make -C tools/testing/selftests TARGETS=net/forwarding TEST_PROGS=vxlan_assymmetric.sh TEST_GEN_PROGS="" run_tests make: Entering directory '/home/virtme/testing-4/tools/testing/selftests' make[1]: Entering directory '/home/virtme/testing-4/tools/testing/selftests/net/forwarding' make[1]: Nothing to be done for 'all'. make[1]: Leaving directory '/home/virtme/testing-4/tools/testing/selftests/net/forwarding' make[1]: Entering directory '/home/virtme/testing-4/tools/testing/selftests/net/forwarding' TAP version 13 1..1 # timeout set to 10800 # selftests: net/forwarding: vxlan_asymmetric.sh [ 33.898834][ T309] br1: port 1(vx10) entered blocking state [ 33.900434][ T309] br1: port 1(vx10) entered disabled state [ 33.901236][ T309] vx10: entered allmulticast mode [ 33.904289][ T309] vx10: entered promiscuous mode [ 33.905275][ T309] br1: port 1(vx10) entered blocking state [ 33.905652][ T309] br1: port 1(vx10) entered forwarding state [ 34.608086][ T314] br1: port 2(vx20) entered blocking state [ 34.609411][ T314] br1: port 2(vx20) entered disabled state [ 34.615756][ T314] vx20: entered allmulticast mode [ 34.618537][ T314] vx20: entered promiscuous mode [ 34.619193][ T314] br1: port 2(vx20) entered blocking state [ 34.619518][ T314] br1: port 2(vx20) entered forwarding state [ 35.022902][ T316] br1: port 3(veth1) entered blocking state [ 35.024366][ T316] br1: port 3(veth1) entered disabled state [ 35.024750][ T316] veth1: entered allmulticast mode [ 35.026885][ T316] veth1: entered promiscuous mode [ 35.210062][ T42] br1: port 3(veth1) entered blocking state [ 35.210474][ T42] br1: port 3(veth1) entered forwarding state [ 35.583939][ T319] br1: port 4(veth2) entered blocking state [ 35.584900][ T319] br1: port 4(veth2) entered disabled state [ 35.585331][ T319] veth2: entered allmulticast mode [ 35.587600][ T319] veth2: entered promiscuous mode [ 35.743715][ T41] br1: port 4(veth2) entered blocking state [ 35.744070][ T41] br1: port 4(veth2) entered forwarding state [ 37.080560][ T329] 8021q: 802.1Q VLAN Support v1.8 [ 37.572214][ T333] br1: entered promiscuous mode [ 37.576836][ T333] br1: left promiscuous mode [ 37.589024][ T333] br1: entered promiscuous mode [ 48.333129][ T409] br1: port 1(vx10) entered blocking state [ 48.333688][ T409] br1: port 1(vx10) entered disabled state [ 48.334112][ T409] vx10: entered allmulticast mode [ 48.336241][ T409] vx10: entered promiscuous mode [ 48.337151][ T409] br1: port 1(vx10) entered blocking state [ 48.337473][ T409] br1: port 1(vx10) entered forwarding state [ 49.061670][ T413] br1: port 2(vx20) entered blocking state [ 49.062213][ T413] br1: port 2(vx20) entered disabled state [ 49.062745][ T413] vx20: entered allmulticast mode [ 49.066285][ T413] vx20: entered promiscuous mode [ 49.067322][ T413] br1: port 2(vx20) entered blocking state [ 49.067807][ T413] br1: port 2(vx20) entered forwarding state [ 49.409541][ T415] br1: port 3(w1) entered blocking state [ 49.409880][ T415] br1: port 3(w1) entered disabled state [ 49.410259][ T415] w1: entered allmulticast mode [ 49.412322][ T415] w1: entered promiscuous mode [ 49.615655][ T43] br1: port 3(w1) entered blocking state [ 49.615998][ T43] br1: port 3(w1) entered forwarding state [ 49.959810][ T418] br1: port 4(w3) entered blocking state [ 49.960167][ T418] br1: port 4(w3) entered disabled state [ 49.960537][ T418] w3: entered allmulticast mode [ 49.963320][ T418] w3: entered promiscuous mode [ 50.139677][ T42] br1: port 4(w3) entered blocking state [ 50.140032][ T42] br1: port 4(w3) entered forwarding state [ 51.627829][ T428] br1: entered promiscuous mode [ 51.630601][ T428] br1: left promiscuous mode [ 51.637956][ T428] br1: entered promiscuous mode [ 53.002851][ C3] br1: received packet on vx20 with own address as source address (addr:00:00:5e:00:01:01, vlan:20) [ 53.005062][ C3] IPv6: vlan20-v: IPv6 duplicate address fe80::200:5eff:fe00:101 used by 00:00:5e:00:01:01 detected! # RTNETLINK answers: File exists [ 53.130670][ C3] br1: received packet on vx20 with own address as source address (addr:00:00:5e:00:01:01, vlan:20) [ 53.450826][ C3] br1: received packet on vx10 with own address as source address (addr:00:00:5e:00:01:01, vlan:10) [ 53.451839][ C3] br1: received packet on vx10 with own address as source address (addr:00:00:5e:00:01:01, vlan:10) [ 53.554642][ C3] br1: received packet on vx10 with own address as source address (addr:00:00:5e:00:01:01, vlan:10) [ 57.354851][ C3] br1: received packet on vx10 with own address as source address (addr:00:00:5e:00:01:01, vlan:10) [ 64.971941][ C3] br1: received packet on vx10 with own address as source address (addr:00:00:5e:00:01:01, vlan:10) # TEST: ping: local->local vid 10->vid 20 [ OK ] # TEST: ping: local->remote vid 10->vid 10 [ OK ] # TEST: ping: local->remote vid 20->vid 20 [ OK ] # TEST: ping: local->remote vid 10->vid 20 [ OK ] # TEST: ping: local->remote vid 20->vid 10 [ OK ] # INFO: deleting neighbours from vlan interfaces # TEST: ping: local->local vid 10->vid 20 [ OK ] # TEST: ping: local->remote vid 10->vid 10 [ OK ] # TEST: ping: local->remote vid 20->vid 20 [ OK ] # TEST: ping: local->remote vid 10->vid 20 [ OK ] # TEST: ping: local->remote vid 20->vid 10 [ OK ] [ 79.818653][ C3] br1: received packet on vx10 with own address as source address (addr:00:00:5e:00:01:01, vlan:10) [ 84.484742][ T588] GACT probability NOT on # TEST: neigh_suppress: on / neigh exists: yes [ OK ] # TEST: neigh_suppress: on / neigh exists: no [ OK ] # TEST: neigh_suppress: off / neigh exists: no [ OK ] # TEST: neigh_suppress: off / neigh exists: yes [ OK ] [ 92.119563][ T72] w3: left allmulticast mode [ 92.120082][ T72] w3: left promiscuous mode [ 92.120779][ T72] br1: port 4(w3) entered disabled state [ 92.130657][ T72] w1: left allmulticast mode [ 92.131076][ T72] w1: left promiscuous mode [ 92.131865][ T72] br1: port 3(w1) entered disabled state [ 92.141062][ T72] vx20: left allmulticast mode [ 92.141396][ T72] vx20: left promiscuous mode [ 92.141790][ T72] br1: port 2(vx20) entered disabled state [ 92.152633][ T72] vx10: left allmulticast mode [ 92.153083][ T72] vx10: left promiscuous mode [ 92.153729][ T72] br1: port 1(vx10) entered disabled state [ 92.296066][ T72] ================================================================== [ 92.296739][ T72] BUG: KASAN: slab-use-after-free in vxlan_netdevice_event+0x32f/0x340 [vxlan] [ 92.297471][ T72] Read of size 8 at addr ffff888008118bd0 by task kworker/u8:1/72 [ 92.298046][ T72] [ 92.298223][ T72] CPU: 1 PID: 72 Comm: kworker/u8:1 Not tainted 6.8.0-rc2-virtme #1 [ 92.298854][ T72] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 92.299743][ T72] Workqueue: netns cleanup_net [ 92.300140][ T72] Call Trace: [ 92.300389][ T72] [ 92.300628][ T72] dump_stack_lvl+0x64/0xb0 [ 92.300970][ T72] print_address_description.constprop.0+0x2c/0x3b0 [ 92.301459][ T72] ? vxlan_netdevice_event+0x32f/0x340 [vxlan] [ 92.301964][ T72] print_report+0xb5/0x270 [ 92.302318][ T72] ? kasan_addr_to_slab+0x4e/0x90 [ 92.302712][ T72] kasan_report+0xbe/0xf0 [ 92.303052][ T72] ? vxlan_netdevice_event+0x32f/0x340 [vxlan] [ 92.303527][ T72] vxlan_netdevice_event+0x32f/0x340 [vxlan] [ 92.303970][ T72] ? __pfx_vxlan_netdevice_event+0x10/0x10 [vxlan] [ 92.304473][ T72] ? netconsole_netdev_event+0x1b4/0x300 [ 92.304772][ T72] notifier_call_chain+0x9a/0x290 [ 92.305034][ T72] unregister_netdevice_many_notify+0x55a/0x1180 [ 92.305374][ T72] ? mutex_is_locked+0x17/0x50 [ 92.305668][ T72] ? __pfx_unregister_netdevice_many_notify+0x10/0x10 [ 92.306104][ T72] ? vrf_dellink+0x101/0x150 [vrf] [ 92.306397][ T72] ? __pfx_unregister_netdevice_queue+0x10/0x10 [ 92.306719][ T72] default_device_exit_batch+0x228/0x2c0 [ 92.307040][ T72] ? __pfx_default_device_exit_batch+0x10/0x10 [ 92.307471][ T72] ? mutex_is_locked+0x17/0x50 [ 92.307718][ T72] ? nexthop_net_exit_batch_rtnl+0x83/0x210 [ 92.308024][ T72] cleanup_net+0x4f3/0xa20 [ 92.308255][ T72] ? __pfx_lock_acquire.part.0+0x10/0x10 [ 92.308641][ T72] ? __pfx_cleanup_net+0x10/0x10 [ 92.308941][ T72] ? lock_acquire+0x1c1/0x220 [ 92.309184][ T72] ? process_one_work+0x714/0x1310 [ 92.309458][ T72] process_one_work+0x78c/0x1310 [ 92.309713][ T72] ? hlock_class+0x4e/0x130 [ 92.310023][ T72] ? __pfx_process_one_work+0x10/0x10 [ 92.310374][ T72] ? assign_work+0x16c/0x240 [ 92.310612][ T72] worker_thread+0x73d/0x1010 [ 92.310854][ T72] ? lockdep_hardirqs_on_prepare.part.0+0x1b1/0x370 [ 92.311191][ T72] ? __pfx_worker_thread+0x10/0x10 [ 92.311569][ T72] ? __pfx_worker_thread+0x10/0x10 [ 92.311870][ T72] kthread+0x28f/0x360 [ 92.312080][ T72] ? __pfx_kthread+0x10/0x10 [ 92.312327][ T72] ret_from_fork+0x31/0x70 [ 92.312560][ T72] ? __pfx_kthread+0x10/0x10 [ 92.312838][ T72] ret_from_fork_asm+0x1b/0x30 [ 92.313174][ T72] [ 92.313347][ T72] [ 92.313471][ T72] Allocated by task 72: [ 92.313684][ T72] kasan_save_stack+0x24/0x50 [ 92.313928][ T72] kasan_save_track+0x14/0x30 [ 92.314194][ T72] __kasan_kmalloc+0x7f/0x90 [ 92.314540][ T72] __kmalloc_node_track_caller+0x1fb/0x440 [ 92.314839][ T72] kmalloc_reserve+0xbc/0x1f0 [ 92.315081][ T72] pskb_expand_head+0x1f4/0xff0 [ 92.315348][ T72] netlink_trim+0x198/0x200 [ 92.315603][ T72] netlink_broadcast_filtered+0xcb/0x340 [ 92.316004][ T72] nlmsg_notify+0x6e/0x1e0 [ 92.316231][ T72] rtnetlink_event+0x167/0x1c0 [ 92.316490][ T72] notifier_call_chain+0x9a/0x290 [ 92.316750][ T72] __netdev_upper_dev_unlink+0x115/0x220 [ 92.317083][ T72] netdev_upper_dev_unlink+0x71/0xa0 [ 92.317459][ T72] vrf_dellink+0xbb/0x150 [vrf] [ 92.317714][ T72] default_device_exit_batch+0x16a/0x2c0 [ 92.318001][ T72] cleanup_net+0x4f3/0xa20 [ 92.318228][ T72] process_one_work+0x78c/0x1310 [ 92.318543][ T72] worker_thread+0x73d/0x1010 [ 92.318862][ T72] kthread+0x28f/0x360 [ 92.319069][ T72] ret_from_fork+0x31/0x70 [ 92.319301][ T72] ret_from_fork_asm+0x1b/0x30 [ 92.319580][ T72] [ 92.319704][ T72] Freed by task 72: [ 92.319954][ T72] kasan_save_stack+0x24/0x50 [ 92.320267][ T72] kasan_save_track+0x14/0x30 [ 92.320538][ T72] kasan_save_free_info+0x3f/0x60 [ 92.320796][ T72] __kasan_slab_free+0xfc/0x1c0 [ 92.321044][ T72] kfree+0xf2/0x2d0 [ 92.321263][ T72] skb_release_data+0x56b/0x770 [ 92.321634][ T72] consume_skb+0xad/0x110 [ 92.321864][ T72] netlink_broadcast_filtered+0x224/0x340 [ 92.322156][ T72] nlmsg_notify+0x6e/0x1e0 [ 92.322395][ T72] rtnetlink_event+0x167/0x1c0 [ 92.322639][ T72] notifier_call_chain+0x9a/0x290 [ 92.323015][ T72] __netdev_upper_dev_unlink+0x115/0x220 [ 92.323323][ T72] netdev_upper_dev_unlink+0x71/0xa0 [ 92.323615][ T72] vrf_dellink+0xbb/0x150 [vrf] [ 92.323870][ T72] default_device_exit_batch+0x16a/0x2c0 [ 92.324198][ T72] cleanup_net+0x4f3/0xa20 [ 92.324530][ T72] process_one_work+0x78c/0x1310 [ 92.324787][ T72] worker_thread+0x73d/0x1010 [ 92.325027][ T72] kthread+0x28f/0x360 [ 92.325235][ T72] ret_from_fork+0x31/0x70 [ 92.325476][ T72] ret_from_fork_asm+0x1b/0x30 [ 92.325825][ T72] [ 92.325973][ T72] The buggy address belongs to the object at ffff888008118800 [ 92.325973][ T72] which belongs to the cache kmalloc-2k of size 2048 [ 92.326682][ T72] The buggy address is located 976 bytes inside of [ 92.326682][ T72] freed 2048-byte region [ffff888008118800, ffff888008119000) [ 92.327540][ T72] [ 92.327663][ T72] The buggy address belongs to the physical page: [ 92.327987][ T72] page:ffffea0000204600 refcount:1 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x8118 [ 92.328597][ T72] head:ffffea0000204600 order:3 entire_mapcount:0 nr_pages_mapped:0 pincount:0 [ 92.329076][ T72] flags: 0x80000000000840(slab|head|node=0|zone=1) [ 92.329418][ T72] page_type: 0xffffffff() [ 92.329637][ T72] raw: 0080000000000840 ffff888001043540 ffffea000017c010 ffffea00001caa10 [ 92.330198][ T72] raw: 0000000000000000 0000000000050005 00000001ffffffff 0000000000000000 [ 92.330642][ T72] page dumped because: kasan: bad access detected [ 92.330966][ T72] [ 92.331088][ T72] Memory state around the buggy address: [ 92.331507][ T72] ffff888008118a80: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 92.331941][ T72] ffff888008118b00: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 92.332360][ T72] >ffff888008118b80: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 92.332841][ T72] ^ [ 92.333234][ T72] ffff888008118c00: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 92.333650][ T72] ffff888008118c80: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb [ 92.334066][ T72] ================================================================== [ 92.334795][ T72] Disabling lock debugging due to kernel taint [ 92.335132][ T72] general protection fault, probably for non-canonical address 0xdffffc0000000000: 0000 [#1] PREEMPT SMP KASAN NOPTI [ 92.335917][ T72] KASAN: null-ptr-deref in range [0x0000000000000000-0x0000000000000007] [ 92.336351][ T72] CPU: 1 PID: 72 Comm: kworker/u8:1 Tainted: G B 6.8.0-rc2-virtme #1 [ 92.336824][ T72] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 92.337601][ T72] Workqueue: netns cleanup_net [ 92.337850][ T72] RIP: 0010:vxlan_netdevice_event+0x19e/0x340 [vxlan] [ 92.338210][ T72] Code: 00 00 00 48 b9 00 00 00 00 00 fc ff df 49 89 c0 48 89 44 24 08 49 c1 e8 03 4d 8d 24 08 eb 2c 48 8d 53 30 48 89 d0 48 c1 e8 03 <80> 3c 08 00 0f 85 e0 00 00 00 48 8b 43 30 49 89 dd 48 83 e8 30 49 [ 92.339371][ T72] RSP: 0018:ffffc9000051f980 EFLAGS: 00010246 [ 92.339681][ T72] RAX: 0000000000000000 RBX: ffffffffffffffd0 RCX: dffffc0000000000 [ 92.340212][ T72] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffff888008118c24 [ 92.340624][ T72] RBP: 1ffff920000a3f33 R08: 1ffff11000e1021a R09: ffffc9000051f9b8 [ 92.341024][ T72] R10: ffffffff9313ca07 R11: 205d323754202020 R12: ffffed1000e1021a [ 92.341559][ T72] R13: ffff888008118ba0 R14: ffff888009e14000 R15: ffff888007081000 [ 92.341963][ T72] FS: 0000000000000000(0000) GS:ffff888035600000(0000) knlGS:0000000000000000 [ 92.342420][ T72] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 92.342868][ T72] CR2: 00007f927e9f5000 CR3: 000000002951e002 CR4: 0000000000770ef0 [ 92.343282][ T72] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 92.343756][ T72] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 92.344348][ T72] PKRU: 55555554 [ 92.344547][ T72] Call Trace: [ 92.344718][ T72] [ 92.344892][ T72] ? die_addr+0x41/0xa0 [ 92.345123][ T72] ? exc_general_protection+0x149/0x220 [ 92.345476][ T72] ? asm_exc_general_protection+0x26/0x30 [ 92.345900][ T72] ? vxlan_netdevice_event+0x19e/0x340 [vxlan] [ 92.346261][ T72] ? __pfx_vxlan_netdevice_event+0x10/0x10 [vxlan] [ 92.346627][ T72] ? netconsole_netdev_event+0x1b4/0x300 [ 92.347033][ T72] notifier_call_chain+0x9a/0x290 [ 92.347418][ T72] unregister_netdevice_many_notify+0x55a/0x1180 [ 92.347780][ T72] ? mutex_is_locked+0x17/0x50 [ 92.348043][ T72] ? __pfx_unregister_netdevice_many_notify+0x10/0x10 [ 92.348523][ T72] ? vrf_dellink+0x101/0x150 [vrf] [ 92.348833][ T72] ? __pfx_unregister_netdevice_queue+0x10/0x10 [ 92.349187][ T72] default_device_exit_batch+0x228/0x2c0 [ 92.349486][ T72] ? __pfx_default_device_exit_batch+0x10/0x10 [ 92.349885][ T72] ? mutex_is_locked+0x17/0x50 [ 92.350183][ T72] ? nexthop_net_exit_batch_rtnl+0x83/0x210 [ 92.350493][ T72] cleanup_net+0x4f3/0xa20 [ 92.350723][ T72] ? __pfx_lock_acquire.part.0+0x10/0x10 [ 92.351009][ T72] ? __pfx_cleanup_net+0x10/0x10 [ 92.351363][ T72] ? lock_acquire+0x1c1/0x220 [ 92.351646][ T72] ? process_one_work+0x714/0x1310 [ 92.351911][ T72] process_one_work+0x78c/0x1310 [ 92.352166][ T72] ? hlock_class+0x4e/0x130 [ 92.352411][ T72] ? __pfx_process_one_work+0x10/0x10 [ 92.352775][ T72] ? assign_work+0x16c/0x240 [ 92.353059][ T72] worker_thread+0x73d/0x1010 [ 92.353302][ T72] ? lockdep_hardirqs_on_prepare.part.0+0x1b1/0x370 [ 92.353647][ T72] ? __pfx_worker_thread+0x10/0x10 [ 92.353909][ T72] ? __pfx_worker_thread+0x10/0x10 [ 92.354296][ T72] kthread+0x28f/0x360 [ 92.354546][ T72] ? __pfx_kthread+0x10/0x10 [ 92.354781][ T72] ret_from_fork+0x31/0x70 [ 92.355009][ T72] ? __pfx_kthread+0x10/0x10 [ 92.355246][ T72] ret_from_fork_asm+0x1b/0x30 [ 92.355598][ T72] [ 92.355785][ T72] Modules linked in: act_gact cls_flower sch_ingress macvlan 8021q vxlan ip6_udp_tunnel udp_tunnel bridge stp llc vrf veth [ 92.356487][ T72] ---[ end trace 0000000000000000 ]--- [ 92.356790][ T72] RIP: 0010:vxlan_netdevice_event+0x19e/0x340 [vxlan] [ 92.357356][ T72] Code: 00 00 00 48 b9 00 00 00 00 00 fc ff df 49 89 c0 48 89 44 24 08 49 c1 e8 03 4d 8d 24 08 eb 2c 48 8d 53 30 48 89 d0 48 c1 e8 03 <80> 3c 08 00 0f 85 e0 00 00 00 48 8b 43 30 49 89 dd 48 83 e8 30 49 [ 92.358534][ T72] RSP: 0018:ffffc9000051f980 EFLAGS: 00010246 [ 92.358894][ T72] RAX: 0000000000000000 RBX: ffffffffffffffd0 RCX: dffffc0000000000 [ 92.359365][ T72] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffff888008118c24 [ 92.359805][ T72] RBP: 1ffff920000a3f33 R08: 1ffff11000e1021a R09: ffffc9000051f9b8 [ 92.360321][ T72] R10: ffffffff9313ca07 R11: 205d323754202020 R12: ffffed1000e1021a [ 92.360729][ T72] R13: ffff888008118ba0 R14: ffff888009e14000 R15: ffff888007081000 [ 92.361145][ T72] FS: 0000000000000000(0000) GS:ffff888035600000(0000) knlGS:0000000000000000 [ 92.361728][ T72] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 92.362063][ T72] CR2: 00007f927e9f5000 CR3: 000000002951e002 CR4: 0000000000770ef0 [ 92.362492][ T72] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 92.363026][ T72] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 92.363448][ T72] PKRU: 55555554 [ 92.363634][ T72] Kernel panic - not syncing: Fatal exception [ 92.364076][ T72] Kernel Offset: 0xca00000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 92.364761][ T72] ---[ end Kernel panic - not syncing: Fatal exception ]--- WAIT TIMEOUT stdout Ctrl-C stdout Ctrl-C stdout WAIT TIMEOUT stdout