====================================== | | WAIT TIMEOUT stdout | [ 5267.761381][ C2] Oops: general protection fault, probably for non-canonical address 0xdffffc0000000091: 0000 [#1] SMP KASAN NOPTI | [ 5267.761899][ C2] KASAN: null-ptr-deref in range [0x0000000000000488-0x000000000000048f] [ 5267.762587][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 5267.762851][ C2] RIP: 0010:veth_xdp_rcv (./include/linux/netdevice.h:2632 (discriminator 13) drivers/net/veth.c:912 (discriminator 13)) [ 5267.763076][ C2] Code: 40 0d 00 00 e8 bf 0d de 00 85 c0 0f 85 c6 06 00 00 49 8d bc 24 88 04 00 00 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 <0f> b6 04 02 84 c0 74 08 3c 03 0f 8e b6 0a 00 00 41 3b ac 24 88 04 All code ======== 0: 40 0d 00 00 e8 bf rex or $0xbfe80000,%eax 6: 0d de 00 85 c0 or $0xc08500de,%eax b: 0f 85 c6 06 00 00 jne 0x6d7 11: 49 8d bc 24 88 04 00 lea 0x488(%r12),%rdi 18: 00 19: 48 b8 00 00 00 00 00 movabs $0xdffffc0000000000,%rax 20: fc ff df 23: 48 89 fa mov %rdi,%rdx 26: 48 c1 ea 03 shr $0x3,%rdx 2a:* 0f b6 04 02 movzbl (%rdx,%rax,1),%eax <-- trapping instruction 2e: 84 c0 test %al,%al 30: 74 08 je 0x3a 32: 3c 03 cmp $0x3,%al 34: 0f 8e b6 0a 00 00 jle 0xaf0 3a: 41 rex.B 3b: 3b .byte 0x3b 3c: ac lods %ds:(%rsi),%al 3d: 24 88 and $0x88,%al 3f: 04 .byte 0x4 Code starting with the faulting instruction =========================================== 0: 0f b6 04 02 movzbl (%rdx,%rax,1),%eax 4: 84 c0 test %al,%al 6: 74 08 je 0x10 8: 3c 03 cmp $0x3,%al a: 0f 8e b6 0a 00 00 jle 0xac6 10: 41 rex.B 11: 3b .byte 0x3b 12: ac lods %ds:(%rsi),%al 13: 24 88 and $0x88,%al 15: 04 .byte 0x4 [ 5267.763820][ C2] RSP: 0018:ffffc90000218a20 EFLAGS: 00010202 [ 5267.764099][ C2] RAX: dffffc0000000000 RBX: ffff888011d72000 RCX: 1ffff92000043153 [ 5267.764424][ C2] RDX: 0000000000000091 RSI: ffffffffb1c53e00 RDI: 0000000000000488 [ 5267.764737][ C2] RBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000000 [ 5267.765045][ C2] R10: ffffc90000218e90 R11: 0000000000000000 R12: 0000000000000000 [ 5267.765363][ C2] R13: ffffc90000218bd0 R14: 0000000000000040 R15: ffffc90000218bd0 [ 5267.765674][ C2] FS: 0000000000000000(0000) GS:ffff8880b0ebd000(0000) knlGS:0000000000000000 [ 5267.766031][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 5267.766297][ C2] CR2: 00007f8f48af7050 CR3: 000000000bead004 CR4: 0000000000772ef0 [ 5267.766602][ C2] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 5267.766926][ C2] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 5267.767231][ C2] PKRU: 55555554 [ 5267.767393][ C2] Call Trace: [ 5267.767545][ C2] [ 5267.767649][ C2] ? clockevents_program_event (kernel/time/clockevents.c:326) [ 5267.767866][ C2] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 5267.768082][ C2] ? __pfx_veth_xdp_rcv (drivers/net/veth.c:902) [ 5267.768282][ C2] ? mark_held_locks (kernel/locking/lockdep.c:4326) [ 5267.768489][ C2] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:151 kernel/locking/spinlock.c:194) [ 5267.768742][ C2] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4473) [ 5267.768948][ C2] ? _raw_spin_unlock_irqrestore (./arch/x86/include/asm/preempt.h:104 ./include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) [ 5267.769201][ C2] ? napi_complete_done (./include/linux/hrtimer.h:264 net/core/dev.c:6611) [ 5267.769413][ C2] ? __pfx_napi_complete_done (net/core/dev.c:6547) [ 5267.769612][ C2] veth_poll (drivers/net/veth.c:981) [ 5267.769776][ C2] ? __pfx_veth_poll (drivers/net/veth.c:969) [ 5267.769983][ C2] ? validate_chain (kernel/locking/lockdep.c:3802 kernel/locking/lockdep.c:3822 kernel/locking/lockdep.c:3877) [ 5267.770185][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 5267.770398][ C2] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 5267.770599][ C2] ? validate_chain (kernel/locking/lockdep.c:3802 kernel/locking/lockdep.c:3822 kernel/locking/lockdep.c:3877) [ 5267.770808][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 5267.771021][ C2] __napi_poll.constprop.0 (net/core/dev.c:7413) [ 5267.771220][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 kernel/rcu/tree.c:736) [ 5267.771432][ C2] net_rx_action (net/core/dev.c:7477 net/core/dev.c:7599) [ 5267.771638][ C2] ? __pfx_net_rx_action (net/core/dev.c:7561) [ 5267.771843][ C2] ? kvm_clock_get_cycles (./arch/x86/include/asm/preempt.h:95 arch/x86/kernel/kvmclock.c:80 arch/x86/kernel/kvmclock.c:86) [ 5267.772058][ C2] ? ktime_get (kernel/time/timekeeping.c:251 (discriminator 4) kernel/time/timekeeping.c:360 (discriminator 4) kernel/time/timekeeping.c:778 (discriminator 4)) [ 5267.772214][ C2] ? clockevents_program_event (kernel/time/clockevents.c:334 (discriminator 3)) [ 5267.772466][ C2] handle_softirqs (kernel/softirq.c:580) [ 5267.772692][ C2] __irq_exit_rcu (kernel/softirq.c:614 kernel/softirq.c:453 kernel/softirq.c:680) [ 5267.772895][ C2] irq_exit_rcu (kernel/softirq.c:698) [ 5267.773054][ C2] sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1049 arch/x86/kernel/apic/apic.c:1049) [ 5267.773260][ C2] [ 5267.773362][ C2] [ 5267.773465][ C2] asm_sysvec_apic_timer_interrupt (./arch/x86/include/asm/idtentry.h:702) [ 5267.773714][ C2] RIP: 0010:filter_irq_stacks (kernel/stacktrace.c:380 kernel/stacktrace.c:397) [ 5267.773925][ C2] Code: 03 80 3c 2a 00 75 50 48 8b 17 48 81 fa 30 02 60 ae 72 17 48 81 fa 70 16 60 ae 73 0e 48 83 c4 10 8d 43 01 5b 5d e9 4f d4 98 02 <48> 81 fa 50 80 85 b1 72 09 48 81 fa 70 80 85 b1 72 e0 83 c3 01 48 All code ======== 0: 03 80 3c 2a 00 75 add 0x75002a3c(%rax),%eax 6: 50 push %rax 7: 48 8b 17 mov (%rdi),%rdx a: 48 81 fa 30 02 60 ae cmp $0xffffffffae600230,%rdx 11: 72 17 jb 0x2a 13: 48 81 fa 70 16 60 ae cmp $0xffffffffae601670,%rdx 1a: 73 0e jae 0x2a 1c: 48 83 c4 10 add $0x10,%rsp 20: 8d 43 01 lea 0x1(%rbx),%eax 23: 5b pop %rbx 24: 5d pop %rbp 25: e9 4f d4 98 02 jmp 0x298d479 2a:* 48 81 fa 50 80 85 b1 cmp $0xffffffffb1858050,%rdx <-- trapping instruction 31: 72 09 jb 0x3c 33: 48 81 fa 70 80 85 b1 cmp $0xffffffffb1858070,%rdx 3a: 72 e0 jb 0x1c 3c: 83 c3 01 add $0x1,%ebx 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 48 81 fa 50 80 85 b1 cmp $0xffffffffb1858050,%rdx 7: 72 09 jb 0x12 9: 48 81 fa 70 80 85 b1 cmp $0xffffffffb1858070,%rdx 10: 72 e0 jb 0xfffffffffffffff2 12: 83 c3 01 add $0x1,%ebx 15: 48 rex.W [ 5267.774653][ C2] RSP: 0018:ffffc90006a97a68 EFLAGS: 00000206 [ 5267.774915][ C2] RAX: 000000000000000a RBX: 0000000000000008 RCX: 0000000000000000 [ 5267.775222][ C2] RDX: ffffffffb182e72e RSI: 000000000000000a RDI: ffffc90006a97b40 [ 5267.775526][ C2] RBP: dffffc0000000000 R08: 0000000000000000 R09: 0000000000000001 [ 5267.775833][ C2] R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000000 [ 5267.776280][ C2] R13: 0000000000000000 R14: 0000000000000000 R15: ffff8880010427c0 [ 5267.776594][ C2] ? do_syscall_64 (arch/x86/entry/syscall_64.c:113) [ 5267.776806][ C2] ? stack_trace_save (kernel/stacktrace.c:123) [ 5267.777012][ C2] stack_depot_save_flags (lib/stackdepot.c:610) [ 5267.777342][ C2] ? rcu_read_lock_any_held (kernel/rcu/update.c:386 kernel/rcu/update.c:380) [ 5267.777543][ C2] kasan_save_stack (mm/kasan/common.c:49) [ 5267.777743][ C2] ? kasan_save_stack (mm/kasan/common.c:48) [ 5267.777946][ C2] ? kasan_record_aux_stack (mm/kasan/generic.c:548) [ 5267.778266][ C2] ? __call_rcu_common.constprop.0 (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:127 kernel/rcu/tree.c:3084) [ 5267.778512][ C2] ? kfree (./include/linux/kmemleak.h:49 mm/slub.c:2305 mm/slub.c:4642 mm/slub.c:4841) [ 5267.778664][ C2] ? ovl_release (fs/overlayfs/file.c:241) [ 5267.778889][ C2] ? __fput (fs/file_table.c:465) [ 5267.779043][ C2] ? task_work_run (kernel/task_work.c:229 (discriminator 1)) [ 5267.779244][ C2] ? syscall_exit_to_user_mode (./include/linux/resume_user_mode.h:50 kernel/entry/common.c:114 ./include/linux/entry-common.h:329 kernel/entry/common.c:207 kernel/entry/common.c:218) [ 5267.779494][ C2] ? do_syscall_64 (arch/x86/entry/syscall_64.c:113) [ 5267.779694][ C2] ? entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 5267.779953][ C2] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 5267.780155][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5235) [ 5267.780355][ C2] ? task_blocks_on_rt_mutex.constprop.0.isra.0 (./include/linux/rbtree.h:63 ./include/linux/rbtree.h:182 kernel/locking/rtmutex.c:484 kernel/locking/rtmutex.c:1241) [ 5267.780656][ C2] ? find_held_lock (kernel/locking/lockdep.c:5348) [ 5267.780855][ C2] ? __virt_addr_valid (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:953 ./include/linux/mmzone.h:2127 arch/x86/mm/physaddr.c:65) [ 5267.781052][ C2] ? __lock_release (kernel/locking/lockdep.c:5534) [ 5267.781253][ C2] ? __virt_addr_valid (./include/linux/rcupdate.h:341 ./include/linux/rcupdate.h:953 ./include/linux/mmzone.h:2127 arch/x86/mm/physaddr.c:65) [ 5267.781453][ C2] ? __virt_addr_valid (./arch/x86/include/asm/preempt.h:104 ./include/linux/rcupdate.h:955 ./include/linux/mmzone.h:2127 arch/x86/mm/physaddr.c:65) [ 5267.781652][ C2] ? __delete_object (./arch/x86/include/asm/atomic.h:67 (discriminator 3) ./include/linux/atomic/atomic-arch-fallback.h:2278 (discriminator 3) ./include/linux/atomic/atomic-instrumented.h:1384 (discriminator 3) mm/kmemleak.c:550 (discriminator 3) mm/kmemleak.c:818 (discriminator 3)) [ 5267.781854][ C2] kasan_record_aux_stack (mm/kasan/generic.c:548) [ 5267.782061][ C2] ? __pfx_free_object_rcu (mm/kmemleak.c:524) [ 5267.782260][ C2] __call_rcu_common.constprop.0 (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:127 kernel/rcu/tree.c:3084) [ 5267.782516][ C2] kfree (./include/linux/kmemleak.h:49 mm/slub.c:2305 mm/slub.c:4642 mm/slub.c:4841) [ 5267.782668][ C2] ? ovl_release (fs/overlayfs/file.c:241) [ 5267.782874][ C2] ovl_release (fs/overlayfs/file.c:241) [ 5267.783027][ C2] __fput (fs/file_table.c:465) [ 5267.783180][ C2] ? _raw_spin_unlock_irq (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:119 ./include/linux/spinlock_api_smp.h:159 kernel/locking/spinlock.c:202) [ 5267.783390][ C2] task_work_run (kernel/task_work.c:229 (discriminator 1)) [ 5267.783594][ C2] ? __pfx_task_work_run (kernel/task_work.c:195) [ 5267.783914][ C2] ? do_execveat_common.isra.0 (fs/exec.c:1975) [ 5267.784176][ C2] syscall_exit_to_user_mode (./include/linux/resume_user_mode.h:50 kernel/entry/common.c:114 ./include/linux/entry-common.h:329 kernel/entry/common.c:207 kernel/entry/common.c:218) [ 5267.784374][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:113) [ 5267.784576][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 5267.784943][ C2] RIP: 0033:0x7f8f48ae1a30 [ 5267.785154][ C2] Code: Unable to access opcode bytes at 0x7f8f48ae1a06. Code starting with the faulting instruction =========================================== [ 5267.785412][ C2] RSP: 002b:00007fff81c84440 EFLAGS: 00000202 ORIG_RAX: 000000000000003b [ 5267.785838][ C2] RAX: 0000000000000000 RBX: 0000000000000000 RCX: 0000000000000000 [ 5267.786134][ C2] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000000000000 [ 5267.786438][ C2] RBP: 0000000000000000 R08: 0000000000000000 R09: 0000000000000000 [ 5267.786861][ C2] R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000000 Finger prints: veth_xdp_rcv:veth_poll:net_rx_action:handle_softirqs:__irq_exit_rcu