crash 8.0.0++ Copyright (C) 2002-2021 Red Hat, Inc. Copyright (C) 2004, 2005, 2006, 2010 IBM Corporation Copyright (C) 1999-2006 Hewlett-Packard Co Copyright (C) 2005, 2006, 2011, 2012 Fujitsu Limited Copyright (C) 2006, 2007 VA Linux Systems Japan K.K. Copyright (C) 2005, 2011, 2020-2021 NEC Corporation Copyright (C) 1999, 2002, 2007 Silicon Graphics, Inc. Copyright (C) 1999, 2000, 2001, 2002 Mission Critical Linux, Inc. Copyright (C) 2015, 2021 VMware, Inc. This program is free software, covered by the GNU General Public License, and you are welcome to change it and/or distribute copies of it under certain conditions. Enter "help copying" to see the conditions. This program has absolutely no warranty. Enter "help warranty" for details. NOTE: stdin: not a tty GNU gdb (GDB) 10.2 Copyright (C) 2021 Free Software Foundation, Inc. License GPLv3+: GNU GPL version 3 or later This is free software: you are free to change and redistribute it. There is NO WARRANTY, to the extent permitted by law. Type "show copying" and "show warranty" for details. This GDB was configured as "x86_64-pc-linux-gnu". Type "show configuration" for configuration details. Find the GDB manual and other documentation resources online at: . For help, type "help". Type "apropos word" to search for commands related to "word"... please wait... (gathering kmem slab cache data) please wait... (gathering module symbol data) please wait... (gathering task table data) please wait... (determining panic task) KERNEL: /tmp/crash-anaysis.ZEmQD/vmlinux [TAINTED] DUMPFILE: /exports/testreports/66489/testresults/sanity-special6-ldiskfs-rocky8.10_x86_64-rocky8.10_x86_64/oleg333-client-vmcore [PARTIAL DUMP] CPUS: 4 DATE: Wed Jul 22 00:51:17 EDT 2026 UPTIME: 00:06:30 LOAD AVERAGE: 1.29, 0.85, 0.41 TASKS: 175 NODENAME: oleg333-client.virtnet RELEASE: 4.18.0rh8.10-debug VERSION: #2 SMP Mon Jul 14 01:24:22 EDT 2025 MACHINE: x86_64 (2399 Mhz) MEMORY: 4.1 GB PANIC: "general protection fault: 0000 [#1] SMP DEBUG_PAGEALLOC" PID: 12882 COMMAND: "umount" TASK: ffff8f9f18c24f80 [THREAD_INFO: ffff8f9f18c24f80] CPU: 0 STATE: TASK_RUNNING (PANIC) Setting scroll off while initializing PyKdump /usr/local/crash/mpykdump.so: shared object loaded ./lustre.so: shared object loaded mod: cannot find or load object file for sha512_generic module mod: cannot find or load object file for sha512_ssse3 module mod: cannot find or load object file for dm_mod module mod: cannot find or load object file for dm_mirror module mod: cannot find or load object file for dm_log module mod: cannot find or load object file for dm_region_hash module mod: cannot find or load object file for libata module mod: cannot find or load object file for ghash_clmulni_intel module mod: cannot find or load object file for ata_generic module mod: cannot find or load object file for crct10dif_pclmul module mod: cannot find or load object file for i2c_piix4 module mod: cannot find or load object file for serio_raw module mod: cannot find or load object file for ata_piix module mod: cannot find or load object file for crc32_pclmul module mod: cannot find or load object file for intel_rapl_msr module mod: cannot find or load object file for pcspkr module mod: cannot find or load object file for crc32c_intel module mod: cannot find or load object file for squashfs module mod: cannot find or load object file for rapl module mod: cannot find or load object file for intel_rapl_common module mod: cannot find or load object file for dns_resolver module mod: cannot find or load object file for sb_edac module mod: cannot find or load object file for nfsv4 module mod: cannot find or load object file for auth_rpcgss module mod: cannot find or load object file for rpcsec_gss_krb5 module MODULE NAME BASE SIZE OBJECT FILE ffffffffc0661940 libcfs ffffffffc0641000 233472 /tmp/crash-anaysis.ZEmQD/modules/libcfs.ko ffffffffc078af80 lnet ffffffffc06b1000 1482752 /tmp/crash-anaysis.ZEmQD/modules/lnet.ko ffffffffc0845900 ksocklnd ffffffffc081c000 270336 /tmp/crash-anaysis.ZEmQD/modules/ksocklnd.ko ffffffffc099f0c0 obdclass ffffffffc085f000 4366336 /tmp/crash-anaysis.ZEmQD/modules/obdclass.ko ffffffffc0f14c00 ptlrpc ffffffffc0c8a000 4169728 /tmp/crash-anaysis.ZEmQD/modules/ptlrpc.ko ffffffffc10d3880 ptlrpc_gss ffffffffc1085000 524288 /tmp/crash-anaysis.ZEmQD/modules/ptlrpc_gss.ko ffffffffc1118c80 fld ffffffffc1106000 126976 /tmp/crash-anaysis.ZEmQD/modules/fld.ko ffffffffc1138ac0 fid ffffffffc1126000 126976 /tmp/crash-anaysis.ZEmQD/modules/fid.ko ffffffffc1158740 ec ffffffffc1146000 81920 /tmp/crash-anaysis.ZEmQD/modules/ec.ko ffffffffc1198040 lmv ffffffffc115b000 372736 /tmp/crash-anaysis.ZEmQD/modules/lmv.ko ffffffffc122cd40 osc ffffffffc11b7000 716800 /tmp/crash-anaysis.ZEmQD/modules/osc.ko ffffffffc12be780 lov ffffffffc1267000 548864 /tmp/crash-anaysis.ZEmQD/modules/lov.ko ffffffffc1338b80 mdc ffffffffc12ee000 466944 /tmp/crash-anaysis.ZEmQD/modules/mdc.ko ffffffffc137d000 mgc ffffffffc1361000 184320 /tmp/crash-anaysis.ZEmQD/modules/mgc.ko ffffffffc13b05c0 obdecho ffffffffc138f000 225280 /tmp/crash-anaysis.ZEmQD/modules/obdecho.ko ffffffffc14810c0 lfsck ffffffffc13c7000 1077248 /tmp/crash-anaysis.ZEmQD/modules/lfsck.ko ffffffffc154f300 lquota ffffffffc14cf000 790528 /tmp/crash-anaysis.ZEmQD/modules/lquota.ko ffffffffc15f4400 mgs ffffffffc1591000 626688 /tmp/crash-anaysis.ZEmQD/modules/mgs.ko ffffffffc16a6080 mdd ffffffffc162b000 745472 /tmp/crash-anaysis.ZEmQD/modules/mdd.ko ffffffffc17f0640 mdt ffffffffc16e2000 1650688 /tmp/crash-anaysis.ZEmQD/modules/mdt.ko ffffffffc191df80 lod ffffffffc1876000 1032192 /tmp/crash-anaysis.ZEmQD/modules/lod.ko ffffffffc19d5600 ofd ffffffffc1973000 606208 /tmp/crash-anaysis.ZEmQD/modules/ofd.ko ffffffffc1a63dc0 osp ffffffffc1a08000 569344 /tmp/crash-anaysis.ZEmQD/modules/osp.ko ffffffffc1bc7380 lustre ffffffffc1a94000 1904640 /tmp/crash-anaysis.ZEmQD/modules/lustre.ko lustre_walk_cpus(0, 5, 1) cmd p (*cfs_trace_data[0])[0].tcd.tcd_cur_pages // p (*cfs_trace_data[0])[0].tcd.tcd_pages.next lustre_walk_trace_pages(0, 5, 0xffff8f9f053967e8) lustre_walk_cpus(0, 5, 2) cmd p (*cfs_trace_data[0])[0].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[0])[0].tcd.tcd_daemon_pages.next lustre: Dumped 256 debug pages from type 0 - CPU 0 lustre_walk_cpus(1, 5, 1) cmd p (*cfs_trace_data[0])[1].tcd.tcd_cur_pages // p (*cfs_trace_data[0])[1].tcd.tcd_pages.next lustre_walk_trace_pages(1, 5, 0xffff8f9f088db828) lustre_walk_cpus(1, 5, 2) cmd p (*cfs_trace_data[0])[1].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[0])[1].tcd.tcd_daemon_pages.next lustre: Dumped 358 debug pages from type 0 - CPU 1 lustre_walk_cpus(2, 5, 1) cmd p (*cfs_trace_data[0])[2].tcd.tcd_cur_pages // p (*cfs_trace_data[0])[2].tcd.tcd_pages.next lustre_walk_trace_pages(2, 5, 0xffff8f9f04db9a48) lustre_walk_cpus(2, 5, 2) cmd p (*cfs_trace_data[0])[2].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[0])[2].tcd.tcd_daemon_pages.next lustre: Dumped 244 debug pages from type 0 - CPU 2 lustre_walk_cpus(3, 5, 1) cmd p (*cfs_trace_data[0])[3].tcd.tcd_cur_pages // p (*cfs_trace_data[0])[3].tcd.tcd_pages.next lustre_walk_trace_pages(3, 5, 0xffff8f9f10e7f368) lustre_walk_cpus(3, 5, 2) cmd p (*cfs_trace_data[0])[3].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[0])[3].tcd.tcd_daemon_pages.next lustre: Dumped 268 debug pages from type 0 - CPU 3 lustre_walk_cpus(0, 5, 1) cmd p (*cfs_trace_data[1])[0].tcd.tcd_cur_pages // p (*cfs_trace_data[1])[0].tcd.tcd_pages.next lustre_walk_trace_pages(0, 5, 0xffff8f9f10b13c48) lustre_walk_cpus(0, 5, 2) cmd p (*cfs_trace_data[1])[0].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[1])[0].tcd.tcd_daemon_pages.next lustre: Dumped 1 debug pages from type 1 - CPU 0 lustre_walk_cpus(1, 5, 1) cmd p (*cfs_trace_data[1])[1].tcd.tcd_cur_pages // p (*cfs_trace_data[1])[1].tcd.tcd_pages.next lustre_walk_trace_pages(1, 5, 0xffff8f9f051e32a8) lustre_walk_cpus(1, 5, 2) cmd p (*cfs_trace_data[1])[1].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[1])[1].tcd.tcd_daemon_pages.next lustre: Dumped 1 debug pages from type 1 - CPU 1 lustre_walk_cpus(2, 5, 1) cmd p (*cfs_trace_data[1])[2].tcd.tcd_cur_pages // p (*cfs_trace_data[1])[2].tcd.tcd_pages.next lustre_walk_trace_pages(2, 5, 0xffff8f9f10bda5e8) lustre_walk_cpus(2, 5, 2) cmd p (*cfs_trace_data[1])[2].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[1])[2].tcd.tcd_daemon_pages.next lustre: Dumped 1 debug pages from type 1 - CPU 2 lustre_walk_cpus(3, 5, 1) cmd p (*cfs_trace_data[1])[3].tcd.tcd_cur_pages // p (*cfs_trace_data[1])[3].tcd.tcd_pages.next lustre_walk_trace_pages(3, 5, 0xffff8f9f05620748) lustre_walk_cpus(3, 5, 2) cmd p (*cfs_trace_data[1])[3].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[1])[3].tcd.tcd_daemon_pages.next lustre: Dumped 1 debug pages from type 1 - CPU 3 lustre_walk_cpus(0, 5, 1) cmd p (*cfs_trace_data[2])[0].tcd.tcd_cur_pages // p (*cfs_trace_data[2])[0].tcd.tcd_pages.next lustre_walk_cpus(0, 5, 2) cmd p (*cfs_trace_data[2])[0].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[2])[0].tcd.tcd_daemon_pages.next lustre: Dumped 0 debug pages from type 2 - CPU 0 lustre_walk_cpus(1, 5, 1) cmd p (*cfs_trace_data[2])[1].tcd.tcd_cur_pages // p (*cfs_trace_data[2])[1].tcd.tcd_pages.next lustre_walk_cpus(1, 5, 2) cmd p (*cfs_trace_data[2])[1].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[2])[1].tcd.tcd_daemon_pages.next lustre: Dumped 0 debug pages from type 2 - CPU 1 lustre_walk_cpus(2, 5, 1) cmd p (*cfs_trace_data[2])[2].tcd.tcd_cur_pages // p (*cfs_trace_data[2])[2].tcd.tcd_pages.next lustre_walk_cpus(2, 5, 2) cmd p (*cfs_trace_data[2])[2].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[2])[2].tcd.tcd_daemon_pages.next lustre: Dumped 0 debug pages from type 2 - CPU 2 lustre_walk_cpus(3, 5, 1) cmd p (*cfs_trace_data[2])[3].tcd.tcd_cur_pages // p (*cfs_trace_data[2])[3].tcd.tcd_pages.next lustre_walk_cpus(3, 5, 2) cmd p (*cfs_trace_data[2])[3].tcd.tcd_cur_daemon_pages // p (*cfs_trace_data[2])[3].tcd.tcd_daemon_pages.next lustre: Dumped 0 debug pages from type 2 - CPU 3 lustre: Dumped 1130 total debug pages from 4 CPUs to /tmp/crash-anaysis.ZEmQD/lustre.bin kmem: osc_session_kmem: slab: ffffd11a440fa380 invalid freepointer: b594ea168a8d81ba