====================================== | [ 884.333079] #6: ffffffff8a5678c0 (rcu_read_lock){....}-{1:2}, at: netif_receive_skb (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/dev.c:5696 net/core/dev.c:5768) | [ 884.333677] #7: ffffffff8a5678c0 (rcu_read_lock){....}-{1:2}, at: ip_local_deliver_finish (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/ipv4/ip_input.c:232) | [ 884.334347] | [ 884.334347] stack backtrace: [ 884.335142] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 884.335911] Call Trace: [ 884.336101] [ 884.336261] dump_stack_lvl (lib/dump_stack.c:108) [ 884.336513] __lock_acquire (kernel/locking/lockdep.c:5138) [ 884.3368 DETECTED CRASH, lowering timeout 11] ? sk_filter_trim_cap (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/filter.c:151) [ 884.337074] lock_acquire (kernel/locking/lockdep.c:467 kernel/locking/lockdep.c:5756 kernel/locking/lockdep.c:5719) [ 884.337260] ? tcp_v4_rcv (./include/linux/skbuff.h:1619 ./include/net/tcp.h:2510 net/ipv4/tcp_ipv4.c:2326) [ 884.337452] ? sk_filter_trim_cap (net/core/filter.c:165) [ 884.337674] _raw_spin_lock_nested (kernel/locking/spinlock.c:379) [ 884.337898] ? tcp_v4_rcv (./include/linux/skbuff.h:1619 ./include/net/tcp.h:2510 net/ipv4/tcp_ipv4.c:2326) [ 884.338087] tcp_v4_rcv (./include/linux/skbuff.h:1619 ./include/net/tcp.h:2510 net/ipv4/tcp_ipv4.c:2326) [ 884.338272] ip_protocol_deliver_rcu (net/ipv4/ip_input.c:205 (discriminator 1)) [ 884.338512] ip_local_deliver_finish (./include/linux/rcupdate.h:779 net/ipv4/ip_input.c:234) [ 884.338744] __netif_receive_skb_one_core (net/core/dev.c:5509 (discriminator 4)) [ 884.338993] netif_receive_skb (net/core/dev.c:5709 net/core/dev.c:5768) [ 884.339203] tcf_mirred_to_dev (net/sched/act_mirred.c:329) act_mirred [ 884.339485] tcf_mirred_act (net/sched/act_mirred.c:461 (discriminator 2)) act_mirred [ 884.339738] ? tcf_skbedit_act (net/sched/act_skbedit.c:51 (discriminator 3)) act_skbedit [ 884.340010] tcf_action_exec (./include/net/tc_wrapper.h:130 net/sched/act_api.c:1100 net/sched/act_api.c:1074) [ 884.340218] fl_classify (net/sched/cls_flower.c:345) cls_flower [ 884.340463] ? __bfs (kernel/locking/lockdep.c:1787) [ 884.340645] ? check_irq_usage (kernel/locking/lockdep.c:2823) [ 884.340857] ? __skb_flow_dissect (./include/linux/rcupdate.h:298 ./include/linux/rcupdate.h:750 net/core/flow_dissector.c:1101) [ 884.341085] ? check_path.constprop.0 (kernel/locking/lockdep.c:2145) [ 884.341321] ? check_noncircular (kernel/locking/lockdep.c:2172) [ 884.341535] ? __skb_flow_dissect (./include/net/flow_dissector.h:443 net/core/flow_dissector.c:1140) [ 884.341767] ? __lock_acquire (kernel/locking/lockdep.c:5133 (discriminator 1)) [ 884.341979] tcf_classify (./include/net/tc_wrapper.h:197 net/sched/cls_api.c:1734 net/sched/cls_api.c:1830) [ 884.342172] tc_run (net/core/dev.c:3912) [ 884.342339] __dev_queue_xmit (net/core/dev.c:4036 net/core/dev.c:4268) [ 884.342550] ? mark_held_locks (kernel/locking/lockdep.c:4274) [ 884.342761] ? eth_header (net/ethernet/eth.c:85) [ 884.342946] ip_finish_output2 (./include/net/neighbour.h:542 net/ipv4/ip_output.c:235) [ 884.343158] ? ip_skb_dst_mtu (./include/net/net_namespace.h:383 ./include/linux/netdevice.h:2655 ./include/net/ip.h:465 ./include/net/ip.h:502) [ 884.343361] ? __ip_queue_xmit (net/ipv4/ip_output.c:535) [ 884.343577] __ip_queue_xmit (net/ipv4/ip_output.c:535) [ 884.343789] __tcp_transmit_skb (net/ipv4/tcp_output.c:1462 (discriminator 4)) [ 884.344004] ? __alloc_skb (net/core/skbuff.c:667) [ 884.344196] tcp_rcv_state_process (net/ipv4/tcp_input.c:6874) [ 884.344438] ? tcp_v4_rcv (./include/linux/skbuff.h:1619 ./include/net/tcp.h:2510 net/ipv4/tcp_ipv4.c:2326) [ 884.344630] ? tcp_v4_do_rcv (net/ipv4/tcp_ipv4.c:1929) [ 884.344828] tcp_v4_do_rcv (net/ipv4/tcp_ipv4.c:1929) [ 884.345019] tcp_v4_rcv (net/ipv4/tcp_ipv4.c:2329) [ 884.345202] ? process_backlog (net/core/dev.c:5945 (discriminator 2)) [ 884.345413] ip_protocol_deliver_rcu (net/ipv4/ip_input.c:205 (discriminator 1)) [ 884.345645] ip_local_deliver_finish (./include/linux/rcupdate.h:779 net/ipv4/ip_input.c:234) [ 884.345879] __netif_receive_skb_one_core (net/core/dev.c:5509 (discriminator 4)) [ 884.346127] process_backlog (./include/linux/rcupdate.h:779 net/core/dev.c:5952) [ 884.346328] __napi_poll.constprop.0 (net/core/dev.c:6551) [ 884.346561] net_rx_action (net/core/dev.c:6622 net/core/dev.c:6753) [ 884.346756] __do_softirq (kernel/softirq.c:553) [ 884.346948] ? inet_shutdown (net/ipv4/af_inet.c:943) [ 884.347147] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 884.347326] [ 884.347440] [ 884.347555] __local_bh_enable_ip (kernel/softirq.c:381) [ 884.347777] inet_shutdown (net/ipv4/af_inet.c:943) [ 884.347968] __sys_shutdown (net/socket.c:2425 net/socket.c:2437) [ 884.348162] __x64_sys_shutdown (net/socket.c:2445 net/socket.c:2443 net/socket.c:2443) [ 884.348369] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 884.348560] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 884.348821] RIP: 0033:0x7f45fcd3fbeb [ 884.349009] Code: 73 01 c3 48 8b 0d 15 92 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 30 00 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d e5 91 1b 00 f7 d8 64 89 01 48 All code ======== 0: 73 01 jae 0x3 2: c3 ret 3: 48 8b 0d 15 92 1b 00 mov 0x1b9215(%rip),%rcx # 0x1b921f a: f7 d8 neg %eax c: 64 89 01 mov %eax,%fs:(%rcx) f: 48 83 c8 ff or $0xffffffffffffffff,%rax 13: c3 ret 14: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 1b: 00 00 00 1e: 90 nop 1f: f3 0f 1e fa endbr64 23: b8 30 00 00 00 mov $0x30,%eax 28: 0f 05 syscall 2a:* 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax <-- trapping instruction 30: 73 01 jae 0x33 32: c3 ret 33: 48 8b 0d e5 91 1b 00 mov 0x1b91e5(%rip),%rcx # 0x1b921f 3a: f7 d8 neg %eax 3c: 64 89 01 mov %eax,%fs:(%rcx) 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 3d 01 f0 ff ff cmp $0xfffffffffffff001,%rax 6: 73 01 jae 0x9 8: c3 ret 9: 48 8b 0d e5 91 1b 00 mov 0x1b91e5(%rip),%rcx # 0x1b91f5 10: f7 d8 neg %eax 12: 64 89 01 mov %eax,%fs:(%rcx) 15: 48 rex.W [ 884.349932] RSP: 002b:00007fff16acbdf8 EFLAGS: 00000246 ORIG_RAX: 0000000000000030 [ 884.350316] RAX: ffffffffffffffda RBX: 0000000000000008 RCX: 00007f45fcd3fbeb [ 884.350692] RDX: 000055a9c4e58420 RSI: 0000000000000001 RDI: 0000000000000008 [ 884.351049] RBP: 0000000000000008 R08: 0000000000000000 R09: 0000000000000000 [ 884.351412] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000008 [ 884.351835] R13: 0000000000000000 R14: 0000000000000001 R15: 0000000000000000 | [ 884.351412] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000008 | [ 884.351835] R13: 0000000000000000 R14: 0000000000000001 R15: 0000000000000000 | [ 884.352308] | # [ 889.006876] irq 4: nobody cared (try booting with the "irqpoll" option) [ 889.007560] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 889.008130] Call Trace: [ 889.008263] [ 889.008375] dump_stack_lvl (lib/dump_stack.c:108) [ 889.008574] __report_bad_irq (kernel/irq/spurious.c:214) [ 889.008775] note_interrupt (kernel/irq/spurious.c:423) [ 889.008973] handle_irq_event (kernel/irq/handle.c:198 kernel/irq/handle.c:210) [ 889.009173] handle_edge_irq (kernel/irq/chip.c:833) [ 889.009372] __common_interrupt (./include/linux/irqdesc.h:161 arch/x86/kernel/irq.c:238 arch/x86/kernel/irq.c:257) [ 889.009587] common_interrupt (arch/x86/kernel/irq.c:247 (discriminator 14)) [ 889.009788] [ 889.009902] [ 889.010016] asm_common_interrupt (./arch/x86/include/asm/idtentry.h:640) [ 889.010234] RIP: 0010:_raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 889.010519] Code: c7 18 53 48 89 f3 48 8b 74 24 10 e8 81 bc 38 ff 48 89 ef e8 39 ed 38 ff 80 e7 02 74 06 e8 4f 16 46 ff fb 65 ff 0d cf 68 7f 76 <74> 07 5b 5d c3 cc cc cc cc 0f 1f 44 00 00 5b 5d c3 cc cc cc cc 66 All code ======== 0: c7 (bad) 1: 18 53 48 sbb %dl,0x48(%rbx) 4: 89 f3 mov %esi,%ebx 6: 48 8b 74 24 10 mov 0x10(%rsp),%rsi b: e8 81 bc 38 ff call 0xffffffffff38bc91 10: 48 89 ef mov %rbp,%rdi 13: e8 39 ed 38 ff call 0xffffffffff38ed51 18: 80 e7 02 and $0x2,%bh 1b: 74 06 je 0x23 1d: e8 4f 16 46 ff call 0xffffffffff461671 22: fb sti 23: 65 ff 0d cf 68 7f 76 decl %gs:0x767f68cf(%rip) # 0x767f68f9 2a:* 74 07 je 0x33 <-- trapping instruction 2c: 5b pop %rbx 2d: 5d pop %rbp 2e: c3 ret 2f: cc int3 30: cc int3 31: cc int3 32: cc int3 33: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 38: 5b pop %rbx 39: 5d pop %rbp 3a: c3 ret 3b: cc int3 3c: cc int3 3d: cc int3 3e: cc int3 3f: 66 data16 Code starting with the faulting instruction =========================================== 0: 74 07 je 0x9 2: 5b pop %rbx 3: 5d pop %rbp 4: c3 ret 5: cc int3 6: cc int3 7: cc int3 8: cc int3 9: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) e: 5b pop %rbx f: 5d pop %rbp 10: c3 ret 11: cc int3 12: cc int3 13: cc int3 14: cc int3 15: 66 data16 [ 889.011439] RSP: 0018:ffffad3c80707d18 EFLAGS: 00000286 [ 889.011703] RAX: 0000000000000001 RBX: 0000000000000282 RCX: 0000000000000017 [ 889.012059] RDX: ffffffff893c77e2 RSI: ffffffff89838671 RDI: ffffffff89838671 [ 889.012416] RBP: ffffffff8ba02f20 R08: 0000000000000000 R09: 0000000000000000 [ 889.012773] R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000001 [ 889.013128] R13: 0000000000000000 R14: ffff8e8242518c01 R15: ffff8e82421f0000 [ 889.013485] ? rpm_suspend (./arch/x86/include/asm/jump_label.h:27 ./include/linux/jump_label.h:207 ./include/trace/events/rpm.h:84 drivers/base/power/runtime.c:717) [ 889.013679] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 ./arch/x86/include/asm/irqflags.h:135 ./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 889.013931] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 ./arch/x86/include/asm/irqflags.h:135 ./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 889.014187] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:77 ./arch/x86/include/asm/irqflags.h:135 ./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 889.014440] uart_write (drivers/tty/serial/serial_core.c:74 drivers/tty/serial/serial_core.c:616) [ 889.014624] n_tty_write (drivers/tty/n_tty.c:574 drivers/tty/n_tty.c:2379) [ 889.014812] ? __pfx_woken_wake_function (kernel/sched/wait.c:439) [ 889.015058] file_tty_write.constprop.0 (drivers/tty/tty_io.c:1021 drivers/tty/tty_io.c:1096) [ 889.015310] vfs_write (./include/linux/fs.h:2085 fs/read_write.c:497 fs/read_write.c:590) [ 889.015491] ksys_write (fs/read_write.c:643) [ 889.015666] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 889.015856] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 889.016113] RIP: 0033:0x7fc2c452a957 [ 889.016299] Code: 0b 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb b7 0f 1f 00 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 48 89 54 24 18 48 89 74 24 All code ======== 0: 0b 00 or (%rax),%eax 2: f7 d8 neg %eax 4: 64 89 02 mov %eax,%fs:(%rdx) 7: 48 c7 c0 ff ff ff ff mov $0xffffffffffffffff,%rax e: eb b7 jmp 0xffffffffffffffc7 10: 0f 1f 00 nopl (%rax) 13: f3 0f 1e fa endbr64 17: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 1e: 00 1f: 85 c0 test %eax,%eax 21: 75 10 jne 0x33 23: b8 01 00 00 00 mov $0x1,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 51 ja 0x83 32: c3 ret 33: 48 83 ec 28 sub $0x28,%rsp 37: 48 89 54 24 18 mov %rdx,0x18(%rsp) 3c: 48 rex.W 3d: 89 .byte 0x89 3e: 74 24 je 0x64 Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 51 ja 0x59 8: c3 ret 9: 48 83 ec 28 sub $0x28,%rsp d: 48 89 54 24 18 mov %rdx,0x18(%rsp) 12: 48 rex.W 13: 89 .byte 0x89 14: 74 24 je 0x3a [ 889.017215] RSP: 002b:00007ffd2bd7ecf8 EFLAGS: 00000246 ORIG_RAX: 0000000000000001 [ 889.017593] RAX: ffffffffffffffda RBX: 00005622fc34ed80 RCX: 00007fc2c452a957 [ 889.017950] RDX: 0000000000000001 RSI: 00005622fc34ed80 RDI: 0000000000000001 [ 889.018307] RBP: 0000000000000001 R08: 0000000000000000 R09: 0000000000002000 [ 889.018663] R10: 0000000000000001 R11: 0000000000000246 R12: 00005622fc33b500 Finger prints: dump_stack_lvl:__lock_acquire:lock_acquire:_raw_spin_lock_nested dump_stack_lvl:__report_bad_irq:note_interrupt:handle_irq_event