[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-04-21 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052


Taisuke Yamada tai.ker...@cc.rakugaki.org changed:

   What|Removed |Added

 CC||tai.ker...@cc.rakugaki.org




--- Comment #39 from Taisuke Yamada tai.ker...@cc.rakugaki.org  2011-04-21 
11:45:45 ---
Is this issue resolved?
I'm seeing almost the same issue with 2.6.38 + qemu-kvm-0.14.0 (on NEC
Express5800/110Ge server), except that my backtrace is calling
paging64_sync_page instead of paging32_sync_page.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-04-21 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #40 from Avi Kivity a...@redhat.com  2011-04-21 12:13:33 ---
(In reply to comment #39)
 Is this issue resolved?
 I'm seeing almost the same issue with 2.6.38 + qemu-kvm-0.14.0 (on NEC
 Express5800/110Ge server), except that my backtrace is calling
 paging64_sync_page instead of paging32_sync_page.


Do you also have netfilter enabled on the host?

What happens if you enable debug options as per comment #29?

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-04-21 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #41 from prochazka prochazka.nico...@gmail.com  2011-04-21 
12:39:11 ---
Hi, 
I never test #38 from avi kivity suggest, 
and now i suppres all bridge ( brctl) and netfilter configuration from my
server, 
i'm using openvswitch without this problem.

Regards, 
Nicolas Prochazka.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-14 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #35 from Avi Kivity a...@redhat.com  2011-02-14 14:52:24 ---
Even if it isn't a kvm bug, it needs to be fixed.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-14 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #36 from prochazka prochazka.nico...@gmail.com  2011-02-14 
15:50:02 ---
I agree with you but i must resend this problem to kernel module bridge or
netfilter, I must isolate the issue .

Regards, 
Nicolas Prochazka.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-14 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #37 from prochazka prochazka.nico...@gmail.com  2011-02-14 
15:51:14 ---
Sorry I do not read your post to netfilter devel list.
Nicolas

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-14 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #38 from Avi Kivity a...@redhat.com  2011-02-14 16:02:06 ---
Please revert ca44ac386181ba7 and try again (with netfilter enabled).

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-13 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #31 from Avi Kivity a...@redhat.com  2011-02-13 16:11:53 ---
What happens if you disable (rmmod) all netfilter modules?

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-13 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #32 from prochazka prochazka.nico...@gmail.com  2011-02-13 
16:38:03 ---
Can you explain your idea ?
In fact, we are using DNAT and SNAT rules to redirect and access VM Guest ( VNC
and RDP ) . And to reproduce bug, connection seems to be important : 

1 - Run VMs and connect to them on only one server : cannot reproduce bug
2 - Two server , one which redirect VNC and RDP connection and execute VM
 second, only execute VM .
= bug can reproduce when connect to a VM on second server.

So it's difficult to me to desactivate netfilter modules to reproduce.

Nicolas

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-13 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #33 from Marcelo Tosatti mtosa...@redhat.com  2011-02-13 19:39:09 
---
So something else appears to be corrupting memory (i verified and its unlikely
to be KVM). Perhaps go back to 2.6.36.3 in an attempt to isolate the issue?

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-13 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #34 from prochazka prochazka.nico...@gmail.com  2011-02-13 
20:13:53 ---
When I said  it worked with 2.6.36 , in fact, I not used brigde and netfilter
with this test , 
so now as avi says, perhaps it's more brctl or netfilter bug and not kvm.

If you think it's not kvm bug, close. And now my way seems to be very long 

Regards, 
Nicolas

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-12 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #30 from prochazka prochazka.nico...@gmail.com  2011-02-12 
17:06:02 ---
hi marcelo, 
I enable CONFIG_SLUB_DEBUG=y and boot with slub_debug=FZPU, 
but now I cannot reproduce bug

I have a lot of : BUG kmalloc-1024: Object padding overwritten

example : 
Feb 12 16:26:49 bergson11630 
Feb 12 16:26:49 bergson11630
=
Feb 12 16:26:49 bergson11630 BUG kmalloc-1024: Object padding overwritten
Feb 12 16:26:49 bergson11630
-
Feb 12 16:26:49 bergson11630 
Feb 12 16:26:49 bergson11630 INFO: 0x8802f8588446-0x8802f8588447. First
byte 0x0 instead of 0x5a
Feb 12 16:26:49 bergson11630 INFO: Allocated in
sock_alloc_send_pskb+0x1d4/0x330 age=1 cpu=1 pid=20244
Feb 12 16:26:49 bergson11630 INFO: Freed in pskb_expand_head+0xcc/0x1f0 age=1
cpu=1 pid=20244
Feb 12 16:26:49 bergson11630 INFO: Slab 0xea000a6535c0 objects=29 used=16
fp=0x8802f8588000 flags=0x20040c1
Feb 12 16:26:49 bergson11630 INFO: Object 0x8802f8588000 @offset=0
fp=0x8802f858a240
Feb 12 16:26:49 bergson11630 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588000:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588010:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588020:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588030:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588040:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588050:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588060:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588070:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588080:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588090:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85880a0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85880b0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85880c0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85880d0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85880e0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85880f0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588100:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588110:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588120:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588130:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588140:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588150:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588160:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588170:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588180:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f8588190:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85881a0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85881b0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85881c0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85881d0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 
Feb 12 16:26:49 bergson11630 Object 0x8802f85881e0:  6b 6b 6b 6b 6b 6b 6b
6b 6b 6b 6b 6b 6b 6b 6b 6b 

[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-11 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #28 from prochazka prochazka.nico...@gmail.com  2011-02-11 
15:43:22 ---
Marcelo, 
debug info
Regards, 
Nicolas

general protection fault:  [#1] SMP 
last sysfs file: /sys/devices/system/cpu/cpu7/cache/index2/shared_cpu_map
CPU 0 
Modules linked in: kvm_intel kvm [last unloaded: kvm]

Pid: 8532, comm: run Not tainted 2.6.37 #3 0P010H/PowerEdge M600
RIP: 0010:[8113a3e8]  [8113a3e8] dup_fd+0x168/0x300
RSP: 0018:8807e3df3d90  EFLAGS: 00010206
RAX: 07f8 RBX: 88022be64580 RCX: bfff
RDX: 8807fe5ed0c0 RSI: 00ff RDI: 0800
RBP: 8807e3df3df0 R08: 88022c413a80 R09: 0003
R10: 0001 R11: 4000 R12: 8807fea2f000
R13: 88022c413e80 R14: 8807e7a9d000 R15: 0100
FS:  7ffaa073f700() GS:8800bfc0() knlGS:
CS:  0010 DS:  ES:  CR0: 8005003b
CR2: 006d6878 CR3: 0007e79eb000 CR4: 000426e0
DR0: 0001 DR1: 0002 DR2: 0001
DR3: 000a DR6: 0ff0 DR7: 0400
Process run (pid: 8532, threadinfo 8807e3df2000, task 8807fe78a000)
Stack:
 8802 00010282 0020 8807e7e3e440
 8807fe93ac08 8807fe93ac80 7ffaa073f9d0 88022d35e000
  01200011 7ffaa073f9d0 
Call Trace:
 [8104fdba] copy_process+0x9fa/0x11e0
 [81031e78] ? do_page_fault+0x1b8/0x480
 [81050621] do_fork+0x81/0x3f0
 [810634cd] ? do_sigaction+0x13d/0x1e0
 [819b11c5] ? _raw_spin_lock_irq+0x15/0x20
 [81062eb1] ? sigprocmask+0x91/0x110
 [8100c498] sys_clone+0x28/0x30
 [810032e3] stub_clone+0x13/0x20
 [81003042] ? system_call_fastpath+0x16/0x1b
Code: 4c 89 c2 e8 5b 83 23 00 45 85 ff 74 77 41 8d 47 ff 31 f6 48 8d 3c c5 08
00 00 00 41 ba 01 00 00 00 31 c0 eb 1a 66 0f 1f 44 00 00 f0 48 ff 42 30 49 89
14 04 ff c6 48 83 c0 08 48 39 f8 74 3c 49 
RIP  [8113a3e8] dup_fd+0x168/0x300
 RSP 8807e3df3d90
---[ end trace 89621523c6ce6788 ]---
general protection fault:  [#2] SMP 
last sysfs file: /sys/devices/system/cpu/cpu7/cache/index2/shared_cpu_map
CPU 0 
Modules linked in: kvm_intel kvm [last unloaded: kvm]

Pid: 8532, comm: run Tainted: G  D 2.6.37 #3 0P010H/PowerEdge M600
RIP: 0010:[8111f5f9]  [8111f5f9] filp_close+0x19/0x90
RSP: 0018:8807e3df3b18  EFLAGS: 00010286
RAX: 8807e7a9d7f8 RBX: 0003 RCX: 8807e7e3ec80
RDX:  RSI: 8807fe93ac00 RDI: 8807fe5ed0c0
RBP: 8807e3df3b38 R08:  R09: 
R10: 8807e7c4b790 R11:  R12: 0001
R13: 8807e7e3e440 R14: 8807fe93ac00 R15: 00ff
FS:  () GS:8800bfc0() knlGS:
CS:  0010 DS:  ES:  CR0: 8005003b
CR2: 006d6878 CR3: 01d87000 CR4: 000426e0
DR0: 0001 DR1: 0002 DR2: 0001
DR3: 000a DR6: 0ff0 DR7: 0400
Process run (pid: 8532, threadinfo 8807e3df2000, task 8807fe78a000)
Stack:
 0077 0003 0001 8807e7e3e440
 8807e3df3b88 810539e0 8807fe78a000 
  8807fe93ac00 8807fe78a4b4 8807fe78a000
Call Trace:
 [810539e0] put_files_struct+0xd0/0xf0
 [81053a54] exit_files+0x54/0x70
 [8105540e] do_exit+0x14e/0x800
 [8100740f] oops_end+0xaf/0xf0
 [8100765b] die+0x5b/0x90
 [81004e72] do_general_protection+0x162/0x170
 [819b18b5] general_protection+0x25/0x30
 [8113a3e8] ? dup_fd+0x168/0x300
 [8104fdba] copy_process+0x9fa/0x11e0
 [81031e78] ? do_page_fault+0x1b8/0x480
 [81050621] do_fork+0x81/0x3f0
 [810634cd] ? do_sigaction+0x13d/0x1e0
 [819b11c5] ? _raw_spin_lock_irq+0x15/0x20
 [81062eb1] ? sigprocmask+0x91/0x110
 [8100c498] sys_clone+0x28/0x30
 [810032e3] stub_clone+0x13/0x20
 [81003042] ? system_call_fastpath+0x16/0x1b
Code: 5d e8 4c 8b 65 f0 4c 8b 6d f8 c9 c3 66 0f 1f 44 00 00 55 48 89 e5 48 83
ec 20 48 89 5d e8 4c 89 65 f0 4c 89 6d f8 0f 1f 44 00 00 48 8b 47 30 48 89 fb
49 89 f4 48 85 c0 74 4d 48 8b 47 20 48 85 
RIP  [8111f5f9] filp_close+0x19/0x90
 RSP 8807e3df3b18
---[ end trace 89621523c6ce6789 ]---
Fixing recursive fault but reboot is needed!
gfn=dead01ff idx=511 lvl=1 d=0 spte=0 old_spte=f001
sp-gfns[511] = dead01ff
sp-gfns[511] = dead01ff
sp-gfns[511] = dead01ff
sp-gfns[510] = dead01fe
sp-gfns[509] = dead01fd
sp-gfns[508] = dead01fc
sp-gfns[507] = dead01fb
[ cut here ]
kernel BUG at arch/x86/kvm/mmu.c:727!
invalid opcode:  [#3] SMP 
last sysfs file:

[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-11 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #29 from Marcelo Tosatti mtosa...@redhat.com  2011-02-11 21:33:17 
---
gfn=dead01ff idx=511 lvl=1 d=0 spte=0 old_spte=f001

The last spte is 0xf001, it should be 0xf001 (two bytes at
end of pgtable zeroed). Something is screwing up.

Nicolas, can you please enable CONFIG_SLUB_DEBUG=y and boot with
slub_debug=FZPU kernel option.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-10 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #21 from prochazka prochazka.nico...@gmail.com  2011-02-10 
08:25:35 ---
Dear all,
Do you have more information about this bug submit ?

Regards, 
Nicolas Prochazka.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-10 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #22 from Marcelo Tosatti mtosa...@redhat.com  2011-02-10 13:36:25 
---
Problem description:

Present spte is dropped while syncing 32-bit level 1 shadow page. But
sp-gfns[index] contains uninitialized value (0 or f001), so
gfn-rmap conversion in rmap_remove fails.

However, debug patch from comment #18 verifies that on present spte
instantiation, via mmu_set_spte, sp-gfns[] is initialized correctly.

From bug instances of comments 19 and 20, index == 511.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-10 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #23 from Marcelo Tosatti mtosa...@redhat.com  2011-02-10 13:50:08 
---
Nicolas,

On comment #2 you mention the bug could not be reproduced, but in comment #3
you report it without hugepages enabled. So, were you using hugepages or not, 
in the reports #18 and #19?

Another thing, what is the last kernel version that works reliably under this
workload?

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-10 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #24 from prochazka prochazka.nico...@gmail.com  2011-02-10 
14:14:25 ---
I can now reproduce it under this circonstance on different server 

- Windows XP guest SP2  : guest OS seems to be important, other XP sp3 works
fine
- connect with vnc to this guest and connect with RDP on other 
( 5 or 6 guests ) .

kernel : 2.6.37 
qemu-kvm with hugepages option for #18 #19 . 

/usr/local/bin/qemu -name XP_013 -vga std -net
tap,vlan=0,name=interne,ifname=vmtap28 -net
nic,vlan=0,macaddr=ac:de:48:88:e2:92,model=e1000 -cpu host -localtime -usb
-usbdevice tablet -vnc 10.98.98.13:135 -monitor
tcp:127.0.0.1:10135,server,nowait,nodelay -m 512 -pidfile
/var/run/qemu/XP_013.pid -net
vde,port=85,vlan=5,sock=/tmpsafe/neoswitch_bridge,name=externe -net
nic,vlan=5,macaddr=ac:de:48:7b:9e:ec,model=e1000 -mem-prealloc -mem-path
/hugepages -rtc base=localtime -drive
file=/mnt/vdisk/images/VM-XP_013.1297326902.381783,index=0,media=disk,snapshot=on,cache=unsafe
-drive
file=/swapfile-guest/swap1,if=ide,index=1,media=disk,snapshot=on,boot=off -fda
fat:floppy:/mnt/vdisk/diskconf/XP_013

Last Kernel that works reliably : 2.6.34  ( I do not test with kernel between
2.6.34 and 2.6.37 ) 


I just reproduce bug, with kernel 2.6.38rc4  + without hugepage 
( kvm module from 2.6.38rc4 tree) 


general protection fault:  [#4] SMP 
last sysfs file: /sys/devices/system/cpu/cpu7/cache/index2/shared_cpu_map
CPU 0 
Modules linked in: kvm_intel kvm bnx2

Pid: 15886, comm: qemu Tainted: G  D 2.6.38-rc4 #1 0P010H/PowerEdge
M600
RIP: 0010:[a00319a5]  [a00319a5] drop_spte+0xd5/0x1f0 [kvm]
RSP: 0018:8804d6cd5b88  EFLAGS: 00010246
RAX: c9001a2d2ff8 RBX: 88049dbc7c00 RCX: 880529dd6460
RDX:  RSI: 880529dd6460 RDI: 8807e30ba000
RBP: 8804d6cd5b98 R08:  R09: dead00200200
R10: dead00100100 R11:  R12: 8804d6efc000
R13: 8804d6cd5c08 R14:  R15: 88049dbc7c00
FS:  7f9b43455740() GS:8800bfc0() knlGS:
CS:  0010 DS:  ES:  CR0: 8005003b
CR2: 056ab000 CR3: 0004d6cfd000 CR4: 000426e0
DR0: 00a0 DR1:  DR2: 0003
DR3: 00b0 DR6: 0ff0 DR7: 0400
Process qemu (pid: 15886, threadinfo 8804d6cd4000, task 88050f22c000)
Stack:
 8804a5027f00 8804d6efc000 8804d6cd5bf8 a0031e7f
 fff5  8804d6cd5be8 0180
  8804d6efc000 8804a50276e0 8804d6cd5c08
Call Trace:
 [a0031e7f] kvm_mmu_prepare_zap_page+0x8f/0x2f0 [kvm]
 [a00327aa] kvm_mmu_zap_all+0x4a/0x90 [kvm]
 [a0026496] kvm_arch_flush_shadow+0x16/0x30 [kvm]
 [a0018c43] __kvm_set_memory_region+0x2c3/0x810 [kvm]
 [81075e28] ? hrtimer_start+0x18/0x20
 [a00473b7] ? create_pit_timer+0xb7/0xd0 [kvm]
 [a00474a3] ? pit_load_count+0xd3/0x120 [kvm]
 [a0047852] ? kvm_pit_load_count+0x22/0x60 [kvm]
 [a00191d3] kvm_set_memory_region+0x43/0x70 [kvm]
 [a001921d] kvm_vm_ioctl_set_memory_region+0x1d/0x30 [kvm]
 [a0019a55] kvm_vm_ioctl+0x1e5/0x3e0 [kvm]
 [811368d3] do_vfs_ioctl+0xa3/0x540
 [81083afe] ? sys_futex+0xce/0x170
 [81136dbf] sys_ioctl+0x4f/0x80
 [81002f82] system_call_fastpath+0x16/0x1b
Code: 50 38 48 63 f6 48 8b 34 f2 0f b6 50 28 83 e2 0f eb b8 0f 1f 40 00 48 83
e6 fe 0f 84 d9 00 00 00 45 31 c0 0f 1f 00 48 89 f1 31 d2 48 8b 39 48 85 ff 74
10 48 39 fb 74 26 ff c2 48 83 c1 08 83 fa 
RIP  [a00319a5] drop_spte+0xd5/0x1f0 [kvm]
 RSP 8804d6cd5b88
---[ end trace a0f93d7b4fb495a7 ]---
general protection fault:  [#5] SMP 
last sysfs file: /sys/devices/system/cpu/cpu7/cache/index2/shared_cpu_map
CPU 5 
Modules linked in: kvm_intel kvm bnx2

Pid: 30332, comm: bash Tainted: G  D 2.6.38-rc4 #1 0P010H/PowerEdge
M600
RIP: 0010:[81140b68]  [81140b68] dup_fd+0x168/0x300
RSP: 0018:8805fbd03da0  EFLAGS: 00010202
RAX: 07f8 RBX: 8807e94179c0 RCX: bfff
RDX: 8807e3ef5480 RSI: 00ff RDI: 0800
RBP: 8805fbd03e00 R08: 8804f2c20280 R09: 0003
R10: 0001 R11: 4000 R12: 8804bf071000
R13: 8804f2c20540 R14: 8807dac23800 R15: 0100
FS:  7fb0a6a11700() GS:8800bfd4() knlGS:
CS:  0010 DS:  ES:  CR0: 8005003b
CR2: 00bf3000 CR3: 0007116cf000 CR4: 000426e0
DR0: 0003 DR1: 00b0 DR2: 0001
DR3:  DR6: 0ff0 DR7: 0400
Process bash (pid: 30332, threadinfo 8805fbd02000, task 880715cd1000)
Stack:
 88050005 00010282 0020 8806fa7dca40
 8807feaceec8 8807feacef40 7fb0a6a119d0 

[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-10 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #25 from prochazka prochazka.nico...@gmail.com  2011-02-10 
14:16:51 ---
cmdline 
/usr/local/bin/qemu -name Soins_003 -vga std -net
tap,vlan=0,name=interne,ifname=vmtap5 -net
nic,vlan=0,macaddr=ac:de:48:1d:e8:2c,model=e1000 -cpu host -localtime -usb
-usbdevice tablet -vnc 10.98.98.19:120 -monitor
tcp:127.0.0.1:10120,server,nowait,nodelay -m 512 -pidfile
/var/run/qemu/Soins_003.pid -net
vde,port=70,vlan=5,sock=/tmpsafe/neoswitch_bridge,name=externe -net
nic,vlan=5,macaddr=ac:de:48:8c:cc:e0,model=e1000 -rtc base=localtime -drive
file=/mnt/vdisk/images/VM-Soins_003.1296578833.637768,index=0,media=disk,snapshot=on,cache=unsafe
-drive
file=/swapfile-guest/swap1,if=ide,index=1,media=disk,snapshot=on,boot=off -fda
fat:floppy:/mnt/vdisk/diskconf/Soins_003

KSM and transparent hugepage is activated on this kernel.

Regards, 
Nicolas

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-10 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #26 from Marcelo Tosatti mtosa...@redhat.com  2011-02-10 16:57:17 
---
Nicolas,

New debug patch attached. Please try it on top of clean 2.6.37.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-10 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #27 from Marcelo Tosatti mtosa...@redhat.com  2011-02-10 16:57:59 
---
Created an attachment (id=47152)
 -- (https://bugzilla.kernel.org/attachment.cgi?id=47152)
kvm-debug-spte-gfn-2.patch

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-08 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #19 from prochazka prochazka.nico...@gmail.com  2011-02-08 
09:46:04 ---
An other log without patch #18 / #17 ( as #16 )  
I try with #18

Feb  8 00:16:37 bergson18494 rmap_remove: gfn=0 index=511 level=1
Feb  8 00:16:37 bergson18494 rmap_remove: 88027ed4fff8 0-BUG
Feb  8 00:16:37 bergson18494 [ cut here ]
Feb  8 00:16:37 bergson18494 kernel BUG at arch/x86/kvm/mmu.c:696!
Feb  8 00:16:37 bergson18494 invalid opcode:  [#2] SMP 
Feb  8 00:16:37 bergson18494 last sysfs file:
/sys/devices/system/cpu/cpu7/cache/index2/shared_cpu_map
Feb  8 00:16:37 bergson18494 CPU 5 
Feb  8 00:16:37 bergson18494 Modules linked in: kvm_intel kvm bnx2
Feb  8 00:16:37 bergson18494 
Feb  8 00:16:37 bergson18494 Pid: 9127, comm: qemu Tainted: G  D 2.6.37
#4 0P010H/PowerEdge M600
Feb  8 00:16:37 bergson18494 RIP: 0010:[a00305e4] 
[a00305e4] drop_spte+0x214/0x220 [kvm]
Feb  8 00:16:37 bergson18494 RSP: 0018:88014e145a58  EFLAGS: 00010296
Feb  8 00:16:37 bergson18494 RAX: 002b RBX: 88027ed4fff8 RCX:
0003
Feb  8 00:16:37 bergson18494 RDX: 81d550c8 RSI: 0086 RDI:
0246
Feb  8 00:16:37 bergson18494 RBP: 88014e145a78 R08: 0002476c R09:

Feb  8 00:16:37 bergson18494 R10:  R11: 000f R12:
880109549640
Feb  8 00:16:37 bergson18494 R13: 88026ae4 R14:  R15:
88027ed4fff8
Feb  8 00:16:37 bergson18494 FS:  7fdecdc7a710()
GS:8800bfd4() knlGS:
Feb  8 00:16:37 bergson18494 CS:  0010 DS: 002b ES: 002b CR0: 8005003b
Feb  8 00:16:37 bergson18494 CR2: 2df52c1f CR3: 000107572000 CR4:
000426e0
Feb  8 00:16:37 bergson18494 DR0: 0001 DR1: 0002 DR2:
0001
Feb  8 00:16:37 bergson18494 DR3: 000a DR6: 0ff0 DR7:
0400
Feb  8 00:16:37 bergson18494 Process qemu (pid: 9127, threadinfo
88014e144000, task 880222e6f000)
Feb  8 00:16:37 bergson18494 Stack:
Feb  8 00:16:37 bergson18494 880109549640 88026ae4 88014e145ae8

Feb  8 00:16:37 bergson18494 88014e145ad8 a00308cf 8801095496e0
88014e145ae8
Feb  8 00:16:37 bergson18494 88026ae4 ea0001ff 88014e145ad8
880222e6
Feb  8 00:16:37 bergson18494 Call Trace:
Feb  8 00:16:37 bergson18494 [a00308cf]
kvm_mmu_prepare_zap_page+0x8f/0x2f0 [kvm]
Feb  8 00:16:37 bergson18494 [a0031627]
__kvm_mmu_free_some_pages+0x47/0x80 [kvm]
Feb  8 00:16:37 bergson18494 [a00378c8]
paging32_page_fault+0x6e8/0x720 [kvm]
Feb  8 00:16:37 bergson18494 [a003d6e1] ?
x86_emulate_insn+0x1e41/0x6350 [kvm]
Feb  8 00:16:37 bergson18494 [a003791a] ? seg_base+0x1a/0x30 [kvm]
Feb  8 00:16:37 bergson18494 [a001] kvm_mmu_page_fault+0x21/0x80
[kvm]
Feb  8 00:16:37 bergson18494 [a00758bd] handle_exception+0x30d/0x380
[kvm_intel]
Feb  8 00:16:37 bergson18494 [a00759c9] vmx_handle_exit+0x99/0x2f0
[kvm_intel]
Feb  8 00:16:37 bergson18494 [a002b166]
kvm_arch_vcpu_ioctl_run+0x616/0xe20 [kvm]
Feb  8 00:16:37 bergson18494 [a0019811] kvm_vcpu_ioctl+0x561/0x860
[kvm]
Feb  8 00:16:37 bergson18494 [8100398e] ?
apic_timer_interrupt+0xe/0x20
Feb  8 00:16:37 bergson18494 [81131087] do_vfs_ioctl+0xa7/0x560
Feb  8 00:16:37 bergson18494 [81122b18] ? fput+0x8/0x280
Feb  8 00:16:37 bergson18494 [810840fe] ? sys_futex+0xce/0x170
Feb  8 00:16:37 bergson18494 [8113158f] sys_ioctl+0x4f/0x80
Feb  8 00:16:37 bergson18494 [81003042]
system_call_fastpath+0x16/0x1b
Feb  8 00:16:37 bergson18494 Code: 48 89 da 48 c7 c7 d8 d2 04 a0 49 2b 54 24 30
31 c0 48 c1 fa 03 e8 31 21 97 e1 48 89 de 48 c7 c7 c3 eb 04 a0 31 c0 e8 20 21
97 e1 0f 0b eb fe 0f 1f 84 00 00 00 00 00 55 48 89 e5 41 55 41 54 53 
Feb  8 00:16:37 bergson18494 RIP  [a00305e4] drop_spte+0x214/0x220
[kvm]
Feb  8 00:16:37 bergson18494 RSP 88014e145a58
Feb  8 00:16:37 bergson18494 ---[ end trace 432bd4d0bcdd90c6 ]---

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-08 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #20 from prochazka prochazka.nico...@gmail.com  2011-02-08 
10:50:13 ---
gfn=f001 idx=511 lvl=1 d=0 spte=0
sp-gfns[511] = f001
sp-gfns[511] = f001
sp-gfns[511] = f001
sp-gfns[510] = f001
sp-gfns[509] = f001
sp-gfns[508] = f001
sp-gfns[507] = f001
[ cut here ]
kernel BUG at arch/x86/kvm/mmu.c:727!
invalid opcode:  [#1] SMP 
last sysfs file: /sys/devices/system/cpu/cpu7/cache/index2/shared_cpu_map
CPU 2 
Modules linked in: kvm_intel kvm bnx2 [last unloaded: kvm]

Pid: 29624, comm: qemu Not tainted 2.6.37 #4 0P010H/PowerEdge M600
RIP: 0010:[a009d7eb]  [a009d7eb] drop_spte+0x2ab/0x2b0
[kvm]
RSP: 0018:8802be535a08  EFLAGS: 00010246
RAX: 0027 RBX: 8802ca8dbff8 RCX: 0003
RDX: 81d550c8 RSI: 0082 RDI: 0246
RBP: 8802be535a28 R08: 0001705a R09: 
R10:  R11: 000f R12: f001
R13: 8802c47098c0 R14: 8802be744000 R15: 8802be535a84
FS:  7f2090ae7710() GS:8800bfc8() knlGS:
CS:  0010 DS: 002b ES: 002b CR0: 8005003b
CR2: 0111 CR3: 0002c228a000 CR4: 000426e0
DR0: 0090 DR1: 00a4 DR2: 00ff
DR3: 000f DR6: 0ff0 DR7: 0400
Process qemu (pid: 29624, threadinfo 8802be534000, task 8807fe06)
Stack:
 0ff8 8802c47098c0 09a7effc 8802fb9a3490
 8802be535ab8 a00a22a5 0001 fa03
 00455c03 88020001 8802 0001
Call Trace:
 [a00a22a5] paging32_sync_page+0xe5/0x1c0 [kvm]
 [a009df9a] __kvm_sync_page+0x5a/0xb0 [kvm]
 [a00a08d9] mmu_sync_children+0x249/0x350 [kvm]
 [819a529e] ? _raw_spin_lock+0xe/0x20
 [a00af073] ? pic_unlock+0x23/0xb0 [kvm]
 [a00aef6a] ? pic_update_irq+0x7a/0xf0 [kvm]
 [a00af388] ? picdev_write+0x158/0x3d0 [kvm]
 [8100398e] ? apic_timer_interrupt+0xe/0x20
 [a00a1535] ? kvm_mmu_get_page+0x4b5/0x710 [kvm]
 [a00a0aa8] mmu_sync_roots+0xc8/0x160 [kvm]
 [a00a1810] kvm_mmu_load+0x80/0x420 [kvm]
 [a00987e5] kvm_arch_vcpu_ioctl_run+0xc95/0xe20 [kvm]
 [a0086811] kvm_vcpu_ioctl+0x561/0x860 [kvm]
 [8112176a] ? do_readv_writev+0x1aa/0x1f0
 [81131087] do_vfs_ioctl+0xa7/0x560
 [810840fe] ? sys_futex+0xce/0x170
 [8113158f] sys_ioctl+0x4f/0x80
 [81003042] system_call_fastpath+0x16/0x1b
Code: 0f 4c 89 e6 41 c0 e8 05 48 89 da 41 83 e0 01 49 2b 55 30 48 c7 c7 38 a5
0b a0 48 c1 fa 03 e8 21 4f 90 e1 48 89 df e8 f5 fb ff ff 0f 0b eb fe 90 55 48
89 e5 41 55 41 54 53 48 83 ec 08 0f 1f 44 
RIP  [a009d7eb] drop_spte+0x2ab/0x2b0 [kvm]
 RSP 8802be535a08
---[ end trace 37175e4ac115e78c ]---

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-04 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #17 from Marcelo Tosatti mtosa...@redhat.com  2011-02-04 21:11:55 
---
Nicolas,

Please try kvm-debug-spte-gfn.patch on top of plain 2.6.37 (without the
previous two patches).

Thanks

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-02-04 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052


Marcelo Tosatti mtosa...@redhat.com changed:

   What|Removed |Added

  Attachment #45162|0   |1
is obsolete||




--- Comment #18 from Marcelo Tosatti mtosa...@redhat.com  2011-02-04 21:13:09 
---
Created an attachment (id=46242)
 -- (https://bugzilla.kernel.org/attachment.cgi?id=46242)
debug sp-gfns validity

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-27 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #16 from prochazka prochazka.nico...@gmail.com  2011-01-28 
06:58:03 ---
Et voilĂ  : 

Jan 28 01:28:18 bergson25412 rmap_remove:  88011ce3fff8 1-BUG
Jan 28 01:28:18 bergson25412 [ cut here ]
Jan 28 01:28:18 bergson25412 kernel BUG at arch/x86/kvm/mmu.c:701!
Jan 28 01:28:18 bergson25412 invalid opcode:  [#1] SMP
Jan 28 01:28:18 bergson25412 last sysfs file:
/sys/devices/system/cpu/cpu7/cache/index2/shared_cpu_map
Jan 28 01:28:18 bergson25412 CPU 3
Jan 28 01:28:18 bergson25412 Modules linked in: kvm_intel kvm
Jan 28 01:28:18 bergson25412
Jan 28 01:28:18 bergson25412 Pid: 14479, comm: qemu Not tainted 2.6.37 #3
MS-9192-01S/Express5800/120Rh-1 [N8100-F]
Jan 28 01:28:18 bergson25412 RIP: 0010:[a001c5a9] 
[a001c5a9] drop_spte+0x1d9/0x220 [kvm]
Jan 28 01:28:18 bergson25412 RSP: 0018:880186bb7a08  EFLAGS: 00010292
Jan 28 01:28:18 bergson25412 RAX: 002c RBX: 88011ce3fff8 RCX:
0003
Jan 28 01:28:18 bergson25412 RDX: 81d970c8 RSI: 0082 RDI:
0246
Jan 28 01:28:18 bergson25412 RBP: 880186bb7a28 R08: e958 R09:

Jan 28 01:28:18 bergson25412 R10:  R11: 000f R12:
8801c5b8bf00
Jan 28 01:28:18 bergson25412 R13: 880186d6c000 R14: 7a03 R15:
880186bb7a84
Jan 28 01:28:18 bergson25412 FS:  7f8e0fc6d710()
GS:8800cfcc() knlGS:
Jan 28 01:28:18 bergson25412 CS:  0010 DS: 002b ES: 002b CR0: 8005003b
Jan 28 01:28:18 bergson25412 CR2: 000c72ed CR3: 0001aa8ff000 CR4:
26e0
Jan 28 01:28:18 bergson25412 DR0: 0045 DR1:  DR2:

Jan 28 01:28:18 bergson25412 DR3: 0005 DR6: 0ff0 DR7:
0400
Jan 28 01:28:18 bergson25412 Process qemu (pid: 14479, threadinfo
880186bb6000, task 8801a85fc000)
Jan 28 01:28:18 bergson25412 Stack:
Jan 28 01:28:18 bergson25412 0ff8 8801c5b8bf00 0c820ffc
8801973cb490
Jan 28 01:28:18 bergson25412 880186bb7ab8 a00210a5 0001
c830
Jan 28 01:28:18 bergson25412 003e6830 0001 
ea01
Jan 28 01:28:18 bergson25412 Call Trace:
Jan 28 01:28:18 bergson25412 [a00210a5] paging32_sync_page+0xe5/0x1c0
[kvm]
Jan 28 01:28:18 bergson25412 [a001cd9a] __kvm_sync_page+0x5a/0xb0
[kvm]
Jan 28 01:28:18 bergson25412 [a001f6d9] mmu_sync_children+0x249/0x350
[kvm]
Jan 28 01:28:18 bergson25412 [a002391a] ? seg_base+0x1a/0x30 [kvm]
Jan 28 01:28:18 bergson25412 [a001d4e2] ? mmu_free_roots+0xc2/0x180
[kvm]
Jan 28 01:28:18 bergson25412 [a0020335] ?
kvm_mmu_get_page+0x4b5/0x710 [kvm]
Jan 28 01:28:18 bergson25412 [a001f8a8] mmu_sync_roots+0xc8/0x160
[kvm]
Jan 28 01:28:18 bergson25412 [a0020610] kvm_mmu_load+0x80/0x420 [kvm]
Jan 28 01:28:18 bergson25412 [a00177e5]
kvm_arch_vcpu_ioctl_run+0xc95/0xe20 [kvm]
Jan 28 01:28:18 bergson25412 [a0015fc0] ?
kvm_arch_vcpu_load+0x50/0x140 [kvm]
Jan 28 01:28:18 bergson25412 [a0005811] kvm_vcpu_ioctl+0x561/0x860
[kvm]
Jan 28 01:28:18 bergson25412 [81131087] do_vfs_ioctl+0xa7/0x560
Jan 28 01:28:18 bergson25412 [81122b39] ? fput+0x29/0x280
Jan 28 01:28:18 bergson25412 [810840fe] ? sys_futex+0xce/0x170
Jan 28 01:28:18 bergson25412 [8113158f] sys_ioctl+0x4f/0x80
Jan 28 01:28:18 bergson25412 [81003042]
system_call_fastpath+0x16/0x1b
Jan 28 01:28:18 bergson25412 Code: 48 89 10 eb c4 48 89 de 48 c7 c7 08 93 03 a0
31 c0 e8 2f 20 99 e1 0f 0b eb fe 48 89 de 48 c
7 c7 de ab 03 a0 31 c0 e8 1a 20 99 e1 0f 0b eb fe 41 0f b6 4c 24 28 4c 89 f6
83 e1 0f 48 89 da 48 c7
Jan 28 01:28:18 bergson25412 RIP  [a001c5a9] drop_spte+0x1d9/0x220
[kvm]
Jan 28 01:28:18 bergson25412 RSP 880186bb7a08
Jan 28 01:28:18 bergson25412 ---[ end trace ca5feff4c31aee0f ]---


Regards, 
Nicolas

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-25 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #9 from prochazka prochazka.nico...@gmail.com  2011-01-25 
08:49:48 ---
seems to be closed, 
but our tests are not exhaustive
Regards, 
NP.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-25 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #10 from Marcelo Tosatti mtosa...@redhat.com  2011-01-25 13:09:07 
---
Nicolas,

It would be good if you can test with hugepages enabled again.

Thanks for the detailed report.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-25 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052


Avi Kivity a...@redhat.com changed:

   What|Removed |Added

 CC||a...@redhat.com




--- Comment #11 from Avi Kivity a...@redhat.com  2011-01-25 13:35:08 ---
Don't understand the patch.  We just update gfns[index], but we don't update
the other rmap stuff?  How did it get inconsistent?

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-25 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #12 from Marcelo Tosatti mtosa...@redhat.com  2011-01-25 13:55:05 
---
It gets inconsistent if mmu_set_spte updates an already present spte with a 
different gfn. For example:

- unsync page spte N gfn A
- guest updates gpte that spte N shadows with gfn B
- page fault updates sptes N with gfn B, via mmu_set_spte
- sp-gfns[] contains stale data

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-25 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #13 from Marcelo Tosatti mtosa...@redhat.com  2011-01-25 17:07:58 
---
Nicolas,

Can you please back out the first patch and apply this debug one instead?

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-25 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #14 from Marcelo Tosatti mtosa...@redhat.com  2011-01-25 17:08:42 
---
Created an attachment (id=45162)
 -- (https://bugzilla.kernel.org/attachment.cgi?id=45162)
debug rmap remove

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-25 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #15 from prochazka prochazka.nico...@gmail.com  2011-01-25 
17:29:00 ---
previous test is with hugepages.
I try to test but i can reproduce only to one server, and this server is not
mine.

Regards, 
Nicolas.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-20 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052


Marcelo Tosatti mtosa...@redhat.com changed:

   What|Removed |Added

 CC||mtosa...@redhat.com




--- Comment #4 from Marcelo Tosatti mtosa...@redhat.com  2011-01-20 17:28:40 
---
Nicolas,

This should be fixed by the attached patch, queued for 2.6.36-stable.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-20 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #5 from Marcelo Tosatti mtosa...@redhat.com  2011-01-20 17:30:38 
---
Created an attachment (id=44522)
 -- (https://bugzilla.kernel.org/attachment.cgi?id=44522)
KVM: MMU: fix rmap_remove on non present sptes

KVM: MMU: fix rmap_remove on non present sptes

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-20 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #6 from prochazka prochazka.nico...@gmail.com  2011-01-20 
19:45:49 ---
hello, 
I do not understand, patch seems to be already apply on 2.6.37 kernel tree, 
and my test are based on this release.

NP.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-20 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #7 from Marcelo Tosatti mtosa...@redhat.com  2011-01-21 03:27:36 
---
Nicolas,

My bad. Can you please try the following patch.

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-20 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #8 from Marcelo Tosatti mtosa...@redhat.com  2011-01-21 03:29:36 
---
Created an attachment (id=44552)
 -- (https://bugzilla.kernel.org/attachment.cgi?id=44552)
update sp-gfns on pte update path

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-19 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #1 from prochazka prochazka.nico...@gmail.com  2011-01-19 
11:05:05 ---

cpuinfo and cmdline : 

/usr/local/bin/qemu -name R005 -vga std -net
tap,vlan=0,name=interne,ifname=vmtap5 -net
nic,vlan=0,macaddr=ac:de:48:3f:74:73,model=rtl8139 -localtime -usb -usbdevice
tablet -vnc 10.98.98.1:105 -monitor tcp:127.0.0.1:10105,server,nowait,nodelay
-m 256 -pidfile /var/run/qemu/R005.pid -net
vde,port=55,vlan=5,sock=/tmpsafe/neoswitch_bridge,name=externe -net
nic,vlan=5,macaddr=ac:de:48:15:c2:f3,model=rtl8139 -mem-prealloc -mem-path
/hugepages -rtc base=localtime -drive
file=/mnt/vdisk/images/VM-R005.1294325971.722755,index=0,media=disk,snapshot=on,cache=writeback
-drive
file=/swapfile-guest/swap1,if=ide,index=1,media=disk,snapshot=on,boot=off -fda
fat:floppy:/mnt/vdisk/diskconf/R005


DEV-10.98.98.1:~# cat /proc/cpuinfo
processor   : 0
vendor_id   : GenuineIntel
cpu family  : 6
model   : 23
model name  : Intel(R) Xeon(R) CPU   E5420  @ 2.50GHz
stepping: 6
cpu MHz : 2493.297
cache size  : 6144 KB
physical id : 0
siblings: 4
core id : 0
cpu cores   : 4
apicid  : 0
initial apicid  : 0
fpu : yes
fpu_exception   : yes
cpuid level : 10
wp  : yes
flags   : fpu vme de pse tsc msr pae mce cx8 apic sep mtrr pge mca cmov
pat pse36 clflush dts acpi mmx fxsr sse sse2 ss ht tm pbe syscall nx lm
constant_tsc arch_perfmon pebs bts rep_good nopl aperfmperf pni dtes64 monitor
ds_cpl vmx est tm2 ssse3 cx16 xtpr pdcm dca sse4_1 lahf_lm dts tpr_shadow vnmi
flexpriority
bogomips: 4986.59
clflush size: 64
cache_alignment : 64
address sizes   : 38 bits physical, 48 bits virtual
power management:

processor   : 1
vendor_id   : GenuineIntel
cpu family  : 6
model   : 23
model name  : Intel(R) Xeon(R) CPU   E5420  @ 2.50GHz
stepping: 6
cpu MHz : 2493.297
cache size  : 6144 KB
physical id : 1
siblings: 4
core id : 0
cpu cores   : 4
apicid  : 4
initial apicid  : 4
fpu : yes
fpu_exception   : yes
cpuid level : 10
wp  : yes
flags   : fpu vme de pse tsc msr pae mce cx8 apic sep mtrr pge mca cmov
pat pse36 clflush dts acpi mmx fxsr sse sse2 ss ht tm pbe syscall nx lm
constant_tsc arch_perfmon pebs bts rep_good nopl aperfmperf pni dtes64 monitor
ds_cpl vmx est tm2 ssse3 cx16 xtpr pdcm dca sse4_1 lahf_lm dts tpr_shadow vnmi
flexpriority
bogomips: 4987.73
clflush size: 64
cache_alignment : 64
address sizes   : 38 bits physical, 48 bits virtual
power management:

processor   : 2
vendor_id   : GenuineIntel
cpu family  : 6
model   : 23
model name  : Intel(R) Xeon(R) CPU   E5420  @ 2.50GHz
stepping: 6
cpu MHz : 2493.297
cache size  : 6144 KB
physical id : 0
siblings: 4
core id : 1
cpu cores   : 4
apicid  : 1
initial apicid  : 1
fpu : yes
fpu_exception   : yes
cpuid level : 10
wp  : yes
flags   : fpu vme de pse tsc msr pae mce cx8 apic sep mtrr pge mca cmov
pat pse36 clflush dts acpi mmx fxsr sse sse2 ss ht tm pbe syscall nx lm
constant_tsc arch_perfmon pebs bts rep_good nopl aperfmperf pni dtes64 monitor
ds_cpl vmx est tm2 ssse3 cx16 xtpr pdcm dca sse4_1 lahf_lm dts tpr_shadow vnmi
flexpriority
bogomips: 4987.66
clflush size: 64
cache_alignment : 64
address sizes   : 38 bits physical, 48 bits virtual
power management:

processor   : 3
vendor_id   : GenuineIntel
cpu family  : 6
model   : 23
model name  : Intel(R) Xeon(R) CPU   E5420  @ 2.50GHz
stepping: 6
cpu MHz : 2493.297
cache size  : 6144 KB
physical id : 1
siblings: 4
core id : 1
cpu cores   : 4
apicid  : 5
initial apicid  : 5
fpu : yes
fpu_exception   : yes
cpuid level : 10
wp  : yes
flags   : fpu vme de pse tsc msr pae mce cx8 apic sep mtrr pge mca cmov
pat pse36 clflush dts acpi mmx fxsr sse sse2 ss ht tm pbe syscall nx lm
constant_tsc arch_perfmon pebs bts rep_good nopl aperfmperf pni dtes64 monitor
ds_cpl vmx est tm2 ssse3 cx16 xtpr pdcm dca sse4_1 lahf_lm dts tpr_shadow vnmi
flexpriority
bogomips: 4987.67
clflush size: 64
cache_alignment : 64
address sizes   : 38 bits physical, 48 bits virtual
power management:

processor   : 4
vendor_id   : GenuineIntel
cpu family  : 6
model   : 23
model name  : Intel(R) Xeon(R) CPU   E5420  @ 2.50GHz
stepping: 6
cpu MHz : 2493.297
cache size  : 6144 KB
physical id : 0
siblings: 4
core id : 2
cpu cores   : 4
apicid  : 2
initial apicid  : 2
fpu : yes
fpu_exception   : yes
cpuid level : 10
wp  : yes
flags   : fpu vme de pse tsc msr pae mce cx8 apic sep mtrr pge 

[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-19 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #2 from prochazka prochazka.nico...@gmail.com  2011-01-19 
11:26:16 ---
it seems without hugepage, i can not reproduce this bugs

(  -mem-prealloc -mem-path /hugepages  )

/usr/local/bin/qemu -name R005 -vga std -net
tap,vlan=0,name=interne,ifname=vmtap5 -net
nic,vlan=0,macaddr=ac:de:48:3f:74:73,model=rtl8139 -localtime -usb -usbdevice
tablet -vnc 10.98.98.1:105 -monitor tcp:127.0.0.1:10105,server,nowait,nodelay
-m 256 -pidfile /var/run/qemu/R005.pid -net
vde,port=55,vlan=5,sock=/tmpsafe/neoswitch_bridge,name=externe -net
nic,vlan=5,macaddr=ac:de:48:15:c2:f3,model=rtl8139 -rtc base=localtime -drive
file=/mnt/vdisk/images/VM-R005.1294325971.722755,index=0,media=disk,snapshot=on,cache=writeback
-drive
file=/swapfile-guest/swap1,if=ide,index=1,media=disk,snapshot=on,boot=off -fda
fat:floppy:/mnt/vdisk/diskconf/R005

-- 
Configure bugmail: https://bugzilla.kernel.org/userprefs.cgi?tab=email
--- You are receiving this mail because: ---
You are watching the assignee of the bug.
--
To unsubscribe from this list: send the line unsubscribe kvm in
the body of a message to majord...@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Bug 27052] Module KVM : unable to handle kernel NULL pointer dereference at

2011-01-19 Thread bugzilla-daemon
https://bugzilla.kernel.org/show_bug.cgi?id=27052





--- Comment #3 from prochazka prochazka.nico...@gmail.com  2011-01-19 
11:34:21 ---
Sorry, 
witout hugepage, bug is alway here : 






rmap_remove: 8802455bfff8 0-BUG
[ cut here ]
kernel BUG at arch/x86/kvm/mmu.c:695!
invalid opcode:  [#1] SMP
last sysfs file: /sys/devices/system/cpu/cpu7/cache/index2/shared_cpu_map
CPU 2
Modules linked in: kvm_intel kvm

Pid: 28761, comm: qemu Not tainted 2.6.37 #3 MS-9192-01S/Express5800/120Rj-2
[N8100-1407E]
RIP: 0010:[a001c5ae]  [a001c5ae] drop_spte+0x1de/0x1f0
[kvm]
RSP: 0018:88078db35a18  EFLAGS: 00010292
RAX: 002b RBX: 8802455bfff8 RCX: 0003
RDX: 81d970c8 RSI: 0082 RDI: 0246
RBP: 88078db35a28 R08: 000106f1 R09: 
R10:  R11: 000f R12: 8801cd2c8000
R13: 010147fc R14: 88078da98000 R15: 88078db35a84
FS:  7f4085c02710() GS:8800cfc8() knlGS:
CS:  0010 DS: 002b ES: 002b CR0: 8005003b
CR2: 1806107a CR3: 0007641ee000 CR4: 26e0
DR0: 0001 DR1: 0002 DR2: 0001
DR3: 000a DR6: 0ff0 DR7: 0400
Process qemu (pid: 28761, threadinfo 88078db34000, task 8801b8264000)
Stack:
 0ff8 88077abdb280 88078db35ab8 a0021075
 00040001 add2 006d5f42 0001
  ea01 88078db35a78 001f010031ed
Call Trace:
 [a0021075] paging32_sync_page+0xe5/0x1c0 [kvm]
 [a001cd6a] __kvm_sync_page+0x5a/0xb0 [kvm]
 [a001f6a9] mmu_sync_children+0x249/0x350 [kvm]
 [a00217ca] ? kvm_mmu_pte_write+0x29a/0xaa0 [kvm]
 [a00238aa] ? seg_base+0x1a/0x30 [kvm]
 [a001d4b2] ? mmu_free_roots+0xc2/0x180 [kvm]
 [a0020305] ? kvm_mmu_get_page+0x4b5/0x710 [kvm]
 [a001f878] mmu_sync_roots+0xc8/0x160 [kvm]
 [a00205e0] kvm_mmu_load+0x80/0x420 [kvm]
 [a00177e5] kvm_arch_vcpu_ioctl_run+0xc95/0xe20 [kvm]
 [81029a61] ? native_load_tr_desc+0x11/0x20
 [a0015fc0] ? kvm_arch_vcpu_load+0x50/0x140 [kvm]
 [a0005811] kvm_vcpu_ioctl+0x561/0x860 [kvm]
 [819aeeac] ? schedule+0x31c/0x990
 [a0004980] ? kvm_vm_ioctl+0x0/0x3e0 [kvm]
 [81131087] do_vfs_ioctl+0xa7/0x560
 [810840fe] ? sys_futex+0xce/0x170
 [8113158f] sys_ioctl+0x4f/0x80
 [81003042] system_call_fastpath+0x16/0x1b
Code: e1 0f 0b eb fe 48 89 de 48 c7 c7 4e ab 03 a0 31 c0 e8 2a 20 99 e1 0f 0b
eb fe 48 89 de 48 c7 c7 33 ab 03 a0 31 c0 e8 15 20 99 e1 0f 0b eb fe 66 66 66
66 66 2e 0f 1f 84 00 00 00 00 00 55 48 89
RIP  [a001c5ae] drop_spte+0x1de/0x1f0 [kvm]
 RSP 88078db35a18
---[ end trace 75c63c522243bec6 ]---
rmap_remove: 8807d245fff8 0-BUG
[ cut here ]
kernel BUG at arch/x86/kvm/mmu.c:695!
invalid opcode:  [#2] SMP
last sysfs file: /sys/devices/system/cpu/cpu7/cache/index2/shared_cpu_map
CPU 4
Modules linked in: kvm_intel kvm

Pid: 17775, comm: qemu Tainted: G  D 2.6.37 #3
MS-9192-01S/Express5800/120Rj-2 [N8100-1407E]
RIP: 0010:[a001c5ae]  [a001c5ae] drop_spte+0x1de/0x1f0
[kvm]
RSP: 0018:88002646ba18  EFLAGS: 00010292
RAX: 002b RBX: 8807d245fff8 RCX: 0003
RDX: 81d970c8 RSI: 0082 RDI: 0246
RBP: 88002646ba28 R08: 00011256 R09: 
R10:  R11: 000f R12: 88002645c000
R13: 098d67fc R14: 8800264e R15: 88002646ba84
FS:  7ff5b0c75710() GS:8800cfd0() knlGS:
CS:  0010 DS: 002b ES: 002b CR0: 8005003b
CR2: e2248000 CR3: 26435000 CR4: 26e0
DR0: 00a0 DR1:  DR2: 0003
DR3: 00b0 DR6: 0ff0 DR7: 0400
Process qemu (pid: 17775, threadinfo 88002646a000, task 88005d4dc000)
Stack:
 0ff8 8801b7ef10a0 88002646bab8 a0021075
 0001 0001045c 00228e71 0001
  ea01 88002646ba78 0008010031ed
Call Trace:
 [a0021075] paging32_sync_page+0xe5/0x1c0 [kvm]
 [a001cd6a] __kvm_sync_page+0x5a/0xb0 [kvm]
 [a001f6a9] mmu_sync_children+0x249/0x350 [kvm]
 [a0029671] ? x86_emulate_insn+0x1e41/0x6350 [kvm]
 [a00238aa] ? seg_base+0x1a/0x30 [kvm]
 [a001d4b2] ? mmu_free_roots+0xc2/0x180 [kvm]
 [a0020305] ? kvm_mmu_get_page+0x4b5/0x710 [kvm]
 [a001f878] mmu_sync_roots+0xc8/0x160 [kvm]
 [a00205e0] kvm_mmu_load+0x80/0x420 [kvm]
 [a00177e5] kvm_arch_vcpu_ioctl_run+0xc95/0xe20 [kvm]
 [a0015fc0] ? kvm_arch_vcpu_load+0x50/0x140 [kvm]
 [a0005811] kvm_vcpu_ioctl+0x561/0x860 [kvm]