Trying 192.168.1.209... Connected to ts9. Escape character is '^]'. ser2net port telnet,2001 device serialdev,/dev/ttyUSB-lf-hihope-rzg2m-02,115200n81,local [] (Debian GNU/Linux) NOTICE: BL2: RZ/G Initial Program Loader(CA57) Rev.2.0.7 NOTICE: BL2: PRR is RZG G2M Ver.1.3 NOTICE: BL2: Board is HiHope RZ/G2M Rev.4.0 NOTICE: BL2: Boot device is QSPI Flash(40MHz) NOTICE: BL2: LCM state is unknown NOTICE: BL2: DDR3200(rev.0.41) NOTICE: BL2: [COLD_BOOT] NOTICE: BL2: DRAM Split is 2ch NOTICE: BL2: QoS is default setting(rev.0.19) NOTICE: BL2: DRAM refresh interval 1.95 usec NOTICE: BL2: Periodic Write DQ Training NOTICE: BL2: DRAM don't have ECC configuration NOTICE: BL2: CH0: 400000000 - 47fffffff, 2 GiB NOTICE: BL2: CH2: 600000000 - 67fffffff, 2 GiB NOTICE: BL2: Lossy Decomp areas NOTICE: Entry 0: DCMPAREACRAx:0x80000540 DCMPAREACRBx:0x570 NOTICE: Entry 1: DCMPAREACRAx:0x40000000 DCMPAREACRBx:0x0 NOTICE: Entry 2: DCMPAREACRAx:0x20000000 DCMPAREACRBx:0x0 NOTICE: BL2: FDT at 0xe631d548 NOTICE: BL2: v2.4(release):44427a7 NOTICE: BL2: Built : 12:32:56, Jun 2 2021 NOTICE: BL2: Normal boot NOTICE: BL2: dst=0xe631d100 src=0x8180000 len=512(0x200) NOTICE: BL2: dst=0x43f00000 src=0x8180400 len=6144(0x1800) NOTICE: rzg_file_len: len: 0x0003e000 NOTICE: BL2: dst=0x44000000 src=0x81c0000 len=253952(0x3e000) NOTICE: rzg_file_len: len: 0x00100000 NOTICE: BL2: dst=0x50000000 src=0x8300000 len=1048576(0x100000) NOTICE: BL2: Booting BL31 U-Boot 2020.10 (Jun 02 2021 - 13:33:36 +0000) CPU: Renesas Electronics R8A774A1 rev 1.3 Model: Hoperun Technology HiHope RZ/G2M platform (hihope-rzg2m) DRAM: 3.9 GiB Bank #0: 0x048000000 - 0x0bfffffff, 1.9 GiB Bank #1: 0x600000000 - 0x67fffffff, 2 GiB WDT: Not found! MMC: sd@ee100000: 0, sd@ee160000: 1 Loading Environment from MMC... OK In: serial@e6e88000 Out: serial@e6e88000 Err: serial@e6e88000 Re-init wdt failed! Net: eth0: ethernet@e6800000 Hit any key to stop autoboot: 2  0 => setenv autoload no setenv autoload no => setenv initrd_high 0xffffffff setenv initrd_high 0xffffffff => setenv fdt_high 0xffffffff setenv fdt_high 0xffffffff => dhcp dhcp ethernet@e6800000 Waiting for PHY auto negotiation to complete........ done BOOTP broadcast 1 BOOTP broadcast 2 BOOTP broadcast 3 DHCP client bound to address 172.16.3.183 (826 ms) => setenv serverip 172.16.3.3 setenv serverip 172.16.3.3 => tftp 0x48080000 856196/tftp-deploy-fmn6ebr0/kernel/Image tftp 0x48080000 856196/tftp-deploy-fmn6ebr0/kernel/Image Using ethernet@e6800000 device TFTP from server 172.16.3.3; our IP address is 172.16.3.183 Filename '856196/tftp-deploy-fmn6ebr0/kernel/Image'. Load address: 0x48080000 Loading: *################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################# 8 MiB/s done Bytes transferred = 43645440 (299fa00 hex) => tftp 0x4ee2c2c0 856196/tftp-deploy-fmn6ebr0/ramdisk/ramdisk.cpio.gz.uboot tftp 0x4ee2c2c0 856196/tftp-deploy-fmn6ebr0/ramdisk/ramdisk.cpio.gz.uboot Using ethernet@e6800000 device TFTP from server 172.16.3.3; our IP address is 172.16.3.183 Filename '856196/tftp-deploy-fmn6ebr0/ramdisk/ramdisk.cpio.gz.uboot'. Load address: 0x4ee2c2c0 Loading: *################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ################################################################# ############################################################ 9.4 MiB/s done Bytes transferred = 18048637 (113667d hex) => setenv initrd_size ${filesize} setenv initrd_size ${filesize} => tftp 0x48000000 856196/tftp-deploy-fmn6ebr0/dtb/r8a774a1-hihope-rzg2m-ex.dtb tftp 0x48000000 856196/tftp-deploy-fmn6ebr0/dtb/r8a774a1-hihope-rzg2m-ex.dtb Using ethernet@e6800000 device TFTP from server 172.16.3.3; our IP address is 172.16.3.183 Filename '856196/tftp-deploy-fmn6ebr0/dtb/r8a774a1-hihope-rzg2m-ex.dtb'. Load address: 0x48000000 Loading: *#### 5.5 MiB/s done Bytes transferred = 57234 (df92 hex) => setenv bootargs 'console=ttySC0,115200n8 root=/dev/nfs rw nfsroot=172.16.3.3:/var/lib/lava/dispatcher/tmp/856196/extract-nfsrootfs-2nw0_vrp,tcp,hard,v3 console_msg_format=syslog earlycon ip=dhcp' setenv bootargs 'console=ttySC0,115200n8 root=/dev/nfs rw nfsroot=172.16.3.3:/var/lib/lava/dispatcher/tmp/856196/extract-nfsrootfs-2nw0_vrp,tcp,hard,v3 console_msg_format=syslog earlycon ip=dhcp' => booti 0x48080000 0x4ee2c2c0 0x48000000 booti 0x48080000 0x4ee2c2c0 0x48000000 Moving Image from 0x48080000 to 0x48200000, end=4b6b0000 ## Loading init Ramdisk from Legacy Image at 4ee2c2c0 ... Image Name: Image Type: AArch64 Linux RAMDisk Image (uncompressed) Data Size: 18048573 Bytes = 17.2 MiB Load Address: 00000000 Entry Point: 00000000 Verifying Checksum ... OK ## Flattened Device Tree blob at 48000000 Booting using the fdt blob at 0x48000000 Loading Ramdisk to b8de0000, end b9f1663d ... OK Loading Device Tree to 00000000b8dcf000, end 00000000b8ddff91 ... OK Starting kernel ... [ 0.000000] Booting Linux on physical CPU 0x0000000000 [0x411fd073] [ 0.000000] Linux version 5.10.167-cip26 (KernelCI@build-j1079716-arm64-gcc-10-defconfig-kselftest-gzbsm) (aarch64-linux-gnu-gcc (Debian 10.2.1-6) 10.2.1 20210110, GNU ld (GNU Binutils for Debian) 2.35.2) #1 SMP PREEMPT Wed Feb 22 04:14:08 UTC 2023 [ 0.000000] Machine model: HopeRun HiHope RZ/G2M with sub board [ 0.000000] efi: UEFI not found. [ 0.000000] earlycon: scif0 at MMIO 0x00000000e6e88000 (options '115200n8') [ 0.000000] printk: bootconsole [scif0] enabled [ 0.000000] NUMA: No NUMA configuration found [ 0.000000] NUMA: Faking a node at [mem 0x0000000048000000-0x000000067fffffff] [ 0.000000] NUMA: NODE_DATA [mem 0x67f7e97c0-0x67f7ebfff] [ 0.000000] Zone ranges: [ 0.000000] DMA [mem 0x0000000048000000-0x00000000ffffffff] [ 0.000000] DMA32 empty [ 0.000000] Normal [mem 0x0000000100000000-0x000000067fffffff] [ 0.000000] Movable zone start for each node [ 0.000000] Early memory node ranges [ 0.000000] node 0: [mem 0x0000000048000000-0x00000000bfffffff] [ 0.000000] node 0: [mem 0x0000000600000000-0x000000067fffffff] [ 0.000000] Initmem setup node 0 [mem 0x0000000048000000-0x000000067fffffff] [ 0.000000] cma: Reserved 32 MiB at 0x00000000be000000 [ 0.000000] psci: probing for conduit method from DT. [ 0.000000] psci: PSCIv1.1 detected in firmware. [ 0.000000] psci: Using standard PSCI v0.2 function IDs [ 0.000000] psci: MIGRATE_INFO_TYPE not supported. [ 0.000000] psci: SMC Calling Convention v1.2 [ 0.000000] percpu: Embedded 34 pages/cpu s100944 r8192 d30128 u139264 [ 0.000000] Detected PIPT I-cache on CPU0 [ 0.000000] CPU features: detected: EL2 vector hardening [ 0.000000] CPU features: detected: Spectre-v2 [ 0.000000] CPU features: detected: ARM errata 1165522, 1319367, or 1530923 [ 0.000000] CPU features: detected: Spectre-BHB [ 0.000000] CPU features: detected: ARM erratum 1742098 [ 0.000000] Built 1 zonelists, mobility grouping on. Total pages: 999936 [ 0.000000] Policy zone: Normal [ 0.000000] Kernel command line: console=ttySC0,115200n8 root=/dev/nfs rw nfsroot=172.16.3.3:/var/lib/lava/dispatcher/tmp/856196/extract-nfsrootfs-2nw0_vrp,tcp,hard,v3 console_msg_format=syslog earlycon ip=dhcp wdt_overflow=0 <6>[ 0.000000] Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) <6>[ 0.000000] Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) <6>[ 0.000000] mem auto-init: stack:off, heap alloc:off, heap free:off <6>[ 0.000000] software IO TLB: mapped [mem 0x00000000ba000000-0x00000000be000000] (64MB) <6>[ 0.000000] Memory: 3812116K/4063232K available (18816K kernel code, 4542K rwdata, 9448K rodata, 9728K init, 11274K bss, 218348K reserved, 32768K cma-reserved) <6>[ 0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=6, Nodes=1 <6>[ 0.000000] ftrace: allocating 58462 entries in 229 pages <6>[ 0.000000] ftrace: allocated 229 pages with 5 groups <6>[ 0.000000] Running RCU self tests <6>[ 0.000000] rcu: Preemptible hierarchical RCU implementation. <6>[ 0.000000] rcu: RCU event tracing is enabled. <6>[ 0.000000] rcu: RCU lockdep checking is enabled. <6>[ 0.000000] rcu: RCU restricting CPUs from NR_CPUS=256 to nr_cpu_ids=6. <6>[ 0.000000] Trampoline variant of Tasks RCU enabled. <6>[ 0.000000] Rude variant of Tasks RCU enabled. <6>[ 0.000000] Tracing variant of Tasks RCU enabled. <6>[ 0.000000] rcu: RCU calculated value of scheduler-enlistment delay is 25 jiffies. <6>[ 0.000000] rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=6 <6>[ 0.000000] NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 <6>[ 0.000000] arch_timer: cp15 timer(s) running at 8.33MHz (virt). <6>[ 0.000000] clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x1ec02923e, max_idle_ns: 440795202125 ns <6>[ 0.000004] sched_clock: 56 bits at 8MHz, resolution 120ns, wraps every 2199023255496ns <6>[ 0.008558] Console: colour dummy device 80x25 <4>[ 0.013287] Lock dependency validator: Copyright (c) 2006 Red Hat, Inc., Ingo Molnar <4>[ 0.021267] ... MAX_LOCKDEP_SUBCLASSES: 8 <4>[ 0.025616] ... MAX_LOCK_DEPTH: 48 <4>[ 0.030050] ... MAX_LOCKDEP_KEYS: 8192 <4>[ 0.034657] ... CLASSHASH_SIZE: 4096 <4>[ 0.039263] ... MAX_LOCKDEP_ENTRIES: 32768 <4>[ 0.043956] ... MAX_LOCKDEP_CHAINS: 65536 <4>[ 0.048648] ... CHAINHASH_SIZE: 32768 <4>[ 0.053341] memory used by lock dependency info: 6365 kB <4>[ 0.058983] memory used for stack traces: 4224 kB <4>[ 0.064022] per task-struct memory footprint: 1920 bytes <6>[ 0.069794] Calibrating delay loop (skipped), value calculated using timer frequency.. 16.66 BogoMIPS (lpj=33333) <6>[ 0.080297] pid_max: default: 32768 minimum: 301 <6>[ 0.085333] LSM: Security Framework initializing <6>[ 0.090252] LSM support for eBPF active <6>[ 0.094433] Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) <6>[ 0.102098] Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) <6>[ 0.115658] rcu: Hierarchical SRCU implementation. <6>[ 0.125176] Detected Renesas RZ/G2 r8a774a1 ES1.3 <6>[ 0.131768] EFI services will not be available. <6>[ 0.137597] smp: Bringing up secondary CPUs ... <6>[ 0.144200] Detected PIPT I-cache on CPU1 <6>[ 0.144279] CPU1: Booted secondary processor 0x0000000001 [0x411fd073] <6>[ 0.146333] CPU features: detected: ARM erratum 845719 <6>[ 0.146354] Detected VIPT I-cache on CPU2 <6>[ 0.146430] CPU2: Booted secondary processor 0x0000000100 [0x410fd034] <6>[ 0.148504] Detected VIPT I-cache on CPU3 <6>[ 0.148548] CPU3: Booted secondary processor 0x0000000101 [0x410fd034] <6>[ 0.150530] Detected VIPT I-cache on CPU4 <6>[ 0.150574] CPU4: Booted secondary processor 0x0000000102 [0x410fd034] <6>[ 0.152559] Detected VIPT I-cache on CPU5 <6>[ 0.152603] CPU5: Booted secondary processor 0x0000000103 [0x410fd034] <6>[ 0.153192] smp: Brought up 1 node, 6 CPUs <6>[ 0.218214] SMP: Total of 6 processors activated. <6>[ 0.223209] CPU features: detected: 32-bit EL0 Support <6>[ 0.228657] CPU features: detected: CRC32 instructions <6>[ 0.234065] CPU features: detected: 32-bit EL1 Support <6>[ 0.270587] CPU: All CPU(s) started at EL1 <6>[ 0.275065] alternatives: patching kernel code <6>[ 0.283033] devtmpfs: initialized <4>[ 0.323091] KASLR disabled due to lack of seed <6>[ 0.329278] clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 7645041785100000 ns <6>[ 0.339293] futex hash table entries: 2048 (order: 6, 262144 bytes, linear) <6>[ 0.347938] pinctrl core: initialized pinctrl subsystem <6>[ 0.357527] DMI not present or invalid. <6>[ 0.362818] NET: Registered protocol family 16 <6>[ 0.371360] DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations <6>[ 0.378823] DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations <6>[ 0.387248] DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations <6>[ 0.395583] audit: initializing netlink subsys (disabled) <5>[ 0.401749] audit: type=2000 audit(0.328:1): state=initialized audit_enabled=0 res=1 <6>[ 0.404524] thermal_sys: Registered thermal governor 'step_wise' <6>[ 0.409774] thermal_sys: Registered thermal governor 'power_allocator' <6>[ 0.417474] cpuidle: using governor menu <6>[ 0.428842] hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. <6>[ 0.436251] ASID allocator initialised with 65536 entries <6>[ 0.445210] Serial: AMBA PL011 UART driver <6>[ 0.603641] sh-pfc e6060000.pinctrl: r8a774a1_pfc support registered <6>[ 0.671420] HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages <6>[ 0.678439] HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages <6>[ 0.685393] HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages <6>[ 0.692346] HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages <6>[ 0.703896] cryptd: max_cpu_qlen set to 1000 <6>[ 0.717518] ACPI: Interpreter disabled. <6>[ 0.734832] iommu: Default domain type: Translated <6>[ 0.741021] vgaarb: loaded <5>[ 0.745049] SCSI subsystem initialized <6>[ 0.750204] usbcore: registered new interface driver usbfs <6>[ 0.756131] usbcore: registered new interface driver hub <6>[ 0.761992] usbcore: registered new device driver usb <6>[ 0.769763] pps_core: LinuxPPS API ver. 1 registered <6>[ 0.774994] pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti <6>[ 0.784394] PTP clock support registered <6>[ 0.789055] EDAC MC: Ver: 3.0.0 <6>[ 0.798191] FPGA manager framework <6>[ 0.802175] Advanced Linux Sound Architecture Driver Initialized. <6>[ 0.810810] clocksource: Switched to clocksource arch_sys_counter <5>[ 1.580386] VFS: Disk quotas dquot_6.6.0 <6>[ 1.584725] VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) <6>[ 1.592669] pnp: PnP ACPI: disabled <6>[ 1.616707] NET: Registered protocol family 2 <6>[ 1.621726] IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) <6>[ 1.631737] tcp_listen_portaddr_hash hash table entries: 2048 (order: 5, 163840 bytes, linear) <6>[ 1.641102] TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) <6>[ 1.650002] TCP bind hash table entries: 32768 (order: 9, 2359296 bytes, linear) <6>[ 1.661770] TCP: Hash tables configured (established 32768 bind 32768) <6>[ 1.669334] MPTCP token hash table entries: 4096 (order: 6, 360448 bytes, linear) <6>[ 1.677756] UDP hash table entries: 2048 (order: 6, 327680 bytes, linear) <6>[ 1.685429] UDP-Lite hash table entries: 2048 (order: 6, 327680 bytes, linear) <6>[ 1.693818] NET: Registered protocol family 1 <6>[ 1.700126] RPC: Registered named UNIX socket transport module. <6>[ 1.706357] RPC: Registered udp transport module. <6>[ 1.711333] RPC: Registered tcp transport module. <6>[ 1.716302] RPC: Registered tcp NFSv4.1 backchannel transport module. <6>[ 1.723014] NET: Registered protocol family 44 <6>[ 1.727750] PCI: CLS 0 bytes, default 64 <6>[ 1.732535] Unpacking initramfs... <6>[ 2.718669] Freeing initrd memory: 17624K <6>[ 2.725746] hw perfevents: enabled with armv8_cortex_a53 PMU driver, 7 counters available <6>[ 2.735478] hw perfevents: enabled with armv8_cortex_a57 PMU driver, 7 counters available <6>[ 2.744630] kvm [1]: HYP mode not available <5>[ 2.763463] Initialise system trusted keyrings <6>[ 2.768771] workingset: timestamp_bits=42 max_order=20 bucket_order=0 <6>[ 2.806119] squashfs: version 4.0 (2009/01/31) Phillip Lougher <5>[ 2.814221] NFS: Registering the id_resolver key type <5>[ 2.819667] Key type id_resolver registered <5>[ 2.824149] Key type id_legacy registered <6>[ 2.828761] nfs4filelayout_init: NFSv4 File Layout Driver Registering... <6>[ 2.835742] nfs4flexfilelayout_init: NFSv4 Flexfile Layout Driver Registering... <6>[ 2.843977] 9p: Installing v9fs 9p2000 file system support <5>[ 2.876672] Key type asymmetric registered <5>[ 2.881091] Asymmetric key parser 'x509' registered <6>[ 2.886322] Block layer SCSI generic (bsg) driver version 0.4 loaded (major 245) <6>[ 2.893993] io scheduler mq-deadline registered <6>[ 2.898805] io scheduler kyber registered <4>[ 2.903582] test_firmware: interface ready <6>[ 2.952140] gpio_rcar e6050000.gpio: driving 16 GPIOs <6>[ 2.959068] gpio_rcar e6051000.gpio: driving 29 GPIOs <6>[ 2.965680] gpio_rcar e6052000.gpio: driving 15 GPIOs <6>[ 2.972535] gpio_rcar e6053000.gpio: driving 16 GPIOs <6>[ 2.979143] gpio_rcar e6054000.gpio: driving 18 GPIOs <6>[ 2.985900] gpio_rcar e6055000.gpio: driving 26 GPIOs <6>[ 2.992059] gpio-370 (usb1-reset): hogged as output/low <6>[ 2.998354] gpio_rcar e6055400.gpio: driving 32 GPIOs <6>[ 3.005167] gpio_rcar e6055800.gpio: driving 4 GPIOs <6>[ 3.016673] rcar-pcie fe000000.pcie: host bridge /soc/pcie@fe000000 ranges: <6>[ 3.024008] rcar-pcie fe000000.pcie: IO 0x00fe100000..0x00fe1fffff -> 0x0000000000 <6>[ 3.032474] rcar-pcie fe000000.pcie: MEM 0x00fe200000..0x00fe3fffff -> 0x00fe200000 <6>[ 3.040890] rcar-pcie fe000000.pcie: MEM 0x0030000000..0x0037ffffff -> 0x0030000000 <6>[ 3.049282] rcar-pcie fe000000.pcie: MEM 0x0038000000..0x003fffffff -> 0x0038000000 <6>[ 3.057700] rcar-pcie fe000000.pcie: IB MEM 0x0040000000..0x00bfffffff -> 0x0040000000 <6>[ 3.130720] rcar-pcie fe000000.pcie: PCIe link down <6>[ 3.136814] rcar-pcie ee800000.pcie: host bridge /soc/pcie@ee800000 ranges: <6>[ 3.144154] rcar-pcie ee800000.pcie: IO 0x00ee900000..0x00ee9fffff -> 0x0000000000 <6>[ 3.152575] rcar-pcie ee800000.pcie: MEM 0x00eea00000..0x00eebfffff -> 0x00eea00000 <6>[ 3.160995] rcar-pcie ee800000.pcie: MEM 0x00c0000000..0x00c7ffffff -> 0x00c0000000 <6>[ 3.169371] rcar-pcie ee800000.pcie: MEM 0x00c8000000..0x00cfffffff -> 0x00c8000000 <6>[ 3.177763] rcar-pcie ee800000.pcie: IB MEM 0x0040000000..0x00bfffffff -> 0x0040000000 <6>[ 3.250715] rcar-pcie ee800000.pcie: PCIe link down <4>[ 3.263850] EINJ: ACPI disabled. <6>[ 3.323449] Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled <6>[ 3.338700] SuperH (H)SCI(F) driver initialized <6>[ 3.344694] e6540000.serial: ttySC1 at MMIO 0xe6540000 (irq = 39, base_baud = 0) is a hscif <6>[ 3.354233] serial serial0: tty port ttySC1 registered <6>[ 3.362434] e6e88000.serial: ttySC0 at MMIO 0xe6e88000 (irq = 123, base_baud = 0) is a scif <6>[ 3.371390] printk: console [ttySC0] enabled <6>[ 3.371390] printk: console [ttySC0] enabled <6>[ 3.380495] printk: bootconsole [scif0] disabled <6>[ 3.380495] printk: bootconsole [scif0] disabled <6>[ 3.394596] msm_serial: driver initialized <6>[ 3.439261] loop: module loaded <6>[ 3.444192] lkdtm: No crash points registered, enable through debugfs <6>[ 3.454281] megasas: 07.714.04.00-rc1 <6>[ 3.480640] thunder_xcv, ver 1.0 <6>[ 3.484277] thunder_bgx, ver 1.0 <6>[ 3.487899] nicpf, ver 1.0 <6>[ 3.495224] hclge is initializing <6>[ 3.498947] hns3: Hisilicon Ethernet Network Driver for Hip08 Family - version <6>[ 3.506465] hns3: Copyright (c) 2017 Huawei Corporation. <6>[ 3.512177] e1000: Intel(R) PRO/1000 Network Driver <6>[ 3.517347] e1000: Copyright (c) 1999-2006 Intel Corporation. <6>[ 3.523500] e1000e: Intel(R) PRO/1000 Network Driver <6>[ 3.528756] e1000e: Copyright(c) 1999 - 2015 Intel Corporation. <6>[ 3.535089] igb: Intel(R) Gigabit Ethernet Network Driver <6>[ 3.540779] igb: Copyright (c) 2007-2014 Intel Corporation. <6>[ 3.546711] igbvf: Intel(R) Gigabit Virtual Function Network Driver <6>[ 3.553267] igbvf: Copyright (c) 2009 - 2012 Intel Corporation. <6>[ 3.560767] sky2: driver version 1.30 <6>[ 3.569622] VFIO - User Level meta-driver version: 0.3 <6>[ 3.581090] ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver <6>[ 3.587975] ehci-pci: EHCI PCI platform driver <6>[ 3.592786] ehci-platform: EHCI generic platform driver <6>[ 3.600157] ehci-platform ee0a0100.usb: EHCI Host Controller <6>[ 3.606245] ehci-platform ee0a0100.usb: new USB bus registered, assigned bus number 1 <6>[ 3.614696] ehci-platform ee0a0100.usb: irq 161, io mem 0xee0a0100 <6>[ 3.634856] ehci-platform ee0a0100.usb: USB 2.0 started, EHCI 1.10 <6>[ 3.644010] hub 1-0:1.0: USB hub found <6>[ 3.648205] hub 1-0:1.0: 1 port detected <6>[ 3.654932] ehci-orion: EHCI orion driver <6>[ 3.659872] ehci-exynos: EHCI Exynos driver <6>[ 3.664759] ohci_hcd: USB 1.1 'Open' Host Controller (OHCI) Driver <6>[ 3.671274] ohci-pci: OHCI PCI platform driver <6>[ 3.676175] ohci-platform: OHCI generic platform driver <6>[ 3.683177] ohci-platform ee0a0000.usb: Generic Platform OHCI controller <6>[ 3.690227] ohci-platform ee0a0000.usb: new USB bus registered, assigned bus number 2 <6>[ 3.698570] ohci-platform ee0a0000.usb: irq 161, io mem 0xee0a0000 <6>[ 3.794692] hub 2-0:1.0: USB hub found <6>[ 3.798851] hub 2-0:1.0: 1 port detected <6>[ 3.805158] ohci-exynos: OHCI Exynos driver <6>[ 3.811364] xhci-hcd ee000000.usb: xHCI Host Controller <6>[ 3.816939] xhci-hcd ee000000.usb: new USB bus registered, assigned bus number 3 <4>[ 3.825017] xhci-hcd ee000000.usb: Direct firmware load for r8a779x_usb3_v3.dlmem failed with error -2 <4>[ 3.834714] xhci-hcd ee000000.usb: Falling back to sysfs fallback for: r8a779x_usb3_v3.dlmem <6>[ 3.907075] usb 1-1: new high-speed USB device number 2 using ehci-platform <6>[ 4.074005] hub 1-1:1.0: USB hub found <6>[ 4.078291] hub 1-1:1.0: 2 ports detected <3>[ 64.563299] xhci-hcd ee000000.usb: can't setup: -110 <6>[ 64.568610] xhci-hcd ee000000.usb: USB bus 3 deregistered <4>[ 64.574590] xhci-hcd: probe of ee000000.usb failed with error -110 <6>[ 64.582118] usbcore: registered new interface driver usb-storage <6>[ 64.597740] i2c /dev entries driver <6>[ 64.624668] cs2000-cp 2-004f: revision - C1 <6>[ 64.629419] i2c-rcar e6510000.i2c: probed <6>[ 64.643497] i2c-rcar e66d8000.i2c: probed <6>[ 64.661505] rcar_gen3_thermal e6198000.thermal: TSC0: Loaded 1 trip points <6>[ 64.673171] rcar_gen3_thermal e6198000.thermal: TSC1: Loaded 1 trip points <6>[ 64.684749] rcar_gen3_thermal e6198000.thermal: TSC2: Loaded 2 trip points <6>[ 64.704989] cpu cpu0: EM: created perf domain <6>[ 64.709947] cpufreq: cpufreq_online: CPU0: Running at unlisted initial frequency: 1499999 KHz, changing to: 1500000 KHz <6>[ 64.725759] cpu cpu2: EM: created perf domain <6>[ 64.732555] cpufreq: cpufreq_online: CPU2: Running at unlisted initial frequency: 1199999 KHz, changing to: 1200000 KHz <6>[ 64.750672] sdhci: Secure Digital Host Controller Interface driver <6>[ 64.757170] sdhci: Copyright(c) Pierre Ossman <6>[ 64.763914] Synopsys Designware Multimedia Card Interface Driver <6>[ 64.766945] renesas_sdhi_internal_dmac ee100000.mmc: Got CD GPIO <6>[ 64.773807] sdhci-pltfm: SDHCI platform and OF driver helper <6>[ 64.789926] ledtrig-cpu: registered to indicate activity on CPUs <6>[ 64.799198] SMCCC: SOC_ID: ARCH_SOC_ID not implemented, skipping .... <6>[ 64.808601] usbcore: registered new interface driver usbhid <6>[ 64.814471] usbhid: USB HID core driver <6>[ 64.819568] renesas_sdhi_internal_dmac ee160000.mmc: mmc0 base at 0x00000000ee160000, max clock rate 200 MHz <6>[ 64.837686] netem: version 1.3 <6>[ 64.841187] ipip: IPv4 and MPLS over IPv4 tunneling driver <6>[ 64.848540] IPv4 over IPsec tunneling driver <6>[ 64.856065] NET: Registered protocol family 10 <6>[ 64.864016] Segment Routing with IPv6 <6>[ 64.870431] NET: Registered protocol family 17 <6>[ 64.876223] 9pnet: Installing 9P2000 support <5>[ 64.880979] Key type dns_resolver registered <6>[ 64.886448] registered taskstats version 1 <5>[ 64.890889] Loading compiled-in X.509 certificates <6>[ 64.933312] mmc0: new HS200 MMC card at address 0001 <6>[ 64.940922] mmcblk0: mmc0:0001 S0J57X 29.6 GiB <6>[ 64.946237] mmcblk0boot0: mmc0:0001 S0J57X partition 1 31.5 MiB <6>[ 64.952871] mmcblk0boot1: mmc0:0001 S0J57X partition 2 31.5 MiB <6>[ 64.959819] mmcblk0rpmb: mmc0:0001 S0J57X partition 3 4.00 MiB, chardev (234:0) <6>[ 64.964176] renesas_irqc e61c0000.interrupt-controller: driving 6 irqs <6>[ 65.035006] ehci-platform ee080100.usb: EHCI Host Controller <6>[ 65.041131] ehci-platform ee080100.usb: new USB bus registered, assigned bus number 3 <6>[ 65.049502] ehci-platform ee080100.usb: irq 160, io mem 0xee080100 <6>[ 65.070861] ehci-platform ee080100.usb: USB 2.0 started, EHCI 1.10 <6>[ 65.080221] hub 3-0:1.0: USB hub found <6>[ 65.084442] hub 3-0:1.0: 1 port detected <6>[ 65.093705] ohci-platform ee080000.usb: Generic Platform OHCI controller <6>[ 65.100794] ohci-platform ee080000.usb: new USB bus registered, assigned bus number 4 <6>[ 65.109155] ohci-platform ee080000.usb: irq 160, io mem 0xee080000 <6>[ 65.207193] hub 4-0:1.0: USB hub found <6>[ 65.211335] hub 4-0:1.0: 1 port detected <6>[ 65.237349] renesas_sdhi_internal_dmac ee100000.mmc: Got CD GPIO <4>[ 65.247144] rcar-dmac e6700000.dma-controller: deferred probe timeout, ignoring dependency <4>[ 65.270235] rcar-dmac e7300000.dma-controller: deferred probe timeout, ignoring dependency <4>[ 65.292526] rcar-dmac e7310000.dma-controller: deferred probe timeout, ignoring dependency <6>[ 65.299913] renesas_sdhi_internal_dmac ee100000.mmc: mmc1 base at 0x00000000ee100000, max clock rate 200 MHz <4>[ 65.318904] rcar-dmac ec700000.dma-controller: deferred probe timeout, ignoring dependency <4>[ 65.341722] rcar-dmac ec720000.dma-controller: deferred probe timeout, ignoring dependency <6>[ 65.361719] renesas_sdhi_internal_dmac ee140000.mmc: mmc2 base at 0x00000000ee140000, max clock rate 200 MHz <4>[ 65.366569] ravb e6800000.ethernet: deferred probe timeout, ignoring dependency <4>[ 65.383425] renesas_sdhi_internal_dmac ee140000.mmc: card claims to support voltages below defined range <6>[ 65.418006] mmc2: new high speed SDIO card at address 0001 <6>[ 65.426082] ravb e6800000.ethernet eth0: Base address at 0xe6800000, fc:28:99:92:7b:e1, IRQ 118. <6>[ 65.457133] RTL8211E Gigabit Ethernet e6800000.ethernet-ffffffff:00: attached PHY driver [RTL8211E Gigabit Ethernet] (mii_bus:phy_addr=e6800000.ethernet-ffffffff:00, irq=166) <6>[ 69.143367] ravb e6800000.ethernet eth0: Link is Up - 1Gbps/Full - flow control off <6>[ 69.151858] IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready <5>[ 69.170921] Sending DHCP requests .., OK <6>[ 71.999530] IP-Config: Got DHCP answer from 172.16.3.3, my address is 172.16.3.183 <6>[ 72.007493] IP-Config: Complete: <6>[ 72.011093] device=eth0, hwaddr=fc:28:99:92:7b:e1, ipaddr=172.16.3.183, mask=255.255.255.0, gw=172.16.3.3 <6>[ 72.021457] host=172.16.3.183, domain=denx.de, nis-domain=(none) <6>[ 72.028264] bootserver=172.16.3.33, rootserver=172.16.3.3, rootpath= <6>[ 72.028293] nameserver0=172.16.3.3 <6>[ 72.039672] ntpserver0=172.16.3.3 <6>[ 72.048408] ALSA device list: <6>[ 72.051925] No soundcards found. <6>[ 72.088919] Freeing unused kernel memory: 9728K <6>[ 72.094117] Run /init as init process Loading, please wait... Starting version 247.3-7+deb11u1 <6>[ 73.884558] renesas_usbhs e6590000.usb: host probed <6>[ 73.890314] renesas_usbhs e6590000.usb: no transceiver found <6>[ 73.903661] renesas_usbhs e6590000.usb: gadget probed <6>[ 73.910182] CAN device driver interface <6>[ 73.916674] renesas_usbhs e6590000.usb: probed <6>[ 73.929553] rcar_can e6c30000.can: device registered (IRQ121) <6>[ 73.943389] rcar_can e6c38000.can: device registered (IRQ122) <6>[ 73.949065] Bluetooth: Core ver 2.22 <6>[ 73.953528] NET: Registered protocol family 31 <6>[ 73.958290] Bluetooth: HCI device and connection manager initialized <6>[ 73.965122] Bluetooth: HCI socket layer initialized <6>[ 73.970343] Bluetooth: L2CAP socket layer initialized <6>[ 73.975939] Bluetooth: SCO socket layer initialized <4>[ 73.990099] rcar-fcp fea27000.fcp: deferred probe timeout, ignoring dependency <6>[ 74.003509] mc: Linux media interface: v0.10 <6>[ 74.011341] Bluetooth: HCI UART driver ver 2.3 <4>[ 74.016393] rcar-fcp fea2f000.fcp: deferred probe timeout, ignoring dependency <6>[ 74.016773] renesas_usb3 ee020000.usb: probed with phy <6>[ 74.031063] Bluetooth: HCI UART protocol H4 registered <4>[ 74.032820] rcar-fcp fea37000.fcp: deferred probe timeout, ignoring dependency <6>[ 74.036961] Bluetooth: HCI UART protocol LL registered <6>[ 74.053423] rcar_sound ec500000.sound: probed <4>[ 74.054778] rcar-fcp fe9af000.fcp: deferred probe timeout, ignoring dependency <6>[ 74.059412] Bluetooth: HCI UART protocol Broadcom registered <6>[ 74.077408] Bluetooth: HCI UART protocol QCA registered <6>[ 74.094715] videodev: Linux video capture interface: v2.00 <6>[ 74.105725] rcar-dw-hdmi fead0000.hdmi: Detected HDMI TX controller v2.01a with HDCP (DWC HDMI 2.0 TX PHY) <6>[ 74.123766] rcar-dw-hdmi fead0000.hdmi: registered DesignWare HDMI I2C bus driver <4>[ 74.182193] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 <6>[ 74.182704] rcar_fdp1 fe940000.fdp1: Device registered as /dev/video6 <4>[ 74.193466] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts <6>[ 74.324981] [drm] Initialized rcar-du 1.0.0 20130110 for feb00000.display on minor 0 <6>[ 74.333084] [drm] Device feb00000.display probed <3>[ 74.336856] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts <6>[ 74.339607] rcar-du feb00000.display: [drm] Cannot find any crtc or sizes <3>[ 74.347774] Bluetooth: hci0: download firmware failed, retrying... <4>[ 74.441762] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 <4>[ 74.452228] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts <3>[ 74.466021] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts <3>[ 74.475709] Bluetooth: hci0: download firmware failed, retrying... <5>[ 74.481612] cfg80211: Loading compiled-in X.509 certificates for regulatory database <5>[ 74.538599] cfg80211: Loaded X.509 cert 'sforshee: 00b28ddf47aef9cea7' <4>[ 74.546366] platform regulatory.0: Direct firmware load for regulatory.db failed with error -2 <4>[ 74.555628] platform regulatory.0: Falling back to sysfs fallback for: regulatory.db <6>[ 74.582534] cfg80211: failed to load regulatory.db <4>[ 74.600478] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 <4>[ 74.611003] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts <3>[ 74.626039] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts <3>[ 74.635797] Bluetooth: hci0: download firmware failed, retrying... <4>[ 74.749053] hci-ti serial0-0: Direct firmware load for ti-connectivity/TIInit_11.8.32.bts failed with error -2 <4>[ 74.759530] hci-ti serial0-0: Falling back to sysfs fallback for: ti-connectivity/TIInit_11.8.32.bts <3>[ 74.773833] Bluetooth: hci0: request_firmware failed(errno -2) for ti-connectivity/TIInit_11.8.32.bts <4>[ 74.781642] wl18xx_driver wl18xx.3.auto: Direct firmware load for ti-connectivity/wl1271-nvs.bin failed with error -2 <3>[ 74.783502] Bluetooth: hci0: download firmware failed, retrying... <4>[ 74.801295] wl18xx_driver wl18xx.3.auto: Falling back to sysfs fallback for: ti-connectivity/wl1271-nvs.bin <4>[ 74.820653] wl18xx_driver wl18xx.3.auto: Direct firmware load for ti-connectivity/wl18xx-conf.bin failed with error -2 <4>[ 74.832897] wl18xx_driver wl18xx.3.auto: Falling back to sysfs fallback for: ti-connectivity/wl18xx-conf.bin Begin: Loading essential drivers ... done. <3>[ 74.849486] wlcore: ERROR could not get configuration binary ti-connectivity/wl18xx-conf.bin: -2 Begin: Running /scripts/<4>[ 74.859675] wlcore: WARNING falling back to default config init-premount ... done. Begin: Mounting root file system ... Begin: Running /scripts/nfs-top ... done. Begin: Running /scripts/nfs-premount ... Waiting up to 60 secs for any ethernet to become available Device /sys/class/net/eth0 found done. IP-Config: eth0 hardware address fc:28:99:92:7b:e1 mtu 1500 DHCP IP-Config: eth0 complete (dhcp from 172.16.3.3): address: 172.16.3.183 broadcast: 172.16.3.255 netmask: 255.255.255.0 gateway: 172.16.3.3 dns0 : 172.16.3.3 dns1 : 0.0.0.0 domain : denx.de rootserver: 172.16.3.33 rootpath: filename : this-host-is-not-configured.kpxe done. Begin: Running /scripts/nfs-bottom ... done. Begin: Running /scripts/init-bottom ... <6>[ 75.408991] wlcore: wl18xx HW: 183x or 180x, PG 2.2 (ROM 0x11) done. <6>[ 75.451837] wlcore: loaded <30>[ 76.672955] systemd[1]: System time before build time, advancing clock. <30>[ 76.930441] systemd[1]: systemd 247.3-7+deb11u1 running in system mode. (+PAM +AUDIT +SELINUX +IMA +APPARMOR +SMACK +SYSVINIT +UTMP +LIBCRYPTSETUP +GCRYPT +GNUTLS +ACL +XZ +LZ4 +ZSTD +SECCOMP +BLKID +ELFUTILS +KMOD +IDN2 -IDN +PCRE2 default-hierarchy=unified) <30>[ 76.958064] systemd[1]: Detected architecture arm64. Welcome to [1mDebian GNU/Linux 11 (bullseye)[0m! <30>[ 77.000884] systemd[1]: Set hostname to . <30>[ 78.351741] systemd[1]: Queued start job for default target Graphical Interface. <5>[ 78.363233] random: systemd: uninitialized urandom read (16 bytes read) <30>[ 78.383359] systemd[1]: Created slice system-getty.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-getty.slice[0m. <5>[ 78.407172] random: systemd: uninitialized urandom read (16 bytes read) <30>[ 78.418043] systemd[1]: Created slice system-modprobe.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-modprobe.slice[0m. <5>[ 78.439209] random: systemd: uninitialized urandom read (16 bytes read) <30>[ 78.452122] systemd[1]: Created slice system-serial\x2dgetty.slice. [[0;32m OK [0m] Created slice [0;1;39msystem-serial\x2dgetty.slice[0m. <30>[ 78.478474] systemd[1]: Created slice User and Session Slice. [[0;32m OK [0m] Created slice [0;1;39mUser and Session Slice[0m. <30>[ 78.501064] systemd[1]: Started Dispatch Password Requests to Console Directory Watch. [[0;32m OK [0m] Started [0;1;39mDispatch Password …ts to Console Directory Watch[0m. <30>[ 78.528584] systemd[1]: Started Forward Password Requests to Wall Directory Watch. [[0;32m OK [0m] Started [0;1;39mForward Password R…uests to Wall Directory Watch[0m. <30>[ 78.555515] systemd[1]: Condition check resulted in Arbitrary Executable File Formats File System Automount Point being skipped. <30>[ 78.567930] systemd[1]: Reached target Local Encrypted Volumes. [[0;32m OK [0m] Reached target [0;1;39mLocal Encrypted Volumes[0m. <30>[ 78.591360] systemd[1]: Reached target Paths. [[0;32m OK [0m] Reached target [0;1;39mPaths[0m. <30>[ 78.611598] systemd[1]: Reached target Remote File Systems. [[0;32m OK [0m] Reached target [0;1;39mRemote File Systems[0m. <30>[ 78.635429] systemd[1]: Reached target Slices. [[0;32m OK [0m] Reached target [0;1;39mSlices[0m. <30>[ 78.655593] systemd[1]: Reached target Swap. [[0;32m OK [0m] Reached target [0;1;39mSwap[0m. <30>[ 78.678259] systemd[1]: Listening on initctl Compatibility Named Pipe. [[0;32m OK [0m] Listening on [0;1;39minitctl Compatibility Named Pipe[0m. <30>[ 78.709961] systemd[1]: Listening on Journal Audit Socket. [[0;32m OK [0m] Listening on [0;1;39mJournal Audit Socket[0m. <30>[ 78.737819] systemd[1]: Listening on Journal Socket (/dev/log). [[0;32m OK [0m] Listening on [0;1;39mJournal Socket (/dev/log)[0m. <30>[ 78.768294] systemd[1]: Listening on Journal Socket. [[0;32m OK [0m] Listening on [0;1;39mJournal Socket[0m. <30>[ 78.796508] systemd[1]: Listening on Network Service Netlink Socket. [[0;32m OK [0m] Listening on [0;1;39mNetwork Service Netlink Socket[0m. <30>[ 78.828010] systemd[1]: Listening on udev Control Socket. [[0;32m OK [0m] Listening on [0;1;39mudev Control Socket[0m. <30>[ 78.855129] systemd[1]: Listening on udev Kernel Socket. [[0;32m OK [0m] Listening on [0;1;39mudev Kernel Socket[0m. <30>[ 78.909679] systemd[1]: Mounting Huge Pages File System... Mounting [0;1;39mHuge Pages File System[0m... <30>[ 78.961224] systemd[1]: Mounting POSIX Message Queue File System... Mounting [0;1;39mPOSIX Message Queue File System[0m... <30>[ 79.017015] systemd[1]: Mounting Kernel Debug File System... Mounting [0;1;39mKernel Debug File System[0m... <30>[ 79.067452] systemd[1]: Mounting Kernel Trace File System... Mounting [0;1;39mKernel Trace File System[0m... <30>[ 79.123148] systemd[1]: Starting Create list of static device nodes for the current kernel... Starting [0;1;39mCreate list of st…odes for the current kernel[0m... <30>[ 79.171011] systemd[1]: Starting Load Kernel Module configfs... Starting [0;1;39mLoad Kernel Module configfs[0m... <30>[ 79.211505] systemd[1]: Starting Load Kernel Module drm... Starting [0;1;39mLoad Kernel Module drm[0m... <30>[ 79.251853] systemd[1]: Starting Load Kernel Module fuse... Starting [0;1;39mLoad Kernel Module fuse[0m... <30>[ 79.283090] systemd[1]: Condition check resulted in Set Up Additional Binary Formats being skipped. <30>[ 79.316629] systemd[1]: Starting Journal Service... Starting [0;1;39mJournal Service[0m... <6>[ 79.346539] fuse: init (API version 7.32) <30>[ 79.356341] systemd[1]: Starting Load Kernel Modules... Starting [0;1;39mLoad Kernel Modules[0m... <5>[ 79.375429] random: systemd: uninitialized urandom read (16 bytes read) <30>[ 79.399708] systemd[1]: Starting Remount Root and Kernel File Systems... Starting [0;1;39mRemount Root and Kernel File Systems[0m... <5>[ 79.423731] random: systemd: uninitialized urandom read (16 bytes read) <30>[ 79.447887] systemd[1]: Starting Coldplug All udev Devices... Starting [0;1;39mColdplug All udev Devices[0m... <5>[ 79.491890] random: systemd-journal: uninitialized urandom read (16 bytes read) <30>[ 79.492078] systemd[1]: Mounted Huge Pages File System. [[0;32m OK [0m] Mounted [0;1;39mHuge Pages File System[0m. <30>[ 79.525951] systemd[1]: Mounted POSIX Message Queue File System. [[0;32m OK [0m] Mounted [0;1;39mPOSIX Message Queue File System[0m. <30>[ 79.553668] systemd[1]: Mounted Kernel Debug File System. [[0;32m OK [0m] Mounted [0;1;39mKernel Debug File System[0m. <30>[ 79.576628] systemd[1]: Mounted Kernel Trace File System. [[0;32m OK [0m] Mounted [0;1;39mKernel Trace File System[0m. <30>[ 79.612491] systemd[1]: Finished Create list of static device nodes for the current kernel. [[0;32m OK [0m] Finished [0;1;39mCreate list of st… nodes for the current kernel[0m. <30>[ 79.651067] systemd[1]: modprobe@configfs.service: Succeeded. <30>[ 79.663293] systemd[1]: Finished Load Kernel Module configfs. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module configfs[0m. <30>[ 79.695732] systemd[1]: modprobe@drm.service: Succeeded. <30>[ 79.709302] systemd[1]: Finished Load Kernel Module drm. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module drm[0m. <30>[ 79.739028] systemd[1]: modprobe@fuse.service: Succeeded. <30>[ 79.752779] systemd[1]: Finished Load Kernel Module fuse. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Module fuse[0m. <30>[ 79.786441] systemd[1]: Finished Load Kernel Modules. [[0;32m OK [0m] Finished [0;1;39mLoad Kernel Modules[0m. <30>[ 79.816603] systemd[1]: Finished Remount Root and Kernel File Systems. [[0;32m OK [0m] Finished [0;1;39mRemount Root and Kernel File Systems[0m. <30>[ 79.840654] systemd[1]: Started Journal Service. [[0;32m OK [0m] Started [0;1;39mJournal Service[0m. Mounting [0;1;39mFUSE Control File System[0m... Mounting [0;1;39mKernel Configuration File System[0m... Starting [0;1;39mFlush Journal to Persistent Storage[0m... Starting [0;1;39mLoad/Save Random Seed[0m... Starting [0;1;39mApply Kernel Variables[0m... Starting [0;1;39mCreate System Users[0m... <46>[ 80.066419] systemd-journald[367]: Received client request to flush runtime journal. [[0;32m OK [0m] Mounted [0;1;39mFUSE Control File System[0m. [[0;32m OK [0m] Mounted [0;1;39mKernel Configuration File System[0m. [[0;32m OK [0m] Finished [0;1;39mApply Kernel Variables[0m. [[0;32m OK [0m] Finished [0;1;39mColdplug All udev Devices[0m. <5>[ 82.834943] random: crng init done <5>[ 82.839181] random: 49 urandom warning(s) missed due to ratelimiting [[0;32m OK [0m] Finished [0;1;39mLoad/Save Random Seed[0m. [[0;32m OK [0m] Finished [0;1;39mFlush Journal to Persistent Storage[0m. [[0;32m OK [0m] Finished [0;1;39mCreate System Users[0m. Starting [0;1;39mCreate Static Device Nodes in /dev[0m... [[0;32m OK [0m] Finished [0;1;39mCreate Static Device Nodes in /dev[0m. [[0;32m OK [0m] Reached target [0;1;39mLocal File Systems (Pre)[0m. [[0;32m OK [0m] Reached target [0;1;39mLocal File Systems[0m. Starting [0;1;39mCreate Volatile Files and Directories[0m... Starting [0;1;39mRule-based Manage…for Device Events and Files[0m... [[0;32m OK [0m] Started [0;1;39mRule-based Manager for Device Events and Files[0m. Starting [0;1;39mNetwork Service[0m... [[0;32m OK [0m] Finished [0;1;39mCreate Volatile Files and Directories[0m. Starting [0;1;39mNetwork Time Synchronization[0m... Starting [0;1;39mUpdate UTMP about System Boot/Shutdown[0m... [[0;32m OK [0m] Started [0;1;39mNetwork Service[0m. Starting [0;1;39mNetwork Name Resolution[0m... [[0;32m OK [0m] Found device [0;1;39m/dev/ttySC0[0m. [[0;32m OK [0m] Reached target [0;1;39mHardware activated USB gadget[0m. [[0;32m OK [0m] Finished [0;1;39mUpdate UTMP about System Boot/Shutdown[0m. [[0;32m OK [0m] Reached target [0;1;39mBluetooth[0m. [[0;32m OK [0m] Started [0;1;39mNetwork Time Synchronization[0m. [[0;32m OK [0m] Reached target [0;1;39mSound Card[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Initialization[0m. [[0;32m OK [0m] Started [0;1;39mDaily Cleanup of Temporary Directories[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Time Set[0m. [[0;32m OK [0m] Reached target [0;1;39mSystem Time Synchronized[0m. [[0;32m OK [0m] Started [0;1;39mDaily apt download activities[0m. [[0;32m OK [0m] Started [0;1;39mDaily apt upgrade and clean activities[0m. [[0;32m OK [0m] Started [0;1;39mPeriodic ext4 Onli…ata Check for All Filesystems[0m. [[0;32m OK [0m] Started [0;1;39mDiscard unused blocks once a week[0m. [[0;32m OK [0m] Reached target [0;1;39mTimers[0m. [[0;32m OK [0m] Listening on [0;1;39mD-Bus System Message Bus Socket[0m. [[0;32m OK [0m] Reached target [0;1;39mSockets[0m. [[0;32m OK [0m] Reached target [0;1;39mBasic System[0m. [[0;32m OK [0m] Listening on [0;1;39mLoad/Save RF …itch Status /dev/rfkill Watch[0m. [[0;32m OK [0m] Started [0;1;39mD-Bus System Message Bus[0m. Starting [0;1;39mRemove Stale Onli…t4 Metadata Check Snapshots[0m... Starting [0;1;39mUser Login Management[0m... [[0;32m OK [0m] Started [0;1;39mNetwork Name Resolution[0m. [[0;32m OK [0m] Finished [0;1;39mRemove Stale Onli…ext4 Metadata Check Snapshots[0m. [[0;32m OK [0m] Reached target [0;1;39mNetwork[0m. [[0;32m OK [0m] Reached target [0;1;39mHost and Network Name Lookups[0m. Starting [0;1;39mLoad/Save RF Kill Switch Status[0m... Starting [0;1;39mPermit User Sessions[0m... [[0;32m OK [0m] Finished [0;1;39mPermit User Sessions[0m. [[0;32m OK [0m] Started [0;1;39mGetty on tty1[0m. [[0;32m OK [0m] Started [0;1;39mSerial Getty on ttySC0[0m. [[0;32m OK [0m] Reached target [0;1;39mLogin Prompts[0m. [[0;32m OK [0m] Started [0;1;39mUser Login Management[0m. [[0;32m OK [0m] Reached target [0;1;39mMulti-User System[0m. [[0;32m OK [0m] Reached target [0;1;39mGraphical Interface[0m. Starting [0;1;39mUpdate UTMP about System Runlevel Changes[0m... [[0;32m OK [0m] Started [0;1;39mLoad/Save RF Kill Switch Status[0m. [[0;32m OK [0m] Finished [0;1;39mUpdate UTMP about System Runlevel Changes[0m. Debian GNU/Linux 11 debian-bullseye-arm64 ttySC0 debian-bullseye-arm64 login: root (automatic login) Linux debian-bullseye-arm64 5.10.167-cip26 #1 SMP PREEMPT Wed Feb 22 04:14:08 UTC 2023 aarch64 The programs included with the Debian GNU/Linux system are free software; the exact distribution terms for each program are described in the individual files in /usr/share/doc/*/copyright. Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent permitted by applicable law. / # / # export NFS_ROOTFS='/var/lib/lava/dispatcher/tmp/856196/extract-nfsrootfs-2nw0_vrp' export NFS_ROOTFS='/var/lib/lava/dispatcher/tmp/856196/extract-nfsrootfs-2nw0_vrp<6>[ 103.477716] SDHI0 VccQ: disabling ' / # export NFS_SERVER_IP='172.16.3.3' export NFS_SERVER_IP='172.16.3.3' / # # # / # export SHELL=/bin/bash export SHELL=/bin/bash / # . /lava-856196/environment . /lava-856196/environment / # /lava-856196/bin/lava-test-runner /lava-856196/0 /lava-856196/bin/lava-test-runner /lava-856196/0 + export TESTRUN_ID=0_timesync-off + TESTRUN_ID=0_timesync-off + cd /lava-856196/0/tests/0_timesync-off ++ cat uuid + UUID=856196_1.6.2.4.1 + set +x + systemctl stop systemd-timesyncd + set +x + export TESTRUN_ID=1_kselftest-lkdtm + TESTRUN_ID=1_kselftest-lkdtm + cd /lava-856196/0/tests/1_kselftest-lkdtm ++ cat uuid + UUID=856196_1.6.2.4.5 + set +x + cd ./automated/linux/kselftest/ + ./kselftest.sh -c lkdtm -T '' -t kselftest_armhf.tar.gz -s True -u http://storage.kernelci.org/cip-gitlab/ci-iwamatsu-linux-5.10.y-cip-rc/v5.10.167-cip26-2-g1e87e7748b91/arm64/defconfig+kselftest/gcc-10/kselftest.tar.xz -L '' -S skipfile-lkft.yaml -b r8a774a1-hihope-rzg2m-ex -g cip-gitlab -e '' -p /opt/kselftests/mainline/ -n 1 -i 1 INFO: Generating a skipfile based on /lava-856196/0/tests/1_kselftest-lkdtm/automated/linux/kselftest/skipfile-lkft.yaml INFO: Using the following generated skipfile contents (until EOF): breakpoints:breakpoint_test breakpoints:step_after_suspend_test ftrace:ftracetest net:rtnetlink.sh net:tls netfilter:bridge_brouter.sh netfilter:nft_flowtable.sh netfilter:nft_trans_stress.sh pidfd:pidfd_wait INFO: EOF INFO: install_deps skipped --2023-02-22 06:44:10-- http://storage.kernelci.org/cip-gitlab/ci-iwamatsu-linux-5.10.y-cip-rc/v5.10.167-cip26-2-g1e87e7748b91/arm64/defconfig+kselftest/gcc-10/kselftest.tar.xz Resolving storage.kernelci.org (storage.kernelci.org)... 52.250.1.28 Connecting to storage.kernelci.org (storage.kernelci.org)|52.250.1.28|:80... connected. HTTP request sent, awaiting response... 200 OK Length: 1734956 (1.7M) [application/octet-stream] Saving to: 'kselftest.tar.xz' kselftest.tar.xz 0%[ ] 0 --.-KB/s kselftest.tar.xz 2%[ ] 44.73K 150KB/s kselftest.tar.xz 8%[> ] 138.51K 216KB/s kselftest.tar.xz 16%[==> ] 276.76K 283KB/s kselftest.tar.xz 23%[===> ] 406.14K 308KB/s kselftest.tar.xz 32%[=====> ] 546.76K 330KB/s kselftest.tar.xz 40%[=======> ] 694.42K 348KB/s kselftest.tar.xz 50%[=========> ] 847.70K 363KB/s kselftest.tar.xz 59%[==========> ] 1008K 376KB/s kselftest.tar.xz 68%[============> ] 1.13M 375KB/s eta 1s kselftest.tar.xz 74%[=============> ] 1.22M 373KB/s eta 1s kselftest.tar.xz 78%[==============> ] 1.30M 372KB/s eta 1s kselftest.tar.xz 81%[===============> ] 1.35M 382KB/s eta 1s kselftest.tar.xz 84%[===============> ] 1.40M 381KB/s eta 1s kselftest.tar.xz 89%[================> ] 1.48M 376KB/s eta 0s kselftest.tar.xz 92%[=================> ] 1.53M 370KB/s eta 0s kselftest.tar.xz 95%[==================> ] 1.59M 363KB/s eta 0s kselftest.tar.xz 99%[==================> ] 1.64M 356KB/s eta 0s kselftest.tar.xz 100%[===================>] 1.65M 360KB/s in 4.9s 2023-02-22 06:44:15 (346 KB/s) - 'kselftest.tar.xz' saved [1734956/1734956] skiplist: ======================================== breakpoints:breakpoint_test breakpoints:step_after_suspend_test ftrace:ftracetest net:rtnetlink.sh net:tls netfilter:bridge_brouter.sh netfilter:nft_flowtable.sh netfilter:nft_trans_stress.sh pidfd:pidfd_wait ======================================== lkdtm:PANIC.sh lkdtm:BUG.sh lkdtm:WARNING.sh lkdtm:WARNING_MESSAGE.sh lkdtm:EXCEPTION.sh lkdtm:LOOP.sh lkdtm:EXHAUST_STACK.sh lkdtm:CORRUPT_STACK.sh lkdtm:CORRUPT_STACK_STRONG.sh lkdtm:CORRUPT_LIST_ADD.sh lkdtm:CORRUPT_LIST_DEL.sh lkdtm:STACK_GUARD_PAGE_LEADING.sh lkdtm:STACK_GUARD_PAGE_TRAILING.sh lkdtm:UNSET_SMEP.sh lkdtm:DOUBLE_FAULT.sh lkdtm:CORRUPT_PAC.sh lkdtm:UNALIGNED_LOAD_STORE_WRITE.sh lkdtm:OVERWRITE_ALLOCATION.sh lkdtm:WRITE_AFTER_FREE.sh lkdtm:READ_AFTER_FREE.sh lkdtm:WRITE_BUDDY_AFTER_FREE.sh lkdtm:READ_BUDDY_AFTER_FREE.sh lkdtm:SLAB_FREE_DOUBLE.sh lkdtm:SLAB_FREE_CROSS.sh lkdtm:SLAB_FREE_PAGE.sh lkdtm:SOFTLOCKUP.sh lkdtm:HARDLOCKUP.sh lkdtm:SPINLOCKUP.sh lkdtm:HUNG_TASK.sh lkdtm:EXEC_DATA.sh lkdtm:EXEC_STACK.sh lkdtm:EXEC_KMALLOC.sh lkdtm:EXEC_VMALLOC.sh lkdtm:EXEC_RODATA.sh lkdtm:EXEC_USERSPACE.sh lkdtm:EXEC_NULL.sh lkdtm:ACCESS_USERSPACE.sh lkdtm:ACCESS_NULL.sh lkdtm:WRITE_RO.sh lkdtm:WRITE_RO_AFTER_INIT.sh lkdtm:WRITE_KERN.sh lkdtm:REFCOUNT_INC_OVERFLOW.sh lkdtm:REFCOUNT_ADD_OVERFLOW.sh lkdtm:REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh lkdtm:REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh lkdtm:REFCOUNT_DEC_ZERO.sh lkdtm:REFCOUNT_DEC_NEGATIVE.sh lkdtm:REFCOUNT_DEC_AND_TEST_NEGATIVE.sh lkdtm:REFCOUNT_SUB_AND_TEST_NEGATIVE.sh lkdtm:REFCOUNT_INC_ZERO.sh lkdtm:REFCOUNT_ADD_ZERO.sh lkdtm:REFCOUNT_INC_SATURATED.sh lkdtm:REFCOUNT_DEC_SATURATED.sh lkdtm:REFCOUNT_ADD_SATURATED.sh lkdtm:REFCOUNT_INC_NOT_ZERO_SATURATED.sh lkdtm:REFCOUNT_ADD_NOT_ZERO_SATURATED.sh lkdtm:REFCOUNT_DEC_AND_TEST_SATURATED.sh lkdtm:REFCOUNT_SUB_AND_TEST_SATURATED.sh lkdtm:REFCOUNT_TIMING.sh lkdtm:ATOMIC_TIMING.sh lkdtm:USERCOPY_HEAP_SIZE_TO.sh lkdtm:USERCOPY_HEAP_SIZE_FROM.sh lkdtm:USERCOPY_HEAP_WHITELIST_TO.sh lkdtm:USERCOPY_HEAP_WHITELIST_FROM.sh lkdtm:USERCOPY_STACK_FRAME_TO.sh lkdtm:USERCOPY_STACK_FRAME_FROM.sh lkdtm:USERCOPY_STACK_BEYOND.sh lkdtm:USERCOPY_KERNEL.sh lkdtm:STACKLEAK_ERASING.sh lkdtm:CFI_FORWARD_PROTO.sh ============== Tests to run =============== lkdtm:PANIC.sh lkdtm:BUG.sh lkdtm:WARNING.sh lkdtm:WARNING_MESSAGE.sh lkdtm:EXCEPTION.sh lkdtm:LOOP.sh lkdtm:EXHAUST_STACK.sh lkdtm:CORRUPT_STACK.sh lkdtm:CORRUPT_STACK_STRONG.sh lkdtm:CORRUPT_LIST_ADD.sh lkdtm:CORRUPT_LIST_DEL.sh lkdtm:STACK_GUARD_PAGE_LEADING.sh lkdtm:STACK_GUARD_PAGE_TRAILING.sh lkdtm:UNSET_SMEP.sh lkdtm:DOUBLE_FAULT.sh lkdtm:CORRUPT_PAC.sh lkdtm:UNALIGNED_LOAD_STORE_WRITE.sh lkdtm:OVERWRITE_ALLOCATION.sh lkdtm:WRITE_AFTER_FREE.sh lkdtm:READ_AFTER_FREE.sh lkdtm:WRITE_BUDDY_AFTER_FREE.sh lkdtm:READ_BUDDY_AFTER_FREE.sh lkdtm:SLAB_FREE_DOUBLE.sh lkdtm:SLAB_FREE_CROSS.sh lkdtm:SLAB_FREE_PAGE.sh lkdtm:SOFTLOCKUP.sh lkdtm:HARDLOCKUP.sh lkdtm:SPINLOCKUP.sh lkdtm:HUNG_TASK.sh lkdtm:EXEC_DATA.sh lkdtm:EXEC_STACK.sh lkdtm:EXEC_KMALLOC.sh lkdtm:EXEC_VMALLOC.sh lkdtm:EXEC_RODATA.sh lkdtm:EXEC_USERSPACE.sh lkdtm:EXEC_NULL.sh lkdtm:ACCESS_USERSPACE.sh lkdtm:ACCESS_NULL.sh lkdtm:WRITE_RO.sh lkdtm:WRITE_RO_AFTER_INIT.sh lkdtm:WRITE_KERN.sh lkdtm:REFCOUNT_INC_OVERFLOW.sh lkdtm:REFCOUNT_ADD_OVERFLOW.sh lkdtm:REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh lkdtm:REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh lkdtm:REFCOUNT_DEC_ZERO.sh lkdtm:REFCOUNT_DEC_NEGATIVE.sh lkdtm:REFCOUNT_DEC_AND_TEST_NEGATIVE.sh lkdtm:REFCOUNT_SUB_AND_TEST_NEGATIVE.sh lkdtm:REFCOUNT_INC_ZERO.sh lkdtm:REFCOUNT_ADD_ZERO.sh lkdtm:REFCOUNT_INC_SATURATED.sh lkdtm:REFCOUNT_DEC_SATURATED.sh lkdtm:REFCOUNT_ADD_SATURATED.sh lkdtm:REFCOUNT_INC_NOT_ZERO_SATURATED.sh lkdtm:REFCOUNT_ADD_NOT_ZERO_SATURATED.sh lkdtm:REFCOUNT_DEC_AND_TEST_SATURATED.sh lkdtm:REFCOUNT_SUB_AND_TEST_SATURATED.sh lkdtm:REFCOUNT_TIMING.sh lkdtm:ATOMIC_TIMING.sh lkdtm:USERCOPY_HEAP_SIZE_TO.sh lkdtm:USERCOPY_HEAP_SIZE_FROM.sh lkdtm:USERCOPY_HEAP_WHITELIST_TO.sh lkdtm:USERCOPY_HEAP_WHITELIST_FROM.sh lkdtm:USERCOPY_STACK_FRAME_TO.sh lkdtm:USERCOPY_STACK_FRAME_FROM.sh lkdtm:USERCOPY_STACK_BEYOND.sh lkdtm:USERCOPY_KERNEL.sh lkdtm:STACKLEAK_ERASING.sh lkdtm:CFI_FORWARD_PROTO.sh ===========End Tests to run =============== <12>[ 242.717546] kselftest: Running tests in lkdtm TAP version 13 1..70 # selftests: lkdtm: PANIC.sh # Skipping PANIC: crashes entire system ok 1 selftests: lkdtm: PANIC.sh # SKIP # selftests: lkdtm: BUG.sh <6>[ 243.796375] lkdtm: Performing direct entry BUG <4>[ 243.801503] ------------[ cut here ]------------ <2>[ 243.806402] kernel BUG at drivers/misc/lkdtm/bugs.c:76! <0>[ 243.812498] Internal error: Oops - BUG: 0 [#1] PREEMPT SMP <4>[ 243.818251] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 243.871880] CPU: 2 PID: 847 Comm: cat Not tainted 5.10.167-cip26 #1 <4>[ 243.878407] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 243.885026] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 243.891310] pc : lkdtm_BUG+0x8/0x10 <4>[ 243.895062] lr : lkdtm_do_action+0x24/0x40 <4>[ 243.899419] sp : ffff80001480bd10 <4>[ 243.902994] x29: ffff80001480bd10 x28: ffff0005c03e6200 <4>[ 243.908577] x27: 0000000000000000 x26: 0000000000000000 <4>[ 243.914159] x25: ffff8000114e1c88 x24: ffff80001480be20 <4>[ 243.919742] x23: 0000000000000004 x22: ffff0005c8128000 <4>[ 243.925325] x21: ffff8000119f2ce8 x20: ffff8000114e1c98 <4>[ 243.930908] x19: 0000000000000001 x18: ffff800012aae9d0 <4>[ 243.936490] x17: 0000000000000000 x16: 0000000000000000 <4>[ 243.942072] x15: 0000000000000028 x14: 000000000005be80 <4>[ 243.947654] x13: ffff8000129b0b50 x12: 00000000201db170 <4>[ 243.953237] x11: ffff0005c03e6a88 x10: ffff8000125c8048 <4>[ 243.958820] x9 : ffff800010a07104 x8 : ffff800012570048 <4>[ 243.964402] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 243.969985] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 243.975568] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 243.981150] x1 : ffff0005c03e6200 x0 : ffff800010a077b0 <4>[ 243.986733] Call trace: <4>[ 243.989443] lkdtm_BUG+0x8/0x10 <4>[ 243.992847] direct_entry+0xd0/0x140 <4>[ 243.996690] full_proxy_write+0x68/0xbc <4>[ 244.000791] vfs_write+0xec/0x20c <4>[ 244.004369] ksys_write+0x70/0x100 <4>[ 244.008033] __arm64_sys_write+0x24/0x30 <4>[ 244.012225] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 244.017279] do_el0_svc+0x2c/0xa4 <4>[ 244.020862] el0_svc+0x20/0x30 <4>[ 244.024179] el0_sync_handler+0xb0/0xb4 <4>[ 244.028279] el0_sync+0x180/0x1c0 <0>[ 244.031864] Code: d503201f d503201f aa1e03e9 d503201f (d4210000) <4>[ 244.038226] ---[ end trace 525ac0d05b8ecc44 ]--- <6>[ 244.043110] note: cat[847] exited with preempt_count 1 <3>[ 244.048512] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 <3>[ 244.057647] in_atomic(): 0, irqs_disabled(): 128, non_block: 0, pid: 847, name: cat <4>[ 244.065565] INFO: lockdep is turned off. <4>[ 244.069750] irq event stamp: 1778 <4>[ 244.073337] hardirqs last enabled at (1777): [] console_unlock+0x530/0x694 <4>[ 244.082127] hardirqs last disabled at (1778): [] el1_dbg+0x24/0x50 <4>[ 244.090134] softirqs last enabled at (1774): [] __do_softirq+0x5b8/0x638 <4>[ 244.098754] softirqs last disabled at (1761): [] __irq_exit_rcu+0x174/0x1a0 <4>[ 244.107544] CPU: 2 PID: 847 Comm: cat Tainted: G D 5.10.167-cip26 #1 <4>[ 244.115461] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 244.122075] Call trace: <4>[ 244.124786] dump_backtrace+0x0/0x200 <4>[ 244.128712] show_stack+0x20/0x30 <4>[ 244.132292] dump_stack+0x110/0x160 <4>[ 244.136047] ___might_sleep+0x158/0x200 <4>[ 244.140146] __might_sleep+0x58/0x90 <4>[ 244.143988] exit_signals+0x34/0x24c <4>[ 244.147827] do_exit+0xd0/0xb84 <4>[ 244.151232] make_task_dead+0x5c/0x90 <4>[ 244.155157] die+0x22c/0x26c <4>[ 244.158301] bug_handler+0x54/0x74 <4>[ 244.161968] call_break_hook+0x70/0x84 <4>[ 244.165980] brk_handler+0x24/0x64 <4>[ 244.169651] do_debug_exception+0xd4/0x150 <4>[ 244.174011] el1_dbg+0x34/0x50 <4>[ 244.177329] el1_sync_handler+0x9c/0xd0 <4>[ 244.181428] el1_sync+0x88/0x140 <4>[ 244.184920] lkdtm_BUG+0x8/0x10 <4>[ 244.188324] direct_entry+0xd0/0x140 <4>[ 244.192163] full_proxy_write+0x68/0xbc <4>[ 244.196263] vfs_write+0xec/0x20c <4>[ 244.199842] ksys_write+0x70/0x100 <4>[ 244.203507] __arm64_sys_write+0x24/0x30 <4>[ 244.207694] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 244.212750] do_el0_svc+0x2c/0xa4 <4>[ 244.216328] el0_svc+0x20/0x30 <4>[ 244.219647] el0_sync_handler+0xb0/0xb4 <4>[ 244.223746] el0_sync+0x180/0x1c0 <4>[ 244.228578] ------------[ cut here ]------------ <4>[ 244.233502] WARNING: CPU: 2 PID: 0 at kernel/rcu/tree.c:624 rcu_eqs_enter.constprop.0+0xe4/0x140 # Segmentation faul<4>[ 244.242554] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek t <4>[ 244.297524] CPU: 2 PID: 0 Comm: swapper/2 Tainted: G D W 5.10.167-cip26 #1 <4>[ 244.306036] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 244.312659] pstate: 200003c5 (nzCv DAIF -PAN -UAO -TCO BTYPE=--) <4>[ 244.318935] pc : rcu_eqs_enter.constprop.0+0xe4/0x140 <4>[ 244.324261] lr : rcu_idle_enter+0x24/0xe0 <4>[ 244.328534] sp : ffff80001358bef0 <4>[ 244.332113] x29: ffff80001358bef0 x28: 0000000000000000 <4>[ 244.337702] x27: 0000000000000000 x26: ffff0005c02d0000 <4>[ 244.343291] x25: 0000000000000000 x24: 0000000000000000 <4>[ 244.348880] x23: ffff8000125414a0 x22: ffff800011dae138 <4>[ 244.354469] x21: ffff800012541478 x20: ffff800011db0380 <4>[ 244.360059] x19: ffff00063f772380 x18: 0000000000000000 <4>[ 244.365647] x17: 0000000000000000 x16: 0000000000000000 <4>[ 244.371236] x15: 0000000000000000 x14: 0000000000000000 <4>[ 244.376825] x13: 0000000000000003 x12: 0000000000000040 <4>[ 244.382414] x11: ffff0005c0400000 x10: 0000000000001440 <4>[ 244.388003] x9 : ffff80001124b72c x8 : ffff0005c02d14a0 <4>[ 244.393591] x7 : ffff80001253b000 x6 : ffff800012541000 <4>[ 244.399180] x5 : ffff800012541c88 x4 : 0000000000000001 <4>[ 244.404769] x3 : 0000000000000000 x2 : ffff0005c02d0000 <4>[ 244.410358] x1 : 4000000000000002 x0 : 4000000000000000 <4>[ 244.415947] Call trace: <4>[ 244.418666] rcu_eqs_enter.constprop.0+0xe4/0x140 <4>[ 244.423638] rcu_idle_enter+0x24/0xe0 <4>[ 244.427570] default_idle_call+0x58/0x100 <4>[ 244.431850] do_idle+0x258/0x2d0 <4>[ 244.435348] cpu_startup_entry+0x2c/0x6c <4>[ 244.439542] secondary_start_kernel+0x14c/0x1a0 <4>[ 244.444338] irq event stamp: 512738 <4>[ 244.448101] hardirqs last enabled at (512737): [] tick_nohz_idle_exit+0x78/0x1c4 <4>[ 244.457415] hardirqs last disabled at (512738): [] __schedule+0x690/0x9e0 <4>[ 244.466036] softirqs last enabled at (512732): [] _local_bh_enable+0x2c/0x50 <4>[ 244.475003] softirqs last disabled at (512731): [] irq_enter_rcu+0x7c/0xa0 <4>[ 244.483704] ---[ end trace 525ac0d05b8ecc45 ]--- # [ 243.796375] lkdtm: Performing direct entry BUG # [ 243.801503] ------------[ cut here ]------------ # [ 243.806402] kernel BUG at drivers/misc/lkdtm/bugs.c:76! # [ 243.812498] Internal error: Oops - BUG: 0 [#1] PREEMPT SMP # [ 243.818251] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 243.871880] CPU: 2 PID: 847 Comm: cat Not tainted 5.10.167-cip26 #1 # [ 243.878407] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 243.885026] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 243.891310] pc : lkdtm_BUG+0x8/0x10 # [ 243.895062] lr : lkdtm_do_action+0x24/0x40 # [ 243.899419] sp : ffff80001480bd10 # [ 243.902994] x29: ffff80001480bd10 x28: ffff0005c03e6200 # [ 243.908577] x27: 0000000000000000 x26: 0000000000000000 # [ 243.914159] x25: ffff8000114e1c88 x24: ffff80001480be20 # [ 243.919742] x23: 0000000000000004 x22: ffff0005c8128000 # [ 243.925325] x21: ffff8000119f2ce8 x20: ffff8000114e1c98 # [ 243.930908] x19: 0000000000000001 x18: ffff800012aae9d0 # [ 243.936490] x17: 0000000000000000 x16: 0000000000000000 # [ 243.942072] x15: 0000000000000028 x14: 000000000005be80 # [ 243.947654] x13: ffff8000129b0b50 x12: 00000000201db170 # [ 243.953237] x11: ffff0005c03e6a88 x10: ffff8000125c8048 # [ 243.958820] x9 : ffff800010a07104 x8 : ffff800012570048 # [ 243.964402] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 243.969985] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 243.975568] x3 : 0000000000000000 x2 : 0000000000000000 # [ 243.981150] x1 : ffff0005c03e6200 x0 : ffff800010a077b0 # [ 243.986733] Call trace: # [ 243.989443] lkdtm_BUG+0x8/0x10 # [ 243.992847] direct_entry+0xd0/0x140 # [ 243.996690] full_proxy_write+0x68/0xbc # [ 244.000791] vfs_write+0xec/0x20c # [ 244.004369] ksys_write+0x70/0x100 # [ 244.008033] __arm64_sys_write+0x24/0x30 # [ 244.012225] el0_svc_common.constprop.0+0x84/0x1e0 # [ 244.017279] do_el0_svc+0x2c/0xa4 # [ 244.020862] el0_svc+0x20/0x30 # [ 244.024179] el0_sync_handler+0xb0/0xb4 # [ 244.028279] el0_sync+0x180/0x1c0 # [ 244.031864] Code: d503201f d503201f aa1e03e9 d503201f (d4210000) # [ 244.038226] ---[ end trace 525ac0d05b8ecc44 ]--- # [ 244.043110] note: cat[847] exited with preempt_count 1 # [ 244.048512] BUG: sleeping function called from invalid context at include/linux/percpu-rwsem.h:49 # [ 244.057647] in_atomic(): 0, irqs_disabled(): 128, non_block: 0, pid: 847, name: cat # [ 244.065565] INFO: lockdep is turned off. # [ 244.069750] irq event stamp: 1778 # [ 244.073337] hardirqs last enabled at (1777): [] console_unlock+0x530/0x694 # [ 244.082127] hardirqs last disabled at (1778): [] el1_dbg+0x24/0x50 # [ 244.090134] softirqs last enabled at (1774): [] __do_softirq+0x5b8/0x638 # [ 244.098754] softirqs last disabled at (1761): [] __irq_exit_rcu+0x174/0x1a0 # [ 244.107544] CPU: 2 PID: 847 Comm: cat Tainted: G D 5.10.167-cip26 #1 # [ 244.115461] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 244.122075] Call trace: # [ 244.124786] dump_backtrace+0x0/0x200 # [ 244.128712] show_stack+0x20/0x30 # [ 244.132292] dump_stack+0x110/0x160 # [ 244.136047] ___might_sleep+0x158/0x200 # [ 244.140146] __might_sleep+0x58/0x90 # [ 244.143988] exit_signals+0x34/0x24c # [ 244.147827] do_exit+0xd0/0xb84 # [ 244.151232] make_task_dead+0x5c/0x90 # [ 244.155157] die+0x22c/0x26c # [ 244.158301] bug_handler+0x54/0x74 # [ 244.161968] call_break_hook+0x70/0x84 # [ 244.165980] brk_handler+0x24/0x64 # [ 244.169651] do_debug_exception+0xd4/0x150 # [ 244.174011] el1_dbg+0x34/0x50 # [ 244.177329] el1_sync_handler+0x9c/0xd0 # [ 244.181428] el1_sync+0x88/0x140 # [ 244.184920] lkdtm_BUG+0x8/0x10 # [ 244.188324] direct_entry+0xd0/0x140 # [ 244.192163] full_proxy_write+0x68/0xbc # [ 244.196263] vfs_write+0xec/0x20c # [ 244.199842] ksys_write+0x70/0x100 # [ 244.203507] __arm64_sys_write+0x24/0x30 # [ 244.207694] el0_svc_common.constprop.0+0x84/0x1e0 # [ 244.212750] do_el0_svc+0x2c/0xa4 # [ 244.216328] el0_svc+0x20/0x30 # [ 244.219647] el0_sync_handler+0xb0/0xb4 # [ 244.223746] el0_sync+0x180/0x1c0 # [ 244.228578] ------------[ cut here ]------------ # [ 244.233502] WARNING: CPU: 2 PID: 0 at kernel/rcu/tree.c:624 rcu_eqs_enter.constprop.0+0xe4/0x140 # [ 244.242554] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_h<6>[ 246.457782] lkdtm: Performing direct entry WARNING elper videodev s<4>[ 246.464438] ------------[ cut here ]------------ nd_soc_rcar rene<4>[ 246.470528] WARNING: CPU: 4 PID: 885 at drivers/misc/lkdtm/bugs.c:83 lkdtm_WARNING+0x28/0x34 sas_usb3 hci_uar<4>[ 246.480589] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek t mc rcar_fcp bt<4>[ 246.535297] CPU: 4 PID: 885 Comm: cat Tainted: G D W 5.10.167-cip26 #1 qca btbcm pwm_rc<4>[ 246.544590] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) ar bluetooth ecd<4>[ 246.552593] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) h_generic rcar_c<4>[ 246.560242] pc : lkdtm_WARNING+0x28/0x34 an ecc can_dev p<4>[ 246.565810] lr : lkdtm_do_action+0x24/0x40 hy_rcar_gen3_usb<4>[ 246.571549] sp : ffff8000148c3d10 3 rfkill renesas<4>[ 246.576509] x29: ffff8000148c3d10 x28: ffff0005c7798000 _usbhs usb_dmac <4>[ 246.583466] x27: 0000000000000000 x26: 0000000000000000 display_connecto<4>[ 246.590424] x25: ffff8000114e1c88 x24: ffff8000148c3e20 r drm realtek #<4>[ 246.597380] x23: 0000000000000008 x22: ffff0005c373c000 [ 244.297524] <4>[ 246.604337] x21: ffff8000119f2cf0 x20: ffff8000114e1ca8 CPU: 2 PID: 0 Co<4>[ 246.611294] x19: 0000000000000002 x18: 0000000000000000 mm: swapper/2 Ta<4>[ 246.618251] x17: 0000000000000000 x16: 0000000000000000 inted: G D <4>[ 246.625208] x15: 0000000000000030 x14: ffffffffffffffff W 5.10.1<4>[ 246.632165] x13: ffff8000948c3a0a x12: ffff8000148c3a12 67-cip26 #1 # [<4>[ 246.639122] x11: ffff80001256fea8 x10: ffff8000125c8048 244.306036] Ha<4>[ 246.646079] x9 : ffff800010a07104 x8 : ffff800012570048 rdware name: Hop<4>[ 246.653035] x7 : ffff8000125c8048 x6 : ffff800012541000 eRun HiHope RZ/G<4>[ 246.659992] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 2M with sub boar<4>[ 246.666949] x3 : 0000000000000000 x2 : 0000000000000000 d (DT) # [ 244<4>[ 246.673906] x1 : ffff80001347e000 x0 : 0000000000000001 .312659] pstate:<4>[ 246.680864] Call trace: 200003c5 (nzCv <4>[ 246.684958] lkdtm_WARNING+0x28/0x34 DAIF -PAN -UAO -<4>[ 246.690179] direct_entry+0xd0/0x140 TCO BTYPE=--) #<4>[ 246.695404] full_proxy_write+0x68/0xbc [ 244.318935] <4>[ 246.700884] vfs_write+0xec/0x20c pc : rcu_eqs_ent<4>[ 246.705840] ksys_write+0x70/0x100 er.constprop.0+0<4>[ 246.710884] __arm64_sys_write+0x24/0x30 xe4/0x140 # [ <4>[ 246.716454] el0_svc_common.constprop.0+0x84/0x1e0 244.324261] lr :<4>[ 246.722886] do_el0_svc+0x2c/0xa4 rcu_idle_enter+<4>[ 246.727851] el0_svc+0x20/0x30 0x24/0xe0 # [ <4>[ 246.732546] el0_sync_handler+0xb0/0xb4 244.328534] sp :<4>[ 246.738029] el0_sync+0x180/0x1c0 ffff80001358bef<4>[ 246.742987] irq event stamp: 0 0 # [ 244.3321<4>[ 246.747693] hardirqs last enabled at (0): [<0000000000000000>] 0x0 13] x29: ffff800<4>[ 246.755606] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 01358bef0 x28: 0<4>[ 246.765423] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 000000000000000 <4>[ 246.775242] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 244.33770<4>[ 246.783152] ---[ end trace 525ac0d05b8ecc46 ]--- 2] x27: 0000000000000000 x26: ffff0005c02d0000 # [ 244.343291] x25: 0000000000000000 x24: 0000000000000000 # [ 244.348880] x23: ffff8000125414a0 x22: ffff800011dae138 # [ 244.354469] x21: ffff800012541478 x20: ffff800011db0380 # [ 244.360059] x19: ffff00063f772380 x18: 0000000000000000 # [ 244.365647] x17: 0000000000000000 x16: 0000000000000000 # [ 244.371236] x15: 0000000000000000 x14: 0000000000000000 # [ 244.376825] x13: 0000000000000003 x12: 0000000000000040 # [ 244.382414] x11: ffff0005c0400000 x10: 0000000000001440 # [ 244.388003] x9 : ffff80001124b72c x8 : ffff0005c02d14a0 # [ 244.393591] x7 : ffff80001253b000 x6 : ffff800012541000 # [ 244.399180] x5 : ffff800012541c88 x4 : 0000000000000001 # [ 244.404769] x3 : 0000000000000000 x2 : ffff0005c02d0000 # [ 244.410358] x1 : 4000000000000002 x0 : 4000000000000000 # [ 244.415947] Call trace: # [ 244.418666] rcu_eqs_enter.constprop.0+0xe4/0x140 # [ 244.423638] rcu_idle_enter+0x24/0xe0 # [ 244.427570] default_idle_call+0x58/0x100 # [ 244.431850] do_idle+0x258/0x2d0 # [ 244.435348] cpu_startup_entry+0x2c/0x6c # [ 244.439542] secondary_start_kernel+0x14c/0x1a0 # [ 244.444338] irq event stamp: 512738 # [ 244.448101] hardirqs last enabled at (512737): [] tick_nohz_idle_exit+0x78/0x1c4 # [ 244.457415] hardirqs last disabled at (512738): [] __schedule+0x690/0x9e0 # [ 244.466036] softirqs last enabled at (512732): [] _local_bh_enable+0x2c/0x50 # [ 244.475003] softirqs last disabled at (512731): [] irq_enter_rcu+0x7c/0xa0 # [ 244.483704] ---[ end trace 525ac0d05b8ecc45 ]--- # BUG: saw 'kernel BUG at': ok ok 2 selftests: lkdtm: BUG.sh # selftests: lkdtm: WARNING.sh # [ 246.457782] lkdtm: Performing direct entry WARNING # [ 246.464438] ------------[ cut here ]------------ # [ 246.470528] WARNING: CPU: 4 PID: 885 at drivers/misc/lkdtm/bugs.c:83 lkdtm_WARNING+0x28/0x34 # [ 246.480589] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 246.535297] CPU: 4 PID: 885 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 246.544590] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 246.552593] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 246.560242] pc : lkdtm_WARNING+0x28/0x34 # [ 246.565810] lr : lkdtm_do_action+0x24/0x40 # [ 246.571549] sp : ffff8000148c3d10 # [ 246.576509] x29: ffff8000148c3d10 x28: ffff0005c7798000 # [ 246.583466] x27: 0000000000000000 x26: 0000000000000000 # [ 246.590424] x25: ffff8000114e1c88 x24: ffff8000148c3e20 # [ 246.597380] x23: 0000000000000008 x22: ffff0005c373c000 # [ 246.604337] x21: ffff8000119f2cf0 x20: ffff8000114e1ca8 # [ 246.611294] x19: 0000000000000002 x18: 0000000000000000 # [ 246.618251] x17: 0000000000000000 x16: 0000000000000000 # [ 246.625208] x15: 0000000000000030 x14: ffffffffffffffff # [ 246.632165] x13: ffff8000948c3a0a x12: ffff8000148c3a12 # [ 246.639122] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 246.646079] x9 : ffff800010a07104 x8 : ffff800012570048 # [ 246.653035] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 246.659992] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 # [ 246.666949] x3 : 0000000000000000 x2 : 0000000000000000 # [ 246.673906] x1 : ffff80001347e000 x0 : 0000000000000001 # [ 246.680864] Call trace: # [ 246.684958] lkdtm_WARNING+0x28/0x34 # [ 246.690179] direct_entry+0xd0/0x140 # [ 246.695404] full_proxy_write+0x68/0xbc # [ 246.700884] vfs_write+0xec/0x20c # [ 246.705840] ksys_write+0x70/0x100 # [ 246.710884] __arm64_sys_write+0x24/0x30 # [ 246.716454] el0_svc_common.constprop.0+0x84/0x1e0 # [ 246.722886] do_el0_svc+0x2c/0xa4 # [ 246.727851] el0_svc+0x20/0x30 # [ 246.732546] el0_sync_handler+0xb0/0xb4 # [ 246.738029] el0_sync+0x180/0x1c0 # [ 246.742987] irq event stamp: 0 # [ 246.747693] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 246.755606] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 246.765423] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 246.775242] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 246.783152] ---[ end trace 525ac0d05b8ecc46 ]--- # WARNING: saw 'WARNING:': ok ok 3 selftests: lkdtm: WARNING.sh # selftests: lkdtm: WARNING_MESSAGE.sh <6>[ 247.794170] lkdtm: Performing direct entry WARNING_MESSAGE <4>[ 247.800171] ------------[ cut here ]------------ <4>[ 247.806813] Warning message trigger count: 2 <4>[ 247.812008] WARNING: CPU: 5 PID: 920 at drivers/misc/lkdtm/bugs.c:88 lkdtm_WARNING_MESSAGE+0x30/0x40 <4>[ 247.821402] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 247.874995] CPU: 5 PID: 920 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 247.882910] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 247.889526] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 247.895794] pc : lkdtm_WARNING_MESSAGE+0x30/0x40 <4>[ 247.900671] lr : lkdtm_WARNING_MESSAGE+0x30/0x40 <4>[ 247.905547] sp : ffff80001497bd00 <4>[ 247.909120] x29: ffff80001497bd00 x28: ffff0005c778b100 <4>[ 247.914699] x27: 0000000000000000 x26: 0000000000000000 <4>[ 247.920277] x25: ffff8000114e1c88 x24: ffff80001497be20 <4>[ 247.925856] x23: 0000000000000010 x22: ffff0005c43e7000 <4>[ 247.931434] x21: ffff8000119f2cf8 x20: ffff8000114e1cb8 <4>[ 247.937012] x19: 0000000000000003 x18: 0000000000000000 <4>[ 247.942591] x17: 0000000000000000 x16: 0000000000000000 <4>[ 247.948169] x15: 0000000000000000 x14: 0000000000000000 <4>[ 247.953747] x13: 0000000000000000 x12: 0000000000000000 <4>[ 247.959326] x11: 0000000000000000 x10: 0000000000001440 <4>[ 247.964904] x9 : ffff80001012cbc4 x8 : ffff0005c778c5a0 <4>[ 247.970483] x7 : 00e718018559283a x6 : ffff800012541000 <4>[ 247.976061] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 247.981640] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 247.987219] x1 : 0000000000000000 x0 : ffff0005c778b100 <4>[ 247.992798] Call trace: <4>[ 247.995506] lkdtm_WARNING_MESSAGE+0x30/0x40 <4>[ 248.000037] lkdtm_do_action+0x24/0x40 <4>[ 248.004046] direct_entry+0xd0/0x140 <4>[ 248.007885] full_proxy_write+0x68/0xbc <4>[ 248.011985] vfs_write+0xec/0x20c <4>[ 248.015560] ksys_write+0x70/0x100 <4>[ 248.019222] __arm64_sys_write+0x24/0x30 <4>[ 248.023410] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 248.028462] do_el0_svc+0x2c/0xa4 <4>[ 248.032042] el0_svc+0x20/0x30 <4>[ 248.035358] el0_sync_handler+0xb0/0xb4 <4>[ 248.039455] el0_sync+0x180/0x1c0 <4>[ 248.043031] irq event stamp: 0 <4>[ 248.046350] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 248.052884] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 248.061322] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 248.069758] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 248.076284] ---[ end trace 525ac0d05b8ecc47 ]--- # [ 247.794170] lkdtm: Performing direct entry WARNING_MESSAGE # [ 247.800171] ------------[ cut here ]------------ # [ 247.806813] Warning message trigger count: 2 # [ 247.812008] WARNING: CPU: 5 PID: 920 at drivers/misc/lkdtm/bugs.c:88 lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 247.821402] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 247.874995] CPU: 5 PID: 920 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 247.882910] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 247.889526] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 247.895794] pc : lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 247.900671] lr : lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 247.905547] sp : ffff80001497bd00 # [ 247.909120] x29: ffff80001497bd00 x28: ffff0005c778b100 # [ 247.914699] x27: 0000000000000000 x26: 0000000000000000 # [ 247.920277] x25: ffff8000114e1c88 x24: ffff80001497be20 # [ 247.925856] x23: 0000000000000010 x22: ffff0005c43e7000 # [ 247.931434] x21: ffff8000119f2cf8 x20: ffff8000114e1cb8 # [ 247.937012] x19: 0000000000000003 x18: 0000000000000000 # [ 247.942591] x17: 0000000000000000 x16: 0000000000000000 # [ 247.948169] x15: 0000000000000000 x14: 0000000000000000 # [ 247.953747] x13: 0000000000000000 x12: 0000000000000000 # [ 247.959326] x11: 0000000000000000 x10: 0000000000001440 # [ 247.964904] x9 : ffff80001012cbc4 x8 : ffff0005c778c5a0 # [ 247.970483] x7 : 00e718018559283a x6 : ffff800012541000 # [ 247.976061] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 247.981640] x3 : 0000000000000000 x2 : 0000000000000000 # [ 247.987219] x1 : 0000000000000000 x0 : ffff0005c778b100 # [ 247.992798] Call trace: # [ 247.995506] lkdtm_WARNING_MESSAGE+0x30/0x40 # [ 248.000037] lkdtm_do_action+0x24/0x40 # [ 248.004046] direct_entry+0xd0/0x140 # [ 248.007885] full_proxy_write+0x68/0xbc # [ 248.011985] vfs_write+0xec/0x20c # [ 248.015560] ksys_write+0x70/0x100 # [ 248.019222] __arm64_sys_write+0x24/0x30 # [ 248.023410] el0_svc_common.constprop.0+0x84/0x1e0 # [ 248.028462] do_el0_svc+0x2c/0xa4 # [ 248.032042] el0_svc+0x20/0x30 # [ 248.035358] el0_sync_handler+0xb0/0xb4 # [ 248.039455] el0_sync+0x180/0x1c0 # [ 248.043031] irq event stamp: 0 # [ 248.046350] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 248.052884] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 248.061322] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 248.069758] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 248.076284] ---[ end trace 525ac0d05b8ecc47 ]--- # WARNING_MESSAGE: saw 'message trigger': ok ok 4 selftests: lkdtm: WARNING_MESSAGE.sh # selftests: lkdtm: EXCEPTION.sh <6>[ 249.128465] lkdtm: Performing direct entry EXCEPTION <1>[ 249.134053] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 <1>[ 249.145232] Mem abort info: <1>[ 249.148816] ESR = 0x96000044 <1>[ 249.152253] EC = 0x25: DABT (current EL), IL = 32 bits <1>[ 249.157960] SET = 0, FnV = 0 <1>[ 249.161301] EA = 0, S1PTW = 0 <1>[ 249.164726] Data abort info: <1>[ 249.168099] ISV = 0, ISS = 0x00000044 <1>[ 249.172309] CM = 0, WnR = 1 <1>[ 249.175571] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006082b9000 <1>[ 249.182520] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 <0>[ 249.189621] Internal error: Oops: 96000044 [#2] PREEMPT SMP <4>[ 249.195453] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 249.248917] CPU: 0 PID: 952 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 249.256828] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 249.263439] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 249.269711] pc : lkdtm_EXCEPTION+0x14/0x1c <4>[ 249.274064] lr : lkdtm_do_action+0x24/0x40 <4>[ 249.278414] sp : ffff800014a2bd10 <4>[ 249.281984] x29: ffff800014a2bd10 x28: ffff0005c9a2b100 <4>[ 249.287556] x27: 0000000000000000 x26: 0000000000000000 <4>[ 249.293126] x25: ffff8000114e1c88 x24: ffff800014a2be20 <4>[ 249.298697] x23: 000000000000000a x22: ffff0005c43a3000 <4>[ 249.304267] x21: ffff8000119f2d08 x20: ffff8000114e1cc8 <4>[ 249.309837] x19: 0000000000000004 x18: 0000000000000000 <4>[ 249.315408] x17: 0000000000000000 x16: 0000000000000000 <4>[ 249.320978] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 249.326548] x13: ffff800094a2ba0a x12: ffff800014a2ba12 <4>[ 249.332119] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 249.337689] x9 : ffff800010a07104 x8 : ffff0005c9a2c5a0 <4>[ 249.343260] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 249.348830] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 249.354400] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 249.359970] x1 : ffff0005c9a2b100 x0 : 0000000000000000 <4>[ 249.365541] Call trace: <4>[ 249.368244] lkdtm_EXCEPTION+0x14/0x1c <4>[ 249.372249] direct_entry+0xd0/0x140 <4>[ 249.376083] full_proxy_write+0x68/0xbc <4>[ 249.380177] vfs_write+0xec/0x20c <4>[ 249.383747] ksys_write+0x70/0x100 <4>[ 249.387404] __arm64_sys_write+0x24/0x30 <4>[ 249.391586] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 249.396632] do_el0_svc+0x2c/0xa4 <4>[ 249.400206] el0_svc+0x20/0x30 <4>[ 249.403517] el0_sync_handler+0xb0/0xb4 <4>[ 249.407609] el0_sync+0x180/0x1c0 <0>[ 249.411184] Code: d503201f d2800000 d503233f d50323bf (b900001f) <4>[ 249.417535] ---[ end trace 525ac0d05b8ecc48 ]--- # Segmentation fault # [ 249.128465] lkdtm: Performing direct entry EXCEPTION # [ 249.134053] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 # [ 249.145232] Mem abort info: # [ 249.148816] ESR = 0x96000044 # [ 249.152253] EC = 0x25: DABT (current EL), IL = 32 bits # [ 249.157960] SET = 0, FnV = 0 # [ 249.161301] EA = 0, S1PTW = 0 # [ 249.164726] Data abort info: # [ 249.168099] ISV = 0, ISS = 0x00000044 # [ 249.172309] CM = 0, WnR = 1 # [ 249.175571] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006082b9000 # [ 249.182520] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 # [ 249.189621] Internal error: Oops: 96000044 [#2] PREEMPT SMP # [ 249.195453] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 249.248917] CPU: 0 PID: 952 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 249.256828] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 249.263439] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 249.269711] pc : lkdtm_EXCEPTION+0x14/0x1c # [ 249.274064] lr : lkdtm_do_action+0x24/0x40 # [ 249.278414] sp : ffff800014a2bd10 # [ 249.281984] x29: ffff800014a2bd10 x28: ffff0005c9a2b100 # [ 249.287556] x27: 0000000000000000 x26: 0000000000000000 # [ 249.293126] x25: ffff8000114e1c88 x24: ffff800014a2be20 # [ 249.298697] x23: 000000000000000a x22: ffff0005c43a3000 # [ 249.304267] x21: ffff8000119f2d08 x20: ffff8000114e1cc8 # [ 249.309837] x19: 0000000000000004 x18: 0000000000000000 # [ 249.315408] x17: 0000000000000000 x16: 0000000000000000 # [ 249.320978] x15: 0000000000000030 x14: ffffffffffffffff # [ 249.326548] x13: ffff800094a2ba0a x12: ffff800014a2ba12 # [ 249.332119] x11: ffff80001256fea8 x10: 0000000000001440 # [ 249.337689] x9 : ffff800010a07104 x8 : ffff0005c9a2c5a0 # [ 249.343260] x7 : 0000000000000000 x6 : ffff800012541000 # [ 249.348830] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 249.354400] x3 : 0000000000000000 x2 : 0000000000000000 # [ 249.359970] x1 : ffff0005c9a2b100 x0 : 0000000000000000 # [ 249.365541] Call trace: # [ 249.368244] lkdtm_EXCEPTION+0x14/0x1c # [ 249.372249] direct_entry+0xd0/0x140 # [ 249.376083] full_proxy_write+0x68/0xbc # [ 249.380177] vfs_write+0xec/0x20c # [ 249.383747] ksys_write+0x70/0x100 # [ 249.387404] __arm64_sys_write+0x24/0x30 # [ 249.391586] el0_svc_common.constprop.0+0x84/0x1e0 # [ 249.396632] do_el0_svc+0x2c/0xa4 # [ 249.400206] el0_svc+0x20/0x30 # [ 249.403517] el0_sync_handler+0xb0/0xb4 # [ 249.407609] el0_sync+0x180/0x1c0 # [ 249.411184] Code: d503201f d2800000 d503233f d50323bf (b900001f) # [ 249.417535] ---[ end trace 525ac0d05b8ecc48 ]--- # EXCEPTION: saw 'call trace:': ok ok 5 selftests: lkdtm: EXCEPTION.sh # selftests: lkdtm: LOOP.sh # Skipping LOOP: Hangs the system ok 6 selftests: lkdtm: LOOP.sh # SKIP # selftests: lkdtm: EXHAUST_STACK.sh # Skipping EXHAUST_STACK: Corrupts memory on failure ok 7 selftests: lkdtm: EXHAUST_STACK.sh # SKIP # selftests: lkdtm: CORRUPT_STACK.sh # Skipping CORRUPT_STACK: Crashes entire system on success ok 8 selftests: lkdtm: CORRUPT_STACK.sh # SKIP # selftests: lkdtm: CORRUPT_STACK_STRONG.sh # Skipping CORRUPT_STACK_STRONG: Crashes entire system on success ok 9 selftests: lkdtm: CORRUPT_STACK_STRONG.sh # SKIP # selftests: lkdtm: CORRUPT_LIST_ADD.sh <6>[ 251.519420] lkdtm: Performing direct entry CORRUPT_LIST_ADD <6>[ 251.525474] lkdtm: attempting good list addition <6>[ 251.530428] lkdtm: attempting corrupted list addition <3>[ 251.535995] lkdtm: list_add() corruption not detected! # [ 251.519420] lkdtm: Performing direct entry CORRUPT_LIST_ADD # [ 251.525474] lkdtm: attempting good list addition # [ 251.530428] lkdtm: attempting corrupted list addition # [ 251.535995] lkdtm: list_add() corruption not detected! # CORRUPT_LIST_ADD: missing 'list_add corruption': [FAIL] not ok 10 selftests: lkdtm: CORRUPT_LIST_ADD.sh # exit=1 # selftests: lkdtm: CORRUPT_LIST_DEL.sh <6>[ 252.277962] lkdtm: Performing direct entry CORRUPT_LIST_DEL <6>[ 252.283958] lkdtm: attempting good list removal <6>[ 252.290330] lkdtm: attempting corrupted list removal <3>[ 252.295976] lkdtm: list_del() corruption not detected! # [ 252.277962] lkdtm: Performing direct entry CORRUPT_LIST_DEL # [ 252.283958] lkdtm: attempting good list removal # [ 252.290330] lkdtm: attempting corrupted list removal # [ 252.295976] lkdtm: list_del() corruption not detected! # CORRUPT_LIST_DEL: missing 'list_del corruption': [FAIL] not ok 11 selftests: lkdtm: CORRUPT_LIST_DEL.sh # exit=1 # selftests: lkdtm: STACK_GUARD_PAGE_LEADING.sh <6>[ 252.961326] lkdtm: Performing direct entry STACK_GUARD_PAGE_LEADING <6>[ 252.967946] lkdtm: attempting bad read from page below current stack <1>[ 252.974660] Unable to handle kernel paging request at virtual address ffff800014e6ffff <1>[ 252.982986] Mem abort info: <1>[ 252.986061] ESR = 0x96000007 <1>[ 252.989655] EC = 0x25: DABT (current EL), IL = 32 bits <1>[ 252.995353] SET = 0, FnV = 0 <1>[ 252.998764] EA = 0, S1PTW = 0 <1>[ 253.002194] Data abort info: <1>[ 253.005355] ISV = 0, ISS = 0x00000007 <1>[ 253.009540] CM = 0, WnR = 0 <1>[ 253.012793] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 253.019963] [ffff800014e6ffff] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000608158003, pte=0000000000000000 <0>[ 253.032817] Internal error: Oops: 96000007 [#3] PREEMPT SMP <4>[ 253.038649] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 253.092113] CPU: 0 PID: 1187 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 253.100110] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 253.106721] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 253.112995] pc : lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 <4>[ 253.118650] lr : lkdtm_STACK_GUARD_PAGE_LEADING+0x2c/0x58 <4>[ 253.124303] sp : ffff800014e73ce0 <4>[ 253.127873] x29: ffff800014e73ce0 x28: ffff0005c03e4980 <4>[ 253.133445] x27: 0000000000000000 x26: 0000000000000000 <4>[ 253.139016] x25: ffff8000114e1c88 x24: ffff800014e73e20 <4>[ 253.144587] x23: 0000000000000019 x22: ffff0005c373c000 <4>[ 253.150157] x21: ffff8000119f2d88 x20: ffff8000114e1d38 <4>[ 253.155727] x19: ffff800014e70000 x18: 0000000000000000 <4>[ 253.161298] x17: 0000000000000000 x16: 0000000000000000 <4>[ 253.166868] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 253.172438] x13: ffff800094e739ca x12: ffff800014e739d2 <4>[ 253.178008] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 253.183578] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 253.189148] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 253.194718] x5 : ffff800012541c88 x4 : ffff00063f77ec50 <4>[ 253.200288] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 253.205858] x1 : ffff0005c03e4980 x0 : ffff8000119f3848 <4>[ 253.211429] Call trace: <4>[ 253.214133] lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 <4>[ 253.219445] lkdtm_do_action+0x24/0x40 <4>[ 253.223450] direct_entry+0xd0/0x140 <4>[ 253.227283] full_proxy_write+0x68/0xbc <4>[ 253.231377] vfs_write+0xec/0x20c <4>[ 253.234948] ksys_write+0x70/0x100 <4>[ 253.238605] __arm64_sys_write+0x24/0x30 <4>[ 253.242788] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 253.247834] do_el0_svc+0x2c/0xa4 <4>[ 253.251406] el0_svc+0x20/0x30 <4>[ 253.254716] el0_sync_handler+0xb0/0xb4 <4>[ 253.258809] el0_sync+0x180/0x1c0 <0>[ 253.262383] Code: 91202000 97ffe068 b0003e00 91212000 (385ff261) <4>[ 253.268735] ---[ end trace 525ac0d05b8ecc49 ]--- # Segmentation fault # [ 252.961326] lkdtm: Performing direct entry STACK_GUARD_PAGE_LEADING # [ 252.967946] lkdtm: attempting bad read from page below current stack # [ 252.974660] Unable to handle kernel paging request at virtual address ffff800014e6ffff # [ 252.982986] Mem abort info: # [ 252.986061] ESR = 0x96000007 # [ 252.989655] EC = 0x25: DABT (current EL), IL = 32 bits # [ 252.995353] SET = 0, FnV = 0 # [ 252.998764] EA = 0, S1PTW = 0 # [ 253.002194] Data abort info: # [ 253.005355] ISV = 0, ISS = 0x00000007 # [ 253.009540] CM = 0, WnR = 0 # [ 253.012793] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 253.019963] [ffff800014e6ffff] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000608158003, pte=0000000000000000 # [ 253.032817] Internal error: Oops: 96000007 [#3] PREEMPT SMP # [ 253.038649] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 253.092113] CPU: 0 PID: 1187 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 253.100110] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 253.106721] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 253.112995] pc : lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 # [ 253.118650] lr : lkdtm_STACK_GUARD_PAGE_LEADING+0x2c/0x58 # [ 253.124303] sp : ffff800014e73ce0 # [ 253.127873] x29: ffff800014e73ce0 x28: ffff0005c03e4980 # [ 253.133445] x27: 0000000000000000 x26: 0000000000000000 # [ 253.139016] x25: ffff8000114e1c88 x24: ffff800014e73e20 # [ 253.144587] x23: 0000000000000019 x22: ffff0005c373c000 # [ 253.150157] x21: ffff8000119f2d88 x20: ffff8000114e1d38 # [ 253.155727] x19: ffff800014e70000 x18: 0000000000000000 # [ 253.161298] x17: 0000000000000000 x16: 0000000000000000 # [ 253.166868] x15: 0000000000000030 x14: ffffffffffffffff # [ 253.172438] x13: ffff800094e739ca x12: ffff800014e739d2 # [ 253.178008] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 253.183578] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 253.189148] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 253.194718] x5 : ffff800012541c88 x4 : ffff00063f77ec50 # [ 253.200288] x3 : 0000000000000000 x2 : 0000000000000000 # [ 253.205858] x1 : ffff0005c03e4980 x0 : ffff8000119f3848 # [ 253.211429] Call trace: # [ 253.214133] lkdtm_STACK_GUARD_PAGE_LEADING+0x34/0x58 # [ 253.219445] lkdtm_do_action+0x24/0x40 # [ 253.223450] direct_entry+0xd0/0x140 # [ 253.227283] full_proxy_write+0x68/0xbc # [ 253.231377] vfs_write+0xec/0x20c # [ 253.234948] ksys_write+0x70/0x100 # [ 253.238605] __arm64_sys_write+0x24/0x30 # [ 253.242788] el0_svc_common.constprop.0+0x84/0x1e0 # [ 253.247834] do_el0_svc+0x2c/0xa4 # [ 253.251406] el0_svc+0x20/0x30 # [ 253.254716] el0_sync_handler+0xb0/0xb4 # [ 253.258809] el0_sync+0x180/0x1c0 # [ 253.262383] Code: 91202000 97ffe068 b0003e00 91212000 (385ff261) # [ 253.268735] ---[ end trace 525ac0d05b8ecc49 ]--- # STACK_GUARD_PAGE_LEADING: saw 'call trace:': ok ok 12 selftests: lkdtm: STACK_GUARD_PAGE_LEADING.sh # selftests: lkdtm: STACK_GUARD_PAGE_TRAILING.sh <6>[ 254.720134] lkdtm: Performing direct entry STACK_GUARD_PAGE_TRAILING <6>[ 254.727169] lkdtm: attempting bad read from page above current stack <1>[ 254.733932] Unable to handle kernel paging request at virtual address ffff800014f6c000 <1>[ 254.742334] Mem abort info: <1>[ 254.745603] ESR = 0x96000007 <1>[ 254.748972] EC = 0x25: DABT (current EL), IL = 32 bits <1>[ 254.754572] SET = 0, FnV = 0 <1>[ 254.758123] EA = 0, S1PTW = 0 <1>[ 254.761699] Data abort info: <1>[ 254.764865] ISV = 0, ISS = 0x00000007 <1>[ 254.768987] CM = 0, WnR = 0 <1>[ 254.772236] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 254.779271] [ffff800014f6c000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000608158003, pte=0000000000000000 <0>[ 254.792246] Internal error: Oops: 96000007 [#4] PREEMPT SMP <4>[ 254.798078] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 254.851543] CPU: 0 PID: 1232 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 254.859541] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 254.866152] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 254.872426] pc : lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c <4>[ 254.878167] lr : lkdtm_STACK_GUARD_PAGE_TRAILING+0x2c/0x5c <4>[ 254.883906] sp : ffff800014f6bce0 <4>[ 254.887476] x29: ffff800014f6bce0 x28: ffff0005c9751880 <4>[ 254.893048] x27: 0000000000000000 x26: 0000000000000000 <4>[ 254.898619] x25: ffff8000114e1c88 x24: ffff800014f6be20 <4>[ 254.904190] x23: 000000000000001a x22: ffff0005c9a1b000 <4>[ 254.909761] x21: ffff8000119f2da8 x20: ffff8000114e1d48 <4>[ 254.915331] x19: ffff800014f6c000 x18: 0000000000000000 <4>[ 254.920901] x17: 0000000000000000 x16: 001fffffffffffff <4>[ 254.926472] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 254.932042] x13: ffff800094f6b9ca x12: ffff800014f6b9d2 <4>[ 254.937613] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 254.943183] x9 : ffff80001012cbc4 x8 : ffff0005c9752d20 <4>[ 254.948754] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 254.954324] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 254.959894] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 254.965465] x1 : ffff0005c9751880 x0 : ffff8000119f38c0 <4>[ 254.971036] Call trace: <4>[ 254.973740] lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c <4>[ 254.979138] lkdtm_do_action+0x24/0x40 <4>[ 254.983143] direct_entry+0xd0/0x140 <4>[ 254.986977] full_proxy_write+0x68/0xbc <4>[ 254.991070] vfs_write+0xec/0x20c <4>[ 254.994640] ksys_write+0x70/0x100 <4>[ 254.998297] __arm64_sys_write+0x24/0x30 <4>[ 255.002480] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 255.007526] do_el0_svc+0x2c/0xa4 <4>[ 255.011098] el0_svc+0x20/0x30 <4>[ 255.014408] el0_sync_handler+0xb0/0xb4 <4>[ 255.018501] el0_sync+0x180/0x1c0 <0>[ 255.022075] Code: 97ffe052 91401273 b0003e00 91230000 (39400261) <4>[ 255.028426] ---[ end trace 525ac0d05b8ecc4a ]--- # Segmentation fault # [ 254.720134] lkdtm: Performing direct entry STACK_GUARD_PAGE_TRAILING # [ 254.727169] lkdtm: attempting bad read from page above current stack # [ 254.733932] Unable to handle kernel paging request at virtual address ffff800014f6c000 # [ 254.742334] Mem abort info: # [ 254.745603] ESR = 0x96000007 # [ 254.748972] EC = 0x25: DABT (current EL), IL = 32 bits # [ 254.754572] SET = 0, FnV = 0 # [ 254.758123] EA = 0, S1PTW = 0 # [ 254.761699] Data abort info: # [ 254.764865] ISV = 0, ISS = 0x00000007 # [ 254.768987] CM = 0, WnR = 0 # [ 254.772236] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 254.779271] [ffff800014f6c000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000608158003, pte=0000000000000000 # [ 254.792246] Internal error: Oops: 96000007 [#4] PREEMPT SMP # [ 254.798078] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 254.851543] CPU: 0 PID: 1232 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 254.859541] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 254.866152] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 254.872426] pc : lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c # [ 254.878167] lr : lkdtm_STACK_GUARD_PAGE_TRAILING+0x2c/0x5c # [ 254.883906] sp : ffff800014f6bce0 # [ 254.887476] x29: ffff800014f6bce0 x28: ffff0005c9751880 # [ 254.893048] x27: 0000000000000000 x26: 0000000000000000 # [ 254.898619] x25: ffff8000114e1c88 x24: ffff800014f6be20 # [ 254.904190] x23: 000000000000001a x22: ffff0005c9a1b000 # [ 254.909761] x21: ffff8000119f2da8 x20: ffff8000114e1d48 # [ 254.915331] x19: ffff800014f6c000 x18: 0000000000000000 # [ 254.920901] x17: 0000000000000000 x16: 001fffffffffffff # [ 254.926472] x15: 0000000000000030 x14: ffffffffffffffff # [ 254.932042] x13: ffff800094f6b9ca x12: ffff800014f6b9d2 # [ 254.937613] x11: ffff80001256fea8 x10: 0000000000001440 # [ 254.943183] x9 : ffff80001012cbc4 x8 : ffff0005c9752d20 # [ 254.948754] x7 : 0000000000000000 x6 : ffff800012541000 # [ 254.954324] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 254.959894] x3 : 0000000000000000 x2 : 0000000000000000 # [ 254.965465] x1 : ffff0005c9751880 x0 : ffff8000119f38c0 # [ 254.971036] Call trace: # [ 254.973740] lkdtm_STACK_GUARD_PAGE_TRAILING+0x38/0x5c # [ 254.979138] lkdtm_do_action+0x24/0x40 # [ 254.983143] direct_entry+0xd0/0x140 # [ 254.986977] full_proxy_write+0x68/0xbc # [ 254.991070] vfs_write+0xec/0x20c # [ 254.994640] ksys_write+0x70/0x100 # [ 254.998297] __arm64_sys_write+0x24/0x30 # [ 255.002480] el0_svc_common.constprop.0+0x84/0x1e0 # [ 255.007526] do_el0_svc+0x2c/0xa4 # [ 255.011098] el0_svc+0x20/0x30 # [ 255.014408] el0_sync_handler+0xb0/0xb4 # [ 255.018501] el0_sync+0x180/0x1c0 # [ 255.022075] Code: 97ffe052 91401273 b0003e00 91230000 (39400261) # [ 255.028426] ---[ end trace 525ac0d05b8ecc4a ]--- # STACK_GUARD_PAGE_TRAILING: saw 'call trace:': ok ok 13 selftests: lkdtm: STACK_GUARD_PAGE_TRAILING.sh # selftests: lkdtm: UNSET_SMEP.sh <6>[ 256.519085] lkdtm: Performing direct entry UNSET_SMEP <3>[ 256.524469] lkdtm: XFAIL: this test is x86_64-only # [ 256.519085] lkdtm: Performing direct entry UNSET_SMEP # [ 256.524469] lkdtm: XFAIL: this test is x86_64-only # UNSET_SMEP: saw 'XFAIL': [SKIP] ok 14 selftests: lkdtm: UNSET_SMEP.sh # SKIP # selftests: lkdtm: DOUBLE_FAULT.sh <6>[ 257.210414] lkdtm: Performing direct entry DOUBLE_FAULT <3>[ 257.216094] lkdtm: XFAIL: this test is ia32-only # [ 257.210414] lkdtm: Performing direct entry DOUBLE_FAULT # [ 257.216094] lkdtm: XFAIL: this test is ia32-only # DOUBLE_FAULT: saw 'XFAIL': [SKIP] ok 15 selftests: lkdtm: DOUBLE_FAULT.sh # SKIP # selftests: lkdtm: CORRUPT_PAC.sh <6>[ 257.844702] lkdtm: Performing direct entry CORRUPT_PAC <3>[ 257.850275] lkdtm: FAIL: CPU lacks pointer authentication feature # [ 257.844702] lkdtm: Performing direct entry CORRUPT_PAC # [ 257.850275] lkdtm: FAIL: CPU lacks pointer authentication feature # CORRUPT_PAC: missing 'call trace:': [FAIL] not ok 16 selftests: lkdtm: CORRUPT_PAC.sh # exit=1 # selftests: lkdtm: UNALIGNED_LOAD_STORE_WRITE.sh <6>[ 258.523889] lkdtm: Performing direct entry UNALIGNED_LOAD_STORE_WRITE <3>[ 258.530851] lkdtm: XFAIL: arch has CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS # [ 258.523889] lkdtm: Performing direct entry UNALIGNED_LOAD_STORE_WRITE # [ 258.530851] lkdtm: XFAIL: arch has CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS # UNALIGNED_LOAD_STORE_WRITE: saw 'XFAIL': [SKIP] ok 17 selftests: lkdtm: UNALIGNED_LOAD_STORE_WRITE.sh # SKIP # selftests: lkdtm: OVERWRITE_ALLOCATION.sh # Skipping OVERWRITE_ALLOCATION: Corrupts memory on failure ok 18 selftests: lkdtm: OVERWRITE_ALLOCATION.sh # SKIP # selftests: lkdtm: WRITE_AFTER_FREE.sh # Skipping WRITE_AFTER_FREE: Corrupts memory on failure ok 19 selftests: lkdtm: WRITE_AFTER_FREE.sh # SKIP # selftests: lkdtm: READ_AFTER_FREE.sh <6>[ 259.758194] lkdtm: Performing direct entry READ_AFTER_FREE <6>[ 259.764129] lkdtm: Value in memory before free: 12345678 <6>[ 259.769770] lkdtm: Attempting bad read from freed memory <6>[ 259.775464] lkdtm: Memory was not poisoned # [ 259.758194] lkdtm: Performing direct entry READ_AFTER_FREE # [ 259.764129] lkdtm: Value in memory before free: 12345678 # [ 259.769770] lkdtm: Attempting bad read from freed memory # [ 259.775464] lkdtm: Memory was not poisoned # READ_AFTER_FREE: missing 'call trace:': [FAIL] not ok 20 selftests: lkdtm: READ_AFTER_FREE.sh # exit=1 # selftests: lkdtm: WRITE_BUDDY_AFTER_FREE.sh # Skipping WRITE_BUDDY_AFTER_FREE: Corrupts memory on failure ok 21 selftests: lkdtm: WRITE_BUDDY_AFTER_FREE.sh # SKIP # selftests: lkdtm: READ_BUDDY_AFTER_FREE.sh <6>[ 260.607674] lkdtm: Performing direct entry READ_BUDDY_AFTER_FREE <6>[ 260.614052] lkdtm: Value in memory before free: 12345678 <6>[ 260.619689] lkdtm: Attempting to read from freed memory <6>[ 260.625240] lkdtm: Buddy page was not poisoned # [ 260.607674] lkdtm: Performing direct entry READ_BUDDY_AFTER_FREE # [ 260.614052] lkdtm: Value in memory before free: 12345678 # [ 260.619689] lkdtm: Attempting to read from freed memory # [ 260.625240] lkdtm: Buddy page was not poisoned # READ_BUDDY_AFTER_FREE: missing 'call trace:': [FAIL] not ok 22 selftests: lkdtm: READ_BUDDY_AFTER_FREE.sh # exit=1 # selftests: lkdtm: SLAB_FREE_DOUBLE.sh <6>[ 261.272997] lkdtm: Performing direct entry SLAB_FREE_DOUBLE <6>[ 261.279069] lkdtm: Attempting double slab free ... # [ 261.272997] lkdtm: Performing direct entry SLAB_FREE_DOUBLE # [ 261.279069] lkdtm: Attempting double slab free ... # SLAB_FREE_DOUBLE: missing 'call trace:': [FAIL] not ok 23 selftests: lkdtm: SLAB_FREE_DOUBLE.sh # exit=1 # selftests: lkdtm: SLAB_FREE_CROSS.sh <6>[ 261.933590] lkdtm: Performing direct entry SLAB_FREE_CROSS <6>[ 261.939606] lkdtm: Attempting cross-cache slab free ... # [ 261.933590] lkdtm: Performing direct entry SLAB_FREE_CROSS # [ 261.939606] lkdtm: Attempting cross-cache slab free ... # SLAB_FREE_CROSS: missing 'call trace:': [FAIL] not ok 24 selftests: lkdtm: SLAB_FREE_CROSS.sh # exit=1 # selftests: lkdtm: SLAB_FREE_PAGE.sh <6>[ 262.596977] lkdtm: Performing direct entry SLAB_FREE_PAGE <6>[ 262.602759] lkdtm: Attempting non-Slab slab free ... # [ 262.596977] lkdtm: Performing direct entry SLAB_FREE_PAGE # [ 262.602759] lkdtm: Attempting non-Slab slab free ... # SLAB_FREE_PAGE: missing 'call trace:': [FAIL] not ok 25 selftests: lkdtm: SLAB_FREE_PAGE.sh # exit=1 # selftests: lkdtm: SOFTLOCKUP.sh # Skipping SOFTLOCKUP: Hangs the system ok 26 selftests: lkdtm: SOFTLOCKUP.sh # SKIP # selftests: lkdtm: HARDLOCKUP.sh # Skipping HARDLOCKUP: Hangs the system ok 27 selftests: lkdtm: HARDLOCKUP.sh # SKIP # selftests: lkdtm: SPINLOCKUP.sh # Skipping SPINLOCKUP: Hangs the system ok 28 selftests: lkdtm: SPINLOCKUP.sh # SKIP # selftests: lkdtm: HUNG_TASK.sh # Skipping HUNG_TASK: Hangs the system ok 29 selftests: lkdtm: HUNG_TASK.sh # SKIP # selftests: lkdtm: EXEC_DATA.sh <6>[ 264.054464] lkdtm: Performing direct entry EXEC_DATA <6>[ 264.059941] lkdtm: attempting ok execution at ffff800010a08040 <6>[ 264.066120] lkdtm: attempting bad execution at ffff80001347e630 <1>[ 264.072515] Unable to handle kernel execute from non-executable memory at virtual address ffff80001347e630 <1>[ 264.082523] Mem abort info: <1>[ 264.085722] ESR = 0x8600000f <1>[ 264.089179] EC = 0x21: IABT (current EL), IL = 32 bits <1>[ 264.094807] SET = 0, FnV = 0 <1>[ 264.098125] EA = 0, S1PTW = 0 <1>[ 264.101578] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 264.108574] [ffff80001347e630] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fff9003, pte=007800004b67e703 <0>[ 264.121401] Internal error: Oops: 8600000f [#5] PREEMPT SMP <4>[ 264.127233] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 264.180697] CPU: 1 PID: 1789 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 264.188694] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 264.195306] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 264.201578] pc : data_area+0x0/0x40 <4>[ 264.205329] lr : execute_location+0x84/0xa4 <4>[ 264.209766] sp : ffff8000159c3cd0 <4>[ 264.213336] x29: ffff8000159c3cd0 x28: ffff0005c3a5e200 <4>[ 264.218908] x27: 0000000000000000 x26: 0000000000000000 <4>[ 264.224479] x25: ffff8000114e1c88 x24: ffff8000159c3e20 <4>[ 264.230050] x23: 000000000000000a x22: ffff0005c4e8f000 <4>[ 264.235621] x21: 0000000000000001 x20: ffff800010a08040 <4>[ 264.241192] x19: ffff80001347e630 x18: 0000000000000001 <4>[ 264.246762] x17: 0000000000000000 x16: 0000000000000000 <4>[ 264.252333] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 264.257904] x13: ffff8000959c39ba x12: ffff8000159c39c3 <4>[ 264.263475] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 264.269045] x9 : ffff80001012cbc4 x8 : ffff0005c3a5f6a0 <4>[ 264.274616] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 264.280187] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 264.285757] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 264.291327] x1 : ffff0005c3a5e200 x0 : 0000000000000033 <4>[ 264.296898] Call trace: <4>[ 264.299602] data_area+0x0/0x40 <4>[ 264.303001] lkdtm_EXEC_DATA+0x24/0x30 <4>[ 264.307011] lkdtm_do_action+0x24/0x40 <4>[ 264.311014] direct_entry+0xd0/0x140 <4>[ 264.314848] full_proxy_write+0x68/0xbc <4>[ 264.318942] vfs_write+0xec/0x20c <4>[ 264.322512] ksys_write+0x70/0x100 <4>[ 264.326169] __arm64_sys_write+0x24/0x30 <4>[ 264.330352] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 264.335398] do_el0_svc+0x2c/0xa4 <4>[ 264.338970] el0_svc+0x20/0x30 <4>[ 264.342281] el0_sync_handler+0xb0/0xb4 <4>[ 264.346373] el0_sync+0x180/0x1c0 <0>[ 264.349947] Code: c64fb400 ffff0005 c64fb500 ffff0005 (aa1e03e9) <4>[ 264.356299] ---[ end trace 525ac0d05b8ecc4b ]--- # Segmentation fault # [ 264.054464] lkdtm: Performing direct entry EXEC_DATA # [ 264.059941] lkdtm: attempting ok execution at ffff800010a08040 # [ 264.066120] lkdtm: attempting bad execution at ffff80001347e630 # [ 264.072515] Unable to handle kernel execute from non-executable memory at virtual address ffff80001347e630 # [ 264.082523] Mem abort info: # [ 264.085722] ESR = 0x8600000f # [ 264.089179] EC = 0x21: IABT (current EL), IL = 32 bits # [ 264.094807] SET = 0, FnV = 0 # [ 264.098125] EA = 0, S1PTW = 0 # [ 264.101578] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 264.108574] [ffff80001347e630] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fff9003, pte=007800004b67e703 # [ 264.121401] Internal error: Oops: 8600000f [#5] PREEMPT SMP # [ 264.127233] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 264.180697] CPU: 1 PID: 1789 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 264.188694] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 264.195306] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 264.201578] pc : data_area+0x0/0x40 # [ 264.205329] lr : execute_location+0x84/0xa4 # [ 264.209766] sp : ffff8000159c3cd0 # [ 264.213336] x29: ffff8000159c3cd0 x28: ffff0005c3a5e200 # [ 264.218908] x27: 0000000000000000 x26: 0000000000000000 # [ 264.224479] x25: ffff8000114e1c88 x24: ffff8000159c3e20 # [ 264.230050] x23: 000000000000000a x22: ffff0005c4e8f000 # [ 264.235621] x21: 0000000000000001 x20: ffff800010a08040 # [ 264.241192] x19: ffff80001347e630 x18: 0000000000000001 # [ 264.246762] x17: 0000000000000000 x16: 0000000000000000 # [ 264.252333] x15: 0000000000000030 x14: ffffffffffffffff # [ 264.257904] x13: ffff8000959c39ba x12: ffff8000159c39c3 # [ 264.263475] x11: ffff80001256fea8 x10: 0000000000001440 # [ 264.269045] x9 : ffff80001012cbc4 x8 : ffff0005c3a5f6a0 # [ 264.274616] x7 : 0000000000000000 x6 : ffff800012541000 # [ 264.280187] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 264.285757] x3 : 0000000000000000 x2 : 0000000000000000 # [ 264.291327] x1 : ffff0005c3a5e200 x0 : 0000000000000033 # [ 264.296898] Call trace: # [ 264.299602] data_area+0x0/0x40 # [ 264.303001] lkdtm_EXEC_DATA+0x24/0x30 # [ 264.307011] lkdtm_do_action+0x24/0x40 # [ 264.311014] direct_entry+0xd0/0x140 # [ 264.314848] full_proxy_write+0x68/0xbc # [ 264.318942] vfs_write+0xec/0x20c # [ 264.322512] ksys_write+0x70/0x100 # [ 264.326169] __arm64_sys_write+0x24/0x30 # [ 264.330352] el0_svc_common.constprop.0+0x84/0x1e0 # [ 264.335398] do_el0_svc+0x2c/0xa4 # [ 264.338970] el0_svc+0x20/0x30 # [ 264.342281] el0_sync_handler+0xb0/0xb4 # [ 264.346373] el0_sync+0x180/0x1c0 # [ 264.349947] Code: c64fb400 ffff0005 c64fb500 ffff0005 (aa1e03e9) # [ 264.356299] ---[ end trace 525ac0d05b8ecc4b ]--- # EXEC_DATA: saw 'call trace:': ok ok 30 selftests: lkdtm: EXEC_DATA.sh # selftests: lkdtm: EXEC_STACK.sh <6>[ 265.818117] lkdtm: Performing direct entry EXEC_STACK <6>[ 265.823705] lkdtm: attempting ok execution at ffff800010a08040 <6>[ 265.829883] lkdtm: attempting bad execution at ffff800015a7bcc8 <1>[ 265.836210] Unable to handle kernel execute from non-executable memory at virtual address ffff800015a7bcc8 <1>[ 265.846261] Mem abort info: <1>[ 265.849707] ESR = 0x8600000f <1>[ 265.853092] EC = 0x21: IABT (current EL), IL = 32 bits <1>[ 265.858754] SET = 0, FnV = 0 <1>[ 265.862101] EA = 0, S1PTW = 0 <1>[ 265.865535] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 265.872702] [ffff800015a7bcc8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000608203003, pte=00680006060d2703 <0>[ 265.885525] Internal error: Oops: 8600000f [#6] PREEMPT SMP <4>[ 265.891357] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 265.944822] CPU: 0 PID: 1831 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 265.952820] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 265.959431] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 265.965700] pc : 0xffff800015a7bcc8 <4>[ 265.969454] lr : execute_location+0x84/0xa4 <4>[ 265.973891] sp : ffff800015a7bc80 <4>[ 265.977461] x29: ffff800015a7bc80 x28: ffff0005c7789880 <4>[ 265.983032] x27: 0000000000000000 x26: 0000000000000000 <4>[ 265.988604] x25: ffff8000114e1c88 x24: ffff800015a7be20 <4>[ 265.994175] x23: 000000000000000b x22: ffff0005c53cf000 <4>[ 265.999745] x21: 0000000000000001 x20: ffff800010a08040 <4>[ 266.005316] x19: ffff800015a7bcc8 x18: 0000000000000000 <4>[ 266.010886] x17: 0000000000000000 x16: 0000000000000000 <4>[ 266.016457] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 266.022027] x13: ffff800095a7b96a x12: ffff800015a7b972 <4>[ 266.027597] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 266.033168] x9 : ffff80001012cbc4 x8 : ffff0005c778ad20 <4>[ 266.038738] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 266.044308] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 266.049879] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 266.055449] x1 : ffff0005c7789880 x0 : 0000000000000033 <4>[ 266.061019] Call trace: <4>[ 266.063723] 0xffff800015a7bcc8 <4>[ 266.067121] lkdtm_EXEC_STACK+0x30/0x58 <4>[ 266.071216] lkdtm_do_action+0x24/0x40 <4>[ 266.075221] direct_entry+0xd0/0x140 <4>[ 266.079055] full_proxy_write+0x68/0xbc <4>[ 266.083149] vfs_write+0xec/0x20c <4>[ 266.086719] ksys_write+0x70/0x100 <4>[ 266.090377] __arm64_sys_write+0x24/0x30 <4>[ 266.094559] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 266.099606] do_el0_svc+0x2c/0xa4 <4>[ 266.103177] el0_svc+0x20/0x30 <4>[ 266.106487] el0_sync_handler+0xb0/0xb4 <4>[ 266.110580] el0_sync+0x180/0x1c0 <0>[ 266.114155] Code: 10a07104 ffff8000 15a7bd20 ffff8000 (aa1e03e9) <4>[ 266.120506] ---[ end trace 525ac0d05b8ecc4c ]--- # Segmentation fault # [ 265.818117] lkdtm: Performing direct entry EXEC_STACK # [ 265.823705] lkdtm: attempting ok execution at ffff800010a08040 # [ 265.829883] lkdtm: attempting bad execution at ffff800015a7bcc8 # [ 265.836210] Unable to handle kernel execute from non-executable memory at virtual address ffff800015a7bcc8 # [ 265.846261] Mem abort info: # [ 265.849707] ESR = 0x8600000f # [ 265.853092] EC = 0x21: IABT (current EL), IL = 32 bits # [ 265.858754] SET = 0, FnV = 0 # [ 265.862101] EA = 0, S1PTW = 0 # [ 265.865535] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 265.872702] [ffff800015a7bcc8] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000608203003, pte=00680006060d2703 # [ 265.885525] Internal error: Oops: 8600000f [#6] PREEMPT SMP # [ 265.891357] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 265.944822] CPU: 0 PID: 1831 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 265.952820] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 265.959431] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 265.965700] pc : 0xffff800015a7bcc8 # [ 265.969454] lr : execute_location+0x84/0xa4 # [ 265.973891] sp : ffff800015a7bc80 # [ 265.977461] x29: ffff800015a7bc80 x28: ffff0005c7789880 # [ 265.983032] x27: 0000000000000000 x26: 0000000000000000 # [ 265.988604] x25: ffff8000114e1c88 x24: ffff800015a7be20 # [ 265.994175] x23: 000000000000000b x22: ffff0005c53cf000 # [ 265.999745] x21: 0000000000000001 x20: ffff800010a08040 # [ 266.005316] x19: ffff800015a7bcc8 x18: 0000000000000000 # [ 266.010886] x17: 0000000000000000 x16: 0000000000000000 # [ 266.016457] x15: 0000000000000030 x14: ffffffffffffffff # [ 266.022027] x13: ffff800095a7b96a x12: ffff800015a7b972 # [ 266.027597] x11: ffff80001256fea8 x10: 0000000000001440 # [ 266.033168] x9 : ffff80001012cbc4 x8 : ffff0005c778ad20 # [ 266.038738] x7 : 0000000000000000 x6 : ffff800012541000 # [ 266.044308] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 266.049879] x3 : 0000000000000000 x2 : 0000000000000000 # [ 266.055449] x1 : ffff0005c7789880 x0 : 0000000000000033 # [ 266.061019] Call trace: # [ 266.063723] 0xffff800015a7bcc8 # [ 266.067121] lkdtm_EXEC_STACK+0x30/0x58 # [ 266.071216] lkdtm_do_action+0x24/0x40 # [ 266.075221] direct_entry+0xd0/0x140 # [ 266.079055] full_proxy_write+0x68/0xbc # [ 266.083149] vfs_write+0xec/0x20c # [ 266.086719] ksys_write+0x70/0x100 # [ 266.090377] __arm64_sys_write+0x24/0x30 # [ 266.094559] el0_svc_common.constprop.0+0x84/0x1e0 # [ 266.099606] do_el0_svc+0x2c/0xa4 # [ 266.103177] el0_svc+0x20/0x30 # [ 266.106487] el0_sync_handler+0xb0/0xb4 # [ 266.110580] el0_sync+0x180/0x1c0 # [ 266.114155] Code: 10a07104 ffff8000 15a7bd20 ffff8000 (aa1e03e9) # [ 266.120506] ---[ end trace 525ac0d05b8ecc4c ]--- # EXEC_STACK: saw 'call trace:': ok ok 31 selftests: lkdtm: EXEC_STACK.sh # selftests: lkdtm: EXEC_KMALLOC.sh <6>[ 267.881266] lkdtm: Performing direct entry EXEC_KMALLOC <6>[ 267.886994] lkdtm: attempting ok execution at ffff800010a08040 <6>[ 267.895072] lkdtm: attempting bad execution at ffff0005c9932c00 <1>[ 267.901799] Unable to handle kernel execute from non-executable memory at virtual address ffff0005c9932c00 <1>[ 267.911835] Mem abort info: <1>[ 267.914954] ESR = 0x8600000f <1>[ 267.918287] EC = 0x21: IABT (current EL), IL = 32 bits <1>[ 267.924195] SET = 0, FnV = 0 <1>[ 267.927601] EA = 0, S1PTW = 0 <1>[ 267.931046] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 267.938193] [ffff0005c9932c00] pgd=000000067fff8003, p4d=000000067fff8003, pud=000000067fc42003, pmd=000000067fbf5003, pte=0068000609932707 <0>[ 267.951270] Internal error: Oops: 8600000f [#7] PREEMPT SMP <4>[ 267.957104] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 268.010571] CPU: 0 PID: 1873 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 268.018568] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 268.025180] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 268.031446] pc : 0xffff0005c9932c00 <4>[ 268.035200] lr : execute_location+0x84/0xa4 <4>[ 268.039637] sp : ffff800015b23cc0 <4>[ 268.043207] x29: ffff800015b23cc0 x28: ffff0005c74f6200 <4>[ 268.048779] x27: 0000000000000000 x26: 0000000000000000 <4>[ 268.054350] x25: ffff8000114e1c88 x24: ffff800015b23e20 <4>[ 268.059921] x23: 000000000000000d x22: ffff0005c9774000 <4>[ 268.065492] x21: 0000000000000001 x20: ffff800010a08040 <4>[ 268.071063] x19: ffff0005c9932c00 x18: 0000000000000000 <4>[ 268.076633] x17: 0000000000000000 x16: 0000000000000000 <4>[ 268.082203] x15: 0000000000000000 x14: 0000000000000000 <4>[ 268.087774] x13: 0000000000000000 x12: 0000000000000000 <4>[ 268.093344] x11: 0000000000000000 x10: 0000000000001440 <4>[ 268.098914] x9 : ffff80001012cbc4 x8 : ffff0005c74f76a0 <4>[ 268.104484] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 268.110054] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 268.115624] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 268.121194] x1 : ffff0005c74f6200 x0 : 0000000000000033 <4>[ 268.126765] Call trace: <4>[ 268.129468] 0xffff0005c9932c00 <4>[ 268.132869] lkdtm_EXEC_KMALLOC+0x34/0x4c <4>[ 268.137134] lkdtm_do_action+0x24/0x40 <4>[ 268.141139] direct_entry+0xd0/0x140 <4>[ 268.144973] full_proxy_write+0x68/0xbc <4>[ 268.149068] vfs_write+0xec/0x20c <4>[ 268.152638] ksys_write+0x70/0x100 <4>[ 268.156294] __arm64_sys_write+0x24/0x30 <4>[ 268.160477] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 268.165524] do_el0_svc+0x2c/0xa4 <4>[ 268.169096] el0_svc+0x20/0x30 <4>[ 268.172406] el0_sync_handler+0xb0/0xb4 <4>[ 268.176499] el0_sync+0x180/0x1c0 <0>[ 268.180073] Code: 00000000 00000000 00000000 00000000 (aa1e03e9) <4>[ 268.186425] ---[ end trace 525ac0d05b8ecc4d ]--- # Segmentation fault # [ 267.881266] lkdtm: Performing direct entry EXEC_KMALLOC # [ 267.886994] lkdtm: attempting ok execution at ffff800010a08040 # [ 267.895072] lkdtm: attempting bad execution at ffff0005c9932c00 # [ 267.901799] Unable to handle kernel execute from non-executable memory at virtual address ffff0005c9932c00 # [ 267.911835] Mem abort info: # [ 267.914954] ESR = 0x8600000f # [ 267.918287] EC = 0x21: IABT (current EL), IL = 32 bits # [ 267.924195] SET = 0, FnV = 0 # [ 267.927601] EA = 0, S1PTW = 0 # [ 267.931046] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 267.938193] [ffff0005c9932c00] pgd=000000067fff8003, p4d=000000067fff8003, pud=000000067fc42003, pmd=000000067fbf5003, pte=0068000609932707 # [ 267.951270] Internal error: Oops: 8600000f [#7] PREEMPT SMP # [ 267.957104] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 268.010571] CPU: 0 PID: 1873 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 268.018568] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 268.025180] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 268.031446] pc : 0xffff0005c9932c00 # [ 268.035200] lr : execute_location+0x84/0xa4 # [ 268.039637] sp : ffff800015b23cc0 # [ 268.043207] x29: ffff800015b23cc0 x28: ffff0005c74f6200 # [ 268.048779] x27: 0000000000000000 x26: 0000000000000000 # [ 268.054350] x25: ffff8000114e1c88 x24: ffff800015b23e20 # [ 268.059921] x23: 000000000000000d x22: ffff0005c9774000 # [ 268.065492] x21: 0000000000000001 x20: ffff800010a08040 # [ 268.071063] x19: ffff0005c9932c00 x18: 0000000000000000 # [ 268.076633] x17: 0000000000000000 x16: 0000000000000000 # [ 268.082203] x15: 0000000000000000 x14: 0000000000000000 # [ 268.087774] x13: 0000000000000000 x12: 0000000000000000 # [ 268.093344] x11: 0000000000000000 x10: 0000000000001440 # [ 268.098914] x9 : ffff80001012cbc4 x8 : ffff0005c74f76a0 # [ 268.104484] x7 : 0000000000000000 x6 : ffff800012541000 # [ 268.110054] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 268.115624] x3 : 0000000000000000 x2 : 0000000000000000 # [ 268.121194] x1 : ffff0005c74f6200 x0 : 0000000000000033 # [ 268.126765] Call trace: # [ 268.129468] 0xffff0005c9932c00 # [ 268.132869] lkdtm_EXEC_KMALLOC+0x34/0x4c # [ 268.137134] lkdtm_do_action+0x24/0x40 # [ 268.141139] direct_entry+0xd0/0x140 # [ 268.144973] full_proxy_write+0x68/0xbc # [ 268.149068] vfs_write+0xec/0x20c # [ 268.152638] ksys_write+0x70/0x100 # [ 268.156294] __arm64_sys_write+0x24/0x30 # [ 268.160477] el0_svc_common.constprop.0+0x84/0x1e0 # [ 268.165524] do_el0_svc+0x2c/0xa4 # [ 268.169096] el0_svc+0x20/0x30 # [ 268.172406] el0_sync_handler+0xb0/0xb4 # [ 268.176499] el0_sync+0x180/0x1c0 # [ 268.180073] Code: 00000000 00000000 00000000 00000000 (aa1e03e9) # [ 268.186425] ---[ end trace 525ac0d05b8ecc4d ]--- # EXEC_KMALLOC: saw 'call trace:': ok ok 32 selftests: lkdtm: EXEC_KMALLOC.sh # selftests: lkdtm: EXEC_VMALLOC.sh <6>[ 269.738427] lkdtm: Performing direct entry EXEC_VMALLOC <6>[ 269.744091] lkdtm: attempting ok execution at ffff800010a08040 <6>[ 269.750367] lkdtm: attempting bad execution at ffff8000138ff000 <1>[ 269.756625] Unable to handle kernel execute from non-executable memory at virtual address ffff8000138ff000 <1>[ 269.766718] Mem abort info: <1>[ 269.769985] ESR = 0x8600000f <1>[ 269.773386] EC = 0x21: IABT (current EL), IL = 32 bits <1>[ 269.779044] SET = 0, FnV = 0 <1>[ 269.782363] EA = 0, S1PTW = 0 <1>[ 269.785810] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 269.792825] [ffff8000138ff000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=00000006009b5003, pte=0068000609650703 <0>[ 269.805648] Internal error: Oops: 8600000f [#8] PREEMPT SMP <4>[ 269.811480] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 269.864944] CPU: 1 PID: 1915 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 269.872942] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 269.879554] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 269.885822] pc : 0xffff8000138ff000 <4>[ 269.889577] lr : execute_location+0x84/0xa4 <4>[ 269.894014] sp : ffff800015bc3cc0 <4>[ 269.897584] x29: ffff800015bc3cc0 x28: ffff0005c994c980 <4>[ 269.903156] x27: 0000000000000000 x26: 0000000000000000 <4>[ 269.908727] x25: ffff8000114e1c88 x24: ffff800015bc3e20 <4>[ 269.914297] x23: 000000000000000d x22: ffff0005c9650000 <4>[ 269.919868] x21: 0000000000000001 x20: ffff800010a08040 <4>[ 269.925439] x19: ffff8000138ff000 x18: 0000000000000000 <4>[ 269.931009] x17: 0000000000000000 x16: 0000000000000000 <4>[ 269.936579] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 269.942149] x13: ffff800095bc39aa x12: ffff800015bc39b2 <4>[ 269.947719] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 269.953289] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 269.958859] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 269.964429] x5 : ffff800012541c88 x4 : ffff00063f77ec50 <4>[ 269.969999] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 269.975570] x1 : ffff0005c994c980 x0 : 0000000000000033 <4>[ 269.981140] Call trace: <4>[ 269.983844] 0xffff8000138ff000 <4>[ 269.987246] lkdtm_EXEC_VMALLOC+0x2c/0x44 <4>[ 269.991512] lkdtm_do_action+0x24/0x40 <4>[ 269.995516] direct_entry+0xd0/0x140 <4>[ 269.999350] full_proxy_write+0x68/0xbc <4>[ 270.003444] vfs_write+0xec/0x20c <4>[ 270.007015] ksys_write+0x70/0x100 <4>[ 270.010672] __arm64_sys_write+0x24/0x30 <4>[ 270.014854] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 270.019901] do_el0_svc+0x2c/0xa4 <4>[ 270.023473] el0_svc+0x20/0x30 <4>[ 270.026783] el0_sync_handler+0xb0/0xb4 <4>[ 270.030876] el0_sync+0x180/0x1c0 <0>[ 270.034455] Code: bad PC value <4>[ 270.037769] ---[ end trace 525ac0d05b8ecc4e ]--- # Segmentation fault # [ 269.738427] lkdtm: Performing direct entry EXEC_VMALLOC # [ 269.744091] lkdtm: attempting ok execution at ffff800010a08040 # [ 269.750367] lkdtm: attempting bad execution at ffff8000138ff000 # [ 269.756625] Unable to handle kernel execute from non-executable memory at virtual address ffff8000138ff000 # [ 269.766718] Mem abort info: # [ 269.769985] ESR = 0x8600000f # [ 269.773386] EC = 0x21: IABT (current EL), IL = 32 bits # [ 269.779044] SET = 0, FnV = 0 # [ 269.782363] EA = 0, S1PTW = 0 # [ 269.785810] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 269.792825] [ffff8000138ff000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=00000006009b5003, pte=0068000609650703 # [ 269.805648] Internal error: Oops: 8600000f [#8] PREEMPT SMP # [ 269.811480] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 269.864944] CPU: 1 PID: 1915 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 269.872942] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 269.879554] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 269.885822] pc : 0xffff8000138ff000 # [ 269.889577] lr : execute_location+0x84/0xa4 # [ 269.894014] sp : ffff800015bc3cc0 # [ 269.897584] x29: ffff800015bc3cc0 x28: ffff0005c994c980 # [ 269.903156] x27: 0000000000000000 x26: 0000000000000000 # [ 269.908727] x25: ffff8000114e1c88 x24: ffff800015bc3e20 # [ 269.914297] x23: 000000000000000d x22: ffff0005c9650000 # [ 269.919868] x21: 0000000000000001 x20: ffff800010a08040 # [ 269.925439] x19: ffff8000138ff000 x18: 0000000000000000 # [ 269.931009] x17: 0000000000000000 x16: 0000000000000000 # [ 269.936579] x15: 0000000000000030 x14: ffffffffffffffff # [ 269.942149] x13: ffff800095bc39aa x12: ffff800015bc39b2 # [ 269.947719] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 269.953289] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 269.958859] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 269.964429] x5 : ffff800012541c88 x4 : ffff00063f77ec50 # [ 269.969999] x3 : 0000000000000000 x2 : 0000000000000000 # [ 269.975570] x1 : ffff0005c994c980 x0 : 0000000000000033 # [ 269.981140] Call trace: # [ 269.983844] 0xffff8000138ff000 # [ 269.987246] lkdtm_EXEC_VMALLOC+0x2c/0x44 # [ 269.991512] lkdtm_do_action+0x24/0x40 # [ 269.995516] direct_entry+0xd0/0x140 # [ 269.999350] full_proxy_write+0x68/0xbc # [ 270.003444] vfs_write+0xec/0x20c # [ 270.007015] ksys_write+0x70/0x100 # [ 270.010672] __arm64_sys_write+0x24/0x30 # [ 270.014854] el0_svc_common.constprop.0+0x84/0x1e0 # [ 270.019901] do_el0_svc+0x2c/0xa4 # [ 270.023473] el0_svc+0x20/0x30 # [ 270.026783] el0_sync_handler+0xb0/0xb4 # [ 270.030876] el0_sync+0x180/0x1c0 # [ 270.034455] Code: bad PC value # [ 270.037769] ---[ end trace 525ac0d05b8ecc4e ]--- # EXEC_VMALLOC: saw 'call trace:': ok ok 33 selftests: lkdtm: EXEC_VMALLOC.sh # selftests: lkdtm: EXEC_RODATA.sh <6>[ 271.532323] lkdtm: Performing direct entry EXEC_RODATA <6>[ 271.537815] lkdtm: attempting ok execution at ffff800010a08040 <6>[ 271.545517] lkdtm: attempting bad execution at ffff8000114e2180 <1>[ 271.551875] Unable to handle kernel execute from non-executable memory at virtual address ffff8000114e2180 <1>[ 271.562010] Mem abort info: <1>[ 271.565143] ESR = 0x8600000e <1>[ 271.569023] EC = 0x21: IABT (current EL), IL = 32 bits <1>[ 271.574703] SET = 0, FnV = 0 <1>[ 271.578047] EA = 0, S1PTW = 0 <1>[ 271.581524] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 271.588573] [ffff8000114e2180] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 <0>[ 271.599625] Internal error: Oops: 8600000e [#9] PREEMPT SMP <4>[ 271.605458] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 271.658924] CPU: 0 PID: 1957 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 271.666921] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 271.673534] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 271.679807] pc : lkdtm_rodata_do_nothing+0x0/0x10 <4>[ 271.684772] lr : execute_location+0x84/0xa4 <4>[ 271.689210] sp : ffff800015ca3cd0 <4>[ 271.692780] x29: ffff800015ca3cd0 x28: ffff0005c8cac980 <4>[ 271.698351] x27: 0000000000000000 x26: 0000000000000000 <4>[ 271.703922] x25: ffff8000114e1c88 x24: ffff800015ca3e20 <4>[ 271.709493] x23: 000000000000000c x22: ffff0005c7791000 <4>[ 271.715064] x21: 0000000000000000 x20: ffff800010a08040 <4>[ 271.720634] x19: ffff8000114e2180 x18: 0000000000000000 <4>[ 271.726204] x17: 0000000000000000 x16: 0000000000000000 <4>[ 271.731774] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 271.737344] x13: ffff800095ca39ba x12: ffff800015ca39c2 <4>[ 271.742914] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 271.748485] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 271.754055] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 271.759625] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 <4>[ 271.765196] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 271.770766] x1 : ffff0005c8cac980 x0 : 0000000000000033 <4>[ 271.776337] Call trace: <4>[ 271.779040] lkdtm_rodata_do_nothing+0x0/0x10 <4>[ 271.783653] lkdtm_EXEC_RODATA+0x24/0x30 <4>[ 271.787835] lkdtm_do_action+0x24/0x40 <4>[ 271.791839] direct_entry+0xd0/0x140 <4>[ 271.795673] full_proxy_write+0x68/0xbc <4>[ 271.799767] vfs_write+0xec/0x20c <4>[ 271.803337] ksys_write+0x70/0x100 <4>[ 271.806994] __arm64_sys_write+0x24/0x30 <4>[ 271.811176] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 271.816222] do_el0_svc+0x2c/0xa4 <4>[ 271.819794] el0_svc+0x20/0x30 <4>[ 271.823104] el0_sync_handler+0xb0/0xb4 <4>[ 271.827197] el0_sync+0x180/0x1c0 <0>[ 271.830771] Code: 00000074 00000000 aa55aa55 00000000 (d503233f) <4>[ 271.837122] ---[ end trace 525ac0d05b8ecc4f ]--- # Segmentation fault # [ 271.532323] lkdtm: Performing direct entry EXEC_RODATA # [ 271.537815] lkdtm: attempting ok execution at ffff800010a08040 # [ 271.545517] lkdtm: attempting bad execution at ffff8000114e2180 # [ 271.551875] Unable to handle kernel execute from non-executable memory at virtual address ffff8000114e2180 # [ 271.562010] Mem abort info: # [ 271.565143] ESR = 0x8600000e # [ 271.569023] EC = 0x21: IABT (current EL), IL = 32 bits # [ 271.574703] SET = 0, FnV = 0 # [ 271.578047] EA = 0, S1PTW = 0 # [ 271.581524] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 271.588573] [ffff8000114e2180] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 # [ 271.599625] Internal error: Oops: 8600000e [#9] PREEMPT SMP # [ 271.605458] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 271.658924] CPU: 0 PID: 1957 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 271.666921] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 271.673534] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 271.679807] pc : lkdtm_rodata_do_nothing+0x0/0x10 # [ 271.684772] lr : execute_location+0x84/0xa4 # [ 271.689210] sp : ffff800015ca3cd0 # [ 271.692780] x29: ffff800015ca3cd0 x28: ffff0005c8cac980 # [ 271.698351] x27: 0000000000000000 x26: 0000000000000000 # [ 271.703922] x25: ffff8000114e1c88 x24: ffff800015ca3e20 # [ 271.709493] x23: 000000000000000c x22: ffff0005c7791000 # [ 271.715064] x21: 0000000000000000 x20: ffff800010a08040 # [ 271.720634] x19: ffff8000114e2180 x18: 0000000000000000 # [ 271.726204] x17: 0000000000000000 x16: 0000000000000000 # [ 271.731774] x15: 0000000000000030 x14: ffffffffffffffff # [ 271.737344] x13: ffff800095ca39ba x12: ffff800015ca39c2 # [ 271.742914] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 271.748485] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 271.754055] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 271.759625] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 # [ 271.765196] x3 : 0000000000000000 x2 : 0000000000000000 # [ 271.770766] x1 : ffff0005c8cac980 x0 : 0000000000000033 # [ 271.776337] Call trace: # [ 271.779040] lkdtm_rodata_do_nothing+0x0/0x10 # [ 271.783653] lkdtm_EXEC_RODATA+0x24/0x30 # [ 271.787835] lkdtm_do_action+0x24/0x40 # [ 271.791839] direct_entry+0xd0/0x140 # [ 271.795673] full_proxy_write+0x68/0xbc # [ 271.799767] vfs_write+0xec/0x20c # [ 271.803337] ksys_write+0x70/0x100 # [ 271.806994] __arm64_sys_write+0x24/0x30 # [ 271.811176] el0_svc_common.constprop.0+0x84/0x1e0 # [ 271.816222] do_el0_svc+0x2c/0xa4 # [ 271.819794] el0_svc+0x20/0x30 # [ 271.823104] el0_sync_handler+0xb0/0xb4 # [ 271.827197] el0_sync+0x180/0x1c0 # [ 271.830771] Code: 00000074 00000000 aa55aa55 00000000 (d503233f) # [ 271.837122] ---[ end trace 525ac0d05b8ecc4f ]--- # EXEC_RODATA: saw 'call trace:': ok ok 34 selftests: lkdtm: EXEC_RODATA.sh # selftests: lkdtm: EXEC_USERSPACE.sh <6>[ 273.282726] lkdtm: Performing direct entry EXEC_USERSPACE <6>[ 273.288680] lkdtm: attempting ok execution at ffff800010a08040 <6>[ 273.294907] lkdtm: attempting bad execution at 0000ffff7fff1000 <1>[ 273.301235] Unable to handle kernel execution of user memory at virtual address 0000ffff7fff1000 <1>[ 273.310394] Mem abort info: <1>[ 273.313751] ESR = 0x8600000f <1>[ 273.317153] EC = 0x21: IABT (current EL), IL = 32 bits <1>[ 273.322768] SET = 0, FnV = 0 <1>[ 273.326111] EA = 0, S1PTW = 0 <1>[ 273.329536] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006076c8000 <1>[ 273.336273] [0000ffff7fff1000] pgd=00000006082b8003, p4d=00000006082b8003, pud=00000006077ab003, pmd=0000000605b34003, pte=00a800060a4b8f43 <0>[ 273.349109] Internal error: Oops: 8600000f [#10] PREEMPT SMP <4>[ 273.355028] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 273.408493] CPU: 1 PID: 1999 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 273.416490] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 273.423102] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 273.429369] pc : 0xffff7fff1000 <4>[ 273.432774] lr : lkdtm_EXEC_USERSPACE+0xe0/0xf0 <4>[ 273.437559] sp : ffff800015d43cf0 <4>[ 273.441128] x29: ffff800015d43cf0 x28: ffff0005c0db6200 <4>[ 273.446700] x27: 0000000000000000 x26: 0000000000000000 <4>[ 273.452271] x25: ffff8000114e1c88 x24: ffff800015d43e20 <4>[ 273.457842] x23: 000000000000000f x22: ffff0005c3776000 <4>[ 273.463412] x21: ffff8000119f2f78 x20: ffff800010a08040 <4>[ 273.468983] x19: 0000ffff7fff1000 x18: 0000000000000000 <4>[ 273.474553] x17: 0000000000000000 x16: 0000000000000000 <4>[ 273.480123] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 273.485693] x13: ffff800095d439da x12: ffff800015d439e2 <4>[ 273.491263] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 273.496834] x9 : ffff80001012cbc4 x8 : ffff0005c0db76a0 <4>[ 273.502405] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 273.507975] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 273.513545] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 273.519114] x1 : ffff0005c0db6200 x0 : 0000000000000033 <4>[ 273.524685] Call trace: <4>[ 273.527387] 0xffff7fff1000 <4>[ 273.530438] lkdtm_do_action+0x24/0x40 <4>[ 273.534443] direct_entry+0xd0/0x140 <4>[ 273.538278] full_proxy_write+0x68/0xbc <4>[ 273.542372] vfs_write+0xec/0x20c <4>[ 273.545942] ksys_write+0x70/0x100 <4>[ 273.549599] __arm64_sys_write+0x24/0x30 <4>[ 273.553782] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 273.558828] do_el0_svc+0x2c/0xa4 <4>[ 273.562403] el0_svc+0x20/0x30 <4>[ 273.565713] el0_sync_handler+0xb0/0xb4 <4>[ 273.569805] el0_sync+0x180/0x1c0 <0>[ 273.573386] Code: bad PC value <4>[ 273.576699] ---[ end trace 525ac0d05b8ecc50 ]--- # Segmentation fault # [ 273.282726] lkdtm: Performing direct entry EXEC_USERSPACE # [ 273.288680] lkdtm: attempting ok execution at ffff800010a08040 # [ 273.294907] lkdtm: attempting bad execution at 0000ffff7fff1000 # [ 273.301235] Unable to handle kernel execution of user memory at virtual address 0000ffff7fff1000 # [ 273.310394] Mem abort info: # [ 273.313751] ESR = 0x8600000f # [ 273.317153] EC = 0x21: IABT (current EL), IL = 32 bits # [ 273.322768] SET = 0, FnV = 0 # [ 273.326111] EA = 0, S1PTW = 0 # [ 273.329536] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006076c8000 # [ 273.336273] [0000ffff7fff1000] pgd=00000006082b8003, p4d=00000006082b8003, pud=00000006077ab003, pmd=0000000605b34003, pte=00a800060a4b8f43 # [ 273.349109] Internal error: Oops: 8600000f [#10] PREEMPT SMP # [ 273.355028] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 273.408493] CPU: 1 PID: 1999 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 273.416490] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 273.423102] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 273.429369] pc : 0xffff7fff1000 # [ 273.432774] lr : lkdtm_EXEC_USERSPACE+0xe0/0xf0 # [ 273.437559] sp : ffff800015d43cf0 # [ 273.441128] x29: ffff800015d43cf0 x28: ffff0005c0db6200 # [ 273.446700] x27: 0000000000000000 x26: 0000000000000000 # [ 273.452271] x25: ffff8000114e1c88 x24: ffff800015d43e20 # [ 273.457842] x23: 000000000000000f x22: ffff0005c3776000 # [ 273.463412] x21: ffff8000119f2f78 x20: ffff800010a08040 # [ 273.468983] x19: 0000ffff7fff1000 x18: 0000000000000000 # [ 273.474553] x17: 0000000000000000 x16: 0000000000000000 # [ 273.480123] x15: 0000000000000030 x14: ffffffffffffffff # [ 273.485693] x13: ffff800095d439da x12: ffff800015d439e2 # [ 273.491263] x11: ffff80001256fea8 x10: 0000000000001440 # [ 273.496834] x9 : ffff80001012cbc4 x8 : ffff0005c0db76a0 # [ 273.502405] x7 : 0000000000000000 x6 : ffff800012541000 # [ 273.507975] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 273.513545] x3 : 0000000000000000 x2 : 0000000000000000 # [ 273.519114] x1 : ffff0005c0db6200 x0 : 0000000000000033 # [ 273.524685] Call trace: # [ 273.527387] 0xffff7fff1000 # [ 273.530438] lkdtm_do_action+0x24/0x40 # [ 273.534443] direct_entry+0xd0/0x140 # [ 273.538278] full_proxy_write+0x68/0xbc # [ 273.542372] vfs_write+0xec/0x20c # [ 273.545942] ksys_write+0x70/0x100 # [ 273.549599] __arm64_sys_write+0x24/0x30 # [ 273.553782] el0_svc_common.constprop.0+0x84/0x1e0 # [ 273.558828] do_el0_svc+0x2c/0xa4 # [ 273.562403] el0_svc+0x20/0x30 # [ 273.565713] el0_sync_handler+0xb0/0xb4 # [ 273.569805] el0_sync+0x180/0x1c0 # [ 273.573386] Code: bad PC value # [ 273.576699] ---[ end trace 525ac0d05b8ecc50 ]--- # EXEC_USERSPACE: saw 'call trace:': ok ok 35 selftests: lkdtm: EXEC_USERSPACE.sh # selftests: lkdtm: EXEC_NULL.sh <6>[ 275.321411] lkdtm: Performing direct entry EXEC_NULL <6>[ 275.326842] lkdtm: attempting ok execution at ffff800010a08040 <6>[ 275.332981] lkdtm: attempting bad execution at 0000000000000000 <1>[ 275.339236] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 <1>[ 275.348408] Mem abort info: <1>[ 275.351536] ESR = 0x86000004 <1>[ 275.354958] EC = 0x21: IABT (current EL), IL = 32 bits <1>[ 275.360766] SET = 0, FnV = 0 <1>[ 275.364259] EA = 0, S1PTW = 0 <1>[ 275.367757] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006041ae000 <1>[ 275.374541] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 <0>[ 275.381618] Internal error: Oops: 86000004 [#11] PREEMPT SMP <4>[ 275.387536] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 275.441001] CPU: 0 PID: 2041 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 275.448998] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 275.455610] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 275.461876] pc : 0x0 <4>[ 275.464328] lr : execute_location+0x84/0xa4 <4>[ 275.468765] sp : ffff800015e13cd0 <4>[ 275.472334] x29: ffff800015e13cd0 x28: ffff0005c3a5e200 <4>[ 275.477906] x27: 0000000000000000 x26: 0000000000000000 <4>[ 275.483477] x25: ffff8000114e1c88 x24: ffff800015e13e20 <4>[ 275.489048] x23: 000000000000000a x22: ffff0005c4ec9000 <4>[ 275.494618] x21: 0000000000000000 x20: ffff800010a08040 <4>[ 275.500189] x19: 0000000000000000 x18: 0000000000000000 <4>[ 275.505759] x17: 0000000000000000 x16: 0000000000000000 <4>[ 275.511329] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 275.516899] x13: ffff800095e139ba x12: ffff800015e139c2 <4>[ 275.522470] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 275.528040] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 275.533610] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 275.539180] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 <4>[ 275.544751] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 275.550320] x1 : ffff0005c3a5e200 x0 : 0000000000000033 <4>[ 275.555891] Call trace: <4>[ 275.558594] 0x0 <4>[ 275.560690] lkdtm_EXEC_NULL+0x20/0x2c <4>[ 275.564699] lkdtm_do_action+0x24/0x40 <4>[ 275.568703] direct_entry+0xd0/0x140 <4>[ 275.572537] full_proxy_write+0x68/0xbc <4>[ 275.576631] vfs_write+0xec/0x20c <4>[ 275.580201] ksys_write+0x70/0x100 <4>[ 275.583857] __arm64_sys_write+0x24/0x30 <4>[ 275.588041] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 275.593087] do_el0_svc+0x2c/0xa4 <4>[ 275.596659] el0_svc+0x20/0x30 <4>[ 275.599969] el0_sync_handler+0xb0/0xb4 <4>[ 275.604062] el0_sync+0x180/0x1c0 <0>[ 275.607641] Code: bad PC value <4>[ 275.610955] ---[ end trace 525ac0d05b8ecc51 ]--- # Segmentation fault # [ 275.321411] lkdtm: Performing direct entry EXEC_NULL # [ 275.326842] lkdtm: attempting ok execution at ffff800010a08040 # [ 275.332981] lkdtm: attempting bad execution at 0000000000000000 # [ 275.339236] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 # [ 275.348408] Mem abort info: # [ 275.351536] ESR = 0x86000004 # [ 275.354958] EC = 0x21: IABT (current EL), IL = 32 bits # [ 275.360766] SET = 0, FnV = 0 # [ 275.364259] EA = 0, S1PTW = 0 # [ 275.367757] user pgtable: 4k pages, 48-bit VAs, pgdp=00000006041ae000 # [ 275.374541] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 # [ 275.381618] Internal error: Oops: 86000004 [#11] PREEMPT SMP # [ 275.387536] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 275.441001] CPU: 0 PID: 2041 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 275.448998] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 275.455610] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 275.461876] pc : 0x0 # [ 275.464328] lr : execute_location+0x84/0xa4 # [ 275.468765] sp : ffff800015e13cd0 # [ 275.472334] x29: ffff800015e13cd0 x28: ffff0005c3a5e200 # [ 275.477906] x27: 0000000000000000 x26: 0000000000000000 # [ 275.483477] x25: ffff8000114e1c88 x24: ffff800015e13e20 # [ 275.489048] x23: 000000000000000a x22: ffff0005c4ec9000 # [ 275.494618] x21: 0000000000000000 x20: ffff800010a08040 # [ 275.500189] x19: 0000000000000000 x18: 0000000000000000 # [ 275.505759] x17: 0000000000000000 x16: 0000000000000000 # [ 275.511329] x15: 0000000000000030 x14: ffffffffffffffff # [ 275.516899] x13: ffff800095e139ba x12: ffff800015e139c2 # [ 275.522470] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 275.528040] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 275.533610] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 275.539180] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 # [ 275.544751] x3 : 0000000000000000 x2 : 0000000000000000 # [ 275.550320] x1 : ffff0005c3a5e200 x0 : 0000000000000033 # [ 275.555891] Call trace: # [ 275.558594] 0x0 # [ 275.560690] lkdtm_EXEC_NULL+0x20/0x2c # [ 275.564699] lkdtm_do_action+0x24/0x40 # [ 275.568703] direct_entry+0xd0/0x140 # [ 275.572537] full_proxy_write+0x68/0xbc # [ 275.576631] vfs_write+0xec/0x20c # [ 275.580201] ksys_write+0x70/0x100 # [ 275.583857] __arm64_sys_write+0x24/0x30 # [ 275.588041] el0_svc_common.constprop.0+0x84/0x1e0 # [ 275.593087] do_el0_svc+0x2c/0xa4 # [ 275.596659] el0_svc+0x20/0x30 # [ 275.599969] el0_sync_handler+0xb0/0xb4 # [ 275.604062] el0_sync+0x180/0x1c0 # [ 275.607641] Code: bad PC value # [ 275.610955] ---[ end trace 525ac0d05b8ecc51 ]--- # EXEC_NULL: saw 'call trace:': ok ok 36 selftests: lkdtm: EXEC_NULL.sh # selftests: lkdtm: ACCESS_USERSPACE.sh <6>[ 277.364515] lkdtm: Performing direct entry ACCESS_USERSPACE <6>[ 277.370553] lkdtm: attempting bad read at 0000ffffbe3ab000 <3>[ 277.376359] lkdtm: FAIL: survived bad read <6>[ 277.380785] lkdtm: attempting bad write at 0000ffffbe3ab000 <3>[ 277.386655] lkdtm: FAIL: survived bad write # [ 277.364515] lkdtm: Performing direct entry ACCESS_USERSPACE # [ 277.370553] lkdtm: attempting bad read at 0000ffffbe3ab000 # [ 277.376359] lkdtm: FAIL: survived bad read # [ 277.380785] lkdtm: attempting bad write at 0000ffffbe3ab000 # [ 277.386655] lkdtm: FAIL: survived bad write # ACCESS_USERSPACE: missing 'call trace:': [FAIL] not ok 37 selftests: lkdtm: ACCESS_USERSPACE.sh # exit=1 # selftests: lkdtm: ACCESS_NULL.sh <6>[ 278.074013] lkdtm: Performing direct entry ACCESS_NULL <6>[ 278.079654] lkdtm: attempting bad read at 0000000000000000 <1>[ 278.085512] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 <1>[ 278.094876] Mem abort info: <1>[ 278.097956] ESR = 0x96000004 <1>[ 278.101395] EC = 0x25: DABT (current EL), IL = 32 bits <1>[ 278.107017] SET = 0, FnV = 0 <1>[ 278.110337] EA = 0, S1PTW = 0 <1>[ 278.113968] Data abort info: <1>[ 278.117165] ISV = 0, ISS = 0x00000004 <1>[ 278.121282] CM = 0, WnR = 0 <1>[ 278.124539] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000605f3e000 <1>[ 278.131309] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 <0>[ 278.138488] Internal error: Oops: 96000004 [#12] PREEMPT SMP <4>[ 278.144407] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 278.197873] CPU: 0 PID: 2117 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 278.205871] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 278.212483] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 278.218755] pc : lkdtm_ACCESS_NULL+0x34/0x78 <4>[ 278.223281] lr : lkdtm_ACCESS_NULL+0x2c/0x78 <4>[ 278.227805] sp : ffff800015f6bcf0 <4>[ 278.231375] x29: ffff800015f6bcf0 x28: ffff0005c9949880 <4>[ 278.236946] x27: 0000000000000000 x26: 0000000000000000 <4>[ 278.242516] x25: ffff8000114e1c88 x24: ffff800015f6be20 <4>[ 278.248087] x23: 000000000000000c x22: ffff0005c60f8000 <4>[ 278.253658] x21: ffff8000119f2fb0 x20: 0000000000000000 <4>[ 278.259228] x19: 0000000000000027 x18: 0000000000000001 <4>[ 278.264798] x17: 0000000000000000 x16: 0000000000000000 <4>[ 278.270368] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 278.275939] x13: ffff800095f6b9da x12: ffff800015f6b9e3 <4>[ 278.281509] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 278.287079] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 278.292649] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 278.298219] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 278.303789] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 278.309359] x1 : 000000000000c0de x0 : ffff8000119f4000 <4>[ 278.314929] Call trace: <4>[ 278.317633] lkdtm_ACCESS_NULL+0x34/0x78 <4>[ 278.321817] lkdtm_do_action+0x24/0x40 <4>[ 278.325822] direct_entry+0xd0/0x140 <4>[ 278.329655] full_proxy_write+0x68/0xbc <4>[ 278.333749] vfs_write+0xec/0x20c <4>[ 278.337319] ksys_write+0x70/0x100 <4>[ 278.340976] __arm64_sys_write+0x24/0x30 <4>[ 278.345158] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 278.350204] do_el0_svc+0x2c/0xa4 <4>[ 278.353776] el0_svc+0x20/0x30 <4>[ 278.357086] el0_sync_handler+0xb0/0xb4 <4>[ 278.361179] el0_sync+0x180/0x1c0 <0>[ 278.364753] Code: 91008000 97ffdf5f d2981bc1 d0003e00 (f9400293) <4>[ 278.371104] ---[ end trace 525ac0d05b8ecc52 ]--- # Segmentation fault # [ 278.074013] lkdtm: Performing direct entry ACCESS_NULL # [ 278.079654] lkdtm: attempting bad read at 0000000000000000 # [ 278.085512] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000 # [ 278.094876] Mem abort info: # [ 278.097956] ESR = 0x96000004 # [ 278.101395] EC = 0x25: DABT (current EL), IL = 32 bits # [ 278.107017] SET = 0, FnV = 0 # [ 278.110337] EA = 0, S1PTW = 0 # [ 278.113968] Data abort info: # [ 278.117165] ISV = 0, ISS = 0x00000004 # [ 278.121282] CM = 0, WnR = 0 # [ 278.124539] user pgtable: 4k pages, 48-bit VAs, pgdp=0000000605f3e000 # [ 278.131309] [0000000000000000] pgd=0000000000000000, p4d=0000000000000000 # [ 278.138488] Internal error: Oops: 96000004 [#12] PREEMPT SMP # [ 278.144407] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 278.197873] CPU: 0 PID: 2117 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 278.205871] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 278.212483] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 278.218755] pc : lkdtm_ACCESS_NULL+0x34/0x78 # [ 278.223281] lr : lkdtm_ACCESS_NULL+0x2c/0x78 # [ 278.227805] sp : ffff800015f6bcf0 # [ 278.231375] x29: ffff800015f6bcf0 x28: ffff0005c9949880 # [ 278.236946] x27: 0000000000000000 x26: 0000000000000000 # [ 278.242516] x25: ffff8000114e1c88 x24: ffff800015f6be20 # [ 278.248087] x23: 000000000000000c x22: ffff0005c60f8000 # [ 278.253658] x21: ffff8000119f2fb0 x20: 0000000000000000 # [ 278.259228] x19: 0000000000000027 x18: 0000000000000001 # [ 278.264798] x17: 0000000000000000 x16: 0000000000000000 # [ 278.270368] x15: 0000000000000030 x14: ffffffffffffffff # [ 278.275939] x13: ffff800095f6b9da x12: ffff800015f6b9e3 # [ 278.281509] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 278.287079] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 278.292649] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 278.298219] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 278.303789] x3 : 0000000000000000 x2 : 0000000000000000 # [ 278.309359] x1 : 000000000000c0de x0 : ffff8000119f4000 # [ 278.314929] Call trace: # [ 278.317633] lkdtm_ACCESS_NULL+0x34/0x78 # [ 278.321817] lkdtm_do_action+0x24/0x40 # [ 278.325822] direct_entry+0xd0/0x140 # [ 278.329655] full_proxy_write+0x68/0xbc # [ 278.333749] vfs_write+0xec/0x20c # [ 278.337319] ksys_write+0x70/0x100 # [ 278.340976] __arm64_sys_write+0x24/0x30 # [ 278.345158] el0_svc_common.constprop.0+0x84/0x1e0 # [ 278.350204] do_el0_svc+0x2c/0xa4 # [ 278.353776] el0_svc+0x20/0x30 # [ 278.357086] el0_sync_handler+0xb0/0xb4 # [ 278.361179] el0_sync+0x180/0x1c0 # [ 278.364753] Code: 91008000 97ffdf5f d2981bc1 d0003e00 (f9400293) # [ 278.371104] ---[ end trace 525ac0d05b8ecc52 ]--- # ACCESS_NULL: saw 'call trace:': ok ok 38 selftests: lkdtm: ACCESS_NULL.sh # selftests: lkdtm: WRITE_RO.sh <6>[ 280.158372] lkdtm: Performing direct entry WRITE_RO <6>[ 280.163659] lkdtm: attempting bad rodata write at ffff8000114e2178 <1>[ 280.170182] Unable to handle kernel write to read-only memory at virtual address ffff8000114e2178 <1>[ 280.179487] Mem abort info: <1>[ 280.182566] ESR = 0x9600004e <1>[ 280.185959] EC = 0x25: DABT (current EL), IL = 32 bits <1>[ 280.191637] SET = 0, FnV = 0 <1>[ 280.195330] EA = 0, S1PTW = 0 <1>[ 280.198741] Data abort info: <1>[ 280.201937] ISV = 0, ISS = 0x0000004e <1>[ 280.206067] CM = 0, WnR = 1 <1>[ 280.209319] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 280.216511] [ffff8000114e2178] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 <0>[ 280.227506] Internal error: Oops: 9600004e [#13] PREEMPT SMP <4>[ 280.233425] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 280.286890] CPU: 0 PID: 2163 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 280.294888] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 280.301499] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 280.307774] pc : lkdtm_WRITE_RO+0x44/0x5c <4>[ 280.312039] lr : lkdtm_WRITE_RO+0x2c/0x5c <4>[ 280.316303] sp : ffff800016073cf0 <4>[ 280.319872] x29: ffff800016073cf0 x28: ffff0005c03e6200 <4>[ 280.325444] x27: 0000000000000000 x26: 0000000000000000 <4>[ 280.331015] x25: ffff8000114e1c88 x24: ffff800016073e20 <4>[ 280.336586] x23: 0000000000000009 x22: ffff0005c4eae000 <4>[ 280.342157] x21: ffff8000119f2fc0 x20: ffff8000114e1f08 <4>[ 280.347728] x19: ffff8000114e2000 x18: 0000000000000000 <4>[ 280.353298] x17: 0000000000000000 x16: 0000000000000000 <4>[ 280.358868] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 280.364439] x13: ffff8000960739da x12: ffff8000160739e2 <4>[ 280.370009] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 280.375580] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 280.381150] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 280.386720] x5 : ffff800012541c88 x4 : ffff00063f77ec50 <4>[ 280.392291] x3 : 0000000000000000 x2 : 00000000abcd1234 <4>[ 280.397861] x1 : 000000000198b861 x0 : ffff8000119f3f10 <4>[ 280.403432] Call trace: <4>[ 280.406136] lkdtm_WRITE_RO+0x44/0x5c <4>[ 280.410060] lkdtm_do_action+0x24/0x40 <4>[ 280.414065] direct_entry+0xd0/0x140 <4>[ 280.417899] full_proxy_write+0x68/0xbc <4>[ 280.421993] vfs_write+0xec/0x20c <4>[ 280.425563] ksys_write+0x70/0x100 <4>[ 280.429220] __arm64_sys_write+0x24/0x30 <4>[ 280.433402] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 280.438449] do_el0_svc+0x2c/0xa4 <4>[ 280.442021] el0_svc+0x20/0x30 <4>[ 280.445332] el0_sync_handler+0xb0/0xb4 <4>[ 280.449424] el0_sync+0x180/0x1c0 <0>[ 280.452998] Code: f2b579a2 b0003e00 ca020021 913c4000 (f900be61) <4>[ 280.459350] ---[ end trace 525ac0d05b8ecc53 ]--- # Segmentation fault # [ 280.158372] lkdtm: Performing direct entry WRITE_RO # [ 280.163659] lkdtm: attempting bad rodata write at ffff8000114e2178 # [ 280.170182] Unable to handle kernel write to read-only memory at virtual address ffff8000114e2178 # [ 280.179487] Mem abort info: # [ 280.182566] ESR = 0x9600004e # [ 280.185959] EC = 0x25: DABT (current EL), IL = 32 bits # [ 280.191637] SET = 0, FnV = 0 # [ 280.195330] EA = 0, S1PTW = 0 # [ 280.198741] Data abort info: # [ 280.201937] ISV = 0, ISS = 0x0000004e # [ 280.206067] CM = 0, WnR = 1 # [ 280.209319] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 280.216511] [ffff8000114e2178] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0060000049600781 # [ 280.227506] Internal error: Oops: 9600004e [#13] PREEMPT SMP # [ 280.233425] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 280.286890] CPU: 0 PID: 2163 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 280.294888] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 280.301499] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 280.307774] pc : lkdtm_WRITE_RO+0x44/0x5c # [ 280.312039] lr : lkdtm_WRITE_RO+0x2c/0x5c # [ 280.316303] sp : ffff800016073cf0 # [ 280.319872] x29: ffff800016073cf0 x28: ffff0005c03e6200 # [ 280.325444] x27: 0000000000000000 x26: 0000000000000000 # [ 280.331015] x25: ffff8000114e1c88 x24: ffff800016073e20 # [ 280.336586] x23: 0000000000000009 x22: ffff0005c4eae000 # [ 280.342157] x21: ffff8000119f2fc0 x20: ffff8000114e1f08 # [ 280.347728] x19: ffff8000114e2000 x18: 0000000000000000 # [ 280.353298] x17: 0000000000000000 x16: 0000000000000000 # [ 280.358868] x15: 0000000000000030 x14: ffffffffffffffff # [ 280.364439] x13: ffff8000960739da x12: ffff8000160739e2 # [ 280.370009] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 280.375580] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 280.381150] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 280.386720] x5 : ffff800012541c88 x4 : ffff00063f77ec50 # [ 280.392291] x3 : 0000000000000000 x2 : 00000000abcd1234 # [ 280.397861] x1 : 000000000198b861 x0 : ffff8000119f3f10 # [ 280.403432] Call trace: # [ 280.406136] lkdtm_WRITE_RO+0x44/0x5c # [ 280.410060] lkdtm_do_action+0x24/0x40 # [ 280.414065] direct_entry+0xd0/0x140 # [ 280.417899] full_proxy_write+0x68/0xbc # [ 280.421993] vfs_write+0xec/0x20c # [ 280.425563] ksys_write+0x70/0x100 # [ 280.429220] __arm64_sys_write+0x24/0x30 # [ 280.433402] el0_svc_common.constprop.0+0x84/0x1e0 # [ 280.438449] do_el0_svc+0x2c/0xa4 # [ 280.442021] el0_svc+0x20/0x30 # [ 280.445332] el0_sync_handler+0xb0/0xb4 # [ 280.449424] el0_sync+0x180/0x1c0 # [ 280.452998] Code: f2b579a2 b0003e00 ca020021 913c4000 (f900be61) # [ 280.459350] ---[ end trace 525ac0d05b8ecc53 ]--- # WRITE_RO: saw 'call trace:': ok ok 39 selftests: lkdtm: WRITE_RO.sh # selftests: lkdtm: WRITE_RO_AFTER_INIT.sh <6>[ 282.026072] lkdtm: Performing direct entry WRITE_RO_AFTER_INIT <6>[ 282.032409] lkdtm: attempting bad ro_after_init write at ffff800011ac5650 <1>[ 282.039563] Unable to handle kernel write to read-only memory at virtual address ffff800011ac5650 <1>[ 282.048946] Mem abort info: <1>[ 282.052069] ESR = 0x9600004f <1>[ 282.055510] EC = 0x25: DABT (current EL), IL = 32 bits <1>[ 282.061109] SET = 0, FnV = 0 <1>[ 282.064658] EA = 0, S1PTW = 0 <1>[ 282.068124] Data abort info: <1>[ 282.071286] ISV = 0, ISS = 0x0000004f <1>[ 282.075403] CM = 0, WnR = 1 <1>[ 282.078636] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 282.085667] [ffff800011ac5650] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffc003, pte=0060000049cc5783 <0>[ 282.098607] Internal error: Oops: 9600004f [#14] PREEMPT SMP <4>[ 282.104526] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 282.157993] CPU: 0 PID: 2208 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 282.165990] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 282.172603] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 282.178875] pc : lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 <4>[ 282.184096] lr : lkdtm_WRITE_RO_AFTER_INIT+0x50/0x80 <4>[ 282.189314] sp : ffff800016123cf0 <4>[ 282.192883] x29: ffff800016123cf0 x28: ffff0005c994b100 <4>[ 282.198455] x27: 0000000000000000 x26: 0000000000000000 <4>[ 282.204026] x25: ffff8000114e1c88 x24: ffff800016123e20 <4>[ 282.209597] x23: 0000000000000014 x22: ffff0005c7b57000 <4>[ 282.215168] x21: ffff8000119f2fd0 x20: ffff8000114e1f18 <4>[ 282.220739] x19: ffff800011ac5000 x18: 0000000000000001 <4>[ 282.226309] x17: 0000000000000000 x16: 0000000000000000 <4>[ 282.231880] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 282.237450] x13: ffff8000961239da x12: ffff8000161239e3 <4>[ 282.243020] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 282.248591] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 282.254161] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 282.259732] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 282.265302] x3 : 0000000000000000 x2 : 00000000abcd1234 <4>[ 282.270872] x1 : 00000000fe67479e x0 : ffff8000119f3f10 <4>[ 282.276443] Call trace: <4>[ 282.279147] lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 <4>[ 282.284025] lkdtm_do_action+0x24/0x40 <4>[ 282.288030] direct_entry+0xd0/0x140 <4>[ 282.291864] full_proxy_write+0x68/0xbc <4>[ 282.295958] vfs_write+0xec/0x20c <4>[ 282.299528] ksys_write+0x70/0x100 <4>[ 282.303185] __arm64_sys_write+0x24/0x30 <4>[ 282.307367] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 282.312413] do_el0_svc+0x2c/0xa4 <4>[ 282.315985] el0_svc+0x20/0x30 <4>[ 282.319296] el0_sync_handler+0xb0/0xb4 <4>[ 282.323389] el0_sync+0x180/0x1c0 <0>[ 282.326963] Code: f2b579a2 b0003e00 ca020021 913c4000 (f9032a61) <4>[ 282.333314] ---[ end trace 525ac0d05b8ecc54 ]--- # Segmentation fault # [ 282.026072] lkdtm: Performing direct entry WRITE_RO_AFTER_INIT # [ 282.032409] lkdtm: attempting bad ro_after_init write at ffff800011ac5650 # [ 282.039563] Unable to handle kernel write to read-only memory at virtual address ffff800011ac5650 # [ 282.048946] Mem abort info: # [ 282.052069] ESR = 0x9600004f # [ 282.055510] EC = 0x25: DABT (current EL), IL = 32 bits # [ 282.061109] SET = 0, FnV = 0 # [ 282.064658] EA = 0, S1PTW = 0 # [ 282.068124] Data abort info: # [ 282.071286] ISV = 0, ISS = 0x0000004f # [ 282.075403] CM = 0, WnR = 1 # [ 282.078636] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 282.085667] [ffff800011ac5650] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffc003, pte=0060000049cc5783 # [ 282.098607] Internal error: Oops: 9600004f [#14] PREEMPT SMP # [ 282.104526] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 282.157993] CPU: 0 PID: 2208 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 282.165990] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 282.172603] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 282.178875] pc : lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 # [ 282.184096] lr : lkdtm_WRITE_RO_AFTER_INIT+0x50/0x80 # [ 282.189314] sp : ffff800016123cf0 # [ 282.192883] x29: ffff800016123cf0 x28: ffff0005c994b100 # [ 282.198455] x27: 0000000000000000 x26: 0000000000000000 # [ 282.204026] x25: ffff8000114e1c88 x24: ffff800016123e20 # [ 282.209597] x23: 0000000000000014 x22: ffff0005c7b57000 # [ 282.215168] x21: ffff8000119f2fd0 x20: ffff8000114e1f18 # [ 282.220739] x19: ffff800011ac5000 x18: 0000000000000001 # [ 282.226309] x17: 0000000000000000 x16: 0000000000000000 # [ 282.231880] x15: 0000000000000030 x14: ffffffffffffffff # [ 282.237450] x13: ffff8000961239da x12: ffff8000161239e3 # [ 282.243020] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 282.248591] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 282.254161] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 282.259732] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 282.265302] x3 : 0000000000000000 x2 : 00000000abcd1234 # [ 282.270872] x1 : 00000000fe67479e x0 : ffff8000119f3f10 # [ 282.276443] Call trace: # [ 282.279147] lkdtm_WRITE_RO_AFTER_INIT+0x68/0x80 # [ 282.284025] lkdtm_do_action+0x24/0x40 # [ 282.288030] direct_entry+0xd0/0x140 # [ 282.291864] full_proxy_write+0x68/0xbc # [ 282.295958] vfs_write+0xec/0x20c # [ 282.299528] ksys_write+0x70/0x100 # [ 282.303185] __arm64_sys_write+0x24/0x30 # [ 282.307367] el0_svc_common.constprop.0+0x84/0x1e0 # [ 282.312413] do_el0_svc+0x2c/0xa4 # [ 282.315985] el0_svc+0x20/0x30 # [ 282.319296] el0_sync_handler+0xb0/0xb4 # [ 282.323389] el0_sync+0x180/0x1c0 # [ 282.326963] Code: f2b579a2 b0003e00 ca020021 913c4000 (f9032a61) # [ 282.333314] ---[ end trace 525ac0d05b8ecc54 ]--- # WRITE_RO_AFTER_INIT: saw 'call trace:': ok ok 40 selftests: lkdtm: WRITE_RO_AFTER_INIT.sh # selftests: lkdtm: WRITE_KERN.sh <6>[ 284.077076] lkdtm: Performing direct entry WRITE_KERN <6>[ 284.082497] lkdtm: attempting bad 8562404 byte write at ffff800011232724 <1>[ 284.089534] Unable to handle kernel write to read-only memory at virtual address ffff800011232724 <1>[ 284.098709] Mem abort info: <1>[ 284.101881] ESR = 0x9600004f <1>[ 284.105286] EC = 0x25: DABT (current EL), IL = 32 bits <1>[ 284.111055] SET = 0, FnV = 0 <1>[ 284.114379] EA = 0, S1PTW = 0 <1>[ 284.117835] Data abort info: <1>[ 284.121228] ISV = 0, ISS = 0x0000004f <1>[ 284.125357] CM = 0, WnR = 1 <1>[ 284.128612] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 284.135603] [ffff800011232724] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffd003, pte=0050000049432783 <0>[ 284.148726] Internal error: Oops: 9600004f [#15] PREEMPT SMP <4>[ 284.154655] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 284.208199] CPU: 0 PID: 2253 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 284.216200] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 284.222816] pstate: 20000005 (nzCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 284.229093] pc : __memcpy+0x110/0x180 <4>[ 284.233021] lr : lkdtm_WRITE_KERN+0x54/0x88 <4>[ 284.237462] sp : ffff800016223ce0 <4>[ 284.241035] x29: ffff800016223ce0 x28: ffff0005c74f6200 <4>[ 284.246613] x27: 0000000000000000 x26: 0000000000000000 <4>[ 284.252190] x25: ffff8000114e1c88 x24: ffff800016223e20 <4>[ 284.257766] x23: 000000000000000b x22: ffff0005c0d50000 <4>[ 284.263342] x21: 000000000082a6e4 x20: ffff800010a08040 <4>[ 284.268918] x19: ffff800011232724 x18: 0000000000000001 <4>[ 284.274494] x17: 0000000000000000 x16: 0000000000000000 <4>[ 284.280070] x15: 0000000000000030 x14: f9000fe097e4fd7a <4>[ 284.285646] x13: f9402c00910003fd x12: 52819801d2800802 <4>[ 284.291222] x11: a9be7bfdf00085c0 x10: d503233fd503201f <4>[ 284.296798] x9 : aa1e03e9d65f03c0 x8 : d50323bfd503233f <4>[ 284.302374] x7 : d503201faa1e03e9 x6 : ffff800011232724 <4>[ 284.307951] x5 : ffff800012541c88 x4 : 0000000000000000 <4>[ 284.313527] x3 : 0000000000000000 x2 : 000000000082a664 <4>[ 284.319103] x1 : ffff800010a08080 x0 : ffff800011232724 <4>[ 284.324680] Call trace: <4>[ 284.327388] __memcpy+0x110/0x180 <4>[ 284.330968] lkdtm_do_action+0x24/0x40 <4>[ 284.334976] direct_entry+0xd0/0x140 <4>[ 284.338813] full_proxy_write+0x68/0xbc <4>[ 284.342911] vfs_write+0xec/0x20c <4>[ 284.346485] ksys_write+0x70/0x100 <4>[ 284.350145] __arm64_sys_write+0x24/0x30 <4>[ 284.354332] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 284.359383] do_el0_svc+0x2c/0xa4 <4>[ 284.362959] el0_svc+0x20/0x30 <4>[ 284.366273] el0_sync_handler+0xb0/0xb4 <4>[ 284.370370] el0_sync+0x180/0x1c0 <0>[ 284.373950] Code: a8c12027 a8c12829 a8c1302b a8c1382d (a88120c7) <4>[ 284.380305] ---[ end trace 525ac0d05b8ecc55 ]--- # Segmentation fault # [ 284.077076] lkdtm: Performing direct entry WRITE_KERN # [ 284.082497] lkdtm: attempting bad 8562404 byte write at ffff800011232724 # [ 284.089534] Unable to handle kernel write to read-only memory at virtual address ffff800011232724 # [ 284.098709] Mem abort info: # [ 284.101881] ESR = 0x9600004f # [ 284.105286] EC = 0x25: DABT (current EL), IL = 32 bits # [ 284.111055] SET = 0, FnV = 0 # [ 284.114379] EA = 0, S1PTW = 0 # [ 284.117835] Data abort info: # [ 284.121228] ISV = 0, ISS = 0x0000004f # [ 284.125357] CM = 0, WnR = 1 # [ 284.128612] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 284.135603] [ffff800011232724] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=000000067fffd003, pte=0050000049432783 # [ 284.148726] Internal error: Oops: 9600004f [#15] PREEMPT SMP # [ 284.154655] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 284.208199] CPU: 0 PID: 2253 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 284.216200] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 284.222816] pstate: 20000005 (nzCv daif -PAN -UAO -TCO BTYPE=--) # [ 284.229093] pc : __memcpy+0x110/0x180 # [ 284.233021] lr : lkdtm_WRITE_KERN+0x54/0x88 # [ 284.237462] sp : ffff800016223ce0 # [ 284.241035] x29: ffff800016223ce0 x28: ffff0005c74f6200 # [ 284.246613] x27: 0000000000000000 x26: 0000000000000000 # [ 284.252190] x25: ffff8000114e1c88 x24: ffff800016223e20 # [ 284.257766] x23: 000000000000000b x22: ffff0005c0d50000 # [ 284.263342] x21: 000000000082a6e4 x20: ffff800010a08040 # [ 284.268918] x19: ffff800011232724 x18: 0000000000000001 # [ 284.274494] x17: 0000000000000000 x16: 0000000000000000 # [ 284.280070] x15: 0000000000000030 x14: f9000fe097e4fd7a # [ 284.285646] x13: f9402c00910003fd x12: 52819801d2800802 # [ 284.291222] x11: a9be7bfdf00085c0 x10: d503233fd503201f # [ 284.296798] x9 : aa1e03e9d65f03c0 x8 : d50323bfd503233f # [ 284.302374] x7 : d503201faa1e03e9 x6 : ffff800011232724 # [ 284.307951] x5 : ffff800012541c88 x4 : 0000000000000000 # [ 284.313527] x3 : 0000000000000000 x2 : 000000000082a664 # [ 284.319103] x1 : ffff800010a08080 x0 : ffff800011232724 # [ 284.324680] Call trace: # [ 284.327388] __memcpy+0x110/0x180 # [ 284.330968] lkdtm_do_action+0x24/0x40 # [ 284.334976] direct_entry+0xd0/0x140 # [ 284.338813] full_proxy_write+0x68/0xbc # [ 284.342911] vfs_write+0xec/0x20c # [ 284.346485] ksys_write+0x70/0x100 # [ 284.350145] __arm64_sys_write+0x24/0x30 # [ 284.354332] el0_svc_common.constprop.0+0x84/0x1e0 # [ 284.359383] do_el0_svc+0x2c/0xa4 # [ 284.362959] el0_svc+0x20/0x30 # [ 284.366273] el0_sync_handler+0xb0/0xb4 # [ 284.370370] el0_sync+0x180/0x1c0 # [ 284.373950] Code: a8c12027 a8c12829 a8c1302b a8c1382d (a88120c7) # [ 284.380305] ---[ end trace 525ac0d05b8ecc55 ]--- # WRITE_KERN: saw 'call trace:': ok ok 41 selftests: lkdtm: WRITE_KERN.sh # selftests: lkdtm: REFCOUNT_INC_OVERFLOW.sh <6>[ 286.138906] lkdtm: Performing direct entry REFCOUNT_INC_OVERFLOW <6>[ 286.145365] lkdtm: attempting good refcount_inc() without overflow <6>[ 286.151959] lkdtm: attempting bad refcount_inc() overflow <4>[ 286.157855] ------------[ cut here ]------------ <4>[ 286.162879] refcount_t: saturated; leaking memory. <4>[ 286.168050] WARNING: CPU: 2 PID: 2298 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 <4>[ 286.176747] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 286.230340] CPU: 2 PID: 2298 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 286.238341] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 286.244958] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 286.251225] pc : refcount_warn_saturate+0x74/0x144 <4>[ 286.256276] lr : refcount_warn_saturate+0x74/0x144 <4>[ 286.261325] sp : ffff8000162d3cd0 <4>[ 286.264898] x29: ffff8000162d3cd0 x28: ffff0005c3a58000 <4>[ 286.270477] x27: 0000000000000000 x26: 0000000000000000 <4>[ 286.276056] x25: ffff8000114e1c88 x24: ffff8000162d3e20 <4>[ 286.281634] x23: 0000000000000016 x22: ffff0005c8fba000 <4>[ 286.287213] x21: ffff8000119f2ff8 x20: ffff8000114e1f38 <4>[ 286.292791] x19: 000000000000002b x18: 0000000000000000 <4>[ 286.298369] x17: 0000000000000000 x16: 0000000000000000 <4>[ 286.303948] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 286.309526] x13: ffff8000962d397a x12: ffff8000162d3982 <4>[ 286.315105] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 286.320683] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 286.326261] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 286.331840] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 286.337418] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 286.342997] x1 : 0000000000000000 x0 : ffff0005c3a58000 <4>[ 286.348576] Call trace: <4>[ 286.351284] refcount_warn_saturate+0x74/0x144 <4>[ 286.355993] __refcount_add.constprop.0+0x7c/0x90 <4>[ 286.360965] lkdtm_REFCOUNT_INC_OVERFLOW+0x70/0xa0 <4>[ 286.366017] lkdtm_do_action+0x24/0x40 <4>[ 286.370026] direct_entry+0xd0/0x140 <4>[ 286.373864] full_proxy_write+0x68/0xbc <4>[ 286.377964] vfs_write+0xec/0x20c <4>[ 286.381539] ksys_write+0x70/0x100 <4>[ 286.385201] __arm64_sys_write+0x24/0x30 <4>[ 286.389389] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 286.394441] do_el0_svc+0x2c/0xa4 <4>[ 286.398018] el0_svc+0x20/0x30 <4>[ 286.401334] el0_sync_handler+0xb0/0xb4 <4>[ 286.405433] el0_sync+0x180/0x1c0 <4>[ 286.409007] irq event stamp: 0 <4>[ 286.412328] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 286.418861] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 286.427299] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 286.435736] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 286.442261] ---[ end trace 525ac0d05b8ecc56 ]--- <6>[ 286.447299] lkdtm: Overflow detected: saturated # [ 286.138906] lkdtm: Performing direct entry REFCOUNT_INC_OVERFLOW # [ 286.145365] lkdtm: attempting good refcount_inc() without overflow # [ 286.151959] lkdtm: attempting bad refcount_inc() overflow # [ 286.157855] ------------[ cut here ]------------ # [ 286.162879] refcount_t: saturated; leaking memory. # [ 286.168050] WARNING: CPU: 2 PID: 2298 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 286.176747] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 286.230340] CPU: 2 PID: 2298 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 286.238341] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 286.244958] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 286.251225] pc : refcount_warn_saturate+0x74/0x144 # [ 286.256276] lr : refcount_warn_saturate+0x74/0x144 # [ 286.261325] sp : ffff8000162d3cd0 # [ 286.264898] x29: ffff8000162d3cd0 x28: ffff0005c3a58000 # [ 286.270477] x27: 0000000000000000 x26: 0000000000000000 # [ 286.276056] x25: ffff8000114e1c88 x24: ffff8000162d3e20 # [ 286.281634] x23: 0000000000000016 x22: ffff0005c8fba000 # [ 286.287213] x21: ffff8000119f2ff8 x20: ffff8000114e1f38 # [ 286.292791] x19: 000000000000002b x18: 0000000000000000 # [ 286.298369] x17: 0000000000000000 x16: 0000000000000000 # [ 286.303948] x15: 0000000000000030 x14: ffffffffffffffff # [ 286.309526] x13: ffff8000962d397a x12: ffff8000162d3982 # [ 286.315105] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 286.320683] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 286.326261] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 286.331840] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 286.337418] x3 : 0000000000000000 x2 : 0000000000000000 # [ 286.342997] x1 : 0000000000000000 x0 : ffff0005c3a58000 # [ 286.348576] Call trace: # [ 286.351284] refcount_warn_saturate+0x74/0x144 # [ 286.355993] __refcount_add.constprop.0+0x7c/0x90 # [ 286.360965] lkdtm_REFCOUNT_INC_OVERFLOW+0x70/0xa0 # [ 286.366017] lkdtm_do_action+0x24/0x40 # [ 286.370026] direct_entry+0xd0/0x140 # [ 286.373864] full_proxy_write+0x68/0xbc # [ 286.377964] vfs_write+0xec/0x20c # [ 286.381539] ksys_write+0x70/0x100 # [ 286.385201] __arm64_sys_write+0x24/0x30 # [ 286.389389] el0_svc_common.constprop.0+0x84/0x1e0 # [ 286.394441] do_el0_svc+0x2c/0xa4 # [ 286.398018] el0_svc+0x20/0x30 # [ 286.401334] el0_sync_handler+0xb0/0xb4 # [ 286.405433] el0_sync+0x180/0x1c0 # [ 286.409007] irq event stamp: 0 # [ 286.412328] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 286.418861] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 286.427299] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 286.435736] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 286.442261] ---[ end trace 525ac0d05b8ecc56 ]--- # [ 286.447299] lkdtm: Overflow detected: saturated # REFCOUNT_INC_OVERFLOW: saw 'call trace:': ok ok 42 selftests: lkdtm: REFCOUNT_INC_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_ADD_OVERFLOW.sh <6>[ 287.828535] lkdtm: Performing direct entry REFCOUNT_ADD_OVERFLOW <6>[ 287.835023] lkdtm: attempting good refcount_add() without overflow <6>[ 287.841591] lkdtm: attempting bad refcount_add() overflow <4>[ 287.847449] ------------[ cut here ]------------ <4>[ 287.852456] refcount_t: saturated; leaking memory. <4>[ 287.857657] WARNING: CPU: 3 PID: 2330 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 <4>[ 287.866355] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 287.919950] CPU: 3 PID: 2330 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 287.927951] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 287.934567] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 287.940834] pc : refcount_warn_saturate+0x74/0x144 <4>[ 287.945885] lr : refcount_warn_saturate+0x74/0x144 <4>[ 287.950934] sp : ffff800016363cd0 <4>[ 287.954507] x29: ffff800016363cd0 x28: ffff0005c994c980 <4>[ 287.960086] x27: 0000000000000000 x26: 0000000000000000 <4>[ 287.965664] x25: ffff8000114e1c88 x24: ffff800016363e20 <4>[ 287.971243] x23: 0000000000000016 x22: ffff0005c60ec000 <4>[ 287.976821] x21: ffff8000119f3010 x20: ffff8000114e1f48 <4>[ 287.982399] x19: 000000000000002c x18: 0000000000000000 <4>[ 287.987978] x17: 0000000000000000 x16: 0000000000000000 <4>[ 287.993555] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 287.999134] x13: ffff80009636397a x12: ffff800016363982 <4>[ 288.004712] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 288.010291] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 288.015870] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 288.021448] x5 : ffff800012541c88 x4 : ffff00063f77ec50 <4>[ 288.027026] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 288.032604] x1 : 0000000000000000 x0 : ffff0005c994c980 <4>[ 288.038183] Call trace: <4>[ 288.040891] refcount_warn_saturate+0x74/0x144 <4>[ 288.045600] __refcount_add.constprop.0+0x7c/0x90 <4>[ 288.050573] lkdtm_REFCOUNT_ADD_OVERFLOW+0x7c/0xac <4>[ 288.055624] lkdtm_do_action+0x24/0x40 <4>[ 288.059633] direct_entry+0xd0/0x140 <4>[ 288.063471] full_proxy_write+0x68/0xbc <4>[ 288.067571] vfs_write+0xec/0x20c <4>[ 288.071146] ksys_write+0x70/0x100 <4>[ 288.074807] __arm64_sys_write+0x24/0x30 <4>[ 288.078996] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 288.084048] do_el0_svc+0x2c/0xa4 <4>[ 288.087627] el0_svc+0x20/0x30 <4>[ 288.090942] el0_sync_handler+0xb0/0xb4 <4>[ 288.095040] el0_sync+0x180/0x1c0 <4>[ 288.098614] irq event stamp: 0 <4>[ 288.101934] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 288.108467] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 288.116905] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 288.125342] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 288.131867] ---[ end trace 525ac0d05b8ecc57 ]--- <6>[ 288.137035] lkdtm: Overflow detected: saturated # [ 287.828535] lkdtm: Performing direct entry REFCOUNT_ADD_OVERFLOW # [ 287.835023] lkdtm: attempting good refcount_add() without overflow # [ 287.841591] lkdtm: attempting bad refcount_add() overflow # [ 287.847449] ------------[ cut here ]------------ # [ 287.852456] refcount_t: saturated; leaking memory. # [ 287.857657] WARNING: CPU: 3 PID: 2330 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 287.866355] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 287.919950] CPU: 3 PID: 2330 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 287.927951] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 287.934567] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 287.940834] pc : refcount_warn_saturate+0x74/0x144 # [ 287.945885] lr : refcount_warn_saturate+0x74/0x144 # [ 287.950934] sp : ffff800016363cd0 # [ 287.954507] x29: ffff800016363cd0 x28: ffff0005c994c980 # [ 287.960086] x27: 0000000000000000 x26: 0000000000000000 # [ 287.965664] x25: ffff8000114e1c88 x24: ffff800016363e20 # [ 287.971243] x23: 0000000000000016 x22: ffff0005c60ec000 # [ 287.976821] x21: ffff8000119f3010 x20: ffff8000114e1f48 # [ 287.982399] x19: 000000000000002c x18: 0000000000000000 # [ 287.987978] x17: 0000000000000000 x16: 0000000000000000 # [ 287.993555] x15: 0000000000000030 x14: ffffffffffffffff # [ 287.999134] x13: ffff80009636397a x12: ffff800016363982 # [ 288.004712] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 288.010291] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 288.015870] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 288.021448] x5 : ffff800012541c88 x4 : ffff00063f77ec50 # [ 288.027026] x3 : 0000000000000000 x2 : 0000000000000000 # [ 288.032604] x1 : 0000000000000000 x0 : ffff0005c994c980 # [ 288.038183] Call trace: # [ 288.040891] refcount_warn_saturate+0x74/0x144 # [ 288.045600] __refcount_add.constprop.0+0x7c/0x90 # [ 288.050573] lkdtm_REFCOUNT_ADD_OVERFLOW+0x7c/0xac # [ 288.055624] lkdtm_do_action+0x24/0x40 # [ 288.059633] direct_entry+0xd0/0x140 # [ 288.063471] full_proxy_write+0x68/0xbc # [ 288.067571] vfs_write+0xec/0x20c # [ 288.071146] ksys_write+0x70/0x100 # [ 288.074807] __arm64_sys_write+0x24/0x30 # [ 288.078996] el0_svc_common.constprop.0+0x84/0x1e0 # [ 288.084048] do_el0_svc+0x2c/0xa4 # [ 288.087627] el0_svc+0x20/0x30 # [ 288.090942] el0_sync_handler+0xb0/0xb4 # [ 288.095040] el0_sync+0x180/0x1c0 # [ 288.098614] irq event stamp: 0 # [ 288.101934] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 288.108467] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 288.116905] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 288.125342] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 288.131867] ---[ end trace 525ac0d05b8ecc57 ]--- # [ 288.137035] lkdtm: Overflow detected: saturated # REFCOUNT_ADD_OVERFLOW: saw 'call trace:': ok ok 43 selftests: lkdtm: REFCOUNT_ADD_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh <6>[ 289.592271] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_OVERFLOW <6>[ 289.599649] lkdtm: attempting bad refcount_inc_not_zero() overflow <4>[ 289.606244] ------------[ cut here ]------------ <4>[ 289.611354] refcount_t: saturated; leaking memory. <4>[ 289.616623] WARNING: CPU: 5 PID: 2362 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 <4>[ 289.625321] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 289.678916] CPU: 5 PID: 2362 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 289.686917] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 289.693533] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 289.699801] pc : refcount_warn_saturate+0xc8/0x144 <4>[ 289.704851] lr : refcount_warn_saturate+0xc8/0x144 <4>[ 289.709900] sp : ffff800016403cb0 <4>[ 289.713473] x29: ffff800016403cb0 x28: ffff0005c778e200 <4>[ 289.719053] x27: 0000000000000000 x26: 0000000000000000 <4>[ 289.724631] x25: ffff8000114e1c88 x24: ffff800016403e20 <4>[ 289.730209] x23: 000000000000001f x22: ffff0005c41ad000 <4>[ 289.735788] x21: 0000000000000001 x20: 000000007fffffff <4>[ 289.741366] x19: ffff800016403d04 x18: 0000000000000000 <4>[ 289.746944] x17: 0000000000000000 x16: 0000000000000000 <4>[ 289.752523] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 289.758101] x13: ffff80009640395a x12: ffff800016403962 <4>[ 289.763680] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 289.769258] x9 : ffff80001012cbc4 x8 : ffff0005c778f6a0 <4>[ 289.774837] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 289.780415] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 289.785993] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 289.791572] x1 : 0000000000000000 x0 : ffff0005c778e200 <4>[ 289.797151] Call trace: <4>[ 289.799859] refcount_warn_saturate+0xc8/0x144 <4>[ 289.804571] __refcount_add_not_zero.constprop.0+0x98/0xb4 <4>[ 289.810319] lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW+0x48/0x8c <4>[ 289.816155] lkdtm_do_action+0x24/0x40 <4>[ 289.820164] direct_entry+0xd0/0x140 <4>[ 289.824002] full_proxy_write+0x68/0xbc <4>[ 289.828101] vfs_write+0xec/0x20c <4>[ 289.831676] ksys_write+0x70/0x100 <4>[ 289.835338] __arm64_sys_write+0x24/0x30 <4>[ 289.839527] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 289.844579] do_el0_svc+0x2c/0xa4 <4>[ 289.848157] el0_svc+0x20/0x30 <4>[ 289.851473] el0_sync_handler+0xb0/0xb4 <4>[ 289.855570] el0_sync+0x180/0x1c0 <4>[ 289.859145] irq event stamp: 0 <4>[ 289.862466] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 289.868999] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 289.877437] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 289.885874] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 289.892399] ---[ end trace 525ac0d05b8ecc58 ]--- <6>[ 289.897372] lkdtm: Overflow detected: saturated # [ 289.592271] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_OVERFLOW # [ 289.599649] lkdtm: attempting bad refcount_inc_not_zero() overflow # [ 289.606244] ------------[ cut here ]------------ # [ 289.611354] refcount_t: saturated; leaking memory. # [ 289.616623] WARNING: CPU: 5 PID: 2362 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 289.625321] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 289.678916] CPU: 5 PID: 2362 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 289.686917] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 289.693533] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 289.699801] pc : refcount_warn_saturate+0xc8/0x144 # [ 289.704851] lr : refcount_warn_saturate+0xc8/0x144 # [ 289.709900] sp : ffff800016403cb0 # [ 289.713473] x29: ffff800016403cb0 x28: ffff0005c778e200 # [ 289.719053] x27: 0000000000000000 x26: 0000000000000000 # [ 289.724631] x25: ffff8000114e1c88 x24: ffff800016403e20 # [ 289.730209] x23: 000000000000001f x22: ffff0005c41ad000 # [ 289.735788] x21: 0000000000000001 x20: 000000007fffffff # [ 289.741366] x19: ffff800016403d04 x18: 0000000000000000 # [ 289.746944] x17: 0000000000000000 x16: 0000000000000000 # [ 289.752523] x15: 0000000000000030 x14: ffffffffffffffff # [ 289.758101] x13: ffff80009640395a x12: ffff800016403962 # [ 289.763680] x11: ffff80001256fea8 x10: 0000000000001440 # [ 289.769258] x9 : ffff80001012cbc4 x8 : ffff0005c778f6a0 # [ 289.774837] x7 : 0000000000000000 x6 : ffff800012541000 # [ 289.780415] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 289.785993] x3 : 0000000000000000 x2 : 0000000000000000 # [ 289.791572] x1 : 0000000000000000 x0 : ffff0005c778e200 # [ 289.797151] Call trace: # [ 289.799859] refcount_warn_saturate+0xc8/0x144 # [ 289.804571] __refcount_add_not_zero.constprop.0+0x98/0xb4 # [ 289.810319] lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW+0x48/0x8c # [ 289.816155] lkdtm_do_action+0x24/0x40 # [ 289.820164] direct_entry+0xd0/0x140 # [ 289.824002] full_proxy_write+0x68/0xbc # [ 289.828101] vfs_write+0xec/0x20c # [ 289.831676] ksys_write+0x70/0x100 # [ 289.835338] __arm64_sys_write+0x24/0x30 # [ 289.839527] el0_svc_common.constprop.0+0x84/0x1e0 # [ 289.844579] do_el0_svc+0x2c/0xa4 # [ 289.848157] el0_svc+0x20/0x30 # [ 289.851473] el0_sync_handler+0xb0/0xb4 # [ 289.855570] el0_sync+0x180/0x1c0 # [ 289.859145] irq event stamp: 0 # [ 289.862466] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 289.868999] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 289.877437] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 289.885874] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 289.892399] ---[ end trace 525ac0d05b8ecc58 ]--- # [ 289.897372] lkdtm: Overflow detected: saturated # REFCOUNT_INC_NOT_ZERO_OVERFLOW: saw 'call trace:': ok ok 44 selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh <6>[ 290.962591] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_OVERFLOW <6>[ 290.969875] lkdtm: attempting bad refcount_add_not_zero() overflow <4>[ 290.976458] ------------[ cut here ]------------ <4>[ 290.981499] refcount_t: saturated; leaking memory. <4>[ 290.986759] WARNING: CPU: 2 PID: 2394 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 <4>[ 290.995458] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 291.049053] CPU: 2 PID: 2394 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 291.057054] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 291.063670] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 291.069938] pc : refcount_warn_saturate+0xc8/0x144 <4>[ 291.074988] lr : refcount_warn_saturate+0xc8/0x144 <4>[ 291.080037] sp : ffff80001648bcb0 <4>[ 291.083611] x29: ffff80001648bcb0 x28: ffff0005c760e200 <4>[ 291.089190] x27: 0000000000000000 x26: 0000000000000000 <4>[ 291.094768] x25: ffff8000114e1c88 x24: ffff80001648be20 <4>[ 291.100347] x23: 000000000000001f x22: ffff0005c82b6000 <4>[ 291.105926] x21: 0000000000000006 x20: 000000007fffffff <4>[ 291.111504] x19: ffff80001648bd04 x18: 0000000000000000 <4>[ 291.117083] x17: 0000000000000000 x16: 0000000000000000 <4>[ 291.122662] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 291.128240] x13: ffff80009648b95a x12: ffff80001648b962 <4>[ 291.133819] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 291.139397] x9 : ffff80001012cbc4 x8 : ffff0005c760f6a0 <4>[ 291.144976] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 291.150554] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 291.156132] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 291.161711] x1 : 0000000000000000 x0 : ffff0005c760e200 <4>[ 291.167290] Call trace: <4>[ 291.169998] refcount_warn_saturate+0xc8/0x144 <4>[ 291.174710] __refcount_add_not_zero.constprop.0+0x98/0xb4 <4>[ 291.180458] lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW+0x48/0x8c <4>[ 291.186294] lkdtm_do_action+0x24/0x40 <4>[ 291.190303] direct_entry+0xd0/0x140 <4>[ 291.194142] full_proxy_write+0x68/0xbc <4>[ 291.198241] vfs_write+0xec/0x20c <4>[ 291.201816] ksys_write+0x70/0x100 <4>[ 291.205478] __arm64_sys_write+0x24/0x30 <4>[ 291.209667] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 291.214719] do_el0_svc+0x2c/0xa4 <4>[ 291.218298] el0_svc+0x20/0x30 <4>[ 291.221613] el0_sync_handler+0xb0/0xb4 <4>[ 291.225710] el0_sync+0x180/0x1c0 <4>[ 291.229286] irq event stamp: 0 <4>[ 291.232605] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 291.239138] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 291.247576] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 291.256013] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 291.262539] ---[ end trace 525ac0d05b8ecc59 ]--- <6>[ 291.267684] lkdtm: Overflow detected: saturated # [ 290.962591] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_OVERFLOW # [ 290.969875] lkdtm: attempting bad refcount_add_not_zero() overflow # [ 290.976458] ------------[ cut here ]------------ # [ 290.981499] refcount_t: saturated; leaking memory. # [ 290.986759] WARNING: CPU: 2 PID: 2394 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 290.995458] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 291.049053] CPU: 2 PID: 2394 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 291.057054] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 291.063670] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 291.069938] pc : refcount_warn_saturate+0xc8/0x144 # [ 291.074988] lr : refcount_warn_saturate+0xc8/0x144 # [ 291.080037] sp : ffff80001648bcb0 # [ 291.083611] x29: ffff80001648bcb0 x28: ffff0005c760e200 # [ 291.089190] x27: 0000000000000000 x26: 0000000000000000 # [ 291.094768] x25: ffff8000114e1c88 x24: ffff80001648be20 # [ 291.100347] x23: 000000000000001f x22: ffff0005c82b6000 # [ 291.105926] x21: 0000000000000006 x20: 000000007fffffff # [ 291.111504] x19: ffff80001648bd04 x18: 0000000000000000 # [ 291.117083] x17: 0000000000000000 x16: 0000000000000000 # [ 291.122662] x15: 0000000000000030 x14: ffffffffffffffff # [ 291.128240] x13: ffff80009648b95a x12: ffff80001648b962 # [ 291.133819] x11: ffff80001256fea8 x10: 0000000000001440 # [ 291.139397] x9 : ffff80001012cbc4 x8 : ffff0005c760f6a0 # [ 291.144976] x7 : 0000000000000000 x6 : ffff800012541000 # [ 291.150554] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 291.156132] x3 : 0000000000000000 x2 : 0000000000000000 # [ 291.161711] x1 : 0000000000000000 x0 : ffff0005c760e200 # [ 291.167290] Call trace: # [ 291.169998] refcount_warn_saturate+0xc8/0x144 # [ 291.174710] __refcount_add_not_zero.constprop.0+0x98/0xb4 # [ 291.180458] lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW+0x48/0x8c # [ 291.186294] lkdtm_do_action+0x24/0x40 # [ 291.190303] direct_entry+0xd0/0x140 # [ 291.194142] full_proxy_write+0x68/0xbc # [ 291.198241] vfs_write+0xec/0x20c # [ 291.201816] ksys_write+0x70/0x100 # [ 291.205478] __arm64_sys_write+0x24/0x30 # [ 291.209667] el0_svc_common.constprop.0+0x84/0x1e0 # [ 291.214719] do_el0_svc+0x2c/0xa4 # [ 291.218298] el0_svc+0x20/0x30 # [ 291.221613] el0_sync_handler+0xb0/0xb4 # [ 291.225710] el0_sync+0x180/0x1c0 # [ 291.229286] irq event stamp: 0 # [ 291.232605] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 291.239138] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 291.247576] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 291.256013] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 291.262539] ---[ end trace 525ac0d05b8ecc59 ]--- # [ 291.267684] lkdtm: Overflow detected: saturated # REFCOUNT_ADD_NOT_ZERO_OVERFLOW: saw 'call trace:': ok ok 45 selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_OVERFLOW.sh # selftests: lkdtm: REFCOUNT_DEC_ZERO.sh <6>[ 292.564490] lkdtm: Performing direct entry REFCOUNT_DEC_ZERO <6>[ 292.570535] lkdtm: attempting good refcount_dec() <6>[ 292.575567] lkdtm: attempting bad refcount_dec() to zero <4>[ 292.581207] ------------[ cut here ]------------ <4>[ 292.586123] refcount_t: decrement hit 0; leaking memory. <4>[ 292.591891] WARNING: CPU: 3 PID: 2426 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 <4>[ 292.600677] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 292.654272] CPU: 3 PID: 2426 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 292.662273] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 292.668888] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 292.675155] pc : refcount_warn_saturate+0x13c/0x144 <4>[ 292.680293] lr : refcount_warn_saturate+0x13c/0x144 <4>[ 292.685429] sp : ffff800016503cc0 <4>[ 292.689002] x29: ffff800016503cc0 x28: ffff0005c9948000 <4>[ 292.694581] x27: 0000000000000000 x26: 0000000000000000 <4>[ 292.700159] x25: ffff8000114e1c88 x24: ffff800016503e20 <4>[ 292.705737] x23: 0000000000000012 x22: ffff0005c0d46000 <4>[ 292.711316] x21: ffff8000119f3068 x20: ffff8000114e1f78 <4>[ 292.716894] x19: ffff800016503d04 x18: 0000000000000000 <4>[ 292.722473] x17: 0000000000000000 x16: 0000000000000000 <4>[ 292.728051] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 292.733629] x13: ffff80009650396a x12: ffff800016503972 <4>[ 292.739208] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 292.744787] x9 : ffff80001012cbc4 x8 : ffff0005c99494a0 <4>[ 292.750365] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 292.755943] x5 : ffff800012541c88 x4 : ffff00063f77ec50 <4>[ 292.761522] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 292.767100] x1 : 0000000000000000 x0 : ffff0005c9948000 <4>[ 292.772680] Call trace: <4>[ 292.775388] refcount_warn_saturate+0x13c/0x144 <4>[ 292.780186] __refcount_dec.constprop.0+0x5c/0x6c <4>[ 292.785152] lkdtm_REFCOUNT_DEC_ZERO+0x54/0xe0 <4>[ 292.789860] lkdtm_do_action+0x24/0x40 <4>[ 292.793869] direct_entry+0xd0/0x140 <4>[ 292.797706] full_proxy_write+0x68/0xbc <4>[ 292.801806] vfs_write+0xec/0x20c <4>[ 292.805381] ksys_write+0x70/0x100 <4>[ 292.809043] __arm64_sys_write+0x24/0x30 <4>[ 292.813232] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 292.818283] do_el0_svc+0x2c/0xa4 <4>[ 292.821862] el0_svc+0x20/0x30 <4>[ 292.825177] el0_sync_handler+0xb0/0xb4 <4>[ 292.829274] el0_sync+0x180/0x1c0 <4>[ 292.832849] irq event stamp: 0 <4>[ 292.836169] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 292.842702] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 292.851140] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 292.859576] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 292.866101] ---[ end trace 525ac0d05b8ecc5a ]--- <6>[ 292.871238] lkdtm: Zero detected: saturated # [ 292.564490] lkdtm: Performing direct entry REFCOUNT_DEC_ZERO # [ 292.570535] lkdtm: attempting good refcount_dec() # [ 292.575567] lkdtm: attempting bad refcount_dec() to zero # [ 292.581207] ------------[ cut here ]------------ # [ 292.586123] refcount_t: decrement hit 0; leaking memory. # [ 292.591891] WARNING: CPU: 3 PID: 2426 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 # [ 292.600677] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 292.654272] CPU: 3 PID: 2426 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 292.662273] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 292.668888] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 292.675155] pc : refcount_warn_saturate+0x13c/0x144 # [ 292.680293] lr : refcount_warn_saturate+0x13c/0x144 # [ 292.685429] sp : ffff800016503cc0 # [ 292.689002] x29: ffff800016503cc0 x28: ffff0005c9948000 # [ 292.694581] x27: 0000000000000000 x26: 0000000000000000 # [ 292.700159] x25: ffff8000114e1c88 x24: ffff800016503e20 # [ 292.705737] x23: 0000000000000012 x22: ffff0005c0d46000 # [ 292.711316] x21: ffff8000119f3068 x20: ffff8000114e1f78 # [ 292.716894] x19: ffff800016503d04 x18: 0000000000000000 # [ 292.722473] x17: 0000000000000000 x16: 0000000000000000 # [ 292.728051] x15: 0000000000000030 x14: ffffffffffffffff # [ 292.733629] x13: ffff80009650396a x12: ffff800016503972 # [ 292.739208] x11: ffff80001256fea8 x10: 0000000000001440 # [ 292.744787] x9 : ffff80001012cbc4 x8 : ffff0005c99494a0 # [ 292.750365] x7 : 0000000000000000 x6 : ffff800012541000 # [ 292.755943] x5 : ffff800012541c88 x4 : ffff00063f77ec50 # [ 292.761522] x3 : 0000000000000000 x2 : 0000000000000000 # [ 292.767100] x1 : 0000000000000000 x0 : ffff0005c9948000 # [ 292.772680] Call trace: # [ 292.775388] refcount_warn_saturate+0x13c/0x144 # [ 292.780186] __refcount_dec.constprop.0+0x5c/0x6c # [ 292.785152] lkdtm_REFCOUNT_DEC_ZERO+0x54/0xe0 # [ 292.789860] lkdtm_do_action+0x24/0x40 # [ 292.793869] direct_entry+0xd0/0x140 # [ 292.797706] full_proxy_write+0x68/0xbc # [ 292.801806] vfs_write+0xec/0x20c # [ 292.805381] ksys_write+0x70/0x100 # [ 292.809043] __arm64_sys_write+0x24/0x30 # [ 292.813232] el0_svc_common.constprop.0+0x84/0x1e0 # [ 292.818283] do_el0_svc+0x2c/0xa4 # [ 292.821862] el0_svc+0x20/0x30 # [ 292.825177] el0_sync_handler+0xb0/0xb4 # [ 292.829274] el0_sync+0x180/0x1c0 # [ 292.832849] irq event stamp: 0 # [ 292.836169] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 292.842702] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 292.851140] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 292.859576] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 292.866101] ---[ end trace 525ac0d05b8ecc5a ]--- # [ 292.871238] lkdtm: Zero detected: saturated # REFCOUNT_DEC_ZERO: saw 'call trace:': ok ok 46 selftests: lkdtm: REFCOUNT_DEC_ZERO.sh # selftests: lkdtm: REFCOUNT_DEC_NEGATIVE.sh <6>[ 294.405019] lkdtm: Performing direct entry REFCOUNT_DEC_NEGATIVE <6>[ 294.411410] lkdtm: attempting bad refcount_dec() below zero <4>[ 294.418993] ------------[ cut here ]------------ <4>[ 294.424409] refcount_t: decrement hit 0; leaking memory. <4>[ 294.430502] WARNING: CPU: 2 PID: 2461 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 <4>[ 294.439288] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 294.492883] CPU: 2 PID: 2461 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 294.500884] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 294.507500] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 294.513767] pc : refcount_warn_saturate+0x13c/0x144 <4>[ 294.518905] lr : refcount_warn_saturate+0x13c/0x144 <4>[ 294.524040] sp : ffff8000165a3cc0 <4>[ 294.527613] x29: ffff8000165a3cc0 x28: ffff0005c03e4980 <4>[ 294.533192] x27: 0000000000000000 x26: 0000000000000000 <4>[ 294.538770] x25: ffff8000114e1c88 x24: ffff8000165a3e20 <4>[ 294.544349] x23: 0000000000000016 x22: ffff0005c42c8000 <4>[ 294.549927] x21: ffff8000119f3080 x20: ffff8000114e1f88 <4>[ 294.555506] x19: ffff8000165a3d04 x18: 0000000000000000 <4>[ 294.561084] x17: 0000000000000000 x16: 0000000000000000 <4>[ 294.566662] x15: 0000000000000000 x14: 0000000000000000 <4>[ 294.572240] x13: 0000000000000000 x12: 0000000000000000 <4>[ 294.577818] x11: 0000000000000000 x10: 0000000000001440 <4>[ 294.583397] x9 : ffff80001012cbc4 x8 : ffff0005c03e5e20 <4>[ 294.588975] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 294.594554] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 294.600132] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 294.605711] x1 : 0000000000000000 x0 : ffff0005c03e4980 <4>[ 294.611290] Call trace: <4>[ 294.613998] refcount_warn_saturate+0x13c/0x144 <4>[ 294.618796] __refcount_dec.constprop.0+0x5c/0x6c <4>[ 294.623763] lkdtm_REFCOUNT_DEC_NEGATIVE+0x3c/0x70 <4>[ 294.628818] lkdtm_do_action+0x24/0x40 <4>[ 294.632827] direct_entry+0xd0/0x140 <4>[ 294.636665] full_proxy_write+0x68/0xbc <4>[ 294.640765] vfs_write+0xec/0x20c <4>[ 294.644340] ksys_write+0x70/0x100 <4>[ 294.648001] __arm64_sys_write+0x24/0x30 <4>[ 294.652190] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 294.657241] do_el0_svc+0x2c/0xa4 <4>[ 294.660820] el0_svc+0x20/0x30 <4>[ 294.664135] el0_sync_handler+0xb0/0xb4 <4>[ 294.668233] el0_sync+0x180/0x1c0 <4>[ 294.671808] irq event stamp: 0 <4>[ 294.675129] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 294.681661] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 294.690099] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 294.698536] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 294.705061] ---[ end trace 525ac0d05b8ecc5b ]--- <6>[ 294.710267] lkdtm: Negative detected: saturated # [ 294.405019] lkdtm: Performing direct entry REFCOUNT_DEC_NEGATIVE # [ 294.411410] lkdtm: attempting bad refcount_dec() below zero # [ 294.418993] ------------[ cut here ]------------ # [ 294.424409] refcount_t: decrement hit 0; leaking memory. # [ 294.430502] WARNING: CPU: 2 PID: 2461 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 # [ 294.439288] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 294.492883] CPU: 2 PID: 2461 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 294.500884] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 294.507500] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 294.513767] pc : refcount_warn_saturate+0x13c/0x144 # [ 294.518905] lr : refcount_warn_saturate+0x13c/0x144 # [ 294.524040] sp : ffff8000165a3cc0 # [ 294.527613] x29: ffff8000165a3cc0 x28: ffff0005c03e4980 # [ 294.533192] x27: 0000000000000000 x26: 0000000000000000 # [ 294.538770] x25: ffff8000114e1c88 x24: ffff8000165a3e20 # [ 294.544349] x23: 0000000000000016 x22: ffff0005c42c8000 # [ 294.549927] x21: ffff8000119f3080 x20: ffff8000114e1f88 # [ 294.555506] x19: ffff8000165a3d04 x18: 0000000000000000 # [ 294.561084] x17: 0000000000000000 x16: 0000000000000000 # [ 294.566662] x15: 0000000000000000 x14: 0000000000000000 # [ 294.572240] x13: 0000000000000000 x12: 0000000000000000 # [ 294.577818] x11: 0000000000000000 x10: 0000000000001440 # [ 294.583397] x9 : ffff80001012cbc4 x8 : ffff0005c03e5e20 # [ 294.588975] x7 : 0000000000000000 x6 : ffff800012541000 # [ 294.594554] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 294.600132] x3 : 0000000000000000 x2 : 0000000000000000 # [ 294.605711] x1 : 0000000000000000 x0 : ffff0005c03e4980 # [ 294.611290] Call trace: # [ 294.613998] refcount_warn_saturate+0x13c/0x144 # [ 294.618796] __refcount_dec.constprop.0+0x5c/0x6c # [ 294.623763] lkdtm_REFCOUNT_DEC_NEGATIVE+0x3c/0x70 # [ 294.628818] lkdtm_do_action+0x24/0x40 # [ 294.632827] direct_entry+0xd0/0x140 # [ 294.636665] full_proxy_write+0x68/0xbc # [ 294.640765] vfs_write+0xec/0x20c # [ 294.644340] ksys_write+0x70/0x100 # [ 294.648001] __arm64_sys_write+0x24/0x30 # [ 294.652190] el0_svc_common.constprop.0+0x84/0x1e0 # [ 294.657241] do_el0_svc+0x2c/0xa4 # [ 294.660820] el0_svc+0x20/0x30 # [ 294.664135] el0_sync_handler+0xb0/0xb4 # [ 294.668233] el0_sync+0x180/0x1c0 # [ 294.671808] irq event stamp: 0 # [ 294.675129] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 294.681661] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 294.690099] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 294.698536] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 294.705061] ---[ end trace 525ac0d05b8ecc5b ]--- # [ 294.710267] lkdtm: Negative detected: saturated # REFCOUNT_DEC_NEGATIVE: saw 'Negative detected: saturated': ok ok 47 selftests: lkdtm: REFCOUNT_DEC_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_DEC_AND_TEST_NEGATIVE.sh <6>[ 296.155229] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_NEGATIVE <6>[ 296.162378] lkdtm: attempting bad refcount_dec_and_test() below zero <4>[ 296.169056] ------------[ cut here ]------------ <4>[ 296.173998] refcount_t: underflow; use-after-free. <4>[ 296.179230] WARNING: CPU: 2 PID: 2496 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 <4>[ 296.187930] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 296.241523] CPU: 2 PID: 2496 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 296.249524] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 296.256141] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 296.262407] pc : refcount_warn_saturate+0xf4/0x144 <4>[ 296.267458] lr : refcount_warn_saturate+0xf4/0x144 <4>[ 296.272507] sp : ffff800016623cd0 <4>[ 296.276080] x29: ffff800016623cd0 x28: ffff0005c994e200 <4>[ 296.281658] x27: 0000000000000000 x26: 0000000000000000 <4>[ 296.287237] x25: ffff8000114e1c88 x24: ffff800016623e20 <4>[ 296.292815] x23: 000000000000001f x22: ffff0005c8067000 <4>[ 296.298394] x21: ffff8000119f3098 x20: ffff8000114e1f98 <4>[ 296.303972] x19: 0000000000000031 x18: 0000000000000000 <4>[ 296.309551] x17: 0000000000000000 x16: 0000000000000000 <4>[ 296.315129] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 296.320707] x13: ffff80009662397a x12: ffff800016623982 <4>[ 296.326286] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 296.331864] x9 : ffff80001012cbc4 x8 : ffff0005c994f6a0 <4>[ 296.337442] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 296.343021] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 296.348599] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 296.354177] x1 : 0000000000000000 x0 : ffff0005c994e200 <4>[ 296.359757] Call trace: <4>[ 296.362465] refcount_warn_saturate+0xf4/0x144 <4>[ 296.367174] __refcount_sub_and_test.constprop.0+0x74/0x8c <4>[ 296.372928] lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE+0x44/0x8c <4>[ 296.378761] lkdtm_do_action+0x24/0x40 <4>[ 296.382770] direct_entry+0xd0/0x140 <4>[ 296.386608] full_proxy_write+0x68/0xbc <4>[ 296.390707] vfs_write+0xec/0x20c <4>[ 296.394282] ksys_write+0x70/0x100 <4>[ 296.397943] __arm64_sys_write+0x24/0x30 <4>[ 296.402133] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 296.407184] do_el0_svc+0x2c/0xa4 <4>[ 296.410762] el0_svc+0x20/0x30 <4>[ 296.414079] el0_sync_handler+0xb0/0xb4 <4>[ 296.418177] el0_sync+0x180/0x1c0 <4>[ 296.421751] irq event stamp: 0 <4>[ 296.425071] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 296.431604] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 296.440043] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 296.448487] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 296.455017] ---[ end trace 525ac0d05b8ecc5c ]--- <6>[ 296.460204] lkdtm: Negative detected: saturated # [ 296.155229] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_NEGATIVE # [ 296.162378] lkdtm: attempting bad refcount_dec_and_test() below zero # [ 296.169056] ------------[ cut here ]------------ # [ 296.173998] refcount_t: underflow; use-after-free. # [ 296.179230] WARNING: CPU: 2 PID: 2496 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 296.187930] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 296.241523] CPU: 2 PID: 2496 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 296.249524] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 296.256141] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 296.262407] pc : refcount_warn_saturate+0xf4/0x144 # [ 296.267458] lr : refcount_warn_saturate+0xf4/0x144 # [ 296.272507] sp : ffff800016623cd0 # [ 296.276080] x29: ffff800016623cd0 x28: ffff0005c994e200 # [ 296.281658] x27: 0000000000000000 x26: 0000000000000000 # [ 296.287237] x25: ffff8000114e1c88 x24: ffff800016623e20 # [ 296.292815] x23: 000000000000001f x22: ffff0005c8067000 # [ 296.298394] x21: ffff8000119f3098 x20: ffff8000114e1f98 # [ 296.303972] x19: 0000000000000031 x18: 0000000000000000 # [ 296.309551] x17: 0000000000000000 x16: 0000000000000000 # [ 296.315129] x15: 0000000000000030 x14: ffffffffffffffff # [ 296.320707] x13: ffff80009662397a x12: ffff800016623982 # [ 296.326286] x11: ffff80001256fea8 x10: 0000000000001440 # [ 296.331864] x9 : ffff80001012cbc4 x8 : ffff0005c994f6a0 # [ 296.337442] x7 : 0000000000000000 x6 : ffff800012541000 # [ 296.343021] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 296.348599] x3 : 0000000000000000 x2 : 0000000000000000 # [ 296.354177] x1 : 0000000000000000 x0 : ffff0005c994e200 # [ 296.359757] Call trace: # [ 296.362465] refcount_warn_saturate+0xf4/0x144 # [ 296.367174] __refcount_sub_and_test.constprop.0+0x74/0x8c # [ 296.372928] lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE+0x44/0x8c # [ 296.378761] lkdtm_do_action+0x24/0x40 # [ 296.382770] direct_entry+0xd0/0x140 # [ 296.386608] full_proxy_write+0x68/0xbc # [ 296.390707] vfs_write+0xec/0x20c # [ 296.394282] ksys_write+0x70/0x100 # [ 296.397943] __arm64_sys_write+0x24/0x30 # [ 296.402133] el0_svc_common.constprop.0+0x84/0x1e0 # [ 296.407184] do_el0_svc+0x2c/0xa4 # [ 296.410762] el0_svc+0x20/0x30 # [ 296.414079] el0_sync_handler+0xb0/0xb4 # [ 296.418177] el0_sync+0x180/0x1c0 # [ 296.421751] irq event stamp: 0 # [ 296.425071] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 296.431604] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 296.440043] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 296.448487] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 296.455017] ---[ end trace 525ac0d05b8ecc5c ]--- # [ 296.460204] lkdtm: Negative detected: saturated # REFCOUNT_DEC_AND_TEST_NEGATIVE: saw 'Negative detected: saturated': ok ok 48 selftests: lkdtm: REFCOUNT_DEC_AND_TEST_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_SUB_AND_TEST_NEGATIVE.sh <6>[ 298.038306] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_NEGATIVE <6>[ 298.045497] lkdtm: attempting bad refcount_sub_and_test() below zero <4>[ 298.052174] ------------[ cut here ]------------ <4>[ 298.057119] refcount_t: underflow; use-after-free. <4>[ 298.062354] WARNING: CPU: 2 PID: 2531 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 <4>[ 298.071054] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 298.124648] CPU: 2 PID: 2531 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 298.132650] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 298.139266] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 298.145533] pc : refcount_warn_saturate+0xf4/0x144 <4>[ 298.150584] lr : refcount_warn_saturate+0xf4/0x144 <4>[ 298.155633] sp : ffff8000166f3cd0 <4>[ 298.159206] x29: ffff8000166f3cd0 x28: ffff0005c7b86200 <4>[ 298.164785] x27: 0000000000000000 x26: 0000000000000000 <4>[ 298.170363] x25: ffff8000114e1c88 x24: ffff8000166f3e20 <4>[ 298.175942] x23: 000000000000001f x22: ffff0005c5d78000 <4>[ 298.181520] x21: ffff8000119f30b8 x20: ffff8000114e1fa8 <4>[ 298.187098] x19: 0000000000000032 x18: 0000000000000001 <4>[ 298.192677] x17: 0000000000000000 x16: 0000000000000000 <4>[ 298.198255] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 298.203834] x13: ffff8000966f397a x12: ffff8000166f3983 <4>[ 298.209412] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 298.214990] x9 : ffff80001012cbc4 x8 : ffff0005c7b876a0 <4>[ 298.220569] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 298.226147] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 298.231726] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 298.237304] x1 : 0000000000000000 x0 : ffff0005c7b86200 <4>[ 298.242883] Call trace: <4>[ 298.245591] refcount_warn_saturate+0xf4/0x144 <4>[ 298.250300] __refcount_sub_and_test.constprop.0+0x74/0x8c <4>[ 298.256054] lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE+0x48/0x90 <4>[ 298.261887] lkdtm_do_action+0x24/0x40 <4>[ 298.265895] direct_entry+0xd0/0x140 <4>[ 298.269734] full_proxy_write+0x68/0xbc <4>[ 298.273833] vfs_write+0xec/0x20c <4>[ 298.277409] ksys_write+0x70/0x100 <4>[ 298.281070] __arm64_sys_write+0x24/0x30 <4>[ 298.285259] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 298.290311] do_el0_svc+0x2c/0xa4 <4>[ 298.293890] el0_svc+0x20/0x30 <4>[ 298.297205] el0_sync_handler+0xb0/0xb4 <4>[ 298.301303] el0_sync+0x180/0x1c0 <4>[ 298.304878] irq event stamp: 0 <4>[ 298.308197] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 298.314730] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 298.323168] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 298.331605] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 298.338131] ---[ end trace 525ac0d05b8ecc5d ]--- <6>[ 298.343283] lkdtm: Negative detected: saturated # [ 298.038306] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_NEGATIVE # [ 298.045497] lkdtm: attempting bad refcount_sub_and_test() below zero # [ 298.052174] ------------[ cut here ]------------ # [ 298.057119] refcount_t: underflow; use-after-free. # [ 298.062354] WARNING: CPU: 2 PID: 2531 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 298.071054] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 298.124648] CPU: 2 PID: 2531 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 298.132650] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 298.139266] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 298.145533] pc : refcount_warn_saturate+0xf4/0x144 # [ 298.150584] lr : refcount_warn_saturate+0xf4/0x144 # [ 298.155633] sp : ffff8000166f3cd0 # [ 298.159206] x29: ffff8000166f3cd0 x28: ffff0005c7b86200 # [ 298.164785] x27: 0000000000000000 x26: 0000000000000000 # [ 298.170363] x25: ffff8000114e1c88 x24: ffff8000166f3e20 # [ 298.175942] x23: 000000000000001f x22: ffff0005c5d78000 # [ 298.181520] x21: ffff8000119f30b8 x20: ffff8000114e1fa8 # [ 298.187098] x19: 0000000000000032 x18: 0000000000000001 # [ 298.192677] x17: 0000000000000000 x16: 0000000000000000 # [ 298.198255] x15: 0000000000000030 x14: ffffffffffffffff # [ 298.203834] x13: ffff8000966f397a x12: ffff8000166f3983 # [ 298.209412] x11: ffff80001256fea8 x10: 0000000000001440 # [ 298.214990] x9 : ffff80001012cbc4 x8 : ffff0005c7b876a0 # [ 298.220569] x7 : 0000000000000000 x6 : ffff800012541000 # [ 298.226147] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 298.231726] x3 : 0000000000000000 x2 : 0000000000000000 # [ 298.237304] x1 : 0000000000000000 x0 : ffff0005c7b86200 # [ 298.242883] Call trace: # [ 298.245591] refcount_warn_saturate+0xf4/0x144 # [ 298.250300] __refcount_sub_and_test.constprop.0+0x74/0x8c # [ 298.256054] lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE+0x48/0x90 # [ 298.261887] lkdtm_do_action+0x24/0x40 # [ 298.265895] direct_entry+0xd0/0x140 # [ 298.269734] full_proxy_write+0x68/0xbc # [ 298.273833] vfs_write+0xec/0x20c # [ 298.277409] ksys_write+0x70/0x100 # [ 298.281070] __arm64_sys_write+0x24/0x30 # [ 298.285259] el0_svc_common.constprop.0+0x84/0x1e0 # [ 298.290311] do_el0_svc+0x2c/0xa4 # [ 298.293890] el0_svc+0x20/0x30 # [ 298.297205] el0_sync_handler+0xb0/0xb4 # [ 298.301303] el0_sync+0x180/0x1c0 # [ 298.304878] irq event stamp: 0 # [ 298.308197] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 298.314730] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 298.323168] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 298.331605] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 298.338131] ---[ end trace 525ac0d05b8ecc5d ]--- # [ 298.343283] lkdtm: Negative detected: saturated # REFCOUNT_SUB_AND_TEST_NEGATIVE: saw 'Negative detected: saturated': ok ok 49 selftests: lkdtm: REFCOUNT_SUB_AND_TEST_NEGATIVE.sh # selftests: lkdtm: REFCOUNT_INC_ZERO.sh <6>[ 299.619956] lkdtm: Performing direct entry REFCOUNT_INC_ZERO <6>[ 299.625997] lkdtm: attempting safe refcount_inc_not_zero() from zero <6>[ 299.632679] lkdtm: Good: zero detected <6>[ 299.636752] lkdtm: Correctly stayed at zero <6>[ 299.641233] lkdtm: attempting bad refcount_inc() from zero <4>[ 299.647077] ------------[ cut here ]------------ <4>[ 299.652015] refcount_t: addition on 0; use-after-free. <4>[ 299.657630] WARNING: CPU: 3 PID: 2563 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 <4>[ 299.666329] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 299.719922] CPU: 3 PID: 2563 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 299.727923] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 299.734539] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 299.740806] pc : refcount_warn_saturate+0xa0/0x144 <4>[ 299.745856] lr : refcount_warn_saturate+0xa0/0x144 <4>[ 299.750906] sp : ffff80001679bcd0 <4>[ 299.754479] x29: ffff80001679bcd0 x28: ffff0005c8cae200 <4>[ 299.760058] x27: 0000000000000000 x26: 0000000000000000 <4>[ 299.765636] x25: ffff8000114e1c88 x24: ffff80001679be20 <4>[ 299.771214] x23: 0000000000000012 x22: ffff0005c5d0f000 <4>[ 299.776793] x21: ffff8000119f30d8 x20: ffff8000114e1fb8 <4>[ 299.782371] x19: 0000000000000033 x18: 0000000000000000 <4>[ 299.787949] x17: 0000000000000000 x16: 0000000000000000 <4>[ 299.793528] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 299.799107] x13: ffff80009679b97a x12: ffff80001679b982 <4>[ 299.804685] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 299.810263] x9 : ffff80001012cbc4 x8 : ffff800012570048 <4>[ 299.815842] x7 : ffff8000125c8048 x6 : ffff800012541000 <4>[ 299.821420] x5 : ffff800012541c88 x4 : ffff00063f77ec50 <4>[ 299.826998] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 299.832577] x1 : 0000000000000000 x0 : ffff0005c8cae200 <4>[ 299.838157] Call trace: <4>[ 299.840865] refcount_warn_saturate+0xa0/0x144 <4>[ 299.845574] __refcount_add.constprop.0+0x64/0x90 <4>[ 299.850546] lkdtm_REFCOUNT_INC_ZERO+0xa4/0xd4 <4>[ 299.855251] lkdtm_do_action+0x24/0x40 <4>[ 299.859260] direct_entry+0xd0/0x140 <4>[ 299.863098] full_proxy_write+0x68/0xbc <4>[ 299.867198] vfs_write+0xec/0x20c <4>[ 299.870773] ksys_write+0x70/0x100 <4>[ 299.874435] __arm64_sys_write+0x24/0x30 <4>[ 299.878624] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 299.883675] do_el0_svc+0x2c/0xa4 <4>[ 299.887253] el0_svc+0x20/0x30 <4>[ 299.890568] el0_sync_handler+0xb0/0xb4 <4>[ 299.894666] el0_sync+0x180/0x1c0 <4>[ 299.898240] irq event stamp: 0 <4>[ 299.901560] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 299.908094] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 299.916532] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 299.924968] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 299.931493] ---[ end trace 525ac0d05b8ecc5e ]--- <6>[ 299.936619] lkdtm: Zero detected: saturated # [ 299.619956] lkdtm: Performing direct entry REFCOUNT_INC_ZERO # [ 299.625997] lkdtm: attempting safe refcount_inc_not_zero() from zero # [ 299.632679] lkdtm: Good: zero detected # [ 299.636752] lkdtm: Correctly stayed at zero # [ 299.641233] lkdtm: attempting bad refcount_inc() from zero # [ 299.647077] ------------[ cut here ]------------ # [ 299.652015] refcount_t: addition on 0; use-after-free. # [ 299.657630] WARNING: CPU: 3 PID: 2563 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 # [ 299.666329] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 299.719922] CPU: 3 PID: 2563 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 299.727923] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 299.734539] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 299.740806] pc : refcount_warn_saturate+0xa0/0x144 # [ 299.745856] lr : refcount_warn_saturate+0xa0/0x144 # [ 299.750906] sp : ffff80001679bcd0 # [ 299.754479] x29: ffff80001679bcd0 x28: ffff0005c8cae200 # [ 299.760058] x27: 0000000000000000 x26: 0000000000000000 # [ 299.765636] x25: ffff8000114e1c88 x24: ffff80001679be20 # [ 299.771214] x23: 0000000000000012 x22: ffff0005c5d0f000 # [ 299.776793] x21: ffff8000119f30d8 x20: ffff8000114e1fb8 # [ 299.782371] x19: 0000000000000033 x18: 0000000000000000 # [ 299.787949] x17: 0000000000000000 x16: 0000000000000000 # [ 299.793528] x15: 0000000000000030 x14: ffffffffffffffff # [ 299.799107] x13: ffff80009679b97a x12: ffff80001679b982 # [ 299.804685] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 299.810263] x9 : ffff80001012cbc4 x8 : ffff800012570048 # [ 299.815842] x7 : ffff8000125c8048 x6 : ffff800012541000 # [ 299.821420] x5 : ffff800012541c88 x4 : ffff00063f77ec50 # [ 299.826998] x3 : 0000000000000000 x2 : 0000000000000000 # [ 299.832577] x1 : 0000000000000000 x0 : ffff0005c8cae200 # [ 299.838157] Call trace: # [ 299.840865] refcount_warn_saturate+0xa0/0x144 # [ 299.845574] __refcount_add.constprop.0+0x64/0x90 # [ 299.850546] lkdtm_REFCOUNT_INC_ZERO+0xa4/0xd4 # [ 299.855251] lkdtm_do_action+0x24/0x40 # [ 299.859260] direct_entry+0xd0/0x140 # [ 299.863098] full_proxy_write+0x68/0xbc # [ 299.867198] vfs_write+0xec/0x20c # [ 299.870773] ksys_write+0x70/0x100 # [ 299.874435] __arm64_sys_write+0x24/0x30 # [ 299.878624] el0_svc_common.constprop.0+0x84/0x1e0 # [ 299.883675] do_el0_svc+0x2c/0xa4 # [ 299.887253] el0_svc+0x20/0x30 # [ 299.890568] el0_sync_handler+0xb0/0xb4 # [ 299.894666] el0_sync+0x180/0x1c0 # [ 299.898240] irq event stamp: 0 # [ 299.901560] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 299.908094] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 299.916532] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 299.924968] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 299.931493] ---[ end trace 525ac0d05b8ecc5e ]--- # [ 299.936619] lkdtm: Zero detected: saturated # REFCOUNT_INC_ZERO: saw 'call trace:': ok ok 50 selftests: lkdtm: REFCOUNT_INC_ZERO.sh # selftests: lkdtm: REFCOUNT_ADD_ZERO.sh <6>[ 301.533388] lkdtm: Performing direct entry REFCOUNT_ADD_ZERO <6>[ 301.539442] lkdtm: attempting safe refcount_add_not_zero() from zero <6>[ 301.547836] lkdtm: Good: zero detected <6>[ 301.552193] lkdtm: Correctly stayed at zero <6>[ 301.557081] lkdtm: attempting bad refcount_add() from zero <4>[ 301.562888] ------------[ cut here ]------------ <4>[ 301.567847] refcount_t: addition on 0; use-after-free. <4>[ 301.573527] WARNING: CPU: 0 PID: 2595 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 <4>[ 301.582227] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 301.635770] CPU: 0 PID: 2595 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 301.643772] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 301.650390] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 301.656656] pc : refcount_warn_saturate+0xa0/0x144 <4>[ 301.661706] lr : refcount_warn_saturate+0xa0/0x144 <4>[ 301.666755] sp : ffff80001683bcd0 <4>[ 301.670327] x29: ffff80001683bcd0 x28: ffff0005c7b86200 <4>[ 301.675905] x27: 0000000000000000 x26: 0000000000000000 <4>[ 301.681482] x25: ffff8000114e1c88 x24: ffff80001683be20 <4>[ 301.687060] x23: 0000000000000012 x22: ffff0005c7842000 <4>[ 301.692636] x21: ffff8000119f30f0 x20: ffff8000114e1fc8 <4>[ 301.698212] x19: 0000000000000034 x18: 0000000000000000 <4>[ 301.703787] x17: 0000000000000000 x16: 0000000000000000 <4>[ 301.709363] x15: 000000000000010f x14: 0000000000000112 <4>[ 301.714939] x13: 0000000000000001 x12: 0000000000000002 <4>[ 301.720514] x11: 0000000000000000 x10: 0000000000001440 <4>[ 301.726090] x9 : ffff80001012cbc4 x8 : ffff00063f7e97c0 <4>[ 301.731667] x7 : ffff0005c7b86200 x6 : ffff800012541000 <4>[ 301.737243] x5 : ffff800012541c88 x4 : ffff00063f718c50 <4>[ 301.742818] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 301.748394] x1 : 0000000000000000 x0 : ffff0005c7b86200 <4>[ 301.753971] Call trace: <4>[ 301.756677] refcount_warn_saturate+0xa0/0x144 <4>[ 301.761385] __refcount_add.constprop.0+0x64/0x90 <4>[ 301.766354] lkdtm_REFCOUNT_ADD_ZERO+0xa4/0xd4 <4>[ 301.771056] lkdtm_do_action+0x24/0x40 <4>[ 301.775063] direct_entry+0xd0/0x140 <4>[ 301.778899] full_proxy_write+0x68/0xbc <4>[ 301.782996] vfs_write+0xec/0x20c <4>[ 301.786570] ksys_write+0x70/0x100 <4>[ 301.790230] __arm64_sys_write+0x24/0x30 <4>[ 301.794416] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 301.799467] do_el0_svc+0x2c/0xa4 <4>[ 301.803042] el0_svc+0x20/0x30 <4>[ 301.806356] el0_sync_handler+0xb0/0xb4 <4>[ 301.810452] el0_sync+0x180/0x1c0 <4>[ 301.814025] irq event stamp: 0 <4>[ 301.817342] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 301.823873] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 301.832309] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 301.840745] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 301.847269] ---[ end trace 525ac0d05b8ecc5f ]--- <6>[ 301.852453] lkdtm: Zero detected: saturated # [ 301.533388] lkdtm: Performing direct entry REFCOUNT_ADD_ZERO # [ 301.539442] lkdtm: attempting safe refcount_add_not_zero() from zero # [ 301.547836] lkdtm: Good: zero detected # [ 301.552193] lkdtm: Correctly stayed at zero # [ 301.557081] lkdtm: attempting bad refcount_add() from zero # [ 301.562888] ------------[ cut here ]------------ # [ 301.567847] refcount_t: addition on 0; use-after-free. # [ 301.573527] WARNING: CPU: 0 PID: 2595 at lib/refcount.c:25 refcount_warn_saturate+0xa0/0x144 # [ 301.582227] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 301.635770] CPU: 0 PID: 2595 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 301.643772] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 301.650390] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 301.656656] pc : refcount_warn_saturate+0xa0/0x144 # [ 301.661706] lr : refcount_warn_saturate+0xa0/0x144 # [ 301.666755] sp : ffff80001683bcd0 # [ 301.670327] x29: ffff80001683bcd0 x28: ffff0005c7b86200 # [ 301.675905] x27: 0000000000000000 x26: 0000000000000000 # [ 301.681482] x25: ffff8000114e1c88 x24: ffff80001683be20 # [ 301.687060] x23: 0000000000000012 x22: ffff0005c7842000 # [ 301.692636] x21: ffff8000119f30f0 x20: ffff8000114e1fc8 # [ 301.698212] x19: 0000000000000034 x18: 0000000000000000 # [ 301.703787] x17: 0000000000000000 x16: 0000000000000000 # [ 301.709363] x15: 000000000000010f x14: 0000000000000112 # [ 301.714939] x13: 0000000000000001 x12: 0000000000000002 # [ 301.720514] x11: 0000000000000000 x10: 0000000000001440 # [ 301.726090] x9 : ffff80001012cbc4 x8 : ffff00063f7e97c0 # [ 301.731667] x7 : ffff0005c7b86200 x6 : ffff800012541000 # [ 301.737243] x5 : ffff800012541c88 x4 : ffff00063f718c50 # [ 301.742818] x3 : 0000000000000000 x2 : 0000000000000000 # [ 301.748394] x1 : 0000000000000000 x0 : ffff0005c7b86200 # [ 301.753971] Call trace: # [ 301.756677] refcount_warn_saturate+0xa0/0x144 # [ 301.761385] __refcount_add.constprop.0+0x64/0x90 # [ 301.766354] lkdtm_REFCOUNT_ADD_ZERO+0xa4/0xd4 # [ 301.771056] lkdtm_do_action+0x24/0x40 # [ 301.775063] direct_entry+0xd0/0x140 # [ 301.778899] full_proxy_write+0x68/0xbc # [ 301.782996] vfs_write+0xec/0x20c # [ 301.786570] ksys_write+0x70/0x100 # [ 301.790230] __arm64_sys_write+0x24/0x30 # [ 301.794416] el0_svc_common.constprop.0+0x84/0x1e0 # [ 301.799467] do_el0_svc+0x2c/0xa4 # [ 301.803042] el0_svc+0x20/0x30 # [ 301.806356] el0_sync_handler+0xb0/0xb4 # [ 301.810452] el0_sync+0x180/0x1c0 # [ 301.814025] irq event stamp: 0 # [ 301.817342] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 301.823873] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 301.832309] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 301.840745] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 301.847269] ---[ end trace 525ac0d05b8ecc5f ]--- # [ 301.852453] lkdtm: Zero detected: saturated # REFCOUNT_ADD_ZERO: saw 'call trace:': ok ok 51 selftests: lkdtm: REFCOUNT_ADD_ZERO.sh # selftests: lkdtm: REFCOUNT_INC_SATURATED.sh <6>[ 303.313699] lkdtm: Performing direct entry REFCOUNT_INC_SATURATED <6>[ 303.320195] lkdtm: attempting bad refcount_inc() from saturated <4>[ 303.326442] ------------[ cut here ]------------ <4>[ 303.331385] refcount_t: saturated; leaking memory. <4>[ 303.336617] WARNING: CPU: 2 PID: 2630 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 <4>[ 303.345317] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 303.398912] CPU: 2 PID: 2630 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 303.406913] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 303.413529] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 303.419797] pc : refcount_warn_saturate+0x74/0x144 <4>[ 303.424847] lr : refcount_warn_saturate+0x74/0x144 <4>[ 303.429896] sp : ffff8000168fbcd0 <4>[ 303.433470] x29: ffff8000168fbcd0 x28: ffff0005c8ca9880 <4>[ 303.439048] x27: 0000000000000000 x26: 0000000000000000 <4>[ 303.444631] x25: ffff8000114e1c88 x24: ffff8000168fbe20 <4>[ 303.450212] x23: 0000000000000017 x22: ffff0005c94df000 <4>[ 303.455790] x21: ffff8000119f3108 x20: ffff8000114e1fd8 <4>[ 303.461369] x19: 0000000000000035 x18: 0000000000000000 <4>[ 303.466947] x17: 0000000000000000 x16: 0000000000000000 <4>[ 303.472526] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 303.478104] x13: ffff8000968fb97a x12: ffff8000168fb982 <4>[ 303.483683] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 303.489261] x9 : ffff80001012cbc4 x8 : ffff0005c8caad20 <4>[ 303.494840] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 303.500418] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 303.505996] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 303.511574] x1 : 0000000000000000 x0 : ffff0005c8ca9880 <4>[ 303.517154] Call trace: <4>[ 303.519865] refcount_warn_saturate+0x74/0x144 <4>[ 303.524576] __refcount_add.constprop.0+0x7c/0x90 <4>[ 303.529550] lkdtm_REFCOUNT_INC_SATURATED+0x44/0x74 <4>[ 303.534688] lkdtm_do_action+0x24/0x40 <4>[ 303.538697] direct_entry+0xd0/0x140 <4>[ 303.542535] full_proxy_write+0x68/0xbc <4>[ 303.546634] vfs_write+0xec/0x20c <4>[ 303.550209] ksys_write+0x70/0x100 <4>[ 303.553871] __arm64_sys_write+0x24/0x30 <4>[ 303.558060] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 303.563113] do_el0_svc+0x2c/0xa4 <4>[ 303.566692] el0_svc+0x20/0x30 <4>[ 303.570007] el0_sync_handler+0xb0/0xb4 <4>[ 303.574105] el0_sync+0x180/0x1c0 <4>[ 303.577681] irq event stamp: 0 <4>[ 303.581000] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 303.587533] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 303.595972] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 303.604409] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 303.610934] ---[ end trace 525ac0d05b8ecc60 ]--- <6>[ 303.615985] lkdtm: Saturation detected: still saturated # [ 303.313699] lkdtm: Performing direct entry REFCOUNT_INC_SATURATED # [ 303.320195] lkdtm: attempting bad refcount_inc() from saturated # [ 303.326442] ------------[ cut here ]------------ # [ 303.331385] refcount_t: saturated; leaking memory. # [ 303.336617] WARNING: CPU: 2 PID: 2630 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 303.345317] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 303.398912] CPU: 2 PID: 2630 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 303.406913] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 303.413529] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 303.419797] pc : refcount_warn_saturate+0x74/0x144 # [ 303.424847] lr : refcount_warn_saturate+0x74/0x144 # [ 303.429896] sp : ffff8000168fbcd0 # [ 303.433470] x29: ffff8000168fbcd0 x28: ffff0005c8ca9880 # [ 303.439048] x27: 0000000000000000 x26: 0000000000000000 # [ 303.444631] x25: ffff8000114e1c88 x24: ffff8000168fbe20 # [ 303.450212] x23: 0000000000000017 x22: ffff0005c94df000 # [ 303.455790] x21: ffff8000119f3108 x20: ffff8000114e1fd8 # [ 303.461369] x19: 0000000000000035 x18: 0000000000000000 # [ 303.466947] x17: 0000000000000000 x16: 0000000000000000 # [ 303.472526] x15: 0000000000000030 x14: ffffffffffffffff # [ 303.478104] x13: ffff8000968fb97a x12: ffff8000168fb982 # [ 303.483683] x11: ffff80001256fea8 x10: 0000000000001440 # [ 303.489261] x9 : ffff80001012cbc4 x8 : ffff0005c8caad20 # [ 303.494840] x7 : 0000000000000000 x6 : ffff800012541000 # [ 303.500418] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 303.505996] x3 : 0000000000000000 x2 : 0000000000000000 # [ 303.511574] x1 : 0000000000000000 x0 : ffff0005c8ca9880 # [ 303.517154] Call trace: # [ 303.519865] refcount_warn_saturate+0x74/0x144 # [ 303.524576] __refcount_add.constprop.0+0x7c/0x90 # [ 303.529550] lkdtm_REFCOUNT_INC_SATURATED+0x44/0x74 # [ 303.534688] lkdtm_do_action+0x24/0x40 # [ 303.538697] direct_entry+0xd0/0x140 # [ 303.542535] full_proxy_write+0x68/0xbc # [ 303.546634] vfs_write+0xec/0x20c # [ 303.550209] ksys_write+0x70/0x100 # [ 303.553871] __arm64_sys_write+0x24/0x30 # [ 303.558060] el0_svc_common.constprop.0+0x84/0x1e0 # [ 303.563113] do_el0_svc+0x2c/0xa4 # [ 303.566692] el0_svc+0x20/0x30 # [ 303.570007] el0_sync_handler+0xb0/0xb4 # [ 303.574105] el0_sync+0x180/0x1c0 # [ 303.577681] irq event stamp: 0 # [ 303.581000] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 303.587533] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 303.595972] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 303.604409] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 303.610934] ---[ end trace 525ac0d05b8ecc60 ]--- # [ 303.615985] lkdtm: Saturation detected: still saturated # REFCOUNT_INC_SATURATED: saw 'Saturation detected: still saturated': ok ok 52 selftests: lkdtm: REFCOUNT_INC_SATURATED.sh # selftests: lkdtm: REFCOUNT_DEC_SATURATED.sh <6>[ 305.106592] lkdtm: Performing direct entry REFCOUNT_DEC_SATURATED <6>[ 305.113216] lkdtm: attempting bad refcount_dec() from saturated <4>[ 305.119467] ------------[ cut here ]------------ <4>[ 305.124482] refcount_t: decrement hit 0; leaking memory. <4>[ 305.130256] WARNING: CPU: 5 PID: 2665 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 <4>[ 305.139041] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 305.192636] CPU: 5 PID: 2665 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 305.200637] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 305.207253] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 305.213521] pc : refcount_warn_saturate+0x13c/0x144 <4>[ 305.218658] lr : refcount_warn_saturate+0x13c/0x144 <4>[ 305.223794] sp : ffff80001698bcc0 <4>[ 305.227367] x29: ffff80001698bcc0 x28: ffff0005c778e200 <4>[ 305.232946] x27: 0000000000000000 x26: 0000000000000000 <4>[ 305.238525] x25: ffff8000114e1c88 x24: ffff80001698be20 <4>[ 305.244103] x23: 0000000000000017 x22: ffff0005c83df000 <4>[ 305.249681] x21: ffff8000119f3120 x20: ffff8000114e1fe8 <4>[ 305.255260] x19: ffff80001698bd04 x18: 0000000000000000 <4>[ 305.260838] x17: 0000000000000000 x16: 0000000000000000 <4>[ 305.266416] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 305.271995] x13: ffff80009698b96a x12: ffff80001698b972 <4>[ 305.277574] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 305.283152] x9 : ffff80001012cbc4 x8 : ffff0005c778f6a0 <4>[ 305.288731] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 305.294309] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 305.299887] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 305.305466] x1 : 0000000000000000 x0 : ffff0005c778e200 <4>[ 305.311045] Call trace: <4>[ 305.313752] refcount_warn_saturate+0x13c/0x144 <4>[ 305.318551] __refcount_dec.constprop.0+0x5c/0x6c <4>[ 305.323518] lkdtm_REFCOUNT_DEC_SATURATED+0x40/0x70 <4>[ 305.328659] lkdtm_do_action+0x24/0x40 <4>[ 305.332668] direct_entry+0xd0/0x140 <4>[ 305.336506] full_proxy_write+0x68/0xbc <4>[ 305.340605] vfs_write+0xec/0x20c <4>[ 305.344180] ksys_write+0x70/0x100 <4>[ 305.347841] __arm64_sys_write+0x24/0x30 <4>[ 305.352031] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 305.357083] do_el0_svc+0x2c/0xa4 <4>[ 305.360661] el0_svc+0x20/0x30 <4>[ 305.363976] el0_sync_handler+0xb0/0xb4 <4>[ 305.368074] el0_sync+0x180/0x1c0 <4>[ 305.371649] irq event stamp: 0 <4>[ 305.374968] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 305.381502] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 305.389940] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 305.398377] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 305.404902] ---[ end trace 525ac0d05b8ecc61 ]--- <6>[ 305.410137] lkdtm: Saturation detected: still saturated # [ 305.106592] lkdtm: Performing direct entry REFCOUNT_DEC_SATURATED # [ 305.113216] lkdtm: attempting bad refcount_dec() from saturated # [ 305.119467] ------------[ cut here ]------------ # [ 305.124482] refcount_t: decrement hit 0; leaking memory. # [ 305.130256] WARNING: CPU: 5 PID: 2665 at lib/refcount.c:31 refcount_warn_saturate+0x13c/0x144 # [ 305.139041] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 305.192636] CPU: 5 PID: 2665 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 305.200637] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 305.207253] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 305.213521] pc : refcount_warn_saturate+0x13c/0x144 # [ 305.218658] lr : refcount_warn_saturate+0x13c/0x144 # [ 305.223794] sp : ffff80001698bcc0 # [ 305.227367] x29: ffff80001698bcc0 x28: ffff0005c778e200 # [ 305.232946] x27: 0000000000000000 x26: 0000000000000000 # [ 305.238525] x25: ffff8000114e1c88 x24: ffff80001698be20 # [ 305.244103] x23: 0000000000000017 x22: ffff0005c83df000 # [ 305.249681] x21: ffff8000119f3120 x20: ffff8000114e1fe8 # [ 305.255260] x19: ffff80001698bd04 x18: 0000000000000000 # [ 305.260838] x17: 0000000000000000 x16: 0000000000000000 # [ 305.266416] x15: 0000000000000030 x14: ffffffffffffffff # [ 305.271995] x13: ffff80009698b96a x12: ffff80001698b972 # [ 305.277574] x11: ffff80001256fea8 x10: 0000000000001440 # [ 305.283152] x9 : ffff80001012cbc4 x8 : ffff0005c778f6a0 # [ 305.288731] x7 : 0000000000000000 x6 : ffff800012541000 # [ 305.294309] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 305.299887] x3 : 0000000000000000 x2 : 0000000000000000 # [ 305.305466] x1 : 0000000000000000 x0 : ffff0005c778e200 # [ 305.311045] Call trace: # [ 305.313752] refcount_warn_saturate+0x13c/0x144 # [ 305.318551] __refcount_dec.constprop.0+0x5c/0x6c # [ 305.323518] lkdtm_REFCOUNT_DEC_SATURATED+0x40/0x70 # [ 305.328659] lkdtm_do_action+0x24/0x40 # [ 305.332668] direct_entry+0xd0/0x140 # [ 305.336506] full_proxy_write+0x68/0xbc # [ 305.340605] vfs_write+0xec/0x20c # [ 305.344180] ksys_write+0x70/0x100 # [ 305.347841] __arm64_sys_write+0x24/0x30 # [ 305.352031] el0_svc_common.constprop.0+0x84/0x1e0 # [ 305.357083] do_el0_svc+0x2c/0xa4 # [ 305.360661] el0_svc+0x20/0x30 # [ 305.363976] el0_sync_handler+0xb0/0xb4 # [ 305.368074] el0_sync+0x180/0x1c0 # [ 305.371649] irq event stamp: 0 # [ 305.374968] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 305.381502] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 305.389940] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 305.398377] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 305.404902] ---[ end trace 525ac0d05b8ecc61 ]--- # [ 305.410137] lkdtm: Saturation detected: still saturated # REFCOUNT_DEC_SATURATED: saw 'Saturation detected: still saturated': ok ok 53 selftests: lkdtm: REFCOUNT_DEC_SATURATED.sh # selftests: lkdtm: REFCOUNT_ADD_SATURATED.sh <6>[ 306.944930] lkdtm: Performing direct entry REFCOUNT_ADD_SATURATED <6>[ 306.951410] lkdtm: attempting bad refcount_dec() from saturated <4>[ 306.959417] ------------[ cut here ]------------ <4>[ 306.964832] refcount_t: saturated; leaking memory. <4>[ 306.970388] WARNING: CPU: 2 PID: 2700 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 <4>[ 306.979087] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 307.032682] CPU: 2 PID: 2700 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 307.040683] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 307.047299] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 307.053566] pc : refcount_warn_saturate+0x74/0x144 <4>[ 307.058616] lr : refcount_warn_saturate+0x74/0x144 <4>[ 307.063665] sp : ffff800016a43cd0 <4>[ 307.067239] x29: ffff800016a43cd0 x28: ffff0005c994b100 <4>[ 307.072818] x27: 0000000000000000 x26: 0000000000000000 <4>[ 307.078396] x25: ffff8000114e1c88 x24: ffff800016a43e20 <4>[ 307.083975] x23: 0000000000000017 x22: ffff0005c80a4000 <4>[ 307.089553] x21: ffff8000119f3138 x20: ffff8000114e1ff8 <4>[ 307.095132] x19: 0000000000000037 x18: 0000000000000000 <4>[ 307.100710] x17: 0000000000000000 x16: 0000000000000000 <4>[ 307.106288] x15: 0000000000000000 x14: 0000000000000000 <4>[ 307.111867] x13: 0000000000000000 x12: 0000000000000000 <4>[ 307.117445] x11: 0000000000000000 x10: 0000000000001440 <4>[ 307.123023] x9 : ffff80001012cbc4 x8 : ffff0005c994c5a0 <4>[ 307.128602] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 307.134180] x5 : ffff800012541c88 x4 : ffff00063f75cc50 <4>[ 307.139758] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 307.145337] x1 : 0000000000000000 x0 : ffff0005c994b100 <4>[ 307.150916] Call trace: <4>[ 307.153624] refcount_warn_saturate+0x74/0x144 <4>[ 307.158333] __refcount_add.constprop.0+0x7c/0x90 <4>[ 307.163306] lkdtm_REFCOUNT_ADD_SATURATED+0x44/0x74 <4>[ 307.168444] lkdtm_do_action+0x24/0x40 <4>[ 307.172454] direct_entry+0xd0/0x140 <4>[ 307.176292] full_proxy_write+0x68/0xbc <4>[ 307.180391] vfs_write+0xec/0x20c <4>[ 307.183965] ksys_write+0x70/0x100 <4>[ 307.187627] __arm64_sys_write+0x24/0x30 <4>[ 307.191816] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 307.196867] do_el0_svc+0x2c/0xa4 <4>[ 307.200446] el0_svc+0x20/0x30 <4>[ 307.203761] el0_sync_handler+0xb0/0xb4 <4>[ 307.207859] el0_sync+0x180/0x1c0 <4>[ 307.211434] irq event stamp: 0 <4>[ 307.214754] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 307.221288] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 307.229726] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 307.238162] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 307.244687] ---[ end trace 525ac0d05b8ecc62 ]--- <6>[ 307.249868] lkdtm: Saturation detected: still saturated # [ 306.944930] lkdtm: Performing direct entry REFCOUNT_ADD_SATURATED # [ 306.951410] lkdtm: attempting bad refcount_dec() from saturated # [ 306.959417] ------------[ cut here ]------------ # [ 306.964832] refcount_t: saturated; leaking memory. # [ 306.970388] WARNING: CPU: 2 PID: 2700 at lib/refcount.c:22 refcount_warn_saturate+0x74/0x144 # [ 306.979087] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 307.032682] CPU: 2 PID: 2700 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 307.040683] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 307.047299] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 307.053566] pc : refcount_warn_saturate+0x74/0x144 # [ 307.058616] lr : refcount_warn_saturate+0x74/0x144 # [ 307.063665] sp : ffff800016a43cd0 # [ 307.067239] x29: ffff800016a43cd0 x28: ffff0005c994b100 # [ 307.072818] x27: 0000000000000000 x26: 0000000000000000 # [ 307.078396] x25: ffff8000114e1c88 x24: ffff800016a43e20 # [ 307.083975] x23: 0000000000000017 x22: ffff0005c80a4000 # [ 307.089553] x21: ffff8000119f3138 x20: ffff8000114e1ff8 # [ 307.095132] x19: 0000000000000037 x18: 0000000000000000 # [ 307.100710] x17: 0000000000000000 x16: 0000000000000000 # [ 307.106288] x15: 0000000000000000 x14: 0000000000000000 # [ 307.111867] x13: 0000000000000000 x12: 0000000000000000 # [ 307.117445] x11: 0000000000000000 x10: 0000000000001440 # [ 307.123023] x9 : ffff80001012cbc4 x8 : ffff0005c994c5a0 # [ 307.128602] x7 : 0000000000000000 x6 : ffff800012541000 # [ 307.134180] x5 : ffff800012541c88 x4 : ffff00063f75cc50 # [ 307.139758] x3 : 0000000000000000 x2 : 0000000000000000 # [ 307.145337] x1 : 0000000000000000 x0 : ffff0005c994b100 # [ 307.150916] Call trace: # [ 307.153624] refcount_warn_saturate+0x74/0x144 # [ 307.158333] __refcount_add.constprop.0+0x7c/0x90 # [ 307.163306] lkdtm_REFCOUNT_ADD_SATURATED+0x44/0x74 # [ 307.168444] lkdtm_do_action+0x24/0x40 # [ 307.172454] direct_entry+0xd0/0x140 # [ 307.176292] full_proxy_write+0x68/0xbc # [ 307.180391] vfs_write+0xec/0x20c # [ 307.183965] ksys_write+0x70/0x100 # [ 307.187627] __arm64_sys_write+0x24/0x30 # [ 307.191816] el0_svc_common.constprop.0+0x84/0x1e0 # [ 307.196867] do_el0_svc+0x2c/0xa4 # [ 307.200446] el0_svc+0x20/0x30 # [ 307.203761] el0_sync_handler+0xb0/0xb4 # [ 307.207859] el0_sync+0x180/0x1c0 # [ 307.211434] irq event stamp: 0 # [ 307.214754] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 307.221288] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 307.229726] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 307.238162] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 307.244687] ---[ end trace 525ac0d05b8ecc62 ]--- # [ 307.249868] lkdtm: Saturation detected: still saturated # REFCOUNT_ADD_SATURATED: saw 'Saturation detected: still saturated': ok ok 54 selftests: lkdtm: REFCOUNT_ADD_SATURATED.sh # selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_SATURATED.sh <6>[ 308.604115] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_SATURATED <6>[ 308.611490] lkdtm: attempting bad refcount_inc_not_zero() from saturated <4>[ 308.620308] ------------[ cut here ]------------ <4>[ 308.625727] refcount_t: saturated; leaking memory. <4>[ 308.631313] WARNING: CPU: 5 PID: 2732 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 <4>[ 308.640012] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 308.693604] CPU: 5 PID: 2732 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 308.701606] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 308.708222] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 308.714489] pc : refcount_warn_saturate+0xc8/0x144 <4>[ 308.719539] lr : refcount_warn_saturate+0xc8/0x144 <4>[ 308.724589] sp : ffff800016a23cb0 <4>[ 308.728162] x29: ffff800016a23cb0 x28: ffff0005c0dbb100 <4>[ 308.733741] x27: 0000000000000000 x26: 0000000000000000 <4>[ 308.739319] x25: ffff8000114e1c88 x24: ffff800016a23e20 <4>[ 308.744898] x23: 0000000000000020 x22: ffff0005c8048000 <4>[ 308.750476] x21: 0000000000000001 x20: 00000000c0000000 <4>[ 308.756055] x19: ffff800016a23d04 x18: 0000000000000000 <4>[ 308.761633] x17: 0000000000000000 x16: 0000000000000000 <4>[ 308.767212] x15: 0000000000000000 x14: 0000000000000000 <4>[ 308.772791] x13: 0000000000000000 x12: 0000000000000000 <4>[ 308.778369] x11: 0000000000000000 x10: 0000000000001440 <4>[ 308.783947] x9 : ffff80001012cbc4 x8 : ffff0005c0dbc5a0 <4>[ 308.789526] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 308.795105] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 308.800683] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 308.806260] x1 : 0000000000000000 x0 : ffff0005c0dbb100 <4>[ 308.811840] Call trace: <4>[ 308.814547] refcount_warn_saturate+0xc8/0x144 <4>[ 308.819259] __refcount_add_not_zero.constprop.0+0x98/0xb4 <4>[ 308.825006] lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED+0x48/0x8c <4>[ 308.830929] lkdtm_do_action+0x24/0x40 <4>[ 308.834938] direct_entry+0xd0/0x140 <4>[ 308.838776] full_proxy_write+0x68/0xbc <4>[ 308.842876] vfs_write+0xec/0x20c <4>[ 308.846451] ksys_write+0x70/0x100 <4>[ 308.850113] __arm64_sys_write+0x24/0x30 <4>[ 308.854302] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 308.859353] do_el0_svc+0x2c/0xa4 <4>[ 308.862931] el0_svc+0x20/0x30 <4>[ 308.866247] el0_sync_handler+0xb0/0xb4 <4>[ 308.870345] el0_sync+0x180/0x1c0 <4>[ 308.873920] irq event stamp: 0 <4>[ 308.877241] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 308.883774] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 308.892212] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 308.900649] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 308.907173] ---[ end trace 525ac0d05b8ecc63 ]--- <6>[ 308.912199] lkdtm: Saturation detected: still saturated # [ 308.604115] lkdtm: Performing direct entry REFCOUNT_INC_NOT_ZERO_SATURATED # [ 308.611490] lkdtm: attempting bad refcount_inc_not_zero() from saturated # [ 308.620308] ------------[ cut here ]------------ # [ 308.625727] refcount_t: saturated; leaking memory. # [ 308.631313] WARNING: CPU: 5 PID: 2732 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 308.640012] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 308.693604] CPU: 5 PID: 2732 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 308.701606] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 308.708222] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 308.714489] pc : refcount_warn_saturate+0xc8/0x144 # [ 308.719539] lr : refcount_warn_saturate+0xc8/0x144 # [ 308.724589] sp : ffff800016a23cb0 # [ 308.728162] x29: ffff800016a23cb0 x28: ffff0005c0dbb100 # [ 308.733741] x27: 0000000000000000 x26: 0000000000000000 # [ 308.739319] x25: ffff8000114e1c88 x24: ffff800016a23e20 # [ 308.744898] x23: 0000000000000020 x22: ffff0005c8048000 # [ 308.750476] x21: 0000000000000001 x20: 00000000c0000000 # [ 308.756055] x19: ffff800016a23d04 x18: 0000000000000000 # [ 308.761633] x17: 0000000000000000 x16: 0000000000000000 # [ 308.767212] x15: 0000000000000000 x14: 0000000000000000 # [ 308.772791] x13: 0000000000000000 x12: 0000000000000000 # [ 308.778369] x11: 0000000000000000 x10: 0000000000001440 # [ 308.783947] x9 : ffff80001012cbc4 x8 : ffff0005c0dbc5a0 # [ 308.789526] x7 : 0000000000000000 x6 : ffff800012541000 # [ 308.795105] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 308.800683] x3 : 0000000000000000 x2 : 0000000000000000 # [ 308.806260] x1 : 0000000000000000 x0 : ffff0005c0dbb100 # [ 308.811840] Call trace: # [ 308.814547] refcount_warn_saturate+0xc8/0x144 # [ 308.819259] __refcount_add_not_zero.constprop.0+0x98/0xb4 # [ 308.825006] lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED+0x48/0x8c # [ 308.830929] lkdtm_do_action+0x24/0x40 # [ 308.834938] direct_entry+0xd0/0x140 # [ 308.838776] full_proxy_write+0x68/0xbc # [ 308.842876] vfs_write+0xec/0x20c # [ 308.846451] ksys_write+0x70/0x100 # [ 308.850113] __arm64_sys_write+0x24/0x30 # [ 308.854302] el0_svc_common.constprop.0+0x84/0x1e0 # [ 308.859353] do_el0_svc+0x2c/0xa4 # [ 308.862931] el0_svc+0x20/0x30 # [ 308.866247] el0_sync_handler+0xb0/0xb4 # [ 308.870345] el0_sync+0x180/0x1c0 # [ 308.873920] irq event stamp: 0 # [ 308.877241] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 308.883774] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 308.892212] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 308.900649] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 308.907173] ---[ end trace 525ac0d05b8ecc63 ]--- # [ 308.912199] lkdtm: Saturation detected: still saturated # REFCOUNT_INC_NOT_ZERO_SATURATED: saw 'call trace:': ok ok 55 selftests: lkdtm: REFCOUNT_INC_NOT_ZERO_SATURATED.sh # selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_SATURATED.sh <6>[ 310.320893] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_SATURATED <6>[ 310.328245] lkdtm: attempting bad refcount_add_not_zero() from saturated <4>[ 310.335342] ------------[ cut here ]------------ <4>[ 310.340275] refcount_t: saturated; leaking memory. <4>[ 310.345525] WARNING: CPU: 4 PID: 2764 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 <4>[ 310.354222] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 310.407819] CPU: 4 PID: 2764 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 310.415820] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 310.422437] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 310.428703] pc : refcount_warn_saturate+0xc8/0x144 <4>[ 310.433755] lr : refcount_warn_saturate+0xc8/0x144 <4>[ 310.438804] sp : ffff800016b6bcb0 <4>[ 310.442377] x29: ffff800016b6bcb0 x28: ffff0005c7b86200 <4>[ 310.447956] x27: 0000000000000000 x26: 0000000000000000 <4>[ 310.453535] x25: ffff8000114e1c88 x24: ffff800016b6be20 <4>[ 310.459113] x23: 0000000000000020 x22: ffff0005c376e000 <4>[ 310.464692] x21: 0000000000000007 x20: 00000000c0000000 <4>[ 310.470271] x19: ffff800016b6bd04 x18: 0000000000000000 <4>[ 310.475850] x17: 0000000000000000 x16: 0000000000000000 <4>[ 310.481428] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 310.487006] x13: ffff800096b6b95a x12: ffff800016b6b962 <4>[ 310.492585] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 310.498163] x9 : ffff80001012cbc4 x8 : ffff0005c7b876a0 <4>[ 310.503742] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 310.509321] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 <4>[ 310.514899] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 310.520478] x1 : 0000000000000000 x0 : ffff0005c7b86200 <4>[ 310.526056] Call trace: <4>[ 310.528764] refcount_warn_saturate+0xc8/0x144 <4>[ 310.533477] __refcount_add_not_zero.constprop.0+0x98/0xb4 <4>[ 310.539225] lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED+0x48/0x8c <4>[ 310.545148] lkdtm_do_action+0x24/0x40 <4>[ 310.549157] direct_entry+0xd0/0x140 <4>[ 310.552994] full_proxy_write+0x68/0xbc <4>[ 310.557094] vfs_write+0xec/0x20c <4>[ 310.560669] ksys_write+0x70/0x100 <4>[ 310.564331] __arm64_sys_write+0x24/0x30 <4>[ 310.568520] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 310.573572] do_el0_svc+0x2c/0xa4 <4>[ 310.577151] el0_svc+0x20/0x30 <4>[ 310.580466] el0_sync_handler+0xb0/0xb4 <4>[ 310.584564] el0_sync+0x180/0x1c0 <4>[ 310.588139] irq event stamp: 0 <4>[ 310.591459] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 310.597992] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 310.606431] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 310.614867] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 310.621392] ---[ end trace 525ac0d05b8ecc64 ]--- <6>[ 310.626477] lkdtm: Saturation detected: still saturated # [ 0.000000] Memory: 3812116K/4063232K available (18816K kernel code, 4542K rwdata, 9448K rodata, 9728K init, 11274K bss, 218348K reserved, 32768K cma-reserved) # [ 0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=6, Nodes=1 # [ 0.000000] ftrace: allocating 58462 entries in 229 pages # [ 0.000000] ftrace: allocated 229 pages with 5 groups # [ 0.000000] Running RCU self tests # [ 0.000000] rcu: Preemptible hierarchical RCU implementation. # [ 0.000000] rcu: RCU event tracing is enabled. # [ 0.000000] rcu: RCU lockdep checking is enabled. # [ 0.000000] rcu: RCU restricting CPUs from NR_CPUS=256 to nr_cpu_ids=6. # [ 0.000000] Trampoline variant of Tasks RCU enabled. # [ 0.000000] Rude variant of Tasks RCU enabled. # [ 0.000000] Tracing variant of Tasks RCU enabled. # [ 0.000000] rcu: RCU calculated value of scheduler-enlistment delay is 25 jiffies. # [ 0.000000] rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=6 # [ 0.000000] NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 # [ 0.000000] arch_timer: cp15 timer(s) running at 8.33MHz (virt). # [ 0.000000] clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x1ec02923e, max_idle_ns: 440795202125 ns # [ 310.320893] lkdtm: Performing direct entry REFCOUNT_ADD_NOT_ZERO_SATURATED # [ 310.328245] lkdtm: attempting bad refcount_add_not_zero() from saturated # [ 310.335342] ------------[ cut here ]------------ # [ 310.340275] refcount_t: saturated; leaking memory. # [ 310.345525] WARNING: CPU: 4 PID: 2764 at lib/refcount.c:19 refcount_warn_saturate+0xc8/0x144 # [ 310.354222] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 310.407819] CPU: 4 PID: 2764 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 310.415820] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 310.422437] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 310.428703] pc : refcount_warn_saturate+0xc8/0x144 # [ 310.433755] lr : refcount_warn_saturate+0xc8/0x144 # [ 310.438804] sp : ffff800016b6bcb0 # [ 310.442377] x29: ffff800016b6bcb0 x28: ffff0005c7b86200 # [ 310.447956] x27: 0000000000000000 x26: 0000000000000000 # [ 310.453535] x25: ffff8000114e1c88 x24: ffff800016b6be20 # [ 310.459113] x23: 0000000000000020 x22: ffff0005c376e000 # [ 310.464692] x21: 0000000000000007 x20: 00000000c0000000 # [ 310.470271] x19: ffff800016b6bd04 x18: 0000000000000000 # [ 310.475850] x17: 0000000000000000 x16: 0000000000000000 # [ 310.481428] x15: 0000000000000030 x14: ffffffffffffffff # [ 310.487006] x13: ffff800096b6b95a x12: ffff800016b6b962 # [ 310.492585] x11: ffff80001256fea8 x10: 0000000000001440 # [ 310.498163] x9 : ffff80001012cbc4 x8 : ffff0005c7b876a0 # [ 310.503742] x7 : 0000000000000000 x6 : ffff800012541000 # [ 310.509321] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 # [ 310.514899] x3 : 0000000000000000 x2 : 0000000000000000 # [ 310.520478] x1 : 0000000000000000 x0 : ffff0005c7b86200 # [ 310.526056] Call trace: # [ 310.528764] refcount_warn_saturate+0xc8/0x144 # [ 310.533477] __refcount_add_not_zero.constprop.0+0x98/0xb4 # [ 310.539225] lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED+0x48/0x8c # [ 310.545148] lkdtm_do_action+0x24/0x40 # [ 310.549157] direct_entry+0xd0/0x140 # [ 310.552994] full_proxy_write+0x68/0xbc # [ 310.557094] vfs_write+0xec/0x20c # [ 310.560669] ksys_write+0x70/0x100 # [ 310.564331] __arm64_sys_write+0x24/0x30 # [ 310.568520] el0_svc_common.constprop.0+0x84/0x1e0 # [ 310.573572] do_el0_svc+0x2c/0xa4 # [ 310.577151] el0_svc+0x20/0x30 # [ 310.580466] el0_sync_handler+0xb0/0xb4 # [ 310.584564] el0_sync+0x180/0x1c0 # [ 310.588139] irq event stamp: 0 # [ 310.591459] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 310.597992] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 310.606431] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 310.614867] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 310.621392] ---[ end trace 525ac0d05b8ecc64 ]--- # [ 310.626477] lkdtm: Saturation detected: still saturated # REFCOUNT_ADD_NOT_ZERO_SATURATED: saw 'call trace:': ok ok 56 selftests: lkdtm: REFCOUNT_ADD_NOT_ZERO_SATURATED.sh # selftests: lkdtm: REFCOUNT_DEC_AND_TEST_SATURATED.sh <6>[ 311.992902] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_SATURATED <6>[ 312.000269] lkdtm: attempting bad refcount_dec_and_test() from saturated <4>[ 312.007320] ------------[ cut here ]------------ <4>[ 312.012449] refcount_t: underflow; use-after-free. <4>[ 312.017708] WARNING: CPU: 5 PID: 2799 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 <4>[ 312.026407] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 312.080003] CPU: 5 PID: 2799 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 312.088004] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 312.094619] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 312.100887] pc : refcount_warn_saturate+0xf4/0x144 <4>[ 312.105938] lr : refcount_warn_saturate+0xf4/0x144 <4>[ 312.110987] sp : ffff800016c23cd0 <4>[ 312.114560] x29: ffff800016c23cd0 x28: ffff0005c03e4980 <4>[ 312.120139] x27: 0000000000000000 x26: 0000000000000000 <4>[ 312.125717] x25: ffff8000114e1c88 x24: ffff800016c23e20 <4>[ 312.131296] x23: 0000000000000020 x22: ffff0005c60d4000 <4>[ 312.136874] x21: ffff8000119f3190 x20: ffff8000114e2028 <4>[ 312.142453] x19: 000000000000003a x18: 0000000000000001 <4>[ 312.148032] x17: 0000000000000000 x16: 0000000000000000 <4>[ 312.153610] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 312.159188] x13: ffff800096c2397a x12: ffff800016c23983 <4>[ 312.164767] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 312.170346] x9 : ffff80001012cbc4 x8 : ffff0005c03e5e20 <4>[ 312.175925] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 312.181503] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 <4>[ 312.187082] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 312.192661] x1 : 0000000000000000 x0 : ffff0005c03e4980 <4>[ 312.198240] Call trace: <4>[ 312.200948] refcount_warn_saturate+0xf4/0x144 <4>[ 312.205658] __refcount_sub_and_test.constprop.0+0x74/0x8c <4>[ 312.211412] lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED+0x48/0x8c <4>[ 312.217331] lkdtm_do_action+0x24/0x40 <4>[ 312.221340] direct_entry+0xd0/0x140 <4>[ 312.225178] full_proxy_write+0x68/0xbc <4>[ 312.229278] vfs_write+0xec/0x20c <4>[ 312.232854] ksys_write+0x70/0x100 <4>[ 312.236515] __arm64_sys_write+0x24/0x30 <4>[ 312.240705] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 312.245756] do_el0_svc+0x2c/0xa4 <4>[ 312.249335] el0_svc+0x20/0x30 <4>[ 312.252650] el0_sync_handler+0xb0/0xb4 <4>[ 312.256748] el0_sync+0x180/0x1c0 <4>[ 312.260323] irq event stamp: 0 <4>[ 312.263642] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 312.270175] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 312.278613] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 312.287050] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 312.293574] ---[ end trace 525ac0d05b8ecc65 ]--- <6>[ 312.298732] lkdtm: Saturation detected: still saturated # [ 311.992902] lkdtm: Performing direct entry REFCOUNT_DEC_AND_TEST_SATURATED # [ 312.000269] lkdtm: attempting bad refcount_dec_and_test() from saturated # [ 312.007320] ------------[ cut here ]------------ # [ 312.012449] refcount_t: underflow; use-after-free. # [ 312.017708] WARNING: CPU: 5 PID: 2799 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 312.026407] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 312.080003] CPU: 5 PID: 2799 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 312.088004] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 312.094619] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 312.100887] pc : refcount_warn_saturate+0xf4/0x144 # [ 312.105938] lr : refcount_warn_saturate+0xf4/0x144 # [ 312.110987] sp : ffff800016c23cd0 # [ 312.114560] x29: ffff800016c23cd0 x28: ffff0005c03e4980 # [ 312.120139] x27: 0000000000000000 x26: 0000000000000000 # [ 312.125717] x25: ffff8000114e1c88 x24: ffff800016c23e20 # [ 312.131296] x23: 0000000000000020 x22: ffff0005c60d4000 # [ 312.136874] x21: ffff8000119f3190 x20: ffff8000114e2028 # [ 312.142453] x19: 000000000000003a x18: 0000000000000001 # [ 312.148032] x17: 0000000000000000 x16: 0000000000000000 # [ 312.153610] x15: 0000000000000030 x14: ffffffffffffffff # [ 312.159188] x13: ffff800096c2397a x12: ffff800016c23983 # [ 312.164767] x11: ffff80001256fea8 x10: 0000000000001440 # [ 312.170346] x9 : ffff80001012cbc4 x8 : ffff0005c03e5e20 # [ 312.175925] x7 : 0000000000000000 x6 : ffff800012541000 # [ 312.181503] x5 : ffff800012541c88 x4 : ffff00063f7c2c50 # [ 312.187082] x3 : 0000000000000000 x2 : 0000000000000000 # [ 312.192661] x1 : 0000000000000000 x0 : ffff0005c03e4980 # [ 312.198240] Call trace: # [ 312.200948] refcount_warn_saturate+0xf4/0x144 # [ 312.205658] __refcount_sub_and_test.constprop.0+0x74/0x8c # [ 312.211412] lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED+0x48/0x8c # [ 312.217331] lkdtm_do_action+0x24/0x40 # [ 312.221340] direct_entry+0xd0/0x140 # [ 312.225178] full_proxy_write+0x68/0xbc # [ 312.229278] vfs_write+0xec/0x20c # [ 312.232854] ksys_write+0x70/0x100 # [ 312.236515] __arm64_sys_write+0x24/0x30 # [ 312.240705] el0_svc_common.constprop.0+0x84/0x1e0 # [ 312.245756] do_el0_svc+0x2c/0xa4 # [ 312.249335] el0_svc+0x20/0x30 # [ 312.252650] el0_sync_handler+0xb0/0xb4 # [ 312.256748] el0_sync+0x180/0x1c0 # [ 312.260323] irq event stamp: 0 # [ 312.263642] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 312.270175] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 312.278613] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 312.287050] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 312.293574] ---[ end trace 525ac0d05b8ecc65 ]--- # [ 312.298732] lkdtm: Saturation detected: still saturated # REFCOUNT_DEC_AND_TEST_SATURATED: saw 'Saturation detected: still saturated': ok ok 57 selftests: lkdtm: REFCOUNT_DEC_AND_TEST_SATURATED.sh # selftests: lkdtm: REFCOUNT_SUB_AND_TEST_SATURATED.sh <6>[ 313.622969] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_SATURATED <6>[ 313.630216] lkdtm: attempting bad refcount_sub_and_test() from saturated <4>[ 313.637244] ------------[ cut here ]------------ <4>[ 313.642187] refcount_t: underflow; use-after-free. <4>[ 313.647425] WARNING: CPU: 4 PID: 2834 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 <4>[ 313.656124] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 313.709719] CPU: 4 PID: 2834 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 313.717720] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 313.724337] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) <4>[ 313.730605] pc : refcount_warn_saturate+0xf4/0x144 <4>[ 313.735656] lr : refcount_warn_saturate+0xf4/0x144 <4>[ 313.740705] sp : ffff800016ce3cd0 <4>[ 313.744278] x29: ffff800016ce3cd0 x28: ffff0005c7788000 <4>[ 313.749858] x27: 0000000000000000 x26: 0000000000000000 <4>[ 313.755436] x25: ffff8000114e1c88 x24: ffff800016ce3e20 <4>[ 313.761015] x23: 0000000000000020 x22: ffff0005c77d3000 <4>[ 313.766594] x21: ffff8000119f31b0 x20: ffff8000114e2038 <4>[ 313.772172] x19: 000000000000003b x18: 0000000000000000 <4>[ 313.777751] x17: 0000000000000000 x16: 0000000000000000 <4>[ 313.783330] x15: 0000000000000030 x14: ffffffffffffffff <4>[ 313.788908] x13: ffff800096ce397a x12: ffff800016ce3982 <4>[ 313.794487] x11: ffff80001256fea8 x10: 0000000000001440 <4>[ 313.800065] x9 : ffff80001012cbc4 x8 : ffff0005c77894a0 <4>[ 313.805644] x7 : 0000000000000000 x6 : ffff800012541000 <4>[ 313.811222] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 <4>[ 313.816801] x3 : 0000000000000000 x2 : 0000000000000000 <4>[ 313.822379] x1 : 0000000000000000 x0 : ffff0005c7788000 <4>[ 313.827959] Call trace: <4>[ 313.830667] refcount_warn_saturate+0xf4/0x144 <4>[ 313.835377] __refcount_sub_and_test.constprop.0+0x74/0x8c <4>[ 313.841131] lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED+0x48/0x8c <4>[ 313.847051] lkdtm_do_action+0x24/0x40 <4>[ 313.851060] direct_entry+0xd0/0x140 <4>[ 313.854898] full_proxy_write+0x68/0xbc <4>[ 313.858998] vfs_write+0xec/0x20c <4>[ 313.862573] ksys_write+0x70/0x100 <4>[ 313.866234] __arm64_sys_write+0x24/0x30 <4>[ 313.870424] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 313.875475] do_el0_svc+0x2c/0xa4 <4>[ 313.879054] el0_svc+0x20/0x30 <4>[ 313.882369] el0_sync_handler+0xb0/0xb4 <4>[ 313.886468] el0_sync+0x180/0x1c0 <4>[ 313.890042] irq event stamp: 0 <4>[ 313.893361] hardirqs last enabled at (0): [<0000000000000000>] 0x0 <4>[ 313.899894] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 313.908333] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 <4>[ 313.916769] softirqs last disabled at (0): [<0000000000000000>] 0x0 <4>[ 313.923295] ---[ end trace 525ac0d05b8ecc66 ]--- <6>[ 313.928450] lkdtm: Saturation detected: still saturated # [ 313.622969] lkdtm: Performing direct entry REFCOUNT_SUB_AND_TEST_SATURATED # [ 313.630216] lkdtm: attempting bad refcount_sub_and_test() from saturated # [ 313.637244] ------------[ cut here ]------------ # [ 313.642187] refcount_t: underflow; use-after-free. # [ 313.647425] WARNING: CPU: 4 PID: 2834 at lib/refcount.c:28 refcount_warn_saturate+0xf4/0x144 # [ 313.656124] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 313.709719] CPU: 4 PID: 2834 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 313.717720] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 313.724337] pstate: 60000005 (nZCv daif -PAN -UAO -TCO BTYPE=--) # [ 313.730605] pc : refcount_warn_saturate+0xf4/0x144 # [ 313.735656] lr : refcount_warn_saturate+0xf4/0x144 # [ 313.740705] sp : ffff800016ce3cd0 # [ 313.744278] x29: ffff800016ce3cd0 x28: ffff0005c7788000 # [ 313.749858] x27: 0000000000000000 x26: 0000000000000000 # [ 313.755436] x25: ffff8000114e1c88 x24: ffff800016ce3e20 # [ 313.761015] x23: 0000000000000020 x22: ffff0005c77d3000 # [ 313.766594] x21: ffff8000119f31b0 x20: ffff8000114e2038 # [ 313.772172] x19: 000000000000003b x18: 0000000000000000 # [ 313.777751] x17: 0000000000000000 x16: 0000000000000000 # [ 313.783330] x15: 0000000000000030 x14: ffffffffffffffff # [ 313.788908] x13: ffff800096ce397a x12: ffff800016ce3982 # [ 313.794487] x11: ffff80001256fea8 x10: 0000000000001440 # [ 313.800065] x9 : ffff80001012cbc4 x8 : ffff0005c77894a0 # [ 313.805644] x7 : 0000000000000000 x6 : ffff800012541000 # [ 313.811222] x5 : ffff800012541c88 x4 : ffff00063f7a0c50 # [ 313.816801] x3 : 0000000000000000 x2 : 0000000000000000 # [ 313.822379] x1 : 0000000000000000 x0 : ffff0005c7788000 # [ 313.827959] Call trace: # [ 313.830667] refcount_warn_saturate+0xf4/0x144 # [ 313.835377] __refcount_sub_and_test.constprop.0+0x74/0x8c # [ 313.841131] lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED+0x48/0x8c # [ 313.847051] lkdtm_do_action+0x24/0x40 # [ 313.851060] direct_entry+0xd0/0x140 # [ 313.854898] full_proxy_write+0x68/0xbc # [ 313.858998] vfs_write+0xec/0x20c # [ 313.862573] ksys_write+0x70/0x100 # [ 313.866234] __arm64_sys_write+0x24/0x30 # [ 313.870424] el0_svc_common.constprop.0+0x84/0x1e0 # [ 313.875475] do_el0_svc+0x2c/0xa4 # [ 313.879054] el0_svc+0x20/0x30 # [ 313.882369] el0_sync_handler+0xb0/0xb4 # [ 313.886468] el0_sync+0x180/0x1c0 # [ 313.890042] irq event stamp: 0 # [ 313.893361] hardirqs last enabled at (0): [<0000000000000000>] 0x0 # [ 313.899894] hardirqs last disabled at (0): [] copy_process+0x5d4/0x1950 # [ 313.908333] softirqs last enabled at (0): [] copy_process+0x5d4/0x1950 # [ 313.916769] softirqs last disabled at (0): [<0000000000000000>] 0x0 # [ 313.923295] ---[ end trace 525ac0d05b8ecc66 ]--- # [ 313.928450] lkdtm: Saturation detected: still saturated # REFCOUNT_SUB_AND_TEST_SATURATED: saw 'Saturation detected: still saturated': ok ok 58 selftests: lkdtm: REFCOUNT_SUB_AND_TEST_SATURATED.sh # selftests: lkdtm: REFCOUNT_TIMING.sh # Skipping REFCOUNT_TIMING: timing only ok 59 selftests: lkdtm: REFCOUNT_TIMING.sh # SKIP # selftests: lkdtm: ATOMIC_TIMING.sh # Skipping ATOMIC_TIMING: timing only ok 60 selftests: lkdtm: ATOMIC_TIMING.sh # SKIP # selftests: lkdtm: USERCOPY_HEAP_SIZE_TO.sh <6>[ 315.615854] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_TO <6>[ 315.622343] lkdtm: attempting good copy_to_user of correct size <6>[ 315.630196] lkdtm: attempting bad copy_to_user of too large size # [ 315.615854] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_TO # [ 315.622343] lkdtm: attempting good copy_to_user of correct size # [ 315.630196] lkdtm: attempting bad copy_to_user of too large size # USERCOPY_HEAP_SIZE_TO: missing 'call trace:': [FAIL] not ok 61 selftests: lkdtm: USERCOPY_HEAP_SIZE_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_SIZE_FROM.sh <6>[ 316.535569] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_FROM <6>[ 316.542242] lkdtm: attempting good copy_from_user of correct size <6>[ 316.548742] lkdtm: attempting bad copy_from_user of too large size # [ 316.535569] lkdtm: Performing direct entry USERCOPY_HEAP_SIZE_FROM # [ 316.542242] lkdtm: attempting good copy_from_user of correct size # [ 316.548742] lkdtm: attempting bad copy_from_user of too large size # USERCOPY_HEAP_SIZE_FROM: missing 'call trace:': [FAIL] not ok 62 selftests: lkdtm: USERCOPY_HEAP_SIZE_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_WHITELIST_TO.sh <6>[ 317.381555] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_TO <6>[ 317.388510] lkdtm: attempting good copy_to_user inside whitelist <6>[ 317.395056] lkdtm: attempting bad copy_to_user outside whitelist # [ 317.381555] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_TO # [ 317.388510] lkdtm: attempting good copy_to_user inside whitelist # [ 317.395056] lkdtm: attempting bad copy_to_user outside whitelist # USERCOPY_HEAP_WHITELIST_TO: missing 'call trace:': [FAIL] not ok 63 selftests: lkdtm: USERCOPY_HEAP_WHITELIST_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_HEAP_WHITELIST_FROM.sh <6>[ 318.223375] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_FROM <6>[ 318.230412] lkdtm: attempting good copy_from_user inside whitelist <6>[ 318.236921] lkdtm: attempting bad copy_from_user outside whitelist # [ 318.223375] lkdtm: Performing direct entry USERCOPY_HEAP_WHITELIST_FROM # [ 318.230412] lkdtm: attempting good copy_from_user inside whitelist # [ 318.236921] lkdtm: attempting bad copy_from_user outside whitelist # USERCOPY_HEAP_WHITELIST_FROM: missing 'call trace:': [FAIL] not ok 64 selftests: lkdtm: USERCOPY_HEAP_WHITELIST_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_FRAME_TO.sh <6>[ 319.082037] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_TO <6>[ 319.088622] lkdtm: good_stack: ffff80001714bcd8-ffff80001714bcf8 <6>[ 319.094949] lkdtm: bad_stack : ffff80001714bc38-ffff80001714bc58 <6>[ 319.101286] lkdtm: attempting good copy_to_user of local stack <6>[ 319.107690] lkdtm: attempting bad copy_to_user of distant stack # [ 319.082037] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_TO # [ 319.088622] lkdtm: good_stack: ffff80001714bcd8-ffff80001714bcf8 # [ 319.094949] lkdtm: bad_stack : ffff80001714bc38-ffff80001714bc58 # [ 319.101286] lkdtm: attempting good copy_to_user of local stack # [ 319.107690] lkdtm: attempting bad copy_to_user of distant stack # USERCOPY_STACK_FRAME_TO: missing 'call trace:': [FAIL] not ok 65 selftests: lkdtm: USERCOPY_STACK_FRAME_TO.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_FRAME_FROM.sh <6>[ 319.998355] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_FROM <6>[ 320.005219] lkdtm: good_stack: ffff80001720bcd8-ffff80001720bcf8 <6>[ 320.011575] lkdtm: bad_stack : ffff80001720bc38-ffff80001720bc58 <6>[ 320.018120] lkdtm: attempting good copy_from_user of local stack <6>[ 320.024517] lkdtm: attempting bad copy_from_user of distant stack # [ 319.998355] lkdtm: Performing direct entry USERCOPY_STACK_FRAME_FROM # [ 320.005219] lkdtm: good_stack: ffff80001720bcd8-ffff80001720bcf8 # [ 320.011575] lkdtm: bad_stack : ffff80001720bc38-ffff80001720bc58 # [ 320.018120] lkdtm: attempting good copy_from_user of local stack # [ 320.024517] lkdtm: attempting bad copy_from_user of distant stack # USERCOPY_STACK_FRAME_FROM: missing 'call trace:': [FAIL] not ok 66 selftests: lkdtm: USERCOPY_STACK_FRAME_FROM.sh # exit=1 # selftests: lkdtm: USERCOPY_STACK_BEYOND.sh <6>[ 320.914298] lkdtm: Performing direct entry USERCOPY_STACK_BEYOND <6>[ 320.920767] lkdtm: good_stack: ffff8000172bbcd8-ffff8000172bbcf8 <6>[ 320.927118] lkdtm: bad_stack : ffff8000172bbff8-ffff8000172bc018 <6>[ 320.933574] lkdtm: attempting good copy_to_user of local stack <6>[ 320.939821] lkdtm: attempting bad copy_to_user of distant stack <1>[ 320.946087] Unable to handle kernel paging request at virtual address ffff8000172bc000 <1>[ 320.954516] Mem abort info: <1>[ 320.958582] ESR = 0x96000007 <1>[ 320.961995] EC = 0x25: DABT (current EL), IL = 32 bits <1>[ 320.967760] SET = 0, FnV = 0 <1>[ 320.971100] EA = 0, S1PTW = 0 <1>[ 320.974499] Data abort info: <1>[ 320.977650] ISV = 0, ISS = 0x00000007 <1>[ 320.981757] CM = 0, WnR = 0 <1>[ 320.984996] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 <1>[ 320.991966] [ffff8000172bc000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000605989003, pte=0000000000000000 <0>[ 321.004784] Internal error: Oops: 96000007 [#16] PREEMPT SMP <4>[ 321.010703] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek <4>[ 321.064170] CPU: 0 PID: 3128 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 321.072168] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 321.078780] pstate: 80000005 (Nzcv daif -PAN -UAO -TCO BTYPE=--) <4>[ 321.085051] pc : __arch_copy_to_user+0xa0/0x310 <4>[ 321.089843] lr : _copy_to_user+0x6c/0x94 <4>[ 321.094020] sp : ffff8000172bbc70 <4>[ 321.097589] x29: ffff8000172bbc70 x28: ffff0005c5b2b100 <4>[ 321.103161] x27: 0000000000000000 x26: 0000000000000000 <4>[ 321.108732] x25: ffff8000114e1c88 x24: ffff8000172bbe20 <4>[ 321.114304] x23: 0000000000000016 x22: ffff0005c63c1000 <4>[ 321.119874] x21: ffff8000172bbff8 x20: 0000ffff8e072000 <4>[ 321.125445] x19: 0000000000000020 x18: 0000000000000000 <4>[ 321.131016] x17: 0000000000000000 x16: 0000000000000000 <4>[ 321.136586] x15: ffff8000172bbff8 x14: ffffffffffffffff <4>[ 321.142156] x13: ffff8000972bb98a x12: ffff8000172bb992 <4>[ 321.147727] x11: ffff80001256fea8 x10: ffff8000125c8048 <4>[ 321.153298] x9 : ffff80001011ad40 x8 : ffff800012570048 <4>[ 321.158868] x7 : ffff8000125c8048 x6 : 0000ffff8e072008 <4>[ 321.164439] x5 : 0000ffff8e072020 x4 : 0000000000000008 <4>[ 321.170009] x3 : 0000000000000010 x2 : 0000000000000018 <4>[ 321.175579] x1 : ffff8000172bc000 x0 : 0000ffff8e072000 <4>[ 321.181150] Call trace: <4>[ 321.183854] __arch_copy_to_user+0xa0/0x310 <4>[ 321.188298] do_usercopy_stack+0x28c/0x294 <4>[ 321.192650] lkdtm_USERCOPY_STACK_BEYOND+0x20/0x30 <4>[ 321.197697] lkdtm_do_action+0x24/0x40 <4>[ 321.201702] direct_entry+0xd0/0x140 <4>[ 321.205535] full_proxy_write+0x68/0xbc <4>[ 321.209629] vfs_write+0xec/0x20c <4>[ 321.213200] ksys_write+0x70/0x100 <4>[ 321.216857] __arm64_sys_write+0x24/0x30 <4>[ 321.221040] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 321.226086] do_el0_svc+0x2c/0xa4 <4>[ 321.229659] el0_svc+0x20/0x30 <4>[ 321.232969] el0_sync_handler+0xb0/0xb4 <4>[ 321.237061] el0_sync+0x180/0x1c0 <0>[ 321.240635] Code: a8c12027 a88120c7 d503201f d503201f (a8c12027) <4>[ 321.246987] ---[ end trace 525ac0d05b8ecc67 ]--- # Segmentation fault # [ 320.914298] lkdtm: Performing direct entry USERCOPY_STACK_BEYOND # [ 320.920767] lkdtm: good_stack: ffff8000172bbcd8-ffff8000172bbcf8 # [ 320.927118] lkdtm: bad_stack : ffff8000172bbff8-ffff8000172bc018 # [ 320.933574] lkdtm: attempting good copy_to_user of local stack # [ 320.939821] lkdtm: attempting bad copy_to_user of distant stack # [ 320.946087] Unable to handle kernel paging request at virtual address ffff8000172bc000 # [ 320.954516] Mem abort info: # [ 320.958582] ESR = 0x96000007 # [ 320.961995] EC = 0x25: DABT (current EL), IL = 32 bits # [ 320.967760] SET = 0, FnV = 0 # [ 320.971100] EA = 0, S1PTW = 0 # [ 320.974499] Data abort info: # [ 320.977650] ISV = 0, ISS = 0x00000007 # [ 320.981757] CM = 0, WnR = 0 # [ 320.984996] swapper pgtable: 4k pages, 48-bit VAs, pgdp=0000000049daf000 # [ 320.991966] [ffff8000172bc000] pgd=000000067ffff003, p4d=000000067ffff003, pud=000000067fffe003, pmd=0000000605989003, pte=0000000000000000 # [ 321.004784] Internal error: Oops: 96000007 [#16] PREEMPT SMP # [ 321.010703] Modules linked in: fuse ip_tables x_tables wl18xx wlcore mac80211 libarc4 cfg80211 snd_soc_hdmi_codec dw_hdmi_i2s_audio dw_hdmi_cec rcar_du_drm rcar_lvds rcar_cmm rcar_fdp1 v4l2_mem2mem vsp1 videobuf2_vmalloc videobuf2_dma_contig videobuf2_memops videobuf2_v4l2 videobuf2_common rcar_dw_hdmi dw_hdmi cec snd_soc_audio_graph_card crct10dif_ce wlcore_sdio snd_soc_simple_card_utils drm_kms_helper videodev snd_soc_rcar renesas_usb3 hci_uart mc rcar_fcp btqca btbcm pwm_rcar bluetooth ecdh_generic rcar_can ecc can_dev phy_rcar_gen3_usb3 rfkill renesas_usbhs usb_dmac display_connector drm realtek # [ 321.064170] CPU: 0 PID: 3128 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 321.072168] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 321.078780] pstate: 80000005 (Nzcv daif -PAN -UAO -TCO BTYPE=--) # [ 321.085051] pc : __arch_copy_to_user+0xa0/0x310 # [ 321.089843] lr : _copy_to_user+0x6c/0x94 # [ 321.094020] sp : ffff8000172bbc70 # [ 321.097589] x29: ffff8000172bbc70 x28: ffff0005c5b2b100 # [ 321.103161] x27: 0000000000000000 x26: 0000000000000000 # [ 321.108732] x25: ffff8000114e1c88 x24: ffff8000172bbe20 # [ 321.114304] x23: 0000000000000016 x22: ffff0005c63c1000 # [ 321.119874] x21: ffff8000172bbff8 x20: 0000ffff8e072000 # [ 321.125445] x19: 0000000000000020 x18: 0000000000000000 # [ 321.131016] x17: 0000000000000000 x16: 0000000000000000 # [ 321.136586] x15: ffff8000172bbff8 x14: ffffffffffffffff # [ 321.142156] x13: ffff8000972bb98a x12: ffff8000172bb992 # [ 321.147727] x11: ffff80001256fea8 x10: ffff8000125c8048 # [ 321.153298] x9 : ffff80001011ad40 x8 : ffff800012570048 # [ 321.158868] x7 : ffff8000125c8048 x6 : 0000ffff8e072008 # [ 321.164439] x5 : 0000ffff8e072020 x4 : 0000000000000008 # [ 321.170009] x3 : 0000000000000010 x2 : 0000000000000018 # [ 321.175579] x1 : ffff8000172bc000 x0 : 0000ffff8e072000 # [ 321.181150] Call trace: # [ 321.183854] __arch_copy_to_user+0xa0/0x310 # [ 321.188298] do_usercopy_stack+0x28c/0x294 # [ 321.192650] lkdtm_USERCOPY_STACK_BEYOND+0x20/0x30 # [ 321.197697] lkdtm_do_action+0x24/0x40 # [ 321.201702] direct_entry+0xd0/0x140 # [ 321.205535] full_proxy_write+0x68/0xbc # [ 321.209629] vfs_write+0xec/0x20c # [ 321.213200] ksys_write+0x70/0x100 # [ 321.216857] __arm64_sys_write+0x24/0x30 # [ 321.221040] el0_svc_common.constprop.0+0x84/0x1e0 # [ 321.226086] do_el0_svc+0x2c/0xa4 # [ 321.229659] el0_svc+0x20/0x30 # [ 321.232969] el0_sync_handler+0xb0/0xb4 # [ 321.237061] el0_sync+0x180/0x1c0 # [ 321.240635] Code: a8c12027 a88120c7 d503201f d503201f (a8c12027) # [ 321.246987] ---[ end trace 525ac0d05b8ecc67 ]--- # USERCOPY_STACK_BEYOND: saw 'call trace:': ok ok 67 selftests: lkdtm: USERCOPY_STACK_BEYOND.sh # selftests: lkdtm: USERCOPY_KERNEL.sh <6>[ 324.124924] lkdtm: Performing direct entry USERCOPY_KERNEL <6>[ 324.130777] lkdtm: attempting good copy_to_user from kernel rodata: ffff8000114e2190 <6>[ 324.139115] lkdtm: attempting bad copy_to_user from kernel text: ffff8000102cf520 <3>[ 324.147056] lkdtm: FAIL: survived bad copy_to_user() # [ 324.124924] lkdtm: Performing direct entry USERCOPY_KERNEL # [ 324.130777] lkdtm: attempting good copy_to_user from kernel rodata: ffff8000114e2190 # [ 324.139115] lkdtm: attempting bad copy_to_user from kernel text: ffff8000102cf520 # [ 324.147056] lkdtm: FAIL: survived bad copy_to_user() # USERCOPY_KERNEL: missing 'call trace:': [FAIL] not ok 68 selftests: lkdtm: USERCOPY_KERNEL.sh # exit=1 # selftests: lkdtm: STACKLEAK_ERASING.sh <6>[ 325.052175] lkdtm: Performing direct entry STACKLEAK_ERASING <6>[ 325.058183] lkdtm: checking unused part of the thread stack (15608 bytes)... <3>[ 325.067127] lkdtm: FAIL: the erased part is not found (checked 15608 bytes) <3>[ 325.074923] lkdtm: FAIL: the thread stack is NOT properly erased <4>[ 325.081249] CPU: 3 PID: 3210 Comm: cat Tainted: G D W 5.10.167-cip26 #1 <4>[ 325.089253] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) <4>[ 325.095870] Call trace: <4>[ 325.098591] dump_backtrace+0x0/0x200 <4>[ 325.102515] show_stack+0x20/0x30 <4>[ 325.106095] dump_stack+0x110/0x160 <4>[ 325.109850] lkdtm_STACKLEAK_ERASING+0x130/0x170 <4>[ 325.114733] lkdtm_do_action+0x24/0x40 <4>[ 325.118742] direct_entry+0xd0/0x140 <4>[ 325.122583] full_proxy_write+0x68/0xbc <4>[ 325.126683] vfs_write+0xec/0x20c <4>[ 325.130260] ksys_write+0x70/0x100 <4>[ 325.133922] __arm64_sys_write+0x24/0x30 <4>[ 325.138110] el0_svc_common.constprop.0+0x84/0x1e0 <4>[ 325.143162] do_el0_svc+0x2c/0xa4 <4>[ 325.146744] el0_svc+0x20/0x30 <4>[ 325.150060] el0_sync_handler+0xb0/0xb4 <4>[ 325.154159] el0_sync+0x180/0x1c0 # [ 325.052175] lkdtm: Performing direct entry STACKLEAK_ERASING # [ 325.058183] lkdtm: checking unused part of the thread stack (15608 bytes)... # [ 325.067127] lkdtm: FAIL: the erased part is not found (checked 15608 bytes) # [ 325.074923] lkdtm: FAIL: the thread stack is NOT properly erased # [ 325.081249] CPU: 3 PID: 3210 Comm: cat Tainted: G D W 5.10.167-cip26 #1 # [ 325.089253] Hardware name: HopeRun HiHope RZ/G2M with sub board (DT) # [ 325.095870] Call trace: # [ 325.098591] dump_backtrace+0x0/0x200 # [ 325.102515] show_stack+0x20/0x30 # [ 325.106095] dump_stack+0x110/0x160 # [ 325.109850] lkdtm_STACKLEAK_ERASING+0x130/0x170 # [ 325.114733] lkdtm_do_action+0x24/0x40 # [ 325.118742] direct_entry+0xd0/0x140 # [ 325.122583] full_proxy_write+0x68/0xbc # [ 325.126683] vfs_write+0xec/0x20c # [ 325.130260] ksys_write+0x70/0x100 # [ 325.133922] __arm64_sys_write+0x24/0x30 # [ 325.138110] el0_svc_common.constprop.0+0x84/0x1e0 # [ 325.143162] do_el0_svc+0x2c/0xa4 # [ 325.146744] el0_svc+0x20/0x30 # [ 325.150060] el0_sync_handler+0xb0/0xb4 # [ 325.154159] el0_sync+0x180/0x1c0 # STACKLEAK_ERASING: missing 'OK: the rest of the thread stack is properly erased': [FAIL] not ok 69 selftests: lkdtm: STACKLEAK_ERASING.sh # exit=1 # selftests: lkdtm: CFI_FORWARD_PROTO.sh <6>[ 326.229367] lkdtm: Performing direct entry CFI_FORWARD_PROTO <6>[ 326.235534] lkdtm: Calling matched prototype ... <6>[ 326.240482] lkdtm: Calling mismatched prototype ... <6>[ 326.245872] lkdtm: Fail: survived mismatched prototype function call! # [ 326.229367] lkdtm: Performing direct entry CFI_FORWARD_PROTO # [ 326.235534] lkdtm: Calling matched prototype ... # [ 326.240482] lkdtm: Calling mismatched prototype ... # [ 326.245872] lkdtm: Fail: survived mismatched prototype function call! # CFI_FORWARD_PROTO: missing 'call trace:': [FAIL] not ok 70 selftests: lkdtm: CFI_FORWARD_PROTO.sh # exit=1 lkdtm_PANIC_sh skip lkdtm_BUG_sh pass lkdtm_WARNING_sh pass lkdtm_WARNING_MESSAGE_sh pass lkdtm_EXCEPTION_sh pass lkdtm_LOOP_sh skip lkdtm_EXHAUST_STACK_sh skip lkdtm_CORRUPT_STACK_sh skip lkdtm_CORRUPT_STACK_STRONG_sh skip lkdtm_CORRUPT_LIST_ADD_sh fail lkdtm_CORRUPT_LIST_DEL_sh fail lkdtm_STACK_GUARD_PAGE_LEADING_sh pass lkdtm_STACK_GUARD_PAGE_TRAILING_sh pass lkdtm_UNSET_SMEP_sh skip lkdtm_DOUBLE_FAULT_sh skip lkdtm_CORRUPT_PAC_sh fail lkdtm_UNALIGNED_LOAD_STORE_WRITE_sh skip lkdtm_OVERWRITE_ALLOCATION_sh skip lkdtm_WRITE_AFTER_FREE_sh skip lkdtm_READ_AFTER_FREE_sh fail lkdtm_WRITE_BUDDY_AFTER_FREE_sh skip lkdtm_READ_BUDDY_AFTER_FREE_sh fail lkdtm_SLAB_FREE_DOUBLE_sh fail lkdtm_SLAB_FREE_CROSS_sh fail lkdtm_SLAB_FREE_PAGE_sh fail lkdtm_SOFTLOCKUP_sh skip lkdtm_HARDLOCKUP_sh skip lkdtm_SPINLOCKUP_sh skip lkdtm_HUNG_TASK_sh skip lkdtm_EXEC_DATA_sh pass lkdtm_EXEC_STACK_sh pass lkdtm_EXEC_KMALLOC_sh pass lkdtm_EXEC_VMALLOC_sh pass lkdtm_EXEC_RODATA_sh pass lkdtm_EXEC_USERSPACE_sh pass lkdtm_EXEC_NULL_sh pass lkdtm_ACCESS_USERSPACE_sh fail lkdtm_ACCESS_NULL_sh pass lkdtm_WRITE_RO_sh pass lkdtm_WRITE_RO_AFTER_INIT_sh pass lkdtm_WRITE_KERN_sh pass lkdtm_REFCOUNT_INC_OVERFLOW_sh pass lkdtm_REFCOUNT_ADD_OVERFLOW_sh pass lkdtm_REFCOUNT_INC_NOT_ZERO_OVERFLOW_sh pass lkdtm_REFCOUNT_ADD_NOT_ZERO_OVERFLOW_sh pass lkdtm_REFCOUNT_DEC_ZERO_sh pass lkdtm_REFCOUNT_DEC_NEGATIVE_sh pass lkdtm_REFCOUNT_DEC_AND_TEST_NEGATIVE_sh pass lkdtm_REFCOUNT_SUB_AND_TEST_NEGATIVE_sh pass lkdtm_REFCOUNT_INC_ZERO_sh pass lkdtm_REFCOUNT_ADD_ZERO_sh pass lkdtm_REFCOUNT_INC_SATURATED_sh pass lkdtm_REFCOUNT_DEC_SATURATED_sh pass lkdtm_REFCOUNT_ADD_SATURATED_sh pass lkdtm_REFCOUNT_INC_NOT_ZERO_SATURATED_sh pass lkdtm_REFCOUNT_ADD_NOT_ZERO_SATURATED_sh pass lkdtm_REFCOUNT_DEC_AND_TEST_SATURATED_sh pass lkdtm_REFCOUNT_SUB_AND_TEST_SATURATED_sh pass lkdtm_REFCOUNT_TIMING_sh skip lkdtm_ATOMIC_TIMING_sh skip lkdtm_USERCOPY_HEAP_SIZE_TO_sh fail lkdtm_USERCOPY_HEAP_SIZE_FROM_sh fail lkdtm_USERCOPY_HEAP_WHITELIST_TO_sh fail lkdtm_USERCOPY_HEAP_WHITELIST_FROM_sh fail lkdtm_USERCOPY_STACK_FRAME_TO_sh fail lkdtm_USERCOPY_STACK_FRAME_FROM_sh fail lkdtm_USERCOPY_STACK_BEYOND_sh pass lkdtm_USERCOPY_KERNEL_sh fail lkdtm_STACKLEAK_ERASING_sh fail lkdtm_CFI_FORWARD_PROTO_sh fail + ../../utils/send-to-lava.sh ./output/result.txt + set +x / #