====================================== | [ 154.027157][ T911] br2: port 2(vx2) entered forwarding state | [ 154.035128][ C0] ------------[ cut here ]------------ | [ 154.035451][ C0] kernel BUG at net/core/skbuff.c:3505! | [ 154.035623][ C0] invalid opcode: 0000 [#1] PREEMPT SMP KASAN NOPTI [ 154.036006][ C0] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 154.036299][ C0] RIP: 0010:__skb_checksum (net/core/skbuff.c:3505 (discriminator 1)) [ 154.036448][ C0] Code: 44 89 14 24 ff d0 0f 1f 00 4c 8b 44 24 08 44 8b 14 24 41 89 c1 eb a5 89 e8 e9 2d fe ff ff 41 ff d5 0f 1f 00 e9 1f fa ff ff 90 <0f> 0b 48 8b 7c 24 10 89 54 24 48 48 89 44 24 40 e8 17 a6 91 fe 8b All code ======== 0: 44 89 14 24 mov %r10d,(%rsp) 4: ff d0 call *%rax 6: 0f 1f 00 nopl (%rax) 9: 4c 8b 44 24 08 mov 0x8(%rsp),%r8 e: 44 8b 14 24 mov (%rsp),%r10d 12: 41 89 c1 mov %eax,%r9d 15: eb a5 jmp 0xffffffffffffffbc 17: 89 e8 mov %ebp,%eax 19: e9 2d fe ff ff jmp 0xfffffffffffffe4b 1e: 41 ff d5 call *%r13 21: 0f 1f 00 nopl (%rax) 24: e9 1f fa ff ff jmp 0xfffffffffffffa48 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 48 8b 7c 24 10 mov 0x10(%rsp),%rdi 31: 89 54 24 48 mov %edx,0x48(%rsp) 35: 48 89 44 24 40 mov %rax,0x40(%rsp) 3a: e8 17 a6 91 fe call 0xfffffffffe91a656 3f: 8b .byte 0x8b Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 48 8b 7c 24 10 mov 0x10(%rsp),%rdi 7: 89 54 24 48 mov %edx,0x48(%rsp) b: 48 89 44 24 40 mov %rax,0x40(%rsp) 10: e8 17 a6 91 fe call 0xfffffffffe91a62c 15: 8b .byte 0x8b [ 154.036940][ C0] RSP: 0000:ffffc9000082f7d0 EFLAGS: 00010206 [ 154.037129][ C0] RAX: 00000000000042b5 RBX: 0000000000000008 RCX: 1ffff11000fa9d09 [ 154.037338][ C0] RDX: 00000000000000a6 RSI: dffffc0000000000 RDI: ffff888007d4e848 [ 154.037546][ C0] RBP: 00000000000042b5 R08: 0000000000000008 R09: ffffed1000464da9 [ 154.037752][ C0] R10: ffff88800284c608 R11: ffff888007d4e740 R12: 0000000000000008 [ 154.037966][ C0] R13: 0000000000000000 R14: ffffc9000082f890 R15: ffff88800284c608 [ 154.038210][ C0] FS: 00007f4171fbe740(0000) GS:ffff88802fa00000(0000) knlGS:0000000000000000 [ 154.038448][ C0] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 154.038628][ C0] CR2: 00007f629d51d000 CR3: 0000000005470004 CR4: 0000000000770ef0 [ 154.038833][ C0] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 154.039046][ C0] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 154.039245][ C0] PKRU: 55555554 [ 154.039344][ C0] Call Trace: [ 154.039447][ C0] [ 154.039521][ C0] ? die (arch/x86/kernel/dumpstack.c:421 arch/x86/kernel/dumpstack.c:434 arch/x86/kernel/dumpstack.c:447) [ 154.039625][ C0] ? do_trap (arch/x86/kernel/traps.c:113 arch/x86/kernel/traps.c:154) [ 154.039728][ C0] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1)) [ 154.039870][ C0] ? do_error_trap (./arch/x86/include/asm/traps.h:58 arch/x86/kernel/traps.c:175) [ 154.040021][ C0] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1)) [ 154.040172][ C0] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1)) [ 154.040304][ C0] ? handle_invalid_op (arch/x86/kernel/traps.c:213) [ 154.040446][ C0] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1)) [ 154.040582][ C0] ? exc_invalid_op (arch/x86/kernel/traps.c:265) [ 154.040718][ C0] ? asm_exc_invalid_op (./arch/x86/include/asm/idtentry.h:568) [ 154.040868][ C0] ? __skb_checksum (net/core/skbuff.c:3505 (discriminator 1)) [ 154.041013][ C0] ? __pfx___lock_release (kernel/locking/lockdep.c:5406) [ 154.041169][ C0] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 154.041305][ C0] __skb_checksum_complete (net/core/skbuff.c:3643) [ 154.041456][ C0] ? __pfx___skb_checksum_complete (net/core/skbuff.c:3637) [ 154.041619][ C0] ? __pfx_csum_partial_ext (./include/net/checksum.h:120) [ 154.041766][ C0] ? __pfx_csum_block_add_ext (./include/net/checksum.h:103) [ 154.041898][ C0] ? ipv6_raw_deliver (net/ipv6/raw.c:142) [ 154.042057][ C0] icmpv6_rcv (./include/linux/skbuff.h:4567 net/ipv6/icmp.c:921) [ 154.042207][ C0] ip6_protocol_deliver_rcu (net/ipv6/ip6_input.c:438 (discriminator 5)) [ 154.042345][ C0] ? ip6_route_input (./include/linux/skbuff.h:1168 net/ipv6/route.c:2594) [ 154.042495][ C0] ip6_input_finish (./include/linux/rcupdate.h:779 net/ipv6/ip6_input.c:484) [ 154.042628][ C0] ip6_input (./include/linux/netfilter.h:314 ./include/linux/netfilter.h:308 net/ipv6/ip6_input.c:492) [ 154.042738][ C0] ? __pfx_ip6_input (net/ipv6/ip6_input.c:491) [ 154.042871][ C0] ? ip6_rcv_core (./include/linux/skbuff.h:3181 net/ipv6/ip6_input.c:291) [ 154.043027][ C0] ipv6_rcv (./include/net/dst.h:460 net/ipv6/ip6_input.c:79 ./include/linux/netfilter.h:314 ./include/linux/netfilter.h:308 net/ipv6/ip6_input.c:310) [ 154.043144][ C0] ? __pfx_ipv6_rcv (net/ipv6/ip6_input.c:304) [ 154.043275][ C0] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 154.043411][ C0] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:6051) [ 154.043548][ C0] ? __pfx_ipv6_rcv (net/ipv6/ip6_input.c:304) [ 154.043681][ C0] __netif_receive_skb_one_core (net/core/dev.c:5603) [ 154.043844][ C0] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5603) [ 154.044016][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 154.044164][ C0] ? lock_acquire (./include/trace/events/lock.h:24 kernel/locking/lockdep.c:5725) [ 154.044296][ C0] ? process_backlog (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:6051) [ 154.044434][ C0] process_backlog (./include/linux/rcupdate.h:779 net/core/dev.c:6053) [ 154.044576][ C0] __napi_poll.constprop.0 (net/core/dev.c:6703) [ 154.044710][ C0] net_rx_action (net/core/dev.c:6772 net/core/dev.c:6886) [ 154.044857][ C0] ? __pfx_net_rx_action (net/core/dev.c:6850) [ 154.044998][ C0] ? kvm_clock_get_cycles (./arch/x86/include/asm/preempt.h:94 arch/x86/kernel/kvmclock.c:80 arch/x86/kernel/kvmclock.c:86) [ 154.045153][ C0] ? ktime_get (./include/linux/seqlock.h:72 kernel/time/timekeeping.c:846) [ 154.045253][ C0] ? hrtimer_interrupt (kernel/time/hrtimer.c:1828) [ 154.045405][ C0] ? clockevents_program_event (kernel/time/clockevents.c:334 (discriminator 3)) [ 154.045582][ C0] __do_softirq (kernel/softirq.c:553) [ 154.045730][ C0] irq_exit_rcu (kernel/softirq.c:427 kernel/softirq.c:632 kernel/softirq.c:644) [ 154.045832][ C0] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1076 (discriminator 69)) [ 154.045966][ C0] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:649) [ 154.046162][ C0] RIP: 0033:0x56033985d5a0 [ 154.046314][ C0] Code: 48 8b 47 18 48 85 c0 74 e2 5b 5d 41 5c ff e0 0f 1f 00 e8 b3 fd ff ff 48 89 c7 48 85 c0 75 e1 eb c8 66 0f 1f 84 00 00 00 00 00 0f 1e fa 48 83 ec 08 8b 05 16 49 10 00 31 f6 48 c7 05 35 32 10 All code ======== 0: 48 8b 47 18 mov 0x18(%rdi),%rax 4: 48 85 c0 test %rax,%rax 7: 74 e2 je 0xffffffffffffffeb 9: 5b pop %rbx a: 5d pop %rbp b: 41 5c pop %r12 d: ff e0 jmp *%rax f: 0f 1f 00 nopl (%rax) 12: e8 b3 fd ff ff call 0xfffffffffffffdca 17: 48 89 c7 mov %rax,%rdi 1a: 48 85 c0 test %rax,%rax 1d: 75 e1 jne 0x0 1f: eb c8 jmp 0xffffffffffffffe9 21: 66 0f 1f 84 00 00 00 nopw 0x0(%rax,%rax,1) 28: 00 00 2a:* f3 0f 1e fa endbr64 <-- trapping instruction 2e: 48 83 ec 08 sub $0x8,%rsp 32: 8b 05 16 49 10 00 mov 0x104916(%rip),%eax # 0x10494e 38: 31 f6 xor %esi,%esi 3a: 48 rex.W 3b: c7 .byte 0xc7 3c: 05 .byte 0x5 3d: 35 .byte 0x35 3e: 32 10 xor (%rax),%dl Code starting with the faulting instruction =========================================== 0: f3 0f 1e fa endbr64 4: 48 83 ec 08 sub $0x8,%rsp 8: 8b 05 16 49 10 00 mov 0x104916(%rip),%eax # 0x104924 e: 31 f6 xor %esi,%esi 10: 48 rex.W 11: c7 .byte 0xc7 12: 05 .byte 0x5 13: 35 .byte 0x35 14: 32 10 xor (%rax),%dl [ 154.046795][ C0] RSP: 002b:00007fff9c8088b8 EFLAGS: 00000246 [ 154.046990][ C0] RAX: 0000000000000000 RBX: 0000000000000000 RCX: 0000560339e472d0 [ 154.047209][ C0] RDX: 0000000000000002 RSI: 0000000000000001 RDI: 0000560339918194 [ 154.047405][ C0] RBP: 0000560339e47e80 R08: 0000000000000001 R09: 0000000000000000 [ 154.047599][ C0] R10: 0000000000000008 R11: 0000000000000246 R12: 0000560339918194 Finger prints: __skb_checksum:__skb_checksum_complete:icmpv6_rcv:ip6_protocol_deliver_rcu