====================================== | [ 13.438413][ T241] bond0: (slave eth0): Enslaving as an active interface with an up link | [ 18.337733][ T246] bond0: (slave eth0): Releasing backup interface | [ 18.936647][ T249] Oops: general protection fault, probably for non-canonical address 0xec90dbc4afeef6e0: 0000 [#1] SMP KASAN | [ 18.937066][ T249] KASAN: maybe wild-memory-access in range [0x6486fe257f77b700-0x6486fe257f77b707] [ 18.937659][ T249] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 18.937872][ T249] RIP: 0010:bond_fill_info (drivers/net/bonding/bond_netlink.c:733) [ 18.938052][ T249] Code: 5d 08 41 b9 08 00 00 00 48 8d ac 24 ee 00 00 00 45 31 f6 41 29 d9 4d 63 c6 49 83 f8 05 0f 87 98 0f 00 00 48 89 d8 48 c1 e8 03 <42> 0f b6 14 20 48 89 d8 83 e0 07 83 c0 01 38 d0 7c 08 84 d2 0f 85 All code ======== 0: 5d pop %rbp 1: 08 41 b9 or %al,-0x47(%rcx) 4: 08 00 or %al,(%rax) 6: 00 00 add %al,(%rax) 8: 48 8d ac 24 ee 00 00 lea 0xee(%rsp),%rbp f: 00 10: 45 31 f6 xor %r14d,%r14d 13: 41 29 d9 sub %ebx,%r9d 16: 4d 63 c6 movslq %r14d,%r8 19: 49 83 f8 05 cmp $0x5,%r8 1d: 0f 87 98 0f 00 00 ja 0xfbb 23: 48 89 d8 mov %rbx,%rax 26: 48 c1 e8 03 shr $0x3,%rax 2a:* 42 0f b6 14 20 movzbl (%rax,%r12,1),%edx <-- trapping instruction 2f: 48 89 d8 mov %rbx,%rax 32: 83 e0 07 and $0x7,%eax 35: 83 c0 01 add $0x1,%eax 38: 38 d0 cmp %dl,%al 3a: 7c 08 jl 0x44 3c: 84 d2 test %dl,%dl 3e: 0f .byte 0xf 3f: 85 .byte 0x85 Code starting with the faulting instruction =========================================== 0: 42 0f b6 14 20 movzbl (%rax,%r12,1),%edx 5: 48 89 d8 mov %rbx,%rax 8: 83 e0 07 and $0x7,%eax b: 83 c0 01 add $0x1,%eax e: 38 d0 cmp %dl,%al 10: 7c 08 jl 0x1a 12: 84 d2 test %dl,%dl 14: 0f .byte 0xf 15: 85 .byte 0x85 [ 18.938652][ T249] RSP: 0018:ffffc90000c06f30 EFLAGS: 00010202 [ 18.938869][ T249] RAX: 0c90dfc4afeef6e0 RBX: 6486fe257f77b700 RCX: 0000000000000000 [ 18.939123][ T249] RDX: 0000000000000004 RSI: 0000000000000000 RDI: ffff888004b92ef0 [ 18.939380][ T249] RBP: ffffc90000c0701e R08: 0000000000000000 R09: 0000000080884908 [ 18.939634][ T249] R10: 0000000000000000 R11: ffffffff9c56ff00 R12: dffffc0000000000 [ 18.939885][ T249] R13: ffff888004b92ee8 R14: 0000000000000000 R15: 0000000000000000 [ 18.940139][ T249] FS: 00007fc3c1d8d800(0000) GS:ffff888092bac000(0000) knlGS:0000000000000000 [ 18.940432][ T249] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 18.940645][ T249] CR2: 00000000004e5840 CR3: 0000000004f79003 CR4: 0000000000772ef0 [ 18.940903][ T249] PKRU: 55555554 [ 18.941030][ T249] Call Trace: [ 18.941158][ T249] [ 18.941247][ T249] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 18.941419][ T249] ? bond_slave_changelink (drivers/net/bonding/bond_netlink.c:677) [ 18.941590][ T249] ? rtnl_xdp_prog_skb (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/core/rtnetlink.c:1696) [ 18.941758][ T249] ? __lock_release (kernel/locking/lockdep.c:5536) [ 18.941928][ T249] ? nla_put (lib/nlattr.c:1100) [ 18.942057][ T249] ? rtnl_xdp_fill (net/core/rtnetlink.c:1762) [ 18.942227][ T249] ? nla_put (lib/nlattr.c:1100) [ 18.942355][ T249] rtnl_link_fill (net/core/rtnetlink.c:901 net/core/rtnetlink.c:921) [ 18.942529][ T249] rtnl_fill_ifinfo.constprop.0 (net/core/rtnetlink.c:2139) [ 18.942741][ T249] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 18.942911][ T249] ? rtnl_fill_vf (net/core/rtnetlink.c:2021) [ 18.943081][ T249] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 18.943254][ T249] ? mark_held_locks (kernel/locking/lockdep.c:4325) [ 18.943423][ T249] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 18.943636][ T249] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 18.943806][ T249] rtnl_getlink (net/core/rtnetlink.c:4187) [ 18.943977][ T249] ? rtnl_dump_ifinfo (net/core/rtnetlink.c:4128) [ 18.944157][ T249] ? __mutex_lock (./arch/x86/include/asm/preempt.h:104 kernel/locking/mutex.c:739 kernel/locking/mutex.c:760) [ 18.944327][ T249] ? rtnetlink_rcv_msg (net/core/rtnetlink.c:6961) [ 18.944497][ T249] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 18.944669][ T249] rtnetlink_rcv_msg (net/core/rtnetlink.c:6963) [ 18.944834][ T249] ? validate_chain (kernel/locking/lockdep.c:3801 kernel/locking/lockdep.c:3821 kernel/locking/lockdep.c:3876) [ 18.945003][ T249] ? rtnl_port_fill (net/core/rtnetlink.c:6857) [ 18.945173][ T249] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 18.945343][ T249] netlink_rcv_skb (net/netlink/af_netlink.c:2552) [ 18.945511][ T249] ? rtnl_port_fill (net/core/rtnetlink.c:6857) [ 18.945681][ T249] ? netlink_ack (net/netlink/af_netlink.c:2529) [ 18.945851][ T249] ? netlink_deliver_tap (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 net/netlink/af_netlink.c:340) [ 18.946022][ T249] ? netlink_deliver_tap (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:871 ./include/net/netns/generic.h:48 net/netlink/af_netlink.c:333) [ 18.946193][ T249] netlink_unicast (net/netlink/af_netlink.c:1321 net/netlink/af_netlink.c:1346) [ 18.946361][ T249] ? netlink_attachskb (net/netlink/af_netlink.c:1331) [ 18.946539][ T249] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 18.946770][ T249] netlink_sendmsg (net/netlink/af_netlink.c:1896) [ 18.946943][ T249] ? netlink_unicast (net/netlink/af_netlink.c:1815) [ 18.947111][ T249] ? __import_iovec (lib/iov_iter.c:1441 lib/iov_iter.c:1456) [ 18.947280][ T249] ? netlink_unicast (net/netlink/af_netlink.c:1815) [ 18.947447][ T249] ____sys_sendmsg (net/socket.c:727 net/socket.c:742 net/socket.c:2627) [ 18.947618][ T249] ? get_timestamp.constprop.0 (net/socket.c:2573) [ 18.947826][ T249] ? __copy_msghdr (net/socket.c:2553) [ 18.947996][ T249] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 18.948163][ T249] ___sys_sendmsg (net/socket.c:2683) [ 18.948332][ T249] ? copy_msghdr_from_user (net/socket.c:2670) [ 18.948500][ T249] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 18.948672][ T249] ? find_held_lock (kernel/locking/lockdep.c:5350) [ 18.948840][ T249] ? __might_fault (mm/memory.c:6958 mm/memory.c:6952) [ 18.949012][ T249] ? __lock_release (kernel/locking/lockdep.c:5536) [ 18.949178][ T249] ? __might_fault (mm/memory.c:6958 mm/memory.c:6952) [ 18.949348][ T249] ? _copy_to_user (./arch/x86/include/asm/smap.h:29 ./arch/x86/include/asm/uaccess_64.h:134 ./arch/x86/include/asm/uaccess_64.h:147 ./include/linux/uaccess.h:197 lib/usercopy.c:26) [ 18.949518][ T249] __sys_sendmsg (net/socket.c:2713) [ 18.949687][ T249] ? __sys_sendmsg_sock (net/socket.c:2698) [ 18.949859][ T249] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:751) [ 18.950030][ T249] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 18.950198][ T249] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 18.950411][ T249] RIP: 0033:0x7fc3c1f5b1d7 [ 18.950587][ T249] Code: 0e 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 All code ======== 0: 0e (bad) 1: 00 f7 add %dh,%bh 3: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 7: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax e: eb b9 jmp 0xffffffffffffffc9 10: 0f 1f 00 nopl (%rax) 13: f3 0f 1e fa endbr64 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 10 jne 0x33 23: b8 2e 00 00 00 mov $0x2e,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 51 ja 0x83 32: c3 ret 33: 48 83 ec 28 sub $0x28,%rsp 37: 89 54 24 1c mov %edx,0x1c(%rsp) 3b: 48 89 74 24 10 mov %rsi,0x10(%rsp) Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 51 ja 0x59 8: c3 ret 9: 48 83 ec 28 sub $0x28,%rsp d: 89 54 24 1c mov %edx,0x1c(%rsp) 11: 48 89 74 24 10 mov %rsi,0x10(%rsp) [ 18.951195][ T249] RSP: 002b:00007fff449f7478 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 18.951450][ T249] RAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00007fc3c1f5b1d7 [ 18.951703][ T249] RDX: 0000000000000000 RSI: 00007fff449f74e0 RDI: 0000000000000006 [ 18.951958][ T249] RBP: 00007fff449f75d0 R08: 0000000000000006 R09: 00007fc3c2128060 [ 18.952213][ T249] R10: 00007fc3c1e52770 R11: 0000000000000246 R12: 00007fff449f9953 Finger prints: bond_fill_info:rtnl_link_fill:rtnl_getlink:rtnetlink_rcv_msg:netlink_rcv_skb