"kernel BUG at /var/opt/eset/efs/eventd/eset_rtp/ertp_syscalls.c:153!"

Solution Verified - Updated -

Issue

  • The kernel crashes with a message, "kernel BUG at /var/opt/eset/efs/eventd/eset_rtp/ertp_syscalls.c:153!"
[3191678.183595] ------------[ cut here ]------------
[3191678.183600] kernel BUG at /var/opt/eset/efs/eventd/eset_rtp/ertp_syscalls.c:150!
[3191678.183670] invalid opcode: 0000 [#1] SMP PTI
[3191678.183708] CPU: 1 PID: 1319 Comm: oaeventd Kdump: loaded Tainted: P           OE    --------- -  - 4.18.0-372.16.1.el8_6.x86_64 #1
[3191678.183791] Hardware name: Microsoft Corporation Virtual Machine/Virtual Machine, BIOS Hyper-V UEFI Release v1.0 11/26/2012
[3191678.183865] RIP: 0010:unregister_hook.isra.1+0x30/0x50 [eset_rtp]
[3191678.183921] Code: 85 c9 74 30 55 53 48 83 3a 00 48 89 d3 74 2b 48 8b 16 48 85 d2 74 15 48 89 ce 89 fd e8 39 ff ff ff 48 3b 03 0f 84 da 18 00 00 <0f> 0b b8 fe ff ff ff 5b 5d c3 b8 ea ff ff ff c3 b8 fe ff ff ff eb
[3191678.184045] RSP: 0018:ffffb5c985203e50 EFLAGS: 00010287
[3191678.184087] RAX: ffffffffc05c8010 RBX: ffffffffc07ddb68 RCX: 0000000000000000
[3191678.184139] RDX: 80000001cd8000e3 RSI: ffffffffa18001f0 RDI: 80000001cd8000e3
[3191678.184189] RBP: 0000000000000002 R08: ffff9daf40000860 R09: 0000000000000000
[3191678.184239] R10: ffff9db067e81080 R11: 000000000000003f R12: 0000000000000002
[3191678.184289] R13: 0000000000000000 R14: 0000000000000000 R15: 0000000000000000
[3191678.184345] FS:  00007f94d32ef180(0000) GS:ffff9db13c240000(0000) knlGS:0000000000000000
[3191678.184403] CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[3191678.184446] CR2: 00007f866802a540 CR3: 0000000120972002 CR4: 00000000003706e0
[3191678.184501] Call Trace:
[3191678.184531]  ertp_sys_hook_unregister+0x36/0x80 [eset_rtp]
[3191678.184581]  ertp_sys_hooks_unload+0x12/0x20 [eset_rtp]
[3191678.184627]  ertp_handlers_deinit+0x25/0xc0 [eset_rtp]
[3191678.184674]  ? ertp_excl_clean+0x59/0x80 [eset_rtp]
[3191678.184718]  ertp_exit+0xf/0xdc8 [eset_rtp]
[3191678.184759]  __x64_sys_delete_module+0x139/0x280
[3191678.184803]  do_syscall_64+0x5b/0x1a0
[3191678.184838]  entry_SYSCALL_64_after_hwframe+0x65/0xca
[3191678.184880] RIP: 0033:0x7f94d14f752d
[3191678.184917] Code: 00 c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 2b 79 2c 00 f7 d8 64 89 01 48
[3191678.185041] RSP: 002b:00007ffc3f0146e8 EFLAGS: 00000246 ORIG_RAX: 00000000000000b0
[3191678.185097] RAX: ffffffffffffffda RBX: 00007ffc3f0147f0 RCX: 00007f94d14f752d
[3191678.185148] RDX: 84c5510641537800 RSI: 0000000000000000 RDI: 000055f88dc7d11d
[3191678.185197] RBP: 000055f88dc7c320 R08: 0000000000000007 R09: 84c5510641537800
[3191678.185248] R10: 000055f88f4e901e R11: 0000000000000246 R12: 000055f88dc63670
[3191678.185298] R13: 00007ffc3f014a80 R14: 00007ffc3f014930 R15: 0000000000000000
[3191678.185350] Modules linked in: falcon_lsm_serviceable(PE) falcon_nf_netcontain(PE) falcon_kal(E) tcp_diag udp_diag raw_diag inet_diag falcon_lsm_pinned_14713(E) nft_fib_inet nft_fib_ipv4 nft_fib_ipv6 nft_fib nft_reject_inet nf_reject_ipv4 nf_reject_ipv6 nft_reject nft_ct eset_rtp(OE-) nf_tables_set nft_chain_nat nf_nat nf_conntrack nf_defrag_ipv6 nf_defrag_ipv4 falcon_lsm_pinned_14306(E) ip_set nf_tables nfnetlink vfat fat intel_rapl_msr intel_rapl_common isst_if_mbox_msr isst_if_common nfit libnvdimm crct10dif_pclmul crc32_pclmul ghash_clmulni_intel rapl hv_utils pcspkr hv_balloon joydev xfs libcrc32c sr_mod cdrom sd_mod t10_pi sg hv_storvsc serio_raw scsi_transport_fc hv_netvsc hyperv_fb hyperv_keyboard hid_hyperv crc32c_intel hv_vmbus dm_mirror dm_region_hash dm_log dm_mod [last unloaded: falcon_kal]
[3191678.186899] ---[ end trace 9c8c3264e3a4045c ]---
[3191678.186939] RIP: 0010:unregister_hook.isra.1+0x30/0x50 [eset_rtp]
[3191678.186994] Code: 85 c9 74 30 55 53 48 83 3a 00 48 89 d3 74 2b 48 8b 16 48 85 d2 74 15 48 89 ce 89 fd e8 39 ff ff ff 48 3b 03 0f 84 da 18 00 00 <0f> 0b b8 fe ff ff ff 5b 5d c3 b8 ea ff ff ff c3 b8 fe ff ff ff eb
[3191678.187123] RSP: 0018:ffffb5c985203e50 EFLAGS: 00010287
[3191678.187164] RAX: ffffffffc05c8010 RBX: ffffffffc07ddb68 RCX: 0000000000000000
[3191678.189324] RDX: 80000001cd8000e3 RSI: ffffffffa18001f0 RDI: 80000001cd8000e3
[3191678.191330] RBP: 0000000000000002 R08: ffff9daf40000860 R09: 0000000000000000
[3191678.193285] R10: ffff9db067e81080 R11: 000000000000003f R12: 0000000000000002
[3191678.195226] R13: 0000000000000000 R14: 0000000000000000 R15: 0000000000000000
[3191678.197104] FS:  00007f94d32ef180(0000) GS:ffff9db13c240000(0000) knlGS:0000000000000000
[3191678.198958] CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[3191678.200797] CR2: 00007f866802a540 CR3: 0000000120972002 CR4: 00000000003706e0
[3191678.202625] Kernel panic - not syncing: Fatal exception
[3191678.205647] Kernel Offset: 0x1fa00000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff)

Environment

  • Red Hat Enterprise Linux 8.6.z
  • ESET security (eset_rtp)

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content