git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: [PATCH/RFC] Allow writing loose objects that are corrupted in a pack file

From
Linus Torvalds <torvalds@linux-foundation.org>
Date
Jan 7, 2009, 04:54 UTC
Message-ID
<alpine.LFD.2.00.0901062026500.3057@localhost.localdomain>
In-Reply-To
<1231292360.8870.61.camel@starfruit>
On Tue, 6 Jan 2009, R. Tyler Ballance wrote:
Show 5 quoted lines
> 
> I'll back the patch out and redeploy, it's worth mentioning that a
> coworker of mine just got the issue as well (on 1.6.1). He was able to
> `git pull` and the error went away, but I doubt that it "magically fixed
> itself"

Quite frankly, that behaviour sounds like a disk _cache_ corruption issue. The fact that some corruption "comes and goes" and sometimes magically heals itself sounds very much like some disk cache problem, and then that particular part of the cache gets replaced and then when re-populated it is magically correct.

We had that in one case with a Linux NFS client, where a rename across directories caused problems.

This was a networked filesystem on OS X, right? File caching is much more "interesting" in networked filesystems than it is in normal private on-disk ones.

> I've tarred one of the repositories that had it in a reproducible state
> so I can create a build and extract the tar and run against that to
> verify any patches anybody might have, but unfortunately at 7GB of
> company code and assets, I can't exactly share ;)
The thing to do is
 - untar it on some trusted machine with a local disk and a known-good 
   filesystem.
   IOW, not that networked samba share.
 - verify that it really does happen on that machine, with that untarred 
   image. Because maybe it doesn't. 
   The hope is that you caught the corruption in the cache, and it 
   actually got written out to the tar-file. But if it _is_ a disk cache 
   (well, network cache) issue, maybe the IO required to tar everything up 
   was enough to flush it, and the tar-file actually _works_ because it 
   got repopulated correctly.
   So that's why you should double-check that it really ends up being 
   corrupt after being untarred again.
 - go back and test the original git repo on the network share, preferably 
   on another client. See if the error has gone away.
 - If so, try to compare that known-corrupt filesystem with the original 
   one:  and preferably do this on another machine over the network mount. 
   See if they differ. They obviously should *not* differ, since it's an 
   tar/untar of the same files, but ...

The fact that you seem to get a _lot_ of these errors really does make it sound like something in your environment. It's actually really hard to get git to corrupt anything. Especially objects that got packed. They've been quiescent for a long time, they got repacked in a very simple way, they are totally read-only.

But it is _not_ hard to corrupt network filesystems. It's downright trivial with some of them, especially with some hardware (eg there's no end-to-end checksumming except for the _extremely_ weak 16-bit IP csum, and even that has been known to be disabled, or screwed up by ethernet cards that do IP packet offloading and thus computing the csum not on the data that tee user actually wrote, but the data that the card received, which is not necessarily at all the same thing).

And while ethernet uses a stronger CRC, that one is not end-to-end, so corruption on the card or in a switch in between easily defeats that too.

Just google for something like
	"OS X" SMB "file corruption"
and you'll find quite a bit of hits. Not all that unusual.
				Linus
Previous: Nicolas PitreNext: R. Tyler Ballance
Message 10 of 49 in “Allow writing loose objects that are corrupted in a pack file”
  1. Allow writing loose objects that are corrupted in a pack fileJan Krüger, Dec 9, 2008
  2. R. Tyler BallanceDec 9, 2008
  3. Shawn O. PearceDec 9, 2008
  4. R. Tyler BallanceJan 6, 2009
  5. Nicolas PitreJan 7, 2009
  6. R. Tyler BallanceJan 7, 2009
  7. Nicolas PitreJan 7, 2009
  8. R. Tyler BallanceJan 7, 2009
  9. Nicolas PitreJan 7, 2009
  10. Linus TorvaldsJan 7, 2009
  11. R. Tyler BallanceJan 7, 2009
  12. Junio C HamanoJan 7, 2009
  13. R. Tyler BallanceJan 7, 2009
  14. Junio C HamanoJan 7, 2009
  15. R. Tyler BallanceJan 7, 2009
  16. Nicolas PitreJan 7, 2009
  17. Linus TorvaldsJan 7, 2009
  18. Linus TorvaldsJan 7, 2009
  19. R. Tyler BallanceJan 7, 2009
  20. Linus TorvaldsJan 7, 2009
  21. Public repro case! Re: [PATCH/RFC] Allow writing loose objects that are corrupted in a pack fileR. Tyler Ballance, Jan 8, 2009
  22. Linus TorvaldsJan 8, 2009
  23. R. Tyler BallanceJan 8, 2009
  24. Linus TorvaldsJan 8, 2009
  25. Linus TorvaldsJan 8, 2009
  26. Shawn O. PearceJan 8, 2009
  27. James PickensJan 8, 2009
  28. Shawn O. PearceJan 8, 2009
  29. Junio C HamanoJan 8, 2009
  30. Shawn O. PearceJan 8, 2009
  31. Boyd Stephen Smith Jr.Jan 8, 2009
  32. Linus TorvaldsJan 8, 2009
  33. Shawn O. PearceJan 8, 2009
  34. Linus TorvaldsJan 8, 2009
  35. Shawn O. PearceJan 8, 2009
  36. Wrap inflateInit to retry allocation after releasing pack memoryShawn O. Pearce, Jan 8, 2009
  37. Linus TorvaldsJan 8, 2009
  38. Junio C HamanoJan 8, 2009
  39. Linus TorvaldsJan 8, 2009
  40. Shawn O. PearceJan 8, 2009
  41. Linus TorvaldsJan 8, 2009
  42. R. Tyler BallanceJan 8, 2009
  43. Linus TorvaldsJan 8, 2009
  44. R. Tyler BallanceJan 8, 2009
  45. Junio C HamanoJan 9, 2009
  46. Linus TorvaldsJan 8, 2009
  47. R. Tyler BallanceJan 8, 2009
  48. Linus TorvaldsJan 8, 2009
  49. R. Tyler BallanceJan 8, 2009

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.