make -C tools/testing/selftests TARGETS=net/forwarding TEST_PROGS=vxlan_brridge_1d_port_8472_ipv6.sh TEST_GEN_PROGS="" run_tests make: Entering directory '/home/virtme/testing-4/tools/testing/selftests' make[1]: Entering directory '/home/virtme/testing-4/tools/testing/selftests/net/forwarding' make[1]: Nothing to be done for 'all'. make[1]: Leaving directory '/home/virtme/testing-4/tools/testing/selftests/net/forwarding' make[1]: Entering directory '/home/virtme/testing-4/tools/testing/selftests/net/forwarding' TAP version 13 1..1 # timeout set to 10800 # selftests: net/forwarding: vxlan_bridge_1d_port_8472_ipv6.sh [ 914.234040][ T2973] br1: port 1(vx1) entered blocking state [ 914.235303][ T2973] br1: port 1(vx1) entered disabled state [ 914.235642][ T2973] vx1: entered allmulticast mode [ 914.237819][ T2973] vx1: entered promiscuous mode [ 914.239111][ T2973] br1: port 1(vx1) entered blocking state [ 914.239436][ T2973] br1: port 1(vx1) entered forwarding state [ 914.393161][ T2974] br1: port 2(veth1) entered blocking state [ 914.393523][ T2974] br1: port 2(veth1) entered disabled state [ 914.393875][ T2974] veth1: entered allmulticast mode [ 914.396756][ T2974] veth1: entered promiscuous mode [ 914.555081][ T33] br1: port 2(veth1) entered blocking state [ 914.555448][ T33] br1: port 2(veth1) entered forwarding state [ 914.874980][ T2977] br1: port 3(veth2) entered blocking state [ 914.876338][ T2977] br1: port 3(veth2) entered disabled state [ 914.876693][ T2977] veth2: entered allmulticast mode [ 914.878789][ T2977] veth2: entered promiscuous mode [ 915.032123][ T33] br1: port 3(veth2) entered blocking state [ 915.032493][ T33] br1: port 3(veth2) entered forwarding state [ 920.151635][ T3024] br2: port 1(w1) entered blocking state [ 920.151970][ T3024] br2: port 1(w1) entered disabled state [ 920.152339][ T3024] w1: entered allmulticast mode [ 920.160175][ T3024] w1: entered promiscuous mode [ 921.057625][ T3030] br2: port 2(vx2) entered blocking state [ 921.057968][ T3030] br2: port 2(vx2) entered disabled state [ 921.058818][ T3030] vx2: entered allmulticast mode [ 921.060875][ T3030] vx2: entered promiscuous mode [ 921.061766][ T3030] br2: port 2(vx2) entered blocking state [ 921.062068][ T3030] br2: port 2(vx2) entered forwarding state [ 922.140081][ T2302] br2: port 1(w1) entered blocking state [ 922.140484][ T2302] br2: port 1(w1) entered forwarding state [ 924.982543][ T3058] br2: port 1(w1) entered blocking state [ 924.982884][ T3058] br2: port 1(w1) entered disabled state [ 924.983240][ T3058] w1: entered allmulticast mode [ 924.985798][ T3058] w1: entered promiscuous mode [ 925.899119][ T3064] br2: port 2(vx2) entered blocking state [ 925.900471][ T3064] br2: port 2(vx2) entered disabled state [ 925.900829][ T3064] vx2: entered allmulticast mode [ 925.902899][ T3064] vx2: entered promiscuous mode [ 925.903825][ T3064] br2: port 2(vx2) entered blocking state [ 925.904127][ T3064] br2: port 2(vx2) entered forwarding state [ 926.961335][ T33] br2: port 1(w1) entered blocking state [ 926.961691][ T33] br2: port 1(w1) entered forwarding state # INFO: Running tests with UDP port 8472 # TEST: ping: local->local [ OK ] # TEST: ping: local->remote 1 [ OK ] # TEST: ping: local->remote 2 [ OK ] # TEST: ping6: local->local [ OK ] # TEST: ping6: local->remote 1 [ OK ] # TEST: ping6: local->remote 2 [ OK ] [ 987.081790][ T11] vx2: left allmulticast mode [ 987.082339][ T11] vx2: left promiscuous mode [ 987.083034][ T11] br2: port 2(vx2) entered disabled state [ 987.105583][ T11] w1: left allmulticast mode [ 987.106049][ T11] w1: left promiscuous mode [ 987.106639][ T11] br2: port 1(w1) entered disabled state [ 987.232465][ T11] ================================================================== [ 987.232906][ T11] BUG: KASAN: slab-use-after-free in vxlan_netdevice_event+0x32f/0x340 [vxlan] [ 987.233419][ T11] Read of size 8 at addr ffff88800b358bd0 by task kworker/u8:0/11 [ 987.233814][ T11] [ 987.233942][ T11] CPU: 2 PID: 11 Comm: kworker/u8:0 Not tainted 6.8.0-rc2-virtme #1 [ 987.234384][ T11] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 987.235002][ T11] Workqueue: netns cleanup_net [ 987.235262][ T11] Call Trace: [ 987.235431][ T11] [ 987.235585][ T11] dump_stack_lvl+0x64/0xb0 [ 987.235822][ T11] print_address_description.constprop.0+0x2c/0x3b0 [ 987.236164][ T11] ? vxlan_netdevice_event+0x32f/0x340 [vxlan] [ 987.236492][ T11] print_report+0xb5/0x270 [ 987.236722][ T11] ? kasan_addr_to_slab+0x4e/0x90 [ 987.236979][ T11] kasan_report+0xbe/0xf0 [ 987.237202][ T11] ? vxlan_netdevice_event+0x32f/0x340 [vxlan] [ 987.237528][ T11] vxlan_netdevice_event+0x32f/0x340 [vxlan] [ 987.237851][ T11] ? __pfx_vxlan_netdevice_event+0x10/0x10 [vxlan] [ 987.238192][ T11] ? _raw_spin_unlock+0x23/0x40 [ 987.238445][ T11] ? mirred_device_event+0x185/0x210 [act_mirred] [ 987.238775][ T11] notifier_call_chain+0x9a/0x290 [ 987.239042][ T11] unregister_netdevice_many_notify+0x55a/0x1180 [ 987.239398][ T11] ? mutex_is_locked+0x17/0x50 [ 987.239646][ T11] ? __pfx_unregister_netdevice_many_notify+0x10/0x10 [ 987.239997][ T11] ? vrf_dellink+0x101/0x150 [vrf] [ 987.240284][ T11] ? __pfx_unregister_netdevice_queue+0x10/0x10 [ 987.240627][ T11] default_device_exit_batch+0x228/0x2c0 [ 987.240977][ T11] ? __pfx_default_device_exit_batch+0x10/0x10 [ 987.241312][ T11] ? mutex_is_locked+0x17/0x50 [ 987.241574][ T11] ? nexthop_net_exit_batch_rtnl+0x83/0x210 [ 987.241910][ T11] cleanup_net+0x4f3/0xa20 [ 987.242141][ T11] ? __pfx_lock_acquire.part.0+0x10/0x10 [ 987.242429][ T11] ? __pfx_cleanup_net+0x10/0x10 [ 987.242716][ T11] ? lock_acquire+0x1c1/0x220 [ 987.242966][ T11] ? process_one_work+0x714/0x1310 [ 987.243255][ T11] process_one_work+0x78c/0x1310 [ 987.243534][ T11] ? hlock_class+0x4e/0x130 [ 987.243775][ T11] ? __pfx_process_one_work+0x10/0x10 [ 987.244075][ T11] ? assign_work+0x16c/0x240 [ 987.244345][ T11] worker_thread+0x73d/0x1010 [ 987.244616][ T11] ? __pfx_worker_thread+0x10/0x10 [ 987.244889][ T11] kthread+0x28f/0x360 [ 987.245120][ T11] ? __pfx_kthread+0x10/0x10 [ 987.245372][ T11] ret_from_fork+0x31/0x70 [ 987.245603][ T11] ? __pfx_kthread+0x10/0x10 [ 987.245871][ T11] ret_from_fork_asm+0x1b/0x30 [ 987.246122][ T11] [ 987.246281][ T11] [ 987.246404][ T11] Allocated by task 11: [ 987.246648][ T11] kasan_save_stack+0x24/0x50 [ 987.246921][ T11] kasan_save_track+0x14/0x30 [ 987.247159][ T11] __kasan_kmalloc+0x7f/0x90 [ 987.247415][ T11] __kmalloc_node_track_caller+0x1fb/0x440 [ 987.247727][ T11] kmalloc_reserve+0xbc/0x1f0 [ 987.247993][ T11] pskb_expand_head+0x1f4/0xff0 [ 987.248267][ T11] netlink_trim+0x198/0x200 [ 987.248551][ T11] netlink_broadcast_filtered+0xcb/0x340 [ 987.248855][ T11] nlmsg_notify+0x6e/0x1e0 [ 987.249083][ T11] rtnetlink_event+0x167/0x1c0 [ 987.249355][ T11] notifier_call_chain+0x9a/0x290 [ 987.249650][ T11] __netdev_upper_dev_unlink+0x115/0x220 [ 987.249940][ T11] netdev_upper_dev_unlink+0x71/0xa0 [ 987.250210][ T11] vrf_dellink+0xbb/0x150 [vrf] [ 987.250463][ T11] default_device_exit_batch+0x16a/0x2c0 [ 987.250752][ T11] cleanup_net+0x4f3/0xa20 [ 987.250978][ T11] process_one_work+0x78c/0x1310 [ 987.251231][ T11] worker_thread+0x73d/0x1010 [ 987.251472][ T11] kthread+0x28f/0x360 [ 987.251679][ T11] ret_from_fork+0x31/0x70 [ 987.251908][ T11] ret_from_fork_asm+0x1b/0x30 [ 987.252153][ T11] [ 987.252276][ T11] Freed by task 11: [ 987.252472][ T11] kasan_save_stack+0x24/0x50 [ 987.252710][ T11] kasan_save_track+0x14/0x30 [ 987.252949][ T11] kasan_save_free_info+0x3f/0x60 [ 987.253207][ T11] __kasan_slab_free+0xfc/0x1c0 [ 987.253455][ T11] kfree+0xf2/0x2d0 [ 987.253651][ T11] skb_release_data+0x56b/0x770 [ 987.253899][ T11] consume_skb+0xad/0x110 [ 987.254121][ T11] netlink_broadcast_filtered+0x224/0x340 [ 987.254413][ T11] nlmsg_notify+0x6e/0x1e0 [ 987.254640][ T11] rtnetlink_event+0x167/0x1c0 [ 987.254882][ T11] notifier_call_chain+0x9a/0x290 [ 987.255139][ T11] __netdev_upper_dev_unlink+0x115/0x220 [ 987.255427][ T11] netdev_upper_dev_unlink+0x71/0xa0 [ 987.255696][ T11] vrf_dellink+0xbb/0x150 [vrf] [ 987.255949][ T11] default_device_exit_batch+0x16a/0x2c0 [ 987.256288][ T11] cleanup_net+0x4f3/0xa20 [ 987.256518][ T11] process_one_work+0x78c/0x1310 [ 987.256771][ T11] worker_thread+0x73d/0x1010 [ 987.257039][ T11] kthread+0x28f/0x360 [ 987.257250][ T11] ret_from_fork+0x31/0x70 [ 987.257474][ T11] ret_from_fork_asm+0x1b/0x30 [ 987.257723][ T11] [ 987.257846][ T11] The buggy address belongs to the object at ffff88800b358800 [ 987.257846][ T11] which belongs to the cache kmalloc-2k of size 2048 [ 987.258592][ T11] The buggy address is located 976 bytes inside of [ 987.258592][ T11] freed 2048-byte region [ffff88800b358800, ffff88800b359000) [ 987.259324][ T11] [ 987.259446][ T11] The buggy address belongs to the physical page: [ 987.259814][ T11] page:ffffea00002cd600 refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0xb358 [ 987.260365][ T11] head:ffffea00002cd600 order:3 entire_mapcount:0 nr_pages_mapped:0 pincount:0 [ 987.260854][ T11] flags: 0x80000000000840(slab|head|node=0|zone=1) [ 987.261227][ T11] page_type: 0xffffffff() [ 987.261472][ T11] raw: 0080000000000840 ffff888001043540 ffffea0000273a10 ffff8880010418f0 [ 987.261940][ T11] raw: 0000000000000000 0000000000050005 00000001ffffffff 0000000000000000 [ 987.262404][ T11] page dumped because: kasan: bad access detected [ 987.262767][ T11] [ 987.262889][ T11] Memory state around the buggy address: [ 987.263196][ T11] ffff88800b358a80: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 987.263602][ T11] ffff88800b358b00: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 987.264007][ T11] >ffff88800b358b80: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 987.264415][ T11] ^ [ 987.264752][ T11] ffff88800b358c00: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 987.265158][ T11] ffff88800b358c80: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 987.265562][ T11] ================================================================== [ 987.266359][ T11] Disabling lock debugging due to kernel taint [ 987.266705][ T11] general protection fault, probably for non-canonical address 0xdffffc0000000000: 0000 [#1] PREEMPT SMP KASAN NOPTI [ 987.267437][ T11] KASAN: null-ptr-deref in range [0x0000000000000000-0x0000000000000007] [ 987.267864][ T11] CPU: 2 PID: 11 Comm: kworker/u8:0 Tainted: G B 6.8.0-rc2-virtme #1 [ 987.268386][ T11] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 987.269080][ T11] Workqueue: netns cleanup_net [ 987.269361][ T11] RIP: 0010:vxlan_netdevice_event+0x19e/0x340 [vxlan] [ 987.269766][ T11] Code: 00 00 00 48 b9 00 00 00 00 00 fc ff df 49 89 c0 48 89 44 24 08 49 c1 e8 03 4d 8d 24 08 eb 2c 48 8d 53 30 48 89 d0 48 c1 e8 03 <80> 3c 08 00 0f 85 e0 00 00 00 48 8b 43 30 49 89 dd 48 83 e8 30 49 [ 987.270943][ T11] RSP: 0018:ffffc900000bf980 EFLAGS: 00010246 [ 987.271338][ T11] RAX: 0000000000000000 RBX: ffffffffffffffd0 RCX: dffffc0000000000 [ 987.271775][ T11] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffff88800b358c24 [ 987.272212][ T11] RBP: 1ffff92000017f33 R08: 1ffff1100163781a R09: ffffc900000bf9b8 [ 987.272640][ T11] R10: ffffffff8f53ca07 R11: 205d313154202020 R12: ffffed100163781a [ 987.273084][ T11] R13: ffff88800b358ba0 R14: ffff888009a94000 R15: ffff88800b1bc000 [ 987.273537][ T11] FS: 0000000000000000(0000) GS:ffff888035a00000(0000) knlGS:0000000000000000 [ 987.274044][ T11] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 987.274399][ T11] CR2: 00007feed41640f0 CR3: 000000000ae06004 CR4: 0000000000770ef0 [ 987.274819][ T11] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 987.275300][ T11] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 987.275740][ T11] PKRU: 55555554 [ 987.275943][ T11] Call Trace: [ 987.276113][ T11] [ 987.276287][ T11] ? die_addr+0x41/0xa0 [ 987.276501][ T11] ? exc_general_protection+0x149/0x220 [ 987.276807][ T11] ? asm_exc_general_protection+0x26/0x30 [ 987.277129][ T11] ? vxlan_netdevice_event+0x19e/0x340 [vxlan] [ 987.277536][ T11] ? __pfx_vxlan_netdevice_event+0x10/0x10 [vxlan] [ 987.277895][ T11] ? _raw_spin_unlock+0x23/0x40 [ 987.278147][ T11] ? mirred_device_event+0x185/0x210 [act_mirred] [ 987.278500][ T11] notifier_call_chain+0x9a/0x290 [ 987.278784][ T11] unregister_netdevice_many_notify+0x55a/0x1180 [ 987.279129][ T11] ? mutex_is_locked+0x17/0x50 [ 987.279422][ T11] ? __pfx_unregister_netdevice_many_notify+0x10/0x10 [ 987.279805][ T11] ? vrf_dellink+0x101/0x150 [vrf] [ 987.280094][ T11] ? __pfx_unregister_netdevice_queue+0x10/0x10 [ 987.280437][ T11] default_device_exit_batch+0x228/0x2c0 [ 987.280722][ T11] ? __pfx_default_device_exit_batch+0x10/0x10 [ 987.281060][ T11] ? mutex_is_locked+0x17/0x50 [ 987.281320][ T11] ? nexthop_net_exit_batch_rtnl+0x83/0x210 [ 987.281688][ T11] cleanup_net+0x4f3/0xa20 [ 987.281920][ T11] ? __pfx_lock_acquire.part.0+0x10/0x10 [ 987.282228][ T11] ? __pfx_cleanup_net+0x10/0x10 [ 987.282501][ T11] ? lock_acquire+0x1c1/0x220 [ 987.282762][ T11] ? process_one_work+0x714/0x1310 [ 987.283077][ T11] process_one_work+0x78c/0x1310 [ 987.283359][ T11] ? hlock_class+0x4e/0x130 [ 987.283596][ T11] ? __pfx_process_one_work+0x10/0x10 [ 987.283892][ T11] ? assign_work+0x16c/0x240 [ 987.284129][ T11] worker_thread+0x73d/0x1010 [ 987.284373][ T11] ? __pfx_worker_thread+0x10/0x10 [ 987.284632][ T11] kthread+0x28f/0x360 [ 987.284840][ T11] ? __pfx_kthread+0x10/0x10 [ 987.285076][ T11] ret_from_fork+0x31/0x70 [ 987.285303][ T11] ? __pfx_kthread+0x10/0x10 [ 987.285538][ T11] ret_from_fork_asm+0x1b/0x30 [ 987.285786][ T11] [ 987.285941][ T11] Modules linked in: vxlan ip6_udp_tunnel udp_tunnel ip6_gre ip6_tunnel tunnel6 act_mirred cls_matchall sch_red dummy act_gact cls_flower sch_ingress ip_gre gre em_meta cls_basic sch_ets sch_tbf bridge stp llc 8021q vrf veth [ 987.287081][ T11] ---[ end trace 0000000000000000 ]--- [ 987.287858][ T11] RIP: 0010:vxlan_netdevice_event+0x19e/0x340 [vxlan] [ 987.288272][ T11] Code: 00 00 00 48 b9 00 00 00 00 00 fc ff df 49 89 c0 48 89 44 24 08 49 c1 e8 03 4d 8d 24 08 eb 2c 48 8d 53 30 48 89 d0 48 c1 e8 03 <80> 3c 08 00 0f 85 e0 00 00 00 48 8b 43 30 49 89 dd 48 83 e8 30 49 [ 987.289372][ T11] RSP: 0018:ffffc900000bf980 EFLAGS: 00010246 [ 987.289722][ T11] RAX: 0000000000000000 RBX: ffffffffffffffd0 RCX: dffffc0000000000 [ 987.290167][ T11] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffff88800b358c24 [ 987.290672][ T11] RBP: 1ffff92000017f33 R08: 1ffff1100163781a R09: ffffc900000bf9b8 [ 987.291164][ T11] R10: ffffffff8f53ca07 R11: 205d313154202020 R12: ffffed100163781a [ 987.291645][ T11] R13: ffff88800b358ba0 R14: ffff888009a94000 R15: ffff88800b1bc000 [ 987.292107][ T11] FS: 0000000000000000(0000) GS:ffff888035a00000(0000) knlGS:0000000000000000 [ 987.292582][ T11] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 987.292942][ T11] CR2: 00007feed41640f0 CR3: 000000002831e006 CR4: 0000000000770ef0 [ 987.293407][ T11] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 987.293826][ T11] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 987.294253][ T11] PKRU: 55555554 [ 987.294472][ T11] Kernel panic - not syncing: Fatal exception [ 987.294878][ T11] Kernel Offset: 0x8e00000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 987.295455][ T11] ---[ end Kernel panic - not syncing: Fatal exception ]--- WAIT TIMEOUT stdout Ctrl-C stdout Ctrl-C stdout WAIT TIMEOUT stdout