Trying 192.168.1.209... Connected to ts9. Escape character is '^]'. ser2net port telnet,2001 device serialdev,/dev/ttyUSB-lf-hihope-rzg2m-02,115200n81,local [] (Debian GNU/Linux) NOTICE: BL2: RZ/G Initial Program Loader(CA57) Rev.2.0.7 NOTICE: BL2: PRR is RZG G2M Ver.1.3 NOTICE: BL2: Board is HiHope RZ/G2M Rev.4.0 NOTICE: BL2: Boot device is QSPI Flash(40MHz) NOTICE: BL2: LCM state is unknown NOTICE: BL2: DDR3200(rev.0.41) NOTICE: BL2: [COLD_BOOT] NOTICE: BL2: DRAM Split is 2ch NOTICE: BL2: QoS is default setting(rev.0.19) NOTICE: BL2: DRAM refresh interval 1.95 usec NOTICE: BL2: Periodic Write DQ Training NOTICE: BL2: DRAM don't have ECC configuration NOTICE: BL2: CH0: 400000000 - 47fffffff, 2 GiB NOTICE: BL2: CH2: 600000000 - 67fffffff, 2 GiB NOTICE: BL2: Lossy Decomp areas NOTICE: Entry 0: DCMPAREACRAx:0x80000540 DCMPAREACRBx:0x570 NOTICE: Entry 1: DCMPAREACRAx:0x40000000 DCMPAREACRBx:0x0 NOTICE: Entry 2: DCMPAREACRAx:0x20000000 DCMPAREACRBx:0x0 NOTICE: BL2: FDT at 0xe631d548 NOTICE: BL2: v2.4(release):44427a7 NOTICE: BL2: Built : 12:32:56, Jun 2 2021 NOTICE: BL2: Normal boot NOTICE: BL2: dst=0xe631d100 src=0x8180000 len=512(0x200) NOTICE: BL2: dst=0x43f00000 src=0x8180400 len=6144(0x1800) NOTICE: rzg_file_len: len: 0x0003e000 NOTICE: BL2: dst=0x44000000 src=0x81c0000 len=253952(0x3e000) NOTICE: rzg_file_len: len: 0x00100000 NOTICE: BL2: dst=0x50000000 src=0x8300000 len=1048576(0x100000) NOTICE: BL2: Booting BL31 U-Boot 2020.10 (Jun 02 2021 - 13:33:36 +0000) CPU: Renesas Electronics R8A774A1 rev 1.3 Model: Hoperun Technology HiHope RZ/G2M platform (hihope-rzg2m) DRAM: 3.9 GiB Bank #0: 0x048000000 - 0x0bfffffff, 1.9 GiB Bank #1: 0x600000000 - 0x67fffffff, 2 GiB WDT: Not found! MMC: sd@ee100000: 0, sd@ee160000: 1 Loading Environment from MMC... OK In: serial@e6e88000 Out: serial@e6e88000 Err: serial@e6e88000 Re-init wdt failed! Net: eth0: ethernet@e6800000 Hit any key to stop autoboot: 2  0 => setenv autoload no setenv autoload no => setenv initrd_high 0xffffffff setenv initrd_high 0xffffffff => setenv fdt_high 0xffffffff setenv fdt_high 0xffffffff => dhcp dhcp ethernet@e6800000 Waiting for PHY auto negotiation to complete........ done BOOTP broadcast 1 BOOTP broadcast 2 BOOTP broadcast 3 DHCP client bound to address 172.16.3.184 (804 ms) => setenv serverip 172.16.3.3 setenv serverip 172.16.3.3 => tftp 0x48080000 838654/tftp-deploy-61u2to7f/kernel/Image tftp 0x48080000 838654/tftp-deploy-61u2to7f/kernel/Image Using ethernet@e6800000 device TFTP from server 172.16.3.3; our IP address is 172.16.3.184 Filename '838654/tftp-deploy-61u2to7f/kernel/Image'. Load address: 0x48080000 Loading: *################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ##################################################### 5 MiB/s done Bytes transferred = 43713024 (29b0200 hex) => tftp 0x4ee2c2c0 838654/tftp-deploy-61u2to7f/ramdisk/ramdisk.cpio.gz.uboot tftp 0x4ee2c2c0 838654/tftp-deploy-61u2to7f/ramdisk/ramdisk.cpio.gz.uboot Using ethernet@e6800000 device TFTP from server 172.16.3.3; our IP address is 172.16.3.184 Filename '838654/tftp-deploy-61u2to7f/ramdisk/ramdisk.cpio.gz.uboot'. Load address: 0x4ee2c2c0 Loading: *################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ######################################################### 7.7 MiB/s done Bytes transferred = 18002931 (112b3f3 hex) => setenv initrd_size ${filesize} setenv initrd_size ${filesize} => tftp 0x48000000 838654/tftp-deploy-61u2to7f/dtb/r8a774a1-hihope-rzg2m-ex.dtb tftp 0x48000000 838654/tftp-deploy-61u2to7f/dtb/r8a774a1-hihope-rzg2m-ex.dtb Using ethernet@e6800000 device TFTP from server 172.16.3.3; our IP address is 172.16.3.184 Filename '838654/tftp-deploy-61u2to7f/dtb/r8a774a1-hihope-rzg2m-ex.dtb'. Load address: 0x48000000 Loading: *#### 5.5 MiB/s done Bytes transferred = 57234 (df92 hex) => setenv bootargs 'console=ttySC0,115200n8 root=/dev/nfs rw nfsroot=172.16.3.3:/var/lib/lava/dispatcher/tmp/838654/extract-nfsrootfs-4e9ijj7p,tcp,hard,v3 ip=dhcp' setenv bootargs 'console=ttySC0,115200n8 root=/dev/nfs rw nfsroot=172.16.3.3:/var/lib/lava/dispatcher/tmp/838654/extract-nfsrootfs-4e9ijj7p,tcp,hard,v3 ip=dhcp' => booti 0x48080000 0x4ee2c2c0 0x48000000 booti 0x48080000 0x4ee2c2c0 0x48000000 Moving Image from 0x48080000 to 0x48200000, end=4b6c0000 ## Loading init Ramdisk from Legacy Image at 4ee2c2c0 ... Image Name: Image Type: AArch64 Linux RAMDisk Image (uncompressed) Data Size: 18002867 Bytes = 17.2 MiB Load Address: 00000000 Entry Point: 00000000 Verifying Checksum ... OK ## Flattened Device Tree blob at 48000000 Booting using the fdt blob at 0x48000000 Loading Ramdisk to b8deb000, end b9f163b3 ... OK Loading Device Tree to 00000000b8dda000, end 00000000b8deaf91 ... OK Starting kernel ... [ 0.000000] Booting Linux on physical CPU 0x0000000000 [0x411fd073] [ 0.000000] Linux version 5.10.166-cip25 (KernelCI@build-j960166-arm64-gcc-10-defconfig-kselftest-jn654) (aarch64-linux-gnu-gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2) #1 SMP PREEMPT Wed Feb 1 09:40:25 UTC 2023 [ 0.000000] Machine model: HopeRun HiHope RZ/G2M with sub board [ 0.000000] efi: UEFI not found. [ 0.000000] NUMA: No NUMA configuration found [ 0.000000] NUMA: Faking a node at [mem 0x0000000048000000-0x000000067fffffff] [ 0.000000] NUMA: NODE_DATA [mem 0x67f7e97c0-0x67f7ebfff] [ 0.000000] Zone ranges: [ 0.000000] DMA [mem 0x0000000048000000-0x00000000ffffffff] [ 0.000000] DMA32 empty [ 0.000000] Normal [mem 0x0000000100000000-0x000000067fffffff] [ 0.000000] Movable zone start for each node [ 0.000000] Early memory node ranges [ 0.000000] node 0: [mem 0x0000000048000000-0x00000000bfffffff] [ 0.000000] node 0: [mem 0x0000000600000000-0x000000067fffffff] [ 0.000000] Initmem setup node 0 [mem 0x0000000048000000-0x000000067fffffff] [ 0.000000] cma: Reserved 32 MiB at 0x00000000be000000 [ 0.000000] psci: probing for conduit method from DT. [ 0.000000] psci: PSCIv1.1 detected in firmware. [ 0.000000] psci: Using standard PSCI v0.2 function IDs [ 0.000000] psci: MIGRATE_INFO_TYPE not supported. [ 0.000000] psci: SMC Calling Convention v1.2 [ 0.000000] percpu: Embedded 34 pages/cpu s100944 r8192 d30128 u139264 [ 0.000000] Detected PIPT I-cache on CPU0 [ 0.000000] CPU features: detected: EL2 vector hardening [ 0.000000] CPU features: detected: Spectre-v2 [ 0.000000] CPU features: detected: ARM errata 1165522, 1319367, or 1530923 [ 0.000000] CPU features: detected: Spectre-BHB [ 0.000000] CPU features: detected: ARM erratum 1742098 [ 0.000000] Built 1 zonelists, mobility grouping on. Total pages: 999936 [ 0.000000] Policy zone: Normal [ 0.000000] Kernel command line: console=ttySC0,115200n8 root=/dev/nfs rw nfsroot=172.16.3.3:/var/lib/lava/dispatcher/tmp/838654/extract-nfsrootfs-4e9ijj7p,tcp,hard,v3 ip=dhcp wdt_overflow=0 [ 0.000000] Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) [ 0.000000] Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) [ 0.000000] mem auto-init: stack:off, heap alloc:off, heap free:off [ 0.000000] software IO TLB: mapped [mem 0x00000000ba000000-0x00000000be000000] (64MB) [ 0.000000] Memory: 3812096K/4063232K available (18816K kernel code, 4544K rwdata, 9460K rodata, 9728K init, 11276K bss, 218368K reserved, 32768K cma-reserved) [ 0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=6, Nodes=1 [ 0.000000] ftrace: allocating 58576 entries in 229 pages [ 0.000000] ftrace: allocated 229 pages with 5 groups [ 0.000000] Running RCU self tests [ 0.000000] rcu: Preemptible hierarchical RCU implementation. [ 0.000000] rcu: RCU event tracing is enabled. [ 0.000000] rcu: RCU lockdep checking is enabled. [ 0.000000] rcu: RCU restricting CPUs from NR_CPUS=256 to nr_cpu_ids=6. [ 0.000000] Trampoline variant of Tasks RCU enabled. [ 0.000000] Rude variant of Tasks RCU enabled. [ 0.000000] Tracing variant of Tasks RCU enabled. [ 0.000000] rcu: RCU calculated value of scheduler-enlistment delay is 25 jiffies. [ 0.000000] rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=6 [ 0.000000] NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 [ 0.000000] arch_timer: cp15 timer(s) running at 8.33MHz (virt). [ 0.000000] clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x1ec02923e, max_idle_ns: 440795202125 ns [ 0.000003] sched_clock: 56 bits at 8MHz, resolution 120ns, wraps every 2199023255496ns [ 0.000267] Console: colour dummy device 80x25 [ 0.000303] Lock dependency validator: Copyright (c) 2006 Red Hat, Inc., Ingo Molnar [ 0.000315] ... MAX_LOCKDEP_SUBCLASSES: 8 [ 0.000325] ... MAX_LOCK_DEPTH: 48 [ 0.000336] ... MAX_LOCKDEP_KEYS: 8192 [ 0.000347] ... CLASSHASH_SIZE: 4096 [ 0.000357] ... MAX_LOCKDEP_ENTRIES: 32768 [ 0.000368] ... MAX_LOCKDEP_CHAINS: 65536 [ 0.000378] ... CHAINHASH_SIZE: 32768 [ 0.000389] memory used by lock dependency info: 6365 kB [ 0.000400] memory used for stack traces: 4224 kB [ 0.000410] per task-struct memory footprint: 1920 bytes [ 0.000552] Calibrating delay loop (skipped), value calculated using timer frequency.. 16.66 BogoMIPS (lpj=33333) [ 0.000575] pid_max: default: 32768 minimum: 301 [ 0.000747] LSM: Security Framework initializing [ 0.000819] LSM support for eBPF active [ 0.000918] Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) [ 0.000956] Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) [ 0.006490] rcu: Hierarchical SRCU implementation. [ 0.010818] Detected Renesas RZ/G2 r8a774a1 ES1.3 [ 0.012497] EFI services will not be available. [ 0.013550] smp: Bringing up secondary CPUs ... [ 0.015355] Detected PIPT I-cache on CPU1 [ 0.015440] CPU1: Booted secondary processor 0x0000000001 [0x411fd073] [ 0.017678] CPU features: detected: ARM erratum 845719 [ 0.017700] Detected VIPT I-cache on CPU2 [ 0.017782] CPU2: Booted secondary processor 0x0000000100 [0x410fd034] [ 0.019790] Detected VIPT I-cache on CPU3 [ 0.019834] CPU3: Booted secondary processor 0x0000000101 [0x410fd034] [ 0.021806] Detected VIPT I-cache on CPU4 [ 0.021850] CPU4: Booted secondary processor 0x0000000102 [0x410fd034] [ 0.023834] Detected VIPT I-cache on CPU5 [ 0.023878] CPU5: Booted secondary processor 0x0000000103 [0x410fd034] [ 0.024467] smp: Brought up 1 node, 6 CPUs [ 0.024541] SMP: Total of 6 processors activated. [ 0.024557] CPU features: detected: 32-bit EL0 Support [ 0.024573] CPU features: detected: CRC32 instructions [ 0.024588] CPU features: detected: 32-bit EL1 Support [ 0.056170] CPU: All CPU(s) started at EL1 [ 0.056292] alternatives: patching kernel code [ 0.059515] devtmpfs: initialized [ 0.095964] KASLR disabled due to lack of seed [ 0.097457] clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 7645041785100000 ns [ 0.097496] futex hash table entries: 2048 (order: 6, 262144 bytes, linear) [ 0.098933] pinctrl core: initialized pinctrl subsystem [ 0.102976] DMI not present or invalid. [ 0.104217] NET: Registered protocol family 16 [ 0.108108] DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations [ 0.108267] DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations [ 0.108707] DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations [ 0.108893] audit: initializing netlink subsys (disabled) [ 0.109431] audit: type=2000 audit(0.108:1): state=initialized audit_enabled=0 res=1 [ 0.112202] thermal_sys: Registered thermal governor 'step_wise' [ 0.112216] thermal_sys: Registered thermal governor 'power_allocator' [ 0.113639] cpuidle: using governor menu [ 0.114065] hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. [ 0.114451] ASID allocator initialised with 65536 entries [ 0.117782] Serial: AMBA PL011 UART driver [ 0.270129] sh-pfc e6060000.pinctrl: r8a774a1_pfc support registered [ 0.330586] HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages [ 0.330607] HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages [ 0.330622] HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages [ 0.330638] HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages [ 0.335119] cryptd: max_cpu_qlen set to 1000 [ 0.343561] ACPI: Interpreter disabled. [ 0.356643] iommu: Default domain type: Translated [ 0.357805] vgaarb: loaded [ 0.358858] SCSI subsystem initialized [ 0.359962] usbcore: registered new interface driver usbfs [ 0.360090] usbcore: registered new interface driver hub [ 0.360217] usbcore: registered new device driver usb [ 0.362632] pps_core: LinuxPPS API ver. 1 registered [ 0.362652] pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti [ 0.362693] PTP clock support registered [ 0.363161] EDAC MC: Ver: 3.0.0 [ 0.368655] FPGA manager framework [ 0.368955] Advanced Linux Sound Architecture Driver Initialized. [ 0.371237] clocksource: Switched to clocksource arch_sys_counter [ 1.136416] VFS: Disk quotas dquot_6.6.0 [ 1.136557] VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) [ 1.137348] pnp: PnP ACPI: disabled [ 1.161641] NET: Registered protocol family 2 [ 1.162025] IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) [ 1.164511] tcp_listen_portaddr_hash hash table entries: 2048 (order: 5, 163840 bytes, linear) [ 1.164825] TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) [ 1.165548] TCP bind hash table entries: 32768 (order: 9, 2359296 bytes, linear) [ 1.169544] TCP: Hash tables configured (established 32768 bind 32768) [ 1.170261] MPTCP token hash table entries: 4096 (order: 6, 360448 bytes, linear) [ 1.170969] UDP hash table entries: 2048 (order: 6, 327680 bytes, linear) [ 1.171648] UDP-Lite hash table entries: 2048 (order: 6, 327680 bytes, linear) [ 1.172561] NET: Registered protocol family 1 [ 1.174213] RPC: Registered named UNIX socket transport module. [ 1.174249] RPC: Registered udp transport module. [ 1.174265] RPC: Registered tcp transport module. [ 1.174281] RPC: Registered tcp NFSv4.1 backchannel transport module. [ 1.174306] NET: Registered protocol family 44 [ 1.174343] PCI: CLS 0 bytes, default 64 [ 1.174944] Unpacking initramfs... [ 2.152880] Freeing initrd memory: 17580K [ 2.155732] hw perfevents: enabled with armv8_cortex_a53 PMU driver, 7 counters available [ 2.156703] hw perfevents: enabled with armv8_cortex_a57 PMU driver, 7 counters available [ 2.157393] kvm [1]: HYP mode not available [ 2.172077] Initialise system trusted keyrings [ 2.172618] workingset: timestamp_bits=42 max_order=20 bucket_order=0 [ 2.203746] squashfs: version 4.0 (2009/01/31) Phillip Lougher [ 2.205742] NFS: Registering the id_resolver key type [ 2.205816] Key type id_resolver registered [ 2.205850] Key type id_legacy registered [ 2.206192] nfs4filelayout_init: NFSv4 File Layout Driver Registering... [ 2.206225] nfs4flexfilelayout_init: NFSv4 Flexfile Layout Driver Registering... [ 2.206709] 9p: Installing v9fs 9p2000 file system support [ 2.234235] Key type asymmetric registered [ 2.234289] Asymmetric key parser 'x509' registered [ 2.234389] Block layer SCSI generic (bsg) driver version 0.4 loaded (major 245) [ 2.234426] io scheduler mq-deadline registered [ 2.234444] io scheduler kyber registered [ 2.234954] test_firmware: interface ready [ 2.278136] gpio_rcar e6050000.gpio: driving 16 GPIOs [ 2.279726] gpio_rcar e6051000.gpio: driving 29 GPIOs [ 2.280907] gpio_rcar e6052000.gpio: driving 15 GPIOs [ 2.282105] gpio_rcar e6053000.gpio: driving 16 GPIOs [ 2.283328] gpio_rcar e6054000.gpio: driving 18 GPIOs [ 2.284522] gpio_rcar e6055000.gpio: driving 26 GPIOs [ 2.285353] gpio-370 (usb1-reset): hogged as output/low [ 2.285874] gpio_rcar e6055400.gpio: driving 32 GPIOs [ 2.287375] gpio_rcar e6055800.gpio: driving 4 GPIOs [ 2.293145] rcar-pcie fe000000.pcie: host bridge /soc/pcie@fe000000 ranges: [ 2.293249] rcar-pcie fe000000.pcie: IO 0x00fe100000..0x00fe1fffff -> 0x0000000000 [ 2.293377] rcar-pcie fe000000.pcie: MEM 0x00fe200000..0x00fe3fffff -> 0x00fe200000 [ 2.293461] rcar-pcie fe000000.pcie: MEM 0x0030000000..0x0037ffffff -> 0x0030000000 [ 2.293514] rcar-pcie fe000000.pcie: MEM 0x0038000000..0x003fffffff -> 0x0038000000 [ 2.293582] rcar-pcie fe000000.pcie: IB MEM 0x0040000000..0x00bfffffff -> 0x0040000000 [ 2.359156] rcar-pcie fe000000.pcie: PCIe link down [ 2.360190] rcar-pcie ee800000.pcie: host bridge /soc/pcie@ee800000 ranges: [ 2.360291] rcar-pcie ee800000.pcie: IO 0x00ee900000..0x00ee9fffff -> 0x0000000000 [ 2.360381] rcar-pcie ee800000.pcie: MEM 0x00eea00000..0x00eebfffff -> 0x00eea00000 [ 2.360465] rcar-pcie ee800000.pcie: MEM 0x00c0000000..0x00c7ffffff -> 0x00c0000000 [ 2.360517] rcar-pcie ee800000.pcie: MEM 0x00c8000000..0x00cfffffff -> 0x00c8000000 [ 2.360584] rcar-pcie ee800000.pcie: IB MEM 0x0040000000..0x00bfffffff -> 0x0040000000 [ 2.427165] rcar-pcie ee800000.pcie: PCIe link down [ 2.434940] EINJ: ACPI disabled. [ 2.489979] Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled [ 2.498595] SuperH (H)SCI(F) driver initialized [ 2.499829] e6540000.serial: ttySC1 at MMIO 0xe6540000 (irq = 39, base_baud = 0) is a hscif [ 2.500757] serial serial0: tty port ttySC1 registered [ 2.503622] e6e88000.serial: ttySC0 at MMIO 0xe6e88000 (irq = 123, base_baud = 0) is a scif [ 3.668830] printk: console [ttySC0] enabled [ 3.677404] msm_serial: driver initialized [ 3.721633] loop: module loaded [ 3.726311] lkdtm: No crash points registered, enable through debugfs [ 3.736087] megasas: 07.714.04.00-rc1 [ 3.761772] thunder_xcv, ver 1.0 [ 3.765152] thunder_bgx, ver 1.0 [ 3.768522] nicpf, ver 1.0 [ 3.775417] hclge is initializing [ 3.778836] hns3: Hisilicon Ethernet Network Driver for Hip08 Family - version [ 3.786093] hns3: Copyright (c) 2017 Huawei Corporation. [ 3.791558] e1000: Intel(R) PRO/1000 Network Driver [ 3.796468] e1000: Copyright (c) 1999-2006 Intel Corporation. [ 3.802346] e1000e: Intel(R) PRO/1000 Network Driver [ 3.807338] e1000e: Copyright(c) 1999 - 2015 Intel Corporation. [ 3.813389] igb: Intel(R) Gigabit Ethernet Network Driver [ 3.818816] igb: Copyright (c) 2007-2014 Intel Corporation. [ 3.824490] igbvf: Intel(R) Gigabit Virtual Function Network Driver [ 3.830787] igbvf: Copyright (c) 2009 - 2012 Intel Corporation. [ 3.837998] sky2: driver version 1.30 [ 3.846558] VFIO - User Level meta-driver version: 0.3 [ 3.857549] ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver [ 3.864172] ehci-pci: EHCI PCI platform driver [ 3.868721] ehci-platform: EHCI generic platform driver [ 3.875806] ehci-platform ee0a0100.usb: EHCI Host Controller [ 3.881639] ehci-platform ee0a0100.usb: new USB bus registered, assigned bus number 1 [ 3.889804] ehci-platform ee0a0100.usb: irq 161, io mem 0xee0a0100 [ 3.911283] ehci-platform ee0a0100.usb: USB 2.0 started, EHCI 1.10 [ 3.920080] hub 1-0:1.0: USB hub found [ 3.924012] hub 1-0:1.0: 1 port detected [ 3.930459] ehci-orion: EHCI orion driver [ 3.935135] ehci-exynos: EHCI Exynos driver [ 3.939752] ohci_hcd: USB 1.1 'Open' Host Controller (OHCI) Driver [ 3.946006] ohci-pci: OHCI PCI platform driver [ 3.950579] ohci-platform: OHCI generic platform driver [ 3.957340] ohci-platform ee0a0000.usb: Generic Platform OHCI controller [ 3.964122] ohci-platform ee0a0000.usb: new USB bus registered, assigned bus number 2 [ 3.972205] ohci-platform ee0a0000.usb: irq 161, io mem 0xee0a0000 [ 4.067104] hub 2-0:1.0: USB hub found [ 4.070977] hub 2-0:1.0: 1 port detected [ 4.077036] ohci-exynos: OHCI Exynos driver [ 4.082914] xhci-hcd ee000000.usb: xHCI Host Controller [ 4.088225] xhci-hcd ee000000.usb: new USB bus registered, assigned bus number 3 [ 4.096079] xhci-hcd ee000000.usb: Direct firmware load for r8a779x_usb3_v3.dlmem failed with error -2 [ 4.105504] xhci-hcd ee000000.usb: Falling back to sysfs fallback for: r8a779x_usb3_v3.dlmem [ 4.187329] usb 1-1: new high-speed USB device number 2 using ehci-platform [ 4.354886] hub 1-1:1.0: USB hub found [ 4.358980] hub 1-1:1.0: 2 ports detected [ 64.479717] xhci-hcd ee000000.usb: can't setup: -110 [ 64.484915] xhci-hcd ee000000.usb: USB bus 3 deregistered [ 64.490638] xhci-hcd: probe of ee000000.usb failed with error -110 [ 64.497876] usbcore: registered new interface driver usb-storage [ 64.513056] i2c /dev entries driver [ 64.539277] cs2000-cp 2-004f: revision - C1 [ 64.543766] i2c-rcar e6510000.i2c: probed [ 64.557493] i2c-rcar e66d8000.i2c: probed [ 64.575337] rcar_gen3_thermal e6198000.thermal: TSC0: Loaded 1 trip points [ 64.586678] rcar_gen3_thermal e6198000.thermal: TSC1: Loaded 1 trip points [ 64.597988] rcar_gen3_thermal e6198000.thermal: TSC2: Loaded 2 trip points [ 64.617771] cpu cpu0: EM: created perf domain [ 64.622466] cpufreq: cpufreq_online: CPU0: Running at unlisted initial frequency: 1499999 KHz, changing to: 1500000 KHz [ 64.638166] cpu cpu2: EM: created perf domain [ 64.644697] cpufreq: cpufreq_online: CPU2: Running at unlisted initial frequency: 1199999 KHz, changing to: 1200000 KHz [ 64.662458] sdhci: Secure Digital Host Controller Interface driver [ 64.668711] sdhci: Copyright(c) Pierre Ossman [ 64.675375] Synopsys Designware Multimedia Card Interface Driver [ 64.676658] renesas_sdhi_internal_dmac ee100000.mmc: Got CD GPIO [ 64.685062] sdhci-pltfm: SDHCI platform and OF driver helper [ 64.700717] ledtrig-cpu: registered to indicate activity on CPUs [ 64.709716] SMCCC: SOC_ID: ARCH_SOC_ID not implemented, skipping .... [ 64.718831] usbcore: registered new interface driver usbhid [ 64.724442] usbhid: USB HID core driver [ 64.735728] renesas_sdhi_internal_dmac ee160000.mmc: mmc0 base at 0x00000000ee160000, max clock rate 200 MHz [ 64.750312] ipip: IPv4 and MPLS over IPv4 tunneling driver [ 64.757069] gre: GRE over IPv4 demultiplexor driver [ 64.761990] ip_gre: GRE over IPv4 tunneling driver [ 64.769675] IPv4 over IPsec tunneling driver [ 64.777040] NET: Registered protocol family 10 [ 64.785114] Segment Routing with IPv6 [ 64.791404] ip6_gre: GRE over IPv6 tunneling driver [ 64.797429] NET: Registered protocol family 17 [ 64.802774] 9pnet: Installing 9P2000 support [ 64.807536] Key type dns_resolver registered [ 64.812757] registered taskstats version 1 [ 64.817017] Loading compiled-in X.509 certificates [ 64.854299] mmc0: new HS200 MMC card at address 0001 [ 64.863703] mmcblk0: mmc0:0001 S0J57X 29.6 GiB [ 64.868946] mmcblk0boot0: mmc0:0001 S0J57X partition 1 31.5 MiB [ 64.875838] mmcblk0boot1: mmc0:0001 S0J57X partition 2 31.5 MiB [ 64.883406] mmcblk0rpmb: mmc0:0001 S0J57X partition 3 4.00 MiB, chardev (234:0) [ 64.893338] renesas_irqc e61c0000.interrupt-controller: driving 6 irqs [ 64.971446] ehci-platform ee080100.usb: EHCI Host Controller [ 64.977315] ehci-platform ee080100.usb: new USB bus registered, assigned bus number 3 [ 64.985388] ehci-platform ee080100.usb: irq 160, io mem 0xee080100 [ 65.007283] ehci-platform ee080100.usb: USB 2.0 started, EHCI 1.10 [ 65.016442] hub 3-0:1.0: USB hub found [ 65.020460] hub 3-0:1.0: 1 port detected [ 65.029745] ohci-platform ee080000.usb: Generic Platform OHCI controller [ 65.036545] ohci-platform ee080000.usb: new USB bus registered, assigned bus number 4 [ 65.044632] ohci-platform ee080000.usb: irq 160, io mem 0xee080000 [ 65.139484] hub 4-0:1.0: USB hub found [ 65.143361] hub 4-0:1.0: 1 port detected [ 65.168356] renesas_sdhi_internal_dmac ee100000.mmc: Got CD GPIO [ 65.177902] rcar-dmac e6700000.dma-controller: deferred probe timeout, ignoring dependency [ 65.201439] rcar-dmac e7300000.dma-controller: deferred probe timeout, ignoring dependency [ 65.227651] rcar-dmac e7310000.dma-controller: deferred probe timeout, ignoring dependency [ 65.230950] renesas_sdhi_internal_dmac ee100000.mmc: mmc1 base at 0x00000000ee100000, max clock rate 200 MHz [ 65.252369] rcar-dmac ec700000.dma-controller: deferred probe timeout, ignoring dependency [ 65.275173] rcar-dmac ec720000.dma-controller: deferred probe timeout, ignoring dependency [ 65.290009] renesas_sdhi_internal_dmac ee140000.mmc: mmc2 base at 0x00000000ee140000, max clock rate 200 MHz [ 65.299734] ravb e6800000.ethernet: deferred probe timeout, ignoring dependency [ 65.311894] renesas_sdhi_internal_dmac ee140000.mmc: card claims to support voltages below defined range [ 65.345019] ravb e6800000.ethernet eth0: Base address at 0xe6800000, fc:28:99:92:7b:e1, IRQ 118. [ 65.347493] mmc2: new high speed SDIO card at address 0001 [ 65.360965] IP-Config: Failed to open gretap0 [ 65.365414] IP-Config: Failed to open erspan0 [ 65.381896] RTL8211E Gigabit Ethernet e6800000.ethernet-ffffffff:00: attached PHY driver [RTL8211E Gigabit Ethernet] (mii_bus:phy_addr=e6800000.ethernet-ffffffff:00, irq=166) [ 65.415314] Sending DHCP requests .. [ 69.112095] IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready [ 69.122212] ravb e6800000.ethernet eth0: Link is Up - 1Gbps/Full - flow control off [ 72.079373] ., OK [ 72.177809] IP-Config: Got DHCP answer from 172.16.3.3, my address is 172.16.3.184 [ 72.185568] IP-Config: Complete: [ 72.188917] device=eth0, hwaddr=fc:28:99:92:7b:e1, ipaddr=172.16.3.184, mask=255.255.255.0, gw=172.16.3.3 [ 72.199027] host=172.16.3.184, domain=denx.de, nis-domain=(none) [ 72.205571] bootserver=172.16.3.33, rootserver=172.16.3.3, rootpath= [ 72.205600] nameserver0=172.16.3.3 [ 72.216431] ntpserver0=172.16.3.3 [ 72.224795] ALSA device list: [ 72.228014] No soundcards found. [ 72.268449] Freeing unused kernel memory: 9728K [ 72.273556] Run /init as init process Loading, please wait... Starting version 247.3-7+deb11u1 [ 74.121724] renesas_usbhs e6590000.usb: host probed [ 74.131533] renesas_usbhs e6590000.usb: no transceiver found [ 74.142710] renesas_usbhs e6590000.usb: gadget probed [ 74.155999] CAN device driver interface [ 74.156464] renesas_usbhs e6590000.usb: probed [ 74.174233] Bluetooth: Core ver 2.22 [ 74.178294] NET: Registered protocol family 31 [ 74.182312] rcar_can e6c30000.can: device registered (IRQ121) [ 74.183159] Bluetooth: HCI device and connection manager initialized [ 74.191640] rcar_can e6c38000.can: device registered (IRQ122) [ 74.195476] Bluetooth: HCI socket layer initialized [ 74.205739] Bluetooth: L2CAP socket layer initialized [ 74.211085] Bluetooth: SCO socket layer initialized [ 74.227622] renesas_usb3 ee020000.usb: probed with phy [ 74.229221] Bluetooth: HCI UART driver ver 2.3 [ 74.237559] Bluetooth: HCI UART protocol H4 registered [ 74.243156] Bluetooth: HCI UART protocol LL registered [ 74.246420] rcar_sound ec500000.sound: probed [ 74.249701] Bluetooth: HCI UART protocol Broadcom registered [ 74.258863] Bluetooth: HCI UART protocol QCA registered [ 74.268053] mc: Linux media interface: v0.10 [ 74.268844] rcar-fcp fea27000.fcp: deferred probe timeout, ignoring dependency [ 74.281342] rcar-fcp fea2f000.fcp: deferred probe timeout, ignoring dependency [ 74.293980] rcar-fcp fea37000.fcp: deferred probe timeout, ignoring dependency [ 74.303317] rcar-fcp fe9af000.fcp: deferred probe timeout, ignoring dependency [ 74.305133] videodev: Linux video capture interface: v2.00 [ 74.366039] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 [ 74.376523] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts [ 74.379930] rcar-dw-hdmi fead0000.hdmi: Detected HDMI TX controller v2.01a with HDCP (DWC HDMI 2.0 TX PHY) [ 74.406339] rcar-dw-hdmi fead0000.hdmi: registered DesignWare HDMI I2C bus driver [ 74.468421] rcar_fdp1 fe940000.fdp1: Device registered as /dev/video6 [ 74.570149] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts [ 74.579817] Bluetooth: hci0: download firmware failed, retrying... [ 74.652304] cfg80211: Loading compiled-in X.509 certificates for regulatory database [ 74.690575] [drm] Initialized rcar-du 1.0.0 20130110 for feb00000.display on minor 0 [ 74.696841] cfg80211: Loaded X.509 cert 'sforshee: 00b28ddf47aef9cea7' [ 74.698632] [drm] Device feb00000.display probed [ 74.706137] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 [ 74.706372] platform regulatory.0: Direct firmware load for regulatory.db failed with error -2 [ 74.706400] platform regulatory.0: Falling back to sysfs fallback for: regulatory.db [ 74.711065] cfg80211: failed to load regulatory.db [ 74.712120] rcar-du feb00000.display: [drm] Cannot find any crtc or sizes [ 74.719820] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts [ 74.761560] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts [ 74.770896] Bluetooth: hci0: download firmware failed, retrying... [ 74.893652] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 [ 74.903934] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts [ 74.918783] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts [ 74.925411] wl18xx_driver wl18xx.2.auto: Direct firmware load for ti-connectivity/wl1271-nvs.bin failed with error -2 [ 74.928180] Bluetooth: hci0: download firmware failed, retrying... [ 74.942768] wl18xx_driver wl18xx.2.auto: Falling back to sysfs fallback for: ti-connectivity/wl1271-nvs.bin [ 74.963909] wl18xx_driver wl18xx.2.auto: Direct firmware load for ti-connectivity/wl18xx-conf.bin failed with error -2 [ 74.975398] wl18xx_driver wl18xx.2.auto: Falling back to sysfs fallback for: ti-connectivity/wl18xx-conf.bin Begin: Loading essential drivers ... done. [ 74.993647] wlcore: ERROR could not get configuration binary ti-connectivity/wl18xx-conf.bin: -2 Begin: Running /scripts/[ 75.003328] wlcore: WARNING falling back to default config init-premount ... done. Begin: Mounting root file system ... Begin: Running /scripts/nfs-top ... done. Begin: Running /scripts/nfs-premount ... Waiting up to 60 secs for any ethernet to become available Device /sys/class/net/erspan0 found [ 75.063953] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 [ 75.074782] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts done. [ 75.093040] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts [ 75.102510] Bluetooth: hci0: download firmware failed, retrying... IP-Config: eth0 hardware address fc:28:99:92:7b:e1 mtu 1500 DHCP IP-Config: gretap0 hardware address 00:00:00:00:00:00 mtu 1462 DHCP SIOCSIFFLAGS: Cannot assign requested address IP-Config: erspan0 hardware address 00:00:00:00:00:00 mtu 1450 DHCP SIOCSIFFLAGS: Cannot assign requested address IP-Config: eth0 complete (dhcp from 172.16.3.3): address: 172.16.3.184 broadcast: 172.16.3.255 netmask: 255.255.255.0 gateway: 172.16.3.3 dns0 : 172.16.3.3 dns1 : 0.0.0.0 domain : denx.de rootserver: 172.16.3.33 rootpath: filename : this-host-is-not-configured.kpxe done. Begin: Running /scripts/nfs-bottom ... done. Begin: Running /scripts/init-bottom ... [ 75.549438] wlcore: wl18xx HW: 183x or 180x, PG 2.2 (ROM 0x11) [ 75.616281] wlcore: loaded done. [ 76.691817] systemd[1]: System time before build time, advancing clock. [ 76.953563] systemd[1]: systemd 247.3-7+deb11u1 running in system mode. (+PAM +AUDIT +SELINUX +IMA +APPARMOR +SMACK +SYSVINIT +UTMP +LIBCRYPTSETUP +GCRYPT +GNUTLS +ACL +XZ +LZ4 +ZSTD +SECCOMP +BLKID +ELFUTILS +KMOD +IDN2 -IDN +PCRE2 default-hierarchy=unified) [ 76.980698] systemd[1]: Detected architecture arm64. Welcome to [1mDebian GNU/Linux 11 (bullseye)[0m! [ 77.024794] systemd[1]: Set hostname to . [ 78.308227] systemd[1]: Queued start job for default target Graphical Interface. [ 78.318999] random: systemd: uninitialized urandom read (16 bytes read) [ 78.338121] systemd[1]: Created slice system-getty.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-getty.slice[0m. [ 78.359776] random: systemd: uninitialized urandom read (16 bytes read) [ 78.370434] systemd[1]: Created slice system-modprobe.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-modprobe.slice[0m. [ 78.391644] random: systemd: uninitialized urandom read (16 bytes read) [ 78.404434] systemd[1]: Created slice system-serial\x2dgetty.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-serial\x2dgetty.slice[0m. [ 78.431046] systemd[1]: Created slice User and Session Slice. [[0;32m OK [0m] Created slice [0;1;39mUser and Session Slice[0m. [ 78.453434] systemd[1]: Started Dispatch Password Requests to Console Directory Watch. [[0;32m OK [0m] Started [0;1;39mDispatch Password …ts to Console Directory Watch[0m. [ 78.480987] systemd[1]: Started Forward Password Requests to Wall Directory Watch. [[0;32m OK [0m] Started [0;1;39mForward Password R…uests to Wall Directory Watch[0m. [ 78.507922] systemd[1]: Condition check resulted in Arbitrary Executable File Formats File System Automount Point being skipped. [ 78.520043] systemd[1]: Reached target Local Encrypted Volumes. [[0;32m OK [0m] Reached target [0;1;39mLocal Encrypted Volumes[0m. [ 78.543774] systemd[1]: Reached target Paths. [[0;32m OK [0m] Reached target [0;1;39mPaths[0m. [ 78.563941] systemd[1]: Reached target Remote File Systems. [[0;32m OK [0m] Reached target [0;1;39mRemote File Systems[0m. [ 78.587887] systemd[1]: Reached target Slices. [[0;32m OK [0m] Reached target [0;1;39mSlices[0m. [ 78.608011] systemd[1]: Reached target Swap. [[0;32m OK [0m] Reached target [0;1;39mSwap[0m. [ 78.630608] systemd[1]: Listening on initctl Compatibility Named Pipe. [[0;32m OK [0m] Listening on [0;1;39minitctl Compatibility Named Pipe[0m. [ 78.661483] systemd[1]: Listening on Journal Audit Socket. [[0;32m OK [0m] Listening on [0;1;39mJournal Audit Socket[0m. [ 78.690365] systemd[1]: Listening on Journal Socket (/dev/log). [[0;32m OK [0m] Listening on [0;1;39mJournal Socket (/dev/log)[0m. [ 78.721695] systemd[1]: Listening on Journal Socket. [[0;32m OK [0m] Listening on [0;1;39mJournal Socket[0m. [ 78.748879] systemd[1]: Listening on Network Service Netlink Socket. [[0;32m OK [0m] Listening on [0;1;39mNetwork Service Netlink Socket[0m. [ 78.780051] systemd[1]: Listening on udev Control Socket. [[0;32m OK [0m] Listening on [0;1;39mudev Control Socket[0m. [ 78.807520] systemd[1]: Listening on udev Kernel Socket. [[0;32m OK [0m] Listening on [0;1;39mudev Kernel Socket[0m. [ 78.859199] systemd[1]: Mounting Huge Pages File System... Mounting [0;1;39mHuge Pages File System[0m... [ 78.905097] systemd[1]: Mounting POSIX Message Queue File System... Mounting [0;1;39mPOSIX Message Queue File System[0m... [ 78.955543] systemd[1]: Mounting Kernel Debug File System... Mounting [0;1;39mKernel Debug File System[0m... [ 79.002545] systemd[1]: Mounting Kernel Trace File System... Mounting [0;1;39mKernel Trace File System[0m... [ 79.049110] systemd[1]: Starting Create list of static device nodes for the current kernel... Starting [0;1;39mCreate list of st…odes for the current kernel[0m... [ 79.094794] systemd[1]: Starting Load Kernel Module configfs... Starting [0;1;39mLoad Kernel Module configfs[0m... [ 79.135772] systemd[1]: Starting Load Kernel Module drm... Starting [0;1;39mLoad Kernel Module drm[0m... [ 79.176013] systemd[1]: Starting Load Kernel Module fuse... Starting [0;1;39mLoad Kernel Module fuse[0m... [ 79.203058] systemd[1]: Condition check resulted in Set Up Additional Binary Formats being skipped. [ 79.236354] systemd[1]: Starting Journal Service... Starting [0;1;39mJournal Service[0m... [ 79.263293] fuse: init (API version 7.32) [ 79.274612] systemd[1]: Starting Load Kernel Modules... Starting [0;1;39mLoad Kernel Modules[0m... [ 79.311959] systemd[1]: Starting Remount Root and Kernel File Systems... Starting [0;1;39mRemount Root and Kernel File Systems[0m... [ 79.340042] random: systemd: uninitialized urandom read (16 bytes read) [ 79.359514] systemd[1]: Starting Coldplug All udev Devices... Starting [0;1;39mColdplug All udev Devices[0m... [ 79.404332] random: systemd-journal: uninitialized urandom read (16 bytes read) [ 79.413304] systemd[1]: Mounted Huge Pages File System. [[0;32m OK [0m] Mounted [0;1;39mHuge Pages File System[0m. [ 79.437861] systemd[1]: Mounted POSIX Message Queue File System. [[0;32m OK [0m] Mounted [0;1;39mPOSIX Message Queue File System[0m. [ 79.466245] systemd[1]: Mounted Kernel Debug File System. [[0;32m OK [0m] Mounted [0;1;39mKernel Debug File System[0m. [ 79.489921] systemd[1]: Mounted Kernel Trace File System. [[0;32m OK [0m] Mounted [0;1;39mKernel Trace File System[0m. [ 79.523928] systemd[1]: Finished Create list of static device nodes for the current kernel. [[0;32m OK [0m] Finished [0;1;39mCreate list of st… nodes for the current kernel[0m. [ 79.567855] systemd[1]: modprobe@configfs.service: Succeeded. [ 79.581751] systemd[1]: Finished Load Kernel Module configfs. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module configfs[0m. [ 79.615313] systemd[1]: modprobe@drm.service: Succeeded. [ 79.628653] systemd[1]: Finished Load Kernel Module drm. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module drm[0m. [ 79.659397] systemd[1]: modprobe@fuse.service: Succeeded. [ 79.674425] systemd[1]: Finished Load Kernel Module fuse. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module fuse[0m. [ 79.704305] random: systemd-journal: uninitialized urandom read (16 bytes read) [ 79.705322] systemd[1]: Finished Load Kernel Modules. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Modules[0m. [ 79.733061] systemd[1]: Started Journal Service. [[0;32m OK [0m] Started [0;1;39mJournal Service[0m. [[0;32m OK [0m] Finished [0;1;39mRemount Root and Kernel File Systems[0m. Mounting [0;1;39mFUSE Control File System[0m... Mounting [0;1;39mKernel Configuration File System[0m... Starting [0;1;39mFlush Journal to Persistent Storage[0m... Starting [0;1;39mLoad/Save Random Seed[0m... Starting [0;1;39mApply Kernel Variables[0m... Starting [0;1;39mCreate System Users[0m... [ 79.982149] systemd-journald[372]: Received client request to flush runtime journal. [[0;32m OK [0m] Mounted [0;1;39mFUSE Control File System[0m. [[0;32m OK [0m] Mounted [0;1;39mKernel Configuration File System[0m. [[0;32m OK [0m] Finished [0;1;39mApply Kernel Variables[0m. [ 80.915793] random: crng init done [ 80.919606] random: 49 urandom warning(s) missed due to ratelimiting [[0;32m OK [0m] Finished [0;1;39mColdplug All udev Devices[0m. [[0;32m OK [0m] Finished [0;1;39mLoad/Save Random Seed[0m. [[0;32m OK [0m] Finished [0;1;39mFlush Journal to Persistent Storage[0m. [[0;32m OK [0m] Finished [0;1;39mCreate System Users[0m. Starting [0;1;39mCreate Static Device Nodes in /dev[0m... [[0;32m OK [0m] Finished [0;1;39mCreate Static Device Nodes in /dev[0m. [[0;32m OK [0m] Reached target [0;1;39mLocal File Systems (Pre)[0m. [[0;32m OK [0m] Reached target [0;1;39mLocal File Systems[0m. Starting [0;1;39mCreate Volatile Files and Directories[0m... Starting [0;1;39mRule-based Manage…for Device Events and Files[0m... [[0;32m OK [0m] Started [0;1;39mRule-based Manager for Device Events and Files[0m. Starting [0;1;39mNetwork Service[0m... [[0;32m OK [0m] Finished [0;1;39mCreate Volatile Files and Directories[0m. Starting [0;1;39mNetwork Time Synchronization[0m... Starting [0;1;39mUpdate UTMP about System Boot/Shutdown[0m... [[0;32m OK [0m] Started [0;1;39mNetwork Service[0m. Starting [0;1;39mNetwork Name Resolution[0m... [[0;32m OK [0m] Finished [0;1;39mUpdate UTMP about System Boot/Shutdown[0m. [[0;32m OK [0m] Reached target [0;1;39mHardware activated USB gadget[0m. [[0;32m OK [0m] Found device [0;1;39m/dev/ttySC0[0m. [[0;32m OK [0m] Reached target [0;1;39mBluetooth[0m. [[0;32m OK [0m] Reached target [0;1;39mSound Card[0m. [[0;32m OK [0m] Listening on [0;1;39mLoad/Save RF …itch Status /dev/rfkill Watch[0m. Starting [0;1;39mLoad/Save RF Kill Switch Status[0m... [[0;32m OK [0m] Started [0;1;39mNetwork Time Synchronization[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Initialization[0m. [[0;32m OK [0m] Started [0;1;39mDaily Cleanup of Temporary Directories[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Time Set[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Time Synchronized[0m. [[0;32m OK [0m] Started [0;1;39mDaily apt download activities[0m. [[0;32m OK [0m] Started [0;1;39mDaily apt upgrade and clean activities[0m. [[0;32m OK [0m] Started [0;1;39mPeriodic ext4 Onli…ata Check for All Filesystems[0m. [[0;32m OK [0m] Started [0;1;39mDiscard unused blocks once a week[0m. [[0;32m OK [0m] Reached target [0;1;39mTimers[0m. [[0;32m OK [0m] Listening on [0;1;39mD-Bus System Message Bus Socket[0m. [[0;32m OK [0m] Reached target [0;1;39mSockets[0m. [[0;32m OK [0m] Reached target [0;1;39mBasic System[0m. [[0;32m OK [0m] Started [0;1;39mD-Bus System Message Bus[0m. Starting [0;1;39mRemove Stale Onli…t4 Metadata Check Snapshots[0m... Starting [0;1;39mUser Login Management[0m... [[0;32m OK [0m] Started [0;1;39mNetwork Name Resolution[0m. [[0;32m OK [0m] Started [0;1;39mLoad/Save RF Kill Switch Status[0m. [[0;32m OK [0m] Finished [0;1;39mRemove Stale Onli…ext4 Metadata Check Snapshots[0m. [[0;32m OK [0m] Reached target [0;1;39mNetwork[0m. [[0;32m OK [0m] Reached target [0;1;39mHost and Network Name Lookups[0m. Starting [0;1;39mPermit User Sessions[0m... [[0;32m OK [0m] Finished [0;1;39mPermit User Sessions[0m. [[0;32m OK [0m] Started [0;1;39mGetty on tty1[0m. [[0;32m OK [0m] Started [0;1;39mSerial Getty on ttySC0[0m. [[0;32m OK [0m] Reached target [0;1;39mLogin Prompts[0m. [[0;32m OK [0m] Started [0;1;39mUser Login Management[0m. [[0;32m OK [0m] Reached target [0;1;39mMulti-User System[0m. [[0;32m OK [0m] Reached target [0;1;39mGraphical Interface[0m. Starting [0;1;39mUpdate UTMP about System Runlevel Changes[0m... [[0;32m OK [0m] Finished [0;1;39mUpdate UTMP about System Runlevel Changes[0m. Debian GNU/Linux 11 debian-bullseye-arm64 ttySC0 debian-bullseye-arm64 login: root (automatic login) Linux debian-bullseye-arm64 5.10.166-cip25 #1 SMP PREEMPT Wed Feb 1 09:40:25 UTC 2023 aarch64 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. / # / # export NFS_ROOTFS='/var/lib/lava/dispatcher/tmp/838654/extract-nfsrootfs-4e9ijj7p' export NFS_ROOTFS='/var/lib/lava/dispatcher/tmp/838654/extract-nfsrootfs-4e9ijj7p' / # export NFS_SERVER_IP='172.16.3.3' export NFS_SERVER_IP='172[ 103.393900] SDHI0 VccQ: disabling .16.3.3' / # # # / # export SHELL=/bin/bash export SHELL=/bin/bash / # . /lava-838654/environment . /lava-838654/environment / # /lava-838654/bin/lava-test-runner /lava-838654/0 /lava-838654/bin/lava-test-runner /lava-838654/0 + export TESTRUN_ID=0_timesync-off + TESTRUN_ID=0_timesync-off + cd /lava-838654/0/tests/0_timesync-off ++ cat uuid + UUID=838654_1.6.2.4.1 + set +x + systemctl stop systemd-timesyncd + set +x + export TESTRUN_ID=1_kselftest-lkdtm + TESTRUN_ID=1_kselftest-lkdtm + cd /lava-838654/0/tests/1_kselftest-lkdtm ++ cat uuid + UUID=838654_1.6.2.4.5 + set +x + cd ./automated/linux/kselftest/ + ./kselftest.sh -c lkdtm -T '' -t kselftest_armhf.tar.gz -s True -u http://storage.kernelci.org/cip-gitlab/ci-iwamatsu-linux-5.10.y-cip-rc/v5.10.165-cip25-144-g43e1d8dfbb26/arm64/defconfig+kselftest/gcc-10/kselftest.tar.xz -L '' -S skipfile-lkft.yaml -b r8a774a1-hihope-rzg2m-ex -g cip-gitlab -e '' -p /opt/kselftests/mainline/ -n 1 -i 1 INFO: Generating a skipfile based on /lava-838654/0/tests/1_kselftest-lkdtm/automated/linux/kselftest/skipfile-lkft.yaml INFO: Using the following generated skipfile contents (until EOF): breakpoints:breakpoint_test breakpoints:step_after_suspend_test ftrace:ftracetest net:rtnetlink.sh net:tls netfilter:bridge_brouter.sh netfilter:nft_flowtable.sh netfilter:nft_trans_stress.sh pidfd:pidfd_wait INFO: EOF INFO: install_deps skipped --2023-02-01 11:44:11-- http://storage.kernelci.org/cip-gitlab/ci-iwamatsu-linux-5.10.y-cip-rc/v5.10.165-cip25-144-g43e1d8dfbb26/arm64/defconfig+kselftest/gcc-10/kselftest.tar.xz Resolving storage.kernelci.org (storage.kernelci.org)... 52.250.1.28 Connecting to storage.kernelci.org (storage.kernelci.org)|52.250.1.28|:80... connected. HTTP request sent, awaiting response... 200 OK Length: 1738072 (1.7M) [application/octet-stream] Saving to: 'kselftest.tar.xz' kselftest.tar.xz 0%[ ] 0 --.-KB/s kselftest.tar.xz 2%[ ] 43.32K 158KB/s kselftest.tar.xz 6%[> ] 101.95K 202KB/s kselftest.tar.xz 16%[==> ] 279.57K 356KB/s kselftest.tar.xz 25%[====> ] 438.48K 431KB/s kselftest.tar.xz 31%[=====> ] 529.89K 408KB/s kselftest.tar.xz 38%[======> ] 661.64K 401KB/s kselftest.tar.xz 49%[========> ] 842.07K 450KB/s kselftest.tar.xz 52%[=========> ] 891.29K 415KB/s kselftest.tar.xz 57%[==========> ] 979.89K 412KB/s kselftest.tar.xz 61%[===========> ] 1.01M 390KB/s kselftest.tar.xz 66%[============> ] 1.11M 392KB/s kselftest.tar.xz 70%[=============> ] 1.17M 378KB/s eta 1s kselftest.tar.xz 76%[==============> ] 1.26M 380KB/s eta 1s kselftest.tar.xz 80%[===============> ] 1.33M 370KB/s eta 1s kselftest.tar.xz 85%[================> ] 1.42M 388KB/s eta 1s kselftest.tar.xz 89%[================> ] 1.49M 388KB/s eta 0s kselftest.tar.xz 93%[=================> ] 1.56M 351KB/s eta 0s kselftest.tar.xz 98%[==================> ] 1.63M 345KB/s eta 0s kselftest.tar.xz 100%[===================>] 1.66M 333KB/s in 4.7s 2023-02-01 11:44:17 (360 KB/s) - 'kselftest.tar.xz' saved [1738072/1738072] skiplist: ======================================== breakpoints:breakpoint_test breakpoints:step_after_suspend_test ftrace:ftracetest net:rtnetlink.sh net:tls netfilter:bridge_brouter.sh netfilter:nft_flowtable.sh netfilter:nft_trans_stress.sh pidfd:pidfd_wait ======================================== lkdtm:PANIC.sh lkdtm:BUG.sh lkdtm:WARNING.sh lkdtm:WARNING_MESSAGE.sh lkdtm:EXCEPTION.sh lkdtm:LOOP.sh lkdtm:EXHAUST_STACK.sh lkdtm:CORRUPT_STACK.sh lkdtm:CORRUPT_STACK_STRONG.sh lkdtm:CORRUPT_LIST_ADD.sh lkdtm:CORRUPT_LIST_DEL.sh lkdtm:STACK_GUARD_PAGE_LEADING.sh lkdtm:STACK_GUARD_PAGE_TRAILING.sh lkdtm:UNSET_SMEP.sh lkdtm:DOUBLE_FAULT.sh lkdtm:CORRUPT_PAC.sh lkdtm:UNALIGNED_LOAD_STORE_WRITE.sh lkdtm:OVERWRITE_ALLOCATION.sh lkdtm:WRITE_AFTER_FREE.sh lkdtm:READ_AFTER_FREE.sh lkdtm:WRITE_BUDDY_AFTER_FREE.sh lkdtm:READ_BUDDY_AFTER_FREE.sh lkdtm:SLAB_FREE_DOUBLE.sh lkdtm:SLAB_FREE_CROSS.sh lkdtm:SLAB_FREE_PAGE.sh lkdtm:SOFTLOCKUP.sh lkdtm:HARDLOCKUP.sh lkdtm:SPINLOCKUP.sh lkdtm:HUNG_TASK.sh lkdtm:EXEC_DATA.sh lkdtm:EXEC_STACK.sh lkdtm:EXEC_KMALLOC.sh lkdtm:EXEC_VMALLOC.sh lkdtm:EXEC_RODATA.sh lkdtm:EXEC_USERSPACE.sh lkdtm:EXEC_NULL.sh lkdtm:ACCESS_USERSPACE.sh lkdtm:ACCESS_NULL.sh lkdtm:WRITE_RO.sh lkdtm:WRITE_RO_AFTER_INIT.sh lkdtm:WRITE_KERN.sh lkdtm:REFCOUNT_INC_OVERFLOW.sh lkdtm:REFCOUNT_ADD_OVERFLOW.sh lkdtm:REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh lkdtm:REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh lkdtm:REFCOUNT_DEC_ZERO.sh lkdtm:REFCOUNT_DEC_NEGATIVE.sh lkdtm:REFCOUNT_DEC_AND_TEST_NEGATIVE.sh lkdtm:REFCOUNT_SUB_AND_TEST_NEGATIVE.sh lkdtm:REFCOUNT_INC_ZERO.sh lkdtm:REFCOUNT_ADD_ZERO.sh lkdtm:REFCOUNT_INC_SATURATED.sh lkdtm:REFCOUNT_DEC_SATURATED.sh lkdtm:REFCOUNT_ADD_SATURATED.sh lkdtm:REFCOUNT_INC_NOT_ZERO_SATURATED.sh lkdtm:REFCOUNT_ADD_NOT_ZERO_SATURATED.sh lkdtm:REFCOUNT_DEC_AND_TEST_SATURATED.sh lkdtm:REFCOUNT_SUB_AND_TEST_SATURATED.sh lkdtm:REFCOUNT_TIMING.sh lkdtm:ATOMIC_TIMING.sh lkdtm:USERCOPY_HEAP_SIZE_TO.sh lkdtm:USERCOPY_HEAP_SIZE_FROM.sh lkdtm:USERCOPY_HEAP_WHITELIST_TO.sh lkdtm:USERCOPY_HEAP_WHITELIST_FROM.sh lkdtm:USERCOPY_STACK_FRAME_TO.sh lkdtm:USERCOPY_STACK_FRAME_FROM.sh lkdtm:USERCOPY_STACK_BEYOND.sh lkdtm:USERCOPY_KERNEL.sh lkdtm:STACKLEAK_ERASING.sh lkdtm:CFI_FORWARD_PROTO.sh ============== Tests to run =============== lkdtm:PANIC.sh lkdtm:BUG.sh lkdtm:WARNING.sh lkdtm:WARNING_MESSAGE.sh lkdtm:EXCEPTION.sh lkdtm:LOOP.sh lkdtm:EXHAUST_STACK.sh lkdtm:CORRUPT_STACK.sh lkdtm:CORRUPT_STACK_STRONG.sh lkdtm:CORRUPT_LIST_ADD.sh lkdtm:CORRUPT_LIST_DEL.sh lkdtm:STACK_GUARD_PAGE_LEADING.sh lkdtm:STACK_GUARD_PAGE_TRAILING.sh lkdtm:UNSET_SMEP.sh lkdtm:DOUBLE_FAULT.sh lkdtm:CORRUPT_PAC.sh lkdtm:UNALIGNED_LOAD_STORE_WRITE.sh lkdtm:OVERWRITE_ALLOCATION.sh lkdtm:WRITE_AFTER_FREE.sh lkdtm:READ_AFTER_FREE.sh lkdtm:WRITE_BUDDY_AFTER_FREE.sh lkdtm:READ_BUDDY_AFTER_FREE.sh lkdtm:SLAB_FREE_DOUBLE.sh lkdtm:SLAB_FREE_CROSS.sh lkdtm:SLAB_FREE_PAGE.sh lkdtm:SOFTLOCKUP.sh lkdtm:HARDLOCKUP.sh lkdtm:SPINLOCKUP.sh lkdtm:HUNG_TASK.sh lkdtm:EXEC_DATA.sh lkdtm:EXEC_STACK.sh lkdtm:EXEC_KMALLOC.sh lkdtm:EXEC_VMALLOC.sh lkdtm:EXEC_RODATA.sh lkdtm:EXEC_USERSPACE.sh lkdtm:EXEC_NULL.sh lkdtm:ACCESS_USERSPACE.sh lkdtm:ACCESS_NULL.sh lkdtm:WRITE_RO.sh lkdtm:WRITE_RO_AFTER_INIT.sh lkdtm:WRITE_KERN.sh lkdtm:REFCOUNT_INC_OVERFLOW.sh lkdtm:REFCOUNT_ADD_OVERFLOW.sh lkdtm:REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh lkdtm:REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh lkdtm:REFCOUNT_DEC_ZERO.sh lkdtm:REFCOUNT_DEC_NEGATIVE.sh lkdtm:REFCOUNT_DEC_AND_TEST_NEGATIVE.sh lkdtm:REFCOUNT_SUB_AND_TEST_NEGATIVE.sh lkdtm:REFCOUNT_INC_ZERO.sh lkdtm:REFCOUNT_ADD_ZERO.sh lkdtm:REFCOUNT_INC_SATURATED.sh lkdtm:REFCOUNT_DEC_SATURATED.sh lkdtm:REFCOUNT_ADD_SATURATED.sh lkdtm:REFCOUNT_INC_NOT_ZERO_SATURATED.sh lkdtm:REFCOUNT_ADD_NOT_ZERO_SATURATED.sh lkdtm:REFCOUNT_DEC_AND_TEST_SATURATED.sh lkdtm:REFCOUNT_SUB_AND_TEST_SATURATED.sh lkdtm:REFCOUNT_TIMING.sh lkdtm:ATOMIC_TIMING.sh lkdtm:USERCOPY_HEAP_SIZE_TO.sh lkdtm:USERCOPY_HEAP_SIZE_FROM.sh lkdtm:USERCOPY_HEAP_WHITELIST_TO.sh lkdtm:USERCOPY_HEAP_WHITELIST_FROM.sh lkdtm:USERCOPY_STACK_FRAME_TO.sh lkdtm:USERCOPY_STACK_FRAME_FROM.sh lkdtm:USERCOPY_STACK_BEYOND.sh lkdtm:USERCOPY_KERNEL.sh lkdtm:STACKLEAK_ERASING.sh lkdtm:CFI_FORWARD_PROTO.sh ===========End Tests to run =============== [ 215.378093] kselftest: Running tests in lkdtm TAP version 13 1..70 # selftests: lkdtm: PANIC.sh # Skipping PANIC: crashes entire system ok 1 selftests: lkdtm: PANIC.sh # SKIP # selftests: lkdtm: BUG.sh [ 216.609029] lkdtm: Performing direct entry BUG [ 216.613931] ------------[ cut here ]------------ [ 216.618574] kernel BUG at drivers/misc/lkdtm/bugs.c:76! [ 216.624377] Internal error: Oops - BUG: 0 [#1] PREEMPT SMP [ 216.629870] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 216.683235] CPU: 4 PID: 855 Comm: cat Not tainted 5.10.166-cip25 #1 [ 216.689502] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 216.695861] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 216.701884] pc : lkdtm_BUG+0x8/0x10 [ 216.705376] lr : lkdtm_do_action+0x24/0x40 [ 216.709471] sp : ffff8000147fbd10 [ 216.712786] x29: ffff8000147fbd10 x28: ffff0005c817b100 [ 216.718107] x27: 0000000000000000 x26: 0000000000000000 [ 216.723429] x25: ffff8000114e1c88 x24: ffff8000147fbe20 [ 216.728751] x23: 0000000000000004 x22: ffff0005c7b2e000 [ 216.734073] x21: ffff8000119f5038 x20: ffff8000114e1c98 [ 216.739394] x19: 0000000000000001 x18: ffff800012abf790 [ 216.744716] x17: 0000000000000000 x16: 0000000000000000 [ 216.750037] x15: 0000000000000028 x14: 000000000005bc40 [ 216.755358] x13: ffff8000129c1b50 x12: 000000009e6cd794 [ 216.760679] x11: ffff0005c817b988 x10: ffff8000125d8448 [ 216.766000] x9 : ffff800010a070c4 x8 : ffff800012580448 [ 216.771322] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 216.776644] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 [ 216.781965] x3 : 0000000000000000 x2 : 0000000000000000 [ 216.787287] x1 : ffff0005c817b100 x0 : ffff800010a07770 [ 216.792609] Call trace: [ 216.795058] lkdtm_BUG+0x8/0x10 [ 216.798201] direct_entry+0xd0/0x140 [ 216.801782] full_proxy_write+0x68/0xbc [ 216.805623] vfs_write+0xec/0x20c [ 216.808940] ksys_write+0x70/0x100 [ 216.812342] __arm64_sys_write+0x24/0x30 [ 216.816272] el0_svc_common.constprop.0+0x84/0x1e0 [ 216.821065] do_el0_svc+0x2c/0xa4 [ 216.824385] el0_svc+0x20/0x30 [ 216.827441] el0_sync_handler+0xb0/0xb4 [ 216.831281] el0_sync+0x180/0x1c0 [ 216.834602] Code: d503201f d503201f aa1e03e9 d503201f (d4210000) [ 216.840705] ---[ end trace 8a97a63494dae284 ]--- [ 216.845327] note: cat[855] exited with preempt_count 1 [ 216.850470] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 [ 216.859343] in_atomic(): 0, irqs_disabled(): 128, non_block: 0, pid: 855, name: cat [ 216.866999] INFO: lockdep is turned off. [ 216.870923] irq event stamp: 1790 [ 216.874250] hardirqs last enabled at (1789): [] console_unlock+0x530/0x694 [ 216.882781] hardirqs last disabled at (1790): [] el1_dbg+0x24/0x50 [ 216.890528] softirqs last enabled at (1786): [] __do_softirq+0x5b8/0x638 [ 216.898886] softirqs last disabled at (1781): [] __irq_exit_rcu+0x174/0x1a0 [ 216.907421] CPU: 4 PID: 855 Comm: cat Tainted: G D 5.10.166-cip25 #1 [ 216.915082] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 216.921437] Call trace: [ 216.923889] dump_backtrace+0x0/0x200 [ 216.927554] show_stack+0x20/0x30 [ 216.930875] dump_stack+0x110/0x160 [ 216.934369] ___might_sleep+0x158/0x200 [ 216.938207] __might_sleep+0x58/0x90 [ 216.941789] exit_signals+0x34/0x24c [ 216.945367] do_exit+0xd0/0xb84 [ 216.948511] make_task_dead+0x5c/0x90 [ 216.952176] die+0x22c/0x26c [ 216.955059] bug_handler+0x54/0x74 [ 216.958465] call_break_hook+0x70/0x84 [ 216.962217] brk_handler+0x24/0x64 [ 216.965626] do_debug_exception+0xd4/0x150 [ 216.969727] el1_dbg+0x34/0x50 [ 216.972783] el1_sync_handler+0x9c/0xd0 [ 216.976621] el1_sync+0x88/0x140 [ 216.979855] lkdtm_BUG+0x8/0x10 [ 216.982999] direct_entry+0xd0/0x140 [ 216.986579] full_proxy_write+0x68/0xbc [ 216.990420] vfs_write+0xec/0x20c [ 216.993738] ksys_write+0x70/0x100 [ 216.997141] __arm64_sys_write+0x24/0x30 [ 217.001072] el0_svc_common.constprop.0+0x84/0x1e0 [ 217.005866] do_el0_svc+0x2c/0xa4 [ 217.009183] el0_svc+0x20/0x30 [ 217.012240] el0_sync_handler+0xb0/0xb4 [ 217.016078] el0_sync+0x180/0x1c0 [ 217.020753] ------------[ cut here ]------------ # S[ 217.025418] WARNING: CPU: 4 PID: 0 at kernel/rcu/tree.c:624 rcu_eqs_enter.constprop.0+0xe4/0x140 egmentation faul[ 217.034467] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek t [ 217.088992] CPU: 4 PID: 0 Comm: swapper/4 Tainted: G D W 5.10.166-cip25 #1 [ 217.097241] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 217.103614] pstate: 200003c5 (nzCv DAIF -PAN -UAO -TCO BTYPE=--) [ 217.109629] pc : rcu_eqs_enter.constprop.0+0xe4/0x140 [ 217.114686] lr : rcu_idle_enter+0x24/0xe0 [ 217.118694] sp : ffff8000135abef0 [ 217.122007] x29: ffff8000135abef0 x28: 0000000000000000 [ 217.127330] x27: 0000000000000000 x26: ffff0005c02d3100 [ 217.132651] x25: 0000000000000000 x24: 0000000000000000 [ 217.137977] x23: ffff8000125514a0 x22: ffff800011dbe138 [ 217.143301] x21: ffff800012551478 x20: ffff800011dc0380 # [[ 217.148622] x19: ffff00063f7b6380 x18: 0000000000000001 [ 217.154194] x17: 0000000000000000 x16: 0000000000000000 [ 217.159520] x15: 0000000000000000 x14: 0000000000000000 216.609029] lk[ 217.164843] x13: 0000000000000003 x12: 0000000000000040 dtm: Performing [ 217.171538] x11: ffff0005c0400000 x10: 0000000000001440 direct entry BUG[ 217.178236] x9 : ffff80001125585c x8 : ffff0005c02d45a0 [ 217.184924] x7 : ffff80001254b000 x6 : ffff800012551000 # [ 216.613931][ 217.190406] x5 : ffff800012551c88 x4 : 0000000000000001 ------------[ c[ 217.197100] x3 : 0000000000000000 x2 : ffff0005c02d3100 ut here ]-------[ 217.203792] x1 : 4000000000000002 x0 : 4000000000000000 ----- # [ 216.[ 217.210486] Call trace: 618574] kernel B[ 217.214322] rcu_eqs_enter.constprop.0+0xe4/0x140 UG at drivers/mi[ 217.220402] rcu_idle_enter+0x24/0xe0 sc/lkdtm/bugs.c:[ 217.225447] default_idle_call+0x58/0x100 76! # [ 216.62[ 217.230838] do_idle+0x258/0x2d0 4377] Internal e[ 217.235443] cpu_startup_entry+0x30/0x6c rror: Oops - BUG[ 217.240750] secondary_start_kernel+0x14c/0x1a0 : 0 [#1] PREEMPT[ 217.246655] irq event stamp: 459476 SMP # [ 216.6[ 217.251529] hardirqs last enabled at (459475): [] tick_nohz_idle_exit+0x78/0x1c4 29870] Modules l[ 217.261952] hardirqs last disabled at (459476): [] __schedule+0x690/0x9e0 inked in: fuse i[ 217.271684] softirqs last enabled at (459470): [] _local_bh_enable+0x2c/0x50 p_tables x_table[ 217.281758] softirqs last disabled at (459469): [] irq_enter_rcu+0x7c/0xa0 s wl18xx wlcore [ 217.291573] ---[ end trace 8a97a63494dae285 ]--- mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 216.683235] CPU: 4 PID: 855 Comm: cat Not tainted 5.10.166-cip25 #1 # [ 216.689502] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 216.695861] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 216.701884] pc : lkdtm_BUG+0x8/0x10 # [ 216.705376] lr : lkdtm_do_action+0x24/0x40 # [ 216.709471] sp : ffff8000147fbd10 # [ 216.712786] x29: ffff8000147fbd10 x28: ffff0005c817b100 # [ 216.718107] x27: 0000000000000000 x26: 0000000000000000 # [ 216.723429] x25: ffff8000114e1c88 x24: ffff8000147fbe20 # [ 216.728751] x23: 0000000000000004 x22: ffff0005c7b2e000 # [ 216.734073] x21: ffff8000119f5038 x20: ffff8000114e1c98 # [ 216.739394] x19: 0000000000000001 x18: ffff800012abf790 # [ 216.744716] x17: 0000000000000000 x16: 0000000000000000 # [ 216.750037] x15: 0000000000000028 x14: 000000000005bc40 # [ 216.755358] x13: ffff8000129c1b50 x12: 000000009e6cd794 # [ 216.760679] x11: ffff0005c817b988 x10: ffff8000125d8448 # [ 216.766000] x9 : ffff800010a070c4 x8 : ffff800012580448 # [ 216.771322] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 216.776644] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 # [ 216.781965] x3 : 0000000000000000 x2 : 0000000000000000 # [ 216.787287] x1 : ffff0005c817b100 x0 : ffff800010a07770 # [ 216.792609] Call trace: # [ 216.795058] lkdtm_BUG+0x8/0x10 # [ 216.798201] direct_entry+0xd0/0x140 # [ 216.801782] full_proxy_write+0x68/0xbc # [ 216.805623] vfs_write+0xec/0x20c # [ 216.808940] ksys_write+0x70/0x100 # [ 216.812342] __arm64_sys_write+0x24/0x30 # [ 216.816272] el0_svc_common.constprop.0+0x84/0x1e0 # [ 216.821065] do_el0_svc+0x2c/0xa4 # [ 216.824385] el0_svc+0x20/0x30 # [ 216.827441] el0_sync_handler+0xb0/0xb4 # [ 216.831281] el0_sync+0x180/0x1c0 # [ 216.834602] Code: d503201f d503201f aa1e03e9 d503201f (d4210000) # [ 216.840705] ---[ end trace 8a97a63494dae284 ]--- # [ 216.845327] note: cat[855] exited with preempt_count 1 # [ 216.850470] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 # [ 216.859343] in_atomic(): 0, irqs_disabled(): 128, non_block: 0, pid: 855, name: cat # [ 216.866999] INFO: lockdep is turned off. # [ 216.870923] irq event stamp: 1790 # [ 216.874250] hardirqs last enabled at (1789): [] console_unlock+0x530/0x694 # [ 216.882781] hardirqs last disabled at (1790): [] el1_dbg+0x24/0x50 # [ 216.890528] softirqs last enabled at (1786): [] __do_softirq+0x5b8/0x638 # [ 216.898886] softirqs last disabled at (1781): [] __irq_exit_rcu+0x174/0x1a0 # [ 216.907421] CPU: 4 PID: 855 Comm: cat Tainted: G D 5.10.166-cip25 #1 # [ 216.915082] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 216.921437] Call trace: # [ 216.923889] dump_backtrace+0x0/0x200 # [ 216.927554] show_stack+0x20/0x30 # [ 216.930875] dump_stack+0x110/0x160 # [ 216.934369] ___might_sleep+0x158/0x200 # [ 216.938207] __might_sleep+0x58/0x90 # [ 216.941789] exit_signals+0x34/0x24c # [ 216.945367] do_exit+0xd0/0xb84 # [ 216.948511] make_task_dead+0x5c/0x90 # [ 216.952176] die+0x22c/0x26c # [ 216.955059] bug_handler+0x54/0x74 # [ 216.958465] call_break_hook+0x70/0x84 # [ 216.962217] brk_handler+0x24/0x64 # [ 216.965626] do_debug_exception+0xd4/0x150 # [ 216.969727] el1_dbg+0x34/0x50 # [ 216.972783] el1_sync_handler+0x9c/0xd0 # [ 216.976621] el1_sync+0x88/0x140 # [ 216.979855] lkdtm_BUG+0x8/0x10 # [ 216.982999] direct_entry+0xd0/0x140 # [ 216.986579] full_proxy_write+0x68/0xbc # [ 216.990420] vfs_write+0xec/0x20c # [ 216.993738] ksys_write+0x70/0x100 # [ 216.997141] __arm64_sys_write+0x24/0x30 # [ 217.001072] el0_svc_common.constprop.0+0x84/0x1e0 # [ 217.005866] do_el0_svc+0x2c/0xa4 # [ 217.009183] el0_svc+0x20/0x30 # [ 217.012240] el0_sync_handler+0xb0/0xb4 # [ 217.016078] el0_sync+0x180/0x1c0 # [ 217.020753] ------------[ cut here ]------------ # [ 217.025418] WARNING: CPU: 4 PID: 0 at kernel/rcu/tree.c:624 rcu_eqs_enter.constprop.0+0xe4/0x140 # [ 217.034467] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # BUG: saw 'kernel BUG at': ok ok 2 selftests: lkdtm: BUG.sh # selftests: lkdtm: WARNING.sh [ 219.173377] lkdtm: Performing direct entry WARNING [ 219.178391] ------------[ cut here ]------------ [ 219.183031] WARNING: CPU: 5 PID: 893 at drivers/misc/lkdtm/bugs.c:83 lkdtm_WARNING+0x28/0x34 [ 219.191469] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 219.244850] CPU: 5 PID: 893 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 219.252505] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 219.258863] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 219.264872] pc : lkdtm_WARNING+0x28/0x34 [ 219.268796] lr : lkdtm_do_action+0x24/0x40 [ 219.272892] sp : ffff8000148a3d10 [ 219.276207] x29: ffff8000148a3d10 x28: ffff0005c82db100 [ 219.281529] x27: 0000000000000000 x26: 0000000000000000 [ 219.286850] x25: ffff8000114e1c88 x24: ffff8000148a3e20 [ 219.292172] x23: 0000000000000008 x22: ffff0005c95fa000 [ 219.297493] x21: ffff8000119f5040 x20: ffff8000114e1ca8 [ 219.302814] x19: 0000000000000002 x18: 0000000000000000 [ 219.308136] x17: 0000000000000000 x16: 0000000000000000 [ 219.313457] x15: 0000000000000030 x14: ffffffffffffffff [ 219.318778] x13: ffff8000948a3a07 x12: ffff8000148a3a0f [ 219.324100] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 219.329421] x9 : ffff800010a070c4 x8 : ffff800012580448 [ 219.334742] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 219.340063] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 [ 219.345385] x3 : 0000000000000000 x2 : 0000000000000000 [ 219.350706] x1 : ffff80001348f000 x0 : 0000000000000001 [ 219.356028] Call trace: [ 219.358477] lkdtm_WARNING+0x28/0x34 [ 219.362054] direct_entry+0xd0/0x140 [ 219.365635] full_proxy_write+0x68/0xbc [ 219.369476] vfs_write+0xec/0x20c [ 219.372792] ksys_write+0x70/0x100 [ 219.376195] __arm64_sys_write+0x24/0x30 [ 219.380125] el0_svc_common.constprop.0+0x84/0x1e0 [ 219.384918] do_el0_svc+0x2c/0xa4 [ 219.388238] el0_svc+0x20/0x30 [ 219.391294] el0_sync_handler+0xb0/0xb4 [ 219.395133] el0_sync+0x180/0x1c0 [ 219.398449] irq event stamp: 0 [ 219.401510] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 219.407785] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 219.415966] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 219.424143] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 219.430409] ---[ end trace 8a97a63494dae286 ]--- # [ 219.173377] lkdtm: Performing direct entry WARNING # [ 219.178391] ------------[ cut here ]------------ # [ 219.183031] WARNING: CPU: 5 PID: 893 at drivers/misc/lkdtm/bugs.c:83 lkdtm_WARNING+0x28/0x34 # [ 219.191469] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 219.244850] CPU: 5 PID: 893 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 219.252505] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 219.258863] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 219.264872] pc : lkdtm_WARNING+0x28/0x34 # [ 219.268796] lr : lkdtm_do_action+0x24/0x40 # [ 219.272892] sp : ffff8000148a3d10 # [ 219.276207] x29: ffff8000148a3d10 x28: ffff0005c82db100 # [ 219.281529] x27: 0000000000000000 x26: 0000000000000000 # [ 219.286850] x25: ffff8000114e1c88 x24: ffff8000148a3e20 # [ 219.292172] x23: 0000000000000008 x22: ffff0005c95fa000 # [ 219.297493] x21: ffff8000119f5040 x20: ffff8000114e1ca8 # [ 219.302814] x19: 0000000000000002 x18: 0000000000000000 # [ 219.308136] x17: 0000000000000000 x16: 0000000000000000 # [ 219.313457] x15: 0000000000000030 x14: ffffffffffffffff # [ 219.318778] x13: ffff8000948a3a07 x12: ffff8000148a3a0f # [ 219.324100] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 219.329421] x9 : ffff800010a070c4 x8 : ffff800012580448 # [ 219.334742] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 219.340063] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 # [ 219.345385] x3 : 0000000000000000 x2 : 0000000000000000 # [ 219.350706] x1 : ffff80001348f000 x0 : 0000000000000001 # [ 219.356028] Call trace: # [ 219.358477] lkdtm_WARNING+0x28/0x34 # [ 219.362054] direct_entry+0xd0/0x140 # [ 219.365635] full_proxy_write+0x68/0xbc # [ 219.369476] vfs_write+0xec/0x20c # [ 219.372792] ksys_write+0x70/0x100 # [ 219.376195] __arm64_sys_write+0x24/0x30 # [ 219.380125] el0_svc_common.constprop.0+0x84/0x1e0 # [ 219.384918] do_el0_svc+0x2c/0xa4 # [ 219.388238] el0_svc+0x20/0x30 # [ 219.391294] el0_sync_handler+0xb0/0xb4 # [ 219.395133] el0_sync+0x180/0x1c0 # [ 219.398449] irq event stamp: 0 # [ 219.401510] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 219.407785] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 219.415966] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 219.424143] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 219.430409] ---[ end trace 8a97a63494dae286 ]--- # WARNING: saw 'WARNING:': ok ok 3 selftests: lkdtm: WARNING.sh # selftests: lkdtm: WARNING_MESSAGE.sh [ 221.163323] lkdtm: Performing direct entry WARNING_MESSAGE [ 221.169015] ------------[ cut here ]------------ [ 221.173703] Warning message trigger count: 2 [ 221.178252] WARNING: CPU: 4 PID: 928 at drivers/misc/lkdtm/bugs.c:88 lkdtm_WARNING_MESSAGE+0x30/0x40 [ 221.187388] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 221.240770] CPU: 4 PID: 928 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 221.248426] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 221.254785] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 221.260794] pc : lkdtm_WARNING_MESSAGE+0x30/0x40 [ 221.265412] lr : lkdtm_WARNING_MESSAGE+0x30/0x40 [ 221.270029] sp : ffff80001494bd00 [ 221.273343] x29: ffff80001494bd00 x28: ffff0005c0de4980 [ 221.278664] x27: 0000000000000000 x26: 0000000000000000 [ 221.283986] x25: ffff8000114e1c88 x24: ffff80001494be20 [ 221.289307] x23: 0000000000000010 x22: ffff0005c0a56000 [ 221.294629] x21: ffff8000119f5048 x20: ffff8000114e1cb8 [ 221.299951] x19: 0000000000000003 x18: 0000000000000000 [ 221.305272] x17: 0000000000000000 x16: 0000000000000000 [ 221.310593] x15: 0000000000000030 x14: ffffffffffffffff [ 221.315915] x13: ffff80009494b9a7 x12: ffff80001494b9af [ 221.321236] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 221.326557] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 221.331878] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 221.337200] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 [ 221.342521] x3 : 0000000000000000 x2 : 0000000000000000 [ 221.347842] x1 : 0000000000000000 x0 : ffff0005c0de4980 [ 221.353164] Call trace: [ 221.355613] lkdtm_WARNING_MESSAGE+0x30/0x40 [ 221.359886] lkdtm_do_action+0x24/0x40 [ 221.363637] direct_entry+0xd0/0x140 [ 221.367218] full_proxy_write+0x68/0xbc [ 221.371058] vfs_write+0xec/0x20c [ 221.374374] ksys_write+0x70/0x100 [ 221.377777] __arm64_sys_write+0x24/0x30 [ 221.381708] el0_svc_common.constprop.0+0x84/0x1e0 [ 221.386501] do_el0_svc+0x2c/0xa4 [ 221.389821] el0_svc+0x20/0x30 [ 221.392877] el0_sync_handler+0xb0/0xb4 [ 221.396716] el0_sync+0x180/0x1c0 [ 221.400031] irq event stamp: 0 [ 221.403093] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 221.409368] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 221.417547] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 221.425724] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 221.431991] ---[ end trace 8a97a63494dae287 ]--- # [ 221.163323] lkdtm: Performing direct entry WARNING_MESSAGE # [ 221.169015] ------------[ cut here ]------------ # [ 221.173703] Warning message trigger count: 2 # [ 221.178252] WARNING: CPU: 4 PID: 928 at drivers/misc/lkdtm/bugs.c:88 lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 221.187388] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 221.240770] CPU: 4 PID: 928 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 221.248426] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 221.254785] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 221.260794] pc : lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 221.265412] lr : lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 221.270029] sp : ffff80001494bd00 # [ 221.273343] x29: ffff80001494bd00 x28: ffff0005c0de4980 # [ 221.278664] x27: 0000000000000000 x26: 0000000000000000 # [ 221.283986] x25: ffff8000114e1c88 x24: ffff80001494be20 # [ 221.289307] x23: 0000000000000010 x22: ffff0005c0a56000 # [ 221.294629] x21: ffff8000119f5048 x20: ffff8000114e1cb8 # [ 221.299951] x19: 0000000000000003 x18: 0000000000000000 # [ 221.305272] x17: 0000000000000000 x16: 0000000000000000 # [ 221.310593] x15: 0000000000000030 x14: ffffffffffffffff # [ 221.315915] x13: ffff80009494b9a7 x12: ffff80001494b9af # [ 221.321236] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 221.326557] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 221.331878] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 221.337200] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 # [ 221.342521] x3 : 0000000000000000 x2 : 0000000000000000 # [ 221.347842] x1 : 0000000000000000 x0 : ffff0005c0de4980 # [ 221.353164] Call trace: # [ 221.355613] lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 221.359886] lkdtm_do_action+0x24/0x40 # [ 221.363637] direct_entry+0xd0/0x140 # [ 221.367218] full_proxy_write+0x68/0xbc # [ 221.371058] vfs_write+0xec/0x20c # [ 221.374374] ksys_write+0x70/0x100 # [ 221.377777] __arm64_sys_write+0x24/0x30 # [ 221.381708] el0_svc_common.constprop.0+0x84/0x1e0 # [ 221.386501] do_el0_svc+0x2c/0xa4 # [ 221.389821] el0_svc+0x20/0x30 # [ 221.392877] el0_sync_handler+0xb0/0xb4 # [ 221.396716] el0_sync+0x180/0x1c0 # [ 221.400031] irq event stamp: 0 # [ 221.403093] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 221.409368] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 221.417547] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 221.425724] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 221.431991] ---[ end trace 8a97a63494dae287 ]--- # WARNING_MESSAGE: saw 'message trigger': ok ok 4 selftests: lkdtm: WARNING_MESSAGE.sh # selftests: lkdtm: EXCEPTION.sh [ 222.420732] lkdtm: Performing direct entry EXCEPTION [ 222.425845] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 [ 222.434693] Mem abort info: [ 222.437689] ESR = 0x96000044 [ 222.440818] EC = 0x25: DABT (current EL), IL = 32 bits [ 222.446282] SET = 0, FnV = 0 [ 222.449576] EA = 0, S1PTW = 0 [ 222.452772] Data abort info: [ 222.455788] ISV = 0, ISS = 0x00000044 [ 222.459657] CM = 0, WnR = 1 [ 222.462630] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006076e7000 [ 222.469146] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 [ 222.476132] Internal error: Oops: 96000044 [#2] PREEMPT SMP [ 222.481703] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 222.534905] CPU: 0 PID: 960 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 222.542555] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 222.548906] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 222.554917] pc : lkdtm_EXCEPTION+0x14/0x1c [ 222.559009] lr : lkdtm_do_action+0x24/0x40 [ 222.563099] sp : ffff8000149e3d10 [ 222.566408] x29: ffff8000149e3d10 x28: ffff0005c55f1880 [ 222.571719] x27: 0000000000000000 x26: 0000000000000000 [ 222.577029] x25: ffff8000114e1c88 x24: ffff8000149e3e20 [ 222.582339] x23: 000000000000000a x22: ffff0005c35a7000 [ 222.587649] x21: ffff8000119f5058 x20: ffff8000114e1cc8 [ 222.592958] x19: 0000000000000004 x18: 0000000000000000 [ 222.598268] x17: 0000000000000000 x16: 0000000000000000 [ 222.603578] x15: 0000000000000030 x14: ffffffffffffffff [ 222.608887] x13: ffff8000949e3a07 x12: ffff8000149e3a0f [ 222.614196] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 222.619506] x9 : ffff800010a070c4 x8 : ffff800012580448 [ 222.624816] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 222.630126] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 222.635435] x3 : 0000000000000000 x2 : 0000000000000000 [ 222.640744] x1 : ffff0005c55f1880 x0 : 0000000000000000 [ 222.646055] Call trace: [ 222.648498] lkdtm_EXCEPTION+0x14/0x1c [ 222.652243] direct_entry+0xd0/0x140 [ 222.655818] full_proxy_write+0x68/0xbc [ 222.659653] vfs_write+0xec/0x20c [ 222.662962] ksys_write+0x70/0x100 [ 222.666359] __arm64_sys_write+0x24/0x30 [ 222.670281] el0_svc_common.constprop.0+0x84/0x1e0 [ 222.675067] do_el0_svc+0x2c/0xa4 [ 222.678380] el0_svc+0x20/0x30 [ 222.681430] el0_sync_handler+0xb0/0xb4 [ 222.685262] el0_sync+0x180/0x1c0 [ 222.688576] Code: d503201f d2800000 d503233f d50323bf (b900001f) [ 222.694667] ---[ end trace 8a97a63494dae288 ]--- # Segmentation fault # [ 222.420732] lkdtm: Performing direct entry EXCEPTION # [ 222.425845] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 # [ 222.434693] Mem abort info: # [ 222.437689] ESR = 0x96000044 # [ 222.440818] EC = 0x25: DABT (current EL), IL = 32 bits # [ 222.446282] SET = 0, FnV = 0 # [ 222.449576] EA = 0, S1PTW = 0 # [ 222.452772] Data abort info: # [ 222.455788] ISV = 0, ISS = 0x00000044 # [ 222.459657] CM = 0, WnR = 1 # [ 222.462630] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006076e7000 # [ 222.469146] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 # [ 222.476132] Internal error: Oops: 96000044 [#2] PREEMPT SMP # [ 222.481703] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 222.534905] CPU: 0 PID: 960 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 222.542555] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 222.548906] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 222.554917] pc : lkdtm_EXCEPTION+0x14/0x1c # [ 222.559009] lr : lkdtm_do_action+0x24/0x40 # [ 222.563099] sp : ffff8000149e3d10 # [ 222.566408] x29: ffff8000149e3d10 x28: ffff0005c55f1880 # [ 222.571719] x27: 0000000000000000 x26: 0000000000000000 # [ 222.577029] x25: ffff8000114e1c88 x24: ffff8000149e3e20 # [ 222.582339] x23: 000000000000000a x22: ffff0005c35a7000 # [ 222.587649] x21: ffff8000119f5058 x20: ffff8000114e1cc8 # [ 222.592958] x19: 0000000000000004 x18: 0000000000000000 # [ 222.598268] x17: 0000000000000000 x16: 0000000000000000 # [ 222.603578] x15: 0000000000000030 x14: ffffffffffffffff # [ 222.608887] x13: ffff8000949e3a07 x12: ffff8000149e3a0f # [ 222.614196] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 222.619506] x9 : ffff800010a070c4 x8 : ffff800012580448 # [ 222.624816] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 222.630126] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 222.635435] x3 : 0000000000000000 x2 : 0000000000000000 # [ 222.640744] x1 : ffff0005c55f1880 x0 : 0000000000000000 # [ 222.646055] Call trace: # [ 222.648498] lkdtm_EXCEPTION+0x14/0x1c # [ 222.652243] direct_entry+0xd0/0x140 # [ 222.655818] full_proxy_write+0x68/0xbc # [ 222.659653] vfs_write+0xec/0x20c # [ 222.662962] ksys_write+0x70/0x100 # [ 222.666359] __arm64_sys_write+0x24/0x30 # [ 222.670281] el0_svc_common.constprop.0+0x84/0x1e0 # [ 222.675067] do_el0_svc+0x2c/0xa4 # [ 222.678380] el0_svc+0x20/0x30 # [ 222.681430] el0_sync_handler+0xb0/0xb4 # [ 222.685262] el0_sync+0x180/0x1c0 # [ 222.688576] Code: d503201f d2800000 d503233f d50323bf (b900001f) # [ 222.694667] ---[ end trace 8a97a63494dae288 ]--- # EXCEPTION: saw 'call trace:': ok ok 5 selftests: lkdtm: EXCEPTION.sh # selftests: lkdtm: LOOP.sh # Skipping LOOP: Hangs the system ok 6 selftests: lkdtm: LOOP.sh # SKIP # selftests: lkdtm: EXHAUST_STACK.sh # Skipping EXHAUST_STACK: Corrupts memory on failure ok 7 selftests: lkdtm: EXHAUST_STACK.sh # SKIP # selftests: lkdtm: CORRUPT_STACK.sh # Skipping CORRUPT_STACK: Crashes entire system on success ok 8 selftests: lkdtm: CORRUPT_STACK.sh # SKIP # selftests: lkdtm: CORRUPT_STACK_STRONG.sh # Skipping CORRUPT_STACK_STRONG: Crashes entire system on success ok 9 selftests: lkdtm: CORRUPT_STACK_STRONG.sh # SKIP # selftests: lkdtm: CORRUPT_LIST_ADD.sh [ 224.900149] lkdtm: Performing direct entry CORRUPT_LIST_ADD [ 224.905839] lkdtm: attempting good list addition [ 224.910524] lkdtm: attempting corrupted list addition [ 224.915627] lkdtm: list_add() corruption not detected! # [ 224.900149] lkdtm: Performing direct entry CORRUPT_LIST_ADD # [ 224.905839] lkdtm: attempting good list addition # [ 224.910524] lkdtm: attempting corrupted list addition # [ 224.915627] lkdtm: list_add() corruption not detected! # CORRUPT_LIST_ADD: missing 'list_add corruption': [FAIL] not ok 10 selftests: lkdtm: CORRUPT_LIST_ADD.sh # exit=1 # selftests: lkdtm: CORRUPT_LIST_DEL.sh [ 225.546148] lkdtm: Performing direct entry CORRUPT_LIST_DEL [ 225.551864] lkdtm: attempting good list removal [ 225.556464] lkdtm: attempting corrupted list removal [ 225.561479] lkdtm: list_del() corruption not detected! # [ 225.546148] lkdtm: Performing direct entry CORRUPT_LIST_DEL # [ 225.551864] lkdtm: attempting good list removal # [ 225.556464] lkdtm: attempting corrupted list removal # [ 225.561479] lkdtm: list_del() corruption not detected! # CORRUPT_LIST_DEL: missing 'list_del corruption': [FAIL] not ok 11 selftests: lkdtm: CORRUPT_LIST_DEL.sh # exit=1 # selftests: lkdtm: STACK_GUARD_PAGE_LEADING.sh [ 226.301542] lkdtm: Performing direct entry STACK_GUARD_PAGE_LEADING [ 226.307952] lkdtm: attempting bad read from page below current stack [ 226.314394] Unable to handle kernel paging request at virtual address ffff800014e8ffff [ 226.322367] Mem abort info: [ 226.325261] ESR = 0x96000007 [ 226.328560] EC = 0x25: DABT (current EL), IL = 32 bits [ 226.333986] SET = 0, FnV = 0 [ 226.337179] EA = 0, S1PTW = 0 [ 226.340344] Data abort info: [ 226.343245] ISV = 0, ISS = 0x00000007 [ 226.347083] CM = 0, WnR = 0 [ 226.350125] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 226.356851] [ffff800014e8ffff] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000060999b003, pte=0000000000000000 [ 226.369533] Internal error: Oops: 96000007 [#3] PREEMPT SMP [ 226.375105] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 226.428310] CPU: 0 PID: 1195 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 226.436047] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 226.442398] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 226.448411] pc : lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 [ 226.453804] lr : lkdtm_STACK_GUARD_PAGE_LEADING+0x2c/0x58 [ 226.459196] sp : ffff800014e93ce0 [ 226.462505] x29: ffff800014e93ce0 x28: ffff0005c0de3100 [ 226.467815] x27: 0000000000000000 x26: 0000000000000000 [ 226.473125] x25: ffff8000114e1c88 x24: ffff800014e93e20 [ 226.478435] x23: 0000000000000019 x22: ffff0005c621c000 [ 226.483744] x21: ffff8000119f50d8 x20: ffff8000114e1d38 [ 226.489054] x19: ffff800014e90000 x18: 0000000000000000 [ 226.494363] x17: 0000000000000000 x16: 0000000000000000 [ 226.499672] x15: 0000000000000030 x14: ffffffffffffffff [ 226.504982] x13: ffff800094e939c7 x12: ffff800014e939cf [ 226.510291] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 226.515601] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 226.520911] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 226.526220] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 226.531530] x3 : 0000000000000000 x2 : 0000000000000000 [ 226.536839] x1 : ffff0005c0de3100 x0 : ffff8000119f5b98 [ 226.542150] Call trace: [ 226.544592] lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 [ 226.549643] lkdtm_do_action+0x24/0x40 [ 226.553386] direct_entry+0xd0/0x140 [ 226.556960] full_proxy_write+0x68/0xbc [ 226.560793] vfs_write+0xec/0x20c [ 226.564103] ksys_write+0x70/0x100 [ 226.567499] __arm64_sys_write+0x24/0x30 [ 226.571421] el0_svc_common.constprop.0+0x84/0x1e0 [ 226.576206] do_el0_svc+0x2c/0xa4 [ 226.579517] el0_svc+0x20/0x30 [ 226.582566] el0_sync_handler+0xb0/0xb4 [ 226.586399] el0_sync+0x180/0x1c0 [ 226.589713] Code: 912d6000 97ffe068 b0003dc0 912e6000 (385ff261) [ 226.595804] ---[ end trace 8a97a63494dae289 ]--- # Segmentation fault # [ 226.301542] lkdtm: Performing direct entry STACK_GUARD_PAGE_LEADING # [ 226.307952] lkdtm: attempting bad read from page below current stack # [ 226.314394] Unable to handle kernel paging request at virtual address ffff800014e8ffff # [ 226.322367] Mem abort info: # [ 226.325261] ESR = 0x96000007 # [ 226.328560] EC = 0x25: DABT (current EL), IL = 32 bits # [ 226.333986] SET = 0, FnV = 0 # [ 226.337179] EA = 0, S1PTW = 0 # [ 226.340344] Data abort info: # [ 226.343245] ISV = 0, ISS = 0x00000007 # [ 226.347083] CM = 0, WnR = 0 # [ 226.350125] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 226.356851] [ffff800014e8ffff] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000060999b003, pte=0000000000000000 # [ 226.369533] Internal error: Oops: 96000007 [#3] PREEMPT SMP # [ 226.375105] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 226.428310] CPU: 0 PID: 1195 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 226.436047] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 226.442398] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 226.448411] pc : lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 # [ 226.453804] lr : lkdtm_STACK_GUARD_PAGE_LEADING+0x2c/0x58 # [ 226.459196] sp : ffff800014e93ce0 # [ 226.462505] x29: ffff800014e93ce0 x28: ffff0005c0de3100 # [ 226.467815] x27: 0000000000000000 x26: 0000000000000000 # [ 226.473125] x25: ffff8000114e1c88 x24: ffff800014e93e20 # [ 226.478435] x23: 0000000000000019 x22: ffff0005c621c000 # [ 226.483744] x21: ffff8000119f50d8 x20: ffff8000114e1d38 # [ 226.489054] x19: ffff800014e90000 x18: 0000000000000000 # [ 226.494363] x17: 0000000000000000 x16: 0000000000000000 # [ 226.499672] x15: 0000000000000030 x14: ffffffffffffffff # [ 226.504982] x13: ffff800094e939c7 x12: ffff800014e939cf # [ 226.510291] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 226.515601] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 226.520911] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 226.526220] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 226.531530] x3 : 0000000000000000 x2 : 0000000000000000 # [ 226.536839] x1 : ffff0005c0de3100 x0 : ffff8000119f5b98 # [ 226.542150] Call trace: # [ 226.544592] lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 # [ 226.549643] lkdtm_do_action+0x24/0x40 # [ 226.553386] direct_entry+0xd0/0x140 # [ 226.556960] full_proxy_write+0x68/0xbc # [ 226.560793] vfs_write+0xec/0x20c # [ 226.564103] ksys_write+0x70/0x100 # [ 226.567499] __arm64_sys_write+0x24/0x30 # [ 226.571421] el0_svc_common.constprop.0+0x84/0x1e0 # [ 226.576206] do_el0_svc+0x2c/0xa4 # [ 226.579517] el0_svc+0x20/0x30 # [ 226.582566] el0_sync_handler+0xb0/0xb4 # [ 226.586399] el0_sync+0x180/0x1c0 # [ 226.589713] Code: 912d6000 97ffe068 b0003dc0 912e6000 (385ff261) # [ 226.595804] ---[ end trace 8a97a63494dae289 ]--- # STACK_GUARD_PAGE_LEADING: saw 'call trace:': ok ok 12 selftests: lkdtm: STACK_GUARD_PAGE_LEADING.sh # selftests: lkdtm: STACK_GUARD_PAGE_TRAILING.sh [ 228.218261] lkdtm: Performing direct entry STACK_GUARD_PAGE_TRAILING [ 228.224782] lkdtm: attempting bad read from page above current stack [ 228.231249] Unable to handle kernel paging request at virtual address ffff800014f44000 [ 228.239364] Mem abort info: [ 228.242179] ESR = 0x96000007 [ 228.245343] EC = 0x25: DABT (current EL), IL = 32 bits [ 228.250692] SET = 0, FnV = 0 [ 228.253858] EA = 0, S1PTW = 0 [ 228.257035] Data abort info: [ 228.260165] ISV = 0, ISS = 0x00000007 [ 228.264045] CM = 0, WnR = 0 [ 228.267018] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 228.273792] [ffff800014f44000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000060999b003, pte=0000000000000000 [ 228.286454] Internal error: Oops: 96000007 [#4] PREEMPT SMP [ 228.292025] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 228.345229] CPU: 0 PID: 1240 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 228.352967] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 228.359317] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 228.365329] pc : lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c [ 228.370808] lr : lkdtm_STACK_GUARD_PAGE_TRAILING+0x2c/0x5c [ 228.376287] sp : ffff800014f43ce0 [ 228.379595] x29: ffff800014f43ce0 x28: ffff0005c82d8000 [ 228.384907] x27: 0000000000000000 x26: 0000000000000000 [ 228.390217] x25: ffff8000114e1c88 x24: ffff800014f43e20 [ 228.395526] x23: 000000000000001a x22: ffff0005c78ce000 [ 228.400836] x21: ffff8000119f50f8 x20: ffff8000114e1d48 [ 228.406145] x19: ffff800014f44000 x18: 0000000000000000 [ 228.411455] x17: 0000000000000000 x16: 0000000000000000 [ 228.416764] x15: 0000000000000030 x14: ffffffffffffffff [ 228.422073] x13: ffff800094f439c7 x12: ffff800014f439cf [ 228.427382] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 228.432692] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 228.438001] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 228.443311] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 228.448620] x3 : 0000000000000000 x2 : 0000000000000000 [ 228.453930] x1 : ffff0005c82d8000 x0 : ffff8000119f5c10 [ 228.459240] Call trace: [ 228.461682] lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c [ 228.466819] lkdtm_do_action+0x24/0x40 [ 228.470563] direct_entry+0xd0/0x140 [ 228.474137] full_proxy_write+0x68/0xbc [ 228.477970] vfs_write+0xec/0x20c [ 228.481279] ksys_write+0x70/0x100 [ 228.484675] __arm64_sys_write+0x24/0x30 [ 228.488597] el0_svc_common.constprop.0+0x84/0x1e0 [ 228.493382] do_el0_svc+0x2c/0xa4 [ 228.496693] el0_svc+0x20/0x30 [ 228.499742] el0_sync_handler+0xb0/0xb4 [ 228.503574] el0_sync+0x180/0x1c0 [ 228.506887] Code: 97ffe052 91401273 b0003dc0 91304000 (39400261) [ 228.512978] ---[ end trace 8a97a63494dae28a ]--- # Segmentation fault # [ 228.218261] lkdtm: Performing direct entry STACK_GUARD_PAGE_TRAILING # [ 228.224782] lkdtm: attempting bad read from page above current stack # [ 228.231249] Unable to handle kernel paging request at virtual address ffff800014f44000 # [ 228.239364] Mem abort info: # [ 228.242179] ESR = 0x96000007 # [ 228.245343] EC = 0x25: DABT (current EL), IL = 32 bits # [ 228.250692] SET = 0, FnV = 0 # [ 228.253858] EA = 0, S1PTW = 0 # [ 228.257035] Data abort info: # [ 228.260165] ISV = 0, ISS = 0x00000007 # [ 228.264045] CM = 0, WnR = 0 # [ 228.267018] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 228.273792] [ffff800014f44000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000060999b003, pte=0000000000000000 # [ 228.286454] Internal error: Oops: 96000007 [#4] PREEMPT SMP # [ 228.292025] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 228.345229] CPU: 0 PID: 1240 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 228.352967] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 228.359317] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 228.365329] pc : lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c # [ 228.370808] lr : lkdtm_STACK_GUARD_PAGE_TRAILING+0x2c/0x5c # [ 228.376287] sp : ffff800014f43ce0 # [ 228.379595] x29: ffff800014f43ce0 x28: ffff0005c82d8000 # [ 228.384907] x27: 0000000000000000 x26: 0000000000000000 # [ 228.390217] x25: ffff8000114e1c88 x24: ffff800014f43e20 # [ 228.395526] x23: 000000000000001a x22: ffff0005c78ce000 # [ 228.400836] x21: ffff8000119f50f8 x20: ffff8000114e1d48 # [ 228.406145] x19: ffff800014f44000 x18: 0000000000000000 # [ 228.411455] x17: 0000000000000000 x16: 0000000000000000 # [ 228.416764] x15: 0000000000000030 x14: ffffffffffffffff # [ 228.422073] x13: ffff800094f439c7 x12: ffff800014f439cf # [ 228.427382] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 228.432692] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 228.438001] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 228.443311] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 228.448620] x3 : 0000000000000000 x2 : 0000000000000000 # [ 228.453930] x1 : ffff0005c82d8000 x0 : ffff8000119f5c10 # [ 228.459240] Call trace: # [ 228.461682] lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c # [ 228.466819] lkdtm_do_action+0x24/0x40 # [ 228.470563] direct_entry+0xd0/0x140 # [ 228.474137] full_proxy_write+0x68/0xbc # [ 228.477970] vfs_write+0xec/0x20c # [ 228.481279] ksys_write+0x70/0x100 # [ 228.484675] __arm64_sys_write+0x24/0x30 # [ 228.488597] el0_svc_common.constprop.0+0x84/0x1e0 # [ 228.493382] do_el0_svc+0x2c/0xa4 # [ 228.496693] el0_svc+0x20/0x30 # [ 228.499742] el0_sync_handler+0xb0/0xb4 # [ 228.503574] el0_sync+0x180/0x1c0 # [ 228.506887] Code: 97ffe052 91401273 b0003dc0 91304000 (39400261) # [ 228.512978] ---[ end trace 8a97a63494dae28a ]--- # STACK_GUARD_PAGE_TRAILING: saw 'call trace:': ok ok 13 selftests: lkdtm: STACK_GUARD_PAGE_TRAILING.sh # selftests: lkdtm: UNSET_SMEP.sh [ 230.179618] lkdtm: Performing direct entry UNSET_SMEP [ 230.184743] lkdtm: XFAIL: this test is x86_64-only # [ 230.179618] lkdtm: Performing direct entry UNSET_SMEP # [ 230.184743] lkdtm: XFAIL: this test is x86_64-only # UNSET_SMEP: saw 'XFAIL': [SKIP] ok 14 selftests: lkdtm: UNSET_SMEP.sh # SKIP # selftests: lkdtm: DOUBLE_FAULT.sh [ 230.856287] lkdtm: Performing direct entry DOUBLE_FAULT [ 230.861621] lkdtm: XFAIL: this test is ia32-only # [ 230.856287] lkdtm: Performing direct entry DOUBLE_FAULT # [ 230.861621] lkdtm: XFAIL: this test is ia32-only # DOUBLE_FAULT: saw 'XFAIL': [SKIP] ok 15 selftests: lkdtm: DOUBLE_FAULT.sh # SKIP # selftests: lkdtm: CORRUPT_PAC.sh [ 231.501431] lkdtm: Performing direct entry CORRUPT_PAC [ 231.506842] lkdtm: FAIL: CPU lacks pointer authentication feature # [ 231.501431] lkdtm: Performing direct entry CORRUPT_PAC # [ 231.506842] lkdtm: FAIL: CPU lacks pointer authentication feature # CORRUPT_PAC: missing 'call trace:': [FAIL] not ok 16 selftests: lkdtm: CORRUPT_PAC.sh # exit=1 # selftests: lkdtm: UNALIGNED_LOAD_STORE_WRITE.sh [ 232.199993] lkdtm: Performing direct entry UNALIGNED_LOAD_STORE_WRITE [ 232.206549] lkdtm: XFAIL: arch has CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS # [ 232.199993] lkdtm: Performing direct entry UNALIGNED_LOAD_STORE_WRITE # [ 232.206549] lkdtm: XFAIL: arch has CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS # UNALIGNED_LOAD_STORE_WRITE: saw 'XFAIL': [SKIP] ok 17 selftests: lkdtm: UNALIGNED_LOAD_STORE_WRITE.sh # SKIP # selftests: lkdtm: OVERWRITE_ALLOCATION.sh # Skipping OVERWRITE_ALLOCATION: Corrupts memory on failure ok 18 selftests: lkdtm: OVERWRITE_ALLOCATION.sh # SKIP # selftests: lkdtm: WRITE_AFTER_FREE.sh # Skipping WRITE_AFTER_FREE: Corrupts memory on failure ok 19 selftests: lkdtm: WRITE_AFTER_FREE.sh # SKIP # selftests: lkdtm: READ_AFTER_FREE.sh [ 233.231447] lkdtm: Performing direct entry READ_AFTER_FREE [ 233.237044] lkdtm: Value in memory before free: 12345678 [ 233.242423] lkdtm: Attempting bad read from freed memory [ 233.247799] lkdtm: Memory was not poisoned # [ 233.231447] lkdtm: Performing direct entry READ_AFTER_FREE # [ 233.237044] lkdtm: Value in memory before free: 12345678 # [ 233.242423] lkdtm: Attempting bad read from freed memory # [ 233.247799] lkdtm: Memory was not poisoned # READ_AFTER_FREE: missing 'call trace:': [FAIL] not ok 20 selftests: lkdtm: READ_AFTER_FREE.sh # exit=1 # selftests: lkdtm: WRITE_BUDDY_AFTER_FREE.sh # Skipping WRITE_BUDDY_AFTER_FREE: Corrupts memory on failure ok 21 selftests: lkdtm: WRITE_BUDDY_AFTER_FREE.sh # SKIP # selftests: lkdtm: READ_BUDDY_AFTER_FREE.sh [ 234.160658] lkdtm: Performing direct entry READ_BUDDY_AFTER_FREE [ 234.166952] lkdtm: Value in memory before free: 12345678 [ 234.172401] lkdtm: Attempting to read from freed memory [ 234.177818] lkdtm: Buddy page was not poisoned # [ 234.160658] lkdtm: Performing direct entry READ_BUDDY_AFTER_FREE # [ 234.166952] lkdtm: Value in memory before free: 12345678 # [ 234.172401] lkdtm: Attempting to read from freed memory # [ 234.177818] lkdtm: Buddy page was not poisoned # READ_BUDDY_AFTER_FREE: missing 'call trace:': [FAIL] not ok 22 selftests: lkdtm: READ_BUDDY_AFTER_FREE.sh # exit=1 # selftests: lkdtm: SLAB_FREE_DOUBLE.sh [ 234.792326] lkdtm: Performing direct entry SLAB_FREE_DOUBLE [ 234.798146] lkdtm: Attempting double slab free ... # [ 234.792326] lkdtm: Performing direct entry SLAB_FREE_DOUBLE # [ 234.798146] lkdtm: Attempting double slab free ... # SLAB_FREE_DOUBLE: missing 'call trace:': [FAIL] not ok 23 selftests: lkdtm: SLAB_FREE_DOUBLE.sh # exit=1 # selftests: lkdtm: SLAB_FREE_CROSS.sh [ 236.591352] lkdtm: Performing direct entry SLAB_FREE_CROSS [ 236.596957] lkdtm: Attempting cross-cache slab free ... # [ 236.591352] lkdtm: Performing direct entry SLAB_FREE_CROSS # [ 236.596957] lkdtm: Attempting cross-cache slab free ... # SLAB_FREE_CROSS: missing 'call trace:': [FAIL] not ok 24 selftests: lkdtm: SLAB_FREE_CROSS.sh # exit=1 # selftests: lkdtm: SLAB_FREE_PAGE.sh [ 237.295616] lkdtm: Performing direct entry SLAB_FREE_PAGE [ 237.301244] lkdtm: Attempting non-Slab slab free ... # [ 237.295616] lkdtm: Performing direct entry SLAB_FREE_PAGE # [ 237.301244] lkdtm: Attempting non-Slab slab free ... # SLAB_FREE_PAGE: missing 'call trace:': [FAIL] not ok 25 selftests: lkdtm: SLAB_FREE_PAGE.sh # exit=1 # selftests: lkdtm: SOFTLOCKUP.sh # Skipping SOFTLOCKUP: Hangs the system ok 26 selftests: lkdtm: SOFTLOCKUP.sh # SKIP # selftests: lkdtm: HARDLOCKUP.sh # Skipping HARDLOCKUP: Hangs the system ok 27 selftests: lkdtm: HARDLOCKUP.sh # SKIP # selftests: lkdtm: SPINLOCKUP.sh # Skipping SPINLOCKUP: Hangs the system ok 28 selftests: lkdtm: SPINLOCKUP.sh # SKIP # selftests: lkdtm: HUNG_TASK.sh # Skipping HUNG_TASK: Hangs the system ok 29 selftests: lkdtm: HUNG_TASK.sh # SKIP # selftests: lkdtm: EXEC_DATA.sh [ 238.739386] lkdtm: Performing direct entry EXEC_DATA [ 238.744452] lkdtm: attempting ok execution at ffff800010a08000 [ 238.750362] lkdtm: attempting bad execution at ffff80001348f630 [ 238.756344] Unable to handle kernel execute from non-executable memory at virtual address ffff80001348f630 [ 238.766114] Mem abort info: [ 238.769015] ESR = 0x8600000f [ 238.772206] EC = 0x21: IABT (current EL), IL = 32 bits [ 238.777674] SET = 0, FnV = 0 [ 238.780830] EA = 0, S1PTW = 0 [ 238.784074] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 238.790854] [ffff80001348f630] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fff9003, pte=007800004b68f703 [ 238.803477] Internal error: Oops: 8600000f [#5] PREEMPT SMP [ 238.809047] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 238.862253] CPU: 1 PID: 1797 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 238.869991] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 238.876343] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 238.882354] pc : data_area+0x0/0x40 [ 238.885844] lr : execute_location+0x84/0xa4 [ 238.890021] sp : ffff800015a0bcd0 [ 238.893330] x29: ffff800015a0bcd0 x28: ffff0005c78e6200 [ 238.898640] x27: 0000000000000000 x26: 0000000000000000 [ 238.903951] x25: ffff8000114e1c88 x24: ffff800015a0be20 [ 238.909262] x23: 000000000000000a x22: ffff0005c83b3000 [ 238.914572] x21: 0000000000000001 x20: ffff800010a08000 [ 238.919882] x19: ffff80001348f630 x18: 0000000000000000 [ 238.925191] x17: 0000000000000000 x16: 0000000000000000 [ 238.930501] x15: 0000000000000030 x14: ffffffffffffffff [ 238.935811] x13: ffff800095a0b9b7 x12: ffff800015a0b9bf [ 238.941121] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 238.946430] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 238.951741] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 238.957052] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 238.962361] x3 : 0000000000000000 x2 : 0000000000000000 [ 238.967671] x1 : ffff0005c78e6200 x0 : 0000000000000033 [ 238.972981] Call trace: [ 238.975426] data_area+0x0/0x40 [ 238.978564] lkdtm_EXEC_DATA+0x24/0x30 [ 238.982313] lkdtm_do_action+0x24/0x40 [ 238.986057] direct_entry+0xd0/0x140 [ 238.989631] full_proxy_write+0x68/0xbc [ 238.993465] vfs_write+0xec/0x20c [ 238.996775] ksys_write+0x70/0x100 [ 239.000172] __arm64_sys_write+0x24/0x30 [ 239.004094] el0_svc_common.constprop.0+0x84/0x1e0 [ 239.008880] do_el0_svc+0x2c/0xa4 [ 239.012191] el0_svc+0x20/0x30 [ 239.015242] el0_sync_handler+0xb0/0xb4 [ 239.019074] el0_sync+0x180/0x1c0 [ 239.022389] Code: c6511700 ffff0005 c6511800 ffff0005 (aa1e03e9) [ 239.028480] ---[ end trace 8a97a63494dae28b ]--- # Segmentation fault # [ 238.739386] lkdtm: Performing direct entry EXEC_DATA # [ 238.744452] lkdtm: attempting ok execution at ffff800010a08000 # [ 238.750362] lkdtm: attempting bad execution at ffff80001348f630 # [ 238.756344] Unable to handle kernel execute from non-executable memory at virtual address ffff80001348f630 # [ 238.766114] Mem abort info: # [ 238.769015] ESR = 0x8600000f # [ 238.772206] EC = 0x21: IABT (current EL), IL = 32 bits # [ 238.777674] SET = 0, FnV = 0 # [ 238.780830] EA = 0, S1PTW = 0 # [ 238.784074] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 238.790854] [ffff80001348f630] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fff9003, pte=007800004b68f703 # [ 238.803477] Internal error: Oops: 8600000f [#5] PREEMPT SMP # [ 238.809047] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 238.862253] CPU: 1 PID: 1797 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 238.869991] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 238.876343] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 238.882354] pc : data_area+0x0/0x40 # [ 238.885844] lr : execute_location+0x84/0xa4 # [ 238.890021] sp : ffff800015a0bcd0 # [ 238.893330] x29: ffff800015a0bcd0 x28: ffff0005c78e6200 # [ 238.898640] x27: 0000000000000000 x26: 0000000000000000 # [ 238.903951] x25: ffff8000114e1c88 x24: ffff800015a0be20 # [ 238.909262] x23: 000000000000000a x22: ffff0005c83b3000 # [ 238.914572] x21: 0000000000000001 x20: ffff800010a08000 # [ 238.919882] x19: ffff80001348f630 x18: 0000000000000000 # [ 238.925191] x17: 0000000000000000 x16: 0000000000000000 # [ 238.930501] x15: 0000000000000030 x14: ffffffffffffffff # [ 238.935811] x13: ffff800095a0b9b7 x12: ffff800015a0b9bf # [ 238.941121] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 238.946430] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 238.951741] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 238.957052] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 238.962361] x3 : 0000000000000000 x2 : 0000000000000000 # [ 238.967671] x1 : ffff0005c78e6200 x0 : 0000000000000033 # [ 238.972981] Call trace: # [ 238.975426] data_area+0x0/0x40 # [ 238.978564] lkdtm_EXEC_DATA+0x24/0x30 # [ 238.982313] lkdtm_do_action+0x24/0x40 # [ 238.986057] direct_entry+0xd0/0x140 # [ 238.989631] full_proxy_write+0x68/0xbc # [ 238.993465] vfs_write+0xec/0x20c # [ 238.996775] ksys_write+0x70/0x100 # [ 239.000172] __arm64_sys_write+0x24/0x30 # [ 239.004094] el0_svc_common.constprop.0+0x84/0x1e0 # [ 239.008880] do_el0_svc+0x2c/0xa4 # [ 239.012191] el0_svc+0x20/0x30 # [ 239.015242] el0_sync_handler+0xb0/0xb4 # [ 239.019074] el0_sync+0x180/0x1c0 # [ 239.022389] Code: c6511700 ffff0005 c6511800 ffff0005 (aa1e03e9) # [ 239.028480] ---[ end trace 8a97a63494dae28b ]--- # EXEC_DATA: saw 'call trace:': ok ok 30 selftests: lkdtm: EXEC_DATA.sh # selftests: lkdtm: EXEC_STACK.sh [ 240.522388] lkdtm: Performing direct entry EXEC_STACK [ 240.527615] lkdtm: attempting ok execution at ffff800010a08000 [ 240.533534] lkdtm: attempting bad execution at ffff800015acbcc8 [ 240.539529] Unable to handle kernel execute from non-executable memory at virtual address ffff800015acbcc8 [ 240.549278] Mem abort info: [ 240.552281] ESR = 0x8600000f [ 240.555406] EC = 0x21: IABT (current EL), IL = 32 bits [ 240.560738] SET = 0, FnV = 0 [ 240.563811] EA = 0, S1PTW = 0 [ 240.566957] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 240.573689] [ffff800015acbcc8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=00000006082c3003, pte=00680006099b8703 [ 240.586251] Internal error: Oops: 8600000f [#6] PREEMPT SMP [ 240.591822] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 240.645024] CPU: 1 PID: 1839 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 240.652761] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 240.659113] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 240.665121] pc : 0xffff800015acbcc8 [ 240.668613] lr : execute_location+0x84/0xa4 [ 240.672790] sp : ffff800015acbc80 [ 240.676099] x29: ffff800015acbc80 x28: ffff0005c78e1880 [ 240.681410] x27: 0000000000000000 x26: 0000000000000000 [ 240.686720] x25: ffff8000114e1c88 x24: ffff800015acbe20 [ 240.692029] x23: 000000000000000b x22: ffff0005c2f16000 [ 240.697340] x21: 0000000000000001 x20: ffff800010a08000 [ 240.702650] x19: ffff800015acbcc8 x18: 0000000000000000 [ 240.707960] x17: 0000000000000000 x16: 0000000000000000 [ 240.713270] x15: 0000000000000030 x14: ffffffffffffffff [ 240.718580] x13: ffff800095acb967 x12: ffff800015acb96f [ 240.723890] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 240.729199] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 240.734509] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 240.739819] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 [ 240.745128] x3 : 0000000000000000 x2 : 0000000000000000 [ 240.750438] x1 : ffff0005c78e1880 x0 : 0000000000000033 [ 240.755748] Call trace: [ 240.758191] 0xffff800015acbcc8 [ 240.761329] lkdtm_EXEC_STACK+0x30/0x58 [ 240.765165] lkdtm_do_action+0x24/0x40 [ 240.768910] direct_entry+0xd0/0x140 [ 240.772483] full_proxy_write+0x68/0xbc [ 240.776317] vfs_write+0xec/0x20c [ 240.779627] ksys_write+0x70/0x100 [ 240.783023] __arm64_sys_write+0x24/0x30 [ 240.786944] el0_svc_common.constprop.0+0x84/0x1e0 [ 240.791730] do_el0_svc+0x2c/0xa4 [ 240.795041] el0_svc+0x20/0x30 [ 240.798091] el0_sync_handler+0xb0/0xb4 [ 240.801923] el0_sync+0x180/0x1c0 [ 240.805237] Code: 10a070c4 ffff8000 15acbd20 ffff8000 (aa1e03e9) [ 240.811329] ---[ end trace 8a97a63494dae28c ]--- # Segmentation fault # [ 240.522388] lkdtm: Performing direct entry EXEC_STACK # [ 240.527615] lkdtm: attempting ok execution at ffff800010a08000 # [ 240.533534] lkdtm: attempting bad execution at ffff800015acbcc8 # [ 240.539529] Unable to handle kernel execute from non-executable memory at virtual address ffff800015acbcc8 # [ 240.549278] Mem abort info: # [ 240.552281] ESR = 0x8600000f # [ 240.555406] EC = 0x21: IABT (current EL), IL = 32 bits # [ 240.560738] SET = 0, FnV = 0 # [ 240.563811] EA = 0, S1PTW = 0 # [ 240.566957] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 240.573689] [ffff800015acbcc8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=00000006082c3003, pte=00680006099b8703 # [ 240.586251] Internal error: Oops: 8600000f [#6] PREEMPT SMP # [ 240.591822] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 240.645024] CPU: 1 PID: 1839 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 240.652761] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 240.659113] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 240.665121] pc : 0xffff800015acbcc8 # [ 240.668613] lr : execute_location+0x84/0xa4 # [ 240.672790] sp : ffff800015acbc80 # [ 240.676099] x29: ffff800015acbc80 x28: ffff0005c78e1880 # [ 240.681410] x27: 0000000000000000 x26: 0000000000000000 # [ 240.686720] x25: ffff8000114e1c88 x24: ffff800015acbe20 # [ 240.692029] x23: 000000000000000b x22: ffff0005c2f16000 # [ 240.697340] x21: 0000000000000001 x20: ffff800010a08000 # [ 240.702650] x19: ffff800015acbcc8 x18: 0000000000000000 # [ 240.707960] x17: 0000000000000000 x16: 0000000000000000 # [ 240.713270] x15: 0000000000000030 x14: ffffffffffffffff # [ 240.718580] x13: ffff800095acb967 x12: ffff800015acb96f # [ 240.723890] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 240.729199] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 240.734509] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 240.739819] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 # [ 240.745128] x3 : 0000000000000000 x2 : 0000000000000000 # [ 240.750438] x1 : ffff0005c78e1880 x0 : 0000000000000033 # [ 240.755748] Call trace: # [ 240.758191] 0xffff800015acbcc8 # [ 240.761329] lkdtm_EXEC_STACK+0x30/0x58 # [ 240.765165] lkdtm_do_action+0x24/0x40 # [ 240.768910] direct_entry+0xd0/0x140 # [ 240.772483] full_proxy_write+0x68/0xbc # [ 240.776317] vfs_write+0xec/0x20c # [ 240.779627] ksys_write+0x70/0x100 # [ 240.783023] __arm64_sys_write+0x24/0x30 # [ 240.786944] el0_svc_common.constprop.0+0x84/0x1e0 # [ 240.791730] do_el0_svc+0x2c/0xa4 # [ 240.795041] el0_svc+0x20/0x30 # [ 240.798091] el0_sync_handler+0xb0/0xb4 # [ 240.801923] el0_sync+0x180/0x1c0 # [ 240.805237] Code: 10a070c4 ffff8000 15acbd20 ffff8000 (aa1e03e9) # [ 240.811329] ---[ end trace 8a97a63494dae28c ]--- # EXEC_STACK: saw 'call trace:': ok ok 31 selftests: lkdtm: EXEC_STACK.sh # selftests: lkdtm: EXEC_KMALLOC.sh [ 242.370980] lkdtm: Performing direct entry EXEC_KMALLOC [ 242.376349] lkdtm: attempting ok execution at ffff800010a08000 [ 242.382265] lkdtm: attempting bad execution at ffff0005c5001e80 [ 242.388258] Unable to handle kernel execute from non-executable memory at virtual address ffff0005c5001e80 [ 242.398007] Mem abort info: [ 242.400888] ESR = 0x8600000f [ 242.404060] EC = 0x21: IABT (current EL), IL = 32 bits [ 242.409537] SET = 0, FnV = 0 [ 242.412635] EA = 0, S1PTW = 0 [ 242.415893] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 242.422609] [ffff0005c5001e80] pgd=000000067fff8003, p4d=000000067fff8003, pud=000000067fc42003, pmd=000000067fc19003, pte=0068000605001707 [ 242.435165] Internal error: Oops: 8600000f [#7] PREEMPT SMP [ 242.440735] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 242.493939] CPU: 0 PID: 1881 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 242.501676] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 242.508027] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 242.514032] pc : 0xffff0005c5001e80 [ 242.517524] lr : execute_location+0x84/0xa4 [ 242.521701] sp : ffff800015b73cc0 [ 242.525010] x29: ffff800015b73cc0 x28: ffff0005c82de200 [ 242.530320] x27: 0000000000000000 x26: 0000000000000000 [ 242.535630] x25: ffff8000114e1c88 x24: ffff800015b73e20 [ 242.540940] x23: 000000000000000d x22: ffff0005c77c6000 [ 242.546250] x21: 0000000000000001 x20: ffff800010a08000 [ 242.551560] x19: ffff0005c5001e80 x18: 0000000000000000 [ 242.556869] x17: 0000000000000000 x16: 0000000000000000 [ 242.562179] x15: 0000000000000030 x14: ffffffffffffffff [ 242.567488] x13: ffff800095b739a7 x12: ffff800015b739af [ 242.572798] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 242.578108] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 242.583417] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 242.588727] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 242.594036] x3 : 0000000000000000 x2 : 0000000000000000 [ 242.599345] x1 : ffff0005c82de200 x0 : 0000000000000033 [ 242.604656] Call trace: [ 242.607097] 0xffff0005c5001e80 [ 242.610239] lkdtm_EXEC_KMALLOC+0x34/0x4c [ 242.614244] lkdtm_do_action+0x24/0x40 [ 242.617987] direct_entry+0xd0/0x140 [ 242.621562] full_proxy_write+0x68/0xbc [ 242.625396] vfs_write+0xec/0x20c [ 242.628706] ksys_write+0x70/0x100 [ 242.632102] __arm64_sys_write+0x24/0x30 [ 242.636024] el0_svc_common.constprop.0+0x84/0x1e0 [ 242.640810] do_el0_svc+0x2c/0xa4 [ 242.644120] el0_svc+0x20/0x30 [ 242.647170] el0_sync_handler+0xb0/0xb4 [ 242.651003] el0_sync+0x180/0x1c0 [ 242.654317] Code: 00000000 00000000 00000000 00000000 (aa1e03e9) [ 242.660407] ---[ end trace 8a97a63494dae28d ]--- # Segmentation fault # [ 242.370980] lkdtm: Performing direct entry EXEC_KMALLOC # [ 242.376349] lkdtm: attempting ok execution at ffff800010a08000 # [ 242.382265] lkdtm: attempting bad execution at ffff0005c5001e80 # [ 242.388258] Unable to handle kernel execute from non-executable memory at virtual address ffff0005c5001e80 # [ 242.398007] Mem abort info: # [ 242.400888] ESR = 0x8600000f # [ 242.404060] EC = 0x21: IABT (current EL), IL = 32 bits # [ 242.409537] SET = 0, FnV = 0 # [ 242.412635] EA = 0, S1PTW = 0 # [ 242.415893] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 242.422609] [ffff0005c5001e80] pgd=000000067fff8003, p4d=000000067fff8003, pud=000000067fc42003, pmd=000000067fc19003, pte=0068000605001707 # [ 242.435165] Internal error: Oops: 8600000f [#7] PREEMPT SMP # [ 242.440735] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 242.493939] CPU: 0 PID: 1881 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 242.501676] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 242.508027] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 242.514032] pc : 0xffff0005c5001e80 # [ 242.517524] lr : execute_location+0x84/0xa4 # [ 242.521701] sp : ffff800015b73cc0 # [ 242.525010] x29: ffff800015b73cc0 x28: ffff0005c82de200 # [ 242.530320] x27: 0000000000000000 x26: 0000000000000000 # [ 242.535630] x25: ffff8000114e1c88 x24: ffff800015b73e20 # [ 242.540940] x23: 000000000000000d x22: ffff0005c77c6000 # [ 242.546250] x21: 0000000000000001 x20: ffff800010a08000 # [ 242.551560] x19: ffff0005c5001e80 x18: 0000000000000000 # [ 242.556869] x17: 0000000000000000 x16: 0000000000000000 # [ 242.562179] x15: 0000000000000030 x14: ffffffffffffffff # [ 242.567488] x13: ffff800095b739a7 x12: ffff800015b739af # [ 242.572798] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 242.578108] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 242.583417] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 242.588727] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 242.594036] x3 : 0000000000000000 x2 : 0000000000000000 # [ 242.599345] x1 : ffff0005c82de200 x0 : 0000000000000033 # [ 242.604656] Call trace: # [ 242.607097] 0xffff0005c5001e80 # [ 242.610239] lkdtm_EXEC_KMALLOC+0x34/0x4c # [ 242.614244] lkdtm_do_action+0x24/0x40 # [ 242.617987] direct_entry+0xd0/0x140 # [ 242.621562] full_proxy_write+0x68/0xbc # [ 242.625396] vfs_write+0xec/0x20c # [ 242.628706] ksys_write+0x70/0x100 # [ 242.632102] __arm64_sys_write+0x24/0x30 # [ 242.636024] el0_svc_common.constprop.0+0x84/0x1e0 # [ 242.640810] do_el0_svc+0x2c/0xa4 # [ 242.644120] el0_svc+0x20/0x30 # [ 242.647170] el0_sync_handler+0xb0/0xb4 # [ 242.651003] el0_sync+0x180/0x1c0 # [ 242.654317] Code: 00000000 00000000 00000000 00000000 (aa1e03e9) # [ 242.660407] ---[ end trace 8a97a63494dae28d ]--- # EXEC_KMALLOC: saw 'call trace:': ok ok 32 selftests: lkdtm: EXEC_KMALLOC.sh # selftests: lkdtm: EXEC_VMALLOC.sh [ 244.247613] lkdtm: Performing direct entry EXEC_VMALLOC [ 244.253010] lkdtm: attempting ok execution at ffff800010a08000 [ 244.260572] lkdtm: attempting bad execution at ffff8000139ff000 [ 244.266936] Unable to handle kernel execute from non-executable memory at virtual address ffff8000139ff000 [ 244.277328] Mem abort info: [ 244.280320] ESR = 0x8600000f [ 244.283438] EC = 0x21: IABT (current EL), IL = 32 bits [ 244.288773] SET = 0, FnV = 0 [ 244.291847] EA = 0, S1PTW = 0 [ 244.294993] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 244.301727] [ffff8000139ff000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000600820003, pte=00680006082c7703 [ 244.314295] Internal error: Oops: 8600000f [#8] PREEMPT SMP [ 244.319865] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 244.373069] CPU: 1 PID: 1923 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 244.380806] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 244.387160] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 244.393167] pc : 0xffff8000139ff000 [ 244.396660] lr : execute_location+0x84/0xa4 [ 244.400837] sp : ffff800015c2bcc0 [ 244.404145] x29: ffff800015c2bcc0 x28: ffff0005c82d8000 [ 244.409457] x27: 0000000000000000 x26: 0000000000000000 [ 244.414767] x25: ffff8000114e1c88 x24: ffff800015c2be20 [ 244.420076] x23: 000000000000000d x22: ffff0005c82c7000 [ 244.425386] x21: 0000000000000001 x20: ffff800010a08000 [ 244.430696] x19: ffff8000139ff000 x18: 0000000000000000 [ 244.436006] x17: 0000000000000000 x16: 0000000000000000 [ 244.441315] x15: 0000000000000000 x14: 0000000000000000 [ 244.446625] x13: 0000000000000000 x12: 0000000000000000 [ 244.451934] x11: 0000004f0e75f9e8 x10: 0000000000001440 [ 244.457244] x9 : ffff80001012cbc4 x8 : ffff0005c82d94a0 [ 244.462553] x7 : 0000000000000005 x6 : ffff800012551000 [ 244.467863] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 [ 244.473173] x3 : 0000000000000000 x2 : 0000000000000000 [ 244.478482] x1 : ffff0005c82d8000 x0 : 0000000000000033 [ 244.483792] Call trace: [ 244.486236] 0xffff8000139ff000 [ 244.489378] lkdtm_EXEC_VMALLOC+0x2c/0x44 [ 244.493382] lkdtm_do_action+0x24/0x40 [ 244.497126] direct_entry+0xd0/0x140 [ 244.500700] full_proxy_write+0x68/0xbc [ 244.504533] vfs_write+0xec/0x20c [ 244.507843] ksys_write+0x70/0x100 [ 244.511239] __arm64_sys_write+0x24/0x30 [ 244.515162] el0_svc_common.constprop.0+0x84/0x1e0 [ 244.519948] do_el0_svc+0x2c/0xa4 [ 244.523259] el0_svc+0x20/0x30 [ 244.526309] el0_sync_handler+0xb0/0xb4 [ 244.530141] el0_sync+0x180/0x1c0 [ 244.533461] Code: bad PC value [ 244.536513] ---[ end trace 8a97a63494dae28e ]--- # Segmentation fault # [ 244.247613] lkdtm: Performing direct entry EXEC_VMALLOC # [ 244.253010] lkdtm: attempting ok execution at ffff800010a08000 # [ 244.260572] lkdtm: attempting bad execution at ffff8000139ff000 # [ 244.266936] Unable to handle kernel execute from non-executable memory at virtual address ffff8000139ff000 # [ 244.277328] Mem abort info: # [ 244.280320] ESR = 0x8600000f # [ 244.283438] EC = 0x21: IABT (current EL), IL = 32 bits # [ 244.288773] SET = 0, FnV = 0 # [ 244.291847] EA = 0, S1PTW = 0 # [ 244.294993] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 244.301727] [ffff8000139ff000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000600820003, pte=00680006082c7703 # [ 244.314295] Internal error: Oops: 8600000f [#8] PREEMPT SMP # [ 244.319865] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 244.373069] CPU: 1 PID: 1923 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 244.380806] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 244.387160] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 244.393167] pc : 0xffff8000139ff000 # [ 244.396660] lr : execute_location+0x84/0xa4 # [ 244.400837] sp : ffff800015c2bcc0 # [ 244.404145] x29: ffff800015c2bcc0 x28: ffff0005c82d8000 # [ 244.409457] x27: 0000000000000000 x26: 0000000000000000 # [ 244.414767] x25: ffff8000114e1c88 x24: ffff800015c2be20 # [ 244.420076] x23: 000000000000000d x22: ffff0005c82c7000 # [ 244.425386] x21: 0000000000000001 x20: ffff800010a08000 # [ 244.430696] x19: ffff8000139ff000 x18: 0000000000000000 # [ 244.436006] x17: 0000000000000000 x16: 0000000000000000 # [ 244.441315] x15: 0000000000000000 x14: 0000000000000000 # [ 244.446625] x13: 0000000000000000 x12: 0000000000000000 # [ 244.451934] x11: 0000004f0e75f9e8 x10: 0000000000001440 # [ 244.457244] x9 : ffff80001012cbc4 x8 : ffff0005c82d94a0 # [ 244.462553] x7 : 0000000000000005 x6 : ffff800012551000 # [ 244.467863] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 # [ 244.473173] x3 : 0000000000000000 x2 : 0000000000000000 # [ 244.478482] x1 : ffff0005c82d8000 x0 : 0000000000000033 # [ 244.483792] Call trace: # [ 244.486236] 0xffff8000139ff000 # [ 244.489378] lkdtm_EXEC_VMALLOC+0x2c/0x44 # [ 244.493382] lkdtm_do_action+0x24/0x40 # [ 244.497126] direct_entry+0xd0/0x140 # [ 244.500700] full_proxy_write+0x68/0xbc # [ 244.504533] vfs_write+0xec/0x20c # [ 244.507843] ksys_write+0x70/0x100 # [ 244.511239] __arm64_sys_write+0x24/0x30 # [ 244.515162] el0_svc_common.constprop.0+0x84/0x1e0 # [ 244.519948] do_el0_svc+0x2c/0xa4 # [ 244.523259] el0_svc+0x20/0x30 # [ 244.526309] el0_sync_handler+0xb0/0xb4 # [ 244.530141] el0_sync+0x180/0x1c0 # [ 244.533461] Code: bad PC value # [ 244.536513] ---[ end trace 8a97a63494dae28e ]--- # EXEC_VMALLOC: saw 'call trace:': ok ok 33 selftests: lkdtm: EXEC_VMALLOC.sh # selftests: lkdtm: EXEC_RODATA.sh [ 246.076231] lkdtm: Performing direct entry EXEC_RODATA [ 246.081452] lkdtm: attempting ok execution at ffff800010a08000 [ 246.087432] lkdtm: attempting bad execution at ffff8000114e2180 [ 246.093462] Unable to handle kernel execute from non-executable memory at virtual address ffff8000114e2180 [ 246.103327] Mem abort info: [ 246.106238] ESR = 0x8600000e [ 246.109397] EC = 0x21: IABT (current EL), IL = 32 bits [ 246.114739] SET = 0, FnV = 0 [ 246.117818] EA = 0, S1PTW = 0 [ 246.120989] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 246.127722] [ffff8000114e2180] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 [ 246.138374] Internal error: Oops: 8600000e [#9] PREEMPT SMP [ 246.143944] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 246.197147] CPU: 1 PID: 1965 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 246.204886] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 246.211238] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 246.217250] pc : lkdtm_rodata_do_nothing+0x0/0x10 [ 246.221954] lr : execute_location+0x84/0xa4 [ 246.226130] sp : ffff800015cf3cd0 [ 246.229438] x29: ffff800015cf3cd0 x28: ffff0005c55f6200 [ 246.234749] x27: 0000000000000000 x26: 0000000000000000 [ 246.240059] x25: ffff8000114e1c88 x24: ffff800015cf3e20 [ 246.245369] x23: 000000000000000c x22: ffff0005c94d2000 [ 246.250679] x21: 0000000000000000 x20: ffff800010a08000 [ 246.255989] x19: ffff8000114e2180 x18: 0000000000000001 [ 246.261298] x17: 0000000000000000 x16: 0000000000000000 [ 246.266608] x15: 0000000000000030 x14: ffffffffffffffff [ 246.271919] x13: ffff800095cf39b7 x12: ffff800015cf39c0 [ 246.277230] x11: ffff8000125802a8 x10: 0000000000001440 [ 246.282540] x9 : ffff80001012cbc4 x8 : ffff0005c55f76a0 [ 246.287849] x7 : 0000000000000000 x6 : ffff800012551000 [ 246.293159] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 246.298469] x3 : 0000000000000000 x2 : 0000000000000000 [ 246.303778] x1 : ffff0005c55f6200 x0 : 0000000000000033 [ 246.309089] Call trace: [ 246.311532] lkdtm_rodata_do_nothing+0x0/0x10 [ 246.315885] lkdtm_EXEC_RODATA+0x24/0x30 [ 246.319807] lkdtm_do_action+0x24/0x40 [ 246.323551] direct_entry+0xd0/0x140 [ 246.327125] full_proxy_write+0x68/0xbc [ 246.330958] vfs_write+0xec/0x20c [ 246.334268] ksys_write+0x70/0x100 [ 246.337664] __arm64_sys_write+0x24/0x30 [ 246.341586] el0_svc_common.constprop.0+0x84/0x1e0 [ 246.346373] do_el0_svc+0x2c/0xa4 [ 246.349684] el0_svc+0x20/0x30 [ 246.352735] el0_sync_handler+0xb0/0xb4 [ 246.356567] el0_sync+0x180/0x1c0 [ 246.359882] Code: 00000074 00000000 aa55aa55 00000000 (d503233f) [ 246.365973] ---[ end trace 8a97a63494dae28f ]--- # Segmentation fault # [ 246.076231] lkdtm: Performing direct entry EXEC_RODATA # [ 246.081452] lkdtm: attempting ok execution at ffff800010a08000 # [ 246.087432] lkdtm: attempting bad execution at ffff8000114e2180 # [ 246.093462] Unable to handle kernel execute from non-executable memory at virtual address ffff8000114e2180 # [ 246.103327] Mem abort info: # [ 246.106238] ESR = 0x8600000e # [ 246.109397] EC = 0x21: IABT (current EL), IL = 32 bits # [ 246.114739] SET = 0, FnV = 0 # [ 246.117818] EA = 0, S1PTW = 0 # [ 246.120989] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 246.127722] [ffff8000114e2180] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 # [ 246.138374] Internal error: Oops: 8600000e [#9] PREEMPT SMP # [ 246.143944] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 246.197147] CPU: 1 PID: 1965 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 246.204886] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 246.211238] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 246.217250] pc : lkdtm_rodata_do_nothing+0x0/0x10 # [ 246.221954] lr : execute_location+0x84/0xa4 # [ 246.226130] sp : ffff800015cf3cd0 # [ 246.229438] x29: ffff800015cf3cd0 x28: ffff0005c55f6200 # [ 246.234749] x27: 0000000000000000 x26: 0000000000000000 # [ 246.240059] x25: ffff8000114e1c88 x24: ffff800015cf3e20 # [ 246.245369] x23: 000000000000000c x22: ffff0005c94d2000 # [ 246.250679] x21: 0000000000000000 x20: ffff800010a08000 # [ 246.255989] x19: ffff8000114e2180 x18: 0000000000000001 # [ 246.261298] x17: 0000000000000000 x16: 0000000000000000 # [ 246.266608] x15: 0000000000000030 x14: ffffffffffffffff # [ 246.271919] x13: ffff800095cf39b7 x12: ffff800015cf39c0 # [ 246.277230] x11: ffff8000125802a8 x10: 0000000000001440 # [ 246.282540] x9 : ffff80001012cbc4 x8 : ffff0005c55f76a0 # [ 246.287849] x7 : 0000000000000000 x6 : ffff800012551000 # [ 246.293159] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 246.298469] x3 : 0000000000000000 x2 : 0000000000000000 # [ 246.303778] x1 : ffff0005c55f6200 x0 : 0000000000000033 # [ 246.309089] Call trace: # [ 246.311532] lkdtm_rodata_do_nothing+0x0/0x10 # [ 246.315885] lkdtm_EXEC_RODATA+0x24/0x30 # [ 246.319807] lkdtm_do_action+0x24/0x40 # [ 246.323551] direct_entry+0xd0/0x140 # [ 246.327125] full_proxy_write+0x68/0xbc # [ 246.330958] vfs_write+0xec/0x20c # [ 246.334268] ksys_write+0x70/0x100 # [ 246.337664] __arm64_sys_write+0x24/0x30 # [ 246.341586] el0_svc_common.constprop.0+0x84/0x1e0 # [ 246.346373] do_el0_svc+0x2c/0xa4 # [ 246.349684] el0_svc+0x20/0x30 # [ 246.352735] el0_sync_handler+0xb0/0xb4 # [ 246.356567] el0_sync+0x180/0x1c0 # [ 246.359882] Code: 00000074 00000000 aa55aa55 00000000 (d503233f) # [ 246.365973] ---[ end trace 8a97a63494dae28f ]--- # EXEC_RODATA: saw 'call trace:': ok ok 34 selftests: lkdtm: EXEC_RODATA.sh # selftests: lkdtm: EXEC_USERSPACE.sh [ 247.852606] lkdtm: Performing direct entry EXEC_USERSPACE [ 247.858250] lkdtm: attempting ok execution at ffff800010a08000 [ 247.864236] lkdtm: attempting bad execution at 0000ffffa5a26000 [ 247.870419] Unable to handle kernel execution of user memory at virtual address 0000ffffa5a26000 [ 247.879456] Mem abort info: [ 247.883036] ESR = 0x8600000f [ 247.886142] EC = 0x21: IABT (current EL), IL = 32 bits [ 247.891486] SET = 0, FnV = 0 [ 247.894542] EA = 0, S1PTW = 0 [ 247.897780] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000604df8000 [ 247.904405] [0000ffffa5a26000] pgd=0000000605868003, p4d=0000000605868003, pud=000000060779e003, pmd=000000060994f003, pte=00a800060e7a2f43 [ 247.917058] Internal error: Oops: 8600000f [#10] PREEMPT SMP [ 247.922716] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 247.975918] CPU: 0 PID: 2007 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 247.983655] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 247.990006] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 247.996012] pc : 0xffffa5a26000 [ 247.999156] lr : lkdtm_EXEC_USERSPACE+0xe0/0xf0 [ 248.003680] sp : ffff800015dc3cf0 [ 248.006989] x29: ffff800015dc3cf0 x28: ffff0005c97f6200 [ 248.012300] x27: 0000000000000000 x26: 0000000000000000 [ 248.017611] x25: ffff8000114e1c88 x24: ffff800015dc3e20 [ 248.022920] x23: 000000000000000f x22: ffff0005c5347000 [ 248.028230] x21: ffff8000119f52c8 x20: ffff800010a08000 [ 248.033539] x19: 0000ffffa5a26000 x18: 0000000000000000 [ 248.038848] x17: 0000000000000000 x16: 0000000000000000 [ 248.044158] x15: 0000000000000030 x14: ffffffffffffffff [ 248.049467] x13: ffff800095dc39d7 x12: ffff800015dc39df [ 248.054776] x11: ffff8000125802a8 x10: 0000000000001440 [ 248.060085] x9 : ffff80001012cbc4 x8 : ffff0005c97f76a0 [ 248.065395] x7 : 0000000000000000 x6 : ffff800012551000 [ 248.070704] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 [ 248.076013] x3 : 0000000000000000 x2 : 0000000000000000 [ 248.081323] x1 : ffff0005c97f6200 x0 : 0000000000000033 [ 248.086633] Call trace: [ 248.089074] 0xffffa5a26000 [ 248.091864] lkdtm_do_action+0x24/0x40 [ 248.095609] direct_entry+0xd0/0x140 [ 248.099183] full_proxy_write+0x68/0xbc [ 248.103016] vfs_write+0xec/0x20c [ 248.106326] ksys_write+0x70/0x100 [ 248.109723] __arm64_sys_write+0x24/0x30 [ 248.113645] el0_svc_common.constprop.0+0x84/0x1e0 [ 248.118431] do_el0_svc+0x2c/0xa4 [ 248.121744] el0_svc+0x20/0x30 [ 248.124794] el0_sync_handler+0xb0/0xb4 [ 248.128626] el0_sync+0x180/0x1c0 [ 248.131946] Code: bad PC value [ 248.134998] ---[ end trace 8a97a63494dae290 ]--- # Segmentation fault # [ 247.852606] lkdtm: Performing direct entry EXEC_USERSPACE # [ 247.858250] lkdtm: attempting ok execution at ffff800010a08000 # [ 247.864236] lkdtm: attempting bad execution at 0000ffffa5a26000 # [ 247.870419] Unable to handle kernel execution of user memory at virtual address 0000ffffa5a26000 # [ 247.879456] Mem abort info: # [ 247.883036] ESR = 0x8600000f # [ 247.886142] EC = 0x21: IABT (current EL), IL = 32 bits # [ 247.891486] SET = 0, FnV = 0 # [ 247.894542] EA = 0, S1PTW = 0 # [ 247.897780] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000604df8000 # [ 247.904405] [0000ffffa5a26000] pgd=0000000605868003, p4d=0000000605868003, pud=000000060779e003, pmd=000000060994f003, pte=00a800060e7a2f43 # [ 247.917058] Internal error: Oops: 8600000f [#10] PREEMPT SMP # [ 247.922716] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 247.975918] CPU: 0 PID: 2007 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 247.983655] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 247.990006] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 247.996012] pc : 0xffffa5a26000 # [ 247.999156] lr : lkdtm_EXEC_USERSPACE+0xe0/0xf0 # [ 248.003680] sp : ffff800015dc3cf0 # [ 248.006989] x29: ffff800015dc3cf0 x28: ffff0005c97f6200 # [ 248.012300] x27: 0000000000000000 x26: 0000000000000000 # [ 248.017611] x25: ffff8000114e1c88 x24: ffff800015dc3e20 # [ 248.022920] x23: 000000000000000f x22: ffff0005c5347000 # [ 248.028230] x21: ffff8000119f52c8 x20: ffff800010a08000 # [ 248.033539] x19: 0000ffffa5a26000 x18: 0000000000000000 # [ 248.038848] x17: 0000000000000000 x16: 0000000000000000 # [ 248.044158] x15: 0000000000000030 x14: ffffffffffffffff # [ 248.049467] x13: ffff800095dc39d7 x12: ffff800015dc39df # [ 248.054776] x11: ffff8000125802a8 x10: 0000000000001440 # [ 248.060085] x9 : ffff80001012cbc4 x8 : ffff0005c97f76a0 # [ 248.065395] x7 : 0000000000000000 x6 : ffff800012551000 # [ 248.070704] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 # [ 248.076013] x3 : 0000000000000000 x2 : 0000000000000000 # [ 248.081323] x1 : ffff0005c97f6200 x0 : 0000000000000033 # [ 248.086633] Call trace: # [ 248.089074] 0xffffa5a26000 # [ 248.091864] lkdtm_do_action+0x24/0x40 # [ 248.095609] direct_entry+0xd0/0x140 # [ 248.099183] full_proxy_write+0x68/0xbc # [ 248.103016] vfs_write+0xec/0x20c # [ 248.106326] ksys_write+0x70/0x100 # [ 248.109723] __arm64_sys_write+0x24/0x30 # [ 248.113645] el0_svc_common.constprop.0+0x84/0x1e0 # [ 248.118431] do_el0_svc+0x2c/0xa4 # [ 248.121744] el0_svc+0x20/0x30 # [ 248.124794] el0_sync_handler+0xb0/0xb4 # [ 248.128626] el0_sync+0x180/0x1c0 # [ 248.131946] Code: bad PC value # [ 248.134998] ---[ end trace 8a97a63494dae290 ]--- # EXEC_USERSPACE: saw 'call trace:': ok ok 35 selftests: lkdtm: EXEC_USERSPACE.sh # selftests: lkdtm: EXEC_NULL.sh [ 249.833811] lkdtm: Performing direct entry EXEC_NULL [ 249.838892] lkdtm: attempting ok execution at ffff800010a08000 [ 249.844793] lkdtm: attempting bad execution at 0000000000000000 [ 249.850794] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 [ 249.859674] Mem abort info: [ 249.862567] ESR = 0x86000004 [ 249.865728] EC = 0x21: IABT (current EL), IL = 32 bits [ 249.871069] SET = 0, FnV = 0 [ 249.874149] EA = 0, S1PTW = 0 [ 249.877315] user pgtable: 4k pages, 48-bit VAs, pgdp=000000060779f000 [ 249.883792] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 [ 249.890613] Internal error: Oops: 86000004 [#11] PREEMPT SMP [ 249.896270] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 249.949474] CPU: 1 PID: 2049 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 249.957212] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 249.963563] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 249.969569] pc : 0x0 [ 249.971759] lr : execute_location+0x84/0xa4 [ 249.975936] sp : ffff800015e53cd0 [ 249.979245] x29: ffff800015e53cd0 x28: ffff0005c40ab100 [ 249.984556] x27: 0000000000000000 x26: 0000000000000000 [ 249.989867] x25: ffff8000114e1c88 x24: ffff800015e53e20 [ 249.995177] x23: 000000000000000a x22: ffff0005c80ff000 [ 250.000487] x21: 0000000000000000 x20: ffff800010a08000 [ 250.005797] x19: 0000000000000000 x18: 0000000000000000 [ 250.011106] x17: 0000000000000000 x16: 0000000000000000 [ 250.016415] x15: 0000000000000030 x14: ffffffffffffffff [ 250.021725] x13: ffff800095e539b7 x12: ffff800015e539bf [ 250.027035] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 250.032344] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 250.037654] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 250.042964] x5 : ffff800012551c88 x4 : ffff00063f77ec50 [ 250.048273] x3 : 0000000000000000 x2 : 0000000000000000 [ 250.053583] x1 : ffff0005c40ab100 x0 : 0000000000000033 [ 250.058893] Call trace: [ 250.061337] 0x0 [ 250.063173] lkdtm_EXEC_NULL+0x20/0x2c [ 250.066922] lkdtm_do_action+0x24/0x40 [ 250.070666] direct_entry+0xd0/0x140 [ 250.074241] full_proxy_write+0x68/0xbc [ 250.078074] vfs_write+0xec/0x20c [ 250.081383] ksys_write+0x70/0x100 [ 250.084779] __arm64_sys_write+0x24/0x30 [ 250.088701] el0_svc_common.constprop.0+0x84/0x1e0 [ 250.093487] do_el0_svc+0x2c/0xa4 [ 250.096797] el0_svc+0x20/0x30 [ 250.099847] el0_sync_handler+0xb0/0xb4 [ 250.103679] el0_sync+0x180/0x1c0 [ 250.106999] Code: bad PC value [ 250.110053] ---[ end trace 8a97a63494dae291 ]--- # Segmentation fault # [ 249.833811] lkdtm: Performing direct entry EXEC_NULL # [ 249.838892] lkdtm: attempting ok execution at ffff800010a08000 # [ 249.844793] lkdtm: attempting bad execution at 0000000000000000 # [ 249.850794] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 # [ 249.859674] Mem abort info: # [ 249.862567] ESR = 0x86000004 # [ 249.865728] EC = 0x21: IABT (current EL), IL = 32 bits # [ 249.871069] SET = 0, FnV = 0 # [ 249.874149] EA = 0, S1PTW = 0 # [ 249.877315] user pgtable: 4k pages, 48-bit VAs, pgdp=000000060779f000 # [ 249.883792] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 # [ 249.890613] Internal error: Oops: 86000004 [#11] PREEMPT SMP # [ 249.896270] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 249.949474] CPU: 1 PID: 2049 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 249.957212] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 249.963563] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 249.969569] pc : 0x0 # [ 249.971759] lr : execute_location+0x84/0xa4 # [ 249.975936] sp : ffff800015e53cd0 # [ 249.979245] x29: ffff800015e53cd0 x28: ffff0005c40ab100 # [ 249.984556] x27: 0000000000000000 x26: 0000000000000000 # [ 249.989867] x25: ffff8000114e1c88 x24: ffff800015e53e20 # [ 249.995177] x23: 000000000000000a x22: ffff0005c80ff000 # [ 250.000487] x21: 0000000000000000 x20: ffff800010a08000 # [ 250.005797] x19: 0000000000000000 x18: 0000000000000000 # [ 250.011106] x17: 0000000000000000 x16: 0000000000000000 # [ 250.016415] x15: 0000000000000030 x14: ffffffffffffffff # [ 250.021725] x13: ffff800095e539b7 x12: ffff800015e539bf # [ 250.027035] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 250.032344] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 250.037654] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 250.042964] x5 : ffff800012551c88 x4 : ffff00063f77ec50 # [ 250.048273] x3 : 0000000000000000 x2 : 0000000000000000 # [ 250.053583] x1 : ffff0005c40ab100 x0 : 0000000000000033 # [ 250.058893] Call trace: # [ 250.061337] 0x0 # [ 250.063173] lkdtm_EXEC_NULL+0x20/0x2c # [ 250.066922] lkdtm_do_action+0x24/0x40 # [ 250.070666] direct_entry+0xd0/0x140 # [ 250.074241] full_proxy_write+0x68/0xbc # [ 250.078074] vfs_write+0xec/0x20c # [ 250.081383] ksys_write+0x70/0x100 # [ 250.084779] __arm64_sys_write+0x24/0x30 # [ 250.088701] el0_svc_common.constprop.0+0x84/0x1e0 # [ 250.093487] do_el0_svc+0x2c/0xa4 # [ 250.096797] el0_svc+0x20/0x30 # [ 250.099847] el0_sync_handler+0xb0/0xb4 # [ 250.103679] el0_sync+0x180/0x1c0 # [ 250.106999] Code: bad PC value # [ 250.110053] ---[ end trace 8a97a63494dae291 ]--- # EXEC_NULL: saw 'call trace:': ok ok 36 selftests: lkdtm: EXEC_NULL.sh # selftests: lkdtm: ACCESS_USERSPACE.sh [ 251.778101] lkdtm: Performing direct entry ACCESS_USERSPACE [ 251.783820] lkdtm: attempting bad read at 0000ffffa30ed000 [ 251.789370] lkdtm: FAIL: survived bad read [ 251.793636] lkdtm: attempting bad write at 0000ffffa30ed000 [ 251.799306] lkdtm: FAIL: survived bad write # [ 251.778101] lkdtm: Performing direct entry ACCESS_USERSPACE # [ 251.783820] lkdtm: attempting bad read at 0000ffffa30ed000 # [ 251.789370] lkdtm: FAIL: survived bad read # [ 251.793636] lkdtm: attempting bad write at 0000ffffa30ed000 # [ 251.799306] lkdtm: FAIL: survived bad write # ACCESS_USERSPACE: missing 'call trace:': [FAIL] not ok 37 selftests: lkdtm: ACCESS_USERSPACE.sh # exit=1 # selftests: lkdtm: ACCESS_NULL.sh [ 252.480681] lkdtm: Performing direct entry ACCESS_NULL [ 252.486052] lkdtm: attempting bad read at 0000000000000000 [ 252.491627] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 [ 252.500708] Mem abort info: [ 252.503625] ESR = 0x96000004 [ 252.506687] EC = 0x25: DABT (current EL), IL = 32 bits [ 252.512048] SET = 0, FnV = 0 [ 252.515107] EA = 0, S1PTW = 0 [ 252.518273] Data abort info: [ 252.521380] ISV = 0, ISS = 0x00000004 [ 252.525316] CM = 0, WnR = 0 [ 252.528315] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006077a0000 [ 252.534950] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 [ 252.541784] Internal error: Oops: 96000004 [#12] PREEMPT SMP [ 252.547441] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 252.600645] CPU: 0 PID: 2125 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 252.608382] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 252.614733] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 252.620744] pc : lkdtm_ACCESS_NULL+0x34/0x78 [ 252.625009] lr : lkdtm_ACCESS_NULL+0x2c/0x78 [ 252.629273] sp : ffff80001600bcf0 [ 252.632582] x29: ffff80001600bcf0 x28: ffff0005c55f1880 [ 252.637893] x27: 0000000000000000 x26: 0000000000000000 [ 252.643203] x25: ffff8000114e1c88 x24: ffff80001600be20 [ 252.648513] x23: 000000000000000c x22: ffff0005ca009000 [ 252.653823] x21: ffff8000119f5300 x20: 0000000000000000 [ 252.659132] x19: 0000000000000027 x18: 0000000000000000 [ 252.664442] x17: 0000000000000000 x16: 0000000000000000 [ 252.669751] x15: 0000000000000030 x14: ffffffffffffffff [ 252.675060] x13: ffff80009600b9d7 x12: ffff80001600b9df [ 252.680370] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 252.685680] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 252.690989] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 252.696299] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 [ 252.701608] x3 : 0000000000000000 x2 : 0000000000000000 [ 252.706918] x1 : 000000000000c0de x0 : ffff8000119f6000 [ 252.712228] Call trace: [ 252.714671] lkdtm_ACCESS_NULL+0x34/0x78 [ 252.718594] lkdtm_do_action+0x24/0x40 [ 252.722338] direct_entry+0xd0/0x140 [ 252.725912] full_proxy_write+0x68/0xbc [ 252.729745] vfs_write+0xec/0x20c [ 252.733055] ksys_write+0x70/0x100 [ 252.736451] __arm64_sys_write+0x24/0x30 [ 252.740373] el0_svc_common.constprop.0+0x84/0x1e0 [ 252.745158] do_el0_svc+0x2c/0xa4 [ 252.748469] el0_svc+0x20/0x30 [ 252.751518] el0_sync_handler+0xb0/0xb4 [ 252.755351] el0_sync+0x180/0x1c0 [ 252.758664] Code: 910dc000 97ffdf5f d2981bc1 d0003dc0 (f9400293) [ 252.764755] ---[ end trace 8a97a63494dae292 ]--- # Segmentation fault # [ 252.480681] lkdtm: Performing direct entry ACCESS_NULL # [ 252.486052] lkdtm: attempting bad read at 0000000000000000 # [ 252.491627] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 # [ 252.500708] Mem abort info: # [ 252.503625] ESR = 0x96000004 # [ 252.506687] EC = 0x25: DABT (current EL), IL = 32 bits # [ 252.512048] SET = 0, FnV = 0 # [ 252.515107] EA = 0, S1PTW = 0 # [ 252.518273] Data abort info: # [ 252.521380] ISV = 0, ISS = 0x00000004 # [ 252.525316] CM = 0, WnR = 0 # [ 252.528315] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006077a0000 # [ 252.534950] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 # [ 252.541784] Internal error: Oops: 96000004 [#12] PREEMPT SMP # [ 252.547441] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 252.600645] CPU: 0 PID: 2125 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 252.608382] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 252.614733] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 252.620744] pc : lkdtm_ACCESS_NULL+0x34/0x78 # [ 252.625009] lr : lkdtm_ACCESS_NULL+0x2c/0x78 # [ 252.629273] sp : ffff80001600bcf0 # [ 252.632582] x29: ffff80001600bcf0 x28: ffff0005c55f1880 # [ 252.637893] x27: 0000000000000000 x26: 0000000000000000 # [ 252.643203] x25: ffff8000114e1c88 x24: ffff80001600be20 # [ 252.648513] x23: 000000000000000c x22: ffff0005ca009000 # [ 252.653823] x21: ffff8000119f5300 x20: 0000000000000000 # [ 252.659132] x19: 0000000000000027 x18: 0000000000000000 # [ 252.664442] x17: 0000000000000000 x16: 0000000000000000 # [ 252.669751] x15: 0000000000000030 x14: ffffffffffffffff # [ 252.675060] x13: ffff80009600b9d7 x12: ffff80001600b9df # [ 252.680370] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 252.685680] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 252.690989] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 252.696299] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 # [ 252.701608] x3 : 0000000000000000 x2 : 0000000000000000 # [ 252.706918] x1 : 000000000000c0de x0 : ffff8000119f6000 # [ 252.712228] Call trace: # [ 252.714671] lkdtm_ACCESS_NULL+0x34/0x78 # [ 252.718594] lkdtm_do_action+0x24/0x40 # [ 252.722338] direct_entry+0xd0/0x140 # [ 252.725912] full_proxy_write+0x68/0xbc # [ 252.729745] vfs_write+0xec/0x20c # [ 252.733055] ksys_write+0x70/0x100 # [ 252.736451] __arm64_sys_write+0x24/0x30 # [ 252.740373] el0_svc_common.constprop.0+0x84/0x1e0 # [ 252.745158] do_el0_svc+0x2c/0xa4 # [ 252.748469] el0_svc+0x20/0x30 # [ 252.751518] el0_sync_handler+0xb0/0xb4 # [ 252.755351] el0_sync+0x180/0x1c0 # [ 252.758664] Code: 910dc000 97ffdf5f d2981bc1 d0003dc0 (f9400293) # [ 252.764755] ---[ end trace 8a97a63494dae292 ]--- # ACCESS_NULL: saw 'call trace:': ok ok 38 selftests: lkdtm: ACCESS_NULL.sh # selftests: lkdtm: WRITE_RO.sh [ 254.581544] lkdtm: Performing direct entry WRITE_RO [ 254.586571] lkdtm: attempting bad rodata write at ffff8000114e2178 [ 254.592865] Unable to handle kernel write to read-only memory at virtual address ffff8000114e2178 [ 254.601913] Mem abort info: [ 254.604819] ESR = 0x9600004e [ 254.607961] EC = 0x25: DABT (current EL), IL = 32 bits [ 254.613328] SET = 0, FnV = 0 [ 254.616567] EA = 0, S1PTW = 0 [ 254.619761] Data abort info: [ 254.622647] ISV = 0, ISS = 0x0000004e [ 254.626565] CM = 0, WnR = 1 [ 254.629572] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 254.637650] [ffff8000114e2178] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 [ 254.649336] Internal error: Oops: 9600004e [#13] PREEMPT SMP [ 254.655001] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 254.708282] CPU: 0 PID: 2170 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 254.716022] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 254.722377] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 254.728393] pc : lkdtm_WRITE_RO+0x44/0x5c [ 254.732401] lr : lkdtm_WRITE_RO+0x2c/0x5c [ 254.736406] sp : ffff8000160fbcf0 [ 254.739718] x29: ffff8000160fbcf0 x28: ffff0005c0de3100 [ 254.745035] x27: 0000000000000000 x26: 0000000000000000 [ 254.750351] x25: ffff8000114e1c88 x24: ffff8000160fbe20 [ 254.755667] x23: 0000000000000009 x22: ffff0005c595f000 [ 254.760982] x21: ffff8000119f5310 x20: ffff8000114e1f08 [ 254.766297] x19: ffff8000114e2000 x18: 0000000000000000 [ 254.771612] x17: 0000000000000000 x16: 0000000000000000 [ 254.776927] x15: 0000000000000030 x14: ffffffffffffffff [ 254.782241] x13: ffff8000960fb9d7 x12: ffff8000160fb9df [ 254.787556] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 254.792871] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 254.798187] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 254.803503] x5 : ffff800012551c88 x4 : ffff00063f77ec50 [ 254.808818] x3 : 0000000000000000 x2 : 00000000abcd1234 [ 254.814133] x1 : 000000000198b861 x0 : ffff8000119f6260 [ 254.819449] Call trace: [ 254.821895] lkdtm_WRITE_RO+0x44/0x5c [ 254.825561] lkdtm_do_action+0x24/0x40 [ 254.829309] direct_entry+0xd0/0x140 [ 254.832886] full_proxy_write+0x68/0xbc [ 254.836723] vfs_write+0xec/0x20c [ 254.840036] ksys_write+0x70/0x100 [ 254.843437] __arm64_sys_write+0x24/0x30 [ 254.847362] el0_svc_common.constprop.0+0x84/0x1e0 [ 254.852151] do_el0_svc+0x2c/0xa4 [ 254.855465] el0_svc+0x20/0x30 [ 254.858518] el0_sync_handler+0xb0/0xb4 [ 254.862354] el0_sync+0x180/0x1c0 [ 254.865671] Code: f2b579a2 d0003dc0 ca020021 91098000 (f900be61) [ 254.871766] ---[ end trace 8a97a63494dae293 ]--- # Segmentation fault # [ 254.581544] lkdtm: Performing direct entry WRITE_RO # [ 254.586571] lkdtm: attempting bad rodata write at ffff8000114e2178 # [ 254.592865] Unable to handle kernel write to read-only memory at virtual address ffff8000114e2178 # [ 254.601913] Mem abort info: # [ 254.604819] ESR = 0x9600004e # [ 254.607961] EC = 0x25: DABT (current EL), IL = 32 bits # [ 254.613328] SET = 0, FnV = 0 # [ 254.616567] EA = 0, S1PTW = 0 # [ 254.619761] Data abort info: # [ 254.622647] ISV = 0, ISS = 0x0000004e # [ 254.626565] CM = 0, WnR = 1 # [ 254.629572] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 254.637650] [ffff8000114e2178] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 # [ 254.649336] Internal error: Oops: 9600004e [#13] PREEMPT SMP # [ 254.655001] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 254.708282] CPU: 0 PID: 2170 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 254.716022] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 254.722377] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 254.728393] pc : lkdtm_WRITE_RO+0x44/0x5c # [ 254.732401] lr : lkdtm_WRITE_RO+0x2c/0x5c # [ 254.736406] sp : ffff8000160fbcf0 # [ 254.739718] x29: ffff8000160fbcf0 x28: ffff0005c0de3100 # [ 254.745035] x27: 0000000000000000 x26: 0000000000000000 # [ 254.750351] x25: ffff8000114e1c88 x24: ffff8000160fbe20 # [ 254.755667] x23: 0000000000000009 x22: ffff0005c595f000 # [ 254.760982] x21: ffff8000119f5310 x20: ffff8000114e1f08 # [ 254.766297] x19: ffff8000114e2000 x18: 0000000000000000 # [ 254.771612] x17: 0000000000000000 x16: 0000000000000000 # [ 254.776927] x15: 0000000000000030 x14: ffffffffffffffff # [ 254.782241] x13: ffff8000960fb9d7 x12: ffff8000160fb9df # [ 254.787556] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 254.792871] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 254.798187] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 254.803503] x5 : ffff800012551c88 x4 : ffff00063f77ec50 # [ 254.808818] x3 : 0000000000000000 x2 : 00000000abcd1234 # [ 254.814133] x1 : 000000000198b861 x0 : ffff8000119f6260 # [ 254.819449] Call trace: # [ 254.821895] lkdtm_WRITE_RO+0x44/0x5c # [ 254.825561] lkdtm_do_action+0x24/0x40 # [ 254.829309] direct_entry+0xd0/0x140 # [ 254.832886] full_proxy_write+0x68/0xbc # [ 254.836723] vfs_write+0xec/0x20c # [ 254.840036] ksys_write+0x70/0x100 # [ 254.843437] __arm64_sys_write+0x24/0x30 # [ 254.847362] el0_svc_common.constprop.0+0x84/0x1e0 # [ 254.852151] do_el0_svc+0x2c/0xa4 # [ 254.855465] el0_svc+0x20/0x30 # [ 254.858518] el0_sync_handler+0xb0/0xb4 # [ 254.862354] el0_sync+0x180/0x1c0 # [ 254.865671] Code: f2b579a2 d0003dc0 ca020021 91098000 (f900be61) # [ 254.871766] ---[ end trace 8a97a63494dae293 ]--- # WRITE_RO: saw 'call trace:': ok ok 39 selftests: lkdtm: WRITE_RO.sh # selftests: lkdtm: WRITE_RO_AFTER_INIT.sh [ 256.753309] lkdtm: Performing direct entry WRITE_RO_AFTER_INIT [ 256.759276] lkdtm: attempting bad ro_after_init write at ffff800011ac7bb0 [ 256.766379] Unable to handle kernel write to read-only memory at virtual address ffff800011ac7bb0 [ 256.775406] Mem abort info: [ 256.778227] ESR = 0x9600004f [ 256.781406] EC = 0x25: DABT (current EL), IL = 32 bits [ 256.786753] SET = 0, FnV = 0 [ 256.790139] EA = 0, S1PTW = 0 [ 256.793423] Data abort info: [ 256.796329] ISV = 0, ISS = 0x0000004f [ 256.800184] CM = 0, WnR = 1 [ 256.803157] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 256.810056] [ffff800011ac7bb0] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffc003, pte=0060000049cc7783 [ 256.822674] Internal error: Oops: 9600004f [#14] PREEMPT SMP [ 256.828332] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 256.881534] CPU: 0 PID: 2215 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 256.889271] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 256.895622] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 256.901633] pc : lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 [ 256.906592] lr : lkdtm_WRITE_RO_AFTER_INIT+0x50/0x80 [ 256.911550] sp : ffff8000161c3cf0 [ 256.914859] x29: ffff8000161c3cf0 x28: ffff0005c82db100 [ 256.920170] x27: 0000000000000000 x26: 0000000000000000 [ 256.925480] x25: ffff8000114e1c88 x24: ffff8000161c3e20 [ 256.930791] x23: 0000000000000014 x22: ffff0005c5a24000 [ 256.936101] x21: ffff8000119f5320 x20: ffff8000114e1f18 [ 256.941410] x19: ffff800011ac7000 x18: 0000000000000000 [ 256.946719] x17: 0000000000000000 x16: 0000000000000000 [ 256.952029] x15: 0000000000000030 x14: ffffffffffffffff [ 256.957339] x13: ffff8000961c39d7 x12: ffff8000161c39df [ 256.962648] x11: ffff8000125802a8 x10: 0000000000001440 [ 256.967958] x9 : ffff80001012cbc4 x8 : ffff0005c82dc5a0 [ 256.973267] x7 : 0000000000000000 x6 : ffff800012551000 [ 256.978577] x5 : ffff800012551c88 x4 : ffff00063f77ec50 [ 256.983886] x3 : 0000000000000000 x2 : 00000000abcd1234 [ 256.989196] x1 : 00000000fe67479e x0 : ffff8000119f6260 [ 256.994506] Call trace: [ 256.996949] lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 [ 257.001567] lkdtm_do_action+0x24/0x40 [ 257.005311] direct_entry+0xd0/0x140 [ 257.008884] full_proxy_write+0x68/0xbc [ 257.012718] vfs_write+0xec/0x20c [ 257.016027] ksys_write+0x70/0x100 [ 257.019423] __arm64_sys_write+0x24/0x30 [ 257.023345] el0_svc_common.constprop.0+0x84/0x1e0 [ 257.028131] do_el0_svc+0x2c/0xa4 [ 257.031441] el0_svc+0x20/0x30 [ 257.034490] el0_sync_handler+0xb0/0xb4 [ 257.038323] el0_sync+0x180/0x1c0 [ 257.041637] Code: f2b579a2 d0003dc0 ca020021 91098000 (f905da61) [ 257.047728] ---[ end trace 8a97a63494dae294 ]--- # Segmentation fault # [ 256.753309] lkdtm: Performing direct entry WRITE_RO_AFTER_INIT # [ 256.759276] lkdtm: attempting bad ro_after_init write at ffff800011ac7bb0 # [ 256.766379] Unable to handle kernel write to read-only memory at virtual address ffff800011ac7bb0 # [ 256.775406] Mem abort info: # [ 256.778227] ESR = 0x9600004f # [ 256.781406] EC = 0x25: DABT (current EL), IL = 32 bits # [ 256.786753] SET = 0, FnV = 0 # [ 256.790139] EA = 0, S1PTW = 0 # [ 256.793423] Data abort info: # [ 256.796329] ISV = 0, ISS = 0x0000004f # [ 256.800184] CM = 0, WnR = 1 # [ 256.803157] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 256.810056] [ffff800011ac7bb0] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffc003, pte=0060000049cc7783 # [ 256.822674] Internal error: Oops: 9600004f [#14] PREEMPT SMP # [ 256.828332] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 256.881534] CPU: 0 PID: 2215 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 256.889271] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 256.895622] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 256.901633] pc : lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 # [ 256.906592] lr : lkdtm_WRITE_RO_AFTER_INIT+0x50/0x80 # [ 256.911550] sp : ffff8000161c3cf0 # [ 256.914859] x29: ffff8000161c3cf0 x28: ffff0005c82db100 # [ 256.920170] x27: 0000000000000000 x26: 0000000000000000 # [ 256.925480] x25: ffff8000114e1c88 x24: ffff8000161c3e20 # [ 256.930791] x23: 0000000000000014 x22: ffff0005c5a24000 # [ 256.936101] x21: ffff8000119f5320 x20: ffff8000114e1f18 # [ 256.941410] x19: ffff800011ac7000 x18: 0000000000000000 # [ 256.946719] x17: 0000000000000000 x16: 0000000000000000 # [ 256.952029] x15: 0000000000000030 x14: ffffffffffffffff # [ 256.957339] x13: ffff8000961c39d7 x12: ffff8000161c39df # [ 256.962648] x11: ffff8000125802a8 x10: 0000000000001440 # [ 256.967958] x9 : ffff80001012cbc4 x8 : ffff0005c82dc5a0 # [ 256.973267] x7 : 0000000000000000 x6 : ffff800012551000 # [ 256.978577] x5 : ffff800012551c88 x4 : ffff00063f77ec50 # [ 256.983886] x3 : 0000000000000000 x2 : 00000000abcd1234 # [ 256.989196] x1 : 00000000fe67479e x0 : ffff8000119f6260 # [ 256.994506] Call trace: # [ 256.996949] lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 # [ 257.001567] lkdtm_do_action+0x24/0x40 # [ 257.005311] direct_entry+0xd0/0x140 # [ 257.008884] full_proxy_write+0x68/0xbc # [ 257.012718] vfs_write+0xec/0x20c # [ 257.016027] ksys_write+0x70/0x100 # [ 257.019423] __arm64_sys_write+0x24/0x30 # [ 257.023345] el0_svc_common.constprop.0+0x84/0x1e0 # [ 257.028131] do_el0_svc+0x2c/0xa4 # [ 257.031441] el0_svc+0x20/0x30 # [ 257.034490] el0_sync_handler+0xb0/0xb4 # [ 257.038323] el0_sync+0x180/0x1c0 # [ 257.041637] Code: f2b579a2 d0003dc0 ca020021 91098000 (f905da61) # [ 257.047728] ---[ end trace 8a97a63494dae294 ]--- # WRITE_RO_AFTER_INIT: saw 'call trace:': ok ok 40 selftests: lkdtm: WRITE_RO_AFTER_INIT.sh # selftests: lkdtm: WRITE_KERN.sh [ 258.776454] lkdtm: Performing direct entry WRITE_KERN [ 258.781585] lkdtm: attempting bad 8603732 byte write at ffff80001123c854 [ 258.788453] Unable to handle kernel write to read-only memory at virtual address ffff80001123c854 [ 258.797630] Mem abort info: [ 258.800639] ESR = 0x9600004f [ 258.803920] EC = 0x25: DABT (current EL), IL = 32 bits [ 258.809319] SET = 0, FnV = 0 [ 258.812401] EA = 0, S1PTW = 0 [ 258.815574] Data abort info: [ 258.818458] ISV = 0, ISS = 0x0000004f [ 258.822475] CM = 0, WnR = 1 [ 258.825550] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 258.832264] [ffff80001123c854] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffd003, pte=005000004943c783 [ 258.844889] Internal error: Oops: 9600004f [#15] PREEMPT SMP [ 258.850547] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 258.903751] CPU: 0 PID: 2260 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 258.911488] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 258.917838] pstate: 20000005 (nzCv daif -PAN -UAO -TCO BTYPE=--) [ 258.923849] pc : __memcpy+0x110/0x180 [ 258.927512] lr : lkdtm_WRITE_KERN+0x54/0x88 [ 258.931688] sp : ffff80001626bce0 [ 258.934997] x29: ffff80001626bce0 x28: ffff0005c0de6200 [ 258.940308] x27: 0000000000000000 x26: 0000000000000000 [ 258.945618] x25: ffff8000114e1c88 x24: ffff80001626be20 [ 258.950927] x23: 000000000000000b x22: ffff0005ca12c000 [ 258.956237] x21: 0000000000834854 x20: ffff800010a08000 [ 258.961547] x19: ffff80001123c854 x18: 0000000000000000 [ 258.966857] x17: 0000000000000000 x16: 0000000000000000 [ 258.972166] x15: 0000000000000030 x14: f9000fe097e4fd86 [ 258.977476] x13: f942dc00910003fd x12: 52819801d2800802 [ 258.982786] x11: a9be7bfdb00085e0 x10: d503233fd503201f [ 258.988095] x9 : aa1e03e9d65f03c0 x8 : d50323bfd503233f [ 258.993404] x7 : d503201faa1e03e9 x6 : ffff80001123c854 [ 258.998713] x5 : ffff800012551c88 x4 : 0000000000000000 [ 259.004022] x3 : 0000000000000000 x2 : 00000000008347d4 [ 259.009332] x1 : ffff800010a08040 x0 : ffff80001123c854 [ 259.014643] Call trace: [ 259.017086] __memcpy+0x110/0x180 [ 259.020401] lkdtm_do_action+0x24/0x40 [ 259.024145] direct_entry+0xd0/0x140 [ 259.027717] full_proxy_write+0x68/0xbc [ 259.031551] vfs_write+0xec/0x20c [ 259.034860] ksys_write+0x70/0x100 [ 259.038257] __arm64_sys_write+0x24/0x30 [ 259.042179] el0_svc_common.constprop.0+0x84/0x1e0 [ 259.046964] do_el0_svc+0x2c/0xa4 [ 259.050275] el0_svc+0x20/0x30 [ 259.053325] el0_sync_handler+0xb0/0xb4 [ 259.057157] el0_sync+0x180/0x1c0 [ 259.060471] Code: a8c12027 a8c12829 a8c1302b a8c1382d (a88120c7) [ 259.066561] ---[ end trace 8a97a63494dae295 ]--- # Segmentation fault # [ 258.776454] lkdtm: Performing direct entry WRITE_KERN # [ 258.781585] lkdtm: attempting bad 8603732 byte write at ffff80001123c854 # [ 258.788453] Unable to handle kernel write to read-only memory at virtual address ffff80001123c854 # [ 258.797630] Mem abort info: # [ 258.800639] ESR = 0x9600004f # [ 258.803920] EC = 0x25: DABT (current EL), IL = 32 bits # [ 258.809319] SET = 0, FnV = 0 # [ 258.812401] EA = 0, S1PTW = 0 # [ 258.815574] Data abort info: # [ 258.818458] ISV = 0, ISS = 0x0000004f # [ 258.822475] CM = 0, WnR = 1 # [ 258.825550] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 258.832264] [ffff80001123c854] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffd003, pte=005000004943c783 # [ 258.844889] Internal error: Oops: 9600004f [#15] PREEMPT SMP # [ 258.850547] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 258.903751] CPU: 0 PID: 2260 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 258.911488] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 258.917838] pstate: 20000005 (nzCv daif -PAN -UAO -TCO BTYPE=--) # [ 258.923849] pc : __memcpy+0x110/0x180 # [ 258.927512] lr : lkdtm_WRITE_KERN+0x54/0x88 # [ 258.931688] sp : ffff80001626bce0 # [ 258.934997] x29: ffff80001626bce0 x28: ffff0005c0de6200 # [ 258.940308] x27: 0000000000000000 x26: 0000000000000000 # [ 258.945618] x25: ffff8000114e1c88 x24: ffff80001626be20 # [ 258.950927] x23: 000000000000000b x22: ffff0005ca12c000 # [ 258.956237] x21: 0000000000834854 x20: ffff800010a08000 # [ 258.961547] x19: ffff80001123c854 x18: 0000000000000000 # [ 258.966857] x17: 0000000000000000 x16: 0000000000000000 # [ 258.972166] x15: 0000000000000030 x14: f9000fe097e4fd86 # [ 258.977476] x13: f942dc00910003fd x12: 52819801d2800802 # [ 258.982786] x11: a9be7bfdb00085e0 x10: d503233fd503201f # [ 258.988095] x9 : aa1e03e9d65f03c0 x8 : d50323bfd503233f # [ 258.993404] x7 : d503201faa1e03e9 x6 : ffff80001123c854 # [ 258.998713] x5 : ffff800012551c88 x4 : 0000000000000000 # [ 259.004022] x3 : 0000000000000000 x2 : 00000000008347d4 # [ 259.009332] x1 : ffff800010a08040 x0 : ffff80001123c854 # [ 259.014643] Call trace: # [ 259.017086] __memcpy+0x110/0x180 # [ 259.020401] lkdtm_do_action+0x24/0x40 # [ 259.024145] direct_entry+0xd0/0x140 # [ 259.027717] full_proxy_write+0x68/0xbc # [ 259.031551] vfs_write+0xec/0x20c # [ 259.034860] ksys_write+0x70/0x100 # [ 259.038257] __arm64_sys_write+0x24/0x30 # [ 259.042179] el0_svc_common.constprop.0+0x84/0x1e0 # [ 259.046964] do_el0_svc+0x2c/0xa4 # [ 259.050275] el0_svc+0x20/0x30 # [ 259.053325] el0_sync_handler+0xb0/0xb4 # [ 259.057157] el0_sync+0x180/0x1c0 # [ 259.060471] Code: a8c12027 a8c12829 a8c1302b a8c1382d (a88120c7) # [ 259.066561] ---[ end trace 8a97a63494dae295 ]--- # WRITE_KERN: saw 'call trace:': ok ok 41 selftests: lkdtm: WRITE_KERN.sh # selftests: lkdtm: REFCOUNT_INC_OVERFLOW.sh [ 260.923866] lkdtm: Performing direct entry REFCOUNT_INC_OVERFLOW [ 260.929977] lkdtm: attempting good refcount_inc() without overflow [ 260.936219] lkdtm: attempting bad refcount_inc() overflow [ 260.941687] ------------[ cut here ]------------ [ 260.946396] refcount_t: saturated; leaking memory. [ 260.951345] WARNING: CPU: 5 PID: 2305 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 [ 260.959782] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 261.013111] CPU: 5 PID: 2305 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 261.020853] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 261.027208] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 261.033214] pc : refcount_warn_saturate+0x74/0x144 [ 261.038004] lr : refcount_warn_saturate+0x74/0x144 [ 261.042792] sp : ffff800016373cd0 [ 261.046104] x29: ffff800016373cd0 x28: ffff0005c2fb8000 [ 261.051422] x27: 0000000000000000 x26: 0000000000000000 [ 261.056739] x25: ffff8000114e1c88 x24: ffff800016373e20 [ 261.062057] x23: 0000000000000016 x22: ffff0005c2674000 [ 261.067375] x21: ffff8000119f5348 x20: ffff8000114e1f38 [ 261.072693] x19: 000000000000002b x18: 0000000000000000 [ 261.078010] x17: 0000000000000000 x16: 0000000000000000 [ 261.083327] x15: 0000000000000030 x14: ffffffffffffffff [ 261.088644] x13: ffff800096373977 x12: ffff80001637397f [ 261.093962] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 261.099279] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 261.104597] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 261.109915] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 [ 261.115232] x3 : 0000000000000000 x2 : 0000000000000000 [ 261.120550] x1 : 0000000000000000 x0 : ffff0005c2fb8000 [ 261.125868] Call trace: [ 261.128315] refcount_warn_saturate+0x74/0x144 [ 261.132763] __refcount_add.constprop.0+0x7c/0x90 [ 261.137472] lkdtm_REFCOUNT_INC_OVERFLOW+0x70/0xa0 [ 261.142262] lkdtm_do_action+0x24/0x40 [ 261.146010] direct_entry+0xd0/0x140 [ 261.149587] full_proxy_write+0x68/0xbc [ 261.153425] vfs_write+0xec/0x20c [ 261.156739] ksys_write+0x70/0x100 [ 261.160140] __arm64_sys_write+0x24/0x30 [ 261.164068] el0_svc_common.constprop.0+0x84/0x1e0 [ 261.168858] do_el0_svc+0x2c/0xa4 [ 261.172174] el0_svc+0x20/0x30 [ 261.175229] el0_sync_handler+0xb0/0xb4 [ 261.179066] el0_sync+0x180/0x1c0 [ 261.182379] irq event stamp: 0 [ 261.185438] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 261.191710] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 261.199887] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 261.208062] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 261.214327] ---[ end trace 8a97a63494dae296 ]--- [ 261.219325] lkdtm: Overflow detected: saturated # [ 260.923866] lkdtm: Performing direct entry REFCOUNT_INC_OVERFLOW # [ 260.929977] lkdtm: attempting good refcount_inc() without overflow # [ 260.936219] lkdtm: attempting bad refcount_inc() overflow # [ 260.941687] ------------[ cut here ]------------ # [ 260.946396] refcount_t: saturated; leaking memory. # [ 260.951345] WARNING: CPU: 5 PID: 2305 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 260.959782] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 261.013111] CPU: 5 PID: 2305 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 261.020853] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 261.027208] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 261.033214] pc : refcount_warn_saturate+0x74/0x144 # [ 261.038004] lr : refcount_warn_saturate+0x74/0x144 # [ 261.042792] sp : ffff800016373cd0 # [ 261.046104] x29: ffff800016373cd0 x28: ffff0005c2fb8000 # [ 261.051422] x27: 0000000000000000 x26: 0000000000000000 # [ 261.056739] x25: ffff8000114e1c88 x24: ffff800016373e20 # [ 261.062057] x23: 0000000000000016 x22: ffff0005c2674000 # [ 261.067375] x21: ffff8000119f5348 x20: ffff8000114e1f38 # [ 261.072693] x19: 000000000000002b x18: 0000000000000000 # [ 261.078010] x17: 0000000000000000 x16: 0000000000000000 # [ 261.083327] x15: 0000000000000030 x14: ffffffffffffffff # [ 261.088644] x13: ffff800096373977 x12: ffff80001637397f # [ 261.093962] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 261.099279] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 261.104597] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 261.109915] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 # [ 261.115232] x3 : 0000000000000000 x2 : 0000000000000000 # [ 261.120550] x1 : 0000000000000000 x0 : ffff0005c2fb8000 # [ 261.125868] Call trace: # [ 261.128315] refcount_warn_saturate+0x74/0x144 # [ 261.132763] __refcount_add.constprop.0+0x7c/0x90 # [ 261.137472] lkdtm_REFCOUNT_INC_OVERFLOW+0x70/0xa0 # [ 261.142262] lkdtm_do_action+0x24/0x40 # [ 261.146010] direct_entry+0xd0/0x140 # [ 261.149587] full_proxy_write+0x68/0xbc # [ 261.153425] vfs_write+0xec/0x20c # [ 261.156739] ksys_write+0x70/0x100 # [ 261.160140] __arm64_sys_write+0x24/0x30 # [ 261.164068] el0_svc_common.constprop.0+0x84/0x1e0 # [ 261.168858] do_el0_svc+0x2c/0xa4 # [ 261.172174] el0_svc+0x20/0x30 # [ 261.175229] el0_sync_handler+0xb0/0xb4 # [ 261.179066] el0_sync+0x180/0x1c0 # [ 261.182379] irq event stamp: 0 # [ 261.185438] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 261.191710] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 261.199887] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 261.208062] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 261.214327] ---[ end trace 8a97a63494dae296 ]--- # [ 261.219325] lkdtm: Overflow detected: saturated # REFCOUNT_INC_OVERFLOW: saw 'call trace:': ok ok 42 selftests: lkdtm: REFCOUNT_INC_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_ADD_OVERFLOW.sh [ 262.434672] lkdtm: Performing direct entry REFCOUNT_ADD_OVERFLOW [ 262.440824] lkdtm: attempting good refcount_add() without overflow [ 262.447070] lkdtm: attempting bad refcount_add() overflow [ 262.452511] ------------[ cut here ]------------ [ 262.457227] refcount_t: saturated; leaking memory. [ 262.462163] WARNING: CPU: 2 PID: 2337 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 [ 262.470600] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 262.523931] CPU: 2 PID: 2337 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 262.531671] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 262.538027] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 262.544035] pc : refcount_warn_saturate+0x74/0x144 [ 262.548824] lr : refcount_warn_saturate+0x74/0x144 [ 262.553612] sp : ffff80001641bcd0 [ 262.556925] x29: ffff80001641bcd0 x28: ffff0005c78e0000 [ 262.562243] x27: 0000000000000000 x26: 0000000000000000 [ 262.567561] x25: ffff8000114e1c88 x24: ffff80001641be20 [ 262.572879] x23: 0000000000000016 x22: ffff0005c5f97000 [ 262.578197] x21: ffff8000119f5360 x20: ffff8000114e1f48 [ 262.583514] x19: 000000000000002c x18: 0000000000000000 [ 262.588831] x17: 0000000000000000 x16: 0000000000000000 [ 262.594149] x15: 0000000000000030 x14: ffffffffffffffff [ 262.599467] x13: ffff80009641b977 x12: ffff80001641b97f [ 262.604785] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 262.610102] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 262.615419] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 262.620737] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 262.626054] x3 : 0000000000000000 x2 : 0000000000000000 [ 262.631372] x1 : 0000000000000000 x0 : ffff0005c78e0000 [ 262.636690] Call trace: [ 262.639136] refcount_warn_saturate+0x74/0x144 [ 262.643585] __refcount_add.constprop.0+0x7c/0x90 [ 262.648293] lkdtm_REFCOUNT_ADD_OVERFLOW+0x7c/0xac [ 262.653084] lkdtm_do_action+0x24/0x40 [ 262.656832] direct_entry+0xd0/0x140 [ 262.660408] full_proxy_write+0x68/0xbc [ 262.664247] vfs_write+0xec/0x20c [ 262.667560] ksys_write+0x70/0x100 [ 262.670961] __arm64_sys_write+0x24/0x30 [ 262.674890] el0_svc_common.constprop.0+0x84/0x1e0 [ 262.679681] do_el0_svc+0x2c/0xa4 [ 262.682996] el0_svc+0x20/0x30 [ 262.686050] el0_sync_handler+0xb0/0xb4 [ 262.689887] el0_sync+0x180/0x1c0 [ 262.693200] irq event stamp: 0 [ 262.696260] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 262.702532] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 262.710710] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 262.718885] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 262.725150] ---[ end trace 8a97a63494dae297 ]--- [ 262.730140] lkdtm: Overflow detected: saturated # [ 262.434672] lkdtm: Performing direct entry REFCOUNT_ADD_OVERFLOW # [ 262.440824] lkdtm: attempting good refcount_add() without overflow # [ 262.447070] lkdtm: attempting bad refcount_add() overflow # [ 262.452511] ------------[ cut here ]------------ # [ 262.457227] refcount_t: saturated; leaking memory. # [ 262.462163] WARNING: CPU: 2 PID: 2337 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 262.470600] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 262.523931] CPU: 2 PID: 2337 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 262.531671] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 262.538027] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 262.544035] pc : refcount_warn_saturate+0x74/0x144 # [ 262.548824] lr : refcount_warn_saturate+0x74/0x144 # [ 262.553612] sp : ffff80001641bcd0 # [ 262.556925] x29: ffff80001641bcd0 x28: ffff0005c78e0000 # [ 262.562243] x27: 0000000000000000 x26: 0000000000000000 # [ 262.567561] x25: ffff8000114e1c88 x24: ffff80001641be20 # [ 262.572879] x23: 0000000000000016 x22: ffff0005c5f97000 # [ 262.578197] x21: ffff8000119f5360 x20: ffff8000114e1f48 # [ 262.583514] x19: 000000000000002c x18: 0000000000000000 # [ 262.588831] x17: 0000000000000000 x16: 0000000000000000 # [ 262.594149] x15: 0000000000000030 x14: ffffffffffffffff # [ 262.599467] x13: ffff80009641b977 x12: ffff80001641b97f # [ 262.604785] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 262.610102] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 262.615419] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 262.620737] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 262.626054] x3 : 0000000000000000 x2 : 0000000000000000 # [ 262.631372] x1 : 0000000000000000 x0 : ffff0005c78e0000 # [ 262.636690] Call trace: # [ 262.639136] refcount_warn_saturate+0x74/0x144 # [ 262.643585] __refcount_add.constprop.0+0x7c/0x90 # [ 262.648293] lkdtm_REFCOUNT_ADD_OVERFLOW+0x7c/0xac # [ 262.653084] lkdtm_do_action+0x24/0x40 # [ 262.656832] direct_entry+0xd0/0x140 # [ 262.660408] full_proxy_write+0x68/0xbc # [ 262.664247] vfs_write+0xec/0x20c # [ 262.667560] ksys_write+0x70/0x100 # [ 262.670961] __arm64_sys_write+0x24/0x30 # [ 262.674890] el0_svc_common.constprop.0+0x84/0x1e0 # [ 262.679681] do_el0_svc+0x2c/0xa4 # [ 262.682996] el0_svc+0x20/0x30 # [ 262.686050] el0_sync_handler+0xb0/0xb4 # [ 262.689887] el0_sync+0x180/0x1c0 # [ 262.693200] irq event stamp: 0 # [ 262.696260] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 262.702532] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 262.710710] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 262.718885] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 262.725150] ---[ end trace 8a97a63494dae297 ]--- # [ 262.730140] lkdtm: Overflow detected: saturated # REFCOUNT_ADD_OVERFLOW: saw 'call trace:': ok ok 43 selftests: lkdtm: REFCOUNT_ADD_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh [ 263.928820] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_OVERFLOW [ 263.935730] lkdtm: attempting bad refcount_inc_not_zero() overflow [ 263.941975] ------------[ cut here ]------------ [ 263.946661] refcount_t: saturated; leaking memory. [ 263.951633] WARNING: CPU: 2 PID: 2369 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 [ 263.960072] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 264.013403] CPU: 2 PID: 2369 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 264.021143] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 264.027499] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 264.033505] pc : refcount_warn_saturate+0xc8/0x144 [ 264.038294] lr : refcount_warn_saturate+0xc8/0x144 [ 264.043083] sp : ffff8000164bbcb0 [ 264.046396] x29: ffff8000164bbcb0 x28: ffff0005c6408000 [ 264.051714] x27: 0000000000000000 x26: 0000000000000000 [ 264.057031] x25: ffff8000114e1c88 x24: ffff8000164bbe20 [ 264.062349] x23: 000000000000001f x22: ffff0005c7765000 [ 264.067667] x21: 0000000000000001 x20: 000000007fffffff [ 264.072984] x19: ffff8000164bbd04 x18: 0000000000000000 [ 264.078301] x17: 0000000000000000 x16: 0000000000000000 [ 264.083619] x15: 0000000000000030 x14: ffffffffffffffff [ 264.088937] x13: ffff8000964bb957 x12: ffff8000164bb95f [ 264.094254] x11: ffff8000125802a8 x10: 0000000000001440 [ 264.099572] x9 : ffff80001012cbc4 x8 : ffff0005c64094a0 [ 264.104889] x7 : 0000000000000000 x6 : ffff800012551000 [ 264.110207] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 264.115524] x3 : 0000000000000000 x2 : 0000000000000000 [ 264.120841] x1 : 0000000000000000 x0 : ffff0005c6408000 [ 264.126160] Call trace: [ 264.128606] refcount_warn_saturate+0xc8/0x144 [ 264.133055] __refcount_add_not_zero.constprop.0+0x98/0xb4 [ 264.138540] lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW+0x48/0x8c [ 264.144115] lkdtm_do_action+0x24/0x40 [ 264.147863] direct_entry+0xd0/0x140 [ 264.151439] full_proxy_write+0x68/0xbc [ 264.155278] vfs_write+0xec/0x20c [ 264.158591] ksys_write+0x70/0x100 [ 264.161992] __arm64_sys_write+0x24/0x30 [ 264.165920] el0_svc_common.constprop.0+0x84/0x1e0 [ 264.170711] do_el0_svc+0x2c/0xa4 [ 264.174026] el0_svc+0x20/0x30 [ 264.177079] el0_sync_handler+0xb0/0xb4 [ 264.180916] el0_sync+0x180/0x1c0 [ 264.184230] irq event stamp: 0 [ 264.187289] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 264.193561] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 264.201739] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 264.209914] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 264.216179] ---[ end trace 8a97a63494dae298 ]--- [ 264.220921] lkdtm: Overflow detected: saturated # [ 263.928820] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_OVERFLOW # [ 263.935730] lkdtm: attempting bad refcount_inc_not_zero() overflow # [ 263.941975] ------------[ cut here ]------------ # [ 263.946661] refcount_t: saturated; leaking memory. # [ 263.951633] WARNING: CPU: 2 PID: 2369 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 263.960072] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 264.013403] CPU: 2 PID: 2369 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 264.021143] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 264.027499] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 264.033505] pc : refcount_warn_saturate+0xc8/0x144 # [ 264.038294] lr : refcount_warn_saturate+0xc8/0x144 # [ 264.043083] sp : ffff8000164bbcb0 # [ 264.046396] x29: ffff8000164bbcb0 x28: ffff0005c6408000 # [ 264.051714] x27: 0000000000000000 x26: 0000000000000000 # [ 264.057031] x25: ffff8000114e1c88 x24: ffff8000164bbe20 # [ 264.062349] x23: 000000000000001f x22: ffff0005c7765000 # [ 264.067667] x21: 0000000000000001 x20: 000000007fffffff # [ 264.072984] x19: ffff8000164bbd04 x18: 0000000000000000 # [ 264.078301] x17: 0000000000000000 x16: 0000000000000000 # [ 264.083619] x15: 0000000000000030 x14: ffffffffffffffff # [ 264.088937] x13: ffff8000964bb957 x12: ffff8000164bb95f # [ 264.094254] x11: ffff8000125802a8 x10: 0000000000001440 # [ 264.099572] x9 : ffff80001012cbc4 x8 : ffff0005c64094a0 # [ 264.104889] x7 : 0000000000000000 x6 : ffff800012551000 # [ 264.110207] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 264.115524] x3 : 0000000000000000 x2 : 0000000000000000 # [ 264.120841] x1 : 0000000000000000 x0 : ffff0005c6408000 # [ 264.126160] Call trace: # [ 264.128606] refcount_warn_saturate+0xc8/0x144 # [ 264.133055] __refcount_add_not_zero.constprop.0+0x98/0xb4 # [ 264.138540] lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW+0x48/0x8c # [ 264.144115] lkdtm_do_action+0x24/0x40 # [ 264.147863] direct_entry+0xd0/0x140 # [ 264.151439] full_proxy_write+0x68/0xbc # [ 264.155278] vfs_write+0xec/0x20c # [ 264.158591] ksys_write+0x70/0x100 # [ 264.161992] __arm64_sys_write+0x24/0x30 # [ 264.165920] el0_svc_common.constprop.0+0x84/0x1e0 # [ 264.170711] do_el0_svc+0x2c/0xa4 # [ 264.174026] el0_svc+0x20/0x30 # [ 264.177079] el0_sync_handler+0xb0/0xb4 # [ 264.180916] el0_sync+0x180/0x1c0 # [ 264.184230] irq event stamp: 0 # [ 264.187289] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 264.193561] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 264.201739] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 264.209914] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 264.216179] ---[ end trace 8a97a63494dae298 ]--- # [ 264.220921] lkdtm: Overflow detected: saturated # REFCOUNT_INC_NOT_ZERO_OVERFLOW: saw 'call trace:': ok ok 44 selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh [ 265.575851] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_OVERFLOW [ 265.582858] lkdtm: attempting bad refcount_add_not_zero() overflow [ 265.590724] ------------[ cut here ]------------ [ 265.595985] refcount_t: saturated; leaking memory. [ 265.601221] WARNING: CPU: 4 PID: 2401 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 [ 265.609659] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 265.662990] CPU: 4 PID: 2401 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 265.670730] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 265.677086] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 265.683092] pc : refcount_warn_saturate+0xc8/0x144 [ 265.687882] lr : refcount_warn_saturate+0xc8/0x144 [ 265.692670] sp : ffff800016563cb0 [ 265.695983] x29: ffff800016563cb0 x28: ffff0005c40ac980 [ 265.701301] x27: 0000000000000000 x26: 0000000000000000 [ 265.706619] x25: ffff8000114e1c88 x24: ffff800016563e20 [ 265.711936] x23: 000000000000001f x22: ffff0005c95f3000 [ 265.717254] x21: 0000000000000006 x20: 000000007fffffff [ 265.722571] x19: ffff800016563d04 x18: 0000000000000000 [ 265.727889] x17: 0000000000000000 x16: 0000000000000000 [ 265.733207] x15: 0000000000000000 x14: 0000000000000000 [ 265.738525] x13: 0000000000000000 x12: 0000000000000000 [ 265.743842] x11: 0000000000000000 x10: 0000000000001440 [ 265.749159] x9 : ffff80001012cbc4 x8 : ffff0005c40ade20 [ 265.754476] x7 : 0000000000000000 x6 : ffff800012551000 [ 265.759794] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 [ 265.765111] x3 : 0000000000000000 x2 : 0000000000000000 [ 265.770428] x1 : 0000000000000000 x0 : ffff0005c40ac980 [ 265.775747] Call trace: [ 265.778193] refcount_warn_saturate+0xc8/0x144 [ 265.782642] __refcount_add_not_zero.constprop.0+0x98/0xb4 [ 265.788127] lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW+0x48/0x8c [ 265.793703] lkdtm_do_action+0x24/0x40 [ 265.797450] direct_entry+0xd0/0x140 [ 265.801027] full_proxy_write+0x68/0xbc [ 265.804865] vfs_write+0xec/0x20c [ 265.808179] ksys_write+0x70/0x100 [ 265.811580] __arm64_sys_write+0x24/0x30 [ 265.815508] el0_svc_common.constprop.0+0x84/0x1e0 [ 265.820298] do_el0_svc+0x2c/0xa4 [ 265.823613] el0_svc+0x20/0x30 [ 265.826667] el0_sync_handler+0xb0/0xb4 [ 265.830504] el0_sync+0x180/0x1c0 [ 265.833818] irq event stamp: 0 [ 265.836877] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 265.843149] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 265.851326] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 265.859502] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 265.865766] ---[ end trace 8a97a63494dae299 ]--- [ 265.870709] lkdtm: Overflow detected: saturated # [ 265.575851] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_OVERFLOW # [ 265.582858] lkdtm: attempting bad refcount_add_not_zero() overflow # [ 265.590724] ------------[ cut here ]------------ # [ 265.595985] refcount_t: saturated; leaking memory. # [ 265.601221] WARNING: CPU: 4 PID: 2401 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 265.609659] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 265.662990] CPU: 4 PID: 2401 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 265.670730] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 265.677086] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 265.683092] pc : refcount_warn_saturate+0xc8/0x144 # [ 265.687882] lr : refcount_warn_saturate+0xc8/0x144 # [ 265.692670] sp : ffff800016563cb0 # [ 265.695983] x29: ffff800016563cb0 x28: ffff0005c40ac980 # [ 265.701301] x27: 0000000000000000 x26: 0000000000000000 # [ 265.706619] x25: ffff8000114e1c88 x24: ffff800016563e20 # [ 265.711936] x23: 000000000000001f x22: ffff0005c95f3000 # [ 265.717254] x21: 0000000000000006 x20: 000000007fffffff # [ 265.722571] x19: ffff800016563d04 x18: 0000000000000000 # [ 265.727889] x17: 0000000000000000 x16: 0000000000000000 # [ 265.733207] x15: 0000000000000000 x14: 0000000000000000 # [ 265.738525] x13: 0000000000000000 x12: 0000000000000000 # [ 265.743842] x11: 0000000000000000 x10: 0000000000001440 # [ 265.749159] x9 : ffff80001012cbc4 x8 : ffff0005c40ade20 # [ 265.754476] x7 : 0000000000000000 x6 : ffff800012551000 # [ 265.759794] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 # [ 265.765111] x3 : 0000000000000000 x2 : 0000000000000000 # [ 265.770428] x1 : 0000000000000000 x0 : ffff0005c40ac980 # [ 265.775747] Call trace: # [ 265.778193] refcount_warn_saturate+0xc8/0x144 # [ 265.782642] __refcount_add_not_zero.constprop.0+0x98/0xb4 # [ 265.788127] lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW+0x48/0x8c # [ 265.793703] lkdtm_do_action+0x24/0x40 # [ 265.797450] direct_entry+0xd0/0x140 # [ 265.801027] full_proxy_write+0x68/0xbc # [ 265.804865] vfs_write+0xec/0x20c # [ 265.808179] ksys_write+0x70/0x100 # [ 265.811580] __arm64_sys_write+0x24/0x30 # [ 265.815508] el0_svc_common.constprop.0+0x84/0x1e0 # [ 265.820298] do_el0_svc+0x2c/0xa4 # [ 265.823613] el0_svc+0x20/0x30 # [ 265.826667] el0_sync_handler+0xb0/0xb4 # [ 265.830504] el0_sync+0x180/0x1c0 # [ 265.833818] irq event stamp: 0 # [ 265.836877] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 265.843149] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 265.851326] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 265.859502] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 265.865766] ---[ end trace 8a97a63494dae299 ]--- # [ 265.870709] lkdtm: Overflow detected: saturated # REFCOUNT_ADD_NOT_ZERO_OVERFLOW: saw 'call trace:': ok ok 45 selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_DEC_ZERO.sh [ 267.096259] lkdtm: Performing direct entry REFCOUNT_DEC_ZERO [ 267.102132] lkdtm: attempting good refcount_dec() [ 267.108526] lkdtm: attempting bad refcount_dec() to zero [ 267.114447] ------------[ cut here ]------------ [ 267.119570] refcount_t: decrement hit 0; leaking memory. [ 267.125035] WARNING: CPU: 4 PID: 2433 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 [ 267.133559] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 267.186890] CPU: 4 PID: 2433 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 267.194631] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 267.200987] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 267.206995] pc : refcount_warn_saturate+0x13c/0x144 [ 267.211872] lr : refcount_warn_saturate+0x13c/0x144 [ 267.216747] sp : ffff800016603cc0 [ 267.220059] x29: ffff800016603cc0 x28: ffff0005c40ab100 [ 267.225378] x27: 0000000000000000 x26: 0000000000000000 [ 267.230695] x25: ffff8000114e1c88 x24: ffff800016603e20 [ 267.236013] x23: 0000000000000012 x22: ffff0005c5cab000 [ 267.241331] x21: ffff8000119f53b8 x20: ffff8000114e1f78 [ 267.246649] x19: ffff800016603d04 x18: 0000000000000000 [ 267.251966] x17: 0000000000000000 x16: 0000000000000000 [ 267.257284] x15: 0000000000000030 x14: ffffffffffffffff [ 267.262601] x13: ffff800096603967 x12: ffff80001660396f [ 267.267918] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 267.273236] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 267.278553] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 267.283870] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 [ 267.289188] x3 : 0000000000000000 x2 : 0000000000000000 [ 267.294505] x1 : 0000000000000000 x0 : ffff0005c40ab100 [ 267.299823] Call trace: [ 267.302270] refcount_warn_saturate+0x13c/0x144 [ 267.306806] __refcount_dec.constprop.0+0x5c/0x6c [ 267.311510] lkdtm_REFCOUNT_DEC_ZERO+0x54/0xe0 [ 267.315957] lkdtm_do_action+0x24/0x40 [ 267.319705] direct_entry+0xd0/0x140 [ 267.323283] full_proxy_write+0x68/0xbc [ 267.327121] vfs_write+0xec/0x20c [ 267.330435] ksys_write+0x70/0x100 [ 267.333835] __arm64_sys_write+0x24/0x30 [ 267.337763] el0_svc_common.constprop.0+0x84/0x1e0 [ 267.342554] do_el0_svc+0x2c/0xa4 [ 267.345869] el0_svc+0x20/0x30 [ 267.348923] el0_sync_handler+0xb0/0xb4 [ 267.352760] el0_sync+0x180/0x1c0 [ 267.356075] irq event stamp: 0 [ 267.359133] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 267.365405] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 267.373582] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 267.381758] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 267.388022] ---[ end trace 8a97a63494dae29a ]--- [ 267.392968] lkdtm: Zero detected: saturated # [ 267.096259] lkdtm: Performing direct entry REFCOUNT_DEC_ZERO # [ 267.102132] lkdtm: attempting good refcount_dec() # [ 267.108526] lkdtm: attempting bad refcount_dec() to zero # [ 267.114447] ------------[ cut here ]------------ # [ 267.119570] refcount_t: decrement hit 0; leaking memory. # [ 267.125035] WARNING: CPU: 4 PID: 2433 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 # [ 267.133559] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 267.186890] CPU: 4 PID: 2433 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 267.194631] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 267.200987] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 267.206995] pc : refcount_warn_saturate+0x13c/0x144 # [ 267.211872] lr : refcount_warn_saturate+0x13c/0x144 # [ 267.216747] sp : ffff800016603cc0 # [ 267.220059] x29: ffff800016603cc0 x28: ffff0005c40ab100 # [ 267.225378] x27: 0000000000000000 x26: 0000000000000000 # [ 267.230695] x25: ffff8000114e1c88 x24: ffff800016603e20 # [ 267.236013] x23: 0000000000000012 x22: ffff0005c5cab000 # [ 267.241331] x21: ffff8000119f53b8 x20: ffff8000114e1f78 # [ 267.246649] x19: ffff800016603d04 x18: 0000000000000000 # [ 267.251966] x17: 0000000000000000 x16: 0000000000000000 # [ 267.257284] x15: 0000000000000030 x14: ffffffffffffffff # [ 267.262601] x13: ffff800096603967 x12: ffff80001660396f # [ 267.267918] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 267.273236] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 267.278553] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 267.283870] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 # [ 267.289188] x3 : 0000000000000000 x2 : 0000000000000000 # [ 267.294505] x1 : 0000000000000000 x0 : ffff0005c40ab100 # [ 267.299823] Call trace: # [ 267.302270] refcount_warn_saturate+0x13c/0x144 # [ 267.306806] __refcount_dec.constprop.0+0x5c/0x6c # [ 267.311510] lkdtm_REFCOUNT_DEC_ZERO+0x54/0xe0 # [ 267.315957] lkdtm_do_action+0x24/0x40 # [ 267.319705] direct_entry+0xd0/0x140 # [ 267.323283] full_proxy_write+0x68/0xbc # [ 267.327121] vfs_write+0xec/0x20c # [ 267.330435] ksys_write+0x70/0x100 # [ 267.333835] __arm64_sys_write+0x24/0x30 # [ 267.337763] el0_svc_common.constprop.0+0x84/0x1e0 # [ 267.342554] do_el0_svc+0x2c/0xa4 # [ 267.345869] el0_svc+0x20/0x30 # [ 267.348923] el0_sync_handler+0xb0/0xb4 # [ 267.352760] el0_sync+0x180/0x1c0 # [ 267.356075] irq event stamp: 0 # [ 267.359133] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 267.365405] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 267.373582] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 267.381758] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 267.388022] ---[ end trace 8a97a63494dae29a ]--- # [ 267.392968] lkdtm: Zero detected: saturated # REFCOUNT_DEC_ZERO: saw 'call trace:': ok ok 46 selftests: lkdtm: REFCOUNT_DEC_ZERO.sh # selftests: lkdtm: REFCOUNT_DEC_NEGATIVE.sh [ 268.625116] lkdtm: Performing direct entry REFCOUNT_DEC_NEGATIVE [ 268.631237] lkdtm: attempting bad refcount_dec() below zero [ 268.636892] ------------[ cut here ]------------ [ 268.641566] refcount_t: decrement hit 0; leaking memory. [ 268.647011] WARNING: CPU: 2 PID: 2468 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 [ 268.655536] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 268.708867] CPU: 2 PID: 2468 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 268.716607] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 268.722964] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 268.728970] pc : refcount_warn_saturate+0x13c/0x144 [ 268.733846] lr : refcount_warn_saturate+0x13c/0x144 [ 268.738721] sp : ffff80001669bcc0 [ 268.742033] x29: ffff80001669bcc0 x28: ffff0005c79c3100 [ 268.747351] x27: 0000000000000000 x26: 0000000000000000 [ 268.752669] x25: ffff8000114e1c88 x24: ffff80001669be20 [ 268.757986] x23: 0000000000000016 x22: ffff0005c35c4000 [ 268.763305] x21: ffff8000119f53d0 x20: ffff8000114e1f88 [ 268.768622] x19: ffff80001669bd04 x18: 0000000000000000 [ 268.773940] x17: 0000000000000000 x16: 0000000000000000 [ 268.779258] x15: 0000000000000030 x14: ffffffffffffffff [ 268.784575] x13: ffff80009669b967 x12: ffff80001669b96f [ 268.789892] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 268.795210] x9 : ffff80001012cbc4 x8 : ffff800012580448 [ 268.800527] x7 : ffff8000125d8448 x6 : ffff800012551000 [ 268.805845] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 268.811162] x3 : 0000000000000000 x2 : 0000000000000000 [ 268.816480] x1 : 0000000000000000 x0 : ffff0005c79c3100 [ 268.821798] Call trace: [ 268.824245] refcount_warn_saturate+0x13c/0x144 [ 268.828781] __refcount_dec.constprop.0+0x5c/0x6c [ 268.833485] lkdtm_REFCOUNT_DEC_NEGATIVE+0x3c/0x70 [ 268.838279] lkdtm_do_action+0x24/0x40 [ 268.842027] direct_entry+0xd0/0x140 [ 268.845604] full_proxy_write+0x68/0xbc [ 268.849442] vfs_write+0xec/0x20c [ 268.852756] ksys_write+0x70/0x100 [ 268.856156] __arm64_sys_write+0x24/0x30 [ 268.860084] el0_svc_common.constprop.0+0x84/0x1e0 [ 268.864875] do_el0_svc+0x2c/0xa4 [ 268.868190] el0_svc+0x20/0x30 [ 268.871245] el0_sync_handler+0xb0/0xb4 [ 268.875082] el0_sync+0x180/0x1c0 [ 268.878396] irq event stamp: 0 [ 268.881455] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 268.887727] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 268.895904] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 268.904088] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 268.910358] ---[ end trace 8a97a63494dae29b ]--- [ 268.915210] lkdtm: Negative detected: saturated # [ 268.625116] lkdtm: Performing direct entry REFCOUNT_DEC_NEGATIVE # [ 268.631237] lkdtm: attempting bad refcount_dec() below zero # [ 268.636892] ------------[ cut here ]------------ # [ 268.641566] refcount_t: decrement hit 0; leaking memory. # [ 268.647011] WARNING: CPU: 2 PID: 2468 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 # [ 268.655536] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 268.708867] CPU: 2 PID: 2468 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 268.716607] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 268.722964] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 268.728970] pc : refcount_warn_saturate+0x13c/0x144 # [ 268.733846] lr : refcount_warn_saturate+0x13c/0x144 # [ 268.738721] sp : ffff80001669bcc0 # [ 268.742033] x29: ffff80001669bcc0 x28: ffff0005c79c3100 # [ 268.747351] x27: 0000000000000000 x26: 0000000000000000 # [ 268.752669] x25: ffff8000114e1c88 x24: ffff80001669be20 # [ 268.757986] x23: 0000000000000016 x22: ffff0005c35c4000 # [ 268.763305] x21: ffff8000119f53d0 x20: ffff8000114e1f88 # [ 268.768622] x19: ffff80001669bd04 x18: 0000000000000000 # [ 268.773940] x17: 0000000000000000 x16: 0000000000000000 # [ 268.779258] x15: 0000000000000030 x14: ffffffffffffffff # [ 268.784575] x13: ffff80009669b967 x12: ffff80001669b96f # [ 268.789892] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 268.795210] x9 : ffff80001012cbc4 x8 : ffff800012580448 # [ 268.800527] x7 : ffff8000125d8448 x6 : ffff800012551000 # [ 268.805845] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 268.811162] x3 : 0000000000000000 x2 : 0000000000000000 # [ 268.816480] x1 : 0000000000000000 x0 : ffff0005c79c3100 # [ 268.821798] Call trace: # [ 268.824245] refcount_warn_saturate+0x13c/0x144 # [ 268.828781] __refcount_dec.constprop.0+0x5c/0x6c # [ 268.833485] lkdtm_REFCOUNT_DEC_NEGATIVE+0x3c/0x70 # [ 268.838279] lkdtm_do_action+0x24/0x40 # [ 268.842027] direct_entry+0xd0/0x140 # [ 268.845604] full_proxy_write+0x68/0xbc # [ 268.849442] vfs_write+0xec/0x20c # [ 268.852756] ksys_write+0x70/0x100 # [ 268.856156] __arm64_sys_write+0x24/0x30 # [ 268.860084] el0_svc_common.constprop.0+0x84/0x1e0 # [ 268.864875] do_el0_svc+0x2c/0xa4 # [ 268.868190] el0_svc+0x20/0x30 # [ 268.871245] el0_sync_handler+0xb0/0xb4 # [ 268.875082] el0_sync+0x180/0x1c0 # [ 268.878396] irq event stamp: 0 # [ 268.881455] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 268.887727] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 268.895904] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 268.904088] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 268.910358] ---[ end trace 8a97a63494dae29b ]--- # [ 268.915210] lkdtm: Negative detected: saturated # REFCOUNT_DEC_NEGATIVE: saw 'Negative detected: saturated': ok ok 47 selftests: lkdtm: REFCOUNT_DEC_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_DEC_AND_TEST_NEGATIVE.sh [ 270.234233] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_NEGATIVE [ 270.241189] lkdtm: attempting bad refcount_dec_and_test() below zero [ 270.247610] ------------[ cut here ]------------ [ 270.252268] refcount_t: underflow; use-after-free. [ 270.257243] WARNING: CPU: 2 PID: 2503 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 [ 270.265680] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 270.319012] CPU: 2 PID: 2503 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 270.326753] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 270.333108] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 270.339115] pc : refcount_warn_saturate+0xf4/0x144 [ 270.343905] lr : refcount_warn_saturate+0xf4/0x144 [ 270.348693] sp : ffff800016743cd0 [ 270.352005] x29: ffff800016743cd0 x28: ffff0005ca149880 [ 270.357322] x27: 0000000000000000 x26: 0000000000000000 [ 270.362640] x25: ffff8000114e1c88 x24: ffff800016743e20 [ 270.367958] x23: 000000000000001f x22: ffff0005c6111000 [ 270.373276] x21: ffff8000119f53e8 x20: ffff8000114e1f98 [ 270.378593] x19: 0000000000000031 x18: 0000000000000000 [ 270.383911] x17: 0000000000000000 x16: 0000000000000000 [ 270.389228] x15: 0000000000000030 x14: ffffffffffffffff [ 270.394546] x13: ffff800096743977 x12: ffff80001674397f [ 270.399864] x11: ffff8000125802a8 x10: 0000000000001440 [ 270.405182] x9 : ffff80001012cbc4 x8 : ffff0005ca14ad20 [ 270.410500] x7 : 0000000000000000 x6 : ffff800012551000 [ 270.415817] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 270.421135] x3 : 0000000000000000 x2 : 0000000000000000 [ 270.426452] x1 : 0000000000000000 x0 : ffff0005ca149880 [ 270.431770] Call trace: [ 270.434217] refcount_warn_saturate+0xf4/0x144 [ 270.438666] __refcount_sub_and_test.constprop.0+0x74/0x8c [ 270.444156] lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE+0x44/0x8c [ 270.449728] lkdtm_do_action+0x24/0x40 [ 270.453476] direct_entry+0xd0/0x140 [ 270.457053] full_proxy_write+0x68/0xbc [ 270.460891] vfs_write+0xec/0x20c [ 270.464205] ksys_write+0x70/0x100 [ 270.467606] __arm64_sys_write+0x24/0x30 [ 270.471534] el0_svc_common.constprop.0+0x84/0x1e0 [ 270.476324] do_el0_svc+0x2c/0xa4 [ 270.479640] el0_svc+0x20/0x30 [ 270.482694] el0_sync_handler+0xb0/0xb4 [ 270.486530] el0_sync+0x180/0x1c0 [ 270.489845] irq event stamp: 0 [ 270.492904] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 270.499176] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 270.507353] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 270.515528] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 270.521793] ---[ end trace 8a97a63494dae29c ]--- [ 270.526667] lkdtm: Negative detected: saturated # [ 270.234233] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_NEGATIVE # [ 270.241189] lkdtm: attempting bad refcount_dec_and_test() below zero # [ 270.247610] ------------[ cut here ]------------ # [ 270.252268] refcount_t: underflow; use-after-free. # [ 270.257243] WARNING: CPU: 2 PID: 2503 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 270.265680] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 270.319012] CPU: 2 PID: 2503 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 270.326753] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 270.333108] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 270.339115] pc : refcount_warn_saturate+0xf4/0x144 # [ 270.343905] lr : refcount_warn_saturate+0xf4/0x144 # [ 270.348693] sp : ffff800016743cd0 # [ 270.352005] x29: ffff800016743cd0 x28: ffff0005ca149880 # [ 270.357322] x27: 0000000000000000 x26: 0000000000000000 # [ 270.362640] x25: ffff8000114e1c88 x24: ffff800016743e20 # [ 270.367958] x23: 000000000000001f x22: ffff0005c6111000 # [ 270.373276] x21: ffff8000119f53e8 x20: ffff8000114e1f98 # [ 270.378593] x19: 0000000000000031 x18: 0000000000000000 # [ 270.383911] x17: 0000000000000000 x16: 0000000000000000 # [ 270.389228] x15: 0000000000000030 x14: ffffffffffffffff # [ 270.394546] x13: ffff800096743977 x12: ffff80001674397f # [ 270.399864] x11: ffff8000125802a8 x10: 0000000000001440 # [ 270.405182] x9 : ffff80001012cbc4 x8 : ffff0005ca14ad20 # [ 270.410500] x7 : 0000000000000000 x6 : ffff800012551000 # [ 270.415817] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 270.421135] x3 : 0000000000000000 x2 : 0000000000000000 # [ 270.426452] x1 : 0000000000000000 x0 : ffff0005ca149880 # [ 270.431770] Call trace: # [ 270.434217] refcount_warn_saturate+0xf4/0x144 # [ 270.438666] __refcount_sub_and_test.constprop.0+0x74/0x8c # [ 270.444156] lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE+0x44/0x8c # [ 270.449728] lkdtm_do_action+0x24/0x40 # [ 270.453476] direct_entry+0xd0/0x140 # [ 270.457053] full_proxy_write+0x68/0xbc # [ 270.460891] vfs_write+0xec/0x20c # [ 270.464205] ksys_write+0x70/0x100 # [ 270.467606] __arm64_sys_write+0x24/0x30 # [ 270.471534] el0_svc_common.constprop.0+0x84/0x1e0 # [ 270.476324] do_el0_svc+0x2c/0xa4 # [ 270.479640] el0_svc+0x20/0x30 # [ 270.482694] el0_sync_handler+0xb0/0xb4 # [ 270.486530] el0_sync+0x180/0x1c0 # [ 270.489845] irq event stamp: 0 # [ 270.492904] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 270.499176] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 270.507353] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 270.515528] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 270.521793] ---[ end trace 8a97a63494dae29c ]--- # [ 270.526667] lkdtm: Negative detected: saturated # REFCOUNT_DEC_AND_TEST_NEGATIVE: saw 'Negative detected: saturated': ok ok 48 selftests: lkdtm: REFCOUNT_DEC_AND_TEST_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_SUB_AND_TEST_NEGATIVE.sh [ 271.746106] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_NEGATIVE [ 271.753134] lkdtm: attempting bad refcount_sub_and_test() below zero [ 271.759577] ------------[ cut here ]------------ [ 271.764421] refcount_t: underflow; use-after-free. [ 271.769409] WARNING: CPU: 4 PID: 2538 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 [ 271.777847] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 271.831178] CPU: 4 PID: 2538 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 271.838919] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 271.845275] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 271.851283] pc : refcount_warn_saturate+0xf4/0x144 [ 271.856072] lr : refcount_warn_saturate+0xf4/0x144 [ 271.860860] sp : ffff8000167ebcd0 [ 271.864173] x29: ffff8000167ebcd0 x28: ffff0005c0de4980 [ 271.869491] x27: 0000000000000000 x26: 0000000000000000 [ 271.874809] x25: ffff8000114e1c88 x24: ffff8000167ebe20 [ 271.880127] x23: 000000000000001f x22: ffff0005c4749000 [ 271.885444] x21: ffff8000119f5408 x20: ffff8000114e1fa8 [ 271.890761] x19: 0000000000000032 x18: 0000000000000000 [ 271.896079] x17: 0000000000000000 x16: 0000000000000000 [ 271.901396] x15: 0000000000000030 x14: ffffffffffffffff [ 271.906713] x13: ffff8000967eb977 x12: ffff8000167eb97f [ 271.912031] x11: ffff8000125802a8 x10: 0000000000001440 [ 271.917349] x9 : ffff80001012cbc4 x8 : ffff0005c0de5e20 [ 271.922666] x7 : 0000000000000000 x6 : ffff800012551000 [ 271.927983] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 [ 271.933301] x3 : 0000000000000000 x2 : 0000000000000000 [ 271.938618] x1 : 0000000000000000 x0 : ffff0005c0de4980 [ 271.943937] Call trace: [ 271.946383] refcount_warn_saturate+0xf4/0x144 [ 271.950832] __refcount_sub_and_test.constprop.0+0x74/0x8c [ 271.956322] lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE+0x48/0x90 [ 271.961893] lkdtm_do_action+0x24/0x40 [ 271.965641] direct_entry+0xd0/0x140 [ 271.969218] full_proxy_write+0x68/0xbc [ 271.973057] vfs_write+0xec/0x20c [ 271.976371] ksys_write+0x70/0x100 [ 271.979772] __arm64_sys_write+0x24/0x30 [ 271.983700] el0_svc_common.constprop.0+0x84/0x1e0 [ 271.988490] do_el0_svc+0x2c/0xa4 [ 271.991806] el0_svc+0x20/0x30 [ 271.994859] el0_sync_handler+0xb0/0xb4 [ 271.998697] el0_sync+0x180/0x1c0 [ 272.002010] irq event stamp: 0 [ 272.005071] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 272.011342] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 272.019520] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 272.027695] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 272.033959] ---[ end trace 8a97a63494dae29d ]--- [ 272.038897] lkdtm: Negative detected: saturated # [ 271.746106] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_NEGATIVE # [ 271.753134] lkdtm: attempting bad refcount_sub_and_test() below zero # [ 271.759577] ------------[ cut here ]------------ # [ 271.764421] refcount_t: underflow; use-after-free. # [ 271.769409] WARNING: CPU: 4 PID: 2538 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 271.777847] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 271.831178] CPU: 4 PID: 2538 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 271.838919] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 271.845275] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 271.851283] pc : refcount_warn_saturate+0xf4/0x144 # [ 271.856072] lr : refcount_warn_saturate+0xf4/0x144 # [ 271.860860] sp : ffff8000167ebcd0 # [ 271.864173] x29: ffff8000167ebcd0 x28: ffff0005c0de4980 # [ 271.869491] x27: 0000000000000000 x26: 0000000000000000 # [ 271.874809] x25: ffff8000114e1c88 x24: ffff8000167ebe20 # [ 271.880127] x23: 000000000000001f x22: ffff0005c4749000 # [ 271.885444] x21: ffff8000119f5408 x20: ffff8000114e1fa8 # [ 271.890761] x19: 0000000000000032 x18: 0000000000000000 # [ 271.896079] x17: 0000000000000000 x16: 0000000000000000 # [ 271.901396] x15: 0000000000000030 x14: ffffffffffffffff # [ 271.906713] x13: ffff8000967eb977 x12: ffff8000167eb97f # [ 271.912031] x11: ffff8000125802a8 x10: 0000000000001440 # [ 271.917349] x9 : ffff80001012cbc4 x8 : ffff0005c0de5e20 # [ 271.922666] x7 : 0000000000000000 x6 : ffff800012551000 # [ 271.927983] x5 : ffff800012551c88 x4 : ffff00063f7a0c50 # [ 271.933301] x3 : 0000000000000000 x2 : 0000000000000000 # [ 271.938618] x1 : 0000000000000000 x0 : ffff0005c0de4980 # [ 271.943937] Call trace: # [ 271.946383] refcount_warn_saturate+0xf4/0x144 # [ 271.950832] __refcount_sub_and_test.constprop.0+0x74/0x8c # [ 271.956322] lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE+0x48/0x90 # [ 271.961893] lkdtm_do_action+0x24/0x40 # [ 271.965641] direct_entry+0xd0/0x140 # [ 271.969218] full_proxy_write+0x68/0xbc # [ 271.973057] vfs_write+0xec/0x20c # [ 271.976371] ksys_write+0x70/0x100 # [ 271.979772] __arm64_sys_write+0x24/0x30 # [ 271.983700] el0_svc_common.constprop.0+0x84/0x1e0 # [ 271.988490] do_el0_svc+0x2c/0xa4 # [ 271.991806] el0_svc+0x20/0x30 # [ 271.994859] el0_sync_handler+0xb0/0xb4 # [ 271.998697] el0_sync+0x180/0x1c0 # [ 272.002010] irq event stamp: 0 # [ 272.005071] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 272.011342] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 272.019520] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 272.027695] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 272.033959] ---[ end trace 8a97a63494dae29d ]--- # [ 272.038897] lkdtm: Negative detected: saturated # REFCOUNT_SUB_AND_TEST_NEGATIVE: saw 'Negative detected: saturated': ok ok 49 selftests: lkdtm: REFCOUNT_SUB_AND_TEST_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_INC_ZERO.sh [ 273.217395] lkdtm: Performing direct entry REFCOUNT_INC_ZERO [ 273.223184] lkdtm: attempting safe refcount_inc_not_zero() from zero [ 273.231189] lkdtm: Good: zero detected [ 273.235375] lkdtm: Correctly stayed at zero [ 273.239930] lkdtm: attempting bad refcount_inc() from zero [ 273.245898] ------------[ cut here ]------------ [ 273.250643] refcount_t: addition on 0; use-after-free. [ 273.256053] WARNING: CPU: 0 PID: 2570 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 [ 273.264491] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 273.317772] CPU: 0 PID: 2570 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 273.325513] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 273.331868] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 273.337873] pc : refcount_warn_saturate+0xa0/0x144 [ 273.342662] lr : refcount_warn_saturate+0xa0/0x144 [ 273.347449] sp : ffff8000168abcd0 [ 273.350761] x29: ffff8000168abcd0 x28: ffff0005c82db100 [ 273.356078] x27: 0000000000000000 x26: 0000000000000000 [ 273.361394] x25: ffff8000114e1c88 x24: ffff8000168abe20 [ 273.366710] x23: 0000000000000012 x22: ffff0005c5ca3000 [ 273.372025] x21: ffff8000119f5428 x20: ffff8000114e1fb8 [ 273.377341] x19: 0000000000000033 x18: 0000000000000000 [ 273.382656] x17: 0000000000000000 x16: 0000000000000000 [ 273.387971] x15: 0000000000000000 x14: 0000000000000000 [ 273.393285] x13: 0000000000000000 x12: 0000000000000040 [ 273.398600] x11: ffff0005c0400000 x10: 0000000000001440 [ 273.403915] x9 : ffff80001012cbc4 x8 : ffff00063f7e97c0 [ 273.409230] x7 : ffff0005c82db100 x6 : ffff800012551000 [ 273.414545] x5 : ffff800012551c88 x4 : ffff00063f718c50 [ 273.419860] x3 : 0000000000000000 x2 : 0000000000000000 [ 273.425174] x1 : 0000000000000000 x0 : ffff0005c82db100 [ 273.430491] Call trace: [ 273.432937] refcount_warn_saturate+0xa0/0x144 [ 273.437384] __refcount_add.constprop.0+0x64/0x90 [ 273.442092] lkdtm_REFCOUNT_INC_ZERO+0xa4/0xd4 [ 273.446534] lkdtm_do_action+0x24/0x40 [ 273.450281] direct_entry+0xd0/0x140 [ 273.453857] full_proxy_write+0x68/0xbc [ 273.457694] vfs_write+0xec/0x20c [ 273.461007] ksys_write+0x70/0x100 [ 273.464407] __arm64_sys_write+0x24/0x30 [ 273.468332] el0_svc_common.constprop.0+0x84/0x1e0 [ 273.473121] do_el0_svc+0x2c/0xa4 [ 273.476435] el0_svc+0x20/0x30 [ 273.479488] el0_sync_handler+0xb0/0xb4 [ 273.483323] el0_sync+0x180/0x1c0 [ 273.486636] irq event stamp: 0 [ 273.489693] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 273.495963] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 273.504140] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 273.512314] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 273.518578] ---[ end trace 8a97a63494dae29e ]--- [ 273.523394] lkdtm: Zero detected: saturated # [ 273.217395] lkdtm: Performing direct entry REFCOUNT_INC_ZERO # [ 273.223184] lkdtm: attempting safe refcount_inc_not_zero() from zero # [ 273.231189] lkdtm: Good: zero detected # [ 273.235375] lkdtm: Correctly stayed at zero # [ 273.239930] lkdtm: attempting bad refcount_inc() from zero # [ 273.245898] ------------[ cut here ]------------ # [ 273.250643] refcount_t: addition on 0; use-after-free. # [ 273.256053] WARNING: CPU: 0 PID: 2570 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 # [ 273.264491] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 273.317772] CPU: 0 PID: 2570 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 273.325513] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 273.331868] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 273.337873] pc : refcount_warn_saturate+0xa0/0x144 # [ 273.342662] lr : refcount_warn_saturate+0xa0/0x144 # [ 273.347449] sp : ffff8000168abcd0 # [ 273.350761] x29: ffff8000168abcd0 x28: ffff0005c82db100 # [ 273.356078] x27: 0000000000000000 x26: 0000000000000000 # [ 273.361394] x25: ffff8000114e1c88 x24: ffff8000168abe20 # [ 273.366710] x23: 0000000000000012 x22: ffff0005c5ca3000 # [ 273.372025] x21: ffff8000119f5428 x20: ffff8000114e1fb8 # [ 273.377341] x19: 0000000000000033 x18: 0000000000000000 # [ 273.382656] x17: 0000000000000000 x16: 0000000000000000 # [ 273.387971] x15: 0000000000000000 x14: 0000000000000000 # [ 273.393285] x13: 0000000000000000 x12: 0000000000000040 # [ 273.398600] x11: ffff0005c0400000 x10: 0000000000001440 # [ 273.403915] x9 : ffff80001012cbc4 x8 : ffff00063f7e97c0 # [ 273.409230] x7 : ffff0005c82db100 x6 : ffff800012551000 # [ 273.414545] x5 : ffff800012551c88 x4 : ffff00063f718c50 # [ 273.419860] x3 : 0000000000000000 x2 : 0000000000000000 # [ 273.425174] x1 : 0000000000000000 x0 : ffff0005c82db100 # [ 273.430491] Call trace: # [ 273.432937] refcount_warn_saturate+0xa0/0x144 # [ 273.437384] __refcount_add.constprop.0+0x64/0x90 # [ 273.442092] lkdtm_REFCOUNT_INC_ZERO+0xa4/0xd4 # [ 273.446534] lkdtm_do_action+0x24/0x40 # [ 273.450281] direct_entry+0xd0/0x140 # [ 273.453857] full_proxy_write+0x68/0xbc # [ 273.457694] vfs_write+0xec/0x20c # [ 273.461007] ksys_write+0x70/0x100 # [ 273.464407] __arm64_sys_write+0x24/0x30 # [ 273.468332] el0_svc_common.constprop.0+0x84/0x1e0 # [ 273.473121] do_el0_svc+0x2c/0xa4 # [ 273.476435] el0_svc+0x20/0x30 # [ 273.479488] el0_sync_handler+0xb0/0xb4 # [ 273.483323] el0_sync+0x180/0x1c0 # [ 273.486636] irq event stamp: 0 # [ 273.489693] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 273.495963] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 273.504140] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 273.512314] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 273.518578] ---[ end trace 8a97a63494dae29e ]--- # [ 273.523394] lkdtm: Zero detected: saturated # REFCOUNT_INC_ZERO: saw 'call trace:': ok ok 50 selftests: lkdtm: REFCOUNT_INC_ZERO.sh # selftests: lkdtm: REFCOUNT_ADD_ZERO.sh [ 274.852643] lkdtm: Performing direct entry REFCOUNT_ADD_ZERO [ 274.858500] lkdtm: attempting safe refcount_add_not_zero() from zero [ 274.865016] lkdtm: Good: zero detected [ 274.868865] lkdtm: Correctly stayed at zero [ 274.873188] lkdtm: attempting bad refcount_add() from zero [ 274.878789] ------------[ cut here ]------------ [ 274.883649] refcount_t: addition on 0; use-after-free. [ 274.889044] WARNING: CPU: 0 PID: 2602 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 [ 274.897480] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 274.950761] CPU: 0 PID: 2602 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 274.958501] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 274.964855] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 274.970860] pc : refcount_warn_saturate+0xa0/0x144 [ 274.975649] lr : refcount_warn_saturate+0xa0/0x144 [ 274.980436] sp : ffff800016933cd0 [ 274.983748] x29: ffff800016933cd0 x28: ffff0005c2fb8000 [ 274.989064] x27: 0000000000000000 x26: 0000000000000000 [ 274.994380] x25: ffff8000114e1c88 x24: ffff800016933e20 [ 274.999696] x23: 0000000000000012 x22: ffff0005ca1b9000 [ 275.005011] x21: ffff8000119f5440 x20: ffff8000114e1fc8 [ 275.010326] x19: 0000000000000034 x18: 0000000000000000 [ 275.015640] x17: 0000000000000000 x16: 001fffffffffffff [ 275.020955] x15: 0000000000174000 x14: 0000000000000000 [ 275.026270] x13: 0000000000000000 x12: 0000000000000000 [ 275.031585] x11: 0000000000000000 x10: 0000000000001440 [ 275.036900] x9 : ffff80001012cbc4 x8 : ffff0005c2fb94a0 [ 275.042214] x7 : 0146753ef353cd0e x6 : ffff800012551000 [ 275.047529] x5 : ffff800012551c88 x4 : ffff00063f718c50 [ 275.052844] x3 : 0000000000000000 x2 : 0000000000000000 [ 275.058158] x1 : 0000000000000000 x0 : ffff0005c2fb8000 [ 275.063474] Call trace: [ 275.065920] refcount_warn_saturate+0xa0/0x144 [ 275.070368] __refcount_add.constprop.0+0x64/0x90 [ 275.075076] lkdtm_REFCOUNT_ADD_ZERO+0xa4/0xd4 [ 275.079518] lkdtm_do_action+0x24/0x40 [ 275.083264] direct_entry+0xd0/0x140 [ 275.086841] full_proxy_write+0x68/0xbc [ 275.090677] vfs_write+0xec/0x20c [ 275.093991] ksys_write+0x70/0x100 [ 275.097390] __arm64_sys_write+0x24/0x30 [ 275.101315] el0_svc_common.constprop.0+0x84/0x1e0 [ 275.106105] do_el0_svc+0x2c/0xa4 [ 275.109419] el0_svc+0x20/0x30 [ 275.112472] el0_sync_handler+0xb0/0xb4 [ 275.116307] el0_sync+0x180/0x1c0 [ 275.119619] irq event stamp: 0 [ 275.122677] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 275.128946] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 275.137122] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 275.145296] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 275.151559] ---[ end trace 8a97a63494dae29f ]--- [ 275.157333] lkdtm: Zero detected: saturated # [ 274.852643] lkdtm: Performing direct entry REFCOUNT_ADD_ZERO # [ 274.858500] lkdtm: attempting safe refcount_add_not_zero() from zero # [ 274.865016] lkdtm: Good: zero detected # [ 274.868865] lkdtm: Correctly stayed at zero # [ 274.873188] lkdtm: attempting bad refcount_add() from zero # [ 274.878789] ------------[ cut here ]------------ # [ 274.883649] refcount_t: addition on 0; use-after-free. # [ 274.889044] WARNING: CPU: 0 PID: 2602 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 # [ 274.897480] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 274.950761] CPU: 0 PID: 2602 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 274.958501] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 274.964855] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 274.970860] pc : refcount_warn_saturate+0xa0/0x144 # [ 274.975649] lr : refcount_warn_saturate+0xa0/0x144 # [ 274.980436] sp : ffff800016933cd0 # [ 274.983748] x29: ffff800016933cd0 x28: ffff0005c2fb8000 # [ 274.989064] x27: 0000000000000000 x26: 0000000000000000 # [ 274.994380] x25: ffff8000114e1c88 x24: ffff800016933e20 # [ 274.999696] x23: 0000000000000012 x22: ffff0005ca1b9000 # [ 275.005011] x21: ffff8000119f5440 x20: ffff8000114e1fc8 # [ 275.010326] x19: 0000000000000034 x18: 0000000000000000 # [ 275.015640] x17: 0000000000000000 x16: 001fffffffffffff # [ 275.020955] x15: 0000000000174000 x14: 0000000000000000 # [ 275.026270] x13: 0000000000000000 x12: 0000000000000000 # [ 275.031585] x11: 0000000000000000 x10: 0000000000001440 # [ 275.036900] x9 : ffff80001012cbc4 x8 : ffff0005c2fb94a0 # [ 275.042214] x7 : 0146753ef353cd0e x6 : ffff800012551000 # [ 275.047529] x5 : ffff800012551c88 x4 : ffff00063f718c50 # [ 275.052844] x3 : 0000000000000000 x2 : 0000000000000000 # [ 275.058158] x1 : 0000000000000000 x0 : ffff0005c2fb8000 # [ 275.063474] Call trace: # [ 275.065920] refcount_warn_saturate+0xa0/0x144 # [ 275.070368] __refcount_add.constprop.0+0x64/0x90 # [ 275.075076] lkdtm_REFCOUNT_ADD_ZERO+0xa4/0xd4 # [ 275.079518] lkdtm_do_action+0x24/0x40 # [ 275.083264] direct_entry+0xd0/0x140 # [ 275.086841] full_proxy_write+0x68/0xbc # [ 275.090677] vfs_write+0xec/0x20c # [ 275.093991] ksys_write+0x70/0x100 # [ 275.097390] __arm64_sys_write+0x24/0x30 # [ 275.101315] el0_svc_common.constprop.0+0x84/0x1e0 # [ 275.106105] do_el0_svc+0x2c/0xa4 # [ 275.109419] el0_svc+0x20/0x30 # [ 275.112472] el0_sync_handler+0xb0/0xb4 # [ 275.116307] el0_sync+0x180/0x1c0 # [ 275.119619] irq event stamp: 0 # [ 275.122677] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 275.128946] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 275.137122] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 275.145296] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 275.151559] ---[ end trace 8a97a63494dae29f ]--- # [ 275.157333] lkdtm: Zero detected: saturated # REFCOUNT_ADD_ZERO: saw 'call trace:': ok ok 51 selftests: lkdtm: REFCOUNT_ADD_ZERO.sh # selftests: lkdtm: REFCOUNT_INC_SATURATED.sh [ 276.236182] lkdtm: Performing direct entry REFCOUNT_INC_SATURATED [ 276.242395] lkdtm: attempting bad refcount_inc() from saturated [ 276.249960] ------------[ cut here ]------------ [ 276.255027] refcount_t: saturated; leaking memory. [ 276.260085] WARNING: CPU: 5 PID: 2637 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 [ 276.268521] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 276.321853] CPU: 5 PID: 2637 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 276.329593] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 276.335949] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 276.341955] pc : refcount_warn_saturate+0x74/0x144 [ 276.346745] lr : refcount_warn_saturate+0x74/0x144 [ 276.351534] sp : ffff8000169cbcd0 [ 276.354846] x29: ffff8000169cbcd0 x28: ffff0005c55f1880 [ 276.360164] x27: 0000000000000000 x26: 0000000000000000 [ 276.365482] x25: ffff8000114e1c88 x24: ffff8000169cbe20 [ 276.370799] x23: 0000000000000017 x22: ffff0005c2f65000 [ 276.376117] x21: ffff8000119f5458 x20: ffff8000114e1fd8 [ 276.381435] x19: 0000000000000035 x18: 0000000000000000 [ 276.386752] x17: 0000000000000000 x16: 0000000000000000 [ 276.392069] x15: 0000000000000030 x14: ffffffffffffffff [ 276.397387] x13: ffff8000969cb977 x12: ffff8000169cb97f [ 276.402705] x11: 0000006e9421f23a x10: 0000000000001440 [ 276.408022] x9 : ffff80001012cbc4 x8 : ffff0005c55f2d20 [ 276.413340] x7 : 0000000000000000 x6 : ffff800012551000 [ 276.418657] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 [ 276.423974] x3 : 0000000000000000 x2 : 0000000000000000 [ 276.429292] x1 : 0000000000000000 x0 : ffff0005c55f1880 [ 276.434610] Call trace: [ 276.437057] refcount_warn_saturate+0x74/0x144 [ 276.441506] __refcount_add.constprop.0+0x7c/0x90 [ 276.446215] lkdtm_REFCOUNT_INC_SATURATED+0x44/0x74 [ 276.451092] lkdtm_do_action+0x24/0x40 [ 276.454839] direct_entry+0xd0/0x140 [ 276.458416] full_proxy_write+0x68/0xbc [ 276.462254] vfs_write+0xec/0x20c [ 276.465568] ksys_write+0x70/0x100 [ 276.468969] __arm64_sys_write+0x24/0x30 [ 276.472897] el0_svc_common.constprop.0+0x84/0x1e0 [ 276.477687] do_el0_svc+0x2c/0xa4 [ 276.481002] el0_svc+0x20/0x30 [ 276.484056] el0_sync_handler+0xb0/0xb4 [ 276.487893] el0_sync+0x180/0x1c0 [ 276.491207] irq event stamp: 0 [ 276.494266] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 276.500537] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 276.508715] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 276.516891] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 276.523155] ---[ end trace 8a97a63494dae2a0 ]--- [ 276.527873] lkdtm: Saturation detected: still saturated # [ 276.236182] lkdtm: Performing direct entry REFCOUNT_INC_SATURATED # [ 276.242395] lkdtm: attempting bad refcount_inc() from saturated # [ 276.249960] ------------[ cut here ]------------ # [ 276.255027] refcount_t: saturated; leaking memory. # [ 276.260085] WARNING: CPU: 5 PID: 2637 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 276.268521] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 276.321853] CPU: 5 PID: 2637 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 276.329593] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 276.335949] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 276.341955] pc : refcount_warn_saturate+0x74/0x144 # [ 276.346745] lr : refcount_warn_saturate+0x74/0x144 # [ 276.351534] sp : ffff8000169cbcd0 # [ 276.354846] x29: ffff8000169cbcd0 x28: ffff0005c55f1880 # [ 276.360164] x27: 0000000000000000 x26: 0000000000000000 # [ 276.365482] x25: ffff8000114e1c88 x24: ffff8000169cbe20 # [ 276.370799] x23: 0000000000000017 x22: ffff0005c2f65000 # [ 276.376117] x21: ffff8000119f5458 x20: ffff8000114e1fd8 # [ 276.381435] x19: 0000000000000035 x18: 0000000000000000 # [ 276.386752] x17: 0000000000000000 x16: 0000000000000000 # [ 276.392069] x15: 0000000000000030 x14: ffffffffffffffff # [ 276.397387] x13: ffff8000969cb977 x12: ffff8000169cb97f # [ 276.402705] x11: 0000006e9421f23a x10: 0000000000001440 # [ 276.408022] x9 : ffff80001012cbc4 x8 : ffff0005c55f2d20 # [ 276.413340] x7 : 0000000000000000 x6 : ffff800012551000 # [ 276.418657] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 # [ 276.423974] x3 : 0000000000000000 x2 : 0000000000000000 # [ 276.429292] x1 : 0000000000000000 x0 : ffff0005c55f1880 # [ 276.434610] Call trace: # [ 276.437057] refcount_warn_saturate+0x74/0x144 # [ 276.441506] __refcount_add.constprop.0+0x7c/0x90 # [ 276.446215] lkdtm_REFCOUNT_INC_SATURATED+0x44/0x74 # [ 276.451092] lkdtm_do_action+0x24/0x40 # [ 276.454839] direct_entry+0xd0/0x140 # [ 276.458416] full_proxy_write+0x68/0xbc # [ 276.462254] vfs_write+0xec/0x20c # [ 276.465568] ksys_write+0x70/0x100 # [ 276.468969] __arm64_sys_write+0x24/0x30 # [ 276.472897] el0_svc_common.constprop.0+0x84/0x1e0 # [ 276.477687] do_el0_svc+0x2c/0xa4 # [ 276.481002] el0_svc+0x20/0x30 # [ 276.484056] el0_sync_handler+0xb0/0xb4 # [ 276.487893] el0_sync+0x180/0x1c0 # [ 276.491207] irq event stamp: 0 # [ 276.494266] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 276.500537] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 276.508715] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 276.516891] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 276.523155] ---[ end trace 8a97a63494dae2a0 ]--- # [ 276.527873] lkdtm: Saturation detected: still saturated # REFCOUNT_INC_SATURATED: saw 'Saturation detected: still saturated': ok ok 52 selftests: lkdtm: REFCOUNT_INC_SATURATED.sh # selftests: lkdtm: REFCOUNT_DEC_SATURATED.sh [ 277.913272] lkdtm: Performing direct entry REFCOUNT_DEC_SATURATED [ 277.919491] lkdtm: attempting bad refcount_dec() from saturated [ 277.925478] ------------[ cut here ]------------ [ 277.930164] refcount_t: decrement hit 0; leaking memory. [ 277.935650] WARNING: CPU: 2 PID: 2672 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 [ 277.944174] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 277.997504] CPU: 2 PID: 2672 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 278.005244] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 278.011600] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 278.017606] pc : refcount_warn_saturate+0x13c/0x144 [ 278.022482] lr : refcount_warn_saturate+0x13c/0x144 [ 278.027356] sp : ffff800016a83cc0 [ 278.030669] x29: ffff800016a83cc0 x28: ffff0005c8cd6200 [ 278.035987] x27: 0000000000000000 x26: 0000000000000000 [ 278.041304] x25: ffff8000114e1c88 x24: ffff800016a83e20 [ 278.046622] x23: 0000000000000017 x22: ffff0005c3c89000 [ 278.051940] x21: ffff8000119f5470 x20: ffff8000114e1fe8 [ 278.057257] x19: ffff800016a83d04 x18: 0000000000000000 [ 278.062574] x17: 0000000000000000 x16: 0000000000000000 [ 278.067892] x15: 0000000000000030 x14: ffffffffffffffff [ 278.073210] x13: ffff800096a83967 x12: ffff800016a8396f [ 278.078528] x11: ffff8000125802a8 x10: 0000000000001440 [ 278.083845] x9 : ffff80001012cbc4 x8 : ffff0005c8cd76a0 [ 278.089163] x7 : 0000000000000000 x6 : ffff800012551000 [ 278.094480] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 278.099798] x3 : 0000000000000000 x2 : 0000000000000000 [ 278.105115] x1 : 0000000000000000 x0 : ffff0005c8cd6200 [ 278.110433] Call trace: [ 278.112880] refcount_warn_saturate+0x13c/0x144 [ 278.117416] __refcount_dec.constprop.0+0x5c/0x6c [ 278.122120] lkdtm_REFCOUNT_DEC_SATURATED+0x40/0x70 [ 278.127001] lkdtm_do_action+0x24/0x40 [ 278.130749] direct_entry+0xd0/0x140 [ 278.134326] full_proxy_write+0x68/0xbc [ 278.138164] vfs_write+0xec/0x20c [ 278.141478] ksys_write+0x70/0x100 [ 278.144879] __arm64_sys_write+0x24/0x30 [ 278.148807] el0_svc_common.constprop.0+0x84/0x1e0 [ 278.153598] do_el0_svc+0x2c/0xa4 [ 278.156913] el0_svc+0x20/0x30 [ 278.159967] el0_sync_handler+0xb0/0xb4 [ 278.163804] el0_sync+0x180/0x1c0 [ 278.167118] irq event stamp: 0 [ 278.170177] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 278.176449] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 278.184627] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 278.192802] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 278.199067] ---[ end trace 8a97a63494dae2a1 ]--- [ 278.203781] lkdtm: Saturation detected: still saturated # [ 277.913272] lkdtm: Performing direct entry REFCOUNT_DEC_SATURATED # [ 277.919491] lkdtm: attempting bad refcount_dec() from saturated # [ 277.925478] ------------[ cut here ]------------ # [ 277.930164] refcount_t: decrement hit 0; leaking memory. # [ 277.935650] WARNING: CPU: 2 PID: 2672 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 # [ 277.944174] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 277.997504] CPU: 2 PID: 2672 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 278.005244] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 278.011600] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 278.017606] pc : refcount_warn_saturate+0x13c/0x144 # [ 278.022482] lr : refcount_warn_saturate+0x13c/0x144 # [ 278.027356] sp : ffff800016a83cc0 # [ 278.030669] x29: ffff800016a83cc0 x28: ffff0005c8cd6200 # [ 278.035987] x27: 0000000000000000 x26: 0000000000000000 # [ 278.041304] x25: ffff8000114e1c88 x24: ffff800016a83e20 # [ 278.046622] x23: 0000000000000017 x22: ffff0005c3c89000 # [ 278.051940] x21: ffff8000119f5470 x20: ffff8000114e1fe8 # [ 278.057257] x19: ffff800016a83d04 x18: 0000000000000000 # [ 278.062574] x17: 0000000000000000 x16: 0000000000000000 # [ 278.067892] x15: 0000000000000030 x14: ffffffffffffffff # [ 278.073210] x13: ffff800096a83967 x12: ffff800016a8396f # [ 278.078528] x11: ffff8000125802a8 x10: 0000000000001440 # [ 278.083845] x9 : ffff80001012cbc4 x8 : ffff0005c8cd76a0 # [ 278.089163] x7 : 0000000000000000 x6 : ffff800012551000 # [ 278.094480] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 278.099798] x3 : 0000000000000000 x2 : 0000000000000000 # [ 278.105115] x1 : 0000000000000000 x0 : ffff0005c8cd6200 # [ 278.110433] Call trace: # [ 278.112880] refcount_warn_saturate+0x13c/0x144 # [ 278.117416] __refcount_dec.constprop.0+0x5c/0x6c # [ 278.122120] lkdtm_REFCOUNT_DEC_SATURATED+0x40/0x70 # [ 278.127001] lkdtm_do_action+0x24/0x40 # [ 278.130749] direct_entry+0xd0/0x140 # [ 278.134326] full_proxy_write+0x68/0xbc # [ 278.138164] vfs_write+0xec/0x20c # [ 278.141478] ksys_write+0x70/0x100 # [ 278.144879] __arm64_sys_write+0x24/0x30 # [ 278.148807] el0_svc_common.constprop.0+0x84/0x1e0 # [ 278.153598] do_el0_svc+0x2c/0xa4 # [ 278.156913] el0_svc+0x20/0x30 # [ 278.159967] el0_sync_handler+0xb0/0xb4 # [ 278.163804] el0_sync+0x180/0x1c0 # [ 278.167118] irq event stamp: 0 # [ 278.170177] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 278.176449] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 278.184627] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 278.192802] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 278.199067] ---[ end trace 8a97a63494dae2a1 ]--- # [ 278.203781] lkdtm: Saturation detected: still saturated # REFCOUNT_DEC_SATURATED: saw 'Saturation detected: still saturated': ok ok 53 selftests: lkdtm: REFCOUNT_DEC_SATURATED.sh # selftests: lkdtm: REFCOUNT_ADD_SATURATED.sh [ 279.466514] lkdtm: Performing direct entry REFCOUNT_ADD_SATURATED [ 279.472847] lkdtm: attempting bad refcount_dec() from saturated [ 279.480632] ------------[ cut here ]------------ [ 279.485725] refcount_t: saturated; leaking memory. [ 279.491023] WARNING: CPU: 5 PID: 2707 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 [ 279.499461] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 279.552791] CPU: 5 PID: 2707 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 279.560531] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 279.566886] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 279.572892] pc : refcount_warn_saturate+0x74/0x144 [ 279.577681] lr : refcount_warn_saturate+0x74/0x144 [ 279.582471] sp : ffff800016b23cd0 [ 279.585783] x29: ffff800016b23cd0 x28: ffff0005c2fbe200 [ 279.591100] x27: 0000000000000000 x26: 0000000000000000 [ 279.596418] x25: ffff8000114e1c88 x24: ffff800016b23e20 [ 279.601736] x23: 0000000000000017 x22: ffff0005c26b8000 [ 279.607054] x21: ffff8000119f5488 x20: ffff8000114e1ff8 [ 279.612371] x19: 0000000000000037 x18: 0000000000000000 [ 279.617688] x17: 0000000000000000 x16: 0000000000000000 [ 279.623006] x15: 0000000000000000 x14: 0000000000000000 [ 279.628324] x13: 0000000000000000 x12: 0000000000000000 [ 279.633641] x11: 0000008cea149aa0 x10: 0000000000001440 [ 279.638959] x9 : ffff80001012cbc4 x8 : ffff0005c2fbf6a0 [ 279.644276] x7 : 0000000000000000 x6 : ffff800012551000 [ 279.649594] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 [ 279.654911] x3 : 0000000000000000 x2 : 0000000000000000 [ 279.660228] x1 : 0000000000000000 x0 : ffff0005c2fbe200 [ 279.665547] Call trace: [ 279.667994] refcount_warn_saturate+0x74/0x144 [ 279.672442] __refcount_add.constprop.0+0x7c/0x90 [ 279.677150] lkdtm_REFCOUNT_ADD_SATURATED+0x44/0x74 [ 279.682027] lkdtm_do_action+0x24/0x40 [ 279.685775] direct_entry+0xd0/0x140 [ 279.689352] full_proxy_write+0x68/0xbc [ 279.693190] vfs_write+0xec/0x20c [ 279.696504] ksys_write+0x70/0x100 [ 279.699905] __arm64_sys_write+0x24/0x30 [ 279.703833] el0_svc_common.constprop.0+0x84/0x1e0 [ 279.708624] do_el0_svc+0x2c/0xa4 [ 279.711939] el0_svc+0x20/0x30 [ 279.714992] el0_sync_handler+0xb0/0xb4 [ 279.718829] el0_sync+0x180/0x1c0 [ 279.722143] irq event stamp: 0 [ 279.725203] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 279.731474] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 279.739652] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 279.747827] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 279.754092] ---[ end trace 8a97a63494dae2a2 ]--- [ 279.758813] lkdtm: Saturation detected: still saturated # [ 279.466514] lkdtm: Performing direct entry REFCOUNT_ADD_SATURATED # [ 279.472847] lkdtm: attempting bad refcount_dec() from saturated # [ 279.480632] ------------[ cut here ]------------ # [ 279.485725] refcount_t: saturated; leaking memory. # [ 279.491023] WARNING: CPU: 5 PID: 2707 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 279.499461] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 279.552791] CPU: 5 PID: 2707 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 279.560531] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 279.566886] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 279.572892] pc : refcount_warn_saturate+0x74/0x144 # [ 279.577681] lr : refcount_warn_saturate+0x74/0x144 # [ 279.582471] sp : ffff800016b23cd0 # [ 279.585783] x29: ffff800016b23cd0 x28: ffff0005c2fbe200 # [ 279.591100] x27: 0000000000000000 x26: 0000000000000000 # [ 279.596418] x25: ffff8000114e1c88 x24: ffff800016b23e20 # [ 279.601736] x23: 0000000000000017 x22: ffff0005c26b8000 # [ 279.607054] x21: ffff8000119f5488 x20: ffff8000114e1ff8 # [ 279.612371] x19: 0000000000000037 x18: 0000000000000000 # [ 279.617688] x17: 0000000000000000 x16: 0000000000000000 # [ 279.623006] x15: 0000000000000000 x14: 0000000000000000 # [ 279.628324] x13: 0000000000000000 x12: 0000000000000000 # [ 279.633641] x11: 0000008cea149aa0 x10: 0000000000001440 # [ 279.638959] x9 : ffff80001012cbc4 x8 : ffff0005c2fbf6a0 # [ 279.644276] x7 : 0000000000000000 x6 : ffff800012551000 # [ 279.649594] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 # [ 279.654911] x3 : 0000000000000000 x2 : 0000000000000000 # [ 279.660228] x1 : 0000000000000000 x0 : ffff0005c2fbe200 # [ 279.665547] Call trace: # [ 279.667994] refcount_warn_saturate+0x74/0x144 # [ 279.672442] __refcount_add.constprop.0+0x7c/0x90 # [ 279.677150] lkdtm_REFCOUNT_ADD_SATURATED+0x44/0x74 # [ 279.682027] lkdtm_do_action+0x24/0x40 # [ 279.685775] direct_entry+0xd0/0x140 # [ 279.689352] full_proxy_write+0x68/0xbc # [ 279.693190] vfs_write+0xec/0x20c # [ 279.696504] ksys_write+0x70/0x100 # [ 279.699905] __arm64_sys_write+0x24/0x30 # [ 279.703833] el0_svc_common.constprop.0+0x84/0x1e0 # [ 279.708624] do_el0_svc+0x2c/0xa4 # [ 279.711939] el0_svc+0x20/0x30 # [ 279.714992] el0_sync_handler+0xb0/0xb4 # [ 279.718829] el0_sync+0x180/0x1c0 # [ 279.722143] irq event stamp: 0 # [ 279.725203] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 279.731474] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 279.739652] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 279.747827] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 279.754092] ---[ end trace 8a97a63494dae2a2 ]--- # [ 279.758813] lkdtm: Saturation detected: still saturated # REFCOUNT_ADD_SATURATED: saw 'Saturation detected: still saturated': ok ok 54 selftests: lkdtm: REFCOUNT_ADD_SATURATED.sh # selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_SATURATED.sh [ 281.124499] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_SATURATED [ 281.131493] lkdtm: attempting bad refcount_inc_not_zero() from saturated [ 281.139942] ------------[ cut here ]------------ [ 281.144999] refcount_t: saturated; leaking memory. [ 281.150278] WARNING: CPU: 2 PID: 2739 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 [ 281.158715] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 281.212045] CPU: 2 PID: 2739 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 281.219785] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 281.226141] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 281.232147] pc : refcount_warn_saturate+0xc8/0x144 [ 281.236937] lr : refcount_warn_saturate+0xc8/0x144 [ 281.241726] sp : ffff800016bd3cb0 [ 281.245038] x29: ffff800016bd3cb0 x28: ffff0005c40ac980 [ 281.250356] x27: 0000000000000000 x26: 0000000000000000 [ 281.255673] x25: ffff8000114e1c88 x24: ffff800016bd3e20 [ 281.260991] x23: 0000000000000020 x22: ffff0005c77d1000 [ 281.266308] x21: 0000000000000001 x20: 00000000c0000000 [ 281.271626] x19: ffff800016bd3d04 x18: 0000000000000000 [ 281.276944] x17: 0000000000000000 x16: 0000000000000000 [ 281.282261] x15: 0000000000000000 x14: 0000000000000000 [ 281.287578] x13: 0000000000000000 x12: 0000000000000000 [ 281.292896] x11: 0000000000000000 x10: 0000000000001440 [ 281.298213] x9 : ffff80001012cbc4 x8 : ffff0005c40ade20 [ 281.303531] x7 : 010a25fd542c50ac x6 : ffff800012551000 [ 281.308848] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 281.314166] x3 : 0000000000000000 x2 : 0000000000000000 [ 281.319484] x1 : 0000000000000000 x0 : ffff0005c40ac980 [ 281.324802] Call trace: [ 281.327249] refcount_warn_saturate+0xc8/0x144 [ 281.331698] __refcount_add_not_zero.constprop.0+0x98/0xb4 [ 281.337183] lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED+0x48/0x8c [ 281.342845] lkdtm_do_action+0x24/0x40 [ 281.346593] direct_entry+0xd0/0x140 [ 281.350170] full_proxy_write+0x68/0xbc [ 281.354009] vfs_write+0xec/0x20c [ 281.357323] ksys_write+0x70/0x100 [ 281.360723] __arm64_sys_write+0x24/0x30 [ 281.364651] el0_svc_common.constprop.0+0x84/0x1e0 [ 281.369441] do_el0_svc+0x2c/0xa4 [ 281.372756] el0_svc+0x20/0x30 [ 281.375811] el0_sync_handler+0xb0/0xb4 [ 281.379648] el0_sync+0x180/0x1c0 [ 281.382962] irq event stamp: 0 [ 281.386020] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 281.392292] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 281.400470] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 281.408645] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 281.414909] ---[ end trace 8a97a63494dae2a3 ]--- [ 281.419906] lkdtm: Saturation detected: still saturated # [ 281.124499] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_SATURATED # [ 281.131493] lkdtm: attempting bad refcount_inc_not_zero() from saturated # [ 281.139942] ------------[ cut here ]------------ # [ 281.144999] refcount_t: saturated; leaking memory. # [ 281.150278] WARNING: CPU: 2 PID: 2739 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 281.158715] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 281.212045] CPU: 2 PID: 2739 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 281.219785] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 281.226141] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 281.232147] pc : refcount_warn_saturate+0xc8/0x144 # [ 281.236937] lr : refcount_warn_saturate+0xc8/0x144 # [ 281.241726] sp : ffff800016bd3cb0 # [ 281.245038] x29: ffff800016bd3cb0 x28: ffff0005c40ac980 # [ 281.250356] x27: 0000000000000000 x26: 0000000000000000 # [ 281.255673] x25: ffff8000114e1c88 x24: ffff800016bd3e20 # [ 281.260991] x23: 0000000000000020 x22: ffff0005c77d1000 # [ 281.266308] x21: 0000000000000001 x20: 00000000c0000000 # [ 281.271626] x19: ffff800016bd3d04 x18: 0000000000000000 # [ 281.276944] x17: 0000000000000000 x16: 0000000000000000 # [ 281.282261] x15: 0000000000000000 x14: 0000000000000000 # [ 281.287578] x13: 0000000000000000 x12: 0000000000000000 # [ 281.292896] x11: 0000000000000000 x10: 0000000000001440 # [ 281.298213] x9 : ffff80001012cbc4 x8 : ffff0005c40ade20 # [ 281.303531] x7 : 010a25fd542c50ac x6 : ffff800012551000 # [ 281.308848] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 281.314166] x3 : 0000000000000000 x2 : 0000000000000000 # [ 281.319484] x1 : 0000000000000000 x0 : ffff0005c40ac980 # [ 281.324802] Call trace: # [ 281.327249] refcount_warn_saturate+0xc8/0x144 # [ 281.331698] __refcount_add_not_zero.constprop.0+0x98/0xb4 # [ 281.337183] lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED+0x48/0x8c # [ 281.342845] lkdtm_do_action+0x24/0x40 # [ 281.346593] direct_entry+0xd0/0x140 # [ 281.350170] full_proxy_write+0x68/0xbc # [ 281.354009] vfs_write+0xec/0x20c # [ 281.357323] ksys_write+0x70/0x100 # [ 281.360723] __arm64_sys_write+0x24/0x30 # [ 281.364651] el0_svc_common.constprop.0+0x84/0x1e0 # [ 281.369441] do_el0_svc+0x2c/0xa4 # [ 281.372756] el0_svc+0x20/0x30 # [ 281.375811] el0_sync_handler+0xb0/0xb4 # [ 281.379648] el0_sync+0x180/0x1c0 # [ 281.382962] irq event stamp: 0 # [ 281.386020] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 281.392292] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 281.400470] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 281.408645] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 281.414909] ---[ end trace 8a97a63494dae2a3 ]--- # [ 281.419906] lkdtm: Saturation detected: still saturated # REFCOUNT_INC_NOT_ZERO_SATURATED: saw 'call trace:': ok ok 55 selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_SATURATED.sh # selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_SATURATED.sh [ 282.841167] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_SATURATED [ 282.848136] lkdtm: attempting bad refcount_add_not_zero() from saturated [ 282.854915] ------------[ cut here ]------------ [ 282.859579] refcount_t: saturated; leaking memory. [ 282.864544] WARNING: CPU: 2 PID: 2771 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 [ 282.872983] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 282.926314] CPU: 2 PID: 2771 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 282.934055] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 282.940411] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 282.946417] pc : refcount_warn_saturate+0xc8/0x144 [ 282.951207] lr : refcount_warn_saturate+0xc8/0x144 [ 282.955995] sp : ffff8000169a3cb0 [ 282.959308] x29: ffff8000169a3cb0 x28: ffff0005c82a0000 [ 282.964625] x27: 0000000000000000 x26: 0000000000000000 [ 282.969943] x25: ffff8000114e1c88 x24: ffff8000169a3e20 [ 282.975261] x23: 0000000000000020 x22: ffff0005c5c9a000 [ 282.980578] x21: 0000000000000007 x20: 00000000c0000000 [ 282.985897] x19: ffff8000169a3d04 x18: 0000000000000000 [ 282.991214] x17: 0000000000000000 x16: 0000000000000000 [ 282.996532] x15: 0000000000000030 x14: ffffffffffffffff [ 283.001850] x13: ffff8000969a3957 x12: ffff8000169a395f [ 283.007167] x11: ffff8000125802a8 x10: 0000000000001440 [ 283.012484] x9 : ffff80001012cbc4 x8 : ffff0005c82a14a0 [ 283.017802] x7 : 0000000000000000 x6 : ffff800012551000 [ 283.023120] x5 : ffff800012551c88 x4 : ffff00063f75cc50 [ 283.028437] x3 : 0000000000000000 x2 : 0000000000000000 [ 283.033755] x1 : 0000000000000000 x0 : ffff0005c82a0000 [ 283.039073] Call trace: [ 283.041520] refcount_warn_saturate+0xc8/0x144 [ 283.045969] __refcount_add_not_zero.constprop.0+0x98/0xb4 [ 283.051454] lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED+0x48/0x8c [ 283.057117] lkdtm_do_action+0x24/0x40 [ 283.060865] direct_entry+0xd0/0x140 [ 283.064442] full_proxy_write+0x68/0xbc [ 283.068281] vfs_write+0xec/0x20c [ 283.071595] ksys_write+0x70/0x100 [ 283.074996] __arm64_sys_write+0x24/0x30 [ 283.078924] el0_svc_common.constprop.0+0x84/0x1e0 [ 283.083715] do_el0_svc+0x2c/0xa4 [ 283.087030] el0_svc+0x20/0x30 [ 283.090084] el0_sync_handler+0xb0/0xb4 [ 283.093921] el0_sync+0x180/0x1c0 [ 283.097235] irq event stamp: 0 [ 283.100295] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 283.106566] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 283.114744] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 283.122919] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 283.129183] ---[ end trace 8a97a63494dae2a4 ]--- [ 283.134073] lkdtm: Saturation detected: still saturated # [ 0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=6, Nodes=1 # [ 0.000000] ftrace: allocating 58576 entries in 229 pages # [ 0.000000] ftrace: allocated 229 pages with 5 groups # [ 0.000000] Running RCU self tests # [ 0.000000] rcu: Preemptible hierarchical RCU implementation. # [ 0.000000] rcu: RCU event tracing is enabled. # [ 0.000000] rcu: RCU lockdep checking is enabled. # [ 0.000000] rcu: RCU restricting CPUs from NR_CPUS=256 to nr_cpu_ids=6. # [ 0.000000] Trampoline variant of Tasks RCU enabled. # [ 0.000000] Rude variant of Tasks RCU enabled. # [ 0.000000] Tracing variant of Tasks RCU enabled. # [ 0.000000] rcu: RCU calculated value of scheduler-enlistment delay is 25 jiffies. # [ 0.000000] rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=6 # [ 0.000000] NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 # [ 0.000000] arch_timer: cp15 timer(s) running at 8.33MHz (virt). # [ 0.000000] clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x1ec02923e, max_idle_ns: 440795202125 ns # [ 282.841167] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_SATURATED # [ 282.848136] lkdtm: attempting bad refcount_add_not_zero() from saturated # [ 282.854915] ------------[ cut here ]------------ # [ 282.859579] refcount_t: saturated; leaking memory. # [ 282.864544] WARNING: CPU: 2 PID: 2771 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 282.872983] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 282.926314] CPU: 2 PID: 2771 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 282.934055] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 282.940411] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 282.946417] pc : refcount_warn_saturate+0xc8/0x144 # [ 282.951207] lr : refcount_warn_saturate+0xc8/0x144 # [ 282.955995] sp : ffff8000169a3cb0 # [ 282.959308] x29: ffff8000169a3cb0 x28: ffff0005c82a0000 # [ 282.964625] x27: 0000000000000000 x26: 0000000000000000 # [ 282.969943] x25: ffff8000114e1c88 x24: ffff8000169a3e20 # [ 282.975261] x23: 0000000000000020 x22: ffff0005c5c9a000 # [ 282.980578] x21: 0000000000000007 x20: 00000000c0000000 # [ 282.985897] x19: ffff8000169a3d04 x18: 0000000000000000 # [ 282.991214] x17: 0000000000000000 x16: 0000000000000000 # [ 282.996532] x15: 0000000000000030 x14: ffffffffffffffff # [ 283.001850] x13: ffff8000969a3957 x12: ffff8000169a395f # [ 283.007167] x11: ffff8000125802a8 x10: 0000000000001440 # [ 283.012484] x9 : ffff80001012cbc4 x8 : ffff0005c82a14a0 # [ 283.017802] x7 : 0000000000000000 x6 : ffff800012551000 # [ 283.023120] x5 : ffff800012551c88 x4 : ffff00063f75cc50 # [ 283.028437] x3 : 0000000000000000 x2 : 0000000000000000 # [ 283.033755] x1 : 0000000000000000 x0 : ffff0005c82a0000 # [ 283.039073] Call trace: # [ 283.041520] refcount_warn_saturate+0xc8/0x144 # [ 283.045969] __refcount_add_not_zero.constprop.0+0x98/0xb4 # [ 283.051454] lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED+0x48/0x8c # [ 283.057117] lkdtm_do_action+0x24/0x40 # [ 283.060865] direct_entry+0xd0/0x140 # [ 283.064442] full_proxy_write+0x68/0xbc # [ 283.068281] vfs_write+0xec/0x20c # [ 283.071595] ksys_write+0x70/0x100 # [ 283.074996] __arm64_sys_write+0x24/0x30 # [ 283.078924] el0_svc_common.constprop.0+0x84/0x1e0 # [ 283.083715] do_el0_svc+0x2c/0xa4 # [ 283.087030] el0_svc+0x20/0x30 # [ 283.090084] el0_sync_handler+0xb0/0xb4 # [ 283.093921] el0_sync+0x180/0x1c0 # [ 283.097235] irq event stamp: 0 # [ 283.100295] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 283.106566] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 283.114744] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 283.122919] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 283.129183] ---[ end trace 8a97a63494dae2a4 ]--- # [ 283.134073] lkdtm: Saturation detected: still saturated # REFCOUNT_ADD_NOT_ZERO_SATURATED: saw 'call trace:': ok ok 56 selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_SATURATED.sh # selftests: lkdtm: REFCOUNT_DEC_AND_TEST_SATURATED.sh [ 284.464018] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_SATURATED [ 284.471011] lkdtm: attempting bad refcount_dec_and_test() from saturated [ 284.477778] ------------[ cut here ]------------ [ 284.482459] refcount_t: underflow; use-after-free. [ 284.487436] WARNING: CPU: 0 PID: 2806 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 [ 284.495870] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 284.549077] CPU: 0 PID: 2806 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 284.556815] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 284.563166] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 284.569168] pc : refcount_warn_saturate+0xf4/0x144 [ 284.573953] lr : refcount_warn_saturate+0xf4/0x144 [ 284.578737] sp : ffff800016cf3cd0 [ 284.582046] x29: ffff800016cf3cd0 x28: ffff0005c40a9880 [ 284.587357] x27: 0000000000000000 x26: 0000000000000000 [ 284.592668] x25: ffff8000114e1c88 x24: ffff800016cf3e20 [ 284.597978] x23: 0000000000000020 x22: ffff0005c7bf6000 [ 284.603288] x21: ffff8000119f54e0 x20: ffff8000114e2028 [ 284.608598] x19: 000000000000003a x18: 0000000000000000 [ 284.613908] x17: 0000000000000000 x16: 001fffffffffffff [ 284.619218] x15: 0000000000000149 x14: 000000000000014b [ 284.624528] x13: 0000000000000001 x12: 0000000000000002 [ 284.629837] x11: 0000000000000000 x10: 0000000000001440 [ 284.635147] x9 : ffff80001012cbc4 x8 : ffff00063f7e97c0 [ 284.640457] x7 : ffff80062d96e000 x6 : ffff800012551000 [ 284.645767] x5 : ffff800012551c88 x4 : ffff00063f718c50 [ 284.651076] x3 : 0000000000000000 x2 : 0000000000000000 [ 284.656386] x1 : 0000000000000000 x0 : ffff0005c40a9880 [ 284.661696] Call trace: [ 284.664139] refcount_warn_saturate+0xf4/0x144 [ 284.668583] __refcount_sub_and_test.constprop.0+0x74/0x8c [ 284.674069] lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED+0x48/0x8c [ 284.679724] lkdtm_do_action+0x24/0x40 [ 284.683467] direct_entry+0xd0/0x140 [ 284.687040] full_proxy_write+0x68/0xbc [ 284.690875] vfs_write+0xec/0x20c [ 284.694185] ksys_write+0x70/0x100 [ 284.697580] __arm64_sys_write+0x24/0x30 [ 284.701502] el0_svc_common.constprop.0+0x84/0x1e0 [ 284.706288] do_el0_svc+0x2c/0xa4 [ 284.709599] el0_svc+0x20/0x30 [ 284.712648] el0_sync_handler+0xb0/0xb4 [ 284.716479] el0_sync+0x180/0x1c0 [ 284.719789] irq event stamp: 0 [ 284.722843] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 284.729109] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 284.737282] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 284.745452] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 284.751713] ---[ end trace 8a97a63494dae2a5 ]--- [ 284.756478] lkdtm: Saturation detected: still saturated # [ 284.464018] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_SATURATED # [ 284.471011] lkdtm: attempting bad refcount_dec_and_test() from saturated # [ 284.477778] ------------[ cut here ]------------ # [ 284.482459] refcount_t: underflow; use-after-free. # [ 284.487436] WARNING: CPU: 0 PID: 2806 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 284.495870] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 284.549077] CPU: 0 PID: 2806 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 284.556815] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 284.563166] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 284.569168] pc : refcount_warn_saturate+0xf4/0x144 # [ 284.573953] lr : refcount_warn_saturate+0xf4/0x144 # [ 284.578737] sp : ffff800016cf3cd0 # [ 284.582046] x29: ffff800016cf3cd0 x28: ffff0005c40a9880 # [ 284.587357] x27: 0000000000000000 x26: 0000000000000000 # [ 284.592668] x25: ffff8000114e1c88 x24: ffff800016cf3e20 # [ 284.597978] x23: 0000000000000020 x22: ffff0005c7bf6000 # [ 284.603288] x21: ffff8000119f54e0 x20: ffff8000114e2028 # [ 284.608598] x19: 000000000000003a x18: 0000000000000000 # [ 284.613908] x17: 0000000000000000 x16: 001fffffffffffff # [ 284.619218] x15: 0000000000000149 x14: 000000000000014b # [ 284.624528] x13: 0000000000000001 x12: 0000000000000002 # [ 284.629837] x11: 0000000000000000 x10: 0000000000001440 # [ 284.635147] x9 : ffff80001012cbc4 x8 : ffff00063f7e97c0 # [ 284.640457] x7 : ffff80062d96e000 x6 : ffff800012551000 # [ 284.645767] x5 : ffff800012551c88 x4 : ffff00063f718c50 # [ 284.651076] x3 : 0000000000000000 x2 : 0000000000000000 # [ 284.656386] x1 : 0000000000000000 x0 : ffff0005c40a9880 # [ 284.661696] Call trace: # [ 284.664139] refcount_warn_saturate+0xf4/0x144 # [ 284.668583] __refcount_sub_and_test.constprop.0+0x74/0x8c # [ 284.674069] lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED+0x48/0x8c # [ 284.679724] lkdtm_do_action+0x24/0x40 # [ 284.683467] direct_entry+0xd0/0x140 # [ 284.687040] full_proxy_write+0x68/0xbc # [ 284.690875] vfs_write+0xec/0x20c # [ 284.694185] ksys_write+0x70/0x100 # [ 284.697580] __arm64_sys_write+0x24/0x30 # [ 284.701502] el0_svc_common.constprop.0+0x84/0x1e0 # [ 284.706288] do_el0_svc+0x2c/0xa4 # [ 284.709599] el0_svc+0x20/0x30 # [ 284.712648] el0_sync_handler+0xb0/0xb4 # [ 284.716479] el0_sync+0x180/0x1c0 # [ 284.719789] irq event stamp: 0 # [ 284.722843] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 284.729109] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 284.737282] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 284.745452] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 284.751713] ---[ end trace 8a97a63494dae2a5 ]--- # [ 284.756478] lkdtm: Saturation detected: still saturated # REFCOUNT_DEC_AND_TEST_SATURATED: saw 'Saturation detected: still saturated': ok ok 57 selftests: lkdtm: REFCOUNT_DEC_AND_TEST_SATURATED.sh # selftests: lkdtm: REFCOUNT_SUB_AND_TEST_SATURATED.sh [ 286.050095] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_SATURATED [ 286.057110] lkdtm: attempting bad refcount_sub_and_test() from saturated [ 286.063878] ------------[ cut here ]------------ [ 286.068541] refcount_t: underflow; use-after-free. [ 286.073517] WARNING: CPU: 5 PID: 2841 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 [ 286.081956] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 286.135289] CPU: 5 PID: 2841 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 286.143030] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 286.149385] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) [ 286.155391] pc : refcount_warn_saturate+0xf4/0x144 [ 286.160181] lr : refcount_warn_saturate+0xf4/0x144 [ 286.164970] sp : ffff800016dbbcd0 [ 286.168282] x29: ffff800016dbbcd0 x28: ffff0005c2fbb100 [ 286.173601] x27: 0000000000000000 x26: 0000000000000000 [ 286.178918] x25: ffff8000114e1c88 x24: ffff800016dbbe20 [ 286.184237] x23: 0000000000000020 x22: ffff0005c5b60000 [ 286.189555] x21: ffff8000119f5500 x20: ffff8000114e2038 [ 286.194872] x19: 000000000000003b x18: 0000000000000001 [ 286.200190] x17: 0000000000000000 x16: 0000000000000000 [ 286.205507] x15: 0000000000000030 x14: ffffffffffffffff [ 286.210825] x13: ffff800096dbb977 x12: ffff800016dbb980 [ 286.216143] x11: ffff8000125802a8 x10: 0000000000001440 [ 286.221460] x9 : ffff80001012cbc4 x8 : ffff0005c2fbc5a0 [ 286.226778] x7 : 0000000000000000 x6 : ffff800012551000 [ 286.232095] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 [ 286.237412] x3 : 0000000000000000 x2 : 0000000000000000 [ 286.242730] x1 : 0000000000000000 x0 : ffff0005c2fbb100 [ 286.248048] Call trace: [ 286.250495] refcount_warn_saturate+0xf4/0x144 [ 286.254944] __refcount_sub_and_test.constprop.0+0x74/0x8c [ 286.260434] lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED+0x48/0x8c [ 286.266093] lkdtm_do_action+0x24/0x40 [ 286.269841] direct_entry+0xd0/0x140 [ 286.273418] full_proxy_write+0x68/0xbc [ 286.277256] vfs_write+0xec/0x20c [ 286.280570] ksys_write+0x70/0x100 [ 286.283971] __arm64_sys_write+0x24/0x30 [ 286.287899] el0_svc_common.constprop.0+0x84/0x1e0 [ 286.292689] do_el0_svc+0x2c/0xa4 [ 286.296006] el0_svc+0x20/0x30 [ 286.299060] el0_sync_handler+0xb0/0xb4 [ 286.302896] el0_sync+0x180/0x1c0 [ 286.306210] irq event stamp: 0 [ 286.309270] hardirqs last enabled at (0): [<0000000000000000>] 0x0 [ 286.315541] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 [ 286.323719] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 [ 286.331894] softirqs last disabled at (0): [<0000000000000000>] 0x0 [ 286.338159] ---[ end trace 8a97a63494dae2a6 ]--- [ 286.343024] lkdtm: Saturation detected: still saturated # [ 286.050095] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_SATURATED # [ 286.057110] lkdtm: attempting bad refcount_sub_and_test() from saturated # [ 286.063878] ------------[ cut here ]------------ # [ 286.068541] refcount_t: underflow; use-after-free. # [ 286.073517] WARNING: CPU: 5 PID: 2841 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 286.081956] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 286.135289] CPU: 5 PID: 2841 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 286.143030] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 286.149385] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 286.155391] pc : refcount_warn_saturate+0xf4/0x144 # [ 286.160181] lr : refcount_warn_saturate+0xf4/0x144 # [ 286.164970] sp : ffff800016dbbcd0 # [ 286.168282] x29: ffff800016dbbcd0 x28: ffff0005c2fbb100 # [ 286.173601] x27: 0000000000000000 x26: 0000000000000000 # [ 286.178918] x25: ffff8000114e1c88 x24: ffff800016dbbe20 # [ 286.184237] x23: 0000000000000020 x22: ffff0005c5b60000 # [ 286.189555] x21: ffff8000119f5500 x20: ffff8000114e2038 # [ 286.194872] x19: 000000000000003b x18: 0000000000000001 # [ 286.200190] x17: 0000000000000000 x16: 0000000000000000 # [ 286.205507] x15: 0000000000000030 x14: ffffffffffffffff # [ 286.210825] x13: ffff800096dbb977 x12: ffff800016dbb980 # [ 286.216143] x11: ffff8000125802a8 x10: 0000000000001440 # [ 286.221460] x9 : ffff80001012cbc4 x8 : ffff0005c2fbc5a0 # [ 286.226778] x7 : 0000000000000000 x6 : ffff800012551000 # [ 286.232095] x5 : ffff800012551c88 x4 : ffff00063f7c2c50 # [ 286.237412] x3 : 0000000000000000 x2 : 0000000000000000 # [ 286.242730] x1 : 0000000000000000 x0 : ffff0005c2fbb100 # [ 286.248048] Call trace: # [ 286.250495] refcount_warn_saturate+0xf4/0x144 # [ 286.254944] __refcount_sub_and_test.constprop.0+0x74/0x8c # [ 286.260434] lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED+0x48/0x8c # [ 286.266093] lkdtm_do_action+0x24/0x40 # [ 286.269841] direct_entry+0xd0/0x140 # [ 286.273418] full_proxy_write+0x68/0xbc # [ 286.277256] vfs_write+0xec/0x20c # [ 286.280570] ksys_write+0x70/0x100 # [ 286.283971] __arm64_sys_write+0x24/0x30 # [ 286.287899] el0_svc_common.constprop.0+0x84/0x1e0 # [ 286.292689] do_el0_svc+0x2c/0xa4 # [ 286.296006] el0_svc+0x20/0x30 # [ 286.299060] el0_sync_handler+0xb0/0xb4 # [ 286.302896] el0_sync+0x180/0x1c0 # [ 286.306210] irq event stamp: 0 # [ 286.309270] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 286.315541] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 286.323719] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 286.331894] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 286.338159] ---[ end trace 8a97a63494dae2a6 ]--- # [ 286.343024] lkdtm: Saturation detected: still saturated # REFCOUNT_SUB_AND_TEST_SATURATED: saw 'Saturation detected: still saturated': ok ok 58 selftests: lkdtm: REFCOUNT_SUB_AND_TEST_SATURATED.sh # selftests: lkdtm: REFCOUNT_TIMING.sh # Skipping REFCOUNT_TIMING: timing only ok 59 selftests: lkdtm: REFCOUNT_TIMING.sh # SKIP # selftests: lkdtm: ATOMIC_TIMING.sh # Skipping ATOMIC_TIMING: timing only ok 60 selftests: lkdtm: ATOMIC_TIMING.sh # SKIP # selftests: lkdtm: USERCOPY_HEAP_SIZE_TO.sh [ 288.200800] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_TO [ 288.207030] lkdtm: attempting good copy_to_user of correct size [ 288.213084] lkdtm: attempting bad copy_to_user of too large size # [ 288.200800] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_TO # [ 288.207030] lkdtm: attempting good copy_to_user of correct size # [ 288.213084] lkdtm: attempting bad copy_to_user of too large size # USERCOPY_HEAP_SIZE_TO: missing 'call trace:': [FAIL] not ok 61 selftests: lkdtm: USERCOPY_HEAP_SIZE_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_SIZE_FROM.sh [ 289.091462] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_FROM [ 289.097765] lkdtm: attempting good copy_from_user of correct size [ 289.103943] lkdtm: attempting bad copy_from_user of too large size # [ 289.091462] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_FROM # [ 289.097765] lkdtm: attempting good copy_from_user of correct size # [ 289.103943] lkdtm: attempting bad copy_from_user of too large size # USERCOPY_HEAP_SIZE_FROM: missing 'call trace:': [FAIL] not ok 62 selftests: lkdtm: USERCOPY_HEAP_SIZE_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_WHITELIST_TO.sh [ 291.279704] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_TO [ 291.286390] lkdtm: attempting good copy_to_user inside whitelist [ 291.292589] lkdtm: attempting bad copy_to_user outside whitelist # [ 291.279704] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_TO # [ 291.286390] lkdtm: attempting good copy_to_user inside whitelist # [ 291.292589] lkdtm: attempting bad copy_to_user outside whitelist # USERCOPY_HEAP_WHITELIST_TO: missing 'call trace:': [FAIL] not ok 63 selftests: lkdtm: USERCOPY_HEAP_WHITELIST_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_WHITELIST_FROM.sh [ 292.382611] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_FROM [ 292.389411] lkdtm: attempting good copy_from_user inside whitelist [ 292.395667] lkdtm: attempting bad copy_from_user outside whitelist # [ 292.382611] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_FROM # [ 292.389411] lkdtm: attempting good copy_from_user inside whitelist # [ 292.395667] lkdtm: attempting bad copy_from_user outside whitelist # USERCOPY_HEAP_WHITELIST_FROM: missing 'call trace:': [FAIL] not ok 64 selftests: lkdtm: USERCOPY_HEAP_WHITELIST_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_FRAME_TO.sh [ 293.184900] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_TO [ 293.191179] lkdtm: good_stack: ffff80001723bcd8-ffff80001723bcf8 [ 293.197269] lkdtm: bad_stack : ffff80001723bc38-ffff80001723bc58 [ 293.203344] lkdtm: attempting good copy_to_user of local stack [ 293.209332] lkdtm: attempting bad copy_to_user of distant stack # [ 293.184900] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_TO # [ 293.191179] lkdtm: good_stack: ffff80001723bcd8-ffff80001723bcf8 # [ 293.197269] lkdtm: bad_stack : ffff80001723bc38-ffff80001723bc58 # [ 293.203344] lkdtm: attempting good copy_to_user of local stack # [ 293.209332] lkdtm: attempting bad copy_to_user of distant stack # USERCOPY_STACK_FRAME_TO: missing 'call trace:': [FAIL] not ok 65 selftests: lkdtm: USERCOPY_STACK_FRAME_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_FRAME_FROM.sh [ 294.445393] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_FROM [ 294.451992] lkdtm: good_stack: ffff8000172e3cd8-ffff8000172e3cf8 [ 294.458072] lkdtm: bad_stack : ffff8000172e3c38-ffff8000172e3c58 [ 294.464357] lkdtm: attempting good copy_from_user of local stack [ 294.470483] lkdtm: attempting bad copy_from_user of distant stack # [ 294.445393] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_FROM # [ 294.451992] lkdtm: good_stack: ffff8000172e3cd8-ffff8000172e3cf8 # [ 294.458072] lkdtm: bad_stack : ffff8000172e3c38-ffff8000172e3c58 # [ 294.464357] lkdtm: attempting good copy_from_user of local stack # [ 294.470483] lkdtm: attempting bad copy_from_user of distant stack # USERCOPY_STACK_FRAME_FROM: missing 'call trace:': [FAIL] not ok 66 selftests: lkdtm: USERCOPY_STACK_FRAME_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_BEYOND.sh [ 295.414797] lkdtm: Performing direct entry USERCOPY_STACK_BEYOND [ 295.421048] lkdtm: good_stack: ffff8000173a3cd8-ffff8000173a3cf8 [ 295.428751] lkdtm: bad_stack : ffff8000173a3ff8-ffff8000173a4018 [ 295.435384] lkdtm: attempting good copy_to_user of local stack [ 295.441712] lkdtm: attempting bad copy_to_user of distant stack [ 295.447728] Unable to handle kernel paging request at virtual address ffff8000173a4000 [ 295.455765] Mem abort info: [ 295.458582] ESR = 0x96000007 [ 295.461692] EC = 0x25: DABT (current EL), IL = 32 bits [ 295.467337] SET = 0, FnV = 0 [ 295.470398] EA = 0, S1PTW = 0 [ 295.473744] Data abort info: [ 295.476649] ISV = 0, ISS = 0x00000007 [ 295.480566] CM = 0, WnR = 0 [ 295.483550] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 [ 295.490263] [ffff8000173a4000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=00000006061d3003, pte=0000000000000000 [ 295.502980] Internal error: Oops: 96000007 [#16] PREEMPT SMP [ 295.508638] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek [ 295.561843] CPU: 0 PID: 3135 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 295.569580] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 295.575931] pstate: 80000005 (Nzcv daif -PAN -UAO -TCO BTYPE=--) [ 295.581944] pc : __arch_copy_to_user+0xa0/0x310 [ 295.586474] lr : _copy_to_user+0x6c/0x94 [ 295.590390] sp : ffff8000173a3c70 [ 295.593699] x29: ffff8000173a3c70 x28: ffff0005ca148000 [ 295.599010] x27: 0000000000000000 x26: 0000000000000000 [ 295.604320] x25: ffff8000114e1c88 x24: ffff8000173a3e20 [ 295.609631] x23: 0000000000000016 x22: ffff0005c94bc000 [ 295.614941] x21: ffff8000173a3ff8 x20: 0000ffff89f4e000 [ 295.620251] x19: 0000000000000020 x18: 0000000000000000 [ 295.625560] x17: 0000000000000000 x16: 0000000000000000 [ 295.630870] x15: ffff8000173a3ff8 x14: ffffffffffffffff [ 295.636180] x13: ffff8000973a3987 x12: ffff8000173a398f [ 295.641490] x11: ffff8000125802a8 x10: ffff8000125d8448 [ 295.646800] x9 : ffff80001011ad40 x8 : ffff800012580448 [ 295.652110] x7 : ffff8000125d8448 x6 : 0000ffff89f4e008 [ 295.657420] x5 : 0000ffff89f4e020 x4 : 0000000000000008 [ 295.662729] x3 : 0000000000000010 x2 : 0000000000000018 [ 295.668039] x1 : ffff8000173a4000 x0 : 0000ffff89f4e000 [ 295.673350] Call trace: [ 295.675794] __arch_copy_to_user+0xa0/0x310 [ 295.679976] do_usercopy_stack+0x28c/0x294 [ 295.684068] lkdtm_USERCOPY_STACK_BEYOND+0x20/0x30 [ 295.688854] lkdtm_do_action+0x24/0x40 [ 295.692598] direct_entry+0xd0/0x140 [ 295.696170] full_proxy_write+0x68/0xbc [ 295.700004] vfs_write+0xec/0x20c [ 295.703313] ksys_write+0x70/0x100 [ 295.706710] __arm64_sys_write+0x24/0x30 [ 295.710632] el0_svc_common.constprop.0+0x84/0x1e0 [ 295.715417] do_el0_svc+0x2c/0xa4 [ 295.718728] el0_svc+0x20/0x30 [ 295.721777] el0_sync_handler+0xb0/0xb4 [ 295.725609] el0_sync+0x180/0x1c0 [ 295.728924] Code: a8c12027 a88120c7 d503201f d503201f (a8c12027) [ 295.735015] ---[ end trace 8a97a63494dae2a7 ]--- # Segmentation fault # [ 295.414797] lkdtm: Performing direct entry USERCOPY_STACK_BEYOND # [ 295.421048] lkdtm: good_stack: ffff8000173a3cd8-ffff8000173a3cf8 # [ 295.428751] lkdtm: bad_stack : ffff8000173a3ff8-ffff8000173a4018 # [ 295.435384] lkdtm: attempting good copy_to_user of local stack # [ 295.441712] lkdtm: attempting bad copy_to_user of distant stack # [ 295.447728] Unable to handle kernel paging request at virtual address ffff8000173a4000 # [ 295.455765] Mem abort info: # [ 295.458582] ESR = 0x96000007 # [ 295.461692] EC = 0x25: DABT (current EL), IL = 32 bits # [ 295.467337] SET = 0, FnV = 0 # [ 295.470398] EA = 0, S1PTW = 0 # [ 295.473744] Data abort info: # [ 295.476649] ISV = 0, ISS = 0x00000007 # [ 295.480566] CM = 0, WnR = 0 # [ 295.483550] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049db2000 # [ 295.490263] [ffff8000173a4000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=00000006061d3003, pte=0000000000000000 # [ 295.502980] Internal error: Oops: 96000007 [#16] PREEMPT SMP # [ 295.508638] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 rcar_du_drm rcar_lvds snd_soc_hdmi_codec rcar_cmm cfg80211 dw_hdmi_cec dw_hdmi_i2s_audio rcar_fdp1 vsp1 rcar_dw_hdmi dw_hdmi videobuf2_vmalloc cec v4l2_mem2mem videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common snd_soc_audio_graph_card crct10dif_ce drm_kms_helper snd_soc_simple_card_utils videodev mc rcar_fcp wlcore_sdio hci_uart btqca renesas_usb3 btbcm snd_soc_rcar pwm_rcar rcar_can bluetooth can_dev ecdh_generic ecc rfkill phy_rcar_gen3_usb3 usb_dmac renesas_usbhs display_connector drm realtek # [ 295.561843] CPU: 0 PID: 3135 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 295.569580] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 295.575931] pstate: 80000005 (Nzcv daif -PAN -UAO -TCO BTYPE=--) # [ 295.581944] pc : __arch_copy_to_user+0xa0/0x310 # [ 295.586474] lr : _copy_to_user+0x6c/0x94 # [ 295.590390] sp : ffff8000173a3c70 # [ 295.593699] x29: ffff8000173a3c70 x28: ffff0005ca148000 # [ 295.599010] x27: 0000000000000000 x26: 0000000000000000 # [ 295.604320] x25: ffff8000114e1c88 x24: ffff8000173a3e20 # [ 295.609631] x23: 0000000000000016 x22: ffff0005c94bc000 # [ 295.614941] x21: ffff8000173a3ff8 x20: 0000ffff89f4e000 # [ 295.620251] x19: 0000000000000020 x18: 0000000000000000 # [ 295.625560] x17: 0000000000000000 x16: 0000000000000000 # [ 295.630870] x15: ffff8000173a3ff8 x14: ffffffffffffffff # [ 295.636180] x13: ffff8000973a3987 x12: ffff8000173a398f # [ 295.641490] x11: ffff8000125802a8 x10: ffff8000125d8448 # [ 295.646800] x9 : ffff80001011ad40 x8 : ffff800012580448 # [ 295.652110] x7 : ffff8000125d8448 x6 : 0000ffff89f4e008 # [ 295.657420] x5 : 0000ffff89f4e020 x4 : 0000000000000008 # [ 295.662729] x3 : 0000000000000010 x2 : 0000000000000018 # [ 295.668039] x1 : ffff8000173a4000 x0 : 0000ffff89f4e000 # [ 295.673350] Call trace: # [ 295.675794] __arch_copy_to_user+0xa0/0x310 # [ 295.679976] do_usercopy_stack+0x28c/0x294 # [ 295.684068] lkdtm_USERCOPY_STACK_BEYOND+0x20/0x30 # [ 295.688854] lkdtm_do_action+0x24/0x40 # [ 295.692598] direct_entry+0xd0/0x140 # [ 295.696170] full_proxy_write+0x68/0xbc # [ 295.700004] vfs_write+0xec/0x20c # [ 295.703313] ksys_write+0x70/0x100 # [ 295.706710] __arm64_sys_write+0x24/0x30 # [ 295.710632] el0_svc_common.constprop.0+0x84/0x1e0 # [ 295.715417] do_el0_svc+0x2c/0xa4 # [ 295.718728] el0_svc+0x20/0x30 # [ 295.721777] el0_sync_handler+0xb0/0xb4 # [ 295.725609] el0_sync+0x180/0x1c0 # [ 295.728924] Code: a8c12027 a88120c7 d503201f d503201f (a8c12027) # [ 295.735015] ---[ end trace 8a97a63494dae2a7 ]--- # USERCOPY_STACK_BEYOND: saw 'call trace:': ok ok 67 selftests: lkdtm: USERCOPY_STACK_BEYOND.sh # selftests: lkdtm: USERCOPY_KERNEL.sh [ 298.752975] lkdtm: Performing direct entry USERCOPY_KERNEL [ 298.758593] lkdtm: attempting good copy_to_user from kernel rodata: ffff8000114e2190 [ 298.768126] lkdtm: attempting bad copy_to_user from kernel text: ffff8000102cf510 [ 298.776152] lkdtm: FAIL: survived bad copy_to_user() # [ 298.752975] lkdtm: Performing direct entry USERCOPY_KERNEL # [ 298.758593] lkdtm: attempting good copy_to_user from kernel rodata: ffff8000114e2190 # [ 298.768126] lkdtm: attempting bad copy_to_user from kernel text: ffff8000102cf510 # [ 298.776152] lkdtm: FAIL: survived bad copy_to_user() # USERCOPY_KERNEL: missing 'call trace:': [FAIL] not ok 68 selftests: lkdtm: USERCOPY_KERNEL.sh # exit=1 # selftests: lkdtm: STACKLEAK_ERASING.sh [ 299.909962] lkdtm: Performing direct entry STACKLEAK_ERASING [ 299.915889] lkdtm: checking unused part of the thread stack (15608 bytes)... [ 299.923048] lkdtm: FAIL: the erased part is not found (checked 15608 bytes) [ 299.930255] lkdtm: FAIL: the thread stack is NOT properly erased [ 299.936385] CPU: 4 PID: 3217 Comm: cat Tainted: G D W 5.10.166-cip25 #1 [ 299.944128] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) [ 299.950482] Call trace: [ 299.952942] dump_backtrace+0x0/0x200 [ 299.956606] show_stack+0x20/0x30 [ 299.959927] dump_stack+0x110/0x160 [ 299.963419] lkdtm_STACKLEAK_ERASING+0x130/0x170 [ 299.968041] lkdtm_do_action+0x24/0x40 [ 299.971790] direct_entry+0xd0/0x140 [ 299.975370] full_proxy_write+0x68/0xbc [ 299.979209] vfs_write+0xec/0x20c [ 299.982525] ksys_write+0x70/0x100 [ 299.985927] __arm64_sys_write+0x24/0x30 [ 299.989858] el0_svc_common.constprop.0+0x84/0x1e0 [ 299.994649] do_el0_svc+0x2c/0xa4 [ 299.997966] el0_svc+0x20/0x30 [ 300.001022] el0_sync_handler+0xb0/0xb4 [ 300.004859] el0_sync+0x180/0x1c0 # [ 299.909962] lkdtm: Performing direct entry STACKLEAK_ERASING # [ 299.915889] lkdtm: checking unused part of the thread stack (15608 bytes)... # [ 299.923048] lkdtm: FAIL: the erased part is not found (checked 15608 bytes) # [ 299.930255] lkdtm: FAIL: the thread stack is NOT properly erased # [ 299.936385] CPU: 4 PID: 3217 Comm: cat Tainted: G D W 5.10.166-cip25 #1 # [ 299.944128] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 299.950482] Call trace: # [ 299.952942] dump_backtrace+0x0/0x200 # [ 299.956606] show_stack+0x20/0x30 # [ 299.959927] dump_stack+0x110/0x160 # [ 299.963419] lkdtm_STACKLEAK_ERASING+0x130/0x170 # [ 299.968041] lkdtm_do_action+0x24/0x40 # [ 299.971790] direct_entry+0xd0/0x140 # [ 299.975370] full_proxy_write+0x68/0xbc # [ 299.979209] vfs_write+0xec/0x20c # [ 299.982525] ksys_write+0x70/0x100 # [ 299.985927] __arm64_sys_write+0x24/0x30 # [ 299.989858] el0_svc_common.constprop.0+0x84/0x1e0 # [ 299.994649] do_el0_svc+0x2c/0xa4 # [ 299.997966] el0_svc+0x20/0x30 # [ 300.001022] el0_sync_handler+0xb0/0xb4 # [ 300.004859] el0_sync+0x180/0x1c0 # STACKLEAK_ERASING: missing 'OK: the rest of the thread stack is properly erased': [FAIL] not ok 69 selftests: lkdtm: STACKLEAK_ERASING.sh # exit=1 # selftests: lkdtm: CFI_FORWARD_PROTO.sh [ 301.040582] lkdtm: Performing direct entry CFI_FORWARD_PROTO [ 301.046356] lkdtm: Calling matched prototype ... [ 301.051039] lkdtm: Calling mismatched prototype ... [ 301.055974] lkdtm: Fail: survived mismatched prototype function call! # [ 301.040582] lkdtm: Performing direct entry CFI_FORWARD_PROTO # [ 301.046356] lkdtm: Calling matched prototype ... # [ 301.051039] lkdtm: Calling mismatched prototype ... # [ 301.055974] lkdtm: Fail: survived mismatched prototype function call! # CFI_FORWARD_PROTO: missing 'call trace:': [FAIL] not ok 70 selftests: lkdtm: CFI_FORWARD_PROTO.sh # exit=1 lkdtm_PANIC_sh skip lkdtm_BUG_sh pass lkdtm_WARNING_sh pass lkdtm_WARNING_MESSAGE_sh pass lkdtm_EXCEPTION_sh pass lkdtm_LOOP_sh skip lkdtm_EXHAUST_STACK_sh skip lkdtm_CORRUPT_STACK_sh skip lkdtm_CORRUPT_STACK_STRONG_sh skip lkdtm_CORRUPT_LIST_ADD_sh fail lkdtm_CORRUPT_LIST_DEL_sh fail lkdtm_STACK_GUARD_PAGE_LEADING_sh pass lkdtm_STACK_GUARD_PAGE_TRAILING_sh pass lkdtm_UNSET_SMEP_sh skip lkdtm_DOUBLE_FAULT_sh skip lkdtm_CORRUPT_PAC_sh fail lkdtm_UNALIGNED_LOAD_STORE_WRITE_sh skip lkdtm_OVERWRITE_ALLOCATION_sh skip lkdtm_WRITE_AFTER_FREE_sh skip lkdtm_READ_AFTER_FREE_sh fail lkdtm_WRITE_BUDDY_AFTER_FREE_sh skip lkdtm_READ_BUDDY_AFTER_FREE_sh fail lkdtm_SLAB_FREE_DOUBLE_sh fail lkdtm_SLAB_FREE_CROSS_sh fail lkdtm_SLAB_FREE_PAGE_sh fail lkdtm_SOFTLOCKUP_sh skip lkdtm_HARDLOCKUP_sh skip lkdtm_SPINLOCKUP_sh skip lkdtm_HUNG_TASK_sh skip lkdtm_EXEC_DATA_sh pass lkdtm_EXEC_STACK_sh pass lkdtm_EXEC_KMALLOC_sh pass lkdtm_EXEC_VMALLOC_sh pass lkdtm_EXEC_RODATA_sh pass lkdtm_EXEC_USERSPACE_sh pass lkdtm_EXEC_NULL_sh pass lkdtm_ACCESS_USERSPACE_sh fail lkdtm_ACCESS_NULL_sh pass lkdtm_WRITE_RO_sh pass lkdtm_WRITE_RO_AFTER_INIT_sh pass lkdtm_WRITE_KERN_sh pass lkdtm_REFCOUNT_INC_OVERFLOW_sh pass lkdtm_REFCOUNT_ADD_OVERFLOW_sh pass lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW_sh pass lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW_sh pass lkdtm_REFCOUNT_DEC_ZERO_sh pass lkdtm_REFCOUNT_DEC_NEGATIVE_sh pass lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE_sh pass lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE_sh pass lkdtm_REFCOUNT_INC_ZERO_sh pass lkdtm_REFCOUNT_ADD_ZERO_sh pass lkdtm_REFCOUNT_INC_SATURATED_sh pass lkdtm_REFCOUNT_DEC_SATURATED_sh pass lkdtm_REFCOUNT_ADD_SATURATED_sh pass lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED_sh pass lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED_sh pass lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED_sh pass lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED_sh pass lkdtm_REFCOUNT_TIMING_sh skip lkdtm_ATOMIC_TIMING_sh skip lkdtm_USERCOPY_HEAP_SIZE_TO_sh fail lkdtm_USERCOPY_HEAP_SIZE_FROM_sh fail lkdtm_USERCOPY_HEAP_WHITELIST_TO_sh fail lkdtm_USERCOPY_HEAP_WHITELIST_FROM_sh fail lkdtm_USERCOPY_STACK_FRAME_TO_sh fail lkdtm_USERCOPY_STACK_FRAME_FROM_sh fail lkdtm_USERCOPY_STACK_BEYOND_sh pass lkdtm_USERCOPY_KERNEL_sh fail lkdtm_STACKLEAK_ERASING_sh fail lkdtm_CFI_FORWARD_PROTO_sh fail + ../../utils/send-to-lava.sh ./output/result.txt + set +x / #