======================================
| [ 35.807340][ T23] br1: port 4(veth2) entered forwarding state
| [ 38.307769][ C2] ------------[ cut here ]------------
| [ 38.308130][ C2] kernel BUG at net/core/skbuff.c:3505!
| [ 38.308293][ C2] invalid opcode: 0000 [#1] PREEMPT SMP KASAN NOPTI
[ 38.308677][ C2] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014
[ 38.308980][ C2] RIP: 0010:__skb_checksum (net/core/skbuff.c:3505 (discriminator 1))
[ 38.309133][ C2] Code: 44 89 14 24 ff d0 0f 1f 00 4c 8b 44 24 08 44 8b 14 24 41 89 c1 eb a5 89 e8 e9 2d fe ff ff 41 ff d5 0f 1f 00 e9 1f fa ff ff 90 <0f> 0b 48 8b 7c 24 10 89 54 24 48 48 89 44 24 40 e8 17 a6 91 fe 8b
All code
========
0: 44 89 14 24 mov %r10d,(%rsp)
4: ff d0 call *%rax
6: 0f 1f 00 nopl (%rax)
9: 4c 8b 44 24 08 mov 0x8(%rsp),%r8
e: 44 8b 14 24 mov (%rsp),%r10d
12: 41 89 c1 mov %eax,%r9d
15: eb a5 jmp 0xffffffffffffffbc
17: 89 e8 mov %ebp,%eax
19: e9 2d fe ff ff jmp 0xfffffffffffffe4b
1e: 41 ff d5 call *%r13
21: 0f 1f 00 nopl (%rax)
24: e9 1f fa ff ff jmp 0xfffffffffffffa48
29: 90 nop
2a:* 0f 0b ud2 <-- trapping instruction
2c: 48 8b 7c 24 10 mov 0x10(%rsp),%rdi
31: 89 54 24 48 mov %edx,0x48(%rsp)
35: 48 89 44 24 40 mov %rax,0x40(%rsp)
3a: e8 17 a6 91 fe call 0xfffffffffe91a656
3f: 8b .byte 0x8b
Code starting with the faulting instruction
===========================================
0: 0f 0b ud2
2: 48 8b 7c 24 10 mov 0x10(%rsp),%rdi
7: 89 54 24 48 mov %edx,0x48(%rsp)
b: 48 89 44 24 40 mov %rax,0x40(%rsp)
10: e8 17 a6 91 fe call 0xfffffffffe91a62c
15: 8b .byte 0x8b
[ 38.309615][ C2] RSP: 0018:ffffc90000220910 EFLAGS: 00010202
[ 38.309791][ C2] RAX: 0000000000009d53 RBX: 0000000000000008 RCX: 1ffff110005f4891
[ 38.309995][ C2] RDX: 0000000000000092 RSI: dffffc0000000000 RDI: ffff888002fa4488
[ 38.310201][ C2] RBP: 0000000000009d53 R08: 0000000000000008 R09: fffffbfff3edc5ea
[ 38.310402][ C2] R10: ffffffff9f6e2f57 R11: dffffc0000000000 R12: 0000000000000008
[ 38.310606][ C2] R13: 0000000000000000 R14: ffffc900002209d0 R15: ffff888005a0d948
[ 38.310811][ C2] FS: 00007f1b91c84740(0000) GS:ffff888036100000(0000) knlGS:0000000000000000
[ 38.311046][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[ 38.311219][ C2] CR2: 00007fe0e1fd62a8 CR3: 0000000007b72006 CR4: 0000000000770ef0
[ 38.311422][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
[ 38.311628][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400
[ 38.311832][ C2] PKRU: 55555554
[ 38.311934][ C2] Call Trace:
[ 38.312037][ C2]
[ 38.312108][ C2] ? die (arch/x86/kernel/dumpstack.c:421 arch/x86/kernel/dumpstack.c:434 arch/x86/kernel/dumpstack.c:447)
[ 38.312215][ C2] ? do_trap (arch/x86/kernel/traps.c:113 arch/x86/kernel/traps.c:154)
[ 38.312321][ C2] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1))
[ 38.312457][ C2] ? do_error_trap (./arch/x86/include/asm/traps.h:58 arch/x86/kernel/traps.c:175)
[ 38.312597][ C2] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1))
[ 38.312734][ C2] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1))
[ 38.312869][ C2] ? handle_invalid_op (arch/x86/kernel/traps.c:213)
[ 38.313004][ C2] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1))
[ 38.313139][ C2] ? exc_invalid_op (arch/x86/kernel/traps.c:265)
[ 38.313277][ C2] ? asm_exc_invalid_op (./arch/x86/include/asm/idtentry.h:568)
[ 38.313415][ C2] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1))
[ 38.313551][ C2] __skb_checksum_complete (net/core/skbuff.c:3643)
[ 38.313710][ C2] ? __pfx___skb_checksum_complete (net/core/skbuff.c:3637)
[ 38.313885][ C2] ? __pfx_csum_partial_ext (./include/net/checksum.h:120)
[ 38.314019][ C2] ? __pfx_csum_block_add_ext (./include/net/checksum.h:103)
[ 38.314155][ C2] icmp_rcv (./include/linux/skbuff.h:4567 net/ipv4/icmp.c:1213)
[ 38.314261][ C2] ip_protocol_deliver_rcu (net/ipv4/ip_input.c:205 (discriminator 5))
[ 38.314400][ C2] ip_local_deliver_finish (./include/linux/rcupdate.h:779 net/ipv4/ip_input.c:234)
[ 38.314534][ C2] ip_local_deliver (./include/linux/netfilter.h:314 ./include/linux/netfilter.h:308 net/ipv4/ip_input.c:254)
[ 38.314667][ C2] ? __pfx_ip_local_deliver (net/ipv4/ip_input.c:243)
[ 38.314807][ C2] ? ip_rcv_finish_core.constprop.0 (./include/linux/skbuff.h:1136 ./include/linux/skbuff.h:1188 net/ipv4/ip_input.c:390)
[ 38.314975][ C2] ip_rcv (./include/net/dst.h:460 net/ipv4/ip_input.c:449 ./include/linux/netfilter.h:314 ./include/linux/netfilter.h:308 net/ipv4/ip_input.c:569)
[ 38.315077][ C2] ? __pfx_ip_rcv (net/ipv4/ip_input.c:562)
[ 38.315212][ C2] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756)
[ 38.315350][ C2] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:6051)
[ 38.315488][ C2] ? __pfx_ip_rcv (net/ipv4/ip_input.c:562)
[ 38.315622][ C2] __netif_receive_skb_one_core (net/core/dev.c:5610 (discriminator 4))
[ 38.315789][ C2] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5603)
[ 38.315962][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114)
[ 38.316097][ C2] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725)
[ 38.316232][ C2] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:6051)
[ 38.316374][ C2] process_backlog (./include/linux/rcupdate.h:779 net/core/dev.c:6053)
[ 38.316511][ C2] __napi_poll.constprop.0 (net/core/dev.c:6703)
[ 38.316642][ C2] net_rx_action (net/core/dev.c:6772 net/core/dev.c:6886)
[ 38.316774][ C2] ? __pfx_net_rx_action (net/core/dev.c:6850)
[ 38.316905][ C2] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4292 kernel/locking/lockdep.c:4359)
[ 38.317076][ C2] __do_softirq (kernel/softirq.c:553)
[ 38.317216][ C2] irq_exit_rcu (kernel/softirq.c:427 kernel/softirq.c:632 kernel/softirq.c:644)
[ 38.317316][ C2] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1076 (discriminator 14))
[ 38.317448][ C2]
[ 38.317516][ C2]
[ 38.317583][ C2] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:649)
[ 38.317750][ C2] RIP: 0010:finish_task_switch.isra.0 (./arch/x86/include/asm/jump_label.h:27 kernel/sched/core.c:4960 kernel/sched/core.c:5284)
[ 38.317920][ C2] Code: 89 ff 48 c7 03 00 00 00 00 ff d2 0f 1f 00 4d 85 e4 75 ba 4c 89 ff e8 e0 92 66 02 e8 6b 4f 2c 00 fb 65 48 8b 1c 25 c0 b2 03 00 <66> 90 48 83 7d d0 00 74 56 65 48 8b 1c 25 c0 b2 03 00 48 8d bb e8
All code
========
0: 89 ff mov %edi,%edi
2: 48 c7 03 00 00 00 00 movq $0x0,(%rbx)
9: ff d2 call *%rdx
b: 0f 1f 00 nopl (%rax)
e: 4d 85 e4 test %r12,%r12
11: 75 ba jne 0xffffffffffffffcd
13: 4c 89 ff mov %r15,%rdi
16: e8 e0 92 66 02 call 0x26692fb
1b: e8 6b 4f 2c 00 call 0x2c4f8b
20: fb sti
21: 65 48 8b 1c 25 c0 b2 mov %gs:0x3b2c0,%rbx
28: 03 00
2a:* 66 90 xchg %ax,%ax <-- trapping instruction
2c: 48 83 7d d0 00 cmpq $0x0,-0x30(%rbp)
31: 74 56 je 0x89
33: 65 48 8b 1c 25 c0 b2 mov %gs:0x3b2c0,%rbx
3a: 03 00
3c: 48 rex.W
3d: 8d .byte 0x8d
3e: bb .byte 0xbb
3f: e8 .byte 0xe8
Code starting with the faulting instruction
===========================================
0: 66 90 xchg %ax,%ax
2: 48 83 7d d0 00 cmpq $0x0,-0x30(%rbp)
7: 74 56 je 0x5f
9: 65 48 8b 1c 25 c0 b2 mov %gs:0x3b2c0,%rbx
10: 03 00
12: 48 rex.W
13: 8d .byte 0x8d
14: bb .byte 0xbb
15: e8 .byte 0xe8
[ 38.318392][ C2] RSP: 0018:ffffc900004efed0 EFLAGS: 00000202
[ 38.318557][ C2] RAX: 0000000000000001 RBX: ffff8880061fa2c0 RCX: 1ffffffff3edbf69
[ 38.318756][ C2] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ffffffff9b43f995
[ 38.318962][ C2] RBP: ffffc900004eff10 R08: 0000000000000001 R09: fffffbfff3edc5ea
[ 38.319163][ C2] R10: ffffffff9f6e2f57 R11: ffff88803613bec0 R12: ffff88803613bd18
[ 38.319361][ C2] R13: ffff888001b622c0 R14: 0000000000000000 R15: ffff88803613bd00
[ 38.319558][ C2] ? finish_task_switch.isra.0 (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 kernel/sched/sched.h:1397 kernel/sched/core.c:5154 kernel/sched/core.c:5272)
[ 38.319727][ C2] schedule_tail (./arch/x86/include/asm/preempt.h:94 kernel/sched/core.c:5332)
[ 38.319858][ C2] ret_from_fork (arch/x86/kernel/process.c:146)
Finger prints:
__skb_checksum:__skb_checksum_complete:icmp_rcv:ip_protocol_deliver_rcu