====================================== | [ 33.059259][ C2] #0: ffffffffa5d42e30 (remove_cache_srcu){.+.+}-{0:0}, at: kasan_quarantine_reduce (./include/linux/srcu.h:164 ./include/linux/srcu.h:256 mm/kasan/quarantine.c:259) | [ 33.059705][ C2] #1: ffffc90000238ae8 ((&n->timer)){+.-.}-{0:0}, at: call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1779) | [ 33.060071][ C2] | [ 33.060071][ C2] stack backtrace: [ 33.060329][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 33.060331][ C2] Call Trace: [ 33.060334][ C2] [ 33.060337][ C2] dump_stack_lvl (lib/dump_stack.c:123) [ 33.060345][ C2] lockdep_rcu_suspicious (kernel/locking/lockdep.c:6848) [ 33.060356][ C2] __icmp_send (./include/net/net_namespace.h:404 ./include/linux/netdevice.h:2669 net/ipv4/icmp.c:616) [ 33.060367][ C2] ? is_bpf_text_address (kernel/bpf/core.c:777) [ 33.060376][ C2] ? kernel_text_address (kernel/extable.c:97 kernel/extable.c:94) [ 33.060387][ C2] ? __pfx___icmp_send (net/ipv4/icmp.c:596) [ 33.060389][ C2] ? unwind_get_return_address (arch/x86/kernel/unwind_orc.c:369 arch/x86/kernel/unwind_orc.c:364) [ 33.060395][ C2] ? write_profile (kernel/profile.c:194) [ 33.060400][ C2] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:26) [ 33.060414][ C2] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 33.060420][ C2] ? validate_chain (kernel/locking/lockdep.c:3799 kernel/locking/lockdep.c:3819 kernel/locking/lockdep.c:3874) [ 33.060432][ C2] ? __pfx_validate_chain (kernel/locking/lockdep.c:3862) [ 33.060436][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:230) [ 33.060440][ C2] ? mark_lock (kernel/locking/lockdep.c:4729 (discriminator 3)) [ 33.060449][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5228) [ 33.060458][ C2] ipv4_send_dest_unreach (net/ipv4/route.c:1241) [ 33.060465][ C2] ? neigh_invalidate (net/core/neighbour.c:1008) [ 33.060471][ C2] ? __pfx_ipv4_send_dest_unreach (net/ipv4/route.c:1215) [ 33.060484][ C2] ipv4_link_failure (./include/linux/skbuff.h:1152 ./include/net/route.h:88 net/ipv4/route.c:1250) [ 33.060489][ C2] arp_error_report (./include/net/dst.h:429 net/ipv4/arp.c:296) [ 33.060497][ C2] neigh_invalidate (net/core/neighbour.c:1008) [ 33.060506][ C2] neigh_timer_handler (net/core/neighbour.c:1109 (discriminator 2)) [ 33.060516][ C2] ? __pfx_neigh_timer_handler (net/core/neighbour.c:1032) [ 33.060519][ C2] call_timer_fn (kernel/time/timer.c:1789) [ 33.060522][ C2] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1779) [ 33.060525][ C2] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1779) [ 33.060529][ C2] ? __pfx_call_timer_fn (kernel/time/timer.c:1766) [ 33.060532][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:230) [ 33.060540][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4323) [ 33.060551][ C2] __run_timers (kernel/time/timer.c:1841 kernel/time/timer.c:2414) [ 33.060554][ C2] ? __pfx_neigh_timer_handler (net/core/neighbour.c:1032) [ 33.060566][ C2] ? __pfx___run_timers (kernel/time/timer.c:2385) [ 33.060569][ C2] ? __lock_release (kernel/locking/lockdep.c:5527) [ 33.060576][ C2] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 33.060584][ C2] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 33.060588][ C2] ? lock_acquire (kernel/locking/lockdep.c:5824) [ 33.060591][ C2] ? timer_expire_remote (kernel/time/timer.c:2426 kernel/time/timer.c:2418 kernel/time/timer.c:2177) [ 33.060601][ C2] timer_expire_remote (kernel/time/timer.c:2427 kernel/time/timer.c:2418 kernel/time/timer.c:2177) [ 33.060605][ C2] tmigr_handle_remote_cpu (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:87 ./arch/x86/include/asm/irqflags.h:147 kernel/time/timer_migration.c:961) [ 33.060613][ C2] ? __pfx_tmigr_handle_remote_cpu (kernel/time/timer_migration.c:905) [ 33.060616][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5503) [ 33.060621][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:230) [ 33.060624][ C2] ? mark_lock (kernel/locking/lockdep.c:4729 (discriminator 3)) [ 33.060630][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4323) [ 33.060641][ C2] tmigr_handle_remote_up (kernel/time/timer_migration.c:1038) [ 33.060647][ C2] ? __pfx_tmigr_handle_remote_up (kernel/time/timer_migration.c:1005) [ 33.060652][ C2] __walk_groups.isra.0 (kernel/time/timer_migration.c:533) [ 33.060663][ C2] tmigr_handle_remote (kernel/time/timer_migration.c:1096) [ 33.060668][ C2] ? __pfx_tmigr_handle_remote (kernel/time/timer_migration.c:1059) [ 33.060672][ C2] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:230) [ 33.060680][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4323) [ 33.060689][ C2] handle_softirqs (kernel/softirq.c:561) [ 33.060702][ C2] __irq_exit_rcu (kernel/softirq.c:596 kernel/softirq.c:435 kernel/softirq.c:662) [ 33.060706][ C2] irq_exit_rcu (kernel/softirq.c:680) [ 33.060709][ C2] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 33.060715][ C2] [ 33.060716][ C2] [ 33.060718][ C2] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 33.060724][ C2] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 33.060728][ C2] Code: 10 e8 81 74 88 fd 48 89 ef e8 c9 e4 88 fd 81 e3 00 02 00 00 75 1d 9c 58 f6 c4 02 75 29 48 85 db 74 01 fb 65 ff 0d 75 7d 50 5b <74> 0e 5b 5d c3 cc cc cc cc e8 8f 03 ae fd eb dc 0f 1f 44 00 00 5b All code ======== 0: 10 e8 adc %ch,%al 2: 81 74 88 fd 48 89 ef xorl $0xe8ef8948,-0x3(%rax,%rcx,4) 9: e8 a: c9 leave b: e4 88 in $0x88,%al d: fd std e: 81 e3 00 02 00 00 and $0x200,%ebx 14: 75 1d jne 0x33 16: 9c pushf 17: 58 pop %rax 18: f6 c4 02 test $0x2,%ah 1b: 75 29 jne 0x46 1d: 48 85 db test %rbx,%rbx 20: 74 01 je 0x23 22: fb sti 23: 65 ff 0d 75 7d 50 5b decl %gs:0x5b507d75(%rip) # 0x5b507d9f 2a:* 74 0e je 0x3a <-- trapping instruction 2c: 5b pop %rbx 2d: 5d pop %rbp 2e: c3 ret 2f: cc int3 30: cc int3 31: cc int3 32: cc int3 33: e8 8f 03 ae fd call 0xfffffffffdae03c7 38: eb dc jmp 0x16 3a: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 3f: 5b pop %rbx Code starting with the faulting instruction =========================================== 0: 74 0e je 0x10 2: 5b pop %rbx 3: 5d pop %rbp 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: e8 8f 03 ae fd call 0xfffffffffdae039d e: eb dc jmp 0xffffffffffffffec 10: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 15: 5b pop %rbx [ 33.060731][ C2] RSP: 0018:ffffc90000517648 EFLAGS: 00000286 [ 33.060734][ C2] RAX: 0000000000000002 RBX: 0000000000000200 RCX: 1ffffffff4f864c3 [ 33.060736][ C2] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ffffffffa4b34761 [ 33.060738][ C2] RBP: ffff888001040900 R08: 0000000000000001 R09: fffffbfff4f843e5 [ 33.060740][ C2] R10: ffffffffa7c21f2f R11: ffff88800daa0040 R12: ffff88800dcb5700 [ 33.060741][ C2] R13: 0000000000000000 R14: ffffc90000517698 R15: ffff88800b6d22e4 [ 33.060753][ C2] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 33.060761][ C2] qlist_free_all (mm/kasan/quarantine.c:174) [ 33.060769][ C2] kasan_quarantine_reduce (./include/linux/srcu.h:357 mm/kasan/quarantine.c:287) [ 33.060775][ C2] __kasan_slab_alloc (mm/kasan/common.c:329) [ 33.060784][ C2] kmem_cache_alloc_node_noprof (mm/slub.c:4116 mm/slub.c:4164 mm/slub.c:4216) [ 33.060805][ C2] __alloc_skb (net/core/skbuff.c:668) [ 33.060815][ C2] ? __pfx___alloc_skb (net/core/skbuff.c:651) [ 33.060823][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5228) [ 33.060834][ C2] alloc_skb_with_frags (./include/linux/skbuff.h:1331 net/core/skbuff.c:6612) [ 33.060840][ C2] ? find_held_lock (kernel/locking/lockdep.c:5341) [ 33.060850][ C2] sock_alloc_send_pskb (net/core/sock.c:2899) [ 33.060855][ C2] ? __pfx_lock_acquire.part.0 (kernel/locking/lockdep.c:5816) [ 33.060860][ C2] ? find_held_lock (kernel/locking/lockdep.c:5341) [ 33.060871][ C2] ? __pfx_sock_alloc_send_pskb (net/core/sock.c:2870) [ 33.060877][ C2] ? rt_is_expired (net/ipv4/route.c:400) [ 33.060881][ C2] ? __mkroute_output (./arch/x86/include/asm/atomic.h:79 ./include/linux/atomic/atomic-arch-fallback.h:2401 ./include/linux/atomic/atomic-instrumented.h:1476 ./include/linux/rcuref.h:67 ./include/net/dst.h:302 net/ipv4/route.c:2626) [ 33.060886][ C2] ? ip_route_output_key_hash (./include/linux/rcupdate.h:347 ./include/linux/rcupdate.h:880 net/ipv4/route.c:2683) [ 33.060896][ C2] raw_send_hdrinc (./include/net/sock.h:1804 net/ipv4/raw.c:353) [ 33.060910][ C2] ? __pfx_raw_send_hdrinc (net/ipv4/raw.c:330) [ 33.060924][ C2] raw_sendmsg (net/ipv4/raw.c:644) [ 33.060928][ C2] ? mark_lock_irq (kernel/locking/lockdep.c:2673 kernel/locking/lockdep.c:4153 kernel/locking/lockdep.c:4292) [ 33.060939][ C2] ? __pfx_raw_sendmsg (net/ipv4/raw.c:483) [ 33.060943][ C2] ? synchronize_rcu_tasks_trace (./include/linux/lockdep.h:249 kernel/rcu/tasks.h:2040) [ 33.060962][ C2] ? __lock_release (kernel/locking/lockdep.c:5527) [ 33.060964][ C2] ? __might_fault (mm/memory.c:6840 mm/memory.c:6833) [ 33.060972][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5503) [ 33.060976][ C2] ? trace_lock_acquire (./include/trace/events/lock.h:24 (discriminator 21)) [ 33.060978][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5228) [ 33.060985][ C2] ? lock_acquire (kernel/locking/lockdep.c:5824) [ 33.060987][ C2] ? __might_fault (mm/memory.c:6840 mm/memory.c:6833) [ 33.060993][ C2] ? __might_fault (mm/memory.c:6840 mm/memory.c:6833) [ 33.061003][ C2] __sys_sendto (net/socket.c:713 net/socket.c:728 net/socket.c:2182) [ 33.061011][ C2] ? __pfx___sys_sendto (net/socket.c:2149) [ 33.061014][ C2] ? __pfx___lock_release (kernel/locking/lockdep.c:5503) [ 33.061017][ C2] ? trace_lock_acquire (./include/trace/events/lock.h:24 (discriminator 21)) [ 33.061030][ C2] ? rseq_update_cpu_node_id (kernel/rseq.c:188 (discriminator 10)) [ 33.061037][ C2] ? __rseq_handle_notify_resume (kernel/rseq.c:420) [ 33.061043][ C2] ? __pfx___rseq_handle_notify_resume (kernel/rseq.c:403) [ 33.061051][ C2] ? __pfx___rseq_handle_notify_resume (kernel/rseq.c:403) [ 33.061061][ C2] __x64_sys_sendto (net/socket.c:2185) [ 33.061065][ C2] ? lockdep_hardirqs_on_prepare (kernel/locking/lockdep.c:4349 kernel/locking/lockdep.c:4408) [ 33.061070][ C2] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 33.061077][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 33.061081][ C2] RIP: 0033:0x7fc6252f5a4a [ 33.061085][ C2] Code: d8 64 89 02 48 c7 c0 ff ff ff ff eb b8 0f 1f 00 f3 0f 1e fa 41 89 ca 64 8b 04 25 18 00 00 00 85 c0 75 15 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 7e c3 0f 1f 44 00 00 41 54 48 83 ec 30 44 89 All code ======== 0: d8 64 89 02 fsubs 0x2(%rcx,%rcx,4) 4: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax b: eb b8 jmp 0xffffffffffffffc5 d: 0f 1f 00 nopl (%rax) 10: f3 0f 1e fa endbr64 14: 41 89 ca mov %ecx,%r10d 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 15 jne 0x38 23: b8 2c 00 00 00 mov $0x2c,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 7e ja 0xb0 32: c3 ret 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 41 54 push %r12 3a: 48 83 ec 30 sub $0x30,%rsp 3e: 44 rex.R 3f: 89 .byte 0x89 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 7e ja 0x86 8: c3 ret 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 41 54 push %r12 10: 48 83 ec 30 sub $0x30,%rsp 14: 44 rex.R 15: 89 .byte 0x89 [ 33.061088][ C2] RSP: 002b:00007ffc888478e8 EFLAGS: 00000246 ORIG_RAX: 000000000000002c [ 33.061090][ C2] RAX: ffffffffffffffda RBX: 00000000303e09d0 RCX: 00007fc6252f5a4a [ 33.061092][ C2] RDX: 000000000000005c RSI: 00000000303e05c0 RDI: 0000000000000005 [ 33.061094][ C2] RBP: 00000000303e09d0 R08: 00007ffc888478f0 R09: 0000000000000010 [ 33.061096][ C2] R10: 0000000000000000 R11: 0000000000000246 R12: 000000000000005c [ 33.061097][ C2] R13: 0000000000000032 R14: 0000000000000000 R15: 0000000000000000 | [ 68.772951][ C3] #1: ffffffffa5d42e30 (remove_cache_srcu){.+.+}-{0:0}, at: kasan_quarantine_reduce (./include/linux/srcu.h:164 ./include/linux/srcu.h:256 mm/kasan/quarantine.c:259) | [ 68.773615][ C3] #2: ffffc90000290d60 ((&n->timer)){+.-.}-{0:0}, at: call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1779) | [ 68.774191][ C3] | [ 68.774191][ C3] stack backtrace: [ 68.774665][ C3] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 68.774669][ C3] Call Trace: [ 68.774672][ C3] [ 68.774676][ C3] dump_stack_lvl (lib/dump_stack.c:123) [ 68.774688][ C3] lockdep_rcu_suspicious (kernel/locking/lockdep.c:6848) [ 68.774704][ C3] icmp6_send (./include/net/net_namespace.h:404 ./include/linux/netdevice.h:2669 net/ipv6/icmp.c:476) [ 68.774739][ C3] ? __pfx_icmp6_send (net/ipv6/icmp.c:452) [ 68.774754][ C3] ? __pfx_validate_chain (kernel/locking/lockdep.c:3862) [ 68.774762][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:230) [ 68.774768][ C3] ? mark_lock (kernel/locking/lockdep.c:4729 (discriminator 3)) [ 68.774786][ C3] ? __lock_acquire (kernel/locking/lockdep.c:5228) [ 68.774797][ C3] ? find_held_lock (kernel/locking/lockdep.c:5341) [ 68.774808][ C3] ? __lock_release (kernel/locking/lockdep.c:5527) [ 68.774813][ C3] ? neigh_invalidate (net/core/neighbour.c:1008) [ 68.774821][ C3] ? __pfx___lock_release (kernel/locking/lockdep.c:5503) [ 68.774827][ C3] ? lock_acquire.part.0 (kernel/locking/lockdep.c:469 kernel/locking/lockdep.c:5853) [ 68.774849][ C3] ip6_link_failure (./include/linux/skbuff.h:1152 net/ipv6/route.c:2801) [ 68.774863][ C3] ndisc_error_report (./include/net/dst.h:429 net/ipv6/ndisc.c:731) [ 68.774877][ C3] neigh_invalidate (net/core/neighbour.c:1008) [ 68.774895][ C3] neigh_timer_handler (net/core/neighbour.c:1109 (discriminator 2)) [ 68.774913][ C3] ? __pfx_neigh_timer_handler (net/core/neighbour.c:1032) [ 68.774918][ C3] call_timer_fn (kernel/time/timer.c:1789) [ 68.774924][ C3] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1779) [ 68.774927][ C3] ? call_timer_fn (./include/linux/lockdep.h:31 kernel/time/timer.c:1779) [ 68.774935][ C3] ? __pfx_call_timer_fn (kernel/time/timer.c:1766) [ 68.774940][ C3] ? hlock_class (./arch/x86/include/asm/bitops.h:227 ./arch/x86/include/asm/bitops.h:239 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 kernel/locking/lockdep.c:230) [ 68.774956][ C3] ? mark_held_locks (kernel/locking/lockdep.c:4323) [ 68.774975][ C3] __run_timers (kernel/time/timer.c:1841 kernel/time/timer.c:2414) [ 68.774981][ C3] ? __pfx_neigh_timer_handler (net/core/neighbour.c:1032) [ 68.774999][ C3] ? __pfx___run_timers (kernel/time/timer.c:2385) [ 68.775003][ C3] ? clockevents_program_event (kernel/time/clockevents.c:326) [ 68.775021][ C3] ? do_raw_spin_lock (./arch/x86/include/asm/atomic.h:107 ./include/linux/atomic/atomic-arch-fallback.h:2170 ./include/linux/atomic/atomic-instrumented.h:1302 ./include/asm-generic/qspinlock.h:111 kernel/locking/spinlock_debug.c:116) [ 68.775030][ C3] ? __pfx_do_raw_spin_lock (kernel/locking/spinlock_debug.c:114) [ 68.775037][ C3] ? lock_acquire (kernel/locking/lockdep.c:5824) [ 68.775041][ C3] ? run_timer_softirq (kernel/time/timer.c:2426 kernel/time/timer.c:2418 kernel/time/timer.c:2435 kernel/time/timer.c:2445) [ 68.775059][ C3] run_timer_softirq (kernel/time/timer.c:2427 kernel/time/timer.c:2418 kernel/time/timer.c:2435 kernel/time/timer.c:2445) [ 68.775068][ C3] handle_softirqs (kernel/softirq.c:561) [ 68.775090][ C3] __irq_exit_rcu (kernel/softirq.c:596 kernel/softirq.c:435 kernel/softirq.c:662) [ 68.775094][ C3] irq_exit_rcu (kernel/softirq.c:680) [ 68.775098][ C3] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 68.775104][ C3] [ 68.775106][ C3] [ 68.775110][ C3] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 68.775116][ C3] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 68.775123][ C3] Code: 10 e8 81 74 88 fd 48 89 ef e8 c9 e4 88 fd 81 e3 00 02 00 00 75 1d 9c 58 f6 c4 02 75 29 48 85 db 74 01 fb 65 ff 0d 75 7d 50 5b <74> 0e 5b 5d c3 cc cc cc cc e8 8f 03 ae fd eb dc 0f 1f 44 00 00 5b All code ======== 0: 10 e8 adc %ch,%al 2: 81 74 88 fd 48 89 ef xorl $0xe8ef8948,-0x3(%rax,%rcx,4) 9: e8 a: c9 leave b: e4 88 in $0x88,%al d: fd std e: 81 e3 00 02 00 00 and $0x200,%ebx 14: 75 1d jne 0x33 16: 9c pushf 17: 58 pop %rax 18: f6 c4 02 test $0x2,%ah 1b: 75 29 jne 0x46 1d: 48 85 db test %rbx,%rbx 20: 74 01 je 0x23 22: fb sti 23: 65 ff 0d 75 7d 50 5b decl %gs:0x5b507d75(%rip) # 0x5b507d9f 2a:* 74 0e je 0x3a <-- trapping instruction 2c: 5b pop %rbx 2d: 5d pop %rbp 2e: c3 ret 2f: cc int3 30: cc int3 31: cc int3 32: cc int3 33: e8 8f 03 ae fd call 0xfffffffffdae03c7 38: eb dc jmp 0x16 3a: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 3f: 5b pop %rbx Code starting with the faulting instruction =========================================== 0: 74 0e je 0x10 2: 5b pop %rbx 3: 5d pop %rbp 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: e8 8f 03 ae fd call 0xfffffffffdae039d e: eb dc jmp 0xffffffffffffffec 10: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 15: 5b pop %rbx [ 68.775127][ C3] RSP: 0018:ffffc90001107878 EFLAGS: 00000286 [ 68.775133][ C3] RAX: 0000000000000006 RBX: 0000000000000200 RCX: 1ffffffff4f864c3 [ 68.775136][ C3] RDX: 0000000000000000 RSI: 0000000000000000 RDI: ffffffffa4b34761 [ 68.775139][ C3] RBP: ffff88800104f440 R08: 0000000000000001 R09: fffffbfff4f843e5 [ 68.775142][ C3] R10: ffffffffa7c21f2f R11: ffff88800dfe8040 R12: ffff88800569b5f8 [ 68.775145][ C3] R13: 0000000000000000 R14: ffffc900011078c8 R15: ffff88800569a4e8 [ 68.775167][ C3] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 68.775182][ C3] qlist_free_all (mm/kasan/quarantine.c:174) [ 68.775196][ C3] kasan_quarantine_reduce (./include/linux/srcu.h:357 mm/kasan/quarantine.c:287) [ 68.775207][ C3] __kasan_slab_alloc (mm/kasan/common.c:329) [ 68.775219][ C3] kmem_cache_alloc_noprof (./include/linux/kasan.h:250 mm/slub.c:4115 mm/slub.c:4164 mm/slub.c:4171) [ 68.775226][ C3] ? vma_merge_new_range (mm/vma.c:987) [ 68.775244][ C3] vm_area_alloc (kernel/fork.c:472) [ 68.775252][ C3] __mmap_region (mm/vma.c:2342 mm/vma.c:2457) [ 68.775268][ C3] ? __pfx___mmap_region (mm/vma.c:2437) [ 68.775273][ C3] ? mas_prev (lib/maple_tree.c:5840 lib/maple_tree.c:5833) [ 68.775291][ C3] ? mas_find (lib/maple_tree.c:6020) [ 68.775320][ C3] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 68.775327][ C3] ? validate_chain (kernel/locking/lockdep.c:3799 kernel/locking/lockdep.c:3819 kernel/locking/lockdep.c:3874) [ 68.775407][ C3] ? mmap_region (./arch/x86/include/asm/bitops.h:206 ./arch/x86/include/asm/bitops.h:238 ./include/asm-generic/bitops/instrumented-non-atomic.h:142 ./include/linux/mman.h:204 mm/vma.c:2519) [ 68.775425][ C3] do_mmap (mm/mmap.c:561) [ 68.775446][ C3] ? __pfx_do_mmap (mm/mmap.c:342) [ 68.775450][ C3] ? down_write_killable (./arch/x86/include/asm/atomic64_64.h:20 ./include/linux/atomic/atomic-arch-fallback.h:2629 ./include/linux/atomic/atomic-long.h:79 ./include/linux/atomic/atomic-instrumented.h:3224 kernel/locking/rwsem.c:143 kernel/locking/rwsem.c:268 kernel/locking/rwsem.c:1303 kernel/locking/rwsem.c:1318 kernel/locking/rwsem.c:1590) [ 68.775459][ C3] ? __pfx_down_write_killable (kernel/locking/rwsem.c:1586) [ 68.775468][ C3] ? __lock_release (kernel/locking/lockdep.c:5527) [ 68.775482][ C3] vm_mmap_pgoff (mm/util.c:575) [ 68.775503][ C3] ? __pfx_vm_mmap_pgoff (mm/util.c:565) [ 68.775518][ C3] ? __fget_files (fs/file.c:1054) [ 68.775539][ C3] ksys_mmap_pgoff (mm/mmap.c:607) [ 68.775557][ C3] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 68.775571][ C3] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 68.775576][ C3] RIP: 0033:0x7fcf6cc01116 [ 68.775583][ C3] Code: 5d 41 5c c3 f3 0f 1e fa 41 f7 c1 ff 0f 00 00 75 2b 55 48 89 fd 53 89 cb 48 85 ff 74 37 41 89 da 48 89 ef b8 09 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 62 5b 5d c3 0f 1f 80 00 00 00 00 c7 05 ae f0 All code ======== 0: 5d pop %rbp 1: 41 5c pop %r12 3: c3 ret 4: f3 0f 1e fa endbr64 8: 41 f7 c1 ff 0f 00 00 test $0xfff,%r9d f: 75 2b jne 0x3c 11: 55 push %rbp 12: 48 89 fd mov %rdi,%rbp 15: 53 push %rbx 16: 89 cb mov %ecx,%ebx 18: 48 85 ff test %rdi,%rdi 1b: 74 37 je 0x54 1d: 41 89 da mov %ebx,%r10d 20: 48 89 ef mov %rbp,%rdi 23: b8 09 00 00 00 mov $0x9,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 62 ja 0x94 32: 5b pop %rbx 33: 5d pop %rbp 34: c3 ret 35: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 3c: c7 .byte 0xc7 3d: 05 .byte 0x5 3e: ae scas %es:(%rdi),%al 3f: f0 lock Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 62 ja 0x6a 8: 5b pop %rbx 9: 5d pop %rbp a: c3 ret b: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 12: c7 .byte 0xc7 13: 05 .byte 0x5 14: ae scas %es:(%rdi),%al 15: f0 lock [ 68.775586][ C3] RSP: 002b:00007fffdbf0e0d8 EFLAGS: 00000246 ORIG_RAX: 0000000000000009 [ 68.775591][ C3] RAX: ffffffffffffffda RBX: 0000000000000802 RCX: 00007fcf6cc01116 [ 68.775594][ C3] RDX: 0000000000000001 RSI: 0000000000207f90 RDI: 0000000000000000 [ 68.775597][ C3] RBP: 0000000000000000 R08: 0000000000000005 R09: 0000000000000000 [ 68.775600][ C3] R10: 0000000000000802 R11: 0000000000000246 R12: 0000000000000fff Finger prints: lockdep_rcu_suspicious:__icmp_send:ipv4_send_dest_unreach:ipv4_link_failure:arp_error_report lockdep_rcu_suspicious:icmp6_send:ip6_link_failure:ndisc_error_report:neigh_invalidate