[Oisf-users] Segfault in 1.4rc1 in Live rule swap

Fernando Sclavo fsclavo at gmail.com
Wed Dec 12 16:52:45 UTC 2012


Suricata recently dumped whith segfault, trying to reload rules.

dmesg output:

[75634.444629] Suricata-Main[1753]: segfault at e73630 ip
000000000047ebe0 sp 00007fff338571e0 error 4 in suricata[400000+1b1000]
[75843.568028] INFO: task AFPacketeth41:1810 blocked for more than 120
seconds.
[75843.569070] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.570305] AFPacketeth41   D ffffffff81806200     0  1810      1
0x00000000
[75843.570310]  ffff8817c05f1cb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.570321]  ffff8817c05f1fd8 ffff8817c05f1fd8 ffff8817c05f1fd8
00000000000137c0
[75843.570330]  ffff880bd1632e00 ffff8817d0184500 0000000000000000
ffff880bce2e5b00
[75843.570338] Call Trace:
[75843.570350]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.570358]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.570362]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.570368]  [<ffffffff8101a779>] ? read_tsc+0x9/0x20
[75843.570373]  [<ffffffff81094f25>] ? ktime_get+0x65/0xe0
[75843.570379]  [<ffffffff81079f5a>] ? __dequeue_signal+0x6a/0xb0
[75843.570383]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.570388]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.570394]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.570399]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.570404]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.570408]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.570414]  [<ffffffff81664690>] int_signal+0x12/0x17
[75843.570418] INFO: task AFPacketeth51:1811 blocked for more than 120
seconds.
[75843.571450] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.572703] AFPacketeth51   D ffffffff81806200     0  1811      1
0x00000000
[75843.572706]  ffff8817c3619cb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.572725]  ffff8817c3619fd8 ffff8817c3619fd8 ffff8817c3619fd8
00000000000137c0
[75843.572749]  ffff880bd1634500 ffff8817d0185c00 0000000000000000
ffff880bce2e5b00
[75843.572771] Call Trace:
[75843.572781]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.572792]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.572803]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.572814]  [<ffffffff8101a779>] ? read_tsc+0x9/0x20
[75843.572823]  [<ffffffff81094f25>] ? ktime_get+0x65/0xe0
[75843.572832]  [<ffffffff81079f5a>] ? __dequeue_signal+0x6a/0xb0
[75843.572842]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.572852]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.572863]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.572873]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.572882]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.572891]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.572899]  [<ffffffff81664690>] int_signal+0x12/0x17
[75843.572906] INFO: task AFPacketeth52:1812 blocked for more than 120
seconds.
[75843.573940] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.575178] AFPacketeth52   D ffffffff81806200     0  1812      1
0x00000000
[75843.575181]  ffff8817cd5cbcb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.575190]  ffff8817cd5cbfd8 ffff8817cd5cbfd8 ffff8817cd5cbfd8
00000000000137c0
[75843.575198]  ffff880bd1539700 ffff8817d0181700 0000000000000000
ffff880bce2e5b00
[75843.575206] Call Trace:
[75843.575211]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.575215]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.575219]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.575223]  [<ffffffff8101a779>] ? read_tsc+0x9/0x20
[75843.575227]  [<ffffffff81094f25>] ? ktime_get+0x65/0xe0
[75843.575231]  [<ffffffff81079f5a>] ? __dequeue_signal+0x6a/0xb0
[75843.575236]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.575240]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.575245]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.575249]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.575254]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.575258]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.575262]  [<ffffffff81664690>] int_signal+0x12/0x17
[75843.575266] INFO: task AFPacketeth53:1813 blocked for more than 120
seconds.
[75843.576310] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.577537] AFPacketeth53   D ffffffff81806200     0  1813      1
0x00000000
[75843.577541]  ffff8817c95f9cb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.577549]  ffff8817c95f9fd8 ffff8817c95f9fd8 ffff8817c95f9fd8
00000000000137c0
[75843.577557]  ffff880bd1635c00 ffff8817d0180000 0000000000000000
ffff880bce2e5b00
[75843.577565] Call Trace:
[75843.577570]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.577574]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.577578]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.577582]  [<ffffffff8101a779>] ? read_tsc+0x9/0x20
[75843.577586]  [<ffffffff81094f25>] ? ktime_get+0x65/0xe0
[75843.577590]  [<ffffffff81079f5a>] ? __dequeue_signal+0x6a/0xb0
[75843.577595]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.577599]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.577604]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.577608]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.577613]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.577617]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.577621]  [<ffffffff81664690>] int_signal+0x12/0x17
[75843.577625] INFO: task AFPacketeth54:1814 blocked for more than 120
seconds.
[75843.578656] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.579894] AFPacketeth54   D ffffffff81806200     0  1814      1
0x00000000
[75843.579897]  ffff8817c1633cb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.579905]  ffff8817c1633fd8 ffff8817c1633fd8 ffff8817c1633fd8
00000000000137c0
[75843.579913]  ffff880bd160ae00 ffff8817d0182e00 0000000000000000
ffff880bce2e5b00
[75843.579921] Call Trace:
[75843.579926]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.579930]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.579934]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.579938]  [<ffffffff8101a779>] ? read_tsc+0x9/0x20
[75843.579942]  [<ffffffff81094f25>] ? ktime_get+0x65/0xe0
[75843.579946]  [<ffffffff81079f5a>] ? __dequeue_signal+0x6a/0xb0
[75843.579950]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.579954]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.579959]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.579964]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.579968]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.579972]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.579976]  [<ffffffff81664690>] int_signal+0x12/0x17
[75843.579980] INFO: task AFPacketeth55:1815 blocked for more than 120
seconds.
[75843.581026] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.582252] AFPacketeth55   D 0000000000000007     0  1815      1
0x00000000
[75843.582256]  ffff8817c463bcb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.582264]  ffff8817c463bfd8 ffff8817c463bfd8 ffff8817c463bfd8
00000000000137c0
[75843.582272]  ffff8817ce325c00 ffff8817d09f1700 0000000000000000
ffff880bce2e5b00
[75843.582280] Call Trace:
[75843.582284]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.582289]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.582293]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.582298]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.582302]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.582306]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.582311]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.582315]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.582320]  [<ffffffff8108f0c4>] ? hrtimer_start_range_ns+0x14/0x20
[75843.582324]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.582328]  [<ffffffff81664690>] int_signal+0x12/0x17
[75843.582332] INFO: task AFPacketeth56:1816 blocked for more than 120
seconds.
[75843.583366] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.584616] AFPacketeth56   D ffffffff81806200     0  1816      1
0x00000000
[75843.584620]  ffff8817ce2cbcb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.584636]  ffff8817ce2cbfd8 ffff8817ce2cbfd8 ffff8817ce2cbfd8
00000000000137c0
[75843.584661]  ffff880bd15d8000 ffff8817d09f2e00 0000000000000000
ffff880bce2e5b00
[75843.584684] Call Trace:
[75843.584693]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.584702]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.584711]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.584720]  [<ffffffff8101a779>] ? read_tsc+0x9/0x20
[75843.584729]  [<ffffffff81094f25>] ? ktime_get+0x65/0xe0
[75843.584738]  [<ffffffff81079f5a>] ? __dequeue_signal+0x6a/0xb0
[75843.584749]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.584758]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.584767]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.584778]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.584787]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.584796]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.584806]  [<ffffffff81664690>] int_signal+0x12/0x17
[75843.584813] INFO: task AFPacketeth57:1817 blocked for more than 120
seconds.
[75843.585847] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.587084] AFPacketeth57   D ffffffff81806200     0  1817      1
0x00000000
[75843.587088]  ffff8817cc5d1cb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.587096]  ffff8817cc5d1fd8 ffff8817cc5d1fd8 ffff8817cc5d1fd8
00000000000137c0
[75843.587104]  ffff880bd15dae00 ffff8817d09f4500 0000000000000000
ffff880bce2e5b00
[75843.587112] Call Trace:
[75843.587117]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.587121]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.587125]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.587129]  [<ffffffff8101a779>] ? read_tsc+0x9/0x20
[75843.587133]  [<ffffffff81094f25>] ? ktime_get+0x65/0xe0
[75843.587137]  [<ffffffff81079f5a>] ? __dequeue_signal+0x6a/0xb0
[75843.587142]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.587146]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.587151]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.587155]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.587160]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.587164]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.587168]  [<ffffffff81664690>] int_signal+0x12/0x17
[75843.587172] INFO: task AFPacketeth58:1818 blocked for more than 120
seconds.
[75843.588217] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.646346] AFPacketeth58   D ffffffff81806200     0  1818      1
0x00000000
[75843.646350]  ffff8817cf97dcb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.646365]  ffff8817cf97dfd8 ffff8817cf97dfd8 ffff8817cf97dfd8
00000000000137c0
[75843.646386]  ffff880bd1630000 ffff8817d09f5c00 0000000000000000
ffff880bce2e5b00
[75843.646401] Call Trace:
[75843.646406]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.646411]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.646418]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.646428]  [<ffffffff8101a779>] ? read_tsc+0x9/0x20
[75843.646438]  [<ffffffff81094f25>] ? ktime_get+0x65/0xe0
[75843.646448]  [<ffffffff81079f5a>] ? __dequeue_signal+0x6a/0xb0
[75843.646458]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.646467]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.646477]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.646488]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.646498]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.646508]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.646518]  [<ffffffff81664690>] int_signal+0x12/0x17
[75843.646525] INFO: task AFPacketeth59:1819 blocked for more than 120
seconds.
[75843.676911] "echo 0 > /proc/sys/kernel/hung_task_timeout_secs"
disables this message.
[75843.736727] AFPacketeth59   D ffffffff81806200     0  1819      1
0x00000000
[75843.736733]  ffff8817d004dcb8 0000000000000086 0000000000000000
ffffffffffffffe0
[75843.736756]  ffff8817d004dfd8 ffff8817d004dfd8 ffff8817d004dfd8
00000000000137c0
[75843.736767]  ffff880bd167dc00 ffff8817cf8f1700 0000000000000000
ffff880bce2e5b00
[75843.736775] Call Trace:
[75843.736785]  [<ffffffff81659ebf>] schedule+0x3f/0x60
[75843.736795]  [<ffffffff8106b575>] exit_mm+0x85/0x130
[75843.736804]  [<ffffffff8106b78e>] do_exit+0x16e/0x450
[75843.736814]  [<ffffffff8101a779>] ? read_tsc+0x9/0x20
[75843.736823]  [<ffffffff81094f25>] ? ktime_get+0x65/0xe0
[75843.736832]  [<ffffffff81079f5a>] ? __dequeue_signal+0x6a/0xb0
[75843.736843]  [<ffffffff8106bc14>] do_group_exit+0x44/0xa0
[75843.736853]  [<ffffffff8107cadc>] get_signal_to_deliver+0x21c/0x420
[75843.736863]  [<ffffffff81013865>] do_signal+0x45/0x130
[75843.736873]  [<ffffffff8108f708>] ? hrtimer_nanosleep+0xb8/0x180
[75843.736883]  [<ffffffff8108e2d0>] ? update_rmtp+0x70/0x70
[75843.736893]  [<ffffffff81013b15>] do_notify_resume+0x65/0x80
[75843.736903]  [<ffffffff81664690>] int_signal+0x12/0x17


More information about the Oisf-users mailing list