====================================== | [ 1.704334] ip (234) used greatest stack depth: 12344 bytes left | [ 17.659547] ------------[ cut here ]------------ | [ 17.659597] kernel BUG at net/core/skbuff.c:3605! | [ 17.659636] invalid opcode: 0000 [#1] PREEMPT SMP NOPTI [ 17.659720] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 17.659788] RIP: 0010:skb_copy_and_csum_bits (net/core/skbuff.c:3605 (discriminator 1)) [ 17.659825] Code: 89 6c 24 0c 41 89 c4 0f 84 1d ff ff ff 45 01 fe 49 63 c7 44 89 74 24 08 49 01 c5 e9 d0 fd ff ff 90 0f 0b 90 e9 3d ff ff ff 90 <0f> 0b 0f 1f 44 00 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 All code ======== 0: 89 6c 24 0c mov %ebp,0xc(%rsp) 4: 41 89 c4 mov %eax,%r12d 7: 0f 84 1d ff ff ff je 0xffffffffffffff2a d: 45 01 fe add %r15d,%r14d 10: 49 63 c7 movslq %r15d,%rax 13: 44 89 74 24 08 mov %r14d,0x8(%rsp) 18: 49 01 c5 add %rax,%r13 1b: e9 d0 fd ff ff jmp 0xfffffffffffffdf0 20: 90 nop 21: 0f 0b ud2 23: 90 nop 24: e9 3d ff ff ff jmp 0xffffffffffffff66 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 31: 90 nop 32: 90 nop 33: 90 nop 34: 90 nop 35: 90 nop 36: 90 nop 37: 90 nop 38: 90 nop 39: 90 nop 3a: 90 nop 3b: 90 nop 3c: 90 nop 3d: 90 nop 3e: 90 nop 3f: 90 nop Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 0f 1f 44 00 00 nopl 0x0(%rax,%rax,1) 7: 90 nop 8: 90 nop 9: 90 nop a: 90 nop b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 90 nop 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop [ 17.659929] RSP: 0018:ffffbf7900114ad8 EFLAGS: 00010202 [ 17.659964] RAX: 0000000000000020 RBX: 0000000000000030 RCX: 0000000000000000 [ 17.660012] RDX: 0000000000000030 RSI: ffff982441c05db8 RDI: 0000000000000000 [ 17.660058] RBP: 0000000000000020 R08: 0000000000000000 R09: ffff982441c05b00 [ 17.660100] R10: 0000000000000030 R11: 0000000000000000 R12: 00000000fcadcd2c [ 17.660141] R13: ffff982441c05db8 R14: 0000000000000030 R15: 0000000000000030 [ 17.660183] FS: 00007f62ed816740(0000) GS:ffff98247ed00000(0000) knlGS:0000000000000000 [ 17.660230] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 17.660269] CR2: 0000562eb7dfbc80 CR3: 0000000001eca001 CR4: 0000000000770ef0 [ 17.660312] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 17.660357] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 17.660398] PKRU: 55555554 [ 17.660412] Call Trace: [ 17.660430] [ 17.660450] ? die (arch/x86/kernel/dumpstack.c:421 arch/x86/kernel/dumpstack.c:434 arch/x86/kernel/dumpstack.c:447) [ 17.660480] ? do_trap (arch/x86/kernel/traps.c:113 arch/x86/kernel/traps.c:154) [ 17.660505] ? skb_copy_and_csum_bits (net/core/skbuff.c:3605 (discriminator 1)) [ 17.660533] ? do_error_trap (./arch/x86/include/asm/traps.h:58 arch/x86/kernel/traps.c:175) [ 17.660559] ? skb_copy_and_csum_bits (net/core/skbuff.c:3605 (discriminator 1)) [ 17.660592] ? exc_invalid_op (arch/x86/kernel/traps.c:265) [ 17.660623] ? skb_copy_and_csum_bits (net/core/skbuff.c:3605 (discriminator 1)) [ 17.660650] ? asm_exc_invalid_op (./arch/x86/include/asm/idtentry.h:568) [ 17.660680] ? skb_copy_and_csum_bits (net/core/skbuff.c:3605 (discriminator 1)) [ 17.660713] ? skb_copy_and_csum_bits (net/core/skbuff.c:3540) [ 17.660740] icmpv6_getfrag (./include/linux/bitops.h:136 ./include/net/checksum.h:90 ./include/net/checksum.h:98 net/ipv6/icmp.c:324) [ 17.660770] __ip6_append_data.isra.0 (net/ipv6/ip6_output.c:1683) [ 17.660807] ? __pfx_icmpv6_getfrag (net/ipv6/icmp.c:317) [ 17.660839] ? __pfx_icmpv6_getfrag (net/ipv6/icmp.c:317) [ 17.660871] ip6_append_data (net/ipv6/ip6_output.c:1838) [ 17.660898] icmp6_send (net/ipv6/icmp.c:616) [ 17.660926] ? ip6_forward (net/ipv6/ip6_output.c:548) [ 17.660950] ip6_forward (net/ipv6/ip6_output.c:548) [ 17.660971] ? ipv6_rcv (./include/linux/skbuff.h:1139 ./include/net/dst.h:460 net/ipv6/ip6_input.c:79 ./include/linux/netfilter.h:314 ./include/linux/netfilter.h:308 net/ipv6/ip6_input.c:310) [ 17.660997] __netif_receive_skb_one_core (net/core/dev.c:5613) [ 17.661032] process_backlog (./include/linux/rcupdate.h:782 net/core/dev.c:6053) [ 17.661057] __napi_poll (net/core/dev.c:6703) [ 17.661084] net_rx_action (net/core/dev.c:6774 net/core/dev.c:6886) [ 17.661112] __do_softirq (kernel/softirq.c:553) [ 17.661143] do_softirq (kernel/softirq.c:454 kernel/softirq.c:441) [ 17.661171] [ 17.661184] [ 17.661198] __local_bh_enable_ip (kernel/softirq.c:381) [ 17.661224] __neigh_event_send (./arch/x86/include/asm/jump_label.h:27 ./include/linux/jump_label.h:207 ./include/trace/events/neigh.h:237 net/core/neighbour.c:1246) [ 17.661252] neigh_resolve_output (net/core/neighbour.c:1547) [ 17.661284] ip6_finish_output2 (./include/net/neighbour.h:542 net/ipv6/ip6_output.c:137) [ 17.661311] ? __ip6_local_out (./include/net/l3mdev.h:203 ./include/net/l3mdev.h:219 net/ipv6/output_core.c:137) [ 17.661339] ip6_finish_output (net/ipv6/ip6_output.c:211 net/ipv6/ip6_output.c:222) [ 17.661366] ip6_send_skb (net/ipv6/ip6_output.c:1959) [ 17.661392] udp_v6_send_skb (net/ipv6/udp.c:1286) [ 17.661421] udpv6_sendmsg (net/ipv6/udp.c:1580) [ 17.661447] ? __pfx_ip_generic_getfrag (net/ipv4/ip_output.c:935) [ 17.661482] ? do_ipv6_setsockopt (net/ipv6/ipv6_sockglue.c:408) [ 17.661516] ? __sys_sendto (net/socket.c:730 net/socket.c:745 net/socket.c:2191) [ 17.661540] __sys_sendto (net/socket.c:730 net/socket.c:745 net/socket.c:2191) [ 17.661564] ? do_sock_setsockopt (net/socket.c:2316) [ 17.661598] ? __sys_connect (net/socket.c:2048 net/socket.c:2065) [ 17.661625] ? __sys_setsockopt (./include/linux/file.h:32 net/socket.c:2336) [ 17.661651] __x64_sys_sendto (net/socket.c:2203 net/socket.c:2199 net/socket.c:2199) [ 17.661677] do_syscall_64 (arch/x86/entry/common.c:52 arch/x86/entry/common.c:83) [ 17.661705] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:129) [ 17.661741] RIP: 0033:0x7f62ed968700 [ 17.661769] Code: ff ff 64 89 02 eb bd 0f 1f 00 f3 0f 1e fa 41 89 ca 64 8b 04 25 18 00 00 00 85 c0 75 1d 45 31 c9 45 31 c0 b8 2c 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 68 c3 0f 1f 80 00 00 00 00 41 54 48 83 ec 20 All code ======== 0: ff (bad) 1: ff 64 89 02 jmp *0x2(%rcx,%rcx,4) 5: eb bd jmp 0xffffffffffffffc4 7: 0f 1f 00 nopl (%rax) a: f3 0f 1e fa endbr64 e: 41 89 ca mov %ecx,%r10d 11: 64 8b 04 25 18 00 00 mov %fs:0x18,%eax 18: 00 19: 85 c0 test %eax,%eax 1b: 75 1d jne 0x3a 1d: 45 31 c9 xor %r9d,%r9d 20: 45 31 c0 xor %r8d,%r8d 23: b8 2c 00 00 00 mov $0x2c,%eax 28: 0f 05 syscall 2a:* 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax <-- trapping instruction 30: 77 68 ja 0x9a 32: c3 ret 33: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 3a: 41 54 push %r12 3c: 48 83 ec 20 sub $0x20,%rsp Code starting with the faulting instruction =========================================== 0: 48 3d 00 f0 ff ff cmp $0xfffffffffffff000,%rax 6: 77 68 ja 0x70 8: c3 ret 9: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 10: 41 54 push %r12 12: 48 83 ec 20 sub $0x20,%rsp [ 17.661871] RSP: 002b:00007ffc27c5d4e8 EFLAGS: 00000246 ORIG_RAX: 000000000000002c [ 17.661917] RAX: ffffffffffffffda RBX: 0000562eb7edd3e0 RCX: 00007f62ed968700 [ 17.661960] RDX: 0000000000000020 RSI: 0000562eb7edf5b0 RDI: 0000000000000005 [ 17.662004] RBP: 0000000000000005 R08: 0000000000000000 R09: 0000000000000000 [ 17.662046] R10: 0000000000000000 R11: 0000000000000246 R12: 0000000000000001 Finger prints: skb_copy_and_csum_bits:icmpv6_getfrag:ip6_append_data:icmp6_send