====================================== | [ 116.705991][ T533] br0: port 2(s1) entered disabled state | [ 116.752895][ T1049] ip (1049) used greatest stack depth: 23744 bytes left | [ 116.888608][ T1050] Oops: general protection fault, probably for non-canonical address 0xfe522141612b9280: 0000 [#1] SMP KASAN | [ 116.889079][ T1050] KASAN: maybe wild-memory-access in range [0xf2912a0b095c9400-0xf2912a0b095c9407] [ 116.889715][ T1050] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 116.889951][ T1050] RIP: 0010:bond_fill_info (drivers/net/bonding/bond_netlink.c:733) [ 116.890150][ T1050] Code: 5d 08 41 b9 08 00 00 00 48 8d ac 24 ee 00 00 00 45 31 f6 41 29 d9 4d 63 c6 49 83 f8 05 0f 87 98 0f 00 00 48 89 d8 48 c1 e8 03 <42> 0f b6 14 20 48 89 d8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 All code ======== 0: 5d pop %rbp 1: 08 41 b9 or %al,-0x47(%rcx) 4: 08 00 or %al,(%rax) 6: 00 00 add %al,(%rax) 8: 48 8d ac 24 ee 00 00 lea 0xee(%rsp),%rbp f: 00 10: 45 31 f6 xor %r14d,%r14d 13: 41 29 d9 sub %ebx,%r9d 16: 4d 63 c6 movslq %r14d,%r8 19: 49 83 f8 05 cmp $0x5,%r8 1d: 0f 87 98 0f 00 00 ja 0xfbb 23: 48 89 d8 mov %rbx,%rax 26: 48 c1 e8 03 shr $0x3,%rax 2a:* 42 0f b6 14 20 movzbl (%rax,%r12,1),%edx <-- trapping instruction 2f: 48 89 d8 mov %rbx,%rax 32: 83 e0 07 and $0x7,%eax 35: 83 c0 01 add $0x1,%eax 38: 38 d0 cmp %dl,%al 3a: 7c 08 jl 0x44 3c: 84 d2 test %dl,%dl 3e: 0f .byte 0xf 3f: 85 .byte 0x85 Code starting with the faulting instruction =========================================== 0: 42 0f b6 14 20 movzbl (%rax,%r12,1),%edx 5: 48 89 d8 mov %rbx,%rax 8: 83 e0 07 and $0x7,%eax b: 83 c0 01 add $0x1,%eax e: 38 d0 cmp %dl,%al 10: 7c 08 jl 0x1a 12: 84 d2 test %dl,%dl 14: 0f .byte 0xf 15: 85 .byte 0x85 [ 116.890846][ T1050] RSP: 0018:ffffc90000536db8 EFLAGS: 00010a02 [ 116.891087][ T1050] RAX: 1e522541612b9280 RBX: f2912a0b095c9400 RCX: 0000000000000000 [ 116.891365][ T1050] RDX: 0000000000000004 RSI: 0000000000000000 RDI: ffff8880088daef0 [ 116.891632][ T1050] RBP: ffffc90000536ea6 R08: 0000000000000000 R09: 00000000f6a36c08 [ 116.891900][ T1050] R10: 0000000000000000 R11: ffffffffacd6ff00 R12: dffffc0000000000 [ 116.892176][ T1050] R13: ffff8880088daee8 R14: 0000000000000000 R15: 0000000000000000 [ 116.892456][ T1050] FS: 00007fbd51171800(0000) GS:ffff88808252c000(0000) knlGS:0000000000000000 [ 116.892763][ T1050] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 116.892995][ T1050] CR2: 00007fbd513c60e0 CR3: 000000000bb2c004 CR4: 0000000000772ef0 [ 116.893341][ T1050] PKRU: 55555554 [ 116.893501][ T1050] Call Trace: [ 116.893635][ T1050] [ 116.893729][ T1050] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 116.893920][ T1050] ? bond_slave_changelink (drivers/net/bonding/bond_netlink.c:677) [ 116.894106][ T1050] ? rtnl_xdp_prog_skb (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/rtnetlink.c:1696) [ 116.894284][ T1050] ? __lock_release (kernel/locking/lockdep.c:5536) [ 116.894460][ T1050] ? nla_put (lib/nlattr.c:1100) [ 116.894595][ T1050] ? rtnl_xdp_fill (net/core/rtnetlink.c:1762) [ 116.894767][ T1050] ? nla_put (lib/nlattr.c:1100) [ 116.894900][ T1050] rtnl_link_fill (net/core/rtnetlink.c:901 net/core/rtnetlink.c:921) [ 116.895097][ T1050] rtnl_fill_ifinfo.constprop.0 (net/core/rtnetlink.c:2139) [ 116.895325][ T1050] ? rtnl_fill_vf (net/core/rtnetlink.c:2021) [ 116.895544][ T1050] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/preempt.h:104 ./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 116.895771][ T1050] ? trace_kmalloc (./include/trace/events/kmem.h:54 (discriminator 21)) [ 116.895947][ T1050] ? __kmalloc_node_track_caller_noprof (mm/slub.c:4397) [ 116.896180][ T1050] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:751) [ 116.896372][ T1050] ? __alloc_skb (net/core/skbuff.c:670) [ 116.896547][ T1050] ? __build_skb_around (./arch/x86/include/asm/atomic.h:28 ./include/linux/atomic/atomic-arch-fallback.h:503 ./include/linux/atomic/atomic-instrumented.h:68 net/core/skbuff.c:383 net/core/skbuff.c:440) [ 116.896744][ T1050] ? __alloc_skb (net/core/skbuff.c:686) [ 116.896915][ T1050] ? napi_skb_cache_get (net/core/skbuff.c:643) [ 116.897097][ T1050] ? rtnl_prop_list_size (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/rtnetlink.c:1233) [ 116.897273][ T1050] rtmsg_ifinfo_build_skb (net/core/rtnetlink.c:4409) [ 116.897449][ T1050] rtmsg_ifinfo_event.part.0 (net/core/rtnetlink.c:4444) [ 116.897637][ T1050] rtmsg_ifinfo (net/core/rtnetlink.c:4453 net/core/rtnetlink.c:4451) [ 116.897768][ T1050] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/preempt.h:104 ./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 116.897990][ T1050] __dev_notify_flags (net/core/dev.c:9675) [ 116.898173][ T1050] ? debug_object_activate (lib/debugobjects.c:732) [ 116.898354][ T1050] ? netif_change_name (net/core/dev.c:9668) [ 116.898528][ T1050] ? __queue_work (kernel/workqueue.c:2481) [ 116.898700][ T1050] ? __queue_work (kernel/workqueue.c:2481) [ 116.898877][ T1050] ? lockdep_init_map_type (kernel/locking/lockdep.c:4973) [ 116.899058][ T1050] rtnl_configure_link (net/core/rtnetlink.c:3600) [ 116.899237][ T1050] rtnl_newlink_create (net/core/rtnetlink.c:3844) [ 116.899408][ T1050] ? rtnl_create_link (net/core/rtnetlink.c:3799) [ 116.899580][ T1050] ? __dev_get_by_name (net/core/dev.c:865) [ 116.899754][ T1050] ? rtnl_dev_get (net/core/rtnetlink.c:3412) [ 116.899925][ T1050] ? rtnl_validate_mdb_entry_del_bulk (net/core/rtnetlink.c:3412) [ 116.900145][ T1050] ? rtnl_newlink (net/core/rtnetlink.c:343 net/core/rtnetlink.c:4064) [ 116.900318][ T1050] ? reacquire_held_locks (kernel/locking/lockdep.c:5385) [ 116.900496][ T1050] __rtnl_newlink (net/core/rtnetlink.c:3950) [ 116.900672][ T1050] rtnl_newlink (net/core/rtnetlink.c:351 net/core/rtnetlink.c:4066) [ 116.900844][ T1050] ? __rtnl_newlink (net/core/rtnetlink.c:3956) [ 116.901020][ T1050] ? rtnetlink_rcv_msg (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/rtnetlink.c:6952) [ 116.901203][ T1050] ? __lock_release (kernel/locking/lockdep.c:5536) [ 116.901381][ T1050] ? __rtnl_newlink (net/core/rtnetlink.c:3956) [ 116.901552][ T1050] rtnetlink_rcv_msg (net/core/rtnetlink.c:6954) [ 116.901723][ T1050] ? validate_chain (kernel/locking/lockdep.c:3801 kernel/locking/lockdep.c:3821 kernel/locking/lockdep.c:3876) [ 116.901900][ T1050] ? rtnl_port_fill (net/core/rtnetlink.c:6857) [ 116.902086][ T1050] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 116.902258][ T1050] netlink_rcv_skb (net/netlink/af_netlink.c:2552) [ 116.902435][ T1050] ? rtnl_port_fill (net/core/rtnetlink.c:6857) [ 116.902607][ T1050] ? netlink_ack (net/netlink/af_netlink.c:2529) [ 116.902781][ T1050] ? netlink_deliver_tap (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/netlink/af_netlink.c:340) [ 116.902953][ T1050] ? netlink_deliver_tap (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 ./include/net/netns/generic.h:48 net/netlink/af_netlink.c:333) [ 116.903137][ T1050] netlink_unicast (net/netlink/af_netlink.c:1321 net/netlink/af_netlink.c:1346) [ 116.903314][ T1050] ? netlink_attachskb (net/netlink/af_netlink.c:1331) [ 116.903487][ T1050] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 116.903661][ T1050] netlink_sendmsg (net/netlink/af_netlink.c:1896) [ 116.903834][ T1050] ? netlink_unicast (net/netlink/af_netlink.c:1815) [ 116.904005][ T1050] ? __import_iovec (lib/iov_iter.c:1441 lib/iov_iter.c:1456) [ 116.904190][ T1050] ? netlink_unicast (net/netlink/af_netlink.c:1815) [ 116.904363][ T1050] ____sys_sendmsg (net/socket.c:727 net/socket.c:742 net/socket.c:2627) [ 116.904539][ T1050] ? get_timestamp.constprop.0 (net/socket.c:2573) [ 116.904757][ T1050] ? __copy_msghdr (net/socket.c:2553) [ 116.904934][ T1050] ___sys_sendmsg (net/socket.c:2683) [ 116.905117][ T1050] ? copy_msghdr_from_user (net/socket.c:2670) [ 116.905289][ T1050] ? do_pte_missing (mm/memory.c:6009) [ 116.905471][ T1050] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 116.905650][ T1050] ? __handle_mm_fault (mm/memory.c:6195) [ 116.905821][ T1050] ? __pmd_alloc (mm/memory.c:6104) [ 116.906000][ T1050] ? lock_vma_under_rcu (./include/linux/rcupdate.h:874 mm/mmap_lock.c:170) [ 116.906182][ T1050] __sys_sendmsg (net/socket.c:2713) [ 116.906355][ T1050] ? __sys_sendmsg_sock (net/socket.c:2698) [ 116.906527][ T1050] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1484 arch/x86/mm/fault.c:1532) [ 116.906706][ T1050] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 ./include/linux/atomic/atomic-arch-fallback.h:949 ./include/linux/atomic/atomic-instrumented.h:401 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/mmap_lock.h:143 ./include/linux/mmap_lock.h:267 arch/x86/mm/fault.c:1338) [ 116.906881][ T1050] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:751) [ 116.907178][ T1050] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 116.907349][ T1050] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 116.907568][ T1050] RIP: 0033:0x7fbd5133f1d7 [ 116.907754][ T1050] Code: 0e 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 All code ======== 0: 0e (bad) 1: 00 f7 add %dh,%bh 3: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 7: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax e: eb b9 jmp 0xffffffffffffffc9 10: 0f 1f 00 nopl (%rax) 13: f3 0f 1e fa endbr64 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 10 jne 0x33 23: b8 2e 00 00 00 mov $0x2e,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 51 ja 0x83 32: c3 ret 33: 48 83 ec 28 sub $0x28,%rsp 37: 89 54 24 1c mov %edx,0x1c(%rsp) 3b: 48 89 74 24 10 mov %rsi,0x10(%rsp) Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 51 ja 0x59 8: c3 ret 9: 48 83 ec 28 sub $0x28,%rsp d: 89 54 24 1c mov %edx,0x1c(%rsp) 11: 48 89 74 24 10 mov %rsi,0x10(%rsp) [ 116.908485][ T1050] RSP: 002b:00007ffdf599e388 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 116.908861][ T1050] RAX: ffffffffffffffda RBX: 00007ffdf599eac0 RCX: 00007fbd5133f1d7 [ 116.909133][ T1050] RDX: 0000000000000000 RSI: 00007ffdf599e3f0 RDI: 0000000000000005 [ 116.909402][ T1050] RBP: 0000000000000006 R08: 0000000000000058 R09: 0000000000000000 [ 116.909780][ T1050] R10: 00007fbd51236770 R11: 0000000000000246 R12: 00007ffdf599ead8 Finger prints: bond_fill_info:rtnl_link_fill:rtmsg_ifinfo_build_skb:rtmsg_ifinfo:__dev_notify_flags