Initially reported here: https://issuetracker.google.com/117252269
This happened shortly after login on a second user account.
This doesn't seem to be easily reproducible, only one sighting so far. Filing a bug in case anyone wants to take a look.
[ 970.401400] CPU: 1 PID: 1918 Comm: bluetoothd Not tainted 4.14.66-06760-ge55149418b42 #1
[ 970.401403] Hardware name: Google Bobba/Bobba, BIOS Google_Bobba.10978.0.0 08/17/2018
[ 970.401406] task: ffff936281860e00 task.stack: ffffb43a82fec000
[ 970.401412] RIP: 0010:__fget_light+0x1e/0x58
[ 970.401415] RSP: 0018:ffffb43a82fefaa8 EFLAGS: 00010206
[ 970.401418] RAX: 0000000000000003 RBX: 0000000000004000 RCX: ffff936281860e00
[ 970.401420] RDX: 0000000000000088 RSI: 0000000000004000 RDI: 338b4c00642984e8
[ 970.401422] RBP: ffffb43a82fefab0 R08: 0000000000000000 R09: 00000000001a95a0
[ 970.401424] R10: 0000000000000000 R11: ffffffff86c08d2a R12: ffffb43a82fefb40
[ 970.401426] R13: 0000000000000011 R14: 0000000000000000 R15: 0000000000000000
[ 970.401429] FS: 00007cedfa8ca740(0000) GS:ffff9362bfc80000(0000) knlGS:0000000000000000
[ 970.401432] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[ 970.401434] CR2: 00005bf661958008 CR3: 000000013008c000 CR4: 00000000003406e0
[ 970.401436] Call Trace:
[ 970.401444] fdget+0x9/0x17
[ 970.401448] do_sys_poll+0x1cd/0x45d
[ 970.401455] ? release_pages+0x29e/0x2c1
[ 970.401458] ? page_lru_base_type+0x9/0x16
[ 970.401461] ? __pagevec_lru_add_fn+0xfc/0x1b7
[ 970.401464] ? list_move_tail+0x26/0x26
[ 970.401467] ? pagevec_lru_move_fn+0xb2/0xc6
[ 970.401471] ? __lru_cache_add+0x6a/0xa0
[ 970.401475] ? _raw_spin_unlock+0x1f/0x52
[ 970.401479] ? handle_mm_fault+0x766/0xa04
[ 970.401483] ? __do_page_fault+0x232/0x401
[ 970.401487] SyS_poll+0x64/0xdb
[ 970.401490] do_syscall_64+0x67/0x75
[ 970.401494] entry_SYSCALL_64_after_hwframe+0x3d/0xa2
[ 970.401498] RIP: 0033:0x7cedfa1d9190
[ 970.401500] RSP: 002b:00007ffe5f425ae8 EFLAGS: 00000246 ORIG_RAX: 0000000000000007
[ 970.401503] RAX: ffffffffffffffda RBX: 00007cedfa9ba2b0 RCX: 00007cedfa1d9190
[ 970.401505] RDX: 0000000000000000 RSI: 0000000000000011 RDI: 00005bf66173cc50
[ 970.401507] RBP: 00007ffe5f425b40 R08: 0000000000000000 R09: 00000000001a95a0
[ 970.401510] R10: 0017c2821cd0c200 R11: 0000000000000246 R12: 0000000000000011
[ 970.401512] R13: 00005bf66173cc50 R14: 0000000000000000 R15: 0000000000000011
[ 970.401514] Code: 00 55 48 89 e5 be 00 40 00 00 5d eb 00 0f 1f 44 00 00 55 48 89 e5 53 89 f3 89 f8 65 48 8b 0c 25 40 4d 01 00 48 8b b9 30 07 00 00 <8b> 0f 83 f9 01 75 1a 89 c6 e8 88 05 00 00 48 85 c0 74 22 31 c9ยท
[ 970.401554] RIP: __fget_light+0x1e/0x58 RSP: ffffb43a82fefaa8
[ 970.401692] ---[ end trace fdd75f23159ddc62 ]---
[ 970.409616] Kernel panic - not syncing: Fatal exception
[ 970.409634] Kernel Offset: 0x5a00000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff)
[ 970.409897] gsmi: Log Shutdown Reason 0x02
[ 970.417675] ACPI MEMORY or I/O RESET_REG.
Comment 1 by yuzhao@chromium.org
, Oct 4