====================================== | [ 99.981845][ C3] ================================================================== | [ 99.982168][ C3] BUG: KASAN: slab-use-after-free in ___neigh_create (./include/linux/rculist.h:598 net/core/neighbour.c:688) | [ 99.982465][ C3] Write of size 8 at addr ffff8880082a2818 by task mausezahn/695 | [ 99.982748][ C3] [ 99.983139][ C3] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 99.983577][ C3] Call Trace: [ 99.983726][ C3] [ 99.983826][ C3] dump_stack_lvl (lib/dump_stack.c:123) [ 99.984028][ C3] print_address_description.constprop.0 (mm/kasan/report.c:378) [ 99.984282][ C3] ? ___neigh_create (./include/linux/rculist.h:598 net/core/neighbour.c:688) [ 99.984477][ C3] print_report (mm/kasan/report.c:489) [ 99.984670][ C3] ? kasan_addr_to_slab (./include/linux/mm.h:1282 mm/kasan/../slab.h:206 mm/kasan/common.c:38) [ 99.984879][ C3] kasan_report (mm/kasan/report.c:603) [ 99.985024][ C3] ? ___neigh_create (./include/linux/rculist.h:598 net/core/neighbour.c:688) [ 99.985226][ C3] ___neigh_create (./include/linux/rculist.h:598 net/core/neighbour.c:688) [ 99.985416][ C3] ip_finish_output2 (./include/net/route.h:381 ./include/net/route.h:399 net/ipv4/ip_output.c:229) [ 99.985610][ C3] ? mark_lock (kernel/locking/lockdep.c:4703 (discriminator 3)) [ 99.985756][ C3] ? __pfx_ip_finish_output2 (net/ipv4/ip_output.c:199) [ 99.985950][ C3] ? __ip_finish_output (./include/linux/skbuff.h:1672 ./include/linux/skbuff.h:5019 net/ipv4/ip_output.c:307 net/ipv4/ip_output.c:295) [ 99.986142][ C3] ip_output (./include/linux/netfilter.h:303 net/ipv4/ip_output.c:433) [ 99.986292][ C3] ? __pfx_ip_output (net/ipv4/ip_output.c:427) [ 99.986485][ C3] ? ip_local_out (net/ipv4/ip_output.c:128) [ 99.986674][ C3] iptunnel_xmit (net/ipv4/ip_tunnel_core.c:84 (discriminator 4)) [ 99.986869][ C3] ? dst_cache_per_cpu_dst_set (./arch/x86/include/asm/atomic.h:79 ./include/linux/atomic/atomic-arch-fallback.h:2401 ./include/linux/atomic/atomic-instrumented.h:1476 ./include/linux/rcuref.h:67 ./include/net/dst.h:238 net/core/dst_cache.c:33) [ 99.987065][ C3] ip_tunnel_xmit (net/ipv4/ip_tunnel.c:860) [ 99.987263][ C3] ? __pfx_ip_tunnel_xmit (net/ipv4/ip_tunnel.c:684) [ 99.987452][ C3] ? kasan_set_track (mm/kasan/common.c:62) [ 99.987649][ C3] ? __kasan_kmalloc (mm/kasan/common.c:398) [ 99.987841][ C3] ? skb_release_data (./include/linux/atomic/atomic-arch-fallback.h:787 ./include/linux/atomic/atomic-instrumented.h:290 ./include/linux/skbuff.h:1253 net/core/skbuff.c:1107) [ 99.988041][ C3] __gre_xmit (net/ipv4/ip_gre.c:472) ip_gre [ 99.988235][ C3] ? __pfx___gre_xmit (net/ipv4/ip_gre.c:472) ip_gre [ 99.988429][ C3] ? __pfx_pskb_expand_head (net/core/skbuff.c:2259) [ 99.988622][ C3] ? __pfx_packet_rcv (net/packet/af_packet.c:2184) [ 99.988815][ C3] gre_tap_xmit (net/ipv4/ip_gre.c:773) ip_gre [ 99.989009][ C3] dev_hard_start_xmit (./include/linux/netdevice.h:4997 ./include/linux/netdevice.h:5006 net/core/dev.c:3590 net/core/dev.c:3606) [ 99.989201][ C3] sch_direct_xmit (net/sched/sch_generic.c:343) [ 99.989400][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5202) [ 99.989591][ C3] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5790) [ 99.989782][ C3] ? __pfx_sch_direct_xmit (net/sched/sch_generic.c:318) [ 99.989972][ C3] ? __dev_xmit_skb (./include/net/sch_generic.h:197 ./include/net/sch_generic.h:194 net/core/dev.c:3810) [ 99.990163][ C3] ? lock_acquire (kernel/locking/lockdep.c:5798) [ 99.990352][ C3] ? __dev_xmit_skb (./include/net/sch_generic.h:197 ./include/net/sch_generic.h:194 net/core/dev.c:3810) [ 99.990542][ C3] __dev_xmit_skb (net/core/dev.c:3823) [ 99.990729][ C3] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5790) [ 99.990935][ C3] ? trace_lock_acquire (./include/trace/events/lock.h:24 (discriminator 52)) [ 99.991132][ C3] ? __pfx___dev_xmit_skb (net/core/dev.c:3798) [ 99.991338][ C3] ? __dev_queue_xmit (./include/linux/bottom_half.h:20 ./include/linux/rcupdate.h:901 net/core/dev.c:4355) [ 99.991529][ C3] ? lock_acquire (kernel/locking/lockdep.c:5798) [ 99.991722][ C3] ? __dev_queue_xmit (./include/linux/bottom_half.h:20 ./include/linux/rcupdate.h:901 net/core/dev.c:4355) [ 99.991912][ C3] __dev_queue_xmit (net/core/dev.c:4396) [ 99.992104][ C3] ? __pfx___lock_release (kernel/locking/lockdep.c:5477) [ 99.992295][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 99.992495][ C3] ? __pfx___dev_queue_xmit (net/core/dev.c:4339) [ 99.992689][ C3] ? __create_object (mm/kmemleak.c:766) [ 99.992883][ C3] ? trace_kmem_cache_alloc (./include/trace/events/kmem.h:12 (discriminator 52)) [ 99.993077][ C3] ? kmem_cache_alloc_noprof (mm/slub.c:4147) [ 99.993275][ C3] ? __copy_skb_header (./include/net/dst.h:290 net/core/skbuff.c:1534) [ 99.993468][ C3] ? __skb_clone (./arch/x86/include/asm/atomic.h:53 (discriminator 4) ./include/linux/atomic/atomic-arch-fallback.h:992 (discriminator 4) ./include/linux/atomic/atomic-instrumented.h:436 (discriminator 4) net/core/skbuff.c:1605 (discriminator 4)) [ 99.993662][ C3] tcf_mirred_to_dev (net/sched/act_mirred.c:319) act_mirred [ 99.993901][ C3] ? __lock_release (kernel/locking/lockdep.c:5501) [ 99.994102][ C3] ? is_bpf_text_address (./include/linux/rcupdate.h:347 ./include/linux/rcupdate.h:880 kernel/bpf/core.c:769) [ 99.994296][ C3] tcf_mirred_act (net/sched/act_mirred.c:453 (discriminator 2)) act_mirred [ 99.994533][ C3] ? trace_lock_acquire (./include/trace/events/lock.h:24 (discriminator 52)) [ 99.994727][ C3] tcf_action_exec.part.0 (./include/net/tc_wrapper.h:130 net/sched/act_api.c:1143) [ 99.994947][ C3] fl_classify (net/sched/cls_flower.c:356) cls_flower [ 99.995149][ C3] ? __pfx_fl_classify (net/sched/cls_flower.c:327) cls_flower [ 99.995390][ C3] ? get_stack_info_noinstr (arch/x86/kernel/dumpstack_64.c:173) [ 99.995596][ C3] ? get_stack_info (arch/x86/kernel/dumpstack_64.c:199) [ 99.995790][ C3] ? stack_access_ok (arch/x86/kernel/unwind_orc.c:396) [ 99.995986][ C3] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:24) [ 99.996180][ C3] ? unwind_next_frame (arch/x86/kernel/unwind_orc.c:643) [ 99.996378][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 99.996577][ C3] ? validate_chain (./include/linux/hash.h:78 kernel/locking/lockdep.c:3794 kernel/locking/lockdep.c:3817 kernel/locking/lockdep.c:3872) [ 99.996775][ C3] ? __pfx_unwind_next_frame (arch/x86/kernel/unwind_orc.c:469) [ 99.996967][ C3] ? __pfx_validate_chain (kernel/locking/lockdep.c:3860) [ 99.997158][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 99.997355][ C3] ? validate_chain (./include/linux/hash.h:78 kernel/locking/lockdep.c:3794 kernel/locking/lockdep.c:3817 kernel/locking/lockdep.c:3872) [ 99.997551][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5202) [ 99.997746][ C3] ? __pfx_validate_chain (kernel/locking/lockdep.c:3860) [ 99.997939][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 99.998131][ C3] ? mark_lock (kernel/locking/lockdep.c:4703 (discriminator 3)) [ 99.998277][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 99.998477][ C3] __tcf_classify (./include/net/tc_wrapper.h:197 net/sched/cls_api.c:1770) [ 99.998680][ C3] tcf_classify (net/sched/cls_api.c:1866) [ 99.998871][ C3] ? __pfx___lock_release (kernel/locking/lockdep.c:5477) [ 99.999066][ C3] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5790) [ 99.999259][ C3] ? __pfx_tcf_classify (net/sched/cls_api.c:1815) [ 99.999461][ C3] tc_run (net/core/dev.c:4009) [ 99.999607][ C3] ? sock_def_readable (net/core/sock.c:3465) [ 99.999799][ C3] ? __pfx_tc_run (net/core/dev.c:3988) [ 99.999989][ C3] ? packet_rcv (net/packet/af_packet.c:2277) [ 100.000185][ C3] __netif_receive_skb_core.constprop.0 (net/core/dev.c:4084 net/core/dev.c:5528) [ 100.000432][ C3] ? kmem_cache_free (mm/slub.c:4579 mm/slub.c:4681) [ 100.000624][ C3] ? __pfx___netif_receive_skb_core.constprop.0 (net/core/dev.c:5455) [ 100.000866][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:228) [ 100.001056][ C3] ? mark_lock (kernel/locking/lockdep.c:4703 (discriminator 3)) [ 100.001202][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5202) [ 100.001395][ C3] ? process_backlog (./include/linux/local_lock_internal.h:38 net/core/dev.c:6111) [ 100.001595][ C3] ? lock_acquire.part.0 (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5827) [ 100.001787][ C3] ? process_backlog (./include/linux/local_lock_internal.h:38 net/core/dev.c:6111) [ 100.001977][ C3] ? process_backlog (./include/linux/local_lock_internal.h:38 net/core/dev.c:6111) [ 100.002170][ C3] __netif_receive_skb_one_core (net/core/dev.c:5667) [ 100.002412][ C3] ? __pfx___netif_receive_skb_one_core (net/core/dev.c:5661) [ 100.002654][ C3] ? process_backlog (./include/linux/local_lock_internal.h:38 net/core/dev.c:6111) [ 100.002846][ C3] ? lock_acquire (kernel/locking/lockdep.c:5798) [ 100.003035][ C3] ? process_backlog (./include/linux/local_lock_internal.h:38 net/core/dev.c:6111) [ 100.003227][ C3] process_backlog (./include/linux/rcupdate.h:878 net/core/dev.c:6114) [ 100.003422][ C3] __napi_poll.constprop.0 (net/core/dev.c:6884) [ 100.003614][ C3] net_rx_action (net/core/dev.c:6953 net/core/dev.c:7075) [ 100.003814][ C3] ? __pfx_net_rx_action (net/core/dev.c:7037) [ 100.004004][ C3] ? clockevents_program_event (kernel/time/clockevents.c:326) [ 100.004199][ C3] ? kvm_clock_get_cycles (./arch/x86/include/asm/preempt.h:94 arch/x86/kernel/kvmclock.c:80 arch/x86/kernel/kvmclock.c:86) [ 100.004393][ C3] ? ktime_get (kernel/time/timekeeping.c:195 (discriminator 4) kernel/time/timekeeping.c:395 (discriminator 4) kernel/time/timekeeping.c:403 (discriminator 4) kernel/time/timekeeping.c:850 (discriminator 4)) [ 100.004538][ C3] ? clockevents_program_event (kernel/time/clockevents.c:334 (discriminator 3)) [ 100.004776][ C3] ? hrtimer_interrupt (kernel/time/hrtimer.c:1830) [ 100.004983][ C3] handle_softirqs (kernel/softirq.c:554) [ 100.005177][ C3] ? __dev_queue_xmit (./include/linux/rcupdate.h:347 ./include/linux/rcupdate.h:917 net/core/dev.c:4457) [ 100.005376][ C3] do_softirq (kernel/softirq.c:455 kernel/softirq.c:442) [ 100.005521][ C3] [ 100.005621][ C3] [ 100.005719][ C3] __local_bh_enable_ip (kernel/softirq.c:382) [ 100.005912][ C3] ? __dev_queue_xmit (./include/linux/rcupdate.h:347 ./include/linux/rcupdate.h:917 net/core/dev.c:4457) [ 100.006102][ C3] __dev_queue_xmit (net/core/dev.c:4458) [ 100.006300][ C3] ? __pfx___dev_queue_xmit (net/core/dev.c:4339) [ 100.006492][ C3] ? packet_parse_headers (./include/linux/skbuff.h:3070 net/packet/af_packet.c:2006) [ 100.006691][ C3] ? __pfx_sock_alloc_send_pskb (net/core/sock.c:2845) [ 100.006883][ C3] ? __pfx_packet_parse_headers (net/packet/af_packet.c:1991) [ 100.007076][ C3] ? skb_copy_datagram_from_iter (net/core/datagram.c:564) [ 100.007319][ C3] ? dev_get_by_index (./include/linux/rcupdate.h:347 ./include/linux/rcupdate.h:880 net/core/dev.c:892) [ 100.007516][ C3] packet_snd (net/packet/af_packet.c:3146) [ 100.007715][ C3] ? __lock_release (kernel/locking/lockdep.c:5501) [ 100.007910][ C3] ? __might_fault (mm/memory.c:6700 mm/memory.c:6693) [ 100.008103][ C3] ? __pfx_packet_snd (net/packet/af_packet.c:3009) [ 100.008308][ C3] ? trace_lock_acquire (./include/trace/events/lock.h:24 (discriminator 52)) [ 100.008502][ C3] ? __might_fault (mm/memory.c:6700 mm/memory.c:6693) [ 100.008698][ C3] ? __might_fault (mm/memory.c:6700 mm/memory.c:6693) [ 100.008898][ C3] __sys_sendto (net/socket.c:729 net/socket.c:744 net/socket.c:2214) [ 100.009089][ C3] ? __pfx___sys_sendto (net/socket.c:2184) [ 100.009287][ C3] ? sock_ioctl (net/socket.c:1349) [ 100.009477][ C3] ? __pfx___lock_release (kernel/locking/lockdep.c:5477) [ 100.009671][ C3] ? __pfx___up_read (kernel/locking/rwsem.c:1337) [ 100.009865][ C3] ? do_user_addr_fault (./include/linux/rcupdate.h:347 ./include/linux/rcupdate.h:880 ./include/linux/mm.h:729 arch/x86/mm/fault.c:1340) [ 100.010064][ C3] ? do_user_addr_fault (./include/linux/rcupdate.h:882 ./include/linux/mm.h:729 arch/x86/mm/fault.c:1340) [ 100.010261][ C3] __x64_sys_sendto (net/socket.c:2222) [ 100.010452][ C3] ? lockdep_hardirqs_on_prepare (kernel/locking/lockdep.c:4347 kernel/locking/lockdep.c:4406) [ 100.010689][ C3] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 100.010888][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 100.011124][ C3] RIP: 0033:0x7f28c4d2985a [ 100.011321][ C3] Code: d8 64 89 02 48 c7 c0 ff ff ff ff eb b8 0f 1f 00 f3 0f 1e fa 41 89 ca 64 8b 04 25 18 00 00 00 85 c0 75 15 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 7e c3 0f 1f 44 00 00 41 54 48 83 ec 30 44 89 All code ======== 0: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 4: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax b: eb b8 jmp 0xffffffffffffffc5 d: 0f 1f 00 nopl (%rax) 10: f3 0f 1e fa endbr64 14: 41 89 ca mov %ecx,%r10d 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 15 jne 0x38 23: b8 2c 00 00 00 mov $0x2c,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 7e ja 0xb0 32: c3 ret 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 41 54 push %r12 3a: 48 83 ec 30 sub $0x30,%rsp 3e: 44 rex.R 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 7e ja 0x86 8: c3 ret 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 41 54 push %r12 10: 48 83 ec 30 sub $0x30,%rsp 14: 44 rex.R 15: 89 .byte 0x89 [ 100.012010][ C3] RSP: 002b:00007ffc3c30dc28 EFLAGS: 00000246 ORIG_RAX: 000000000000002c [ 100.012301][ C3] RAX: ffffffffffffffda RBX: 00000000360009d0 RCX: 00007f28c4d2985a [ 100.012591][ C3] RDX: 000000000000002a RSI: 0000000036000c92 RDI: 0000000000000005 [ 100.012879][ C3] RBP: 0000000036000c92 R08: 00007ffc3c30dc30 R09: 0000000000000014 [ 100.013168][ C3] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000000 [ 100.013462][ C3] R13: 000000000000002a R14: 00007ffc3c30dc30 R15: 0000000000000000 | [ 101.953298][ T63] br1: port 1(lag) entered disabled state | [ 102.965886][ T38] Oops: general protection fault, probably for non-canonical address 0xe0a9fc3960000056: 0000 [#1] PREEMPT SMP KASAN NOPTI | [ 102.966391][ T38] KASAN: maybe wild-memory-access in range [0x055001cb000002b0-0x055001cb000002b7] | [ 102.966915][ T38] Tainted: [B]=BAD_PAGE [ 102.967036][ T38] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 102.967356][ T38] Workqueue: events_unbound linkwatch_event [ 102.967572][ T38] RIP: 0010:neigh_flush_dev.isra.0 (./include/linux/list.h:988 ./include/linux/rculist.h:516 net/core/neighbour.c:384) [ 102.967762][ T38] Code: 0f 85 ef 04 00 00 49 8d 7f 08 49 8b 1f 48 89 f8 48 c1 e8 03 42 80 3c 28 00 0f 85 cc 04 00 00 49 8b 6f 08 48 89 e8 48 c1 e8 03 <42> 80 3c 28 00 0f 85 19 05 00 00 48 89 5d 00 48 85 db 74 1a 48 8d All code ======== 0: 0f 85 ef 04 00 00 jne 0x4f5 6: 49 8d 7f 08 lea 0x8(%r15),%rdi a: 49 8b 1f mov (%r15),%rbx d: 48 89 f8 mov %rdi,%rax 10: 48 c1 e8 03 shr $0x3,%rax 14: 42 80 3c 28 00 cmpb $0x0,(%rax,%r13,1) 19: 0f 85 cc 04 00 00 jne 0x4eb 1f: 49 8b 6f 08 mov 0x8(%r15),%rbp 23: 48 89 e8 mov %rbp,%rax 26: 48 c1 e8 03 shr $0x3,%rax 2a:* 42 80 3c 28 00 cmpb $0x0,(%rax,%r13,1) <-- trapping instruction 2f: 0f 85 19 05 00 00 jne 0x54e 35: 48 89 5d 00 mov %rbx,0x0(%rbp) 39: 48 85 db test %rbx,%rbx 3c: 74 1a je 0x58 3e: 48 rex.W 3f: 8d .byte 0x8d Code starting with the faulting instruction =========================================== 0: 42 80 3c 28 00 cmpb $0x0,(%rax,%r13,1) 5: 0f 85 19 05 00 00 jne 0x524 b: 48 89 5d 00 mov %rbx,0x0(%rbp) f: 48 85 db test %rbx,%rbx 12: 74 1a je 0x2e 14: 48 rex.W 15: 8d .byte 0x8d [ 102.968273][ T38] RSP: 0018:ffffc900002b7a08 EFLAGS: 00010207 [ 102.968450][ T38] RAX: 00aa003960000056 RBX: ffff8880066a7240 RCX: ffffffff9d0796f0 [ 102.968655][ T38] RDX: 0000000000000000 RSI: 0000000000000008 RDI: ffff8880082a2808 [ 102.968867][ T38] RBP: 055001cb000002b7 R08: 0000000000000000 R09: 0000000000000000 [ 102.969084][ T38] R10: ffffffff9f571f0f R11: ffffc900002b7619 R12: ffff8880082a293c [ 102.969291][ T38] R13: dffffc0000000000 R14: ffff8880083f2000 R15: ffff8880082a2800 [ 102.969498][ T38] FS: 0000000000000000(0000) GS:ffff88802f480000(0000) knlGS:0000000000000000 [ 102.969741][ T38] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 102.969921][ T38] CR2: 0000559835991398 CR3: 0000000033326005 CR4: 0000000000772ef0 [ 102.970148][ T38] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 102.970356][ T38] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 102.970562][ T38] PKRU: 55555554 [ 102.970669][ T38] Call Trace: [ 102.970778][ T38] [ 102.970850][ T38] ? die_addr (arch/x86/kernel/dumpstack.c:421 arch/x86/kernel/dumpstack.c:460) [ 102.970961][ T38] ? exc_general_protection (arch/x86/kernel/traps.c:751 arch/x86/kernel/traps.c:693) [ 102.971107][ T38] ? asm_exc_general_protection (./arch/x86/include/asm/idtentry.h:617) [ 102.971246][ T38] ? neigh_flush_dev.isra.0 (./include/linux/list.h:986 ./include/linux/rculist.h:516 net/core/neighbour.c:384) [ 102.971389][ T38] ? neigh_flush_dev.isra.0 (./include/linux/list.h:988 ./include/linux/rculist.h:516 net/core/neighbour.c:384) [ 102.971550][ T38] ? neigh_flush_dev.isra.0 (./include/linux/list.h:986 ./include/linux/rculist.h:516 net/core/neighbour.c:384) [ 102.971689][ T38] ? lock_acquire (kernel/locking/lockdep.c:5798) [ 102.971831][ T38] __neigh_ifdown.isra.0 (net/core/neighbour.c:826 net/core/neighbour.c:426) [ 102.971974][ T38] neigh_carrier_down (net/core/neighbour.c:438) [ 102.972112][ T38] arp_netdev_event (net/ipv4/arp.c:1343) [ 102.972258][ T38] ? trace_notifier_run (./include/trace/events/notifier.h:59 (discriminator 52)) [ 102.972398][ T38] notifier_call_chain (kernel/notifier.c:93 (discriminator 2)) [ 102.972537][ T38] netdev_state_change (net/core/dev.c:1380 net/core/dev.c:1371) [ 102.972678][ T38] ? __pfx_netdev_state_change (net/core/dev.c:1372) [ 102.972814][ T38] ? dev_deactivate (./include/linux/list.h:111 ./include/linux/list.h:215 ./include/linux/list.h:229 net/sched/sch_generic.c:1404) [ 102.972952][ T38] ? trace_lock_release (./include/trace/events/lock.h:69 (discriminator 52)) [ 102.973090][ T38] linkwatch_do_dev (net/core/link_watch.c:177) [ 102.973233][ T38] __linkwatch_run_queue (./include/linux/spinlock.h:376 net/core/link_watch.c:236) [ 102.973374][ T38] ? trace_lock_acquire (./include/trace/events/lock.h:24 (discriminator 52)) [ 102.973526][ T38] ? __pfx___linkwatch_run_queue (net/core/link_watch.c:186) [ 102.973697][ T38] ? process_one_work (kernel/workqueue.c:3205) [ 102.973838][ T38] ? lock_acquire (kernel/locking/lockdep.c:5798) [ 102.973974][ T38] linkwatch_event (net/core/link_watch.c:278) [ 102.974109][ T38] process_one_work (kernel/workqueue.c:3229) [ 102.974246][ T38] ? __pfx___lock_release (kernel/locking/lockdep.c:5477) [ 102.974384][ T38] ? __pfx_process_one_work (kernel/workqueue.c:3131) [ 102.974527][ T38] ? assign_work (kernel/workqueue.c:1200) [ 102.974668][ T38] worker_thread (kernel/workqueue.c:3304 kernel/workqueue.c:3391) [ 102.974806][ T38] ? __pfx_worker_thread (kernel/workqueue.c:3337) [ 102.974956][ T38] kthread (kernel/kthread.c:389) [ 102.975060][ T38] ? __pfx_kthread (kernel/kthread.c:342) [ 102.975198][ T38] ret_from_fork (arch/x86/kernel/process.c:147) [ 102.975339][ T38] ? __pfx_kthread (kernel/kthread.c:342) Finger prints: neigh_carrier_down:arp_netdev_event:notifier_call_chain:netdev_state_change:linkwatch_do_dev print_report:kasan_report:___neigh_create:ip_finish_output2:ip_output