC_OVERFLOW: saw 'call trace:': ok ok 42 selftests: lkdtm: REFCOUNT_INC_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_ADD_OVERFLOW.sh [ 315.788271] lkdtm: Performing direct entry REFCOUNT_ADD_OVERFLOW [ 315.794453] lkdtm: attempting good refcount_add() without overflow [ 315.800705] lkdtm: attempting bad refcount_add() overflow [ 315.806175] ------------[ cut here ]------------ [ 315.810906] refcount_t: saturated; leaking memory. [ 315.815853] WARNING: CPU: 2 PID: 2415 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 [ 315.824290] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 315.877622] CPU: 2 PID: 2415 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 315.885362] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 315.891717] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 315.897723] pc : refcount_warn_saturate+0x74/0x144 [ 315.902512] lr : refcount_warn_saturate+0x74/0x144 [ 315.907301] sp : ffff80001654bcd0 [ 315.910613] x29: ffff80001654bcd0 x28: ffff0005c94c9880 [ 315.915931] x27: 0000000000000000 x26: 0000000000000000 [ 315.921248] x25: ffff8000114f18e8 x24: ffff80001654be20 [ 315.926566] x23: 0000000000000016 x22: ffff0005c9298000 [ 315.931883] x21: ffff800011a07720 x20: ffff8000114f1ba8 [ 315.937201] x19: 000000000000002c x18: 0000000000000000 [ 315.942518] x17: 0000000000000000 x16: 0000000000000000 [ 315.947836] x15: 0000000000000030 x14: ffffffffffffffff [ 315.953154] x13: ffff80009654b977 x12: ffff80001654b97f [ 315.958471] x11: 0000000000000028 x10: ffff8000125e8350 [ 315.963788] x9 : ffff80001012dcf4 x8 : ffff800012590350 [ 315.969106] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 315.974423] x5 : ffff800012561c88 x4 : ffff00063f75cc50 [ 315.979740] x3 : 0000000000000000 x2 : 0000000000000000 [ 315.985058] x1 : 0000000000000000 x0 : ffff0005c94c9880 [ 315.990377] Call trace: [ 315.992824] refcount_warn_saturate+0x74/0x144 [ 315.997273] __refcount_add.constprop.0+0x6c/0x80 [ 316.001981] lkdtm_REFCOUNT_ADD_OVERFLOW+0x7c/0xac [ 316.006771] lkdtm_do_action+0x24/0x40 [ 316.010519] direct_entry+0xd0/0x140 [ 316.014096] full_proxy_write+0x68/0xbc [ 316.017935] vfs_write+0xec/0x20c [ 316.021252] ksys_write+0x70/0x100 [ 316.024653] __arm64_sys_write+0x24/0x30 [ 316.028582] el0_svc_common.constprop.0+0x84/0x1e0 [ 316.033372] do_el0_svc+0x2c/0x94 [ 316.036687] el0_svc+0x20/0x30 [ 316.039741] el0_sync_handler+0xb0/0xb4 [ 316.043578] el0_sync+0x180/0x1c0 [ 316.046891] irq event stamp: 0 [ 316.049951] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 316.056224] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 316.064400] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 316.072576] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 316.078840] ---[ end trace b07e3d6731f442d9 ]--- [ 316.083825] lkdtm: Overflow detected: saturated # [ 315.788271] lkdtm: Performing direct entry REFCOUNT_ADD_OVERFLOW # [ 315.794453] lkdtm: attempting good refcount_add() without overflow # [ 315.800705] lkdtm: attempting bad refcount_add() overflow # [ 315.806175] ------------[ cut here ]------------ # [ 315.810906] refcount_t: saturated; leaking memory. # [ 315.815853] WARNING: CPU: 2 PID: 2415 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 315.824290] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 315.877622] CPU: 2 PID: 2415 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 315.885362] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 315.891717] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 315.897723] pc : refcount_warn_saturate+0x74/0x144 # [ 315.902512] lr : refcount_warn_saturate+0x74/0x144 # [ 315.907301] sp : ffff80001654bcd0 # [ 315.910613] x29: ffff80001654bcd0 x28: ffff0005c94c9880 # [ 315.915931] x27: 0000000000000000 x26: 0000000000000000 # [ 315.921248] x25: ffff8000114f18e8 x24: ffff80001654be20 # [ 315.926566] x23: 0000000000000016 x22: ffff0005c9298000 # [ 315.931883] x21: ffff800011a07720 x20: ffff8000114f1ba8 # [ 315.937201] x19: 000000000000002c x18: 0000000000000000 # [ 315.942518] x17: 0000000000000000 x16: 0000000000000000 # [ 315.947836] x15: 0000000000000030 x14: ffffffffffffffff # [ 315.953154] x13: ffff80009654b977 x12: ffff80001654b97f # [ 315.958471] x11: 0000000000000028 x10: ffff8000125e8350 # [ 315.963788] x9 : ffff80001012dcf4 x8 : ffff800012590350 # [ 315.969106] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 315.974423] x5 : ffff800012561c88 x4 : ffff00063f75cc50 # [ 315.979740] x3 : 0000000000000000 x2 : 0000000000000000 # [ 315.985058] x1 : 0000000000000000 x0 : ffff0005c94c9880 # [ 315.990377] Call trace: # [ 315.992824] refcount_warn_saturate+0x74/0x144 # [ 315.997273] __refcount_add.constprop.0+0x6c/0x80 # [ 316.001981] lkdtm_REFCOUNT_ADD_OVERFLOW+0x7c/0xac # [ 316.006771] lkdtm_do_action+0x24/0x40 # [ 316.010519] direct_entry+0xd0/0x140 # [ 316.014096] full_proxy_write+0x68/0xbc # [ 316.017935] vfs_write+0xec/0x20c # [ 316.021252] ksys_write+0x70/0x100 # [ 316.024653] __arm64_sys_write+0x24/0x30 # [ 316.028582] el0_svc_common.constprop.0+0x84/0x1e0 # [ 316.033372] do_el0_svc+0x2c/0x94 # [ 316.036687] el0_svc+0x20/0x30 # [ 316.039741] el0_sync_handler+0xb0/0xb4 # [ 316.043578] el0_sync+0x180/0x1c0 # [ 316.046891] irq event stamp: 0 # [ 316.049951] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 316.056224] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 316.064400] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 316.072576] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 316.078840] ---[ end trace b07e3d6731f442d9 ]--- # [ 316.083825] lkdtm: Overflow detected: saturated # REFCOUNT_ADD_OVERFLOW: saw 'call trace:': ok ok 43 selftests: lkdtm: REFCOUNT_ADD_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh [ 317.722672] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_OVERFLOW [ 317.729595] lkdtm: attempting bad refcount_inc_not_zero() overflow [ 317.735835] ------------[ cut here ]------------ [ 317.740508] refcount_t: saturated; leaking memory. [ 317.745474] WARNING: CPU: 4 PID: 2447 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 [ 317.753910] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 317.807243] CPU: 4 PID: 2447 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 317.814983] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 317.821338] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 317.827344] pc : refcount_warn_saturate+0xc8/0x144 [ 317.832134] lr : refcount_warn_saturate+0xc8/0x144 [ 317.836922] sp : ffff8000165fbcb0 [ 317.840234] x29: ffff8000165fbcb0 x28: ffff0005c3e51880 [ 317.845552] x27: 0000000000000000 x26: 0000000000000000 [ 317.850869] x25: ffff8000114f18e8 x24: ffff8000165fbe20 [ 317.856187] x23: 000000000000001f x22: ffff0005c6463000 [ 317.861504] x21: 0000000000000001 x20: 000000007fffffff [ 317.866822] x19: ffff8000165fbd04 x18: 0000000000000000 [ 317.872139] x17: 0000000000000000 x16: 0000000000000000 [ 317.877457] x15: 0000000000000030 x14: ffffffffffffffff [ 317.882774] x13: ffff8000965fb957 x12: ffff8000165fb95f [ 317.888091] x11: 0000000000000030 x10: 0000000000001440 [ 317.893409] x9 : ffff80001012dcf4 x8 : ffff0005c3e52d20 [ 317.898726] x7 : 0000000000000000 x6 : ffff800012561000 [ 317.904044] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 317.909361] x3 : 0000000000000000 x2 : 0000000000000000 [ 317.914678] x1 : 0000000000000000 x0 : ffff0005c3e51880 [ 317.919997] Call trace: [ 317.922443] refcount_warn_saturate+0xc8/0x144 [ 317.926893] __refcount_add_not_zero.constprop.0+0x84/0xa0 [ 317.932377] lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW+0x48/0x8c [ 317.937952] lkdtm_do_action+0x24/0x40 [ 317.941700] direct_entry+0xd0/0x140 [ 317.945277] full_proxy_write+0x68/0xbc [ 317.949116] vfs_write+0xec/0x20c [ 317.952433] ksys_write+0x70/0x100 [ 317.955834] __arm64_sys_write+0x24/0x30 [ 317.959762] el0_svc_common.constprop.0+0x84/0x1e0 [ 317.964552] do_el0_svc+0x2c/0x94 [ 317.967868] el0_svc+0x20/0x30 [ 317.970921] el0_sync_handler+0xb0/0xb4 [ 317.974758] el0_sync+0x180/0x1c0 [ 317.978072] irq event stamp: 0 [ 317.981131] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 317.987403] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 317.995580] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 318.003755] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 318.010019] ---[ end trace b07e3d6731f442da ]--- [ 318.014727] lkdtm: Overflow detected: saturated # [ 317.722672] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_OVERFLOW # [ 317.729595] lkdtm: attempting bad refcount_inc_not_zero() overflow # [ 317.735835] ------------[ cut here ]------------ # [ 317.740508] refcount_t: saturated; leaking memory. # [ 317.745474] WARNING: CPU: 4 PID: 2447 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 317.753910] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 317.807243] CPU: 4 PID: 2447 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 317.814983] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 317.821338] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 317.827344] pc : refcount_warn_saturate+0xc8/0x144 # [ 317.832134] lr : refcount_warn_saturate+0xc8/0x144 # [ 317.836922] sp : ffff8000165fbcb0 # [ 317.840234] x29: ffff8000165fbcb0 x28: ffff0005c3e51880 # [ 317.845552] x27: 0000000000000000 x26: 0000000000000000 # [ 317.850869] x25: ffff8000114f18e8 x24: ffff8000165fbe20 # [ 317.856187] x23: 000000000000001f x22: ffff0005c6463000 # [ 317.861504] x21: 0000000000000001 x20: 000000007fffffff # [ 317.866822] x19: ffff8000165fbd04 x18: 0000000000000000 # [ 317.872139] x17: 0000000000000000 x16: 0000000000000000 # [ 317.877457] x15: 0000000000000030 x14: ffffffffffffffff # [ 317.882774] x13: ffff8000965fb957 x12: ffff8000165fb95f # [ 317.888091] x11: 0000000000000030 x10: 0000000000001440 # [ 317.893409] x9 : ffff80001012dcf4 x8 : ffff0005c3e52d20 # [ 317.898726] x7 : 0000000000000000 x6 : ffff800012561000 # [ 317.904044] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 317.909361] x3 : 0000000000000000 x2 : 0000000000000000 # [ 317.914678] x1 : 0000000000000000 x0 : ffff0005c3e51880 # [ 317.919997] Call trace: # [ 317.922443] refcount_warn_saturate+0xc8/0x144 # [ 317.926893] __refcount_add_not_zero.constprop.0+0x84/0xa0 # [ 317.932377] lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW+0x48/0x8c # [ 317.937952] lkdtm_do_action+0x24/0x40 # [ 317.941700] direct_entry+0xd0/0x140 # [ 317.945277] full_proxy_write+0x68/0xbc # [ 317.949116] vfs_write+0xec/0x20c # [ 317.952433] ksys_write+0x70/0x100 # [ 317.955834] __arm64_sys_write+0x24/0x30 # [ 317.959762] el0_svc_common.constprop.0+0x84/0x1e0 # [ 317.964552] do_el0_svc+0x2c/0x94 # [ 317.967868] el0_svc+0x20/0x30 # [ 317.970921] el0_sync_handler+0xb0/0xb4 # [ 317.974758] el0_sync+0x180/0x1c0 # [ 317.978072] irq event stamp: 0 # [ 317.981131] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 317.987403] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 317.995580] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 318.003755] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 318.010019] ---[ end trace b07e3d6731f442da ]--- # [ 318.014727] lkdtm: Overflow detected: saturated # REFCOUNT_INC_NOT_ZERO_OVERFLOW: saw 'call trace:': ok ok 44 selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh [ 319.425572] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_OVERFLOW [ 319.432481] lkdtm: attempting bad refcount_add_not_zero() overflow [ 319.440382] ------------[ cut here ]------------ [ 319.445486] refcount_t: saturated; leaking memory. [ 319.450775] WARNING: CPU: 2 PID: 2479 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 [ 319.459212] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 319.512550] CPU: 2 PID: 2479 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 319.520290] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 319.526645] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 319.532651] pc : refcount_warn_saturate+0xc8/0x144 [ 319.537440] lr : refcount_warn_saturate+0xc8/0x144 [ 319.542228] sp : ffff8000166a3cb0 [ 319.545541] x29: ffff8000166a3cb0 x28: ffff0005c94ce200 [ 319.550858] x27: 0000000000000000 x26: 0000000000000000 [ 319.556176] x25: ffff8000114f18e8 x24: ffff8000166a3e20 [ 319.561494] x23: 000000000000001f x22: ffff0005c985b000 [ 319.566811] x21: 0000000000000006 x20: 000000007fffffff [ 319.572129] x19: ffff8000166a3d04 x18: 0000000000000000 [ 319.577446] x17: 0000000000000000 x16: 0000000000000000 [ 319.582763] x15: 0000000000000000 x14: 0000000000000000 [ 319.588080] x13: 0000000000000000 x12: 0000000000000000 [ 319.593397] x11: 00000061cfc7efee x10: 0000000000001440 [ 319.598715] x9 : ffff80001012dcf4 x8 : ffff0005c94cf6a0 [ 319.604033] x7 : 0000000000000000 x6 : ffff800012561000 [ 319.609350] x5 : ffff800012561c88 x4 : ffff00063f75cc50 [ 319.614668] x3 : 0000000000000000 x2 : 0000000000000000 [ 319.619985] x1 : 0000000000000000 x0 : ffff0005c94ce200 [ 319.625304] Call trace: [ 319.627750] refcount_warn_saturate+0xc8/0x144 [ 319.632200] __refcount_add_not_zero.constprop.0+0x84/0xa0 [ 319.637684] lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW+0x48/0x8c [ 319.643259] lkdtm_do_action+0x24/0x40 [ 319.647007] direct_entry+0xd0/0x140 [ 319.650584] full_proxy_write+0x68/0xbc [ 319.654423] vfs_write+0xec/0x20c [ 319.657739] ksys_write+0x70/0x100 [ 319.661141] __arm64_sys_write+0x24/0x30 [ 319.665069] el0_svc_common.constprop.0+0x84/0x1e0 [ 319.669860] do_el0_svc+0x2c/0x94 [ 319.673175] el0_svc+0x20/0x30 [ 319.676228] el0_sync_handler+0xb0/0xb4 [ 319.680065] el0_sync+0x180/0x1c0 [ 319.683378] irq event stamp: 0 [ 319.686438] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 319.692710] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 319.700888] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 319.709063] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 319.715327] ---[ end trace b07e3d6731f442db ]--- [ 319.720052] lkdtm: Overflow detected: saturated # [ 319.425572] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_OVERFLOW # [ 319.432481] lkdtm: attempting bad refcount_add_not_zero() overflow # [ 319.440382] ------------[ cut here ]------------ # [ 319.445486] refcount_t: saturated; leaking memory. # [ 319.450775] WARNING: CPU: 2 PID: 2479 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 319.459212] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 319.512550] CPU: 2 PID: 2479 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 319.520290] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 319.526645] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 319.532651] pc : refcount_warn_saturate+0xc8/0x144 # [ 319.537440] lr : refcount_warn_saturate+0xc8/0x144 # [ 319.542228] sp : ffff8000166a3cb0 # [ 319.545541] x29: ffff8000166a3cb0 x28: ffff0005c94ce200 # [ 319.550858] x27: 0000000000000000 x26: 0000000000000000 # [ 319.556176] x25: ffff8000114f18e8 x24: ffff8000166a3e20 # [ 319.561494] x23: 000000000000001f x22: ffff0005c985b000 # [ 319.566811] x21: 0000000000000006 x20: 000000007fffffff # [ 319.572129] x19: ffff8000166a3d04 x18: 0000000000000000 # [ 319.577446] x17: 0000000000000000 x16: 0000000000000000 # [ 319.582763] x15: 0000000000000000 x14: 0000000000000000 # [ 319.588080] x13: 0000000000000000 x12: 0000000000000000 # [ 319.593397] x11: 00000061cfc7efee x10: 0000000000001440 # [ 319.598715] x9 : ffff80001012dcf4 x8 : ffff0005c94cf6a0 # [ 319.604033] x7 : 0000000000000000 x6 : ffff800012561000 # [ 319.609350] x5 : ffff800012561c88 x4 : ffff00063f75cc50 # [ 319.614668] x3 : 0000000000000000 x2 : 0000000000000000 # [ 319.619985] x1 : 0000000000000000 x0 : ffff0005c94ce200 # [ 319.625304] Call trace: # [ 319.627750] refcount_warn_saturate+0xc8/0x144 # [ 319.632200] __refcount_add_not_zero.constprop.0+0x84/0xa0 # [ 319.637684] lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW+0x48/0x8c # [ 319.643259] lkdtm_do_action+0x24/0x40 # [ 319.647007] direct_entry+0xd0/0x140 # [ 319.650584] full_proxy_write+0x68/0xbc # [ 319.654423] vfs_write+0xec/0x20c # [ 319.657739] ksys_write+0x70/0x100 # [ 319.661141] __arm64_sys_write+0x24/0x30 # [ 319.665069] el0_svc_common.constprop.0+0x84/0x1e0 # [ 319.669860] do_el0_svc+0x2c/0x94 # [ 319.673175] el0_svc+0x20/0x30 # [ 319.676228] el0_sync_handler+0xb0/0xb4 # [ 319.680065] el0_sync+0x180/0x1c0 # [ 319.683378] irq event stamp: 0 # [ 319.686438] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 319.692710] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 319.700888] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 319.709063] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 319.715327] ---[ end trace b07e3d6731f442db ]--- # [ 319.720052] lkdtm: Overflow detected: saturated # REFCOUNT_ADD_NOT_ZERO_OVERFLOW: saw 'call trace:': ok ok 45 selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_DEC_ZERO.sh [ 321.120167] lkdtm: Performing direct entry REFCOUNT_DEC_ZERO [ 321.126069] lkdtm: attempting good refcount_dec() [ 321.132430] lkdtm: attempting bad refcount_dec() to zero [ 321.138313] ------------[ cut here ]------------ [ 321.143381] refcount_t: decrement hit 0; leaking memory. [ 321.149096] WARNING: CPU: 5 PID: 2511 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 [ 321.157621] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 321.210954] CPU: 5 PID: 2511 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 321.218695] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 321.225050] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 321.231056] pc : refcount_warn_saturate+0x13c/0x144 [ 321.235932] lr : refcount_warn_saturate+0x13c/0x144 [ 321.240807] sp : ffff800016743cc0 [ 321.244119] x29: ffff800016743cc0 x28: ffff0005c50e4980 [ 321.249437] x27: 0000000000000000 x26: 0000000000000000 [ 321.254755] x25: ffff8000114f18e8 x24: ffff800016743e20 [ 321.260073] x23: 0000000000000012 x22: ffff0005c5479000 [ 321.265390] x21: ffff800011a07778 x20: ffff8000114f1bd8 [ 321.270707] x19: ffff800016743d04 x18: 0000000000000000 [ 321.276025] x17: 0000000000000000 x16: 0000000000000000 [ 321.281342] x15: 0000000000000000 x14: 0000000000000000 [ 321.286659] x13: 0000000000000000 x12: 0000000000000000 [ 321.291976] x11: 0000000000000000 x10: 0000000000001440 [ 321.297294] x9 : ffff80001012dcf4 x8 : ffff0005c50e5e20 [ 321.302611] x7 : 0000000000000000 x6 : ffff800012561000 [ 321.307929] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 321.313246] x3 : 0000000000000000 x2 : 0000000000000000 [ 321.318564] x1 : 0000000000000000 x0 : ffff0005c50e4980 [ 321.323882] Call trace: [ 321.326329] refcount_warn_saturate+0x13c/0x144 [ 321.330865] __refcount_dec.constprop.0+0x4c/0x5c [ 321.335569] lkdtm_REFCOUNT_DEC_ZERO+0x54/0xe0 [ 321.340016] lkdtm_do_action+0x24/0x40 [ 321.343764] direct_entry+0xd0/0x140 [ 321.347340] full_proxy_write+0x68/0xbc [ 321.351180] vfs_write+0xec/0x20c [ 321.354496] ksys_write+0x70/0x100 [ 321.357897] __arm64_sys_write+0x24/0x30 [ 321.361825] el0_svc_common.constprop.0+0x84/0x1e0 [ 321.366616] do_el0_svc+0x2c/0x94 [ 321.369932] el0_svc+0x20/0x30 [ 321.372986] el0_sync_handler+0xb0/0xb4 [ 321.376823] el0_sync+0x180/0x1c0 [ 321.380136] irq event stamp: 0 [ 321.383196] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 321.389469] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 321.397646] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 321.405822] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 321.412087] ---[ end trace b07e3d6731f442dc ]--- [ 321.417007] lkdtm: Zero detected: saturated # [ 321.120167] lkdtm: Performing direct entry REFCOUNT_DEC_ZERO # [ 321.126069] lkdtm: attempting good refcount_dec() # [ 321.132430] lkdtm: attempting bad refcount_dec() to zero # [ 321.138313] ------------[ cut here ]------------ # [ 321.143381] refcount_t: decrement hit 0; leaking memory. # [ 321.149096] WARNING: CPU: 5 PID: 2511 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 # [ 321.157621] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 321.210954] CPU: 5 PID: 2511 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 321.218695] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 321.225050] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 321.231056] pc : refcount_warn_saturate+0x13c/0x144 # [ 321.235932] lr : refcount_warn_saturate+0x13c/0x144 # [ 321.240807] sp : ffff800016743cc0 # [ 321.244119] x29: ffff800016743cc0 x28: ffff0005c50e4980 # [ 321.249437] x27: 0000000000000000 x26: 0000000000000000 # [ 321.254755] x25: ffff8000114f18e8 x24: ffff800016743e20 # [ 321.260073] x23: 0000000000000012 x22: ffff0005c5479000 # [ 321.265390] x21: ffff800011a07778 x20: ffff8000114f1bd8 # [ 321.270707] x19: ffff800016743d04 x18: 0000000000000000 # [ 321.276025] x17: 0000000000000000 x16: 0000000000000000 # [ 321.281342] x15: 0000000000000000 x14: 0000000000000000 # [ 321.286659] x13: 0000000000000000 x12: 0000000000000000 # [ 321.291976] x11: 0000000000000000 x10: 0000000000001440 # [ 321.297294] x9 : ffff80001012dcf4 x8 : ffff0005c50e5e20 # [ 321.302611] x7 : 0000000000000000 x6 : ffff800012561000 # [ 321.307929] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 321.313246] x3 : 0000000000000000 x2 : 0000000000000000 # [ 321.318564] x1 : 0000000000000000 x0 : ffff0005c50e4980 # [ 321.323882] Call trace: # [ 321.326329] refcount_warn_saturate+0x13c/0x144 # [ 321.330865] __refcount_dec.constprop.0+0x4c/0x5c # [ 321.335569] lkdtm_REFCOUNT_DEC_ZERO+0x54/0xe0 # [ 321.340016] lkdtm_do_action+0x24/0x40 # [ 321.343764] direct_entry+0xd0/0x140 # [ 321.347340] full_proxy_write+0x68/0xbc # [ 321.351180] vfs_write+0xec/0x20c # [ 321.354496] ksys_write+0x70/0x100 # [ 321.357897] __arm64_sys_write+0x24/0x30 # [ 321.361825] el0_svc_common.constprop.0+0x84/0x1e0 # [ 321.366616] do_el0_svc+0x2c/0x94 # [ 321.369932] el0_svc+0x20/0x30 # [ 321.372986] el0_sync_handler+0xb0/0xb4 # [ 321.376823] el0_sync+0x180/0x1c0 # [ 321.380136] irq event stamp: 0 # [ 321.383196] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 321.389469] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 321.397646] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 321.405822] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 321.412087] ---[ end trace b07e3d6731f442dc ]--- # [ 321.417007] lkdtm: Zero detected: saturated # REFCOUNT_DEC_ZERO: saw 'call trace:': ok ok 46 selftests: lkdtm: REFCOUNT_DEC_ZERO.sh # selftests: lkdtm: REFCOUNT_DEC_NEGATIVE.sh [ 323.396826] lkdtm: Performing direct entry REFCOUNT_DEC_NEGATIVE [ 323.402949] lkdtm: attempting bad refcount_dec() below zero [ 323.408599] ------------[ cut here ]------------ [ 323.413287] refcount_t: decrement hit 0; leaking memory. [ 323.418780] WARNING: CPU: 4 PID: 2546 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 [ 323.427305] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 323.480640] CPU: 4 PID: 2546 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 323.488380] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 323.494735] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 323.500742] pc : refcount_warn_saturate+0x13c/0x144 [ 323.505619] lr : refcount_warn_saturate+0x13c/0x144 [ 323.510493] sp : ffff8000167fbcc0 [ 323.513806] x29: ffff8000167fbcc0 x28: ffff0005c77d3100 [ 323.519123] x27: 0000000000000000 x26: 0000000000000000 [ 323.524442] x25: ffff8000114f18e8 x24: ffff8000167fbe20 [ 323.529759] x23: 0000000000000016 x22: ffff0005c60f6000 [ 323.535076] x21: ffff800011a07790 x20: ffff8000114f1be8 [ 323.540393] x19: ffff8000167fbd04 x18: 0000000000000000 [ 323.545710] x17: 0000000000000000 x16: 0000000000000000 [ 323.551028] x15: 0000000000000030 x14: ffffffffffffffff [ 323.556345] x13: ffff8000967fb967 x12: ffff8000167fb96f [ 323.561662] x11: 0000000000000028 x10: 0000000000001440 [ 323.566980] x9 : ffff80001012dcf4 x8 : ffff0005c77d45a0 [ 323.572298] x7 : 0000000000000000 x6 : ffff800012561000 [ 323.577615] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 323.582932] x3 : 0000000000000000 x2 : 0000000000000000 [ 323.588249] x1 : 0000000000000000 x0 : ffff0005c77d3100 [ 323.593567] Call trace: [ 323.596014] refcount_warn_saturate+0x13c/0x144 [ 323.600550] __refcount_dec.constprop.0+0x4c/0x5c [ 323.605254] lkdtm_REFCOUNT_DEC_NEGATIVE+0x3c/0x70 [ 323.610048] lkdtm_do_action+0x24/0x40 [ 323.613795] direct_entry+0xd0/0x140 [ 323.617372] full_proxy_write+0x68/0xbc [ 323.621212] vfs_write+0xec/0x20c [ 323.624529] ksys_write+0x70/0x100 [ 323.627930] __arm64_sys_write+0x24/0x30 [ 323.631858] el0_svc_common.constprop.0+0x84/0x1e0 [ 323.636649] do_el0_svc+0x2c/0x94 [ 323.639965] el0_svc+0x20/0x30 [ 323.643019] el0_sync_handler+0xb0/0xb4 [ 323.646855] el0_sync+0x180/0x1c0 [ 323.650170] irq event stamp: 0 [ 323.653229] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 323.659501] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 323.667678] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 323.675854] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 323.682118] ---[ end trace b07e3d6731f442dd ]--- [ 323.686843] lkdtm: Negative detected: saturated # [ 323.396826] lkdtm: Performing direct entry REFCOUNT_DEC_NEGATIVE # [ 323.402949] lkdtm: attempting bad refcount_dec() below zero # [ 323.408599] ------------[ cut here ]------------ # [ 323.413287] refcount_t: decrement hit 0; leaking memory. # [ 323.418780] WARNING: CPU: 4 PID: 2546 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 # [ 323.427305] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 323.480640] CPU: 4 PID: 2546 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 323.488380] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 323.494735] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 323.500742] pc : refcount_warn_saturate+0x13c/0x144 # [ 323.505619] lr : refcount_warn_saturate+0x13c/0x144 # [ 323.510493] sp : ffff8000167fbcc0 # [ 323.513806] x29: ffff8000167fbcc0 x28: ffff0005c77d3100 # [ 323.519123] x27: 0000000000000000 x26: 0000000000000000 # [ 323.524442] x25: ffff8000114f18e8 x24: ffff8000167fbe20 # [ 323.529759] x23: 0000000000000016 x22: ffff0005c60f6000 # [ 323.535076] x21: ffff800011a07790 x20: ffff8000114f1be8 # [ 323.540393] x19: ffff8000167fbd04 x18: 0000000000000000 # [ 323.545710] x17: 0000000000000000 x16: 0000000000000000 # [ 323.551028] x15: 0000000000000030 x14: ffffffffffffffff # [ 323.556345] x13: ffff8000967fb967 x12: ffff8000167fb96f # [ 323.561662] x11: 0000000000000028 x10: 0000000000001440 # [ 323.566980] x9 : ffff80001012dcf4 x8 : ffff0005c77d45a0 # [ 323.572298] x7 : 0000000000000000 x6 : ffff800012561000 # [ 323.577615] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 323.582932] x3 : 0000000000000000 x2 : 0000000000000000 # [ 323.588249] x1 : 0000000000000000 x0 : ffff0005c77d3100 # [ 323.593567] Call trace: # [ 323.596014] refcount_warn_saturate+0x13c/0x144 # [ 323.600550] __refcount_dec.constprop.0+0x4c/0x5c # [ 323.605254] lkdtm_REFCOUNT_DEC_NEGATIVE+0x3c/0x70 # [ 323.610048] lkdtm_do_action+0x24/0x40 # [ 323.613795] direct_entry+0xd0/0x140 # [ 323.617372] full_proxy_write+0x68/0xbc # [ 323.621212] vfs_write+0xec/0x20c # [ 323.624529] ksys_write+0x70/0x100 # [ 323.627930] __arm64_sys_write+0x24/0x30 # [ 323.631858] el0_svc_common.constprop.0+0x84/0x1e0 # [ 323.636649] do_el0_svc+0x2c/0x94 # [ 323.639965] el0_svc+0x20/0x30 # [ 323.643019] el0_sync_handler+0xb0/0xb4 # [ 323.646855] el0_sync+0x180/0x1c0 # [ 323.650170] irq event stamp: 0 # [ 323.653229] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 323.659501] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 323.667678] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 323.675854] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 323.682118] ---[ end trace b07e3d6731f442dd ]--- # [ 323.686843] lkdtm: Negative detected: saturated # REFCOUNT_DEC_NEGATIVE: saw 'Negative detected: saturated': ok ok 47 selftests: lkdtm: REFCOUNT_DEC_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_DEC_AND_TEST_NEGATIVE.sh [ 325.077547] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_NEGATIVE [ 325.084452] lkdtm: attempting bad refcount_dec_and_test() below zero [ 325.090874] ------------[ cut here ]------------ [ 325.095560] refcount_t: underflow; use-after-free. [ 325.100534] WARNING: CPU: 4 PID: 2581 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 [ 325.108973] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 325.162312] CPU: 4 PID: 2581 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 325.170057] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 325.176413] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 325.182424] pc : refcount_warn_saturate+0xf4/0x144 [ 325.187215] lr : refcount_warn_saturate+0xf4/0x144 [ 325.192004] sp : ffff8000168abcd0 [ 325.195317] x29: ffff8000168abcd0 x28: ffff0005c934c980 [ 325.200639] x27: 0000000000000000 x26: 0000000000000000 [ 325.205957] x25: ffff8000114f18e8 x24: ffff8000168abe20 [ 325.211274] x23: 000000000000001f x22: ffff0005c41e0000 [ 325.216591] x21: ffff800011a077a8 x20: ffff8000114f1bf8 [ 325.221909] x19: 0000000000000031 x18: 0000000000000001 [ 325.227225] x17: 0000000000000000 x16: 0000000000000000 [ 325.232543] x15: 0000000000000030 x14: ffffffffffffffff [ 325.237860] x13: ffff8000968ab977 x12: ffff8000168ab980 [ 325.243178] x11: 0000000000000030 x10: 0000000000001440 [ 325.248495] x9 : ffff80001012dcf4 x8 : ffff0005c934de20 [ 325.253813] x7 : 0000000000000000 x6 : ffff800012561000 [ 325.259131] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 325.264449] x3 : 0000000000000000 x2 : 0000000000000000 [ 325.269765] x1 : 0000000000000000 x0 : ffff0005c934c980 [ 325.275084] Call trace: [ 325.277531] refcount_warn_saturate+0xf4/0x144 [ 325.281982] __refcount_sub_and_test.constprop.0+0x64/0x7c [ 325.287472] lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE+0x44/0x8c [ 325.293043] lkdtm_do_action+0x24/0x40 [ 325.296791] direct_entry+0xd0/0x140 [ 325.300368] full_proxy_write+0x68/0xbc [ 325.304208] vfs_write+0xec/0x20c [ 325.307524] ksys_write+0x70/0x100 [ 325.310925] __arm64_sys_write+0x24/0x30 [ 325.314854] el0_svc_common.constprop.0+0x84/0x1e0 [ 325.319645] do_el0_svc+0x2c/0x94 [ 325.322960] el0_svc+0x20/0x30 [ 325.326014] el0_sync_handler+0xb0/0xb4 [ 325.329851] el0_sync+0x180/0x1c0 [ 325.333164] irq event stamp: 0 [ 325.336225] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 325.342499] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 325.350677] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 325.358853] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 325.365118] ---[ end trace b07e3d6731f442de ]--- [ 325.369867] lkdtm: Negative detected: saturated # [ 325.077547] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_NEGATIVE # [ 325.084452] lkdtm: attempting bad refcount_dec_and_test() below zero # [ 325.090874] ------------[ cut here ]------------ # [ 325.095560] refcount_t: underflow; use-after-free. # [ 325.100534] WARNING: CPU: 4 PID: 2581 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 325.108973] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 325.162312] CPU: 4 PID: 2581 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 325.170057] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 325.176413] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 325.182424] pc : refcount_warn_saturate+0xf4/0x144 # [ 325.187215] lr : refcount_warn_saturate+0xf4/0x144 # [ 325.192004] sp : ffff8000168abcd0 # [ 325.195317] x29: ffff8000168abcd0 x28: ffff0005c934c980 # [ 325.200639] x27: 0000000000000000 x26: 0000000000000000 # [ 325.205957] x25: ffff8000114f18e8 x24: ffff8000168abe20 # [ 325.211274] x23: 000000000000001f x22: ffff0005c41e0000 # [ 325.216591] x21: ffff800011a077a8 x20: ffff8000114f1bf8 # [ 325.221909] x19: 0000000000000031 x18: 0000000000000001 # [ 325.227225] x17: 0000000000000000 x16: 0000000000000000 # [ 325.232543] x15: 0000000000000030 x14: ffffffffffffffff # [ 325.237860] x13: ffff8000968ab977 x12: ffff8000168ab980 # [ 325.243178] x11: 0000000000000030 x10: 0000000000001440 # [ 325.248495] x9 : ffff80001012dcf4 x8 : ffff0005c934de20 # [ 325.253813] x7 : 0000000000000000 x6 : ffff800012561000 # [ 325.259131] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 325.264449] x3 : 0000000000000000 x2 : 0000000000000000 # [ 325.269765] x1 : 0000000000000000 x0 : ffff0005c934c980 # [ 325.275084] Call trace: # [ 325.277531] refcount_warn_saturate+0xf4/0x144 # [ 325.281982] __refcount_sub_and_test.constprop.0+0x64/0x7c # [ 325.287472] lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE+0x44/0x8c # [ 325.293043] lkdtm_do_action+0x24/0x40 # [ 325.296791] direct_entry+0xd0/0x140 # [ 325.300368] full_proxy_write+0x68/0xbc # [ 325.304208] vfs_write+0xec/0x20c # [ 325.307524] ksys_write+0x70/0x100 # [ 325.310925] __arm64_sys_write+0x24/0x30 # [ 325.314854] el0_svc_common.constprop.0+0x84/0x1e0 # [ 325.319645] do_el0_svc+0x2c/0x94 # [ 325.322960] el0_svc+0x20/0x30 # [ 325.326014] el0_sync_handler+0xb0/0xb4 # [ 325.329851] el0_sync+0x180/0x1c0 # [ 325.333164] irq event stamp: 0 # [ 325.336225] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 325.342499] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 325.350677] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 325.358853] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 325.365118] ---[ end trace b07e3d6731f442de ]--- # [ 325.369867] lkdtm: Negative detected: saturated # REFCOUNT_DEC_AND_TEST_NEGATIVE: saw 'Negative detected: saturated': ok ok 48 selftests: lkdtm: REFCOUNT_DEC_AND_TEST_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_SUB_AND_TEST_NEGATIVE.sh [ 326.823827] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_NEGATIVE [ 326.830866] lkdtm: attempting bad refcount_sub_and_test() below zero [ 326.837295] ------------[ cut here ]------------ [ 326.842161] refcount_t: underflow; use-after-free. [ 326.847152] WARNING: CPU: 5 PID: 2616 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 [ 326.855591] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 326.908927] CPU: 5 PID: 2616 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 326.916668] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 326.923023] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 326.929032] pc : refcount_warn_saturate+0xf4/0x144 [ 326.933821] lr : refcount_warn_saturate+0xf4/0x144 [ 326.938609] sp : ffff80001694bcd0 [ 326.941922] x29: ffff80001694bcd0 x28: ffff0005c7e03100 [ 326.947241] x27: 0000000000000000 x26: 0000000000000000 [ 326.952558] x25: ffff8000114f18e8 x24: ffff80001694be20 [ 326.957876] x23: 000000000000001f x22: ffff0005c2726000 [ 326.963193] x21: ffff800011a077c8 x20: ffff8000114f1c08 [ 326.968510] x19: 0000000000000032 x18: 0000000000000000 [ 326.973828] x17: 0000000000000000 x16: 0000000000000000 [ 326.979145] x15: 0000000000000030 x14: ffffffffffffffff [ 326.984463] x13: ffff80009694b977 x12: ffff80001694b97f [ 326.989780] x11: 0000000000000030 x10: 0000000000001440 [ 326.995098] x9 : ffff80001012dcf4 x8 : ffff0005c7e045a0 [ 327.000415] x7 : 0000000000000000 x6 : ffff800012561000 [ 327.005733] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 327.011050] x3 : 0000000000000000 x2 : 0000000000000000 [ 327.016367] x1 : 0000000000000000 x0 : ffff0005c7e03100 [ 327.021686] Call trace: [ 327.024133] refcount_warn_saturate+0xf4/0x144 [ 327.028582] __refcount_sub_and_test.constprop.0+0x64/0x7c [ 327.034072] lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE+0x48/0x90 [ 327.039643] lkdtm_do_action+0x24/0x40 [ 327.043390] direct_entry+0xd0/0x140 [ 327.046967] full_proxy_write+0x68/0xbc [ 327.050806] vfs_write+0xec/0x20c [ 327.054123] ksys_write+0x70/0x100 [ 327.057524] __arm64_sys_write+0x24/0x30 [ 327.061453] el0_svc_common.constprop.0+0x84/0x1e0 [ 327.066243] do_el0_svc+0x2c/0x94 [ 327.069558] el0_svc+0x20/0x30 [ 327.072611] el0_sync_handler+0xb0/0xb4 [ 327.076448] el0_sync+0x180/0x1c0 [ 327.079761] irq event stamp: 0 [ 327.082822] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 327.089095] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 327.097272] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 327.105447] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 327.111711] ---[ end trace b07e3d6731f442df ]--- [ 327.116434] lkdtm: Negative detected: saturated # [ 326.823827] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_NEGATIVE # [ 326.830866] lkdtm: attempting bad refcount_sub_and_test() below zero # [ 326.837295] ------------[ cut here ]------------ # [ 326.842161] refcount_t: underflow; use-after-free. # [ 326.847152] WARNING: CPU: 5 PID: 2616 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 326.855591] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 326.908927] CPU: 5 PID: 2616 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 326.916668] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 326.923023] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 326.929032] pc : refcount_warn_saturate+0xf4/0x144 # [ 326.933821] lr : refcount_warn_saturate+0xf4/0x144 # [ 326.938609] sp : ffff80001694bcd0 # [ 326.941922] x29: ffff80001694bcd0 x28: ffff0005c7e03100 # [ 326.947241] x27: 0000000000000000 x26: 0000000000000000 # [ 326.952558] x25: ffff8000114f18e8 x24: ffff80001694be20 # [ 326.957876] x23: 000000000000001f x22: ffff0005c2726000 # [ 326.963193] x21: ffff800011a077c8 x20: ffff8000114f1c08 # [ 326.968510] x19: 0000000000000032 x18: 0000000000000000 # [ 326.973828] x17: 0000000000000000 x16: 0000000000000000 # [ 326.979145] x15: 0000000000000030 x14: ffffffffffffffff # [ 326.984463] x13: ffff80009694b977 x12: ffff80001694b97f # [ 326.989780] x11: 0000000000000030 x10: 0000000000001440 # [ 326.995098] x9 : ffff80001012dcf4 x8 : ffff0005c7e045a0 # [ 327.000415] x7 : 0000000000000000 x6 : ffff800012561000 # [ 327.005733] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 327.011050] x3 : 0000000000000000 x2 : 0000000000000000 # [ 327.016367] x1 : 0000000000000000 x0 : ffff0005c7e03100 # [ 327.021686] Call trace: # [ 327.024133] refcount_warn_saturate+0xf4/0x144 # [ 327.028582] __refcount_sub_and_test.constprop.0+0x64/0x7c # [ 327.034072] lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE+0x48/0x90 # [ 327.039643] lkdtm_do_action+0x24/0x40 # [ 327.043390] direct_entry+0xd0/0x140 # [ 327.046967] full_proxy_write+0x68/0xbc # [ 327.050806] vfs_write+0xec/0x20c # [ 327.054123] ksys_write+0x70/0x100 # [ 327.057524] __arm64_sys_write+0x24/0x30 # [ 327.061453] el0_svc_common.constprop.0+0x84/0x1e0 # [ 327.066243] do_el0_svc+0x2c/0x94 # [ 327.069558] el0_svc+0x20/0x30 # [ 327.072611] el0_sync_handler+0xb0/0xb4 # [ 327.076448] el0_sync+0x180/0x1c0 # [ 327.079761] irq event stamp: 0 # [ 327.082822] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 327.089095] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 327.097272] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 327.105447] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 327.111711] ---[ end trace b07e3d6731f442df ]--- # [ 327.116434] lkdtm: Negative detected: saturated # REFCOUNT_SUB_AND_TEST_NEGATIVE: saw 'Negative detected: saturated': ok ok 49 selftests: lkdtm: REFCOUNT_SUB_AND_TEST_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_INC_ZERO.sh [ 328.832055] lkdtm: Performing direct entry REFCOUNT_INC_ZERO [ 328.837861] lkdtm: attempting safe refcount_inc_not_zero() from zero [ 328.844279] lkdtm: Good: zero detected [ 328.848101] lkdtm: Correctly stayed at zero [ 328.852323] lkdtm: attempting bad refcount_inc() from zero [ 328.857909] ------------[ cut here ]------------ [ 328.862588] refcount_t: addition on 0; use-after-free. [ 328.868100] WARNING: CPU: 0 PID: 2648 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 [ 328.876538] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 328.929822] CPU: 0 PID: 2648 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 328.937562] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 328.943917] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 328.949923] pc : refcount_warn_saturate+0xa0/0x144 [ 328.954713] lr : refcount_warn_saturate+0xa0/0x144 [ 328.959500] sp : ffff8000169ebcd0 [ 328.962812] x29: ffff8000169ebcd0 x28: ffff0005c94c8000 [ 328.968130] x27: 0000000000000000 x26: 0000000000000000 [ 328.973446] x25: ffff8000114f18e8 x24: ffff8000169ebe20 [ 328.978762] x23: 0000000000000012 x22: ffff0005c996b000 [ 328.984077] x21: ffff800011a077e8 x20: ffff8000114f1c18 [ 328.989392] x19: 0000000000000033 x18: 0000000000000000 [ 328.994707] x17: 0000000000000000 x16: 0000000000000000 [ 329.000022] x15: 0000000000000000 x14: 0000000000000000 [ 329.005337] x13: 0000000000000000 x12: 00000284e105672e [ 329.010652] x11: 000a295aaaa70afa x10: 0000000000001440 [ 329.015968] x9 : ffff80001012dcf4 x8 : ffff00063f7e97c0 [ 329.021283] x7 : ffff0005c94c8000 x6 : ffff800012561000 [ 329.026598] x5 : ffff800012561c88 x4 : ffff00063f718c50 [ 329.031913] x3 : 0000000000000000 x2 : 0000000000000000 [ 329.037228] x1 : 0000000000000000 x0 : ffff0005c94c8000 [ 329.042544] Call trace: [ 329.044990] refcount_warn_saturate+0xa0/0x144 [ 329.049437] __refcount_add.constprop.0+0x54/0x80 [ 329.054144] lkdtm_REFCOUNT_INC_ZERO+0xa4/0xd4 [ 329.058585] lkdtm_do_action+0x24/0x40 [ 329.062332] direct_entry+0xd0/0x140 [ 329.065908] full_proxy_write+0x68/0xbc [ 329.069747] vfs_write+0xec/0x20c [ 329.073063] ksys_write+0x70/0x100 [ 329.076463] __arm64_sys_write+0x24/0x30 [ 329.080389] el0_svc_common.constprop.0+0x84/0x1e0 [ 329.085178] do_el0_svc+0x2c/0x94 [ 329.088492] el0_svc+0x20/0x30 [ 329.091545] el0_sync_handler+0xb0/0xb4 [ 329.095380] el0_sync+0x180/0x1c0 [ 329.098693] irq event stamp: 0 [ 329.101750] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 329.108020] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 329.116197] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 329.124371] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 329.130634] ---[ end trace b07e3d6731f442e0 ]--- [ 329.136490] lkdtm: Zero detected: saturated # [ 328.832055] lkdtm: Performing direct entry REFCOUNT_INC_ZERO # [ 328.837861] lkdtm: attempting safe refcount_inc_not_zero() from zero # [ 328.844279] lkdtm: Good: zero detected # [ 328.848101] lkdtm: Correctly stayed at zero # [ 328.852323] lkdtm: attempting bad refcount_inc() from zero # [ 328.857909] ------------[ cut here ]------------ # [ 328.862588] refcount_t: addition on 0; use-after-free. # [ 328.868100] WARNING: CPU: 0 PID: 2648 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 # [ 328.876538] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 328.929822] CPU: 0 PID: 2648 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 328.937562] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 328.943917] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 328.949923] pc : refcount_warn_saturate+0xa0/0x144 # [ 328.954713] lr : refcount_warn_saturate+0xa0/0x144 # [ 328.959500] sp : ffff8000169ebcd0 # [ 328.962812] x29: ffff8000169ebcd0 x28: ffff0005c94c8000 # [ 328.968130] x27: 0000000000000000 x26: 0000000000000000 # [ 328.973446] x25: ffff8000114f18e8 x24: ffff8000169ebe20 # [ 328.978762] x23: 0000000000000012 x22: ffff0005c996b000 # [ 328.984077] x21: ffff800011a077e8 x20: ffff8000114f1c18 # [ 328.989392] x19: 0000000000000033 x18: 0000000000000000 # [ 328.994707] x17: 0000000000000000 x16: 0000000000000000 # [ 329.000022] x15: 0000000000000000 x14: 0000000000000000 # [ 329.005337] x13: 0000000000000000 x12: 00000284e105672e # [ 329.010652] x11: 000a295aaaa70afa x10: 0000000000001440 # [ 329.015968] x9 : ffff80001012dcf4 x8 : ffff00063f7e97c0 # [ 329.021283] x7 : ffff0005c94c8000 x6 : ffff800012561000 # [ 329.026598] x5 : ffff800012561c88 x4 : ffff00063f718c50 # [ 329.031913] x3 : 0000000000000000 x2 : 0000000000000000 # [ 329.037228] x1 : 0000000000000000 x0 : ffff0005c94c8000 # [ 329.042544] Call trace: # [ 329.044990] refcount_warn_saturate+0xa0/0x144 # [ 329.049437] __refcount_add.constprop.0+0x54/0x80 # [ 329.054144] lkdtm_REFCOUNT_INC_ZERO+0xa4/0xd4 # [ 329.058585] lkdtm_do_action+0x24/0x40 # [ 329.062332] direct_entry+0xd0/0x140 # [ 329.065908] full_proxy_write+0x68/0xbc # [ 329.069747] vfs_write+0xec/0x20c # [ 329.073063] ksys_write+0x70/0x100 # [ 329.076463] __arm64_sys_write+0x24/0x30 # [ 329.080389] el0_svc_common.constprop.0+0x84/0x1e0 # [ 329.085178] do_el0_svc+0x2c/0x94 # [ 329.088492] el0_svc+0x20/0x30 # [ 329.091545] el0_sync_handler+0xb0/0xb4 # [ 329.095380] el0_sync+0x180/0x1c0 # [ 329.098693] irq event stamp: 0 # [ 329.101750] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 329.108020] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 329.116197] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 329.124371] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 329.130634] ---[ end trace b07e3d6731f442e0 ]--- # [ 329.136490] lkdtm: Zero detected: saturated # REFCOUNT_INC_ZERO: saw 'call trace:': ok ok 50 selftests: lkdtm: REFCOUNT_INC_ZERO.sh # selftests: lkdtm: REFCOUNT_ADD_ZERO.sh [ 330.780273] lkdtm: Performing direct entry REFCOUNT_ADD_ZERO [ 330.786174] lkdtm: attempting safe refcount_add_not_zero() from zero [ 330.792607] lkdtm: Good: zero detected [ 330.796366] lkdtm: Correctly stayed at zero [ 330.800674] lkdtm: attempting bad refcount_add() from zero [ 330.806228] ------------[ cut here ]------------ [ 330.810976] refcount_t: addition on 0; use-after-free. [ 330.816239] WARNING: CPU: 4 PID: 2680 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 [ 330.824677] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 330.878009] CPU: 4 PID: 2680 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 330.885749] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 330.892104] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 330.898110] pc : refcount_warn_saturate+0xa0/0x144 [ 330.902900] lr : refcount_warn_saturate+0xa0/0x144 [ 330.907688] sp : ffff800016aabcd0 [ 330.911001] x29: ffff800016aabcd0 x28: ffff0005c7fc4980 [ 330.916319] x27: 0000000000000000 x26: 0000000000000000 [ 330.921636] x25: ffff8000114f18e8 x24: ffff800016aabe20 [ 330.926954] x23: 0000000000000012 x22: ffff0005c6a2d000 [ 330.932271] x21: ffff800011a07800 x20: ffff8000114f1c28 [ 330.937589] x19: 0000000000000034 x18: 0000000000000000 [ 330.942906] x17: 0000000000000000 x16: 0000000000000000 [ 330.948224] x15: 0000000000000030 x14: ffffffffffffffff [ 330.953542] x13: ffff800096aab977 x12: ffff800016aab97f [ 330.958859] x11: 0000000000000008 x10: ffff8000125e8350 [ 330.964176] x9 : ffff80001012dcf4 x8 : ffff800012590350 [ 330.969494] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 330.974812] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 330.980129] x3 : 0000000000000000 x2 : 0000000000000000 [ 330.985446] x1 : 0000000000000000 x0 : ffff0005c7fc4980 [ 330.990765] Call trace: [ 330.993212] refcount_warn_saturate+0xa0/0x144 [ 330.997661] __refcount_add.constprop.0+0x54/0x80 [ 331.002369] lkdtm_REFCOUNT_ADD_ZERO+0xa4/0xd4 [ 331.006812] lkdtm_do_action+0x24/0x40 [ 331.010560] direct_entry+0xd0/0x140 [ 331.014137] full_proxy_write+0x68/0xbc [ 331.017976] vfs_write+0xec/0x20c [ 331.021292] ksys_write+0x70/0x100 [ 331.024694] __arm64_sys_write+0x24/0x30 [ 331.028622] el0_svc_common.constprop.0+0x84/0x1e0 [ 331.033413] do_el0_svc+0x2c/0x94 [ 331.036729] el0_svc+0x20/0x30 [ 331.039782] el0_sync_handler+0xb0/0xb4 [ 331.043619] el0_sync+0x180/0x1c0 [ 331.046933] irq event stamp: 0 [ 331.049994] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 331.056266] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 331.064443] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 331.072619] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 331.078883] ---[ end trace b07e3d6731f442e1 ]--- [ 331.083789] lkdtm: Zero detected: saturated # [ 330.780273] lkdtm: Performing direct entry REFCOUNT_ADD_ZERO # [ 330.786174] lkdtm: attempting safe refcount_add_not_zero() from zero # [ 330.792607] lkdtm: Good: zero detected # [ 330.796366] lkdtm: Correctly stayed at zero # [ 330.800674] lkdtm: attempting bad refcount_add() from zero # [ 330.806228] ------------[ cut here ]------------ # [ 330.810976] refcount_t: addition on 0; use-after-free. # [ 330.816239] WARNING: CPU: 4 PID: 2680 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 # [ 330.824677] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 330.878009] CPU: 4 PID: 2680 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 330.885749] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 330.892104] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 330.898110] pc : refcount_warn_saturate+0xa0/0x144 # [ 330.902900] lr : refcount_warn_saturate+0xa0/0x144 # [ 330.907688] sp : ffff800016aabcd0 # [ 330.911001] x29: ffff800016aabcd0 x28: ffff0005c7fc4980 # [ 330.916319] x27: 0000000000000000 x26: 0000000000000000 # [ 330.921636] x25: ffff8000114f18e8 x24: ffff800016aabe20 # [ 330.926954] x23: 0000000000000012 x22: ffff0005c6a2d000 # [ 330.932271] x21: ffff800011a07800 x20: ffff8000114f1c28 # [ 330.937589] x19: 0000000000000034 x18: 0000000000000000 # [ 330.942906] x17: 0000000000000000 x16: 0000000000000000 # [ 330.948224] x15: 0000000000000030 x14: ffffffffffffffff # [ 330.953542] x13: ffff800096aab977 x12: ffff800016aab97f # [ 330.958859] x11: 0000000000000008 x10: ffff8000125e8350 # [ 330.964176] x9 : ffff80001012dcf4 x8 : ffff800012590350 # [ 330.969494] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 330.974812] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 330.980129] x3 : 0000000000000000 x2 : 0000000000000000 # [ 330.985446] x1 : 0000000000000000 x0 : ffff0005c7fc4980 # [ 330.990765] Call trace: # [ 330.993212] refcount_warn_saturate+0xa0/0x144 # [ 330.997661] __refcount_add.constprop.0+0x54/0x80 # [ 331.002369] lkdtm_REFCOUNT_ADD_ZERO+0xa4/0xd4 # [ 331.006812] lkdtm_do_action+0x24/0x40 # [ 331.010560] direct_entry+0xd0/0x140 # [ 331.014137] full_proxy_write+0x68/0xbc # [ 331.017976] vfs_write+0xec/0x20c # [ 331.021292] ksys_write+0x70/0x100 # [ 331.024694] __arm64_sys_write+0x24/0x30 # [ 331.028622] el0_svc_common.constprop.0+0x84/0x1e0 # [ 331.033413] do_el0_svc+0x2c/0x94 # [ 331.036729] el0_svc+0x20/0x30 # [ 331.039782] el0_sync_handler+0xb0/0xb4 # [ 331.043619] el0_sync+0x180/0x1c0 # [ 331.046933] irq event stamp: 0 # [ 331.049994] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 331.056266] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 331.064443] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 331.072619] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 331.078883] ---[ end trace b07e3d6731f442e1 ]--- # [ 331.083789] lkdtm: Zero detected: saturated # REFCOUNT_ADD_ZERO: saw 'call trace:': ok ok 51 selftests: lkdtm: REFCOUNT_ADD_ZERO.sh # selftests: lkdtm: REFCOUNT_INC_SATURATED.sh [ 332.568458] lkdtm: Performing direct entry REFCOUNT_INC_SATURATED [ 332.574694] lkdtm: attempting bad refcount_inc() from saturated [ 332.580679] ------------[ cut here ]------------ [ 332.585364] refcount_t: saturated; leaking memory. [ 332.590337] WARNING: CPU: 4 PID: 2715 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 [ 332.598775] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 332.652108] CPU: 4 PID: 2715 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 332.659848] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 332.666203] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 332.672210] pc : refcount_warn_saturate+0x74/0x144 [ 332.677000] lr : refcount_warn_saturate+0x74/0x144 [ 332.681789] sp : ffff800016b33cd0 [ 332.685101] x29: ffff800016b33cd0 x28: ffff0005c7e04980 [ 332.690419] x27: 0000000000000000 x26: 0000000000000000 [ 332.695736] x25: ffff8000114f18e8 x24: ffff800016b33e20 [ 332.701054] x23: 0000000000000017 x22: ffff0005c81a3000 [ 332.706371] x21: ffff800011a07818 x20: ffff8000114f1c38 [ 332.711688] x19: 0000000000000035 x18: 0000000000000000 [ 332.717006] x17: 0000000000000000 x16: 0000000000000000 [ 332.722324] x15: 0000000000000030 x14: ffffffffffffffff [ 332.727641] x13: ffff800096b33977 x12: ffff800016b3397f [ 332.732959] x11: 0000000000000030 x10: 0000000000001440 [ 332.738276] x9 : ffff80001012dcf4 x8 : ffff0005c7e05e20 [ 332.743593] x7 : 0000000000000000 x6 : ffff800012561000 [ 332.748911] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 332.754228] x3 : 0000000000000000 x2 : 0000000000000000 [ 332.759546] x1 : 0000000000000000 x0 : ffff0005c7e04980 [ 332.764865] Call trace: [ 332.767311] refcount_warn_saturate+0x74/0x144 [ 332.771760] __refcount_add.constprop.0+0x6c/0x80 [ 332.776468] lkdtm_REFCOUNT_INC_SATURATED+0x44/0x74 [ 332.781346] lkdtm_do_action+0x24/0x40 [ 332.785093] direct_entry+0xd0/0x140 [ 332.788670] full_proxy_write+0x68/0xbc [ 332.792509] vfs_write+0xec/0x20c [ 332.795826] ksys_write+0x70/0x100 [ 332.799227] __arm64_sys_write+0x24/0x30 [ 332.803155] el0_svc_common.constprop.0+0x84/0x1e0 [ 332.807945] do_el0_svc+0x2c/0x94 [ 332.811260] el0_svc+0x20/0x30 [ 332.814314] el0_sync_handler+0xb0/0xb4 [ 332.818151] el0_sync+0x180/0x1c0 [ 332.821464] irq event stamp: 0 [ 332.824526] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 332.830798] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 332.838975] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 332.847151] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 332.853415] ---[ end trace b07e3d6731f442e2 ]--- [ 332.858182] lkdtm: Saturation detected: still saturated # [ 332.568458] lkdtm: Performing direct entry REFCOUNT_INC_SATURATED # [ 332.574694] lkdtm: attempting bad refcount_inc() from saturated # [ 332.580679] ------------[ cut here ]------------ # [ 332.585364] refcount_t: saturated; leaking memory. # [ 332.590337] WARNING: CPU: 4 PID: 2715 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 332.598775] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 332.652108] CPU: 4 PID: 2715 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 332.659848] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 332.666203] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 332.672210] pc : refcount_warn_saturate+0x74/0x144 # [ 332.677000] lr : refcount_warn_saturate+0x74/0x144 # [ 332.681789] sp : ffff800016b33cd0 # [ 332.685101] x29: ffff800016b33cd0 x28: ffff0005c7e04980 # [ 332.690419] x27: 0000000000000000 x26: 0000000000000000 # [ 332.695736] x25: ffff8000114f18e8 x24: ffff800016b33e20 # [ 332.701054] x23: 0000000000000017 x22: ffff0005c81a3000 # [ 332.706371] x21: ffff800011a07818 x20: ffff8000114f1c38 # [ 332.711688] x19: 0000000000000035 x18: 0000000000000000 # [ 332.717006] x17: 0000000000000000 x16: 0000000000000000 # [ 332.722324] x15: 0000000000000030 x14: ffffffffffffffff # [ 332.727641] x13: ffff800096b33977 x12: ffff800016b3397f # [ 332.732959] x11: 0000000000000030 x10: 0000000000001440 # [ 332.738276] x9 : ffff80001012dcf4 x8 : ffff0005c7e05e20 # [ 332.743593] x7 : 0000000000000000 x6 : ffff800012561000 # [ 332.748911] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 332.754228] x3 : 0000000000000000 x2 : 0000000000000000 # [ 332.759546] x1 : 0000000000000000 x0 : ffff0005c7e04980 # [ 332.764865] Call trace: # [ 332.767311] refcount_warn_saturate+0x74/0x144 # [ 332.771760] __refcount_add.constprop.0+0x6c/0x80 # [ 332.776468] lkdtm_REFCOUNT_INC_SATURATED+0x44/0x74 # [ 332.781346] lkdtm_do_action+0x24/0x40 # [ 332.785093] direct_entry+0xd0/0x140 # [ 332.788670] full_proxy_write+0x68/0xbc # [ 332.792509] vfs_write+0xec/0x20c # [ 332.795826] ksys_write+0x70/0x100 # [ 332.799227] __arm64_sys_write+0x24/0x30 # [ 332.803155] el0_svc_common.constprop.0+0x84/0x1e0 # [ 332.807945] do_el0_svc+0x2c/0x94 # [ 332.811260] el0_svc+0x20/0x30 # [ 332.814314] el0_sync_handler+0xb0/0xb4 # [ 332.818151] el0_sync+0x180/0x1c0 # [ 332.821464] irq event stamp: 0 # [ 332.824526] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 332.830798] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 332.838975] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 332.847151] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 332.853415] ---[ end trace b07e3d6731f442e2 ]--- # [ 332.858182] lkdtm: Saturation detected: still saturated # REFCOUNT_INC_SATURATED: saw 'Saturation detected: still saturated': ok ok 52 selftests: lkdtm: REFCOUNT_INC_SATURATED.sh # selftests: lkdtm: REFCOUNT_DEC_SATURATED.sh [ 334.444967] lkdtm: Performing direct entry REFCOUNT_DEC_SATURATED [ 334.451294] lkdtm: attempting bad refcount_dec() from saturated [ 334.457286] ------------[ cut here ]------------ [ 334.462150] refcount_t: decrement hit 0; leaking memory. [ 334.467653] WARNING: CPU: 5 PID: 2750 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 [ 334.476177] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 334.529510] CPU: 5 PID: 2750 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 334.537251] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 334.543606] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 334.549615] pc : refcount_warn_saturate+0x13c/0x144 [ 334.554492] lr : refcount_warn_saturate+0x13c/0x144 [ 334.559367] sp : ffff800016bdbcc0 [ 334.562679] x29: ffff800016bdbcc0 x28: ffff0005c94c9880 [ 334.567997] x27: 0000000000000000 x26: 0000000000000000 [ 334.573314] x25: ffff8000114f18e8 x24: ffff800016bdbe20 [ 334.578632] x23: 0000000000000017 x22: ffff0005c4cdf000 [ 334.583950] x21: ffff800011a07830 x20: ffff8000114f1c48 [ 334.589268] x19: ffff800016bdbd04 x18: 0000000000000000 [ 334.594585] x17: 0000000000000000 x16: 0000000000000000 [ 334.599903] x15: 0000000000000030 x14: ffffffffffffffff [ 334.605220] x13: ffff800096bdb967 x12: ffff800016bdb96f [ 334.610538] x11: 0000000000000030 x10: 0000000000001440 [ 334.615855] x9 : ffff80001012dcf4 x8 : ffff0005c94cad20 [ 334.621172] x7 : 0000000000000000 x6 : ffff800012561000 [ 334.626490] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 334.631807] x3 : 0000000000000000 x2 : 0000000000000000 [ 334.637125] x1 : 0000000000000000 x0 : ffff0005c94c9880 [ 334.642443] Call trace: [ 334.644890] refcount_warn_saturate+0x13c/0x144 [ 334.649426] __refcount_dec.constprop.0+0x4c/0x5c [ 334.654129] lkdtm_REFCOUNT_DEC_SATURATED+0x40/0x70 [ 334.659010] lkdtm_do_action+0x24/0x40 [ 334.662757] direct_entry+0xd0/0x140 [ 334.666334] full_proxy_write+0x68/0xbc [ 334.670174] vfs_write+0xec/0x20c [ 334.673490] ksys_write+0x70/0x100 [ 334.676891] __arm64_sys_write+0x24/0x30 [ 334.680819] el0_svc_common.constprop.0+0x84/0x1e0 [ 334.685610] do_el0_svc+0x2c/0x94 [ 334.688925] el0_svc+0x20/0x30 [ 334.691978] el0_sync_handler+0xb0/0xb4 [ 334.695816] el0_sync+0x180/0x1c0 [ 334.699130] irq event stamp: 0 [ 334.702191] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 334.708463] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 334.716640] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 334.724816] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 334.731080] ---[ end trace b07e3d6731f442e3 ]--- [ 334.735809] lkdtm: Saturation detected: still saturated # [ 334.444967] lkdtm: Performing direct entry REFCOUNT_DEC_SATURATED # [ 334.451294] lkdtm: attempting bad refcount_dec() from saturated # [ 334.457286] ------------[ cut here ]------------ # [ 334.462150] refcount_t: decrement hit 0; leaking memory. # [ 334.467653] WARNING: CPU: 5 PID: 2750 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 # [ 334.476177] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 334.529510] CPU: 5 PID: 2750 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 334.537251] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 334.543606] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 334.549615] pc : refcount_warn_saturate+0x13c/0x144 # [ 334.554492] lr : refcount_warn_saturate+0x13c/0x144 # [ 334.559367] sp : ffff800016bdbcc0 # [ 334.562679] x29: ffff800016bdbcc0 x28: ffff0005c94c9880 # [ 334.567997] x27: 0000000000000000 x26: 0000000000000000 # [ 334.573314] x25: ffff8000114f18e8 x24: ffff800016bdbe20 # [ 334.578632] x23: 0000000000000017 x22: ffff0005c4cdf000 # [ 334.583950] x21: ffff800011a07830 x20: ffff8000114f1c48 # [ 334.589268] x19: ffff800016bdbd04 x18: 0000000000000000 # [ 334.594585] x17: 0000000000000000 x16: 0000000000000000 # [ 334.599903] x15: 0000000000000030 x14: ffffffffffffffff # [ 334.605220] x13: ffff800096bdb967 x12: ffff800016bdb96f # [ 334.610538] x11: 0000000000000030 x10: 0000000000001440 # [ 334.615855] x9 : ffff80001012dcf4 x8 : ffff0005c94cad20 # [ 334.621172] x7 : 0000000000000000 x6 : ffff800012561000 # [ 334.626490] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 334.631807] x3 : 0000000000000000 x2 : 0000000000000000 # [ 334.637125] x1 : 0000000000000000 x0 : ffff0005c94c9880 # [ 334.642443] Call trace: # [ 334.644890] refcount_warn_saturate+0x13c/0x144 # [ 334.649426] __refcount_dec.constprop.0+0x4c/0x5c # [ 334.654129] lkdtm_REFCOUNT_DEC_SATURATED+0x40/0x70 # [ 334.659010] lkdtm_do_action+0x24/0x40 # [ 334.662757] direct_entry+0xd0/0x140 # [ 334.666334] full_proxy_write+0x68/0xbc # [ 334.670174] vfs_write+0xec/0x20c # [ 334.673490] ksys_write+0x70/0x100 # [ 334.676891] __arm64_sys_write+0x24/0x30 # [ 334.680819] el0_svc_common.constprop.0+0x84/0x1e0 # [ 334.685610] do_el0_svc+0x2c/0x94 # [ 334.688925] el0_svc+0x20/0x30 # [ 334.691978] el0_sync_handler+0xb0/0xb4 # [ 334.695816] el0_sync+0x180/0x1c0 # [ 334.699130] irq event stamp: 0 # [ 334.702191] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 334.708463] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 334.716640] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 334.724816] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 334.731080] ---[ end trace b07e3d6731f442e3 ]--- # [ 334.735809] lkdtm: Saturation detected: still saturated # REFCOUNT_DEC_SATURATED: saw 'Saturation detected: still saturated': ok ok 53 selftests: lkdtm: REFCOUNT_DEC_SATURATED.sh # selftests: lkdtm: REFCOUNT_ADD_SATURATED.sh [ 336.170005] lkdtm: Performing direct entry REFCOUNT_ADD_SATURATED [ 336.176222] lkdtm: attempting bad refcount_dec() from saturated [ 336.182214] ------------[ cut here ]------------ [ 336.186900] refcount_t: saturated; leaking memory. [ 336.191820] WARNING: CPU: 2 PID: 2785 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 [ 336.200258] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 336.253590] CPU: 2 PID: 2785 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 336.261330] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 336.267686] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 336.273693] pc : refcount_warn_saturate+0x74/0x144 [ 336.278482] lr : refcount_warn_saturate+0x74/0x144 [ 336.283270] sp : ffff800016c7bcd0 [ 336.286583] x29: ffff800016c7bcd0 x28: ffff0005c8371880 [ 336.291901] x27: 0000000000000000 x26: 0000000000000000 [ 336.297218] x25: ffff8000114f18e8 x24: ffff800016c7be20 [ 336.302536] x23: 0000000000000017 x22: ffff0005c6006000 [ 336.307853] x21: ffff800011a07848 x20: ffff8000114f1c58 [ 336.313171] x19: 0000000000000037 x18: 0000000000000000 [ 336.318489] x17: 0000000000000000 x16: 0000000000000000 [ 336.323806] x15: 0000000000000030 x14: ffffffffffffffff [ 336.329124] x13: ffff800096c7b977 x12: ffff800016c7b97f [ 336.334441] x11: 0000000000000030 x10: ffff8000125e8350 [ 336.339758] x9 : ffff80001012dcf4 x8 : ffff800012590350 [ 336.345075] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 336.350393] x5 : ffff800012561c88 x4 : ffff00063f75cc50 [ 336.355711] x3 : 0000000000000000 x2 : 0000000000000000 [ 336.361028] x1 : 0000000000000000 x0 : ffff0005c8371880 [ 336.366347] Call trace: [ 336.368793] refcount_warn_saturate+0x74/0x144 [ 336.373242] __refcount_add.constprop.0+0x6c/0x80 [ 336.377951] lkdtm_REFCOUNT_ADD_SATURATED+0x44/0x74 [ 336.382827] lkdtm_do_action+0x24/0x40 [ 336.386575] direct_entry+0xd0/0x140 [ 336.390152] full_proxy_write+0x68/0xbc [ 336.393991] vfs_write+0xec/0x20c [ 336.397308] ksys_write+0x70/0x100 [ 336.400709] __arm64_sys_write+0x24/0x30 [ 336.404636] el0_svc_common.constprop.0+0x84/0x1e0 [ 336.409427] do_el0_svc+0x2c/0x94 [ 336.412742] el0_svc+0x20/0x30 [ 336.415795] el0_sync_handler+0xb0/0xb4 [ 336.419632] el0_sync+0x180/0x1c0 [ 336.422946] irq event stamp: 0 [ 336.426007] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 336.432280] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 336.440457] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 336.448633] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 336.454897] ---[ end trace b07e3d6731f442e4 ]--- [ 336.459675] lkdtm: Saturation detected: still saturated # [ 336.170005] lkdtm: Performing direct entry REFCOUNT_ADD_SATURATED # [ 336.176222] lkdtm: attempting bad refcount_dec() from saturated # [ 336.182214] ------------[ cut here ]------------ # [ 336.186900] refcount_t: saturated; leaking memory. # [ 336.191820] WARNING: CPU: 2 PID: 2785 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 336.200258] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 336.253590] CPU: 2 PID: 2785 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 336.261330] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 336.267686] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 336.273693] pc : refcount_warn_saturate+0x74/0x144 # [ 336.278482] lr : refcount_warn_saturate+0x74/0x144 # [ 336.283270] sp : ffff800016c7bcd0 # [ 336.286583] x29: ffff800016c7bcd0 x28: ffff0005c8371880 # [ 336.291901] x27: 0000000000000000 x26: 0000000000000000 # [ 336.297218] x25: ffff8000114f18e8 x24: ffff800016c7be20 # [ 336.302536] x23: 0000000000000017 x22: ffff0005c6006000 # [ 336.307853] x21: ffff800011a07848 x20: ffff8000114f1c58 # [ 336.313171] x19: 0000000000000037 x18: 0000000000000000 # [ 336.318489] x17: 0000000000000000 x16: 0000000000000000 # [ 336.323806] x15: 0000000000000030 x14: ffffffffffffffff # [ 336.329124] x13: ffff800096c7b977 x12: ffff800016c7b97f # [ 336.334441] x11: 0000000000000030 x10: ffff8000125e8350 # [ 336.339758] x9 : ffff80001012dcf4 x8 : ffff800012590350 # [ 336.345075] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 336.350393] x5 : ffff800012561c88 x4 : ffff00063f75cc50 # [ 336.355711] x3 : 0000000000000000 x2 : 0000000000000000 # [ 336.361028] x1 : 0000000000000000 x0 : ffff0005c8371880 # [ 336.366347] Call trace: # [ 336.368793] refcount_warn_saturate+0x74/0x144 # [ 336.373242] __refcount_add.constprop.0+0x6c/0x80 # [ 336.377951] lkdtm_REFCOUNT_ADD_SATURATED+0x44/0x74 # [ 336.382827] lkdtm_do_action+0x24/0x40 # [ 336.386575] direct_entry+0xd0/0x140 # [ 336.390152] full_proxy_write+0x68/0xbc # [ 336.393991] vfs_write+0xec/0x20c # [ 336.397308] ksys_write+0x70/0x100 # [ 336.400709] __arm64_sys_write+0x24/0x30 # [ 336.404636] el0_svc_common.constprop.0+0x84/0x1e0 # [ 336.409427] do_el0_svc+0x2c/0x94 # [ 336.412742] el0_svc+0x20/0x30 # [ 336.415795] el0_sync_handler+0xb0/0xb4 # [ 336.419632] el0_sync+0x180/0x1c0 # [ 336.422946] irq event stamp: 0 # [ 336.426007] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 336.432280] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 336.440457] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 336.448633] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 336.454897] ---[ end trace b07e3d6731f442e4 ]--- # [ 336.459675] lkdtm: Saturation detected: still saturated # REFCOUNT_ADD_SATURATED: saw 'Saturation detected: still saturated': ok ok 54 selftests: lkdtm: REFCOUNT_ADD_SATURATED.sh # selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_SATURATED.sh [ 337.901242] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_SATURATED [ 337.908197] lkdtm: attempting bad refcount_inc_not_zero() from saturated [ 337.915087] ------------[ cut here ]------------ [ 337.919774] refcount_t: saturated; leaking memory. [ 337.924838] WARNING: CPU: 5 PID: 2817 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 [ 337.933276] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 337.986608] CPU: 5 PID: 2817 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 337.994349] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 338.000704] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 338.006713] pc : refcount_warn_saturate+0xc8/0x144 [ 338.011502] lr : refcount_warn_saturate+0xc8/0x144 [ 338.016290] sp : ffff800016d13cb0 [ 338.019602] x29: ffff800016d13cb0 x28: ffff0005c2328000 [ 338.024920] x27: 0000000000000000 x26: 0000000000000000 [ 338.030238] x25: ffff8000114f18e8 x24: ffff800016d13e20 [ 338.035555] x23: 0000000000000020 x22: ffff0005c62b0000 [ 338.040873] x21: 0000000000000001 x20: 00000000c0000000 [ 338.046191] x19: ffff800016d13d04 x18: 0000000000000000 [ 338.051508] x17: 0000000000000000 x16: 0000000000000000 [ 338.056826] x15: 0000000000000030 x14: ffffffffffffffff [ 338.062143] x13: ffff800096d13957 x12: ffff800016d1395f [ 338.067460] x11: 0000000000000038 x10: 0000000000001440 [ 338.072778] x9 : ffff80001012dcf4 x8 : ffff0005c23294a0 [ 338.078095] x7 : 0000000000000000 x6 : ffff800012561000 [ 338.083413] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 338.088730] x3 : 0000000000000000 x2 : 0000000000000000 [ 338.094048] x1 : 0000000000000000 x0 : ffff0005c2328000 [ 338.099365] Call trace: [ 338.101813] refcount_warn_saturate+0xc8/0x144 [ 338.106262] __refcount_add_not_zero.constprop.0+0x84/0xa0 [ 338.111747] lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED+0x48/0x8c [ 338.117408] lkdtm_do_action+0x24/0x40 [ 338.121157] direct_entry+0xd0/0x140 [ 338.124734] full_proxy_write+0x68/0xbc [ 338.128573] vfs_write+0xec/0x20c [ 338.131890] ksys_write+0x70/0x100 [ 338.135290] __arm64_sys_write+0x24/0x30 [ 338.139219] el0_svc_common.constprop.0+0x84/0x1e0 [ 338.144009] do_el0_svc+0x2c/0x94 [ 338.147325] el0_svc+0x20/0x30 [ 338.150379] el0_sync_handler+0xb0/0xb4 [ 338.154215] el0_sync+0x180/0x1c0 [ 338.157530] irq event stamp: 0 [ 338.160590] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 338.166862] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 338.175040] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 338.183216] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 338.189480] ---[ end trace b07e3d6731f442e5 ]--- [ 338.194369] lkdtm: Saturation detected: still saturated # [ 337.901242] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_SATURATED # [ 337.908197] lkdtm: attempting bad refcount_inc_not_zero() from saturated # [ 337.915087] ------------[ cut here ]------------ # [ 337.919774] refcount_t: saturated; leaking memory. # [ 337.924838] WARNING: CPU: 5 PID: 2817 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 337.933276] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 337.986608] CPU: 5 PID: 2817 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 337.994349] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 338.000704] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 338.006713] pc : refcount_warn_saturate+0xc8/0x144 # [ 338.011502] lr : refcount_warn_saturate+0xc8/0x144 # [ 338.016290] sp : ffff800016d13cb0 # [ 338.019602] x29: ffff800016d13cb0 x28: ffff0005c2328000 # [ 338.024920] x27: 0000000000000000 x26: 0000000000000000 # [ 338.030238] x25: ffff8000114f18e8 x24: ffff800016d13e20 # [ 338.035555] x23: 0000000000000020 x22: ffff0005c62b0000 # [ 338.040873] x21: 0000000000000001 x20: 00000000c0000000 # [ 338.046191] x19: ffff800016d13d04 x18: 0000000000000000 # [ 338.051508] x17: 0000000000000000 x16: 0000000000000000 # [ 338.056826] x15: 0000000000000030 x14: ffffffffffffffff # [ 338.062143] x13: ffff800096d13957 x12: ffff800016d1395f # [ 338.067460] x11: 0000000000000038 x10: 0000000000001440 # [ 338.072778] x9 : ffff80001012dcf4 x8 : ffff0005c23294a0 # [ 338.078095] x7 : 0000000000000000 x6 : ffff800012561000 # [ 338.083413] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 338.088730] x3 : 0000000000000000 x2 : 0000000000000000 # [ 338.094048] x1 : 0000000000000000 x0 : ffff0005c2328000 # [ 338.099365] Call trace: # [ 338.101813] refcount_warn_saturate+0xc8/0x144 # [ 338.106262] __refcount_add_not_zero.constprop.0+0x84/0xa0 # [ 338.111747] lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED+0x48/0x8c # [ 338.117408] lkdtm_do_action+0x24/0x40 # [ 338.121157] direct_entry+0xd0/0x140 # [ 338.124734] full_proxy_write+0x68/0xbc # [ 338.128573] vfs_write+0xec/0x20c # [ 338.131890] ksys_write+0x70/0x100 # [ 338.135290] __arm64_sys_write+0x24/0x30 # [ 338.139219] el0_svc_common.constprop.0+0x84/0x1e0 # [ 338.144009] do_el0_svc+0x2c/0x94 # [ 338.147325] el0_svc+0x20/0x30 # [ 338.150379] el0_sync_handler+0xb0/0xb4 # [ 338.154215] el0_sync+0x180/0x1c0 # [ 338.157530] irq event stamp: 0 # [ 338.160590] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 338.166862] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 338.175040] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 338.183216] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 338.189480] ---[ end trace b07e3d6731f442e5 ]--- # [ 338.194369] lkdtm: Saturation detected: still saturated # REFCOUNT_INC_NOT_ZERO_SATURATED: saw 'call trace:': ok ok 55 selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_SATURATED.sh # selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_SATURATED.sh [ 339.559207] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_SATURATED [ 339.566325] lkdtm: attempting bad refcount_add_not_zero() from saturated [ 339.574825] ------------[ cut here ]------------ [ 339.579992] refcount_t: saturated; leaking memory. [ 339.585000] WARNING: CPU: 4 PID: 2849 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 [ 339.593438] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 339.646775] CPU: 4 PID: 2849 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 339.654516] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 339.660871] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 339.666878] pc : refcount_warn_saturate+0xc8/0x144 [ 339.671668] lr : refcount_warn_saturate+0xc8/0x144 [ 339.676456] sp : ffff800016db3cb0 [ 339.679768] x29: ffff800016db3cb0 x28: ffff0005c934e200 [ 339.685086] x27: 0000000000000000 x26: 0000000000000000 [ 339.690404] x25: ffff8000114f18e8 x24: ffff800016db3e20 [ 339.695722] x23: 0000000000000020 x22: ffff0005c82d1000 [ 339.701039] x21: 0000000000000007 x20: 00000000c0000000 [ 339.706357] x19: ffff800016db3d04 x18: 0000000000000000 [ 339.711675] x17: 0000000000000000 x16: 0000000000000000 [ 339.716992] x15: 0000000000000030 x14: ffffffffffffffff [ 339.722310] x13: ffff800096db3957 x12: ffff800016db395f [ 339.727628] x11: 0000005a726db08d x10: 0000000000001440 [ 339.732945] x9 : ffff80001012dcf4 x8 : ffff0005c934f6a0 [ 339.738264] x7 : 0000000000000000 x6 : ffff800012561000 [ 339.743581] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 339.748898] x3 : 0000000000000000 x2 : 0000000000000000 [ 339.754215] x1 : 0000000000000000 x0 : ffff0005c934e200 [ 339.759534] Call trace: [ 339.761981] refcount_warn_saturate+0xc8/0x144 [ 339.766431] __refcount_add_not_zero.constprop.0+0x84/0xa0 [ 339.771915] lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED+0x48/0x8c [ 339.777578] lkdtm_do_action+0x24/0x40 [ 339.781325] direct_entry+0xd0/0x140 [ 339.784903] full_proxy_write+0x68/0xbc [ 339.788742] vfs_write+0xec/0x20c [ 339.792058] ksys_write+0x70/0x100 [ 339.795459] __arm64_sys_write+0x24/0x30 [ 339.799388] el0_svc_common.constprop.0+0x84/0x1e0 [ 339.804178] do_el0_svc+0x2c/0x94 [ 339.807494] el0_svc+0x20/0x30 [ 339.810547] el0_sync_handler+0xb0/0xb4 [ 339.814384] el0_sync+0x180/0x1c0 [ 339.817697] irq event stamp: 0 [ 339.820757] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 339.827030] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 339.835207] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 339.843383] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 339.849648] ---[ end trace b07e3d6731f442e6 ]--- [ 339.854454] lkdtm: Saturation detected: still saturated # [ 0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=6, Nodes=1 # [ 0.000000] ftrace: allocating 58506 entries in 229 pages # [ 0.000000] ftrace: allocated 229 pages with 5 groups # [ 0.000000] Running RCU self tests # [ 0.000000] rcu: Preemptible hierarchical RCU implementation. # [ 0.000000] rcu: RCU event tracing is enabled. # [ 0.000000] rcu: RCU lockdep checking is enabled. # [ 0.000000] rcu: RCU restricting CPUs from NR_CPUS=256 to nr_cpu_ids=6. # [ 0.000000] Trampoline variant of Tasks RCU enabled. # [ 0.000000] Rude variant of Tasks RCU enabled. # [ 0.000000] Tracing variant of Tasks RCU enabled. # [ 0.000000] rcu: RCU calculated value of scheduler-enlistment delay is 25 jiffies. # [ 0.000000] rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=6 # [ 0.000000] NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 # [ 0.000000] arch_timer: cp15 timer(s) running at 8.33MHz (virt). # [ 0.000000] clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x1ec02923e, max_idle_ns: 440795202125 ns # [ 339.559207] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_SATURATED # [ 339.566325] lkdtm: attempting bad refcount_add_not_zero() from saturated # [ 339.574825] ------------[ cut here ]------------ # [ 339.579992] refcount_t: saturated; leaking memory. # [ 339.585000] WARNING: CPU: 4 PID: 2849 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 339.593438] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 339.646775] CPU: 4 PID: 2849 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 339.654516] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 339.660871] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 339.666878] pc : refcount_warn_saturate+0xc8/0x144 # [ 339.671668] lr : refcount_warn_saturate+0xc8/0x144 # [ 339.676456] sp : ffff800016db3cb0 # [ 339.679768] x29: ffff800016db3cb0 x28: ffff0005c934e200 # [ 339.685086] x27: 0000000000000000 x26: 0000000000000000 # [ 339.690404] x25: ffff8000114f18e8 x24: ffff800016db3e20 # [ 339.695722] x23: 0000000000000020 x22: ffff0005c82d1000 # [ 339.701039] x21: 0000000000000007 x20: 00000000c0000000 # [ 339.706357] x19: ffff800016db3d04 x18: 0000000000000000 # [ 339.711675] x17: 0000000000000000 x16: 0000000000000000 # [ 339.716992] x15: 0000000000000030 x14: ffffffffffffffff # [ 339.722310] x13: ffff800096db3957 x12: ffff800016db395f # [ 339.727628] x11: 0000005a726db08d x10: 0000000000001440 # [ 339.732945] x9 : ffff80001012dcf4 x8 : ffff0005c934f6a0 # [ 339.738264] x7 : 0000000000000000 x6 : ffff800012561000 # [ 339.743581] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 339.748898] x3 : 0000000000000000 x2 : 0000000000000000 # [ 339.754215] x1 : 0000000000000000 x0 : ffff0005c934e200 # [ 339.759534] Call trace: # [ 339.761981] refcount_warn_saturate+0xc8/0x144 # [ 339.766431] __refcount_add_not_zero.constprop.0+0x84/0xa0 # [ 339.771915] lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED+0x48/0x8c # [ 339.777578] lkdtm_do_action+0x24/0x40 # [ 339.781325] direct_entry+0xd0/0x140 # [ 339.784903] full_proxy_write+0x68/0xbc # [ 339.788742] vfs_write+0xec/0x20c # [ 339.792058] ksys_write+0x70/0x100 # [ 339.795459] __arm64_sys_write+0x24/0x30 # [ 339.799388] el0_svc_common.constprop.0+0x84/0x1e0 # [ 339.804178] do_el0_svc+0x2c/0x94 # [ 339.807494] el0_svc+0x20/0x30 # [ 339.810547] el0_sync_handler+0xb0/0xb4 # [ 339.814384] el0_sync+0x180/0x1c0 # [ 339.817697] irq event stamp: 0 # [ 339.820757] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 339.827030] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 339.835207] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 339.843383] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 339.849648] ---[ end trace b07e3d6731f442e6 ]--- # [ 339.854454] lkdtm: Saturation detected: still saturated # REFCOUNT_ADD_NOT_ZERO_SATURATED: saw 'call trace:': ok ok 56 selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_SATURATED.sh # selftests: lkdtm: REFCOUNT_DEC_AND_TEST_SATURATED.sh [ 341.299650] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_SATURATED [ 341.306633] lkdtm: attempting bad refcount_dec_and_test() from saturated [ 341.313509] ------------[ cut here ]------------ [ 341.318189] refcount_t: underflow; use-after-free. [ 341.323195] WARNING: CPU: 4 PID: 2884 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 [ 341.331632] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 341.384967] CPU: 4 PID: 2884 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 341.392707] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 341.399062] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 341.405067] pc : refcount_warn_saturate+0xf4/0x144 [ 341.409858] lr : refcount_warn_saturate+0xf4/0x144 [ 341.414646] sp : ffff800016e73cd0 [ 341.417958] x29: ffff800016e73cd0 x28: ffff0005c2328000 [ 341.423277] x27: 0000000000000000 x26: 0000000000000000 [ 341.428595] x25: ffff8000114f18e8 x24: ffff800016e73e20 [ 341.433912] x23: 0000000000000020 x22: ffff0005c3f62000 [ 341.439230] x21: ffff800011a078a0 x20: ffff8000114f1c88 [ 341.444548] x19: 000000000000003a x18: 0000000000000000 [ 341.449865] x17: 0000000000000000 x16: 0000000000000000 [ 341.455183] x15: 0000000000000030 x14: ffffffffffffffff [ 341.460501] x13: ffff800096e73977 x12: ffff800016e7397f [ 341.465818] x11: 0000000000000038 x10: ffff8000125e8350 [ 341.471136] x9 : ffff80001012dcf4 x8 : ffff800012590350 [ 341.476454] x7 : ffff8000125e8350 x6 : ffff800012561000 [ 341.481771] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 [ 341.487089] x3 : 0000000000000000 x2 : 0000000000000000 [ 341.492406] x1 : 0000000000000000 x0 : ffff0005c2328000 [ 341.497724] Call trace: [ 341.500171] refcount_warn_saturate+0xf4/0x144 [ 341.504619] __refcount_sub_and_test.constprop.0+0x64/0x7c [ 341.510110] lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED+0x48/0x8c [ 341.515768] lkdtm_do_action+0x24/0x40 [ 341.519516] direct_entry+0xd0/0x140 [ 341.523093] full_proxy_write+0x68/0xbc [ 341.526932] vfs_write+0xec/0x20c [ 341.530249] ksys_write+0x70/0x100 [ 341.533650] __arm64_sys_write+0x24/0x30 [ 341.537579] el0_svc_common.constprop.0+0x84/0x1e0 [ 341.542370] do_el0_svc+0x2c/0x94 [ 341.545685] el0_svc+0x20/0x30 [ 341.548739] el0_sync_handler+0xb0/0xb4 [ 341.552576] el0_sync+0x180/0x1c0 [ 341.555889] irq event stamp: 0 [ 341.558950] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 341.565223] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 341.573399] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 341.581576] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 341.587840] ---[ end trace b07e3d6731f442e7 ]--- [ 341.592796] lkdtm: Saturation detected: still saturated # [ 341.299650] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_SATURATED # [ 341.306633] lkdtm: attempting bad refcount_dec_and_test() from saturated # [ 341.313509] ------------[ cut here ]------------ # [ 341.318189] refcount_t: underflow; use-after-free. # [ 341.323195] WARNING: CPU: 4 PID: 2884 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 341.331632] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 341.384967] CPU: 4 PID: 2884 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 341.392707] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 341.399062] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 341.405067] pc : refcount_warn_saturate+0xf4/0x144 # [ 341.409858] lr : refcount_warn_saturate+0xf4/0x144 # [ 341.414646] sp : ffff800016e73cd0 # [ 341.417958] x29: ffff800016e73cd0 x28: ffff0005c2328000 # [ 341.423277] x27: 0000000000000000 x26: 0000000000000000 # [ 341.428595] x25: ffff8000114f18e8 x24: ffff800016e73e20 # [ 341.433912] x23: 0000000000000020 x22: ffff0005c3f62000 # [ 341.439230] x21: ffff800011a078a0 x20: ffff8000114f1c88 # [ 341.444548] x19: 000000000000003a x18: 0000000000000000 # [ 341.449865] x17: 0000000000000000 x16: 0000000000000000 # [ 341.455183] x15: 0000000000000030 x14: ffffffffffffffff # [ 341.460501] x13: ffff800096e73977 x12: ffff800016e7397f # [ 341.465818] x11: 0000000000000038 x10: ffff8000125e8350 # [ 341.471136] x9 : ffff80001012dcf4 x8 : ffff800012590350 # [ 341.476454] x7 : ffff8000125e8350 x6 : ffff800012561000 # [ 341.481771] x5 : ffff800012561c88 x4 : ffff00063f7a0c50 # [ 341.487089] x3 : 0000000000000000 x2 : 0000000000000000 # [ 341.492406] x1 : 0000000000000000 x0 : ffff0005c2328000 # [ 341.497724] Call trace: # [ 341.500171] refcount_warn_saturate+0xf4/0x144 # [ 341.504619] __refcount_sub_and_test.constprop.0+0x64/0x7c # [ 341.510110] lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED+0x48/0x8c # [ 341.515768] lkdtm_do_action+0x24/0x40 # [ 341.519516] direct_entry+0xd0/0x140 # [ 341.523093] full_proxy_write+0x68/0xbc # [ 341.526932] vfs_write+0xec/0x20c # [ 341.530249] ksys_write+0x70/0x100 # [ 341.533650] __arm64_sys_write+0x24/0x30 # [ 341.537579] el0_svc_common.constprop.0+0x84/0x1e0 # [ 341.542370] do_el0_svc+0x2c/0x94 # [ 341.545685] el0_svc+0x20/0x30 # [ 341.548739] el0_sync_handler+0xb0/0xb4 # [ 341.552576] el0_sync+0x180/0x1c0 # [ 341.555889] irq event stamp: 0 # [ 341.558950] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 341.565223] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 341.573399] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 341.581576] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 341.587840] ---[ end trace b07e3d6731f442e7 ]--- # [ 341.592796] lkdtm: Saturation detected: still saturated # REFCOUNT_DEC_AND_TEST_SATURATED: saw 'Saturation detected: still saturated': ok ok 57 selftests: lkdtm: REFCOUNT_DEC_AND_TEST_SATURATED.sh # selftests: lkdtm: REFCOUNT_SUB_AND_TEST_SATURATED.sh [ 343.063352] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_SATURATED [ 343.070485] lkdtm: attempting bad refcount_sub_and_test() from saturated [ 343.078872] ------------[ cut here ]------------ [ 343.084110] refcount_t: underflow; use-after-free. [ 343.089404] WARNING: CPU: 5 PID: 2919 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 [ 343.097842] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 343.151176] CPU: 5 PID: 2919 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 343.158917] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 343.165273] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 343.171279] pc : refcount_warn_saturate+0xf4/0x144 [ 343.176069] lr : refcount_warn_saturate+0xf4/0x144 [ 343.180857] sp : ffff800016f03cd0 [ 343.184169] x29: ffff800016f03cd0 x28: ffff0005c6119880 [ 343.189487] x27: 0000000000000000 x26: 0000000000000000 [ 343.194805] x25: ffff8000114f18e8 x24: ffff800016f03e20 [ 343.200122] x23: 0000000000000020 x22: ffff0005c7ca9000 [ 343.205440] x21: ffff800011a078c0 x20: ffff8000114f1c98 [ 343.210757] x19: 000000000000003b x18: 0000000000000000 [ 343.216075] x17: 0000000000000000 x16: 0000000000000000 [ 343.221393] x15: 0000000000000000 x14: 0000000000000000 [ 343.226710] x13: 0000000000000000 x12: 0000000000000000 [ 343.232028] x11: 0000000000000000 x10: 0000000000001440 [ 343.237345] x9 : ffff80001012dcf4 x8 : ffff0005c611ad20 [ 343.242663] x7 : 0000000000000000 x6 : ffff800012561000 [ 343.247980] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 [ 343.253297] x3 : 0000000000000000 x2 : 0000000000000000 [ 343.258615] x1 : 0000000000000000 x0 : ffff0005c6119880 [ 343.263933] Call trace: [ 343.266380] refcount_warn_saturate+0xf4/0x144 [ 343.270829] __refcount_sub_and_test.constprop.0+0x64/0x7c [ 343.276320] lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED+0x48/0xc0 [ 343.281978] lkdtm_do_action+0x24/0x40 [ 343.285726] direct_entry+0xd0/0x140 [ 343.289303] full_proxy_write+0x68/0xbc [ 343.293142] vfs_write+0xec/0x20c [ 343.296458] ksys_write+0x70/0x100 [ 343.299860] __arm64_sys_write+0x24/0x30 [ 343.303788] el0_svc_common.constprop.0+0x84/0x1e0 [ 343.308579] do_el0_svc+0x2c/0x94 [ 343.311894] el0_svc+0x20/0x30 [ 343.314948] el0_sync_handler+0xb0/0xb4 [ 343.318785] el0_sync+0x180/0x1c0 [ 343.322099] irq event stamp: 0 [ 343.325159] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 343.331431] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 [ 343.339609] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 [ 343.347785] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 343.354049] ---[ end trace b07e3d6731f442e8 ]--- [ 343.358784] lkdtm: Saturation detected: still saturated # [ 343.063352] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_SATURATED # [ 343.070485] lkdtm: attempting bad refcount_sub_and_test() from saturated # [ 343.078872] ------------[ cut here ]------------ # [ 343.084110] refcount_t: underflow; use-after-free. # [ 343.089404] WARNING: CPU: 5 PID: 2919 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 343.097842] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 343.151176] CPU: 5 PID: 2919 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 343.158917] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 343.165273] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 343.171279] pc : refcount_warn_saturate+0xf4/0x144 # [ 343.176069] lr : refcount_warn_saturate+0xf4/0x144 # [ 343.180857] sp : ffff800016f03cd0 # [ 343.184169] x29: ffff800016f03cd0 x28: ffff0005c6119880 # [ 343.189487] x27: 0000000000000000 x26: 0000000000000000 # [ 343.194805] x25: ffff8000114f18e8 x24: ffff800016f03e20 # [ 343.200122] x23: 0000000000000020 x22: ffff0005c7ca9000 # [ 343.205440] x21: ffff800011a078c0 x20: ffff8000114f1c98 # [ 343.210757] x19: 000000000000003b x18: 0000000000000000 # [ 343.216075] x17: 0000000000000000 x16: 0000000000000000 # [ 343.221393] x15: 0000000000000000 x14: 0000000000000000 # [ 343.226710] x13: 0000000000000000 x12: 0000000000000000 # [ 343.232028] x11: 0000000000000000 x10: 0000000000001440 # [ 343.237345] x9 : ffff80001012dcf4 x8 : ffff0005c611ad20 # [ 343.242663] x7 : 0000000000000000 x6 : ffff800012561000 # [ 343.247980] x5 : ffff800012561c88 x4 : ffff00063f7c2c50 # [ 343.253297] x3 : 0000000000000000 x2 : 0000000000000000 # [ 343.258615] x1 : 0000000000000000 x0 : ffff0005c6119880 # [ 343.263933] Call trace: # [ 343.266380] refcount_warn_saturate+0xf4/0x144 # [ 343.270829] __refcount_sub_and_test.constprop.0+0x64/0x7c # [ 343.276320] lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED+0x48/0xc0 # [ 343.281978] lkdtm_do_action+0x24/0x40 # [ 343.285726] direct_entry+0xd0/0x140 # [ 343.289303] full_proxy_write+0x68/0xbc # [ 343.293142] vfs_write+0xec/0x20c # [ 343.296458] ksys_write+0x70/0x100 # [ 343.299860] __arm64_sys_write+0x24/0x30 # [ 343.303788] el0_svc_common.constprop.0+0x84/0x1e0 # [ 343.308579] do_el0_svc+0x2c/0x94 # [ 343.311894] el0_svc+0x20/0x30 # [ 343.314948] el0_sync_handler+0xb0/0xb4 # [ 343.318785] el0_sync+0x180/0x1c0 # [ 343.322099] irq event stamp: 0 # [ 343.325159] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 343.331431] hardirqs last disabled at (0): [] copy_process+0x5b0/0x1840 # [ 343.339609] softirqs last enabled at (0): [] copy_process+0x5b0/0x1840 # [ 343.347785] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 343.354049] ---[ end trace b07e3d6731f442e8 ]--- # [ 343.358784] lkdtm: Saturation detected: still saturated # REFCOUNT_SUB_AND_TEST_SATURATED: saw 'Saturation detected: still saturated': ok ok 58 selftests: lkdtm: REFCOUNT_SUB_AND_TEST_SATURATED.sh # selftests: lkdtm: REFCOUNT_TIMING.sh # Skipping REFCOUNT_TIMING: timing only ok 59 selftests: lkdtm: REFCOUNT_TIMING.sh # SKIP # selftests: lkdtm: ATOMIC_TIMING.sh # Skipping ATOMIC_TIMING: timing only ok 60 selftests: lkdtm: ATOMIC_TIMING.sh # SKIP # selftests: lkdtm: USERCOPY_HEAP_SIZE_TO.sh [ 344.847293] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_TO [ 344.853413] lkdtm: attempting good copy_to_user of correct size [ 344.859468] lkdtm: attempting bad copy_to_user of too large size # [ 344.847293] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_TO # [ 344.853413] lkdtm: attempting good copy_to_user of correct size # [ 344.859468] lkdtm: attempting bad copy_to_user of too large size # USERCOPY_HEAP_SIZE_TO: missing 'call trace:': [FAIL] not ok 61 selftests: lkdtm: USERCOPY_HEAP_SIZE_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_SIZE_FROM.sh [ 345.570283] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_FROM [ 345.576634] lkdtm: attempting good copy_from_user of correct size [ 345.582905] lkdtm: attempting bad copy_from_user of too large size # [ 345.570283] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_FROM # [ 345.576634] lkdtm: attempting good copy_from_user of correct size # [ 345.582905] lkdtm: attempting bad copy_from_user of too large size # USERCOPY_HEAP_SIZE_FROM: missing 'call trace:': [FAIL] not ok 62 selftests: lkdtm: USERCOPY_HEAP_SIZE_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_WHITELIST_TO.sh [ 346.487089] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_TO [ 346.493714] lkdtm: attempting good copy_to_user inside whitelist [ 346.499828] lkdtm: attempting bad copy_to_user outside whitelist # [ 346.487089] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_TO # [ 346.493714] lkdtm: attempting good copy_to_user inside whitelist # [ 346.499828] lkdtm: attempting bad copy_to_user outside whitelist # USERCOPY_HEAP_WHITELIST_TO: missing 'call trace:': [FAIL] not ok 63 selftests: lkdtm: USERCOPY_HEAP_WHITELIST_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_WHITELIST_FROM.sh [ 347.254968] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_FROM [ 347.261963] lkdtm: attempting good copy_from_user inside whitelist [ 347.268254] lkdtm: attempting bad copy_from_user outside whitelist # [ 347.254968] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_FROM # [ 347.261963] lkdtm: attempting good copy_from_user inside whitelist # [ 347.268254] lkdtm: attempting bad copy_from_user outside whitelist # USERCOPY_HEAP_WHITELIST_FROM: missing 'call trace:': [FAIL] not ok 64 selftests: lkdtm: USERCOPY_HEAP_WHITELIST_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_FRAME_TO.sh [ 348.420124] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_TO [ 348.426455] lkdtm: good_stack: ffff800017383cd8-ffff800017383cf8 [ 348.432529] lkdtm: bad_stack : ffff800017383c38-ffff800017383c58 [ 348.438639] lkdtm: attempting good copy_to_user of local stack [ 348.444672] lkdtm: attempting bad copy_to_user of distant stack # [ 348.420124] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_TO # [ 348.426455] lkdtm: good_stack: ffff800017383cd8-ffff800017383cf8 # [ 348.432529] lkdtm: bad_stack : ffff800017383c38-ffff800017383c58 # [ 348.438639] lkdtm: attempting good copy_to_user of local stack # [ 348.444672] lkdtm: attempting bad copy_to_user of distant stack # USERCOPY_STACK_FRAME_TO: missing 'call trace:': [FAIL] not ok 65 selftests: lkdtm: USERCOPY_STACK_FRAME_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_FRAME_FROM.sh [ 349.298481] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_FROM [ 349.305044] lkdtm: good_stack: ffff80001743bcd8-ffff80001743bcf8 [ 349.312770] lkdtm: bad_stack : ffff80001743bc38-ffff80001743bc58 [ 349.319205] lkdtm: attempting good copy_from_user of local stack [ 349.325350] lkdtm: attempting bad copy_from_user of distant stack # [ 349.298481] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_FROM # [ 349.305044] lkdtm: good_stack: ffff80001743bcd8-ffff80001743bcf8 # [ 349.312770] lkdtm: bad_stack : ffff80001743bc38-ffff80001743bc58 # [ 349.319205] lkdtm: attempting good copy_from_user of local stack # [ 349.325350] lkdtm: attempting bad copy_from_user of distant stack # USERCOPY_STACK_FRAME_FROM: missing 'call trace:': [FAIL] not ok 66 selftests: lkdtm: USERCOPY_STACK_FRAME_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_BEYOND.sh [ 350.082794] lkdtm: Performing direct entry USERCOPY_STACK_BEYOND [ 350.088939] lkdtm: good_stack: ffff8000174fbcd8-ffff8000174fbcf8 [ 350.095017] lkdtm: bad_stack : ffff8000174fbff8-ffff8000174fc018 [ 350.101128] lkdtm: attempting good copy_to_user of local stack [ 350.107120] lkdtm: attempting bad copy_to_user of distant stack [ 350.113322] Unable to handle kernel paging request at virtual address ffff8000174fc000 [ 350.121532] Mem abort info: [ 350.124907] ESR = 0x96000007 [ 350.128324] EC = 0x25: DABT (current EL), IL = 32 bits [ 350.133793] SET = 0, FnV = 0 [ 350.136882] EA = 0, S1PTW = 0 [ 350.140020] Data abort info: [ 350.142949] ISV = 0, ISS = 0x00000007 [ 350.146852] CM = 0, WnR = 0 [ 350.149956] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 [ 350.156674] [ffff8000174fc000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000607cab003, pte=0000000000000000 [ 350.169377] Internal error: Oops: 96000007 [#16] PREEMPT SMP [ 350.175035] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek [ 350.228241] CPU: 0 PID: 3213 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 350.235978] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 350.242329] pstate: 80000005 (Nzcv daif -PAN -UAO -TCO BTYPE=--) [ 350.248341] pc : __arch_copy_to_user+0xa0/0x310 [ 350.252870] lr : _copy_to_user+0x6c/0x94 [ 350.256786] sp : ffff8000174fbc70 [ 350.260096] x29: ffff8000174fbc70 x28: ffff0005c50e4980 [ 350.265406] x27: 0000000000000000 x26: 0000000000000000 [ 350.270717] x25: ffff8000114f18e8 x24: ffff8000174fbe20 [ 350.276027] x23: 0000000000000016 x22: ffff0005c7f00000 [ 350.281337] x21: ffff8000174fbff8 x20: 0000ffffb4252000 [ 350.286647] x19: 0000000000000020 x18: 0000000000000000 [ 350.291956] x17: 0000000000000000 x16: 0000000000000000 [ 350.297266] x15: ffff8000174fbff8 x14: 000000000000010b [ 350.302575] x13: 0000000000000001 x12: 0000000000000002 [ 350.307885] x11: 0000024b24ab2ef0 x10: 0000000000001440 [ 350.313194] x9 : ffff80001011bcd0 x8 : ffff00063f7e97c0 [ 350.318503] x7 : ffff0005c50e4980 x6 : 0000ffffb4252008 [ 350.323812] x5 : 0000ffffb4252020 x4 : 0000000000000008 [ 350.329121] x3 : 0000000000000010 x2 : 0000000000000018 [ 350.334431] x1 : ffff8000174fc000 x0 : 0000ffffb4252000 [ 350.339741] Call trace: [ 350.342184] __arch_copy_to_user+0xa0/0x310 [ 350.346366] do_usercopy_stack+0x28c/0x294 [ 350.350458] lkdtm_USERCOPY_STACK_BEYOND+0x20/0x30 [ 350.355244] lkdtm_do_action+0x24/0x40 [ 350.358987] direct_entry+0xd0/0x140 [ 350.362560] full_proxy_write+0x68/0xbc [ 350.366396] vfs_write+0xec/0x20c [ 350.369708] ksys_write+0x70/0x100 [ 350.373105] __arm64_sys_write+0x24/0x30 [ 350.377026] el0_svc_common.constprop.0+0x84/0x1e0 [ 350.381812] do_el0_svc+0x2c/0x94 [ 350.385122] el0_svc+0x20/0x30 [ 350.388172] el0_sync_handler+0xb0/0xb4 [ 350.392004] el0_sync+0x180/0x1c0 [ 350.395318] Code: a8c12027 a88120c7 d503201f d503201f (a8c12027) [ 350.401410] ---[ end trace b07e3d6731f442e9 ]--- # Segmentation fault # [ 350.082794] lkdtm: Performing direct entry USERCOPY_STACK_BEYOND # [ 350.088939] lkdtm: good_stack: ffff8000174fbcd8-ffff8000174fbcf8 # [ 350.095017] lkdtm: bad_stack : ffff8000174fbff8-ffff8000174fc018 # [ 350.101128] lkdtm: attempting good copy_to_user of local stack # [ 350.107120] lkdtm: attempting bad copy_to_user of distant stack # [ 350.113322] Unable to handle kernel paging request at virtual address ffff8000174fc000 # [ 350.121532] Mem abort info: # [ 350.124907] ESR = 0x96000007 # [ 350.128324] EC = 0x25: DABT (current EL), IL = 32 bits # [ 350.133793] SET = 0, FnV = 0 # [ 350.136882] EA = 0, S1PTW = 0 # [ 350.140020] Data abort info: # [ 350.142949] ISV = 0, ISS = 0x00000007 # [ 350.146852] CM = 0, WnR = 0 # [ 350.149956] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049dc2000 # [ 350.156674] [ffff8000174fc000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000607cab003, pte=0000000000000000 # [ 350.169377] Internal error: Oops: 96000007 [#16] PREEMPT SMP # [ 350.175035] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm cfg80211 rcar_lvds rcar_cmm snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops rcar_dw_hdmi dw_hdmi cec hci_uart btqca wlcore_sdio btbcm videobuf2_v4l2 videobuf2_common drm_kms_helper crct10dif_ce snd_soc_audio_graph_card snd_soc_simple_card_utils videodev rcar_fcp mc renesas_usb3 bluetooth display_connector snd_soc_rcar phy_rcar_gen3_usb3 rcar_can ecdh_generic pwm_rcar ecc can_dev drm renesas_usbhs rfkill usb_dmac realtek # [ 350.228241] CPU: 0 PID: 3213 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 350.235978] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 350.242329] pstate: 80000005 (Nzcv daif -PAN -UAO -TCO BTYPE=--) # [ 350.248341] pc : __arch_copy_to_user+0xa0/0x310 # [ 350.252870] lr : _copy_to_user+0x6c/0x94 # [ 350.256786] sp : ffff8000174fbc70 # [ 350.260096] x29: ffff8000174fbc70 x28: ffff0005c50e4980 # [ 350.265406] x27: 0000000000000000 x26: 0000000000000000 # [ 350.270717] x25: ffff8000114f18e8 x24: ffff8000174fbe20 # [ 350.276027] x23: 0000000000000016 x22: ffff0005c7f00000 # [ 350.281337] x21: ffff8000174fbff8 x20: 0000ffffb4252000 # [ 350.286647] x19: 0000000000000020 x18: 0000000000000000 # [ 350.291956] x17: 0000000000000000 x16: 0000000000000000 # [ 350.297266] x15: ffff8000174fbff8 x14: 000000000000010b # [ 350.302575] x13: 0000000000000001 x12: 0000000000000002 # [ 350.307885] x11: 0000024b24ab2ef0 x10: 0000000000001440 # [ 350.313194] x9 : ffff80001011bcd0 x8 : ffff00063f7e97c0 # [ 350.318503] x7 : ffff0005c50e4980 x6 : 0000ffffb4252008 # [ 350.323812] x5 : 0000ffffb4252020 x4 : 0000000000000008 # [ 350.329121] x3 : 0000000000000010 x2 : 0000000000000018 # [ 350.334431] x1 : ffff8000174fc000 x0 : 0000ffffb4252000 # [ 350.339741] Call trace: # [ 350.342184] __arch_copy_to_user+0xa0/0x310 # [ 350.346366] do_usercopy_stack+0x28c/0x294 # [ 350.350458] lkdtm_USERCOPY_STACK_BEYOND+0x20/0x30 # [ 350.355244] lkdtm_do_action+0x24/0x40 # [ 350.358987] direct_entry+0xd0/0x140 # [ 350.362560] full_proxy_write+0x68/0xbc # [ 350.366396] vfs_write+0xec/0x20c # [ 350.369708] ksys_write+0x70/0x100 # [ 350.373105] __arm64_sys_write+0x24/0x30 # [ 350.377026] el0_svc_common.constprop.0+0x84/0x1e0 # [ 350.381812] do_el0_svc+0x2c/0x94 # [ 350.385122] el0_svc+0x20/0x30 # [ 350.388172] el0_sync_handler+0xb0/0xb4 # [ 350.392004] el0_sync+0x180/0x1c0 # [ 350.395318] Code: a8c12027 a88120c7 d503201f d503201f (a8c12027) # [ 350.401410] ---[ end trace b07e3d6731f442e9 ]--- # USERCOPY_STACK_BEYOND: saw 'call trace:': ok ok 67 selftests: lkdtm: USERCOPY_STACK_BEYOND.sh # selftests: lkdtm: USERCOPY_KERNEL.sh [ 352.625394] lkdtm: Performing direct entry USERCOPY_KERNEL [ 352.631007] lkdtm: attempting good copy_to_user from kernel rodata: ffff8000114f1df0 [ 352.638858] lkdtm: attempting bad copy_to_user from kernel text: ffff8000102d2b30 [ 352.646450] lkdtm: FAIL: survived bad copy_to_user() # [ 352.625394] lkdtm: Performing direct entry USERCOPY_KERNEL # [ 352.631007] lkdtm: attempting good copy_to_user from kernel rodata: ffff8000114f1df0 # [ 352.638858] lkdtm: attempting bad copy_to_user from kernel text: ffff8000102d2b30 # [ 352.646450] lkdtm: FAIL: survived bad copy_to_user() # USERCOPY_KERNEL: missing 'call trace:': [FAIL] not ok 68 selftests: lkdtm: USERCOPY_KERNEL.sh # exit=1 # selftests: lkdtm: STACKLEAK_ERASING.sh [ 353.517197] lkdtm: Performing direct entry STACKLEAK_ERASING [ 353.523070] lkdtm: checking unused part of the thread stack (15608 bytes)... [ 353.531806] lkdtm: FAIL: the erased part is not found (checked 15608 bytes) [ 353.539395] lkdtm: FAIL: the thread stack is NOT properly erased [ 353.545565] CPU: 5 PID: 3295 Comm: cat Tainted: G D W 5.10.150-cip18 #1 [ 353.553309] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 353.559664] Call trace: [ 353.562123] dump_backtrace+0x0/0x1e4 [ 353.565787] show_stack+0x20/0x2c [ 353.569108] dump_stack+0xf8/0x168 [ 353.572515] lkdtm_STACKLEAK_ERASING+0x130/0x170 [ 353.577137] lkdtm_do_action+0x24/0x40 [ 353.580886] direct_entry+0xd0/0x140 [ 353.584465] full_proxy_write+0x68/0xbc [ 353.588306] vfs_write+0xec/0x20c [ 353.591624] ksys_write+0x70/0x100 [ 353.595026] __arm64_sys_write+0x24/0x30 [ 353.598953] el0_svc_common.constprop.0+0x84/0x1e0 [ 353.603745] do_el0_svc+0x2c/0x94 [ 353.607062] el0_svc+0x20/0x30 [ 353.610117] el0_sync_handler+0xb0/0xb4 [ 353.613954] el0_sync+0x180/0x1c0 # [ 353.517197] lkdtm: Performing direct entry STACKLEAK_ERASING # [ 353.523070] lkdtm: checking unused part of the thread stack (15608 bytes)... # [ 353.531806] lkdtm: FAIL: the erased part is not found (checked 15608 bytes) # [ 353.539395] lkdtm: FAIL: the thread stack is NOT properly erased # [ 353.545565] CPU: 5 PID: 3295 Comm: cat Tainted: G D W 5.10.150-cip18 #1 # [ 353.553309] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 353.559664] Call trace: # [ 353.562123] dump_backtrace+0x0/0x1e4 # [ 353.565787] show_stack+0x20/0x2c # [ 353.569108] dump_stack+0xf8/0x168 # [ 353.572515] lkdtm_STACKLEAK_ERASING+0x130/0x170 # [ 353.577137] lkdtm_do_action+0x24/0x40 # [ 353.580886] direct_entry+0xd0/0x140 # [ 353.584465] full_proxy_write+0x68/0xbc # [ 353.588306] vfs_write+0xec/0x20c # [ 353.591624] ksys_write+0x70/0x100 # [ 353.595026] __arm64_sys_write+0x24/0x30 # [ 353.598953] el0_svc_common.constprop.0+0x84/0x1e0 # [ 353.603745] do_el0_svc+0x2c/0x94 # [ 353.607062] el0_svc+0x20/0x30 # [ 353.610117] el0_sync_handler+0xb0/0xb4 # [ 353.613954] el0_sync+0x180/0x1c0 # STACKLEAK_ERASING: missing 'OK: the rest of the thread stack is properly erased': [FAIL] not ok 69 selftests: lkdtm: STACKLEAK_ERASING.sh # exit=1 # selftests: lkdtm: CFI_FORWARD_PROTO.sh [ 354.466799] lkdtm: Performing direct entry CFI_FORWARD_PROTO [ 354.472666] lkdtm: Calling matched prototype ... [ 354.478963] lkdtm: Calling mismatched prototype ... [ 354.484314] lkdtm: Fail: survived mismatched prototype function call! # [ 354.466799] lkdtm: Performing direct entry CFI_FORWARD_PROTO # [ 354.472666] lkdtm: Calling matched prototype ... # [ 354.478963] lkdtm: Calling mismatched prototype ... # [ 354.484314] lkdtm: Fail: survived mismatched prototype function call! # CFI_FORWARD_PROTO: missing 'call trace:': [FAIL] not ok 70 selftests: lkdtm: CFI_FORWARD_PROTO.sh # exit=1 + ../../utils/send-to-lava.sh ./output/result.txt + set +x / #