Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.kernel > #1207848 > unrolled thread
| Started by | Greg Kroah-Hartman <gregkh@linuxfoundation.org> |
|---|---|
| First post | 2015-08-14 20:40 +0200 |
| Last post | 2015-08-15 18:50 +0200 |
| Articles | 9 — 3 participants |
Back to article view | Back to linux.kernel
[PATCH 4.1 00/84] 4.1.6-stable review Greg Kroah-Hartman <gregkh@linuxfoundation.org> - 2015-08-14 20:40 +0200
[PATCH 4.1 24/84] drivers/usb: Delete XHCI command timer if necessary Greg Kroah-Hartman <gregkh@linuxfoundation.org> - 2015-08-14 20:40 +0200
[PATCH 4.1 27/84] usb: chipidea: ehci_init_driver is intended to call one time Greg Kroah-Hartman <gregkh@linuxfoundation.org> - 2015-08-14 20:40 +0200
[PATCH 4.1 10/84] MIPS: Make set_pte() SMP safe. Greg Kroah-Hartman <gregkh@linuxfoundation.org> - 2015-08-14 20:40 +0200
[PATCH 4.1 11/84] fsnotify: fix oops in fsnotify_clear_marks_by_group_flags() Greg Kroah-Hartman <gregkh@linuxfoundation.org> - 2015-08-14 20:40 +0200
Re: [PATCH 4.1 00/84] 4.1.6-stable review Shuah Khan <shuahkh@osg.samsung.com> - 2015-08-15 02:20 +0200
Re: [PATCH 4.1 00/84] 4.1.6-stable review Greg Kroah-Hartman <gregkh@linuxfoundation.org> - 2015-08-15 02:50 +0200
Re: [PATCH 4.1 00/84] 4.1.6-stable review Guenter Roeck <linux@roeck-us.net> - 2015-08-15 17:30 +0200
Re: [PATCH 4.1 00/84] 4.1.6-stable review Greg Kroah-Hartman <gregkh@linuxfoundation.org> - 2015-08-15 18:50 +0200
| From | Greg Kroah-Hartman <gregkh@linuxfoundation.org> |
|---|---|
| Date | 2015-08-14 20:40 +0200 |
| Subject | [PATCH 4.1 00/84] 4.1.6-stable review |
| Message-ID | <pXrh7-Cx-3@gated-at.bofh.it> |
This is the start of the stable review cycle for the 4.1.6 release.
There are 84 patches in this series, all will be posted as a response
to this one. If anyone has any issues with these being applied, please
let me know.
Responses should be made by Sun Aug 16 17:41:54 UTC 2015.
Anything received after that time might be too late.
The whole patch series can be found in one patch at:
kernel.org/pub/linux/kernel/v4.x/stable-review/patch-4.1.6-rc1.gz
and the diffstat can be found below.
thanks,
greg k-h
-------------
Pseudo-Shortlog of commits:
Greg Kroah-Hartman <gregkh@linuxfoundation.org>
Linux 4.1.6-rc1
Jeff Layton <jlayton@poochiereds.net>
nfsd: do nfs4_check_fh in nfs4_check_file instead of nfs4_check_olstateid
Christoph Hellwig <hch@lst.de>
nfsd: refactor nfs4_preprocess_stateid_op
Paolo Bonzini <pbonzini@redhat.com>
kvm: x86: fix kvm_apic_has_events to check for NULL pointer
Amanieu d'Antras <amanieu@gmail.com>
signal: fix information leak in copy_siginfo_from_user32
Amanieu d'Antras <amanieu@gmail.com>
signal: fix information leak in copy_siginfo_to_user
Amanieu d'Antras <amanieu@gmail.com>
signalfd: fix information leak in signalfd_copyinfo
Michal Hocko <mhocko@suse.cz>
mm, vmscan: Do not wait for page writeback for GFP_NOFS allocations
Krzysztof Kozlowski <k.kozlowski@samsung.com>
thermal: exynos: Disable the regulator on probe failure
Hans de Goede <hdegoede@redhat.com>
Input: alps - only Dell laptops have separate button bits for v2 dualpoint sticks
Scott Wood <scottwood@freescale.com>
mtd: nand: Fix NAND_USE_BOUNCE_BUFFER flag conflict
Pieter Hollants <pieter@hollants.com>
USB: qcserial: Add support for Dell Wireless 5809e 4G Modem
Reinhard Speyerer <rspmn@arcor.de>
USB: qcserial/option: make AT URCs work for Sierra Wireless MC7305/MC7355
Peter Chen <peter.chen@freescale.com>
usb: gadget: f_uac2: fix calculation of uac2->p_interval
Guenter Roeck <linux@roeck-us.net>
staging: lustre: Include unaligned.h instead of access_ok.h
Malcolm Priestley <tvboxspy@gmail.com>
staging: vt6655: vnt_bss_info_changed check conf->beacon_rate is not NULL
Mike Snitzer <snitzer@redhat.com>
dm: fix dm_merge_bvec regression on 32 bit systems
NeilBrown <neilb@suse.com>
md/raid1: extend spinlock to protect raid1_end_read_request against inconsistencies
Michael S. Tsirkin <mst@redhat.com>
PCI: Restore PCI_MSIX_FLAGS_BIRMASK definition
Kinglong Mee <kinglongmee@gmail.com>
nfsd: Drop BUG_ON and ignore SECLABEL on absent filesystem
Joseph Qi <joseph.qi@huawei.com>
ocfs2: fix shift left overflow
Joseph Qi <joseph.qi@huawei.com>
ocfs2: fix BUG in ocfs2_downconvert_thread_do_work()
Marcus Gelderie <redmnic@gmail.com>
ipc: modify message queue accounting to not take kernel data structures into account
Pali Rohár <pali.rohar@gmail.com>
hwmon: (dell-smm) Blacklist Dell Studio XPS 8100
Javier Martinez Canillas <javier@osg.samsung.com>
hwmon: (nct7904) Export I2C module alias information
Takashi Sakamoto <o-takashi@sakamocchi.jp>
ALSA: fireworks/firewire-lib: add support for recent firmware quirk
Hui Wang <hui.wang@canonical.com>
ALSA: hda - one Dell machine needs the headphone white noise fixup
Dan Carpenter <dan.carpenter@oracle.com>
ALSA: hda - fix cs4210_spdif_automute()
Roger Quadros <rogerq@ti.com>
ARM: OMAP2+: hwmod: Fix _wait_target_ready() for hwmods without sysc
Denis Carikli <denis@eukrea.com>
ARM: dts: i.MX35: Fix can support.
Ilya Dryomov <idryomov@gmail.com>
rbd: fix copyup completion race
Herbert Xu <herbert@gondor.apana.org.au>
crypto: ixp4xx - Remove bogus BUG_ON on scattered dst buffer
Tadeusz Struk <tadeusz.struk@intel.com>
crypto: qat - Fix invalid synchronization between register/unregister sym algs
Martin Schwidefsky <schwidefsky@de.ibm.com>
hwrng: core - correct error check of kthread_run call
Marek Marczykowski-Górecki <marmarek@invisiblethingslab.com>
xen/gntdevt: Fix race condition in gntdev_release()
Andy Lutomirski <luto@kernel.org>
x86/xen: Probe target addresses in set_aliased_prot() before the hypercall
Lars-Peter Clausen <lars@metafoo.de>
ASoC: dapm: Don't add prefix to widget stream name
Lars-Peter Clausen <lars@metafoo.de>
ASoC: dapm: Lock during userspace access
Axel Lin <axel.lin@ingics.com>
ASoC: pcm1681: Fix setting de-emphasis sampling rate selection
Ben Zhang <benzh@chromium.org>
ASoC: ssm4567: Keep TDM_BCLKS in ssm4567_set_dai_fmt
Shilpa Sreeramalu <shilpa.sreeramalu@intel.com>
ASoC: Intel: Get correct usage_count value to load firmware
Murali Karicheri <m-karicheri2@ti.com>
ARM: dts: keystone: fix dt bindings to use post div register for mainpll
Murali Karicheri <m-karicheri2@ti.com>
clk: keystone: add support for post divider register for main pll
David S. Miller <davem@davemloft.net>
sparc64: Fix userspace FPU register corruptions.
Herbert Xu <herbert@gondor.apana.org.au>
crypto: nx - Fix reentrancy bugs
Leonidas Da Silva Barbosa <leosilva@linux.vnet.ibm.com>
crypto: nx - Fixing SHA update bug
Leonidas Da Silva Barbosa <leosilva@linux.vnet.ibm.com>
crypto: nx - Fixing NX data alignment with nx_sg list
Cyrille Pitchen <cyrille.pitchen@atmel.com>
dmaengine: at_xdmac: fix transfer data width in at_xdmac_prep_slave_sg()
Andy Lutomirski <luto@kernel.org>
x86/nmi/64: Use DF to avoid userspace RSP confusing nested NMI detection
Andy Lutomirski <luto@kernel.org>
x86/nmi/64: Reorder nested NMI checks
Andy Lutomirski <luto@kernel.org>
x86/nmi/64: Improve nested NMI comments
Andy Lutomirski <luto@kernel.org>
x86/nmi/64: Switch stacks on userspace NMI entry
Andy Lutomirski <luto@kernel.org>
x86/nmi/64: Remove asm code that saves CR2
Andy Lutomirski <luto@kernel.org>
x86/nmi: Enable nested do_nmi() handling for 64-bit kernels
Andy Lutomirski <luto@kernel.org>
x86/asm/entry/64: Remove pointless jump to irq_return
Michal Kazior <michal.kazior@tieto.com>
ath10k: fix qca61x4 hw2.1 support
Benjamin Randazzo <benjamin@randazzo.fr>
md: use kzalloc() when bitmap is disabled
NeilBrown <neilb@suse.de>
phy: twl4030-usb: make runtime pm more reliable.
Peter Chen <peter.chen@freescale.com>
usb: chipidea: ehci_init_driver is intended to call one time
Alan Stern <stern@rowland.harvard.edu>
usb: udc: core: add device_del() call to error pathway
Dirk Behme <dirk.behme@de.bosch.com>
USB: sierra: add 1199:68AB device ID
Gavin Shan <gwshan@linux.vnet.ibm.com>
drivers/usb: Delete XHCI command timer if necessary
Mathias Nyman <mathias.nyman@linux.intel.com>
xhci: fix off by one error in TRB DMA address boundary check
Krzysztof Kozlowski <k.kozlowski.k@gmail.com>
dmaengine: pl330: Really fix choppy sound because of wrong residue calculation
Krzysztof Kozlowski <k.kozlowski@samsung.com>
dmaengine: pl330: Fix overflow when reporting residue in memcpy
Johan Hedberg <johan.hedberg@intel.com>
Bluetooth: Fix NULL pointer dereference in smp_conn_security
Brian King <brking@linux.vnet.ibm.com>
ipr: Fix invalid array indexing for HRRQ
Brian King <brking@linux.vnet.ibm.com>
ipr: Fix incorrect trace indexing
Brian King <brking@linux.vnet.ibm.com>
ipr: Fix locking for unit attention handling
Daniel Vetter <daniel.vetter@ffwll.ch>
drm/dp-mst: Remove debug WARN_ON
Alex Deucher <alexander.deucher@amd.com>
drm/radeon/combios: add some validation of lvds values
Alex Deucher <alexander.deucher@amd.com>
drm/radeon: rework audio detect (v4)
Chris Wilson <chris@chris-wilson.co.uk>
drm/i915: Replace WARN inside I915_READ64_2x32 with retry loop
Chris Wilson <chris@chris-wilson.co.uk>
drm/i915: Declare the swizzling unknown for L-shaped configurations
Jan Kara <jack@suse.com>
fsnotify: fix oops in fsnotify_clear_marks_by_group_flags()
David Daney <david.daney@cavium.com>
MIPS: Make set_pte() SMP safe.
James Hogan <james.hogan@imgtec.com>
MIPS: Flush RPS on kernel entry with EVA
Florian Fainelli <f.fainelli@gmail.com>
Revert "MIPS: BCM63xx: Provide a plat_post_dma_flush hook"
James Hogan <james.hogan@imgtec.com>
MIPS: show_stack: Fix stack trace with EVA
James Hogan <james.hogan@imgtec.com>
MIPS: do_mcheck: Fix kernel code dump with EVA
Felix Fietkau <nbd@openwrt.org>
MIPS: Export get_c0_perfcount_int()
Felix Fietkau <nbd@openwrt.org>
MIPS: Fix sched_getaffinity with MT FPAFF enabled
James Hogan <james.hogan@imgtec.com>
MIPS: Malta: Don't reinitialise RTC
James Cowgill <James.Cowgill@imgtec.com>
MIPS: Replace add and sub instructions in relocate_kernel.S with addiu
James Cowgill <James.Cowgill@imgtec.com>
MIPS: unaligned: Fix build error on big endian R6 kernels
-------------
Diffstat:
.../devicetree/bindings/clock/keystone-pll.txt | 8 +-
Documentation/input/alps.txt | 6 +-
Makefile | 4 +-
arch/arm/boot/dts/imx35.dtsi | 8 +-
arch/arm/boot/dts/k2e-clocks.dtsi | 5 +-
arch/arm/boot/dts/k2hk-clocks.dtsi | 5 +-
arch/arm/boot/dts/k2l-clocks.dtsi | 5 +-
arch/arm/mach-omap2/omap_hwmod.c | 24 +-
arch/arm64/kernel/signal32.c | 5 +-
arch/mips/ath79/setup.c | 1 +
arch/mips/include/asm/mach-bcm63xx/dma-coherence.h | 10 -
arch/mips/include/asm/pgtable.h | 31 +++
arch/mips/include/asm/stackframe.h | 25 ++
arch/mips/kernel/mips-mt-fpaff.c | 5 +-
arch/mips/kernel/relocate_kernel.S | 8 +-
arch/mips/kernel/signal32.c | 2 -
arch/mips/kernel/traps.c | 13 +
arch/mips/kernel/unaligned.c | 2 +-
arch/mips/lantiq/irq.c | 1 +
arch/mips/mti-malta/malta-time.c | 16 +-
arch/mips/mti-sead3/sead3-time.c | 1 +
arch/mips/pistachio/time.c | 1 +
arch/mips/ralink/irq.c | 1 +
arch/powerpc/kernel/signal_32.c | 2 -
arch/sparc/include/asm/visasm.h | 16 +-
arch/sparc/lib/NG4memcpy.S | 5 +-
arch/sparc/lib/VISsave.S | 67 +----
arch/sparc/lib/ksyms.c | 4 -
arch/tile/kernel/compat_signal.c | 2 -
arch/x86/kernel/entry_64.S | 286 +++++++++++++--------
arch/x86/kernel/nmi.c | 123 ++++-----
arch/x86/kvm/lapic.h | 2 +-
arch/x86/xen/enlighten.c | 40 +++
drivers/block/rbd.c | 22 +-
drivers/char/hw_random/core.c | 2 +-
drivers/char/i8k.c | 18 +-
drivers/clk/keystone/pll.c | 20 +-
drivers/crypto/ixp4xx_crypto.c | 1 -
drivers/crypto/nx/nx-aes-ccm.c | 6 +-
drivers/crypto/nx/nx-aes-ctr.c | 7 +-
drivers/crypto/nx/nx-aes-gcm.c | 17 +-
drivers/crypto/nx/nx-aes-xcbc.c | 70 +++--
drivers/crypto/nx/nx-sha256.c | 105 ++++----
drivers/crypto/nx/nx-sha512.c | 107 ++++----
drivers/crypto/nx/nx.c | 71 ++---
drivers/crypto/nx/nx.h | 16 +-
drivers/crypto/qat/qat_common/qat_algs.c | 24 +-
drivers/dma/at_xdmac.c | 7 +-
drivers/dma/pl330.c | 3 +-
drivers/gpu/drm/drm_dp_mst_topology.c | 1 -
drivers/gpu/drm/i915/i915_drv.h | 17 +-
drivers/gpu/drm/i915/i915_gem_tiling.c | 5 +-
drivers/gpu/drm/radeon/dce6_afmt.c | 62 ++---
drivers/gpu/drm/radeon/radeon_audio.c | 143 +++++------
drivers/gpu/drm/radeon/radeon_audio.h | 3 +-
drivers/gpu/drm/radeon/radeon_combios.c | 7 +-
drivers/gpu/drm/radeon/radeon_connectors.c | 18 +-
drivers/gpu/drm/radeon/radeon_mode.h | 2 +-
drivers/hwmon/nct7904.c | 1 +
drivers/input/mouse/alps.c | 8 +-
drivers/md/dm.c | 27 +-
drivers/md/md.c | 2 +-
drivers/md/raid1.c | 10 +-
drivers/net/wireless/ath/ath10k/pci.c | 5 +-
drivers/phy/phy-twl4030-usb.c | 29 ++-
drivers/scsi/ipr.c | 28 +-
drivers/scsi/ipr.h | 1 +
drivers/staging/lustre/lustre/obdclass/debug.c | 2 +-
drivers/staging/vt6655/device_main.c | 5 +-
drivers/thermal/samsung/exynos_tmu.c | 2 +
drivers/usb/chipidea/core.c | 13 +-
drivers/usb/chipidea/host.c | 7 +-
drivers/usb/chipidea/host.h | 6 +
drivers/usb/gadget/function/f_uac2.c | 4 +-
drivers/usb/gadget/udc/udc-core.c | 1 +
drivers/usb/host/xhci-mem.c | 3 +-
drivers/usb/host/xhci-ring.c | 2 +-
drivers/usb/serial/option.c | 2 +
drivers/usb/serial/qcserial.c | 2 +-
drivers/usb/serial/sierra.c | 1 +
drivers/xen/gntdev.c | 2 +
fs/nfsd/nfs4state.c | 101 ++++----
fs/nfsd/nfs4xdr.c | 11 +-
fs/notify/mark.c | 30 ++-
fs/ocfs2/aops.c | 4 +-
fs/ocfs2/dlmglue.c | 10 +-
fs/signalfd.c | 5 +-
include/linux/mtd/nand.h | 10 +-
include/uapi/linux/pci_regs.h | 1 +
ipc/mqueue.c | 5 -
kernel/signal.c | 13 +-
mm/vmscan.c | 14 +-
net/bluetooth/smp.c | 4 +
sound/firewire/amdtp.c | 5 +-
sound/firewire/amdtp.h | 2 +
sound/firewire/fireworks/fireworks.c | 8 +
sound/firewire/fireworks/fireworks.h | 1 +
sound/firewire/fireworks/fireworks_stream.c | 9 +
sound/pci/hda/patch_cirrus.c | 4 +-
sound/pci/hda/patch_realtek.c | 1 +
sound/soc/codecs/pcm1681.c | 2 +-
sound/soc/codecs/ssm4567.c | 8 +-
sound/soc/intel/atom/sst/sst_drv_interface.c | 14 +-
sound/soc/soc-dapm.c | 21 +-
104 files changed, 1115 insertions(+), 819 deletions(-)
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/
[toc] | [next] | [standalone]
| From | Greg Kroah-Hartman <gregkh@linuxfoundation.org> |
|---|---|
| Date | 2015-08-14 20:40 +0200 |
| Subject | [PATCH 4.1 24/84] drivers/usb: Delete XHCI command timer if necessary |
| Message-ID | <pXs3x-1OM-39@gated-at.bofh.it> |
| In reply to | #1207848 |
4.1-stable review patch. If anyone has any objections, please let me know.
------------------
From: Gavin Shan <gwshan@linux.vnet.ibm.com>
commit ffe5adcb7661d94e952d6b5ed7f493cb4ef0c7bc upstream.
When xhci_mem_cleanup() is called, it's possible that the command
timer isn't initialized and scheduled. For those cases, to delete
the command timer causes soft-lockup as below stack dump shows.
The patch avoids deleting the command timer if it's not scheduled
with the help of timer_pending().
NMI watchdog: BUG: soft lockup - CPU#40 stuck for 23s! [kworker/40:1:8140]
:
NIP [c000000000150b30] lock_timer_base.isra.34+0x90/0xa0
LR [c000000000150c24] try_to_del_timer_sync+0x34/0xa0
Call Trace:
[c000000f67c975e0] [c0000000015b84f8] mon_ops+0x0/0x8 (unreliable)
[c000000f67c97620] [c000000000150c24] try_to_del_timer_sync+0x34/0xa0
[c000000f67c97660] [c000000000150cf0] del_timer_sync+0x60/0x80
[c000000f67c97690] [c00000000070ac0c] xhci_mem_cleanup+0x5c/0x5e0
[c000000f67c97740] [c00000000070c2e8] xhci_mem_init+0x1158/0x13b0
[c000000f67c97860] [c000000000700978] xhci_init+0x88/0x110
[c000000f67c978e0] [c000000000701644] xhci_gen_setup+0x2b4/0x590
[c000000f67c97970] [c0000000006d4410] xhci_pci_setup+0x40/0x190
[c000000f67c979f0] [c0000000006b1af8] usb_add_hcd+0x418/0xba0
[c000000f67c97ab0] [c0000000006cb15c] usb_hcd_pci_probe+0x1dc/0x5c0
[c000000f67c97b50] [c0000000006d3ba4] xhci_pci_probe+0x64/0x1f0
[c000000f67c97ba0] [c0000000004fe9ac] local_pci_probe+0x6c/0x130
[c000000f67c97c30] [c0000000000e5ce8] work_for_cpu_fn+0x38/0x60
[c000000f67c97c60] [c0000000000eacb8] process_one_work+0x198/0x470
[c000000f67c97cf0] [c0000000000eb6ac] worker_thread+0x37c/0x5a0
[c000000f67c97d80] [c0000000000f2730] kthread+0x110/0x130
[c000000f67c97e30] [c000000000009660] ret_from_kernel_thread+0x5c/0x7c
Reported-by: Priya M. A <priyama2@in.ibm.com>
Signed-off-by: Gavin Shan <gwshan@linux.vnet.ibm.com>
Signed-off-by: Mathias Nyman <mathias.nyman@linux.intel.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
---
drivers/usb/host/xhci-mem.c | 3 ++-
1 file changed, 2 insertions(+), 1 deletion(-)
--- a/drivers/usb/host/xhci-mem.c
+++ b/drivers/usb/host/xhci-mem.c
@@ -1792,7 +1792,8 @@ void xhci_mem_cleanup(struct xhci_hcd *x
int size;
int i, j, num_ports;
- del_timer_sync(&xhci->cmd_timer);
+ if (timer_pending(&xhci->cmd_timer))
+ del_timer_sync(&xhci->cmd_timer);
/* Free the Event Ring Segment Table and the actual Event Ring */
size = sizeof(struct xhci_erst_entry)*(xhci->erst.num_entries);
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/
[toc] | [prev] | [next] | [standalone]
| From | Greg Kroah-Hartman <gregkh@linuxfoundation.org> |
|---|---|
| Date | 2015-08-14 20:40 +0200 |
| Subject | [PATCH 4.1 27/84] usb: chipidea: ehci_init_driver is intended to call one time |
| Message-ID | <pXs3x-1OM-41@gated-at.bofh.it> |
| In reply to | #1207848 |
4.1-stable review patch. If anyone has any objections, please let me know.
------------------
From: Peter Chen <peter.chen@freescale.com>
commit 2f01a33bd26545c16fea7592697f7f15c416402b upstream.
The ehci_init_driver is used to initialize hcd APIs for each
ehci controller driver, it is designed to be called only one time
and before driver register is called. The current design will
cause ehci_init_driver is called multiple times at probe process,
it will cause hc_driver's initialization affect current running hcd.
We run out NULL pointer dereference problem when one hcd is started
by module_init, and the other is started by otg thread at SMP platform.
The reason for this problem is ehci_init_driver will do memory copy
for current uniform hc_driver, and this memory copy will do memset (as 0)
first, so when the first hcd is running usb_add_hcd, and the second
hcd may clear the uniform hc_driver's space (at ehci_init_driver),
then the first hcd will meet NULL pointer at the same time.
See below two logs:
LOG_1:
ci_hdrc ci_hdrc.0: EHCI Host Controller
ci_hdrc ci_hdrc.0: new USB bus registered, assigned bus number 1
ci_hdrc ci_hdrc.1: doesn't support gadget
Unable to handle kernel NULL pointer dereference at virtual address 00000014
pgd = 80004000
[00000014] *pgd=00000000
Internal error: Oops: 805 [#1] PREEMPT SMP ARM
Modules linked in:
CPU: 0 PID: 108 Comm: kworker/u8:2 Not tainted 3.14.38-222193-g24b2734-dirty #25
Workqueue: ci_otg ci_otg_work
task: d839ec00 ti: d8400000 task.ti: d8400000
PC is at ehci_run+0x4c/0x284
LR is at _raw_spin_unlock_irqrestore+0x28/0x54
pc : [<8041f9a0>] lr : [<8070ea84>] psr: 60000113
sp : d8401e30 ip : 00000000 fp : d8004400
r10: 00000001 r9 : 00000001 r8 : 00000000
r7 : 00000000 r6 : d8419940 r5 : 80dd24c0 r4 : d8419800
r3 : 8001d060 r2 : 00000000 r1 : 00000001 r0 : 00000000
Flags: nZCv IRQs on FIQs on Mode SVC_32 ISA ARM Segment kernel
Control: 10c53c7d Table: 1000404a DAC: 00000015
Process kworker/u8:2 (pid: 108, stack limit = 0xd8400238)
Stack: (0xd8401e30 to 0xd8402000)
1e20: d87523c0 d8401e48 66667562 d8419800
1e40: 00000000 00000000 d8419800 00000000 00000000 00000000 d84198b0 8040fcdc
1e60: 00000000 80dd320c d8477610 d8419c00 d803d010 d8419800 00000000 00000000
1e80: d8004400 00000000 d8400008 80431494 80431374 d803d100 d803d010 d803d1ac
1ea0: 00000000 80432428 804323d4 d803d100 00000001 80435eb8 80e0d0bc d803d100
1ec0: 00000006 80436458 00000000 d803d100 80e92ec8 80436f44 d803d010 d803d100
1ee0: d83fde00 8043292c d8752710 d803d1f4 d803d010 8042ddfc 8042ddb8 d83f3b00
1f00: d803d1f4 80042b60 00000000 00000003 00000001 00000001 80054598 d83f3b00
1f20: d8004400 d83f3b18 d8004414 d8400000 80e3957b 00000089 d8004400 80043814
1f40: d839ec00 00000000 d83fcd80 d83f3b00 800436e4 00000000 00000000 00000000
1f60: 00000000 80048f34 00000000 00000000 00000000 d83f3b00 00000000 00000000
1f80: d8401f80 d8401f80 00000000 00000000 d8401f90 d8401f90 d8401fac d83fcd80
1fa0: 80048e68 00000000 00000000 8000e538 00000000 00000000 00000000 00000000
1fc0: 00000000 00000000 00000000 00000000 00000000 00000000 00000000 00000000
1fe0: 00000000 00000000 00000000 00000000 00000013 00000000 00000000 00000000
[<8041f9a0>] (ehci_run) from [<8040fcdc>] (usb_add_hcd+0x248/0x6e8)
[<8040fcdc>] (usb_add_hcd) from [<80431494>] (host_start+0x120/0x2e4)
[<80431494>] (host_start) from [<80432428>] (ci_otg_start_host+0x54/0xbc)
[<80432428>] (ci_otg_start_host) from [<80435eb8>] (otg_set_protocol+0xa4/0xd0)
[<80435eb8>] (otg_set_protocol) from [<80436458>] (otg_set_state+0x574/0xc58)
[<80436458>] (otg_set_state) from [<80436f44>] (otg_statemachine+0x408/0x46c)
[<80436f44>] (otg_statemachine) from [<8043292c>] (ci_otg_fsm_work+0x3c/0x190)
[<8043292c>] (ci_otg_fsm_work) from [<8042ddfc>] (ci_otg_work+0x44/0x1c4)
[<8042ddfc>] (ci_otg_work) from [<80042b60>] (process_one_work+0xf4/0x35c)
[<80042b60>] (process_one_work) from [<80043814>] (worker_thread+0x130/0x3bc)
[<80043814>] (worker_thread) from [<80048f34>] (kthread+0xcc/0xe4)
[<80048f34>] (kthread) from [<8000e538>] (ret_from_fork+0x14/0x3c)
Code: e5953018 e3530000 0a000000 e12fff33 (e5878014)
LOG_2:
ci_hdrc ci_hdrc.0: EHCI Host Controller
ci_hdrc ci_hdrc.0: new USB bus registered, assigned bus number 1
ci_hdrc ci_hdrc.1: doesn't support gadget
Unable to handle kernel NULL pointer dereference at virtual address 00000000
pgd = 80004000
[00000000] *pgd=00000000
In Online 00:00ternal e Offline rror: Oops: 80000005 [#1] PREEMPT SMP ARM
Modules linked in:
CPU: 0 PID: 108 Comm: kworker/u8:2 Not tainted 3.14.38-02007-g24b2734-dirty #127
Workque Online 00:00ue: ci_o Offline tg ci_otg_work
Online 00:00task: d8 Offline 39ec00 ti: d83ea000 task.ti: d83ea000
PC is at 0x0
LR is at usb_add_hcd+0x248/0x6e8
pc : [<00000000>] lr : [<8040f644>] psr: 60000113
sp : d83ebe60 ip : 00000000 fp : d8004400
r10: 00000001 r9 : 00000001 r8 : d85fd4b0
r7 : 00000000 r6 : 00000000 r5 : 00000000 r4 : d85fd400
r3 : 00000000 r2 : d85fd4f4 r1 : 80410178 r0 : d85fd400
Flags: nZCv IRQs on FIQs on Mode SVC_32 ISA ARM Segment kernel
Control: 10c53c7d Table: 1000404a DAC: 00000015
Process kworker/u8:2 (pid: 108, stack limit = 0xd83ea238)
Stack: (0xd83ebe60 to 0xd83ec000)
be60: 00000000 80dd920c d8654e10 d85fd800 d803e010 d85fd400 00000000 00000000
be80: d8004400 00000000 d83ea008 80430e34 80430d14 d803e100 d803e010 d803e1ac
bea0: 00000000 80431dc8 80431d74 d803e100 00000001 80435858 80e130bc d803e100
bec0: 00000006 80435df8 00000000 d803e100 80e98ec8 804368e4 d803e010 d803e100
bee0: d86e8100 804322cc d86cf050 d803e1f4 d803e010 8042d79c 8042d758 d83cf900
bf00: d803e1f4 80042b78 00000000 00000003 00000001 00000001 800545e8 d83cf900
bf20: d8004400 d83cf918 d8004414 d83ea000 80e3f57b 00000089 d8004400 8004382c
bf40: d839ec00 00000000 d8393780 d83cf900 800436fc 00000000 00000000 00000000
bf60: 00000000 80048f50 80e019f4 00000000 0000264c d83cf900 00000000 00000000
bf80: d83ebf80 d83ebf80 00000000 00000000 d83ebf90 d83ebf90 d83ebfac d8393780
bfa0: 80048e84 00000000 00000000 8000e538 00000000 00000000 00000000 00000000
bfc0: 00000000 00000000 00000000 00000000 00000000 00000000 00000000 00000000
bfe0: 00000000 00000000 00000000 00000000 00000013 00000000 ee66e85d 133ebd03
[<804 Online 00:000f644>] Offline (usb_add_hcd) from [<80430e34>] (host_start+0x120/0x2e4)
[<80430e34>] (host_start) from [<80431dc8>] (ci_otg_start_host+0x54/0xbc)
[<80431dc8>] (ci_otg_start_host) from [<80435858>] (otg_set_protocol+0xa4/0xd0)
[<80435858>] (otg_set_protocol) from [<80435df8>] (otg_set_state+0x574/0xc58)
[<80435df8>] (otg_set_state) from [<804368e4>] (otg_statemachine+0x408/0x46c)
[<804368e4>] (otg_statemachine) from [<804322cc>] (ci_otg_fsm_work+0x3c/0x190)
[<804322cc>] (ci_otg_fsm_work) from [<8042d79c>] (ci_otg_work+0x44/0x1c4)
[<8042d79c>] (ci_otg_work) from [<80042b78>] (process_one_work+0xf4/0x35c)
[<80042b78>] (process_one_work) from [<8004382c>] (worker_thread+0x130/0x3bc)
[<8004382c>] (worker_thread) from [<80048f50>] (kthread+0xcc/0xe4)
[<80048f50>] (kthread) from [<8000e538>] (ret_from_fork+0x14/0x3c)
Code: bad PC value
Cc: Jun Li <jun.li@freescale.com>
Cc: Alan Stern <stern@rowland.harvard.edu>
Acked-by: Alan Stern <stern@rowland.harvard.edu>
Signed-off-by: Peter Chen <peter.chen@freescale.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
---
drivers/usb/chipidea/core.c | 13 ++++++++++++-
drivers/usb/chipidea/host.c | 7 +++++--
drivers/usb/chipidea/host.h | 6 ++++++
3 files changed, 23 insertions(+), 3 deletions(-)
--- a/drivers/usb/chipidea/core.c
+++ b/drivers/usb/chipidea/core.c
@@ -1024,7 +1024,18 @@ static struct platform_driver ci_hdrc_dr
},
};
-module_platform_driver(ci_hdrc_driver);
+static int __init ci_hdrc_platform_register(void)
+{
+ ci_hdrc_host_driver_init();
+ return platform_driver_register(&ci_hdrc_driver);
+}
+module_init(ci_hdrc_platform_register);
+
+static void __exit ci_hdrc_platform_unregister(void)
+{
+ platform_driver_unregister(&ci_hdrc_driver);
+}
+module_exit(ci_hdrc_platform_unregister);
MODULE_ALIAS("platform:ci_hdrc");
MODULE_LICENSE("GPL v2");
--- a/drivers/usb/chipidea/host.c
+++ b/drivers/usb/chipidea/host.c
@@ -237,9 +237,12 @@ int ci_hdrc_host_init(struct ci_hdrc *ci
rdrv->name = "host";
ci->roles[CI_ROLE_HOST] = rdrv;
+ return 0;
+}
+
+void ci_hdrc_host_driver_init(void)
+{
ehci_init_driver(&ci_ehci_hc_driver, &ehci_ci_overrides);
orig_bus_suspend = ci_ehci_hc_driver.bus_suspend;
ci_ehci_hc_driver.bus_suspend = ci_ehci_bus_suspend;
-
- return 0;
}
--- a/drivers/usb/chipidea/host.h
+++ b/drivers/usb/chipidea/host.h
@@ -5,6 +5,7 @@
int ci_hdrc_host_init(struct ci_hdrc *ci);
void ci_hdrc_host_destroy(struct ci_hdrc *ci);
+void ci_hdrc_host_driver_init(void);
#else
@@ -17,6 +18,11 @@ static inline void ci_hdrc_host_destroy(
{
}
+
+static void ci_hdrc_host_driver_init(void)
+{
+
+}
#endif
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/
[toc] | [prev] | [next] | [standalone]
| From | Greg Kroah-Hartman <gregkh@linuxfoundation.org> |
|---|---|
| Date | 2015-08-14 20:40 +0200 |
| Subject | [PATCH 4.1 10/84] MIPS: Make set_pte() SMP safe. |
| Message-ID | <pXs3x-1OM-47@gated-at.bofh.it> |
| In reply to | #1207848 |
4.1-stable review patch. If anyone has any objections, please let me know. ------------------ From: David Daney <david.daney@cavium.com> commit 46011e6ea39235e4aca656673c500eac81a07a17 upstream. On MIPS the GLOBAL bit of the PTE must have the same value in any aligned pair of PTEs. These pairs of PTEs are referred to as "buddies". In a SMP system is is possible for two CPUs to be calling set_pte() on adjacent PTEs at the same time. There is a race between setting the PTE and a different CPU setting the GLOBAL bit in its buddy PTE. This race can be observed when multiple CPUs are executing vmap()/vfree() at the same time. Make setting the buddy PTE's GLOBAL bit an atomic operation to close the race condition. The case of CONFIG_64BIT_PHYS_ADDR && CONFIG_CPU_MIPS32 is *not* handled. Signed-off-by: David Daney <david.daney@cavium.com> Cc: linux-mips@linux-mips.org Patchwork: https://patchwork.linux-mips.org/patch/10835/ Signed-off-by: Ralf Baechle <ralf@linux-mips.org> Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org> --- arch/mips/include/asm/pgtable.h | 31 +++++++++++++++++++++++++++++++ 1 file changed, 31 insertions(+) --- a/arch/mips/include/asm/pgtable.h +++ b/arch/mips/include/asm/pgtable.h @@ -182,8 +182,39 @@ static inline void set_pte(pte_t *ptep, * Make sure the buddy is global too (if it's !none, * it better already be global) */ +#ifdef CONFIG_SMP + /* + * For SMP, multiple CPUs can race, so we need to do + * this atomically. + */ +#ifdef CONFIG_64BIT +#define LL_INSN "lld" +#define SC_INSN "scd" +#else /* CONFIG_32BIT */ +#define LL_INSN "ll" +#define SC_INSN "sc" +#endif + unsigned long page_global = _PAGE_GLOBAL; + unsigned long tmp; + + __asm__ __volatile__ ( + " .set push\n" + " .set noreorder\n" + "1: " LL_INSN " %[tmp], %[buddy]\n" + " bnez %[tmp], 2f\n" + " or %[tmp], %[tmp], %[global]\n" + " " SC_INSN " %[tmp], %[buddy]\n" + " beqz %[tmp], 1b\n" + " nop\n" + "2:\n" + " .set pop" + : [buddy] "+m" (buddy->pte), + [tmp] "=&r" (tmp) + : [global] "r" (page_global)); +#else /* !CONFIG_SMP */ if (pte_none(*buddy)) pte_val(*buddy) = pte_val(*buddy) | _PAGE_GLOBAL; +#endif /* CONFIG_SMP */ } #endif } -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
[toc] | [prev] | [next] | [standalone]
| From | Greg Kroah-Hartman <gregkh@linuxfoundation.org> |
|---|---|
| Date | 2015-08-14 20:40 +0200 |
| Subject | [PATCH 4.1 11/84] fsnotify: fix oops in fsnotify_clear_marks_by_group_flags() |
| Message-ID | <pXs3x-1OM-49@gated-at.bofh.it> |
| In reply to | #1207848 |
4.1-stable review patch. If anyone has any objections, please let me know.
------------------
From: Jan Kara <jack@suse.com>
commit 8f2f3eb59dff4ec538de55f2e0592fec85966aab upstream.
fsnotify_clear_marks_by_group_flags() can race with
fsnotify_destroy_marks() so that when fsnotify_destroy_mark_locked()
drops mark_mutex, a mark from the list iterated by
fsnotify_clear_marks_by_group_flags() can be freed and thus the next
entry pointer we have cached may become stale and we dereference free
memory.
Fix the problem by first moving marks to free to a special private list
and then always free the first entry in the special list. This method
is safe even when entries from the list can disappear once we drop the
lock.
Signed-off-by: Jan Kara <jack@suse.com>
Reported-by: Ashish Sangwan <a.sangwan@samsung.com>
Reviewed-by: Ashish Sangwan <a.sangwan@samsung.com>
Cc: Lino Sanfilippo <LinoSanfilippo@gmx.de>
Signed-off-by: Andrew Morton <akpm@linux-foundation.org>
Signed-off-by: Linus Torvalds <torvalds@linux-foundation.org>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
---
fs/notify/mark.c | 30 +++++++++++++++++++++++++-----
1 file changed, 25 insertions(+), 5 deletions(-)
--- a/fs/notify/mark.c
+++ b/fs/notify/mark.c
@@ -412,16 +412,36 @@ void fsnotify_clear_marks_by_group_flags
unsigned int flags)
{
struct fsnotify_mark *lmark, *mark;
+ LIST_HEAD(to_free);
+ /*
+ * We have to be really careful here. Anytime we drop mark_mutex, e.g.
+ * fsnotify_clear_marks_by_inode() can come and free marks. Even in our
+ * to_free list so we have to use mark_mutex even when accessing that
+ * list. And freeing mark requires us to drop mark_mutex. So we can
+ * reliably free only the first mark in the list. That's why we first
+ * move marks to free to to_free list in one go and then free marks in
+ * to_free list one by one.
+ */
mutex_lock_nested(&group->mark_mutex, SINGLE_DEPTH_NESTING);
list_for_each_entry_safe(mark, lmark, &group->marks_list, g_list) {
- if (mark->flags & flags) {
- fsnotify_get_mark(mark);
- fsnotify_destroy_mark_locked(mark, group);
- fsnotify_put_mark(mark);
- }
+ if (mark->flags & flags)
+ list_move(&mark->g_list, &to_free);
}
mutex_unlock(&group->mark_mutex);
+
+ while (1) {
+ mutex_lock_nested(&group->mark_mutex, SINGLE_DEPTH_NESTING);
+ if (list_empty(&to_free)) {
+ mutex_unlock(&group->mark_mutex);
+ break;
+ }
+ mark = list_first_entry(&to_free, struct fsnotify_mark, g_list);
+ fsnotify_get_mark(mark);
+ fsnotify_destroy_mark_locked(mark, group);
+ mutex_unlock(&group->mark_mutex);
+ fsnotify_put_mark(mark);
+ }
}
/*
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/
[toc] | [prev] | [next] | [standalone]
| From | Shuah Khan <shuahkh@osg.samsung.com> |
|---|---|
| Date | 2015-08-15 02:20 +0200 |
| Message-ID | <pXxmy-13c-9@gated-at.bofh.it> |
| In reply to | #1207848 |
On 08/14/2015 11:41 AM, Greg Kroah-Hartman wrote: > This is the start of the stable review cycle for the 4.1.6 release. > There are 84 patches in this series, all will be posted as a response > to this one. If anyone has any issues with these being applied, please > let me know. > > Responses should be made by Sun Aug 16 17:41:54 UTC 2015. > Anything received after that time might be too late. > > The whole patch series can be found in one patch at: > kernel.org/pub/linux/kernel/v4.x/stable-review/patch-4.1.6-rc1.gz > and the diffstat can be found below. > > thanks, > > greg k-h > Compiled and booted on my test system. No dmesg regressions. thanks, -- Shuah -- Shuah Khan Sr. Linux Kernel Developer Open Source Innovation Group Samsung Research America (Silicon Valley) shuahkh@osg.samsung.com | (970) 217-8978 -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
[toc] | [prev] | [next] | [standalone]
| From | Greg Kroah-Hartman <gregkh@linuxfoundation.org> |
|---|---|
| Date | 2015-08-15 02:50 +0200 |
| Message-ID | <pXxPz-1AN-1@gated-at.bofh.it> |
| In reply to | #1207952 |
On Fri, Aug 14, 2015 at 06:10:49PM -0600, Shuah Khan wrote: > On 08/14/2015 11:41 AM, Greg Kroah-Hartman wrote: > > This is the start of the stable review cycle for the 4.1.6 release. > > There are 84 patches in this series, all will be posted as a response > > to this one. If anyone has any issues with these being applied, please > > let me know. > > > > Responses should be made by Sun Aug 16 17:41:54 UTC 2015. > > Anything received after that time might be too late. > > > > The whole patch series can be found in one patch at: > > kernel.org/pub/linux/kernel/v4.x/stable-review/patch-4.1.6-rc1.gz > > and the diffstat can be found below. > > > > thanks, > > > > greg k-h > > > > Compiled and booted on my test system. No dmesg regressions. Thanks for testing all of these and letting me know. greg k-h -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
[toc] | [prev] | [next] | [standalone]
| From | Guenter Roeck <linux@roeck-us.net> |
|---|---|
| Date | 2015-08-15 17:30 +0200 |
| Message-ID | <pXLzc-5pY-19@gated-at.bofh.it> |
| In reply to | #1207848 |
On Fri, Aug 14, 2015 at 10:41:28AM -0700, Greg Kroah-Hartman wrote: > This is the start of the stable review cycle for the 4.1.6 release. > There are 84 patches in this series, all will be posted as a response > to this one. If anyone has any issues with these being applied, please > let me know. > > Responses should be made by Sun Aug 16 17:41:54 UTC 2015. > Anything received after that time might be too late. > Build results: total: 138 pass: 138 fail: 0 Qemu test results: total: 84 pass: 83 fail: 1 Failed tests: mips:fuloong2e_defconfig The fix for the qemu test failure is still pending acceptance and integration upstream. Details are available at http://server.roeck-us.net:8010/builders/. Guenter -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
[toc] | [prev] | [next] | [standalone]
| From | Greg Kroah-Hartman <gregkh@linuxfoundation.org> |
|---|---|
| Date | 2015-08-15 18:50 +0200 |
| Message-ID | <pXMOC-78j-13@gated-at.bofh.it> |
| In reply to | #1208108 |
On Sat, Aug 15, 2015 at 08:21:43AM -0700, Guenter Roeck wrote: > On Fri, Aug 14, 2015 at 10:41:28AM -0700, Greg Kroah-Hartman wrote: > > This is the start of the stable review cycle for the 4.1.6 release. > > There are 84 patches in this series, all will be posted as a response > > to this one. If anyone has any issues with these being applied, please > > let me know. > > > > Responses should be made by Sun Aug 16 17:41:54 UTC 2015. > > Anything received after that time might be too late. > > > Build results: > total: 138 pass: 138 fail: 0 > Qemu test results: > total: 84 pass: 83 fail: 1 > Failed tests: > mips:fuloong2e_defconfig > > The fix for the qemu test failure is still pending acceptance and integration > upstream. > > Details are available at http://server.roeck-us.net:8010/builders/. Thanks for testing all of these and letting me know. greg k-h -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
[toc] | [prev] | [standalone]
Back to top | Article view | linux.kernel
csiph-web