====================================== | [ 1164.784332] #6: ffffffffa4d678c0 (rcu_read_lock){....}-{1:2}, at: netif_receive_skb (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5729 net/core/dev.c:5801) | [ 1164.784784] #7: ffffffffa4d678c0 (rcu_read_lock){....}-{1:2}, at: ip_local_deliver_finish (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/ipv4/ip_input.c:232) | [ 1164.785243] | [ 1164.785243] stack backtrace: [ 1164.785838] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 1164.786411] Call Trace: [ 1164.786541] [ 1164.786652] dump_stack_lvl (lib/dump_stack.c:108) [ 1164.786844] __lock_acquire (kernel/locking/lockdep.c:5138) [ 1164.787056] ? sk_filter_trim_cap (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/filter.c:151) [ 1164.787277] lock_acquire (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756 kernel/locking/lockdep.c:5719) [ 1164.787463] ? tcp_v4_rcv (./include/linux/skbuff.h:1624 ./include/net/tcp.h:2512 net/ipv4/tcp_ipv4.c:2327) [ 1164.787653] ? sk_filter_trim_cap (net/core/filter.c:165) [ 1164.787878] _raw_spin_lock_nested (kernel/locking/spinlock.c:379) [ 1164.788109] ? tcp_v4_rcv (./include/linux/skbuff.h:1624 ./include/net/tcp.h:2512 net/ipv4/tcp_ipv4.c:2327) [ 1164.788298] tcp_v4_rcv (./include/linux/skbuff.h:1624 ./include/net/tcp.h:2512 net/ipv4/tcp_ipv4.c:2327) [ 1164.788480] ip_protocol_deliver_rcu (net/ipv4/ip_input.c:205 (discriminator 1)) [ 1164.788712] ip_local_deliver_finish (./include/linux/rcupdate.h:779 net/ipv4/ip_input.c:234) [ 1164.788945] __netif_receive_skb_one_core (net/core/dev.c:5542 (discriminator 4)) [ 1164.789194] netif_receive_skb (net/core/dev.c:5742 net/core/dev.c:5801) [ 1164.789401] tcf_mirred_to_dev (net/sched/act_mirred.c:327) act_mirred [ 1164.789670] tcf_mirred_act (net/sched/act_mirred.c:459 (discriminator 2)) act_mirred [ 1164.789921] ? tcf_skbedit_act (net/sched/act_skbedit.c:51 (discriminator 3)) act_skbedit [ 1164.790192] tcf_action_exec (./include/net/tc_wrapper.h:130 net/sched/act_api.c:1100 net/sched/act_api.c:1074) [ 1164.790421] fl_classify (net/sched/cls_flower.c:345) cls_flower [ 1164.790667] ? __bfs (kernel/locking/lockdep.c:1787) [ 1164.790834] ? check_irq_usage (kernel/locking/lockdep.c:2823) [ 1164.791055] ? lock_acquire (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756 kernel/locking/lockdep.c:5719) [ 1164.791265] ? __skb_flow_dissect (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/flow_dissector.c:1101) [ 1164.791511] ? check_path.constprop.0 (kernel/locking/lockdep.c:2145) [ 1164.791742] ? check_noncircular (kernel/locking/lockdep.c:2172) [ 1164.791968] ? __lock_acquire (kernel/locking/lockdep.c:5133 (discriminator 1)) [ 1164.792184] tcf_classify (./include/net/tc_wrapper.h:197 net/sched/cls_api.c:1734 net/sched/cls_api.c:1830) [ 1164.792402] tc_run (net/core/dev.c:3945) [ 1164.792566] __dev_queue_xmit (net/core/dev.c:4069 net/core/dev.c:4301) [ 1164.792776] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 1164.792979] ? eth_header (net/ethernet/eth.c:85) [ 1164.793161] ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 1164.793396] ? ip_skb_dst_mtu (./include/net/net_namespace.h:383 ./include/linux/netdevice.h:2651 ./include/net/ip.h:465 ./include/net/ip.h:502) [ 1164.793599] ? __ip_queue_xmit (net/ipv4/ip_output.c:535) [ 1164.793820] __ip_queue_xmit (net/ipv4/ip_output.c:535) [ 1164.794029] __tcp_transmit_skb (net/ipv4/tcp_output.c:1462 (discriminator 4)) [ 1164.794252] ? __alloc_skb (net/core/skbuff.c:685) [ 1164.794457] tcp_rcv_state_process (net/ipv4/tcp_input.c:6885) [ 1164.794708] ? lock_acquire (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756 kernel/locking/lockdep.c:5719) [ 1164.794902] ? tcp_v4_rcv (./include/linux/skbuff.h:1624 ./include/net/tcp.h:2512 net/ipv4/tcp_ipv4.c:2327) [ 1164.795103] ? tcp_v4_do_rcv (net/ipv4/tcp_ipv4.c:1930) [ 1164.795312] tcp_v4_do_rcv (net/ipv4/tcp_ipv4.c:1930) [ 1164.795505] tcp_v4_rcv (net/ipv4/tcp_ipv4.c:2330) [ 1164.795701] ? process_backlog (net/core/dev.c:5978 (discriminator 2)) [ 1164.795928] ip_protocol_deliver_rcu (net/ipv4/ip_input.c:205 (discriminator 1)) [ 1164.796161] ip_local_deliver_finish (./include/linux/rcupdate.h:779 net/ipv4/ip_input.c:234) [ 1164.796406] __netif_receive_skb_one_core (net/core/dev.c:5542 (discriminator 4)) [ 1164.796656] process_backlog (./include/linux/rcupdate.h:779 net/core/dev.c:5985) [ 1164.796859] __napi_poll.constprop.0 (net/core/dev.c:6584) [ 1164.797108] net_rx_action (net/core/dev.c:6655 net/core/dev.c:6786) [ 1164.797302] __do_softirq (kernel/softirq.c:553) [ 1164.797506] ? inet_shutdown (net/ipv4/af_inet.c:943) [ 1164.797712] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 1164.797890] [ 1164.798017] [ 1164.798134] __local_bh_enable_ip (kernel/softirq.c:381) [ 1164.798359] inet_shutdown (net/ipv4/af_inet.c:943) [ 1164.798553] __sys_shutdown (net/socket.c:2425 net/socket.c:2437) [ 1164.798761] __x64_sys_shutdown (net/socket.c:2445 net/socket.c:2443 net/socket.c:2443) [ 1164.799005] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 1164.799198] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 1164.799474] RIP: 0033:0x7ff2405babeb [ 1164.799674] Code: 73 01 c3 48 8b 0d 15 92 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 30 00 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d e5 91 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d 15 92 1b 00 mov 0x1b9215(%rip),%rcx # 0x1b921f a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 30 00 00 00 mov $0x30,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d e5 91 1b 00 mov 0x1b91e5(%rip),%rcx # 0x1b921f 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d e5 91 1b 00 mov 0x1b91e5(%rip),%rcx # 0x1b91f5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 1164.800622] RSP: 002b:00007fffbdaa58e8 EFLAGS: 00000246 ORIG_RAX: 0000000000000030 [ 1164.801006] RAX: ffffffffffffffda RBX: 0000000000000008 RCX: 00007ff2405babeb [ 1164.801370] RDX: 000055781c49d420 RSI: 0000000000000001 RDI: 0000000000000008 [ 1164.801751] RBP: 0000000000000008 R08: 0000000000000000 R09: 0000000000000000 [ 1164.802132] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000008 [ 1164.802504] R13: 0000000000000000 R14: 0000000000000001 R15: 0000000000000000 | [ 1164.802504] R13: 0000000000000000 R14: 0000000000000001 R15: 0000000000000000 | [ 1164.802871] | # [ 1165.115012] ncat (18565) used greatest stack depth: 10664 bytes left | [ 1169.197172] irq 4: nobody cared (try booting with the "irqpoll" option) [ 1169.197865] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 1169.198441] Call Trace: [ 1169.198573] [ 1169.198686] dump_stack_lvl (lib/dump_stack.c:108) [ 1169.198878] __report_bad_irq (kernel/irq/spurious.c:214) [ 1169.199078] note_interrupt (kernel/irq/spurious.c:423) [ 1169.199278] handle_irq_event (kernel/irq/handle.c:198 kernel/irq/handle.c:210) [ 1169.199479] handle_edge_irq (kernel/irq/chip.c:833) [ 1169.199678] __common_interrupt (./include/linux/irqdesc.h:161 arch/x86/kernel/irq.c:238 arch/x86/kernel/irq.c:257) [ 1169.199893] common_interrupt (arch/x86/kernel/irq.c:247 (discriminator 14)) [ 1169.200096] [ 1169.200208] [ 1169.200321] asm_common_interrupt (./arch/x86/include/asm/idtentry.h:640) [ 1169.200539] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 1169.200821] Code: c7 18 53 48 89 f3 48 8b 74 24 10 e8 81 3c 39 ff 48 89 ef e8 39 6d 39 ff 80 e7 02 74 06 e8 cf 95 46 ff fb 65 ff 0d cf e8 ff 5b <74> 07 5b 5d c3 cc cc cc cc 0f 1f 44 00 00 5b 5d c3 cc cc cc cc 66 All code ======== 0: c7 (bad) 1: 18 53 48 sbb %dl,0x48(%rbx) 4: 89 f3 mov %esi,%ebx 6: 48 8b 74 24 10 mov 0x10(%rsp),%rsi b: e8 81 3c 39 ff call 0xffffffffff393c91 10: 48 89 ef mov %rbp,%rdi 13: e8 39 6d 39 ff call 0xffffffffff396d51 18: 80 e7 02 and $0x2,%bh 1b: 74 06 je 0x23 1d: e8 cf 95 46 ff call 0xffffffffff4695f1 22: fb sti 23: 65 ff 0d cf e8 ff 5b decl %gs:0x5bffe8cf(%rip) # 0x5bffe8f9 2a:* 74 07 je 0x33 <-- trapping instruction 2c: 5b pop %rbx 2d: 5d pop %rbp 2e: c3 ret 2f: cc int3 30: cc int3 31: cc int3 32: cc int3 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 5b pop %rbx 39: 5d pop %rbp 3a: c3 ret 3b: cc int3 3c: cc int3 3d: cc int3 3e: cc int3 3f: 66 data16 Code starting with the faulting instruction =========================================== 0: 74 07 je 0x9 2: 5b pop %rbx 3: 5d pop %rbp 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 5b pop %rbx f: 5d pop %rbp 10: c3 ret 11: cc int3 12: cc int3 13: cc int3 14: cc int3 15: 66 data16 [ 1169.201741] RSP: 0018:ffffad2e42a67d18 EFLAGS: 00000286 [ 1169.202006] RAX: 0000000000000001 RBX: 0000000000000282 RCX: 0000000000000017 [ 1169.202365] RDX: ffffffffa3bc7f72 RSI: ffffffffa4030671 RDI: ffffffffa4030671 [ 1169.202723] RBP: ffffffffa61fff40 R08: 0000000000000000 R09: 0000000000000000 [ 1169.203079] R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000001 [ 1169.203438] R13: 0000000000000000 R14: ffff9f7b425cc801 R15: ffff9f7b42260000 [ 1169.203798] ? rpm_suspend (./arch/x86/include/asm/jump_label.h:27 ./include/linux/jump_label.h:207 ./include/trace/events/rpm.h:84 drivers/base/power/runtime.c:717) [ 1169.203992] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 ./arch/x86/include/asm/irqflags.h:135 ./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 1169.204246] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 ./arch/x86/include/asm/irqflags.h:135 ./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 1169.204501] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 ./arch/x86/include/asm/irqflags.h:135 ./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 1169.204753] uart_write (drivers/tty/serial/serial_core.c:74 drivers/tty/serial/serial_core.c:616) [ 1169.204937] n_tty_write (drivers/tty/n_tty.c:574 drivers/tty/n_tty.c:2379) [ 1169.205124] ? __pfx_woken_wake_function (kernel/sched/wait.c:439) [ 1169.205371] file_tty_write.constprop.0 (drivers/tty/tty_io.c:1021 drivers/tty/tty_io.c:1096) [ 1169.205622] vfs_write (./include/linux/fs.h:2085 fs/read_write.c:497 fs/read_write.c:590) [ 1169.205803] ksys_write (fs/read_write.c:643) [ 1169.205977] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 1169.206167] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 1169.206425] RIP: 0033:0x7f1ca8571957 [ 1169.206611] Code: 0b 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 48 89 54 24 18 48 89 74 24 All code ======== 0: 0b 00 or (%rax),%eax 2: f7 d8 neg %eax 4: 64 89 02 mov %eax,%fs:(%rdx) 7: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax e: eb b7 jmp 0xffffffffffffffc7 10: 0f 1f 00 nopl (%rax) 13: f3 0f 1e fa endbr64 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 10 jne 0x33 23: b8 01 00 00 00 mov $0x1,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 51 ja 0x83 32: c3 ret 33: 48 83 ec 28 sub $0x28,%rsp 37: 48 89 54 24 18 mov %rdx,0x18(%rsp) 3c: 48 rex.W 3d: 89 .byte 0x89 3e: 74 24 je 0x64 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 51 ja 0x59 8: c3 ret 9: 48 83 ec 28 sub $0x28,%rsp d: 48 89 54 24 18 mov %rdx,0x18(%rsp) 12: 48 rex.W 13: 89 .byte 0x89 14: 74 24 je 0x3a [ 1169.207532] RSP: 002b:00007ffc96ed5bc8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 1169.207909] RAX: ffffffffffffffda RBX: 000055ba12590ef0 RCX: 00007f1ca8571957 [ 1169.208271] RDX: 0000000000000001 RSI: 000055ba12590ef0 RDI: 0000000000000001 [ 1169.208629] RBP: 0000000000000001 R08: 0000000000000000 R09: 0000000000002000 [ 1169.208985] R10: 0000000000000001 R11: 0000000000000246 R12: 000055ba1257d4e0 Finger prints: dump_stack_lvl:__lock_acquire:lock_acquire:_raw_spin_lock_nested dump_stack_lvl:__report_bad_irq:note_interrupt:handle_irq_event