[ 15.454343][ T248] ip (248) used greatest stack depth: 23968 bytes left [ 26.842513][ T71] ================================================================== [ 26.843011][ T71] BUG: KASAN: null-ptr-deref in try_to_grab_pending+0x81/0x6c0 [ 26.843390][ T71] Write of size 8 at addr 0000000000000000 by task kworker/u16:1/71 [ 26.843784][ T71] [ 26.843908][ T71] CPU: 3 UID: 0 PID: 71 Comm: kworker/u16:1 Not tainted 6.18.0-rc5-virtme #1 PREEMPT(full) [ 26.843915][ T71] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 26.843921][ T71] Workqueue: netns cleanup_net [ 26.843949][ T71] Call Trace: [ 26.843953][ T71] [ 26.843956][ T71] dump_stack_lvl+0x82/0xc0 [ 26.843978][ T71] ? try_to_grab_pending+0x81/0x6c0 [ 26.843985][ T71] kasan_report+0xca/0x100 [ 26.844000][ T71] ? try_to_grab_pending+0x81/0x6c0 [ 26.844006][ T71] kasan_check_range+0x39/0x1b0 [ 26.844010][ T71] try_to_grab_pending+0x81/0x6c0 [ 26.844015][ T71] __cancel_work+0x7c/0x260 [ 26.844018][ T71] ? enable_delayed_work+0x10/0x10 [ 26.844023][ T71] ? qdisc_destroy+0x50/0x50 [ 26.844036][ T71] __cancel_work_sync+0x18/0xc0 [ 26.844040][ T71] __dev_close_many+0x1ce/0x810 [ 26.844049][ T71] ? netdev_notify_peers+0x20/0x20 [ 26.844053][ T71] ? netif_close_many+0x201/0x650 [ 26.844058][ T71] netif_close_many+0x201/0x650 [ 26.844062][ T71] ? __mutex_handoff+0x2b0/0x2b0 [ 26.844072][ T71] ? __dev_close_many+0x810/0x810 [ 26.844076][ T71] ? netif_close_many_and_unlock+0x21/0x2a0 [ 26.844081][ T71] unregister_netdevice_many_notify+0x305/0x1b30 [ 26.844085][ T71] ? find_held_lock+0x2b/0x80 [ 26.844089][ T71] ? rtnl_is_locked+0x15/0x20 [ 26.844095][ T71] ? dev_ingress_queue_create+0x190/0x190 [ 26.844098][ T71] ? rtnl_is_locked+0x15/0x20 [ 26.844100][ T71] ? unregister_netdevice_queue+0x6f/0x410 [ 26.844102][ T71] ? lockdep_hardirqs_on+0x7c/0x110 [ 26.844110][ T71] ? unregister_netdevice_many+0x20/0x20 [ 26.844116][ T71] default_device_exit_batch+0x235/0x2d0 [ 26.844120][ T71] ? unregister_netdev+0x60/0x60 [ 26.844126][ T71] ops_undo_list+0x2bf/0x890 [ 26.844132][ T71] ? netns_get+0x110/0x110 [ 26.844134][ T71] ? cleanup_net+0x2d6/0x830 [ 26.844140][ T71] cleanup_net+0x3b2/0x830 [ 26.844150][ T71] ? net_passive_dec+0x190/0x190 [ 26.844154][ T71] ? rcu_is_watching+0x12/0xb0 [ 26.844162][ T71] process_one_work+0xe35/0x1650 [ 26.844169][ T71] ? pwq_dec_nr_in_flight+0x550/0x550 [ 26.844175][ T71] ? assign_work+0x168/0x240 [ 26.844179][ T71] worker_thread+0x591/0xcf0 [ 26.844187][ T71] ? rescuer_thread+0xd10/0xd10 [ 26.844191][ T71] kthread+0x37b/0x5f0 [ 26.844197][ T71] ? kthread_is_per_cpu+0xc0/0xc0 [ 26.844200][ T71] ? ret_from_fork+0x1b/0x270 [ 26.844211][ T71] ? __lock_release+0x5d/0x170 [ 26.844218][ T71] ? rcu_is_watching+0x12/0xb0 [ 26.844223][ T71] ? kthread_is_per_cpu+0xc0/0xc0 [ 26.844228][ T71] ret_from_fork+0x1db/0x270 [ 26.844231][ T71] ? kthread_is_per_cpu+0xc0/0xc0 [ 26.844234][ T71] ret_from_fork_asm+0x11/0x20 [ 26.844251][ T71] [ 26.844252][ T71] ================================================================== [ 26.856495][ T71] Disabling lock debugging due to kernel taint [ 26.856803][ T71] BUG: kernel NULL pointer dereference, address: 0000000000000000 [ 26.857187][ T71] #PF: supervisor write access in kernel mode [ 26.857465][ T71] #PF: error_code(0x0002) - not-present page [ 26.857716][ T71] PGD 0 P4D 0 [ 26.857885][ T71] Oops: Oops: 0002 [#1] SMP KASAN [ 26.858212][ T71] CPU: 3 UID: 0 PID: 71 Comm: kworker/u16:1 Tainted: G B 6.18.0-rc5-virtme #1 PREEMPT(full) [ 26.858701][ T71] Tainted: [B]=BAD_PAGE [ 26.858887][ T71] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 26.859288][ T71] Workqueue: netns cleanup_net [ 26.859505][ T71] RIP: 0010:try_to_grab_pending+0x81/0x6c0 [ 26.859757][ T71] Code: 00 41 89 c0 b8 01 00 00 00 45 85 c0 74 0f 48 83 c4 10 5b 5d 41 5c 41 5d 41 5e 41 5f c3 be 08 00 00 00 48 89 df e8 6f 7d 81 00 48 0f ba 2b 00 72 11 48 83 c4 10 31 c0 5b 5d 41 5c 41 5d 41 5e [ 26.860582][ T71] RSP: 0018:ffffc900004c7690 EFLAGS: 00010046 [ 26.860833][ T71] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffffa684190a [ 26.861247][ T71] RDX: fffffbfff559cecd RSI: 0000000000000008 RDI: ffffffffaace7660 [ 26.861593][ T71] RBP: ffffc900004c76f8 R08: 0000000000000001 R09: fffffbfff559cecc [ 26.862075][ T71] R10: ffffffffaace7667 R11: ffffc900004c7180 R12: 0000000000000000 [ 26.862409][ T71] R13: 0000000000000286 R14: ffff88800be7c000 R15: dffffc0000000000 [ 26.862716][ T71] FS: 0000000000000000(0000) GS:ffff88808b704000(0000) knlGS:0000000000000000 [ 26.863226][ T71] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 26.863533][ T71] CR2: 0000000000000000 CR3: 000000000a08b003 CR4: 0000000000772ef0 [ 26.863874][ T71] PKRU: 55555554 [ 26.864121][ T71] Call Trace: [ 26.864276][ T71] [ 26.864388][ T71] __cancel_work+0x7c/0x260 [ 26.864635][ T71] ? enable_delayed_work+0x10/0x10 [ 26.864890][ T71] ? qdisc_destroy+0x50/0x50 [ 26.865180][ T71] __cancel_work_sync+0x18/0xc0 [ 26.865409][ T71] __dev_close_many+0x1ce/0x810 [ 26.865644][ T71] ? netdev_notify_peers+0x20/0x20 [ 26.865889][ T71] ? netif_close_many+0x201/0x650 [ 26.866231][ T71] netif_close_many+0x201/0x650 [ 26.866459][ T71] ? __mutex_handoff+0x2b0/0x2b0 [ 26.866664][ T71] ? __dev_close_many+0x810/0x810 [ 26.866889][ T71] ? netif_close_many_and_unlock+0x21/0x2a0 [ 26.867277][ T71] unregister_netdevice_many_notify+0x305/0x1b30 [ 26.867587][ T71] ? find_held_lock+0x2b/0x80 [ 26.867800][ T71] ? rtnl_is_locked+0x15/0x20 [ 26.868128][ T71] ? dev_ingress_queue_create+0x190/0x190 [ 26.868334][ T71] ? rtnl_is_locked+0x15/0x20 [ 26.868544][ T71] ? unregister_netdevice_queue+0x6f/0x410 [ 26.868832][ T71] ? lockdep_hardirqs_on+0x7c/0x110 [ 26.869138][ T71] ? unregister_netdevice_many+0x20/0x20 [ 26.869359][ T71] default_device_exit_batch+0x235/0x2d0 [ 26.869606][ T71] ? unregister_netdev+0x60/0x60 [ 26.869820][ T71] ops_undo_list+0x2bf/0x890 [ 26.870110][ T71] ? netns_get+0x110/0x110 [ 26.870356][ T71] ? cleanup_net+0x2d6/0x830 [ 26.870563][ T71] cleanup_net+0x3b2/0x830 [ 26.870777][ T71] ? net_passive_dec+0x190/0x190 [ 26.871087][ T71] ? rcu_is_watching+0x12/0xb0 [ 26.871306][ T71] process_one_work+0xe35/0x1650 [ 26.871538][ T71] ? pwq_dec_nr_in_flight+0x550/0x550 [ 26.871742][ T71] ? assign_work+0x168/0x240 [ 26.872090][ T71] worker_thread+0x591/0xcf0 [ 26.872365][ T71] ? rescuer_thread+0xd10/0xd10 [ 26.872609][ T71] kthread+0x37b/0x5f0 [ 26.872768][ T71] ? kthread_is_per_cpu+0xc0/0xc0 [ 26.873057][ T71] ? ret_from_fork+0x1b/0x270 [ 26.873307][ T71] ? __lock_release+0x5d/0x170 [ 26.873536][ T71] ? rcu_is_watching+0x12/0xb0 [ 26.873736][ T71] ? kthread_is_per_cpu+0xc0/0xc0 [ 26.874053][ T71] ret_from_fork+0x1db/0x270 [ 26.874290][ T71] ? kthread_is_per_cpu+0xc0/0xc0 [ 26.874496][ T71] ret_from_fork_asm+0x11/0x20 [ 26.874721][ T71] [ 26.874987][ T71] Modules linked in: [ 26.875165][ T71] CR2: 0000000000000000 [ 26.875336][ T71] ---[ end trace 0000000000000000 ]--- [ 26.875549][ T71] RIP: 0010:try_to_grab_pending+0x81/0x6c0 [ 26.875828][ T71] Code: 00 41 89 c0 b8 01 00 00 00 45 85 c0 74 0f 48 83 c4 10 5b 5d 41 5c 41 5d 41 5e 41 5f c3 be 08 00 00 00 48 89 df e8 6f 7d 81 00 48 0f ba 2b 00 72 11 48 83 c4 10 31 c0 5b 5d 41 5c 41 5d 41 5e [ 26.876768][ T71] RSP: 0018:ffffc900004c7690 EFLAGS: 00010046 [ 26.877137][ T71] RAX: 0000000000000000 RBX: 0000000000000000 RCX: ffffffffa684190a [ 26.877536][ T71] RDX: fffffbfff559cecd RSI: 0000000000000008 RDI: ffffffffaace7660 [ 26.877870][ T71] RBP: ffffc900004c76f8 R08: 0000000000000001 R09: fffffbfff559cecc [ 26.878281][ T71] R10: ffffffffaace7667 R11: ffffc900004c7180 R12: 0000000000000000 [ 26.878608][ T71] R13: 0000000000000286 R14: ffff88800be7c000 R15: dffffc0000000000 [ 26.879043][ T71] FS: 0000000000000000(0000) GS:ffff88808b704000(0000) knlGS:0000000000000000 [ 26.879448][ T71] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 26.879703][ T71] CR2: 0000000000000000 CR3: 000000000a08b003 CR4: 0000000000772ef0 [ 26.880116][ T71] PKRU: 55555554 [ 26.880288][ T71] Kernel panic - not syncing: Fatal exception [ 26.880739][ T71] Kernel Offset: 0x25200000 from 0xffffffff81000000 (relocation range: 0xffffffff80000000-0xffffffffbfffffff) [ 26.881364][ T71] ---[ end Kernel panic - not syncing: Fatal exception ]--- WAIT TIMEOUT stderr Ctrl-C stderr Ctrl-C stderr WAIT TIMEOUT stderr