====================================== | | WAIT TIMEOUT stdout | [ 5989.798561][ C1] Oops: general protection fault, probably for non-canonical address 0xdffffc0000000091: 0000 [#1] SMP KASAN NOPTI | [ 5989.798982][ C1] KASAN: null-ptr-deref in range [0x0000000000000488-0x000000000000048f] [ 5989.799547][ C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 5989.799753][ C1] RIP: 0010:veth_xdp_rcv (./include/linux/netdevice.h:2630 (discriminator 13) drivers/net/veth.c:912 (discriminator 13)) [ 5989.799930][ C1] Code: 40 0d 00 00 e8 ff 39 de 00 85 c0 0f 85 c6 06 00 00 49 8d bc 24 88 04 00 00 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 <0f> b6 04 02 84 c0 74 08 3c 03 0f 8e b6 0a 00 00 41 3b ac 24 88 04 All code ======== 0: 40 0d 00 00 e8 ff rex or $0xffe80000,%eax 6: 39 de cmp %ebx,%esi 8: 00 85 c0 0f 85 c6 add %al,-0x397af040(%rbp) e: 06 (bad) f: 00 00 add %al,(%rax) 11: 49 8d bc 24 88 04 00 lea 0x488(%r12),%rdi 18: 00 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 48 89 fa mov %rdi,%rdx 26: 48 c1 ea 03 shr $0x3,%rdx 2a:* 0f b6 04 02 movzbl (%rdx,%rax,1),%eax <-- trapping instruction 2e: 84 c0 test %al,%al 30: 74 08 je 0x3a 32: 3c 03 cmp $0x3,%al 34: 0f 8e b6 0a 00 00 jle 0xaf0 3a: 41 rex.B 3b: 3b .byte 0x3b 3c: ac lods %ds:(%rsi),%al 3d: 24 88 and $0x88,%al 3f: 04 .byte 0x4 Code starting with the faulting instruction =========================================== 0: 0f b6 04 02 movzbl (%rdx,%rax,1),%eax 4: 84 c0 test %al,%al 6: 74 08 je 0x10 8: 3c 03 cmp $0x3,%al a: 0f 8e b6 0a 00 00 jle 0xac6 10: 41 rex.B 11: 3b .byte 0x3b 12: ac lods %ds:(%rsi),%al 13: 24 88 and $0x88,%al 15: 04 .byte 0x4 [ 5989.800515][ C1] RSP: 0018:ffffc900001c0a20 EFLAGS: 00010202 [ 5989.800726][ C1] RAX: dffffc0000000000 RBX: ffff88801a0f2000 RCX: 1ffff92000038153 [ 5989.800972][ C1] RDX: 0000000000000091 RSI: ffffffffa7c538c0 RDI: 0000000000000488 [ 5989.801223][ C1] RBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000000 [ 5989.801470][ C1] R10: ffffc900001c0e90 R11: 0000000000000000 R12: 0000000000000000 [ 5989.801718][ C1] R13: ffffc900001c0bd0 R14: 0000000000000040 R15: ffffc900001c0bd0 [ 5989.801966][ C1] FS: 0000000000000000(0000) GS:ffff8880c2442000(0000) knlGS:0000000000000000 [ 5989.802253][ C1] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 5989.802457][ C1] CR2: 00007f2020786000 CR3: 0000000023b48001 CR4: 0000000000772ef0 [ 5989.802711][ C1] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 5989.802955][ C1] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 5989.803204][ C1] PKRU: 55555554 [ 5989.803329][ C1] Call Trace: [ 5989.803455][ C1] [ 5989.803540][ C1] ? timerqueue_add (lib/timerqueue.c:41) [ 5989.803714][ C1] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 5989.803892][ C1] ? __pfx_veth_xdp_rcv (drivers/net/veth.c:902) [ 5989.804055][ C1] ? mark_held_locks (kernel/locking/lockdep.c:4326) [ 5989.804219][ C1] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 5989.804422][ C1] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4473) [ 5989.804587][ C1] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/preempt.h:104 ./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 5989.804787][ C1] ? napi_complete_done (./include/linux/hrtimer.h:264 net/core/dev.c:6585) [ 5989.804952][ C1] ? __pfx_napi_complete_done (net/core/dev.c:6521) [ 5989.805117][ C1] ? __pfx_napi_complete_done (net/core/dev.c:6521) [ 5989.805282][ C1] veth_poll (drivers/net/veth.c:981) [ 5989.805407][ C1] ? __pfx_veth_poll (drivers/net/veth.c:969) [ 5989.805568][ C1] ? validate_chain (kernel/locking/lockdep.c:3802 kernel/locking/lockdep.c:3822 kernel/locking/lockdep.c:3877) [ 5989.805730][ C1] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 5989.805896][ C1] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 5989.806061][ C1] ? validate_chain (kernel/locking/lockdep.c:3802 kernel/locking/lockdep.c:3822 kernel/locking/lockdep.c:3877) [ 5989.806226][ C1] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 5989.806393][ C1] __napi_poll.constprop.0 (net/core/dev.c:7387) [ 5989.806557][ C1] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 5989.806722][ C1] net_rx_action (net/core/dev.c:7451 net/core/dev.c:7573) [ 5989.806885][ C1] ? __pfx_net_rx_action (net/core/dev.c:7535) [ 5989.807056][ C1] ? kvm_clock_get_cycles (./arch/x86/include/asm/preempt.h:95 arch/x86/kernel/kvmclock.c:80 arch/x86/kernel/kvmclock.c:86) [ 5989.807222][ C1] ? ktime_get (kernel/time/timekeeping.c:226 (discriminator 4) kernel/time/timekeeping.c:335 (discriminator 4) kernel/time/timekeeping.c:752 (discriminator 4)) [ 5989.807348][ C1] ? clockevents_program_event (kernel/time/clockevents.c:334 (discriminator 3)) [ 5989.807558][ C1] handle_softirqs (kernel/softirq.c:579) [ 5989.807726][ C1] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 5989.807891][ C1] irq_exit_rcu (kernel/softirq.c:698) [ 5989.808014][ C1] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 5989.808177][ C1] [ 5989.808263][ C1] [ 5989.808346][ C1] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 5989.808557][ C1] RIP: 0010:pv_native_safe_halt (arch/x86/kernel/paravirt.c:81) [ 5989.808732][ C1] Code: 4f d3 00 c3 cc cc cc cc 0f 1f 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 f3 0f 1e fa 66 90 0f 00 2d 83 d0 25 00 fb f4 cc cc cc cc 66 2e 0f 1f 84 00 00 00 00 00 66 90 90 90 90 90 90 All code ======== 0: 4f d3 00 rex.WRXB rolq %cl,(%r8) 3: c3 ret 4: cc int3 5: cc int3 6: cc int3 7: cc int3 8: 0f 1f 00 nopl (%rax) b: 90 nop c: 90 nop d: 90 nop e: 90 nop f: 90 nop 10: 90 nop 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop 16: 90 nop 17: 90 nop 18: 90 nop 19: 90 nop 1a: 90 nop 1b: f3 0f 1e fa endbr64 1f: 66 90 xchg %ax,%ax 21: 0f 00 2d 83 d0 25 00 verw 0x25d083(%rip) # 0x25d0ab 28: fb sti 29: f4 hlt 2a:* c3 ret <-- trapping instruction 2b: cc int3 2c: cc int3 2d: cc int3 2e: cc int3 2f: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) 36: 00 00 00 39: 66 90 xchg %ax,%ax 3b: 90 nop 3c: 90 nop 3d: 90 nop 3e: 90 nop 3f: 90 nop Code starting with the faulting instruction =========================================== 0: c3 ret 1: cc int3 2: cc int3 3: cc int3 4: cc int3 5: 66 2e 0f 1f 84 00 00 cs nopw 0x0(%rax,%rax,1) c: 00 00 00 f: 66 90 xchg %ax,%ax 11: 90 nop 12: 90 nop 13: 90 nop 14: 90 nop 15: 90 nop [ 5989.809311][ C1] RSP: 0018:ffffc90000137de8 EFLAGS: 00000246 [ 5989.809518][ C1] RAX: 0000000008227db7 RBX: 1ffff92000026fc1 RCX: ffffffffa7835a39 [ 5989.809766][ C1] RDX: 0000000000000000 RSI: ffffffffa850cc7c RDI: ffffffffa7c53940 [ 5989.810012][ C1] RBP: 0000000000000000 R08: 0000000000000001 R09: ffffed100d9d667a [ 5989.810255][ C1] R10: ffff88806ceb33d3 R11: 0000000000000000 R12: 0000000000000000 [ 5989.810501][ C1] R13: ffff888001b18040 R14: dffffc0000000000 R15: 0000000000000000 [ 5989.810751][ C1] ? ct_kernel_exit.constprop.0 (kernel/context_tracking.c:146) [ 5989.810956][ C1] default_idle (./arch/x86/include/asm/paravirt.h:107 arch/x86/kernel/process.c:748) [ 5989.811090][ C1] default_idle_call (./include/linux/cpuidle.h:143 kernel/sched/idle.c:118) [ 5989.811254][ C1] cpuidle_idle_call (kernel/sched/idle.c:186) [ 5989.811419][ C1] ? __pfx_cpuidle_idle_call (kernel/sched/idle.c:168) [ 5989.811583][ C1] ? tsc_verify_tsc_adjust (arch/x86/kernel/tsc_sync.c:59) [ 5989.811749][ C1] do_idle (kernel/sched/idle.c:325) [ 5989.811872][ C1] cpu_startup_entry (kernel/sched/idle.c:422 (discriminator 1)) [ 5989.812041][ C1] start_secondary (arch/x86/kernel/smpboot.c:203 arch/x86/kernel/smpboot.c:283) [ 5989.812205][ C1] ? __pfx_start_secondary (arch/x86/kernel/smpboot.c:233) Finger prints: veth_xdp_rcv:veth_poll:net_rx_action:handle_softirqs:__irq_exit_rcu