34284738d67f0405325b2c43211c56020b9d0211

Summary

Version: v4.7-7962-g07f00f0
kernel BUG at fs/ext4/mballoc.c:3191!

Boot/crash log

Linux version 4.7.0 (vegard@lenuta) (gcc version 5.3.0 20151204 (Ubuntu 5.3.0-3ubuntu1~14.04) ) #1 Mon Aug 1 09:26:41 CEST 2016
Command line: ignore_loglevel oops=panic panic=-1 panic_on_warn=1 rootfstype=9p root=/dev/root rootflags=trans=virtio,version=9p2000.L rw console=ttyS0 init=/home/vegard/fuzzbot/tmp/ext4/init
x86/fpu: Legacy x87 FPU detected.
x86/fpu: Using 'eager' FPU context switches.
e820: BIOS-provided physical RAM map:
BIOS-e820: [mem 0x0000000000000000-0x000000000009fbff] usable
BIOS-e820: [mem 0x000000000009fc00-0x000000000009ffff] reserved
BIOS-e820: [mem 0x00000000000f0000-0x00000000000fffff] reserved
BIOS-e820: [mem 0x0000000000100000-0x0000000007ffdfff] usable
BIOS-e820: [mem 0x0000000007ffe000-0x0000000007ffffff] reserved
BIOS-e820: [mem 0x00000000feffc000-0x00000000feffffff] reserved
BIOS-e820: [mem 0x00000000fffc0000-0x00000000ffffffff] reserved
debug: ignoring loglevel setting.
NX (Execute Disable) protection: active
Hypervisor detected: KVM
e820: update [mem 0x00000000-0x00000fff] usable ==> reserved
e820: remove [mem 0x000a0000-0x000fffff] usable
e820: last_pfn = 0x7ffe max_arch_pfn = 0x400000000
found SMP MP-table at [mem 0x000f0b10-0x000f0b1f] mapped at [ffff8800000f0b10]
Base memory trampoline at [ffff880000099000] 99000 size 24576
BRK [0x0266b000, 0x0266bfff] PGTABLE
BRK [0x0266c000, 0x0266cfff] PGTABLE
BRK [0x0266d000, 0x0266dfff] PGTABLE
BRK [0x0266e000, 0x0266efff] PGTABLE
kvm-clock: Using msrs 4b564d01 and 4b564d00
kvm-clock: cpu 0, msr 0:7ffd001, primary cpu clock
kvm-clock: using sched offset of 6156 cycles
clocksource: kvm-clock: mask: 0xffffffffffffffff max_cycles: 0x1cd42e4dffb, max_idle_ns: 881590591483 ns
Zone ranges:
  DMA32    [mem 0x0000000000001000-0x0000000007ffdfff]
  Normal   empty
Movable zone start for each node
Early memory node ranges
  node   0: [mem 0x0000000000001000-0x000000000009efff]
  node   0: [mem 0x0000000000100000-0x0000000007ffdfff]
Initmem setup node 0 [mem 0x0000000000001000-0x0000000007ffdfff]
On node 0 totalpages: 32668
  DMA32 zone: 448 pages used for memmap
  DMA32 zone: 21 pages reserved
  DMA32 zone: 32668 pages, LIFO batch:7
kasan: KernelAddressSanitizer initialized
Intel MultiProcessor Specification v1.4
MPTABLE: OEM ID: BOCHSCPU
MPTABLE: Product ID: 0.1         
MPTABLE: APIC at: 0xFEE00000
Processor #0 (Bootup-CPU)
IOAPIC[0]: apic_id 0, version 17, address 0xfec00000, GSI 0-23
Processors: 1
KVM setup async PF for cpu 0
kvm-stealtime: cpu 0, msr 1c50f00
e820: [mem 0x08000000-0xfeffbfff] available for PCI devices
Booting paravirtualized kernel on KVM
clocksource: refined-jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 7645519600211568 ns
pcpu-alloc: s0 r0 d32768 u32768 alloc=1*32768
pcpu-alloc: [0] 0 
Built 1 zonelists in Zone order, mobility grouping on.  Total pages: 32199
Kernel command line: ignore_loglevel oops=panic panic=-1 panic_on_warn=1 rootfstype=9p root=/dev/root rootflags=trans=virtio,version=9p2000.L rw console=ttyS0 init=/home/vegard/fuzzbot/tmp/ext4/init
PID hash table entries: 512 (order: 0, 4096 bytes)
Dentry cache hash table entries: 16384 (order: 5, 131072 bytes)
Inode-cache hash table entries: 8192 (order: 4, 65536 bytes)
Memory: 84800K/130672K available (8486K kernel code, 1244K rwdata, 1456K rodata, 700K init, 8716K bss, 45872K reserved, 0K cma-reserved)
NR_IRQS:4352 nr_irqs:48 16
console [ttyS0] enabled
tsc: Fast TSC calibration using PIT
tsc: Detected 2594.302 MHz processor
Calibrating delay loop (skipped) preset value.. 5188.21 BogoMIPS (lpj=10376424)
pid_max: default: 4096 minimum: 301
Security Framework initialized
Mount-cache hash table entries: 512 (order: 0, 4096 bytes)
Mountpoint-cache hash table entries: 512 (order: 0, 4096 bytes)
Last level iTLB entries: 4KB 0, 2MB 0, 4MB 0
Last level dTLB entries: 4KB 0, 2MB 0, 4MB 0, 1GB 0
CPU: Intel QEMU Virtual CPU version 2.0.0 (family: 0x6, model: 0x6, stepping: 0x3)
Performance Events: Broken PMU hardware detected, using software events only.
Failed to access perfctr msr (MSR c2 is 0)
..TIMER: vector=0x30 apic1=0 pin1=2 apic2=-1 pin2=-1
devtmpfs: initialized
clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 7645041785100000 ns
NET: Registered protocol family 16
PCI: Using configuration type 1 for base access
PCI: Probing PCI hardware
PCI: root bus 00: using default resources
PCI: Probing PCI hardware (bus 00)
PCI host bridge to bus 0000:00
pci_bus 0000:00: root bus resource [io  0x0000-0xffff]
pci_bus 0000:00: root bus resource [mem 0x00000000-0xffffffffff]
pci_bus 0000:00: No busn resource found for root bus, will use [bus 00-ff]
pci 0000:00:00.0: [8086:1237] type 00 class 0x060000
pci 0000:00:01.0: [8086:7000] type 00 class 0x060100
pci 0000:00:01.1: [8086:7010] type 00 class 0x010180
pci 0000:00:01.1: reg 0x20: [io  0xc080-0xc08f]
pci 0000:00:01.1: legacy IDE quirk: reg 0x10: [io  0x01f0-0x01f7]
pci 0000:00:01.1: legacy IDE quirk: reg 0x14: [io  0x03f6]
pci 0000:00:01.1: legacy IDE quirk: reg 0x18: [io  0x0170-0x0177]
pci 0000:00:01.1: legacy IDE quirk: reg 0x1c: [io  0x0376]
pci 0000:00:01.3: [8086:7113] type 00 class 0x068000
pci 0000:00:02.0: [1013:00b8] type 00 class 0x030000
pci 0000:00:02.0: reg 0x10: [mem 0xfc000000-0xfdffffff pref]
pci 0000:00:02.0: reg 0x14: [mem 0xfebf0000-0xfebf0fff]
pci 0000:00:02.0: reg 0x30: [mem 0xfebe0000-0xfebeffff pref]
pci 0000:00:03.0: [8086:100e] type 00 class 0x020000
pci 0000:00:03.0: reg 0x10: [mem 0xfebc0000-0xfebdffff]
pci 0000:00:03.0: reg 0x14: [io  0xc000-0xc03f]
pci 0000:00:03.0: reg 0x30: [mem 0xfeb80000-0xfebbffff pref]
pci 0000:00:04.0: [1af4:1009] type 00 class 0x000200
pci 0000:00:04.0: reg 0x10: [io  0xc040-0xc07f]
pci 0000:00:04.0: reg 0x14: [mem 0xfebf1000-0xfebf1fff]
pci_bus 0000:00: busn_res: [bus 00-ff] end is updated to 00
pci 0000:00:01.0: PIIX/ICH IRQ router [8086:7000]
PCI: pci_cache_line_size set to 64 bytes
e820: reserve RAM buffer [mem 0x0009fc00-0x0009ffff]
e820: reserve RAM buffer [mem 0x07ffe000-0x07ffffff]
clocksource: Switched to clocksource kvm-clock
pci_bus 0000:00: resource 4 [io  0x0000-0xffff]
pci_bus 0000:00: resource 5 [mem 0x00000000-0xffffffffff]
NET: Registered protocol family 2
TCP established hash table entries: 1024 (order: 1, 8192 bytes)
TCP bind hash table entries: 1024 (order: 3, 32768 bytes)
TCP: Hash tables configured (established 1024 bind 1024)
UDP hash table entries: 128 (order: 1, 12288 bytes)
UDP-Lite hash table entries: 128 (order: 1, 12288 bytes)
platform rtc_cmos: registered platform RTC device (no PNP device found)
workingset: timestamp_bits=62 max_order=15 bucket_order=0
9p: Installing v9fs 9p2000 file system support
io scheduler noop registered (default)
virtio-pci 0000:00:04.0: PCI->APIC IRQ transform: INT A -> IRQ 11
virtio-pci 0000:00:04.0: virtio_pci: leaving for legacy driver
Serial: 8250/16550 driver, 4 ports, IRQ sharing disabled
serial8250: ttyS0 at I/O 0x3f8 (irq = 4, base_baud = 115200) is a 16550A
loop: module loaded
9pnet: Installing 9P2000 support
Key type encrypted registered
md: Skipping autodetection of RAID arrays. (raid=autodetect will force)
VFS: Mounted root (9p filesystem) on device 0:10.
devtmpfs: mounted
Freeing unused kernel memory: 700K (ffffffff81d39000 - ffffffff81de8000)
Write protecting the kernel read-only data: 12288k
Freeing unused kernel memory: 1748K (ffff88000184b000 - ffff880001a00000)
Freeing unused kernel memory: 592K (ffff880001b6c000 - ffff880001c00000)
random: fast init done
+ mount -t proc none /proc
+ mount -t sysfs none /sys
+ mkdir -p /mnt
+ mount -t tmpfs none /mnt
+ mkdir -p /var/run/screen
+ mount -t tmpfs none /var/run/screen
+ mount -t tmpfs none /tmp
+ echo ulimit -c unlimited
ulimit -c unlimited
+ ulimit -c unlimited
+ export AFL_SKIP_BIN_CHECK=1
+ AFL_SKIP_BIN_CHECK=1
+ cd /tmp
+ cp /home/vegard/fuzzbot/fuzzers/ext4/input.crashes/34284738d67f0405325b2c43211c56020b9d0211 .cur_input
+ /home/vegard/fuzzbot/fuzzers/ext4/runs/2016-08-01_v4.7-7962-g07f00f0/ext4.exe .cur_input
EXT4-fs (loop0): mounted filesystem without journal. Opts: errors=remount-ro
EXT4-fs warning (device loop0): dx_probe:750: inode #2049: comm ext4.exe: Unrecognised inode hash code 12
EXT4-fs warning (device loop0): dx_probe:854: inode #2049: comm ext4.exe: Corrupt directory, running e2fsck is recommended
------------[ cut here ]------------
kernel BUG at fs/ext4/mballoc.c:3191!
invalid opcode: 0000 [#1] KASAN CPU: 0 PID: 58 Comm: ext4.exe Not tainted 4.7.0 #1 task: ffff880005c502c0 task.stack: ffff880005fe8000
RIP: 0010:[<ffffffff81373890>] [<ffffffff81373890>] ext4_mb_normalize_request.constprop.9+0xbf0/0xfe0
RSP: 0018:ffff880005fef598 EFLAGS: 00010283 RAX: ffff880005fbac40 RBX: ffff880006183b40 RCX: 1ffff10000bf758a RDX: dffffc0000000000 RSI: 0000000000000040 RDI: ffff880005fbac50 RBP: ffff880005fef640 R08: 000000000000000a R09: ffff88000617b8d0 R10: 0000000000000000 R11: 0000000000000000 R12: ffff880005fbb4c0 R13: ffff88000617b8d0 R14: 0000000000000040 R15: dffffc0000000000 FS: 00007f06617d0780(0000) GS:ffffffff81c3e000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 000000000060c000 CR3: 0000000005efa000 CR4: 00000000000006b0 Stack: ffff880000000001 ffffffff81847459 ffff880005fbac94 ffff880005fef9a0 ffff880005fef998 ffff880006183b50 ffff880006183b48 ffff88000617b628 ffff880006183b98 ffff880005fbac40 ffff880000000040 0000000000000040 Call Trace:
[<ffffffff813864a8>] ext4_mb_new_blocks+0x1118/0x21a0
[<ffffffff8135f2fb>] ext4_ext_map_blocks+0x180b/0x5320
[<ffffffff812f1ca3>] ext4_map_blocks+0x303/0x1380
[<ffffffff812fffcf>] ext4_writepages+0xbbf/0x1b30
[<ffffffff8118b31b>] do_writepages+0x7b/0xe0
[<ffffffff8116b48e>] __filemap_fdatawrite_range+0x15e/0x1d0
[<ffffffff8116c3ab>] filemap_write_and_wait_range+0xcb/0x140
[<ffffffff8125da36>] __generic_file_fsync+0x86/0x1a0
[<ffffffff812dfaf0>] ext4_sync_file+0x380/0xb80
[<ffffffff8126ff1d>] vfs_fsync_range+0xed/0x280
[<ffffffff812700e8>] do_fsync+0x38/0x60
[<ffffffff8127014e>] SyS_fdatasync+0xe/0x20
[<ffffffff818477ef>] entry_SYSCALL_64_fastpath+0x1a/0xa4
Code: 0f b6 04 02 84 c0 74 08 3c 03 0f 8e 13 03 00 00 48 8b 45 c0 8b 50 10 31 c0 e9 50 f7 ff ff 41 bc 00 00 01 00 e9 06 f8 ff ff 0f 0b <0f> 0b 0f 0b 0f 0b 41 bc 00 00 02 00 e9 f3 f7 ff ff 0f 0b 41 bc
RIP [<ffffffff81373890>] ext4_mb_normalize_request.constprop.9+0xbf0/0xfe0
RSP <ffff880005fef598> ---[ end trace 238ed46324288baf ]--- Kernel panic - not syncing: Fatal exception Kernel Offset: disabled

Additional information

dumpe2fs 1.42.9 (4-Feb-2014)
dumpe2fs: The ext2 superblock is corrupt while trying to open tmp/ext4/34284738d67f0405325b2c43211c56020b9d0211.full
Couldn't find valid filesystem superblock.
000400 00 10 00 00 00 40 00 00 33 03 00 00 65 39 00 00  >.....@..3...e9..<
000410 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  >................<
000420 04 00 00 00 00 20 00 00 00 08 00 00 d4 cc 7c 57  >..... ........|W<
000430 d4 cc 7c 57 01 00 ff ff 53 ef 01 00 01 00 00 00  >..|W....S.......<
000440 d4 cc 7c 57 00 00 00 00 00 00 00 00 01 00 00 00  >..|W............<
000450 00 00 00 00 0b 00 00 00 80 00 00 fd 3b 00 00 08  >............;...<
000460 56 02 00 00 69 00 00 00 c5 4d 8f 19 a9 5c 41 b0  >V...i....M...\A.<
000470 8e 9a 2e 61 20 05 ef 76 00 00 00 00 00 00 7f ff  >...a ..v........<
000480 00 00 00 00 00 00 00 00 2f 68 6f 6d 65 2f 76 65  >......../home/ve<
000490 67 61 72 64 2f 6b 65 72 6e 65 6c 2d 66 75 7a 7a  >gard/kernel-fuzz<
0004a0 69 6e 67 2d 76 31 2e 30 2d 70 72 65 31 2f 6d 6e  >ing-v1.0-pre1/mn<
0004b0 74 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  >t...............<
0004c0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3f 00  >..............?.<
0004d0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  >................<
0004e0 08 00 00 00 00 00 00 00 00 00 00 00 ae 54 ab 18  >.............T..<
0004f0 32 4d 49 51 83 dd 96 7d 0d 12 f6 a6 01 01 00 00  >2MIQ...}........<
000500 0c 00 00 00 00 00 00 00 d4 cc 7c 57 0a f3 01 00  >..........|W....<
000510 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  >................<
000520 80 20 00 00 00 00 00 00 00 00 00 00 00 00 00 00  >. ..............<
000530 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  >................<
000540 00 00 00 00 00 00 00 00 00 00 00 00 00 00 10 00  >................<
000550 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  >................<
000560 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  >................<
000570 03 00 00 00 04 00 00 00 bd 04 00 00 00 00 00 00  >................<
000580 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  >................<
*
000800

Other versions

v4.7-7962-g07f00f0: kernel BUG at fs/ext4/mballoc.c:3191!
v4.7-6816-g797cee9: kernel BUG at fs/ext4/mballoc.c:3191!
v4.7-rc1-21-g7bc9491: kernel BUG at fs/ext4/mballoc.c:3192!
v4.7-rc7-27-gf97d104: kernel BUG at fs/ext4/mballoc.c:3188!
v4.7-rc7: kernel BUG at fs/ext4/mballoc.c:3188!
v4.6: kernel BUG at fs/ext4/mballoc.c:3184!
v4.5: kernel BUG at fs/ext4/mballoc.c:3177!
v4.4: kernel BUG at fs/ext4/mballoc.c:3177!
v4.3: kernel BUG at fs/ext4/mballoc.c:3175!
v4.2: kernel BUG at fs/ext4/mballoc.c:3175!
v4.1: kernel BUG at fs/ext4/mballoc.c:3159!
v4.0: kernel BUG at fs/ext4/mballoc.c:3159!