3.11-rc2: unpriviledged user crashes kernel using bluetooth

From: Pavel Machek
Date: Sat Aug 31 2013 - 06:01:51 EST


Hi!

While trying to set up serial bluetooth connection between two
machines, the server machine died rather hard.

This is what I got on ssh:

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:Hardware name: LENOVO 17097HU/17097HU, BIOS 7BETD8WW (2.19 )
03/31/2011

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:task: e6d6a670 ti: e8fd8000 task.ti: e8fd8000

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:Stack:

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:Call Trace:

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:Code: 66 ff ff ff eb b9 ba 79 c9 b6 c0 89 d8 e8 58 ff ff ff eb
a0 8d b6 00 00 00 00 55 89 e5 83 ec 10 89 5d f4 89 c3 89 75 f8 89 7d
fc <81> 78 04 ad 4e ad de 0f 85 11 01 00 00 64 a1 4c 87 d2 c0 39 43

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:EIP: [<c04621f1>] do_raw_spin_lock+0x11/0x140 SS:ESP
0068:e8fd9e0c

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:CPU: 0 PID: 3822 Comm: modem-manager Tainted: G D W
3.11.0-rc2+ #306

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:Hardware name: LENOVO 17097HU/17097HU, BIOS 7BETD8WW (2.19 )
03/31/2011

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:task: e6d9a670 ti: e6d4e000 task.ti: e6d4e000

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:Stack:

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:Call Trace:

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:Code: 66 ff ff ff eb b9 ba 79 c9 b6 c0 89 d8 e8 58 ff ff ff eb
a0 8d b6 00 00 00 00 55 89 e5 83 ec 10 89 5d f4 89 c3 89 75 f8 89 7d
fc <81> 78 04 ad 4e ad de 0f 85 11 01 00 00 64 a1 4c 87 d2 c0 39 43

Message from syslogd@duo at Aug 31 11:50:07 ...
kernel:EIP: [<c04621f1>] do_raw_spin_lock+0x11/0x140 SS:ESP
0068:e6d4fe0c

. Python sources for client/server are at

http://tui.cvs.sourceforge.net/viewvc/tui/tui/liveview/

. My kernels like to warn about

Aug 31 11:46:37 duo kernel: WARNING: CPU: 1 PID: 1 at
net/wireless/reg.c:423 regulatory_init+0x92/0xff()
Aug 31 11:46:37 duo kernel: db.txt is empty, you should update it...

. 3.10 does not seem to be affected.
Pavel
--
(english) http://www.livejournal.com/~pavelmachek
(cesky, pictures) http://atrey.karlin.mff.cuni.cz/~pavel/picture/horses/blog.html
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/