====================================== | [ 148.815023][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) | [ 148.815199][ C0] | [ 148.815276][ C0] | [ 148.815276][ C0] stack backtrace: [ 148.815757][ C0] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 148.816155][ C0] Call Trace: [ 148.816262][ C0] [ 148.816342][ C0] dump_stack_lvl (lib/dump_stack.c:117) [ 148.816493][ C0] print_irq_inversion_bug.part.0 (kernel/locking/lockdep.c:4024) [ 148.816669][ C0] ? __pfx_print_irq_inversion_bug.part.0 (kernel/locking/lockdep.c:4024) [ 148.816931][ C0] ? __pfx_usage_skip (kernel/locking/lockdep.c:2264) [ 148.817072][ C0] ? __pfx_usage_match (kernel/locking/lockdep.c:2256) [ 148.817213][ C0] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:26) [ 148.817355][ C0] mark_lock_irq (kernel/locking/lockdep.c:4244) [ 148.817595][ C0] ? __pfx_mark_lock_irq (kernel/locking/lockdep.c:4207) [ 148.817739][ C0] ? stack_trace_save (kernel/stacktrace.c:123) [ 148.817883][ C0] ? save_trace (kernel/locking/lockdep.c:586) [ 148.818025][ C0] mark_lock (kernel/locking/lockdep.c:4678) [ 148.818217][ C0] mark_usage (kernel/locking/lockdep.c:4567) [ 148.818334][ C0] __lock_acquire (kernel/locking/lockdep.c:5091) [ 148.818505][ C0] ? lockdep_hardirqs_on_prepare.part.0 (kernel/locking/lockdep.c:4292 kernel/locking/lockdep.c:4359) [ 148.818686][ C0] ? __pfx_br_forward_delay_timer_expired (net/bridge/br_stp_timer.c:80) bridge [ 148.819036][ C0] lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756) [ 148.819180][ C0] ? br_forward_delay_timer_expired (net/bridge/br_stp_timer.c:87) bridge [ 148.819393][ C0] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5719) [ 148.819536][ C0] ? trace_lock_acquire (./include/trace/events/lock.h:24 (discriminator 52)) [ 148.819680][ C0] ? br_forward_delay_timer_expired (net/bridge/br_stp_timer.c:87) bridge [ 148.819895][ C0] ? lock_acquire (kernel/locking/lockdep.c:5727) [ 148.820042][ C0] ? br_forward_delay_timer_expired (net/bridge/br_stp_timer.c:87) bridge [ 148.820264][ C0] _raw_spin_lock (./include/linux/spinlock_api_smp.h:134 kernel/locking/spinlock.c:154) [ 148.820496][ C0] ? br_forward_delay_timer_expired (net/bridge/br_stp_timer.c:87) bridge [ 148.820721][ C0] br_forward_delay_timer_expired (net/bridge/br_stp_timer.c:87) bridge [ 148.820932][ C0] ? __pfx_br_forward_delay_timer_expired (net/bridge/br_stp_timer.c:80) bridge [ 148.821262][ C0] call_timer_fn (kernel/time/timer.c:1793) [ 148.821409][ C0] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1783) [ 148.821549][ C0] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1783) [ 148.821689][ C0] ? __pfx_call_timer_fn (kernel/time/timer.c:1770) [ 148.821925][ C0] ? mark_lock (kernel/locking/lockdep.c:4656 (discriminator 3)) [ 148.822036][ C0] __run_timers (kernel/time/timer.c:1845 kernel/time/timer.c:2418) [ 148.822176][ C0] ? __pfx_br_forward_delay_timer_expired (net/bridge/br_stp_timer.c:80) bridge [ 148.822423][ C0] ? __pfx___run_timers (kernel/time/timer.c:2389) [ 148.822577][ C0] ? __lock_release (kernel/locking/lockdep.c:5430) [ 148.822720][ C0] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:115 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 148.822865][ C0] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 148.823005][ C0] ? lock_acquire (kernel/locking/lockdep.c:5727) [ 148.823151][ C0] ? timer_expire_remote (kernel/time/timer.c:2429 kernel/time/timer.c:2422 kernel/time/timer.c:2181) [ 148.823380][ C0] timer_expire_remote (kernel/time/timer.c:2430 kernel/time/timer.c:2422 kernel/time/timer.c:2181) [ 148.823521][ C0] tmigr_handle_remote_cpu (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:67 ./arch/x86/include/asm/irqflags.h:127 kernel/time/timer_migration.c:925) [ 148.823662][ C0] ? __pfx_tmigr_handle_remote_cpu (kernel/time/timer_migration.c:869) [ 148.823842][ C0] tmigr_handle_remote_up (kernel/time/timer_migration.c:1003) [ 148.824078][ C0] tmigr_handle_remote (kernel/time/timer_migration.c:488 kernel/time/timer_migration.c:1061) [ 148.824218][ C0] ? __pfx_tmigr_handle_remote (kernel/time/timer_migration.c:1026) [ 148.824365][ C0] __do_softirq (kernel/softirq.c:554) [ 148.824509][ C0] irq_exit_rcu (kernel/softirq.c:428 kernel/softirq.c:633 kernel/softirq.c:645) [ 148.824617][ C0] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1043 arch/x86/kernel/apic/apic.c:1043) [ 148.824760][ C0] [ 148.824832][ C0] [ 148.824911][ C0] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 148.825086][ C0] RIP: 0010:lock_release (kernel/locking/lockdep.c:5778) [ 148.825325][ C0] Code: 05 8b 37 53 73 e8 e6 fa ff ff b8 ff ff ff ff 65 0f c1 05 79 37 53 73 83 f8 01 75 1d 9c 58 f6 c4 02 75 0f 80 e7 02 74 01 fb 5b <5d> 41 5c c3 cc cc cc cc e8 69 87 61 02 eb ea 90 0f 0b 90 65 c7 05 All code ======== 0: 05 8b 37 53 73 add $0x7353378b,%eax 5: e8 e6 fa ff ff call 0xfffffffffffffaf0 a: b8 ff ff ff ff mov $0xffffffff,%eax f: 65 0f c1 05 79 37 53 xadd %eax,%gs:0x73533779(%rip) # 0x73533790 16: 73 17: 83 f8 01 cmp $0x1,%eax 1a: 75 1d jne 0x39 1c: 9c pushf 1d: 58 pop %rax 1e: f6 c4 02 test $0x2,%ah 21: 75 0f jne 0x32 23: 80 e7 02 and $0x2,%bh 26: 74 01 je 0x29 28: fb sti 29: 5b pop %rbx 2a:* 5d pop %rbp <-- trapping instruction 2b: 41 5c pop %r12 2d: c3 ret 2e: cc int3 2f: cc int3 30: cc int3 31: cc int3 32: e8 69 87 61 02 call 0x26187a0 37: eb ea jmp 0x23 39: 90 nop 3a: 0f 0b ud2 3c: 90 nop 3d: 65 gs 3e: c7 .byte 0xc7 3f: 05 .byte 0x5 Code starting with the faulting instruction =========================================== 0: 5d pop %rbp 1: 41 5c pop %r12 3: c3 ret 4: cc int3 5: cc int3 6: cc int3 7: cc int3 8: e8 69 87 61 02 call 0x2618776 d: eb ea jmp 0xfffffffffffffff9 f: 90 nop 10: 0f 0b ud2 12: 90 nop 13: 65 gs 14: c7 .byte 0xc7 15: 05 .byte 0x5 [ 148.825832][ C0] RSP: 0018:ffffc9000053fc68 EFLAGS: 00000202 [ 148.826102][ C0] RAX: 0000000000000046 RBX: ffff888007b01000 RCX: 1ffff11000d8214c [ 148.826314][ C0] RDX: 0000000000000000 RSI: ffffffff903522e0 RDI: ffff888006c10a60 [ 148.826524][ C0] RBP: ffffffff903522e0 R08: ffffffff8e9e92cf R09: fffffbfff21a49fa [ 148.826741][ C0] R10: ffffffff90d24fd7 R11: 0000000000000000 R12: ffffffff8e9e92cf [ 148.826959][ C0] R13: 0000000000000000 R14: ffffffff92c46e40 R15: 000000000c8ca8e2 [ 148.827172][ C0] ? dev_load (./include/linux/rcupdate.h:339 ./include/linux/rcupdate.h:814 net/core/dev_ioctl.c:643) [ 148.827367][ C0] ? dev_load (./include/linux/rcupdate.h:339 ./include/linux/rcupdate.h:814 net/core/dev_ioctl.c:643) [ 148.827475][ C0] dev_load (net/core/dev_ioctl.c:646) [ 148.827583][ C0] dev_ioctl (./include/linux/rcupdate.h:779 net/core/dev_ioctl.c:714) [ 148.827689][ C0] sock_do_ioctl (net/socket.c:1236) [ 148.827838][ C0] ? __pfx_sock_do_ioctl (net/socket.c:1214) [ 148.828070][ C0] ? __sys_sendto (net/socket.c:730 net/socket.c:745 net/socket.c:2191) [ 148.828212][ C0] ? __pfx___sys_sendto (net/socket.c:2161) [ 148.828353][ C0] ? lock_acquire (kernel/locking/lockdep.c:5727) [ 148.828495][ C0] sock_ioctl (net/socket.c:1344) [ 148.828603][ C0] ? __pfx_sock_ioctl (net/socket.c:1250) [ 148.828747][ C0] ? __pfx___rseq_handle_notify_resume (kernel/rseq.c:316) [ 148.828925][ C0] __x64_sys_ioctl (fs/ioctl.c:51 fs/ioctl.c:904 fs/ioctl.c:890 fs/ioctl.c:890) [ 148.829066][ C0] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 148.829296][ C0] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 148.829470][ C0] RIP: 0033:0x7f162e614c6b [ 148.829615][ C0] Code: 73 01 c3 48 8b 0d 95 a1 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 10 00 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 65 a1 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d 95 a1 1b 00 mov 0x1ba195(%rip),%rcx # 0x1ba19f a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 10 00 00 00 mov $0x10,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d 65 a1 1b 00 mov 0x1ba165(%rip),%rcx # 0x1ba19f 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d 65 a1 1b 00 mov 0x1ba165(%rip),%rcx # 0x1ba175 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 148.830210][ C0] RSP: 002b:00007ffd8ed7c098 EFLAGS: 00000246 ORIG_RAX: 0000000000000010 [ 148.830430][ C0] RAX: ffffffffffffffda RBX: 000000000c8c69d0 RCX: 00007f162e614c6b [ 148.830649][ C0] RDX: 00007ffd8ed7c0c0 RSI: 0000000000008933 RDI: 0000000000000005 [ 148.830861][ C0] RBP: 000000000c8ca8e2 R08: 0000000000000006 R09: 0030312e30687465 [ 148.831070][ C0] R10: 0000000000000012 R11: 0000000000000246 R12: 0000000000000005 Finger prints: dump_stack_lvl:mark_lock_irq:mark_lock:mark_usage