[ 18.705186][ T299] br0: port 1(veth1) entered blocking state [ 18.705798][ T299] br0: port 1(veth1) entered disabled state [ 18.706385][ T299] veth1: entered allmulticast mode [ 18.709922][ T299] veth1: entered promiscuous mode [ 18.831166][ T301] br0: port 2(veth2) entered blocking state [ 18.831604][ T301] br0: port 2(veth2) entered disabled state [ 18.832025][ T301] veth2: entered allmulticast mode [ 18.835363][ T301] veth2: entered promiscuous mode [ 19.060787][ T38] br0: port 1(veth1) entered blocking state [ 19.061331][ T38] br0: port 1(veth1) entered forwarding state [ 19.178634][ T38] br0: port 2(veth2) entered blocking state [ 19.179117][ T38] br0: port 2(veth2) entered forwarding state [ 28.396667][ T350] veth0: entered promiscuous mode [ 29.066666][ T356] GACT probability NOT on [ 55.716989][ T384] veth0: left promiscuous mode [ 56.140546][ T396] veth3: entered promiscuous mode [ 58.268638][ T405] veth3: left promiscuous mode [ 58.476533][ T407] veth3: entered promiscuous mode [ 60.565421][ T416] veth3: left promiscuous mode [ 60.802069][ T419] veth3: entered promiscuous mode [ 62.863540][ T428] veth3: left promiscuous mode [ 63.063745][ T430] veth3: entered promiscuous mode [ 65.122665][ T439] veth3: left promiscuous mode [ 70.846601][ T477] ================================================================== [ 70.846934][ T477] BUG: KASAN: null-ptr-deref in try_to_grab_pending+0x81/0x6c0 [ 70.847257][ T477] Write of size 8 at addr 0000000000000000 by task ip/477 [ 70.847475][ T477] [ 70.847608][ T477] CPU: 3 UID: 0 PID: 477 Comm: ip Not tainted 6.18.0-rc5-virtme #1 PREEMPT(full) [ 70.847615][ T477] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 70.847621][ T477] Call Trace: [ 70.847627][ T477] [ 70.847629][ T477] dump_stack_lvl+0x82/0xc0 [ 70.847652][ T477] ? try_to_grab_pending+0x81/0x6c0 [ 70.847655][ T477] kasan_report+0xca/0x100 [ 70.847666][ T477] ? try_to_grab_pending+0x81/0x6c0 [ 70.847671][ T477] kasan_check_range+0x39/0x1b0 [ 70.847675][ T477] try_to_grab_pending+0x81/0x6c0 [ 70.847680][ T477] __cancel_work+0x7c/0x260 [ 70.847683][ T477] ? enable_delayed_work+0x10/0x10 [ 70.847687][ T477] ? queue_delayed_work_on+0xa0/0xa0 [ 70.847691][ T477] ? lockdep_hardirqs_on+0x7c/0x110 [ 70.847698][ T477] __cancel_work_sync+0x18/0xc0 [ 70.847702][ T477] __dev_close_many+0x1ce/0x810 [ 70.847715][ T477] ? netdev_notify_peers+0x20/0x20 [ 70.847719][ T477] ? __local_bh_enable_ip+0xa9/0x120 [ 70.847727][ T477] __dev_change_flags+0x24b/0x6c0 [ 70.847729][ T477] ? __free_zapped_classes+0x90/0x90 [ 70.847739][ T477] ? netif_set_allmulti+0x360/0x360 [ 70.847741][ T477] ? __lock_release+0x5d/0x170 [ 70.847749][ T477] netif_change_flags+0x80/0x160 [ 70.847753][ T477] do_setlink.constprop.0+0x97c/0x2460 [ 70.847761][ T477] ? rtnl_newlink_create+0x770/0x770 [ 70.847767][ T477] ? rcu_read_lock_any_held+0x3f/0xa0 [ 70.847776][ T477] ? validate_chain+0x15e/0x4d0 [ 70.847781][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.847786][ T477] ? __mutex_trylock_common+0xf9/0x260 [ 70.847790][ T477] ? __mutex_handoff+0x2b0/0x2b0 [ 70.847794][ T477] ? rcu_is_watching+0x12/0xb0 [ 70.847800][ T477] ? rcu_is_watching+0x12/0xb0 [ 70.847803][ T477] ? trace_contention_end+0xd8/0x140 [ 70.847807][ T477] ? __mutex_lock+0x19f/0x1190 [ 70.847824][ T477] ? __create_object+0x5e/0xb0 [ 70.847831][ T477] ? __lock_release+0x5d/0x170 [ 70.847834][ T477] ? rtnl_newlink+0x64a/0xa60 [ 70.847837][ T477] ? ww_mutex_lock+0x160/0x160 [ 70.847841][ T477] ? trace_cap_capable+0x10b/0x180 [ 70.847854][ T477] ? __rtnl_newlink+0x40a/0xa30 [ 70.847859][ T477] rtnl_newlink+0x693/0xa60 [ 70.847864][ T477] ? __rtnl_newlink+0xa30/0xa30 [ 70.847867][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.847873][ T477] ? find_held_lock+0x2b/0x80 [ 70.847876][ T477] ? rtnetlink_rcv_msg+0x6e6/0xc00 [ 70.847879][ T477] ? __lock_release+0x5d/0x170 [ 70.847883][ T477] ? __rtnl_newlink+0xa30/0xa30 [ 70.847886][ T477] rtnetlink_rcv_msg+0x709/0xc00 [ 70.847890][ T477] ? rtnl_port_fill+0x850/0x850 [ 70.847893][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.847900][ T477] netlink_rcv_skb+0x121/0x340 [ 70.847908][ T477] ? rtnl_port_fill+0x850/0x850 [ 70.847912][ T477] ? netlink_ack+0xdd0/0xdd0 [ 70.847918][ T477] ? netlink_deliver_tap+0x13e/0x340 [ 70.847921][ T477] ? netlink_deliver_tap+0xc3/0x340 [ 70.847925][ T477] netlink_unicast+0x4aa/0x780 [ 70.847930][ T477] ? netlink_attachskb+0x810/0x810 [ 70.847933][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.847939][ T477] netlink_sendmsg+0x714/0xbd0 [ 70.847944][ T477] ? netlink_unicast+0x780/0x780 [ 70.847947][ T477] ? __import_iovec+0x230/0x3b0 [ 70.847960][ T477] ? netlink_unicast+0x780/0x780 [ 70.847964][ T477] ____sys_sendmsg+0x3dd/0x890 [ 70.847973][ T477] ? get_timestamp.constprop.0+0x380/0x380 [ 70.847976][ T477] ? __copy_msghdr+0x3c0/0x3c0 [ 70.847983][ T477] ___sys_sendmsg+0xed/0x170 [ 70.847988][ T477] ? kasan_record_aux_stack+0x8c/0xa0 [ 70.847991][ T477] ? __call_rcu_common.constprop.0+0xa8/0x630 [ 70.847997][ T477] ? copy_msghdr_from_user+0x110/0x110 [ 70.848002][ T477] ? find_held_lock+0x2b/0x80 [ 70.848007][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.848012][ T477] ? find_held_lock+0x2b/0x80 [ 70.848016][ T477] ? __virt_addr_valid+0x22a/0x450 [ 70.848028][ T477] ? __lock_release+0x5d/0x170 [ 70.848034][ T477] __sys_sendmsg+0x10b/0x1a0 [ 70.848037][ T477] ? __call_rcu_common.constprop.0+0x318/0x630 [ 70.848041][ T477] ? __sys_sendmsg_sock+0x20/0x20 [ 70.848049][ T477] ? rcu_is_watching+0x12/0xb0 [ 70.848053][ T477] do_syscall_64+0xc1/0xfd0 [ 70.848059][ T477] entry_SYSCALL_64_after_hwframe+0x4b/0x53 [ 70.848066][ T477] RIP: 0033:0x7f518fd571d7 [ 70.848070][ T477] Code: 0e 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 [ 70.848075][ T477] RSP: 002b:00007ffe98bf1418 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 70.848088][ T477] RAX: ffffffffffffffda RBX: 00007ffe98bf1b40 RCX: 00007f518fd571d7 [ 70.848090][ T477] RDX: 0000000000000000 RSI: 00007ffe98bf1480 RDI: 0000000000000005 [ 70.848094][ T477] RBP: 0000000000000003 R08: 0000000000000003 R09: 0000000000000078 [ 70.848095][ T477] R10: 00007f518fc53f60 R11: 0000000000000246 R12: 0000000000000003 [ 70.848097][ T477] R13: 00000000691cda5c R14: 0000000000499600 R15: 0000000000000000 [ 70.848104][ T477] [ 70.848105][ T477] ================================================================== [ 70.865072][ T477] Disabling lock debugging due to kernel taint [ 70.865313][ T477] BUG: kernel NULL pointer dereference, address: 0000000000000000 [ 70.865576][ T477] #PF: supervisor write access in kernel mode [ 70.865788][ T477] #PF: error_code(0x0002) - not-present page [ 70.866002][ T477] PGD 5796067 P4D 5796067 PUD 10a07067 PMD 0 [ 70.866226][ T477] Oops: Oops: 0002 [#1] SMP KASAN [ 70.866405][ T477] CPU: 3 UID: 0 PID: 477 Comm: ip Tainted: G B 6.18.0-rc5-virtme #1 PREEMPT(full) [ 70.866751][ T477] Tainted: [B]=BAD_PAGE [ 70.866888][ T477] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 70.867105][ T477] RIP: 0010:try_to_grab_pending+0x81/0x6c0 [ 70.867330][ T477] Code: 00 41 89 c0 b8 01 00 00 00 45 85 c0 74 0f 48 83 c4 10 5b 5d 41 5c 41 5d 41 5e 41 5f c3 be 08 00 00 00 48 89 df e8 7f 7f 81 00 48 0f ba 2b 00 72 11 48 83 c4 10 31 c0 5b 5d 41 5c 41 5d 41 5e [ 70.867943][ T477] RSP: 0018:ffffc90000d3ef40 EFLAGS: 00010046 [ 70.868168][ T477] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffff95c4090a [ 70.868432][ T477] RDX: fffffbfff33cf2cd RSI: 0000000000000008 RDI: ffffffff99e79660 [ 70.868688][ T477] RBP: ffffc90000d3efa8 R08: 0000000000000001 R09: fffffbfff33cf2cc [ 70.868992][ T477] R10: ffffffff99e79667 R11: ffffc90000d3ea00 R12: 0000000000000000 [ 70.869268][ T477] R13: 0000000000000282 R14: ffff88800f021000 R15: dffffc0000000000 [ 70.869538][ T477] FS: 00007f518fb89800(0000) GS:ffff88809c572000(0000) knlGS:0000000000000000 [ 70.869837][ T477] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 70.870068][ T477] CR2: 0000000000000000 CR3: 0000000004ac9004 CR4: 0000000000772ef0 [ 70.870336][ T477] PKRU: 55555554 [ 70.870467][ T477] Call Trace: [ 70.870598][ T477] [ 70.870690][ T477] __cancel_work+0x7c/0x260 [ 70.870868][ T477] ? enable_delayed_work+0x10/0x10 [ 70.871051][ T477] ? queue_delayed_work_on+0xa0/0xa0 [ 70.871243][ T477] ? lockdep_hardirqs_on+0x7c/0x110 [ 70.871433][ T477] __cancel_work_sync+0x18/0xc0 [ 70.871618][ T477] __dev_close_many+0x1ce/0x810 [ 70.871788][ T477] ? netdev_notify_peers+0x20/0x20 [ 70.871958][ T477] ? __local_bh_enable_ip+0xa9/0x120 [ 70.872145][ T477] __dev_change_flags+0x24b/0x6c0 [ 70.872320][ T477] ? __free_zapped_classes+0x90/0x90 [ 70.872488][ T477] ? netif_set_allmulti+0x360/0x360 [ 70.872663][ T477] ? __lock_release+0x5d/0x170 [ 70.872834][ T477] netif_change_flags+0x80/0x160 [ 70.873011][ T477] do_setlink.constprop.0+0x97c/0x2460 [ 70.873193][ T477] ? rtnl_newlink_create+0x770/0x770 [ 70.873371][ T477] ? rcu_read_lock_any_held+0x3f/0xa0 [ 70.873541][ T477] ? validate_chain+0x15e/0x4d0 [ 70.873712][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.873885][ T477] ? __mutex_trylock_common+0xf9/0x260 [ 70.874065][ T477] ? __mutex_handoff+0x2b0/0x2b0 [ 70.874247][ T477] ? rcu_is_watching+0x12/0xb0 [ 70.874418][ T477] ? rcu_is_watching+0x12/0xb0 [ 70.874586][ T477] ? trace_contention_end+0xd8/0x140 [ 70.874754][ T477] ? __mutex_lock+0x19f/0x1190 [ 70.874924][ T477] ? __create_object+0x5e/0xb0 [ 70.875113][ T477] ? __lock_release+0x5d/0x170 [ 70.875293][ T477] ? rtnl_newlink+0x64a/0xa60 [ 70.875462][ T477] ? ww_mutex_lock+0x160/0x160 [ 70.875630][ T477] ? trace_cap_capable+0x10b/0x180 [ 70.875800][ T477] ? __rtnl_newlink+0x40a/0xa30 [ 70.875970][ T477] rtnl_newlink+0x693/0xa60 [ 70.876160][ T477] ? __rtnl_newlink+0xa30/0xa30 [ 70.876330][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.876500][ T477] ? find_held_lock+0x2b/0x80 [ 70.876671][ T477] ? rtnetlink_rcv_msg+0x6e6/0xc00 [ 70.876840][ T477] ? __lock_release+0x5d/0x170 [ 70.877020][ T477] ? __rtnl_newlink+0xa30/0xa30 [ 70.877203][ T477] rtnetlink_rcv_msg+0x709/0xc00 [ 70.877374][ T477] ? rtnl_port_fill+0x850/0x850 [ 70.877541][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.877711][ T477] netlink_rcv_skb+0x121/0x340 [ 70.877881][ T477] ? rtnl_port_fill+0x850/0x850 [ 70.878068][ T477] ? netlink_ack+0xdd0/0xdd0 [ 70.878252][ T477] ? netlink_deliver_tap+0x13e/0x340 [ 70.878421][ T477] ? netlink_deliver_tap+0xc3/0x340 [ 70.878592][ T477] netlink_unicast+0x4aa/0x780 [ 70.878761][ T477] ? netlink_attachskb+0x810/0x810 [ 70.878937][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.879128][ T477] netlink_sendmsg+0x714/0xbd0 [ 70.879305][ T477] ? netlink_unicast+0x780/0x780 [ 70.879478][ T477] ? __import_iovec+0x230/0x3b0 [ 70.879648][ T477] ? netlink_unicast+0x780/0x780 [ 70.879820][ T477] ____sys_sendmsg+0x3dd/0x890 [ 70.879998][ T477] ? get_timestamp.constprop.0+0x380/0x380 [ 70.880221][ T477] ? __copy_msghdr+0x3c0/0x3c0 [ 70.880393][ T477] ___sys_sendmsg+0xed/0x170 [ 70.880565][ T477] ? kasan_record_aux_stack+0x8c/0xa0 [ 70.880740][ T477] ? __call_rcu_common.constprop.0+0xa8/0x630 [ 70.880952][ T477] ? copy_msghdr_from_user+0x110/0x110 [ 70.881254][ T477] ? find_held_lock+0x2b/0x80 [ 70.881429][ T477] ? __lock_acquire+0x449/0x7e0 [ 70.881596][ T477] ? find_held_lock+0x2b/0x80 [ 70.881764][ T477] ? __virt_addr_valid+0x22a/0x450 [ 70.882046][ T477] ? __lock_release+0x5d/0x170 [ 70.882236][ T477] __sys_sendmsg+0x10b/0x1a0 [ 70.882406][ T477] ? __call_rcu_common.constprop.0+0x318/0x630 [ 70.882615][ T477] ? __sys_sendmsg_sock+0x20/0x20 [ 70.882893][ T477] ? rcu_is_watching+0x12/0xb0 [ 70.883078][ T477] do_syscall_64+0xc1/0xfd0 [ 70.883260][ T477] entry_SYSCALL_64_after_hwframe+0x4b/0x53 [ 70.883475][ T477] RIP: 0033:0x7f518fd571d7 [ 70.883781][ T477] Code: 0e 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b9 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 89 74 24 10 [ 70.884532][ T477] RSP: 002b:00007ffe98bf1418 EFLAGS: 00000246 ORIG_RAX: 000000000000002e [ 70.884792][ T477] RAX: ffffffffffffffda RBX: 00007ffe98bf1b40 RCX: 00007f518fd571d7 [ 70.885069][ T477] RDX: 0000000000000000 RSI: 00007ffe98bf1480 RDI: 0000000000000005 [ 70.885447][ T477] RBP: 0000000000000003 R08: 0000000000000003 R09: 0000000000000078 [ 70.885705][ T477] R10: 00007f518fc53f60 R11: 0000000000000246 R12: 0000000000000003 [ 70.885965][ T477] R13: 00000000691cda5c R14: 0000000000499600 R15: 0000000000000000 [ 70.886361][ T477] [ 70.886507][ T477] Modules linked in: act_gact cls_flower sch_ingress bridge stp llc vrf veth [ 70.886825][ T477] CR2: 0000000000000000 [ 70.887097][ T477] ---[ end trace 0000000000000000 ]--- [ 70.887295][ T477] RIP: 0010:try_to_grab_pending+0x81/0x6c0 [ 70.887528][ T477] Code: 00 41 89 c0 b8 01 00 00 00 45 85 c0 74 0f 48 83 c4 10 5b 5d 41 5c 41 5d 41 5e 41 5f c3 be 08 00 00 00 48 89 df e8 7f 7f 81 00 48 0f ba 2b 00 72 11 48 83 c4 10 31 c0 5b 5d 41 5c 41 5d 41 5e [ 70.888286][ T477] RSP: 0018:ffffc90000d3ef40 EFLAGS: 00010046 [ 70.888539][ T477] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffff95c4090a [ 70.888928][ T477] RDX: fffffbfff33cf2cd RSI: 0000000000000008 RDI: ffffffff99e79660 [ 70.889209][ T477] RBP: ffffc90000d3efa8 R08: 0000000000000001 R09: fffffbfff33cf2cc [ 70.889475][ T477] R10: ffffffff99e79667 R11: ffffc90000d3ea00 R12: 0000000000000000 [ 70.889841][ T477] R13: 0000000000000282 R14: ffff88800f021000 R15: dffffc0000000000 [ 70.890115][ T477] FS: 00007f518fb89800(0000) GS:ffff88809c572000(0000) knlGS:0000000000000000 [ 70.890530][ T477] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 70.890749][ T477] CR2: 0000000000000000 CR3: 0000000004ac9004 CR4: 0000000000772ef0 [ 70.891017][ T477] PKRU: 55555554 [ 70.891285][ T477] Kernel panic - not syncing: Fatal exception [ 70.891591][ T477] Kernel Offset: 0x14600000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 70.892004][ T477] ---[ end Kernel panic - not syncing: Fatal exception ]--- WAIT TIMEOUT stderr Ctrl-C stderr Ctrl-C stderr WAIT TIMEOUT stderr