====================================== | [ 2380.545977][ T70] ================================================================== | [ 2380.546496][ T70] BUG: KASAN: slab-use-after-free in kobject_put (lib/kobject.c:729) | [ 2380.546909][ T70] Read of size 1 at addr ffff88800c766f7c by task kworker/u8:1/70 | [ 2380.547325][ T70] [ 2380.547878][ T70] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 2380.548561][ T70] Workqueue: netns cleanup_net [ 2380.548862][ T70] Call Trace: [ 2380.549055][ T70] [ 2380.549218][ T70] dump_stack_lvl (lib/dump_stack.c:107) [ 2380.549498][ T70] print_address_description.constprop.0 (mm/kasan/report.c:378) [ 2380.549940][ T70] ? kobject_put (lib/kobject.c:729) [ 2380.550227][ T70] print_report (mm/kasan/report.c:489) [ 2380.550463][ T70] ? kasan_addr_to_slab (./arch/x86/include/asm/bitops.h:206 ./arch/x86/include/asm/bitops.h:238 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/page-flags.h:481 mm/kasan/../slab.h:206 mm/kasan/common.c:38) [ 2380.550747][ T70] kasan_report (mm/kasan/report.c:603) [ 2380.550999][ T70] ? kobject_put (lib/kobject.c:729) [ 2380.551268][ T70] kobject_put (lib/kobject.c:729) [ 2380.551499][ T70] br_sysfs_delbr (net/bridge/br_sysfs_br.c:1086) bridge [ 2380.551879][ T70] br_dev_delete (net/bridge/br_if.c:396) bridge [ 2380.552222][ T70] br_net_exit_batch_rtnl (net/bridge/br.c:369) bridge [ 2380.552630][ T70] cleanup_net (net/core/net_namespace.c:628 (discriminator 2)) [ 2380.552913][ T70] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5719) [ 2380.553269][ T70] ? __pfx_cleanup_net (net/core/net_namespace.c:581) [ 2380.553532][ T70] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 2380.553807][ T70] ? process_one_work (kernel/workqueue.c:2609) [ 2380.554130][ T70] process_one_work (kernel/workqueue.c:2638) [ 2380.554413][ T70] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 2380.554655][ T70] ? __pfx_process_one_work (kernel/workqueue.c:2542) [ 2380.554958][ T70] ? assign_work (kernel/workqueue.c:1101) [ 2380.555205][ T70] worker_thread (kernel/workqueue.c:2700 kernel/workqueue.c:2787) [ 2380.555492][ T70] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 2380.555852][ T70] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 2380.556126][ T70] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 2380.556408][ T70] kthread (kernel/kthread.c:388) [ 2380.556627][ T70] ? __pfx_kthread (kernel/kthread.c:341) [ 2380.556990][ T70] ret_from_fork (arch/x86/kernel/process.c:153) [ 2380.557279][ T70] ? __pfx_kthread (kernel/kthread.c:341) [ 2380.557547][ T70] ret_from_fork_asm (arch/x86/entry/entry_64.S:250) | [ 2380.578699][ T70] ------------[ cut here ]------------ | [ 2380.579022][ T70] refcount_t: underflow; use-after-free. | [ 2380.579438][ T70] WARNING: CPU: 3 PID: 70 at lib/refcount.c:28 refcount_warn_saturate (lib/refcount.c:28 (discriminator 3)) | [ 2380.579921][ T70] Modules linked in: vxlan ip6_udp_tunnel udp_tunnel act_pedit act_mirred cls_matchall sch_red sch_tbf ip_gre dummy bridge stp llc act_gact cls_flower sch_ingress 8021q ip6_gre ip6_tunnel tunnel6 gre vrf veth [ 2380.581740][ T70] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 2380.582611][ T70] Workqueue: netns cleanup_net [ 2380.582924][ T70] RIP: 0010:refcount_warn_saturate (lib/refcount.c:28 (discriminator 3)) [ 2380.583328][ T70] Code: 64 5d 03 80 fb 01 0f 87 54 5a 91 01 83 e3 01 0f 85 4d ff ff ff c6 05 d6 64 5d 03 01 90 48 c7 c7 00 58 a2 9a e8 5e 4c 2b ff 90 <0f> 0b 90 90 e9 2f ff ff ff 48 89 df e8 7c 23 a7 ff e9 b6 fe ff ff All code ======== 0: 64 5d fs pop %rbp 2: 03 80 fb 01 0f 87 add -0x78f0fe05(%rax),%eax 8: 54 push %rsp 9: 5a pop %rdx a: 91 xchg %eax,%ecx b: 01 83 e3 01 0f 85 add %eax,-0x7af0fe1d(%rbx) 11: 4d ff rex.WRB (bad) 13: ff (bad) 14: ff c6 inc %esi 16: 05 d6 64 5d 03 add $0x35d64d6,%eax 1b: 01 90 48 c7 c7 00 add %edx,0xc7c748(%rax) 21: 58 pop %rax 22: a2 9a e8 5e 4c 2b ff movabs %al,0xf90ff2b4c5ee89a 29:* 90 0f <-- trapping instruction 2b: 0b 90 90 e9 2f ff or -0xd01670(%rax),%edx 31: ff (bad) 32: ff 48 89 decl -0x77(%rax) 35: df e8 fucomip %st(0),%st 37: 7c 23 jl 0x5c 39: a7 cmpsl %es:(%rdi),%ds:(%rsi) 3a: ff (bad) 3b: e9 b6 fe ff ff jmp 0xfffffffffffffef6 Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: 90 nop 4: e9 2f ff ff ff jmp 0xffffffffffffff38 9: 48 89 df mov %rbx,%rdi c: e8 7c 23 a7 ff call 0xffffffffffa7238d 11: e9 b6 fe ff ff jmp 0xfffffffffffffecc [ 2380.584394][ T70] RSP: 0018:ffffc9000050fb98 EFLAGS: 00010282 [ 2380.584734][ T70] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffff97f0e74f [ 2380.585221][ T70] RDX: 0000000000000000 RSI: 0000000000000008 RDI: 0000000000000001 [ 2380.585685][ T70] RBP: 0000000000000003 R08: 0000000000000000 R09: fffff520000a1f18 [ 2380.586119][ T70] R10: ffffc9000050f8c7 R11: 205d303754202020 R12: ffff88800943a000 [ 2380.586675][ T70] R13: ffff88800943add8 R14: ffffc9000050fc98 R15: ffff88800943aba0 [ 2380.587147][ T70] FS: 0000000000000000(0000) GS:ffff888035e00000(0000) knlGS:0000000000000000 [ 2380.587671][ T70] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2380.588038][ T70] CR2: 00007fc895f312a8 CR3: 00000000058c0006 CR4: 00000000001706f0 [ 2380.588511][ T70] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2380.588926][ T70] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2380.589377][ T70] Call Trace: [ 2380.589584][ T70] [ 2380.589766][ T70] ? __warn (kernel/panic.c:677) [ 2380.589997][ T70] ? refcount_warn_saturate (lib/refcount.c:28 (discriminator 3)) [ 2380.590316][ T70] ? report_bug (lib/bug.c:201 lib/bug.c:219) [ 2380.590609][ T70] ? vprintk_emit (kernel/printk/printk.c:2313) [ 2380.590874][ T70] ? handle_bug (arch/x86/kernel/traps.c:238) [ 2380.591119][ T70] ? exc_invalid_op (arch/x86/kernel/traps.c:259 (discriminator 1)) [ 2380.591480][ T70] ? asm_exc_invalid_op (./arch/x86/include/asm/idtentry.h:568) [ 2380.591753][ T70] ? desc_read (./arch/x86/include/asm/atomic64_64.h:20 ./include/linux/atomic/atomic-arch-fallback.h:2615 ./include/linux/atomic/atomic-long.h:79 ./include/linux/atomic/atomic-instrumented.h:3196 kernel/printk/printk_ringbuffer.c:534) [ 2380.592011][ T70] ? refcount_warn_saturate (lib/refcount.c:28 (discriminator 3)) [ 2380.592339][ T70] ? refcount_warn_saturate (lib/refcount.c:28 (discriminator 3)) [ 2380.592639][ T70] br_sysfs_delbr (net/bridge/br_sysfs_br.c:1086) bridge [ 2380.592987][ T70] br_dev_delete (net/bridge/br_if.c:396) bridge [ 2380.593334][ T70] br_net_exit_batch_rtnl (net/bridge/br.c:369) bridge [ 2380.593691][ T70] cleanup_net (net/core/net_namespace.c:628 (discriminator 2)) [ 2380.593933][ T70] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5719) [ 2380.594237][ T70] ? __pfx_cleanup_net (net/core/net_namespace.c:581) [ 2380.594501][ T70] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 2380.594748][ T70] ? process_one_work (kernel/workqueue.c:2609) [ 2380.595021][ T70] process_one_work (kernel/workqueue.c:2638) [ 2380.595342][ T70] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 2380.595595][ T70] ? __pfx_process_one_work (kernel/workqueue.c:2542) [ 2380.595929][ T70] ? assign_work (kernel/workqueue.c:1101) [ 2380.596299][ T70] worker_thread (kernel/workqueue.c:2700 kernel/workqueue.c:2787) [ 2380.596572][ T70] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 2380.596948][ T70] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 2380.597230][ T70] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 2380.597523][ T70] kthread (kernel/kthread.c:388) [ 2380.597763][ T70] ? __pfx_kthread (kernel/kthread.c:341) [ 2380.598026][ T70] ret_from_fork (arch/x86/kernel/process.c:153) [ 2380.598281][ T70] ? __pfx_kthread (kernel/kthread.c:341) [ 2380.598549][ T70] ret_from_fork_asm (arch/x86/entry/entry_64.S:250) | [ 2380.601970][ T70] ------------[ cut here ]------------ | [ 2380.602288][ T70] sysfs group 'bridge' not found for kobject 'br2' | [ 2380.602697][ T70] WARNING: CPU: 3 PID: 70 at fs/sysfs/group.c:282 sysfs_remove_group (fs/sysfs/group.c:282 (discriminator 1)) | [ 2380.603709][ T70] Modules linked in: vxlan ip6_udp_tunnel udp_tunnel act_pedit act_mirred cls_matchall sch_red sch_tbf ip_gre dummy bridge stp llc act_gact cls_flower sch_ingress 8021q ip6_gre ip6_tunnel tunnel6 gre vrf veth [ 2380.605565][ T70] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 2380.606239][ T70] Workqueue: netns cleanup_net [ 2380.606526][ T70] RIP: 0010:sysfs_remove_group (fs/sysfs/group.c:282 (discriminator 1)) [ 2380.606853][ T70] Code: 89 d9 49 8b 14 24 48 b8 00 00 00 00 00 fc ff df 48 c1 e9 03 80 3c 01 00 75 45 48 8b 33 48 c7 c7 a0 99 9c 9a e8 10 18 5f ff 90 <0f> 0b 90 90 48 83 c4 08 5b 5d 41 5c c3 cc cc cc cc e8 69 ee da ff All code ======== 0: 89 d9 mov %ebx,%ecx 2: 49 8b 14 24 mov (%r12),%rdx 6: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax d: fc ff df 10: 48 c1 e9 03 shr $0x3,%rcx 14: 80 3c 01 00 cmpb $0x0,(%rcx,%rax,1) 18: 75 45 jne 0x5f 1a: 48 8b 33 mov (%rbx),%rsi 1d: 48 c7 c7 a0 99 9c 9a mov $0xffffffff9a9c99a0,%rdi 24: e8 10 18 5f ff call 0xffffffffff5f1839 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: 90 nop 2e: 48 83 c4 08 add $0x8,%rsp 32: 5b pop %rbx 33: 5d pop %rbp 34: 41 5c pop %r12 36: c3 ret 37: cc int3 38: cc int3 39: cc int3 3a: cc int3 3b: e8 69 ee da ff call 0xffffffffffdaeea9 Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: 90 nop 4: 48 83 c4 08 add $0x8,%rsp 8: 5b pop %rbx 9: 5d pop %rbp a: 41 5c pop %r12 c: c3 ret d: cc int3 e: cc int3 f: cc int3 10: cc int3 11: e8 69 ee da ff call 0xffffffffffdaee7f [ 2380.607967][ T70] RSP: 0018:ffffc9000050fba0 EFLAGS: 00010282 [ 2380.608309][ T70] RAX: 0000000000000000 RBX: ffffffffc0567f00 RCX: ffffffff97f0e74f [ 2380.608728][ T70] RDX: 0000000000000000 RSI: 0000000000000008 RDI: 0000000000000001 [ 2380.609151][ T70] RBP: 0000000000000000 R08: 0000000000000000 R09: fffff520000a1f19 [ 2380.609563][ T70] R10: ffffc9000050f8cf R11: 205d303754202020 R12: ffff88800943a610 [ 2380.610051][ T70] R13: ffff88800943add8 R14: ffffc9000050fc98 R15: ffff88800943aba0 [ 2380.610542][ T70] FS: 0000000000000000(0000) GS:ffff888035e00000(0000) knlGS:0000000000000000 [ 2380.611061][ T70] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2380.611449][ T70] CR2: 00007fc895f312a8 CR3: 0000000023b1e004 CR4: 00000000001706f0 [ 2380.611888][ T70] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2380.612364][ T70] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2380.612828][ T70] Call Trace: [ 2380.613018][ T70] [ 2380.613182][ T70] ? __warn (kernel/panic.c:677) [ 2380.613404][ T70] ? console_trylock (kernel/printk/printk.c:2659 kernel/printk/printk.c:2654) [ 2380.613699][ T70] ? sysfs_remove_group (fs/sysfs/group.c:282 (discriminator 1)) [ 2380.613997][ T70] ? report_bug (lib/bug.c:201 lib/bug.c:219) [ 2380.614257][ T70] ? handle_bug (arch/x86/kernel/traps.c:238) [ 2380.614509][ T70] ? exc_invalid_op (arch/x86/kernel/traps.c:259 (discriminator 1)) [ 2380.614811][ T70] ? asm_exc_invalid_op (./arch/x86/include/asm/idtentry.h:568) [ 2380.615089][ T70] ? desc_read (./arch/x86/include/asm/atomic64_64.h:20 ./include/linux/atomic/atomic-arch-fallback.h:2615 ./include/linux/atomic/atomic-long.h:79 ./include/linux/atomic/atomic-instrumented.h:3196 kernel/printk/printk_ringbuffer.c:534) [ 2380.615347][ T70] ? sysfs_remove_group (fs/sysfs/group.c:282 (discriminator 1)) [ 2380.615668][ T70] br_dev_delete (net/bridge/br_if.c:396) bridge [ 2380.615998][ T70] br_net_exit_batch_rtnl (net/bridge/br.c:369) bridge [ 2380.616410][ T70] cleanup_net (net/core/net_namespace.c:628 (discriminator 2)) [ 2380.616666][ T70] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5719) [ 2380.616967][ T70] ? __pfx_cleanup_net (net/core/net_namespace.c:581) [ 2380.617263][ T70] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 2380.617553][ T70] ? process_one_work (kernel/workqueue.c:2609) [ 2380.617834][ T70] process_one_work (kernel/workqueue.c:2638) [ 2380.618116][ T70] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 2380.618395][ T70] ? __pfx_process_one_work (kernel/workqueue.c:2542) [ 2380.618688][ T70] ? assign_work (kernel/workqueue.c:1101) [ 2380.618984][ T70] worker_thread (kernel/workqueue.c:2700 kernel/workqueue.c:2787) [ 2380.619255][ T70] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 2380.619641][ T70] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 2380.619934][ T70] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 2380.620239][ T70] kthread (kernel/kthread.c:388) [ 2380.620475][ T70] ? __pfx_kthread (kernel/kthread.c:341) [ 2380.620763][ T70] ret_from_fork (arch/x86/kernel/process.c:153) [ 2380.621019][ T70] ? __pfx_kthread (kernel/kthread.c:341) [ 2380.621301][ T70] ret_from_fork_asm (arch/x86/entry/entry_64.S:250) | [ 2380.835179][ T70] ------------[ cut here ]------------ | [ 2380.835489][ T70] sysfs group 'bridge' not found for kobject 'br2' | [ 2380.835876][ T70] WARNING: CPU: 2 PID: 70 at fs/sysfs/group.c:282 sysfs_remove_group (fs/sysfs/group.c:282 (discriminator 1)) | [ 2380.836386][ T70] Modules linked in: vxlan ip6_udp_tunnel udp_tunnel act_pedit act_mirred cls_matchall sch_red sch_tbf ip_gre dummy bridge stp llc act_gact cls_flower sch_ingress 8021q ip6_gre ip6_tunnel tunnel6 gre vrf veth [ 2380.838022][ T70] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 2380.838699][ T70] Workqueue: netns cleanup_net [ 2380.839016][ T70] RIP: 0010:sysfs_remove_group (fs/sysfs/group.c:282 (discriminator 1)) [ 2380.839348][ T70] Code: 89 d9 49 8b 14 24 48 b8 00 00 00 00 00 fc ff df 48 c1 e9 03 80 3c 01 00 75 45 48 8b 33 48 c7 c7 a0 99 9c 9a e8 10 18 5f ff 90 <0f> 0b 90 90 48 83 c4 08 5b 5d 41 5c c3 cc cc cc cc e8 69 ee da ff All code ======== 0: 89 d9 mov %ebx,%ecx 2: 49 8b 14 24 mov (%r12),%rdx 6: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax d: fc ff df 10: 48 c1 e9 03 shr $0x3,%rcx 14: 80 3c 01 00 cmpb $0x0,(%rcx,%rax,1) 18: 75 45 jne 0x5f 1a: 48 8b 33 mov (%rbx),%rsi 1d: 48 c7 c7 a0 99 9c 9a mov $0xffffffff9a9c99a0,%rdi 24: e8 10 18 5f ff call 0xffffffffff5f1839 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: 90 nop 2e: 48 83 c4 08 add $0x8,%rsp 32: 5b pop %rbx 33: 5d pop %rbp 34: 41 5c pop %r12 36: c3 ret 37: cc int3 38: cc int3 39: cc int3 3a: cc int3 3b: e8 69 ee da ff call 0xffffffffffdaeea9 Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: 90 nop 4: 48 83 c4 08 add $0x8,%rsp 8: 5b pop %rbx 9: 5d pop %rbp a: 41 5c pop %r12 c: c3 ret d: cc int3 e: cc int3 f: cc int3 10: cc int3 11: e8 69 ee da ff call 0xffffffffffdaee7f [ 2380.840470][ T70] RSP: 0018:ffffc9000050fba0 EFLAGS: 00010282 [ 2380.840821][ T70] RAX: 0000000000000000 RBX: ffffffffc0567f00 RCX: ffffffff97f0e74f [ 2380.841322][ T70] RDX: 0000000000000000 RSI: 0000000000000008 RDI: 0000000000000001 [ 2380.841820][ T70] RBP: 0000000000000000 R08: 0000000000000000 R09: fffff520000a1f19 [ 2380.842324][ T70] R10: ffffc9000050f8cf R11: 205d303754202020 R12: ffff88800c2fa610 [ 2380.842772][ T70] R13: ffff88800c2fadd8 R14: ffffc9000050fc98 R15: ffff88800c2faba0 [ 2380.843300][ T70] FS: 0000000000000000(0000) GS:ffff888035a00000(0000) knlGS:0000000000000000 [ 2380.843840][ T70] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 2380.844244][ T70] CR2: 00007fc586714270 CR3: 00000000077a6006 CR4: 00000000001706f0 [ 2380.844701][ T70] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2380.845225][ T70] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 2380.845737][ T70] Call Trace: [ 2380.845952][ T70] [ 2380.846161][ T70] ? __warn (kernel/panic.c:677) [ 2380.846412][ T70] ? console_trylock (kernel/printk/printk.c:2659 kernel/printk/printk.c:2654) [ 2380.846718][ T70] ? sysfs_remove_group (fs/sysfs/group.c:282 (discriminator 1)) [ 2380.847036][ T70] ? report_bug (lib/bug.c:201 lib/bug.c:219) [ 2380.847311][ T70] ? handle_bug (arch/x86/kernel/traps.c:238) [ 2380.847563][ T70] ? exc_invalid_op (arch/x86/kernel/traps.c:259 (discriminator 1)) [ 2380.847842][ T70] ? asm_exc_invalid_op (./arch/x86/include/asm/idtentry.h:568) [ 2380.848208][ T70] ? desc_read (./arch/x86/include/asm/atomic64_64.h:20 ./include/linux/atomic/atomic-arch-fallback.h:2615 ./include/linux/atomic/atomic-long.h:79 ./include/linux/atomic/atomic-instrumented.h:3196 kernel/printk/printk_ringbuffer.c:534) [ 2380.848477][ T70] ? sysfs_remove_group (fs/sysfs/group.c:282 (discriminator 1)) [ 2380.848811][ T70] br_dev_delete (net/bridge/br_if.c:396) bridge [ 2380.849219][ T70] br_net_exit_batch_rtnl (net/bridge/br.c:369) bridge [ 2380.849655][ T70] cleanup_net (net/core/net_namespace.c:628 (discriminator 2)) [ 2380.849912][ T70] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 2380.850175][ T70] ? __pfx_cleanup_net (net/core/net_namespace.c:581) [ 2380.850439][ T70] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 2380.850690][ T70] ? process_one_work (kernel/workqueue.c:2609) [ 2380.850970][ T70] process_one_work (kernel/workqueue.c:2638) [ 2380.851241][ T70] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 2380.851486][ T70] ? __pfx_process_one_work (kernel/workqueue.c:2542) [ 2380.851776][ T70] ? assign_work (kernel/workqueue.c:1101) [ 2380.852024][ T70] worker_thread (kernel/workqueue.c:2700 kernel/workqueue.c:2787) [ 2380.852276][ T70] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4300 kernel/locking/lockdep.c:4359) [ 2380.852650][ T70] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 2380.852980][ T70] ? __pfx_worker_thread (kernel/workqueue.c:2733) [ 2380.853279][ T70] kthread (kernel/kthread.c:388) [ 2380.853522][ T70] ? __pfx_kthread (kernel/kthread.c:341) [ 2380.853804][ T70] ret_from_fork (arch/x86/kernel/process.c:153) [ 2380.854084][ T70] ? __pfx_kthread (kernel/kthread.c:341) Finger prints: dump_stack_lvl:print_report:kasan_report:kobject_put refcount_warn_saturate:br_sysfs_delbr:br_dev_delete:br_net_exit_batch_rtnl sysfs_remove_group:br_dev_delete:br_net_exit_batch_rtnl:cleanup_net sysfs_remove_group:br_dev_delete:br_net_exit_batch_rtnl:cleanup_net